Unlock instant, AI-driven research and patent intelligence for your innovation.

Method and system for intercepting and capturing port data in WinNT operation system

An operating system and port technology, applied in the field of data interception, can solve the problem of high cost, achieve the effect of ensuring security and reducing cost

Active Publication Date: 2015-06-10
AEROSPACE INFORMATION
View PDF3 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

But prior art adopts hardware interception equipment to intercept port data, the quantity of the used hardware interception equipment can not be less than the quantity of the port to monitor, for each unit that will realize computer data monitoring, the unit to be monitored The number of computers is usually relatively large, and some computers have multiple input and output ports that need to be monitored, which results in a high cost of computer port data interception using existing technologies

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method and system for intercepting and capturing port data in WinNT operation system
  • Method and system for intercepting and capturing port data in WinNT operation system
  • Method and system for intercepting and capturing port data in WinNT operation system

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0037] The principles and features of the present invention are described below in conjunction with the accompanying drawings, and the examples given are only used to explain the present invention, and are not intended to limit the scope of the present invention.

[0038] figure 2 It is a flowchart of a method for intercepting port data in the WinNT operating system provided by the present invention. Such as figure 2 As shown, the method includes:

[0039] Step 201: In kernel mode, create a log file corresponding to the port.

[0040] Here, unlike other operating systems, the WinNT operating system is designed using a layered design idea, that is, the operating system is divided into user mode and kernel mode. Among them, the core code of the operating system runs in the kernel mode, and these core codes can directly access physical ports, physical memory, etc., while the non-core code runs in the user mode, and these non-core codes need to request the Request, and then ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention relates to a method and a system for intercepting and capturing port data in a WinNT operation system. The method comprises the steps of: creating a log file corresponding to a port in a kernel mode; intercepting and capturing each operation request aiming at the port, judging whether the operation requests are reading / writing requests or not according to an IO_STACK_LOCATION data structure correlative to an information resource planning (IRP) data structure of the operation requests, if so, storing data to be read / written by the reading / writing requests to the log file corresponding to the port, and then, executing the read / write requests; and otherwise, executing the operation requests. When the technical scheme of the method and the system is utilized, the cost for intercepting and capturing the port data can be reduced.

Description

technical field [0001] The invention relates to the field of data interception, in particular to a method and system for intercepting port data in a WinNT operating system. Background technique [0002] Microsoft's WinNT operating system is a 32-bit operating system based on NT technology, which includes Windows 2000, Windows 2003 and Windows XP systems. At present, the WinNT operating system has become the mainstream operating system for most daily office computers. Office computers often store some important data, such as financial data, customer lists, and various statistical data. If these data are leaked out, it will bring huge risks and losses to the unit. Therefore, it is necessary to input or The output data is strictly monitored to ensure the safety of important data. Since the computer input or output data is carried out through the port, the computer port can be used to monitor the computer input or output data, which inevitably intercepts the data read and writ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Patents(China)
IPC IPC(8): G06F11/34
Inventor 陈懿高志刚廖峰胡金辉陈磊程双全张国喜杨林赵芯
Owner AEROSPACE INFORMATION