IPSec VPN safety forwarding method and system for handling power protocols

A forwarding method and protocol technology, applied in the direction of transmission system, electrical components, data exchange through path configuration, etc., can solve the problems of IPSecVPN equipment performance degradation, data packet decryption and forwarding delay, and IPSecVPN security forwarding methods. Complicated problems, etc. Achieve the effects of improving performance and security, increasing usability and ease of use, and simplifying policy configuration

Active Publication Date: 2014-07-16
ELECTRIC POWER RES INST OF GUANGDONG POWER GRID
View PDF3 Cites 5 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0005] Based on this, it is necessary to provide a simple processing method for the existing complex IPSec VPN secure forwarding method for processing power protocols, which may easily lead to the problem of performance degradation of IPSec VPN equipment, and there is a large delay in decrypting and forwarding data packets. The IPSec VPN secure forwarding method and system of the Power Protocol to improve the performance of IPSec VPN equipment and reduce the delay in decrypting and forwarding data packets

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • IPSec VPN safety forwarding method and system for handling power protocols
  • IPSec VPN safety forwarding method and system for handling power protocols
  • IPSec VPN safety forwarding method and system for handling power protocols

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0023] In order to make the object, technical solution and advantages of the present invention clearer, the present invention will be further described in detail below according to the drawings and embodiments. It should be understood that the specific implementations described here are only used to explain the present invention, not to limit the present invention.

[0024] IPSec VPN refers to a VPN technology that uses the IPSec protocol to achieve remote access. It is a security standard framework defined by the Internet Engineering Task Force (IETF) to provide end-to-end encryption and authentication services for public and private networks. IPSEC is a relatively complete and systematic VPN technology, which stipulates a series of protocol standards. There are two reasons for the introduction of the IPSEC protocol. One is that the original TCP / IP system did not include a security-based design. Anyone who can connect to the line can analyze all communication data. IPSEC int...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention provides an IPSec VPN safety forwarding method and system for handling power protocols. When an IP data packet enters an IPSec VPN device, a safety policy according with the IP data packet is sought for in a safety policy database according to IP message grouping information, data decryption is performed on the IP message grouping information according to the SP, and an original data message is obtained; then, power protocol characteristic value information identification is performed on the original data message according to characteristic value information in the SP to judge whether the current IP data packet message needs to be forwarded or not. Through the SP subjected to power protocol characteristic identification, fine grit inspecting and matching can be performed on the IP data packet bearing power service, in-tunnel attack to the data packet can be prevented, and thus the problems that because a large number of firewall policies are added into the IPSec VPN device and the data packet enters a protocol stack twice, performance is lowered, and operation maintenance difficulty is increased can be avoided, and the forwarding performance and the forwarding safety of the IPSec VPN data packet are promoted.

Description

technical field [0001] The invention relates to the technical field of data communication in the electric power industry, in particular to an IPSec VPN secure forwarding method and system for processing electric power protocols. Background technique [0002] As a national energy infrastructure, electricity is directly related to the safety of electricity consumption by workers and civilians. Failures will lead to large-scale power outages in cities, seriously affecting people's lives and economic development. To this end, relevant state departments and power companies have issued a number of regulations and systems to ensure the safety of the power secondary system and prevent group attacks such as viruses and hackers. [0003] IPSec VPN devices work at the network layer and can provide services such as data source authentication, data flow confidentiality, data integrity, and anti-replay. As a commonly used network layer security protection device, IPSec VPN equipment can ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/06H04L12/46
Inventor 胡朝辉梁志宏梁智强陈炯聪余南华江泽鑫林丹生李闯石炜君梁毅成黄岳峰
Owner ELECTRIC POWER RES INST OF GUANGDONG POWER GRID
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products