Data isolation device based on non-network mode, and method and system thereof

A data isolation, non-network technology, applied in the field of network security, can solve the problem of low efficiency of offline data interaction between internal and external networks, and achieve the effect of ensuring physical isolation and preventing network attacks

Active Publication Date: 2014-11-26
ELECTRIC POWER RES INST OF GUANGDONG POWER GRID
View PDF3 Cites 15 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0004] Based on this, it is necessary to address the existing problem of low efficiency of offline data exchange between internal and external networks under the premise of ensuring physical isolation between the internal network and the external network, and provide a method to ensure the physical isolation of the internal network and the external network. Non-network-based data isolation device with high network data interaction efficiency, method and system thereof

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Data isolation device based on non-network mode, and method and system thereof
  • Data isolation device based on non-network mode, and method and system thereof
  • Data isolation device based on non-network mode, and method and system thereof

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0031] In order to make the object, technical solution and advantages of the present invention clearer, the present invention will be further described in detail below according to the drawings and embodiments. It should be understood that the specific implementations described here are only used to explain the present invention, not to limit the present invention.

[0032] Such as figure 1 As shown, a data isolation method of a non-network data isolation device, the non-network data isolation device includes an internal network host, an external network host and an isolation communication module, and the internal network host and the external network host pass through the The isolation communication module is physically connected, and the internal network host and the external network host are respectively loaded with an isolation channel private protocol, an operating system and a network protocol stack;

[0033] The data isolation method of the non-network data isolation d...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention provides a data isolation device based on a non-network mode, and an isolation method and an isolation system thereof. The data isolation device comprises an intranet host, an extranet host, and an isolated communication module. The intranet host and the extranet host are loaded with a network protocol stack, and respectively maintain a TCP proxy client module and a TCP proxy server module. A TCP connection socket1 is established and data forwarding is carried out between the TCP proxy server module and a service data packet client. A TCP connection socket2 is established and data forwarding is carried out between the TCP proxy client module and a service data packet server. The isolated communication module uses a proprietary protocol. The TCP header and following message headers of a service data packet are removed. Only pure service data load forwarding is carried out. Four-layer isolated subsystem communication between inner-end and outer-end hosts is realized on the whole, all network attacks except proprietary-protocol-based internal attacks are effectively prevented, and high network data exchange efficiency is ensured on the premise of physical isolation between the internal network and the external network.

Description

technical field [0001] The invention relates to the technical field of network security, in particular to a non-network-based data isolation device, a method and a system thereof. Background technique [0002] With the popularization and continuous development of computer network technology, attacks based on TCP / IP network are rampant, and network security issues are becoming more and more important. In a network application scenario with relatively high security requirements, it is usually required that the internal network is physically isolated from the external network to ensure the security of internal network information. [0003] But at the same time, under the premise of ensuring the physical isolation between the internal network and the external network, in order to make the internal network work normally, a small amount of data interaction with the external network is required. Usually, this kind of data interaction adopts offline mode, and the offline data exchan...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/06
Inventor 梁智强胡朝辉江泽鑫梁志宏陈炯聪黄曙余南华林丹生李闯石炜君梁毅成黄岳峰
Owner ELECTRIC POWER RES INST OF GUANGDONG POWER GRID
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products