Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

Auditing system and auditing method based on quantum bastion host and quantum bastion host system

A bastion machine and quantum random number technology, applied in transmission systems, digital transmission systems, and key distribution, can solve problems such as insecure asymmetric encryption algorithms and audit files that are easy to be stolen, viewed, and tampered with, achieving security assurance and resistance Attack, high security effect

Active Publication Date: 2017-05-31
ZHEJIANG SHENZHOU QUANTUM NETWORK TECH CO LTD
View PDF5 Cites 10 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0005] The first is the storage security of audit files. Existing bastion host systems store audit files in clear text. Access control ensures that only auditors can access the corresponding audit files. Once the bastion host has a virus or is stolen by criminals , audit files are easily stolen, viewed or even tampered with
[0006] The second is the transmission security of the audit file. When the auditor logs in to the bastion machine to review the audit file, the encryption system used for the encrypted transmission of the audit is the PKI system based on the asymmetric encryption algorithm, which is practical for quantum computers. It is extremely unsafe after melting

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Auditing system and auditing method based on quantum bastion host and quantum bastion host system
  • Auditing system and auditing method based on quantum bastion host and quantum bastion host system

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0067] The network system implementing the present invention mainly includes a quantum communication network service station, a quantum fortress machine, a quantum key issuing center and various terminals. In addition, configure other network devices as needed, such as firewalls, switches, routers, etc. used to connect terminals, quantum fortress machines and quantum communication network service stations.

[0068] Terminals can be divided into server operation and maintenance terminals and bastion machine operation and maintenance terminals.

[0069] The login user corresponding to the server operation and maintenance terminal is the server operation and maintenance terminal user, who is the user who visits the quantum communication network service station, and can issue maintenance and operation instructions to the servers in each station, including the operation and maintenance personnel of each server at all levels.

[0070] The bastion machine operation and maintenance te...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses an auditing system and an auditing method based on a quantum bastion host and a quantum bastion host system, wherein the auditing method based on the quantum bastion host comprises the following steps: responding to an authentication request of an operation and maintenance terminal and performing authentication; after passing authentication, auditing the operation and maintenance operation of the operation and maintenance terminal, generating an audit record, and sending the audit record to a security encryption device in the form of hardware, so as to generate an audit file and anti-tampering identification information in the security encryption device and perform encryption to generate a storage ciphertext; and receiving and storing the storage ciphertext from the security encryption device. According to the method provided by the invention, the audit file is encrypted and stored by virtue of special hardware equipment, a secret key used for encryption is a quantum random number secret key with true randomness, and the issuing of the quantum random number key depends on a quantum communication network and special hardware equipment to ensure that the security of the key is extremely high, so that the storage security of the audit file in the quantum bastion host is guaranteed.

Description

technical field [0001] The invention relates to the technical field of quantum communication, in particular to an audit method and audit system based on a quantum fortress machine and a quantum fortress machine system. Background technique [0002] With the continuous deepening of social informatization, information data has increasingly become the core assets of various enterprises and institutions, and ensuring the security of information data is an extremely important task for enterprises and institutions. The popularity of hardware devices such as network firewalls, virus firewalls, and intrusion detection has effectively prevented the internal network of the enterprise from external attacks and strengthened the external defense line of the enterprise. However, incidents such as the theft and leakage of internal information and data of enterprises, and the damage to the operation of important system servers have intensified, and the impact on enterprise information secur...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): H04L9/08H04L29/06
CPCH04L9/0825H04L9/0852H04L9/0894H04L63/0442H04L63/10
Inventor 富尧蔡晓宇钟一民
Owner ZHEJIANG SHENZHOU QUANTUM NETWORK TECH CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products