Unlock instant, AI-driven research and patent intelligence for your innovation.

A method and device for realizing message filtering

A message filtering and data message technology, applied in the transmission system, electrical components, etc., can solve the problems of low data message protection performance and inability to filter data messages, and achieve the effect of improving the protection performance

Active Publication Date: 2020-09-18
BEIJING LEADSEC TECH +1
View PDF4 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0005] In the existing method for realizing message filtering, it is only judged whether the received data message is an OPC protocol message, that is, the message is filtered from the network level, but the content of the data message cannot be filtered. The protection performance is low

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • A method and device for realizing message filtering
  • A method and device for realizing message filtering
  • A method and device for realizing message filtering

Examples

Experimental program
Comparison scheme
Effect test

no. 1 example

[0096] For a first example, see figure 2 , the method of establishing the main connection includes:

[0097] Step 200, receiving a main connection request message from an OPC terminal.

[0098] In this step, the destination port of the main connection request message is 135.

[0099] Step 201 , look up the information indicating whether the passage is allowed corresponding to each preset parameter in the main connection request message in the second corresponding relationship.

[0100] Step 202 , judging whether the searched information indicating whether the passage is allowed is all allowed, if yes, execute step 203 ; if not, execute step 206 .

[0101]Step 203, judging whether the main connection request message is an OPC protocol message, if yes, execute step 204; if not, execute step 206.

[0102] Step 204, obtain the dynamic port acquisition method name in the main connection request message, and send the main connection request message to the OPC server.

[0103] S...

no. 2 example

[0105] For a second embodiment, see image 3 , the method of performing data business includes:

[0106] Step 300, receiving a data message from an OPC terminal.

[0107] In this step, the destination port of the data packet is the dynamic port number obtained in step 209 .

[0108] Step 301. Search the third corresponding relationship for information indicating whether to allow passage corresponding to each preset parameter in the data message.

[0109] Step 302 , judging whether the searched information indicating whether the passage is allowed is all allowed, if yes, execute step 303 ; if not, execute step 308 .

[0110] Step 303, judging whether the data message is an OPC protocol message, if yes, execute step 304; if not, execute step 310.

[0111] Step 304 , search for the operation method in the data message among the preset operation methods allowed to be executed, if found, execute step 305 , if not, execute step 310 .

[0112] Step 305 , look up the information i...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses a method of realizing message filtering and an apparatus thereof. The method comprises the following steps of receiving a data message from an OPC terminal; and in a first corresponding relation of in a preset operation method, an OPC item and information expressing whether to allow operation, searching an operation method in the data message and the information expressing whether to allow the operation corresponding to the OPC item, determining that the searched information expressing whether to allow the operation is the information expressing that the operation is allowed, and sending the data message to an OPC server. In the scheme of the invention, the operation method in the data message and the OPC item are filtered and protection performance of the data message is increased.

Description

technical field [0001] The invention relates to object linking and embedding (OLE, Object Linking and Embedding) (OPC, OLE for Process Control) for process control, especially a method and device for realizing message filtering. Background technique [0002] The proposal of the OPC protocol provides a standard data exchange interface for automation manufacturers' equipment and application software. Its efficient, reliable, and open features greatly simplify the communication mechanism between industrial field devices and application software, and facilitate the integration of devices from different manufacturers. Therefore, it is widely used in various industrial control networks. Since the OPC protocol lacks security considerations at the beginning of its design, there are many security risks. Therefore, it is necessary to filter the messages between the OPC terminal and the OPC server. [0003] Existing methods for implementing packet filtering generally include: [000...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Patents(China)
IPC IPC(8): H04L29/06
CPCH04L63/0236H04L63/0263H04L63/105
Inventor 张刚强孟庆森张帅
Owner BEIJING LEADSEC TECH