Method for realizing decentralized distributed process guarding based on ad hoc network technology

A decentralized and self-organizing network technology, applied in the field of network security, can solve the problems of the target system’s loss of protection capabilities, small defense range, and failure of the central guardian node, so as to improve anti-tampering and anti-repudiation capabilities, and enhance anti-attack capabilities , to ensure the effect of uniqueness

Active Publication Date: 2020-12-01
江苏开博科技有限公司 +1
View PDF5 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0004] The disadvantages of the centralized central monitoring guardian mode are: it is easy to cause the guardian service to be unable to use normally due to the failure of the central guardian node itself or being illegally attacked, and the single point of failure, so that the service process related to the target system loses the protection ability
[0005] The downside of the localized monitoring daemon model is: a more immediate single point of failure incident rate, i.e., if the daemon process itself is terminated unexpectedly, the daemonizing capability of the critical process disappears in an instant
Moreover, only a single system can be guarded, and key processes of other systems cannot be guarded, and the defense range is extremely small

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method for realizing decentralized distributed process guarding based on ad hoc network technology

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0044] Now, the present invention will be described in further detail in conjunction with specific operations.

[0045] The basic functions of the process guard node application of the present invention include: polling and monitoring of the current system target process, generating encrypted monitoring reports and alarm logs, super-management intervention mode authentication and start and stop, atomic operation of process start and stop, adjacent process guard node discovery and Heartbeat monitoring, failover and takeover of adjacent process daemon nodes, message broadcast and reception between adjacent process daemon nodes, remote interface call of alarm control system (upload monitoring report and alarm information), localization under system failure of alarm control center Message push, super management login and authentication WEB service, operation audit log system remote interface call (report operation trace log).

[0046] In the initialization phase, core resources su...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention relates to a method for realizing decentralized distributed process guarding based on ad hoc network technology, including generating supermanagement identity and authority and guarding policy files through the creation module, and safely storing them in each guarding node, system process, and a It is a perpetual guard that does not require external intervention. Second, the process needs to be iteratively updated / added nodes; the super administrator externally intervenes, redeploys, and after the deployment is complete, after the super administrator intervention mode exits, start the perpetual guard; start mutual monitoring, Basic services for failover and takeover, message broadcasting, and communication. The present invention utilizes the original self-organizing network technology to construct a credible decentralized distributed process guardian system, which is used to avoid the problem of system process guardian ability failure caused by the guardian's own single point of failure; at the same time, it can protect the scope of Expand from a single machine to all hosts in the whole domain, and at the same time, improve the anti-attack capability of the entire guard system to ensure the credibility of the guard system itself.

Description

technical field [0001] The invention relates to a method for realizing a decentralized distributed process guard based on an ad hoc network technology, and belongs to the technical field of network security. Background technique [0002] The guardian mechanism of the key process of the software system will play a better role in guaranteeing the robustness and availability of the system and services, and at the same time, it will play a better defense against illegal shutdown, illegal service intrusion, illegal service termination and other attacks. The traditional guardian mode is divided into the following two modes: [0003] One is to build a centralized central guardian system to conduct centralized polling, scanning, monitoring and guarding of the target system and key processes; the other is to develop and run a purely localized (same source with the target system) daemon process for the key processes of the system Perform localized polling scan monitoring and guarding...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Patents(China)
IPC IPC(8): H04L29/08H04L12/24H04L9/06G06F21/60G06F21/64
CPCG06F21/602G06F21/64H04L9/0631H04L41/0823H04L67/10H04L67/1034H04L67/1095
Inventor 孟军
Owner 江苏开博科技有限公司
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products