Perception-free automatic discovery API security management system and method

A technology of security management and automatic discovery, which is applied in the network field to achieve the effect of improving security and enhancing secondary verification

CN112804242AActive Publication Date: 2021-05-14蔡世泳 +4
10 Cites 2 Cited by

Patent Information

Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
Publication Date
2021-05-14

Smart Images

  • Figure 1
    Figure 1
  • Figure 2
    Figure 2
Patent Text Reader

Abstract

The invention relates to a perception-free automatic discovery API security management method. The method comprises the following steps that: 1, an API interface needing security management is registered to an API registration center module; 2, API interface data information registered by the API registration center module is stored in an API data storage module and displayed in an API display module; 3, the API security authentication module compares request data information requesting to access an API interface with authentication information stored in the API data storage module, determines a request access permission, and transmits a result to an API access control module; and 4, the API access control module transmits data through the received determined API interface request and the access authority of the corresponding API interface request. The security of the data transmitted by the API interface is improved in a mode of verifying the inflow flow, the outflow flow, the calling times and the abnormal calling times.
Need to check novelty before this filing date? Find Prior Art

Description

technical field

[0001] The invention relates to the field of network technology, in particular to an API security management system and method for automatic discovery without perception. Background technique

[0002] API refers to the application program interface, which is some pre-defined interfaces, such as functions, HTTP interfaces, or the agreement for the connection of different components of the software system. An API interface is used to provide applications and developers with a set of routines that can be accessed based on a piece of software or hardware without having to access the source code or understand the details of the internal working mechanism. With the introduction of the concept of microservices, the development and integration model based on microservice architecture has gradually become a hot spot. Under the microservice architecture, a barrier designed to protect internal services helps developers of application services to provide external servic...

Examples

Embodiment Construction

[0058] In order to make the objects and advantages of the present invention clearer, the present invention will be further described below in conjunction with the examples; it should be understood that the specific examples described here are only for explaining the present invention, and are not intended to limit the present invention.

[0059] Preferred embodiments of the present invention are described below with reference to the accompanying drawings. Those skilled in the art should understand that these embodiments are only used to explain the technical principle of the present invention, and are not intended to limit the protection scope of the present invention.

[0060] It should be noted that, in the description of the present invention, terms such as "upper", "lower", "left", "right", "inner", "outer" and other indicated directions or positional relationships are based on the terms shown in the accompanying drawings. The direction or positional relationship shown is ...