Cross-segment file data transmission method and system

By performing identity authentication and pre-security checks on external network transmission devices, encrypting fragments with hard-coded asymmetric keys, and transmitting them unidirectionally through border crossing devices, the problems of poor compatibility, low security, and difficulty in auditing and tracing cross-network segment file transmission in physically isolated environments are solved, achieving efficient and reliable file transmission and compliant auditing.

CN122419903APending Publication Date: 2026-07-17SHANGHAI SIWEI TECH CO LTD
View PDF 0 Cites 0 Cited by

Patent Information

Application Number
CN202610616187.0
Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
Filing Date
2026-05-07
Publication Date
2026-07-17

AI Technical Summary

Technical Problem

In physically isolated environments, existing technologies suffer from poor transmission compatibility, low security, low transmission efficiency and stability, and difficulty in auditing and tracing. In particular, in cross-network segment file transfers, the standard FTP protocol is easily eavesdropped, TCP links are difficult to establish, and there is a lack of pre-security detection and fine-grained log aggregation, which leads to transmission failures when the network fluctuates and makes it difficult to form a legal evidence chain.

Method used

External network transmission equipment is used for identity authentication and pre-security checks. Hard-coded asymmetric keys are used to encrypt file fragments, which are then transmitted unidirectionally through a boundary transfer device. Internal network receiving devices perform decryption, reassembly, and hash verification. Combined with underlying port forwarding and breakpoint resume mechanisms, the security and stability of cross-network segment file transfer are achieved.

Benefits of technology

It effectively prevents malicious code penetration, ensures transmission security, improves transmission efficiency and stability, enables fine-grained compliance auditing and the generation of legal evidence chains, and meets the needs of high-security business operations.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN122419903A_ABST
    Figure CN122419903A_ABST
Patent Text Reader

Abstract

本发明适用于网络信息安全与数据传输技术领域,提供了一种跨网段文件数据传输方法及系统,方法包括外网传输设备执行本地鉴权与明文前置安全检测,对通过检测的目标文件分片并用预置密钥加密后推送至边界摆渡设备;边界摆渡设备经端口转发机制将密文分片单向透传至内网接收设备;内网接收设备定时拉取,并对分片解密、拼接重组后执行哈希校验,并根据校验结果确定文件转存入库或直接销毁;外网传输设备和边界摆渡设备将自身产生的传输状态及操作日志封装为单向数据报文协议报文,利用指定的单向传输端口穿透边界摆渡设备的防火墙策略单向汇聚至内网。本发明解决了现有数据传输在物理隔离环境下安全性差、可靠性低、审计追溯难的问题。
Need to check novelty before this filing date? Find Prior Art