Big data-based management control system
By designing a management control system based on big data in the active network, the problem of network burden and reduced operational efficiency caused by malicious data packet attacks is solved, and the efficient identification and transmission of active packets is achieved, which improves the stability and security of the network.
Patent Information
- Application Number
- CN202510249488.X
- Authority / Receiving Office
- CN · China
- Patent Type
- Applications(China)
- Current Assignee / Owner
- Filing Date
- 2025-03-04
- Publication Date
- 2025-05-13
AI Technical Summary
Due to its open architecture, active networks are vulnerable to malicious data packets, resulting in increased network burden and reduced operating efficiency.
Design a management control system based on big data, and optimize the format and generation control management of the active packets of the active network, process the generated active packets, perform operation verification and analysis management, and organize and transmit data information.
It improves the transmission recognition efficiency and accuracy of active packets in active networks, avoids identification errors, improves network operation fluency, and prevents malicious data packets from interfering with the network.
Smart Images

Figure CN119996472A_ABST
Abstract
Description
Technical Field
[0001] The present invention relates to the field of management control technology, and in particular to a management control system based on big data. Background Art
[0002] Active network is an emerging network. It is a network model developed in the early 20th century. The emergence of active network is a revolution for transmission network. Active network can identify users and content according to the priority of enterprises, so as to optimize the transmission of data information. It has great research value and application prospects. Active network faces even greater problems and challenges than traditional network. Compared with traditional network, the biggest feature of active network is that it has an open architecture. That is, in the network node, active network provides programmable interface, and users can dynamically modify and control the behavior of network node, as well as guide the sending end and location of network data. However, due to the openness of active network, some malicious data packets take advantage of the dynamic characteristics of active network, so that data packets are repeatedly calculated and forwarded between network nodes, which will increase the network burden and seriously reduce the operation efficiency of active network. Therefore, it is necessary to design a management and control system based on big data with high operation efficiency and strong stability. Summary of the invention
[0003] The purpose of the present invention is to provide a management control system based on big data to solve the problems raised in the above background technology.
[0004] In order to solve the above technical problems, the present invention provides the following technical solutions: a management and control method based on big data, comprising: Optimize the format and generate control management for active packets of active networks; Process the generated active network active packets; Conduct operational verification, analysis and management of active networks; Organize and transmit data information on active networks.
[0005] According to the above technical solution, the format optimization and generation control management of the active packet of the active network includes: Optimize the format of the active packet of the active network so that the content of the active packet includes the following fields: the protocol version number of the active packet, the security mode adopted by the current active packet, the active packet security mode type identification number, the length of the header file of the active packet content, the content length of the entire active packet, other setting options of the active packet, the effective load transmission volume of the active packet, and add the authentication length, authentication, digital signature length, digital signature and decoding binding; After completing the format optimization processing of the active network active packet, the generation control and management of the active network active packet is performed through the digital signature technology.
[0006] According to the above technical solution, the process of processing the generated active network active packet includes: After receiving the generated secure active packet, the active node in the active network processes the active packet and verifies the network active packet to determine whether the active packet is an active packet. If it is an active packet, it is processed, otherwise it is discarded.
[0007] According to the above technical solution, the operation verification analysis and management of the active network includes: Perform data verification processing on the data sending and receiving ends of the active network, specifically using a hash encryption algorithm for verification processing; After receiving the user data information, the active network downloads the user data information, extracts the features of the data in the user data information after downloading, and uses the certificate of the active network to authorize the user data information. Next, it requests the resources of the authentication center of the active network to start authorization. After the authorization is completed, the authorization resources are released, and the user data information writes the authorization information and sends it to the next network node; The relevant security credential information carried in the active packet will be extracted when the active packet reaches the active node. The authentication certificate will be obtained from the authentication center based on the credential information, and the authentication certificate will be authenticated to check whether the certificate is valid. If it is invalid, the packet execution will be rejected. If it is valid, the verification node will use the end subject public key to verify the signature it generated for the static part of the active packet.
[0008] According to the above technical solution, the data information arrangement and transmission of the active network includes: Summarize the data information of the data sending end and the data receiving end of the active network and organize it into a table form; The received data information and active network data information are transmitted to the workbench for management personnel to review and analyze.
[0009] According to the above technical solution, a management and control system based on big data includes: An optimization management module, used for optimizing active packets of active networks; Verification and analysis module, used for operation verification, analysis and control of active networks; The sorting and transmission module is used to sort and transmit data information.
[0010] According to the above technical solution, the optimization management module includes: Format optimization module, used to optimize the active packet format of the active network; A generation management module, used for managing the generation of active packets of active networks; The process processing module is used to process the generated active network active packets.
[0011] According to the above technical solution, the verification and analysis module includes: Verification and analysis module, used to perform operational verification and analysis of active networks; An authorization verification module is used to perform authorization verification management on the active network; The authentication processing module is used to perform data information authentication processing.
[0012] According to the above technical solution, the sorting and transmission module includes: Arrangement and summarization module, used to organize and summarize data information; The transmission and display module is used for transmission and display management of data information.
[0013] Compared with the prior art, the beneficial effects achieved by the present invention are: the present invention, by providing an optimization management module, a verification and analysis module and a transmission arrangement module, can make the transmission identification of active packets of the active network more efficient and accurate, avoid the occurrence of identification errors, effectively improve the operation smoothness of the active network, and avoid the interference of malicious data packets on the active network. BRIEF DESCRIPTION OF THE DRAWINGS
[0014] The accompanying drawings are used to provide a further understanding of the present invention and constitute a part of the specification. Together with the embodiments of the present invention, they are used to explain the present invention and do not constitute a limitation of the present invention. In the accompanying drawings: Figure 1 is a flow chart of a management and control method based on big data provided in the first embodiment of the present invention; Figure 2 This is a module structure diagram of a management and control system based on big data provided in the second embodiment of the present invention. DETAILED DESCRIPTION
[0015] The following will be combined with the drawings in the embodiments of the present invention to clearly and completely describe the technical solutions in the embodiments of the present invention. Obviously, the described embodiments are only part of the embodiments of the present invention, not all of the embodiments. Based on the embodiments of the present invention, all other embodiments obtained by ordinary technicians in this field without creative work are within the scope of protection of the present invention.
[0016] Embodiment 1: Figure 1 This is a flowchart of a management and control method based on big data provided by the first embodiment of the present invention. This embodiment can be applied to a system. The method can be executed by a management and control system based on big data provided by an embodiment of the present invention. The system is composed of multiple software and hardware modules, such as Figure 1 As shown, the method specifically comprises the following steps: S101, performing format optimization and generation control management on active packets of the active network; Exemplarily, in an embodiment of the present invention, the format of the active packet of the active network is optimized so that the content of the active packet includes the following fields: the protocol version number of the active packet, the security mode adopted by the current active packet, the active packet security mode type identification number, the length of the header file of the active packet content, the content length of the entire active packet, other setting options of the active packet, the effective load transmission volume of the active packet, and the authentication length, authentication, digital signature length, digital signature and decoding binding are added at the same time; through this processing, the transmission identification of the active packet of the active network can be made more efficient and accurate, the occurrence of identification errors can be avoided, and the operation smoothness of the active network can be effectively improved.
[0017] After completing the format optimization processing of the active network active packet, the generation control management of the active network active packet is performed through the digital signature technology; in this step, the generation of the secure active packet is received by the node of the active network. The generation process starts after receiving the instruction, specifically including: after generating the version number, security mode, ANEP header length, ANEP packet length and other conventional parts of the active active packet, further generating the digital signature length, payload, decoding binding and other security mechanism parts of the active active packet, putting the node certificate into the generation node certificate field of the active packet: signing the entire active packet with the node private key, and adding this signature to the previous forwarding node signature field of the active packet, completing the previous forwarding node certificate, and enabling the active network server node to generate a secure active packet, ending the generation processing and starting the transmission. Through this processing, the active network active packet generation can be made more accurate and efficient, avoiding the interference and utilization of malicious data packets on the active network.
[0018] S102, performing process processing on the generated active network active packet; Exemplarily, in an embodiment of the present invention, after the active node in the active network receives the generated security active packet, the active packet is processed, and the network active packet is judged and verified to determine whether the active packet is an active active packet. If it is an active active packet, it is processed, otherwise it is discarded; in this step, after completing the judgment and verification of the data packet, the access rights of the network node are verified to verify whether the node has access rights to the active packet. If it has permission, it is checked, otherwise it is not processed, wherein the data integrity of the active network security active packet is checked to check whether the information of the active packet has been tampered with. If it has been maliciously tampered with, it is discarded, and at the same time, the owner of the active packet is verified. The type of active packet is judged. There are two types of active packets: Nomal and Reply. After determining that the received active packet is of a specific type, the node of the current active network is judged to see if the node is the end point of the active packet. If it is not the end point, the data information is transmitted to the next network node. If it is the end point, the execution code of the active network security active packet is verified, and the identity of the active packet is verified to see if it meets the active packet identity requirements. If it meets the requirements, the data and program are run. The active security active packet arrives at the active node and the processing is completed. This processing can effectively improve the security of the active packet operation processing, and can timely identify and process malicious data packets.
[0019] S103, performing operation verification, analysis and management of the active network; Exemplarily, in an embodiment of the present invention, data verification processing is performed on the data sending and receiving ends of the active network, and specifically a hash encryption algorithm is used for verification processing; in this step, after the node of the active network uses the hash encryption algorithm to process the code data in the data to obtain a hash value, the hash value is encrypted to prevent the code from being tampered with, and the hash value generated in the first step is attached to the data for sending; after the active node receives the data, it further uses a hash decryption algorithm to decrypt the hash value carried by the received data, checks the decrypted information, and determines whether it is the data received by this node. If not, no processing is performed. If so, the hash value carried by the data is calculated, and the hash value attached to the data is compared with the hash value decrypted by the hash decryption algorithm. If they are different, it means that the data has been modified, and the data is not processed. Otherwise, normal processing is performed. Through this step, the data verification of the active network can be made more efficient and accurate, and the interference of tampered data on the active network can be avoided, effectively reducing its operating load.
[0020] After receiving the user data information, the active network downloads the user data information; after downloading, the data in the user data information is extracted, and the user data information is authorized using the certificate of the active network. Next, the resources of the authentication center of the active network are requested to start authorization. After the authorization is completed, the authorization resources are released, and the user data information writes the authorization information and sends it to the next network node; The relevant security credential information carried in the active packet will be extracted when the active packet reaches the active node. The authentication certificate will be obtained from the authentication center based on the credential information, and the authentication certificate will be authenticated to check whether the certificate is valid. If invalid, the packet execution will be rejected. If valid, the verification node uses the end subject public key to verify the signature it generates for the static part of the active packet. Through this step, the operational security and stability of the active network can be effectively improved, and the generation of malicious data can be reduced.
[0021] S104, organizing and transmitting data information of the active network; Exemplarily, in an embodiment of the present invention, the verification processing data information of the data sending end and the receiving end of the active network is sorted and summarized into a table form; The received data information and active network data information are transmitted to the workbench for management personnel to review and analyze.
[0022] Embodiment 2: Embodiment 2 of the present invention provides a management and control system based on big data. Figure 2 A schematic diagram of the module structure of a management and control system based on big data provided in the second embodiment, such as Figure 2 As shown, the system includes: An optimization management module, used for optimizing active packets of active networks; Verification and analysis module, used for operation verification, analysis and control of active networks; The sorting and transmission module is used to sort and transmit data information.
[0023] In some embodiments of the present invention, the optimization management module includes: Format optimization module, used to optimize the active packet format of the active network; A generation management module, used for managing the generation of active packets of active networks; The process processing module is used to process the generated active network active packets.
[0024] In some embodiments of the present invention, the verification analysis module includes: Verification and analysis module, used to perform operational verification and analysis of active networks; An authorization verification module is used to perform authorization verification management on the active network; The authentication processing module is used to perform data information authentication processing.
[0025] In some embodiments of the present invention, the collating transmission module includes: Arrangement and summarization module, used to organize and summarize data information; The transmission and display module is used for transmission and display management of data information.
[0026] It should be noted that, in this article, relational terms such as first and second, etc. are only used to distinguish one entity or operation from another entity or operation, and do not necessarily require or imply any such actual relationship or order between these entities or operations. Moreover, the terms "include", "comprise" or any other variants thereof are intended to cover non-exclusive inclusion, so that a process, method, article or device including a series of elements includes not only those elements, but also other elements not explicitly listed, or also includes elements inherent to such process, method, article or device.
[0027] Finally, it should be noted that the above description is only a preferred embodiment of the present invention and is not intended to limit the present invention. Although the present invention has been described in detail with reference to the aforementioned embodiments, those skilled in the art can still modify the technical solutions described in the aforementioned embodiments or replace some of the technical features therein by equivalents. Any modification, equivalent replacement, improvement, etc. made within the spirit and principle of the present invention shall be included in the protection scope of the present invention.
Claims
1. A management and control method based on big data, characterized in that: include: Optimize the format and generate control management for active packets of active networks; Process the generated active network active packets; Conduct operational verification, analysis and management of active networks; Organize and transmit data information on active networks.
2. A management and control method based on big data according to claim 1, characterized in that: The format optimization and generation control management of the active packet of the active network includes: Optimize the format of the active packet of the active network so that the content of the active packet includes the following fields: the protocol version number of the active packet, the security mode adopted by the current active packet, the active packet security mode type identification number, the length of the header file of the active packet content, the content length of the entire active packet, other setting options of the active packet, the effective load transmission volume of the active packet, and add the authentication length, authentication, digital signature length, digital signature and decoding binding; After completing the format optimization processing of the active network active packet, the generation control and management of the active network active packet is performed through the digital signature technology.
3. The management and control method based on big data according to claim 1, characterized in that: The process of processing the generated active network active packet includes: After receiving the generated secure active packet, the active node in the active network processes the active packet and verifies the network active packet to determine whether the active packet is an active packet. If it is an active packet, it is processed, otherwise it is discarded.
4. The management and control method based on big data according to claim 1, characterized in that: The operation verification analysis and management of the active network includes: Perform data verification processing on the data sending and receiving ends of the active network, specifically using a hash encryption algorithm for verification processing; After receiving the user data information, the active network downloads the user data information, extracts the features of the data in the user data information after downloading, and uses the certificate of the active network to authorize the user data information. Next, it requests the resources of the authentication center of the active network to start authorization. After the authorization is completed, the authorization resources are released, and the user data information writes the authorization information and sends it to the next network node; The relevant security credential information carried in the active packet will be extracted when the active packet reaches the active node. The authentication certificate will be obtained from the authentication center based on the credential information, and the authentication certificate will be authenticated to check whether the certificate is valid. If it is invalid, the packet execution will be rejected. If it is valid, the verification node will use the end subject public key to verify the signature it generated for the static part of the active packet.
5. The management and control method based on big data according to claim 1, characterized in that: The data information arrangement and transmission of the active network includes: Summarize the data information of the data sending end and the data receiving end of the active network and organize it into a table form; The received data information and active network data information are transmitted to the workbench for management personnel to review and analyze.
6. A management and control system based on big data, characterized by: include: An optimization management module, used for optimizing active packets of active networks; Verification and analysis module, used for operation verification, analysis and control of active networks; The sorting and transmission module is used to sort and transmit data information.
7. A management and control system based on big data according to claim 6, characterized in that: The optimization management module includes: Format optimization module, used to optimize the active packet format of the active network; A generation management module, used for managing the generation of active packets of active networks; The process processing module is used to process the generated active network active packets.
8. The management and control system based on big data according to claim 6, characterized in that: The verification and analysis module comprises: Verification and analysis module, used to perform operational verification and analysis of active networks; An authorization verification module is used to perform authorization verification management on the active network; The authentication processing module is used to perform data information authentication processing.
9. A management and control system based on big data according to claim 6, characterized in that: The arranging and transmitting module comprises: Arrangement and summarization module, used to organize and summarize data information; The transmission and display module is used for transmission and display management of data information.
Citation Information
Patent Citations
Block chain-based mobile terminal authentication management method and device and corresponding mobile terminal
CN107453870A
Intelligent service method based on block chain
CN118041780A
Industrial big data platform system for intelligent supervision
CN119357933A
Block chain-based mobile terminal authentication management method and apparatus, and corresponding mobile terminal
WO2019052281A1