Asset management method and device, electronic equipment and storage medium
Automatically manage IP assets through the server-side scanning tool, solving the problem of cumbersome IP asset management process and inability to understand the changes in time in the existing technology, and achieving efficient and real-time IP asset management.
Patent Information
- Application Number
- CN202510234100.9
- Authority / Receiving Office
- CN · China
- Patent Type
- Applications(China)
- Current Assignee / Owner
- Filing Date
- 2025-02-28
- Publication Date
- 2025-05-30
AI Technical Summary
The existing IP asset management system has cumbersome processes and requires manual modification of the database and system code. It is time-consuming and easy to introduce errors. It is impossible to understand the changes in IP assets in a timely manner, resulting in untimely detection of problems and lagging responses.
Scan the IPs in the network through the server-side scanning tool, obtain the scanning results, automatically add or delete IP assets, reduce manual operations, and promptly discover changes in IP assets.
It has achieved the reduction of manual operations, timely discovery of changes in IP assets, improve asset management efficiency, and improve the security, real-time and effectiveness of IP assets.
Smart Images

Figure CN120075052A_ABST
Abstract
Description
Technical Field
[0001] This application relates to the field of computer technology, and particularly to an asset management method, an apparatus, an electronic device, and a storage medium. Background Art
[0002] In the related art, when an IP asset management system manages IP assets, the process is rather cumbersome and usually requires modifying the database and adjusting the system code. Such manual operations are not only time-consuming but also prone to introducing errors. Moreover, whenever an IP asset changes, it depends on engineers to confirm one by one, and it is impossible to timely understand the IP asset change situation, resulting in untimely discovery of problems, lagging response, and inability to timely understand potential vulnerability risks.
[0003] In summary, the technical problems existing in the related art need to be improved. Summary of the Invention
[0004] The main purpose of the embodiments of this application is to propose an asset management method, an apparatus, an electronic device, and a storage medium, aiming to timely discover the change situation of IP assets.
[0005] To achieve the above object, on the one hand, an embodiment of this application proposes an asset management method, and the method includes the following steps:
[0006] Scan the IPs in the network through a scanning tool on the server side to obtain a scanning result, where the scanning result includes a list of response IP addresses, and the list of response IP addresses includes response IP addresses;
[0007] Obtain preset IP assets, where the preset IP assets include preset IP addresses and preset asset information;
[0008] If the preset IP assets do not include the response IP address, add target IP assets on the server side, where the target IP assets include the response IP address and target asset information;
[0009] If the list of response IP addresses does not include the preset IP address, delete the preset IP assets corresponding to the preset IP address from the server side.
[0010] To achieve the above object, on the other hand, an embodiment of this application proposes an asset management apparatus, and the apparatus includes:
[0011] A scanning module, configured to scan the IPs in the network through a scanning tool on the server side to obtain a scanning result, where the scanning result includes a list of response IP addresses, and the list of response IP addresses includes response IP addresses;
[0012] An acquisition module, configured to acquire preset IP assets, where the preset IP assets include a preset IP address and preset asset information;
[0013] A new addition module, configured to, if the preset IP assets do not include the response IP address, add target IP assets to the server side, where the target IP assets include the response IP address and target asset information;
[0014] A deletion module, configured to, if the response IP address list does not include the preset IP address, delete the preset IP assets corresponding to the preset IP address from the server side.
[0015] To achieve the above object, on the other hand, an embodiment of the present application provides an electronic device, where the electronic device includes a memory and a processor, the memory stores a computer program, and when the processor executes the computer program, the foregoing method is implemented.
[0016] To achieve the above object, on the other hand, an embodiment of the present application provides a computer-readable storage medium, where the computer-readable storage medium stores a computer program, and when the computer program is executed by a processor, the foregoing method is implemented.
[0017] The embodiments of the present application at least include the following beneficial effects: The present application provides an asset management method, device, electronic device, and storage medium. This solution scans the IPs in the network through a scanning tool on the server side to obtain a scanning result, which helps to reduce manual operations, timely discover IP asset change situations, improve asset management efficiency, acquire preset IP assets, and if the preset IP assets do not include the response IP address, add target IP assets to the server side, which helps to respond to IP asset change situations in a timely manner and add new IP assets. If the response IP address list does not include the preset IP address, delete the preset IP assets corresponding to the preset IP address from the server side, respond to IP asset change situations in a timely manner, and delete invalid IP assets, which helps to understand the security status of IP assets and improve the security, timeliness, and effectiveness of IP assets. Description of the Drawings
[0018] Figure 1 is a flowchart of the asset management method provided by an embodiment of the present application;
[0019] Figure 2 is a flowchart of the update step of the asset management method provided by an embodiment of the present application;
[0020] Figure 3 is a flowchart of the batch import step of the asset management method provided by an embodiment of the present application;
[0021] Figure 4It is a specific implementation flowchart when the asset management method provided by the embodiments of this application is applied to the server side for asset management in the asset management system;
[0022] Figure 5 It is a schematic diagram of adding dynamic fields provided by the embodiments of this application;
[0023] Figure 6 It is a schematic diagram of a new asset after adding dynamic fields provided by the embodiments of this application;
[0024] Figure 7 It is an example diagram of IP asset field statistics and screening provided by the embodiments of this application;
[0025] Figure 8 It is a schematic diagram of a batch import form provided by the embodiments of this application;
[0026] Figure 9 It is a schematic diagram of the verification result of IP asset form data provided by the embodiments of this application;
[0027] Figure 10 It is a schematic diagram of the result of batch import of IP assets provided by the embodiments of this application;
[0028] Figure 11 It is a flowchart of asset discovery provided by the embodiments of this application;
[0029] Figure 12 It is a schematic diagram of the asset discovery management page provided by the embodiments of this application;
[0030] Figure 13 It is a schematic diagram of an asset discovery task for scanning asset IPs provided by the embodiments of this application;
[0031] Figure 14 It is a schematic diagram of the task record for scanning asset IPs provided by the embodiments of this application;
[0032] Figure 15 It is a schematic diagram of the scanning result for scanning asset IPs provided by the embodiments of this application;
[0033] Figure 16 It is a schematic diagram of the task configuration for scanning IP addresses provided by the embodiments of this application;
[0034] Figure 17 It is a schematic diagram of the task record for scanning IP addresses provided by the embodiments of this application;
[0035] Figure 18 It is a schematic diagram of the scanning result for scanning IP addresses provided by the embodiments of this application;
[0036] Figure 19 It is a schematic diagram of an asset discovery task for port version scanning provided by the embodiments of this application;
[0037] Figure 20 It is a schematic diagram of the scanning result of port version scanning provided by an embodiment of the present application;
[0038] Figure 21 It is a schematic diagram of update prompt provided by an embodiment of the present application;
[0039] Figure 22 It is a schematic diagram of replacement result provided by an embodiment of the present application;
[0040] Figure 23 It is a schematic diagram of the IP asset management page provided by an embodiment of the present application;
[0041] Figure 24 It is a schematic diagram of the large screen page provided by an embodiment of the present application;
[0042] Figure 25 It is a schematic diagram of the software information management page provided by an embodiment of the present application;
[0043] Figure 26 It is a schematic diagram of the label management page provided by an embodiment of the present application;
[0044] Figure 27 It is a schematic diagram of the business system management interface provided by an embodiment of the present application;
[0045] Figure 28 It is a schematic diagram of the new business system page provided by an embodiment of the present application;
[0046] Figure 29 It is a schematic diagram of the page of the result of importing penetration test report data into the business system provided by an embodiment of the present application;
[0047] Figure 30 It is a schematic diagram of the structure of the asset management device provided by an embodiment of the present application;
[0048] Figure 31 It is a schematic diagram of the hardware structure of the electronic device provided by an embodiment of the present application. Detailed implementation manners
[0049] In order to make the objectives, technical solutions and advantages of the present application clearer, the present application will be further described in detail below with reference to the accompanying drawings and embodiments. It should be understood that the specific embodiments described herein are only used to explain the present application and are not used to limit the present application. When the following description relates to the accompanying drawings, unless otherwise indicated, the same numbers in different drawings represent the same or similar elements. The implementation manners described in the following exemplary embodiments do not represent all implementation manners consistent with the embodiments of the present application. They are only examples of devices and methods consistent with some aspects of the embodiments of the present application detailed in the appended claims.
[0050] It can be understood that the terms "first", "second", etc. used in this application may be used herein to describe various concepts, but unless otherwise specified, these concepts are not limited by these terms. These terms are only used to distinguish one concept from another. For example, without departing from the scope of the embodiments of this application, the first information may also be referred to as the second information, and similarly, the second information may also be referred to as the first information. Depending on the context, the words "if", "when" as used herein may be interpreted as "when...", "while...", or "in response to determining".
[0051] The terms "at least one", "a plurality of", "each", "any one", etc. used in this application, at least one includes one, two or more than two, a plurality of includes two or more than two, each refers to each of the corresponding plurality, and any one refers to any one of the plurality.
[0052] Unless otherwise defined, all technical and scientific terms used herein have the same meaning as commonly understood by those of ordinary skill in the technical field to which this application belongs. The terms used herein are only for the purpose of describing the embodiments of this application and are not intended to limit this application.
[0053] Before elaborating on the embodiments of this application in detail, some nouns and terms involved in the embodiments of this application are first explained, and the nouns and terms involved in the embodiments of this application are subject to the following explanations.
[0054] 1) Internet Protocol (IP), a set of rules and standards for transmitting data packets in a network.
[0055] In the related art, when an IP asset management system manages IP assets, the process is rather cumbersome and usually requires modifying the database and adjusting the system code. Such manual operations are not only time-consuming but also prone to introducing errors. Moreover, whenever an IP asset changes, it relies on engineers to confirm one by one, and it is impossible to promptly understand the changes in IP assets, resulting in untimely discovery of problems, lagging response, and inability to promptly understand potential vulnerability risks.
[0056] In summary, the technical problems existing in the related art need to be improved.
[0057] In view of this, an asset management method, device, equipment and medium are provided in an embodiment of the present application. The solution scans IPs in the network through a scanning tool on the server side to obtain a scanning result, which helps to reduce manual operations, timely detect changes in IP assets, improve asset management efficiency, and obtain preset IP assets. If the preset IP assets do not include the responding IP address, target IP assets are newly added on the server side, which helps to respond to changes in IP assets in a timely manner and add new IP assets. If the responding IP address list does not include the preset IP address, the preset IP assets corresponding to the preset IP address are deleted from the server side to respond to changes in IP assets in a timely manner and delete invalid IP assets, which helps to understand the security status of IP assets and improve the security, real-time and effectiveness of IP assets.
[0058] The asset management method provided in an embodiment of the present application relates to the field of computer technology. The asset management method provided in an embodiment of the present application can be applied to a terminal, can also be applied to a server, or can be software running on a terminal or a server. In some embodiments, the terminal can be a smart phone, a tablet computer, a notebook computer, a desktop computer, a smart speaker, a smart watch, a vehicle-mounted terminal, etc., but is not limited thereto; the server side can be configured as an independent physical server, can also be configured as a server cluster or a distributed system composed of multiple physical servers, or can be configured as a cloud server providing basic cloud computing services such as cloud services, cloud databases, cloud computing, cloud functions, cloud storage, network services, cloud communications, middleware services, domain name services, security services, CDN, and big data and artificial intelligence platforms. The server can also be a node server in a blockchain network; the software can be an application implementing the asset management method, etc., but is not limited to the above forms.
[0059] The present application can be used in many general or special computer system environments or configurations. For example: personal computers, server computers, handheld or portable devices, tablet-type devices, multi-processor systems, microprocessor-based systems, set-top boxes, programmable consumer electronic devices, network PCs, small computers, large computers, distributed computing environments including any of the above systems or devices, and so on. The present application can be described in the general context of computer-executable instructions executed by a computer, such as program modules. Generally, program modules include routines, programs, objects, components, data structures, etc. that perform specific tasks or implement specific abstract data types. The present application can also be practiced in a distributed computing environment where tasks are performed by remote processing devices connected through a communication network. In a distributed computing environment, program modules can be located in local and remote computer storage media including storage devices.
[0060] It should be noted that in each specific embodiment of the present application, when it comes to performing relevant processing based on data related to the user's identity or characteristics, such as user information, user behavior data, user historical data, and user location information, the user's permission or consent will be obtained first. Moreover, the collection, use, and processing of these data will comply with relevant laws, regulations, and standards. In addition, when the embodiments of the present application need to obtain the user's sensitive personal information, the user's separate permission or separate consent will be obtained through methods such as pop-up windows or jumping to a confirmation page. After clearly obtaining the user's separate permission or separate consent, the necessary user-related data for the normal operation of the embodiments of the present application will be obtained.
[0061] Figure 1 is an optional flowchart of the asset management method provided by the embodiments of the present application. Figure 1 The method in may include but is not limited to steps S101 to S106.
[0062] Step S101, scan the IPs in the network through the scanning tool on the server side to obtain the scanning result.
[0063] Specifically, the scanning result includes a list of responsive IP addresses, the list of responsive IP addresses includes responsive IP addresses, and the scanning tool includes one of a PING scanning tool, an ARP scanning tool, a port scanning tool, or a port version scanning tool.
[0064] It can be understood that different scanning tools correspond to different scanning results.
[0065] Optionally, the preset IP assets can be scanned through the scanning tool on the server side to obtain the scanning result; or the alive IP addresses in the IP address segment can be scanned through the scanning tool on the server side to obtain the scanning result.
[0066] In some embodiments, the IPs in the network are scanned through the PING scanning tool or the ARP scanning tool on the server side to obtain the scanning result.
[0067] Optionally, the IPs in the network are scanned through the port scanning tool on the server side to obtain the scanning result. Among them, the scanning result includes a list of responsive IP addresses and open port information;
[0068] Optionally, the IPs in the network are scanned through the port version scanning tool on the server side to obtain the scanning result. Among them, the scanning result includes a list of responsive IP addresses, open port information, and the service version running on the port.
[0069] It should be noted that the present application does not specifically limit the triggering method of scanning, and can be flexibly selected according to the actual detection needs. Exemplarily, the scanning can be manually controlled by the user, or can be automatically performed according to the scanning tool and scanning time preset in the asset discovery task.
[0070] Specifically, when the scanning is manually controlled by the user and the scanning tool and scanning time are preset, the scanning target network and scanning tool can be selected through the newly added scanning page.
[0071] In some embodiments, in response to the second instruction, the scanning target network and scanning tool are displayed on the newly added scanning page; the IPs in the scanning target network are scanned by the scanning tool on the server side.
[0072] It should be noted that this embodiment includes the step of adding IP assets.
[0073] In some embodiments, in response to the user's input operation, the newly added IP asset information input by the user is displayed on the newly added asset page. Among them, the newly added IP asset information includes the response IP address.
[0074] Furthermore, in response to the first instruction, the newly added IP asset information is displayed and saved on the newly added asset page. Among them, the first instruction is triggered when the user clicks, double-clicks or selects the add control on the newly added asset page, and is used to save the newly added IP asset information currently displayed on the newly added asset page.
[0075] In this embodiment, the IPs in the network are scanned by the scanning tool on the server side to obtain the scanning result, which is beneficial to reducing manual operations, improving the asset management efficiency, and is beneficial to timely discovering the changes of IP assets.
[0076] Step S102, obtain the preset IP assets.
[0077] Specifically, the preset IP assets include the preset IP address and the preset asset information.
[0078] In some embodiments, the server side obtains the preset IP assets from the database or cloud storage.
[0079] It can be understood that the preset IP assets refer to the existing IP assets stored on the server side.
[0080] The present application does not limit the number of the preset IP assets. The preset IP assets can include only a single IP asset or can include multiple IP assets.
[0081] In this embodiment, obtaining the preset IP assets prepares for subsequent IP asset verification.
[0082] Step S103, if the preset IP assets do not contain the response IP address, add the target IP assets on the server side.
[0083] Specifically, the target IP assets include the response IP address and the target asset information. The target IP assets are used to synchronously add IP assets according to the scan results after asset scanning. The scan results also include at least one of the open port information and the service version running on the port.
[0084] In some embodiments, if the preset IP assets do not contain the response IP address, add the target IP assets on the server side according to the response IP address.
[0085] It can be understood that if the preset IP assets do not contain the response IP address, there are IP assets that have not been stored. Therefore, add the target IP assets on the server side according to the response IP address. Among them, the target asset information of the target IP assets can be input by the user, or the target asset information of the target IP assets can be set by the system default.
[0086] It should be noted that if the preset IP assets do not contain the response IP address after the scan is completed, the response IP address and the add control are displayed on the scan result page. Among them, the add control corresponds to the response IP address one by one.
[0087] Optionally, in response to the trigger operation of the add control on the scan result page, the response IP address is displayed on the new asset page.
[0088] In some embodiments, in response to the user's input operation, the target asset information input by the user and the response IP address are displayed on the new asset page.
[0089] Furthermore, add the target IP assets on the server side according to the response IP address.
[0090] In some embodiments, if the preset IP assets contain the response IP address, update the corresponding information of the preset asset information according to at least one of the open port information and the service version running on the port on the server side.
[0091] Among them, both the open port information and the service version running on the port correspond to the IP assets. That is to say, both the open port information and the service version running on the port correspond to the IP address, and both the open port information and the service version running on the port correspond to the asset information.
[0092] Optionally, in response to the third instruction, display the response IP address, the preset asset information corresponding to the response IP address, the open port information corresponding to the preset asset information, and the service version running on the port on the scan result page; in response to the edit operation on the scan result page, display the response IP address, the corresponding preset asset information, the open port information, and the service version running on the port on the edit asset page; in response to the fourth instruction, display the open port information and the service version running on the port on the edit asset page, and save the open port information and the service version running on the port as the software information running on the open port corresponding to the preset asset information.
[0093] Optionally, in response to the fifth instruction, display the response IP address, the corresponding preset asset information, and the open port information on the scan result page; in response to the edit operation on the scan result page, display the response IP address, the corresponding preset asset information, and the open port information on the edit asset page; in response to the sixth instruction, display the open port information on the edit asset page, and save the open port information as the open port information corresponding to the preset asset information.
[0094] It can be understood that after adding the target IP asset, the preset IP assets include the target IP asset.
[0095] In this embodiment, if the preset IP assets do not include the response IP address, add the target IP asset on the server side, which is beneficial to discovering IP asset changes and making timely responses. Adding IP assets is beneficial to understanding the security status of IP assets and improving the security, real-time performance, and effectiveness of IP assets.
[0096] Step S104, if the response IP address list does not include the preset IP address, delete the preset IP asset corresponding to the preset IP address from the server side.
[0097] It can be understood that if the response IP address list does not include the preset IP address, there are unresponsive preset IP assets, so it is necessary to delete the unresponsive preset IP assets.
[0098] In some embodiments, if the response IP address list does not include the preset IP address, delete the preset IP asset corresponding to the preset IP address from the server side.
[0099] In this embodiment, if the response IP address list does not include the preset IP address, delete the preset IP asset corresponding to the preset IP address from the server side, which is beneficial to discovering IP asset changes and making timely responses. Deleting invalid IP assets is beneficial to understanding the security status of IP assets and improving the security, real-time performance, and effectiveness of IP assets.
[0100] Steps S101 to S104 illustrated in the embodiments of the present application scan the IPs in the network through a scanning tool on the server side to obtain a scanning result, which is beneficial to reducing manual operations, timely discovering changes in IP assets, improving the efficiency of asset management, obtaining preset IP assets. If the preset IP assets do not include the responding IP address, a target IP asset is newly added on the server side, which is beneficial to promptly responding to changes in IP assets and adding new IP assets. If the responding IP address list does not include the preset IP address, the preset IP asset corresponding to the preset IP address is deleted from the server side to promptly respond to changes in IP assets and delete invalid IP assets, which is beneficial to understanding the security status of IP assets and improving the security, real-time performance, and effectiveness of IP assets.
[0101] Please refer to Figure 2 , in some embodiments, the asset management method provided by the embodiments of the present application further includes an update step, and the update step may include but is not limited to steps S201 to S203:
[0102] Step S201, if the preset IP asset includes the responding IP address, in response to the third instruction, display the responding IP address, the corresponding preset asset information, the open port information, and the service version of the port operation on the scanning result page.
[0103] Specifically, after the scanning is completed, the scanning result further includes the open port information and the service version of the port operation, and the third instruction is triggered when the preset IP asset includes the responding IP address, and is used to display the obtained responding IP address, the corresponding preset asset information, the open port information, and the service version of the port operation.
[0104] In step S201 of some embodiments, if the preset IP asset includes the responding IP address, the software information of the open port operation corresponding to the preset asset information may be updated according to the open port information of the scanning result and the service version of the port operation.
[0105] Optionally, display the responding IP address, the preset asset information corresponding to the responding IP address, the open port information corresponding to the responding IP address, the service version of the port operation, and an editing control on the scanning result page of the server side.
[0106] Among them, the preset asset information corresponds to the responding IP address, the open port information corresponds to the preset asset information (responding IP address), and the service version of the port operation corresponds to the open port information.
[0107] It should be noted that if the preset IP asset does not include the responding IP address, display the responding IP address, the corresponding preset asset information, the open port information, the service version of the port operation, and an adding control on the scanning result page of the server side.
[0108] It can be understood that if the scan result does not include the service version of the port operation, but includes the open port information and the preset IP assets do not contain the response IP address, the response IP address, the corresponding preset asset information, the open port information, and the add control are displayed on the scan result page on the server side.
[0109] Specifically, in response to the fifth instruction, the response IP address, the corresponding preset asset information, the open port information, and the service version of the port operation are displayed on the scan result page. Among them, after the scan is completed, the scan result also includes the open port information, and the fifth instruction is triggered when the preset IP assets contain the response IP address, and is used to display the scanned response IP address, the corresponding preset asset information, and the open port information.
[0110] In this embodiment, if the preset IP assets contain the response IP address, in response to the third instruction, the response IP address, the corresponding preset asset information, the open port information, and the service version of the port operation are displayed on the scan result page, which is beneficial to clearly and intuitively display the scan result, is beneficial for the user to understand the change situation of the IP assets, and prepares for the subsequent update of the IP asset information.
[0111] Step S202, in response to the edit operation on the scan result page, the response IP address, the corresponding preset asset information, the open port information, and the service version of the port operation are displayed on the edit asset page.
[0112] The present application does not limit the edit operation on the scan result page. Optionally, the edit operation on the scan result page may include the user triggering the edit control on the scan result page, or may also include the system automatically triggering the edit control on the scan result page.
[0113] In step S202 of some embodiments, after the user triggers the edit control on the scan result page, the response IP address, the corresponding preset asset information, the open port information, and the service version of the port operation are displayed on the edit asset page.
[0114] Optionally, the edit control corresponds to a single response IP address. After the edit control is triggered, the response IP address, the preset asset information corresponding to the response IP address, the open port information corresponding to the response IP address, and the service version of the port operation are displayed on the edit asset page.
[0115] It can be understood that if the scan result does not include the service version of the port operation and includes the open port information, in response to the edit operation on the scan result page, the response IP address, the preset asset information corresponding to the response IP address, and the open port information are displayed on the edit asset page.
[0116] In this embodiment, in response to an edit operation on the scan result page, the response IP address, the corresponding preset asset information, the open port information, and the service version running on the port are displayed on the edit asset page, which is beneficial for users to intuitively edit IP assets, understand the IP asset situation, and clearly and intuitively manage IP assets.
[0117] Step S203: In response to the fourth instruction, display the open port information and the service version running on the port on the edit asset page, and save the open port information and the service version running on the port as the software information of the open port running corresponding to the preset asset information.
[0118] Specifically, the software information includes the service version.
[0119] Specifically, the fourth instruction is triggered when the scan result includes the service version running on the port and the open port information, and the user clicks, double-clicks, or selects the save control on the edit asset page, and is used to display and save the open port information and the service version running on the port.
[0120] In step S203 of some embodiments, display the open port information of the scan result on the edit asset page, and save the open port information and the service version running on the port as the service version of the software information of the open port running corresponding to the preset asset information.
[0121] Among them, when saving the open port information and the service version running on the port as the software information of the open port running corresponding to the preset asset information, the system will pop up a prompt page to ask whether to set the development port as the scan result of asset discovery. If the confirmation control is triggered, the save is successful; otherwise, return to the edit asset page to display the open port information of the scan result.
[0122] It can be understood that if the scan result does not include the service version running on the port but includes the open port information, in response to the sixth instruction, display the open port information on the edit asset page, and save the open port information as the open port information corresponding to the preset asset information. Among them, the sixth instruction is triggered when the user clicks, double-clicks, or selects the save control on the edit asset page, and the scan result does not include the service version running on the port but includes the open port information, and is used to display and save the open port information. The software information also includes the open port information.
[0123] In this embodiment, in response to the fourth instruction, display the open port information and the service version running on the port on the edit asset page, and save the open port information and the service version running on the port as the software information of the open port running corresponding to the preset asset information, which is beneficial for users to intuitively update IP asset information, improve the security, real-time performance, and effectiveness of IP assets, and enhance the user experience.
[0124] Please refer toFigure 3 , in some embodiments, the asset management method provided by the embodiments of the present application further includes a batch import step, and the batch import step may include, but is not limited to, steps S301 to S304:
[0125] Step S301, obtain a duplication strategy.
[0126] Specifically, the duplication strategy includes one of an ignore strategy and an update strategy. The duplication strategy is used for processing duplicate information when adding new IP assets. The ignore strategy is used to ignore duplicate information when adding new IP assets, and the update strategy is used to update duplicate information when adding new IP assets.
[0127] In step S301 of some embodiments, obtain a predetermined duplication strategy; or, determine the duplication strategy when adding new IP assets.
[0128] Step S302, generate new IP asset information according to the asset table.
[0129] Specifically, the new IP asset information includes a new IP address and new asset information, and the new IP asset is used for adding IP assets individually or in batches.
[0130] In step S302 of some embodiments, new IP assets can be added in batches through the asset table, and new IP asset information is generated according to the asset table.
[0131] It can be understood that new IP assets can also be added individually by the user.
[0132] In this embodiment, generating new IP asset information according to the asset table is beneficial to adding new IP assets in batches, improving the efficiency of adding new IP assets, reducing manual operations, and reducing manual errors.
[0133] Step S303, if the new IP asset information does not include a preset IP address, save the new IP asset information.
[0134] Specifically, the preset IP asset includes a preset IP address and preset asset information.
[0135] In step S303 of some embodiments, if the new IP asset information does not include a preset IP address, there is no IP duplication between the new IP asset information and the existing IP assets (i.e., the preset IP assets).
[0136] Step S304, if the new IP asset information includes a preset IP address and the duplication strategy is the update strategy, update the preset asset information corresponding to the preset IP address according to the new asset information.
[0137] In step S304 of some embodiments, if the newly added IP asset information includes a preset IP address and the duplicate policy is the update policy, update the preset asset information corresponding to the preset IP address according to the newly added asset information.
[0138] Wherein, if the newly added IP asset information includes a preset IP address and the duplicate policy is the ignore policy, ignore the preset IP address and do not update the preset asset information.
[0139] In this embodiment, if the newly added IP asset information includes a preset IP address and the duplicate policy is the update policy, updating the preset asset information corresponding to the preset IP address according to the newly added asset information is beneficial to improving the consistency and accuracy of IP assets, reducing manual intervention and operation errors, and improving the efficiency of IP asset management.
[0140] Taking the server side as the asset management system as an example, Figure 4 is a specific implementation flowchart when the asset management method provided by the embodiments of the present application is applied to the server side as the asset management system for asset management, Figure 4 The method in may include but is not limited to the following steps.
[0141] Step 1, manual input.
[0142] In some embodiments, when a new type of IP asset needs to be added, the fields of the new type of IP asset may not yet exist in the system, resulting in the inability to add the information of the new type of IP asset into the system completely. At this time, the dynamic field function can be used to solve the problem.
[0143] Among them, the process of adding a new type of IP asset is as follows:
[0144] 1. Data preparation: Find out the field names that do not yet exist in the system (such as: responsible person, expiration time);
[0145] 2. Add dynamic fields: Add the fields prepared in the first step into the system in the "field management" function;
[0146] 3. Add assets: After adding the fields, the assets can be added into the system through manual entry or batch import to complete the addition of the new type of IP asset.
[0147] Exemplarily, the schematic diagram of adding dynamic fields is as Figure 5 shown, and the schematic diagram of the newly added asset after adding dynamic fields is as Figure 6 shown, where the red box indicates the newly added fields, and the example diagram of IP asset field statistics and screening is as Figure 7 shown.
[0148] Among them, through the dynamic field function, new IP asset types can be quickly supported, or custom fields can be added to existing IP asset types. This flexibility makes asset management more flexible and efficient, and can easily meet the changing business needs.
[0149] Step 2, batch import.
[0150] Among them, the data verification function is supported during batch import, and the verification result of each IP asset is given. Specific error information will also be given for the IP assets that fail the verification.
[0151] Optionally, the operation when IP assets are repeated during batch import (ignore or update) can be selected.
[0152] In some embodiments, batch import is implemented through a table.
[0153] Exemplarily, the schematic diagram of the batch import table is as Figure 8 shown. Among them, the red box represents the newly added dynamic field. The schematic diagram of the IP asset table data verification result is as Figure 9 shown, and the schematic diagram of the IP asset batch import result is as Figure 10 shown. Among them, "X" is an example character, and the corresponding number can be filled in for "X" or "*" according to actual needs.
[0154] Step 3, asset discovery.
[0155] By using a network scanning tool to scan the IP survival status in the network, the change situation of IP assets can be discovered in a timely and efficient manner;
[0156] The "PING scan", "ARP scan", "port scan", and "port version scan" scanning methods are supported, and the scanning principles are shown in Table 1.
[0157] Table 1
[0158]
[0159] Exemplarily, the flowchart of asset discovery is as Figure 11 shown, and the schematic diagram of the asset discovery management page is as Figure 12 shown. Among them, "X" is an example character, and the corresponding number can be filled in for "X" or "*" according to actual needs.
[0160] Among them, the process of judging whether the added IP assets are online through the asset discovery function is as follows:
[0161] 1. Data preparation: Add IP assets in asset management.
[0162] 2. Create a new asset discovery task: Set the scan target type to "Asset IP", select "PING Scan" as the scan tool, and select "Execute Immediately" as the task type. Click the "Confirm" button to save the task, and the system will automatically execute this task.
[0163] 3. View the results: View the results after the task is completed and provide the response results for each IP.
[0164] Exemplarily, the schematic diagram of the asset discovery task for scanning asset IPs is as Figure 13 shown. The schematic diagram of the task record for scanning asset IPs is as Figure 14 shown. The schematic diagram of the scan results for scanning asset IPs is as Figure 15 shown. Among them, "X" is an example character, and "X" or "*" can be filled with corresponding numbers according to actual needs.
[0165] It should be noted that the asset discovery function can apply different scan target types.
[0166] In some embodiments, the steps for scanning for live IP addresses in an IP address segment through the asset discovery function are as follows:
[0167] 1. Data preparation: The scanned IP address segment is: 192.168.X.X / 24;
[0168] 2. Create a new asset discovery task: Set the scan target type to "Custom", fill in "192.168.X.X / 24" for the scan target, select "PING Scan" (other scan methods can be replaced according to the actual network environment) as the scan tool, select "Execute Immediately" as the task type, and the schematic diagram of the task configuration for scanning IP addresses is as Figure 16 shown. Click the "Confirm" button to save the task, and the system will automatically execute this task;
[0169] 3. View the results: View the results after the task is completed.
[0170] Exemplarily, the schematic diagram of the task record for scanning IP addresses is as Figure 17 shown. The schematic diagram of the scan results for scanning IP addresses is as Figure 18 shown. Among them, "X" is an example character, and "X" or "*" can be filled with corresponding numbers according to actual needs.
[0171] Optionally, the steps for updating the software information of IP assets through the asset discovery function are as follows:
[0172] 1. Data preparation: Add IP assets in asset management
[0173] 2. Create a new asset discovery task: Set the scan target type to "Asset IP", select "Port version scan" as the scan tool, and select "Execute immediately" as the task type. Click the "Confirm" button to save the task, and the system will automatically execute this task;
[0174] 3. View the task results: The responding IP addresses will display a list of open ports. If software information running on the open ports is obtained, the software name and version will also be given;
[0175] 4. Update the software information of IP assets: Click the "Edit" button in the operation column of the result row. When prompted whether to set the asset open port information as the scan result, select "OK" (as Figure 21 shown). The old software information of the IP asset will be overwritten (as Figure 22 shown), and after saving, it will be replaced with the data of the scan result.
[0176] Exemplarily, the schematic diagram of the asset discovery task for port version scan is as Figure 19 shown, the schematic diagram of the scan result for port version scan is as Figure 20 shown, the schematic diagram of the update prompt is as Figure 21 shown, and the schematic diagram of the replacement result is as Figure 22 shown. Among them, "X" is an example character, and "X" or "*" can be filled with corresponding numbers according to actual needs.
[0177] Among them, through the asset discovery function, the changes of all IP assets in the network can be recorded. Whether it is addition or deletion, the system can capture and update the asset information in a timely manner, ensuring the timely discovery of the latest asset status and improving management efficiency and security.
[0178] Step 4, Obtain extended information.
[0179] Among them, the extended information includes vulnerability scanning information and software information.
[0180] Furthermore, merge the software information into the corresponding assets.
[0181] Step 5, Asset management.
[0182] Specifically, the asset management system is used to manage various types of IP assets, supporting dynamic fields, full-field filtering, import of extended information (vulnerability information, installed software information), and custom display fields on the page.
[0183] IP assets and business systems support the dynamic field function. When the existing fields do not meet the business requirements, a new field can be added on the page to meet the business requirements. The newly added field also supports field filtering, custom display on the page, and batch import;
[0184] All dynamic field information of IP assets or business systems is stored in JSON format for easy expansion and query.
[0185] When batch importing IP assets, add a column with the same name as the dynamic field name in the table to be imported, and the system will automatically import the data in this column into the IP assets or business systems.
[0186] Exemplarily, the schematic diagram of the IP asset management page is as Figure 23 shown. Among them, "X" is an example character, and "X" or "*" can be filled with corresponding numbers according to actual needs.
[0187] Step 6, large screen display.
[0188] Display IP asset statistical information: the number of assets, the trend of asset changes, and the situation of assets being managed by the bastion host.
[0189] Exemplarily, the schematic diagram of the large screen page is as Figure 24 shown.
[0190] Step 7, import software information.
[0191] Among them, software information refers to the service software information running on the open ports of IP assets, mainly including name, running port (i.e., open port information), and version number information (i.e., service version);
[0192] Optionally, software information can be manually entered, imported through the IP asset extended information import function, or scanned for the service software information running on the open ports of IP assets using the "port version scan" method in asset discovery;
[0193] Furthermore, through the association of IP assets and software information (i.e., both open port information and service version running on the port), it is possible to quickly find out on which IP assets the software is used, and timely update software patches and install new versions of the software for the associated IP assets to protect asset security.
[0194] Exemplarily, the schematic diagram of the software information management page is as Figure 25 shown.
[0195] Among them, through the software information function, the usage situation of the software can be analyzed in detail, and it is possible to quickly locate which IP assets are using a specific software. This helps to timely install the latest patches or upgrade to the new version for relevant assets, ensure that the software always remains in the best state, reduce security risks, and protect assets from potential threats.
[0196] Step 8, associate asset tags.
[0197] Among them, by tagging assets, assets can be classified and retrieved quickly. For example, specific assets can be found according to tags in different dimensions such as asset type, location, status, etc., improving the efficiency of IP asset management.
[0198] Exemplarily, the schematic diagram of the tag management page is as Figure 26 shown.
[0199] Step 9, associate business systems.
[0200] Optionally, when batch importing IP assets, the business system information in the IP assets will be extracted, de-duplicated, and saved in the business system.
[0201] Among them, IP assets belonging to the same business system are classified, supporting dynamic fields, full-field filtering, import of penetration test document data, and custom display fields.
[0202] Exemplarily, the schematic diagram of the business system management interface is as Figure 27 shown, and the schematic diagram of the page for adding a new business system is as Figure 28 shown.
[0203] Step 10, import penetration test reports.
[0204] Exemplarily, the schematic diagram of the page showing the data result of importing penetration test reports into the business system is as Figure 29 shown.
[0205] Among them, by importing the vulnerability scanning results of IP assets and the vulnerability results of penetration test reports of business systems, the overall vulnerability situation can be comprehensively understood.
[0206] Please refer to Figure 30 , the embodiment of the present application also provides an asset management device, which can implement the above asset management method. The device includes:
[0207] A scanning module 3001, configured to scan the IPs in the network through a scanning tool on the server side to obtain a scanning result. The scanning result includes a list of response IP addresses, and the list of response IP addresses includes response IP addresses;
[0208] An acquisition module 3002, configured to acquire preset IP assets, where the preset IP assets include preset IP addresses and preset asset information;
[0209] A new module 3003, configured to, if the preset IP assets do not include the response IP addresses, add target IP assets on the server side. The target IP assets include the response IP addresses and target asset information;
[0210] A deletion module 3004 is configured to delete a preset IP asset corresponding to a preset IP address from a server side if a response IP address list does not include the preset IP address.
[0211] It can be understood that the content in the above method embodiments is applicable to the device embodiments. The functions specifically implemented by the device embodiments are the same as those of the above method embodiments, and the beneficial effects achieved are also the same as those of the above method embodiments.
[0212] An embodiment of the present application further provides an electronic device, which includes a memory and a processor. The memory stores a computer program, and when the processor executes the computer program, the above asset management method is implemented. The electronic device can be any intelligent terminal including a tablet computer, an in-vehicle computer, etc.
[0213] It can be understood that the content in the above method embodiments is applicable to the device embodiments. The functions specifically implemented by the device embodiments are the same as those of the above method embodiments, and the beneficial effects achieved are also the same as those of the above method embodiments.
[0214] Please refer to Figure 31 , Figure 31 which shows the hardware structure of an electronic device according to another embodiment. The electronic device includes:
[0215] A processor 3101, which can be implemented in a general-purpose CPU (Central Processing Unit), a microprocessor, an application-specific integrated circuit (ASIC), or one or more integrated circuits, etc., and is configured to execute relevant programs to implement the technical solutions provided by the embodiments of the present application;
[0216] A memory 3102, which can be implemented in the form of a read-only memory (ROM), a static storage device, a dynamic storage device, or a random access memory (RAM), etc. The memory 3102 can store an operating system and other application programs. When implementing the technical solutions provided by the embodiments of this specification through software or firmware, the relevant program codes are stored in the memory 3102 and are called by the processor 3101 to execute the asset management method of the embodiments of the present application;
[0217] An input / output interface 3103, which is configured to implement information input and output;
[0218] A communication interface 3104 for implementing communication interaction between this device and other devices, which can achieve communication through wired means (such as USB, network cable, etc.) or wireless means (such as mobile network, WIFI, Bluetooth, etc.);
[0219] A bus 3105 for transmitting information between various components of the device (such as a processor 3101, a memory 3102, an input / output interface 3103, and a communication interface 3104);
[0220] Among them, the processor 3101, the memory 3102, the input / output interface 3103, and the communication interface 3104 achieve communication connections with each other inside the device through the bus 3105.
[0221] The embodiment of the present application also provides a computer-readable storage medium, which stores a computer program, and when the computer program is executed by a processor, the above asset management method is implemented.
[0222] It can be understood that the content in the above method embodiments is applicable to the present storage medium embodiment. The function specifically implemented by the present storage medium embodiment is the same as that of the above method embodiments, and the beneficial effects achieved are also the same as those of the above method embodiments.
[0223] As a non-transitory computer-readable storage medium, the memory can be used to store non-transitory software programs and non-transitory computer-executable programs. In addition, the memory can include high-speed random access memory, and can also include non-transitory memory, such as at least one disk storage device, a flash memory device, or other non-transitory solid-state storage devices. In some embodiments, the memory optionally includes a memory remotely set relative to the processor, and these remote memories can be connected to the processor through a network. Examples of the above network include but are not limited to the Internet, an enterprise intranet, a local area network, a mobile communication network, and combinations thereof.
[0224] The asset management method, asset management device, electronic device, and storage medium provided by the embodiment of the present application scan the IPs in the network through a scanning tool on the server side to obtain a scanning result, which is beneficial to reducing manual operations, timely discovering IP asset change situations, improving asset management efficiency, and obtaining preset IP assets. If the preset IP assets do not include the response IP address, then a target IP asset is newly added on the server side, which is beneficial to timely responding to the IP asset change situation and adding new IP assets. If the response IP address list does not include the preset IP address, then the preset IP asset corresponding to the preset IP address is deleted from the server side, timely responding to the IP asset change situation and deleting invalid IP assets, which is beneficial to understanding the security status of IP assets and improving the security, timeliness, and effectiveness of IP assets.
[0225] The embodiments described in the embodiments of the present application are to more clearly illustrate the technical solutions of the embodiments of the present application, and do not constitute a limitation on the technical solutions provided by the embodiments of the present application. As those skilled in the art know, with the evolution of technology and the emergence of new application scenarios, the technical solutions provided by the embodiments of the present application are equally applicable to similar technical problems.
[0226] Those skilled in the art can understand that the technical solutions shown in the figures do not constitute a limitation on the embodiments of the present application, and may include more or fewer steps than those shown in the figures, or combine certain steps, or different steps.
[0227] The device embodiments described above are merely illustrative. The units described as separate components may or may not be physically separated, that is, they may be located in one place, or may be distributed to multiple network units. Some or all of the modules can be selected according to actual needs to achieve the purpose of the solution of this embodiment.
[0228] Those of ordinary skill in the art can understand that all or some of the steps in the methods disclosed above, and the functional modules / units in the systems and devices, can be implemented as software, firmware, hardware, and their appropriate combinations.
[0229] The terms "first", "second", "third", "fourth", etc. (if any) in the specification of the present application and the above-mentioned drawings are used to distinguish similar objects, and do not have to be used to describe a specific order or sequence. It should be understood that the data used in this way can be interchanged under appropriate circumstances, so that the embodiments of the present application described here can be implemented in an order other than those illustrated or described here. In addition, the terms "including" and "having" and any variations thereof are intended to cover non-exclusive inclusion. For example, a process, method, system, product, or device that includes a series of steps or units does not have to be limited to those steps or units clearly listed, but may include other steps or units not clearly listed or inherent to these processes, methods, products, or devices.
[0230] It should be understood that in this application, "at least one (item)" means one or more, and "a plurality" means two or more. "And / or" is used to describe the association relationship of associated objects, indicating that there can be three relationships. For example, "A and / or B" can mean: only A exists, only B exists, and both A and B exist at the same time. Among them, A and B can be singular or plural. The character " / " generally indicates that the associated objects before and after are in an "or" relationship. "At least one (one) of the following" or its similar expressions refer to any combination of these items, including any combination of single item (one) or plural items (ones). For example, at least one (one) of a, b, or c can mean: a, b, c, "a and b", "a and c", "b and c", or "a and b and c", where a, b, c can be single or multiple.
[0231] In several embodiments provided in this application, it should be understood that the disclosed devices and methods can be implemented in other ways. For example, the device embodiments described above are merely illustrative. For example, the above division of units is only a logical function division. In actual implementation, there can be other division methods. For example, multiple units or components can be combined or integrated into another system, or some features can be ignored or not executed. Another point is that the displayed or discussed coupling or direct coupling or communication connection to each other can be through some interfaces. The indirect coupling or communication connection of devices or units can be in electrical, mechanical or other forms.
[0232] The units described above as separate components may or may not be physically separated. The components displayed as units may or may not be physical units, that is, they can be located in one place, or they can be distributed to multiple network units. Some or all of the units can be selected according to actual needs to achieve the purpose of the solution of this embodiment.
[0233] In addition, each functional unit in each embodiment of this application can be integrated in a processing unit, or each unit can exist physically alone, or two or more units can be integrated in one unit. The above integrated units can be implemented in the form of hardware or in the form of software functional units.
[0234] When the integrated unit is implemented in the form of a software functional unit and sold or used as an independent product, it can be stored in a computer-readable storage medium. Based on this understanding, the technical solution of this application, in essence, or the part that contributes to the prior art, or all or part of this technical solution, can be embodied in the form of a software product. This computer software product is stored in a storage medium and includes multiple instructions for causing a computer device (which may be a personal computer, a server, or a network device, etc.) to execute all or part of the steps of the methods in various embodiments of this application. The aforementioned storage medium includes: various media that can store programs, such as USB flash drives, mobile hard disks, read-only memory (ROM), random access memory (RAM), magnetic disks, or optical discs.
[0235] The preferred embodiments of the embodiments of this application have been described above with reference to the accompanying drawings, which does not limit the scope of the rights of the embodiments of this application. Any modifications, equivalent replacements, and improvements made by those skilled in the art without departing from the scope and essence of the embodiments of this application shall be within the scope of the rights of the embodiments of this application.
Claims
1. An asset management method, characterized in that: The method comprises the following steps: Scanning the IP in the network through a scanning tool on the server side to obtain a scanning result, wherein the scanning result includes a response IP address list, and the response IP address list includes the response IP address; Acquire a preset IP asset, wherein the preset IP asset includes a preset IP address and preset asset information; If the preset IP asset does not include the response IP address, then a target IP asset is added on the server side, and the target IP asset includes the response IP address and target asset information; If the response IP address list does not include the preset IP address, the preset IP asset corresponding to the preset IP address is deleted from the server.
2. The method according to claim 1, characterized in that The scanning tool includes one of a PING scanning tool, an ARP scanning tool, a port scanning tool or a port version scanning tool. The scanning tool on the server side scans the IP in the network to obtain the scanning result, including: Scan the IP in the network through the PING scanning tool or ARP scanning tool on the server to obtain the scanning results; Alternatively, the IP in the network is scanned by a port scanning tool on the server side to obtain a scanning result, wherein the scanning result includes a response IP address list and open port information; Alternatively, the IPs in the network are scanned by a port version scanning tool on the server side to obtain scanning results, which include a response IP address list, open port information, and the service version running on the port.
3. The method according to claim 1, characterized in that The method further comprises: In response to the user's input operation, the newly added IP asset information input by the user is displayed on the newly added asset page; In response to the first instruction, the newly added IP asset information is displayed and saved on the newly added asset page.
4. The method according to claim 1, characterized in that: The scanning tool on the server side scans the IP in the network to obtain the scanning results, including: In response to the second instruction, displaying the scan target network and the scan tool on the newly added scan page; The IP in the scan target network is scanned by the scanning tool on the server side.
5. The method according to claim 1, characterized in that The scanning result also includes open port information and the service version running on the port, and the method further includes: If the preset IP asset includes the response IP address, the software information running on the open port corresponding to the preset asset information is updated on the server side according to the open port information and the service version running on the port.
6. The method according to claim 5, characterized in that The updating, at the server side, of the software information running on the open port corresponding to the preset asset information according to the open port information and the service version running on the port includes: In response to the third instruction, displaying the response IP address, the preset asset information corresponding to the response IP address, the open port information and the service version running on the port on the scan result page; In response to the editing operation on the scan result page, displaying the response IP address, the preset asset information corresponding to the response IP address, the open port information and the service version running on the port on the edit asset page; In response to the fourth instruction, the open port information and the service version running on the port are displayed on the edit asset page, and the open port information and the service version running on the port are saved as software information running on the open port corresponding to the preset asset information.
7. The method according to claim 1, characterized in that The method further comprises: Obtain a repeat strategy, wherein the repeat strategy includes one of an ignore strategy or an update strategy; Generate new IP asset information according to the asset table, wherein the new IP asset information includes a new IP address and new asset information; If the newly added IP asset information does not include the preset IP address, then saving the newly added IP asset information; If the newly added IP asset information includes the preset IP address, and the repetition strategy is an update strategy, the preset asset information corresponding to the preset IP address, the response IP address, and the response IP address is updated according to the newly added asset information.
8. An asset management device, characterized in that: The device comprises: A scanning module, used to scan IPs in the network through a scanning tool on the server side to obtain a scanning result, wherein the scanning result includes a response IP address list, and the response IP address list includes the response IP address; An acquisition module, used to acquire a preset IP asset, wherein the preset IP asset includes a preset IP address and preset asset information; A new adding module, used for adding a target IP asset on the server side if the preset IP asset does not include the response IP address, the target IP asset including the response IP address and target asset information; The deleting module is used to delete the preset IP asset corresponding to the preset IP address from the server side if the response IP address list does not include the preset IP address.
9. An electronic device, characterized in that: The electronic device comprises a memory and a processor, the memory stores a computer program, and the processor implements the method according to any one of claims 1 to 7 when executing the computer program.
10. A computer-readable storage medium storing a computer program, characterized in that: When the computer program is executed by a processor, the method according to any one of claims 1 to 7 is implemented.
Citation Information
Patent Citations
Method and apparatus for internet asset scanning discovery and service identification
CN109104395A
Service information updating method, device and equipment and computer readable storage medium
CN111399893A
Network asset monitoring method and network asset monitoring device
CN112202629A
Asset information updating method and device, equipment and medium
CN112261175A
Rapid scanning processing system for IP assets
CN114978614A