Request routing methods, devices, electronic devices and storage media

By identifying access requests, extracting verification and feature information, and generating temporary verification factors for cryptographic operations, the problem of routing decision failure caused by fixed key leakage in existing technologies is solved, and precise security control of API traffic is achieved.

CN122093084APending Publication Date: 2026-05-26BEIJING QIYI CENTURY SCI & TECH CO LTD

Patent Information

Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
BEIJING QIYI CENTURY SCI & TECH CO LTD
Filing Date
2026-01-06
Publication Date
2026-05-26

AI Technical Summary

Technical Problem

Existing routing schemes rely on authentication keys that are fixed and universally applicable. Once leaked, attackers can forge malicious requests with legitimate signatures in batches, causing routing decisions to fail and making it impossible to effectively distinguish between legitimate and forged requests, resulting in continuous security risks and resource abuse.

Method used

By identifying and intercepting access requests arriving at the application interface, extracting the verification information and request feature information generated by the requester, generating a temporary verification factor based on the pre-stored base key, combining key elements to perform cryptographic operations, generating second verification information, and comparing the two to determine the routing strategy, the verification process of each request is dynamically bound.

Benefits of technology

It enables precise security control over application interface traffic, ensuring that even if an attacker obtains the base key, they cannot forge a valid signature, thus improving the robustness and defense capabilities of API security routing and preventing misdirection.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN122093084A_ABST
    Figure CN122093084A_ABST
Patent Text Reader

Abstract

This application provides a request routing method, apparatus, electronic device, and storage medium. This application identifies and intercepts access requests arriving at an application programming interface (API) to determine target requests requiring security verification; extracts first verification information and request feature information generated by the requester from the message of the target request; generates a temporary verification factor based on a pre-stored base key and the request feature information; combines at least one key element contained in the target request to obtain data to be verified; performs cryptographic operations on the data to be verified using the temporary verification factor to generate second verification information; compares the first verification information and the second verification information, and determines the routing strategy for the target request based on the comparison result. This achieves precise security control over API traffic.
Need to check novelty before this filing date? Find Prior Art