Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

7 results about "DMZ" patented technology

In computer security, a DMZ or demilitarized zone (sometimes referred to as a perimeter network or screened subnet) is a physical or logical subnetwork that contains and exposes an organization's external-facing services to an untrusted network, usually a larger network such as the Internet. The purpose of a DMZ is to add an additional layer of security to an organization's local area network (LAN): an external network node can access only what is exposed in the DMZ, while the rest of the organization's network is firewalled. The DMZ functions as a small, isolated network positioned between the Internet and the private network and, if its design is effective, allows the organization extra time to detect and address breaches before they would further penetrate into the internal networks.

Subway signal system log intelligent analysis method, device, equipment and medium

PendingCN121644207AAlarmsSecuring communicationData aggregatorNetwork Compartment
The invention relates to a subway signal system log intelligent analysis method, device and equipment and a medium. The method is realized by constructing a multi-stage security architecture of an internal security network-network isolation region DMZ-public network, firstly, log data preprocessing and encryption are carried out in the network isolation region DMZ, secondly, reverse communication is blocked through unidirectional transmission hardware, and then, accurate analysis is carried out by utilizing a large model association version demand and log keywords, so that the log data encryption is realized. And finally, establishing a global knowledge base to mine common hidden dangers. Compared with the prior art, the method has the advantages that on the premise that absolute safety of the core production network is ensured, log data aggregation of the whole road network is achieved, and intelligent real-time analysis and early warning are carried out.
Owner:CASCO SIGNAL LTD

A meteorological data external service process and system based on DMZ security isolation

This invention discloses a meteorological data external service process and system based on DMZ secure isolation. The process includes the synchronous acquisition of shared meteorological data, meteorological data processing, and external service. A DMZ zone is introduced between the meteorological intranet and the Internet as an isolation zone for data transmission. Then, data element extraction and regional clipping are performed. The system includes a hardware support unit, a software support unit, a data service unit, a business support unit, a business application unit, and a user unit. The hardware support unit ensures the security of the intranet and DMZ through a tiered, one-way access policy via firewall. The software support unit supports the operation and service of upper-layer applications. The data service unit is responsible for acquiring meteorological data and industry-specific data. The business support unit provides business support. The business application unit provides meteorological data services and sharing functions to users. This invention enables secure transmission and efficient sharing of meteorological data for external service systems.
Owner:STATE QIXIANG INFORMATION CENT

Network server connection

The invention relates to a network-server connection. The network-server connection (1) comprises an IoT network (2) and a DMZ server (3), wherein the IoT network (2) is configured to transmit IoT data (7, 9) to the DMZ server (3). Furthermore, the DMZ server (3) is configured to grant a user (6) of the DMZ server (3) access to the IoT data (7, 9).
Owner:ZF FRIEDRICHSHAFEN AG

An airport comprehensive energy management platform based on cloud deployment

The application discloses an airport comprehensive energy management platform based on cloud deployment, which comprises a server, storage resources, a bastion host, a cloud firewall security component, a safe access area and a DMZ external connection area; the server and the storage resources are arranged on an airport private cloud, the server adopts IaaS infrastructure level service provided by the airport private cloud, and the storage resources comprise cloud storage resources and a cloud database; the bastion host and the cloud firewall security component are used for operation and maintenance management and security protection of the server and the storage resources; the safe access area is used for connecting an energy subsystem through an energy data private network; and the DMZ external connection area is used for connecting an Internet of Things wireless metering instrument through an operator private network and connecting a third party platform or system through an Internet VPN tunnel; the application realizes panoramic monitoring, optimal scheduling and intelligent operation and maintenance of comprehensive energy by means of flat management of the airport energy subsystem on the basis of the airport private cloud and the integrated service network.
Owner:NR ELECTRIC CO LTD +1

Monitoring and data acquisition method and system based on MQTT edge-to-service

The invention discloses an SCADA method and system based on MQTT edge-to-service, and belongs to the technical field of industrial Internet of Things. The system adopts a five-layer architecture of an equipment layer, an edge layer, a centralized management and control layer, a development layer and a security isolation layer. The method is characterized in that edge nodes collect multi-protocol industrial equipment data at high frequency; the method comprises the following steps: integrating MQTTBroker and sFTP services by an edge controller deployed in a DMZ area to realize data aggregation, edge calculation and offline caching, and uploading data to a central server through independent dual channels; and the central server carries out centralized monitoring, analysis and instruction issuing. And the development layer realizes configuration multiplexing through a unified information model. The safety level is combined with DMZ isolation, double firewalls and transmission encryption to construct deep protection. The system solves the problems that a traditional SCADA system is difficult to expand, poor in heterogeneous compatibility, low in remote operation and maintenance efficiency and the like, and distributed monitoring which is low in cost, high in safety and easy to expand is achieved.
Owner:HONGJI TECHNOLOGY (SHANGHAI) CO LTD

Communication method, system and equipment of private edge cloud and cloud service platform, and medium

The invention provides a communication method, system and device for a private edge cloud and a cloud service platform and a medium, and relates to the technical field of cloud computing network communication, and the method comprises the steps: initiating an access request for the cloud service platform from an internal trusted network of the private edge cloud platform, transmitting the access request to a network non-military area of the private edge cloud platform through the first VPN tunnel; in a network non-military area of the private edge cloud platform, auditing and forwarding the access request to generate outbound traffic; and transmitting the outbound traffic from the network non-military area of the private edge cloud platform to the network non-military area of the cloud service platform through the second VPN tunnel, so that the cloud service platform provides response and / or service based on the outbound traffic. Based on the hierarchical network architecture, the private edge cloud can safely utilize resources and services of the cloud service platform, and the management efficiency and the operation and maintenance capability of the private edge cloud are improved.
Owner:SUPCON TECH CO LTD

Information security protection system for a power business environment management and control system

This invention relates to an information security protection system for a power business environment management and control system, comprising an external network unit, a DMZ zone, a security zone, and an internal information network. The external network unit is connected to the DMZ zone via a secure access platform and to the security zone via a firewall. The security zone is connected to the internal information network via isolation equipment. The DMZ zone includes a front-end access service module, a mobile message push service module, and an instant messaging service module. The external network unit includes external users and internal users. The security zone includes a back-end access service module, a basic service module, a platform service module, and an application service module. The internal information network includes a platform database, a marketing database, a data acquisition module, a data middleware platform, and an operation service module. This invention effectively improves the information security protection level of the power business environment management and control system, ensuring reliable system operation and data security.
Owner:STATE GRID FUJIAN ELECTRIC POWER CO LTD