Patents
Literature
Hiro is an intelligent assistant for R&D personnel, combined with Patent DNA, to facilitate innovative research.
Hiro

650 results about "Hyper text transport protocol" patented technology

Perception-free WLAN (Wireless Local Area Network) authentication method fusing Portal/Web authentication and MAC (Media Access Control) authentication

The invention discloses a perception-free WLAN (Wireless Local Area Network) authentication method fusing Portal / Web authentication and MAC (Media Access Control) authentication. In the method, the characteristics and advantages of Portal / Web authentication and MAC authentication are fused. The method comprises the following steps: when a user terminal accesses a WLAN network for the first time, a user authenticates via a mobile phone number, and an AP (Access Point) or AC (Access Controller) serving as network access equipment transmits the MAC address information of the user terminal to an authentication server by controlling an HTTP (Hyper Text Transport Protocol) redirecting request of the user, so that the authentication server can correlatively bind user information with the unique identification MAC of the user terminal; when the user accesses the network once again or roams, the AP or AC of a WLAN infrastructure extracts the MAC address of the user terminal while the user terminal is correlating with the network, and network access authentication is completed for the user by using the MAC without perception of the user. The perception-free authentication method does not have any additional software installation requirement on a wireless terminal of the user, so that the user can obtain excellent authentication experience while accessing the WLAN network, and the identity-traceable network security requirement can be met.
Owner:SUZHOU HANMING TECH

Rule creation for computer application screening; application error testing

To facilitate the creation of rules for screening application layer requests to a computer application, a sample space of application layer requests is grouped according to one or more grouping criteria. Each grouping criterion may be a feature of application layer requests such that each grouping contains application layer requests with a common feature. For example, which the application layer requests follow the hyper-text transport protocol (HTTP), a common feature for some groupings could be a common URI pathname extension. A rule set for an application may be used to expose errors in the application. Test requests are constructed each of which violates at least one of the rules. The test requests are passed to the application to see whether the application throws the expected exceptions.
Owner:TELUS COMM COMPANY TELUS LEGAL SERVICES

Method and system for network equipment identity recognition

The invention provides a method for network equipment identity recognition. The method for the network equipment identity recognition includes the following steps: receiving visit requests sent by network equipment through a webpage browser; searching corresponding webpage codes and collection codes according to an address of a target webpage and returning the codes to the webpage browser; receiving an attribute vector set collected from the network equipment and sent by the collection codes through the request of hyper text transport protocol (HTTP); searching attribute groups matched with the attribute vector set from a preset attribute bank based on the attribute vector set; carrying out similarity computation on the attribute vector set and the searched attribute groups and selecting the attribute group which has high similarity with the attribute vector set; and comparing the highest similarity value with a preset new equipment threshold value and an old equipment threshold value and determining the type of the network equipment according to comparison results. The invention further provides a network equipment identity recognition system for realizing the method. The method and the system for network equipment identity recognition can reduce occupation on network equipment resources, and improve visit speed and recognition accuracy.
Owner:ALIBABA GRP HLDG LTD

Dynamic self-adapting method for connection of Web RTC (Real Time Communication) client

The invention provides a dynamic self-adapting method for the connection of a Web RTC (Real Time Communication) client, belonging to the technical fields of a Web RTC, an HTML (Hypertext Markup Language) 5 web Socket and the like. An entity related by the method comprises a Web RTC client, a browser and a real-time communication server, wherein the Web RTC client can support three connecting ways, including an HTTP (Hyper Text Transport Protocol) polling, an HTTP long connection and a Web Socket, and the HTTP long connection comprises an HTTP stream; according to the method, the connecting way with lowest delay of the HTTP polling, the HTTP long connection and the Web Socket can be optimally selected, and the Web RTC client and the real-time communication server are connected by using the connecting way with the lowest delay. Under the premise of guaranteeing timeliness, the communication delay can be reduced, the functions of the client can be enhanced, and the intelligence of the client can be improved.
Owner:BEIJING UNIV OF POSTS & TELECOMM

Synthesis method and system of concurrent request of Web service

The invention discloses a synthesis method and system of a concurrent request of a Web service. The method mainly comprises the following steps of combining information in information arrays into an HTTP (Hyper Text Transport Protocol) request through a request synthesizer and sending the HTTP request into a server end; the HTTP request on a network is sent by a client in each time so that the bandwidth is saved and the performance and the throughput of the server are improved. Through combining client requests by the system, the result data of a plurality of times can be returned in one HTTP response for one time; correspondingly, a plurality of times of HTTP responses are waited and the results are combined; when the result is obtained for one time in the process of waiting for the response for one time, the system is higher in efficiency and is more reliable. Meanwhile, the waiting time of a user can be shortened to a greater extent and the data transmission failure caused by unstable network and the like can be effectively reduced, so that the user experience can be greatly improved and enhanced.
Owner:ZHENJIANG RETECH INFORMATION TECH

Loophole detection method and device

The invention discloses a loop detection method and a device for solving the problems that a current technology of loophole detection is low in accuracy and efficiency. The method includes: adding special character strings including a positioning character string and a detection character string into uniform resource locator (URL) to be detected and hyper text transport protocol (HTTP) requests, using the HTTP request to visit the URL, and finally imitating a browser to load pages returned by a website server, and judging whether safety loop holes exist in the website server according to whether detection character strings are included in hypertext markup language (HTML) codes of a loaded page. Due to the fact that the detection device imitates the browser to load pages returned by the website server, dynamic document object model (dom) elements exist in the page, whether the website server has safety loopholes can still be judged according to whether detection character strings are included in HTML codes of the loaded page without manual participation during the detection process, and therefore accuracy and efficiency of loophole detection are improved.
Owner:MICRO DREAM TECHTRONIC NETWORK TECH CHINACO

Data information pushing method and data information pushing system

The invention discloses a data information pushing method and a data information pushing system. The data information pushing method includes the steps of receiving data information which is arranged according to releasing time sequence, storing the data information collected from an external information source in real time, receiving a hyper text transport protocol (HTTP) pushing request from a client, searching the stored data information, obtaining the data information corresponding to the HTTP pushing request, packaging, and pushing the data information to the client through HTTP long connection. The data information pushing method can improve pushing efficiency of the data information.
Owner:MICRO DREAM TECHTRONIC NETWORK TECH CHINACO

System monitoring method based on cloud platform

The invention discloses a system monitoring method based on a cloud platform and belongs to the computer technology field. Two ways such as 'Automatic discovery' and by-hand input are used for configuring configuration parameters of monitored objects in data acquisition of managed resources, and performance data is acquired by multiple acquisition ways such as SNMP Agent, Telnet, Vast data-MAS Agent, Http (Hyper Text Transport Protocol), ICMP (Internet Control Messages Protocol), TCP (Transmission Control Protocol) and IDBC (Internet Data Base Connection) via an active turning mechanism; warning messages and data from a third-party managing tool and a private user system are integrated and received by multiple ways; data is collected by a VASTDATE-MAS collecting and scheduling module and compared with a preset system threshold, and perfect event triggering, inquiring, informing, processing, and statistic analysis functions can be provided by the VASTDATE-MAS event and an informing module; the system monitoring method is easy to deploy, can realize plug and play and one-touch application.
Owner:BEIJING VASTDATA TECH

Video live broadcast method and system based on HTTP (Hyper Text Transport Protocol)

The invention provides a video live broadcast method and a system based on an HTTP (Hyper Text Transport Protocol). The video live broadcast method comprises the following steps of: dividing a live video stream into a plurality of slice files by a live source server; synchronously downloading the slice files from the live source server through the HTTP by an edge server; assembling the slice files into a complete file by the edge server; and providing a video live service of the complete file for the client through the HTTP. Therefore, according to the a video live broadcast method and system disclosed by the invention, the stability of the live video stream can be effectively improved, the multi-machine load balance is easily realized and the technical support for late-stage backup or processing of the live video stream is provided.
Owner:百视通网络电视技术发展有限责任公司

Method and system for segmenting internet protocol television (IPTV) stream media file virtually

The invention discloses a method and system for segmenting internet protocol television (IPTV) stream media file virtually. The method for segmenting internet protocol television stream media file virtually comprises the steps of: arranging a preprocessor in the IPTV system, and carrying out the followings steps of: segmenting a received media flow or media file to be segmented to obtain a plurality of segmented files; inserting key frames or identifications used for indexing into the segmented files respectively; combining the segmented files inserted with the key frame or identifications so that a virtual segmented media file is formed and stored into a file system; establishing an index file of the virtual segmented media file including the information of the key frames or identifications; and according to the playing request of a client, reading the segmented files of the virtual segmented media file from the file system by utilizing the index file, and transmitting the segmented files to the client. By using the method and system for segmenting PTV stream media file virtually, the problem of media file storage of hyper text transport protocol (HTTP) media service is solved, and a technical obstacle for three screen fusion is really removed.
Owner:ZTE CORP

Streaming media display method and equipment and system

The invention provides a streaming media play method, equipment and a system, wherein the method is that a play request to play a streaming media document of a user is received. An M3U8 (video format) document corresponding to the streaming media is downloaded from the server according to the play request, wherein the M3U8 document comprises uniform resource locator (URL) information containing media documents. The M3U8 document is analyzed and one or more pieces of (URL) information are obtained from the M3U8 document. The display equipment is required to play each media document corresponding to each piece of URL information based on acquired URL information. The streaming media play method, the equipment and the system can solve the problem that a non-Apple client terminal in the prior art can not play M3U8 documents, and thereby non-Apple intelligent mobiles can support Apple hyper text transport protocol (HTTP) Live Streaming.
Owner:UCWEB

Method for automatically acquiring user behavior log of network

InactiveCN101651707AImprove scalabilityFlexible customization of user behaviorTransmissionLog miningWeb service
The invention discloses a method for automatically acquiring a user behavior log of a network. The invention is characterized in that a proxy server is added between a client and a Web server; the text of a response returned from the Web server and received by the proxy server for the first time is a user response in an HTML (hypertext markup language) format, that is, an HTTP (hyper text transport protocol) response; and a user behavior log acquisition module is added to the HTTP response and sent to the client, wherein, the user behavior log acquisition module serves as a data acquisition terminal for the user behavior log at the client, whereas the proxy server serves as a data processing terminal for the user behavior log. Based on the intermediate strategy of the 'proxy server', the invention focuses on the key technologies, such as log acquisition of clients, strategy deployment of proxy servers, visual configuration of log acquisition and the like. Compared with the conventionallogging scheme, the invention can better the user association and ensure the good expansibility; and by conveniently and flexibly customizing the user behavior log to be acquired by a target system on a visual UI (user interface), the invention can further provide a data foundation for log mining.
Owner:XI AN JIAOTONG UNIV

Anti-theft method of mobile streaming media service

The invention discloses an anti-theft method of a mobile streaming media service. The method comprises the following steps of: clicking a streaming media service to be used by a user terminal by an HTTP (Hyper Text Transport Protocol) through a web portal; requesting the service to a streaming media platform by a URL (Uniform Resource Locator) of a first format; dynamically generating a second URL of a specific format with an anti-theft chain and sending the second URL to the web portal in an HTTP response mode requested by the user terminal; returning the second URL with the specific format to the user terminal by the web portal; requesting the service to the streaming media platform by the user terminal through the second URL with the specific format; renewedly generating an anti-theft chain by the streaming media platform according to the second URL of a specific format with the anti-theft chain and checking the anti-theft chain; after the user terminal passes the anti-theft chain checking, checking the IP (Internet Protocol) address of the user terminal by the streaming media platform; and if the user terminal passes the anti-theft chain checking and the IP address checking, providing the requested streaming media service for the user terminal by the streaming media platform, and if the user terminal does not pass the anti-theft chain checking or the IP address checking, refusing to provide the requested streaming media service for the user terminal by the streaming media platform.
Owner:CHINA UNITED NETWORK COMM GRP CO LTD

Multi-fragment video playing method and device based on hypertext markup language (HTML) 5 video

The invention relates to a multi-fragment video playing method, a device and a browser, which are based on a hypertext markup language (HTML) 5 player. The browser sends a hyper text transport protocol (HTTP) request to an index server, video metadata information which is returned by the index server according to a video identity (ID) (video_id) is received, and attributes of a first player and a second player are set, so that the first player can be displayed for users and the second player is concealed in a background for operation, video data content is requested from a content server, the first player and the second player are loaded respectively, the first player is enabled to play the content of a first fragment, the content of a second fragment is loaded in the background by the second player, attributes of the first player and the second player are changed after the first player finishes the playing of the first fragment, and the second player can be displayed for the users and plays the loaded content of the second fragment, the first player is concealed in the background for operation, and the content of a third fragment is loaded. The technical scheme of the method and the device can guarantee smoothness of pictures during fragment switching and can be compatible to a current mainstream multi-fragment video distributing situation in a seamless mode, so that the flow is saved effectively.
Owner:ALIBABA (CHINA) CO LTD

Method with verification for intelligently crawling network information in distributed way

The invention puts forward a method with verification for intelligently crawling network information in a distributed way. The method comprises the following steps that: when a judgement result shows that the target page data of a website can be obtained after login verification is carried out, obtaining corresponding login information from a database, carrying out automatic login through a browser, and submitting verification information; starting a timed task, using cookie to access the webpage of the timed task, and carrying out keep-alive processing; starting a network package capture detector, accessing a corresponding target page according to business requirements, carrying out HTTP (Hyper Text Transport Protocol) message analysis, carrying out customization on a crawler script, and determining a task crawling data size; and emitting a broadcast by a main node, notifying a corresponding task node, distributing the crawler script, starting the task node, applying for a task from a main node task queue, carrying out data crawling according to the applied task, and storing the crawled target data into the queue so as to store the crawled target data into the database in batches. By use of the method, a protected page can be automatically logged in and accessed, and a quick and expandable distributed webpage crawler integrated framework capable of mining the script is automatically generated.
Owner:北京京拍档科技股份有限公司

Method for realizing WEB reverse proxy

The invention provides a method for realizing WEB reverse proxy. After the user side inputs a first WEB reverse proxy processing request in the bookmark bar or the interface input box of a browser, the method comprises the following steps: the client transmits HTTP (Hyper Text Transport Protocol) / HTTPS request, the Uniform Resource Locator (URL) of the request includes an address of reverse proxy server SSLVPN (Secure Socket Layer Virtual Private Network), an address of an accessed background server and a resource route of the accessed background server; the reverse proxy server SSLNPN extracts the address and the resource route of the accessed background server and forwards the request normally after intercepting the request. In the invention, a response header processes the HTTP request without any replacement in the HTML (Hyper Text Markup Language) page, a relative URL process and an absolute URL format process based on the redirection can be efficiently finished on the Web server by a formative URL.
Owner:BEIJING TOPSEC TECH

WEB single sign-on method completely transparent to user and application

InactiveCN103188295ANo need to change network deploymentNo need to change access habitsTransmissionWeb applicationNetwork packet
The invention discloses a WEB single sign-on method completely transparent to a user and an application. The method comprises the following steps that: 1, an HTTP (Hyper Text Transport Protocol) data packet between the user (a browser) and the WEB application is intercepted by a transparent bridge technology, 2, the user is redirected to an SSO (Single Sign-on) server by a page redirection technology during first access, 3, after SSO service is certified, the browser is redirected back to the WEB application and a security Token is set, and 4, when the browser accesses the application again, an SSO gateway inspects the security Token, and the access is passed if the security Token is valid. According to the WEB single sign-on method, the single sign-on of the WEB application can be achieved under the conditions that a client or plugin is not required to be installed and the application is not required to be modified, and a top-level domain can be crossed.
Owner:KOAL SOFTWARE CO LTD

Method and device for supporting time shifting and look back in dynamic hyper text transport protocol (HTTP) streaming transmission scheme

The invention discloses a method, device and system for supporting time shifting and look back and live broadcast on-demand seamless switch in a dynamic hyper text transport protocol (HTTP) streaming transmission scheme. The method is characterized by comprising the following steps: sending a live broadcast media presentation description (MPD) request message by using a media server; receiving a response message which is returned back by the media server and contains the MDP at the current period, wherein media presentation information at the other periods is also contained in the MDP; determining that the time at which a media fragment needs to be required currently exceeds the lower limit of a time range corresponding to the MPD, and determining the media presentation information corresponding to the media fragment needing to be required currently according to the media presentation information in the other periods; and according to the media presentation information corresponding to the media fragment needing to be required currently, acquiring the corresponding MPD, and requesting the media fragment needing to be required currently to the media server according to the acquiredcorresponding MPD, so that a client can support the time shifting and look back within a longer time range, and simultaneously, the size of the MPD can be maintained within an acceptable range.
Owner:HUAWEI TECH CO LTD

User online behavior data acquisition method in backbone link and system

The invention discloses a user online behavior data acquisition method in a backbone link. The method comprises the following steps of: capturing a data packet containing a HTTP (Hyper Text Transport Protocol) request message in the backbone link, extracting web page URLs (Uniform Resource Locator) accessed by a user and HTTP field information reflecting user online behavior from the data packet according to the HTTP analysis by adopting parallel processing; filtering the URLs and acquiring web page URLs of which page contents needed to be captured according to a URL mode characteristic tree;and capturing the page contents of the filtered web page URLs in an asynchronous mode. The method and the system of the invention can capture an original data pocket containing a HTTP request messagein a gigabit link in real time, extract a user IP (Internet Protocol) address, web page URL addresses and other related user online information data from the original data pocket in real time, filterthe mass web page URL addresses in real time and capture the page contents in quasi real time.
Owner:HUAWEI TEHCHNOLOGIES CO LTD

Method, equipment and system for controlling band width

The embodiment of the invention discloses a method, equipment and system for controlling band width. The method comprises the following steps of: acquiring and identifying an HTTP (Hyper Text Transport Protocol ) request message of streaming media on-demand service, and forwarding the HTTP request message of the streaming media on-demand service to a media server; receiving an HTTP response message which is returned by the media server and corresponds to the HTTP request message of the streaming media on-demand service; resolving the HTTP response message to acquire a playing code rate of a streaming media file to be transmitted; determining actually distributed transmission band width of the streaming media on-demand service according to the comparison result of the playing code rate and the initially distributed user signed bandwidth of the streaming media on-demand service; and controlling the transmission of the streaming media file by adopting the determined transmission band width. Therefore, in the embodiment of the invention, band width control is directly performed in a network element, so that the problems of more interaction among different network elements and additional increment of processing overhead of other network elements in the prior art are avoided at the same time of simply and effectively improving the utilization rate of network resources.
Owner:HUAWEI TECH CO LTD

Method and system for realizing interaction between multi-media terminal and internet protocol (IP) set top box

The invention provides a method and system for realizing interaction between a multi-media terminal and an internet protocol (IP) set top box, a multi-media terminal and an IP set top box. The method comprises the following steps: the multi-media terminal browses introduction and / or video clips of live broadcast and request programs in multi-media terminal electronic program guide (EPG) portals, acquires a media stream link address of the program after receiving a selected command of releasing a program to a TV for broadcasting, sends the media stream link address and a broadcasting request message through a hyper text transport protocol (HTTP) massage to the IP set top box, wherein the media stream link address of the program is the same as the media stream link address saved in the IP set top box EPG portal; and the IP set top box receives the broadcasting request massage and the media stream link address, analyzes the broadcasting request massage to obtain a broadcasting request, is connected with the media stream link address and broadcasts the program. The technical scheme of the invention can be used for realizing the instant interaction between the multi-media terminal and the IP set top box.
Owner:ZTE CORP

High-availability method, node device and system for achieving cluster storage

The invention discloses a high-availability method, a node device and a system for achieving cluster storage. The method includes triggering a taking event according to received node status information; acquiring volume information, storage device information and storage area networking (SAN) storage information of a fault node and generating local configuration information; and mounting a storage device in an SAN cluster and starting system services of a distributed file system, wherein the volume on the storage device is recovered to use. According to the method, the node device and the system, during resource switching among nodes, the internet protocol (IP) of the fault node and resources in a service course can be taken, storage software service courses and physical storage resources of the fault node can be taken, network file system (NFS) / common internet file system (CIFS) / hyper text transport protocol (HTTP) / file transfer protocol (FTP) / internet small computer system interface (ISCSI) protocols and a PanaFS protocol are supported, and a transmission control protocol (TCP) / IP reconnection technology is used so that transparent taking of the fault node is achieved, and service interruption during taking can not be caused.
Owner:北京联创信安科技股份有限公司

Method, server, client and system for recording and playing replay program

The invention relates to a method, server, client and system for recording and playing a replay program of stream media. The playing method comprises the following steps of acquiring a URI (Uniform Resource Identifier) of an index file of the replay program by the client; acquiring the index file of the replay program from the server according to the URI of the index file; parsing the index file and acquiring the URI of each corresponding sub file of the replay program from the index file; and according to the URI of each sub file, sequentially downloading, decoding and playing each sub file from the server. A traditional RTSP (real time streaming protocol) user of the IPTV (internet protocol television) and an HTTP (Hyper Text Transport Protocol) user of the internet can share one record file, a replay function is realized, the storage resource consumption of a streaming media server is reduced, the performance of the server is promoted, and for an operator, the HTTP user of the internet can be supported if the server is only configured with a standard HTTP server without customization, so that the cost is saved.
Owner:ZTE CORP

Webpage flash video redirection method in VDI environment

A webpage flash video redirection method in a VDI (Virtual Desktop Infrastructure) environment comprises the following steps: analyzing webpage text data and acquiring both a file of a Flash video player on a present webpage and parameters used during video play; intercepting a webpage HTTP (Hyper Text Transport Protocol) request and acquiring a video request of the present webpage; analyzing a request data packet and reversely positioning to a Flash control issuing the requests through the group of requests; sending the Flash video player embedded into the webpage to a client side and dynamically building a Flash video play environment the same as the present webpage on the client side according to the structure of the present webpage; generating a network request by the operating Flash video player on the client side; and sending corresponding video streaming to the client side for play by a VDI server which receives the video request from the client side. By adopting the webpage flash video redirection method provided by the invention, the burdens of both the VDI server and the client side are greatly reduced and the quality of watched videos is improved.
Owner:FUJIAN CENTM INFORMATION

Method and apparatus for performing disk diagnostics and repairs on remote clients

Method and apparatus for performing disk diagnostics and repairs on remote clients. The method employs an embedded LAN microcontroller at a client to submit diagnostic commands to disk drives hosted by the client. Corresponding diagnostic data is returned from the disk to the LAN microcontroller, and an XML file containing the diagnostic data is generated. The XML file is then packaged as a Simple Object Access Protocol (SOAP) message, which is bound to the Hyper Text Transport Protocol (HTTP), processed via an Internet Protocol (IP) microstack, and sent to a management server via an out-of-band (OOB) communication channel that is transparent to an operating system running on the client. Upon receipt of the SOAP message, the diagnostic data are extracted from the XML file using an XML schema application. A user may request diagnostics be performed for selected disk drives connected to selected client hosts, wherein the request is packaged as an XML file in a SOAP request message. Upon receiving the SOAP request message, the diagnostic commands are extracted from the XML file and submitted to the disk drive.
Owner:INTEL CORP

Network speed testing method

The invention provides a network speed testing method. The method comprises the steps of a network flow test and a network delay test, wherein the network flow test comprises the steps of: sending a data package to each user terminal on a server of an operator through an HTTP (hyper text transport protocol) in a multithreading memory-sending manner, and comparing the download rate with broadband access rate of sign-up users in a way that the user terminal downloads the data packages so as to obtain a test result; and the network delay test comprises the steps of: selecting at least ten web portals at the user terminal, inputting a website URL (Uniform Resource Locator) address at the server of the operator through a simulated user at the user terminal by a browser address bar so as to carry out web browsing and obtain the information about HTTP service availability, DNS (Domain Name Server) delay, TCP (Terminal Control Protocol) delay and the initial package delay of an HTTP page, thus obtaining the test result. According to the invention, the network speed is tested in the multithreading manner rapidly and stably, and the network speed can be tested furthest so that a real network speed can be obtained comprehensively..
Owner:中电福富信息科技有限公司

Dynamic page processing system based on Asynchronous JavaScript and XML (ajax) technique

ActiveCN102938776AImprove performanceAdapt to the requirements of information systems with frequent data changesTransmissionSpecial data processing applicationsApplication serverRoute server
The invention discloses a dynamic page processing system based on an ajax technique. The system comprises a client, a hyper text transport protocol (http) server and an application server. A client browser communicates with the http server and the application server respectively through a route server. The system is characterized in that the http server is in charge of receiving a static page request, returns the static page and static resources applied on the page to the client browser and presents a page body on the browser; and the application server is in charge of receiving a non-static page request. The page of the client browser accesses the application server through an ajax request, and the application server returns dynamic data to the browser which updates data and page display. According to the dynamic page processing system based on the ajax technique, advantages of the http server processing static resources are fully played, the integral performance of the system is improved, and the extension of subsequent clusters is facilitated simultaneously.
Owner:FOUNDER INTERNATIONAL CO LTD

Method for detecting SQL (structured query language) injection vulnerability

The invention relates to a method for detecting SQL (structured query language) injection vulnerability, comprising the following steps: 1, capturing user input data; 2, generating harmless input; 3, carrying out SQL lexical analysis and syntactic analysis to generate SQL syntax trees, wherein the SQL syntax trees comprise a syntax tree based on user input word strings and a syntax tree based on harmless word strings; 4, comparing the two SQL syntax trees, and if the two SQL syntax trees are same, considering a group of testing word strings to pass a test; and 5, responding the result, if a user attempting to carry out SQL injection is found out, blocking an HTTP (hyper text transport protocol) package, and otherwise, releasing the HTTP package. In the method, analyzed objects are input by the user directly or indirectly, thus maximally restoring the real intentions of the user and reducing the rate of false alarm; and meanwhile, based on the analysis of the SQL syntax trees, the SQL injection can be blocked fundamentally, thereby improving the accuracy rate of the detection.
Owner:BEIJING INSTITUTE OF TECHNOLOGYGY

Method and device for forwarding hyper text transport protocol (HTTP) request

The invention relates to a method and a device for forwarding a hyper text transport protocol (HTTP) request. The method comprises the steps of: judging whether a uniform resource locator (URL) of the HTTP request of a Web client is a URL requested by a Web form or a URL submitted by Web form data or not; forwarding the HTTP request when the URL of the HTTP request is the URL requested by the Web form and effective tokens are carried in parameters of the URL of the HTTP request; randomly generating a unique token if the token is not carried, splicing the URL of the HTTP request and the generated token into a new URL, discarding the HTTP request, and sending an HTTP response message requesting the redirection to the new URL to the Web client; and forwarding the HTTP request when the URL of the HTTP request is the URL submitted by Web form data, the HTTP request has the referrer value and the effective token can be extracted from the referrer. The method and the device have the advantages that the effective defense on cross site request forgery (CSRF) attack can be realized, and the computation overhead on a Web security gateway is greatly reduced.
Owner:BEIJING VENUS INFORMATION TECH +1

Load balancing equipment-based session keeping method and system and load balancing equipment

The invention discloses a load balancing equipment-based session keeping method and system and load balancing equipment. The method comprises the following steps of receiving an HTTP (hyper text transport protocol) request from a client; determining whether the URL (uniform resource locator) and / or the head of the HTTP request are embedded with a session identity for identifying a session; if so, extracting the session identity through a keyword matching method or a regular expression method; determining whether a server corresponding to the session identity exists; if so, sending the HTTP request to the server corresponding to the session identity; if no session identity is embedded and no server corresponding to the session identity exists, sending the HTTP request to the server according to a load balancing scheduling algorithm; receiving an HTTP response fed back by the server and forwarding the HTTP response to the client. The load balancing equipment-based session keeping method can effectively improve the processing performance of the load balancing equipment, and without requiring the client to adopt a cookie-supported browser, can achieve session keeping.
Owner:SANGFOR TECH INC
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products