Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

113 results about "Reverse proxy" patented technology

In computer networks, a reverse proxy is a type of proxy server that retrieves resources on behalf of a client from one or more servers. These resources are then returned to the client, appearing as if they originated from the proxy server itself. Unlike a forward proxy, which is an intermediary for its associated clients to contact any server, a reverse proxy is an intermediary for its associated servers to be contacted by any client. In other words, a proxy acts on behalf of the client(s), while a reverse proxy acts on behalf of the server(s).

Systems and methods facilitating connection of browsers having different transport layer security versions using a reverse proxy server

Aspects of the subject disclosure may include, for example, deploying a reverse proxy server in front of a first type of web servers and a second type of web servers, where the first type of web servers is compliant with a current version of payment card industry data security standard (PCI DSS) and supports a first version of a transport layer security (TLS) protocol, and where the second type of web servers supports one or more TLS protocols that are older than the first version of TLS protocol, detecting, using the reverse proxy server, a TLS protocol version used in an incoming request, and determining, using the reverse proxy server, routing of the incoming request to one of the first type of web servers and the second type of web servers at least based on the detected TLS protocol version. Other embodiments are disclosed.
Owner:AT&T INTELLECTUAL PROPERTY I L P

K8s-based JUPter Notebook container arrangement method

The invention relates to the technical field of containers and micro-service architecture, and discloses a K8s-based Juser Notebook container arrangement method, which comprises the following steps of: S1, packaging Notebook into a Docker mirror image file; s2, mounting a Notebook configuration file on the K8s cluster through a ConfigMap (Configuration Map); s3, deploying and defining the number of copies of the Notebook application through Deployment; S4, configuring a service network and an ingress network; S3, deploying and defining the number of copies of the Notebook application through Deployment; s5, a cloud storage mode is adopted, and calculation and storage are separated; and S6, K8s API automatic management is carried out. The deployment process is simplified, the maintenance and management difficulty is reduced, and the resource utilization rate is improved; a cloud storage mode is adopted, separation of calculation and storage is achieved, and environment configuration is simplified; the Ingress provides network functions such as flow management and reverse proxy, so that the Notebook service is easier to access and integrate; the K8s cluster can ensure the high availability of the Notebook service; and when a fault occurs, quick recovery is realized, service interruption time is reduced, monitoring and management are easy, and management and operation and maintenance efficiency is improved.
Owner:JIANGXI FASHION TECH

SaaS tenant customized service method

The invention provides an SaaS tenant customized service method, and relates to the technical field of software as a service system architecture.The method comprises the steps that an independent database or table space is generated through a tenant identifier, configuration parameters are converted into JSON metadata in combination with a graphical tool and stored, and lightweight customization is achieved; according to the deep customization request, an independent server or container instance is distributed for a tenant, personalized codes are deployed, and the personalized codes and standard codes are separated for running through a dynamic loading mechanism; generating a unique second-level domain name based on the tenant identifier, and routing the request to a corresponding service node through DNS analysis and reverse proxy; and the standard tenants are supported to migrate to the customized tenants, configuration and service data are synchronized to a target instance, domain name resolution and proxy configuration are updated, and seamless switching of service paths is realized.
Owner:INSPUR GENERSOFT CO LTD

System and method for integrating systems to access websites by managed mobile devices

Network systems integration and method inspect network traffic to enable secure access to internal and Internet websites from managed mobile devices. The integrated networks system implements a secure split tunneling to allow users of mobile devices managed by an organization Mobile Device Management system to securely browse only safe websites on the Internet or on an intranet resource of the organization. The system includes an internal firewall, a reception firewall, internal and external web application firewalls, a reverse proxy, an Internet proxy, and an enterprise mobility management system having a VPN-Tunnel system to implement the secure split tunneling method.
Owner:SAUDI ARABIAN OIL CO

Video quality detection method and system, electronic device and storage medium

The invention relates to a video quality detection method and system, an electronic device and a storage medium, and is used for a reverse proxy server, the reverse proxy server is deployed at a cloud, and the method comprises the following steps: obtaining camera identification information reported by a proxy client; when a real-time streaming transmission protocol request containing a virtual real-time streaming transmission protocol port initiated by the PC client is received, forwarding the request to a corresponding proxy client according to camera identification information corresponding to the virtual real-time streaming transmission protocol port; the virtual real-time stream transmission protocol port establishes a mapping relationship with the camera identification information in advance; receiving video data uploaded by the proxy client; the video data is locally acquired by the proxy client from the camera according to the forwarding request; and encapsulating the video data into a standard real-time stream transmission protocol response, and returning the real-time stream transmission protocol response to the PC client for video quality detection. A communication link can be established for video transmission, the process is simplified, and the video quality detection efficiency is improved.
Owner:E SURFING VISION TECHNOLOGY CO LTD

Enforcing data access policies in a reverse proxy

A method and system of masking, redacting, filtering, and encrypting data retrieved from or stored into a database using policies in an information management system. The system comprises application, data protection, and database components. A data protection component is placed between an application component and a database component to provide protection to data in a database by applying data access policies to requests sent from the application component to the database component.
Owner:NEXTLABS INC

Vehicle terminal remote debugging system and method

The application provides a kind of vehicle terminal remote debugging system and method, belong to the field of automobile control. Among them, network connection platform sends start instruction to vehicle terminal module;Vehicle terminal module verifies whether start instruction is legal, if yes, then start reverse proxy client and reverse proxy registration to reverse proxy service end in intranet penetration module, to obtain IP information and reverse proxy registration result;Vehicle terminal module returns response information to network connection platform via message communication hub;Network connection platform verifies the authenticity of response information based on preset password book, to determine whether vehicle terminal module is ready, if yes, then establish remote debugging channel with vehicle terminal module via intranet penetration module and message communication hub, to send debugging instruction to vehicle terminal module. The application can improve the efficiency of debugging, improve the level of security protection and break through the isolation barrier of intranet and public network of vehicle terminal equipment, to realize the effect of remote debugging of vehicle terminal equipment.
Owner:ZHIZI AUTOMOTIVE TECHNOLOGY CO LTD

Cloud native seven-layer flow intelligent gateway system and method based on multi-tenant architecture

The embodiment of the invention discloses a cloud native seven-layer traffic intelligent gateway system and method based on a multi-tenant architecture. The cloud native seven-layer flow intelligent gateway system based on the multi-tenant architecture comprises a core service processing component and a support system, and the core service processing component comprises a connection management unit, a request analysis unit, a routing lookup unit, a conditional expression engine unit, a load balancing unit and a reverse proxy unit. The support system comprises a configuration management unit, a monitoring probe unit and a plug-in framework unit. Through the implementation of the method and the device, the problems that the comprehensive requirements of multi-tenant isolation, multi-protocol compatibility, edge intelligent processing, configuration lossless dynamic updating and low-cost expansion cannot be met at the same time in related technologies, and the service diversity and reliability requirements under the scene of fusion of the artificial intelligence Internet of Things and the cloud native are difficult to adapt are solved.
Owner:SINOCHEM INFORMATION TECH CO LTD

Intelligent password service platform

The application relates to the technical field of information system security, and particularly discloses an intelligent password service platform, which comprises a service gateway, a synchronization module, a general server, a reverse proxy server and a plurality of password devices; the synchronization module is used for synchronizing key resources of password devices of the same type after the password devices access a network; the general server is provided with a virtual module and a load balancing module; the load balancing module is used for connecting the password devices after the key resources are synchronized; the virtual module is used for virtually changing physical resources of secret devices into resource clouds of different types through a virtualization technology; the service gateway is used for obtaining a calling application of a third-party application service interface; the service gateway is also used for analyzing the calling application and determining service requests facing different resource clouds according to the analyzed results. The technical scheme of the application has high expansibility, can be flexibly networked, is convenient for reusing and does not waste existing resources.
Owner:CHONGQING AEROSPACE INFORMATION CO LTD

A deception defense device and method for seamlessly migrating website backdoors

The present invention discloses a deception defense device and method for seamlessly migrating website backdoors. The deception defense device deploys a website backdoor detection module on a user's real business server. The website backdoor detection module detects website backdoor files by monitoring changes in the business server's website directory files; a file ferry module transfers the website backdoor files to a honeypot environment and runs them, obtaining the website backdoor address running in the honeypot; a file rewriting module rewrites the website backdoor file without modifying the file path and file name, only rewriting the file content to the reverse proxy file content. In the reverse proxy file content, the reverse proxy destination address points to the website backdoor address running in the honeypot; malicious instructions and interactive operations issued by attackers to the website backdoor can be monitored in the virtual honeypot module. The present invention greatly enhances the integration of deception defense technology with real business and improves the ability of the honeypot network to actively trap attackers' actions.
Owner:STATE GRID JIANGSU ELECTRIC POWER CO LTD RESEARCH INSTITUTE +2

Telescopic method, device and equipment for cloud server of browser and medium

The invention provides a scaling method, device and equipment for a cloud server of a browser and a medium, and the method comprises the steps: setting a first number of cloud servers, and configuring the IP and the port of the cloud server to a configuration file of an NGINX server for the NGINX server to carry out reverse proxy; a triggering condition of capacity expansion or capacity shrinkage is configured in the elastic scaling service, and when the triggering condition of capacity expansion or capacity shrinkage is met, the elastic scaling service sends a capacity expansion event or a capacity shrinkage event to a message queue service; when the message queue service receives a capacity expansion event, the message queue service triggers the function calculation service, and the function calculation service realizes capacity expansion; when the message queue service receives the capacity reduction event, the message queue service triggers the function calculation service and the function calculation service, capacity reduction is achieved, and the cost of an enterprise is greatly reduced.
Owner:ZIXUN TECHNOLOGY (FUJIAN) CO LTD

Request processing method and apparatus, computer device, storage medium, and computer program product

PCT designated stageWO2026091883A1TransmissionReverse proxyEngineering
A request processing method, executed by a load balancing node in a request processing system, wherein the request processing system comprises a reverse proxy node, a virtual proxy node, and the load balancing node, and request forwarding is performed between the reverse proxy node and the virtual proxy node by means of a plurality of socket nodes. The method comprises: upon receipt of a plurality of traffic requests by the reverse proxy node, determining, from among the plurality of socket nodes, socket nodes available for processing (302); for each socket node available for processing, determining, from the virtual proxy node, a processing instance having a binding relationship with the socket node available for processing, so as to obtain a plurality of processing instances (304); determining, from among the plurality of processing instances, selected processing instances matching socket nodes available for processing (306); and on the basis of multiple pieces of instance running information respectively corresponding to the selected processing instances, respectively distributing the plurality of traffic requests to the selected processing instances, so that the selected processing instances process the distributed traffic requests (308).
Owner:TENCENT TECHNOLOGY (SHENZHEN) CO LTD

Systems and methods of matching customizable data transaction requests

A computer system is provided that allows participants to submit agent data structures for processing. Each agent data structure includes a valuation function for a first resource and a property of a second resource. The computer system performs a dual sided evaluation process to determine when contra-sided agents match with one another. A match is determined by comparing results of valuation functions of the agent data structures.
Owner:NASDAQ INC

A multi-format electronic file intelligent preview method and device and equipment

The application discloses a multi-format electronic archive intelligent preview method and device and equipment. The method comprises the following steps: obtaining a file URL and a permission control parameter; optimizing Nginx load balancing and distributing Nginx reverse proxy based on the file URL and the permission control parameter; performing format conversion on the electronic archive based on the Nginx reverse proxy; and previewing and inserting a watermark based on the format conversion result. The application pre-generates a same-name file of each file in a file system, which reserves the original content of the file. When a user needs to preview and view the file in the file system, the corresponding same-name file is obtained, so that it is not necessary to consider whether the client can directly identify the file format of the file to be previewed, and the format conversion time consumption caused by the fact that the file format cannot be directly identified after receiving a preview instruction is avoided.
Owner:XIAMEN HELIDAO ENG DESIGN GRP CO LTD

Data packet forwarding method and device based on reverse proxy

The invention aims to provide a data packet forwarding method and device based on reverse proxy, and the method comprises the steps: firstly, screening out a configured data packet which needs to be subjected to reverse proxy through a reverse proxy station table for a received data packet, and then querying a corresponding connection state in a connection tracking table; and according to a query result, sending the data packet to the corresponding child nodes for processing respectively. And the sub-node delivers the data packet to a kernel to execute deep detection of the data packet according to a security detection strategy, returns the data packet after the detection is passed, executes corresponding IP and port mapping according to preset reverse proxy configuration information, and forwards the data packet to a corresponding site for response.
Owner:XIAN JIAODA JIEPU NETWORK SCI & TECH CO LTD

Embedded real-time watermark superposition system and method

The invention is suitable for the technical field of digital watermarking, and provides an embeddable real-time watermark superposition system and method, and the system comprises a front-end display layer, a reverse proxy layer, a WSGI encapsulation layer, a task scheduling module, a business processing service module, a data persistence layer, a message queue and an asynchronous processor. The business processing service module comprises an image batch watermarking subsystem and a video stream watermarking subsystem; the image batch watermarking subsystem is used for realizing batch watermarking processing of static images based on Pillow + SVG (Scalable Vector Graphics); the video stream watermark subsystem processes RTSP streams in real time based on FFmpeg and dynamically embeds watermarks, not only supports batch watermark processing of static images and videos, but also breaks the limitation of a traditional processing mode, realizes watermark superposition of real-time video streams, has complete operation capabilities of task management, query, cleaning and the like at the same time, and is high in practicability and high in practicability. And the method has high expandability and cross-platform deployment capability, and adapts to multi-scene actual requirements.
Owner:JILIN UNIVERSITY +1

A method, apparatus, electronic device and storage medium for transparent transmission of IP addresses

This application provides an IP address pass-through method, apparatus, electronic device, and storage medium, comprising: modifying the configuration parameters of a load balancing hardware device, a reverse proxy server, and a server based on a configuration parameter change instruction adapted for IP address pass-through, to obtain the load balancing hardware device, reverse proxy server, and server after the configuration parameters have been modified; receiving an access request from a client, the client's IP address, and the IP address of the load balancing hardware device after the configuration parameters have been modified, sent by the load balancing hardware device after the configuration parameters have been modified, and pass-through the access request, the client's IP address, the IP address of the load balancing hardware device after the configuration parameters have been modified, and the IP address of the reverse proxy server after the configuration parameters have been modified, to the server, thereby enabling the server to more conveniently view the real IP address of the accessing client and improving the efficiency of real IP address pass-through.
Owner:CHINA BOHAI BANK CO LTD

Dynamic session headers via remote dictionary

ActiveUS12719847B2Reverse proxyData system
Dynamic session headers for a computing session via a remote dictionary are provided. A system establishes a session responsive to receiving a first request from a browser, the session authenticated using a cookie configured to access a first electronic record. The system stores data corresponding to the session in a remote dictionary server. The system identifies a second request to modify the session to access a second electronic record and accesses, using the cookie, the data corresponding to the session from the remote dictionary server. The system receives, using a reverse proxy technique, data to update the session. The system modifies the session by storing the second identifier in the remote dictionary server and provides the browser with access to the second electronic record via the session.
Owner:ADP INC

Proxy interception and double encryption system and methods

A method of enabling custom cryptography is provided. The method can include sending, by a first computing device and to a second computing device, instructions to initiate a proxy. The proxy can be configured to intercept a message of a user agent. The user agent may be associated with the second computing device. The proxy can be further configured to perform custom cryptography based on the message to obtain a modified message. The custom cryptography may comprise post-quantum cryptography. The proxy can be further configured to send the modified message to at least one of the user agent, a reverse proxy, or a third computing device. The post-quantum custom encryption and / or decryption can comprise Quantum Secure Layer (QSL), Post-Quantum Transport Layer Security (PQTLS), Kyber, SABER, Enhanced McEliece, RLCE, or a National Institute of Standards and Technology (NIST) candidate post-quantum algorithm.
Owner:QUSECURE INC

Network device remote access method, system, device, medium and program product

The invention relates to the technical field of communication, and discloses a network device remote access method, system and device, a medium and a program product, the method is suitable for a first service, and the method comprises the following steps: receiving a first access request of a first terminal for a first network device in a first network; wherein the first terminal does not belong to the first network; configuring reverse proxy information for the first network device based on the first access request, wherein the reverse proxy information is used for creating a first reverse proxy for the first network device; after the first reverse proxy is created, configuring a first forward proxy used for associating the first terminal with the first reverse proxy; and providing an access path for the first network equipment for the first terminal through the first forward proxy and the first reverse proxy. The problem that the remote access process of the network equipment is complex can be solved.
Owner:SHANGHAI KAIYONG INFORMATION TECHNOLOGY CO LTD

Cross-network http calling method and device, electronic equipment and readable storage medium

The invention provides a cross-network http calling method and device, electronic equipment and a readable storage medium, and the method comprises the steps: receiving an access request which is sent by a service requester and aims at a target intranet service, and the access request comprises an access domain name; the access domain name is a domain name created based on the IP address of the target intranet service, the target intranet port number and a preset domain name generation rule; extracting an IP address field and a port number field in the access domain name based on a pre-configured domain name matching rule; proxy the access request to the target intranet service based on the extracted IP address field and port number field, and obtaining a response result; and returning a response result to the service requester. According to the invention, for any newly-added intranet service, as long as the domain name of the access request of the intranet service accords with the domain name generation rule, automatic access can be realized through a dynamic proxy method without modifying the configuration of a reverse proxy server or restarting the service. The cross-network complexity is reduced, and the requirements of automation and rapid iteration are met.
Owner:SHENZHEN HAIGUI NETWORK TECH CO LTD

Model service method and device, equipment and storage medium

The invention discloses a model service method and device, equipment and a storage medium, and relates to the technical field of data processing, and the model service method comprises the steps: obtaining a model service request, and determining the type of the model service request; based on the type, determining a target module for processing the request from a started Modelet model engine; the Modelet model engine is used for performing initial processing on a request based on a target module and performing other processing on the initially processed request based on an original model service externally provided by a started local through a reverse proxy mode, and the Modelet model engine is designed by adopting father and son processes and a reverse proxy architecture and is designed by adopting the father and son processes and the reverse proxy architecture based on the father and son processes and the reverse proxy architecture. After the engine is started, the engine serves as a parent process to start a child process of the original model, so that the Modelet model engine reversely agents the original model, and corresponding original model services are provided. The method guarantees stable operation of large model services.
Owner:CHINA MERCHANTS BANK

Generating synthetic signals by a security analytics platform

A response to a request initiated by a client is received by a processing device of a reverse proxy from an application of a plurality of applications associated with a specified entity. A header of a predefined type is identified within the response. One or more metadata items characterizing one or more security features of the application are retrieved from the header. An updated response is produced by removing the header from the response. The updated response is forwarded to the client. One or more synthetic signals characterizing security properties of the application is generated based on the one or more metadata items. The one or more synthetic signals is stored in a memory of a security analytics platform.
Owner:GOOGLE LLC

A method and system for path honey pot based on browser fingerprinting

The present application relates to the technical field of network security, and particularly relates to a path honeypot method and system based on browser fingerprint identification. The present application provides a path honeypot method and system based on browser fingerprint identification, which focuses on configuring reverse proxy for sensitive paths, judging the behavior of visitors and generating different camouflage page contents, obtaining the device and browser basic characteristics of the visitors for feature cross verification mechanism processing and standardized processing to generate a unique and stable fingerprint ID, performing multi-dimensional dynamic risk level evaluation on the basis of historical behavior to obtain a risk score, labeling and storing the fingerprint ID, matching and identifying the generated fingerprint ID with the stored fingerprint ID when the visitor accesses again, and dynamically responding according to the historical behavior and risk level. The purpose is to save maintenance costs while accurately and effectively resisting attacks and tracing the attacker of the sensitive path.
Owner:GUANGZHOU UNIVERSITY

Systems and methods for embedding a computational notebook

Systems and methods for embedding a computational notebook within an enterprise application software. A computational notebook editor embedded is embedded within a software client interface which is in communication with the software client interface. The application server comprises a reverse proxy server that is embedded within the application server. A container management system is in communication with the application server and comprises a multi-user server, a notebook interactive development environment, and a notebook execution tool.
Owner:KINAXIS INC

Implementation methods and systems for leased line clients based on the Electron framework

This invention provides a method and system for implementing a dedicated line client based on the Electron framework, comprising: upon client startup, detecting whether a configuration file is located in the same directory as the running executable program; using the `onBeforeRequest` method in the Electron framework's session to intercept requests; rewriting the original request using the Electron framework; after receiving the rewritten request from the client, the user-side dedicated line server sends it to the server-side dedicated line server; the server-side dedicated line server uses an Nginx reverse proxy to restore the user-side request and initiate a final request to the corresponding application server; returning the response result of the final request to the original path and adding a cross-domain header to the response. This invention uses a reverse proxy to achieve the purpose of the dedicated line server initiating requests to the application server, ensuring high performance, stability, and security, and exhibiting strong performance.
Owner:上海秉玉软件技术服务有限公司

Dynamic scheduling and access method for visual application in high-performance computing system

The invention provides a dynamic scheduling and access method for visual applications in a high-performance computing system, and relates to the field of high-performance computing job scheduling and visual access. The method comprises the following steps: automatically injecting a monitoring script at the tail of a job script, acquiring actual running node information after the job is allocated to a computing node by a scheduler to be executed, and loading a plug-in of a corresponding application type to start a visual application service; generating a unique access link according to the job ID and the application type; and accessing a link, analyzing a job ID, obtaining target node and port information, rechecking a database when a cache is missed, establishing a reverse proxy channel according to the node and port information, obtaining authentication information from an authentication module, adding the authentication information to a request header, and forwarding a request to the target node. According to the method, dynamic sensing and intelligent forwarding under the condition that the job scheduling result is unknown can be realized, unified access and automatic operation and maintenance of multiple types of visual applications are supported, and the flexibility, expansibility and safety of the system are improved.
Owner:JINAN INSPUR DATA TECH CO LTD

Gateway current limiting system and method

The invention discloses a gateway flow limiting system and method, the system comprises a reverse proxy server, a gateway cluster, a flow limiting management center and a business server, the gateway cluster is connected with the reverse proxy server, the flow limiting management center and the business server; the reverse proxy server is used for polling and issuing an interface calling request to a target gateway in the gateway cluster when receiving the interface calling request of a user; the gateway cluster is used for forwarding the interface calling request to the service server when a forwarding condition is met, and the forwarding condition is related to an interface current limiting parameter and the number of gateways; the current limiting management center is used for configuring interface current limiting parameters and gateway registration information, and the gateway registration information comprises the number of gateways. According to the technical scheme, gateway current limiting is realized, and efficient and stable service is ensured.
Owner:ZHUHAI BOZHONG SECURITIES INVESTMENT CONSULTING CO LTD

Privilege-free chaos engine

A privilege-free chaos engine testing environment is provided. A reverse proxy provided on a communication line between a first resource and a plurality of second resources intercepts communications from the first source intended for the plurality of second resources. Mirror communications (URLs) of the first communication and generated. A chaos scenario is selectively injected into the mirror communication according to a chaos policy to generate a response communication. The response communication is transmitted to the first.
Owner:DELL PROD LP