Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

76 results about "Reverse proxy" patented technology

In computer networks, a reverse proxy is a type of proxy server that retrieves resources on behalf of a client from one or more servers. These resources are then returned to the client, appearing as if they originated from the proxy server itself. Unlike a forward proxy, which is an intermediary for its associated clients to contact any server, a reverse proxy is an intermediary for its associated servers to be contacted by any client. In other words, a proxy acts on behalf of the client(s), while a reverse proxy acts on behalf of the server(s).

Systems and methods facilitating connection of browsers having different transport layer security versions using a reverse proxy server

Aspects of the subject disclosure may include, for example, deploying a reverse proxy server in front of a first type of web servers and a second type of web servers, where the first type of web servers is compliant with a current version of payment card industry data security standard (PCI DSS) and supports a first version of a transport layer security (TLS) protocol, and where the second type of web servers supports one or more TLS protocols that are older than the first version of TLS protocol, detecting, using the reverse proxy server, a TLS protocol version used in an incoming request, and determining, using the reverse proxy server, routing of the incoming request to one of the first type of web servers and the second type of web servers at least based on the detected TLS protocol version. Other embodiments are disclosed.
Owner:AT&T INTELLECTUAL PROPERTY I L P

K8s-based JUPter Notebook container arrangement method

The invention relates to the technical field of containers and micro-service architecture, and discloses a K8s-based Juser Notebook container arrangement method, which comprises the following steps of: S1, packaging Notebook into a Docker mirror image file; s2, mounting a Notebook configuration file on the K8s cluster through a ConfigMap (Configuration Map); s3, deploying and defining the number of copies of the Notebook application through Deployment; S4, configuring a service network and an ingress network; S3, deploying and defining the number of copies of the Notebook application through Deployment; s5, a cloud storage mode is adopted, and calculation and storage are separated; and S6, K8s API automatic management is carried out. The deployment process is simplified, the maintenance and management difficulty is reduced, and the resource utilization rate is improved; a cloud storage mode is adopted, separation of calculation and storage is achieved, and environment configuration is simplified; the Ingress provides network functions such as flow management and reverse proxy, so that the Notebook service is easier to access and integrate; the K8s cluster can ensure the high availability of the Notebook service; and when a fault occurs, quick recovery is realized, service interruption time is reduced, monitoring and management are easy, and management and operation and maintenance efficiency is improved.
Owner:JIANGXI FASHION TECH

SaaS tenant customized service method

The invention provides an SaaS tenant customized service method, and relates to the technical field of software as a service system architecture.The method comprises the steps that an independent database or table space is generated through a tenant identifier, configuration parameters are converted into JSON metadata in combination with a graphical tool and stored, and lightweight customization is achieved; according to the deep customization request, an independent server or container instance is distributed for a tenant, personalized codes are deployed, and the personalized codes and standard codes are separated for running through a dynamic loading mechanism; generating a unique second-level domain name based on the tenant identifier, and routing the request to a corresponding service node through DNS analysis and reverse proxy; and the standard tenants are supported to migrate to the customized tenants, configuration and service data are synchronized to a target instance, domain name resolution and proxy configuration are updated, and seamless switching of service paths is realized.
Owner:INSPUR GENERSOFT CO LTD

Enforcing data access policies in a reverse proxy

A method and system of masking, redacting, filtering, and encrypting data retrieved from or stored into a database using policies in an information management system. The system comprises application, data protection, and database components. A data protection component is placed between an application component and a database component to provide protection to data in a database by applying data access policies to requests sent from the application component to the database component.
Owner:NEXTLABS INC

Vehicle terminal remote debugging system and method

The application provides a kind of vehicle terminal remote debugging system and method, belong to the field of automobile control. Among them, network connection platform sends start instruction to vehicle terminal module;Vehicle terminal module verifies whether start instruction is legal, if yes, then start reverse proxy client and reverse proxy registration to reverse proxy service end in intranet penetration module, to obtain IP information and reverse proxy registration result;Vehicle terminal module returns response information to network connection platform via message communication hub;Network connection platform verifies the authenticity of response information based on preset password book, to determine whether vehicle terminal module is ready, if yes, then establish remote debugging channel with vehicle terminal module via intranet penetration module and message communication hub, to send debugging instruction to vehicle terminal module. The application can improve the efficiency of debugging, improve the level of security protection and break through the isolation barrier of intranet and public network of vehicle terminal equipment, to realize the effect of remote debugging of vehicle terminal equipment.
Owner:ZHIZI AUTOMOTIVE TECHNOLOGY CO LTD

Cloud native seven-layer flow intelligent gateway system and method based on multi-tenant architecture

The embodiment of the invention discloses a cloud native seven-layer traffic intelligent gateway system and method based on a multi-tenant architecture. The cloud native seven-layer flow intelligent gateway system based on the multi-tenant architecture comprises a core service processing component and a support system, and the core service processing component comprises a connection management unit, a request analysis unit, a routing lookup unit, a conditional expression engine unit, a load balancing unit and a reverse proxy unit. The support system comprises a configuration management unit, a monitoring probe unit and a plug-in framework unit. Through the implementation of the method and the device, the problems that the comprehensive requirements of multi-tenant isolation, multi-protocol compatibility, edge intelligent processing, configuration lossless dynamic updating and low-cost expansion cannot be met at the same time in related technologies, and the service diversity and reliability requirements under the scene of fusion of the artificial intelligence Internet of Things and the cloud native are difficult to adapt are solved.
Owner:SINOCHEM INFORMATION TECH CO LTD

Intelligent password service platform

The application relates to the technical field of information system security, and particularly discloses an intelligent password service platform, which comprises a service gateway, a synchronization module, a general server, a reverse proxy server and a plurality of password devices; the synchronization module is used for synchronizing key resources of password devices of the same type after the password devices access a network; the general server is provided with a virtual module and a load balancing module; the load balancing module is used for connecting the password devices after the key resources are synchronized; the virtual module is used for virtually changing physical resources of secret devices into resource clouds of different types through a virtualization technology; the service gateway is used for obtaining a calling application of a third-party application service interface; the service gateway is also used for analyzing the calling application and determining service requests facing different resource clouds according to the analyzed results. The technical scheme of the application has high expansibility, can be flexibly networked, is convenient for reusing and does not waste existing resources.
Owner:CHONGQING AEROSPACE INFORMATION CO LTD

Request processing method and apparatus, computer device, storage medium, and computer program product

PCT designated stageWO2026091883A1TransmissionReverse proxyEngineering
A request processing method, executed by a load balancing node in a request processing system, wherein the request processing system comprises a reverse proxy node, a virtual proxy node, and the load balancing node, and request forwarding is performed between the reverse proxy node and the virtual proxy node by means of a plurality of socket nodes. The method comprises: upon receipt of a plurality of traffic requests by the reverse proxy node, determining, from among the plurality of socket nodes, socket nodes available for processing (302); for each socket node available for processing, determining, from the virtual proxy node, a processing instance having a binding relationship with the socket node available for processing, so as to obtain a plurality of processing instances (304); determining, from among the plurality of processing instances, selected processing instances matching socket nodes available for processing (306); and on the basis of multiple pieces of instance running information respectively corresponding to the selected processing instances, respectively distributing the plurality of traffic requests to the selected processing instances, so that the selected processing instances process the distributed traffic requests (308).
Owner:TENCENT TECHNOLOGY (SHENZHEN) CO LTD

A multi-format electronic file intelligent preview method and device and equipment

The application discloses a multi-format electronic archive intelligent preview method and device and equipment. The method comprises the following steps: obtaining a file URL and a permission control parameter; optimizing Nginx load balancing and distributing Nginx reverse proxy based on the file URL and the permission control parameter; performing format conversion on the electronic archive based on the Nginx reverse proxy; and previewing and inserting a watermark based on the format conversion result. The application pre-generates a same-name file of each file in a file system, which reserves the original content of the file. When a user needs to preview and view the file in the file system, the corresponding same-name file is obtained, so that it is not necessary to consider whether the client can directly identify the file format of the file to be previewed, and the format conversion time consumption caused by the fact that the file format cannot be directly identified after receiving a preview instruction is avoided.
Owner:XIAMEN HELIDAO ENG DESIGN GRP CO LTD

Data packet forwarding method and device based on reverse proxy

The invention aims to provide a data packet forwarding method and device based on reverse proxy, and the method comprises the steps: firstly, screening out a configured data packet which needs to be subjected to reverse proxy through a reverse proxy station table for a received data packet, and then querying a corresponding connection state in a connection tracking table; and according to a query result, sending the data packet to the corresponding child nodes for processing respectively. And the sub-node delivers the data packet to a kernel to execute deep detection of the data packet according to a security detection strategy, returns the data packet after the detection is passed, executes corresponding IP and port mapping according to preset reverse proxy configuration information, and forwards the data packet to a corresponding site for response.
Owner:XIAN JIAODA JIEPU NETWORK SCI & TECH CO LTD

A method, apparatus, electronic device and storage medium for transparent transmission of IP addresses

This application provides an IP address pass-through method, apparatus, electronic device, and storage medium, comprising: modifying the configuration parameters of a load balancing hardware device, a reverse proxy server, and a server based on a configuration parameter change instruction adapted for IP address pass-through, to obtain the load balancing hardware device, reverse proxy server, and server after the configuration parameters have been modified; receiving an access request from a client, the client's IP address, and the IP address of the load balancing hardware device after the configuration parameters have been modified, sent by the load balancing hardware device after the configuration parameters have been modified, and pass-through the access request, the client's IP address, the IP address of the load balancing hardware device after the configuration parameters have been modified, and the IP address of the reverse proxy server after the configuration parameters have been modified, to the server, thereby enabling the server to more conveniently view the real IP address of the accessing client and improving the efficiency of real IP address pass-through.
Owner:CHINA BOHAI BANK CO LTD

Dynamic session headers via remote dictionary

ActiveUS12719847B2Reverse proxyData system
Dynamic session headers for a computing session via a remote dictionary are provided. A system establishes a session responsive to receiving a first request from a browser, the session authenticated using a cookie configured to access a first electronic record. The system stores data corresponding to the session in a remote dictionary server. The system identifies a second request to modify the session to access a second electronic record and accesses, using the cookie, the data corresponding to the session from the remote dictionary server. The system receives, using a reverse proxy technique, data to update the session. The system modifies the session by storing the second identifier in the remote dictionary server and provides the browser with access to the second electronic record via the session.
Owner:ADP INC

Proxy interception and double encryption system and methods

A method of enabling custom cryptography is provided. The method can include sending, by a first computing device and to a second computing device, instructions to initiate a proxy. The proxy can be configured to intercept a message of a user agent. The user agent may be associated with the second computing device. The proxy can be further configured to perform custom cryptography based on the message to obtain a modified message. The custom cryptography may comprise post-quantum cryptography. The proxy can be further configured to send the modified message to at least one of the user agent, a reverse proxy, or a third computing device. The post-quantum custom encryption and / or decryption can comprise Quantum Secure Layer (QSL), Post-Quantum Transport Layer Security (PQTLS), Kyber, SABER, Enhanced McEliece, RLCE, or a National Institute of Standards and Technology (NIST) candidate post-quantum algorithm.
Owner:QUSECURE INC

Network device remote access method, system, device, medium and program product

The invention relates to the technical field of communication, and discloses a network device remote access method, system and device, a medium and a program product, the method is suitable for a first service, and the method comprises the following steps: receiving a first access request of a first terminal for a first network device in a first network; wherein the first terminal does not belong to the first network; configuring reverse proxy information for the first network device based on the first access request, wherein the reverse proxy information is used for creating a first reverse proxy for the first network device; after the first reverse proxy is created, configuring a first forward proxy used for associating the first terminal with the first reverse proxy; and providing an access path for the first network equipment for the first terminal through the first forward proxy and the first reverse proxy. The problem that the remote access process of the network equipment is complex can be solved.
Owner:SHANGHAI KAIYONG INFORMATION TECHNOLOGY CO LTD

Model service method and device, equipment and storage medium

The invention discloses a model service method and device, equipment and a storage medium, and relates to the technical field of data processing, and the model service method comprises the steps: obtaining a model service request, and determining the type of the model service request; based on the type, determining a target module for processing the request from a started Modelet model engine; the Modelet model engine is used for performing initial processing on a request based on a target module and performing other processing on the initially processed request based on an original model service externally provided by a started local through a reverse proxy mode, and the Modelet model engine is designed by adopting father and son processes and a reverse proxy architecture and is designed by adopting the father and son processes and the reverse proxy architecture based on the father and son processes and the reverse proxy architecture. After the engine is started, the engine serves as a parent process to start a child process of the original model, so that the Modelet model engine reversely agents the original model, and corresponding original model services are provided. The method guarantees stable operation of large model services.
Owner:CHINA MERCHANTS BANK

Generating synthetic signals by a security analytics platform

A response to a request initiated by a client is received by a processing device of a reverse proxy from an application of a plurality of applications associated with a specified entity. A header of a predefined type is identified within the response. One or more metadata items characterizing one or more security features of the application are retrieved from the header. An updated response is produced by removing the header from the response. The updated response is forwarded to the client. One or more synthetic signals characterizing security properties of the application is generated based on the one or more metadata items. The one or more synthetic signals is stored in a memory of a security analytics platform.
Owner:GOOGLE LLC

Implementation methods and systems for leased line clients based on the Electron framework

This invention provides a method and system for implementing a dedicated line client based on the Electron framework, comprising: upon client startup, detecting whether a configuration file is located in the same directory as the running executable program; using the `onBeforeRequest` method in the Electron framework's session to intercept requests; rewriting the original request using the Electron framework; after receiving the rewritten request from the client, the user-side dedicated line server sends it to the server-side dedicated line server; the server-side dedicated line server uses an Nginx reverse proxy to restore the user-side request and initiate a final request to the corresponding application server; returning the response result of the final request to the original path and adding a cross-domain header to the response. This invention uses a reverse proxy to achieve the purpose of the dedicated line server initiating requests to the application server, ensuring high performance, stability, and security, and exhibiting strong performance.
Owner:上海秉玉软件技术服务有限公司

Dynamic scheduling and access method for visual application in high-performance computing system

The invention provides a dynamic scheduling and access method for visual applications in a high-performance computing system, and relates to the field of high-performance computing job scheduling and visual access. The method comprises the following steps: automatically injecting a monitoring script at the tail of a job script, acquiring actual running node information after the job is allocated to a computing node by a scheduler to be executed, and loading a plug-in of a corresponding application type to start a visual application service; generating a unique access link according to the job ID and the application type; and accessing a link, analyzing a job ID, obtaining target node and port information, rechecking a database when a cache is missed, establishing a reverse proxy channel according to the node and port information, obtaining authentication information from an authentication module, adding the authentication information to a request header, and forwarding a request to the target node. According to the method, dynamic sensing and intelligent forwarding under the condition that the job scheduling result is unknown can be realized, unified access and automatic operation and maintenance of multiple types of visual applications are supported, and the flexibility, expansibility and safety of the system are improved.
Owner:JINAN INSPUR DATA TECH CO LTD

Privilege-free chaos engine

A privilege-free chaos engine testing environment is provided. A reverse proxy provided on a communication line between a first resource and a plurality of second resources intercepts communications from the first source intended for the plurality of second resources. Mirror communications (URLs) of the first communication and generated. A chaos scenario is selectively injected into the mirror communication according to a chaos policy to generate a response communication. The response communication is transmitted to the first.
Owner:DELL PROD LP

Method for simplifying reverse proxy system to acquire multi-dimensional traffic

The invention belongs to the technical field of software testing, and particularly relates to a method for simplifying a reverse proxy system to acquire multi-dimensional traffic, which comprises the following steps of: constructing a closed-loop self-consistent system integrating traffic generation and response simulation, thoroughly breaking the strong coupling relationship between test logic and physical deployment architecture in the traditional test method, and improving the test efficiency. The complexity of a test environment is greatly simplified, hardware resources and operation and maintenance cost are remarkably reduced, testers are endowed with extremely high flexibility to define, combine and dynamically schedule multi-dimensional service scenes with any complexity, meanwhile, the reproducibility of the test is ensured by means of a deterministic data generation mechanism, and the test efficiency is improved. Therefore, a brand-new and systematic solution is provided for efficient, deep and comprehensive verification of the reverse proxy system.
Owner:SHENZHEN SHIXI TECH CO LTD

Reverse proxy-based dynamic website cloning simulation training target field construction method

ActiveCN120934871BPathPingWeb site
The present application relates to the technical field of network security simulation, in particular to a dynamic website cloning simulation training range construction method based on reverse proxy, comprising the following steps: collecting communication data through proxy and generating dynamic resource set through regular matching, extracting asynchronous behavior and resource field update result, calculating structural similarity to replace malicious components to generate induction set, extracting difference and TLS parameter to encapsulate simulation result, constructing index grouping matching and rearranging injection optimization channel and calling result, in the present application, website communication data is collected and longest common subsequence matching is carried out, request and response details are captured, real dynamic resource data is generated, regularity and path matching ensure data integrity, dynamic interaction behavior is reproduced, structural similarity algorithm simulates security threat, induction component loading replacement and TLS handshake extraction enhance interactivity, innovative processing means improves simulation flexibility and security, and accurate verification and security support are provided.
Owner:FUZHOU BLUE SHARK INFORMATION TECH CO LTD

Service layer network element cluster service method and device and electronic equipment

The invention discloses a service layer network element cluster service method and device and electronic equipment. The method comprises the following steps: receiving a service request sent by target multimedia terminal equipment; sending the service request to a reverse proxy server in a reverse proxy cluster according to a preset weight; when it is determined that the target service layer network element server is subjected to the authentication abnormality, a subsequent service request sent by the target multimedia terminal device is forwarded to a first service layer network element server in a service layer network element server cluster, the first service layer network element server is a service layer network element server without the authentication abnormality, and the first service layer network element server is a service layer network element server without the authentication abnormality. And the first business layer network element server is used for acquiring the session data in the shared storage system and providing services for the target multimedia terminal equipment based on the session data. The service request processing method and device solve the technical problem that the response to the service request is slow due to the fact that the service request in a related service layer network element cluster needs to interact with a large-scale server in the cluster.
Owner:CHINA TELECOM CORP LTD

Cross-domain file request method and device, and service system

The application discloses a cross-domain file request method and device and a business service system, and relates to big data. The method comprises the following steps: receiving a file request for transmitting a cross-domain file requested by a user through a front-end page of a browser; detecting whether the browser supports a cross-domain protocol; in the case that the browser supports the cross-domain protocol, sending the file request to a first server to access a file processing micro-service server, so that the file processing micro-service server processes the file request; and in the case that the browser does not support the cross-domain protocol, sending the file request to a second server, wherein the second server is homologous to the front-end page, the second server is connected with a plurality of micro-service servers, the plurality of micro-service servers comprise the file processing micro-service server, and the second server is used for accessing the file processing micro-service server through a reverse proxy to make the file processing micro-service server process the file request. The application can improve the response speed of file processing.
Owner:BANK OF CHINA

A cross-network request synchronous invocation system based on traffic hijacking and reverse proxy

This invention relates to a cross-network request synchronization system based on traffic hijacking and reverse proxy, belonging to the field of computer software. The system includes: an A-side request interceptor, an A-side request parser, an A-side request encapsulator, an exchange proxy A, an A-side response parser, an A-side response restorer, an exchange proxy B, a B-side request dispatcher, a B-side request parser, a B-side request restorer, a B-side response parser, and a B-side response encapsulator. This invention completes the initial "request-response" matching and ultimately relies on the request / response restorer to reassemble the original request and response in cross-network scenarios. It achieves seamless access for both the caller and the service provider, and simplifies, scales, and reusables cross-network exchange and interaction.
Owner:BEIJING INST OF COMP TECH & APPL

Operation data management system and method and storage medium

The invention relates to a surgical data management system and method and a storage medium. The management system comprises a data acquisition module, a processing module, a transmission module and a display module, the data acquisition module is used for acquiring operation associated data of a user in real time from hair transplanting operation equipment; the processing module is used for determining to-be-displayed data according to the operation associated data, and the to-be-displayed data comprises hair follicle grid data, hair follicle distribution data and hair follicle key parameters; the transmission module is used for packaging the to-be-displayed data and transmitting the to-be-displayed data to the display module by using Nginx reverse proxy service; and the display module is used for performing multi-component visual display according to the to-be-displayed data. Key indexes can be displayed in real time, visual data visualization and a convenient data editing function are provided, and the operation data management efficiency and the operation precision are remarkably improved.
Owner:PUNCTURE (SHANGHAI) ROBOTIC CO LTD

Self-contained timeliness offline information verification method

The invention provides a self-contained timeliness off-line information verification method, which comprises the following steps that: a requester initiates a service access request to a service server, and the service server acquires request related feature information through a script program of a reverse proxy server; if it is judged that verification needs to be triggered, the business server side guides the requester to jump to an independent verification server side through redirection; the requester carries the locally stored ticket to re-initiate a service access request, and the service server reads the ticket through the script program of the reverse proxy server; if the ticket verification is passed, the business server forwards the request to a business system to provide a normal service; if the tickets do not exist and the format is wrong, returning to the step S2 to re-trigger the verification process; the problem of poor stability caused by strong coupling of verification service and a business system is solved.
Owner:GUANGZHOU QISHENG INFORMATION TECH

Nginx load multi-cluster access shunting method and related device

The application discloses an Nginx load multi-cluster access distribution method and a related device. When a cluster front-end access system initial page, the Nginx request is intercepted and analyzed to obtain the source cluster information. According to the source cluster information, the reverse proxy and the cluster background are dynamically set, and the Nginx request is distributed to the cluster background through the reverse proxy. The Nginx request of other modules of the cluster front-end for the system initial page is intercepted and analyzed to obtain the source cluster information, and the Nginx request of the other modules is distributed to the cluster background through the reverse proxy. The application analyzes and distributes the Nginx request to the corresponding cluster background through the flow controller in the Nginx load balancing, so that the Nginx request can be distributed to the correct cluster background for processing in the multi-cluster cross-domain access scenario, and the application controls based on the Nginx request, does not depend on the user, and can cover all users.
Owner:AGRICULTURAL BANK OF CHINA

Automatic rapid deployment method and system, electronic equipment and storage medium

The invention relates to the technical field of computers, and discloses an automatic rapid deployment method and system, electronic equipment and a storage medium, and the method comprises the steps: obtaining an operating system type and a CPU architecture, and determining a Docker-Compose command form; scanning a preset directory to obtain deployable service sets, and sorting the deployable service sets based on a preset sequence; analyzing the environment variable file, extracting a variable range, detecting repeated variables, and generating or updating the environment variable file; replacing placeholder variables in the deployment template and the arrangement file, and backfilling the replaced variables to the environment variable file; generating Nginx reverse proxy configuration on the basis of discovered services and static resources, decompressing a mirror image archiving file in an offline environment, selecting a loading mirror image according to a CPU architecture, and skipping import when the loading mirror image exists; and executing the SQL and the template SQL, starting a corresponding service container according to a sorting result, opening a port required by the service, and outputting a service container running log. The efficiency and the success rate in the deployment process can be improved.
Owner:TONGFANG KNOWLEDGE DIGITAL PUBLISHING TECH CO LTD

Self-adaptive hidden service publishing method based on semantic differential transmission and shadow honeypot unloading

The invention discloses a self-adaptive hidden service publishing method based on semantic differential transmission and shadow honeypot unloading, and the method comprises the steps: projecting an intranet service to a public network through reverse connection, constructing a semantic compression dictionary through a service interface description file, only transmitting a dynamic numerical value in a transmission process, greatly reducing the bandwidth consumption, and meanwhile, improving the transmission efficiency. An intranet node defines a false trapping port to be projected to a cloud end, once an attacker accesses the false trapping port, the false trapping port is blocked at the cloud end, cloud end unloading of attack traffic is realized, in addition, reverse connection supports polymorphic protocol hopping, and traffic analysis is effectively avoided. According to the method, the problems of low transmission efficiency and passive defense of the traditional reverse proxy technology are solved while zero port exposure is realized, and the method is suitable for high-security demand scenes such as applet backgrounds and IoT (Internet of Things) equipment management.
Owner:JIANGSU ENLINK NETWORK TECH CO LTD