The invention provides a confidential application
system and non-confidential application
system data docking method based on a high configurable component, which can meet the requirements of three-member decentration,
data transmission security,
access control and whole process
traceability (security audit) of data docking of a confidential application
system and a non-confidential application system in a confidential network environment. The
data interface development efficiency, flexibility, expansibility, safety and reliability are improved, and the method comprises the following steps that firstly, a data docking unified
service configuration assembly is built; 2, a
system administrator of the secret-related application system configures data docking technical parameters; 3, configuring a data docking
security policy by a
security administrator of the secret-related application system; 4, defining a
data extraction service and a data pushing service by a
system administrator of the secret-related application system; 5, a
system administrator of the secret-related application system newly builds
data extraction and data push service test cases and tests the test cases one by one; sixthly, the confidential application system and the non-confidential application
system call data extraction and pushing services respectively; 7, carrying out sensitive information cleaning conversion on the data from the secret-related application system; 8, data
encryption transmission; 9, receiving the data and carrying out decryption and integrity
verification; 10, checking the
butt joint data; and 11, auditing the operation of the system administrator in the steps 2, 4 and 5 and the operation log of the
security administrator in the step 3 by the security auditor of the secret-related application system.