Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

312 results about "Security domain" patented technology

A security domain is the determining factor in the classification of an enclave of servers/computers. A network with a different security domain is kept separate from other networks. Examples: NIPRNet, SIPRNet. JWICS, NSANet are all kept separate.

Power distribution network bearing capacity evaluation system based on dynamic correction

The invention relates to the technical field of power distribution network evaluation, and discloses a power distribution network bearing capacity evaluation system based on dynamic correction. The system comprises a dynamic data acquisition module, a multi-dimensional state space construction module, a security domain analysis module, a partition coupling degree calculation module and a bearing capacity evaluation engine module. The dynamic data acquisition module acquires a power injection quantity sequence, a voltage deviation ratio sequence and uncontrollable parameter fluctuation data of each partition node of the power distribution network; a multi-dimensional state space construction module performs dimension raising mapping on the sequence to generate a linearized power flow state space model containing a power-voltage Jacobian matrix; the security domain analysis module corrects the boundary of the model according to uncontrollable parameter fluctuation and generates a dynamic security operation constraint set; the partition coupling degree calculation module quantifies an electrical independence index by means of a spectrum radius; and the bearing capacity evaluation engine constructs a chance constraint optimization model, outputs the photovoltaic maximum accessible capacity of each partition and a safety guarantee supply control strategy set, and improves the evaluation accuracy and practicability.
Owner:国网甘肃省电力公司金昌供电公司

Network security and data security comprehensive analysis method and system based on large model

The invention provides a network security and data security comprehensive analysis method and system based on a large model, and the method comprises the steps: collecting multi-source heterogeneous security data of a network communication link, a data storage node and an application interaction interface, carrying out the risk behavior atomization association processing, and constructing a dynamic risk association hypergraph; based on a preset security domain knowledge graph, calling the large model to execute multiple rounds of risk attribution reasoning, performing attack chain fragment matching and evidence chain completion on a behavior hyperedge set in the dynamic risk association hypergraph, and generating a risk attribution reasoning chain; and constructing a risk evolution probability model according to the risk attribution reasoning chain and the time sequence constraint set of the dynamic risk association hypergraph, and calculating a short-term diffusion probability and a long-term evolution trend vector of each association risk path based on the risk evolution probability model to obtain a risk evolution path prediction result. The pertinence and the dynamic adaptability of protection measures can be improved, and the problem that a static protection strategy is difficult to deal with the hysteresis quality of dynamic risk changes is solved.
Owner:贵州华谊联盛科技有限公司

Marine multi-mode environment perception and intelligent ship navigation decision-making method based on double-branch vision-semantic encoder

The invention discloses an ocean multi-mode environment perception and intelligent ship navigation decision-making method based on a double-branch vision-semantic encoder. The method comprises the following steps: S1, acquiring a multi-source data image containing a ship and a surrounding environment thereof from an existing public maritime data set or platform; s2, training a double-branch vision-semantic encoder by using the multi-source data image, and inputting a to-be-processed image extracted in real time into a multi-modal feature matrix in the trained double-branch vision-semantic encoder; s3, based on the multi-modal feature matrix, obtaining positioning information of the ship and surrounding environment elements, and constructing a dynamic security domain model; and S4, in combination with the dynamic security domain model and the multi-ship relative position relationship, carrying out quantitative evaluation on the navigation risk, and generating a self-adaptive navigation strategy based on an evaluation result. According to the invention, high-precision ship positioning and environment element identification under complex weather and illumination conditions are realized by using all-weather characteristics and multi-scale visual feature coding of SAR imaging.
Owner:HARBIN ENG UNIV

Mass data cross-security domain transmission high-low priority queue hierarchical scheduling method based on Internet of Things equipment

The invention relates to the technical field of Internet of Things data transmission, in particular to a mass data cross-security domain transmission high-low priority queue hierarchical scheduling method based on Internet of Things equipment, which comprises edge computing node classification, independent channel design, a dynamic weight distribution algorithm and a block chain encryption watermark technology. The timeliness is improved through a preemptive and compensation mechanism, and the reliability is enhanced in combination with queue degradation protection and a dynamic adjustment strategy. The method can effectively solve the problems that timeliness is insufficient and safety and efficiency are difficult to balance in a traditional method, the key data transmission efficiency and the system self-adaptive capacity are remarkably improved in a complex network environment, and the method has wide application prospects.
Owner:GUANGZHOU KETENG INFORMATION TECH

Power distribution automation terminal safety debugging method based on Bluetooth communication

The invention provides a power distribution automation terminal security debugging method based on Bluetooth communication, and the method comprises the steps: extracting a historical operation record and a current task context from an operator identity identifier, calculating a real-time permission range of resource access, and adjusting an initial access boundary according to the real-time permission range; a security gateway module is embedded in a Bluetooth communication channel, a cross-domain data exchange request is intercepted and analyzed, whether the request exceeds the adjusted access boundary is judged, and if yes, transmission is refused; analyzing the cross-domain data exchange request, extracting a source domain identifier and a target domain identifier of a data packet from the cross-domain data exchange request, and encrypting the data packet to obtain encrypted cross-domain transmission data; and obtaining a decryption key distribution record of the encrypted cross-domain transmission data in the security domain of the receiving end, judging whether the key is matched or not, if so, decrypting the data and transmitting the data to the target domain, and otherwise, discarding the data.
Owner:STATE GRID SHANDONG ELECTRIC POWER CO

Power distribution network and data center collaborative planning method based on security domain analysis

The invention relates to the field of power distribution network planning, and discloses a power distribution network and data center collaborative planning method based on security domain analysis, and the method comprises the following steps: S1, constructing a power distribution network-data center system security domain model containing a distributed power supply; s2, based on the constructed power distribution network-data center system security domain model, constructing a power distribution network-data center system double-layer collaborative optimization model; s3, solving the double-layer collaborative optimization model by using an algorithm solver to obtain a collaborative planning result of the power distribution network and the data center; in the step S2, the power distribution network-data center system security domain model represents a set of all working points meeting normal operation N-0 constraint and N-1 security constraint of the system. By constructing the power distribution network-data center security domain model and proposing the joint quantitative index, the continuous representation of the system security margin is realized, the anti-disturbance capability and the operation stability of the system are improved, and the local overload risk is avoided.
Owner:NORTH CHINA ELECTRIC POWER UNIV

Intra-day look-ahead scheduling rapid solving method considering large-scale new energy cluster power generation volatility

The invention relates to the technical field of power system scheduling, and discloses an intra-day look-ahead scheduling rapid solving method considering large-scale new energy cluster power generation volatility. Comprising the following steps of S1, new energy cluster space-time fluctuation scene generation based on a neuron cellular automaton, S2, power grid dynamic security domain definition and simplification based on a physical information neural network, S3, scheduling rapid optimization solution based on model prediction path integration, and S4, scheduling scheme dynamic elasticity and stability evaluation based on a Kupman operator theory. The new energy cluster space-time fluctuation scene generation method based on the neuron cell automaton can effectively generate a space-time scene reflecting large-scale new energy cluster power generation volatility, supports uncertainty analysis, has the advantages of being high in calculation efficiency and scene authenticity, and is suitable for large-scale new energy cluster power generation. The problem that scene generation is inaccurate due to the fact that a traditional statistical model ignores space-time coupling is solved.
Owner:MAINTENANCE & TEST CENTRE CSG EHV POWER TRANSMISSION CO +2

Edge security interaction method for electric power Internet of Things

The invention discloses an electric power internet of things edge security interaction method, which comprises the following steps: by taking an initial interaction request initiated by a request security domain to a response security domain as a processing object, establishing a cross-domain interaction basic framework through a HotStuff consensus control center, fusing node historical trust data and authentication information of a trusted identity basic trust facility, and establishing a cross-domain interaction framework through the HotStuff consensus control center; constructing a multi-dimensional security protection strategy covering identity verification, authority control and data encryption; a multi-dimensional security protection strategy is used as a processing object, a cross-domain interaction process is executed based on a HotStuff consensus mechanism, and a quantitative trust evaluation result is generated through a hierarchical model of distributed trust calculation, joint trust calculation, total trust calculation, link reliability calculation and fuzzy trust calculation; and when a trust evaluation result meets a security threshold, executing an interaction operation, performing coordinate fuzzification processing on a physical position of the accessed resource to hide a real address, and after interaction is completed, generating a performance verification report through communication overhead and a false alarm rate index.
Owner:ZHEJIANG ZHENENG LANXI POWER GENERATION CO LTD

Transverse isolation and secure data transmission method and system for power system

The invention relates to the technical field of power system network and information security, and discloses a power system transverse isolation and secure data transmission method and system.The method comprises the steps that a production control security domain and a management information security domain are determined, and cross-domain service flow information is configured; when transmission between a production control security domain and a management information security domain is needed, cross-domain service flow information to which service data belongs is collected and packaged into a security self-description data unit; on the transverse isolation path, acquiring header information to generate a session token; when the secure self-description data unit is forwarded, feature data are obtained and compared with the associated session token, and forwarding is carried out when limiting conditions are met; and maintaining a sliding time window, carrying out statistics on the forwarded security self-description data unit, and identifying an abnormal behavior. According to the invention, semantic-level access control and dynamic protection of cross-domain services between a production control security domain and a management information security domain are realized.
Owner:BEIJING ZHONGDIAN YUBANG TECH CO LTD

Variable constraint control method for stage equipment based on risk perception and dynamic security domain

The invention belongs to the technical field of stage equipment boundary safety protection control, and particularly relates to a variable constraint control method for stage equipment based on risk perception and a dynamic safety domain. The characteristic that stage equipment is usually in a fixed application scene in the performance process is utilized, the inherent safety level and active protection capacity of a stage equipment system are greatly improved through tight combination of real-time collection and variable constraint, and therefore safer, more accurate and more smooth control is achieved. According to the method, a construction algorithm is embedded in software, a dynamic region division and segmentation threshold adjustment strategy is utilized, and a multi-stage braking redundancy cooperation mechanism is triggered, so that the anti-interference capability and fault tolerance performance of the control system are effectively enhanced, the implementation cost is low, a large amount of manpower and material debugging can be saved, and the system is suitable for large-scale popularization and application. And a high-precision and high-robustness safety control scheme is provided for large stage machinery such as a seat vehicle platform and a rotating stage.
Owner:BEIJING BEITE SHENGDI TECH DEV CO LTD

User side resource aggregation scheduling method, system and related device

The invention discloses a user side resource aggregation scheduling method and system and a related device, and belongs to the technical field of power system scheduling, and the method comprises the steps: determining a security domain of a power distribution network under the condition of not violating any operation constraint conditions, and obtaining a flexible resource adjustment model combined with the operation constraint boundary of the power distribution network; a convex polyhedron is used to describe the precise security domain of a single resource, then a sino polyhedron is used to describe the precise security domain aggregation user side flexible resource of the single resource, and based on the flexible resource potential model under the power distribution network operation constraint requirement and the flexible resource adjustment model combined with the power distribution network operation constraint boundary, the power distribution network operation constraint boundary is adjusted. Constructing a user side resource aggregation model considering the operation security domain of the power distribution network; and solving the user-side resource aggregation model considering the operation security domain of the power distribution network through a sino polyhedron, and carrying out user-side resource aggregation scheduling based on a solving result. According to the method, the problem of concurrent scheduling of numerous small-scale distributed resource clusters can be solved.
Owner:POWER RES INST OF STATE GRID SHAANXI ELECTRIC POWER CO LTD +1

Red and black isolation system and method for realizing dynamic switching of encryption algorithm based on FPAG dynamic configuration technology

The invention provides a red and black isolation system and method for realizing encryption algorithm dynamic switching based on an FPAG dynamic configuration technology, and aims to solve the problems of rigid isolation strategy, high switching response delay, encryption algorithm solidification and the like of a traditional red and black isolation architecture. The system comprises a red area CPU unit, a black area CPU unit and an isolation area FPGA access control unit, and automatic switching of protection strategies is achieved through FPGA local dynamic configuration. According to the invention, the encryption algorithm can be rapidly and dynamically switched according to the identified network threat level, and efficient and secure transmission of data among different security domains is ensured. The method has the characteristics of file encryption storage and integrity verification, key security processing, dynamic region isolation, multi-algorithm support and the like, is suitable for cross-security domain information interaction scenes needing to ensure information security, and has good social benefits and wide application prospects.
Owner:CHINA STATE SHIPBUILDING CORP NO 707 RES INST

Cross-security domain computing power resource federation and privacy protection system

The invention provides a cross-security domain computing power resource federation and privacy protection system. The system comprises a scheduling management node, a communication gateway, a plurality of computing nodes, a verification node and a key management node. The scheduling management node decomposes the calculation general task into a plurality of subtasks and plans different node execution paths; the communication gateway encapsulates the subtask data into an encrypted data packet containing a position identification segment and an encrypted data segment which can be independently decrypted; the computing node is integrated with the trusted execution environment to provide hardware-level security isolation; the summarizing node is used for receiving sub-task results which are processed by the computing nodes and comprise encrypted data segments; the verification node realizes calculation integrity verification; and the key management node confirms a task completion state by collecting the position identification segment, and coordinates and starts a data segment aggregation decryption process. According to the method, the data and code privacy of the computing task is ensured while the computing power island is broken, and a cross-domain computing power resource sharing mechanism with balanced safety and performance is established.
Owner:HANHOU (BEIJING) TECH CO LTD

Expert strategy constrained blast furnace smelting safety reinforcement learning decision optimization method

The invention discloses a blast furnace smelting safety reinforcement learning decision optimization method based on expert strategy constraint. According to the method, an optimization strategy can be learned from an off-line expert track on the premise that operation safety is ensured. Specifically, a conditional generative adversarial mechanism is introduced to realize the alignment of strategy distribution and expert decision, and the exploration ability in a security domain is retained while the expert experience is inherited. And an independent state-action safety evaluation network is designed and a discount factor is introduced, so that the long-term accumulation risk caused by the large hysteresis characteristic of the blast furnace is effectively dealt with. In addition, memory is adopted to enhance network coding historical information, incomplete state observation is supplemented, and information deviation in decision is reduced. According to the method, effective integration of triple guidance mechanisms is realized, knowledge inheritance is realized through distributed alignment, performance improvement is driven through reward optimization, and risk prevention and control are ensured through explicit security constraints.
Owner:CENT SOUTH UNIV

ARM processor-oriented microkernel operating system confidential computing environment construction method

The invention relates to an operating system environment construction technology, and discloses an ARM (Advanced RISC Machines) processor-oriented micro-kernel operating system confidential computing environment construction method, which is characterized in that a hierarchical system architecture is constructed, a virtual machine monitor and a confidential domain management monitor are decoupled at an ARM exception level EL2, and the virtual machine monitor and the confidential domain management monitor run in mutually isolated address spaces. The RMM is used as an independent module for dynamic loading, a management mechanism of a confidential computing domain is specially used, and the Hypervisor is only responsible for strategy scheduling, so that the defect that the Hypervisor is bloated in function in a traditional scheme is overcome. According to the method, the RMM is loaded through the security startup process during startup, the confidential virtual machine is dynamically created during running, mirror image security verification, memory encryption and other mechanisms are integrated, and finally the security domain is destroyed after the application is finished. The method has the advantages that a flexible and safe confidential computing environment conforming to the minimum privilege principle is provided for the microkernel system, and the method is particularly suitable for embedded scenes with high safety requirements such as the Internet of Things and industrial control.
Owner:CHENGDU TIANRUAN TECHNOLOGY CO LTD

Data transmission method and device between security domains, storage medium and electronic equipment

The invention discloses a data transmission method and device between security domains, a storage medium and electronic equipment. Relates to the field of data transmission, and the method comprises: in a front-end application of a first security domain, in response to an interaction request triggered by a user, generating a request message containing a unique identifier, and issuing the request message to a message queue service in the first security domain, the message queue service being used for a large model processing service in a second security domain, consuming the request message according to a pre-configured security access strategy, and writing response data of the large model into a shared cache service of a first security domain; and initiating a query request to the shared cache service to obtain response data corresponding to the interaction request from the shared cache service, and displaying the response data to the user through a user interface of the front-end application. The problem that data transmission efficiency is low when data transmission between security domains in a one-way network isolation environment is realized by depending on a manual or semi-automatic off-line ferry mode in the prior art is solved.
Owner:TRAVELSKY TECHNOLOGY LIMITED

Systems and methods for cryptographic authentication of contactless cards

Example embodiments of systems and methods for data transmission in a contactless card are provided. The contactless card may include a processor, and a memory. The memory may contain a first applet, a second applet, and a plurality of keys. The first applet and the second applet may be stored within a shared security domain. The second applet may be configured to communicate with the first applet to perform one or more cryptographic services. The second applet may be configured to transmit one or more requests to the first applet to encode one or more payload strings based on the plurality of keys to perform the one or more cryptographic services. The first applet may be configured to perform the one or more cryptographic services on behalf of the second applet based on the one or more requests.
Owner:CAPITAL ONE SERVICES LLC

One-way off-line security intelligent decision center system with local deployment as main and external network services as auxiliary and control method of one-way off-line security intelligent decision center system

The invention discloses a one-way off-line security intelligent decision center system with local deployment as a main and external network service as an auxiliary and a control method, and belongs to the technical field of artificial intelligence security and edge intelligent decision. A three-level security domain physical and logic dual isolation architecture is adopted, extranet multi-model intelligent security enablement is performed on a local core decision domain through a physical one-way import channel, the local core decision domain completes reasoning calculation in combination with an enablement result in a non-extranet interaction state, a top-layer task scheme is generated, and a top-layer task scheme is generated. Through a multi-mode man-machine interaction mode, after human rigid authorization, issuing to an intranet equipment scheduling domain for execution, and feeding back a state in real time to form a full-link closed loop; the method realizes external network multi-model intelligent security enabling, local agent professional decision and rigid closed loop dominated by human beings in the whole process, aims to solve the problems of cloud dependence, data leakage, out-of-control AI, high cost, poor adaptability and the like, and is suitable for families, industries, confidential scenes, field non-support operation and other scenes.
Owner:吕明成

Partitioned power grid new energy consumption capability assessment method considering power-carbon collaborative optimization

The invention relates to the field of power system operation, and discloses a partition power grid new energy consumption capability evaluation method considering power-carbon collaborative optimization, and the method comprises the following steps: S1, carrying out the modeling of power grid time sequence data and topological information based on a time sequence channel decoupling lightweight graph convolutional network, and obtaining a power grid dynamic partitioning result; s2, on the basis of a semantic perception feature enhancement network, calculating a partitioned power grid security domain on the basis of the partitioning result; and S3, under the constraint of the security domain, carrying out power-carbon collaborative optimization scheduling by using a colistia colony intelligent optimization algorithm. According to the method, a lightweight graph convolutional network is constructed based on a space-time decoupling principle of power grid topology and new energy output, and node electrical association strength is dynamically weighted based on a graph attention mechanism; through a time sequence channel separation method, adaptive optimization of a minute-level power grid partition structure is realized, and the mismatch problem of a fixed partition mode under source load fluctuation is solved.
Owner:NORTH CHINA ELECTRIC POWER UNIV +3

Double-layer collaborative energy management and control method and system for cold plate type liquid cooling data center

The invention discloses a double-layer collaborative energy management and control method and system for a cold plate type liquid cooling data center, and belongs to the technical field of data center energy management. The method comprises the steps that upper-layer day-ahead economic dispatching is based on time-of-use electricity price and outdoor environment temperature prediction, and a server load scheme and a cooling system reference flow track are generated with the minimum total operation cost as the target; in lower-layer intraday dynamic regulation and control, model prediction control is adopted to track the trajectory, the load rate of a server and the rotating speed of a secondary pump are adjusted in real time, and it is ensured that the temperature of a chip is within the safety range of 45-70 DEG C; and the lower layer feeds back the actual chip temperature and energy consumption to the upper layer for online correction of dynamic thermodynamic model parameters to form closed-loop optimization. The system comprises a data acquisition module, a dynamic thermodynamic modeling module, an upper and lower layer optimization control module and an information interaction and feedback module. According to the invention, the overall operation cost and the PUE value of the data center are reduced on the premise of ensuring the temperature safety of the chip.
Owner:BEIJING INST OF TECH

Causal and anti-fact casting defect diagnosis and closed-loop control system

The invention discloses a casting defect diagnosis and closed-loop control system and method based on causal anti-fact and multi-agent arbitration. The system collects multi-source data such as temperature, flow, cooling, vision and the like, learns a causal structure, establishes an agent model and solves an adjustment scheme which enables the defect probability to be remarkably reduced in a security domain; performing evidence verification on the suggestions through verifiable generation and a knowledge graph, fusing vision, process, metallurgy and simulation agent arbitration, executing in an edge-cloud double ring, and triggering security rollback abnormally; and when the uncertainty is increased, active learning and incremental updating are implemented. According to the scheme, the defects of shrinkage cavities, air holes and the like can be remarkably reduced, the first-pass yield is improved, and the method is suitable for aluminum alloy sand molds, metal molds and low-pressure casting production lines.
Owner:LIAONING UNIVERSITY OF PETROLEUM AND CHEMICAL TECHNOLOGY

Government affair inspection method and system based on information management and natural language processing

The invention discloses a government affair inspection method and system based on information management and natural language processing, and belongs to the technical field of big data analysis and natural language process.The method comprises the steps that a micro-service architecture system is adopted to construct a government affair inspection information management platform, and an inspection group is supported to access the system in real time through multiple terminals; the request data is transmitted to a security domain server through a government affair external network after being encrypted by a national cryptographic algorithm; an intelligent screening mechanism based on natural language processing and Transform model driving; performing hierarchical data security protection: establishing an authority control model, and dividing a data access domain according to roles; performing problem qualitative analysis based on natural language processing and Transform model driving; and analyzing the patrol data and generating an intelligent report. According to the method, full-process digitalization, full-factor association and full-period intelligentization of patrol work can be realized, and the problem discovery accuracy, the analysis depth and the rectification effectiveness are remarkably improved.
Owner:SHANDONG INSPUR COMML SYST CO LTD +1

Tower crane self-monitoring safety protection device based on Internet of Things technology

The invention relates to the technical field of building machinery safety, and discloses a tower crane self-monitoring safety protection device based on the Internet of Things technology, which comprises the following steps: acquiring the real-time inclination angle of a tower crane, and constructing a dynamic state vector containing the inclination angle, the angular velocity and the angular acceleration; real-time risk indexes such as operation stability and structure accumulated fatigue are calculated in parallel, and a self-adaptive security domain with a boundary capable of dynamically shrinking is constructed based on the indexes; adopting a prediction model to predict an evolution trajectory of the current state vector and the risk index in a future time period according to the current state vector and the risk index; and by judging the relative relationship between the evolution trajectory and the dynamic security domain, generating hierarchical control instructions such as early warning, intervention or protection, and issuing the hierarchical control instructions to a tower crane control system to execute corresponding actions. By introducing state prediction and a dynamic safety domain, safety monitoring is converted from passive'threshold triggering 'to active'risk pre-judgment', and the safety margin can be intelligently adjusted according to real-time working conditions.
Owner:BEIJING CHENGJIANQI CONSTRUCT ENG CO LTD

Power grid elastic scheduling method and system based on dynamic security domain

The invention discloses an elastic scheduling method and system for a power grid based on a dynamic security domain, and relates to the technical field of elastic scheduling methods, and the method comprises the steps: determining the boundary of a non-key constraint based on an elastic adjustment factor, a power grid operation event corresponding to the power grid, and a plurality of constraints; the corresponding optimization event is determined according to the dynamic security domain, the boundary of the non-critical constraint and the real-time working data of the power grid, and the elastic scheduling system of the power grid is determined based on the optimization event, the real-time load data of the power grid and the corresponding real-time power supply data, so that the accuracy of the elastic scheduling system of the power grid is improved; and the elastic scheduling effect of the power grid is further improved. Therefore, the plurality of sub elastic scheduling projects are determined according to the identification of the elastic scheduling mode, the power optimization event of the power grid is determined based on the project content of each sub elastic scheduling project, the corresponding project position and the real-time load data of the power grid, and the accuracy of the online optimization logic of the power grid is ensured.
Owner:XISHUANGBANNA POWER SUPPLY BUREAU OF YUNNAN POWER GRID CO LTD

Road cargo transportation management method and system based on electronic waybill

The invention discloses a road cargo transportation management method and system based on an electronic waybill, and relates to the technical field of the Internet of Things, and the method comprises the steps: carrying out the real-time collection and comparison of transportation data and a safety domain through a vehicle-mounted OBD device and a roadside RFID reader-writer according to a digital twinborn body updated for the first time and a safe passing time-space map, and carrying out the real-time collection and comparison of the transportation data and the safety domain; when a composite anomaly is detected, the digital twin state is updated, and a third-level alarm code is triggered; and according to the five-dimensional auditing report, splitting the transportation attribute and the security attribute, respectively anchoring the transportation attribute and the security attribute to a transportation chain and a security chain, and generating a verifiable cross-chain evidence packet through a cross-chain relay technology. According to the method, the transport attributes and the security attributes are split and anchored to the transport chain and the security chain respectively, and the MPT tree is constructed to generate the double-chain consistency proof, so that joint auditing under data sovereignty separation is realized, and the collaborative response time of multiple departments is shortened; a tamper-resistant evidence chain is formed from waybill initialization, security domain implantation to final audit destruction.
Owner:WUXI XINFENGLAI STAINLESS STEEL CO LTD

Authentication method and apparatus, and communication device and storage medium

Provided in the embodiments of the present disclosure is an authentication method. The method is executed by a first root certificate authority (CA), and comprises: generating a first type of certificate on the basis of a transport layer security (TLS) protocol, wherein the first type of certificate is a certificate of an entity in a first security domain where the first root CA is located.
Owner:BEIJING XIAOMI MOBILE SOFTWARE CO LTD

Cross-regional semantic security verification method, system and device based on multi-modal deep learning

The invention relates to the technical field of artificial intelligence security, and relates to a cross-regional semantic security verification method, system and device based on multi-modal deep learning. The method comprises the following steps: carrying out analysis, formatting and feature enhancement on multi-modal data transmitted across security domains through a preprocessing engine, and generating standardized input; the preprocessed data are input into a structure verification unit, a semantic understanding unit and a risk simulation unit in parallel; the structure verification unit detects a known attack mode through a static rule matching engine and a dynamic learning engine and dynamically updates a rule base; the semantic understanding unit generates a multi-modal fusion risk assessment result; the risk simulation unit generates a risk thermodynamic diagram; and the verification decision-making device integrates output results of all the units, and intercepts or releases cross-domain transmission data. According to the method, comprehensive semantic security verification of cross-security domain transmission data is realized, and the confidentiality and integrity of sensitive information in a transmission process are ensured.
Owner:SHANDONG INSPUR SCI RES INST CO LTD

Power system time sequence simulation system considering security constraints

PendingCN121413200AGeometric CADDesign optimisation/simulationDifferential algebraic equationAlgebraic equation
The invention relates to the technical field of power system simulation, and discloses a power system time sequence simulation system considering security constraints. The system comprises a power grid topology analysis unit, a dynamic security domain calculation unit, a time sequence constraint modeling unit, a simulation track generation unit and a check feedback unit. The power grid topology analysis unit obtains element connection relations and electrical parameters, and generates a topology description file containing a node admittance matrix; the dynamic safety domain calculation unit obtains the voltage stability limit and the power angle stability boundary of each working condition, and forms a safety domain boundary set; a time sequence constraint modeling unit combines the set with a predefined time interval to build a security constraint time sequence model containing a transient process; the simulation trajectory generation unit solves a differential algebraic equation set by using an implicit trapezoidal integral method, and outputs a state variable trajectory with a timestamp; and the check feedback unit compares the track with the security domain boundary, marks an abnormal segment and generates a correction instruction. The system realizes fusion of security constraint and time sequence simulation.
Owner:POWER ECONOMIC RESEARCH INSTITUTE OF JILIN ELECTRIC POWER CO LTD

Data leakage real-time blocking method fusing micro-isolation strategy and context awareness

The invention relates to the technical field of network security, and discloses a data leakage real-time blocking method fusing a micro-isolation strategy and context awareness. According to the method, a micro-isolation strategy engine based on a data sensitivity level is constructed, a logic security domain is defined, and an independent access control rule is configured; collecting a network data flow in real time, identifying sensitive data by using a deep packet detection technology, and extracting context information; dynamically analyzing and generating risk metadata, calculating a real-time risk index, and establishing a behavior baseline model to detect behavior deviation; in combination with behavior deviation, a risk index and a data operation type, an access control rule is adaptively decided and dynamically updated, a high-risk or unauthorized data transmission session is blocked in real time, and the data leakage protection capability is improved.
Owner:JIANGSU MR ZHI INFORMATION TECH CO LTD

Cooperative control method and system for automobile longitudinal beam production line

The invention discloses a cooperative control method and system for an automobile longitudinal beam production line. The method comprises the steps that fool-proof verification is conducted on the longitudinal beam production line; the longitudinal beam single piece is pretreated to obtain a longitudinal beam basic piece; the longitudinal beam basic part is fed into a first target station to execute a welding procedure, a semi-finished longitudinal beam is obtained, and first posture data are obtained; acquiring operation data and second attitude data corresponding to a second target station; determining a first process relay compensation domain based on the first attitude data and the second attitude data; generating a dynamic security domain based on the operational data; determining process rhythm parameters according to the first process relay compensation domain and the operation data; determining a dynamic pre-leaning point of the mechanical arm in the third target station and a clamping compensation value on the second clamp according to the procedure rhythm parameters; determining an action reference template of the second clamp; and the mechanical arms in the second clamp and the third target station are planned to generate a cooperative strategy. The collaborative efficiency of the automobile longitudinal beam production line can be effectively improved.
Owner:SUNRISE MASCH CO LTD