Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

22 results about "Unidirectional network" patented technology

A unidirectional network (also referred to as a unidirectional gateway or data diode) is a network appliance or device that allows data to travel in only one direction. Data diodes can be found most commonly in high security environments, such as defense, where they serve as connections between two or more networks of differing security classifications. Given the rise of industrial IoT and digitization, this technology can now be found at the industrial control level for such facilities as nuclear power plants, power generation and safety critical systems like railway networks.

Large model-based unidirectional isolation network intelligent data analysis method and device, and medium

The invention provides a one-way isolation network intelligent data analysis method and device based on a large model and a medium, and belongs to the technical field of data processing and network security. Matching an accessible node area list according to a preset organization structure level; the system receives and analyzes the instruction to determine a query intention and an associated data range; the system converts a natural language query instruction into a cross-node SQL statement through a large model module, and verifies the legality of the SQL statement based on user permission; and the system unidirectionally transmits the encrypted SQL instruction to a target node area through a hardware optical shutter, triggers the node area to execute local statistical operation and returns a structured result. Dynamic data pulling in a one-way network environment is achieved through a hardware optical shutter and data pump technology, natural language query is converted into SQL in real time in combination with distributed query optimized by a large model, and the problems that data statistics is lagged and user operation intervention is needed in a traditional isolation network are solved.
Owner:INSPUR ZHUOSHU BIG DATA IND DEV CO LTD

Secure unidirectional network access using consumer-configured limited-access endpoints

ActiveUS20250310300A1Data switching networksSecuring communicationUnidirectional networkCloud computing
A virtual gateway for transmission of packets from a service provider virtual network to a service consumer virtual network of a user is established at a cloud computing environment. A limited-access endpoint is created in the service consumer virtual network, with security settings provided by the user which enable transmission of packets from a service implemented at the service provider virtual network to resources within the service consumer virtual network. A packet directed to a resource in the service consumer virtual network is received at the gateway from the service. If the security settings permit delivery of packets via the endpoint to the resource, the packet is transmitted to the resource.
Owner:AMAZON TECH INC

One-way data security sharing method based on private cloud DMZ

The invention discloses a one-way data security sharing method based on a private cloud DMZ, particularly relates to the technical field of network security, and solves the problem of internal data security sharing under a strict one-way strategy of the private cloud DMZ. To-be-shared data and a sharing strategy are subjected to double encryption, binding and packaging through the sharing management server to generate a data sharing packet and an access credential, and the data sharing packet and the access credential are pushed to a DMZ area gateway server through a one-way network channel; during external access, the gateway locally decrypts and verifies strategy validity (including identity, timeliness and dynamic factors), and decrypts data response after verification is passed. According to the method, the risk that the DMZ is connected back to the intranet is eradicated, fine management and control of dynamic strategies are achieved, the method is compatible with an existing firewall architecture, access logs can be actively audited by the intranet, and a safe closed loop is formed.
Owner:XINJIANG UYGUR AUTONOMOUS REGION METEOROLOGICAL INFORMATION CENT (XINJIANG UYGUR AUTONOMOUS REGION METEOROLOGICAL ARCHIVES)

Data processing method and device

The invention discloses a data processing method and device, and relates to the technical field of computers. A specific embodiment of the method comprises the steps of transmitting a calling request for a target service to a server in response to a selection operation for the target service in the server; in response to request receiving success information returned by the server, triggering a polling mechanism to pull data processing progress instruction information of the target data from the server; based on the data processing progress instruction information, polling and querying a data processing progress instruction information base of the server side to obtain a data processing progress of the server side on the target data; and under the condition that the data processing progress is completed, calling a data acquisition interface of the server to pull the target data from the server and store the target data. According to the embodiment, the polling mechanism is added to the client, and the triggering mechanism is set, so that the problem that the client and the server cannot exchange information in an existing one-way network scene is solved.
Owner:JD DIGITS HAIYI INFORMATION TECHNOLOGY CO LTD

Secure unidirectional network access using consumer-configured limited-access endpoints

PCT designated stageWO2025207344A1Networks interconnectionSecuring communicationUnidirectional networkCloud computing
A virtual gateway for transmission of packets from a service provider virtual network to a service consumer virtual network of a user is established at a cloud computing environment. A limited-access endpoint is created in the service consumer virtual network, with security settings provided by the user which enable transmission of packets from a service implemented at the service provider virtual network to resources within the service consumer virtual network. A packet directed to a resource in the service consumer virtual network is received at the gateway from the service. If the security settings permit delivery of packets via the endpoint to the resource, the packet is transmitted to the resource.
Owner:AMAZON TECH INC

Secure unidirectional network access using consumer-configured limited-access endpoints

ActiveUS12580888B2Data switching networksSecuring communicationUnidirectional networkCloud computing
A virtual gateway for transmission of packets from a service provider virtual network to a service consumer virtual network of a user is established at a cloud computing environment. A limited-access endpoint is created in the service consumer virtual network, with security settings provided by the user which enable transmission of packets from a service implemented at the service provider virtual network to resources within the service consumer virtual network. A packet directed to a resource in the service consumer virtual network is received at the gateway from the service. If the security settings permit delivery of packets via the endpoint to the resource, the packet is transmitted to the resource.
Owner:AMAZON TECH INC

Intelligent fault diagnosis method and device for rail transit point switch

PendingCN121765515ARealize multi-dimensional feature extractionImprove detection efficiencyElectrical testingBiological modelsNeutral networkRail transit
The invention provides an intelligent fault diagnosis method and device for a rail transit point switch, and relates to the technical field of urban rail transit, and the method comprises the steps: collecting a three-phase working current signal and a power signal of the point switch in a standard action period, and sequentially carrying out the abnormality repair and frequency domain enhancement, so as to obtain a time-frequency fusion feature matrix; inputting the time-frequency fusion feature matrix into a target convolutional neural network to obtain a local-global association feature map; sending the local-global correlation feature map into a target one-way LSTM network according to time steps, capturing a long time sequence dependency relationship, and outputting time sequence coding features; and mapping the time sequence coding features into fault type probability distribution through a full connection layer and a Softmax classifier, and taking the maximum probability category as a final fault diagnosis result. Through a unique time-frequency domain feature fusion technology, multi-dimensional feature extraction of the operation state of the switch machine is realized, and the fault detection efficiency of the rail transit switch machine is remarkably improved.
Owner:CHINA RAILWAY SIYUAN SURVEY & DESIGN GRP CO LTD

One-way data transmission method and system, external network client

The application provides a one-way data transmission method and system and an external network client. The one-way data transmission method comprises the following steps: for the data exchange requirement of a one-way isolated network environment, the external network client can write generated request event data into a local data stack, the internal network server can acquire and process the request event data that cannot be transmitted back to the internal network environment based on the stack technology, execute corresponding events, and feed back event response results of the executed events to the external network client, so as to form a message closed loop processing flow in the one-way isolated network environment. In the environment in which the external network and the internal network can only communicate in one way, the external network client can notify the internal network server of data like normal communication, information leakage is avoided, security risks are reduced, and complex deployment and additional maintenance are not required.
Owner:ZHUHAI SEASUN MOBILE GAME TECH CO LTD

A cluster management method, device and medium in a unidirectional network environment

The application discloses a cluster management method and device in a unidirectional network environment and a medium, and aims to solve the problem that it is difficult to manage hundreds or thousands of servers corresponding to nodes in the existing unidirectional network environment. The method comprises the following steps: through a data node, it is listened whether a to-be-executed script is written in a to-be-executed container of a management node, and based on the writing listening, a to-be-executed container in the management node is triggered to be accessed to obtain the to-be-executed script; a legality verification request of whether the to-be-executed script is an authorized script is initiated to the management node, and a verification result of the management node responding to the legality verification request is received; in the case that the verification result is that the legality verification of the to-be-executed script is passed, the to-be-executed script is executed through the data node, and corresponding execution information is obtained; the execution information corresponding to the to-be-executed script is returned to the management node, and the execution information of the to-be-executed script in the cluster management system is counted through the management node, so that the cluster management in the unidirectional network environment is realized.
Owner:INSPUR ZHUOSHU BIG DATA IND DEV CO LTD

A sis system trusted data synchronization method for a heterogeneous isolated network environment

This invention discloses a trusted data synchronization method for SIS systems in heterogeneous isolated network environments, comprising the following steps: A) System initialization and heartbeat cycle setting; the trusted management center and trusted agent pre-agree on a fixed heartbeat cycle T as the basic time unit for global data synchronization; B) Trusted agent side: heartbeat data packet generation and trusted data reporting; at the beginning of each heartbeat cycle, the trusted agent collects various trusted data that need to be sent to the trusted management center in the current cycle and generates a "heartbeat data packet"; C) Trusted management center side: monitoring data and responding with ACK. This invention solves the compatibility problem between bidirectional networks and strict unidirectional networks through a unified communication paradigm of "agent proactive reporting + management end single-byte ACK". This method can work normally in both traditional bidirectional networks and unidirectional networks isolated by network gateways, achieving seamless compatibility of the communication model and shielding the differences in the underlying network.
Owner:XIAN THERMAL POWER RES INST CO LTD +2

Cross-optical-shutter collection method and system for multi-data-source data

The invention discloses a multi-data-source data cross-optical-gate collection method and system, and relates to a data security technology, and the method comprises the following steps: at a data access platform, notifying a data channel to start a task through a kafka message; receiving a kafka message, verifying the token of the received kafka message, and generating a data file after the token is verified; performing data compression and encryption on the generated data file, and generating a digital signature; performing data slicing on the data file after the digital signature is generated, and packaging each data slice based on a data proprietary protocol; and transmitting the packaged data packet by using a one-way network, writing audit data outside the optical gate, and crushing the data packet after writing. The embodiment of the invention provides a dual-channel verification method based on an account checking mechanism. On the basis of keeping the unidirectional transmission characteristic of the original data optical shutter, the data of the receiving end can be periodically verified through the independently deployed reverse optical shutter channel.
Owner:ZHONGDIAN DATA IND CO LTD +1

An AI linkage anti-network-squatter method for routers, gateways, and cameras

PendingCN122348849AAccess networkDevice type
The application provides an AI linkage anti-network-squatter method for routers, gateways and cameras in the technical field of Internet of Things security, which comprises the following steps: S1, collecting multi-dimensional features of devices requesting to access or having accessed the network; S2, inputting the multi-dimensional features into an AI recognition model to obtain a device type recognition result; S3, executing a hierarchical network permission control strategy corresponding to the device type according to the device type recognition result; S4, when the device is a visitor device, sending an authorization request to a user terminal; receiving an authorization feedback and configuring corresponding temporary network permissions for the visitor device according to the authorization feedback; and S5, when the device is a malicious network-squatter device, executing a network access blocking operation, adding the corresponding multi-dimensional features to a blacklist and issuing a linkage protection instruction to at least one camera in the network. The application has the advantage of greatly improving the in-depth recognition, active disposal and data protection capabilities for malicious devices having accessed the network.
Owner:FUJIAN NEWLAND COMM SCI TECH

A data transmission method, apparatus, device, and storage medium

The application discloses a data transmission method and device, equipment and storage medium, and relates to the field of communication, and comprises the following steps: a sending end constructs to-be-transmitted data based on source data and check data, groups the to-be-transmitted data to obtain each group data, and respectively redundantly encodes each group data to obtain each encoded data group; each encoded data group is rearranged according to a preset cross arrangement method to obtain each target data packet, and each target data packet, packet header information of a transmission protocol corresponding to the target data packet and target meta information are combined to obtain each combined data; each combined data is sent to a receiving end at a constant speed, so that the receiving end reorganizes each combined data based on the target meta information to obtain each reorganized data; and the target transmission data is determined according to each reorganized data by the receiving end, and the target transmission data is checked to complete data transmission. The application realizes data transmission by using a unidirectional network.
Owner:CETC CYBERSPACE SECURITY TECH CO LTD

System and method for a secure unidirectional network interface

A secure network interface system includes a secure domain interface, a processing system, a network function device, and a network interface. The processing system is configured to send and receive information within secure systems, transmit configuration data for the network interface, compile data from the secure systems into a plurality of data packets, and transmit the plurality of data packets to the network function device without being physically capable of receiving data packets from the network function device, thus providing a demonstration of security partitioning. The network function device receives the configuration data, configures the network interface using the configuration data, and provides discrete feedback to the processing system regarding a configuration status. The network interface sends the plurality of data packets to one or more external unsecure systems and to limits a communication protocol type received from one or more external unsecure systems.
Owner:ROSEMOUNT AEROSPACE INC

Medical data deployment analysis platform and equipment based on edge computing technology and medium

The invention provides a medical data deployment analysis platform and equipment based on an edge computing technology and a medium, and relates to the technical field of medical data processing. An edge computing node is in butt joint with a medical data source of a medical institution; the safety probe module is used for docking a database interface and a service process, and monitoring the state information of the prepositive server; one-way network transmission is adopted between the data center and the prepositive server, the data center initiates access to the prepositive server at regular time to pull data, the processing state of the medical information flow by the edge computing node is monitored, and prompt information is sent out when abnormity occurs in the processing process. The platform locally processes the medical information flow through the edge computing node, so that the delay of data transmission to the data center is reduced, and real-time analysis is realized. And the data security is protected through multi-level protection from the front security module to the data center. Based on the dynamic monitoring of the processing duration difference value, the resource allocation accuracy of the edge node is improved.
Owner:NORTH CHINA DIGITAL HEALTH TECHNOLOGY CO LTD

5G differential adaptive link delay detection method and system

The invention relates to a 5G differential adaptive link delay detection method and system. The method comprises the following steps: constructing a broadcast data packet embedded with a sending timestamp at a sending end, sending the broadcast data packet to a 5G network in a broadcast mode, and dynamically adjusting the broadcast frequency according to the state of the 5G network when the broadcast data packet is sent; and receiving the broadcast data packet at a receiving end, recording a receiving timestamp at the same time, and calculating the unidirectional network delay according to the sending timestamp and the receiving timestamp. The system comprises differential protection communication terminal devices which are respectively arranged in equipment of the differential protection system; the differential protection communication terminal device comprises a data encryption and decryption module, a 5G communication module and a delay detection module. According to the invention, resource consumption can be reduced, efficiency can be improved, network conditions can be dynamically adapted, unidirectional link delay can be accurately measured, and the method is especially suitable for realizing delay detection for a differential protection system configured for a power system in a 5G environment.
Owner:STATE GRID JIANGSU ELECTRIC POWER CO LTD SUZHOU BRANCH

A data collection method, device and medium based on a one-way network environment

The embodiments of this specification disclose a data collection method, device and medium based on a unidirectional network environment, which relate to the field of data collection technology. The method includes: generating corresponding collection task configuration information through an external network server deployed in the external network, each data collection task corresponds to at least one data source, and the internal network client is deployed in the internal network node; writing the collection task configuration information corresponding to each data collection task into a pre-built external network business library; based on a specified trigger of at least one specified internal network client, pulling the specified collection task configuration information of the specified internal network client from the external network business library; executing the specified data collection task according to the specified collection task configuration information through the specified internal network client to generate specified collection data; backfilling the specified collection data into the external network business library, so that the external network server can read the specified collection data in the external network business library, thereby realizing unidirectional data collection from the external network to the internal network.
Owner:INSPUR ZHUOSHU BIG DATA IND DEV CO LTD

Data verification method, system and device and storage medium

The invention discloses a data verification method, system and device and a storage medium, and belongs to the technical field of Internet of Things data security, and the method comprises the steps: generating a verification task identifier based on transmission task information; serializing the verification task identifier to obtain a binary file; transmitting the binary file to a receiving terminal unidirectionally, and feeding back a verification result from the Netty channel after the receiving terminal verifies the data integrity; obtaining a comparison result of the autonomous comparison prediction result and the integrity verification result from the Internet of Things acquisition terminal; if so, the verification is passed, and if not, the verification is not passed. In the application, through a binary stream conversion file mode and a Netty channel mechanism, a sending end can perform autonomous verification without accessing data of a receiving end, and the limitation that end-to-end integrity verification depends on bidirectional feedback is broken through. And the data volume is compressed in a Protobuf serialization manner, so that the calculation overhead is reduced, and the verification efficiency when the data integrity is verified in a one-way network environment is improved.
Owner:E SURFING IOT CO LTD

Method, receiver and program associated with the method for receiving audio content and time-shifted playback in a hybrid receiver

The invention relates to a method for receiving and playing back audio and / or audiovisual content in a receiver device capable of receiving a determined audio and / or audiovisual stream from a unidirectional network or a bidirectional network. A determined stream broadcast on a network is first received and the content transmitted through said stream is played back in the receiver device. A first event external to the receiver device is detected. Said first event triggers an interruption of the ongoing playback of said content and records the time of said interruption. A second external event is then detected. The second external event triggers a step for determining the availability of the non-played part of the interrupted content and displaying to the user a menu for him to resume playing back this non-played part. The introduction of a command will then trigger the retrieval of the non-played part of said content and the playback of the retrieved content part. The solution thus enables the retrieval of a content broadcast on a radio stream; the playback of said content has been interrupted and the user is prompted to resume the playback later.
Owner:TDF

Distributed high-speed sampling synchronization method, system and device and storage medium

The invention discloses a distributed high-speed sampling synchronization method and a distributed high-speed sampling synchronization system, which are applied to a system comprising at least two sensing units and a computing unit, and the sensing units are connected with the computing unit through a one-way network. The method comprises the following steps: measuring and storing the total transmission delay of a data channel corresponding to each sensing unit from signal sampling to receiving of a calculation unit on line; the calculation unit receives the sampling data frames sent by the sensing units and maintains a unified storage reference position for all channels; for each channel, calculating a storage initial position of the sampling data of the channel according to the storage reference position and the total transmission delay of online measurement and storage of the channel; and storing the sampling data of each channel to the storage starting position in the corresponding buffer area, so that the data stored at the same position in the buffer areas of different channels corresponds to the same sampling moment. According to the invention, the problem of data synchronization in a long-distance and high-speed sampling scene is solved, resource consumption during data processing is reduced, and the processing efficiency is improved.
Owner:NARI TECH CO LTD +1

A container application management method, system, device and medium suitable for one-way network

The application discloses a container application management and control method, system and device suitable for a one-way network, and a medium. The method comprises the following steps: obtaining a standardized management and control instruction, encrypting the standardized management and control instruction to obtain an encrypted standardized management and control instruction; analyzing the encrypted standardized management and control instruction to obtain instruction information, performing a corresponding container operation according to the instruction information, and obtaining container running state data; intelligently analyzing and risk predicting the container running state data to obtain intelligent analysis logs of container running multidimensional information; encrypting the intelligent analysis logs, decrypting and analyzing the encrypted intelligent analysis logs, and obtaining decrypted log information; and comprehensively managing and controlling the decrypted log information, realizing container whole life cycle management and control, and significantly improving operation and maintenance management efficiency.
Owner:HAINAN POWER GRID CO LTD