首页> 外国专利> Method for blocking loop around connection between servers and managing password utilizing imaginary account

Method for blocking loop around connection between servers and managing password utilizing imaginary account

机译:阻止服务器之间连接环回并使用虚拟帐户管理密码的方法

摘要

The present invention relates to a method of blocking bypass access and password management between servers using a virtual account, and in particular, relates to a method of blocking bypass access between servers and managing a password using a virtual account in a network environment. In the method performed by the access control device 200 in an environment including) and, the access control device 200 and the service server 300; A first step (S10) in which the access control device 200 sets an actual port accessible to the service server 300 in response to a default port of a predetermined protocol; A second step (S20) of setting, by the access control device 200, a virtual port corresponding to the real port; A third step (S30) of analyzing the data packet received from the user terminal 100 to obtain default port information of a protocol of a request connection; A fourth step (S40) of connecting to the service server 300 with a real port corresponding to the virtual port via a virtual port corresponding to the default port of the protocol of the requested connection acquired in the third step (S30). Including, the actual port or the virtual port corresponding to each real port is not exposed, and only the information of the default port is exposed to the user, so the user who does not know the actual port or virtual port information corresponding to each real port is After accessing the service server, it is possible to fundamentally block bypass access from a predetermined service server to other service servers, and change only the corresponding virtual port periodically or aperiodically while maintaining the actual port of the service server. As a result, port-based hacking can be effectively blocked while facilitating port management.
机译:本发明涉及一种使用虚拟帐户来阻止服务器之间的旁路访问和密码管理的方法,尤其涉及一种在网络环境中使用虚拟帐户来阻止服务器之间的旁路访问和密码管理的方法。在由访问控制设备200在包括)以及访问控制设备200和服务服务器300的环境中执行的方法中;第一步(S10),访问控制设备200响应于预定协议的默认端口,设置服务服务器300可访问的实际端口;第二步骤(S20),由访问控制设备200设置与真实端口相对应的虚拟端口。第三步骤(S30),分析从用户终端100接收到的数据包,获取请求连接协议的默认端口信息;第四步骤(S40),通过与在第三步骤(S30)中获取的所请求的连接的协议的默认端口相对应的虚拟端口,通过与虚拟端口相对应的真实端口连接到服务服务器300。其中,不公开每个真实端口对应的实际端口或虚拟端口,而只向用户公开默认端口的信息,因此不知道每个真实端口对应的实际端口或虚拟端口信息的用户访问服务服务器后,可以从根本上阻止从预定服务服务器到其他服务服务器的旁路访问,并且可以在维持服务服务器的实际端口的同时,定期或不定期地更改相应的虚拟端口。结果,在促进端口管理的同时,可以有效地阻止基于端口的黑客攻击。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号