Method and device for guaranteeing system security

A system security and security configuration technology, applied in the field of system security, can solve the problem of low security level of EPG equipment, and achieve the effect of improving security

Active Publication Date: 2018-03-20
ZTE CORP
View PDF2 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0006] Embodiments of the present invention provide a method and device for ensuring system security, so as to at least solve the problem of low security level of EPG equipment in related technologies

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method and device for guaranteeing system security
  • Method and device for guaranteeing system security
  • Method and device for guaranteeing system security

Examples

Experimental program
Comparison scheme
Effect test

Embodiment 1

[0042] The technical solution in this application document can run on the EPG equipment in the IPTV service system, that is, execute the technical solution in the application document in the Linux system in the EPG equipment.

[0043] figure 1 is a flowchart of a method for ensuring system security according to an embodiment of the present invention, such as figure 1 As shown, the process includes:

[0044] Step S102, loading the security configuration file into a dynamically loadable kernel module LKM, wherein the LKM is set in a Linux system, wherein the security configuration file includes rules for checking the validity of file operations;

[0045] Step S104, check the validity of the detected file operation according to the security configuration file, and execute the file operation when it is determined that the file operation is legal.

[0046] It should be noted that the file operations recorded in the above steps include modifying files, deleting files, moving files...

Embodiment 2

[0091] In this embodiment, a device for ensuring system security is also provided, and the device is used to realize the above embodiments and preferred implementation modes, and what has been described will not be repeated. As used below, the term "module" may be a combination of software and / or hardware that realizes a predetermined function. Although the devices described in the following embodiments are preferably implemented in software, implementations in hardware, or a combination of software and hardware are also possible and contemplated.

[0092] Figure 5 is a structural block diagram of a device for ensuring system security according to an embodiment of the present invention, such as Figure 5 As shown, the device includes:

[0093] The loading module 52 is used to load the security configuration file into the dynamically loadable kernel module LKM, wherein the LKM is set in the Linux system, wherein the security configuration file includes rules for checking the...

Embodiment 3

[0103] The embodiment of the invention also provides a storage medium. Optionally, in this embodiment, the above-mentioned storage medium may be configured to store program codes for performing the following steps:

[0104] S1, loading the security configuration file into a dynamically loadable kernel module LKM, wherein the LKM is set in a Linux system, wherein the security configuration file includes rules for checking the validity of file operations;

[0105] S2. Perform a legality check on the detected file operation according to the security configuration file, and execute the file operation when it is determined that the file operation is a legal operation.

[0106] Optionally, in this embodiment, the above-mentioned storage medium may include but not limited to: U disk, read-only memory (ROM, Read-Only Memory), random access memory (RAM, Random Access Memory), mobile hard disk, magnetic disk Various media that can store program codes such as discs or optical discs.

...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention provides a method and device for guaranteeing the system security. The method includes the steps that a dynamic-loadable kernel module (LKM) is set in a Linux system of an EPG device, and preset security configuration files are loaded in the LKM; when file operation is carried out, whether the file operation is legal or not is detected according to the security configuration files; under the condition that the file operation is legal, the file operation is carried out, and if the file operation is illegal, the file operation is refused to be carried out. By means of the method and device for guaranteeing the system security in the technical scheme, the problem that the security level of the EPG device in the related technology is low is solved, and the security of the EPG device is greatly improved.

Description

technical field [0001] The present invention relates to the communication field, in particular, to a method and device for ensuring system security. Background technique [0002] Internet Protocol TV or Interactive Personal TV (IPTV for short) uses TVs, computers and mobile devices as display terminals, and connects set-top boxes, computers or mobile devices to the Internet. Through the Internet, especially Broadband network provides various real-time and non-real-time multimedia services to various users such as TV, PC, and mobile terminals. [0003] Some core devices in the IPTV system are deployed inside the firewall, but the Electronic Program Guide (EPG) equipment that provides services to users must be deployed outside the firewall, which is often attacked by hackers, resulting in program tampering Or it is deleted, which directly leads to abnormal IPTV services and cannot provide services for users. [0004] The reinforcement strategies in related technologies are a...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): G06F21/55G06F21/54G06F21/60G06F21/62G06F21/44
CPCG06F21/44G06F21/54G06F21/554G06F21/604G06F21/6218G06F2221/2141G06F21/55G06F21/60G06F21/62
Inventor 费立华
Owner ZTE CORP
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products