Network dynamic defense method, device and system based on random multidimensional transformation

A technology of dynamic defense and multi-dimensional transformation, applied in the field of network security

Active Publication Date: 2020-07-28
PLA STRATEGIC SUPPORT FORCE INFORMATION ENG UNIV PLA SSF IEU
View PDF4 Cites 10 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0003] For this reason, aiming at problems such as easy collision of address conversion and inefficient distribution, the present invention provides a network dynamic defense method, device and system based on random multi-dimensional transformation, which can solve the problems of active scanning, passive monitoring and internal unauthorized access caused by defense failure. Misuse issues, good interactivity and stability

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Network dynamic defense method, device and system based on random multidimensional transformation
  • Network dynamic defense method, device and system based on random multidimensional transformation
  • Network dynamic defense method, device and system based on random multidimensional transformation

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0047]In order to make the purpose, technical solution and advantages of the present invention more clear and understandable, the present invention will be further described in detail below in conjunction with the accompanying drawings and technical solutions.

[0048] The software-defined network SDN control layer can abstract the distribution status of devices into a network-wide view, so that customized applications can uniformly configure the nodes of the entire network; thus, the effective management of node changes in the entire network can be realized through centralized control and global view. The network dynamic defense based on software-defined network can realize the dynamic modification of hopping elements, hopping periods and hopping rules, and effectively improve the manageability of network hopping. Aiming at the problem that the current network structure is static and the defense mechanism is fixed, the network border defense is easy to fail, etc., the embodime...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention belongs to the technical field of network security, and particularly relates to a network dynamic defense method, device and system based on random multidimensional transformation, and the method comprises the steps: registering the identity of a legal user, and storing the attribute information of the user in a database; judging whether an end node user is a registered user or not through the access user attribute information; extracting a hopping address selection range and a hopping period by using a user private key, generating a hopping address, and verifying the validity ofthe hopping address according to a request message of accessing the network service by the user node; and sending the encrypted service resource list to the user node passing the verification, wherein the user node decrypts the encrypted service resource list by using the private key and then accesses the service resources of the corresponding security level. To solve the problems of easy collision, low distribution efficiency and the like of address conversion, a dynamic network view is constructed through continuous conversion of whole network end nodes, the uncertainty of a network structure and a target node is increased, and non-detection defense and effective management of whole network node conversion are realized.

Description

technical field [0001] The invention belongs to the technical field of network security, and in particular relates to a network dynamic defense method, device and system based on random multidimensional transformation. Background technique [0002] With the continuous development of network technology, the Internet has become an increasingly important strategic infrastructure; network applications are also constantly affecting people's way of life. In recent years, with the continuous exposure of major security incidents such as "Prism Gate", SWIFT banking system turmoil, and Dyn downtime, the issue of cyberspace security has become more prominent, and its importance is self-evident. The asymmetric security situation of "easy to attack but difficult to defend" in cyberspace has become a severe test for network security defense. The root cause of the weak point of attack and defense in the network lies in the deterministic, static and single nature of the network composition...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): H04L29/06H04L9/06H04L9/08G06F21/55
CPCH04L63/0876H04L63/10H04L63/1458H04L9/0643H04L9/0869H04L63/20H04L63/1441H04L63/045G06F21/55
Inventor 张恒巍谭晶磊张红旗张玉臣胡浩刘小虎胡瑞钦徐东李朝阳
Owner PLA STRATEGIC SUPPORT FORCE INFORMATION ENG UNIV PLA SSF IEU
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products