Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

Method for realizing decentralized distributed process guarding based on ad hoc network technology

A decentralized, self-organizing network technology, applied in the field of network security, which can solve the problems such as the failure of the guardian service to be used normally, the disappearance of the guardian ability of key processes, and the loss of the protection ability of the target system.

Active Publication Date: 2020-10-27
江苏开博科技有限公司 +1
View PDF5 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0004] The disadvantages of the centralized central monitoring guardian mode are: it is easy to cause the guardian service to be unable to use normally due to the failure of the central guardian node itself or being illegally attacked, and the single point of failure, so that the service process related to the target system loses the protection ability
[0005] The downside of the localized monitoring daemon model is: a more immediate single point of failure incident rate, i.e., if the daemon process itself is terminated unexpectedly, the daemonizing capability of the critical process disappears in an instant
Moreover, only a single system can be guarded, and key processes of other systems cannot be guarded, and the defense range is extremely small

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method for realizing decentralized distributed process guarding based on ad hoc network technology

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0044] Now, the present invention will be described in further detail in conjunction with specific operations.

[0045] The basic functions of the process guard node application of the present invention include: polling and monitoring of the current system target process, generating encrypted monitoring reports and alarm logs, super-management intervention mode authentication and start and stop, atomic operation of process start and stop, adjacent process guard node discovery and Heartbeat monitoring, failover and takeover of adjacent process daemon nodes, message broadcast and reception between adjacent process daemon nodes, remote interface call of alarm control system (upload monitoring report and alarm information), localization under system failure of alarm control center Message push, super management login and authentication WEB service, operation audit log system remote interface call (report operation trace log).

[0046] In the initialization phase, core resources su...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention relates to a method for realizing decentralized distributed process guarding based on an ad hoc network technology, which comprises the following steps of: generating a super-tube identity, authority and guarding strategy file through a creation module, and safely storing the file in each guarding node and system process: 1, perpetual motion guarding without external force intervention, and 2, iteratively updating / newly adding nodes in the process; the super administrator performs external force intervention and redeployment, and perpetual motion guards are started after deployment is completed and the super administrator intervention mode exits; and basic services of mutual monitoring, failover and takeover, message broadcasting and communication are started. The credible decentralized distributed process guarding system is constructed by utilizing an original ad hoc network technology and is used for avoiding the problem of failure of system process guarding capabilitycaused by a single-point fault of a guarder; meanwhile, the protection range can be expanded from a single machine to all hosts in the whole domain, the anti-attack capability of the whole protectionsystem is improved, and the credibility of the protection system is ensured.

Description

technical field [0001] The invention relates to a method for realizing a decentralized distributed process guard based on an ad hoc network technology, and belongs to the technical field of network security. Background technique [0002] The guardian mechanism of the key process of the software system will play a better role in guaranteeing the robustness and availability of the system and services, and at the same time, it will play a better defense against illegal shutdown, illegal service intrusion, illegal service termination and other attacks. The traditional guardian mode is divided into the following two modes: [0003] One is to build a centralized central guardian system to conduct centralized polling, scanning, monitoring and guarding of the target system and key processes; the other is to develop and run a purely localized (same source with the target system) daemon process for the key processes of the system Perform localized polling scan monitoring and guarding...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): H04L29/08H04L12/24H04L9/06G06F21/60G06F21/64
CPCG06F21/602G06F21/64H04L9/0631H04L41/0823H04L67/10H04L67/1034H04L67/1095
Inventor 孟军
Owner 江苏开博科技有限公司
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products