Patents
Literature
Hiro is an intelligent assistant for R&D personnel, combined with Patent DNA, to facilitate innovative research.
Hiro

33 results about "Internet layer" patented technology

The internet layer is a group of internetworking methods, protocols, and specifications in the Internet protocol suite that are used to transport network packets from the originating host across network boundaries, if necessary, to the destination host specified by an IP address. The internet layer derives its name from its function facilitating internetworking, which is the concept of connecting multiple networks with each other through gateways.

Systems and methods for mixed mode handling of ipv6 and ipv4 traffic by a virtual server

The present invention is directed towards systems and methods for mixed-mode load balancing by a virtual server in a network supporting a plurality of internet protocols. In various embodiments, a mixed-mode virtual server receives service requests based on two or more internet layer protocols. The mixed-mode virtual server is configured to detect an IP address type of the client issuing the service request, and identify the internet protocol of the service request based on the detected IP address type. The mixed-mode virtual server can then forward the request to a server supporting the identified internet protocol. In this manner, the mixed-mode virtual server can bind load balance servers supporting a plurality of internet protocols.
Owner:CITRIX SYST INC

Method for Ensuring Security of Computers Connected to a Network

A network authentication method is disclosed. A transmission-side client and a reception-side client have the same password. The transmission-side client transmits multiple authentication packets to the reception-side client at a slot interval according to an authentication code generated based on the password. The reception-side client measures a slot interval corresponding to the arrival timings of the respective authentication packets and then generates an authentication code based on the same password. The reception-side client compares the measured slot interval with the generated authentication code. When the two comparison targets are identical, the reception-side client concludes that the authentication is successful and transmits packets that have not been transmitted until such moment to a layer higher than an Internet layer.
Owner:LENOVO (SINGAPORE) PTE LTD

System and method for identifying and preventing DDoS attacks on basis of SDN framework

InactiveCN104378380AAvoid slow recognitionQuick defense against DDoS attacksTransmissionComputer moduleModular design
The invention relates to a system and method for identifying and preventing DDoS attacks on the basis of an SDN framework. The system comprises a cheating message detection module, a destroying message detection module, an abnormal message detection module and a threat processing module, wherein the cheating message detection module is used for detecting cheating behaviors of addresses of a link layer and an internet layer, the destroying message detection module is used for detecting abnormal behaviors of zone bit settings of the internet layer and a transmission layer, and the abnormal message detection module is used for detecting flooding type attack behaviors of an application layer and the transmission layer; the cheating message detection module, the destroying message detection module and the abnormal message detection module are used for sequentially detecting messages; if any detection module detects that the messages have cheating, abnormity and attack behaviors, the messages are shifted to the threat processing module; the threat processing module is suitable for discarding the messages and shielding programs and / or hosts transmitting the messages. Extensible modular design is adopted for the processing framework, and efficient detection and flexible processing of DDoS threats are achieved; processing procedures are segmented finely, and the high cohesion property of the modules is improved.
Owner:NANJING XIAOZHUANG UNIV

Route between fields abnormity detecting method based on multi view

InactiveCN1764122AException reporting is comprehensive and accurateImprove abilitiesData switching networksRelational modelAnomaly detection
The invention discloses a route abnormal detection method in domain based on multiview to solve the problem that can not find out hidden route abnormal or false abnormal report in prior art, which comprises: designing a route abnormal detection system to finish two stages work as: Internet mode construction by BGP route list information and other network topological knowledge to build Internet hierarchy relation mode and commercial interlinkage relation mode for ISP; abnormal detection and report for first general detection then special detection and treating abnormal route and generating report. This invention reinforces route monitoring system capacity obviously.
Owner:NAT UNIV OF DEFENSE TECH

Intelligent safety supervision management system and realization method based on GIS geographic information platform

InactiveCN107065794AMeet the needs of daily supervision workRealize digital managementOffice automationResourcesMunicipal levelData center
The invention discloses an intelligent safety supervision management system and a realization method based on a GIS geographic information platform. The whole system is composed of four levels and is characterized by comprising 1) an Internet of things sensor layer: respective industrial and mining business production and operation units create Internet of things of respective enterprises based on enterprise internal networks, and constituent equipment includes various network intelligent sensors installed at production sites, Internet of things sensing network node equipment, enterprise safety production monitoring and management computers, and acousto-optic alarm equipment. 2) an Internet layer: respective enterprises communicate with a safety supervision management department data center by using the Internet, the monitoring data of respective enterprises is uploaded to a storage device in a municipal-level safety supervision department data center; 3) a B / S architecture layer including servers and storage devices installed in the safety supervision management department data center; and 4) a mobile user layer: authorized users can get access to a related database in the mobile terminal device to adjust and query a variety of data.
Owner:广州劲联智能科技有限公司

Intelligent control system and method for multifunctional rainwater regulation and storage pond

The invention discloses an intelligent control system for a multifunctional rainwater regulation and storage pond. The system comprises a field layer, a monitoring layer and an internet layer; the field layer comprises a regulation and storage pond water inlet valve, a regulation and storage pond liquid level meter, a water quality detector, a water pump, a water outlet tank liquid level meter, aclean water pump, a shut-off valve, a drain pump and a three-way valve; the monitoring layer comprises a PLC, a switchboard and an engineer station, the PLC controls the regulation and storage pond water inlet valve, the regulation and storage pond liquid level meter, the water quality detector, the water pump, the water outlet tank water level meter, the clean water pump, the shut-off valve, thedrain pump and the three-way valve to work, and the PLC is connected with the engineer station through the switchboard; the internet layer comprises a server, and the server is connected with the switchboard. The invention further provides an intelligent control method for the multifunctional rainwater regulation and storage pond. In the intelligent control system and method, appropriate functionsare automatically selected according to current weather conditions, the multi-functionalization of the regulation and storage pond is realized, and the functions of regulation and storage, surface source pollution control and rainwater reuse are integrated in the regulation and storage pond.
Owner:WISDRI ENG & RES INC LTD +1

System and process for converting protocol between shipborne Beidou 2nd generation device and ship Ethernet

ActiveCN105491037ANormal data exchangeTransmissionNetwork connectionCommunication link
The invention relates to a ship communication protocol conversion system and a conversion process, which are used for data exchange between a shipborne Beidou 2nd generation device and a ship Ethernet. According to the protection conversion system, a UART0 module is used for receiving and sending data of the shipborne Beidou 2nd generation device to perform communication; a Beidou 2nd generation protocol function module is used for identifying and processing Beidou 2nd generation positioning data, device state data and system log data, and sending a Beidou device instruction to the shipborne Beidou 2nd generation device; a protocol conversion module is used for performing encapsulation conversion on the data of the shipborne Beidou 2nd generation device and IEC 61162-450 standard data; an IEC 61162-450 protocol function module manages a physical layer, a data link layer, an internet layer, a transport layer and an application layer of a communication protocol stack through a logic device and an application process to establish a communication link; and a network interface module establishes a network connection with the ship Ethernet to perform communication. Therefore, the conversion system and process can enable the shipborne Beidou 2nd generation device to be used in the ship Ethernet meeting IEC 61162-450 standards, and a foundation is laid for the application of the shipborne Beidou 2nd generation device to the field of ships.
Owner:DALIAN LANDSEA MARITECH

Deep learning management system

The invention discloses a deep learning management system. The deep learning management system comprises a client side and a server side and is based on a service client mode; the client side comprises a data acquisition module, a model building module, a training module, and a result analysis module which are all visual; data is obtained by the data acquisition module through a data interface; the model building module is used for building a training model according to the data obtained by the data acquisition module and an internet layer; the training module is used for carrying out a training according to the training model; the result analysis module is used for analyzing a result of the training and generating an analysis result. By the adoption of the server client mode, the client side can be lightened, and through all modules which are all visual, the user operation is more convenient; by the arrangement of the data interface, data provided by third-party software can be obtained, and it is ensured that the management system is friendly to all third-party software.
Owner:DAWNING INFORMATION IND BEIJING

Method for providing an internet-layer address to a client device

A method for providing an Internet layer address from a service device to a client device through a relay device, the method comprising the following steps on the relay device: receiving a first message from the client device and receiving a second message from the service device; sending Another first message is sent to the service device and another second message is sent to the client device. In order to allow the relay device to relatively adequately monitor a certain service, the method is provided on the relay device with the step of inserting the Internet layer address defining the relay device into a high-level field of another second message, said high-level field Originally designed to identify service devices. As a result, future messages sent from the client device to the serving device must pass through the relay device. The high-level fields include the server Internet Protocol address field and the option-54 field. Dynamic host configuration protocol messages are discover, offer, request, acknowledge, and request and / or update and / or release messages.
Owner:ALCATEL LUCENT SAS

Network-to-network bridge

A network-to-network bridge is provided. In one embodiment, the network-to-network bridge is coupled between a main system and a subsystem system. The main system includes a slot to couple with the subsystem, wherein the slot complies with the PCIe standard. The network-to-network bridge includes a transport layer and an internet layer but lacks of a network access layer allocated between the first main system and subsystem so as to transfer data by following the PCIe standard therebetween. The network-to-network bridge transfers data between the main system and the subsystem by accessing and employing their MAC addresses, and the network-to-network bridge can be allocated in the mainboard of the main system or the subsystem.
Owner:VIA TECH INC

Block chain intelligent control network data security vulnerability mining method and system

The invention discloses a blockchain intelligent control network data security vulnerability mining method and system, relates to the field of control or monitoring, and solves the technical problem of lagging of network data information security vulnerability detection. Calculating a network data information transmission rate, a communication protocol and a communication type, and setting a physical layer, a data link layer, an internet layer, a transportation layer and an application layer in the block chain network; the method comprises the following steps: acquiring data information in a network data information transmission process through network data acquisition, and labeling block chain node data information and position information passing through a block chain network on the acquired data information; security threat analysis in a network data transmission process is realized through a vulnerability analysis algorithm with a positioning function; and when a data vulnerability is detected, information transmission is carried out through a block chain control network, and an alarm signal is transmitted to a user. According to the invention, the network data vulnerability monitoring capability is greatly improved.
Owner:法诺信息产业有限公司

Internet layer connection measuring method adopting Internet Group Management Protocol (IGMP) message and relevant topology

The invention relates to an Internet layer connection measuring method adopting an IGMP (Internet Group Management Protocol) message and a relevant topology. The detection message of the prior art is easy to be identified as an aggressive behaviour and then is filtered, which breaks the integrity of measurement topology. The method comprises the following steps of: determining a measurement range represented by a group of Internet protocol IP address blocks and selecting the IP addresses of a group of router interfaces as a measurement goal address set from the measurement range; filling the IP detection message for packaging an IGMP neighbor request type message, and then sending the detection message; processing a response message according to the type of the response message if the response message is received in a preset time; and implementing waiting time overtime processing if the response message is not received in the preset time. An IP-stage or router-stage network topological graph can be constructed according to IP connection information and alias information which are obtained by measurement. The invention is used for a measuring method of moderate resistance filtration in an IP network.
Owner:HEILONGJIANG UNIV

Method for realizing PPPOE packaged multicast protocol message handling

The invention relates to a method for realizing PPPOE packaged multicast protocol message handling. The method comprises the following steps: judging the type of a protocol of a protocol message by a route; then, directly extracting the lengths of offset PPPOE headers of an IP packaged protocol message or a PPPOE packaged protocol message; judging whether the protocol message is a multicast protocol message by the route according to a transmission target. By adopting the method for realizing the PPPOE packaged multicast protocol message handling, a layer-by-layer stripping analysis way on a LAN side data message is carried out when the data message is received in an inner core drive; based on the layer-by-layer analysis from a data link layer to an internet layer, the multicast protocol message handling on the PPPOE header is added in the route, so that the phenomenon that the PPPOE packaged multicast protocol message is directly used as a unicast data package to be forwarded when the multicast protocol message passes through the route is avoided, and the multicast protocol message is accurately controlled; therefore, the method has a wider application range.
Owner:SHANGHAI GONGJIN COMM TECH

Systems and methods for mixed mode handling of IPv6 and IPv4 traffic by a virtual server

The present invention is directed towards systems and methods for mixed-mode load balancing by a virtual server in a network supporting a plurality of internet protocols. In various embodiments, a mixed-mode virtual server receives service requests based on two or more internet layer protocols. The mixed-mode virtual server is configured to detect an IP address type of the client issuing the service request, and identify the internet protocol of the service request based on the detected IP address type. The mixed-mode virtual server can then forward the request to a server supporting the identified internet protocol. In this manner, the mixed-mode virtual server can bind load balance servers supporting a plurality of internet protocols.
Owner:CITRIX SYST INC

Message chain terminal protocol stack construction method, message chain terminal protocol stack analysis method, message chain terminal protocol stack analysis device and message chain terminal protocol stack terminal

PendingCN114125080AImprove compatibilityReal network environmentTransmissionData packPacket loss
The invention provides a message chain terminal protocol stack construction method, a message chain terminal protocol stack analysis method, a message chain terminal protocol stack analysis device and a terminal.The construction method comprises the steps that a preset format of a message header of a message is obtained, and the preset format of an internet layer message header at least comprises a source SUI, a target SUI, a message chain newest node value and a serial number, or a source SEI, a target SEI, a message chain newest node value and a serial number; the method comprises the following steps: calculating a message chain latest node value corresponding to a current transmission message by using a message chain construction method, packaging the message chain latest node value and a corresponding serial number in an internet layer protocol data packet, and constructing an internet layer message; and the latest node value of the message chain and the serial number are compared and verified to ensure that the transmitted message sequence has the functions of packet loss retransmission and chain type synchronization.
Owner:BEIJING INFORMATION SCI & TECH UNIV

Remote metering and monitoring system for dynamic truck scale

PendingCN114061728AReduce the number of field measurementsSupport operational needsWeighing apparatus testing/calibrationSpecial purpose weighing apparatusStationControl engineering
The invention discloses a remote metering and monitoring system for a dynamic truck scale used by a highway department, and belongs to the technical field of dynamic truck scales and metering. The remote metering and monitoring system comprises an Internet layer, a service application layer, a platform support layer, a data resource layer and a hardware base layer, the Internet layer can help metering personnel access the remote metering system, monitors the weighing and metering data of the dynamic truck scale in real time, identifies an abnormal truck scale and correcting parameters, and the service application layer is used for carding and optimizing a traditional metering service process and providing various service functions for metering personnel; metering personnel can access a remote metering system at a metering center, a toll station and the like through a browser of the PC terminal module, monitor weighing and metering data of the dynamic truck scale, and perform identification and parameter correction on an abnormal dynamic truck scale, so that the on-site metering and verification times of the metering personnel can be reduced, the verification efficiency can be effectively improved, the verification cost can be reduced, and the verification period can be optimized; and meanwhile, a corresponding mobile phone APP module is developed, so that the operation requirements of business personnel during field service are met.
Owner:HENAN PROVINCE INST OF METROLOGY

Method for mobile terminal to share network resources

The invention discloses a method for a mobile terminal to share network resources. The method comprises the steps that a Bluetooth module of a user mobile terminal uses a Bluetooth network encapsulation protocol, wherein the Bluetooth module receives network signals, and the network signals are converted into an Ethernet package; the Ethernet package is sent to an Ethernet payload area from an internet protocol layer of the Bluetooth module and is directly copied to a Bluetooth network package protocol area, then, the Ethernet package is sent to a logical link control layer and an adaption protocol layer, and data are read to enable the mobile terminal to be connected to the internet. According to the method for the mobile terminal to share the network resources, an entire system can allow a plurality of sets of mobile terminals to be connected, the mobile terminals are mutually independent, mutual influence of the mobile terminals is avoided, direct mapping among an internet layer, the logical link control layer and the adaption protocol layer can be achieved, and the mobile terminals do not need to be inserted into other layers. The method for the mobile terminal to share the network resources can enable a Bluetooth network to have a wider and more open interface, and network connection is quick.
Owner:JIANGSU QIYIDIAN NETWORK

Roadside parking lot management system

The invention provides a roadside parking lot management system. The system adopts three layers of network architectures of ZigBee, GPRS and Internet so as to connect parking lot information to a distributed system architecture of the Internet. A first layer is a ZigBee node wireless sensing network which is formed by ZigBee nodes distributed below parking spaces in a star topology structure. The ZigBee nodes are connected to a geomagnetic sensor so as to take charge of collecting parking lot parking space states. All parking lot information is collected to a ZigBee coordinator node. A coordinator and a relay gateway main controller exchange data through a serial port. The data is concentratedly processed in the relay gateway main controller. A second layer is a GPRS network. The relay gateway main controller is connected to a GPRS module through a UART interface and sends AT connection so as to finally realize remote transmission of the data. A third layer is the Internet. A user or an administrator can use a computer or a mobile phone to log in a far-end WEB server according to an authority so as to check and manage parking lot information.
Owner:南宁市广千信息技术有限公司

System And Method For Controlling Parameters For Applications Serviced In A Best Effort Communication Link

The present invention relates to a system and method for controlling parameters for applications serviced in a best effort (BE) communication link. The system includes a protocol specific processor (210) configured to acquire at least one of (i) an application identifier and (ii) type of protocol associated with at least one layer higher than an internet layer for a packet to be transmitted in the BE communication link. The protocol specific processor (210) is also configured to determine parameters for the packet according to the acquired at least one of (i) application identifier and (ii) the type of protocol associated with the at least one layer such that the packet receives quality of service (QoS) treatment in a Radio Access Network (200).
Owner:ALCATEL LUCENT SAS

Short message two-staged gateway

SMS secondary gateway, including server and network equipment. The designed logical structure of the platform is divided into three layers, the first layer is the transport layer, the second layer is the platform layer, and the third layer is the business layer. The intermediary entity, the SMGW short message gateway is responsible for receiving the short message sent by the SP service provider to the PS personal terminal on the one hand and submitting it to the SMSC short message service center. On the other hand, the short message that the PS personal terminal orders the service of the SP service provider will be sent to the SP service provider by the SMSC short message service center through the SMGW short message gateway. In addition, the SMGW short message gateway can forward the short message to the corresponding SMGW short message gateway according to the routing principle, and the corresponding SMGW short message gateway performs the remaining routing selection and message delivery, so as to realize short message intercommunication in different places or different networks. The patent of the invention can quickly generate a short message platform for business, so as to gain time, reduce development costs, and seize market opportunities.
Owner:沈阳昂立信息技术有限公司

Intelligent control system and control method for multifunctional rainwater storage tank

The invention discloses an intelligent control system for a multifunctional rainwater regulation and storage pond. The system comprises a field layer, a monitoring layer and an internet layer; the field layer comprises a regulation and storage pond water inlet valve, a regulation and storage pond liquid level meter, a water quality detector, a water pump, a water outlet tank liquid level meter, aclean water pump, a shut-off valve, a drain pump and a three-way valve; the monitoring layer comprises a PLC, a switchboard and an engineer station, the PLC controls the regulation and storage pond water inlet valve, the regulation and storage pond liquid level meter, the water quality detector, the water pump, the water outlet tank water level meter, the clean water pump, the shut-off valve, thedrain pump and the three-way valve to work, and the PLC is connected with the engineer station through the switchboard; the internet layer comprises a server, and the server is connected with the switchboard. The invention further provides an intelligent control method for the multifunctional rainwater regulation and storage pond. In the intelligent control system and method, appropriate functionsare automatically selected according to current weather conditions, the multi-functionalization of the regulation and storage pond is realized, and the functions of regulation and storage, surface source pollution control and rainwater reuse are integrated in the regulation and storage pond.
Owner:WISDRI ENG & RES INC LTD +1

Personalized customization flexible production line information system architecture

The invention discloses a personalized customization flexible production line information system architecture. An internet layer comprises a user client and an enterprise management client; the data layer comprises a database server and a database; and the field equipment layer comprises a PLC (Programmable Logic Controller) and other field equipment controlled by the PLC. OPC UA servers are integrated in the database server and the PLC and are used for data collection, data format conversion and data transfer; the user client, the enterprise management client, the database server and the PLC are all provided with OPC UA clients, and each OPC UA client can be connected with the OPC UA server and is used for achieving two-way communication of the whole system. The simplified architecture is more beneficial to deployment of a small-sized manufacturing system, and a production plan is directly issued without passing through an enterprise resource management layer, so that the purposes of rapid construction and production are achieved. And an OPC UA communication protocol is used, so that the interoperability of heterogeneous equipment is improved, the distributed deployment of the system is also facilitated, and the efficiency of the whole system is also improved.
Owner:HANGZHOU DIANZI UNIV

Internet Layer Connection Measurement Method Using Internet Group Management Protocol Message and Related Topology

By using the Internet layer connection measurement method of the Internet group management protocol message and the related topology, the detection message in the prior art is easily identified as an attack behavior and filtered, which destroys the integrity of the topology measurement. The method of the present invention includes: determining a measurement range represented by a group of Internet protocol IP address blocks, and selecting a group of router interface IP addresses as the measurement target address set from within the measurement range; for each IP address in the target address set , fill in the IP detection message that encapsulates the Internet Group Management Protocol IGMP Neighbor Solicitation type message, and then send the detection message; receive the response message within a given time, then implement the processing of the response message according to the response message type ; If no response message is received within a given period of time, the waiting time will be timed out; according to the measured IP connection and alias information, an IP-level or router-level network topology map can be constructed. The invention is used for the measurement method of anti-filtering in IP network.
Owner:HEILONGJIANG UNIV

Traffic visualization method, system and device, and medium

ActiveCN109462597AProtection Status ChangeData switching networksVirtual hostingDistributed computing
The invention provides a traffic visualization method, which comprises the following steps: S1, drawing an internet layer, a firewall layer, a WAF layer and a virtual host layer on a visual interfaceaccording to a real network framework; S2, associating the internet network, the firewall, the WAF and the device in the virtual host layer packet with the device in the real network framework; S3, drawing lines between the internet network, the firewall, the WAF and the virtual host layer packet on the visual interface according to a connection relationship of the devices in the real network framework; S4, highlighting the lines between the internet network, the firewall, the WAF and the virtual host packet so as to show the traffic orientation between the devices in the current real networkframework. On the other aspect, the invention also provides a traffic visualization system and device, and a computer readable medium. The protective state of the current virtual host can be intuitively shown by building a visual network framework coincident with the real network framework; and the protective state of the virtual host can be changed through manners of direct dragging and the like.
Owner:BEIJING QIANXIN TECH

Protocol conversion system and process between ship-borne Beidou second-generation equipment and ship Ethernet

ActiveCN105491037BNormal data exchangeTransmissionNetwork connectionCommunication link
The invention relates to a ship communication protocol conversion system and a conversion process, which are used for data exchange between a shipborne Beidou 2nd generation device and a ship Ethernet. According to the protection conversion system, a UART0 module is used for receiving and sending data of the shipborne Beidou 2nd generation device to perform communication; a Beidou 2nd generation protocol function module is used for identifying and processing Beidou 2nd generation positioning data, device state data and system log data, and sending a Beidou device instruction to the shipborne Beidou 2nd generation device; a protocol conversion module is used for performing encapsulation conversion on the data of the shipborne Beidou 2nd generation device and IEC 61162-450 standard data; an IEC 61162-450 protocol function module manages a physical layer, a data link layer, an internet layer, a transport layer and an application layer of a communication protocol stack through a logic device and an application process to establish a communication link; and a network interface module establishes a network connection with the ship Ethernet to perform communication. Therefore, the conversion system and process can enable the shipborne Beidou 2nd generation device to be used in the ship Ethernet meeting IEC 61162-450 standards, and a foundation is laid for the application of the shipborne Beidou 2nd generation device to the field of ships.
Owner:DALIAN LANDSEA MARITECH

A water inrush perception and early warning system and method for karst tunnels based on the Internet of Things

The invention discloses a water inrush perception and early warning system and method based on the Internet of Things in karst tunnels, including a multi-information perception platform layer for tunnel water inrush precursors, a sensory data network transmission, storage and analysis layer, and a disaster classification early warning layer; tunnel water inrush precursors The multi-information perception platform layer uses the sensing terminal to collect data information and distributes it to the perception data network transmission, storage and analysis layer, and the perception data network transmission, storage and analysis layer receives tunnel water inrush precursor multi-information perception platform layer transmission The data is stored in the spatial data warehouse, and the cloud computing service platform is used to analyze and process the data, and the analysis results are issued through the four-color early warning platform through the disaster grading early warning layer. Realized rapid real-time monitoring of multiple precursor information of water inrush disasters, and completed scientific storage, rapid processing, and timely release of monitoring data at the same time, reducing construction delays, construction personnel casualties, and mechanical equipment damage caused by water inrush in tunnels.
Owner:SHANDONG UNIV
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products