Systems and Methods for Providing Automated Access to Resources of Computer Systems
US-2024430261-A1 · Dec 26, 2024 · US
US2020120105A1 · US · A1
| Field | Value |
|---|---|
| Publication number | US-2020120105-A1 |
| Application number | US-201916567855-A |
| Country | US |
| Kind code | A1 |
| Filing date | Sep 11, 2019 |
| Priority date | Oct 15, 2018 |
| Publication date | Apr 16, 2020 |
| Grant date | — |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
The present disclosure relates to a data processing method and apparatus, a terminal and an access point computer, which can achieve an effect that the terminal accesses multiple access points at the same time. The method includes: receiving an application access request; determining a target access point corresponding to the application access request according to a mapping relationship between the access point and an application server obtained from a blockchain network; sending a software defined perimeter SDP authentication request to the target access point; and after the SDP authentication succeeds, performing interaction of application data through a data channel established with the target access point, wherein the data channel has a period of validity of a preset time length.
Opening claim text (preview).
1 . A data processing method, applied to a terminal, comprising: receiving an application access request; determining a target access point corresponding to the application access request according to a mapping relationship between the access point and an application server obtained from a blockchain network; sending a software defined perimeter SDP authentication request to the target access point; and after the SDP authentication succeeds, performing interaction of application data through a data channel established with the target access point, wherein the data channel has a period of validity of a preset time length. 2 . The method according to claim 1 , wherein after the performing interaction of application data through a data channel established with the target access point, the method further comprises: when the application access request is received again, if the data channel is not out of date, performing the interaction of the application data through the data channel; or when the application access request is received again, if the data channel is out of date, re-executing the step of sending the software defined perimeter SDP authentication request to the target access point to re-establish the data channel. 3 . The method according to claim 1 , wherein the method further comprises: determining a key for performing data interaction with the target access point; and the performing interaction of application data through a data channel established with the target access point comprises: using the key to send encrypted application data to the target access point through the data channel. 4 . The method according to claim 3 , wherein the determining a key for performing data interaction with the target access point comprises: if the terminal locally stores the key and the key is not out of date, determining the locally stored key as the key for performing data interaction with the target access point; or, if the key stored locally by the terminal is out of date or the key is not stored locally, negotiating the key with the target access point, determining the negotiated key as the key for performing data interaction with the target access point, and storing the key in the local of the terminal. 5 . The method according to claim 4 , wherein the method further comprises: obtaining the mapping relationship between the access point and the application server from the blockchain network, and access point information of each access point, the access point information at least comprises a public key of the access point, an IP address and port information; the sending a software defined perimeter SDP authentication request to the target access point comprises: sending the SDP authentication request to the target access point according to the IP address and the port information of the target access point; and negotiating the key with the target access point comprises: performing key negotiation with the target access point through the public key of the target access point. 6 . The method according to claim 5 , wherein the performing key negotiation with the target access point through the public key of the target access point comprises: performing identity authentication on the target access point through the public key of the target access point; when the identity authentication of the target access point is passed, the identity authentication of the target access point on the terminal is passed, and the target access point confirms that the blockchain network stores the permission information of the terminal, generating the key to complete the key negotiation; wherein the permission information is used for characterizing that the terminal is allowed to access the target access point. 7 . A data processing method, applied to an access point, comprising: receiving a software defined perimeter SDP authentication request sent by a terminal; obtaining identity information of the terminal from the SDP request; querying whether permission information allowing the terminal is stored in the blockchain network according to the identity information, wherein the permission information is used for characterizing that the terminal is allowed to access the target access point; determining that the SDP authentication is successful, when the permission information is queried in the blockchain network; and opening a port to the terminal to establish a data channel with the terminal, and performing interaction of application data through the data channel. 8 . The method according to claim 7 , wherein the opening a port to the terminal comprises: opening the port to the terminal, and setting an open period of the port, so that the data channel has a period of validity of a preset time length; and wherein after the data channel is out of date, the terminal needs to perform the SDP authentication again. 9 . A computer program product, wherein the computer program product comprises a computer program executable by a programmable apparatus, and the computer program has a code part for executing the method in claim 1 when being executed by the programmable apparatus. 10 . A non-transitory computer readable storage medium, wherein the non-transitory computer readable storage medium comprises one or more programs, and the one or more programs are used for executing the method in claim 1 . 11 . A terminal, comprising: a non-transitory computer readable storage medium; and one or more processors for executing programs in the non-transitory computer readable storage medium; and the non-transitory computer readable storage medium stores instructions for executing the method in claim 1 . 12 . An access point computer, comprising: a non-transitory computer readable storage medium; and one or more processors for executing programs in the non-transitory computer readable storage medium; and the non-transitory computer readable storage medium stores instructions for executing the method in claim 7 .
Virtual private networks · CPC title
Denial of Service · CPC title
wherein the sending and receiving network entities apply asymmetric encryption, i.e. different keys for encryption and decryption (cryptographic mechanisms or cryptographic arrangements for public-key encryption H04L9/30) · CPC title
for authentication of entities (cryptographic mechanisms or cryptographic arrangements for entity authentication H04L9/32) · CPC title
for supporting key management in a packet data network (cryptographic mechanisms or cryptographic arrangements for key management H04L9/08) · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.