会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 2. 发明公开
    • VIRTUAL PRIVATE NETWORK REALIZATION METHOD AND CLIENT DEVICE
    • VERFAHREN ZUR REALISIERUNG EINES VIRTUELLEN PRIVATEN NETZWERKS UND CLIENT-VORRICHTUNG
    • EP3163833A4
    • 2017-05-31
    • EP15829052
    • 2015-02-04
    • HUAWEI TECH CO LTD
    • ZHENG XIAOFENGZHU YINGHUAGE TINGKEZHAO FEI
    • H04L29/06
    • H04L63/0272H04L63/029H04L63/166H04L67/42H04L69/16
    • Embodiments of the present invention provide a virtual private network implementation method and a client device. The virtual private network implementation method in the present invention includes: intercepting, by an NDIS intermediate driver, a packet sent by an application program to an intranet server, and determining, according to a process identification PID corresponding to the packet, whether to allow a process corresponding to the packet to use an SSL VPN; if the process corresponding to the packet is allowed to use the SSL VPN, establishing, by the NDIS intermediate driver, a new packet, setting a destination address of the new packet as a local address of the client device, setting a destination port number of the new packet as a port number by using which a client receives the packet, changing a source IP address of the original packet to a virtual IP address, using the original packet as a payload of the new packet, and submitting the new packet to an NDIS network interface card driver; and sending, by the NDIS network interface card driver, the new packet to the client, and sending, by the client, the new packet to the intranet server. According to the embodiments of the present invention, a virtual private network is implemented based on process control, and a client has a fast startup speed.
    • 本发明实施例提供了一种虚拟专用网络实现方法和客户端设备。 本发明虚拟专用网实现方法包括:NDIS中间驱动程序截获应用程序发送给内网服务器的报文,根据该报文对应的进程标识PID确定是否允许 进程对应的数据包使用SSL VPN; 如果允许对应于该分组的过程使用SSL VPN,则由NDIS中间驱动程序建立新分组,将新分组的目的地地址设置为客户端设备的本地地址,将目的地端口号设置为 将新分组作为用于客户端接收分组的端口号,将原始分组的源IP地址改变为虚拟IP地址,使用原始分组作为新分组的有效载荷,并且将新分组提交给 NDIS网络接口卡驱动程序; NDIS网络接口卡驱动将新的报文发送给客户端,客户端将新的报文发送给内网服务器。 根据本发明的实施例,基于过程控制来实现虚拟专用网络,并且客户端具有快速的启动速度。
    • 3. 发明公开
    • VIRTUAL PRIVATE NETWORK REALIZATION METHOD AND CLIENT DEVICE
    • 方法实现虚拟私有网络和客户端设备
    • EP3163833A1
    • 2017-05-03
    • EP15829052
    • 2015-02-04
    • HUAWEI TECH CO LTD
    • ZHENG XIAOFENGZHU YINGHUAGE TINGKEZHAO FEI
    • H04L29/06
    • H04L63/0272H04L63/029H04L63/166H04L67/42H04L69/16
    • Embodiments of the present invention provide a virtual private network implementation method and a client device. The virtual private network implementation method in the present invention includes: intercepting, by an NDIS intermediate driver, a packet sent by an application program to an intranet server, and determining, according to a process identification PID corresponding to the packet, whether to allow a process corresponding to the packet to use an SSL VPN; if the process corresponding to the packet is allowed to use the SSL VPN, establishing, by the NDIS intermediate driver, a new packet, setting a destination address of the new packet as a local address of the client device, setting a destination port number of the new packet as a port number by using which a client receives the packet, changing a source IP address of the original packet to a virtual IP address, using the original packet as a payload of the new packet, and submitting the new packet to an NDIS network interface card driver; and sending, by the NDIS network interface card driver, the new packet to the client, and sending, by the client, the new packet to the intranet server. According to the embodiments of the present invention, a virtual private network is implemented based on process control, and a client has a fast startup speed.
    • 本发明实施例提供的虚拟专用网络的实现方法和客户端设备。 在本发明中的虚拟专用网络实现方法包括:在NDIS中间驱动程序,在内部网服务器通过发送到应用程序的数据包,且确定的采矿,雅丁到一个进程标识PID对应于所述分组拦截,通过,是否允许一个 对应的处理,以使用SSL VPN的包; 如果该过程对应于所述分组被允许使用的SSL VPN,建立,通过NDIS中间驱动器,新的数据包,设置新的数据包作为客户端设备的本地地址的目的地地址,设定的目的地端口号 新的分组,通过使用哪一个客户端接收分组,改变了原来的分组的源IP地址的虚拟IP地址,使用所述原始分组作为新分组的有效载荷,并提交新的数据包在端口号 NDIS网络接口卡驱动程序; 和发送,由NDIS网络接口卡驱动程序,新的数据包发送到客户端,发送,客户端,将新包内网服务器。 。根据本发明的实施例,虚拟专用网络是基于过程控制实现,并且客户端具有接近启动速度。