会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 4. 发明授权
    • Method and system for access control of a message queue
    • 消息队列访问控制的方法和系统
    • US06446206B1
    • 2002-09-03
    • US09053104
    • 1998-04-01
    • Boaz Feldbaum
    • Boaz Feldbaum
    • H04L900
    • H04L63/0823H04L63/126
    • A method and system for controlling access to a message queue in a message queuing system utilizes a certificate of a user who sends a message to authenticate the message and uses a directory service of the message queuing system as a trusted entity in the authentication process. The certificate used for message authentication may be an internal certificate issued by the message queuing system or an external certificate issued by a certification authority. The certificate is registered with the directory service of the message queuing system and stored with a security identification (SID) of the user. When the user runs an application which sends a message to a target queue, the sending computer signs the message with a private key associated with the certificate and sends the message with the digital signature and the certificate to the receiving computer. When the receiving message queue (MQ) server receives the message packet, it verifies the digital signature of the message. If the signature is verified, the receiving MQ server queries the message queuing system to obtain the SID associated with the certificate. The MQ server then decides whether the message with the SID should be placed in the target queue by checking a security descriptor of the target queue.
    • 用于控制对消息队列系统中的消息队列的访问的方法和系统利用发送消息来认证消息的用户的证书,并且在认证过程中使用消息队列系统的目录服务作为可信实体。 用于消息认证的证书可以是由消息队列系统发布的内部证书或由证书颁发机构颁发的外部证书。 该证书被注册到消息队列系统的目录服务中,并与用户的安全标识(SID)一起存储。 当用户运行向目标队列发送消息的应用程序时,发送计算机使用与该证书相关联的私钥对消息进行签名,并将具有数字签名和证书的消息发送到接收计算机。 当接收消息队列(MQ)服务器接收到消息包时,它将验证消息的数字签名。 如果签名被验证,则接收MQ服务器查询消息队列系统以获得与证书相关联的SID。 然后,MQ服务器通过检查目标队列的安全描述符来决定是否将具有SID的消息放置在目标队列中。