TL;DR: In this article, a method for detecting the number of shared access host computers was proposed, which comprises of the following steps: receiving a redirected HTTP request data pack; when the data pack contains a Cookie ID, recording the Cookie ID of the data packs in a record list corresponding to a source address of data pack, allocating a Cookie to the data packet, and counting the cookie ID record number according to the record list to obtain the number number of the Shared Access host computers of the source address.
Abstract: The embodiment of the invention discloses a method for detecting the number of shared access host computers, which comprises the following steps: receiving a redirected HTTP request data pack; when the data pack contains a Cookie ID, recording the Cookie ID of the data pack in a record list corresponding to a source address of the data pack; when the data pack does not contain the Cookie ID, allocating a Cookie to the data pack, and recording the Cookie ID of the data pack in the record list corresponding to the source address of the data pack; and counting the Cookie ID record number according to the record list to obtain the number of the shared access host computers of the source address The detection method can improve the accuracy of detecting the number of the shared access host computers
TL;DR: In this article, the authors proposed a system for connecting a credible network based on a combined public key, which comprises a filtering module, a processing module, an upper layer module and a physical network module.
Abstract: The invention provides a system for connecting a credible network based on a combined public key, which comprises a filtering module, a processing module, a strategy database module, a connection database module, a log verification module, an upper layer module and a physical network module. A method for connecting the credible network based on the combined public key, achieved by the system, comprises the following steps: (1) initializing configuration; (2) establishing a connection between two communication points; (3) sending a data pack; (4) receiving the data pack; and (5) renegotiating a session key or terminating the connection. The system and the method achieve identity authentication at a network layer. The authentication based on CPK provides a simpler and more convenient method for verifying a signature, wherein the method extracts user identification from signature information and can calculate out the public key of a user according to the user identification and a published public key matrix to further verify the signature. The system and the method also have the functions of data integrity checking, data privacy and data signatures.
TL;DR: In this article, a core router switching fabric coprocessor, consisting of an uplink module and a downlink module, is realized by an FPGA externally connected storage and supports 4 Gb/s pack wire speed.
Abstract: The invention relates to a core router switching fabric coprocessor, belonging to the internet backbone core router technical field. The invention is characterized in that: the coprocessor consists of an uplink module and a downlink module, is realized by an FPGA externally connected storage and supports 4 Gb/s pack wire-speed. The uplink module receives a data pack and filters useless data, then data is divided into two paths, each path of data pack is divided into a plurality of fixedlength data pieces with priority; each data piece is provided with a specific head in order to become a cell; cells belong to different queues according to the difference of priorities and destination addresses and are stored in the storage; cells are scheduled and transmitted to a switching fabric according to queue information and flow control information which comes from the downlink module; the downlink module receives the two paths of cells from the switching fabric, extracts the flow control information for the uplink module, cuts off the head of each cell and restores the cells into the data pieces; the data pieces belong to different queues according to the difference of source priorities and are stored in the storage; and the queues containing more than one complete data pack fragmentation take part in the schedule, data packs of successfully scheduled queues are output.
TL;DR: In this article, the authors proposed a data transmission scheme in which a plurality of transmission threads allocates the data pack, and transmits it to the plurality of receiving threads via a connection.
Abstract: When a predetermined amount of data is written in a file of a magnetic disk, a data pack creating section creates a data pack. A plurality of transmission threads allocates the data pack, and transmits it to a plurality of receiving threads via a connection. The received data pack is written in a magnetic disk. The transmission threads register a data pack, a transmission starting flag and a file position of the data pack in a transmission control table included in a transmission control section. The transmission threads are operated independently from each other, and when finishing a transmission of the allocated data pack, first, investigate a retry queue, and then, transmit a data pack if the data pack exists in the retry queue, and request a data pack from the data pack creating section so as to transmit the data pack if no data pack exists, in the retry queue. Therefore, according to the present invention, it is possible to provide a data transmission apparatus which can transmit a high quality file at a high speed.
TL;DR: In this article, a method for rapid filtering, which comprises the following steps: in each Ethernet data arrival, extracting special section from data pack for mask computation to get index key words; using key word for index operation from mask relative filter list items; getting rule for relative data pack according to list.
Abstract: This invention provides one method for rapid filtering, which comprises the following steps: in each Ethernet data arrival, extracting special section from data pack for mask computation to get index key words; using key word for index operation from mask relative filter list items; getting rule for relative data pack according to list. This invention also provides one rapid filter process device, which comprises extraction module, list process module, list find module and data pack process module.