摘要:
An electrostatic protection circuit includes: a protection unit, configured to suppress an ESD current or an EOS current, where a first end of the protection unit is electrically connected to a first pin of a target interface, a second end of the protection unit is electrically connected to a second pin of a protected circuit, and the first pin is any pin of the target interface; a switch unit, connected to the protection unit in parallel; and a switch control unit, configured to control the switch unit to be open or closed, where an input end of the switch control unit is electrically connected to a power pin or a control signal pin of the protected circuit, and an output end of the switch control unit is electrically connected to a control end of the switch unit.
摘要:
A method for identifying application information in network traffic, and an apparatus are provided, so as to improve an identification effect of an application identification technology. The method is executed by a terminal device. A first correspondence table in the terminal device stores a correspondence between an identifier of a process running on the terminal device and an identifier of a data stream created by the process, and a second correspondence table stores a second correspondence between an identifier of an application and an identifier of a process created by the application. The method includes: receiving an identifier, sent by a network security device, of a first data stream; finding, in the first correspondence table, a first record in which the identifier of the first data stream is stored, to obtain an identifier of a process in the first record; finding, in the second correspondence table, a second record in which the identifier of the process in the first record is stored, to obtain an identifier of an application from the second record; and sending the identifier of the application to the network security device.
摘要:
The present invention discloses a certificate acquiring method and device, including: receiving, by a VNFM, a certificate application proxy message sent by a VNF instance, where the certificate application proxy message includes authentication information and certificate application information that is used for certificate application, where the authentication information is used to establish a channel for certificate proxy-application between the VNF instance and the VNFM; using, by the VNFM, the authentication information to authenticate the VNF instance, and when the authentication succeeds, sending a certificate application message to a CA, where the certificate application message includes the certificate application information that is used for certificate application; and receiving, by the VNFM, a certificate issued by the CA, and sending the certificate to the VNF instance. In this way, through a trusted link between the VNFM and the certificate authority, the instantiated VNF instance applies for a certificate issued by the certificate authority, thereby effectively ensuring legality of the certificate applied for by the VNF instance and ensuring security of a management channel that is established between the VNF instance and the VNFM by using the certificate issued by the certificate authority.
摘要:
This application discloses a packet processing method in a distributed device, to resolve a problem of a packet processing failure. The distributed device includes a first offloading unit, a second offloading unit, and at least two processing units. The first offloading unit receives a first packet from a first network and sends the first packet to a first processing unit. The first processing unit allocates an IP address and a port number to the first packet, where the allocated port number satisfies a condition: Based on a data flow identifier of a reverse packet of an address-translated first packet and a second offloading algorithm, a second processing unit selected from the at least two processing units is a same processing unit as the first processing unit, a source port number of the address-translated first packet is the allocated port number, and the second offloading algorithm is an algorithm used by a second offloading unit to offload the reverse packet. The first processing unit performs address translation on the first packet. The second offloading unit sends the address-translated first packet to a second network.
摘要:
A method for identifying application information in network traffic, and an apparatus are provided, so as to improve an identification effect of an application identification technology. The method is executed by a terminal device. A first correspondence table in the terminal device stores a correspondence between an identifier of a process running on the terminal device and an identifier of a data stream created by the process, and a second correspondence table stores a second correspondence between an identifier of an application and an identifier of a process created by the application. The method includes: receiving an identifier, sent by a network security device, of a first data stream; finding, in the first correspondence table, a first record in which the identifier of the first data stream is stored, to obtain an identifier of a process in the first record; finding, in the second correspondence table, a second record in which the identifier of the process in the first record is stored, to obtain an identifier of an application from the second record; and sending the identifier of the application to the network security device.