[go: up one dir, main page]

CN101778059A - Mail processing method, gateway equipment and network system - Google Patents

Mail processing method, gateway equipment and network system Download PDF

Info

Publication number
CN101778059A
CN101778059A CN201010110276A CN201010110276A CN101778059A CN 101778059 A CN101778059 A CN 101778059A CN 201010110276 A CN201010110276 A CN 201010110276A CN 201010110276 A CN201010110276 A CN 201010110276A CN 101778059 A CN101778059 A CN 101778059A
Authority
CN
China
Prior art keywords
mail
client
data
sending
server
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201010110276A
Other languages
Chinese (zh)
Inventor
朱清亚
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Huawei Digital Technologies Chengdu Co Ltd
Original Assignee
Huawei Symantec Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Huawei Symantec Technologies Co Ltd filed Critical Huawei Symantec Technologies Co Ltd
Priority to CN201010110276A priority Critical patent/CN101778059A/en
Publication of CN101778059A publication Critical patent/CN101778059A/en
Pending legal-status Critical Current

Links

Images

Landscapes

  • Information Transfer Between Computers (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)

Abstract

The embodiment of the invention provides a mail processing method, gateway equipment and a network system, wherein the mail processing method comprises the following steps that: mails sent to a client end by a server are intercepted; safety detection is carried out to the mails; before the safety detection is completed, keep-alive data is sent to the client end; and the keep-alive data comprises the data in the headers of the mails or safety data unrelated to the mails. The technical scheme provided by the embodiment of the invention can improve the network security while reducing the timeout phenomenon when the client end receives the mails.

Description

Mail processing method, gateway equipment and network system
Technical Field
The present invention relates to the field of communications technologies, and in particular, to a mail processing method, a gateway device, and a network system.
Background
With the rapid development of the Internet technology, the e-mail becomes a fast and economic communication technology, however, the e-mail also becomes an important carrier for the propagation of junk mail, viruses, malicious programs or sensitive contents while providing very convenient communication for people, and poses a serious threat to the system security, so that the mail gateway device having the anti-junk mail function and the virus detection function is widely applied.
In the application process, the gateway equipment intercepts the mails sent by the server, and determines whether the mails are junk mails and whether the mails carry viruses or not by detecting the mail contents. Specifically, the gateway device caches all data (including attachments) of the email, restores an original file by means of decoding and decompressing the data, detects the content of the restored original file so as to determine whether the email is a spam email and whether the email carries a virus, and forwards the email to the client when the email is not a spam email and does not carry a virus.
In general, after sending a mail fetching command to a server, a client waits for the response of the server, but due to various reasons such as network delay, almost all clients have a time threshold, and if mail data from the server is not received in the time period, the client considers that the connection between the client and the server is overtime, interrupts the connection and prompts the user that the connection is overtime, so that the user is prevented from waiting indefinitely. After the gateway device is applied, because the mail data needs to be cached for content detection, the client cannot receive the mail data of the server in real time during the data caching period, and when the data amount cached by the gateway device is large or the content detection time of the restored original file is long, the connection timeout condition of the client is inevitably caused. Therefore, in order to reduce the connection timeout of the client, in the prior art, the gateway device generally forwards part of the mail data to the client while caching the mail data, so as to ensure that the connection between the server and the client is not timed out.
The inventor finds that, in the prior art, during the time when the gateway device caches the mail, partial mail data needs to be sent to the client to ensure that the connection between the server and the client is not over time, and since the sent partial mail data is not subjected to content detection, a virus may already exist in the sent mail data or the sent mail data is already junk data, so that the client receives the mail data or the junk mail data carrying the virus, which results in the failure of the function of the gateway device.
Disclosure of Invention
The embodiment of the invention provides a mail processing method, gateway equipment and a network system, which can improve the network security while reducing the overtime phenomenon in the process of receiving mails by a client.
According to an aspect of an embodiment of the present invention, there is provided:
a mail processing method, comprising:
intercepting a mail sent to a client by a server;
carrying out security detection on the mail;
sending keep-alive data to the client before the security detection is completed, wherein the keep-alive data comprises data in a mail header of the mail or security data unrelated to the mail.
A gateway device, comprising:
the receiving unit is used for intercepting the mails sent to the client by the server;
a content detection unit for performing security detection on the mail;
and a sending unit, configured to send keep-alive data to the client before the security detection is completed, where the keep-alive data includes data in a mail header of the mail or security data unrelated to the mail.
A network system comprises a server and the gateway equipment, wherein the server is used for sending mails to a client.
The technical scheme of the embodiment of the invention ensures that the client can receive the safety data sent by the gateway equipment during the mail caching period by intercepting the mail from the server and sending the keep-alive data which is the data in the mail header or the safety data irrelevant to the mail until the safety detection is finished, considers that the connection between the client and the server is normal, does not interrupt the connection between the client and the server, and does not send the virus or the dangerous information such as junk mail data to the client because the forged mail data sent by the gateway equipment is credible, thereby ensuring the safety of the client.
Drawings
In order to more clearly illustrate the technical solutions of the embodiments of the present invention, the drawings needed to be used in the embodiments will be briefly described below, and it is obvious that the drawings in the following description are only some embodiments of the present invention, and it is obvious for those skilled in the art to obtain other drawings based on these drawings without creative efforts.
FIG. 1 is a method for processing mail according to an embodiment of the present invention;
FIG. 2 is a mail processing method provided for another embodiment of the present invention;
fig. 3 is a diagram of a gateway device according to an embodiment of the present invention;
fig. 4 is a diagram of a gateway device according to another embodiment of the present invention;
fig. 5 is a diagram of a network system structure according to an embodiment of the present invention.
Detailed Description
The technical solutions in the embodiments of the present invention will be clearly and completely described below with reference to the drawings in the embodiments of the present invention, and it is obvious that the described embodiments are only a part of the embodiments of the present invention, and not all of the embodiments. All other embodiments, which can be derived by a person skilled in the art from the embodiments given herein without making any creative effort, shall fall within the protection scope of the present invention.
Referring to fig. 1, fig. 1 is a method for processing a mail according to an embodiment of the present invention, the method including:
101. and intercepting the mail sent by the server to the client.
The execution subject of each step of the embodiment may be a gateway device.
102. And carrying out security detection on the mail.
The mail safety detection specifically comprises the following steps: it is determined whether the mail carries a virus or is spam. And caching the data of the intercepted mail before the security detection.
103. Sending keep-alive data to the client before the security detection is completed, wherein the keep-alive data comprises data in a mail header of the mail or security data unrelated to the mail.
Wherein sending keep-alive data to the client specifically may include: sending keep-alive data to the client according to a preset time interval, wherein the preset time interval is smaller than a preset time threshold of the client, and the time threshold is the maximum time for which the server mail is not allowed to be received when the client keeps connection with the server.
Step 103 is not executed after step 102, but is executed during the mail buffering in step 101. Wherein, the data in the mail header is a field conforming to the definition of Request comments (RFC) 822; alternatively, the mail-independent security data is a field conforming to the definition of RFC 822. Wherein, the field conforming to the RFC822 definition is a user-defined field, and the user-defined field is a field beginning with 'X-'.
The electronic mail defined by RFC822 includes two parts, a mail header and a mail body, where the mail header is also called a header and the mail body is also called a body of the mail. Wherein, the fields of the mail header include: mail sender address, mail receiver address, mail subject, mail date and remark, etc. Viruses are usually carried in the mail body, so the data in the mail header can be used as keep-alive data. Since the data in the mail header or the mail-independent security data do not relate to the specific content in the mail body, it can be considered as the mail data forged by the gateway device, and the forged mail data are only used for keeping the connection between the client and the server.
Further, after the mail is subjected to security detection, if the mail does not carry viruses and is not a junk mail, the mail is sent to the client; if the mail carries viruses, discarding the mail, or filtering the mail and sending the mail after filtering to the client; if the mail is a junk mail, discarding the mail or adding warning information into the subject of the mail, and sending the mail added with the warning information to the client.
The gateway equipment in the embodiment of the invention ensures that the client can receive the mail data forged by the gateway equipment during the mail caching period by intercepting and caching the mail from the server and sending the keep-alive data to the client all the time before the safety detection of the mail is finished, wherein the keep-alive data is data in the mail header or safety data irrelevant to the mail, and the connection between the client and the server is considered to be normal without interrupting the connection with the server, so that the overtime phenomenon of the client in the mail receiving process can be reduced, the safety of the mail data sent to the client is improved, and the safety of the client is improved.
In order to make the embodiment of the present invention more clearly understood, a mail processing method will be described in detail below by another embodiment, referring to fig. 2, the method includes:
201. the client and the gateway equipment exchange handshake messages and establish connection between the client and the gateway equipment.
202. The gateway equipment and the server exchange handshake messages, and connection is established between the gateway equipment and the server.
203. The client sends an authentication request, the gateway equipment intercepts the authentication request and sends the authentication request to the server.
204. The server authenticates the client, sends out an authentication response message indicating successful authentication after successful authentication, and the gateway equipment intercepts the authentication response message and sends the authentication response message to the client.
Specifically, the authentication request may carry a user name and a password, and the server verifies whether the user is legal according to the user name and the password, and if so, the server indicates that the authentication of the client is successful.
205. The client sends out a mail fetching command, the gateway equipment intercepts the mail fetching command and sends the mail fetching command to the server.
206. And the server sends out the mail after receiving the mail taking command sent by the client.
207. The gateway device intercepts the mail sent by the server, analyzes and caches the data of the intercepted mail, judges whether the mail is finished, if so, indicates that the mail is received completely, executes 209, and if not, continues to analyze and cache the data of the mail.
Specifically, if the received mail data is detected to have a mail end symbol, it indicates that the mail is ended.
208. The gateway device sends forged mail data, which may be data in the mail header of the mail or data unrelated to the mail, to the client terminal at a predetermined time interval from the buffering of the mail until the security detection is completed.
Specifically, the forged mail data in the embodiment of the present invention may be server-defined data in the mail header, or a field beginning with "X-" and constructed by the gateway device and conforming to the RFC822 protocol.
Because the client generally sets a time threshold, if the mail data from the server is not received in the time, the connection between the client and the server is considered to be overtime, the gateway device sends forged mail data to the client according to a preset time interval, and the preset time interval of the gateway device is smaller than or equal to the time threshold set by the client, so that the client cannot consider the connection to be overtime because the mail data cannot be received for a long time.
Since the e-mail includes two parts, a mail header and a mail body, the data content in the mail header may be specifically as follows:
From:“first”<first@163.com>
To:“second@163.com”
Subject:hello
Dae:Sun,27 Sep 2009 11:57:21+0800
MIME-Version:1.0
Content-Type:multipart/alternative;
boundary=“----=_NextPart_000_0006_01CA3F69.ACD9C7B0”
X-Priority:3
X-MSMail-Priority:Normal
X-Mailer:Microsoft Outlook Express 6.00.2900.3598
X-MimeOLE:Produced By Microsoft MineOLE V6.00.2900.3350
the "X-Priority, X-MSmail-Priority, X-Mailer, X-MimeOLE" is the self-defined information added by the sender (such as outlook of the sender) of the mail, and is used for representing the extended attributes such as the Priority of the mail. Wherein, X-Priority is a Priority dividing mode commonly used by each client at present, 1 represents high Priority, 2 represents common Priority and 3 represents low Priority; X-MSMail-Priority defines a set of Priority for outlook software; X-Mailer indicates that the sender of the mail uses outlook express; X-MimeOLE indicates which company's product the client used by the sender of the mail is.
Generally, after a client generates and sends out a mail, a server stores the mail sent by the client, and the sender is the client sending the mail.
The forged mail data in the embodiment of the present invention may be fields beginning with "X-" in the mail header, since these fields may be fields defined by the RFC822 protocol, so that the client can correctly receive these fields. The forged mail data in the embodiment of the present invention may also be fields beginning with "X-" constructed by the gateway device, such as X-Keeplive 1 and X-Keeplive 2.
209. The gateway device performs security check on the mail and performs step 210.
When the mail reception is completed, the gateway device may restore the cached mail data, determine whether the mail is spam, and scan whether the mail has a virus.
The gateway device may decompose a sentence according to components (parts of speech components) according to a grammatical structure, find keywords, calculate a weighted value of the keywords, for example, there are two keywords "recommend" and "medicine" in a sentence, count the number of times that the word "recommend" appears in the mail, count the number of times that the word "medicine" appears in the mail, and determine whether the mail is spam according to the statistical result.
The mail can be scanned for viruses by using a virus engine, for example, a certain antivirus software is used to scan the mail for viruses.
Since the mails transmitted in the network are usually encoded mails, the cached mail data needs to be restored. Wherein, the restoring the cached mail data comprises: and restoring the original file by means of decoding and decompressing the cached mail data and the like. The decoding method includes, but is not limited to, Base64 decoding, QP (Quated-Printable) decoding, and the like.
210. The gateway device determines whether to forward the mail from the server to the client according to the detection result of step 209; or processing the mail from the server according to the detection result of step 209 and sending the processed mail to the client.
For example, if the detection result of step 209 is that the mail carries no virus and is not a spam mail, the mail from the server is forwarded to the client in this step, and if the detection result of step 209 is that the mail carries a virus or the mail is a spam mail, the mail can be discarded; or, if the detection result of step 209 is that the email is a spam email, the gateway device may add the warning information in the email subject and then send the email to which the warning information is added to the client; if the detection result in step 209 is that the mail carries a virus, the gateway device filters the mail, that is, the mail is disinfected by using disinfection software, and the mail after being filtered is sent to the client.
211. The client disconnects from the server.
Specifically, the client sends out a quit message (quit) to request to disconnect the connection with the server; the gateway equipment forwards the quit message to a server; the server sends out a response message to the quit message, the gateway equipment sends the response message to the quit message to the client, and the client is disconnected with the server.
The gateway equipment in the embodiment of the invention intercepts and caches the mails from the server, and sends keep-alive data to the client all the time before the safety detection is finished, wherein the keep-alive data is data in a mail header or safety data irrelevant to the mails, so as to ensure that the client can receive the mail data forged by the gateway equipment during the mail caching, and the connection between the client and the server is considered normal without interrupting the connection between the client and the server; the method has the advantages that the forged mail data are sent to the client, the data in the real mail body are completely reserved, and the mail data are forwarded to the client after the mail content is detected and processed, so that the data with dangerous information are not forwarded to the client, the overtime phenomenon of the client in the mail receiving process can be reduced, the safety of the mail data sent to the client is improved, and the safety of the client is improved.
Referring to fig. 3, an embodiment of the present invention provides a gateway device, which includes:
a receiving unit 301, configured to intercept a mail sent by a server to a client;
a content detection unit 302, configured to perform security detection on the email;
and is specifically used to determine whether the mail carries a virus or is spam.
A sending unit 303, configured to send keep-alive data to the client after intercepting the email sent by the server to the client and before the security detection is completed, where the keep-alive data includes data in a mail header of the email or security data unrelated to the email.
Wherein, the data in the mail header is a field defined by RFC 822; alternatively, the mail-independent security data is a field conforming to the definition of RFC 822. The fields conforming to the definition of RFC822 are user-defined fields, and the user-defined fields are fields beginning with "X-".
The electronic mail defined by RFC822 includes two parts, a mail header and a mail body, where the mail header is also called a header and the mail body is also called a body of the mail. Wherein, the fields of the mail header include: mail sender address, mail receiver address, mail subject, mail date and remark, etc. Viruses are usually carried in the mail body, so the data in the mail header can be used as keep-alive data. Since the data in the mail header or the mail-independent security data do not relate to the specific content in the mail body, it can be considered as the mail data forged by the gateway device, and the forged mail data are only used for keeping the connection between the client and the server.
The gateway equipment in the embodiment of the invention ensures that the client can receive the mail data forged by the gateway equipment during the mail cache period by intercepting the mail from the server and sending the keep-alive data to the client all the time before the safety detection of the mail is finished, wherein the keep-alive data is data in the mail header or safety data irrelevant to the mail, and the connection between the client and the server is considered to be normal without interrupting the connection with the server, so that the overtime phenomenon of the client in the mail receiving process can be reduced, the safety of the mail data sent to the client is improved, and the safety of the client is improved.
Fig. 4 shows a structure diagram of a gateway device according to another embodiment of the present invention, where the embodiment of the present invention further includes, on the basis of the embodiment shown in fig. 3:
a message generating unit 404, configured to generate keep-alive data, where the keep-alive data includes security data unrelated to the email; at this time, after intercepting the mail sent by the server to the client, the sending unit 303 sends the keep-alive data generated by the message generating unit 404 to the client before the security detection is completed.
Optionally, the sending unit 303 is specifically configured to send keep-alive data to the client according to a predetermined time interval after intercepting the email sent by the server to the client and before completing the security detection, where the predetermined time interval is smaller than a time threshold preset by the client, and the time threshold is the maximum time for which the client is allowed to not receive the server email when maintaining the connection with the server.
Further, the gateway device according to the embodiment of the present invention may further include:
a first mail processing unit 405, configured to control the sending unit 303 to send the mail to the client when the security detection result indicates that the mail does not carry viruses and is not a spam mail;
a second mail processing unit 406, configured to discard the mail or perform filtering processing on the mail when the security detection result indicates that the mail carries a virus, and control the sending unit 303 to send the mail after the filtering processing to the client;
a third mail processing unit 407, configured to discard the mail or add warning information to the subject of the mail when the security detection result indicates that the mail is a spam mail, and control the sending unit 303 to send the mail to which the warning information is added to the client.
Specifically, the sending unit 303 is further configured to send corresponding mails to the client under the control of the first mail processing unit 405, the second mail processing unit 406, and the third mail processing unit 407.
The gateway equipment in the embodiment of the invention intercepts the mails from the server and sends keep-alive data to the client side all the time before the safety detection is finished, wherein the keep-alive data is data in a mail header or safety data irrelevant to the mails so as to ensure that the client side can receive the mail data forged by the gateway equipment during the mail caching period, and the connection between the client side and the server is considered normal without interrupting the connection between the client side and the server; the method has the advantages that the forged mail data are sent to the client, the data in the real mail body are completely reserved, and the mail data are forwarded to the client after the mail content is detected and processed, so that the data with dangerous information are not forwarded to the client, the overtime phenomenon of the client in the mail receiving process can be reduced, the safety of the mail data sent to the client is improved, and the safety of the client is improved.
Referring to fig. 5, an embodiment of the present invention provides a network system, where the network system includes:
the gateway device 501 is configured to intercept a mail sent by the server 502 to the client, perform security detection on the mail, and send keep-alive data to the client before the security detection is completed, where the keep-alive data includes data in a mail header of the mail or security data unrelated to the mail;
and the server 502 is used for sending the mail to the client.
For the specific description of the gateway device 501, reference may be made to the above description of the embodiment of the gateway device, and for information interaction between devices in the network system, reference may be made to the corresponding description of the method embodiment, which is not described herein again.
The gateway equipment in the embodiment of the invention intercepts the mails from the server and sends keep-alive data to the client side all the time before the safety detection is finished, wherein the keep-alive data is data in a mail header or safety data irrelevant to the mails so as to ensure that the client side can receive the mail data forged by the gateway equipment during the mail caching period, and the connection between the client side and the server is considered normal without interrupting the connection between the client side and the server; the method has the advantages that the forged mail data are sent to the client, the data in the real mail body are completely reserved, and the mail data are forwarded to the client after the mail content is detected and processed, so that the data with dangerous information are not forwarded to the client, the overtime phenomenon of the client in the mail receiving process can be reduced, the safety of the mail data sent to the client is improved, and the safety of the client is improved.
It will be understood by those skilled in the art that all or part of the processes of the methods of the embodiments described above can be implemented by a computer program, which can be stored in a computer-readable storage medium, and when executed, can include the processes of the embodiments of the methods described above. The storage medium may be a magnetic disk, an optical disk, a Read-only Memory (ROM), a Random Access Memory (RAM), or the like.
The mail processing method, the gateway device and the network system provided by the embodiment of the present invention are described in detail above, and a specific example is applied in the present document to explain the principle and the embodiment of the present invention, and the description of the above embodiment is only used to help understanding the method and the core idea of the present invention; meanwhile, for a person skilled in the art, according to the idea of the present invention, there may be variations in the specific embodiments and the application scope, and in summary, the content of the present specification should not be construed as a limitation to the present invention.

Claims (10)

1. A method for processing mail, comprising:
intercepting a mail sent to a client by a server;
carrying out security detection on the mail;
sending keep-alive data to the client before the security detection is completed, wherein the keep-alive data comprises data in a mail header of the mail or security data unrelated to the mail.
2. The method of claim 1,
the data in the mail header includes fields conforming to the definition of request for comments, RFC 822;
or,
the mail-independent security data includes fields conforming to the definition of RFC 822.
3. The method of any of claims 1-2, wherein sending keep-alive data to the client comprises:
sending keep-alive data to the client according to a preset time interval, wherein the preset time interval is smaller than a preset time threshold of the client, and the time threshold is the maximum time for which the server mail is not allowed to be received when the client keeps connection with the server.
4. The method according to any one of claims 1 to 2, characterized in that the method further comprises:
if the security detection result shows that the mail does not carry viruses and is not a junk mail, sending the mail to the client;
if the security detection result shows that the mail carries viruses, discarding the mail or filtering the mail and then sending the mail to the client;
and if the safety detection result shows that the mail is the junk mail, discarding the mail or adding warning information into the subject of the mail and then sending the warning information to the client.
5. A gateway device, comprising:
the receiving unit is used for intercepting the mails sent to the client by the server;
a content detection unit for performing security detection on the mail;
and a sending unit, configured to send keep-alive data to the client before the security detection is completed, where the keep-alive data includes data in a mail header of the mail or security data unrelated to the mail.
6. The gateway device of claim 5,
the data in the mail header includes fields conforming to the definition of RFC 822;
or,
the mail-independent security data includes fields conforming to the definition of RFC 822.
7. Gateway device according to claim 5 or 6,
the sending unit is used for sending keep-alive data to the client according to a preset time interval before the safety detection is completed, wherein the preset time interval is smaller than a preset time threshold of the client, and the time threshold is the maximum time for which the client is allowed not to receive the server mail when the client keeps connection with the server.
8. The gateway device according to claim 5 or 6, further comprising:
a message generating unit, configured to generate keep-alive data, where the keep-alive data includes security data unrelated to the email;
and the sending unit is used for sending the keep-alive data generated by the message generating unit to the client before the security detection is completed.
9. The gateway device according to claim 5 or 6, further comprising:
the first mail processing unit is used for controlling the sending unit to send the mail to the client when the security detection result shows that the mail does not carry viruses and is not a junk mail;
the second mail processing unit is used for discarding the mail or controlling the sending unit to send the mail after filtering processing to the client side when the safety detection result shows that the mail carries viruses;
a third mail processing unit, configured to discard the mail when the security detection result indicates that the mail is a spam mail, or control the sending unit to send the mail to which the warning information is added to the client after the warning information is added to the subject of the mail;
and the sending unit is also used for sending corresponding mails to the client under the control of the first mail processing unit, the second mail processing unit and the third mail processing unit.
10. A network system comprising a server for sending mail to a client and a gateway device according to any one of claims 5 to 9.
CN201010110276A 2010-02-09 2010-02-09 Mail processing method, gateway equipment and network system Pending CN101778059A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201010110276A CN101778059A (en) 2010-02-09 2010-02-09 Mail processing method, gateway equipment and network system

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201010110276A CN101778059A (en) 2010-02-09 2010-02-09 Mail processing method, gateway equipment and network system

Publications (1)

Publication Number Publication Date
CN101778059A true CN101778059A (en) 2010-07-14

Family

ID=42514390

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201010110276A Pending CN101778059A (en) 2010-02-09 2010-02-09 Mail processing method, gateway equipment and network system

Country Status (1)

Country Link
CN (1) CN101778059A (en)

Cited By (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102833240A (en) * 2012-08-17 2012-12-19 中国科学院信息工程研究所 Malicious code capturing method and system
CN104734939A (en) * 2013-12-24 2015-06-24 华为技术有限公司 Session keep-alive method and device
CN105592028A (en) * 2014-11-17 2016-05-18 杭州迪普科技有限公司 Method, apparatus and system for blocking email
CN106681710A (en) * 2016-11-30 2017-05-17 上海富欣智能交通控制有限公司 Interface display method for rail transit field
CN107370747A (en) * 2017-08-14 2017-11-21 北京奇安信科技有限公司 A kind of method and device for preventing malicious file from propagating
CN109802883A (en) * 2018-12-27 2019-05-24 南京信息职业技术学院 Mail transmission method and system thereof
CN112615772A (en) * 2020-11-16 2021-04-06 北京明朝万达科技股份有限公司 Method and device for disassembling and reassembling mail based on scanning system
CN113506079A (en) * 2021-06-11 2021-10-15 荣耀终端有限公司 Mail creating method and electronic equipment
CN113506080A (en) * 2021-06-11 2021-10-15 荣耀终端有限公司 Mail processing method and electronic equipment

Cited By (13)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102833240B (en) * 2012-08-17 2016-02-03 中国科学院信息工程研究所 A kind of malicious code catching method and system
CN102833240A (en) * 2012-08-17 2012-12-19 中国科学院信息工程研究所 Malicious code capturing method and system
CN104734939B (en) * 2013-12-24 2017-11-24 华为技术有限公司 Session keep-alive method and equipment
CN104734939A (en) * 2013-12-24 2015-06-24 华为技术有限公司 Session keep-alive method and device
CN105592028A (en) * 2014-11-17 2016-05-18 杭州迪普科技有限公司 Method, apparatus and system for blocking email
CN106681710A (en) * 2016-11-30 2017-05-17 上海富欣智能交通控制有限公司 Interface display method for rail transit field
CN107370747A (en) * 2017-08-14 2017-11-21 北京奇安信科技有限公司 A kind of method and device for preventing malicious file from propagating
CN109802883A (en) * 2018-12-27 2019-05-24 南京信息职业技术学院 Mail transmission method and system thereof
CN109802883B (en) * 2018-12-27 2021-07-30 南京信息职业技术学院 Mail transmission method and system thereof
CN112615772A (en) * 2020-11-16 2021-04-06 北京明朝万达科技股份有限公司 Method and device for disassembling and reassembling mail based on scanning system
CN112615772B (en) * 2020-11-16 2022-07-12 北京明朝万达科技股份有限公司 Method and device for disassembling and reassembling mail based on scanning system
CN113506079A (en) * 2021-06-11 2021-10-15 荣耀终端有限公司 Mail creating method and electronic equipment
CN113506080A (en) * 2021-06-11 2021-10-15 荣耀终端有限公司 Mail processing method and electronic equipment

Similar Documents

Publication Publication Date Title
CN101778059A (en) Mail processing method, gateway equipment and network system
US7856477B2 (en) Method and system for image verification to prevent messaging abuse
KR101137089B1 (en) Validating inbound messages
US8069213B2 (en) Method of controlling access to network resources using information in electronic mail messages
US7904518B2 (en) Apparatus and method for analyzing and filtering email and for providing web related services
CN103220213B (en) A kind of mail filtering method and device
US20040221016A1 (en) Method and apparatus for preventing transmission of unwanted email
US20120151070A1 (en) Method and system for implementing network proxy
US9203785B2 (en) Net-based email filtering
CN105516080A (en) Processing method, apparatus, and system for TCP connection
CN112511517B (en) Mail detection method, device, equipment and medium
CN102547621A (en) System and device as well as method for monitoring and processing junk short messages
US20200067862A1 (en) System and method for proof-of-work based on hash mining for reducing spam attacks
CN101877680A (en) A spam sending behavior control system and method
US20250294003A1 (en) Methods for managing spam communication and devices thereof
WO2012094040A1 (en) Limiting virulence of malicious messages using a proxy server
CN115801719B (en) Mail processing method, device, equipment and readable storage medium
CN111355682A (en) E-mail sending method and E-mail proxy server
KR101238527B1 (en) Reducing unwanted and unsolicited electronic messages
JP2003150513A (en) Junk e-mail prevention method and its execution device, and its processing program and recording medium
CN104734939B (en) Session keep-alive method and equipment
CN105516200A (en) Cloud system security processing method and device
CN117040867A (en) ACK retransmission attack protection method and device
CN101651692A (en) Network security protection method, security server and forwarding device
KR101595379B1 (en) Control and blocking system for e-mail attached malignant code

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C12 Rejection of a patent application after its publication
RJ01 Rejection of invention patent application after publication

Application publication date: 20100714