CN101547185B - Method and system for preventing mutual attack between mobile terminals in mobile network - Google Patents

Method and system for preventing mutual attack between mobile terminals in mobile network Download PDF

Info

Publication number
CN101547185B
CN101547185B CN200810066433A CN200810066433A CN101547185B CN 101547185 B CN101547185 B CN 101547185B CN 200810066433 A CN200810066433 A CN 200810066433A CN 200810066433 A CN200810066433 A CN 200810066433A CN 101547185 B CN101547185 B CN 101547185B
Authority
CN
China
Prior art keywords
message
portable terminal
address
service point
transmitter side
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN200810066433A
Other languages
Chinese (zh)
Other versions
CN101547185A (en
Inventor
宋明江
张帆
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
ZTE Corp
Original Assignee
ZTE Corp
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by ZTE Corp filed Critical ZTE Corp
Priority to CN200810066433A priority Critical patent/CN101547185B/en
Publication of CN101547185A publication Critical patent/CN101547185A/en
Application granted granted Critical
Publication of CN101547185B publication Critical patent/CN101547185B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Abstract

The invention discloses a method and a system for preventing mutual attack between mobile terminals in a mobile network. The method comprises the following steps that: A, a control rule for mutual access of the mobile terminals is configured on a core network; B, the mobile terminal of a transmission side transmits a message to a user plane unit of the transmission side; C, the user plane unit ofthe transmission side determines that whether the target address of the message and the address of the mobile terminal of the transmission side belong to the same virtual routing space or not, if so,a service point label of the mobile terminal of the transmission side and a virtual routing space label are encapsulated for the message, and the message is forwarded to the user plane unit of a receiving side; and D, the user plane unit of the receiving side determines that whether the mobile terminal of the transmission side and the mobile terminal of the receiving side belong to the same service point or not according to the service point label and the virtual routing space label in the encapsulated message, if so, the encapsulated message is subjected to corresponding processing accordingto the control rule. The method and the system can effectively control mutual access between the mobile terminals, and enhance security of the mobile network.

Description

Prevent the method and system of running foul of each other between portable terminal in a kind of mobile network
Technical field
The present invention relates to wireless telecommunication system, relate in particular to and prevent the method and system of running foul of each other between portable terminal in a kind of mobile network.
Background technology
Along with mobile network's development, mobile network's safety problem also more and more receives people's attention.The contrast the Internet; The Internet is because developing history is far away relatively; A lot of security tools and strategy have been born in the network security game process of virus and anti-virus, attack and attack protection; Aspect operator, still all have more complete security strategy aspect the internet terminal (mainly referring to PC), thereby good guarantee is being provided for the operation of the Internet; And in the mobile network; Although aspect operator, have security strategy preferably, yet at portable terminal (Mobile Station is called for short MS) aspect; Because the restriction of portable terminal self software and hardware; Can not resemble PC that works instruments such as operation personal fire wall, antivirus software and protect the safety of self, so just the safety to the mobile subscriber threatens, and makes troubles to the operation of mobile operator.
At present in the mobile network; No matter be GPRS (the GeneralPacket Radio Service of mobile radio communication; Abbreviation GPRS) packet switching (the Packet Switched of network, 3G (Third Generation) Moblie net; Be called for short PS) the territory network; Or the broadband mobile network network of microwave cut-in global interoperating system (Worldwide Interoperability for Microwave Access is called for short WiMax) etc., mobile subscriber's business model all is to service provider (Service Provider through the mobile network; Abbreviation SP) comes requested service; The gateway that between the network of mobile network and SP, has operator, a cover network security policy of the gateway internet usage that the network security between portable terminal and SP can be through operator like this ensure, the technology realization situation before so that the WiMax of the PS territory of 3G (Third Generation) Moblie and broadband wireless communications is example, making eye bright below.
That Fig. 1 shows is same APN (the Access Point Name under the PS territory; Be called for short APN; The MS of mobile communication visits the service content that SP provides through it) under the data flow of mutual access of two portable terminals, its process is: suppose that two portable terminals (transmitter side mobile terminal MS 1 and receiver side mobile terminal MS 2) have all activated success, the user plane message of MS1 is through UMTS (Universal Mobile Telecommunication System; UMTS) terrestrial access network (UMTS Terrestrial Radio Access Network; Be called for short UTRAN) arrival Serving GPRS Support Node (Service GPRS Support Node is called for short SGSN, is the network element that core-network side is responsible for mobile management); Arrive Gateway GPRS Support Node (Gateway GPRS Support Node through gn interface then; Being called for short GGSN, is the network element that core-network side is responsible for being linked into and sending out core net), GGSN judges that the destination address of this message is the address of the MS2 under the same APN; Then be not dealt into the gateway of operator through the Gi interface; But issuing SGSN through gn interface, SGSN is transmitted to MS2 through UTRAN, and promptly the message flow process is MS1->UTRAN->SGSN->GGSN->SGSN->UTRAN->MS2.
That Fig. 2 shows is (the Network Service Point of consolidated network service point under the WiMax network; The mutual access data flow of two portable terminals abbreviation NSP), its process is: suppose two portable terminals in the network registry success, the user plane message of MS1 is through base station (Base Station; Be called for short BS) arrival access service network gateway (Access Service Network Gateway; Being called for short AGW, is the gateway of wireless wideband access network, and functions such as mobile management, session management and access are provided); AGW judges that the destination address of this message is the address of the MS2 under the same NSP; Then be not dealt into the gateway of operator through Interface R3, but issue MS2 through BS, promptly the flow process of message is MS1->BS->AGW->BS->MS2.
The problem that is existed by the visible prior art scheme of last surface analysis is: the mutual visit between the portable terminal under the same APN (or NSP) is without the gateway of operator; And the fail safe of portable terminal itself is not high; Therefore, propagation of the virus between the portable terminal under the same APN (or NSP) and network attack can get around the gateway of operator and bring threat for user security and mobile network's operation.
Summary of the invention
Because above-mentioned situation, the invention provides and prevent the method and system of running foul of each other between portable terminal in a kind of mobile network, so that improve the safety in utilization of the portable terminal among the mobile network.
In order to solve the problems of the technologies described above, the technical scheme that the present invention proposes is:
Prevent in a kind of mobile network the method for running foul of each other between portable terminal to comprise following steps:
A, on core net the control law of configuration portable terminal mutual access;
B, transmitter side portable terminal send to the transmitter side user plane unit with message;
Whether the destination address that C, transmitter side user plane unit are judged message belongs to same virtual routing space with the address of transmitter side portable terminal; In this way; Then to the service point mark and the virtual routing space mark of said message encapsulation transmitter side portable terminal, the message after the forwarding encapsulation is to the receiver side user plane unit;
Whether said service point mark in D, the receiver side user plane unit message after according to said encapsulation and virtual routing space marker for judgment transmitter side portable terminal and receiver side portable terminal belong to same service point; In this way, carry out handled according to the message of the said control law in the steps A after to said encapsulation.
Said control law comprises: 1) allow message to pass through; 2) dropping packets; 3) message redirecting is arrived operator's gateway.Said receiver side user plane unit is carried out one of following three kinds of processing according to said control law to sending the message correspondence: 1) be forwarded to the receiver side portable terminal; 2) dropping packets; 3) be redirected to operator's gateway.
Said service point is corresponding one by one with address pool; Said address pool is local pool or nonlocal address pool; When the mobile terminal address method of salary distribution is the equipment of the core network method of salary distribution; The configuration local pool when the mobile terminal address method of salary distribution is DHCP or long-distance user's access authentication system mode, disposes nonlocal address pool; Service point and the related at least virtual routing space of address pool.
Said portable terminal comprises mobile phone, Wimax terminal or uses the PC of data card.
Prevent in other a kind of mobile network of the present invention the method for running foul of each other between portable terminal to comprise following steps:
A, on core net the control law of configuration portable terminal mutual access;
B, transmitter side portable terminal send to the transmitter side user plane unit with message;
Whether the destination address that C, transmitter side user plane unit are judged message belongs to same service point with the address of transmitter side portable terminal; In this way; Then to the service point mark of said message encapsulation transmitter side portable terminal, the message after the forwarding encapsulation is to the receiver side user plane unit;
Whether said service point marker for judgment transmitter side portable terminal and receiver side portable terminal in D, the receiver side user plane unit message after according to said encapsulation belong to same service point; In this way, carry out handled according to the message of the said control law in the steps A after to said encapsulation.
The invention also discloses and prevent the system that runs foul of each other between portable terminal in a kind of mobile network, on core net, comprise:
Configuration module is used to dispose the control law of portable terminal mutual access, and configuration service point and address pool, and service point and address pool are with the incidence relation of virtual routing space;
User plane unit; Be used to receive the message that the transmitter side portable terminal sends; And judge whether the destination address of said message is in identical virtual routing space with the transmitter side portable terminal, if then the service point mark and the virtual routing space mark of said message encapsulation transmitter side portable terminal are also transmitted; And whether belong to same service point according to the service point mark of said transmitter side portable terminal and virtual routing space marker for judgment transmitter side portable terminal and receiver side portable terminal, and when being, carry out handled according to the control law of the said access rule configuration module configures message after to encapsulation.
Described system, the control law of configuration module configures comprises: 1) allow message to pass through; 2) dropping packets; 3) message redirecting is arrived operator's gateway.
The configured address pond is local pool or nonlocal address pool in the said configuration module; When the mobile terminal address method of salary distribution is the equipment of the core network method of salary distribution; The configuration local pool; When the mobile terminal address method of salary distribution is DHCP or long-distance user's access authentication system mode, dispose nonlocal address pool.
The present invention is through the rule of configuration portable terminal mutual access; And, handles accordingly the judgement portable terminal when belonging to the same service point of same virtual routing space according to the access rule of configuration; Thereby can control the mutual access between portable terminal effectively, strengthen mobile network's fail safe.
Description of drawings
Fig. 1 is the system architecture diagram of MS mutual access under the same APN of the prior art;
Fig. 2 is the system architecture diagram of MS mutual access under the same NSP of the prior art;
Fig. 3 is the module map of running foul of each other between portable terminal of preventing of the specific embodiment of the invention;
Fig. 4 is the flow chart of running foul of each other between portable terminal of preventing of the specific embodiment of the invention;
Fig. 5 is the system diagram of running foul of each other between portable terminal of preventing of the specific embodiment of the invention.
Embodiment
Contrast accompanying drawing below and combine embodiment that the present invention is further elaborated.
In order to prevent running foul of each other between portable terminal; Must have can be to the following method controlled of the mutual access of mobile terminal room of same service point (can be APN or NSP); For this reason, the present invention provides one group of mutual access control law to supply operator to go to select configuration on the net at mobile core: (1) allows the MS mutual access under the same APN (or NSP); (2) forbid MS mutual access under the same APN (or NSP), promptly abandon the exchanging visit message of MS; (3), decide this message forwarding perhaps to abandon by gateway the gateway of the MS exchanging visit message redirecting under the same APN (or NSP) to operator.When the portable terminal mutual access message under the same APN (or NSP) arrived GGSN (or AGW), GGSN (or AGW) decided message forwarding according to the access control rule that operator disposed or abandons.
Through judging whether message is that same APN (or NSP) descends the message of portable terminal mutual access to take corresponding access control rule can realize the mutual secure access between two portable terminals.APN (or NSP) is corresponding one by one with address pool; Address pool is according to the address distribution corresponding configuration of MS; If promptly APN (or NSP) selects is locally to distribute the address then need dispose local pool; If DHCP (Dynamic Host configuration Protocol is called for short DHCP) or long-distance user's access authentication system (Remote Authentication Dial In UserService is called for short RADIUS) distribute the address then to need the configuring external address pool.
Also to consider for this situation simultaneously: if equipment of the core network has virtual routing function (Virtue Route Function; Be called for short VRF); Be same APN (or NSP), for example APN1 belongs to different virtual routing spaces, for example VRF1 and VRF2; Then belong under the APN1 among the VRF1 portable terminal with belong to that the portable terminal under the ANP1 should not belong to same APN at last among the VRF2, the present invention has also realized the differentiation to this situation.
On the whole, technical scheme of the present invention comprises following steps:
(a) control law of configuration MS mutual access in system: (1) allows; (2) forbid; (3) be redirected, selection should need be disposed redirected gateway address during strategy.Three kinds of rules can only be selected wherein a kind of;
(b) the virtual routing space sign (VRF ID) at configuration local pool or external address pond and place thereof in system.The related corresponding local pool if this APN (or NSP) uses the home address mode is if use DHCP or RADIUS to distribute the address then related corresponding external address pond;
(c) when MS sends message; User plane unit at transmit leg MS place is searched database according to the destination address of message and the VRF ID at this MS place; If search success then represent that destination address is the mobile terminal address that belongs in this VRF space; Then the APN ID at this message and source MS place is forwarded to the user plane unit that recipient MS belongs to VRF ID according to the load sharing strategy of destination address; The user plane unit at recipient place judges whether these two MS belong to same APN (or NSP), if same APN (or NSP) then decide according to the control law of operator's selection abandon this message, allow this message through or with the gateway of this message redirecting to operator; If search failure then represent that two MS not under same APN (or NSP), then are forwarded to the Gi interface to message.
Main feature of the present invention is: in the step (a), in system, disposed several kinds of control laws and can supply different operators to go flexible selection according to the operation situation of self.In the step (b), can judge that differentiation same services point and address pool are in the situation of different virtual routing space; Simultaneously, no matter operator uses the local address of distributing still is that DHCP or RADIUS distribute the address can both accurately judge whether to belong to same APN (or NSP).And in step (c), just in user plane unit, increased a kind of judgement, therefore do not influence the performance of system.
In the present invention; Professional for normal MS, the destination address of uplink service is still the server of SP, and message sends GGSN (or AGW) through Gi interface (or Interface R3); Downlink business is come from Gi interface (Interface R3); Be transmitted to MS from gn interface (or R6 interface), it is professional that implementation of the present invention does not influence normal MS, just added barrier one to correlation attacks such as virus propagation between MS under the same APN (or NSP).
Enforcement prerequisite of the present invention is that two portable terminals all activate (being registration for the WiMax terminal) success at network side; Be not in state of activation if receive the portable terminal of data; Then downlink data can trigger Reverse Activity (or registration) flow process, and the concrete steps of activation process and Reverse Activity flow process see also 3GPP (3rd Generation Partnership Project, 3G (Third Generation) Moblie partnership project) agreement TS23.060; Registration sees also NWG Stage3 (NetworksWork Group with reverse register flow path; The network work group of WiMax is responsible for writing and managing of network side agreement), repeat no more here.
Be that example comes the present invention is elaborated below with the 3G subscription; Describe for convenient; The portable terminal called after MS1 that sends message, receive the portable terminal called after MS2 of message, the MS here can be mobile phone, WiMax terminal and the various portable terminals such as PC that use data card.
Referring to Fig. 3, in equipment of the core network, mainly contain the realization the present invention that cooperatively interacts of three modules, comprising: the user plane unit at the user plane unit at MS1 place, DBM and MS2 place.Wherein DBM passes through network management configuration acquisition related data, before describing handling process, at first the network management configuration data is sketched.
Network management configuration at first needs the control law of mutual access between operator's configuration portable terminal; Secondly the mobile terminal address method of salary distribution of selecting according to operator is come configuration address pond and related VRF; If being portable terminal, equipment of the core network distribute the address then need dispose local pool and corresponding VRF; If use DHCP or RADIUS to distribute the address, then need configuring external address pool and corresponding VRF; Dispose the employed APN of mobile terminal activating at last, the related above-mentioned address pool of this APN.
Referring to Fig. 4, business processing flow of the present invention specifically comprises following steps:
Step S01, the message that MS1 sends arrive the user plane unit at MS1 user plane packets data protocol (Packet DataProtocol is called for short PDP) context place;
Step S02, the user plane unit at MS1 place removes to search DBM according to the destination address of message with the VRF ID that MS1 belongs to, if search failure then go to step S06; If search success then explain that the destination address of message and the address of MS1 are the addresses of the MS2 in the same VRF space;
Step S03, the user plane unit at MS1 place encapsulates message behind APN ID and the VRF ID user plane unit that belongs to the PDP Context of MS2 with the forwarded in form of built-in message;
Step S04, behind the user plane unit decapsulation message at the PDP Context of MS2 place, if the APN ID that belongs to of the APN ID in the message and MS2 relatively is difference then go to step S06; If identical then search the control law of mutual access between the portable terminal of operator configuration, forward step S05 to;
Step S05; If the control law of operator's configuration is then transmitted this message to the Gn mouth for allowing mutual access, control strategy then abandons this message for forbidding mutual access else if; Control strategy is the gateway that is redirected to operator else if; Then search the redirected gateway of the operator of the identical VRF ID of having of system configuration, this gateway that E-Packets (must dispose the redirected gateway of operator, this should be guaranteed by the Operation and Maintenance personnel); Occur unusually otherwise belong to system, produce alarm prompt Operation and Maintenance personnel;
Step S06 looks into routing table and E-Packets.
The present invention has also correspondingly proposed the system that portable terminal is run foul of each other that prevents of the said method of embodiment of the present invention, and referring to Fig. 5, it comprises on core net:
Configuration module is used to dispose the control law of portable terminal mutual access, and control law comprises that (1) allows; (2) forbid; (3) be redirected, selection should need be disposed redirected gateway address during strategy.Simultaneously, configuration module also is used for configuration service point and address pool and service point and the address pool incidence relation with virtual routing space; Service point and address pool are corresponding one by one, and service point and address pool then can corresponding at least one virtual routing spaces, and both to lead to the incidence relation of virtual routing space can be one-to-many for service point and address pool.
User plane unit; Comprise transmitter side and the two-part processing of receiver side; At transmitter side, it is used to receive the message that the transmitter side portable terminal sends, and judges whether the destination address of said message is in identical virtual routing space with the transmitter side portable terminal; If then said message is encapsulated the service point mark and the virtual routing space mark of transmitter side portable terminal and is forwarded to receiver side;
At receiver side; Then whether belong to same service point according to the service point mark of said transmitter side portable terminal and virtual routing space marker for judgment transmitter side portable terminal and receiver side portable terminal; And when being, carry out handled according to the control law of the said access rule configuration module configures message after to encapsulation.
The configured address pond is local pool or nonlocal address pool in the configuration module; When the mobile terminal address method of salary distribution is the equipment of the core network method of salary distribution; The configuration local pool; When the mobile terminal address method of salary distribution is DHCP or long-distance user's access authentication system mode, dispose nonlocal address pool.Because system operation flow process and method step are similar, repeat no more here.
The present invention is directed to the mutual access between portable terminal; In core net is that operator provides configuration rule flexibly; Equipment of the core network decides according to the configuration rule of operator the message of mutual access between portable terminal is transmitted and abandoned; Thereby realized mobile terminal room mutual access under the same APN (or NSP) is controlled, improved mobile network's fail safe.
The above is merely the preferred embodiments of the invention; Should be pointed out that for those skilled in the art, under the prerequisite that does not break away from the principle of the invention; Can also make some improvement and retouching, these improvement and retouching also should be regarded as protection scope of the present invention.

Claims (8)

1. the method that prevents to run foul of each other between portable terminal in the mobile network is characterized in that, comprises following steps:
A, on core net the control law of configuration portable terminal mutual access;
Said control law comprises: 1) allow message to pass through; 2) dropping packets; 3) message redirecting is arrived operator's gateway;
B, transmitter side portable terminal send to the transmitter side user plane unit with message;
Whether the destination address that C, transmitter side user plane unit are judged message belongs to same virtual routing space with the address of transmitter side portable terminal; In this way; Then to the service point mark and the virtual routing space mark of said message encapsulation transmitter side portable terminal, the message after the forwarding encapsulation is to the receiver side user plane unit;
Whether said service point mark in D, the receiver side user plane unit message after according to said encapsulation and virtual routing space marker for judgment transmitter side portable terminal and receiver side portable terminal belong to same service point; In this way, carry out handled according to the message of the said control law in the steps A after to said encapsulation.
2. the method for claim 1 is characterized in that, said receiver side user plane unit is carried out one of following three kinds of processing according to said control law to sending the message correspondence: 1) be forwarded to the receiver side portable terminal; 2) dropping packets; 3) be redirected to operator's gateway.
3. according to claim 1 or claim 2 method; It is characterized in that said service point is corresponding one by one with address pool, said address pool is local pool or nonlocal address pool; When the mobile terminal address method of salary distribution is the equipment of the core network method of salary distribution; The configuration local pool when the mobile terminal address method of salary distribution is DHCP or long-distance user's access authentication system mode, disposes nonlocal address pool; Service point and the related at least virtual routing space of address pool.
4. according to claim 1 or claim 2 method is characterized in that, said portable terminal comprises mobile phone, Wimax terminal or uses the PC of data card.
5. the method that prevents to run foul of each other between portable terminal in the mobile network is characterized in that, comprises following steps:
A, on core net the control law of configuration portable terminal mutual access;
Said control law comprises: 1) allow message to pass through; 2) dropping packets; 3) message redirecting is arrived operator's gateway;
B, transmitter side portable terminal send to the transmitter side user plane unit with message;
Whether the destination address that C, transmitter side user plane unit are judged message belongs to same service point with the address of transmitter side portable terminal; In this way; Then to the service point mark of said message encapsulation transmitter side portable terminal, the message after the forwarding encapsulation is to the receiver side user plane unit;
Whether said service point marker for judgment transmitter side portable terminal and receiver side portable terminal in D, the receiver side user plane unit message after according to said encapsulation belong to same service point; In this way, carry out handled according to the message of the said control law in the steps A after to said encapsulation.
6. the system that prevents to run foul of each other between portable terminal in the mobile network is characterized in that, on core net, comprises:
Configuration module is used to dispose the control law of portable terminal mutual access, and configuration service point and address pool, and service point and address pool are with the incidence relation of virtual routing space;
Said control law comprises: 1) allow message to pass through; 2) dropping packets; 3) message redirecting is arrived operator's gateway;
User plane unit; Be used to receive the message that the transmitter side portable terminal sends; And judge whether the destination address of said message is in identical virtual routing space with the transmitter side portable terminal, if then the service point mark and the virtual routing space mark of said message encapsulation transmitter side portable terminal are also transmitted; And whether belong to same service point according to the service point mark of said transmitter side portable terminal and virtual routing space marker for judgment transmitter side portable terminal and receiver side portable terminal, and when being, carry out handled according to the control law of the said access rule configuration module configures message after to encapsulation.
7. system as claimed in claim 6; It is characterized in that; The configured address pond is local pool or nonlocal address pool in the said configuration module, when the mobile terminal address method of salary distribution is the equipment of the core network method of salary distribution, disposes local pool; When the mobile terminal address method of salary distribution is DHCP or long-distance user's access authentication system mode, dispose nonlocal address pool.
8. system as claimed in claim 6 is characterized in that, said portable terminal comprises mobile phone, Wimax terminal or uses the PC of data card.
CN200810066433A 2008-03-27 2008-03-27 Method and system for preventing mutual attack between mobile terminals in mobile network Active CN101547185B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN200810066433A CN101547185B (en) 2008-03-27 2008-03-27 Method and system for preventing mutual attack between mobile terminals in mobile network

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN200810066433A CN101547185B (en) 2008-03-27 2008-03-27 Method and system for preventing mutual attack between mobile terminals in mobile network

Publications (2)

Publication Number Publication Date
CN101547185A CN101547185A (en) 2009-09-30
CN101547185B true CN101547185B (en) 2012-09-05

Family

ID=41194077

Family Applications (1)

Application Number Title Priority Date Filing Date
CN200810066433A Active CN101547185B (en) 2008-03-27 2008-03-27 Method and system for preventing mutual attack between mobile terminals in mobile network

Country Status (1)

Country Link
CN (1) CN101547185B (en)

Families Citing this family (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN109617863B (en) * 2018-11-27 2020-02-18 杭州电子科技大学 Method for selecting optimal defense strategy for moving target defense based on game theory
CN110278558B (en) * 2019-07-25 2022-09-13 迈普通信技术股份有限公司 Message interaction method and WLAN system
CN113395368B (en) * 2020-03-13 2024-05-03 阿里巴巴集团控股有限公司 Access configuration method, access method and device

Citations (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101031095A (en) * 2006-02-28 2007-09-05 西门子通信技术(北京)有限公司 Method of mobile telecommunication system

Patent Citations (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101031095A (en) * 2006-02-28 2007-09-05 西门子通信技术(北京)有限公司 Method of mobile telecommunication system

Also Published As

Publication number Publication date
CN101547185A (en) 2009-09-30

Similar Documents

Publication Publication Date Title
KR101141958B1 (en) Method and system for correlating ip layer traffic and wireless layer elements in a umts/gsm network
AU782376B2 (en) System and method for using an IP address as a wireless unit identifier
CN1799241B (en) IP mobility
CN103563440A (en) Mobile communications network and method
CN105874825B (en) For relaying the method and user equipment of the group communication based on adjacent service
CN105491617A (en) Method for supporting local offloading of business and base station sub-system
CN102215154A (en) Access control method of network business and terminal
CN101553796B (en) System and method for redirecting requests
CN109889499A (en) File transmitting method and relevant apparatus
CN102316416B (en) Terminal access method and cordless communication network
CN104412628A (en) Method; apparatuses and computer program product for providing application service platform with access to core network information comprising context data
CN103370952A (en) Systems and methods for extended/enhanced logical interface behavior
CN101161028A (en) Handoff solution for converging cellular networks based on multi-protocol label switching
CN103067215A (en) Method, application server, network database and system achieving heartbeat mechanism
Kempf et al. Requirements and functional architecture for an IP host alerting protocol
Geng et al. Defending wireless infrastructure against the challenge of DDoS attacks
CN101330425B (en) Method for establishing tunnel from SGSN to service gateway
CN101547185B (en) Method and system for preventing mutual attack between mobile terminals in mobile network
US8990941B2 (en) Apparatus for detecting and controlling infected mobile terminal
CN101888370B (en) Device and method for preventing IPv6 (Internet Protocol version 6) from being deceptively attached
CN102625305A (en) Method for accessing evolved packet system and system thereof
CN102752266B (en) Access control method and equipment thereof
CA2475628A1 (en) Automatic setting of security in communication network system
KR20220152950A (en) Network slice admission control (nsac) discovery and roaming enhancements
WO2019076424A1 (en) Lawful interception control mechanism for virtualized network functions

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant