CN101896011A - Information filtering equipment and method - Google Patents

Information filtering equipment and method Download PDF

Info

Publication number
CN101896011A
CN101896011A CN2009100846226A CN200910084622A CN101896011A CN 101896011 A CN101896011 A CN 101896011A CN 2009100846226 A CN2009100846226 A CN 2009100846226A CN 200910084622 A CN200910084622 A CN 200910084622A CN 101896011 A CN101896011 A CN 101896011A
Authority
CN
China
Prior art keywords
filtering
pgw
service data
information
rule
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN2009100846226A
Other languages
Chinese (zh)
Inventor
赵国胜
姜晓宁
习建德
赵欣
郑震铎
王安义
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Datang Mobile Communications Equipment Co Ltd
Original Assignee
Datang Mobile Communications Equipment Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Datang Mobile Communications Equipment Co Ltd filed Critical Datang Mobile Communications Equipment Co Ltd
Priority to CN2009100846226A priority Critical patent/CN101896011A/en
Publication of CN101896011A publication Critical patent/CN101896011A/en
Pending legal-status Critical Current

Links

Images

Landscapes

  • Data Exchanges In Wide-Area Networks (AREA)

Abstract

The invention discloses information filtering equipment and an information filtering method. The method comprises the following steps of: caching and copying a user service data packet which reaches a grouped data network gateway; judging whether the copied user service data packet which reaches the grouped data network gateway meets a filtering rule; and discarding a user service data packet which does not meet the filtering rule according to the judgment result, and forwarding the user service data packet which meets the filtering rule to a bearing mapping processing module on the grouped data network gateway. The technical scheme can meet special individuation, also meets the mobility characteristic of a terminal, and has no extra software/hardware capacity requirement on user equipment.

Description

A kind of device for filtering information and method
Technical field
The present invention relates to the communications field, particularly a kind of device for filtering information and method.
Background technology
Fig. 1 is EPS (Evolved Packet System, evolved packet system) the roaming access architecture schematic diagram of network, Fig. 2 is the non-roaming access architecture schematic diagram of EPS network, based on SAE (System Architecture Evolution, System Architecture Evolution) description of the up-to-date agreement TS23.401-850 of the network architecture, non-roaming and the roaming following Fig. 1 of framework and shown in Figure 2 of EPC (Evolved Packet Core, evolution block core net).Based on the description of above two width of cloth EPS system architecture schematic diagrames, now relevant EPS systematic procedure is done concise and to the point description.
One, MME (Mobility Management Entity, Mobility Management Entity), PGW (PDN Gateway, PDN Gateway; PDN:Packet Data Network, Packet Data Network) entity is relevant:
1, participates in itself and UE (User Equipment, subscriber equipment) (the Non Access Stratum of the NAS between, Non-Access Stratum) information exchanging process, as: the Attach Request (IMSI...) that UE applies for the registration of to network (adheres to request (IMSI... etc.); IMSI:International Mobile Subscriber Identity, international mobile subscriber identification code) process;
2, EPS bearer management process comprises: Establishment (foundation), Modification (modification), Release (release);
3, DNS (DomainName Service, domain name service) query script.
Two, PCRF (Policy and Charging Rules Function, "Policy and Charging Rules Function entity) is relevant:
IP-CAN Session (IP-CAN session; IP-CAN:IP-Connectivity Access Network, IP-connects Access Network) management process (Establishment, Modification, Termination (termination).
At present, along with the development of LTE (Long Term Evolution, Long Term Evolution) technology, mobile phone terminal strengthens, and most of mobile phone terminals have internet function, meanwhile, also occur a large amount of flames on the mobile Internet, teen-age health is caused great hidden danger.How to realize control, protect pupillary healthy online, the problem demanding prompt solution that has become entire society and paid close attention to the mobile Internet harmful information.
At present, portable terminal can adopt WAP (Wireless Application Protocol, WAP (wireless application protocol)) mode or Web mode to carry out network browsing, and the filtration of internet information can realize by gateway mode or terminal mode.
Internet information filters now universal gateway modes that adopt more.But general filtering gateway can't be realized the classification processing of strobe utility based on particular user.General filtering gateway adopts personalized information filtering, though feasible at fixed terminal, its deficiency is: the roaming scence demand that is difficult to satisfy portable terminal.
That is studying at present carries out the scheme that the Internet filters by portable terminal, very high to terminal software and hardware requirement, so its deficiency is: be subject to the terminal processing capacity bottleneck, and simultaneously, the policy update process complexity of information filtering, practical operation is difficulty.
Summary of the invention
The technical problem that the present invention solves is to provide a kind of device for filtering information and method, can carry out information filtering in the LTE system.
A kind of PGW is provided in the embodiment of the invention, has comprised: carrying mapping processing module also comprises:
Cache module is used for the user service data grouping that buffer memory arrives PGW;
Replication module, the user service data grouping that is used to duplicate described arrival PGW;
Sending module is used to send the user service data grouping of the described arrival PGW that duplicates, and the user service data grouping of the described arrival PGW that duplicates will be used for filtering judgement according to the rule rule;
Receiver module is used to receive result of determination, described result of determination be according to the rule rule to the user service data of the described arrival PGW that duplicates grouping filter result of determination after the judgement;
Forwarding module is used for according to result of determination, abandons the user service data grouping of not satisfying filtering rule, will satisfy the user service data packet forward of filtering rule to carrying mapping processing module.
A kind of information filtering device is provided in the embodiment of the invention, has comprised the PGW that contains carrying mapping processing module, also comprised:
Transmit control module, link to each other, be used for buffer memory and duplicate the user service data grouping that arrives PGW, and the user service data that sends the described arrival PGW after duplicating divides into groups to filtering determination module with PGW;
Filter determination module, and transmit control module and link to each other, the user service data that is used to judge the arrival PGW after described the duplicating filtering rule that divides into groups whether to satisfy;
Transmit control module, also be used for abandoning the user service data grouping of not satisfying filtering rule, processing module is shone upon in user service data packet forward to the carrying on the PGW of satisfying filtering rule according to the result of determination of filtering determination module.
A kind of information filtering server is provided in the embodiment of the invention, has comprised:
Acquisition module is used to obtain filtering rule;
Sending module is used to send the filtering rule that obtains.
A kind of information filtering system is provided in the embodiment of the invention, has comprised information filtering device, information filtering server, wherein:
Sending module on the information filtering server links to each other with filtration determination module on the information filtering device by the Ics interface, is used for the filtering rule that acquisition module obtains is sent to the filtration determination module;
Filtration determination module on the information filtering device is used to judge whether the user service data grouping of the arrival PGW after described the duplicating satisfies the filtering rule that sending module is sent to.
A kind of information filtering system is provided in the embodiment of the invention, comprise PGW that at least one is parallel and/or, at least one information filtering device also comprises:
Inking device, the PGW or the information filtering device that are used to the user service data packet configuration that information filtering is carried out in this user service data grouping.
A kind of information filtering method is provided in the embodiment of the invention, has comprised the steps:
Buffer memory arrives the user service data grouping of PGW;
Duplicate the user service data grouping of described arrival PGW;
Send the user service data grouping of the described arrival PGW that duplicates, the user service data grouping of the described arrival PGW that duplicates will be used for filtering judgement according to the rule rule;
Receive result of determination, described result of determination is according to the rule rule result of determination after the judgement to be filtered in the user service data grouping of the described arrival PGW that duplicates;
According to result of determination, abandon the user service data grouping of not satisfying filtering rule, will satisfy the user service data packet forward of filtering rule to carrying mapping processing module.
A kind of information filtering method is provided in the embodiment of the invention, has comprised the steps:
Buffer memory also duplicates the user service data grouping that arrives PGW;
Judge whether the user service data grouping of the arrival PGW after described the duplicating satisfies filtering rule;
Abandon the user service data grouping of not satisfying filtering rule according to result of determination, processing module is shone upon in user service data packet forward to the carrying on the PGW of satisfying filtering rule.
Beneficial effect of the present invention is as follows:
By above-mentioned execution mode as can be seen, the embodiment of the invention has proposed to utilize the functional mechanism of EPS by the EPS system at the LTE network, realizes the information filtering to the communication of mobile terminal business.Can be signatory according to the user, to the information filtering configuration that different individual consumers customizes, general filtering gateway different from the past only can be realized unified filtering scheme at all access users.Also be better than on portable terminal, directly carrying out the scheme of information filtering.
Obviously, the technical scheme that provides among the present invention can satisfy special personalization, also satisfies the characteristics of terminal mobility.
In addition, be at network side during owing to the invention process, therefore there is not extra software and hardware ability need for the UE side yet.
Description of drawings
Fig. 1 is the roaming access architecture schematic diagram of EPS network in the background technology;
Fig. 2 is the non-roaming access architecture schematic diagram of EPS network in the background technology;
Fig. 3 is a PGW structural representation in the embodiment of the invention;
Fig. 4 is an information filtering apparatus structure schematic diagram in the embodiment of the invention;
Fig. 5 is an information filtering server structural representation in the embodiment of the invention;
Fig. 6 is the information filtering system structural representation in the embodiment of the invention four;
Fig. 7 is the information filtering system structural representation in the embodiment of the invention five;
Fig. 8 is information filtering method one an implementing procedure schematic diagram in the embodiment of the invention;
Fig. 9 is information filtering method two implementing procedure schematic diagrames in the embodiment of the invention.
Embodiment
The technology that adopts in the invention process is the existing framework by the EPS system, utilizes the functional mechanism of EPS, realizes filtering towards the business information of portable terminal.
The information filtering function of indication in the invention process will be implemented customized filtering rule and process at this individuality according to the signatory difference of setting of user.Thereby, the complete general filtering gateway pattern that only can implement consistent filter method at all access users different from the past.The scheme that is provided in the invention process can satisfy the personalization of filter process, rule, also can adapt to mobile subscriber's position mobility.
Below in conjunction with accompanying drawing the specific embodiment of the present invention is described.
At first filtering rule and the information filtering means that relate to are described.
How the enforcement of filter process at first from user's filtration needs collection, that is, determines filtering rule.User (as: parents of student etc.) application is filtered professional, and the own fill message of user filters requirement.For example, the user uses the mode of the online page to fill in the information filtering demand for services description list that Virtual network operator is formulated.Describe list based on the information filtering demand for services, can form this user's information on services filtering rule.
In the invention process and how to pay no attention in formation rule and form which kind of rule, provide is realized the technical scheme of information filtering in the invention process according to filtering rule, that is to say, no matter be which kind of rule all can adopt in the technical scheme that the embodiment of the invention provides.
Obviously, operator or authorized user can change the information filtering rule at the specific user after forming.As: make amendment by user or operator by the filtering services page.After the application or requirement change of this business, network side will load relevant information filtering rule at the portable terminal of application, implement corresponding information filtering process.
After a specific user's information filtering service request came into force, the EPS network that is provided in the embodiment of the invention can implement to filter (grouping is checked and corresponding forwarding is handled) to its relevant server data stream with the information filtering rule based on this above-mentioned user.And the concrete information filtering means that adopt can realize by following method: network address filtration, information filtering, download filtration, short message content filter (optional), MMS content filtration (optional) etc.And be attended by program management, time management and log management function.Concrete information filtering means get final product by knowing the skill employing.
The carrying mapping processing module that relates in the following execution mode, its function is: to downstream IP stream of packets process TFT (the Traffic Flow Template that enters from outside PDN network, traffic flow template) screens, and then be mapped on the carrying of different stage, screening process is based on QCI (QoS Class Indicator, the indication of QoS grade) and ARP (Allocation and Reservation Priority: distribution maintenance priority) right coupling.
Begin below the scheme that adopts in the embodiment of the invention is described.
Embodiment one
Fig. 3 is the PGW structural representation, as shown in the figure, can comprise: carrying mapping processing module 306 also comprises:
Cache module 301 is used for the user service data grouping that buffer memory arrives PGW;
Replication module 302, the user service data grouping that is used to duplicate described arrival PGW;
Sending module 303 is used to send the user service data grouping of the described arrival PGW that duplicates, and the user service data grouping of the described arrival PGW that duplicates will be used for filtering judgement according to the rule rule;
Receiver module 304 is used to receive result of determination, described result of determination be according to the rule rule to the user service data of the described arrival PGW that duplicates grouping filter result of determination after the judgement;
Forwarding module 305 is used for according to result of determination, abandons the user service data grouping of not satisfying filtering rule, will satisfy the user service data packet forward of filtering rule to carrying mapping processing module 306.
In the enforcement, on PGW, only has the forwarding controlled function.
Obviously, when having the entity cooperation of " filter and judge " function when outside PGW, being provided with one, just can realize information filtering.For example with embodiment one in the filtration determination module be used.When realizing that with the outside functional entity of filtration judgement cooperates, can carry out transfer of data and result's feedback by transfer of data interface in the user plane and chain of command interface.
Then, be loaded into outside " filter and judge " entity when " user filtering rule " after, can wait for that data transmission blocks sends grouping to be checked.Wherein, replication module duplicates this IP grouping after receiving the IP grouping that the PDN network is sent, and sending module sends the IP grouping of duplicating to outside " filter and judge " entity.
Forwarding module can be further used for closing the IP stream under the user service data grouping of not satisfying filtering rule.
In the enforcement, " filter determination module/forwardings control module " among the PGW differentiate and judgement the IP grouping implementation information that enters based on the filtering user information rule of downloading, finally according to let pass IP respective packets or abandon this grouping of the result who adjudicates.
Based on the negativity result (promptly abandoning corresponding user grouping) of judgement, filter determination module and can take following two kinds to abandon scheme based on the safe class demand in the user filtering CAMEL-Subscription-Information with the forwarding control module:
1, lower safe class: only abandon corresponding detected grouping;
2, higher safe class: can consider to abandon all groupings after the corresponding detected grouping, promptly close IP stream (the Gate Control that this IP stream is set is that Close closes) under the detected grouping according to testing result.
Embodiment two
Fig. 4 is an information filtering apparatus structure schematic diagram, as shown in the figure, comprises the PGW401, forwarding control module 402, filtration determination module 403, the acquisition module 404 that contain carrying mapping processing module, wherein:
Transmit control module 402, link to each other, be used for buffer memory and duplicate the user service data grouping that arrives PGW, and the user service data that sends the described arrival PGW after duplicating divides into groups to filtering determination module with PGW401;
Filter determination module 403, and transmit control module and link to each other, the user service data that is used to judge the arrival PGW after described the duplicating filtering rule that divides into groups whether to satisfy;
Transmit control module 402, also be used for abandoning the user service data grouping of not satisfying filtering rule, processing module is shone upon in user service data packet forward to the carrying on the PGW of satisfying filtering rule according to the result of determination of filtering determination module.
Can further include in the device:
Acquisition module 404 links to each other with filtration determination module 403, is used for obtaining filtering rule from HSS and/or PCRF, and provides judgement required filtering rule to filtering determination module.
Can comprise first acquiring unit and/or second acquisition unit in the acquisition module, wherein:
First acquiring unit is used for obtaining filtering rule by the Ics interface from the user signing contract information territory of HSS;
Second acquisition unit is used for obtaining filtering rule by the Gx interface from PCRF.
Acquisition module can also be further used for obtaining filtering rule at UE in the process that the EPC request is adhered to.
Acquisition module can also be further used for unloading filtering rule at UE in the process of EPC request attachment removal.That is, when UE attachment removal (Detach), " the information filtering rule " that load at this user among the PGW can be unloaded.Because in force, filtering rule is based on customization, therefore, if the user customized information change, as: filtering services is quit the subscription of, then corresponding filtering rule just should unload.Unloading can better realize according to user's request real-time carry out information filtering.
Concrete, when portable terminal carried out attaching process to the EPC request, in the Update Location Request process of HHS request, user's CAMEL-Subscription-Information can be issued to MME from HSS at MME, wherein just can comprise " the signatory indication of user filtering service ".
In the Create Default Bearer Request process of Attach Request procedure correlation subsequently, " the signatory indication of user filtering service " can be via the Gx interface of PGW and PCRF, indicate to PCRF by PCEF Initial IP-CAN Session Establishment/Modification process between the two, and then trigger PCRF and download the information filtering rule of corresponding UE, and be loaded on the acquisition module of PGW by the Ics interface.
Transmit control module and can also be further used for closing the affiliated IP stream of user service data grouping that does not satisfy filtering rule.
In the enforcement, " filter determination module/forwardings control module " among the PGW differentiate and judgement the IP grouping implementation information that enters based on the filtering user information rule of downloading, finally according to let pass IP respective packets or abandon this grouping of the result who adjudicates.
Based on the negativity result (promptly abandoning corresponding user grouping) of judgement, filter determination module and can take following two kinds to abandon scheme based on the safe class demand in the user filtering CAMEL-Subscription-Information with the forwarding control module:
1, lower safe class: only abandon corresponding detected grouping;
2, higher safe class: can consider to abandon all groupings after the corresponding detected grouping, promptly close IP stream (the Gate Control that this IP stream is set is that Close closes) under the detected grouping according to testing result.
In the scheme of this embodiment, because the filtration determination module of grouping can be arranged in (can be installable plug-in module) outside the PGW, for the harmful effect of the processing of PGW load and faint.And, a key characteristic is: use this data parallel architectural schemes, can implement " posteriority " control to some data flow, promptly, transmit control module after providing duplication packets to the filtration determination module, filter determination module return abandon indication before, keep passing through of data in its data forwarding queue.And filter determination module return abandon indication after, trigger abandoning closing of IP traffic Gate Control (gate) under the grouping.This characteristic is fit to the scene that the images match filter algorithm is implemented, and can not introduce too big packet forward time delay.
Embodiment three
The information filtering server that is provided in the present embodiment, can with the embodiment of front in mention and have the entity that filters decision-making function and be used, its role is to filter the filtering rule of judging institute's foundation for they provide.
Fig. 5 is the information filtering server structural representation, as shown in the figure, can comprise in the server:
Acquisition module 501 is used to obtain filtering rule;
Sending module 502 is used to send the filtering rule that obtains.
User's special filtering rule based on user's information filtering application forms just can be stored in the information filtering server in the present embodiment.
In concrete the enforcement, information filtering server can be a logic entity, and it can directly shine upon the user signing contract information territory of being located at HSS, and just the content of information filtering server directly fills in the user signing contract information among the HSS.Perhaps, " information filtering server shows as physical entity and independently exists.Also can describe below.
Acquisition module can be further used for obtaining filtering rule from HSS and/or PCRF.
Acquisition module 501 comprises first acquiring unit 5011 and/or second acquisition unit 5012, wherein:
First acquiring unit 5011 is used for obtaining filtering rule by the Ics interface from the user signing contract information territory of HSS;
Second acquisition unit 5012 is used for obtaining filtering rule by the Gx interface from PCRF.
Concrete, first acquiring unit can be mapped in HSS user signing contract information territory.Under this kind scheme, information filtering server and the interface Ics that need to use filtering rule to carry out between the functional entity of " filtering judgements/forwarding processing " are mapped on Sp interface (the chain of command interface between HHS and PCRF) and the Gx interface naturally.
Information filtering server independently exists and is connected in the scheme on the PCEF entity, is embodied in second acquisition unit and links to each other with PCRF by the Gx interface, and obtain filtering rule.Under this kind scheme, information filtering server and need to use filtering rule carry out interface Ics between the functional entity of " filtering judgements/forwardings processing " then can PCR-based F and PGW between Gx carry out customized and expand.
In the enforcement, acquisition module can also be further used for obtaining filtering rule at UE in the process that the EPC request is adhered to.
Acquisition module can be further used for unloading filtering rule at UE in the process of EPC request attachment removal.That is, when UE attachment removal (Detach), can be unloaded at " information filtering rule " that this user loads.Because in force, filtering rule is based on customization, therefore, if the user customized information change, as: filtering services is quit the subscription of, then corresponding filtering rule just should unload.Unloading can better realize according to user's request real-time carry out information filtering.
Concrete, when portable terminal carried out attaching process to the EPC request, in the Update Location Request process of HHS request, user's CAMEL-Subscription-Information can be issued to MME from HSS at MME, wherein just can comprise " the signatory indication of user filtering service ".
In the Create Default Bearer Request process of Attach Request procedure correlation subsequently, " the signatory indication of user filtering service " can be via the Gx interface of PGW and PCRF, indicate to PCRF by PCEF Initial IP-CAN Session Establishment/Modification process between the two, and then trigger PCRF and download the information filtering rule of corresponding UE, and be loaded on the acquisition module of information filtering server by the Ics interface.
Embodiment four
The common information filtering system that constitutes of information filtering device among the embodiment two that present embodiment provides and the information filtering server among the embodiment three.
Fig. 6 is the information filtering system structural representation, as shown in the figure, can comprise information filtering device 601, information filtering server 602 in the system, wherein:
Sending module on the information filtering server 602 links to each other with filtration determination module 6011 on the information filtering device 601 by the Ics interface, is used for the filtering rule that acquisition module obtains is sent to filtering determination module 6011;
Filtration determination module 6011 on the information filtering device 601 is used to judge whether the user service data grouping of the arrival PGW after described the duplicating satisfies the filtering rule that sending module is sent to.
Can further include in the system:
HSS603 is used to store the user signing contract information that comprises filtering rule;
Acquisition module on the information filtering server 602 is located at HSS with mapping mode, is used for obtaining filtering rule from the user signing contract information territory of HSS.
System also may further include:
PCRF604 is used to store the user signing contract information that comprises filtering rule;
602 acquisition module on the information filtering server links to each other with PCRF by the Gx interface, is used for obtaining filtering rule from the user signing contract information of PCRF.
Among the figure, the intention that information filtering server links to each other with the HSS dotted line is to give expression to the execution mode that information filtering server can be located at HSS with mapping mode, that is, what exist between the two is in logic annexation, might not need to exist in force a connection physically.
In information filtering server work, when the functional entity that needs filtering rule provides filtering rule, can by at portable terminal when attaching process is carried out in EPC request, at MME in the Update Location Request process of HHS request, user's CAMEL-Subscription-Information can be issued to MME from HSS, wherein just can comprise " the signatory indication of user filtering service ".
In the Create Default Bearer Request process of Attach Request procedure correlation subsequently, " the signatory indication of user filtering service " can be via the Gx interface of PGW and PCRF, indicate to PCRF by PCEF Initial IP-CAN Session Establishment/Modification process between the two, and then trigger PCRF and download the information filtering rule of corresponding UE, and be loaded on the acquisition module of information filtering server by the Ics interface.
As seen, information filtering server might not need to link to each other with the functional entity that needs filtering rule physically in force, so to give expression between them with dashed lines among the figure can be a kind of connected mode in logic.
Embodiment five
Present embodiment provides the common information filtering system that constitutes of PGW, the information filtering device among the embodiment two among the embodiment one, include a plurality of PGW or the devices that can be engaged in the information filtering disposal ability in this system, therefore also just produced the problem of selecting concrete filter to implement in these PGW, device, present embodiment is used for and addresses this problem.
Fig. 7 is the information filtering system structural representation, comprise at least one PGW in the system, and/or, at least one information filtering device, need to prove, not distinguishing out among the figure is PGW among the embodiment one, or the PGW among the embodiment two, but this programme is how to select, therefore there be not passable on figure, distinguishing, simultaneously, because the effect of device is identical with PGW in the present embodiment, so Reference numeral all is the same so that describe explanation.
As shown in the figure, comprise in the system: PGW701 and/or information filtering device 701, inking device 702, wherein:
Inking device 702, the PGW701 or the information filtering device 701 that are used to the user service data packet configuration that information filtering is carried out in this user service data grouping.
In the enforcement, inking device 702 can comprise:
Detecting module is used for detecting user signing contract information and whether comprises filtering rule;
Configuration module, the PGW or the information filtering device that are used to the user service data packet configuration that comprises filtering rule that information filtering is carried out in this user service data grouping.
In the enforcement, detecting module is further used for determining whether specify PGW or the information filtering device of being engaged in information filtering in the user signing contract information;
It is PGW or the information filtering device that comprises that the user service data grouping of filtering rule is carried out information filtering by specified configuration to this user service data grouping that configuration module is further used for.
Concrete, before the Create Default Bearer Request process of Attach Request procedure correlation subsequently, MME need be the PGW of " filtering services contracted user " selected filtering services special use.This programme formally provides the static configuration method that filters special-purpose PGW, in this scheme, if HSS in MME download user CAMEL-Subscription-Information, for UE with regard to the explicit appointment PGW ID of specific APN (Access Point Name, APN).Then and this PGW can be configured to filter special-purpose PGW.
Detecting module can also be further used for determining whether to have in the user signing contract information PGW that is engaged in information filtering or the information filtering device of MME appointment.
Concrete, at portable terminal when attaching process (Attach Request process) is carried out in EPC request, at MME in the Update Location Request process of HHS request, user's CAMEL-Subscription-Information can be issued to MME from HSS, and detecting module can detect whether comprise filtering rule from this user signing contract information.
The dynamic-configuration scheme of filtering special-purpose PGW is provided below again.
In the enforcement, may further include in PGW and/or the information filtering device: the ability indicating module is used for sending the indication of information filtering service ability to inking device;
Then inking device may further include: service ability indication receiver module is used to receive the information filtering service ability indication of sending;
Configuration module can be further used for being designated as PGW or the information filtering device that the user service data grouping that comprises filtering rule is carried out information filtering by specified configuration to this user service data grouping according to the information filtering service ability.
In concrete the enforcement, when MME knows that UE is " filtering services contracted user ", MME can pass through PCO (Protocol Configuration Option based on UE in Attach Request process, protocol configuration option) APN that provides of message element, or based on the default APN of UE CAMEL-Subscription-Information appointment, can select one or several PGW (distinguishing) for UE by DNS (Domain Name Service, domain name service) query script with the PGW address.
For the scene that only is equipped with a PGW in the APN territory, this PGW filters special-purpose PGW; Return the scene of a plurality of PGW address for the APN query script, then need further indication information to identify, as: " indication of filtering services ability " of PGW.So, " indication of filtering services ability " that in the inquiry response information of the answer that DNS provides, replenishes PGW.Be convenient to MME and in a plurality of PGW address, select PGW as the special-purpose PGW of the filtering services of UE with " filtering services ability ".Further again, a plurality of if the PGW with " filtering services ability " that DNS returns exists, if the Top On of PGW query script indication set, then expression needs the introducing topology then to choose reasonably " filtering special-purpose " PGW for UE; And if the Top On of PGW query script indication does not have set, then MME can be from a plurality of a plurality of PGW with " filtering services ability " that return optional " filtering special-purpose " PGW as UE.
By above-mentioned explanation as can be seen native system the filtering services of Packet Service can be provided for the selected special-purpose PGW of the user of signatory filtering services.
For the convenience of describing, the each several part of the above device is divided into various modules with function or the unit is described respectively.Certainly, when enforcement is of the present invention, can in same or a plurality of softwares or hardware, realize the function of each module or unit.
Based on same inventive concept, the method of information filtering also is provided in the embodiment of the invention, because the principle that these methods are dealt with problems is similar to PGW, information filtering device, information filtering system in the foregoing description, therefore the enforcement of these methods can repeat part and not give unnecessary details referring to the enforcement of equipment.
Fig. 8 is information filtering method one an implementing procedure schematic diagram, as shown in the figure, can comprise the steps:
Step 801, buffer memory arrive the user service data grouping of PGW;
Step 802, the user service data grouping of duplicating described arrival PGW;
The user service data grouping of step 803, the described arrival PGW that duplicates of transmission, the user service data grouping of the described arrival PGW that duplicates will be used for filtering judgement according to the rule rule;
Step 804, receive result of determination, described result of determination is according to the rule rule result of determination after the judgement to be filtered in the user service data grouping of the described arrival PGW that duplicates;
Step 805, according to result of determination, abandon the user service data grouping of not satisfying filtering rule, the user service data packet forward that will satisfy filtering rule is to carrying mapping processing module.
Can further include:
Step 806, close the IP stream under the user service data grouping of not satisfying filtering rule.
In the enforcement, after step 803 sends out data, can utilize foregoing equipment to judge, return result of determination then, after the result returns, continue execution in step 804 as judging functional entitys such as filtering module.
Can be in the enforcement with reference to the device for filtering information of block form, the enforcement of device.
Fig. 9 is information filtering method two implementing procedure schematic diagrames, as shown in the figure, can comprise the steps:
Step 901, buffer memory also duplicate the user service data grouping that arrives PGW;
Whether the user service data grouping of the arrival PGW after step 902, described the duplicating of judgement satisfies filtering rule;
Step 903, abandon the user service data grouping of not satisfying filtering rule, with the user service data packet forward that the satisfies filtering rule carrying mapping processing module to the PGW according to result of determination.
In the enforcement, can also after step 903, further comprise:
Step 904, close the IP stream under the user service data grouping of not satisfying filtering rule.
In the enforcement, may further include:
Filtering rule from HSS and/or PCRF obtaining step 902.
Obtain filtering rule from HSS and/or PCRF, can comprise:
Obtain filtering rule by the Ics interface from the user signing contract information territory of HSS;
And/or, obtain filtering rule by the Gx interface from PCRF.
Wherein, obtaining filter rule information by the Ics interface from the user signing contract information territory of HSS, can be to obtain filtering rule with mapping mode from the user signing contract information territory of HSS.
In the enforcement, may further include:
In the process that the EPC request is adhered to, obtain filtering rule at UE.
Can further include:
In the process of EPC request attachment removal, unload filtering rule at UE.
Can be in the enforcement with reference to the device for filtering information of block form, the enforcement of device.
" user's filtering services CAMEL-Subscription-Information " when UE is in home network, presses the scheme implementation in the foregoing description when downloading via PCRF, that is, and and the scheme that " user's filtering services CAMEL-Subscription-Information " downloaded via PCRF.And for roaming and visit scene, in the technical scheme that in above-mentioned all embodiment, provides, can be as follows when specifically implementing:
Roaming scence: at this moment, MME is in V-PLMN (Visited PLMN, visit Public Land Mobile Nerwork), and PGW and PCRF all are among the H-PLMN (Home PLMN, Home Public Land Mobile Network).MME can obtain user " the signatory indication of filtering services " from HSS, and can be selected standard P GW of UE or the special-purpose PGW of filtration in view of the above.Download to corresponding PGW with regard to user's " user filtering service CAMEL-Subscription-Information " via the PCRF from H-PLMN.
Visit scene (as Local Breakout): at this moment, MME and PGW all are among the V-PLMN, and join with PGW and V-PCRF, V-PCRF joins by R9 interface and H-PCRF then, thus " the user filtering service CAMEL-Subscription-Information " at H-PCRF place can download among the PGW among the V-PLMN.
In addition, after the user adheres to, if user " information filtering signatory " changes, " the user filtering rule is set server " or the correlated process that triggers based on HSS or upgrade signatory rule (as: PUSH method) to PCRF voluntarily.And after PCRF receives the signatory rule of the user filtering that upgraded,, the signatory rule of new user filtering is installed to PGW (" filtering judgement ") by the PCEF Initial IP-CAN Session Establishment/Modification process between itself and PGW.
In the foregoing description, concrete filtration means can be used network address filtration method, image filtering method and semantic analysis filtration method or the like.
By above-mentioned execution mode as can be seen, the embodiment of the invention has proposed to utilize the functional mechanism of EPS by the EPS system at the LTE network, realizes the information filtering to the communication of mobile terminal business.Can be signatory according to the user, to the information filtering configuration that different individual consumers customizes, general filtering gateway different from the past only can be realized unified filtering scheme at all access users.Also be better than on portable terminal, directly carrying out the scheme of information filtering.
Obviously, the technical scheme that provides among the present invention can satisfy special personalization, also satisfies the characteristics of terminal mobility.
In addition, there is not extra software and hardware ability need for the UE side yet.
Those skilled in the art should understand that embodiments of the invention can be provided as method, system or computer program.Therefore, the present invention can adopt complete hardware embodiment, complete software implementation example or in conjunction with the form of the embodiment of software and hardware aspect.And the present invention can adopt the form that goes up the computer program of implementing in one or more computer-usable storage medium (including but not limited to magnetic disc store, CD-ROM, optical memory etc.) that wherein include computer usable program code.
The present invention is that reference is described according to the flow chart and/or the block diagram of method, equipment (system) and the computer program of the embodiment of the invention.Should understand can be by the flow process in each flow process in computer program instructions realization flow figure and/or the block diagram and/or square frame and flow chart and/or the block diagram and/or the combination of square frame.Can provide these computer program instructions to the processor of all-purpose computer, special-purpose computer, Embedded Processor or other programmable data processing device to produce a machine, make the instruction of carrying out by the processor of computer or other programmable data processing device produce to be used for the device of the function that is implemented in flow process of flow chart or a plurality of flow process and/or square frame of block diagram or a plurality of square frame appointments.
These computer program instructions also can be stored in energy vectoring computer or the computer-readable memory of other programmable data processing device with ad hoc fashion work, make the instruction that is stored in this computer-readable memory produce the manufacture that comprises command device, this command device is implemented in the function of appointment in flow process of flow chart or a plurality of flow process and/or square frame of block diagram or a plurality of square frame.
These computer program instructions also can be loaded on computer or other programmable data processing device, make on computer or other programmable devices and to carry out the sequence of operations step producing computer implemented processing, thereby the instruction of carrying out on computer or other programmable devices is provided for being implemented in the step of the function of appointment in flow process of flow chart or a plurality of flow process and/or square frame of block diagram or a plurality of square frame.
Although described the preferred embodiments of the present invention, in a single day those skilled in the art get the basic creative notion of cicada, then can make other change and modification to these embodiment.So claims are intended to all changes and the modification that are interpreted as comprising preferred embodiment and fall into the scope of the invention.
Obviously, those skilled in the art can carry out various changes and modification to the present invention and not break away from the spirit and scope of the present invention.Like this, if of the present invention these are revised and modification belongs within the scope of claim of the present invention and equivalent technologies thereof, then the present invention also is intended to comprise these changes and modification interior.

Claims (30)

1. packet data network gateway PGW comprises: carrying mapping processing module, it is characterized in that, and also comprise:
Cache module is used for the user service data grouping that buffer memory arrives PGW;
Replication module, the user service data grouping that is used to duplicate described arrival PGW;
Sending module is used to send the user service data grouping of the described arrival PGW that duplicates, and the user service data grouping of the described arrival PGW that duplicates will be used for filtering judgement according to the rule rule;
Receiver module is used to receive result of determination, described result of determination be according to the rule rule to the user service data of the described arrival PGW that duplicates grouping filter result of determination after the judgement;
Forwarding module is used for according to result of determination, abandons the user service data grouping of not satisfying filtering rule, will satisfy the user service data packet forward of filtering rule to carrying mapping processing module.
2. PGW as claimed in claim 1 is characterized in that, described forwarding module is further used for closing the IP stream under the user service data grouping of not satisfying filtering rule.
3. an information filtering device comprises the PGW that contains carrying mapping processing module, it is characterized in that, also comprises:
Transmit control module, link to each other, be used for buffer memory and duplicate the user service data grouping that arrives PGW, and the user service data that sends the described arrival PGW after duplicating divides into groups to filtering determination module with PGW;
Filter determination module, and transmit control module and link to each other, the user service data that is used to judge the arrival PGW after described the duplicating filtering rule that divides into groups whether to satisfy;
Transmit control module, also be used for abandoning the user service data grouping of not satisfying filtering rule, processing module is shone upon in user service data packet forward to the carrying on the PGW of satisfying filtering rule according to the result of determination of filtering determination module.
4. device as claimed in claim 3 is characterized in that, further comprises:
Acquisition module links to each other with the filtration determination module, is used for obtaining filtering rule from HSS and/or PCRF, and provides judgement required filtering rule to filtering determination module.
5. device as claimed in claim 4 is characterized in that described acquisition module comprises first acquiring unit and/or second acquisition unit, wherein:
First acquiring unit is used for obtaining filtering rule by the Ics interface from the user signing contract information territory of HSS;
Second acquisition unit is used for obtaining filtering rule by the Gx interface from PCRF.
6. device as claimed in claim 4 is characterized in that, described acquisition module is further used for obtaining filtering rule at UE in the process that the EPC request is adhered to.
7. device as claimed in claim 4 is characterized in that, described acquisition module is further used for unloading filtering rule at UE in the process of EPC request attachment removal.
8. as the arbitrary described device of claim 3 to 7, it is characterized in that described forwarding control module is further used for closing the IP stream under the user service data grouping of not satisfying filtering rule.
9. an information filtering server is characterized in that, comprising:
Acquisition module is used to obtain filtering rule;
Sending module is used to send the filtering rule that obtains.
10. server as claimed in claim 9 is characterized in that, acquisition module is further used for obtaining filtering rule from HSS and/or PCRF.
11. server as claimed in claim 10 is characterized in that, described acquisition module comprises first acquiring unit and/or second acquisition unit, wherein:
First acquiring unit is used for obtaining filtering rule by the Ics interface from the user signing contract information territory of HSS;
Second acquisition unit is used for obtaining filtering rule by the Gx interface from PCRF.
12. server as claimed in claim 9 is characterized in that, described acquisition module is further used for obtaining filtering rule at UE in the process that the EPC request is adhered to.
13. server as claimed in claim 9 is characterized in that, described acquisition module is further used for unloading filtering rule at UE in the process of EPC request attachment removal.
14. an information filtering system is characterized in that, comprises information filtering device as claimed in claim 3, information filtering server as claimed in claim 9, wherein:
Sending module on the information filtering server links to each other with filtration determination module on the information filtering device by the Ics interface, is used for the filtering rule that acquisition module obtains is sent to the filtration determination module;
Filtration determination module on the information filtering device is used to judge whether the user service data grouping of the arrival PGW after described the duplicating satisfies the filtering rule that sending module is sent to.
15. system as claimed in claim 14 is characterized in that, further comprises:
HSS is used to store the user signing contract information that comprises filtering rule;
Acquisition module on the information filtering server is located at HSS with mapping mode, is used for obtaining filtering rule from the user signing contract information territory of HSS.
16. system as claimed in claim 14 is characterized in that, further comprises:
PCRF is used to store the user signing contract information that comprises filtering rule;
Acquisition module on the information filtering server links to each other with PCRF by the Gx interface, is used for obtaining filtering rule from the user signing contract information of PCRF.
17. an information filtering system is characterized in that, comprises at least one PGW described in claim 1, and/or at least one information filtering device described in claim 3 also comprises:
Inking device, the PGW or the information filtering device that are used to the user service data packet configuration that information filtering is carried out in this user service data grouping.
18. system as claimed in claim 17 is characterized in that, described inking device comprises:
Detecting module is used for detecting user signing contract information and whether comprises filtering rule;
Configuration module, the PGW or the information filtering device that are used to the user service data packet configuration that comprises filtering rule that information filtering is carried out in this user service data grouping.
19. the system described in claim 17 is characterized in that,
Described detecting module is further used for determining whether specify PGW or the information filtering device of being engaged in information filtering in the user signing contract information;
It is PGW or the information filtering device that comprises that the user service data grouping of filtering rule is carried out information filtering by specified configuration to this user service data grouping that described configuration module is further used for.
20. system as claimed in claim 19 is characterized in that,
Described detecting module is further used for determining whether to have in the user signing contract information PGW that is engaged in information filtering or the information filtering device of MME appointment.
21. the system described in claim 17 is characterized in that,
PGW described in claim 1, and/or the information filtering device described in claim 3 further comprises: the ability indicating module is used for sending the indication of information filtering service ability to inking device;
Described inking device further comprises: service ability indication receiver module is used to receive the information filtering service ability indication of sending;
Described configuration module is further used for being designated as PGW or the information filtering device that the user service data grouping that comprises filtering rule is carried out information filtering by specified configuration to this user service data grouping according to the information filtering service ability.
22. an information filtering method is characterized in that, comprises the steps:
Buffer memory arrives the user service data grouping of PGW;
Duplicate the user service data grouping of described arrival PGW;
Send the user service data grouping of the described arrival PGW that duplicates, the user service data grouping of the described arrival PGW that duplicates will be used for filtering judgement according to the rule rule;
Receive result of determination, described result of determination is according to the rule rule result of determination after the judgement to be filtered in the user service data grouping of the described arrival PGW that duplicates;
According to result of determination, abandon the user service data grouping of not satisfying filtering rule, will satisfy the user service data packet forward of filtering rule to carrying mapping processing module.
23. method as claimed in claim 22 is characterized in that, further comprises:
Close the affiliated IP stream of user service data grouping that does not satisfy filtering rule.
24. an information filtering method is characterized in that, comprises the steps:
Buffer memory also duplicates the user service data grouping that arrives PGW;
Judge whether the user service data grouping of the arrival PGW after described the duplicating satisfies filtering rule;
Abandon the user service data grouping of not satisfying filtering rule according to result of determination, processing module is shone upon in user service data packet forward to the carrying on the PGW of satisfying filtering rule.
25. method as claimed in claim 24 is characterized in that, further comprises:
Obtain filtering rule from HSS and/or PCRF.
26. method as claimed in claim 25 is characterized in that, describedly obtains filtering rule from HSS and/or PCRF, comprising:
Obtain filtering rule by the Ics interface from the user signing contract information territory of HSS;
And/or, obtain filtering rule by the Gx interface from PCRF.
27. method as claimed in claim 26 is characterized in that, describedly obtains filter rule information by the Ics interface from the user signing contract information territory of HSS, is to obtain filtering rule with mapping mode from the user signing contract information territory of HSS.
28. method as claimed in claim 25 is characterized in that, further comprises:
In the process that the EPC request is adhered to, obtain filtering rule at UE.
29. method as claimed in claim 25 is characterized in that, further comprises:
In the process of EPC request attachment removal, unload filtering rule at UE.
30. as the arbitrary described method of claim 24 to 29, it is characterized in that, further comprise:
Close the affiliated IP stream of user service data grouping that does not satisfy filtering rule.
CN2009100846226A 2009-05-18 2009-05-18 Information filtering equipment and method Pending CN101896011A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN2009100846226A CN101896011A (en) 2009-05-18 2009-05-18 Information filtering equipment and method

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN2009100846226A CN101896011A (en) 2009-05-18 2009-05-18 Information filtering equipment and method

Publications (1)

Publication Number Publication Date
CN101896011A true CN101896011A (en) 2010-11-24

Family

ID=43105026

Family Applications (1)

Application Number Title Priority Date Filing Date
CN2009100846226A Pending CN101896011A (en) 2009-05-18 2009-05-18 Information filtering equipment and method

Country Status (1)

Country Link
CN (1) CN101896011A (en)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102780771A (en) * 2012-07-12 2012-11-14 深圳市同洲电子股份有限公司 Service transmission method, device and equipment

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1509030A (en) * 2002-12-16 2004-06-30 联想(北京)有限公司 Network safety device multi work mode adapting method
CN1564547A (en) * 2004-03-25 2005-01-12 上海复旦光华信息科技股份有限公司 High speed filtering and stream dividing method for keeping connection features
CN101005496A (en) * 2006-06-27 2007-07-25 华为技术有限公司 Medium gate grouping filter method and medium gateway
US20080134328A1 (en) * 2006-12-01 2008-06-05 Sonus Networks Scalable Filtering and Policing Mechanism for Protecting User Traffic in a Network

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1509030A (en) * 2002-12-16 2004-06-30 联想(北京)有限公司 Network safety device multi work mode adapting method
CN1564547A (en) * 2004-03-25 2005-01-12 上海复旦光华信息科技股份有限公司 High speed filtering and stream dividing method for keeping connection features
CN101005496A (en) * 2006-06-27 2007-07-25 华为技术有限公司 Medium gate grouping filter method and medium gateway
US20080134328A1 (en) * 2006-12-01 2008-06-05 Sonus Networks Scalable Filtering and Policing Mechanism for Protecting User Traffic in a Network

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102780771A (en) * 2012-07-12 2012-11-14 深圳市同洲电子股份有限公司 Service transmission method, device and equipment

Similar Documents

Publication Publication Date Title
KR102546956B1 (en) Small data usage enablement in 3gpp networks
US8885568B2 (en) Policy application method for machine type communication, and policy and charging enforcement function
CN108141727A (en) The mobile core network service exposure of user equipment
CN103765386B (en) The system and method that infrastructure is built for virtual network
CN104255046B (en) The method of customized mobile broadband network system and customization mobile broadband network
CA2951986C (en) System and method for managing traffic detection
CN101060413B (en) Roaming policy and charging control method and system
CN101896010A (en) Equipment and method for filtering information
CN104185973B (en) For the method and apparatus for the priority for setting data transmission
CN102045897B (en) Group identification reporting method and device
CN102045695B (en) Method and system for acquiring information on MTC (Microsoft Technology Center) server address
WO2011054300A1 (en) Method and system for controling mtc terminal access
US20070033274A1 (en) Enhanced charging rule for packet data service and operation method thereof
WO2011050689A1 (en) Access control method and system for machine type communication terminal
WO2013038154A1 (en) Mobile communications network, infrastructure equipment and method
CN108156042A (en) It provides with caching related information to core network in access network
CN102045691A (en) Method and device for acquiring grouped identifiers of machine type communication (MTC) equipment
CN102332985B (en) Method and device for providing charging support based on local internet protocol (IP) access (LIPA) bearer
CN103384380B (en) A kind of report method and related device of machine-type communication event
CN103139847A (en) Method and device of data transmission
CN107295576A (en) The processing method of QoS policy, apparatus and system
GB2494473A (en) Caching of content in a mobile communications network
CN106063201A (en) Server, control device, management device, communication system, communication method, control method, management method, and program
WO2011050688A1 (en) Method and system for obtaining machine type communication terminal information
CN101896011A (en) Information filtering equipment and method

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C12 Rejection of a patent application after its publication
RJ01 Rejection of invention patent application after publication

Application publication date: 20101124