CN105429807B - The access method and device of local network resource - Google Patents

The access method and device of local network resource Download PDF

Info

Publication number
CN105429807B
CN105429807B CN201511025244.6A CN201511025244A CN105429807B CN 105429807 B CN105429807 B CN 105429807B CN 201511025244 A CN201511025244 A CN 201511025244A CN 105429807 B CN105429807 B CN 105429807B
Authority
CN
China
Prior art keywords
access
web
browser
resource
client
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201511025244.6A
Other languages
Chinese (zh)
Other versions
CN105429807A (en
Inventor
姚宁
韩鹏
丁鹏
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
TCL Corp
Original Assignee
TCL Corp
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by TCL Corp filed Critical TCL Corp
Priority to CN201511025244.6A priority Critical patent/CN105429807B/en
Publication of CN105429807A publication Critical patent/CN105429807A/en
Application granted granted Critical
Publication of CN105429807B publication Critical patent/CN105429807B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L41/00Arrangements for maintenance, administration or management of data switching networks, e.g. of packet switching networks
    • H04L41/02Standardisation; Integration
    • H04L41/0246Exchanging or transporting network management information using the Internet; Embedding network management web servers in network elements; Web-services-based protocols
    • H04L41/0253Exchanging or transporting network management information using the Internet; Embedding network management web servers in network elements; Web-services-based protocols using browsers or web-pages for accessing management information
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0876Network architectures or network communication protocols for network security for authentication of entities based on the identity of the terminal or configuration, e.g. MAC address, hardware or software configuration or device fingerprint
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/01Protocols
    • H04L67/02Protocols based on web technology, e.g. hypertext transfer protocol [HTTP]

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Hardware Design (AREA)
  • Computer Security & Cryptography (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Power Engineering (AREA)
  • Information Transfer Between Computers (AREA)

Abstract

The present invention is suitable for field of computer technology, provides the access method and device of local network resource, comprising: access to LAN simultaneously starts browser;The web application for resource access being stored in advance in the server is accessed by the browser, the web, which is applied, disables resource downloading and preservation function;It is applied in the browser by the web and resource access is carried out to the local area network.In the present invention, in such a way that web is accessed, load web application in a browser, to realize that the resource of local area network is accessed by web application, the permission of resource access by web apply in the correlation function write realize control, client can not local area network resource be downloaded and save, thus improve the information security of local area network.

Description

The access method and device of local network resource
Technical field
The invention belongs to field of computer technology more particularly to the access methods and device of local network resource.
Background technique
In order to achieve the purpose that save office resource or realize removableization office, currently, own office equipment is by more next More generally use at work.People access enterprise network by own office equipment, realize and provide to internal in enterprise network The access in source.The addition of own office equipment, so that the safety of internal resource becomes the eager concern of needs in enterprise network The problem of, since own office equipment does not have rights management mechanism at runtime, after accessing enterprise network, user can be with It optionally accesses access to internal resource, there are the risks of internal resource leakage, influence information security.
Summary of the invention
In view of this, the embodiment of the invention provides the access method of local network resource and device, to solve to pass through at present Own office equipment access enterprise networks network will lead to internal resource leakage, the problem of impacting to information security.
In a first aspect, providing a kind of access method of local network resource, comprising:
Access to LAN simultaneously starts browser;
It is stored in advance in the web application for resource access in the server by browser access, it is described Web, which is applied, disables resource downloading and preservation function;
It is applied in the browser by the web and resource access is carried out to the local area network.
Second aspect provides a kind of access method of local network resource, comprising:
The web application for resource access is stored in advance, the web, which is applied, prohibits resource downloading and preservation function With;
Receive the web application access request of the browser of client in the local area network;
The web application is issued according to web application access request, to realize in the browser by described Web, which is applied, carries out resource access to the local area network.
The third aspect provides a kind of access mechanism of local network resource, comprising:
Access and start unit, for access to LAN and start browser;
Web application access unit is used to provide for being stored in advance in the server by browser access The web application of source access, the web, which is applied, disables resource downloading and preservation function;
Resource access unit carries out resource visit to the local area network for applying in the browser by the web It asks.
Fourth aspect provides a kind of access mechanism of local network resource, comprising:
Storage unit, for the web application for resource access to be stored in advance, the web is applied to resource downloading and guarantor Function is deposited to be disabled;
First receiving unit, the web application access for receiving the browser of client in the local area network are requested;
Issuance unit is applied for issuing the web according to web application access request, to realize in the browsing It is applied in device by the web and resource access is carried out to the local area network.
In embodiments of the present invention, in such a way that web is accessed, web application is loaded in a browser, thus by should The resource access of local area network is realized in web application, the permission of resource access by web apply in the correlation function write realize Control, client can not local area network resource be downloaded and save, thus improve the information security of local area network.
Detailed description of the invention
It to describe the technical solutions in the embodiments of the present invention more clearly, below will be to embodiment or description of the prior art Needed in attached drawing be briefly described, it should be apparent that, the accompanying drawings in the following description is only of the invention some Embodiment for those of ordinary skill in the art without any creative labor, can also be according to these Attached drawing obtains other attached drawings.
Fig. 1 is the implementation flow chart of the access method client of local network resource provided in an embodiment of the present invention;
Fig. 2 is the implementation process of the access method client identity verifying of local network resource provided in an embodiment of the present invention Figure;
Fig. 3 is the implementation flow chart of the access method server of local network resource provided in an embodiment of the present invention;
Fig. 4 is the implementation process of the access method server authentication of local network resource provided in an embodiment of the present invention Figure;
Fig. 5 is the structural block diagram of the access mechanism client part of local network resource provided in an embodiment of the present invention;
Fig. 6 is the structural block diagram of the access mechanism server section of local network resource provided in an embodiment of the present invention.
Specific embodiment
In being described below, for illustration and not for limitation, the tool of such as particular system structure, technology etc is proposed Body details understands the embodiment of the present invention to cut thoroughly.However, it will be clear to one skilled in the art that there is no these specific The present invention also may be implemented in the other embodiments of details.In other situations, it omits to well-known system, device, electricity The detailed description of road and method, in case unnecessary details interferes description of the invention.
Firstly, explaining the implementation process of the access method client of local network resource provided in an embodiment of the present invention It states, the client includes but is not limited to the mobile computing devices such as computer, laptop or smart phone, plate, such as Shown in Fig. 1, details are as follows for implementation process:
In S101, access to LAN simultaneously starts browser.
Wherein, the local area network includes but is not limited to the internal network of the mechanisms such as enterprise, school, defeated in client by user After entering legal username and password, client accesses the local area network, at the same time, starts browser.
In S102, the web for resource access being stored in advance in the server is accessed by the browser Using the web, which is applied, disables resource downloading and preservation function.
In the server, the web application write has been stored in advance, client can have been utilized in such a way that web is accessed The browser of middle installation realizes application access, and the function of web application is the access of realization client local area network resource, but its Function includes but is not limited to the access of local area network resource, other clients need the network operation realized under local area network It can be realized, be not limited thereto by web application.In the present embodiment, it should be clear that, web application is played a game The downloading of domain net resource and preservation function are disabled, and user can realize local area network resource by web application It checks, the operation such as priority assignation, still, can not local network resource be downloaded or is saved in client local, thus guarantee to work as When carrying out local network resource access by web application, local network resource will not leak.
In addition, in the present embodiment, since web application memory is in server, browser accesses Shi Doucong server every time Downloading obtains, and therefore, once needing to carry out version upgrading to web application, also only needs to update the web application stored in server , there is no the release maintenance of client operations, save the software maintenance cost of client.
In S103, is applied in the browser by the web and resource access is carried out to the local area network.
Here, web application is loaded in a browser in such a way that web is accessed, to realize by web application The resource of local area network accesses, the permission of resource access by web apply in the correlation function write realize control, client without Method local area network resource is downloaded and saves.Meanwhile it also may be implemented to access interface to similar to conventional resource in web application Interface load so that user can realize the resource access of local area network in a browser with conventional resource access mode.
Further, in order to ensure the identity legitimacy of client or server, local area network is more efficiently ensured Information security can also carry out authentication to client or server before S103, as shown in Figure 2:
In S104, is applied by the web and authentication is carried out to the browser or the server.
If the authentication passes through, the operation of S103 is executed;If the authentication does not pass through, such as S105 institute Show: terminating the access applied to the web in the browser.Terminate the access applied to web, then be equivalent to terminate it is logical The every operation that web application can be performed is crossed, that is, in the unsanctioned situation of authentication, in order to ensure local area network Information security terminates the access of client local area network resource, to prevent leaking data.
The elaboration for carrying out several embodiments to Fig. 2 auth method as described in the examples below, in authentication Cheng Zhong can use any one following auth method, or use following a variety of auth methods simultaneously:
As an embodiment of the present invention, it can be applied by the web and preset term is carried out to the browser Detection, whether to detect the browser by malicious modification.The detection of the preset term includes but is not limited to: detection browser Whether distorted by code, whether detection browser is loaded with malicious plugins, or whether detection browser is loaded with and is used for To convert the auxiliary plug-in that image content exports for data content, thus assure that generate causes because of browser screenshotss Data safety loophole.
It as another embodiment of the present invention, can also be applied by the web, by the media access control layer of the machine The address (Media Access Control, MAC) is uploaded to the server, to pass through the machine described in the server authentication Whether the MAC Address that MAC Address uses when accessing the local area network with the machine is consistent: since client is in access to LAN, Need to input legal user name and password to complete authentication, during the authentication, client also can be by this The MAC Address of machine is reported to server to achieve, therefore, in the present embodiment, in order to avoid in legitimate client success together After access to LAN, illegitimate client falsely uses correct username and password access to LAN, can be periodically or random by web application The MAC Address of the machine is reported to server by ground, by server by the MAC Address reported and use when client access to LAN MAC Address be compared, if the two is consistent, authentication passes through, and otherwise, authentication does not pass through.
Above-mentioned two embodiment is that server is allowed to carry out authentication to client, as of the invention another Embodiment can also carry out authentication to server by client, to prevent the data or execution that upload by web application Operation intercepted and captured by illegal server, generate incipient fault for data security.As follows to the verification mode of server identity: reception comes from The check value of the server, the check value are calculated by the server by preset algorithm;Execute the pre- imputation Whether method, the calculated result for detecting the execution are consistent with the check value.In the present embodiment, preset algorithm is by preset simultaneously It is neutralized in server in web application, server can issue the school being calculated based on the preset algorithm according to the requirement of client Value is tested, alternatively, server can periodically issue the check value being calculated based on the preset algorithm, and after receiving check value, The predetermined function of web application can also be calculated by the preset algorithm, and calculated result is compared with the check value received It is right, judge whether the two is consistent.In the present embodiment, if server identity is illegal, what the check value and web sent was applied Calculated result can be inconsistent, so that client can complete the authentication to server.
Corresponding to embodiments thereof described above, next, to the access method of local network resource provided in an embodiment of the present invention The implementation process of server is illustrated, as shown in figure 3, details are as follows for its implementation process:
In S301, the web application for resource access is stored in advance, the web is applied to resource downloading and saved function Disabling is can be carried out.
In the server, the web application write has been stored in advance, client can utilize in such a way that web is accessed The browser installed in client realizes application access.The function of web application is to realize the visit of client local area network resource It asks, but its function includes but is not limited to the access of local area network resource, other clients need the net realized under local area network Network operation can also be realized by web application, be not limited thereto.In the present embodiment, it should be clear that, the web It is disabled using the downloading and preservation function of local area network resource, user can realize local area by web application Local network resource still can not be downloaded or be saved in client local, thus by the operation such as the checking of net resource, priority assignation To guarantee that local network resource will not leak when carrying out local network resource access by web application.
In S302, the web application access request of the browser of client in the local area network is received.
In S303, the web is issued according to web application access request and is applied, to realize in the browser It is applied by the web and resource access is carried out to the local area network.
When client wishes to access the web in application, server can be received from local area network in such a way that web is accessed In the client browser web application access request, receive the web application access request after, browser applies the web It is handed down to client, client loads web application in a browser, thus the money for realizing local area network by web application Source access.
Further, in order to ensure the identity legitimacy of client or server, local area network is more efficiently ensured Information security, can also carry out authentication to client or server, carry out body to client corresponding to described above The second way of part verifying, in server-side side, as shown in figure 4, its authentication process itself participated in includes:
In S401, the MAC Address that the client is sent by web application is received.
In S402, verify the MAC Address and the client access the address that is used when the local area network whether one It causes.
In S403, Xiang Suoshu client returns to the result of the verifying.
Since client is in access to LAN, need to input legal user name and password to complete authentication, In During the authentication, the MAC Address of the machine can be also reported to together server to achieve, therefore, at this by client In embodiment, in order to avoid after legitimate client is successfully accessed local area network, illegitimate client falsely uses correct user name and close The MAC Address of the machine can be reported to server by web application timing or randomly by code access to LAN, will be upper by server The MAC Address of report is compared with the MAC Address used when client access to LAN, if the two is consistent, authentication is logical It crosses, otherwise, authentication does not pass through.
Corresponding to the mode described above for carrying out authentication to server, in server-side side, the identity participated in Verification process includes: that check value is calculated by preset algorithm;The check value is sent to the client, so that described Client after it locally executes the preset algorithm, detect the execution calculated result whether with the check value one It causes.In the present embodiment, preset algorithm is preset in web application simultaneously and is neutralized in server, and server can be according to client It is required that the check value being calculated based on the preset algorithm is issued, alternatively, server can periodically issue based on the preset algorithm Obtained check value, and after receiving check value, the predetermined function of web application can also be counted by the preset algorithm It calculates, and calculated result is compared with the check value received, judge whether the two is consistent.In the present embodiment, if server Identity is illegal, then its check value sent can be inconsistent with the web calculated result applied, so that client can be completed pair The authentication of server.
It should be understood that the size of the serial number of each step is not meant that the order of the execution order in above-described embodiment, each process Execution sequence should be determined by its function and internal logic, the implementation process without coping with the embodiment of the present invention constitutes any limit It is fixed.
The access method of local network resource corresponding to client-side described in foregoing embodiments, Fig. 5 show this hair The structural block diagram of the access mechanism for the local network resource that bright embodiment provides, the access mechanism of the local network resource can be interior Software unit, hardware cell or the unit of soft or hard combination being placed in the application system of client or client.In order to just In explanation, only the parts related to this embodiment are shown.
Referring to Fig. 5, in client, which includes:
Access and start unit 51, access to LAN simultaneously start browser.
Web application access unit 52 is stored in advance in the server by browser access and is used for resource The web of access is applied, and the web, which is applied, disables resource downloading and preservation function.
Resource access unit 53 is applied by the web in the browser and carries out resource access to the local area network.
Optionally, described device further include:
Identity authenticating unit is applied by the web and carries out authentication to the browser or the server;If institute It states authentication to pass through, then executes the resource access unit;If the authentication does not pass through, in the browser eventually Only to the access of web application.
Optionally, the identity authenticating unit is specifically used for executing one or more of operation:
By the web apply to the browser carry out preset term detection, with detect the browser whether by Malicious modification;
It is applied by the web, the media access control layer MAC Address of the machine is uploaded to the server, to pass through Whether the MAC Address that the MAC Address of the machine described in the server authentication uses when accessing the local area network with the machine is consistent;With And
The check value from the server is received, the check value is calculated by the server by preset algorithm It arrives, executes the preset algorithm, whether the calculated result for detecting the execution is consistent with the check value.
The access method of local network resource corresponding to server-side described in foregoing embodiments, Fig. 6 show this hair The structural block diagram of the access mechanism for the local network resource that bright embodiment provides, the access mechanism of the local network resource can be interior Software unit, hardware cell or the unit of soft or hard combination being placed in the application system of server or server.In order to just In explanation, only the parts related to this embodiment are shown.
Referring to Fig. 6, in server, which includes:
Storage unit 61, is stored in advance the web application for resource access, and the web is applied to resource downloading and preservation Function is disabled;
First receiving unit 62 receives the web application access request of the browser of client in the local area network;
Issuance unit 63 issues the web according to web application access request and applies, to realize in the browser In by the web apply to the local area network carry out resource access.
Optionally, described device further include:
Second receiving unit, with receiving the media access control layer MAC that the client is sent by web application Location;
Authentication unit, verify the MAC Address and the client access the address that is used when the local area network whether one It causes;
Return unit, Xiang Suoshu client return to the result of the verifying.
Alternatively, described device further include:
Check value is calculated by preset algorithm in computing unit;
The check value is sent to the client by transmission unit so that the client locally executed at it is described After preset algorithm, whether the calculated result for detecting the execution is consistent with the check value.
It is apparent to those skilled in the art that for convenience of description and succinctly, only with above-mentioned each function Can unit, module division progress for example, in practical application, can according to need and by above-mentioned function distribution by different Functional unit, module are completed, i.e., the internal structure of described device is divided into different functional unit or module, more than completing The all or part of function of description.Each functional unit in embodiment, module can integrate in one processing unit, can also To be that each unit physically exists alone, can also be integrated in one unit with two or more units, it is above-mentioned integrated Unit both can take the form of hardware realization, can also realize in the form of software functional units.In addition, each function list Member, the specific name of module are also only for convenience of distinguishing each other, the protection scope being not intended to limit this application.Above system The specific work process of middle unit, module, can refer to corresponding processes in the foregoing method embodiment, and details are not described herein.
Those of ordinary skill in the art may be aware that list described in conjunction with the examples disclosed in the embodiments of the present disclosure Member and algorithm steps can be realized with the combination of electronic hardware or computer software and electronic hardware.These functions are actually It is implemented in hardware or software, the specific application and design constraint depending on technical solution.Professional technician Each specific application can be used different methods to achieve the described function, but this realization is it is not considered that exceed The scope of the present invention.
In embodiment provided by the present invention, it should be understood that disclosed device and method can pass through others Mode is realized.For example, system embodiment described above is only schematical, for example, the division of the module or unit, Only a kind of logical function partition, there may be another division manner in actual implementation, such as multiple units or components can be with In conjunction with or be desirably integrated into another system, or some features can be ignored or not executed.Another point, it is shown or discussed Mutual coupling or direct-coupling or communication connection can be through some interfaces, the INDIRECT COUPLING of device or unit or Communication connection can be electrical property, mechanical or other forms.
The unit as illustrated by the separation member may or may not be physically separated, aobvious as unit The component shown may or may not be physical unit, it can and it is in one place, or may be distributed over multiple In network unit.It can select some or all of unit therein according to the actual needs to realize the mesh of this embodiment scheme 's.
It, can also be in addition, the functional units in various embodiments of the present invention may be integrated into one processing unit It is that each unit physically exists alone, can also be integrated in one unit with two or more units.Above-mentioned integrated list Member both can take the form of hardware realization, can also realize in the form of software functional units.
If the integrated unit is realized in the form of SFU software functional unit and sells or use as independent product When, it can store in a computer readable storage medium.Based on this understanding, the technical solution of the embodiment of the present invention Substantially all or part of the part that contributes to existing technology or the technical solution can be with software product in other words Form embody, which is stored in a storage medium, including some instructions use so that one Computer equipment (can be personal computer, server or the network equipment etc.) or processor (processor) execute this hair The all or part of the steps of bright each embodiment the method for embodiment.And storage medium above-mentioned include: USB flash disk, mobile hard disk, Read-only memory (ROM, Read-Only Memory), random access memory (RAM, Random Access Memory), magnetic The various media that can store program code such as dish or CD.
Embodiment described above is merely illustrative of the technical solution of the present invention, rather than its limitations;Although referring to aforementioned reality Applying example, invention is explained in detail, those skilled in the art should understand that: it still can be to aforementioned each Technical solution documented by embodiment is modified or equivalent replacement of some of the technical features;And these are modified Or replacement, the spirit and model of each embodiment technical solution of the embodiment of the present invention that it does not separate the essence of the corresponding technical solution It encloses.
The foregoing is merely illustrative of the preferred embodiments of the present invention, is not intended to limit the invention, all in essence of the invention Made any modifications, equivalent replacements, and improvements etc., should all be included in the protection scope of the present invention within mind and principle.

Claims (10)

1. a kind of access method of local network resource characterized by comprising
Access to LAN simultaneously starts browser;
The web application for resource access in the server, the web application pair is stored in advance by browser access Resource downloading and preservation function are disabled;
It is applied in the browser by the web and resource access is carried out to the local area network.
2. the method as described in claim 1, which is characterized in that applied by the web to the office in the browser Before domain net carries out resource access, the method also includes:
It is applied by the web and authentication is carried out to the browser or the server;
If the authentication passes through, execute it is described in the browser by the web apply to the local area network into The operation of row resource access;
If the authentication does not pass through, the access applied to the web is terminated in the browser.
3. method according to claim 2, which is characterized in that described to be applied by the web to the browser or described It includes one or more of that server, which carries out authentication:
The detection that preset term is carried out to the browser is applied, by the web whether to detect the browser by malice Modification;
It is applied by the web, the media access control layer MAC Address of the machine is uploaded to the server, by described Whether the MAC Address that the MAC Address of the machine described in server authentication uses when accessing the local area network with the machine is consistent;And
The check value from the server is received, the check value is calculated by preset algorithm by the server, is held Whether the row preset algorithm, the calculated result for detecting the execution are consistent with the check value.
4. a kind of access method of local network resource characterized by comprising
The web application for resource access is stored in advance, the web, which is applied, disables resource downloading and preservation function;
Receive the web application access request of the browser of client in the local area network;
The web application is issued according to web application access request, is answered in the browser by the web with realizing Resource access is carried out with to the local area network.
5. method as claimed in claim 4, which is characterized in that the method also includes:
Receive the media access control layer MAC Address that the client is sent by web application;
Whether consistent verify the address used when the MAC Address accesses the local area network with the client;
The result of the verifying is returned to the client;
Alternatively, the method also includes:
Check value is calculated by preset algorithm;
The check value is sent to the client, so that the client is after it locally executes the preset algorithm, Whether the calculated result for detecting the execution is consistent with the check value.
6. a kind of access mechanism of local network resource characterized by comprising
Access and start unit, for access to LAN and start browser;
Web application access unit, for by the browser access be stored in advance in the server for resource access Web application, the web, which is applied, disables resource downloading and preservation function;
Resource access unit carries out resource access to the local area network for applying in the browser by the web.
7. device as claimed in claim 6, which is characterized in that described device further include:
Identity authenticating unit carries out authentication to the browser or the server for applying by the web;If institute It states authentication to pass through, then executes the resource access unit;If the authentication does not pass through, in the browser eventually Only to the access of web application.
8. device as claimed in claim 7, which is characterized in that the identity authenticating unit be specifically used for executing it is following a kind of or A variety of operations:
The detection that preset term is carried out to the browser is applied, by the web whether to detect the browser by malice Modification;
It is applied by the web, the media access control layer MAC Address of the machine is uploaded to the server, by described Whether the MAC Address that the MAC Address of the machine described in server authentication uses when accessing the local area network with the machine is consistent;And
The check value from the server is received, the check value is calculated by preset algorithm by the server, is held Whether the row preset algorithm, the calculated result for detecting the execution are consistent with the check value.
9. a kind of access mechanism of local network resource characterized by comprising
Storage unit, for the web application for resource access to be stored in advance, the web is applied to resource downloading and is saved function Disabling is can be carried out;
First receiving unit, the web application access for receiving the browser of client in the local area network are requested;
Issuance unit is applied for issuing the web according to web application access request, to realize in the browser It is applied by the web and resource access is carried out to the local area network.
10. device as claimed in claim 9, which is characterized in that described device further include:
Second receiving unit passes through the web using the media access control layer MAC sent for receiving the client Location;
Authentication unit, for verify the MAC Address and address that when client accesses the local area network uses whether one It causes;
Return unit, for returning to the result of the verifying to the client;
Alternatively, described device further include:
Computing unit, for check value to be calculated by preset algorithm;
Transmission unit, for the check value to be sent to the client so that the client locally executed at it is described After preset algorithm, whether the calculated result for detecting the execution is consistent with the check value.
CN201511025244.6A 2015-12-29 2015-12-29 The access method and device of local network resource Active CN105429807B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201511025244.6A CN105429807B (en) 2015-12-29 2015-12-29 The access method and device of local network resource

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201511025244.6A CN105429807B (en) 2015-12-29 2015-12-29 The access method and device of local network resource

Publications (2)

Publication Number Publication Date
CN105429807A CN105429807A (en) 2016-03-23
CN105429807B true CN105429807B (en) 2019-11-29

Family

ID=55507758

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201511025244.6A Active CN105429807B (en) 2015-12-29 2015-12-29 The access method and device of local network resource

Country Status (1)

Country Link
CN (1) CN105429807B (en)

Families Citing this family (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN109889605A (en) * 2019-03-20 2019-06-14 中国空气动力研究与发展中心高速空气动力研究所 A kind of project application method for pushing and device
CN111222125A (en) * 2019-12-17 2020-06-02 中国电力科学研究院有限公司 Client and server safety protection system of enterprise browser

Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101350814A (en) * 2008-08-26 2009-01-21 成都卫士通信息产业股份有限公司 Safety remote access technology and gateway thereof
CN101741901A (en) * 2009-12-21 2010-06-16 青岛海信宽带多媒体技术有限公司 Method and device for realizing remote access to UPnP/DLNA device
CN102801745A (en) * 2011-05-23 2012-11-28 深圳市兴天下科技有限公司 Method and system for accessing local area network WEB site by using wide area network browser
CN102957699A (en) * 2012-10-26 2013-03-06 北京奇虎科技有限公司 Access control method and system for enterprise Intranet
CN102968437A (en) * 2011-09-27 2013-03-13 微软公司 An external service application discovery method
EP2602996A2 (en) * 2010-01-13 2013-06-12 Qualcomm Incorporated Dynamic generation, delivery, and execution of interactive applications over a mobile broadcast network
CN104618400A (en) * 2015-03-09 2015-05-13 深圳市茁壮网络股份有限公司 Local area network access method and device

Patent Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101350814A (en) * 2008-08-26 2009-01-21 成都卫士通信息产业股份有限公司 Safety remote access technology and gateway thereof
CN101741901A (en) * 2009-12-21 2010-06-16 青岛海信宽带多媒体技术有限公司 Method and device for realizing remote access to UPnP/DLNA device
EP2602996A2 (en) * 2010-01-13 2013-06-12 Qualcomm Incorporated Dynamic generation, delivery, and execution of interactive applications over a mobile broadcast network
CN102801745A (en) * 2011-05-23 2012-11-28 深圳市兴天下科技有限公司 Method and system for accessing local area network WEB site by using wide area network browser
CN102968437A (en) * 2011-09-27 2013-03-13 微软公司 An external service application discovery method
CN102957699A (en) * 2012-10-26 2013-03-06 北京奇虎科技有限公司 Access control method and system for enterprise Intranet
CN104618400A (en) * 2015-03-09 2015-05-13 深圳市茁壮网络股份有限公司 Local area network access method and device

Also Published As

Publication number Publication date
CN105429807A (en) 2016-03-23

Similar Documents

Publication Publication Date Title
US11962616B2 (en) Protection against rerouting a communication channel of a telecommunication device having an NFC circuit and a secure data circuit
US20190253417A1 (en) Hardware device and authenticating method thereof
CN104199654B (en) The call method and device of open platform
CN107645482A (en) A kind of risk control method and device for business operation
CN111209558B (en) Internet of things equipment identity authentication method and system based on block chain
CN110266642A (en) Identity identifying method and server, electronic equipment
CN104199657B (en) The call method and device of open platform
CN110505198A (en) A kind of checking request method, apparatus, computer equipment and storage medium
CN109960903A (en) A kind of method, apparatus, electronic equipment and storage medium that application is reinforced
WO2016118621A1 (en) Methods, apparatus, and systems for resource access permission management
US10958670B2 (en) Processing system for providing console access to a cyber range virtual environment
CN102333072A (en) Network banking trusted transaction system and method based on intelligent terminal
CN105635168A (en) Off-line transaction device and security key using method thereof
CN105429807B (en) The access method and device of local network resource
US10924481B2 (en) Processing system for providing console access to a cyber range virtual environment
US20150106871A1 (en) System and method for controlling access to security engine of mobile terminal
CN113901429A (en) Access method and device of multi-tenant system
CN105472617A (en) Terminal access security certification method
CN101483522A (en) Method, system and device for controlling trustable network access
CN101807237A (en) Signature method and device
CN110430213A (en) Service request processing method, apparatus and system
CN111131273A (en) Internet access control system for network engineering
CN109981611A (en) A kind of safety defense method and device of multi-platform account
CN109347821A (en) Method, terminal and the computer readable storage medium of client access server
KR102201218B1 (en) Access control system and method to security engine of mobile terminal

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant