CN101262353A - Communication method, device and system for filtering network address - Google Patents

Communication method, device and system for filtering network address Download PDF

Info

Publication number
CN101262353A
CN101262353A CNA2008100944563A CN200810094456A CN101262353A CN 101262353 A CN101262353 A CN 101262353A CN A2008100944563 A CNA2008100944563 A CN A2008100944563A CN 200810094456 A CN200810094456 A CN 200810094456A CN 101262353 A CN101262353 A CN 101262353A
Authority
CN
China
Prior art keywords
filtering
url
code number
sorting code
url database
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CNA2008100944563A
Other languages
Chinese (zh)
Inventor
孙松儿
文晋阳
杨银柱
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Hangzhou H3C Technologies Co Ltd
Original Assignee
Hangzhou H3C Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Hangzhou H3C Technologies Co Ltd filed Critical Hangzhou H3C Technologies Co Ltd
Priority to CNA2008100944563A priority Critical patent/CN101262353A/en
Publication of CN101262353A publication Critical patent/CN101262353A/en
Pending legal-status Critical Current

Links

Images

Abstract

The invention discloses a communication method, a device and a system for a filtering website, the communication system for a filtering website comprises a URL database server and a filtering gateway. The method provided by the invention comprises the steps that: the filtering gateway sends a UPD request message containing URL sites to the URL database server; the URL database server searches for a URL database, so as to obtain web page information corresponding to the URL sites and searches for a preset correspondence table of a code message, so as to obtain sorting code number corresponding to the web page information; the URL database server replies a UPD response message including the sorting code number to the filtering gateway. The communication method, the device and the system for a filtering website of the invention, by taking advantages of simple UDP request messages and only carrying sorting code number in UDP response messages but not carrying with large amount of web page information, reduces signaling expenses and simplifies communication process and promotes massage transmitting speed in networks.

Description

The communication means of filtering network address, Apparatus and system
Technical field
The present invention relates to the network security technology field, relate in particular to a kind of communication means, Apparatus and system of filtering network address.
Background technology
(Uniform Resource Locator is to be used for intactly describing a kind of identification method that webpage and other resource addresses are gone up in internet (Internet) URL) to URL(uniform resource locator).Each webpage on the Internet all has a unique name identification, is referred to as the URL address usually, and this address can be a local disk, also can be a certain computer on the local area network (LAN), more is the website on the Internet.Briefly, URL is exactly the Web address, is commonly called as " network address ".
Along with developing rapidly of Internet, the quantity of website is on the increase, and comprising a lot of pornographics, recreation and the high illegal website of risk, enterprise increases work efficiency for fear of legal risk, adopts the url filtering technology that the illegal website is filtered.Generally, url filtering is meant that filtering gateway by searching url database, shields the illegal website, and url database is meant storage Web page classifying database of information.
A kind of mode that url database is set is, url database is arranged in the filtering gateway, when the user imports the webpage that will login, at first in the url filtering database, search this URL address corresponding class, the filtering rule that presets according to filtering gateway determines whether to allow this webpage of user capture then.This mode that the url filtering database is placed on filtering gateway is higher to the performance requirement of filtering gateway, need take a large amount of hard disk of gateway and memory source, generally speaking, the url filtering database has hundreds of million, and internal memory that filtering gateway is limited and hard disk resource are difficult to satisfy its requirement.
The mode that another kind is provided with url database is, url database is positioned on the global central server, so-called " global central server " is global data center, filtering gateway is by Internet remote access ULR filtered data base, in addition, can also be between global central server and filtering gateway the setting area server, region server receives the url database that global central server issues by Internet, it is a in this locality also to be about to the url database copy, offer the filtering gateway of close together then, communication efficiency can be provided to a certain extent.Referring to Fig. 1, be the communication means schematic diagram of filtering network address, wherein, preserve url database on the global central server 101.Filtering gateway 201 is directly searched url database by Internet from central server 101; And filtering gateway 202 is searched the ULR database by region server 301, and wherein, region server 301 downloads to this locality by Internet with url database, for filtering gateway 202 visits.Hereinafter, global central server and region server are referred to as " url database server ".
In the communication plan of above-mentioned filtering network address, filtering gateway all is to adopt TCP or http protocol message visit url database server, and, the url database server is in the message that filtering gateway returns, carry the details of describing URL address corresponding class, this has just had a strong impact on access speed, reason is, TCP or HTTP are three layer protocols, are based on the affirmation mechanism of shaking hands, and response speed is slow, in addition, in the message that returns to filtering gateway, carry a large amount of classification descriptors, increased signaling consumption, further influenced communication speed.
Summary of the invention
In view of this, the invention provides a kind of communication means, Apparatus and system of filtering network address, to solve the existing slow problem of scheme communication speed.
For this reason, the embodiment of the invention adopts following technical scheme:
A kind of communication means of filtering network address comprises url database server and filtering gateway in the communication system of filtering network address, comprising: described filtering gateway sends the UDP request message that comprises the URL address to described url database server; Described url database whois lookup url database obtains the info web of described URL address correspondence, and searches the coded message correspondence table that presets, and obtains the sorting code number of info web correspondence; Described url database server is replied the UDP response message that comprises described sorting code number to described filtering gateway.
Said method also comprises: described filtering gateway is searched the coded message correspondence table that presets, and obtains the info web of described sorting code number correspondence; Described filtering gateway is searched the filtering rule that presets, and obtains the filtering policy of described info web correspondence, according to described filtering policy, allows or the described webpage of disable access; When the described network address of disable access, show described info web to the user.
Said method also comprises: described filtering gateway is searched the filtering rule that presets, and obtains the filtering policy of described sorting code number correspondence, according to described filtering policy, allows or the described webpage of disable access.
Described UDP response message also comprises flag bit; Parse flag bit indication url database in the described UDP response message when searching successfully at described filtering gateway, just further resolve described UDP response message, obtain the sorting code number of described URL address correspondence.
Said method also comprises: regularly send out probe messages between described url database server and the described filtering gateway mutually.
Filtering gateway in a kind of filtering network address communication system, comprise addressed location, be used to receive the network address connection request that comprises the URL address, also comprise: request unit is used for sending the UDP request message that comprises described URL address to the url database server of described system; The response receiving element is used to receive the UDP response message that described url database server returns, and described UDP response message comprises the sorting code number of described URL address correspondence.
Above-mentioned filtering gateway also comprises: filter rule list, and this table stores the corresponding relation of sorting code number and filtering policy; Search the unit, be used for described filter rule list is mated in the sorting code number that described response receiving element obtains, obtain filtering policy; Filter control unit, be used for according to the described filtering policy that the unit is determined, permission or the described webpage of disable access searched.
Above-mentioned filtering gateway also comprises: the coded message correspondence table stores sorting code number and info web corresponding relation in this table; First searches the unit, and described coded message correspondence table is mated in the sorting code number that is used to utilize described response receiving element to obtain, and obtains the info web of described sorting code number correspondence; Filter rule list, this table stores the corresponding relation of info web and filtering policy; Second searches the unit, is used for described first info web of searching the unit acquisition is mated described filter rule list, obtains filtering policy; Filter control unit, be used for searching the filtering policy that the unit is determined according to described second, allow or the described webpage of disable access, and show described info web.
Device in a kind of filtering network address communication system, described system comprises url database server and filtering gateway, this device is positioned at described url database server side, and described device comprises: the request receiving element is used to receive the UDP request message that comprises the URL address that described filtering gateway sends; The database lookup unit is used to search url database, obtains the info web of described URL address correspondence; The coded message correspondence table stores info web and sorting code number corresponding relation in this table; Correspondence table is searched the unit, is used to search described coded message correspondence table, obtains the sorting code number of the info web correspondence that described database lookup unit finds; Response unit is used for sending described UDP response message to described filtering gateway, and described UDP response message comprises described correspondence table and searches the sorting code number that the unit finds.
Device in a kind of filtering network address communication system, described system comprises url database server and filtering gateway, this device is positioned at described url database server side, and described device comprises: the request receiving element is used to receive the UDP request message that comprises the URL address that described filtering gateway sends; The database lookup unit is used to search url database, by the corresponding relation of URL address and sorting code number in the url database, obtains the sorting code number of described URL address correspondence; Response unit is used for sending described UDP response message to described filtering gateway, and described UDP response message comprises the sorting code number that described database lookup unit finds.
A kind of filtering network address communication system, comprise url database server and filtering gateway, described filtering gateway, be used for sending the UDP request message that comprises described URL address to described url database server, and receiving the UDP response message that described url database server returns, described UDP response message comprises the sorting code number of described URL address correspondence; Described url database server, be used for utilizing the URL address search url database server of described UDP request message, obtain info web, and the coded message correspondence table of utilizing info web to search to preset, obtain sorting code number, and return the UDP response message that comprises described sorting code number to described filtering gateway.
A kind of communication means of filtering network address comprises url database server and filtering gateway in the communication system of filtering network address, comprising: described filtering gateway sends the request message that comprises the URL address to described url database server; Described url database whois lookup url database, obtain the sorting code number of described URL address correspondence, perhaps, described url database whois lookup url database, obtain the info web of described URL address correspondence, and search the coded message correspondence table that presets, obtain the sorting code number of info web correspondence; Described url database server is replied the response message that comprises described sorting code number to described filtering gateway.
In the present invention, improvement by two aspects promotes the communication speed between url database server and the filtering gateway, first improvement is, utilize simple UDP message, reduced signaling consumption, simplified communication process, second improvement is, by only in the UDP response message, carrying sorting code number, rather than carry a large amount of info webs, thereby also promoted message transmissions speed in the network.
Description of drawings
Fig. 1 is the communication means schematic diagram of prior art filtering network address;
Fig. 2 is the communication means flow chart of filtering network address of the present invention;
Fig. 3 is the inventive method embodiment one request message structural representation;
Fig. 4 is the inventive method embodiment one response message structural representation;
Fig. 5 is the inventive method embodiment one coded message correspondence table schematic diagram;
Fig. 6 is the inventive method embodiment one flow chart;
Fig. 7 is the inventive method embodiment one schematic diagram;
Fig. 8 is the inventive method embodiment two schematic diagrames;
Fig. 9 is a filtering gateway structural representation of the present invention;
Figure 10 is a url database server architecture schematic diagram of the present invention.
Embodiment
Adopt protocol massages such as TCP different with existing scheme, the present invention adopts simple user datagram protocol (User Data Protocol between url database server and filtering gateway, UDP) message, and, the url database server only carries the sorting code number of URL correspondence in the UDP response message that returns to filtering gateway, do not carry a large amount of info webs, reduce signaling consumption, accelerated communication speed.
Referring to Fig. 2, the communication means flow chart for filtering network address provided by the invention comprises:
Step 201: filtering gateway sends the UDP request message that comprises the URL address to the url database server;
Step 202:URL database server is searched url database, obtains the info web of described URL address correspondence;
Step 203:URL database server is searched the coded message correspondence table that presets, and obtains the sorting code number of info web correspondence;
Step 204:URL database server is replied the UDP response message that comprises described sorting code number to described filtering gateway.
UDP is a kind of connectionless transport layer protocol in the International Organization for Standardization reference model, provides towards the simple information of affairs and transmits service.Udp protocol is the interface of IP agreement and upper-layer protocol basically.Udp protocol is suitable for port and differentiates a plurality of application programs that operate on same the equipment.Compare with TCP, UDP is fairly simple, and the UDP head comprises byte seldom, lacks than the TCP load consumption.
Need to prove that flow process shown in Figure 2 can realize " communication " method of filtering network address fully, but,, embodiment is described in detail below in conjunction with accompanying drawing in order to further specify the workflow of whole filtering network address system.
At first introduction method embodiment one.
Referring to Fig. 3, be UDP request message structural representation, the UDP request message comprises IP stem, UDP stem and three fields of URL address information.
Referring to Fig. 4, be UDP response message structural representation, the UDP response message comprises IP stem, UDP stem, flag bit and four fields of URL sorting code number.
Wherein, whether " flag bit " field is used to represent the successful search url database, can account for 1bit, for example, when flag bit is ' 1 ', show from the url database successful search to the information of URL address correspondence, at this moment, can further resolve " URL sorting code number " field, obtain the sorting code number of URL address correspondence; When flag bit is ' 0 ', shows and search the url database failure, at this moment, no longer need to resolve " URL sorting code number " field.
Need to prove, realize angle, can omit " flag bit " field, preferably, adopt " flag bit " field,, further reduce the processing procedure of filtering gateway so that when successful search is not to url database from scheme.
In embodiment one scheme, all store the coded message correspondence table at url database server and filtering gateway both sides, so-called " coded message correspondence table " is meant and preserves URL sorting code number and info web mapping table.
In order to alleviate signaling consumption, conserve storage can adopt the corresponding all kinds of webpages of simple code, referring to Fig. 5, be the example of coded message correspondence table, among Fig. 5, coding ' 01 ' corresponding " news " class webpage, coding ' 02 ' corresponding " recreation " class webpage, or the like.After having set up information coding correspondence table, can adopt the simplest text storage mode, the coded message correspondence table is stored in filtering gateway and the url database server.If desired the coded message correspondence table is upgraded, can be adopted the simplest manual upgrading mode, certainly, also can adopt transmitting synchronous mechanism to upgrade.
Introduce the processing procedure of url database server and filtering gateway both sides below respectively.
1, url database server
Receive the UDP request message that comprises the URL address from filtering gateway after, search url database, obtain info web, utilize info web to search the coded message correspondence table again, match the URL sorting code number, last, the UDP response message that carries the URL sorting code number is sent to filtering gateway.
2, filtering gateway
After receiving the user capture web-page requests, therefrom extract the URL address, and the UDP message that will comprise the URL address sends to the url database server, after receiving the UDP response message, therefrom parse the URL sorting code number, then, search the coded message correspondence table by sorting code number, obtain info web, the filtering rule by presetting again obtains the filtering policy of URL address correspondence, allow or forbid the user capture webpage according to filtering policy, preferably, when forbidding the user capture webpage, go back display web page information simultaneously.
Referring to Fig. 6, the inventive method embodiment one flow chart comprises:
Step 601: filtering gateway extracts the URL address from the user capture web-page requests, and sends the UDP request message that comprises the URL address to the url database server;
Step 602:URL database server is searched url database, obtains the info web of described URL address correspondence;
Step 603:URL database server is searched the coded message correspondence table, obtains the URL sorting code number of info web correspondence;
Step 604:URL database server returns the UDP response message that comprises the URL sorting code number to filtering gateway, preferably, also comprises flag bit in this UDP response message;
Step 605: filtering gateway receives also resolves the UDP response message, if comprise flag bit in the UDP response message, then whether the judgement symbol position shows that successful search arrives url database, if, execution in step 606, otherwise, execution in step 610;
Step 606: filtering gateway is further resolved URL sorting code number field, obtains the URL sorting code number;
Step 607: filtering gateway is searched the coded message correspondence table, obtains the info web of sorting code number correspondence;
Step 608: filtering gateway utilizes info web, searches the filtering rule that presets, and obtains the filtering policy of this URL address correspondence;
Step 609: filtering gateway allows or the disable access webpage according to filtering policy, preferably, when the disable access webpage, sends info web to user terminal, to be shown to the user;
Step 610: filtering gateway allows or the disable access webpage according to " not finding url database " corresponding filtering policy, for example, and the webpage that disable access does not find from url database.
In addition, both sides can send detection (Hello) message and probe response (Response) message.After either party device start, at first monitor hello packet, at preset time (for example, 10 seconds) in, if can not receive hello packet, just initiatively send out hello packet, at set intervals (for example, 2 seconds) send a hello packet, till receiving the Response message, guarantee the connection between filtering gateway and the url database server thus.
Referring to Fig. 7, be the inventive method embodiment one schematic diagram, describe workflow shown in Figure 7 below in detail.
Filtering gateway receive comprise the request of URL address user accessed web page after, create the UDP request message comprise the URL address,
In 1., the UDP request message is sent to the url database server by communication interface;
In 2., the url database server receives the UDP request message by communication interface, and utilizes the URL address search url database in the UDP request message;
In 3., utilize the info web that finds from url database, search coded message correspondence table 1, obtain the URL sorting code number;
In 4., utilize the URL sorting code number to make up the UDP response message, and send to filtering gateway by communication interface;
In 5., filtering gateway receives the UDP response message, and parses sorting code number wherein, and utilizes sorting code number to search coded message correspondence table 2, obtains info web;
In 6., utilize info web to search the rule rule list, match the filtering policy of URL address correspondence;
In 7., utilize the filtering policy of coupling, the access rights of webpage are controlled, for example, forbid or allow accessed web page.
Need to prove that coded message correspondence table 1 needs the identical corresponding relation of maintenance with coded message correspondence table 2, also needs to upgrade simultaneously, could guarantee the info web that same URL sorting code number is corresponding same like this when upgrading.As seen among the present invention, only carry less sorting code number in the response message that between filtering gateway and url database server, transmits, do not adopt the mode of carrying a large amount of info webs in the prior art by response message, can reduce the signaling consumption that transmits between url database server and the filtering gateway like this, promote communication speed.
In addition, for minimum is not changed or changed to existing url database, preferably, coded message table 1 is arranged at outside the url database, also be, url database and coded message correspondence table are independently, and from realizing angle, those skilled in the art can understand, coded message correspondence table 1 can be arranged in the url database fully, perhaps be interpreted as existing url database is improved, that is, the URL sorting code number is increased in the url database.The relation that is provided with for filter rule list in the filtering gateway and coded message correspondence table 2 also is in like manner.
Following introduction method embodiment two.
In embodiment two, need not preserve the coded message correspondence table in the filtering gateway side, utilize the URL sorting code number directly to search the filtering policy that filter rule list can obtain URL address correspondence.As seen, in embodiment two, be with the existing info web filter rule list corresponding with matching strategy, change and be the filter rule list that the URL sorting code number is corresponding with matching strategy.In like manner, also the coded message correspondence table can be set for the url database server, only be to change url database to get final product, the corresponding relation of URL address and sorting code number promptly is set in url database, only with the filtering gateway side coded message correspondence table not being set in the present embodiment two is the example explanation.
Referring to Fig. 8, for the inventive method embodiment schematic diagram, in Fig. 8,
Filtering gateway receive comprise the request of URL address user accessed web page after, create the UDP request message comprise the URL address,
In steps A, the UDP request message is sent to the url database server by communication interface;
In step B, the url database server receives the UDP request message by communication interface, and utilizes the URL address search url database in the UDP request message;
In step C, utilize the info web that finds from url database, search the coded message correspondence table, obtain the URL sorting code number;
In step D, utilize the URL sorting code number to make up the UDP response message, and send to filtering gateway by communication interface;
In step e, filtering gateway receives the UDP response message, and parses sorting code number wherein, and utilizes the URL sorting code number directly to search filter rule list, matches the filtering policy of URL address correspondence;
In step F, utilize the filtering policy of coupling, the access rights of webpage are controlled, for example, forbid or allow accessed web page.
As seen, in embodiment two, omitted among embodiment one Fig. 7 5..In like manner, if the coded message correspondence table is not set yet, then omit among Fig. 7 3. at the url database server.
As seen, in embodiment two, if the coded message correspondence table is not set, the corresponding relation of URL address and sorting code number is set in url database directly promptly in the url database server, then the flow process of the communication means of filtering network address comprises:
[1] filtering gateway sends the UDP request message that comprises the URL address to the url database server;
[2] url database whois lookup url database obtains the sorting code number of described URL address correspondence, and replys the UDP response message that comprises described sorting code number to described filtering gateway.
In above-mentioned two embodiment, be that improvement by two aspects promotes the communication speed between url database server and the filtering gateway, first improvement is, utilize simple UDP message, reduced signaling consumption, simplified communication process, second improvement is, by only in the UDP response message, carrying sorting code number, rather than carry a large amount of info webs, thereby also promoted message transmissions speed in the network.
Those skilled in the art can associate naturally, only adopt above-mentioned any improvement can overcome the technical problem of existing scheme to a certain extent.
If first improvement of single employing, then the flow process of the communication means of filtering network address comprises:
(1), filtering gateway sends the UDP request message that comprises the URL address to the url database server;
(2), url database whois lookup url database, find the info web of described URL address correspondence, and reply the UDP response message that comprises described info web to described filtering gateway.
If second improvement of single employing, then the flow process of the communication means of filtering network address comprises:
1), filtering gateway sends the request message that comprises the URL address to the url database server;
2), url database whois lookup url database, obtain the sorting code number of described URL address correspondence, perhaps, url database whois lookup url database, obtain the info web of described URL address correspondence, and search the coded message correspondence table that presets, obtain the sorting code number of info web correspondence;
3), the url database server is replied the response message that comprises described sorting code number to described filtering gateway.
At this moment, preferably, the described request message is the UDP request message, and described response message is the UDP response message.
Corresponding with said method, the present invention also provides the device in a kind of filtering network address communication system, and this device can be the functional entity that is positioned at filtering gateway, can realize by software, hardware or software and hardware combining mode.
This device comprises request unit and response receiving element, and wherein, request unit is used for sending the UDP request message that comprises the URL address to the url database server; The response receiving element is used to receive the UDP response message that described url database server returns, and described UDP response message comprises the sorting code number of described URL address correspondence.
Preferably, this device also comprises the coded message correspondence table and searches the unit that wherein: the coded message correspondence table stores sorting code number and info web corresponding relation; Search the unit, described coded message correspondence table is mated in the sorting code number that is used to utilize described response receiving element to obtain, and obtains the info web of described sorting code number correspondence.
The workflow of above-mentioned preferred embodiment is: at first, send the UDP request message that comprises the URL address to the url database server by request unit, then, receive the UDP response message of the sorting code number that comprises URL address correspondence that the url database server returns by the response receiving element, then, search the coded message correspondence table that presets by searching the unit, obtain the info web of sorting code number correspondence.
Simultaneously, the present invention also provides the filtering gateway in a kind of filtering network address communication system, referring to Fig. 9, is this filtering gateway structural representation, comprises addressed location 901, request unit 902 and response receiving element 903, wherein:
Addressed location 901 is used to receive the network address connection request that comprises the URL address;
Request unit 902 is used for sending the UDP request message that comprises described URL address to the url database server;
Response receiving element 903 is used to receive the UDP response message that described url database server returns, and described UDP response message comprises the sorting code number of described URL address correspondence.
Wherein, referring to Fig. 9, this filtering gateway first preferred embodiment also can comprise filter rule list 904, search unit 905 and filtration control unit 906, wherein,
Filter rule list 904, this table stores the corresponding relation of sorting code number and filtering policy;
Search unit 905, be used for the filter rule list 904 that presets is mated in the sorting code number that described response receiving element 903 obtains, obtain filtering policy;
Filter control unit 906, be used for according to the described filtering policy that unit 905 is determined, permission or the described webpage of disable access searched.
Perhaps, preferably, with comprise " filter rule list 904, search unit 905 and filter control unit 906 " and substitute mutually, this filtering gateway second preferred embodiment also comprises: coded message correspondence table, first is searched the unit, filter rule list, second is searched the unit and filtered control unit (not shown among Fig. 9), wherein:
The coded message correspondence table stores sorting code number and info web corresponding relation in this table;
First searches the unit, and described coded message correspondence table is mated in the sorting code number that is used to utilize described response receiving element 903 to obtain, and obtains the info web of described sorting code number correspondence;
Filter rule list, this table stores the corresponding relation of info web and filtering policy;
Second searches the unit, is used for described first info web of searching the unit acquisition is mated described filter rule list, obtains filtering policy;
Filter control unit, be used for searching the filtering policy that the unit is determined according to described second, allow or the described webpage of disable access, and show described info web.
The workflow of filtering gateway is: at first, receive the network address connection request that comprises the URL address at addressed location 901 after, send the UDP request message that comprises described URL address to the url database server by request unit 902; Then, receive the UDP response message of the sorting code number that comprises described URL address correspondence that the url database servers return, so far, finished task with the url database server communication by response receiving element 903.
In filtering gateway first preferred embodiment, continue to finish following flow process: the filter rule list 904 that presets is mated in the sorting code number that described response receiving element 903 obtains by searching unit 905, obtain filtering policy, then by filtering control unit 906 according to the described filtering policy that unit 905 is determined, permission or the described webpage of disable access searched.
In filtering gateway second preferred embodiment, continue to finish following flow process: search unit by using by first and respond the sorting code number coupling coded message correspondence table that receiving element 903 obtains, obtain the info web of described sorting code number correspondence; Then, search unit by using first by second and search the info web that the unit obtains and mate described filter rule list, obtain filtering policy; At last, search the filtering policy that the unit is determined according to second, allow or the described webpage of disable access, and show described info web by filtering control unit.
In addition, the present invention also provides the device in a kind of filtering network address communication system, and this device is positioned at described url database server side.This device can be realized by software, hardware or software and hardware combining mode.
Referring to Figure 10, be url database server architecture schematic diagram, it comprises url database 1000, asks receiving element 1001, database lookup unit 1002, coded message correspondence table 1003, correspondence table to search unit 1004 and response unit 1005, wherein,
Request receiving element 1001 is used to receive the UDP request message that comprises the URL address that described filtering gateway sends;
Database lookup unit 1002 is used to search url database 1000, obtains the info web of described URL address correspondence;
Coded message correspondence table 1003 stores info web and sorting code number corresponding relation in this table;
Correspondence table is searched unit 1004, is used to search described coded message correspondence table 1003, obtains the sorting code number of the info web correspondence that described database lookup unit finds;
Response unit 1005 is used for sending described UDP response message to described filtering gateway, and described UDP response message comprises described correspondence table and searches the sorting code number that unit 1004 finds.
In addition, can pass through in the url database server to change url database, and the coded message correspondence table is not set.The url database server architecture of this moment comprises url database, request receiving element, database lookup unit and response unit, wherein,
The request receiving element is used to receive the UDP request message that comprises the URL address that described filtering gateway sends;
The database lookup unit is used to search url database, obtains the sorting code number of described URL address correspondence;
Response unit is used for sending described UDP response message to described filtering gateway, and described UDP response message comprises the sorting code number that described database lookup unit finds.
The present invention also provides a kind of filtering network address communication system, and this system comprises url database server and filtering gateway, wherein,
Described filtering gateway, be used for sending the UDP request message that comprises described URL address to described url database server, and receiving the UDP response message that described url database server returns, described UDP response message comprises the sorting code number of described URL address correspondence;
Described url database server, be used for utilizing the URL address search url database server of described UDP request message, obtain info web, and the coded message correspondence table of utilizing info web to search to preset, obtain sorting code number, and return the UDP response message that comprises described sorting code number to described filtering gateway.
In the preferred embodiment of the present invention, improvement by two aspects promotes the communication speed between url database server and the filtering gateway, first improvement is, utilize simple UDP message, reduced signaling consumption, simplified communication process, second improvement is, by only in the UDP response message, carrying sorting code number, rather than carry a large amount of info webs, thereby also promoted message transmissions speed in the network.
The above only is a preferred implementation of the present invention; should be pointed out that for those skilled in the art, under the prerequisite that does not break away from the principle of the invention; can also make some improvements and modifications, these improvements and modifications also should be considered as protection scope of the present invention.

Claims (12)

1, a kind of communication means of filtering network address comprises uniform resource position mark URL database server and filtering gateway in the communication system of filtering network address, it is characterized in that, comprising:
Described filtering gateway sends to described url database server and comprises URL address user datagram protocol UDP request message;
Described url database whois lookup url database obtains the info web of described URL address correspondence, and searches the coded message correspondence table that presets, and obtains the sorting code number of info web correspondence;
Described url database server is replied the UDP response message that comprises described sorting code number to described filtering gateway.
2, according to the described method of claim 1, it is characterized in that, also comprise:
Described filtering gateway is searched the coded message correspondence table that presets, and obtains the info web of described sorting code number correspondence;
Described filtering gateway is searched the filtering rule that presets, and obtains the filtering policy of described info web correspondence, according to described filtering policy, allows or the described webpage of disable access;
When the described network address of disable access, show described info web to the user.
3, according to the described method of claim 1, it is characterized in that, also comprise:
Described filtering gateway is searched the filtering rule that presets, and obtains the filtering policy of described sorting code number correspondence, according to described filtering policy, allows or the described webpage of disable access.
According to claim 1,2 or 3 described methods, it is characterized in that 4, described UDP response message also comprises flag bit;
Parse flag bit indication url database in the described UDP response message when searching successfully at described filtering gateway, just further resolve described UDP response message, obtain the sorting code number of described URL address correspondence.
5, according to claim 1,2 or 3 described methods, it is characterized in that, also comprise:
Regularly send out probe messages between described url database server and the described filtering gateway mutually.
6, the filtering gateway in a kind of filtering network address communication system comprises addressed location, is used to receive the network address connection request that comprises the URL address, it is characterized in that, also comprises:
Request unit is used for sending the UDP request message that comprises described URL address to the url database server of described system;
The response receiving element is used to receive the UDP response message that described url database server returns, and described UDP response message comprises the sorting code number of described URL address correspondence.
7, according to the described filtering gateway of claim 6, it is characterized in that, also comprise:
Filter rule list, this table stores the corresponding relation of sorting code number and filtering policy;
Search the unit, be used for described filter rule list is mated in the sorting code number that described response receiving element obtains, obtain filtering policy;
Filter control unit, be used for according to the described filtering policy that the unit is determined, permission or the described webpage of disable access searched.
8, according to the described filtering gateway of claim 6, it is characterized in that, also comprise:
The coded message correspondence table stores sorting code number and info web corresponding relation in this table;
First searches the unit, and described coded message correspondence table is mated in the sorting code number that is used to utilize described response receiving element to obtain, and obtains the info web of described sorting code number correspondence;
Filter rule list, this table stores the corresponding relation of info web and filtering policy;
Second searches the unit, is used for described first info web of searching the unit acquisition is mated described filter rule list, obtains filtering policy;
Filter control unit, be used for searching the filtering policy that the unit is determined according to described second, allow or the described webpage of disable access, and show described info web.
9, the device in a kind of filtering network address communication system, described system comprises url database server and filtering gateway, and this device is positioned at described url database server side, it is characterized in that, and described device comprises:
The request receiving element is used to receive the UDP request message that comprises the URL address that described filtering gateway sends;
The database lookup unit is used to search url database, obtains the info web of described URL address correspondence;
The coded message correspondence table stores info web and sorting code number corresponding relation in this table;
Correspondence table is searched the unit, is used to search described coded message correspondence table, obtains the sorting code number of the info web correspondence that described database lookup unit finds;
Response unit is used for sending described UDP response message to described filtering gateway, and described UDP response message comprises described correspondence table and searches the sorting code number that the unit finds.
10, the device in a kind of filtering network address communication system, described system comprises url database server and filtering gateway, and this device is positioned at described url database server side, it is characterized in that, and described device comprises:
The request receiving element is used to receive the UDP request message that comprises the URL address that described filtering gateway sends;
The database lookup unit is used to search url database, by the corresponding relation of URL address and sorting code number in the url database, obtains the sorting code number of described URL address correspondence;
Response unit is used for sending described UDP response message to described filtering gateway, and described UDP response message comprises the sorting code number that described database lookup unit finds.
11, a kind of filtering network address communication system comprises url database server and filtering gateway, it is characterized in that,
Described filtering gateway, be used for sending the UDP request message that comprises described URL address to described url database server, and receiving the UDP response message that described url database server returns, described UDP response message comprises the sorting code number of described URL address correspondence;
Described url database server, be used for utilizing the URL address search url database server of described UDP request message, obtain info web, and the coded message correspondence table of utilizing info web to search to preset, obtain sorting code number, and return the UDP response message that comprises described sorting code number to described filtering gateway.
12, a kind of communication means of filtering network address comprises url database server and filtering gateway in the communication system of filtering network address, it is characterized in that, comprising:
Described filtering gateway sends the request message that comprises the URL address to described url database server;
Described url database whois lookup url database, obtain the sorting code number of described URL address correspondence, perhaps, described url database whois lookup url database, obtain the info web of described URL address correspondence, and search the coded message correspondence table that presets, obtain the sorting code number of info web correspondence;
Described url database server is replied the response message that comprises described sorting code number to described filtering gateway.
CNA2008100944563A 2008-04-30 2008-04-30 Communication method, device and system for filtering network address Pending CN101262353A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CNA2008100944563A CN101262353A (en) 2008-04-30 2008-04-30 Communication method, device and system for filtering network address

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CNA2008100944563A CN101262353A (en) 2008-04-30 2008-04-30 Communication method, device and system for filtering network address

Publications (1)

Publication Number Publication Date
CN101262353A true CN101262353A (en) 2008-09-10

Family

ID=39962579

Family Applications (1)

Application Number Title Priority Date Filing Date
CNA2008100944563A Pending CN101262353A (en) 2008-04-30 2008-04-30 Communication method, device and system for filtering network address

Country Status (1)

Country Link
CN (1) CN101262353A (en)

Cited By (10)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2010051766A1 (en) * 2008-11-07 2010-05-14 华为技术有限公司 Method and device for acquiring target resource information
CN101883180A (en) * 2010-05-11 2010-11-10 中兴通讯股份有限公司 Method and system for shielding information in wireless network accessed by mobile terminal and mobile terminal
CN102073722A (en) * 2011-01-11 2011-05-25 吕晓东 URL (Uniform Resource Locator) cloud publishing system
CN102480437A (en) * 2010-11-23 2012-05-30 中兴通讯股份有限公司 Method and device for controlling internet surfing data of home gateway
CN103532917A (en) * 2012-07-06 2014-01-22 天讯天网(福建)网络科技有限公司 Website-filtering method based on mobile Internet and cloud computing
CN105049446A (en) * 2015-08-20 2015-11-11 中国联合网络通信集团有限公司 Method and system for filtering URL (Uniform Resource Locator)
CN105591997A (en) * 2014-10-20 2016-05-18 杭州迪普科技有限公司 URL (uniform resource locator) classification and filtering method and device
CN106649621A (en) * 2016-12-01 2017-05-10 天脉聚源(北京)传媒科技有限公司 Method and device of displaying comment information
US9870256B2 (en) 2011-07-29 2018-01-16 International Business Machines Corporation Hardware acceleration wait time awareness in central processing units with multi-thread architectures
CN110601993A (en) * 2019-09-24 2019-12-20 锐捷网络股份有限公司 Multi-outlet load balancing method and device

Cited By (13)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2010051766A1 (en) * 2008-11-07 2010-05-14 华为技术有限公司 Method and device for acquiring target resource information
CN101883180A (en) * 2010-05-11 2010-11-10 中兴通讯股份有限公司 Method and system for shielding information in wireless network accessed by mobile terminal and mobile terminal
CN102480437A (en) * 2010-11-23 2012-05-30 中兴通讯股份有限公司 Method and device for controlling internet surfing data of home gateway
CN102073722A (en) * 2011-01-11 2011-05-25 吕晓东 URL (Uniform Resource Locator) cloud publishing system
US9870255B2 (en) 2011-07-29 2018-01-16 International Business Machines Corporation Hardware acceleration wait time awareness in central processing units with multi-thread architectures
US9870256B2 (en) 2011-07-29 2018-01-16 International Business Machines Corporation Hardware acceleration wait time awareness in central processing units with multi-thread architectures
CN103532917A (en) * 2012-07-06 2014-01-22 天讯天网(福建)网络科技有限公司 Website-filtering method based on mobile Internet and cloud computing
CN105591997A (en) * 2014-10-20 2016-05-18 杭州迪普科技有限公司 URL (uniform resource locator) classification and filtering method and device
CN105591997B (en) * 2014-10-20 2019-04-09 杭州迪普科技股份有限公司 A kind of URL classification filter method and device
CN105049446A (en) * 2015-08-20 2015-11-11 中国联合网络通信集团有限公司 Method and system for filtering URL (Uniform Resource Locator)
CN106649621A (en) * 2016-12-01 2017-05-10 天脉聚源(北京)传媒科技有限公司 Method and device of displaying comment information
CN106649621B (en) * 2016-12-01 2019-11-08 天脉聚源(北京)传媒科技有限公司 A kind of method and device showing comment information
CN110601993A (en) * 2019-09-24 2019-12-20 锐捷网络股份有限公司 Multi-outlet load balancing method and device

Similar Documents

Publication Publication Date Title
CN101262353A (en) Communication method, device and system for filtering network address
CN103269389B (en) Check and repair the method and apparatus that malice DNS arranges
CN103825895B (en) A kind of information processing method and electronic equipment
US8935419B2 (en) Filtering device for detecting HTTP request and disconnecting TCP connection
US20040143579A1 (en) Address query response method, program, and apparatus, and address notification method, program, and apparatus
CN102685074B (en) Anti-phishing network communication system and method
CN102833262B (en) Phishing website collection and identification method and system based on whois information
CN102752300B (en) Dynamic antitheft link system and dynamic antitheft link method
CN102695167B (en) Mobile subscriber identity management method and apparatus thereof
WO2001033798A3 (en) Electronic messaging system method and apparatus
CN103369531B (en) A kind of method and device that control of authority is carried out based on end message
CN110430188B (en) Rapid URL filtering method and device
CN101183946B (en) Method and system of obtaining resource listing of download file
US20150350373A1 (en) Method for Router to Process Web Page Data, and Router
CN109802919B (en) Web page access intercepting method and device
CN108063833B (en) HTTP DNS analysis message processing method and device
CN109729183A (en) Request processing method, device, equipment and storage medium
RU2006138963A (en) NETWORK SYSTEM, PROXY SERVER, SESSION MANAGEMENT METHOD AND PROGRAM
US20160006828A1 (en) Embedded network proxy system, terminal device and proxy method
CN103532833A (en) Business system access method, terminal and agency service system
CN102263837B (en) A kind of domain name system DNS analysis method and device
CN104680378A (en) Article identifying identification of anti-counterfeiting tracing system and querying device
CN101453460A (en) Access control method, communication system and related equipment
KR20130072907A (en) Method and system for shortening url
CN105162898A (en) Method and device for realizing intelligent resolution through DNS (Domain Name Sever), DHCP (Dynamic Host Configuration Protocol) and IPAM (Internet Protocol Address Management)

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C12 Rejection of a patent application after its publication
RJ01 Rejection of invention patent application after publication

Application publication date: 20080910