CN101729352B - Line connecting identification system and method of network user - Google Patents

Line connecting identification system and method of network user Download PDF

Info

Publication number
CN101729352B
CN101729352B CN2008101712366A CN200810171236A CN101729352B CN 101729352 B CN101729352 B CN 101729352B CN 2008101712366 A CN2008101712366 A CN 2008101712366A CN 200810171236 A CN200810171236 A CN 200810171236A CN 101729352 B CN101729352 B CN 101729352B
Authority
CN
China
Prior art keywords
client terminal
terminal device
network user
route
characteristic
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Expired - Fee Related
Application number
CN2008101712366A
Other languages
Chinese (zh)
Other versions
CN101729352A (en
Inventor
徐明山
许渊珽
张清桂
游峯鹏
吴怡芳
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Chunghwa Telecom Co Ltd
Original Assignee
Chunghwa Telecom Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Chunghwa Telecom Co Ltd filed Critical Chunghwa Telecom Co Ltd
Priority to CN2008101712366A priority Critical patent/CN101729352B/en
Publication of CN101729352A publication Critical patent/CN101729352A/en
Application granted granted Critical
Publication of CN101729352B publication Critical patent/CN101729352B/en
Expired - Fee Related legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Abstract

The invention discloses line connecting identification system and method of a network user. In the invention, an Internet service provider (ISP) provides different service guide methods by utilizing a network service system and taking TCP/IP characteristics as a basis. Firstly, a client end device is connected with a routing device; and next, the routing device leads the client end device into a specific routing path according to a set file of the client end device. Hereby, the disadvantage that: for all the users, the routing device provided by the Internet service provider can transmit data by only IP (Internet Protocol) according to a routing table (Routing Table) but can not distinguish the characteristics of a data packet to carry out path guide in the prior art can be solved. The invention also fulfills the function of carrying out elastic combination aiming to the path of the transmission data packet of the specific network user.

Description

The network user's line connecting identification system and method
Technical field
The present invention relates to a kind of network user's line connecting identification system and method; More know clearly it; Be a kind of in route device; Through of the service of cellular logic interface, can this network user's packet data be imported the System and method for of specific routed path by different virtual route devices to the network user of difference service with the difference network user.
Background technology
Because development of internet technology, make the speeding up of network system construction.Under the situation that network is more and more popularized, the user carries out each item mankind's activity trend that has been inevitable through network, for example uses the network gather data, browses knowledge, buys commodity or make friends or the like.
And user's desire connects the internet, and (InternetService Provider ISP) carries out line generally must to pass through the ISP.The ISP is exactly for the user provides company or the mechanism that imports the internet and the network information service, and the machine room connecting line equipment is set up in these company's infusion of financial resourcess, and rents a large amount of circuits and frequency range, gives general user and collection of charges again.Usually the user can be through wired or wireless network connectivity mode, could link to each other with the internet via ISP's route device.
Yet in the face of the more and more polynary change of network behavior, many unusual network connectivity behaviors route device in the non-internet service provider network can be handled, and must assist through special service system.
See also Fig. 1, be the Organization Chart of the IP-based network data packet transmission system of prior art.In the prior art; A client terminal device 10a, B client terminal device 10b and C client terminal device 10c all earlier are linked to service provision device 12 through route device 11; After discerning and special services is provided by 12 couples of users of service provision device, be linked to internet 13 again.The packet forwarding mechanism that is the basis with destination IP; Can't make route guidance to the differentiation of packet characteristic; And because all client terminal devices all must be through service provision device 12; And service provision device 12 needs to judge should provide to client terminal device for which kind of service, therefore causes 12 loads of service provision device excessive easily.
In sum, how to be provided at the user who is directed against log on or service between route device and service system and to carry out line identification and import processing,, become the problem that needs to be resolved hurrily at present then so that specific user's packet data is shunted and managed.
Summary of the invention
For solving the disappearance of aforementioned prior art, the object of the present invention is to provide a kind of network user's line connecting identification system and method, in order to identification line user identity and the route that meets this user network line service orientation is provided.
For reaching aforementioned purpose and other purpose, the present invention provides a kind of network user's line connecting identification system and method.This network user's line connecting identification system comprises: client terminal device; Route device is in order to provide this client terminal device line routed path; And the service provision device, in order to provide special services to this client terminal device, wherein, this route device is according to enactment document that should client terminal device is imported this service provision device with this client device network line.
In a preferred embodiment, the network user's of the present invention line connecting identification system also comprises and supplies the dress server, in order to will enactment document that should client terminal device being offered this route device.
In another preferred embodiment, the service that this service provision device provides can be gas defence, wipes out drugs, stops the malicious data bag, stops malicious link and/or home page filter.
The network user's of the present invention line recognition methods may further comprise the steps: (1) makes client terminal device link route device; And (2) make this route device according to enactment document that should client terminal device is imported specific routed path with this client device network line.
In a preferred embodiment, step (1) also comprises: (1-1) order supplies the dress server according to this enactment document this route device to be set; And (1-2) make this client terminal device link this route device.
Than existing technology, the enactment document that network user's line connecting identification system of the present invention and method utilize network user when application supplies the dress service, to be set up is discerned the particular network user.In case this particular network user carries out network connectivity, access router and promptly can import suitable routed path or service provision device according to the content of enactment document with user's data bag data, make things convenient for the ISP end to carry out the packet shunting and manage thus.
Description of drawings
Fig. 1 is the Organization Chart of the IP-based network data packet transmission system of prior art;
Fig. 2 is the Organization Chart of the network user's of the present invention line connecting identification system;
Fig. 3 is the Organization Chart of the network user's of the present invention line connecting identification system specific embodiment;
Fig. 4 is the Organization Chart of another specific embodiment of line connecting identification system of the network user of the present invention;
Fig. 5 is the flow chart of the network user's of the present invention line recognition methods;
Fig. 6 is the flow chart of the network user's of the present invention line recognition methods specific embodiment.
The primary clustering symbol description
10a A client terminal device
10b B client terminal device
10c C client terminal device
11 route devices
12 service provision devices
13 internets
20 client terminal devices
21 route devices
22 service provision devices
23 net territories
30 client terminal devices
31 route devices
32 supply the dress server
33 service provision devices
34 internets
40a services client end device
40b common customer end device
41 access router
410 A virtual routers
411 B virtual routers
42 supply the dress server
43a, 43b network connectivity equipment
44 service provision devices
45 internets
S50~S51 step
S60~S63 step
Embodiment
Below through particular specific embodiment execution mode of the present invention is described, those skilled in the art can understand other advantage of the present invention and effect easily by the content that this specification disclosed.The present invention also can implement or use through other different specific embodiment.
See also Fig. 2, it is the Organization Chart of the network user's of the present invention line connecting identification system.As shown in the figure, in the network user's of the present invention line connecting identification system, comprise client terminal device 20, route device 21, service provision device 22 and net territory 23.
But client terminal device 20 is access data the go forward side by side electronic equipment that line data handles, for example desktop computer, notebook computer, digital television apparatus, personal digital assistant and/or mobile phone.
Route device 21 is in order to provide client terminal device 21 line routed paths.Route device 21 is a kind of equipment that information is transmitted between network each other, is used for the determination data bang path.Because the data on the network are divided into sectional packet (packet), and these packets where point to be to be decided by route device 21.Route device 21 can be according to the destination of data, and the direction of indicating correct is calculated the most convenient efficient path of assessment and transmitted data, and packet is done optimized transmission, finds out optimal path.Therefore, when client terminal device 20 was uploaded or received packet, route device 21 can be with specific router or the server of this packet guiding.
Service provision device 22 is in order to provide this client terminal device 20 various service content.Wherein, the service that provides of this service provision device 22 can be gas defence, wipes out drugs, stops the malicious data bag, stops malicious link and/or home page filter.
The present invention at first links route device 21 by client terminal device 20 in the specific implementation, and then, the enactment document according to this client terminal device 20 in route device 21 produces corresponding routed path.When client terminal device 20 was uploaded packet data, route device 21 can pass through tactic route (Policy-Based Routing; PBR) technology imports specific routed path with this packet data, carries out service content to be sent in the preset service provision device 22, and is last, transfers to net territory 23 through route device 21 again.The content of this enactment document then is to write according to the PBR technology, and this enactment document is to set up when carrying out network Shen dress or service request according to client.What this must propose explanation be, route device 21 and enactment document do not limit and adopt the PBR technology, but every identify customer end connection request and will ask the importing particular way by the communication protocol technology all can use.
In a preferred embodiment, this client terminal device is through Wide Area Network system, virtual private net system, LAN system and/or this route device of wireless link.
In another preferred embodiment, the network user's of the present invention line connecting identification system also comprises supplying the dress server, in order to will enactment document that should client terminal device being offered this route device.
See also Fig. 3, it is the Organization Chart of the network user's of the present invention line connecting identification system specific embodiment.Comprise client terminal device 30, route device 31 in the present embodiment, supply dress server 32, service provision device 33 and internet 34, function mode specifies as follows.
Client terminal device 30 must be linked to route device 31 could transfer to internet 34 with packet data.When client terminal device 30 when the ISP applies for supplying dress or network service; This ISP can set up enactment document individually; Set for route device 31; In the present embodiment, this ISP is stored in the enactment document of setting up and supplies in the dress server 32, by supplying 32 pairs of these route devices 31 of dress server to set.When the packet data of client terminal device 30 is sent to route device 31; This route device 31 can be carried out service content with the packet data service provision device 33 that leads thus according to enactment document; After completion, pass route device 31 back, it is said that by this route device 31 with number-of-packet to internet 34.And from the packet data of internet 34, equally through this path by route device 31 guiding client terminal devices 30.Therefore,, can shunt and manage the network user's packet data easily, also can avoid causing the excessive problem of service provision device load in the prior art through enforcement of the present invention.
In a preferred embodiment, route device 31 can provide a plurality of routed paths according to the different set file, makes to upload and down-transmitting data bag data can obtain effective management.
In another preferred embodiment, supply to comprise in the enactment document of the stored client terminal device 30 of dress server 32 to supply the dress data, wherein, supply the dress data to can be the connection mode and/or the application type service of client terminal device 30.
At this; What must further propose explanation is; To the different set file that the different application content of the network user is produced, this enactment document can be stored in this confession dress server 32 or the route device 31, or even for example in the storage device of hard disk etc.; With when this route device 31 receives the network user's line request, according to should the user's setting file with this user's line route guidance to particular way by.
See also Fig. 4, it is the Organization Chart of another specific embodiment of line connecting identification system of the network user of the present invention.Comprise services client end device 40a, common customer end device 40b in the present embodiment, access router four 1, supply dress server 42, network connectivity equipment 43a and 43b, service provision device 44 and internet 45.
Services client end device 40a applies for function of surfing the Net and specific network service function to the ISP; And common customer end device 40b only applies for function of surfing the Net; Therefore the different content of applying for according to client terminal device forms two enactment documents, for accessing router four 1 packet data is directed in the different routed paths.
In the specific implementation, common customer end device 40b is linked to through network connectivity equipment 43b and accesses router four 1.Access router four 1 and be divided into A virtual router 410 and B virtual router 411 according to the content regions of enactment document.Because common customer end device 40b application function of surfing the Net, so when the packet data entering accesses router four 1, promptly this packet data is imported internet 45 by B virtual router 411.Likewise, send the packet data of common customer end device 40b to from internet 45, through accessing router four 1, by B virtual router 411 with passing to common customer end device 40b under this packet data, to accomplish data packet delivery.
For services client end device 40a,, promptly will import service provision device 44 from the packet data of service client device 40a by A virtual router 410 when it is linked to when accessing router four 1 through network connectivity equipment 43a.This packet data reaches B virtual router 411 so that this packet data is imported internet 45 after handling through service provision device 44 again.On the other hand, through former routed path transmission, packet data is handled the back via service provision device 44 and is imported A virtual router 410, reaches client terminal device 40a again from the packet data of passing to services client end device 40a in the internet 45 down.
Therefore can find that the application contents different to the network user produce different enactment documents, this enactment document is the different data packet transmission route of definable in accessing router four 1.The packet data of services client end device 40a reaches A virtual router 410 earlier in the foregoing description; Then reach service provision device 44; Reach B virtual router 411 again to be uploaded to internet 45, make the packet data of services client end device 40a must pass through service provision device 44 and carry out keyholed back plate.So the present invention through the upstream and downstream data bag data of different routed path transmission different clients devices, provides to have more flexible network service combination thus.
Consult Fig. 5, be the flow chart of the network user's of the present invention line recognition methods.As shown in the figure, its idiographic flow comprises the steps.
In step S50, make client terminal device link route device.Wherein, this client terminal device is through Wide Area Network system, virtual private net system, LAN system and/or this route device of wireless link.Client terminal device can be desktop computer, notebook computer, personal digital assistant and/or mobile phone.
A preferred embodiment, step S50 comprises that also step S501 order supplies the dress server to provide enactment document that should client terminal device and gives this route device; And step S502 makes this client terminal device link this route device (not shown).
In step S51, make this route device according to enactment document that should client terminal device is imported specific service provision device with this client terminal device, come thus packet data is analyzed or keyholed back plate.
In a preferred embodiment, route device provides a plurality of routed paths to transmit for packet data according to the different set file.
Consult Fig. 6, be the flow chart of the network user's of the present invention line recognition methods specific embodiment.
In step S60, make this confession dress server form enactment document that should client terminal device, and enactment document is passed to route device set according to user's Shen dress data.Then proceed to step S61.
In step S61, make this route device according to enactment document that should client terminal device is imported specific virtual router with this client terminal device.Then proceed to step S62.
In step S62, make this virtual router the packet data specific remote router that leads handled through GRE (generic routingencapsulation) Channel Technology.Then proceed to step S63.
In step S63, make packet data after this remote router will be handled through the GRE Channel Technology former route device that leads.
Through this mode; The ISP can import remote router fast with specific user's packet data through the GRE channel and handle and transfer back to the former router that accesses again; Through the GRE channel for the Internet service provider that service is provided; It needn't put service equipment to extra the building of user that is positioned at zones of different or be in far; Make to be positioned at zones of different or to be in user far away through the GRE channel to be linked to and to build the service equipment that places the specific region, the equipment that can save network provider is built and is set to outside this.But be to use the GRE Channel Technology to be merely an embodiment, as long as the technology that is used for long-range binding is all applicable to the present invention.
Therefore, but the enactment document the when network user's of the invention of the explanation knowledge capital through the foregoing description line connecting identification system utilizes the individual networks user applies to supply to adorn with method, in order to accessing the setting of the routed path that router carries out.Access and to divide a plurality of routed paths that point to different services in the router in advance; Therefore each network user with the data packet special services feeding mechanism that leads, the transmits data packets that so can be directed against the particular network user carried out keyholed back plate and more elastic combination of service content is provided by its corresponding routed path.
In sum, the network user's of the present invention line connecting identification system and method can produce following effect:
(1) improves the convenience that user's line is surfed the Net.Because ISP (ISP) User Recognition of being carried out and packet divide stream mechanism all need not let user's operation bidirectional,, therefore can improve the convenience of user's line online as long as data setting is accomplished and can be operated during the application service.
(2) reduce the machine-processed cost of client construction security protection.Because the ISP can carry out keyholed back plate and protection to user's data bag data through this mode, thus client need not the ancillary cost organizational system other security protection mechanism, like firewall box or antivirus software.
The foregoing description is merely illustrative the present invention's principle and effect thereof, but not is used to limit the present invention.Any those skilled in the art all can be under the present invention's spirit and category, and the foregoing description is modified and changed.

Claims (13)

1. a network user line connecting identification system, its characteristic is, comprising:
Client terminal device;
Route device is in order to provide this client terminal device line routed path; And
The service provision device, in order to providing special services to this client terminal device,
Wherein, this route device is according to importing this service provision device to enactment document that should client terminal device with this client terminal device, and this route device utilizes virtual router that a plurality of routed paths are provided according to the enactment document of different clients device.
2. the network user's according to claim 1 line connecting identification system also comprises supplying the dress server, in order to will enactment document that should client terminal device being offered this route device.
3. the network user's according to claim 1 line connecting identification system, its characteristic are that this client terminal device is through Wide Area Network system, virtual private net system, LAN system or this route device of wireless link.
4. the network user's according to claim 1 line connecting identification system, its characteristic is that this client terminal device is work station, desktop computer, notebook computer, personal digital assistant or mobile phone.
5. the network user's according to claim 1 line connecting identification system, its characteristic are that this client terminal device is through these routed path transfer data packets data.
6. the network user's according to claim 1 line connecting identification system, its characteristic are that this enactment document comprises the confession dress data of client terminal device, and this supplies dress data be the connection mode of this client terminal device or apply for type service.
7. the network user's according to claim 1 line connecting identification system, its characteristic is that the service that this service provision device provides is gas defence, wipes out drugs, stops the malicious data bag, stops malicious link or home page filter.
8. a network user line recognition methods, its characteristic is, may further comprise the steps:
(1) make client terminal device link route device; And
(2) make this route device according to enactment document that should client terminal device is imported specific service provision device with this client terminal device, wherein, this route device utilizes virtual router that a plurality of routed paths are provided according to the enactment document of different clients device.
9. the network user's according to claim 8 line recognition methods, its characteristic are that step (1) also comprises:
(1-1) order supplies the dress server to offer this route device to enactment document that should client terminal device; And
(1-2) make this client terminal device link this route device.
10. the network user's according to claim 8 line recognition methods, its characteristic are that this client terminal device is through Wide Area Network system, virtual private net system, LAN system or this route device of wireless link.
11. the network user's according to claim 8 line recognition methods, wherein, this client terminal device is work station, desktop computer, notebook computer, personal digital assistant or mobile phone.
12. the network user's according to claim 8 line recognition methods; Its characteristic is; This route device and service provision device link, and step (2) comprises that further this route device imports the packet data of this client terminal device the step of remote service feeding mechanism.
13. the network user's according to claim 12 line recognition methods, its characteristic are that step (2) comprises that further this route device imports this remote service feeding mechanism with the packet data of this client terminal device through gre tunnel.
CN2008101712366A 2008-10-27 2008-10-27 Line connecting identification system and method of network user Expired - Fee Related CN101729352B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN2008101712366A CN101729352B (en) 2008-10-27 2008-10-27 Line connecting identification system and method of network user

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN2008101712366A CN101729352B (en) 2008-10-27 2008-10-27 Line connecting identification system and method of network user

Publications (2)

Publication Number Publication Date
CN101729352A CN101729352A (en) 2010-06-09
CN101729352B true CN101729352B (en) 2012-05-30

Family

ID=42449618

Family Applications (1)

Application Number Title Priority Date Filing Date
CN2008101712366A Expired - Fee Related CN101729352B (en) 2008-10-27 2008-10-27 Line connecting identification system and method of network user

Country Status (1)

Country Link
CN (1) CN101729352B (en)

Families Citing this family (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN110337117B (en) * 2019-07-10 2020-05-05 牡丹江师范学院 Intelligent network information receiving and transmitting system

Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1681237A (en) * 2004-04-06 2005-10-12 数位联合电信股份有限公司 Information safety service system
CN101084658A (en) * 2004-12-15 2007-12-05 杉中顺子 Network connection service providing device

Patent Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1681237A (en) * 2004-04-06 2005-10-12 数位联合电信股份有限公司 Information safety service system
CN101084658A (en) * 2004-12-15 2007-12-05 杉中顺子 Network connection service providing device

Also Published As

Publication number Publication date
CN101729352A (en) 2010-06-09

Similar Documents

Publication Publication Date Title
US9654970B2 (en) Method and device for web redirect authentication in WiFi roaming based on AC and AP interworking
CN101039310B (en) Link sharing service apparatus and communication method thereof
CN101039309B (en) Link sharing service apparatus and communication method thereof
CN104969590B (en) Method and apparatus for allowing the data path in virtual home gateway to select
US8331861B2 (en) Content distribution and synchronization techniques and devices
EP2922276B1 (en) File sharing method, apparatus, and mobile device
CN101600224A (en) Wireless data card is supported the implementation method and the wireless data card of a plurality of PDP Contexts
JPWO2014142299A1 (en) COMMUNICATION TERMINAL, COMMUNICATION CONTROL DEVICE, COMMUNICATION SYSTEM, COMMUNICATION CONTROL METHOD, AND PROGRAM
CN107517189A (en) Method, the equipment that a kind of WLAN user access authentication and configuration information issue
CN109889499A (en) File transmitting method and relevant apparatus
WO2012155994A1 (en) Anonymous signalling
JP2010028422A (en) Gateway
CN107222561A (en) A kind of transport layer reverse proxy method
CN101616056A (en) Break through shunt method, shunting gateway and the network configuration thereof of PPPoE technical limitations
WO2015123990A1 (en) Page push method, device, server and system
CN101729352B (en) Line connecting identification system and method of network user
CN107409047A (en) Encrypt the coordinate packet delivering of session
CN102377765B (en) A kind of communication means and system
CN101110984A (en) Method and system for providing mobile data business
KR20150090328A (en) Method for providing marketing using social networking service
JP6828818B2 (en) Traffic optimizer, communication system, traffic optimization method and program
CN107071900A (en) A kind of user facility positioning method and device
JP2012518936A (en) Method and system for receiving a service by connecting a terminal to a plurality of mobile communication terminals in a CPNS environment, and a CPNS server and terminal for the same
CN101286858B (en) Method and system for charging of WAP gateway for mobile terminal
CN100372254C (en) Radio mutual action type communication system

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
CF01 Termination of patent right due to non-payment of annual fee

Granted publication date: 20120530

Termination date: 20191027

CF01 Termination of patent right due to non-payment of annual fee