CN102301777A - Method and device for controlling parameter configuration - Google Patents

Method and device for controlling parameter configuration Download PDF

Info

Publication number
CN102301777A
CN102301777A CN2011800016930A CN201180001693A CN102301777A CN 102301777 A CN102301777 A CN 102301777A CN 2011800016930 A CN2011800016930 A CN 2011800016930A CN 201180001693 A CN201180001693 A CN 201180001693A CN 102301777 A CN102301777 A CN 102301777A
Authority
CN
China
Prior art keywords
license file
configuration order
described inner
network element
file
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN2011800016930A
Other languages
Chinese (zh)
Other versions
CN102301777B (en
Inventor
陈高让
李蔚海
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Huawei Technologies Co Ltd
Original Assignee
Huawei Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Huawei Technologies Co Ltd filed Critical Huawei Technologies Co Ltd
Publication of CN102301777A publication Critical patent/CN102301777A/en
Application granted granted Critical
Publication of CN102301777B publication Critical patent/CN102301777B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L41/00Arrangements for maintenance, administration or management of data switching networks, e.g. of packet switching networks
    • H04L41/28Restricting access to network management systems or functions, e.g. using authorisation function to access network configuration
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L41/00Arrangements for maintenance, administration or management of data switching networks, e.g. of packet switching networks
    • H04L41/08Configuration management of networks or network elements
    • H04L41/0803Configuration setting

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Security & Cryptography (AREA)
  • Storage Device Security (AREA)
  • Communication Control (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)
  • Computer And Data Communications (AREA)

Abstract

The present invention discloses a method and device for controlling parameter configuration, and relates to the field of communications, which are used for ensuring the security of a system. The method for controlling parameter configuration includes the following steps: receiving the configuration commands for the limited interfaces of a network element apparatus sent by a client; determining whether there is an internal permission file corresponding to the network element apparatus on the operation and maintenance unit of the network element apparatus; if the result of the determination is YES, executing the configuration commands. The method and device for controlling parameter configuration provided by the embodiments of the present invention are applied for the configuration service of the network element apparatus.

Description

A kind of method and apparatus of controlling configuration parameter
Technical field
The present invention relates to the communications field, relate in particular to a kind of method and apparatus of controlling configuration parameter.
Background technology
As shown in Figure 1, (for example: base station controller etc.) have two kinds of external interfaces to be used for this network element device is configured operation, a kind of is open interface to general network element device, and another kind is restricted interface.Wherein, when the equipment supplier provides network element device to operator, also can offer this network element device of operator open interface configuration parameter and open interface is configured operation () configuration order for example: be provided with or operation such as modification configuration parameter, operator can be according to the client distribution configuration command of self needs by being connected with this network element device, so that open interface is configured operation; Because the configuration parameter and the configuration order of these interfaces are full disclosures for operator, so claim these interfaces to be open interface.In addition, configuration parameter and configuration order are not restricted interface to the interface of operator's full disclosure; Some configuration parameters of restricted interface may be very crucial parameters for system, in case by hack, may cause the safety problem of system.
In order to guarantee the fail safe of system, a solution is arranged in the prior art: restricted interface is stashed, but if arbitrary operator gets the configuration order of the restricted interface of cicada, then the configuration parameter of restricted interface just can be revised by this operator, so still can the fail safe of system be threatened.
Summary of the invention
Embodiments of the invention provide a kind of method and apparatus of controlling configuration parameter, in order to guarantee the fail safe of system.
On the one hand, provide a kind of method of controlling configuration parameter, comprising:
The configuration order that reception is issued by client at the restricted interface of network element device;
Judge on the Operation and Maintenance Unit of described network element device and whether have the inside license file corresponding with this network element device;
If judged result is for being then to carry out described configuration order.
On the other hand, provide a kind of Operation and Maintenance Unit, comprising:
Receive subelement, be used to receive the configuration order that issues by client at the restricted interface of network element device;
Judgment sub-unit is used to judge whether have the inside license file corresponding with this network element device on described Operation and Maintenance Unit;
Carry out subelement, the judged result that is used in described judgment sub-unit is under the situation that is, carries out described configuration order.
A kind of method and apparatus of controlling configuration parameter that the embodiment of the invention provides, make the Operation and Maintenance Unit on the network element device only exist on this Operation and Maintenance Unit under the situation of the inside license file corresponding with this network element device, just can carry out the configuration order of restricted interface, by the configuration order of giving restricted interface the execution authority is set, to guarantee the fail safe of system.
Description of drawings
In order to be illustrated more clearly in the embodiment of the invention or technical scheme of the prior art, to do to introduce simply to the accompanying drawing of required use in embodiment or the description of the Prior Art below, apparently, accompanying drawing in describing below only is some embodiments of the present invention, for those of ordinary skills, under the prerequisite of not paying creative work, can also obtain other accompanying drawing according to these accompanying drawings.
The network element device interface schematic diagram of Fig. 1 for providing in the prior art;
A kind of method flow diagram of controlling configuration parameter that Fig. 2 provides for embodiment one;
A kind of method flow diagram of controlling configuration parameter that Fig. 3 provides for embodiment two;
A kind of method flow diagram of controlling configuration parameter that Fig. 4 provides for embodiment three;
A kind of method flow diagram of controlling configuration parameter that Fig. 5 provides for embodiment four;
A kind of method flow diagram of controlling configuration parameter that Fig. 6 provides for embodiment five;
A kind of method flow diagram of controlling configuration parameter that Fig. 7 provides for embodiment six;
The structured flowchart of a kind of Operation and Maintenance Unit that Fig. 8 provides for the embodiment of the invention.
Embodiment
Below in conjunction with the accompanying drawing in the embodiment of the invention, the technical scheme in the embodiment of the invention is clearly and completely described, obviously, described embodiment only is the present invention's part embodiment, rather than whole embodiment.Based on the embodiment among the present invention, those of ordinary skills belong to the scope of protection of the invention not making the every other embodiment that is obtained under the creative work prerequisite.
Embodiment one:
As shown in Figure 2, present embodiment provides a kind of method of controlling configuration parameter, comprising:
201, receive the configuration order that issues by client at the restricted interface of network element device;
Usually, described network element device is connected with this client.
Described configuration order can be for being used for the restricted interface of network element device is configured the order of operation; Described configuration operation comprises the operations such as configuration parameter that are provided with or revise the restricted interface of network element device.
Network element device among the present invention for example, can be base station controller (BSC, full name are Base Station Controller).
202, judge on the Operation and Maintenance Unit of described network element device whether have the inside license file corresponding with this network element device;
Described inner license file is meant and is used to control the file that whether allows the configuration parameter of the restricted interface of network element device is configured operation, because this document is generally open to operator, so this document is called inner license file.
203, if the judged result of step 202 is for being then to carry out described configuration order.
The executive agent of above steps for example, can be the Operation and Maintenance Unit OMU of described network element device.
A kind of method of controlling configuration parameter that the embodiment of the invention provides, make the Operation and Maintenance Unit on the network element device only exist on this Operation and Maintenance Unit under the situation of the inside license file corresponding with this network element device, just can carry out the configuration order of restricted interface, that is to say, by the configuration order of giving restricted interface the execution authority is set, to guarantee the fail safe of system.
Embodiment two:
As shown in Figure 3, the embodiment of the invention provides the method for another kind of control configuration parameter, and this method comprises:
301, the Operation and Maintenance Unit OMU of network element device receives the configuration order at the restricted interface of this network element device that is issued by client;
Usually, described network element device is connected with this client.
For example, at first, can issue configuration order at the restricted interface of this network element device by client, this configuration order for example, can be a MML (Man-Machine Language, man-machine language) order; Then, the Operation and Maintenance Unit OMU of this network element device receives this configuration order.
302, the OMU of this network element device judges whether there be the inside license file corresponding with this network element device on this OMU; Preferably, the filename of this inside license file for example, can be unified title, for example: omu.md5.
Particularly, for example, the OMU of this network element device can be after the MML configuration order that receives at restricted interface, whether judgement exists the inside license file corresponding with this network element device on this OMU, for example, judge under the FTP of this OMU root, whether there be the inside license file corresponding with this network element device.
This step can comprise: after the OMU of network element device receives MML configuration order at restricted interface, at first judge on the FTP of this OMU whether have inner license file; If there is inner license file, judge again whether this inside license file is corresponding with this network element device.
Optionally, the described inside license file corresponding with this network element device can carry this network element device sign, for example, the network element device sign of carrying can be the ESN (Electronic Serial Number equipment E-serial) of this network element device, because ESN is the unique identification of network element device, so the OMU of network element device can judge whether this inside license file is corresponding with the network element device at OMU place by the entrained network element device ESN of inner license file, to prevent to palm off file.
If the judged result of step 302 is for being that then execution in step 303; If the judged result of step 302 is that then execution in step 304.
303, Operation and Maintenance Unit is carried out this configuration order.
304, Operation and Maintenance Unit is not carried out this configuration order.
Need to prove that the equipment supplier also can be according to operator's needs with the inside license file deletion among the OMU; Equally, the equipment supplier also can be uploaded to inner license file under the FTP root of OMU according to operator's needs.
The method of the control configuration parameter that the embodiment of the invention provides, make the Operation and Maintenance Unit on a certain network element device only exist under the situation of the inside license file corresponding on this Operation and Maintenance Unit, just can carry out the configuration order of restricted interface with this network element device; If there is not corresponding inner license file with this network element device on this Operation and Maintenance Unit, then this Operation and Maintenance Unit just can not carried out this configuration order; Thereby can utilize inner license file that the configuration order of restricted interface is provided with authority, to guarantee the fail safe of system.
Embodiment three:
In order to guarantee the fail safe of this inside license file, described inner license file can be encrypt file.At this situation, the invention provides a kind of method of controlling configuration parameter, as shown in Figure 4, this method comprises:
The Operation and Maintenance Unit OMU of step 401, network element device receives the configuration order at the restricted interface of network element device that is issued by client;
Step 301 in specifically can reference example two;
The OMU of step 402, this network element device judges whether there be the inside license file corresponding with this network element device on this OMU;
Step 302 in specifically can reference example two; Described in embodiments of the present invention inner license file is an encrypt file;
If the judged result of step 402 is for being that then execution in step 403; If the judged result of step 402 is that then execution in step 405.
The OMU of step 403, this network element device deciphers described inner license file;
Can decipher at OMU under the situation of this encrypt file, carry out step 404; If this OMU can not decipher this encrypt file, then carry out step 405.
Step 404, carry out described configuration order;
After described inner license file deciphering, carry out described configuration order.Can finish configuration operation by carrying out described configuration order to restricted interface.
Step 405, do not carry out described configuration order.
Inside license file in the scheme that present embodiment provides is an encrypt file, and this just guarantees the fail safe of this inside license file, has further guaranteed the fail safe of system.
Embodiment four:
In order to guarantee the fail safe of system, the content of described inner license file can also comprise the term of validity of this inside license file.At this situation, the invention provides a kind of method of controlling configuration parameter, this method comprises as shown in Figure 5:
The OMU of step 501, network element device receives the configuration order at the restricted interface of network element device that is issued by client;
Step 301 in specifically can reference example two;
The OMU of step 502, this network element device judges whether there be the inside license file corresponding with this network element device on this OMU;
Step 302 in specifically can reference example two; The content of described inner license file comprises the term of validity of this inside license file;
If the judged result of step 502 is for being that then execution in step 503; If the judged result of step 502 is that then execution in step 505.
Step 503, read the term of validity of described inner license file, and judge that described inner license file is whether in the term of validity of this inside license file;
For example, if operator only need carry out once restricted interface configuration command, then this term of validity can be set at short time limit, 8:00~12:00 as 2011-1-19, that is to say in this time period, should the inside license file be that effectively in addition, this inside license file is then invalid only; Certainly, this term of validity can also or be the longer time for one month.By setting the term of validity of inner license file, can more effectively guarantee the fail safe of network element device and system according to the needs of operator.
If judged result is for being then carry out step 504; If judged result then carry out step 505 for not.
Step 504, carry out described configuration order;
Carry out described configuration order by OMU and can finish configuration operation restricted interface configuration parameter.
Step 505, do not carry out described configuration order.
The content of the inside license file in the scheme that present embodiment provides comprises the term of validity of this inside license file, only under the situation of inner license file in its term of validity, just can carry out configuration order, thereby has guaranteed the fail safe of system.
Embodiment five:
Present embodiment combines the scheme of embodiment three and embodiment four, to guarantee the fail safe of system.As shown in Figure 6, the method that provides of the embodiment of the invention comprises:
The Operation and Maintenance Unit OMU of step 601, network element device receives the configuration order at the restricted interface of network element device that is issued by client; Described network element device is connected with this client;
Step 301 in specifically can reference example two;
The OMU of step 602, this network element device judges whether there be the inside license file corresponding with this network element device on this OMU;
Step 302 in specifically can reference example two; Described inner license file is an encrypt file, and content that should the inside license file comprises the term of validity of this inside license file.
If the judged result of step 602 is for being that then execution in step 603; If the judged result of step 602 is that then execution in step 606.
The OMU of step 603, this network element device deciphers described inner license file;
Can decipher at OMU under the situation of this encrypt file, carry out step 604; If this OMU can not decipher this encrypt file, then carry out step 606.
Step 604, read the term of validity of described inner license file, and judge that described inner license file is whether in the term of validity of this inside license file;
If judged result for being, promptly decipher described inner license file, and described inner license file then carry out step 605 in the described term of validity; If judged result then carry out step 606 for not.
Step 605, carry out described configuration order;
Step 606, do not carry out described configuration order.
Inside license file in the scheme that present embodiment provides is an encrypt file, and should the term of validity be arranged the inside license file, has strengthened the fail safe of system.
Embodiment six:
It is a kind of by the control to inner license file that the embodiment of the invention provides again, guarantees the scheme of the fail safe of system.Inner in embodiments of the present invention license file can be used to control open one or more even whole configuration orders.As shown in Figure 7, the method that provides of the embodiment of the invention comprises:
The OMU of step 701, network element device receives the configuration order at the restricted interface of network element device that is issued by client; Described network element device is connected with this client;
Step 301 in specifically can reference example two.
The OMU of step 702, this network element device judges whether there be the inside license file corresponding with this network element device on this OMU;
Step 302 in specifically can reference example two; Described inner license file is used to control open one or more even whole configuration orders.
If the judged result of step 702 is for being that then execution in step 703; If the judged result of step 702 is that then execution in step 705.
Step 703, OMU judge whether the configuration order that is received by step 701 is controlled in the open configuration order at described inner license file;
If inner license file is only controlled the configuration order of an open appointment, then the configuration order of the configuration order that is received by step 701 and this appointment is identical, just carry out step 704, otherwise, carry out step 705;
If inner license file is only controlled the configuration order of open portion, then one of them in the configuration order of configuration order that is received by step 701 and described open portion is identical, just carry out step 704, otherwise, carry out step 705;
If inner license file is only controlled open whole configuration order, can judge that then the configuration order that received by step 701 is identical with in the whole configuration order of described opening one of them, carry out step 704, otherwise, carry out step 705.
Step 704, carry out described configuration order;
Step 705, do not carry out described configuration order.
Method provided by the invention by in inner license file part or all of configuration order being provided with authority, improves the fail safe of system.
Need to prove the application that can combine with the scheme among embodiment three, embodiment four and the embodiment five of the scheme among the embodiment six:
For example, the scheme among scheme among the embodiment six and the embodiment three combines: described inner license file is an encrypt file, and should be used for open one or more configuration order of control by the inside license file;
At this moment, the described configuration order of described execution comprises:
Decipher described inner license file, and the configuration order that receives is then carried out the described configuration order that receives in the open configuration order of described inner license file control.
For another example, the scheme among scheme among the embodiment six and the embodiment four combines: described inner license file comprises the term of validity of this inside license file, and should be used for open one or more configuration order of control by the inside license file;
At this moment, the described configuration order of described execution comprises:
If described inner license file is in the described term of validity, and the configuration order that receives is then carried out the described configuration order that receives in the open configuration order of described inner license file control.
And for example, the scheme among scheme among the embodiment six and the embodiment five combines: described inner license file is an encrypt file, and comprises the term of validity of this inside license file, and should be used for open one or more configuration order of control by the inside license file;
At this moment, the described configuration order of described execution comprises:
Decipher described inner license file, if described inner license file in the described term of validity, and the configuration order that receives is then carried out the described configuration order that receives in the open configuration order of described inner license file control.
Can reference example four for the mode of combination, do not add at this and to give unnecessary details.
In addition, the embodiment of the invention also provides the device corresponding to the method for above-mentioned control configuration parameter, and promptly a kind of Operation and Maintenance Unit OMU as shown in Figure 8, comprising:
Receive subelement 81, be used to receive the configuration order that issues by client at the restricted interface of network element device;
Judgment sub-unit 82 is used to judge whether have the inside license file corresponding with this network element device on described Operation and Maintenance Unit;
Carry out subelement 83, the judged result that is used in described judgment sub-unit 82 is under the situation that is, carries out described configuration order.
A kind of Operation and Maintenance Unit that the embodiment of the invention provides, only exist on this Operation and Maintenance Unit under the situation of inner license file, carry out subelement and just can carry out the configuration order of restricted interface, otherwise this execution subelement is not just carried out the configuration order of restricted interface; By the configuration order of giving restricted interface the execution authority is set, to guarantee the fail safe of system.
Described execution subelement 83, the judged result that also is used in described judgment sub-unit 82 is under the situation not, does not carry out described configuration order.
Preferably, the described inside license file corresponding with this network element device can carry the sign of this network element device, for example, and can carry this network element device ESN number.Preferably, the filename of described inner license file can be unified title.
Preferably, described inner license file can be encrypt file; In this case, the judged result that described execution subelement 83 is further used in described judgment sub-unit 82 is under the situation that is, deciphers described inner license file, and described configuration order is carried out in the deciphering back.
Perhaps preferred, the content of described inner license file can comprise the term of validity of this inside license file; In this case, the judged result that described execution subelement 83 is further used in described judgment sub-unit 82 is under the situation that is, if described inner license file is then carried out described configuration order in the described term of validity.
Perhaps preferred, described inner license file is used for open one or more configuration order of control; In this case, the judged result that described execution subelement 83 is further used in described judgment sub-unit 82 is under the situation that is, if the configuration order that receives is then carried out the described configuration order that receives in the open configuration order of described inner license file control.
Perhaps preferred, described inner license file is an encrypt file, and comprises the term of validity of this inside license file; In this case, the judged result that described execution subelement 83 is further used in described judgment sub-unit 82 is under the situation that is, deciphers described inner license file, if described inner license file is then carried out described configuration order in the described term of validity.
Perhaps preferred, described inner license file is an encrypt file, and should be used for open one or more configuration order of control by the inside license file; In this case, the judged result that described execution subelement 83 is further used in described judgment sub-unit 82 is under the situation that is, decipher described inner license file, if the configuration order that receives is then carried out the described configuration order that receives in the open configuration order of described inner license file control.
Perhaps preferred, described inner license file comprises the term of validity of this inside license file, and should be used for open one or more configuration order of control by the inside license file; In this case, the judged result that described execution subelement 83 is further used in described judgment sub-unit 82 is under the situation that is, if described inner license file is in the described term of validity, and the configuration order that receives is then carried out the described configuration order that receives in the open configuration order of described inner license file control.
Perhaps preferred, described inner license file is an encrypt file, and comprises the term of validity of this inside license file, and should be used for open one or more configuration order of control by the inside license file; In this case, the judged result that described execution subelement 83 is further used in described judgment sub-unit 82 is under the situation that is, decipher described inner license file, if described inner license file is in the described term of validity, and the configuration order that receives is then carried out the described configuration order that receives in the open configuration order of described inner license file control.
In the Operation and Maintenance Unit that the embodiment of the invention provides, utilizing (1) inner license file is encrypt file; (2) inner license file comprises the term of validity of this inside license file; (3) inner license file is used for controlling at least a of three kinds of modes of open one or more configuration order, the further fail safe of enhanced system.
Use the detailed process of the Operation and Maintenance Unit control configuration parameter of the embodiment of the invention, embodiment is similar with preceding method, repeats no more herein.
Through the above description of the embodiments, the those skilled in the art can be well understood to the present invention and can realize by the mode that software adds essential common hardware, can certainly pass through hardware, but the former is better execution mode under a lot of situation.Based on such understanding, the part that technical scheme of the present invention contributes to prior art in essence in other words can embody with the form of software product, this computer software product is stored in the storage medium that can read, floppy disk as computer, hard disk or CD etc., comprise some instructions with so that computer equipment (can be personal computer, server, the perhaps network equipment etc.) carry out the described method of each embodiment of the present invention.
The above; only be the specific embodiment of the present invention, but protection scope of the present invention is not limited thereto, anyly is familiar with those skilled in the art in the technical scope that the present invention discloses; the variation that can expect easily or replacement all should be encompassed within protection scope of the present invention.Therefore, protection scope of the present invention should be as the criterion with the protection range of described claim.

Claims (20)

1. a method of controlling configuration parameter is characterized in that, comprising:
The configuration order that reception is issued by client at the restricted interface of network element device;
Judge on the Operation and Maintenance Unit of described network element device and whether have the inside license file corresponding with this network element device;
If judged result is for being then to carry out described configuration order.
2. method according to claim 1 is characterized in that, also comprises: for not, then do not carry out described configuration order if judge the judged result that whether has the inside license file corresponding with this network element device on the Operation and Maintenance Unit of described network element device.
3. method according to claim 1 and 2 is characterized in that, the described inside license file corresponding with this network element device carries the sign of this network element device.
4. method according to claim 1 and 2 is characterized in that, described inner license file is an encrypt file;
The described configuration order of described execution comprises:
After described inner license file deciphering, carry out described configuration order.
5. method according to claim 1 and 2 is characterized in that described inner license file comprises the term of validity of this inside license file;
The described configuration order of described execution comprises:
Judge described inner license file in the described term of validity, then carry out described configuration order.
6. method according to claim 1 and 2 is characterized in that, described inner license file is used for open one or more configuration order of control;
The described configuration order of described execution comprises:
Judge whether the configuration order that receives is controlled in the open configuration order at described inner license file;
If then carry out the described configuration order that receives.
7. method according to claim 1 and 2 is characterized in that, described inner license file is an encrypt file, and comprises the term of validity of this inside license file;
The described configuration order of described execution comprises:
Decipher described inner license file, and described inner license file is then carried out described configuration order in the described term of validity.
8. method according to claim 1 and 2 is characterized in that, described inner license file is an encrypt file, and should be used for open one or more configuration order of control by the inside license file;
The described configuration order of described execution comprises:
Decipher described inner license file, and the configuration order that receives is then carried out the described configuration order that receives in the open configuration order of described inner license file control.
9. method according to claim 1 and 2 is characterized in that described inner license file comprises the term of validity of this inside license file, and should be used for open one or more configuration order of control by the inside license file;
The described configuration order of described execution comprises:
If described inner license file is in the described term of validity, and the configuration order that receives is then carried out the described configuration order that receives in the open configuration order of described inner license file control.
10. method according to claim 1 and 2 is characterized in that, described inner license file is an encrypt file, and comprises the term of validity of this inside license file, and should be used for open one or more configuration order of control by the inside license file;
The described configuration order of described execution comprises:
Decipher described inner license file, if described inner license file in the described term of validity, and the configuration order that receives is then carried out the described configuration order that receives in the open configuration order of described inner license file control.
11. an Operation and Maintenance Unit is characterized in that, comprising:
Receive subelement, be used to receive the configuration order that issues by client at the restricted interface of network element device;
Judgment sub-unit is used to judge whether have the inside license file corresponding with this network element device on described Operation and Maintenance Unit;
Carry out subelement, the judged result that is used in described judgment sub-unit is under the situation that is, carries out described configuration order.
12. Operation and Maintenance Unit according to claim 11 is characterized in that, described execution subelement, and the judged result that also is used in described judgment sub-unit is under the situation not, does not carry out described configuration order.
13., it is characterized in that the described inside license file corresponding with this network element device carries the sign of this network element device according to claim 11 or 12 described Operation and Maintenance Units.
14., it is characterized in that described inner license file is an encrypt file according to claim 11 or 12 described Operation and Maintenance Units;
The judged result that described execution subelement is further used in described judgment sub-unit is under the situation that is, deciphers described inner license file, and described configuration order is carried out in the deciphering back.
15., it is characterized in that described inner license file comprises the term of validity of this inside license file according to claim 11 or 12 described Operation and Maintenance Units;
The judged result that described execution subelement is further used in described judgment sub-unit is under the situation that is, if described inner license file is then carried out described configuration order in the described term of validity.
16., it is characterized in that described inner license file is used for open one or more configuration order of control according to claim 11 or 12 described Operation and Maintenance Units;
The judged result that described execution subelement is further used in described judgment sub-unit is under the situation that is, if the configuration order that receives is then carried out the described configuration order that receives in the open configuration order of described inner license file control.
17., it is characterized in that described inner license file is an encrypt file according to claim 11 or 12 described Operation and Maintenance Units, and comprise the term of validity of this inside license file;
The judged result that described execution subelement is further used in described judgment sub-unit is under the situation that is, deciphers described inner license file, if described inner license file is then carried out described configuration order in the described term of validity.
18., it is characterized in that described inner license file is an encrypt file according to claim 11 or 12 described Operation and Maintenance Units, and should be used for open one or more configuration order of control by the inside license file;
The judged result that described execution subelement is further used in described judgment sub-unit is under the situation that is, decipher described inner license file, if the configuration order that receives is then carried out the described configuration order that receives in the open configuration order of described inner license file control.
19. according to claim 11 or 12 described Operation and Maintenance Units, it is characterized in that described inner license file comprises the term of validity of this inside license file, and should be used for open one or more configuration order of control by the inside license file;
The judged result that described execution subelement is further used in described judgment sub-unit is under the situation that is, if described inner license file is in the described term of validity, and the configuration order that receives is then carried out the described configuration order that receives in the open configuration order of described inner license file control.
20., it is characterized in that described inner license file is an encrypt file according to claim 11 or 12 described Operation and Maintenance Units, and comprise the term of validity of this inside license file, and should be used for open one or more configuration order of control by the inside license file;
The judged result that described execution subelement is further used in described judgment sub-unit is under the situation that is, decipher described inner license file, if described inner license file is in the described term of validity, and the configuration order that receives is then carried out the described configuration order that receives in the open configuration order of described inner license file control.
CN201180001693.0A 2011-05-27 2011-05-27 Method and device for controlling parameter configuration Active CN102301777B (en)

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
PCT/CN2011/074778 WO2011144106A2 (en) 2011-05-27 2011-05-27 Method and device for controlling parameter configuration

Publications (2)

Publication Number Publication Date
CN102301777A true CN102301777A (en) 2011-12-28
CN102301777B CN102301777B (en) 2013-10-09

Family

ID=44992118

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201180001693.0A Active CN102301777B (en) 2011-05-27 2011-05-27 Method and device for controlling parameter configuration

Country Status (2)

Country Link
CN (1) CN102301777B (en)
WO (1) WO2011144106A2 (en)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103955646A (en) * 2014-04-28 2014-07-30 京信通信系统(中国)有限公司 Method and system for controlling software functions of various devices

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20070026942A1 (en) * 2005-08-01 2007-02-01 Igt Methods and devices for authentication and licensing in a gaming network
CN101014922A (en) * 2004-06-04 2007-08-08 维托索斯科技有限公司 System, method, and computer program product for providing digital rights management of protected content
CN101217710A (en) * 2008-01-07 2008-07-09 华为技术有限公司 Wireless network license documents sharing system and the corresponding sharing method

Family Cites Families (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6427202B1 (en) * 1999-05-04 2002-07-30 Microchip Technology Incorporated Microcontroller with configurable instruction set
CN100412743C (en) * 2004-12-17 2008-08-20 摩托罗拉公司 Method and apparatus for digital right management
CN101110702A (en) * 2007-08-14 2008-01-23 中兴通讯股份有限公司 Method for command line interface authority classification and system thereof
CN101872297B (en) * 2009-08-07 2013-07-24 威盛电子股份有限公司 Microprocessor and method for limiting access

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101014922A (en) * 2004-06-04 2007-08-08 维托索斯科技有限公司 System, method, and computer program product for providing digital rights management of protected content
US20070026942A1 (en) * 2005-08-01 2007-02-01 Igt Methods and devices for authentication and licensing in a gaming network
CN101217710A (en) * 2008-01-07 2008-07-09 华为技术有限公司 Wireless network license documents sharing system and the corresponding sharing method

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103955646A (en) * 2014-04-28 2014-07-30 京信通信系统(中国)有限公司 Method and system for controlling software functions of various devices
CN103955646B (en) * 2014-04-28 2017-08-25 京信通信系统(中国)有限公司 Control the method and system of the software function of distinct device

Also Published As

Publication number Publication date
CN102301777B (en) 2013-10-09
WO2011144106A3 (en) 2012-04-26
WO2011144106A2 (en) 2011-11-24

Similar Documents

Publication Publication Date Title
CN102917346B (en) Security policy management system and method for Android-based application program during operation
CN102622311B (en) USB (universal serial bus) mobile memory device access control method, USB mobile memory device access control device and USB mobile memory device access control system
EP2474140B1 (en) Checking a configuration modification for an ied
EP3099037A1 (en) Providing a password for temporary access privilege escalation in a control program
CN105528553A (en) A method and a device for secure sharing of data and a terminal
US9197672B2 (en) Method and system for selective application of device policies
CN101866404A (en) Software system module independent authorization control method and device
CN104392159A (en) User on-demand authorization method capable of supporting least privilege
CN102339367A (en) Method and device for controlling permission
CN102236765B (en) Method and device for protecting programmable logic controller (PLC) safely
JP6457471B2 (en) Operator identification system
CN103886249B (en) The method and device of executive process under system superuser right
CN102426639A (en) Information safety monitoring method and device
CN104750523A (en) Information processing method and electronic equipment
CN102301777B (en) Method and device for controlling parameter configuration
CN105005726A (en) Control method and device for menu item
WO2011148375A1 (en) Automation framework
CN105224848A (en) A kind of equipment authentication method, Apparatus and system
CN108509114A (en) A kind of system operatio authority control method defined based on menu and function
CN112312400A (en) Access control method, access controller and storage medium
JP2018097405A (en) Work plan creation system, work plan creation method and work plan creation program
CN110781459A (en) Authorization permission management and control method, system and electronic equipment
CN105335673A (en) Information safety processing method and device
CN104318180A (en) System security permission treatment state machine model based on intelligent terminal
JP2005071171A (en) Method for controlling batch job execution

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant