CN103139750A - Processing system, processing method, identification server and access controller for user logoff - Google Patents

Processing system, processing method, identification server and access controller for user logoff Download PDF

Info

Publication number
CN103139750A
CN103139750A CN2011103973292A CN201110397329A CN103139750A CN 103139750 A CN103139750 A CN 103139750A CN 2011103973292 A CN2011103973292 A CN 2011103973292A CN 201110397329 A CN201110397329 A CN 201110397329A CN 103139750 A CN103139750 A CN 103139750A
Authority
CN
China
Prior art keywords
terminal
production line
request
rolling
certificate server
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN2011103973292A
Other languages
Chinese (zh)
Inventor
林良书
费嘉亮
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
China Mobile Group Shanghai Co Ltd
Original Assignee
China Mobile Group Shanghai Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by China Mobile Group Shanghai Co Ltd filed Critical China Mobile Group Shanghai Co Ltd
Priority to CN2011103973292A priority Critical patent/CN103139750A/en
Publication of CN103139750A publication Critical patent/CN103139750A/en
Pending legal-status Critical Current

Links

Images

Landscapes

  • Telephonic Communication Services (AREA)

Abstract

The invention discloses a processing system, a processing method, an identification server and an access control for user logoff. The method comprises the steps of receiving a logoff request from a terminal; according to the logoff request, sending instruction of terminal logoff to the access controller (AC) so as to instruct the AC to break off internet connection of the terminal; receiving a request, from the AC, of stopping charging the terminal; and according to the request of stopping charging, stopping charging the terminal. The method enables a network side device to timely and accurately confirm that the terminal logs off, and stop charging the terminal after breaking off the network connection of the terminal, thereby being capable of solving the problems that in relative technology, a terminal can not initiate normal logoff so that a network side device can not accurately confirm whether the terminal logs off, and extra charging occurs. Consequently, the method can improve service experience of clients.

Description

The treatment system of user offline, method and certificate server, access controller
Technical field
The present invention relates to the mobile communication technology field, especially relate to a kind for the treatment of system, method and certificate server, access controller of user offline.
Background technology
WLAN (wireless local area network) (WLAN, Wireless Local Area Network) is a kind of data transmission system very easily, than other the wireless network access way, it has the minimum characteristics of unit discharge cost.The WLAN of existing operator operation, usually adopt the Web/Portal authentication mode of usemame/password, as shown in Figure 1, the user inputs username and password on terminal, terminal sends to WLAN access authentication of user point by wireless signal with username and password, after the username and password that the WLAN certificate server receives WLAN access authentication of user point carried out Certificate Authority, terminal was carried out the access of Internet resources by WLAN access authentication of user point and PORTAL server.
But under the Web/Portal authentication mode, the user inputs user name on mobile phone terminal, there is more inconvenience in password, easily causes the drawbacks such as certification page and terminal are not adaptive, the input usemame/password is easily made mistakes.
Under this background; operator begins to put forth effort to study each WLAN unaware certificate scheme; as Extensible Authentication Protocol (EAP; Extensible Authentication Protocol); comprise EAP-SIM, EAP-AKA (EAP for UMTS Authentication and Key Agreement), reach shielded Extensible Authentication Protocol (PEAP; Protected EAP) authentication etc., as Fig. 2 and shown in Figure 3.
EAP-SIM/AKA is a kind of implementation of EAP authentication method, this mode authenticates by user (U) SIM card information, identical with the cellular authentication mode, when the user uses SIM card, carry out the EAP-SIM identifying procedure, when the user uses usim card, carry out the EAP-AKA identifying procedure, whole verification process does not need the user to get involved any manual operations, is automatically completed by terminal fully.as shown in Figure 2, dotted line represents signaling flow, solid line represents data flow, terminal and access point (AP, Access Point) and access controller (AC, Access Controller) pass through the EAPoL protocol communication between, AC and aaa server (AAAServer) are by Radius protocol forward EAP message, aaa server uses MAP to obtain user (U) SIM card authentication vector from attaching position register/home subscriber server (HLR/HSS), and complete authentication, aaa server is the execution point of authentication, after authentication success, the user can directly carry out network resource accession, thereby realize " unaware " authentication of user.
And PEAP is the another kind of implementation of EAP authentication method, and as shown in Figure 3, terminal is by AP, AC access network, and the PEAP certificate server carries out Certificate Authority to terminal.Network side authenticates terminal by usemame/password, and end side authenticates network side by server certificate.When user terminal uses the PEAP authentication first, need the input username and password, follow-up access authentication need not any manual operations of user, is automatically completed by terminal.The PEAP mode is by using the tunnel to carry out safety certification between PEAP client and certificate server.
but, in existing technical scheme, when the user initiates under EAP-SIM/AKA or PEAP line process, terminal can't be initiated the operation of rolling off the production line normally, the WLAN switch of the system that can only close a terminal, and after reaching certain hour, closing switch just can complete the operation of rolling off the production line, be that access device WLAN AN passes through to detect the data traffic of user in the set time less than certain threshold value, perhaps detect when finding that the user is online by Keep Alive mechanism, WLAN Access Network (AN, Access Network) could confirm that client rolls off the production line, and send to 3GPP AAA Server the message (Accounting Request (stop)) that charging stops asking, 3GPP AAA Server replys to WLAN AN the response (Accounting Response (stop)) that charging stops request message again, thereby realize user's abnormal off-line, as shown in Figure 4.
As can be seen from Figure 4, subscriber terminal side is initiated to roll off the production line after operation, if in the process that the access device monitor user ' rolls off the production line, the user again opens the WLAN switch of terminal system or has triggered again some business datum flows, the Verification System of network side can think that the user brings into use the WLAN business again by mistake like this, thereby think that terminal still online, do not initiate the abnormal off-line process, user account number also still is in the charging state, so can cause a large amount of additional charges, cause dispute, greatly reduce user's service-aware.
As seen, at present in correlation technique, in the noninductive certificate scheme of WLAN, due to terminal can't initiate normally to roll off the production line operation, cause network equipment can't confirm exactly whether terminal rolls off the production line, and therefore produce the problem of additional charges.
Summary of the invention
The embodiment of the present invention provides a kind for the treatment of system of user offline, in the noninductive certificate scheme that solves WLAN, because terminal can't initiate normally to roll off the production line operation, network equipment can't be confirmed exactly whether terminal rolls off the production line, and therefore be produced the problem of additional charges.
Accordingly, the embodiment of the present invention also provides a kind of prescribing method of WLAN user offline and certificate server, access controller.
Embodiment of the present invention technical scheme is as follows:
A kind for the treatment of system of user offline comprises: access controller AC, certificate server; Certificate server is used for after the request of rolling off the production line that receives self terminal, and to the roll off the production line indication of AC transmission to this terminal, the network that disconnects this terminal with indication AC connects; And receive from AC terminal is stopped the request of charging after, stop the terminal charging; AC is used for after the indication of rolling off the production line to terminal that receives from certificate server, and the network of disconnected end connects, and sends to certificate server the request that this terminal is stopped charging.
A kind of processing method of user offline comprises: receive the request of rolling off the production line of self terminal; According to the request of rolling off the production line, to the roll off the production line indication of access controller AC transmission to terminal, with the network connection of indication AC disconnected end; Reception is from the accounting request that stops to terminal of AC; According to stopping accounting request, terminal is stopped charging.
A kind of certificate server comprises: the first receiving element is used for receiving the request of rolling off the production line of self terminal; The indicating member that rolls off the production line is used for the rolling off the production line request that receives according to the first receiving element, sends to access controller AC the indication of rolling off the production line, to indicate the network connection of AC disconnected end; The second receiving element, the charging to terminal that is used for receiving from AC stops request; Charging stops the unit, is used for stopping request according to the charging that the second receiving element receives, and terminal is stopped charging.
A kind of processing method of user offline comprises: receive the indication of rolling off the production line to terminal from certificate server; According to the indication of rolling off the production line, the network of disconnected end connects; Send the request that this terminal is stopped charging to certificate server.
A kind of access controller comprises: receiving element is used for receiving the indication of rolling off the production line to terminal from certificate server; The network operation unit, for the indication of rolling off the production line that receives according to receiving element, the network of disconnected end connects; Transmitting element is used for sending to certificate server the request that terminal is stopped charging.
The embodiment of the present invention is by making certificate server directly receive the request of rolling off the production line of self terminal and connect according to this network that rolls off the production line request indication AC disconnected end, receive from AC to terminal stop stop charging to terminal after accounting request, can make certificate server confirm that more exactly terminal rolls off the production line, more exactly terminal carried out charging, can't confirm exactly whether terminal rolls off the production line, and therefore produce the problem of additional charges thereby can solve network equipment in correlation technique.
Description of drawings
Fig. 1 is the WLAN authentication mode schematic diagram of web/portal in prior art;
Fig. 2 is the EAP-SIM/AKA authentication mode schematic diagram of the noninductive authentication of WLAN in prior art;
Fig. 3 is the PEAP authentication mode schematic diagram of the noninductive authentication of WLAN in prior art;
Fig. 4 is the process chart of user's abnormal off-line of the noninductive authentication of WLAN in prior art;
Fig. 5 is the process chart that in prior art, the user is initiatively rolled off the production line;
Fig. 6 a is the structural representation according to the treatment system of the user offline of the embodiment of the present invention;
Fig. 6 b is the workflow diagram according to the treatment system of the user offline of the embodiment of the present invention;
Fig. 7 is the structural representation according to the certificate server of the embodiment of the present invention;
Fig. 8 is the workflow diagram according to the processing method of the user offline of the embodiment of the present invention;
Fig. 9 is the structural representation according to the access controller of the embodiment of the present invention;
Figure 10 is another workflow diagram according to the processing method of the user offline of the embodiment of the present invention;
Figure 11 is the concrete schematic diagram of using of the embodiment of the present invention;
Figure 12 is the concrete workflow diagram of using of the embodiment of the present invention.
Embodiment
In the noninductive certificate scheme of WLAN, access device can only the data traffic within the set time be determined user offline or confirm user offline by Keep Alive testing mechanism less than certain threshold value by monitor user ', and stop charging to terminal with this, thereby can not carry out the problem that roll off the production line operation and charging still continue because client's some misoperations in monitoring time trigger the network connection, make network side think that terminal does not roll off the production line like this.
In addition, in present correlation technique, as shown in Figure 5, even client software has been installed, because application layer services can't be called terminal bottom EAP protocol stack, therefore, also can't initiate normally to roll off the production line request (EAP-Logoff) to network side by the common application client software.System to the charging of client also as mentioned above, can only be after system detects the user and has rolled off the production line, stop the request (Accounting Request (stop)) of charging by AP to the certificate server transmission, and stop the charging to this client by this request of authentication server response (AccountingResponse (stop)).
In view of the problems referred to above in correlation technique, the embodiment of the present invention has proposed a kind for the treatment of system, method and certificate server, access controller of user offline.In embodiments of the present invention, make terminal and certificate server direct communication, certificate server is in the charging of confirming to stop in time after terminal rolls off the production line to terminal, reaches network side and confirms that more exactly terminal rolls off the production line and stops purpose to the terminal charging.The scheme of the embodiment of the present invention comprises: the terminal request of rolling off the production line directly sends to certificate server, certificate server is according to this request of rolling off the production line, the network of indication AC disconnected end connects, and after the network that AC disconnects this terminal connected, the request that this terminal is stopped charging that certificate server sends according to AC stopped the charging to terminal.The scheme of the embodiment of the present invention makes network equipment can confirm timely and accurately that terminal rolls off the production line and stop charging to terminal after the network of disconnected end connects, thereby can solve terminal in correlation technique can't initiate normally to roll off the production line operation, cause network equipment can't confirm exactly whether terminal rolls off the production line, and therefore produce the problem of additional charges, and then can improve client's business experience.
Fig. 6 a is the framework schematic diagram according to the treatment system of the user offline of the embodiment of the present invention, and this system comprises: certificate server 1, AC 2.
Certificate server 1 is used for after the request of rolling off the production line that receives self terminal, and to the indication of rolling off the production line that AC 2 sends this terminal, the network that indication AC 2 disconnects this terminal connects; And disconnect the network connection of this terminal at AC 2 after, the accounting request that stops to this terminal according to AC 2 sends stops the charging to this terminal.
AC 2, are used for according to the indication of rolling off the production line from certificate server 1, terminal is carried out forced the network connection of flow process, disconnected end of rolling off the production line, and send to certificate server 1 request that terminal is stopped charging.
Fig. 6 b shows the workflow of system shown in Fig. 6 a, and as shown in Fig. 6 b, this flow process comprises following treatment step:
Step 61, terminal send to certificate server 1 request of rolling off the production line under the state of authentication success;
A kind of preferred mode, terminal is with the international mobile subscriber identification code (IMSI of this terminal, InternationalMobile Subscriber Identity) be carried in the request of rolling off the production line after encrypting, occur to certificate server 1 together with the request of rolling off the production line, and terminal sends to certificate server 1 with the form request of rolling off the production line of HTTP;
Step 62, the request of rolling off the production line that certificate server 1 sends according to terminal sends to AC 2 indication of rolling off the production line that terminal is rolled off the production line;
The IMSI that encrypts in the request of rolling off the production line of a kind of preferred mode, 1 pair of certificate server is decrypted, according to the IMSI after deciphering, to the roll off the production line indication of AC 2 transmissions to terminal corresponding to this IMSI;
Step 63, according to the indication of rolling off the production line from certificate server 1, the network of AC 2 disconnected ends connects;
Step 64, AC 2 sends to certificate server 1 request that terminal is stopped charging after confirming that the network of disconnected end has connected;
Step 65, certificate server 1 is according to stopping accounting request, stop the charging to terminal from AC 2.
the embodiment of the present invention is by making certificate server directly receive the request of rolling off the production line of self terminal, and connect according to this network that rolls off the production line request indication AC disconnected end, receive from AC to terminal stop accounting request after, certificate server can confirm that terminal rolls off the production line, should stop the charging to terminal, stop accounting request according to this and stop charging to terminal this moment, can make certificate server confirm that more exactly terminal rolls off the production line, thereby more exactly terminal is carried out charging, can solve in correlation technique network equipment and can't confirm exactly whether terminal rolls off the production line, and so and problem of generation additional charges.
The embodiment of the present invention provides a kind of certificate server further.
Fig. 7 shows the structural representation according to the certificate server of the embodiment of the present invention, and as shown in Figure 7, this certificate server comprises: the first receiving element 71, the indicating member 72 that rolls off the production line, the second receiving element 73, charging stop unit 74.
The first receiving element 71 is used for receiving the request of rolling off the production line of self terminal.
The indicating member 72 that rolls off the production line is connected to the first receiving element 71, is used for the rolling off the production line request that receives according to the first receiving element 71, sends to AC the indication of rolling off the production line, so that AC is according to the network connection of this this terminal of indication disconnection that rolls off the production line;
The second receiving element 73, the charging to terminal that is used for receiving from AC stops request;
Charging stops unit 74, is connected to the second receiving element 73, is used for stopping request according to the charging that the second receiving element 73 receives, and terminal is stopped charging.
A kind of preferred mode, the first receiving element 71 can be a kind of interface of application network layer protocol, also can be hardware module, in order to the request of rolling off the production line that receives self terminal to send with http protocol, the certificate server of terminal and network side just can direct communication like this, and confirming more accurately for certificate server that the down status of terminal provides may.
Fig. 8 shows the workflow of certificate server equipment shown in Figure 7, and as shown in Figure 8, this flow process comprises following processing procedure:
Step 81, the first receiving element 71 receive the request of rolling off the production line of self terminal;
Step 82, according to this request of rolling off the production line, the indicating member 72 that rolls off the production line sends to AC the indication of rolling off the production line, so that AC is according to network connection of this indication disconnected end that rolls off the production line;
A kind of preferred mode, the first receiving element 71 receives the request of rolling off the production line that terminal sends in the HTTP mode, carry the IMSI of the terminal of encryption in this request of rolling off the production line, the IMSI that encrypts in this request of rolling off the production line of 72 pairs of indicating members that rolls off the production line is decrypted, according to the IMSI after deciphering, send the indication of rolling off the production line to terminal corresponding to this IMSI to AC;
The charging to terminal that step 83, the second receiving element 73 receive from AC stops request;
Step 84, charging stop this charging that unit 74 receives according to the second receiving element 73 and stop request, terminal is stopped charging.
Than correlation technique, the certificate server equipment that the embodiment of the present invention provides provides the interface of direct communication for terminal, make terminal can initiate normally to roll off the production line request that operation, network equipment can more properly obtain user offline, connect, can alleviate the burden of access device by the network of indication AC disconnected end, the charging of feeding back by monitoring AC stops asking, can stopping in time the charging to terminal.
The embodiment of the present invention also provides a kind of access controller.
Fig. 9 shows the structural representation according to the AC of the embodiment of the present invention, and as shown in Figure 9, this AC comprises:
Receiving element 91 is used for receiving the indication of rolling off the production line to terminal from certificate server;
Network operation unit 92, for the indication of rolling off the production line that receives according to receiving element 91, the network of disconnected end connects;
Transmitting element 93 is used for sending to certificate server the request that terminal is stopped charging.
Figure 10 shows the workflow diagram of AC shown in Figure 9, and as shown in figure 10, this flow process comprises following processing procedure.
Step 1001 receives the indication of rolling off the production line to terminal from certificate server;
Step 1002, according to the indication of rolling off the production line that receives, the network of disconnected end connects;
Step 1003 sends the request that this terminal is stopped charging to certificate server.
Than correlation technique, the AC that the embodiment of the present invention provides connects according to the network of indicating disconnected end from rolling off the production line of certificate server, can alleviate the burden of AC equipment.
The technical scheme that the embodiment of the present invention provides can be applied to the WPA/WPA2 business-class security pattern authentication modes such as EAP-SIM, EAP-AKA, PEAP, the certificate server that the embodiment of the present invention provides can be aaa server or radius server, but is not limited to aforesaid way.
The concrete situation about using of the embodiment of the present invention below is described.
Figure 11 shows the scene of concrete application of the treatment system of the user offline that the embodiment of the present invention provides, client 111 is by AC equipment 112 accesses network resources in this scene, AC equipment 112 carries out signaling with aaa server 113 and communicates by letter, aaa server 113 comprises a lower line interface 1131, and this interface is set to force lower line interface, is used for receiving the request of rolling off the production line from client 111.
Figure 12 shows the workflow of system shown in Figure 11, and as shown in the figure, this flow process comprises following processing procedure:
Step 1201, client 111 by EAP-SIM/AKA or PEAP authentication mode, realize that WLAN uses online;
Step 1202, client 111 is by the lower line interface 1131 of http url communication mode visited aaa server 113 sides, carry user's IMSI information in this http url with cipher mode, for example, client 111 sends http://sh.10086.logoff to interface 1131;
After step 1203, the lower line interface 1131 of aaa server 113 sides received the request of rolling off the production line, notice aaa server 113 (this server can also be specifically 3GPPAAA Server/RADIUS Verification System server) user will be rolled off the production line;
Step 1204, aaa server 113 decrypted user IMSI information;
Step 1205, aaa server 113 sends to AC equipment 112 indication of rolling off the production line, and requires AC equipment 112 to stop providing this IMSI user's data to connect, and namely requires immediately client 111 to be carried out to force to roll off the production line operation;
After step 1206, AC equipment 112 received the indication of rolling off the production line, the network that disconnects client 111 connected;
Step 1207, AC equipment 112 send charging to aaa server 113 and stop request;
Step 1208, aaa server 113 receive charging stop the request after, stop the charging to client 111;
Step 1209, aaa server 113 send charging to AC equipment 112 and stop response.
in sum, in the technical scheme that the embodiment of the present invention provides, directly send to certificate server by the terminal request of rolling off the production line, certificate server is according to this request of rolling off the production line, the network of indication access AC disconnected end connects, and disconnect the network connection of this terminal at AC after, the request that this terminal is stopped charging that sends according to AC stops the charging to terminal, make network equipment can confirm timely and accurately that terminal rolls off the production line, and after connecting, the network of disconnected end stops charging to terminal, thereby can solve in correlation technique terminal and can't initiate the operation of normally rolling off the production line, cause system can't confirm exactly whether terminal rolls off the production line, therefore and produce the problem of additional charges, and then can improve client's business experience.
Than prior art, the certificate server that the embodiment of the present invention provides provides the interface of direct communication for terminal, make terminal can initiate to roll off the production line normally request that operation, network equipment can more properly obtain user offline, connect, can alleviate the burden of access device by the network of indication AC disconnected end, the charging of feeding back by monitoring AC stops asking, can stopping in time the charging to terminal.
Obviously, those skilled in the art can carry out various changes and modification and not break away from the spirit and scope of the present invention the present invention.Like this, if within of the present invention these are revised and modification belongs to the scope of claim of the present invention and equivalent technologies thereof, the present invention also is intended to comprise these changes and modification interior.

Claims (9)

1. the treatment system of a user offline, is characterized in that, comprises access controller AC, certificate server;
Described certificate server is used for after the request of rolling off the production line that receives self terminal, to the roll off the production line indication of described AC transmission to this terminal, connects with the network of indicating described AC to disconnect this terminal; And receive from described AC described terminal is stopped the request of charging after, stop described terminal charging;
Described AC is used for after the indication of rolling off the production line to described terminal that receives from described certificate server, and the network that disconnects described terminal connects, and sends to described certificate server the request that this terminal is stopped charging.
2. system according to claim 1, it is characterized in that, described certificate server, international mobile subscriber identification code IMSI after the concrete encryption that is used for the request of rolling off the production line that comes self terminal that receives is carried is decrypted, and according to the IMSI after deciphering, to described the roll off the production line indication of described AC transmission to terminal corresponding to this IMSI.
3. system according to claim 1, is characterized in that, described certificate server, the concrete request of rolling off the production line that is used for the mode receiving terminal transmission of HTML (Hypertext Markup Language).
4. the processing method of a user offline, is characterized in that, comprising:
Receive the request of rolling off the production line of self terminal;
According to the described request of rolling off the production line, to the roll off the production line indication of AC transmission to described terminal, connect with the network of indicating described AC to disconnect described terminal;
Reception is from the accounting request that stops to described terminal of described AC;
According to the described accounting request that stops, described terminal is stopped charging.
5. method according to claim 4, is characterized in that, according to the described request of rolling off the production line, sends to AC the indication of rolling off the production line, and comprising:
International mobile subscriber identification code after the encryption of carrying in the described request of rolling off the production line is decrypted;
According to the IMSI after deciphering, to described the roll off the production line indication of described AC transmission to terminal corresponding to this IMSI.
6. a certificate server, is characterized in that, comprising:
The first receiving element is used for receiving the request of rolling off the production line of self terminal;
The indicating member that rolls off the production line is used for the rolling off the production line request that receives according to described the first receiving element, sends to access controller AC the indication of rolling off the production line, to indicate the network connection of the described terminal of described AC disconnection;
The second receiving element, the charging to described terminal that is used for receiving from described AC stops request;
Charging stops the unit, is used for stopping request according to the described charging that described the second receiving element receives, and described terminal is stopped charging.
7. certificate server according to claim 6, it is characterized in that, the described indicating member that rolls off the production line, IMSI after the concrete encryption that is used for the described request of rolling off the production line that described the first receiving element receives is carried is decrypted, and according to the IMSI after deciphering, to the roll off the production line indication of described AC transmission to terminal corresponding to this IMSI.
8. the processing method of a user offline, is characterized in that, comprising:
Reception is from the indication of rolling off the production line to terminal of certificate server;
According to the described indication of rolling off the production line, the network that disconnects described terminal connects;
Send the request that this terminal is stopped charging to described certificate server.
9. an access controller, is characterized in that, comprising:
Receiving element is used for receiving the indication of rolling off the production line to terminal from certificate server;
The network operation unit, for the described indication of rolling off the production line that receives according to described receiving element, the network that disconnects described terminal connects;
Transmitting element is used for sending to described certificate server the request that described terminal is stopped charging.
CN2011103973292A 2011-12-02 2011-12-02 Processing system, processing method, identification server and access controller for user logoff Pending CN103139750A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN2011103973292A CN103139750A (en) 2011-12-02 2011-12-02 Processing system, processing method, identification server and access controller for user logoff

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN2011103973292A CN103139750A (en) 2011-12-02 2011-12-02 Processing system, processing method, identification server and access controller for user logoff

Publications (1)

Publication Number Publication Date
CN103139750A true CN103139750A (en) 2013-06-05

Family

ID=48498943

Family Applications (1)

Application Number Title Priority Date Filing Date
CN2011103973292A Pending CN103139750A (en) 2011-12-02 2011-12-02 Processing system, processing method, identification server and access controller for user logoff

Country Status (1)

Country Link
CN (1) CN103139750A (en)

Cited By (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104703186A (en) * 2013-12-06 2015-06-10 中国移动通信集团江苏有限公司 Method, equipment and system for preventing account numbers from being embezzled
WO2016023159A1 (en) * 2014-08-11 2016-02-18 华为技术有限公司 Device and method for data service implementation
CN107332649A (en) * 2017-06-28 2017-11-07 迈普通信技术股份有限公司 802.1X clients inserting method and 802.1X systems
CN108289299A (en) * 2017-05-31 2018-07-17 新华三技术有限公司 The method and apparatus for preventing user offline
CN110505181A (en) * 2018-05-17 2019-11-26 优酷网络技术(北京)有限公司 Client recognition methods and device
CN111225376A (en) * 2018-11-26 2020-06-02 中国电信股份有限公司 Authentication method, system, wireless access point AP and computer readable storage medium
CN111915275A (en) * 2020-07-31 2020-11-10 上海燕汐软件信息科技有限公司 Application operation process management method, device and system

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101360021A (en) * 2008-10-14 2009-02-04 中国电信股份有限公司 Monitoring method and system for wireless wideband user status
CN101631312A (en) * 2009-08-19 2010-01-20 北京傲天动联技术有限公司 Portal authentication method based on thin AP framework
CN101959186A (en) * 2009-07-20 2011-01-26 中国移动通信集团山东有限公司 Log-off processing method, system and device for WLAN (Wireless Local Area Network) user
CN102196434A (en) * 2010-03-10 2011-09-21 中国移动通信集团公司 Authentication method and system for wireless local area network terminal

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101360021A (en) * 2008-10-14 2009-02-04 中国电信股份有限公司 Monitoring method and system for wireless wideband user status
CN101959186A (en) * 2009-07-20 2011-01-26 中国移动通信集团山东有限公司 Log-off processing method, system and device for WLAN (Wireless Local Area Network) user
CN101631312A (en) * 2009-08-19 2010-01-20 北京傲天动联技术有限公司 Portal authentication method based on thin AP framework
CN102196434A (en) * 2010-03-10 2011-09-21 中国移动通信集团公司 Authentication method and system for wireless local area network terminal

Cited By (14)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104703186A (en) * 2013-12-06 2015-06-10 中国移动通信集团江苏有限公司 Method, equipment and system for preventing account numbers from being embezzled
CN104703186B (en) * 2013-12-06 2018-05-22 中国移动通信集团江苏有限公司 A kind of method, apparatus and system for preventing that account is stolen
US10798251B2 (en) 2014-08-11 2020-10-06 Huawei Technologies Co., Ltd. Device and method for implementing data service
WO2016023159A1 (en) * 2014-08-11 2016-02-18 华为技术有限公司 Device and method for data service implementation
CN105519150A (en) * 2014-08-11 2016-04-20 华为技术有限公司 Device and method for data service implementation
US10225412B2 (en) 2014-08-11 2019-03-05 Huawei Technologies Co., Ltd. Device and method for implementing data service
CN105519150B (en) * 2014-08-11 2019-05-03 华为技术有限公司 A kind of data service realization device and method
CN108289299A (en) * 2017-05-31 2018-07-17 新华三技术有限公司 The method and apparatus for preventing user offline
US11166161B2 (en) 2017-05-31 2021-11-02 New H3C Technologies Co., Ltd. Controlling user access to wireless network
CN107332649A (en) * 2017-06-28 2017-11-07 迈普通信技术股份有限公司 802.1X clients inserting method and 802.1X systems
CN107332649B (en) * 2017-06-28 2020-05-08 迈普通信技术股份有限公司 Off-line method of 802.1X client and 802.1X system
CN110505181A (en) * 2018-05-17 2019-11-26 优酷网络技术(北京)有限公司 Client recognition methods and device
CN111225376A (en) * 2018-11-26 2020-06-02 中国电信股份有限公司 Authentication method, system, wireless access point AP and computer readable storage medium
CN111915275A (en) * 2020-07-31 2020-11-10 上海燕汐软件信息科技有限公司 Application operation process management method, device and system

Similar Documents

Publication Publication Date Title
KR102450419B1 (en) Anti-steering detection method and system for roaming activity in wireless communication network
EP3408988B1 (en) Method and apparatus for network access
EP2432265B1 (en) Method and apparatus for sending a key on a wireless local area network
US10003965B2 (en) Subscriber profile transfer method, subscriber profile transfer system, and user equipment
AU2005236981B2 (en) Improved subscriber authentication for unlicensed mobile access signaling
EP2460371B1 (en) Method and apparatus for creating security context and managing communication in mobile communication network
CN103139750A (en) Processing system, processing method, identification server and access controller for user logoff
CN105050081A (en) Method, device and system for connecting network access device to wireless network access point
US10749688B2 (en) System and method for decrypting communication exchanged on a wireless local area network
CN102318386A (en) Service-based authentication to a network
CN102223634A (en) Method and device for controlling mode of accessing user terminal into Internet
CN103874065A (en) Method and device for judging user position abnormity
CN108781110B (en) System and method for relaying data over a communication network
US20150208237A1 (en) Method of accessing a wlan access point
CN102143492B (en) Method for establishing virtual private network (VPN) connection, mobile terminal and server
CN107659935B (en) Authentication method, authentication server, network management system and authentication system
CN111615837B (en) Data transmission method, related equipment and system
CN102547698B (en) Authentication system, method and intermediate authentication platform
CN105873035A (en) Safe AP (access point) information processing method
KR101431214B1 (en) Mutual authentication method and system with network in machine type communication, key distribution method and system, and uicc and device pair authentication method and system in machine type communication
US10492056B2 (en) Enhanced mobile subscriber privacy in telecommunications networks
KR101434750B1 (en) Geography-based pre-authentication for wlan data offloading in umts-wlan networks
CN110062427B (en) Trusted service management method and device supporting wireless network switching and electronic equipment
JP4759621B2 (en) Mobile communication system, subscriber authentication method, subscriber authentication module, mobile device system, authentication error detection method, authentication vector generation device, and authentication vector generation method
KR102467166B1 (en) Authentication method for accessing a companion device when disconnecting from a subscriber device

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C12 Rejection of a patent application after its publication
RJ01 Rejection of invention patent application after publication

Application publication date: 20130605