CN103560884B - The cancellation method of subscriber identity information, system, certificate server and client - Google Patents

The cancellation method of subscriber identity information, system, certificate server and client Download PDF

Info

Publication number
CN103560884B
CN103560884B CN201310522513.4A CN201310522513A CN103560884B CN 103560884 B CN103560884 B CN 103560884B CN 201310522513 A CN201310522513 A CN 201310522513A CN 103560884 B CN103560884 B CN 103560884B
Authority
CN
China
Prior art keywords
identity information
user
application
registration request
cancellation
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Expired - Fee Related
Application number
CN201310522513.4A
Other languages
Chinese (zh)
Other versions
CN103560884A (en
Inventor
虞钢
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
SHANGHAI PUDONG LOGISTICS CLOUD COMPUTING Co Ltd
Original Assignee
SHANGHAI PUDONG LOGISTICS CLOUD COMPUTING Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by SHANGHAI PUDONG LOGISTICS CLOUD COMPUTING Co Ltd filed Critical SHANGHAI PUDONG LOGISTICS CLOUD COMPUTING Co Ltd
Priority to CN201310522513.4A priority Critical patent/CN103560884B/en
Publication of CN103560884A publication Critical patent/CN103560884A/en
Application granted granted Critical
Publication of CN103560884B publication Critical patent/CN103560884B/en
Expired - Fee Related legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Abstract

The cancellation method of a kind of subscriber identity information and system.Described method includes: receive the unified de-registration request of user;According to described unified de-registration request, obtain the cancellation address of described user listed at least two application;Described cancellation address is sent to client, de-registration request is sent to the application server corresponding with described cancellation address respectively by client, and nullified first user identity information and the second subscriber identity information by described application server according to received de-registration request, the identity information of the described user that described first user identity information is stored by described application server, the identity information of the described user corresponding with described first user identity information that described second subscriber identity information is stored by described client.Apply described method, user can be improved and access the speed of application, alleviate the burden of certificate server, and there is not technical restriction.

Description

The cancellation method of subscriber identity information, system, certificate server and client
Technical field
The present invention relates to communication technical field, be specifically related to the cancellation method of a kind of subscriber identity information, be System, certificate server and client.
Background technology
In the application of the Internet, the use of user and the management of website, occur in that single-point for convenience Login techniques.So-called single-sign-on, i.e. sets up the certificate server independent of each website, and by one Fixed mechanism sets up certain trusting relationship between each website, after user's any one website log wherein, All need not when visiting again other websites log on.
But, after user uses the mode of single-sign-on to log on to some website, but cannot be from logging in Website in unified logging off users identity information, any one website logging off users identity information the most wherein After, it is impossible to the identity information of described user is nullified the most accordingly in other websites.
For the problems referred to above, the solution taked in prior art has following two: the first is to connect When receiving the unified de-registration request of user, only in certificate server, the identity information of described user is nullified; The second is to make each website all use same User Token, and described User Token is saved in client In the Cookie of end, after receiving the unified de-registration request of user, from the Cookie of client, obtain institute State User Token and described User Token is unregistered.Wherein said Cookie is generally used for storing user's The fileinfo such as identity, password and the webpage that browses, when user is at client-access some websites, Application server corresponding to described website can confirm user's according to the fileinfo being stored in Cookie Identity information.
Wherein, the first solution is when realizing, owing to only having nullified user's body on certificate server Part information so that when user accesses each website the later stage, the application server of each website remain a need for first to After certificate server asks the identity information of described user, just can carry out other operations, therefore, not only drop Low user accesses the speed of described website, and increases the burden of certificate server.
The second solution is when realizing, although the user that can will obtain from the Cookie of client Token is nullified, thus is unregistered the identity information of described user, but owing to using same user Each website of token must be positioned at same territory, causes described solution when realizing, can only unify Nullifying the website being positioned at same territory, the User Token of the website being positioned at different territories then cannot unify note , therefore there is bigger technical limitations, it is impossible to preferably meet the demand of user in pin.
Summary of the invention
The problem that the embodiment of the present invention solves is as how simple, quick way realizes the system of user identity One nullifies, preferably to meet the demand of user.
For solving the problems referred to above, the embodiment of the present invention provides the cancellation method of a kind of subscriber identity information, institute The method of stating includes:
Receive the unified de-registration request of user;
According to described unified de-registration request, obtain the cancellation ground of described user listed at least two application Location;
Described cancellation address is sent to client, by client respectively to corresponding with described cancellation address Application server sends de-registration request, and by described application server according to received de-registration request note Pin first user identity information and the second subscriber identity information, described first user identity information is described answering With the identity information of the described user that server is stored, described second subscriber identity information is described client The identity information of the described user corresponding with described first user identity information that end is stored.
Alternatively, described according to described unified de-registration request, obtain the listed at least two of described user The cancellation address of application, including:
According to described unified de-registration request, obtain the application identities of described listed at least two application;
According to described application identities, obtain the cancellation address of described application.
Alternatively, described application identities is stored in the Cookie of client.
Alternatively, described method also includes: monitors described application server and nullifies according to described de-registration request Time required for the identity of described user, and the identity institute of described user is nullified at described application server When the time needed exceedes the default time, interrupt the described application server note to the identity of described user Pin.
Embodiments of the invention additionally provide the system that a kind of subscriber identity information is nullified, and described system includes Certificate server and client, wherein:
Described certificate server is for receiving the unified de-registration request of user, according to described unified de-registration request Obtain the cancellation address of described user listed at least two application, and acquired cancellation address is sent out Deliver to client;
Described client, for receiving the cancellation address that described certificate server sends, is recognized described in receiving Behind the cancellation address that card server sends, respectively to corresponding with the cancellation address that described certificate server sends Application server send de-registration request, by described application server according to received de-registration request note Pin first user identity information and the second subscriber identity information, described first user identity information is described answering With the identity information of the described user that server is stored, described second subscriber identity information is described client The identity information of the described user corresponding with described first user identity information that end is stored.
Alternatively, described certificate server, for according to described unified de-registration request, logs in described in acquisition At least two application application identities, according to described application identities, obtain the cancellation address of described application.
Alternatively, described certificate server is additionally operable to be stored in described application identities the Cookie of client In.
Alternatively, described client is additionally operable to monitor described application server and nullifies according to described de-registration request Time required for the identity information of described user, nullify the identity of described user at described application server When time required for information exceedes the default time, interrupt the described application server body to described user The cancellation of part information.
Embodiments of the invention additionally provide a kind of certificate server, and described certificate server includes:
Receive unit, for receiving the unified de-registration request of user;
Acquiring unit, for obtaining the listed at least two of described user according to described unified de-registration request The cancellation address of application;
Transmitting element, for sending acquired cancellation address to client so that client respectively to The application server corresponding with described cancellation address sends de-registration request, and by described application server according to Received de-registration request cancellation first user identity information and the second subscriber identity information, described first The identity information of the described user that subscriber identity information is stored by described application server, described second uses The described user corresponding with described first user identity information that family identity information is stored by described client Identity information.
Alternatively, described acquiring unit includes:
First obtains subelement, for according to described unified de-registration request, obtain described listed at least The application identities of two application;
Second obtains subelement, for the application identities according to described application, obtains the cancellation of described application Address.
Embodiments of the invention additionally provide a kind of client, and described client includes:
Receive unit, for receiving the note of user's listed at least two application that certificate server sends Pin address;
Transmitting element, for receive described certificate server send cancellation address after, respectively to What described certificate server sent nullifies the application server transmission de-registration request that address is corresponding, described answer First user identity information and the second user identity letter is nullified according to received de-registration request with server Breath, the identity information of the described user that described first user identity information is stored by described application server, It is corresponding with described first user identity information that described second subscriber identity information is stored by described client The identity information of described user.
Alternatively, described client also includes: monitoring unit and interrupt location, wherein:
Described monitoring unit is used for monitoring described application server and nullifies described user according to described de-registration request Identity required for time;
Described interrupt location is used for the time required for the identity of the described application server described user of cancellation When exceeding the default time, interrupt the cancellation to the identity of described user of the described application server.
Compared with prior art, the technical scheme of the embodiment of the present invention has the advantage that
By obtaining the cancellation address of the listed application of user, and described cancellation address is sent to client End, and then sent de-registration request, when described by described client to the application server that described application is corresponding When the information of user is unregistered by application server, nullified the user identity being stored in client simultaneously Information so that user is when the later stage accesses described application again, and the application server of described application need not be again Subsequent operation just can be carried out, such that it is able to improve user after the identity information of certificate server request user Access the speed of described application, alleviate the burden of certificate server.Further, it is possible not only to due to client Each application server to same territory sends de-registration request, it is also possible to each application clothes of not same area Business device sends de-registration request, say, that use client to send de-registration request to each application server The not restriction of existence domain, such that it is able to preferably meet the demand of user.
Accompanying drawing explanation
Fig. 1 is the flow chart of the cancellation method of the subscriber identity information in the embodiment of the present invention;
Fig. 2 is the Signalling exchange figure of the user log off method in the embodiment of the present invention;
Fig. 3 is the structural representation of certificate server in the embodiment of the present invention;
Fig. 4 is the structural representation of client in the embodiment of the present invention.
Detailed description of the invention
In the solution of existing unified logging off users identity information, or can only be by certificate server Subscriber identity information nullify;Can only unify to nullify the user identity letter of the website being positioned at same territory Breath.Wherein, the former makes user access in the later stage and has nullified user identity letter on certificate server During each application ceased, the application server of described application also needs to first use to the request of described certificate server Just can carry out other operations after the identity information of family, therefore cause user to visit again the speed of described application the later stage Reducing, the burden of described certificate server increases;The latter can not unify to nullify the user being positioned at different territories , there is bigger technical limitations in identity information.
For the problems referred to above, The embodiment provides the cancellation method of a kind of subscriber identity information, Described method is by obtaining the cancellation address of the listed application of user, and is sent to described cancellation address Client, is sent de-registration request by client to the application server of described application, such that it is able to by user The subscriber identity information of listed application is unified to be nullified.Subscriber identity information described in the present embodiment Cancellation method, when the identity information of user is unregistered by described application server, can will deposit simultaneously Store up the identity client and the user corresponding with the subscriber identity information that described application server is stored to believe Breath is nullified, and facilitates user's later stage access described application and alleviate the burden of described certificate server.And De-registration request, the most not restriction of existence domain is sent to described application server by client.
Understandable, below in conjunction with the accompanying drawings for enabling the above-mentioned purpose of the present invention, feature and advantage to become apparent from The specific embodiment of the present invention is described in detail.
Embodiment one
Seeing Fig. 1, present embodiments provide the cancellation method of a kind of subscriber identity information, described method is permissible Comprise the steps:
Step 110: receive the unified de-registration request of user;
In being embodied as, the executive agent of the cancellation method of described subscriber identity information can be certification clothes Business device itself.
Further, the unified de-registration request of user can be that user is sent by client, it is also possible to is to use Family is not directly transmitted by other intermediate equipments.When user sends described unified cancellation by client During request, the mode clicking on " cancellation " button on the page of described application can be used to send described system One de-registration request, it would however also be possible to employ other modes send described unified de-registration request.When user directly transmits During described unified de-registration request, can be by using the unified behaviour nullified of input on described certificate server Make to send described unified de-registration request.
It should be noted that in the present embodiment, browser also serves as a kind of way of realization of client, use Each application server of browser access and certificate server can also be passed through in family.
Step 120: according to described unified de-registration request, obtains the application of described user listed at least two Cancellation address;
In being embodied as, the listed application of user can be carried out record by described certificate server.Right Listed application carries out record and can occur after user accesses described application, it is also possible to be to receive After the unified de-registration request of user.After getting the listed application of user, certification is taken simultaneously The subscriber identity information that on business device, described listed application is corresponding is unregistered.
It should be noted that the cancellation address of each application can be stored in advance on certificate server.
In being embodied as, step 120 can be achieved by the steps of:
According to described unified de-registration request, obtain the application identities of described listed at least two application;
According to described application identities, obtain the cancellation address of described application.
It is to say, the cancellation ground of described application can be gone to obtain by the application identities of listed application Location.Wherein, described application identities is for identifying each application described, and each application has one uniquely Application identities.Described application identities can be with the form being numeral, it is also possible to be character or other code Form, as long as can unique corresponding described application.Described application identities can be by certificate server It is that described application generates in advance, and the application identities generated is stored in the Cookie of client; Can also be by certificate server after receiving unified de-registration request, according to the listed application of user, Generate unique mark for described application, similarly, the described application identities generated is stored in client In the Cookie of end.
In the present embodiment, described application identities is also the most corresponding with the address of nullifying of described application, can In advance the cancellation address of described application identities with described application to be configured, receiving unified cancellation After request, according to any one in the cancellation address of application identities or described application, just can directly obtain Other one.Can also find described according to listed application after the request receiving unified cancellation Application identities, finds the cancellation address of described application further according to described listed application.
Step 130: described cancellation address is sent to client, client nullify ground to described respectively The application server transmission de-registration request that location is corresponding, and by described application server according to received note First user identity information and the second subscriber identity information, described first user identity information are nullified in pin request By the identity information of the described user that described application server is stored, described second subscriber identity information is The identity information of the described user corresponding with described first user identity information that described client is stored.
In being embodied as, described cancellation address is being sent to client, by client to described Nullify application server corresponding to address and send de-registration request, now, owing to user logs in certain in client During individual application, the temporary files such as the identity information of user can be stored in visitor by the application server of described application In the Cookie of family end, so, the de-registration request of client transmission is received also when described application server When performing to nullify operation, first user identity information and the second subscriber identity information are unregistered simultaneously. Therefore, the user identity after step 130 and step 120, in client and certificate server Information is all nullified, i.e. client is always consistent with the subscriber identity information on certificate server.
By said method, when user accesses written-off application again, described application server can be straight Connect and the login page of described application is fed back to client, and need not be again to certificate server request user's Again the login page of described application is fed back to client after identity information, therefore alleviate certificate server Burden, improve user and access the speed of described application.
In being embodied as, the cancellation method of described subscriber identity information can also include: monitoring is described should With server according to described de-registration request nullify described user identity required for time, and described should When time nullify the identity of described user with server required for exceedes the default time, interrupt described answering With the server cancellation to the identity of described user.
It is to say, after application server receives the de-registration request that client sends, to user identity When information is unregistered, client can monitor described application server and perform what subscriber identity information was nullified Time.When the time that described execution subscriber identity information is nullified exceedes the default time, client is permissible By sending the instruction interrupting performing to nullify to described application server, control described application server no longer Continue executing with subscriber identity information log off procedure.So, user after sending unified de-registration request, To close described application, described client continues to monitor the log off procedure of subscriber identity information and enter The corresponding subsequent operation of row, and described in waiting that without user the process of unified cancellation terminates could to close always Application, shortens the waiting time of user.
Further, after described application server performs the log off procedure failure of subscriber identity information, other Application server can also continue to perform the log off procedure of subscriber identity information, such that it is able to avoid due to one Individual application server performs the log off procedure of subscriber identity information and unsuccessfully causes all application servers to perform use The situation that the log off procedure of family identity information is failed occurs.
In being embodied as, the cancellation method of described subscriber identity information can also include: nullifies unified After the identity information of user, jump to the login page of described application from current page.So, when After unified logging off users identity information, owing to having jumped to the login page of described application, the most permissible Clearer, the unified process nullified described in user that clearly conveys to is over, such that it is able to further Improve Consumer's Experience.
In order to make those skilled in the art be more fully understood that and realize the present invention, below to above-mentioned user identity System and device corresponding to the cancellation method of information are described in detail.
Embodiment two
Present embodiments providing the system that a kind of subscriber identity information is nullified, described system can include certification Server and client side, wherein:
Described certificate server is for receiving the unified de-registration request of user, according to described unified de-registration request Obtain the cancellation address of described user listed at least two application, and acquired cancellation address is sent out Deliver to client;
Described client, for receiving the cancellation address that described certificate server sends, is recognized described in receiving Behind the cancellation address that card server sends, respectively to corresponding with the cancellation address that described certificate server sends Application server send de-registration request, by described application server according to received de-registration request note Pin first user identity information and the second subscriber identity information, described first user identity information is described answering With the identity information of the described user that server is stored, described second subscriber identity information is described client The identity information of the described user corresponding with described first user identity information that end is stored.
Below in conjunction with Fig. 2 application server multiple to user's unified login and many after described login On individual application server, unified for the identity information of the user process nullified is described in detail:
As described in Figure 2, the system that described subscriber identity information is nullified includes certificate server 210 and visitor Family end 220.Client 220 can access multiple application server, including: application server 230, should With server 240 and application server 250, and by certificate server 210, user is carried out unified certification Nullify with unified.
Wherein, the process that certificate server 210 carries out unified certification to user may include steps of:
Step S201: when user accesses certain application by client 220, need to corresponding application Server 230 sends logging request;
Step S202: after application server 230 receives the logging request that user sends, to client 220 send the first redirection message, and described first redirects message includes the login ground of certificate server 210 Location;
Step S203: after client 220 receives the server address that application server 230 sends, to Corresponding certificate server 210 sends certification request, and described certification request includes the Unified Identity of user Mark;
Step S204: it is the most right that the certification request that client is sent by certificate server 210 carries out authentication The Unified Identity mark of the user in described certification request carries out authentication;
Step S205: certificate server 210 sends second according to the result of checking to client 220 and resets To message, described second redirects message includes address and the certificate server 210 of application server 230 Authentication result;
Step S206: client, according to the second redirection message received, sends to application server and visits Ask that request, described access request include the authentication result of described certificate server;
Step S207: application server 230 is according to the access request received, according to described access request In authentication result checking user identity, when described authentication result represents that described user identity is legal, Allow user to access application server 230, when described authentication result represents that described user identity is illegal, refuse User absolutely accesses application server 230;
Step S208: application server 230 sends response message, described corresponding message to client 220 Include that user accesses the information of application server success or failure;
Step S209~step S211 are that client 220 sends access request to application server 240, with And the process that described access request is processed by application server 240, with step S206~step S208 Similar, here is omitted.
Step S212~step S214 are that client 220 sends de-registration request to application server 250, with And the process that described de-registration request is processed by application server 250, with step S206~step S208 Similar, here is omitted.
User is stepped at multiple servers such as application server 230,240 and 250 by abovementioned steps After record, can unify to nullify to the identity information of user by certificate server 210, detailed process is such as Under:
Step S215: client 220 sends the unified request nullified to certificate server 210, for asking Seek the unified user identity letter nullifying described user each application server listed of certificate server 210 Breath;
In the present embodiment, to ask certificate server 210 to nullify application server 230, application server 240 and the subscriber identity information of application server 250 illustrate.
Step S216: after certificate server 210 receives the unified de-registration request of user, by authentication service Subscriber identity information on device 210 is unregistered, and obtains application server 230, application server 240 And the cancellation address of application server 250;
Step S217: certificate server 210 sends the unified message exited, described system to client 220 One message exited includes application server 230, application server 240 and application server 250 Nullify address;
Step S218: after client 220 receives the unified exit message that certificate server 210 sends, De-registration request is sent to application server 230;
Step S219: after application server 230 receives the de-registration request that client sends, uses first Family identity information and the second subscriber identity information are unregistered, and wherein said first user identity information is The identity information of the described user that described application server 230 is stored, described second subscriber identity information The identity of the described user corresponding with described first user identity information stored by described client 220 Information;
Step S220: application server 230 is after being unregistered the identity information of user, to client 220 send response message, and described response message includes that application server 230 logging off users identity information becomes Merit or the information of failure;
Step S221~step S223 are that client 220 sends de-registration request to application server 240, with And the process that described de-registration request is processed by described application server 240, with step S218~S220 Similar, here is omitted.
Step S224~step S226 are that client 220 sends de-registration request to application server 250, with And the process that described de-registration request is processed by described application server 250, it is similar to S218~S220, Here is omitted.
It should be noted that in being embodied as, client 220 can be simultaneously to corresponding application service Device sends de-registration request, it is also possible to send successively or several times to corresponding application server.
In being embodied as, described certificate server 210 is additionally operable to, according to described unified de-registration request, obtain Take the application identities of described listed at least two application, further according to described application identities, obtain described The cancellation address of application, and described application identities is stored in the Cookie of client.
In concrete application process, described client 220 can be additionally used in monitoring described application server according to Described de-registration request nullifies the time required for the identity information of described user, notes at described application server When time required for selling the identity information of described user exceedes the default time, by taking to described application Business device sends the modes such as the instruction of interruption cancellation, interrupts described application server and believes the identity of described user The cancellation of breath.
Embodiment three
Seeing Fig. 3, present embodiments provide a kind of certificate server, described certificate server includes:
Receive unit 310, for receiving the unified de-registration request of user;
Acquiring unit 320, for obtaining described user listed at least two according to described unified de-registration request The cancellation address of individual application;
Transmitting element 330, for acquired cancellation address being sent to client, by client respectively to The application server corresponding with described cancellation address sends de-registration request, and by described application server according to Received de-registration request cancellation first user identity information and the second subscriber identity information, described first The identity information of the described user that subscriber identity information is stored by described application server, described second uses The described user corresponding with described first user identity information that family identity information is stored by described client Identity information.
In being embodied as, described acquiring unit 320 can also include:
First obtains subelement 3202, for according to described unified de-registration request, obtains described listed The application identities of at least two application;
Second obtains subelement 3204, for the application identities according to described application, obtains described application Nullify address.
Seeing Fig. 4, the present embodiment additionally provides a kind of client 40, and described client 40 may include that
Receiving unit 410, the listed at least two of user sent for receiving certificate server is applied Nullify address;
Transmitting element 420, for receive described certificate server send cancellation address after, respectively to Application server corresponding to address of nullifying sent with described certificate server sends de-registration request, by described Application server nullifies first user identity information and the second user identity according to received de-registration request Information, the identity letter of the described user that described first user identity information is stored by described application server Breath, described second subscriber identity information is that stored by described client with described first user identity information The identity information of corresponding described user.
In being embodied as, described client 40 can also include monitoring unit 430 and interrupt location 440, wherein:
Described monitoring unit 430 is used for monitoring described application server and nullifies according to described de-registration request described Time required for the identity of user;
Described interrupt location 440 is used for required for the identity of the described application server described user of cancellation When time exceedes the default time, interrupt the cancellation to the identity of described user of the described application server.
One of ordinary skill in the art will appreciate that all or part of step in the various methods of above-described embodiment Suddenly the program that can be by completes to instruct relevant hardware, and this program can be stored in a computer can Reading in storage medium, storage medium may include that ROM, RAM, disk or CD etc..
Although present disclosure is as above, but the present invention is not limited to this.Any those skilled in the art, Without departing from the spirit and scope of the present invention, all can make various changes or modifications, therefore the guarantor of the present invention The scope of protecting should be as the criterion with claim limited range.

Claims (12)

1. the cancellation method of a subscriber identity information, it is characterised in that including:
Receive the unified de-registration request of user;
According to described unified de-registration request, obtain the cancellation address of described user listed at least two application;
Described cancellation address is sent to client, respectively should to corresponding with described cancellation address by client De-registration request is sent with server, and by described application server according to received de-registration request note Pin first user identity information and the second subscriber identity information, described first user identity information is described The identity information of the described user that application server is stored, described second subscriber identity information is described The identity information of that client is stored and corresponding with described first user identity information described user.
2. the cancellation method of subscriber identity information as claimed in claim 1, it is characterised in that described according to institute State unified de-registration request, obtain the cancellation address of described user listed at least two application, including:
According to described unified de-registration request, obtain the application identities of described listed at least two application;
According to described application identities, obtain the cancellation address of described application.
3. the cancellation method of subscriber identity information as claimed in claim 2, it is characterised in that described application mark Know in the Cookie being stored in client.
4. the cancellation method of subscriber identity information as claimed in claim 1, it is characterised in that also include: institute State application server described in client control and nullify the identity information of described user according to described de-registration request The required time, and required for the identity information that described user nullified by described application server time Between when exceeding the default time, interrupt the cancellation to the identity of described user of the described application server.
5. the system that a subscriber identity information is nullified, it is characterised in that include certificate server and client,
Wherein:
Described certificate server, for receiving the unified de-registration request of user, obtains according to described unified de-registration request Take the cancellation address of described user listed at least two application, and acquired cancellation address is sent out Deliver to client;
Described client, for receiving the cancellation address that described certificate server sends, is receiving described certification Behind the cancellation address that server sends, respectively to corresponding with the cancellation address that described certificate server sends Application server send de-registration request, by described application server according to received de-registration request Nullifying first user identity information and the second subscriber identity information, described first user identity information is institute Stating the identity information of the described user that application server is stored, described second subscriber identity information is institute State the identity information of the described user corresponding with described first user identity information that client is stored.
6. the system that subscriber identity information as claimed in claim 5 is nullified, it is characterised in that described certification takes Business device is for according to described unified de-registration request, obtaining the application of described listed at least two application Mark, according to described application identities, obtains the cancellation address of described application.
7. the system that subscriber identity information as claimed in claim 6 is nullified, it is characterised in that described certification takes Business device is additionally operable to be stored in the Cookie of client described application identities.
8. the system that subscriber identity information as claimed in claim 5 is nullified, it is characterised in that described client It is additionally operable to monitor described application server and nullifies the identity information institute of described user according to described de-registration request The time needed, the time required for the identity information of the described application server described user of cancellation surpasses When spending the time preset, interrupt the cancellation to the identity information of described user of the described application server.
9. a certificate server, it is characterised in that including:
Receive unit, for receiving the unified de-registration request of user;
Acquiring unit, should for obtaining the listed at least two of described user according to described unified de-registration request Cancellation address;
Transmitting element, for sending acquired cancellation address to client so that client respectively to Application server corresponding to described cancellation address sends de-registration request, and by described application server according to Received de-registration request nullifies first user identity information and the second subscriber identity information, and described the The identity information of the described user that one subscriber identity information is stored by described application server, described The institute corresponding with described first user identity information that two subscriber identity informations are stored by described client State the identity information of user.
10. certificate server as claimed in claim 9, it is characterised in that described acquiring unit includes:
First obtains subelement, for according to described unified de-registration request, obtains described listed at least two The application identities of individual application;
Second obtains subelement, for the application identities according to described application, obtains the cancellation ground of described application Location.
11. 1 kinds of clients, it is characterised in that including:
Receive unit, for receiving the cancellation of user's listed at least two application that certificate server sends Address;
Transmitting element, for receive described certificate server send cancellation address after, respectively to institute Application server corresponding to address of nullifying stating certificate server transmission sends de-registration request, described answer First user identity information and the second user identity is nullified according to received de-registration request with server Information, the identity of the described user that described first user identity information is stored by described application server Information, described second subscriber identity information is that stored by described client with described first user identity The identity information of the described user that information is corresponding.
12. clients as claimed in claim 11, it is characterised in that also include: monitoring unit and interruption Unit, wherein:
Described monitoring unit is used for monitoring described application server and nullifies described user according to described de-registration request Identity information required for time;
Described interrupt location is used for required for the identity information of the described application server described user of cancellation When time exceedes the default time, interrupt the cancellation to the identity of described user of the described application server.
CN201310522513.4A 2013-10-28 2013-10-28 The cancellation method of subscriber identity information, system, certificate server and client Expired - Fee Related CN103560884B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201310522513.4A CN103560884B (en) 2013-10-28 2013-10-28 The cancellation method of subscriber identity information, system, certificate server and client

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201310522513.4A CN103560884B (en) 2013-10-28 2013-10-28 The cancellation method of subscriber identity information, system, certificate server and client

Publications (2)

Publication Number Publication Date
CN103560884A CN103560884A (en) 2014-02-05
CN103560884B true CN103560884B (en) 2016-08-17

Family

ID=50015040

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201310522513.4A Expired - Fee Related CN103560884B (en) 2013-10-28 2013-10-28 The cancellation method of subscriber identity information, system, certificate server and client

Country Status (1)

Country Link
CN (1) CN103560884B (en)

Families Citing this family (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104135489A (en) * 2014-08-13 2014-11-05 百度在线网络技术(北京)有限公司 Login authentication method and device
CN105072123B (en) * 2015-08-21 2018-06-19 广州博鳌纵横网络科技有限公司 A kind of single sign-on under cluster environment exits method and system
CN106101293A (en) * 2016-08-30 2016-11-09 北京小米移动软件有限公司 Account management method and device
CN110365680B (en) * 2019-07-16 2022-04-15 中国联合网络通信集团有限公司 Batch logout method and device based on single sign-on

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2006065004A1 (en) * 2004-12-15 2006-06-22 Electronics And Telecommunications Research Institute System and method for performing service logout in single-sign-on service using identity
CN1889586A (en) * 2005-06-30 2007-01-03 华为技术有限公司 A log-on/log-down system and log-on/log-down method
CN102143131A (en) * 2010-08-02 2011-08-03 华为技术有限公司 User logout method and authentication server
CN104169835A (en) * 2012-03-14 2014-11-26 国际商业机器公司 Central logout from multiple websites

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2006065004A1 (en) * 2004-12-15 2006-06-22 Electronics And Telecommunications Research Institute System and method for performing service logout in single-sign-on service using identity
CN1889586A (en) * 2005-06-30 2007-01-03 华为技术有限公司 A log-on/log-down system and log-on/log-down method
CN102143131A (en) * 2010-08-02 2011-08-03 华为技术有限公司 User logout method and authentication server
CN104169835A (en) * 2012-03-14 2014-11-26 国际商业机器公司 Central logout from multiple websites

Also Published As

Publication number Publication date
CN103560884A (en) 2014-02-05

Similar Documents

Publication Publication Date Title
CN104426862B (en) Realize method, system and browser that cross-domain request logs in
US9794242B2 (en) Method, apparatus and application platform for realizing logon to an application service website
CN105007280B (en) A kind of application login method and device
CN102098158B (en) Cross-domain name single sign on and off method and system as well as corresponding equipment
CN104660409B (en) The method of system login and certificate server cluster under cluster environment
US20150007283A1 (en) Delegating authentication for a web service
EP2241976A2 (en) A method and system for client-side scaling of web server farm architecture in a cloud data center
US20110055912A1 (en) Methods and apparatus for enabling context sharing
US8423650B2 (en) Transferring session data between network applications
CN104468592B (en) Login method and login system
CN111200655A (en) Intranet access method, system and electronic equipment based on proxy server
CN105871947B (en) The method and device of cross-domain request data
CN105072123B (en) A kind of single sign-on under cluster environment exits method and system
US9699177B2 (en) Secure transfer of web application client persistent state information into a new domain
KR20040108568A (en) Architecture for connecting a remote client to a local client desktop
CN103560884B (en) The cancellation method of subscriber identity information, system, certificate server and client
CN104394133A (en) Login method and login system
CN104869143A (en) Data sharing method and device, client and server
EP2652930A1 (en) User interaction for web resources
CN104852919A (en) Method and apparatus for realizing portal authentication
CN109819033A (en) A kind of resource file loading method and system
CN110336820A (en) Single Sign Out method, apparatus, equipment, storage medium and system
CN103634111B (en) Single-point logging method and system and single sign-on client-side
CN108881226A (en) Means of defence, protective device and the electronic equipment of application layer attack
CN108200107A (en) A kind of method that single-sign-on is realized in multi-domain environment

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
CF01 Termination of patent right due to non-payment of annual fee

Granted publication date: 20160817

Termination date: 20181028

CF01 Termination of patent right due to non-payment of annual fee