CN103795767B - Synchronization method and system for cross-application session information - Google Patents

Synchronization method and system for cross-application session information Download PDF

Info

Publication number
CN103795767B
CN103795767B CN201210434847.1A CN201210434847A CN103795767B CN 103795767 B CN103795767 B CN 103795767B CN 201210434847 A CN201210434847 A CN 201210434847A CN 103795767 B CN103795767 B CN 103795767B
Authority
CN
China
Prior art keywords
log
application
session identification
session
message
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201210434847.1A
Other languages
Chinese (zh)
Other versions
CN103795767A (en
Inventor
叶文晖
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Alibaba Group Holding Ltd
Original Assignee
Alibaba Group Holding Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Alibaba Group Holding Ltd filed Critical Alibaba Group Holding Ltd
Priority to CN201210434847.1A priority Critical patent/CN103795767B/en
Publication of CN103795767A publication Critical patent/CN103795767A/en
Application granted granted Critical
Publication of CN103795767B publication Critical patent/CN103795767B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Landscapes

  • Information Transfer Between Computers (AREA)
  • Computer And Data Communications (AREA)

Abstract

The embodiment of the invention provides a synchronization method and system for cross-application session information. The method includes: establishing a second-level domain name based on a root domain name of a first application for a second application and saving a corresponding relation of the second-level domain name and an original domain name of the second application on a second server; a first server saving first session information generated when a first application is logged in and a corresponding first session identification and generating first login information corresponding to the first application and sending the first login information to a client, wherein the first login information includes the root domain name of the first application and the first session identification; the second server receiving an access request for the second application and judging whether the access request carries a second session identification corresponding to the second application; if not so, extracting the first session identification from the first login information according to the stored corresponding relation of the second-level domain name and the original domain name of the second application; and searching for the saved first session information according to the extracted first session identification.

Description

A kind of synchronous method and system across utility cession information
Technical field
The invention relates to web technologies field, more particularly to a kind of synchronous method across utility cession information and Device.
Background technology
Each big Internet enterprises are typically owned by multiple independent subsidiaries, and each subsidiary is usually used independent net Stand and rhizosphere name.That what is be generally directed to due to each website is similar user group, is to improve Consumer's Experience, facilitates User logs in, After the website log of user's one of which subsidiary, when the website of another subsidiary is accessed without the need for logging in again. Due to web browser for the session information between different rhizosphere names can not be shared, it is therefore desirable to the meeting of logged website Words are synchronized to another website.
For example, user writes the rhizosphere name of the first website, then by the first net in Cookie after the first website log Stand request is sent to the corresponding background server of its rhizosphere name;Background server obtains the first website after receiving request Cookie, and extract the session identification in Cookie;Then, the background server of the first website is to can be with after session identification encryption The mode of Ajax requests, is sent to each corresponding background server of subnet station rhizosphere name of the first website;Subnet station is corresponding After background server receives request, session identification is decrypted, then session identification is written in Cookie, so that using Family when these subnet stations are accessed gets same session information according to session identification, need not log on.
Above problems of the prior art are, as web browser has concurrent connection number to limit, for example, the first net Stand to there are 10 sub- websites, 3 Ajax requests can only be once sent to subnet station, therefore, send the time meeting of Ajax requests It is long, cause that the speed of User logs in main web site is very slow, period of reservation of number is long, directly may brush in the process New page, causes Ajax requests to send failure, and then cannot simultaneous session information.
Therefore, the technical problem that those skilled in the art solve is needed just to be to provide one kind across utility cession at present The synchronization mechanism of information, to avoid limiting because of webpage concurrent connection number, and the problem of caused sub- website synchronization login failure.
The content of the invention
The embodiment of the present application provides a kind of synchronous method across utility cession information, to avoid limiting because of webpage concurrent connection number System, and the problem of caused sub- website synchronization login failure.
The embodiment of the present application additionally provides a kind of synchronization system across utility cession information, to ensure said method in reality Application and realization in border.
In order to solve the above problems, the embodiment of the present application discloses a kind of synchronous method across utility cession information, including:
The second level domain based on first using rhizosphere name is set up for the second application, and two grades is preserved on second server The corresponding relation of the original domain name of domain name and the second application;
First server to log in first using when the first session information for producing, and corresponding first session identification enters Row is preserved, and is generated first and using corresponding first log-on message and is sent to client, and first log-on message includes the The rhizosphere name and first session identification of one application;
Second server receives the access request to the second application, and judges whether the access request carries the second application Corresponding second session identification;
If it is not, then stepping on described first according to the second level domain for prestoring and the corresponding relation of the original domain name of the second application The first session identification is extracted in record information;
The first session information for preserving is searched according to the first session identification for being extracted.
Preferably, the corresponding relation of the original domain name of the foundation prestores second level domain and the second application, described the The step of one log-on message extracts the first session identification includes:
According to second application original domain name, and original domain name and based on first using rhizosphere name second level domain it is right Should be related to, second is determined using corresponding second level domain;
According to the rhizosphere name of the second level domain, corresponding first log-on message is extracted in client, and first step on from this Corresponding first session identification is extracted in record information.
Preferably, methods described also includes:
First server to log in second using when the second session identification for producing, and corresponding second session information enters Row is preserved, and is generated second and using corresponding second log-on message and is sent to client, and second log-on message includes the The rhizosphere name and second session identification of two applications.
Preferably, it is described to judge whether the access request carries second and using the result of corresponding second session identification be When being,
Also include searching corresponding second session information according to second session identification.
Preferably, in the judgement access request, if carry the second step for applying corresponding second session identification Suddenly be judge the access request in whether carry the critical field of session identification, if it is not, then there is no corresponding session mark Know.
Preferably, methods described also includes:
After second server receives the information for publishing the first application, remove second and apply corresponding second log-on message.
Present invention also offers a kind of synchronization system across utility cession information, including first server and second service Device;
The first server includes the first corresponding relation preserving module and the first log-on message generation module;
The first corresponding relation preserving module, for log in first using when the first session information for producing, and Corresponding first session identification is preserved;
The first log-on message generation module, for generating first using corresponding first log-on message and being sent to visitor Family end, first log-on message include the rhizosphere name and first session identification of the first application;
The second server includes the pre- storing module of corresponding relation, judge module, the first session identification extraction module and One session information extraction modules;
The pre- storing module of corresponding relation, for preserving for the second application foundation based on the first second-level domain for applying rhizosphere name Name with second apply original domain name corresponding relation;
Judge module, for receiving the access request to the second application, and judges whether the access request carries second Using corresponding second session identification;
First session identification extraction module, for corresponding with the original domain name of the second application according to the second level domain for prestoring Relation, extracts the first session identification in first log-on message;
First session information extraction module, for searching the first session for preserving letter according to the first session identification for being extracted Breath.
Preferably, the session identification extraction module includes:
Second level domain determination sub-module, for according to second application original domain name, and original domain name and be based on first Using the corresponding relation of the second level domain of rhizosphere name, second is determined using corresponding second level domain;
Log-on message extracting sub-module, for the rhizosphere name according to the second level domain, extracts corresponding the in client One log-on message, and corresponding first session identification is extracted from first log-on message.
Preferably, the first server also includes:
Second corresponding relation preserving module, for log in second using when the second session information for producing, and correspondence The second session identification preserved;
Second log-on message generation module, for generating second using corresponding second log-on message and being sent to client End, second log-on message include the rhizosphere name and second session identification of the second application.
Preferably, the second server also includes:
Log-on message removes module, for receiving after the information for publishing the first application, removes second and applies corresponding second Log-on message.
Compared with prior art, the embodiment of the present application has advantages below:
According to the embodiment of the present application, for subnet station, a second level domain based on main web site is set, user is in main web site After login, respectively session identification and corresponding session information, and the log-on message comprising rhizosphere name are preserved;User visits When asking subnet station, the session identification in main web site log-on message, and foundation can be extracted according to the corresponding second level domain in subnet station The session identification extracts the session information of main web site.This synchronous method for extracting session information on demand, it is not necessary to while will Words synchronizing information can be avoided limiting because of webpage concurrent connection number, and caused sub- website synchronization is logged in all of subnet station The problem of failure.
Additionally, in prior art, needing to carry out P3P to each subnet station(Platform for Privacy Preferences, individual privacy protecting platform)Arrange, it is allowed to third party website asynchronous access, i.e., after main web site login, permit Perhaps by session information write subnet station corresponding cookie, P3P is arranged and be there may be security risk;And the embodiment of the present application without Antithetical phrase website is needed to carry out P3P settings, when access subnetwork station, the session information needed for extracting directly, therefore, it is to avoid The security risk that each site information is brought when interacting.
Also, the embodiment of the present application can be preserved to session information and corresponding session identification, by the synchronous meeting of needs The subnet site server of words information judges or obtains session identification, rather than by a unified major network site server performing Synchronous logic, it is to avoid when the server of main web site occurs abnormal, all-ones subnet station all cannot simultaneous session information problem.
Description of the drawings
Fig. 1 is a kind of flow chart of synchronous method embodiment one across utility cession information of the embodiment of the present application;
Fig. 2 is a kind of flow chart of synchronous method embodiment two across utility cession information of the embodiment of the present application;
Fig. 3 is a kind of structured flowchart the application of synchronization system embodiment across utility cession information of the embodiment of the present application Embodiment.
Specific embodiment
It is understandable to enable the above-mentioned purpose of the embodiment of the present application, feature and advantage to become apparent from, below in conjunction with the accompanying drawings and Specific embodiment is described in further detail to the embodiment of the present application.
User accesses the first application and the second application in browser end, and first server is used to process user's request, in tool In the realization of body, first server can be unified login server, for processing the logging request of user;First server connects After receiving the request of user, go second server to obtain according to request and perhaps service in corresponding, second server is the second application Corresponding background server.
The first session identification and the first session information that the embodiment of the present application is produced after saving the first application login, and in advance The original domain name of the second application and the corresponding relation of the second level domain based on the first application have been deposited, and second have been logged in for the first time in user Using when, second server in the first log-on message of the first application extracts the first session identification, enters one according to corresponding relation Step extracts corresponding first session information according to the first session identification, and this synchronous method for extracting session information on demand is not required to Can avoid limiting because of webpage concurrent connection number simultaneously by session synchronizing information to all of subnet station, and caused subnet Stand the problem of synchronous login failure.
With reference to Fig. 1, a kind of synchronous method embodiment one across utility cession information of the embodiment of the present application is it illustrates Flow chart, specifically may comprise steps of:
Step 101, the second level domain based on first using rhizosphere name is set up for the second application, and on second server Preserve the corresponding relation of the original domain name of the second level domain and the second application.
In the embodiment of the present application, first application and the second application can be website or other can carry out User logs in should Use program.When the first application and the second application correspond to the first website and the second website respectively, the first website and the second website can Being the relation of main web site and subnet station, it is also possible to through authorizing any two website that can share session information.
In the embodiment of the present application, there are two domain names the second website, and one is original domain name, i.e. the domain name of oneself script, example Such as blog.b.com, the entitled * .b.com of corresponding rhizosphere;One is second level domain based on the first website rhizosphere name, for example, The entitled * .a.com of rhizosphere of one website, the then second level domain that can arrange the second website are sync1.a.com.
The corresponding relation of the original domain name and second level domain of the second website is stored in the background server of the second website, According to the original domain name of the second website, corresponding second level domain is just can determine.
Step 102, first server to log in first using when the first session information for producing, and corresponding first meeting Words mark is preserved, and is generated first using corresponding first log-on message and is sent to client, first log-on message Include the rhizosphere name and first session identification of the first application.
After the application of User logs in first, first server can generate the session identification and session information of this session, for example, User logs in website blog.a.com, the session identification of generation for " sid=xxxx ", session information is " usernick=yyyy; lgt=123456;userid=12333;userip=10.10.32.33;Uaid=112233 ", wherein, usernick is that user is close Claim, lgt is last login time, and userid is number id, and userip is user machine ip, and uaid is that browser is identified. Session identification and session information be it is one-to-one, can be with this session information of uniquely tagged.First session identification and corresponding First session information can be stored in a centralized stores server independently of second server, logging in other websites When, can search in centralized stores server according to session identification, corresponding session information can be found.
First server this can log in corresponding first log-on message of generation according to user, wherein can answer including first Rhizosphere name and the first session identification, when first application and second using it is corresponding be website when, the first log-on message is Webpage cookie, accordingly, client that is to say browser end.As above example, corresponding cookie are " * .a.com:sid= xxxx;usernick=yyyy;lgt=123456…;Sign=zzzz ", wherein, * .a.com are the rhizosphere name of the first website, sid It is session identification, usernick is user's pet name, and lgt is last login time, and sign is that the merging of the cookie fields such as sid adds Close check code, effect are to prevent cookie from being changed and being forged.The rhizosphere name of Website login, User logs in are included in cookie Behind multiple websites, browser end can preserve the different corresponding cookie informations of rhizosphere name.
Step 103, second server are received to the second access request for applying original domain name, and judge the access request Whether session identification is carried, if it is not, then execution step 104.
User accesses second in client request and applies(For website, can be by being input into the second website in browser end Original domain name send access request), client receive this request, can according to second application original domain name rhizosphere name Extract second and apply corresponding second log-on message.
If user is not to log in second for the first time to apply, according to step 102, then existing corresponding second login of client Information, then can extract corresponding second log-on message using rhizosphere name according to second, by the access request of the second application and right The second log-on message answered, is together sent to second server;If user is to log in second for the first time to apply, client is not Have second and apply corresponding second log-on message of rhizosphere name, then only the access request of the second application can be sent to the second clothes Business device.
After second server receives access request, during access request can be determined whether, the second session identification whether is carried When first application and the second application are website, that is, whether there is field as " sid=xxx " in judging web-page requests, if deposited , session identification is indicated, if it is not, if so, then there is no corresponding session identification in then no session identification, can be further Execution step 105.
Second level domain and the corresponding relation of the original domain name of the second application that step 104, foundation prestore, step on described first The first session identification is extracted in record information.
The rhizosphere name of the original domain name is different from the rhizosphere name of the first website, and the step 104 can include:
Sub-step S21, according to second application original domain name, and original domain name and based on first using rhizosphere name two The corresponding relation of level domain name, determines second using corresponding second level domain.
Sub-step S22, according to the rhizosphere name of the second level domain, extract corresponding first log-on message in client, and Corresponding first session identification is extracted from first log-on message.
If second, using there is no corresponding second session identification in corresponding second log-on message of original domain name, illustrates User was not logged in the second application, and the first meeting produced after the first application is logged in can be extracted according to the second level domain of the second application Words mark.
Specifically, due to the original domain name of the second application and the corresponding relation of second level domain of having prestored, apply according to second Original domain name just can determine corresponding second level domain, second level domain is set up based on the rhizosphere name of the first application, therefore, two grades The rhizosphere name of domain name that is to say the rhizosphere name of the first application.In step 102, after the application of User logs in first, client is saved The first log-on message that first server sends, the first log-on message include the rhizosphere name and the first session mark of the first application Know.Corresponding first log-on message can be found in client according to the rhizosphere name of the first application, and then can be extracted therein Session identification.
As above example, the original domain name of the second website is blog.b.com, and the corresponding relation of preservation is blog.b.com --- Sync1.a.com, it is thus determined that corresponding second level domain is sync1.a.com, the entitled * of rhizosphere of corresponding first website .a.com, first website corresponding cookie " * .a.com can be extracted in browser end according to * .a.com:sid=xxxx; usernick=yyyy;lgt=123456…;Sign=zzzz ", corresponding session identification are sid=xxxx.
Step 105, the first session information that preservation is searched according to the first session identification for being extracted.
Session identification and session information are one-to-one, just can obtain session information according to session identification, it will words letter Breath write second is using the login that in the corresponding information of original domain name, just can be realized in the second application.For website, will Session information is write in the corresponding web page contents in the second website, is subsequently sent to browser end and is rendered, in the page of displaying User Status can be shown to log in.
Relative in prior art, the background server of main web site goes wrong, and its subnet station just cannot simultaneous session letter Cease, and then the situation that can not be logged in is compared, in the embodiment of the present application, the background server of each website actively goes to obtain the first website Corresponding first session information, it is to avoid when the server of main web site occurs abnormal, all-ones subnet station all cannot simultaneous session letters The problem of breath.
With reference to Fig. 2, a kind of stream of synchronous method embodiment 2 across utility cession information of the embodiment of the present application is it illustrates Cheng Tu, specifically may comprise steps of:
Step 201, the second level domain based on first using rhizosphere name is set up for the second application, and on second server Preserve the corresponding relation of the original domain name of second level domain and the second application.
Step 202, first server to log in first using when the first session information for producing, and corresponding first meeting Words mark is preserved, and is generated first using corresponding first log-on message and is sent to browser end, and described first logs in letter Breath includes the rhizosphere name and first session identification of the first application;
Whether step 203, second server receive the access request to the second application, and take in judging the access request The corresponding session identification in the second website of band, if it is not, then execution step 204 and step 205, if so, then execution step 206.
In the present embodiment, if accessing request information includes session identification, logged second website before illustrating user, visitor The second session identification and corresponding second session information have been preserved in family end, can be according to the second session identification extracting directly Second session information.
Second level domain and the corresponding relation of the original domain name of the second application that step 204, foundation prestore, step on described first The first session identification is extracted in record information.
Step 205, the first session information that preservation is searched according to the first session identification for being extracted.
In the present embodiment, session identification can be write in the corresponding cookie in the second website, as shown in Fig. 2 this reality Apply example can further include:
The second session identification that step 206, foundation are extracted searches corresponding second session information.
The second session identification produced when step 207, first server are to logging in the second website, and corresponding second meeting Words letter is preserved, and is generated corresponding second log-on message in the second website and is sent to client, in second log-on message Rhizosphere name and second session identification including the first website.
After the second application success is logged in, the of rhizosphere name and the second session identification including the second website can also be generated Two log-on messages are sent to client and are preserved, and the second session identification, and corresponding second session information are protected Deposit.When user's access next time second is applied, the second log-on message of the second application and access request can be sent by first server To second server, so, second server directly can extract the second session identification in access request, and then can carry Corresponding second session information is taken, in not spending corresponding first log-on message of second level domain, the first session identification is obtained, is accelerated Log in the speed of the second application.
In the present embodiment, letter can be logged in using corresponding second when publishing first and applying, to remove write second Breath, as shown in Fig. 2 the present embodiment can further include:
After step 207, second server receive the information for publishing the first application, remove second and log in using corresponding second Information.
When publishing first and applying, client can send the information that publish, second service to the second application server After device receives information, can send to client needs the rhizosphere name of the second application for deleting session identification, client's end-apparatus After corresponding log-on message is found according to the rhizosphere name of the second application, the operation that can be purged.
In sum, according to the embodiment of the present application, for subnet station, a second level domain based on main web site is set, is used Family is carried out to session identification and corresponding session information, and the log-on message comprising rhizosphere name after main web site login respectively Preserve;During user access subnetwork station, the session in main web site log-on message can be extracted according to the corresponding second level domain in subnet station Mark, and the session information of main web site is extracted according to the session identification.This synchronous method for extracting session information on demand, is not required to Can avoid limiting because of webpage concurrent connection number simultaneously by session synchronizing information to all of subnet station, and caused subnet Stand the problem of synchronous login failure.
Additionally, in prior art, needing to carry out P3P to each subnet station(Platform for Privacy Preferences, individual privacy protecting platform)Arrange, it is allowed to third party website asynchronous access, i.e., after main web site login, permit Perhaps by session information write subnet station corresponding cookie, P3P is arranged and be there may be security risk;And the embodiment of the present application without Antithetical phrase website is needed to carry out P3P settings, when access subnetwork station, the session information needed for extracting directly, therefore, it is to avoid The security risk that each site information is brought when interacting.
Also, the embodiment of the present application can be preserved to session information and corresponding session identification, by the synchronous meeting of needs The server of words information judges or obtains session identification, rather than is synchronously patrolled to perform by a unified major network site server Volume, it is to avoid when the server of main web site occurs abnormal, all-ones subnet station all cannot simultaneous session information problem.
For embodiment of the method, in order to be briefly described, therefore which is all expressed as a series of combination of actions, but this area Technical staff should know that the embodiment of the present application is not limited by described sequence of movement, because implementing according to the application Example, some steps can adopt other orders or while carry out.Secondly, those skilled in the art should also know, description Described in embodiment belong to preferred embodiment, involved action and module not necessarily the embodiment of the present application are musted Must.
With reference to Fig. 3, a kind of structure of synchronization system embodiment across utility cession information of the embodiment of the present application is shown Block diagram, can specifically include:
First server 301 and second server 302;
The first server includes the first corresponding relation preserving module 3011 and the first log-on message generation module 3012;
The first corresponding relation preserving module, for will log in first using when the first session information for producing, with And corresponding first session identification is sent to centralized stores server and is preserved,;
The first log-on message generation module, for generating first using corresponding first log-on message and being sent to clear Look at device client, first log-on message includes the rhizosphere name and first session identification of the first application;
The second server 302 includes that the pre- storing module 3021 of corresponding relation, judge module 3022, the first session identification are carried Delivery block 3023 and the first session information extraction module 3024;
The pre- storing module of corresponding relation, for preserving for the second application foundation based on the first second-level domain for applying rhizosphere name Name with second apply original domain name corresponding relation;
Judge module 302, for receiving to the second accessing request information for applying original domain name, and judges that the access please Whether second is carried in asking using corresponding second session identification, if otherwise performing session identification extraction module;
First session identification extraction module, for corresponding with the original domain name of the second website according to the second level domain for prestoring Relation, extracts the first session identification in first log-on message;
First session information writes extraction module, preserves corresponding for searching according to the first session identification for being extracted One session information.
In the embodiment of the present application, the second server can also include:
Second session information extraction module, for searching corresponding second session information according to second session identification.
In the embodiment of the present application, the session identification extraction module can include:
Second level domain determination sub-module, for according to second application original domain name, and original domain name and be based on first Using the corresponding relation of the second level domain of rhizosphere name, second is determined using corresponding second level domain;
Log-on message extracting sub-module, for the rhizosphere name according to the second level domain, extracts corresponding the in client One log-on message, and corresponding first session identification is extracted from first log-on message.
In a kind of preferred embodiment of the embodiment of the present application, the first server also includes:
Second corresponding relation preserving module, for log in second using when the second session identification for producing, and correspondence The second session information preserved;
Second log-on message generation module, for generating second using corresponding second log-on message and being sent to client End, second log-on message include the rhizosphere name and second session identification of the second application.
In a kind of preferred embodiment of the embodiment of the present application, the judge module includes:
Session identity fields judging submodule, for judging the keyword of session identification whether is carried in the access request , if so, then there is no corresponding session identification in section.
In a kind of preferred embodiment of the embodiment of the present application, the application server of second application also includes:
Log-on message removes module, for receiving after the information for publishing the first application, removes second and applies corresponding second Log-on message.
As described device embodiment essentially corresponds to the embodiment of the method shown in aforementioned Fig. 1 and Fig. 2, therefore the present embodiment In description, not detailed part, may refer to the related description in previous embodiment, and here is not just repeated.
The embodiment of the present application can be used in numerous general or special purpose computing system environment or configuration.For example:Individual calculus Machine, server computer, handheld device or portable set, laptop device, multicomputer system, based on microprocessor it is System, set top box, programmable consumer-elcetronics devices, network PC, minicomputer, mainframe computer, including any of the above system Or the distributed computing environment of equipment etc..
The embodiment of the present application can be described in the general context of computer executable instructions, example Such as program module.Usually, program module include performing particular task or realize the routine of particular abstract data type, program, Object, component, data structure etc..The embodiment of the present application is put into practice in a distributed computing environment can also, it is distributed at these In computing environment, task is performed by the remote processing devices connected by communication network.In a distributed computing environment, Program module is may be located at including in the local and remote computer-readable storage medium including storage device.
Herein, term " including ", "comprising" or its any other variant are intended to including for nonexcludability, from And cause the process, method, article or the equipment that include a series of key elements not only to include those key elements, but also including not bright Other key elements really listed, or also include the key element intrinsic for this process, method, article or equipment.Do not having In the case of more restrictions, the key element limited by sentence " including ... ", it is not excluded that in the mistake including the key element Also there is other identical element in journey, method, article or equipment.
A kind of synchronous method across utility cession information that above the embodiment of the present application is provided, and, it is a kind of across should Be described in detail with the synchronization system of session information, specific case used herein to the principle of the embodiment of the present application and Embodiment is set forth, and the explanation of above example is only intended to help the method for understanding the embodiment of the present application and its core Thought;Simultaneously for one of ordinary skill in the art, according to the thought of the embodiment of the present application, in specific embodiment and should Will change with scope, in sum, this specification content should not be construed as the restriction to the embodiment of the present application.

Claims (10)

1. a kind of synchronous method across utility cession information, it is characterised in that include:
The second level domain based on first using rhizosphere name is set up for the second application, and second level domain is preserved on second server With the corresponding relation of the original domain name of the second application;
First server to log in first using when the first session information for producing, and corresponding first session identification protected Depositing, first being generated using corresponding first log-on message and be sent to client, first log-on message includes that first should Rhizosphere name and first session identification;
Second server receives the access request to the second application, and judges whether the access request carries the second application correspondence The second session identification;
If it is not, then letter is logged in described first according to the second level domain for prestoring and the corresponding relation of the original domain name of the second application The first session identification is extracted in breath;
The first session information for preserving is searched according to the first session identification for being extracted.
2. the method for claim 1, it is characterised in that the second level domain that the foundation prestores is original with the second application The corresponding relation of domain name, includes the step of extract the first session identification in first log-on message:
According to second application original domain name, and original domain name and based on first using rhizosphere name second level domain correspondence close System, determines second using corresponding second level domain;
According to the rhizosphere name of the second level domain, corresponding first log-on message is extracted in client, and from the first login letter Corresponding first session identification is extracted in breath.
3. the method for claim 1, it is characterised in that methods described also includes:
First server to log in second using when the second session identification for producing, and corresponding second session information protected Depositing, second being generated using corresponding second log-on message and be sent to client, second log-on message includes that second should Rhizosphere name and second session identification.
4. the method for claim 1, it is characterised in that described to judge whether the access request carries second using right When the result of the second session identification answered is to be,
Also include searching corresponding second session information according to second session identification.
5. the method for claim 1, it is characterised in that in the judgement access request, if carrying second should The step of with corresponding second session identification be judge the access request in whether carry the critical field of session identification, if It is no, then there is no corresponding session identification.
6. method as claimed in claim 3, it is characterised in that also include:
After second server receives the information for publishing the first application, remove second and apply corresponding second log-on message.
7. a kind of synchronization system across utility cession information, it is characterised in that including first server and second server;
The first server includes the first corresponding relation preserving module and the first log-on message generation module;
The first corresponding relation preserving module, for log in first using when the first session information for producing, and correspondence The first session identification preserved;
The first log-on message generation module, for generating first using corresponding first log-on message and being sent to client End, first log-on message include the rhizosphere name and first session identification of the first application;
The second server includes the pre- storing module of corresponding relation, judge module, the first session identification extraction module and the first meeting Words information extraction modules;
The pre- storing module of corresponding relation, for preserve for second application set up based on first using rhizosphere name second level domain with The corresponding relation of the original domain name of the second application;
Judge module, for receiving the access request to the second application, and judges whether the access request carries the second application Corresponding second session identification;
First session identification extraction module, for closing with the corresponding of the original domain name of the second application according to the second level domain for prestoring System, extracts the first session identification in first log-on message;
First session information extraction module, for searching the first session information for preserving according to the first session identification for being extracted.
8. system as claimed in claim 7, it is characterised in that the session identification extraction module includes:
Second level domain determination sub-module, for according to second application original domain name, and original domain name and based on first apply The corresponding relation of the second level domain of rhizosphere name, determines second using corresponding second level domain;
Log-on message extracting sub-module, for the rhizosphere name according to the second level domain, extracts corresponding first in client and steps on Record information, and corresponding first session identification is extracted from first log-on message.
9. system as claimed in claim 7, it is characterised in that the first server also includes:
Second corresponding relation preserving module, for log in second using when the second session information for producing, and corresponding the Two session identifications are preserved;
Second log-on message generation module, for generating second using corresponding second log-on message and being sent to client, institute Stating the second log-on message includes the rhizosphere name and second session identification of the second application.
10. system as claimed in claim 7, it is characterised in that the second server also includes:
Log-on message removes module, for receiving after the information for publishing the first application, removes second and logs in using corresponding second Information.
CN201210434847.1A 2012-11-02 2012-11-02 Synchronization method and system for cross-application session information Active CN103795767B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201210434847.1A CN103795767B (en) 2012-11-02 2012-11-02 Synchronization method and system for cross-application session information

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201210434847.1A CN103795767B (en) 2012-11-02 2012-11-02 Synchronization method and system for cross-application session information

Publications (2)

Publication Number Publication Date
CN103795767A CN103795767A (en) 2014-05-14
CN103795767B true CN103795767B (en) 2017-04-12

Family

ID=50671045

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201210434847.1A Active CN103795767B (en) 2012-11-02 2012-11-02 Synchronization method and system for cross-application session information

Country Status (1)

Country Link
CN (1) CN103795767B (en)

Families Citing this family (11)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN105530232B (en) * 2014-10-24 2020-06-16 腾讯科技(深圳)有限公司 Account login method and device
CN106919634B (en) 2016-06-12 2020-09-25 阿里巴巴集团控股有限公司 Method for sharing data across applications and web browser
CN106230703A (en) * 2016-08-30 2016-12-14 腾讯科技(深圳)有限公司 The process of chat record and acquisition methods and device
CN109088906B (en) * 2017-06-14 2021-06-18 中国移动通信集团重庆有限公司 Method and device for keeping session synchronization between systems and readable storage medium
CN107347068A (en) * 2017-07-10 2017-11-14 恒生电子股份有限公司 Single-point logging method and system, electronic equipment
CN109948034B (en) * 2017-09-27 2022-03-18 北京国双科技有限公司 Method and device for extracting page information based on filtering session
CN108075965A (en) * 2017-12-13 2018-05-25 北京小米移动软件有限公司 Message treatment method and device, electronic equipment and computer readable storage medium
CN108965332B (en) * 2018-08-29 2021-05-04 北京航天云路有限公司 Multi-site user login state synchronization method and system
CN112019584B (en) * 2019-05-31 2022-05-31 阿里巴巴集团控股有限公司 Resource access control method and device and computer system
CN110392059B (en) * 2019-08-02 2022-05-27 中国工商银行股份有限公司 Session management method, device and storage medium
CN111600730B (en) * 2020-05-18 2021-08-06 腾讯科技(深圳)有限公司 Session interface display method, group chat creating method, device and equipment

Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1549978A (en) * 2001-07-16 2004-11-24 BEAϵͳ��˾ Method and apparatus for session replication and failover
CN102594796A (en) * 2011-12-27 2012-07-18 中兴通讯股份有限公司 Terminal device and user information synchronization method

Patent Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1549978A (en) * 2001-07-16 2004-11-24 BEAϵͳ��˾ Method and apparatus for session replication and failover
CN102594796A (en) * 2011-12-27 2012-07-18 中兴通讯股份有限公司 Terminal device and user information synchronization method

Also Published As

Publication number Publication date
CN103795767A (en) 2014-05-14

Similar Documents

Publication Publication Date Title
CN103795767B (en) Synchronization method and system for cross-application session information
CN104144419B (en) Identity authentication method, device and system
CN105337949B (en) A kind of SSO authentication method, web server, authentication center and token verify center
CN104283903B (en) The method for down loading and device of file
US10356153B2 (en) Transferring session data between network applications accessible via different DNS domains
CN103227786B (en) A kind of website login information filling method and device
CN103475726B (en) A kind of virtual desktop management, server and client side
CN106878024B (en) A kind of verifying code check method and system based on caching
CN103701805A (en) Method and device for detecting weak password in network
US20160119282A1 (en) Domain name registration verification
CN103634399B (en) Method and device for realizing cross-domain data transmission
CN104618449B (en) A kind of method and device for realizing web single-sign-ons
US9323730B2 (en) Platform and method for real-time synchronized co-browsing of web pages
CN102682009A (en) Method and system for logging in webpage
US20140108542A1 (en) Method and system for providing a multiuser web session
CN102438000A (en) Multi-account logon method and device
CN110401641B (en) User authentication method and device and electronic equipment
US20140173706A1 (en) Apparatus and data processing systems for accessing an object
CN102055768A (en) Network logon method and system
CN103888540B (en) Login information synchronization method, synchronized network servers and synchronizing network servers
US20120072572A1 (en) Methods for Balancing Brand Perception on Computer Network Information Sources
US20160212184A1 (en) Platform and method for real-time synchronized co-browsing of web pages
US9521034B2 (en) Method and apparatus for generating resource address, and system thereof
CN105072108A (en) User information transmission method, device and system
CN103634111B (en) Single-point logging method and system and single sign-on client-side

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant