CN103856496A - Information publishing method, information publishing equipment and information publishing system - Google Patents

Information publishing method, information publishing equipment and information publishing system Download PDF

Info

Publication number
CN103856496A
CN103856496A CN201210498813.9A CN201210498813A CN103856496A CN 103856496 A CN103856496 A CN 103856496A CN 201210498813 A CN201210498813 A CN 201210498813A CN 103856496 A CN103856496 A CN 103856496A
Authority
CN
China
Prior art keywords
user
user profile
signaling message
access
server
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201210498813.9A
Other languages
Chinese (zh)
Inventor
梁俊亮
刘萌
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Huawei Technologies Co Ltd
Original Assignee
Huawei Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Huawei Technologies Co Ltd filed Critical Huawei Technologies Co Ltd
Priority to CN201210498813.9A priority Critical patent/CN103856496A/en
Publication of CN103856496A publication Critical patent/CN103856496A/en
Pending legal-status Critical Current

Links

Images

Abstract

The invention discloses an information publishing method which comprises the following steps: a signaling message sent by an access server to an AAA server is acquired, wherein the signaling message contains user information of an access user; the signaling message is analyzed to acquire the user information of the access user; and the acquired user information is actively sent to at least one service system to enable the at least one service system to manage the network surfing behavior of the user according to the user information of the access user. According to the information publishing method provided by the invention, after the user information contained in the signaling message is acquired, the acquired user information is actively sent to at least one service system so that the service system does not need to acquire the user information from the AAA server, thereby reducing the workload of the AAA server and enhancing the working performance of the AAA server.

Description

Information issuing method, equipment and system
Technical field
The application relates to network communication field, particularly relates to a kind of information issuing method, equipment and system.
Background technology
Current network operator is in order to improve operation income, the operation business that all can provide differentiation to the network user, become more meticulous.Concrete implementation process is that some separate service systems are set in network, and described service system comprises: DPI system, charge system, flux monitoring system etc. become more meticulous.Operator applies these service systems for the network user provides user network behavioural analysis, the service such as charging, traffic monitoring becomes more meticulous.
Service system provides when service of becoming more meticulous for user, need in real time or timely from authentication mandate and statistics (Authentication Authorization Accounting, AAA) server obtains the network user's the information of reaching the standard grade, wherein, aaa server is for identity and the spendable network service of authentication of users, serve the consumption to various network services to user recording user according to authentication result open network, and offers charge system.
In the time that the service system quantity arranging in network is more, all service systems are all obtained the network user's the information of reaching the standard grade from aaa server, can make the live load of aaa server increase, and reduce the service behaviour of aaa server.
Summary of the invention
The embodiment of the present application provides a kind of information issuing method, equipment and system, can in network, exist when obtaining user and reach the standard grade information compared with services system, reduces the live load of aaa server, promotes the service behaviour of aaa server.
First aspect, a kind of information issuing method that the embodiment of the present application provides, comprising:
Obtain the signaling message that access server sends to authentication mandate and statistics aaa server, in described signaling message, include the user profile of access user, described user profile comprises: the corresponding relation of interconnected protocol IP address and user's dynamic attribute information between User Identity number ID and network;
Described signaling message is resolved to the user profile that obtains described access user;
The described user profile obtaining is initiatively sent to at least one service system, described at least one service system can be managed described user's internet behavior according to the user profile of described access user.
In the possible implementation of the first, described in obtain access server and send to the signaling message of aaa server to comprise:
Obtaining access server makes a copy for to the signaling message of described aaa server.
In conjunction with the possible implementation of the first of first aspect or first aspect, in the possible implementation of the second, described described signaling message resolved and obtained the user profile of described access user and comprise:
The user profile of according to the parses policy of configuration, respective field in described signaling message being resolved to obtain described access user, includes field to be resolved in described parses policy.
Second aspect, a kind of information distributing apparatus that the embodiment of the present application provides, comprising:
Acquiring unit, send to the signaling message of authentication mandate and statistics aaa server for obtaining access server, in described signaling message, include the user profile of access user, described user profile comprises: the corresponding relation of interconnected protocol IP address and user's dynamic attribute information between User Identity number ID and network;
Resolution unit, for resolving the user profile that obtains described access user to described signaling message;
Transmitting element, for the described user profile obtaining is initiatively sent to at least one service system, can manage according to the user profile of described access user described at least one service system to described user's internet behavior.
The third aspect, a kind of information issuing system that the embodiment of the present application provides, comprising: access server, authentication mandate and statistics aaa server, at least one service system and information distributing apparatus, wherein:
Described access server, for receiving user's online dialing request, and sends signaling message to described aaa server, includes the user profile of access user in described signaling message;
Described aaa server, the signaling message sending for receiving described access server, carries out authentication according to the user profile of described access user to described user, and described signaling message is made a copy for to described information distributing apparatus.
The technical scheme being provided from above the embodiment of the present application, a kind of information issuing method that the embodiment of the present invention provides, send to the signaling message of aaa server by obtaining access server, described signaling message is resolved, obtain the user profile comprising in described signaling message, and the user profile of acquisition is initiatively sent to at least one service system, service system is not used and in aaa server, obtained user profile, thereby reduce the live load of aaa server, promote the service behaviour of aaa server, and make service system in the time of needs user information, do not need to obtain by inquiry, save the time of service system acquisition user profile, make custom system to provide more timely for user, the network service becoming more meticulous.
Accompanying drawing explanation
In order to be illustrated more clearly in the technical scheme in the embodiment of the present application, to the accompanying drawing of required use in embodiment or description of the Prior Art be briefly described below, apparently, the accompanying drawing the following describes is only some embodiment that record in the application, for those of ordinary skills, do not paying under the prerequisite of creative work, can also obtain according to these accompanying drawings other accompanying drawing.
The application scenarios schematic diagram of a kind of information issuing method that Fig. 1 provides for the embodiment of the present application;
The method flow diagram of a kind of information issuing method that Fig. 2 provides for the embodiment of the present application;
The method flow diagram of another information issuing method that Fig. 3 provides for the embodiment of the present application;
The signaling diagram of another information issuing method that Fig. 4 provides for the embodiment of the present application;
The structural representation of a kind of information distributing apparatus that Fig. 5 provides for the embodiment of the present application;
The structural representation of another information distributing apparatus that Fig. 6 provides for the embodiment of the present application;
The structural representation of a kind of information issuing system that Fig. 7 provides for the embodiment of the present application;
The structural representation of another information issuing system that Fig. 8 provides for the embodiment of the present application.
Embodiment
In order to make those skilled in the art person understand better the application's scheme.Below in conjunction with the accompanying drawing in the embodiment of the present application, the technical scheme in the embodiment of the present application is clearly and completely described, obviously, described embodiment is only the application's part embodiment, rather than whole embodiment.Based on the embodiment in the application, those of ordinary skills are not making the every other embodiment obtaining under creative work prerequisite, all should belong to the scope of the application's protection.
The scene schematic diagram of a kind of information issuing method that Fig. 1 provides for the embodiment of the present invention, wherein:
Access server 002 can be arranged on the network user's 001 end, in the embodiment of the present invention, described access server 002 can be selected Gateway GPRS Support Node (Gateway GPRS Support Node, GGSN), the network user 001 can by described access server 002 with dialing mode access network.
Authentication mandate and statistics (Authentication Authorization Accounting, AAA) server 003 is arranged on network server end, for identity and the spendable network service of authentication of users, serve the consumption to various network services to user recording user according to authentication result open network, and offer charge system.
In the time that the network user 001 passes through described access server 002 access network, access server 002 can send signaling message to described aaa server 003.Proxy server 004 can be arranged on the connection line between described access server 002 and described aaa server 003, also can be arranged on described aaa server 003 one end, is connected separately with described aaa server 003.Described proxy server 004 sends to the signaling message of described aaa server for obtaining described access server 002, described signaling message is resolved, obtain after the user profile in described signaling message, described user profile is sent to the service systems such as network manager's system 005, DPI system 006 and DPI policy system 007 in the mode initiatively sending.Wherein: the service systems such as described network manager's system 005, DPI system 006 and DPI policy system 007 are the independent operation system that Virtual network operator arranges in network, for the network user 001 provides the different network services that becomes more meticulous.
The flow chart of a kind of information issuing method that Fig. 2 provides for the embodiment of the present invention, the executive agent of the information issuing method that the embodiment of the present invention provides can be the proxy server 004 in Fig. 1, described proxy server can be remote customer dialing authentication system (Remote Authentication Dial In UserService, RADIUS) proxy server.As shown in Figure 2, the method comprises:
Step S101: obtain access server and send to the signaling message of aaa server, include the user profile of access user in described signaling message, described user profile comprises: the corresponding relation of user ID and IP address and user's dynamic attribute information;
In the embodiment of the present application, proxy server obtains mode that access server sends to the signaling message of aaa server to be had multiplely, does not limit at this, and the mode that for example proxy server obtains described signaling message can comprise:
First kind of way, proxy server initiatively obtains signaling message from aaa server, and for example, proxy server initiatively sends and obtains request to aaa server, and receives the signaling message of the access user that aaa server sends according to this request of obtaining.
The second way, proxy server can be deployed between access server and aaa server in forthright mode, agency using proxy server as aaa server, make access server send signaling message by proxy server to aaa server, thereby in the time of user access network, proxy server can directly obtain access server and send to the signaling message of aaa server.
The third mode, can be arranged on proxy server between access server and aaa server with bypass mode, and aaa server sends to proxy server in the mode of making a copy for or mirror image is shunted by signaling message.
Signaling message in the embodiment of the present application can comprise: remote customer dialing authentication system RADIUS message; Can also comprise HWTACACS(Huawei Terminal Access Controller AccessControl System) message.
Take described signaling message as RADIUS message is as example:
When user passes through access server accesses network, the RADIUS message that access server produces customer access network is submitted to aaa server in the mode of packet, described RADIUS message includes user's user profile, specifically comprises: the information such as the corresponding relation of user name, access pin, user ID and IP address and user's dynamic attribute information.
Described user profile comprises: the corresponding relation of user ID and IP address and user's dynamic attribute information.Wherein, described user's dynamic attribute information comprises: user access network by title, the mode of user access network and the network type of user access network etc. of access server.The mode access network dialling as user or with access way access networks such as Integrated Service Digital Network or light accesses.The network type of user access network comprises 2G network and 3G network.
Step S102: described signaling message is resolved to the user profile that obtains described access user;
In practical application, can resolve the user profile that obtains access user to all fields of described signaling message, also can resolve to obtain according to the parses policy of configuration the user profile of described access user to respective field in described signaling message, wherein, in described parses policy, include field to be resolved.For example, when RADIUS message is resolved, because the message structure of RADIUS message is fixed, the type of message that each message field (MFLD) is stored is fixed, as the user name that in RADIUS message field (MFLD), a certain fixing field is used for storing access user specially, in the time carrying out packet parsing, as long as the username field of storage access user is resolved to the user name that just can obtain access user.
Step S103: the described user profile obtaining is initiatively sent to at least one service system, described at least one service system can be managed described user's internet behavior according to the user profile of described access user.
In the method that the embodiment of the present application provides, when proxy server obtains after the user profile of access user by resolving RADIUS message, proxy server can initiatively send at least one service system by user profile.Also can preserve resolving the user profile obtaining, when presence service system is served certain access user, need to obtain this user's user profile time, send the inquiry request of the user profile of obtaining this access user to proxy server, proxy server, in the time receiving the inquiry request of described service system, sends to described service system by the user profile of resolving this access user obtaining.
The service system arranging in network in the embodiment of the present application can have multiple, for the service system that need to obtain user profile, proxy server can send to these service systems by the user profile of acquisition in time in the mode initiatively sending, so that this service system is in the time of the operation management that need to carry out differentiation to user, become more meticulous, acquisition user's that can be promptly and accurately user profile, saves service system and obtains the time of user profile.
The method that the embodiment of the present application provides, can user profile be sent to service system by the tcp port, udp port and the FTP port that set in advance on this proxy server, select dissimilar port to send user profile according to the COS of service system in network, certainly, be understandable that, the port arranging on proxy server in the embodiment of the present invention is not limited to above-mentioned port type, as long as receiving the port that the port type of user profile matches with service system, do not limit at this.
Service system manages and can comprise user's internet behavior: the network management behaviors such as online user's information are added up, user's behavior is analyzed and added up to the flow to user.Be understandable that, service system includes but not limited to: DPI system, DPI policy system, network manager's system, traffic statistics system, behavioural analysis system and charge system.
A kind of information issuing method provided by the invention, send to the signaling message of aaa server by obtaining access server, described signaling message is resolved, obtain the user profile comprising in described signaling message, and the user profile of acquisition is initiatively sent to at least one service system, service system is not used and in aaa server, obtained user profile, thereby reduce the live load of aaa server, promote the service behaviour of aaa server, and make service system in the time of needs user information, do not need to obtain by inquiry, save the time of service system acquisition user profile, make custom system to provide more timely for user, the network service becoming more meticulous.
The method flow diagram of another information issuing method that Fig. 3 provides for the embodiment of the present application, referring to Fig. 3, the method can also comprise on basis embodiment illustrated in fig. 2:
Step S104: the described user profile obtaining is write to journal file, and described journal file is saved in default ftp server.
Each service system arranging in network, be not the user profile that each service system needs Real-time Obtaining access user, therefore, in the method that the embodiment of the present application provides, proxy server can write journal file by the user profile of acquisition, and described journal file is saved in default ftp server.Obtain the service system of user profile for applicable application FTP mode, can login ftp server and obtain user profile in described ftp server.
Step S104 in the embodiment of the present application Fig. 3 carries out after can resolving signaling message at proxy server and obtaining user profile immediately, also can user profile be sent at proxy server in the process of service system and carry out, or carry out after user profile is sent to service system by proxy server.
A kind of information issuing method provided by the invention, obtaining after user profile, described user profile is write to journal file, and described journal file is saved in default ftp server, do not need the service system of Real-time Obtaining user profile to obtain user profile by the mode of login ftp server, what thereby the service system that makes not need Real-time Obtaining user profile just can be obtained in the time need to obtaining user profile arrives, for service system, acquisition process is more direct, save the time that service system is obtained user profile, also avoid user profile to lose from another one angle, in the time need to obtaining, obtain less than problem.
For more detailed said method is described, the application provides a kind of signaling diagram of information issuing method, as shown in the application Fig. 4, wherein: the access device of access user accesses network is take GGSN as example, proxy server is take radius proxy server as example, service system in network describes as an example of DPI system, user behavior analysis system and DPI policy system example, and as shown in Figure 4, the method can comprise:
Step S201: in the time that access user passes through described GGSN access network, GGSN sends RADIUS message to aaa server;
Step S202: described aaa server is made a copy for described RADIUS message to described radius proxy server in the mode of making a copy for.
In the embodiment of the present application, radius proxy Servers installed is at described aaa server end, and described aaa server is made a copy for RADIUS message to radius server in the mode of making a copy for.
Step S203: described radius proxy server receives after described RADIUS message, described RADIUS message is resolved, obtain the user profile comprising in described RADIUS message, described user profile comprises: the corresponding relation of user ID and IP address and user's dynamic attribute information.
Step S204: the user profile of acquisition is write journal file by described radius proxy server, and described journal file is saved in default ftp server.
Step S205: described radius proxy server initiatively sends to DPI system by default udp port by described user profile.
Be understandable that, described DPI system is receiving after the user profile that described radius proxy server initiatively sends, and sends ACK message and represents that to described RADIUS described DPI system received the user profile that described radius proxy server initiatively sends.If described radius proxy server initiatively sends after user profile to DPI system, do not receive within a preset time interval the ACK message that described DPI system sends, radius proxy server can resend user profile to described DPI system, until receive the ACK message that DPI system sends.
Step S208: described radius proxy server is initiatively sent to user behavior analysis system by default tcp port by the user profile of acquisition.
Step S209: described radius proxy server is initiatively sent to DPI policy system by default FTP port by the user profile of acquisition.
In the embodiment of the present application, step S205, step S208 and step S209 can carry out simultaneously, also can determine for user provides the concrete time sequencing of service according to DPI system, user behavior analysis system and DPI policy system.
Wherein, step S204 as long as carry out after step S203, and its implementation and step S205, step S208 and step S209 are independent of each other.
Referring to Fig. 5, corresponding with a kind of information issuing method described in Fig. 2, the embodiment of the present application provides a kind of information distributing apparatus, and described information distributing apparatus is a kind of proxy server, comprising:
Acquiring unit 301, send to the signaling message of aaa server for obtaining access server, in described signaling message, include the user profile of access user, described user profile comprises: the corresponding relation of user ID and IP address and user's dynamic attribute information;
Resolution unit 302, for resolving the user profile that obtains described access user to described signaling message;
Transmitting element 303, for the described user profile obtaining is initiatively sent to at least one service system, can manage according to the user profile of described access user described at least one service system to described user's internet behavior.
The information distributing apparatus that the embodiment of the present application provides can be radius proxy server.
The access server that acquiring unit 301 obtains sends to the signaling message of aaa server to comprise RADIUS message.
In the information distributing apparatus that the application provides, acquiring unit 301 obtains mode that access server sends to the signaling message of aaa server to be had multiplely, does not limit at this, and the mode that for example proxy server obtains described signaling message can comprise:
First kind of way, acquiring unit 301 initiatively obtains signaling message from aaa server, and for example, proxy server initiatively sends and obtains request to aaa server, and receives the signaling message of the access user that aaa server sends according to this request of obtaining.
The second way, information distributing apparatus can be deployed between access server and aaa server in forthright mode, agency using proxy server as aaa server, make access server send signaling message by proxy server to aaa server, thereby in the time of user access network, the acquiring unit 301 in information distributing apparatus can directly obtain access server and send to the signaling message of aaa server.
The third mode, can be arranged on information distributing apparatus between access server and aaa server with bypass mode, and aaa server sends to acquiring unit 301 in the mode of making a copy for or mirror image is shunted by signaling message.
The resolution unit 302 that the embodiment of the present application provides in actual applications, can resolve the user profile that obtains access user to all fields of signaling message, can resolve to obtain according to the parses policy of configuration the user profile of described access user to respective field in described signaling message, wherein, described parses policy includes field to be resolved.
The information distributing apparatus that the embodiment of the present application provides, send to the signaling message of aaa server by obtaining access server, described signaling message is resolved, and after the user profile comprising in the described signaling message of acquisition, the user profile of acquisition is initiatively sent to at least one service system, service system is not used and in aaa server, obtained user profile, reduce the live load of aaa server, promote the service behaviour of aaa server, and make service system in the time of needs user information, do not need to obtain by inquiry, save the time of service system acquisition user profile, make custom system to provide more timely for user, the network service becoming more meticulous.
Referring to Fig. 6, show the detailed construction schematic diagram of a kind of information distributing apparatus of the application, wherein: described information distributing apparatus can also comprise:
Setting unit 304, for arranging tcp port, udp port or FTP port on described information distributing apparatus.
Described transmitting element 303 initiatively sends to respectively described at least one service system for the tcp port, udp port or the FTP port that set in advance by described setting unit 304 by described user profile.
In described information distributing apparatus, also comprise:
Writing unit 305, for the described user profile obtaining is write to journal file, and is saved to described journal file in default ftp server.
In a kind of information distributing apparatus provided by the invention, be provided with writing unit 305, obtaining after user profile, by said write unit 305, described user profile is write to journal file, and described journal file is saved in default ftp server, do not need the service system of Real-time Obtaining user profile to obtain user profile by the mode of login ftp server, what thereby the service system that makes not need Real-time Obtaining user profile just can be obtained in the time need to obtaining user profile arrives, for service system, acquisition process is more direct, save the time that service system is obtained user profile, also avoid user profile to lose from another one angle, in the time need to obtaining, obtain less than problem.
The embodiment of the present application also provides a kind of information issuing system, and its structural representation as shown in Figure 7, comprising: access server 401, aaa server 402, at least one service system 403 and information distributing apparatus 404.Wherein:
Described access server 401 is asked for the online dialing that receives user, and sends signaling message to described aaa server, includes the user profile of access user in described signaling message;
The signaling message that described aaa server 402 sends for receiving described access server 401, carries out authentication according to the user profile of described access user to described user.
Described information distributing apparatus 404 sends to the signaling message of aaa server 402 for obtaining access server 401, in described signaling message, include the user profile of access user, described user profile comprises: the corresponding relation of user ID and IP address and user's dynamic attribute information; Described signaling message is resolved to the user profile that obtains described access user; The described user profile obtaining is initiatively sent to at least one service system 403, described at least one service system 403 can be managed described user's internet behavior according to the user profile of described access user.
Information distributing apparatus 404 in the information issuing system that the embodiment of the present application provides has identical structure and function with the information distributing apparatus that the application Fig. 5 or Fig. 6 introduce.Described information distributing apparatus can be proxy server, is specifically as follows radius proxy server.
In the information issuing system that the embodiment of the present application provides, information distributing apparatus can adopt radius proxy server, radius proxy server obtains access server and sends to the signaling message of aaa server, described signaling message is RADIUS message, radius proxy server is resolved described RADIUS message, obtain the user profile comprising in described RADIUS message, described user profile comprises: the corresponding relation of user ID and IP address and user's dynamic attribute information.The user profile of acquisition is initiatively sent to at least one service system, described at least one service system can be managed described user's internet behavior according to the user profile of described access user.
The information issuing system that above-mentioned the application provides, the user profile of acquisition is initiatively sent to at least one service system, service system is not used and in aaa server, obtained user profile, thereby reduce the live load of aaa server, promote the service behaviour of aaa server, and make service system in the time of needs user information, do not need to obtain by inquiry, save the time of service system acquisition user profile, made custom system to provide network service more timely, that become more meticulous for user.
The structural representation of another information distributing apparatus that Fig. 8 provides for the embodiment of the present invention, this information distributing apparatus can be radius proxy server, can also be the host server that comprises agent functionality, the specific embodiment of the invention limit the specific implementation of information distributing apparatus.As shown in Figure 8, this information distributing apparatus can comprise:
Processor (processor) 510, communication interface (Communications Interface) 520, memory (memory) 530, communication bus 540.
Processor 510, communication interface 520, memory 530 completes mutual communication by communication bus 540.
Communication interface 520, for net element communication, such as network elements such as aaa server, DPI equipment.
Processor 510, for executive program 532, specifically can carry out the correlation step in the embodiment of the method shown in above-mentioned Fig. 2 to Fig. 3.
Particularly, program 532 can comprise program code, and described program code comprises computer-managed instruction.
Processor 510 may be a central processor CPU, or specific integrated circuit ASIC(Application Specific Integrated Circuit), or be configured to implement one or more integrated circuits of the embodiment of the present invention.
Memory 530, for depositing program 532.Memory 530 may comprise high-speed RAM memory, also may also comprise nonvolatile memory (non-volatile memory), for example at least one magnetic disc store.Program 532 specifically can comprise:
Acquiring unit, resolution unit, transmitting element, writing unit and setting unit, the structure of described acquiring unit, resolution unit, transmitting element, writing unit and setting unit and function specifically can, referring to the embodiment described in above-mentioned Fig. 5 and Fig. 6, not repeat them here.
Those skilled in the art can be well understood to, and for convenience and simplicity of description, the specific works process of the equipment of foregoing description and module, can describe with reference to the corresponding process in preceding method embodiment, does not repeat them here.
One of ordinary skill in the art will appreciate that: all or part of step that realizes said method embodiment can complete by the relevant hardware of program command, aforesaid program can be stored in a computer read/write memory medium, this program, in the time carrying out, is carried out the step that comprises said method embodiment; And aforesaid storage medium comprises: various media that can be program code stored such as ROM, RAM, magnetic disc or CDs.
In the several embodiment that provide in the application, should be understood that disclosed equipment and method can realize by another way.For example, device embodiment described above is only schematic, for example, the division of described module, be only that a kind of logic function is divided, when actual realization, can have other dividing mode, for example multiple modules or assembly can in conjunction with or can be integrated in another equipment, or some features can ignore, or do not carry out.Another point, shown or discussed coupling each other or direct-coupling or communication connection can be by some communication interfaces, indirect coupling or the communication connection of device or module can be electrically, machinery or other form.
The described module as separating component explanation can or can not be also physically to separate, and the parts that show as module can be or can not be also physical locations, can be positioned at a place, or also can be distributed in multiple network element.Can select according to the actual needs wherein some or all of, module realizes the object of the present embodiment scheme.
In addition, the each functional module in each embodiment of the present invention can be integrated in a processing module, can be also that the independent physics of modules exists, also can two or more module integrations in a module.
Finally it should be noted that: above each embodiment, only in order to technical scheme of the present invention to be described, is not intended to limit; Although the present invention is had been described in detail with reference to aforementioned each embodiment, those of ordinary skill in the art is to be understood that: its technical scheme that still can record aforementioned each embodiment is modified, or some or all of technical characterictic is wherein equal to replacement; And these modifications or replacement do not make the essence of appropriate technical solution depart from the scope of various embodiments of the present invention technical scheme.

Claims (10)

1. an information issuing method, is characterized in that, comprising:
Obtain the signaling message that access server sends to authentication mandate and statistics aaa server, in described signaling message, include the user profile of access user, described user profile comprises: the corresponding relation of interconnected protocol IP address and user's dynamic attribute information between User Identity number ID and network;
Described signaling message is resolved to the user profile that obtains described access user;
The described user profile obtaining is initiatively sent to at least one service system, described at least one service system can be managed described user's internet behavior according to the user profile of described access user.
2. method according to claim 1, is characterized in that, described signaling message comprises:
Remote customer dialing authentication system RADIUS message.
3. method according to claim 1, is characterized in that, described in obtain access server and send to the signaling message of aaa server to comprise:
Obtaining access server makes a copy for to the signaling message of described aaa server.
4. method according to claim 1, is characterized in that, described described signaling message is resolved and obtained the user profile of described access user and comprise:
The user profile of according to the parses policy of configuration, respective field in described signaling message being resolved to obtain described access user, includes field to be resolved in described parses policy.
5. according to the method described in claim 1 ~ 4 any one, it is characterized in that, the described described user profile by acquisition initiatively sends at least one service system to comprise:
By the transmission control protocol tcp port, User Datagram Protoco (UDP) udp port or the file transfer protocol (FTP) FTP port that set in advance, described user profile is initiatively sent to respectively to described at least one service system.
6. method according to claim 5, is characterized in that, also comprises:
The described user profile obtaining is write to journal file, and described journal file is saved in default ftp server.
7. an information distributing apparatus, is characterized in that, comprising:
Acquiring unit, send to the signaling message of authentication mandate and statistics aaa server for obtaining access server, in described signaling message, include the user profile of access user, described user profile comprises: the corresponding relation of interconnected protocol IP address and user's dynamic attribute information between User Identity number ID and network;
Resolution unit, for resolving the user profile that obtains described access user to described signaling message;
Transmitting element, for the described user profile obtaining is initiatively sent to at least one service system, can manage according to the user profile of described access user described at least one service system to described user's internet behavior.
8. equipment according to claim 7, is characterized in that, also comprises:
Setting unit, for arranging transmission control protocol tcp port, User Datagram Protoco (UDP) udp port or file transfer protocol (FTP) FTP port on described equipment;
Described transmitting element is specifically for initiatively sending to respectively described at least one service system by the described tcp port setting in advance, udp port or FTP port by described user profile.
9. according to the equipment described in claim 7 or 8, it is characterized in that, also comprise:
Writing unit, for the described user profile obtaining is write to journal file, and is saved to described journal file in default ftp server.
10. an information issuing system, is characterized in that, comprises access server, authentication mandate and statistics aaa server and the information distributing apparatus as described in claim 7 ~ 9 any one, wherein:
Described access server, for receiving user's online dialing request, and sends signaling message to described aaa server, includes the user profile of access user in described signaling message;
Described aaa server, the signaling message sending for receiving described access server, carries out authentication according to the user profile of described access user to described user, and described signaling message is made a copy for to described information distributing apparatus.
CN201210498813.9A 2012-11-29 2012-11-29 Information publishing method, information publishing equipment and information publishing system Pending CN103856496A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201210498813.9A CN103856496A (en) 2012-11-29 2012-11-29 Information publishing method, information publishing equipment and information publishing system

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201210498813.9A CN103856496A (en) 2012-11-29 2012-11-29 Information publishing method, information publishing equipment and information publishing system

Publications (1)

Publication Number Publication Date
CN103856496A true CN103856496A (en) 2014-06-11

Family

ID=50863709

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201210498813.9A Pending CN103856496A (en) 2012-11-29 2012-11-29 Information publishing method, information publishing equipment and information publishing system

Country Status (1)

Country Link
CN (1) CN103856496A (en)

Cited By (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN105337811A (en) * 2015-12-03 2016-02-17 上海斐讯数据通信技术有限公司 Monitoring system and method based on Radius server
CN107135274A (en) * 2017-06-20 2017-09-05 郑州云海信息技术有限公司 The memory management method and device of a kind of distributed cluster system
CN110224891A (en) * 2019-06-12 2019-09-10 武汉绿色网络信息服务有限责任公司 A kind of intelligent flow dispatching method and system based on DPI and current divider
CN115242677A (en) * 2021-04-23 2022-10-25 中国移动通信集团四川有限公司 Home-wide user state monitoring system, method and device
CN116320088A (en) * 2023-03-03 2023-06-23 武汉麦丰创新网络科技有限公司 Method and device for realizing AAA forwarding

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101674587A (en) * 2009-10-14 2010-03-17 成都市华为赛门铁克科技有限公司 Method and system for realizing business monitoring and authentication agent server
CN101729310A (en) * 2009-11-25 2010-06-09 成都市华为赛门铁克科技有限公司 Method and system for realizing business monitor and information acquisition equipment
WO2011150610A1 (en) * 2010-06-01 2011-12-08 中兴通讯股份有限公司 Method and system for dynamically adjusting bandwidth services, and broadband policy system
US20120170448A1 (en) * 2009-09-23 2012-07-05 Zte Corporation Method and Network System for Implementing User Port Orientation in Multi-Machine Backup Scenario of Broadband Remote Access Server

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20120170448A1 (en) * 2009-09-23 2012-07-05 Zte Corporation Method and Network System for Implementing User Port Orientation in Multi-Machine Backup Scenario of Broadband Remote Access Server
CN101674587A (en) * 2009-10-14 2010-03-17 成都市华为赛门铁克科技有限公司 Method and system for realizing business monitoring and authentication agent server
CN101729310A (en) * 2009-11-25 2010-06-09 成都市华为赛门铁克科技有限公司 Method and system for realizing business monitor and information acquisition equipment
WO2011150610A1 (en) * 2010-06-01 2011-12-08 中兴通讯股份有限公司 Method and system for dynamically adjusting bandwidth services, and broadband policy system

Cited By (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN105337811A (en) * 2015-12-03 2016-02-17 上海斐讯数据通信技术有限公司 Monitoring system and method based on Radius server
CN105337811B (en) * 2015-12-03 2018-09-28 上海斐讯数据通信技术有限公司 Monitoring system based on Radius servers and monitoring method
CN107135274A (en) * 2017-06-20 2017-09-05 郑州云海信息技术有限公司 The memory management method and device of a kind of distributed cluster system
CN110224891A (en) * 2019-06-12 2019-09-10 武汉绿色网络信息服务有限责任公司 A kind of intelligent flow dispatching method and system based on DPI and current divider
CN110224891B (en) * 2019-06-12 2021-02-19 武汉绿色网络信息服务有限责任公司 Intelligent flow scheduling method and system based on DPI and shunt
CN115242677A (en) * 2021-04-23 2022-10-25 中国移动通信集团四川有限公司 Home-wide user state monitoring system, method and device
CN115242677B (en) * 2021-04-23 2023-09-01 中国移动通信集团四川有限公司 Home-wide user state monitoring system, method and device
CN116320088A (en) * 2023-03-03 2023-06-23 武汉麦丰创新网络科技有限公司 Method and device for realizing AAA forwarding
CN116320088B (en) * 2023-03-03 2023-09-15 武汉麦丰创新网络科技有限公司 Method and device for realizing AAA forwarding

Similar Documents

Publication Publication Date Title
CN101465856B (en) Method and system for controlling user access
CN111669719B (en) Method, system and related equipment for carrying out charging processing on network slice client
CN102143243B (en) Dynamic routing processing method and dynamic routing processing device and home gateway thereof
CN102497379B (en) Network access method, system and equipment
CN103781055A (en) Data downloading method and associated device
CN103856496A (en) Information publishing method, information publishing equipment and information publishing system
CN108429739B (en) Method, system and terminal equipment for identifying honeypots
CN102695167A (en) Mobile subscriber identity management method and apparatus thereof
CN103780711A (en) Address assignment method and address assignment system for intelligent access type decision, and AAA system
US9801229B2 (en) Method for processing service connection in a communication network and device thereof
CN103825923A (en) Resource download method, business server and mobile phone client-terminal
US20190253458A1 (en) System and method for configuration of a connected device connection
CN102752411A (en) Redirection method and device
CN103533527A (en) Service data stream sending processing method and device
CN103716230A (en) Message sending method, device and server
CA2968439C (en) Charging control apparatus, method, and system
CN104092627A (en) Bandwidth adjusting method and device
CN101197838B (en) Authentication and authorization accounting system and method
CN103051745A (en) Obtaining method and device of address of session boundary controller
CN101453396B (en) Method and system for multiple service provider device management
CN102075386A (en) Identification method and device
CN105120444A (en) Image transmission method, agent server and network access system
CN102215275B (en) Service processing method and system as well as set top box
EP2982085A1 (en) Systems and methods for hierarchical mobile policy control and mobile policy roaming
CN103051626A (en) Authentication method and network device

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
RJ01 Rejection of invention patent application after publication

Application publication date: 20140611

RJ01 Rejection of invention patent application after publication