CN104486349B - Force access method in website - Google Patents

Force access method in website Download PDF

Info

Publication number
CN104486349B
CN104486349B CN201410810240.8A CN201410810240A CN104486349B CN 104486349 B CN104486349 B CN 104486349B CN 201410810240 A CN201410810240 A CN 201410810240A CN 104486349 B CN104486349 B CN 104486349B
Authority
CN
China
Prior art keywords
website
access
router
forced
service request
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201410810240.8A
Other languages
Chinese (zh)
Other versions
CN104486349A (en
Inventor
吴振华
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Taizhou Jiji Intellectual Property Operation Co.,Ltd.
Original Assignee
Shanghai Feixun Data Communication Technology Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Shanghai Feixun Data Communication Technology Co Ltd filed Critical Shanghai Feixun Data Communication Technology Co Ltd
Priority to CN201410810240.8A priority Critical patent/CN104486349B/en
Publication of CN104486349A publication Critical patent/CN104486349A/en
Application granted granted Critical
Publication of CN104486349B publication Critical patent/CN104486349B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/04Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks
    • H04L63/0428Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F2221/00Indexing scheme relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/21Indexing scheme relating to G06F21/00 and subgroups addressing additional information or applications relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/2113Multi-level security, e.g. mandatory access control

Abstract

The present invention provides a kind of website and forces access method, and the website forces access method to include:The HTTP service request that the ports of TCP in router 80 are received is forwarded to HTTP server in router;HTTP service request is redirected to pressure and accesses website by the HTTP server;Judge described to force to access whether website is white list network address in router;If so, then accessing the pressure accesses website.Technical solution of the present invention is when user is by router access network, first target ip address corresponding to ownership goal access network address is sent to user, when user accesses network address by target ip address access target, redirected to by the TCP80 ports of router and force website, avoiding forcing caused by cache contents accessing advertisement page can not problem of implementation, make website force to access more effectively, avoid omitting.

Description

Force access method in website
Technical field
The present invention relates to communication technical field, and access method is forced more particularly to a kind of website.
Background technology
Portal business (portal website's business) is that NSP/ISP (Internet Service Provider/internet service provider) is carried Supply a kind of new wideband switch-in business of user.User can pass through the WWW browser of standard in online (Internet Explorer or Netscape Navigator) accesses its portal website, and (Portal Server, pass through Web Server is realized) carry out.There is the Portal_Server of oneself in each operator.
Nowadays, it is also more next as the application that a kind of authentication, advertisement are implanted into the big-and-middle-sized public place such as hotel, airport It is more universal.In the prior art, mainly user is made to access wine by dnsproxy (DNS request agency service) methods cheated First force to access advertisement page during wireless network in shop, airport.
Dnsproxy processes are stored with router, terminal user is by DHCP mode connection route devices, if necessary to upper Net, terminal send a dns query request message, the net accessed in dns query request messages comprising request to router Location information.Dns query request messages enter router dnsporxy processes.If user accesses extensively before online without forcing The page is accused, then dns query requests are forwarded a packet to real DNS server by dnsproxy, and DNS server are translated domain names into Result return to dnsproxy, the result of domain name mapping is transmitted to terminal user by dnsproxy again, and such terminal user is just Know the IP address of domain name, can normally surf the Net.If user needs to force to access advertisement page before online, in dns When query request messages enter dnsproxy processes in router, the result for the domain name mapping that dnsproxy processes return is road By device gateway http server ip addresses, the web-page requests of such terminal user shift to the http of router gateway Server theres, by 302 reorientation methods in http agreements, the network address of user is gone on the website of forced gate .It is white list network address due to forcing the domain name of website, will not cheats so dnsporxy enters, normally be replied, terminal is used Family may browse through advertisement page.
However, the method realized and force to access advertisement page is cheated above by dnsproxy, easily by the shadow cached Ring, i.e. the online is asked IP address associated storage corresponding with its reality, subsequently surfed the Net by user when surfing the Net first time When, easily IP address corresponding to direct online request is directly surfed the Net, rather than is cheated and forced eventually by dnsproxy End subscriber accesses advertisement page, and the effect for forcing to access advertisement page does not just reach.
For cheating the application for forcing to access other types pressure website by dnsproxy, equally there is also above-mentioned because delaying The problem of depositing content and being unable to forced gate.
The content of the invention
In view of the above the shortcomings that prior art, it is an object of the invention to provide a kind of complete denomination of invention, uses In solving in the prior art, pressure access advertisement page can not problem of implementation caused by cache contents.
In order to achieve the above objects and other related objects, the present invention provides a kind of website and forces access method, the website Access method is forced to include:
The HTTP service request that the ports of TCP in router 80 are received is forwarded to HTTP server in router;
HTTP service request is redirected to pressure and accesses website by the HTTP server;
Judge described to force to access whether website is white list network address in router;
If so, then accessing the pressure accesses website.
Optionally, the website forces access method also to include:
It is described force access website be router in white list network address when, by it is described force access network address send to TCP80 ports in router.
Optionally, in the white list network address during the pressure accesses website for router, the website forces to access Method also includes:
Judge whether terminal MAC address corresponding to the HTTP service request is to exempt from MAC forced address;
If so, then access network address corresponding to the HTTP service request;Otherwise, access network address is forced to send to road by described By TCP80 ports in device.
Optionally, it is forwarded to HTTP service in router in the HTTP service request for receiving the ports of TCP in router 80 After device, and HTTP service request is redirected to before forcing to access website by the HTTP server, the website Access method is forced also to include:
Judge whether terminal MAC address corresponding to the HTTP service request is to exempt from MAC forced address;
If so, then access network address corresponding to the HTTP service request;Otherwise, the HTTP server takes the HTTP Business request is redirected to pressure and accesses website.
Optionally, it is connected with the HTTP service corresponding terminal of request by DHCP modes with the router.
Optionally, in the white list network address during the pressure accesses website for router, in addition to:
Determine whether the network address for forcing to access website is to force in list of websites;
If it is not, then the network address for accessing website is forced to be forced added to described in list of websites by described.
Optionally, the HTTP service is asked weight by the HTTP server by 302 redirection functions in http protocol It is directed to pressure and accesses website.
Optionally, the fire wall DNAT functions that the HTTP service request that the ports of TCP 80 receive in router passes through router It is forwarded to HTTP server in router
As described above, access method is forced in the website of the present invention, have the advantages that:
The HTTP service request that first ports of TCP in router 80 are received is forwarded to HTTP server in router;Then HTTP service request is redirected to pressure by the HTTP server and accesses website;Judge that the pressure accesses website and is No is the white list network address in router;If so, then accessing the pressure accesses website.Pass through router access network in user When, first target ip address corresponding to ownership goal access network address is sent to user, mesh is accessed by target ip address in user When mark accesses network address, redirected to by the TCP80 ports of router and force website, avoided caused by cache contents Force to access advertisement page can not problem of implementation, website is forced to access more effective, avoid omitting.
Brief description of the drawings
Fig. 1 is shown as the schematic flow sheet that access method first embodiment is forced in website of the present invention.
Fig. 2 is shown as the schematic flow sheet that access method second embodiment is forced in website of the present invention.
Fig. 3 is shown as the schematic flow sheet that access method 3rd embodiment is forced in website of the present invention.
Component label instructions
S401~S408 steps
Embodiment
Illustrate embodiments of the present invention below by way of specific instantiation, those skilled in the art can be by this specification Disclosed content understands other advantages and effect of the present invention easily.The present invention can also pass through specific realities different in addition The mode of applying is embodied or practiced, the various details in this specification can also be based on different viewpoints with application, without departing from Various modifications or alterations are carried out under the spirit of the present invention.It should be noted that in the case where not conflicting, following examples and implementation Feature in example can be mutually combined.
It should be noted that the diagram provided in following examples only illustrates the basic structure of the present invention in a schematic way Think, only show the component relevant with the present invention in schema then rather than according to component count, shape and the size during actual implement Draw, kenel, quantity and the ratio of each component can be a kind of random change during its actual implementation, and its assembly layout kenel It is likely more complexity.
Referring to Fig. 1, the schematic flow sheet of access method first embodiment is forced for website of the present invention.Website is strong in Fig. 1 Access method processed includes:
Step S401, the HTTP service request that the ports of TCP in router 80 are received are forwarded to HTTP service in router Device;
HTTP service request is redirected to pressure and accesses website by step S402, the HTTP server;
Step S403, judge described to force to access whether website is white list network address in router;
In step S403, if described force to access website as the white list network address in router, step S404 is performed; Otherwise, step S401 is re-executed.
Step S404, access the pressure and access website.
In the present embodiment, it is connected with the HTTP service corresponding terminal of request by DHCP modes with the router. HTTP service request is redirected to pressure by 302 redirection functions in http protocol and accesses net by the HTTP server Stand.
In the present embodiment, the HTTP service request that the ports of TCP 80 receive in router passes through the fire wall DNAT of router Function is forwarded to HTTP server in router.
In the present embodiment, the HTTP service request for first receiving the ports of TCP in router 80 is forwarded to HTTP in router Server;Then HTTP service request is redirected to pressure by the HTTP server and accesses website;Judge described strong System accesses whether website is white list network address in router;If so, then accessing the pressure accesses website.Pass through road in user When accessing network by device, first target ip address corresponding to ownership goal access network address is sent to user, passes through target in user When IP address access target accesses network address, redirected to by the TCP80 ports of router and force website, avoided because slow Deposit force caused by content to access advertisement page can not problem of implementation, website is forced to access more effective, avoid omitting.
Referring to Fig. 2, the schematic flow sheet of access method second embodiment is forced for website of the present invention.Website is strong in Fig. 2 Access method processed includes:
Step S401, the HTTP service request that the ports of TCP in router 80 are received are forwarded to HTTP service in router Device;
Step S405, judge whether terminal MAC address corresponding to the HTTP service request is to exempt from MAC forced address;
In step S405, terminal MAC address then performs to exempt from MAC forced address corresponding to the HTTP service request Step S406.Otherwise, step S402 is performed.
Step S406, access network address corresponding to the HTTP service request.
HTTP service request is redirected to pressure and accesses website by step S402, the HTTP server;
After step S402, step S403 is performed:Judge described to force to access whether website is white name in router Single network address;
In step S403, if described force to access website as the white list network address in router, step S404 is performed; Otherwise, step S401 is re-executed.
Step S404, access the pressure and access website.
In the present embodiment, the HTTP server by the HTTP service request be redirected to pressure access website it Before, first judge whether terminal MAC address corresponding to the HTTP service request is to exempt from MAC forced address, so that having accessed Pressure access website need not be visited again by crossing the user for forcing to access website.Ensureing the premise of user's access pressure access website Under, simplify the browsing process of user.
Referring to Fig. 3, the schematic flow sheet of access method 3rd embodiment is forced for website of the present invention.Website is strong in Fig. 3 Access method processed includes:
Step S401, the HTTP service request that the ports of TCP in router 80 are received are forwarded to HTTP service in router Device;
HTTP service request is redirected to pressure and accesses website by step S402, the HTTP server;
Step S403, judge described to force to access whether website is white list network address in router;
In step S403, if described force to access website as the white list network address in router, step S404 is performed; Otherwise, step S407 is re-executed.
Step S404, access the pressure and access website.
Step S407, judge whether terminal MAC address corresponding to the HTTP service request is to exempt from MAC forced address;
In step S 407, if terminal MAC address is held to exempt from MAC forced address corresponding to HTTP service request Row step S408;Otherwise step S401 is performed;
Step S408, access network address corresponding to the HTTP service request.
In the present embodiment, in the white list network address during the pressure accesses website for router, also described in judgement Whether terminal MAC address corresponding to HTTP service request is to exempt from MAC forced address, so that having accessed pressure accesses website User need not visit again pressure access website, ensure user access force access website on the premise of, simplify user's Browsing process.
In summary, the present invention first accesses ownership goal corresponding to network address when user is by router access network Target ip address is sent to user, when user accesses network address by target ip address access target, passes through the TCP80 of router Port redirected to force website, avoid caused by cache contents force access advertisement page can not problem of implementation, Make website force to access more effectively, avoid omitting.So the present invention effectively overcomes various shortcoming of the prior art and has height Spend industrial utilization.
The above-described embodiments merely illustrate the principles and effects of the present invention, not for the limitation present invention.It is any ripe Know the personage of this technology all can carry out modifications and changes under the spirit and scope without prejudice to the present invention to above-described embodiment.Cause This, those of ordinary skill in the art is complete without departing from disclosed spirit and institute under technological thought such as Into all equivalent modifications or change, should by the present invention claim be covered.

Claims (8)

1. access method is forced in a kind of website, it is characterised in that forces access method to include in the website:
The HTTP service request that the ports of TCP in router 80 are received is forwarded to HTTP server in router;
HTTP service request is redirected to pressure and accesses website by the HTTP server;
Judge described to force to access whether website is white list network address in router;
If so, then accessing the pressure accesses website.
2. access method is forced in website according to claim 1, it is characterised in that:Access method is forced also to be wrapped in the website Include:
In the white list network address during the pressure accesses website for router, access network address is forced to send to route by described TCP80 ports in device.
3. access method is forced in website according to claim 2, it is characterised in that:Force to access website Bu Wei roads described During by white list network address in device, the website forces access method also to include:
Judge whether terminal MAC address corresponding to the HTTP service request is to exempt from MAC forced address;
If so, then access network address corresponding to the HTTP service request;Otherwise, access network address is forced to send to router by described Middle TCP80 ports.
4. access method is forced in website according to claim 1, it is characterised in that:Connect by the ports of TCP in router 80 The HTTP service request of receipts is forwarded in router after HTTP server, and the HTTP server is by the HTTP service Request is redirected to before pressure access website, and the website forces access method also to include:
Judge whether terminal MAC address corresponding to the HTTP service request is to exempt from MAC forced address;
If so, then access network address corresponding to the HTTP service request;Otherwise, the HTTP server please by the HTTP service Ask and be redirected to pressure access website.
5. access method is forced in website according to claim 4, it is characterised in that:It is corresponding with HTTP service request Terminal is connected by DHCP modes with the router.
6. access method is forced in website according to claim 1, it is characterised in that:Force to access website Bu Wei roads described During by white list network address in device, in addition to:
Determine whether the network address for forcing to access website is to force in list of websites;
If it is not, then the network address for accessing website is forced to be forced added to described in list of websites by described.
7. access method is forced in website according to claim 1, it is characterised in that:The HTTP server is assisted by HTTP HTTP service request is redirected to pressure and accesses website by 302 redirection functions in view.
8. access method is forced in website according to claim 1, it is characterised in that:The ports of TCP 80 receive in router HTTP service request is forwarded to HTTP server in router by the fire wall DNAT functions of router.
CN201410810240.8A 2014-12-19 2014-12-19 Force access method in website Active CN104486349B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201410810240.8A CN104486349B (en) 2014-12-19 2014-12-19 Force access method in website

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201410810240.8A CN104486349B (en) 2014-12-19 2014-12-19 Force access method in website

Publications (2)

Publication Number Publication Date
CN104486349A CN104486349A (en) 2015-04-01
CN104486349B true CN104486349B (en) 2018-01-16

Family

ID=52760853

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201410810240.8A Active CN104486349B (en) 2014-12-19 2014-12-19 Force access method in website

Country Status (1)

Country Link
CN (1) CN104486349B (en)

Families Citing this family (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN105338072A (en) * 2015-10-20 2016-02-17 上海斐讯数据通信技术有限公司 HTTP (hyper text transport protocol) redirecting method and routing equipment
CN106572515A (en) * 2016-11-10 2017-04-19 上海斐讯数据通信技术有限公司 Method and device for making portal page maintain popping up
CN106612209A (en) * 2016-12-29 2017-05-03 西安东途电子科技有限公司 Method of intelligent router for configuring webpage system and intelligent router
CN106934019B (en) * 2017-03-10 2020-02-14 深圳市商舟网科技有限公司 Method and device for accessing website
CN109039928A (en) * 2017-06-09 2018-12-18 华为技术有限公司 Transmission method, device and the Wireless Fidelity router of data
CN108933792A (en) * 2018-07-10 2018-12-04 北京小米移动软件有限公司 Method for network access control and equipment

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101127782A (en) * 2007-07-19 2008-02-20 中兴通讯股份有限公司 Method for forceful implementation of portal service
CN101217560A (en) * 2007-12-29 2008-07-09 杭州华三通信技术有限公司 A webpage push method, system and device
CN101741769A (en) * 2008-11-25 2010-06-16 华为终端有限公司 Redirection method for gateway and webpage

Family Cites Families (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6829654B1 (en) * 2000-06-23 2004-12-07 Cloudshield Technologies, Inc. Apparatus and method for virtual edge placement of web sites
US9088415B2 (en) * 2011-08-03 2015-07-21 Cisco Technology, Inc. Authentication of cache DNS server responses

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101127782A (en) * 2007-07-19 2008-02-20 中兴通讯股份有限公司 Method for forceful implementation of portal service
CN101217560A (en) * 2007-12-29 2008-07-09 杭州华三通信技术有限公司 A webpage push method, system and device
CN101741769A (en) * 2008-11-25 2010-06-16 华为终端有限公司 Redirection method for gateway and webpage

Also Published As

Publication number Publication date
CN104486349A (en) 2015-04-01

Similar Documents

Publication Publication Date Title
CN104486349B (en) Force access method in website
CN105323173B (en) The setting method and device of networking rule entry
CN102843391B (en) A kind of method for sending information and gateway
CN103780714B (en) The detection method of a kind of dns server and device
CN106230942B (en) A kind of method and system of time source access
RU2006113119A (en) CONFIGURING A NAME RESOLUTION SYSTEM FOR COMMUNICATION BETWEEN HOME NETWORKS
CN105847312B (en) A kind of resource access method and user terminal
CN107222587B (en) A kind of method for remotely accessing private network device
CN104821965B (en) DNS intelligently parsing methods based on egress network
CN106067890A (en) A kind of domain name analytic method, Apparatus and system
US20160050178A1 (en) Methods circuits devices systems and associated computer executable code for providing conditional domain name resolution
CN105939399A (en) Domain name resolution method and device
CN103685584B (en) A kind of anti-Domain Hijacking method and system based on tunneling technique
CN104243506A (en) Browser redirection method and device
CN104283895A (en) Compulsive portal authentication control system and method used for wireless router
CN105357212A (en) DNS end-to-end analysis method capable of ensuring safety and privacy
CN103581350B (en) Cross over method, terminal, equipment and the system that NAT issues Internet service
CN107979659A (en) Convenient access method, system, electronic equipment and storage medium based on domain name
CN102932496A (en) Domain name system information management system and method
CN106131144A (en) A kind of method and system of whole world content distribution
CN106161436A (en) A kind of method preventing domain name system DNS from polluting and gateway
CN101577676B (en) Method and device for realizing viscosity access
CN105763658B (en) For being addressed method, addressable server and the system of equipment dynamic IP addressing
CN102970387A (en) Domain name resolution method, device and system
CN104202444B (en) A kind of outside access control method, gateway and dns server

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
EXSB Decision made by sipo to initiate substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant
TR01 Transfer of patent right

Effective date of registration: 20201103

Address after: 318015 no.2-3167, zone a, Nonggang City, no.2388, Donghuan Avenue, Hongjia street, Jiaojiang District, Taizhou City, Zhejiang Province

Patentee after: Taizhou Jiji Intellectual Property Operation Co.,Ltd.

Address before: 201616 Shanghai city Songjiang District Sixian Road No. 3666

Patentee before: Phicomm (Shanghai) Co.,Ltd.

TR01 Transfer of patent right