CN104662966B - The control method and equipment of service access - Google Patents
The control method and equipment of service access Download PDFInfo
- Publication number
- CN104662966B CN104662966B CN201280002943.7A CN201280002943A CN104662966B CN 104662966 B CN104662966 B CN 104662966B CN 201280002943 A CN201280002943 A CN 201280002943A CN 104662966 B CN104662966 B CN 104662966B
- Authority
- CN
- China
- Prior art keywords
- terminal
- network
- service
- business
- information
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Expired - Fee Related
Links
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W48/00—Access restriction; Network selection; Access point selection
- H04W48/08—Access restriction or access information delivery, e.g. discovery data delivery
- H04W48/10—Access restriction or access information delivery, e.g. discovery data delivery using broadcasted information
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Mobile Radio Communication Systems (AREA)
Abstract
The invention discloses a kind of control methods of service access, the method passes through pre-configuration by terminal, or service lists information or grade of service index information are obtained from network, the service lists information includes the identification information for the business for allowing and/or forbidding, and the grade of service index information includes the mark and class information for the business for allowing and/or forbidding;After the terminal receives the instruction that the network issues, then judge whether the business that terminal to be initiated allows to access according to the service lists information or grade of service index information, if, then the terminal service access to be initiated request is initiated to the network, if it is not, then forbidding initiating the terminal service access to be initiated request to the network.Internet resources can be saved in special scenes or in the case where network congestion to realize, ensure the access of permission business, reinforce operator to the processing capacity of control and the emergency event of business.
Description
Technical field
The invention belongs to the communications field more particularly to the control methods and equipment of service access.
Background technique
In recent years, mobile Internet application development is rapid, and mobile phone terminal can easily download the various application programs of installation.But
It is in the case where network congestion, these applications will aggravate wireless access network (Radio AccessNetwork, RAN) or core
The congestion of the side net (Core Network, CN).When congestion occurs for network, certain application access networks should be forbidden to save network
Resource.In addition, some applications also result in problem, such as certain applications can leak of user in the case where user does not permit
People's information violates local law.Therefore, should provide a kind of mechanism allows network that can forbid certain applications access networks.And it is another
Aspect, certain applications are extremely important under special circumstances, such as when natural calamity occurs, the service of disaster information announcement board or calamity
Do harm to the safety that voice information services etc. can allow people to confirm relatives.Therefore it is hoped that there will be a kind of control access mechanisms for operator, i.e.,
Network remains to provide access for above-mentioned critical services in the case where congestion occurs, and can forbid other business simultaneously to guarantee
The use of important service.
Third generation partner program (The3rd Generation Partnership Project, 3GPP) has proposed
The mechanism of some access controls such as access rank and forbid (Access Class Barring, ACB), domain access control
(Domain Specific Access Control, DSAC), service access control (Service Specific Access
Control, SSAC) and the access control (Extended Access Barring, EAB) of extension etc..ACB and EAB is gathered around in network
The user terminal of all business initiates (Mobile origination, MO) request, DSAC mechanism on limiting terminal in the case of plug
Only controlling terminal can initiate circuit switching (Circuit Switched, CS) domain business or packet switch (Packet
Switched) domain business, also only the business such as voice or visual telephone are initiated in control to SSAC.
It can be realized the permission or limitation control to specific transactions there has been no a kind of mechanism at present, it is therefore desirable to provide one kind
Mechanism still allows specific transactions to access network in the case where access control is implemented.Based on the demand, 3GPP normal structure
Propose data connection and congestion control (Application specific Congestion control based on business
For Data Connectivity, ACDC) research project, it discusses to above-mentioned application scenarios and demand, but do not mention also at present
Corresponding solution out.
Summary of the invention
The embodiment of the invention provides the control methods of service access, realize and access network-based control to specific transactions.?
When network congestion or disaster occur, network advertisement terminal ACDC starting is carried out the control of business by terminal, or by network
Terminal access message is controlled, guarantees still to allow specific transactions to access network in the case where access control is implemented, and is prohibited
Only other service access networks.Internet resources can be saved in special scenes or in the case where network congestion in this way, ensure and permit
Perhaps the access of business reinforces operator to the processing capacity of control and the emergency event of business.
In a first aspect, a kind of control method of service access, which is characterized in that the described method includes:
Terminal obtains service lists information or grade of service index information, the service lists information include allow and/or
The identification information for the business forbidden, the grade of service index information include the mark and grade for the business for allowing and/or forbidding
Information;
After the terminal receives the instruction that the network issues, then according to the service lists information or grade of service rope
Fuse breath judges whether the business that terminal to be initiated allows to access, if so, initiating what the terminal to be initiated to the network
Service access request, if it is not, then forbidding initiating the terminal service access to be initiated request to the network.
In the possible implementation of the first of first aspect, the terminal obtains service lists information or industry from network
Business hierarchy index information specifically:
The terminal reception service lists information or grade of service index information by way of OMA DM by the network.
In the possible implementation of second of first aspect, the terminal obtains service lists information or industry from network
Business hierarchy index information specifically:
The terminal reception service lists information or grade of service index letter by way of NAS signaling by the network
Breath.
In the third possible implementation of first aspect, the terminal obtains service lists information or industry from network
Business hierarchy index information specifically:
, the terminal reception service lists information or grade of service index letter by way of system broadcasts by the network
Breath.
With reference to first aspect or the first possible implementation of first aspect or with reference to first aspect second can
Can implementation or the third possible implementation with reference to first aspect, the 4th kind of possible realization side of first aspect
Formula, it is described after receive the instruction that the network issues when the terminal, then according to the service lists information or grade of service rope
Fuse breath judges whether the business that terminal to be initiated allows specifically:
After the terminal receives the instruction that the network issues, the Non-Access Stratum or access layer of the terminal are according to the industry
Business list information or grade of service index information judge whether the business that terminal to be initiated allows to access.
With reference to first aspect or the first possible implementation of first aspect or with reference to first aspect second can
4th kind of possible realization of the implementation or the third possible implementation or first aspect with reference to first aspect of energy
Mode, the 5th kind of possible implementation of first aspect, the method also includes:
When the terminal judges the business to be initiated of terminal according to the service lists information or grade of service index information
When allowing to access, then the terminal establishes connection request message to network initiation, and carrying business in the solicited message is
The mark of no permission, so that the network judges whether the business that the terminal to be initiated allows according to the mark.
The 5th kind of possible implementation with reference to first aspect, it is described when the terminal is according to the service lists information
Or the grade of service index information business that judges that terminal to be initiated when allowing, then the terminal is believed to the network initiated request
It ceases, the mark whether business that carries in the solicited message allows, so that the network judges the terminal according to the mark
Whether the business to be initiated allows specifically:
When the terminal judges the business to be initiated of terminal according to the service lists information or grade of service index information
When permission, then the access layer of the terminal initiates RRC connection request information to the network, in the RRC connection request information
The mark whether carrying business allows, so that the network judges whether the business that the terminal to be initiated permits according to the mark
Perhaps it accesses;
When the terminal judges the business to be initiated of terminal according to the service lists information or grade of service index information
When allowing to access, then the Non-Access Stratum of the terminal initiates NAS message to the network, and carrying business in the NAS message is
The mark of no permission, so that the network judges whether the business that the terminal to be initiated allows to access according to the mark.
6th kind of possible implementation of first aspect, the terminal receive the instruction that the network issues specifically:
The terminal is by way of system broadcast message or the mode of the mode of dedicated signaling or application layer is obtained from network
Fetching is shown.
The 6th kind of possible implementation with reference to first aspect, it is described when the terminal receives the finger that the network issues
After showing, then judge whether the business that terminal to be initiated allows specifically according to the service lists information or grade of service index information
Are as follows:
After the terminal receives the instruction that the network issues, the terminal is arranged by terminal firewall according to the business
Table information or grade of service index information judge whether the business that terminal to be initiated allows to access.
Second aspect, a kind of control method of service access, which comprises
Service lists information or grade of service index information are configured to terminal by network;
The instruction that the network is issued to the terminal, so that the terminal is according to the service lists information or business etc.
Grade index information judges whether the business that terminal to be initiated allows to access.
The possible implementation of the first of second aspect, the network configuration service lists information or grade of service index
Information is to terminal specifically:
The network by way of OMA DM configuration service list information or configuration service hierarchy index information to terminal.
The possible implementation of second of second aspect, the network configuration service lists information or grade of service index
Information is to terminal specifically:
The network configuration service list information or configuration service hierarchy index information by way of NAS signaling are given eventually
End.
The third possible implementation of second aspect, the network configuration service lists information or grade of service index
Information is to terminal specifically:
The network configuration service list information or configuration service hierarchy index information by way of system broadcasts are given eventually
End.
Second in conjunction with the possible implementation of the first of second aspect or second aspect or combination second aspect can
The implementation of energy or the third the possible implementation for combining second aspect, the 4th kind of possible realization side of second aspect
Formula, the network issue instruction to the terminal specifically:
The network is by way of system broadcasts or the mode of dedicated signaling sends an indication to terminal.
In conjunction with the 4th kind of possible implementation of second aspect, the 5th kind of possible implementation of second aspect, institute
State method further include:
What the network received that the terminal sends establishes connection request message, and described establish in connection request message carries
Whether business allows the mark accessed;
The network judges whether the business that terminal to be initiated allows to access according to the mark.
In conjunction with the 5th kind of possible implementation of second aspect, the 6th kind of possible implementation of second aspect, institute
The mark business whether carried in the solicited message that network is sent according to the terminal allows is stated, judges the industry to be initiated of terminal
Whether business allows specifically:
Whether business permission is carried in the RRC connection request information that the wireless access network of the network is initiated according to terminal
Mark, judges whether the business that terminal to be initiated allows.
In conjunction with the 5th kind of possible implementation of second aspect, the 7th kind of possible implementation of second aspect, institute
The mark business whether carried in the solicited message that network is sent according to the terminal allows is stated, judges the industry to be initiated of terminal
Whether business allows specifically:
The mark that business permission whether is carried in the NAS message that the core net of the network is initiated according to terminal, judges end
Whether the business to be initiated of end allows.
8th kind of possible implementation of second aspect, the network believe service lists information or grade of service index
Breath is configured to terminal specifically:
Service lists information or grade of service index information are configured to terminal by SOCKS server by the network.
In conjunction with the 8th kind of possible implementation of second aspect, the instruction that the network is issued to the terminal is specific
Are as follows:
The network is by way of system broadcasts or the mode of the mode of dedicated signaling or application layer is to the terminal
Issue instruction.
The third aspect, a kind of terminal device, the equipment include:
Acquiring unit obtains service lists information or grade of service index information, the service lists information for terminal
Identification information comprising the business for allowing and/or forbidding, the grade of service index information include the business for allowing and/or forbidding
Mark and class information;The service lists information or grade of service index information that the acquiring unit will acquire are sent to access
Control unit;
The access control unit, for after the terminal receives the instruction that the network issues, then according to the industry
Business list information or grade of service index information judge whether the business that terminal to be initiated allows to access, if so, to the net
Network initiates the terminal service access to be initiated request, if it is not, then forbidding initiating what the terminal to be initiated to the network
Service access request.
The possible implementation of the first of the third aspect, the acquiring unit are specifically used for:
The terminal reception service lists information or grade of service index information by way of OMA DM by the network.
The possible implementation of second of the third aspect, the acquiring unit are specifically used for:
The terminal reception service lists information or grade of service index letter by way of NAS signaling by the network
Breath.
The third possible implementation of the third aspect, the acquiring unit are specifically used for:
, the terminal reception service lists information or grade of service index letter by way of system broadcasts by the network
Breath.
Second in conjunction with the possible implementation of the first of the third aspect or the third aspect or the third aspect is possible
The possible implementation of the third of implementation or the third aspect, the 4th kind of possible implementation of the third aspect are described
Access control unit is specifically used for:
After the terminal receives the instruction that the network issues, the Non-Access Stratum or access layer of the terminal are according to the industry
Business list information or grade of service index information judge whether the business that terminal to be initiated allows to access.
Second in conjunction with the possible implementation of the first of the third aspect or the third aspect or the third aspect is possible
4th kind of possible implementation of the possible implementation of the third of implementation or the third aspect or the third aspect, third
5th kind of possible implementation of aspect, the equipment further include:
Unit is identified, for judging terminal according to the service lists information or grade of service index information when the terminal
When the business to be initiated allows, then to the network initiated request information, carry business in the solicited message is the terminal
The mark of no permission, so that the network judges whether the business that the terminal to be initiated allows according to the mark.
In conjunction with the 5th kind of possible implementation of the third aspect, the mark unit is specifically used for:
When the terminal judges the business to be initiated of terminal according to the service lists information or grade of service index information
When allowing to access, then the access layer of the terminal initiates radio resource control RRC connectivity request message to the network, described
The mark whether business allows is carried in RRC connection request information, so that the network judges the terminal according to the mark
Whether the business to be initiated, which allows, is accessed;
When the terminal judges the business to be initiated of terminal according to the service lists information or grade of service index information
When allowing to access, then the Non-Access Stratum of the terminal initiates NAS message to the network, and carrying business in the NAS message is
The mark of no permission, so that the network judges whether the business that the terminal to be initiated allows to access according to the mark.
6th kind of possible implementation of the third aspect, the access control unit are specifically used for:
The terminal is by way of system broadcast message or the mode of the mode of dedicated signaling or application layer is obtained from network
Fetching is shown.
In conjunction with the 6th kind of possible implementation of the third aspect, the access control unit is specifically used for:
After the terminal receives the instruction that the network issues, the terminal is arranged by terminal firewall according to the business
Table information or grade of service index information judge whether the business that terminal to be initiated allows to access.
Fourth aspect, a kind of network element device, the equipment include:
Service lists information or grade of service index information are configured to terminal for network by configuration unit;
Issuance unit, for the instruction that the network is issued to the terminal, so that the terminal is arranged according to the business
Table information or grade of service index information judge whether the business that terminal to be initiated allows to access.
The possible implementation of the first of fourth aspect, the configuration unit are specifically used for:
The network by way of OMA DM configuration service list information or configuration service hierarchy index information to terminal.
The possible implementation of second of fourth aspect, the configuration unit are specifically used for:
The network configuration service list information or configuration service hierarchy index information by way of NAS signaling are given eventually
End.
The third possible implementation of fourth aspect, the configuration unit are specifically used for:
The network configuration service list information or configuration service hierarchy index information by way of system broadcasts are given eventually
End.
Second in conjunction with the possible implementation of the first of fourth aspect or fourth aspect or fourth aspect is possible
The possible implementation of the third of implementation or fourth aspect, the 4th kind of possible implementation of fourth aspect are described
Issuance unit is specifically used for:
The network is by way of system broadcasts or the mode of dedicated signaling sends an indication to terminal.
In conjunction with the 4th kind of possible implementation of fourth aspect, the 5th kind of possible implementation of fourth aspect, institute
State equipment further include:
Processing unit receives the connection request message of establishing of the terminal transmission for the network, described to establish connection
The mark whether business allows to access is carried in request message;
The network judges whether the business that terminal to be initiated allows to access according to the mark.
In conjunction with the 5th kind of possible implementation of fourth aspect, the processing unit is specifically used for:
Whether business permission is carried in the RRC connection request information that the wireless access network of the network is initiated according to terminal
Mark, judges whether the business that terminal to be initiated allows.
In conjunction with the 5th kind of possible implementation of fourth aspect, the processing unit is specifically used for:
The mark that business permission whether is carried in the NAS message that the core net of the network is initiated according to terminal, judges end
Whether the business to be initiated of end allows.
6th kind of possible implementation of fourth aspect, the configuration unit are specifically used for:
Service lists information or grade of service index information are handed down to terminal by SOCKS server by the network.
In conjunction with the 6th kind of possible implementation of fourth aspect, the issuing unit is specifically used for:
The network is by way of system broadcasts or the mode of the mode of dedicated signaling or application layer is to the terminal
Issue instruction.
5th aspect, a kind of terminal device, the equipment include:
Acquiring unit obtains service lists information or grade of service index information, the service lists information for terminal
Identification information comprising the business for allowing and/or forbidding, the grade of service index information include the business for allowing and/or forbidding
Mark and class information;The service lists information or grade of service index information that the acquiring unit will acquire are sent to access
Control unit;
The access control unit, for after the terminal receives the instruction that the network issues, then according to the industry
Business list information or grade of service index information judge whether the business that terminal to be initiated allows to access, if so, to the net
Network initiates the terminal service access to be initiated request, if it is not, then forbidding initiating what the terminal to be initiated to the network
Service access request.
The first possible implementation of 5th aspect, the equipment includes processor, communication interface, memory and total
Line;
Wherein processor, communication interface, memory complete mutual communication by bus;
The communication interface, for being communicated with network element device;
The processor, for executing program;
The memory, for storing program;
Wherein for terminal, by being pre-configured, or from network, acquisition service lists information or the grade of service index letter to program
Breath, the service lists information or grade of service index information include the identification information for the business for allowing and/or forbidding;For working as
After the terminal receives the instruction that the network issues, then judged according to the service lists information or grade of service index information
Whether the business to be initiated of terminal allows to access, and asks if so, initiating the service access that the terminal to be initiated to the network
It asks, if it is not, then forbidding initiating the terminal service access to be initiated request to the network.
In conjunction with the first possible implementation of the 5th aspect, second of possible implementation of the 5th aspect, institute
Acquiring unit is stated to be specifically used for:
The terminal reception service lists information or grade of service index information by way of OMA DM by the network.
In conjunction with the first possible implementation of the 5th aspect, the third possible implementation of the 5th aspect, institute
Acquiring unit is stated to be specifically used for:
The terminal reception service lists information or grade of service index letter by way of NAS signaling by the network
Breath.
In conjunction with the first possible implementation of the 5th aspect, the 4th kind of possible implementation of the 5th aspect, institute
Acquiring unit is stated to be specifically used for:
The terminal reception service lists information or grade of service index letter by way of system broadcasts by the network
Breath.
In conjunction with the 5th aspect the first possible implementation or the 5th aspect second of possible implementation or
The 4th kind of possible implementation of the third possible implementation of the 5th aspect or the 5th aspect, the 5th of the 5th aspect the
The possible implementation of kind, the access control unit are specifically used for:
After the terminal receives the instruction that the network issues, the Non-Access Stratum or access layer of the terminal are according to the industry
Business list information or grade of service index information judge whether the business that terminal to be initiated allows to access.
In conjunction with the 5th aspect the first possible implementation or the 5th aspect second of possible implementation or
The of the 4th kind of possible implementation or the 5th aspect of the third possible implementation of 5th aspect or the 5th aspect
Five kinds of possible implementations, the 6th kind of possible implementation of the 5th aspect, the equipment further include:
Unit is identified, for judging terminal according to the service lists information or grade of service index information when the terminal
When the business to be initiated allows, then to the network initiated request information, carry business in the solicited message is the terminal
The mark of no permission, so that the network judges whether the business that the terminal to be initiated allows according to the mark.
In conjunction with the 6th kind of possible implementation of the 5th aspect, the mark unit is specifically used for:
When the terminal judges the business to be initiated of terminal according to the service lists information or grade of service index information
When allowing to access, then the access layer of the terminal initiates radio resource control RRC connectivity request message to the network, described
The mark whether business allows is carried in RRC connection request information, so that the network judges the terminal according to the mark
Whether the business to be initiated, which allows, is accessed;
When the terminal judges the business to be initiated of terminal according to the service lists information or grade of service index information
When allowing to access, then the Non-Access Stratum of the terminal initiates NAS message to the network, and carrying business in the NAS message is
The mark of no permission, so that the network judges whether the business that the terminal to be initiated allows to access according to the mark.
In conjunction with the first possible implementation of the 5th aspect, the 7th kind of possible implementation of the 5th aspect, institute
Access control unit is stated to be specifically used for:
The terminal is by way of system broadcast message or the mode of the mode of dedicated signaling or application layer is obtained from network
Fetching is shown.
In conjunction with the 7th kind of possible implementation of the 5th aspect, the 8th kind of possible implementation of the 5th aspect, institute
Access control unit is stated to be specifically used for:
After the terminal receives the instruction that the network issues, the terminal is arranged by terminal firewall according to the business
Table information or grade of service index information judge whether the business that terminal to be initiated allows to access.
6th aspect, a kind of network element device, the network element device include:
Service lists information or grade of service index information are configured to terminal for network by configuration unit;
Issuance unit is used for, the instruction that the network is issued to the terminal, so that the terminal is arranged according to the business
Table information or grade of service index information judge whether the business that terminal to be initiated allows to access.
The first possible implementation of 6th aspect, the network element device includes processor, communication interface, memory
And bus:
Wherein processor, communication interface, memory complete mutual communication by bus;
The communication interface, for being communicated with terminal device;
The processor, for executing program;
The memory, for storing program;
Wherein service lists information or grade of service index information are configured to terminal for network by program;, the network
The instruction issued to the terminal, so that the terminal judges eventually according to the service lists information or grade of service index information
Whether the business to be initiated of end allows to access.
In conjunction with the first possible implementation of the 6th aspect, second of possible implementation of the 6th aspect, institute
Configuration unit is stated to be specifically used for:
The network by way of OMA DM configuration service list information or configuration service hierarchy index information to terminal.
In conjunction with the first possible implementation of the 6th aspect, the third possible implementation of the 6th aspect, institute
Configuration unit is stated to be specifically used for:
The network configuration service list information or configuration service hierarchy index information by way of NAS signaling are given eventually
End.
In conjunction with the first possible implementation of the 6th aspect, the 4th kind of possible implementation of the 6th aspect, institute
Configuration unit is stated to be specifically used for:
, the network configuration service list information or configuration service hierarchy index information by way of system broadcasts are given eventually
End.
In conjunction with the 6th aspect the first possible implementation method or the 6th aspect second of possible implementation method or
The 4th kind of possible implementation method of the third possible implementation method of the 6th aspect or the 6th aspect, the of the 6th aspect
Five kinds of possible implementation methods, the issuing unit are specifically used for:
The network is by way of system broadcasts or the mode of dedicated signaling sends an indication to terminal.
In conjunction with the 5th kind of possible implementation of the 6th aspect, the 6th kind of possible implementation of the 6th aspect, institute
State equipment further include:
Processing unit receives the connection request message of establishing of the terminal transmission for the network, described to establish connection
The mark whether business allows to access is carried in request message;
The network judges whether the business that terminal to be initiated allows to access according to the mark.
In conjunction with the 6th kind of possible implementation of the 6th aspect, the processing unit is specifically used for:
Whether business permission is carried in the RRC connection request information that the wireless access network of the network is initiated according to terminal
Mark, judges whether the business that terminal to be initiated allows.
In conjunction with the 6th kind of possible implementation of the 6th aspect, the processing unit is specifically used for:
The mark that business permission whether is carried in the NAS message that the core net of the network is initiated according to terminal, judges end
Whether the business to be initiated of end allows.
In conjunction with the first possible implementation of the 6th aspect, the 7th kind of possible implementation of the 6th aspect, institute
Configuration unit is stated to be specifically used for:
Service lists information or grade of service index information are handed down to terminal by SOCKS server by the network.
In conjunction with the 7th kind of possible implementation of the 6th aspect, the issuing unit is specifically used for:
The network is by way of system broadcasts or the mode of the mode of dedicated signaling or application layer is to the terminal
Issue instruction.
The invention discloses a kind of control method of service access, the method obtains business column by terminal from network
Table information or grade of service index information;After the terminal receives the instruction that the network issues, then arranged according to the business
Table information or grade of service index information judge whether the business that terminal to be initiated allows, if so, initiating institute to the network
The business to be initiated of terminal is stated, if it is not, then forbidding initiating the business to be initiated of the terminal to the network;The network can also
The service access message to be initiated the terminal is verified, and realizes that network controls the business to be initiated of the terminal
System.By above-mentioned terminal or network-based control, realizes the service access control under special scenes or network congestion, save net
Network resource reinforces operator to the processing capacity of control and the emergency event of business to ensure the access of permission business.
Detailed description of the invention
It to describe the technical solutions in the embodiments of the present invention more clearly, below will be to needed in the embodiment
Attached drawing is briefly described, it should be apparent that, drawings in the following description are only some embodiments of the invention, for ability
For the those of ordinary skill of domain, without any creative labor, it can also be obtained according to these attached drawings others
Attached drawing.
Fig. 1 is a kind of control method flow chart for service access that the embodiment of the present invention one provides;
Fig. 2 is a kind of control method flow chart of service access provided by Embodiment 2 of the present invention;
Fig. 3 is a kind of control method flow chart for service access that the embodiment of the present invention three provides;
Fig. 4 is a kind of control method flow chart for service access that the embodiment of the present invention four provides;
Fig. 5 is a kind of control method schematic diagram of service access provided in an embodiment of the present invention;
Fig. 6 is a kind of control method schematic diagram of service access provided in an embodiment of the present invention;
Fig. 7 is a kind of control method schematic diagram of service access provided in an embodiment of the present invention;
Fig. 8 is a kind of control method schematic diagram of service access provided in an embodiment of the present invention;
Fig. 9 is a kind of control method schematic diagram of service access provided in an embodiment of the present invention;
Figure 10 is a kind of control method schematic diagram of service access provided in an embodiment of the present invention;
Figure 11 is a kind of control method schematic diagram of service access provided in an embodiment of the present invention;
Figure 12 is a kind of control method schematic diagram of service access provided in an embodiment of the present invention;
Figure 13 is a kind of control method schematic diagram of service access provided in an embodiment of the present invention;
Figure 14 is a kind of control method schematic diagram of service access provided in an embodiment of the present invention;
Figure 15 is a kind of equipment structure chart for terminal device that the embodiment of the present invention five provides;
Figure 16 is a kind of equipment structure chart for network element device that the embodiment of the present invention six provides;
Figure 17 is a kind of equipment structure chart for terminal device that the embodiment of the present invention seven provides;
Figure 18 is a kind of equipment structure chart for network element device that the embodiment of the present invention eight provides.
Specific embodiment
In order to make the objectives, technical solutions, and advantages of the present invention clearer, with reference to the accompanying drawings and embodiments, right
The present invention is further elaborated.It should be appreciated that the specific embodiments described herein are merely illustrative of the present invention, and
It is not used in the restriction present invention.
The foregoing is merely illustrative of the preferred embodiments of the present invention, is not intended to limit the invention, all in essence of the invention
Made any modifications, equivalent replacements, and improvements etc., should all be included in the protection scope of the present invention within mind and principle.
Embodiment one
It is a kind of method flow diagram of the control for service access that the embodiment of the present invention one provides with reference to Fig. 1, Fig. 1.Such as Fig. 1
It is shown, method includes the following steps:
Step 101, terminal obtains service lists information or grade of service index information, and the service lists information includes to permit
Perhaps and/or the identification information of business forbidden, the grade of service index information includes the mark for the business for allowing and/or forbidding
And class information;
In this step, terminal can obtain service lists information or grade of service index information by way of pre-configuration.
The service lists information or grade of service index information can be stored in SIM cards of mobile phones in advance by the mode of the pre-configuration
On, the service lists information can be black or white list form, include the service identification for allowing or forbidding business in list.
The grade of service index information includes allowing or forbidding outside the service identification of business, further includes the hierarchy index letter of type of service
Breath, business is divided, and establish index information according to division by the type of business, allows terminal to preset type
Business carries out permission or quiescing, and permission or quiescing can also be carried out to different grades of business.
In this step, according to the service lists information, when the business that the terminal to be initiated is believed in the service lists
It is allowed in breath, then judges that the business that the terminal to be initiated allows to access;
Or according to the grade of service index information, believe when the business that the terminal to be initiated is indexed in the grade of service
It is the grade for belonging to permission in breath, then judges that the business that the terminal to be initiated allows to access.
Wherein, terminal obtains service lists information from network or the mode of grade of service index information includes but is not limited to
Such as under type: passing through open type moving alliance device management (Open Mobile Alliance Device by receiving network
Management, OMA DM) mode service lists information or grade of service index information, or receive network pass through Non-Access Stratum
The mode service lists information or grade of service index information of (Non-Access Stratum, NAS) signaling, or receive network and lead to
The service lists information or grade of service index information that the mode of system broadcasts issues are crossed, or, the terminal is received by the net
Network service lists information or grade of service index information by way of system broadcasts.
Preferable, the terminal obtains service lists information or grade of service index information from network specifically:
The terminal reception service lists information or grade of service index information by way of OMA DM by the network.
In this step, service lists information or grade of service index information are configured to institute by way of OMA DM by network
State terminal.With specific reference to the step 501 of Fig. 5, network is indexed service lists information or the grade of service by way of OMA DM
Information configuration is to terminal.
Wherein, service lists information or business that the terminal is issued by way of receiving the network by OMA DM
Hierarchy index information allows to carry out configuration service list information or grade of service index information to the single user of terminal.
Preferable, the terminal obtains service lists information or grade of service index information from network specifically:
The terminal reception service lists information or grade of service index letter by way of NAS signaling by the network
Breath.
In this step, NAS signaling includes but is not limited to that terminal initiates attachment or tracing section updating or Routing Area Update or PDN
The mode of connection request message is established in connection foundation etc., when the core net of the network is in attachment or tracing section updating or Route Area
The terminal is sent by service lists information or grade of service index information in the response messages such as update or PDN connection foundation.
Step 601 with specific reference to Fig. 6 and 602.
Wherein, service lists information or industry that the terminal is issued by way of receiving the network by NAS signaling
Business hierarchy index information allows to carry out configuration service list information or grade of service index information to the single user of terminal.
Preferable, the terminal obtains service lists information or grade of service index information from network specifically:
The terminal reception service lists information or grade of service index letter by way of system broadcasts by the network
Breath.
In this step, if congestion occurs for core net, by network congestion condition notification to wireless access network;It is described wirelessly to connect
It networks in the case where knowing that congestion occurs for core network congestion or itself, determines data connection congestion control of the starting based on business
Make (Application specific Congestion control for Data Connectivity, ACDC) message;Nothing
For line access by system broadcast message, notice terminal will start ACDC, and simultaneity factor broadcast message carries ACDC service lists
Information configuration is to terminal.Specific steps are with reference to the step 701-703 in Fig. 7.
Wherein, service lists information or industry that the terminal is issued by way of receiving the network by system broadcasts
Business hierarchy index information allows to carry out all users of terminal to configure identical service lists information or grade of service rope
Fuse breath, but configuration service list information or grade of service index information can not be carried out to the single user of terminal.
Step 102, after the terminal receives the instruction that the network issues, then according to the service lists information or industry
Business hierarchy index information judges whether the business that terminal to be initiated allows, if so, initiating the terminal to the network will send out
The service access request risen, if it is not, then forbidding initiating the terminal service access to be initiated request to the network.
In this step, the service lists information or grade of service index information include that business allows and/or forbids accessing
Information, when terminal receives the business to be initiated of the terminal that the network issues, according to the service lists information or business etc.
The information whether business to be initiated of terminal in grade index information allows to access, judges business that terminal to be initiated in the industry
Whether allow to access in business list information or grade of service index information, if so, initiating the terminal to the network will send out
The service access request risen, if it is not, then forbidding initiating the terminal service access to be initiated request to the network.The finger
Show for notifying the terminal to carry out access control to business, for example, the instruction can be instruction or the network hair of ACDC starting
The instruction of raw congestion.
It is preferable, after the terminal receives the instruction that the network issues, then according to the service lists information or
Grade of service index information judges whether the business that terminal to be initiated allows specifically:
After the terminal receives the instruction that the network issues, the Non-Access Stratum of the terminal is believed according to the service lists
Breath or grade of service index information judge whether the business that terminal to be initiated allows.
Wherein, the instruction that network issues includes but is not limited to using the mode for issuing instruction.
Can be preferential, it is described after receive the instruction that the network issues when the terminal, then according to service lists letter
Breath or grade of service index information judge whether the business that terminal to be initiated allows specifically:
After the terminal receives the instruction that the network issues, the access layer of the terminal is according to the service lists information
Or grade of service index information judges whether the business that terminal to be initiated allows.
In this step, when terminal receives what the network issued by way of OMA DM or NAS signaling or system broadcasts
When service lists information or grade of service index information, after the terminal receives the instruction below the network, the terminal
Access layer or Non-Access Stratum the industry to be initiated of terminal judged according to the service lists information or grade of service index information
Whether business allows.With specific reference to the explanation in Fig. 5, Fig. 6, Fig. 7.
Preferable, it is described after the terminal receives the network and issues instruction, then according to the service lists information
Or grade of service index information judges whether the business that terminal to be initiated allows specifically:
After the terminal receives the instruction that the network issues, the terminal is arranged by terminal firewall according to the business
Table information or grade of service index information judge whether the business that terminal to be initiated allows.
In this step, with reference to shown in the step 806 of Fig. 8, UE firewall judges whether business permits by checking service lists
Perhaps;With reference to shown in the step 903 of Fig. 9, whether UE firewall allows according to business, is allowed by open or closed port or is refused
Exhausted service lists.
Preferable, the terminal receives the instruction that the network issues specifically:
The terminal is obtained from network by way of system broadcast message and is indicated.
In this step, congestion occurs for wireless access network or core net occurs to notify wireless access network when congestion;Wirelessly connect
It networks and sends ACDC starting notice and service lists information or grade of service index information to SOCKS server, it is described wirelessly to connect
When networking through system broadcast message to terminal Non-Access Stratum or access layer notice starting ACDC, at the same by service lists information or
Grade of service index information is sent to the terminal Non-Access Stratum or access layer.With specific reference to the step 801-803 of Fig. 8.
Preferable, the terminal receives the instruction that the network issues specifically:
The terminal by way of dedicated signaling or the mode of application layer from network obtain indicate.
In this step, core net occurs under congestion situation, and congestion occurs by core net notice SOCKS server core net;
Or when wireless access network generation congestion, congestion is occurred by wireless access network notice SOCKS server wireless access network.Fire prevention
After wall server receives core net or wireless access network congestion information, it is (whole to UE firewall to send ACDC starting notification message
Hold firewall), while service lists information or grade of service index information are sent to UE firewall.With specific reference to being walked in Fig. 9
Rapid 901-902.
The embodiment of the invention discloses a kind of control method of service access, the method terminal is by being pre-configured or from net
Service lists information or grade of service index information are obtained in network;After the terminal receives the instruction that the network issues, then
Judge whether the business that terminal to be initiated allows according to the service lists information or grade of service index information, if so, to
The network initiates the business to be initiated of the terminal, if it is not, then forbidding initiating the industry to be initiated of the terminal to the network
Business.Service access control in the case where realization special scenes or network congestion, saves Internet resources to ensure permission business
Access reinforces operator to the processing capacity of control and the emergency event of business.
Embodiment two
It is a kind of method flow diagram of the control of service access provided by Embodiment 2 of the present invention with reference to Fig. 2, Fig. 2.Such as Fig. 2
It is shown, which comprises
Step 201, terminal obtains service lists information or grade of service index information, and the service lists information includes to permit
Perhaps and/or the identification information of business forbidden, the grade of service index information includes the mark for the business for allowing and/or forbidding
And class information;
Step 202, after the terminal receives the instruction that the network issues, then according to the service lists information or industry
Business hierarchy index information judges whether the business that terminal to be initiated allows to access, if so, initiating the terminal to the network
The service access to be initiated request, if it is not, then forbidding initiating the terminal service access to be initiated request to the network;
Step 203, when the terminal judges that terminal will be sent out according to the service lists information or grade of service index information
When the business risen allows to access, then the terminal establishes connection request message to network initiation, takes in the solicited message
With the mark whether business allows, so that the network judges whether the business that the terminal to be initiated permits according to the mark
Perhaps.
Preferable, it is described that terminal is judged according to the service lists information or grade of service index information when the terminal
When the business to be initiated allows, then the terminal establishes connection request message to network initiation, takes in the solicited message
With the mark whether business allows, so that the network judges whether the business that the terminal to be initiated allows according to the mark
Specifically:
When the terminal judges the business to be initiated of terminal according to the service lists information or grade of service index information
When allowing to access, then the access layer of the terminal initiates radio resource control RRC connectivity request message to the network, described
The mark whether business allows is carried in RRC connection request information, so that the network judges the terminal according to the mark
Whether the business to be initiated, which allows, is accessed.
In this step, in conjunction with Figure 10, the embodiment of Figure 11, Figure 12, when the terminal according to the service lists information or
When the business that grade of service index information judges that terminal to be initiated allows, then the access layer of the terminal is initiated to the network
RRC connection request information, the mark whether business that carries in the RRC connection request information allows so that the network according to
The mark judges whether the business that the terminal to be initiated allows.With specific reference to shown in Figure 13.
Wherein, when terminal judges that business allows by access layer, it is subsequent continue to send RRC connection to network establish connection and ask
Carrying IE value in message is sought, so that the network continues to judge whether business allows according to the IE value.It can be right to realize
Business does further detection, prevents that correct judgement can be done by network when terminal operating is detected and broken down.
Can be preferential, it is described that terminal is judged according to the service lists information or grade of service index information when the terminal
When the business to be initiated allows, then to the network initiated request information, carry business in the solicited message is the terminal
The mark of no permission, so that the network judges whether the business that the terminal to be initiated allows according to the mark specifically:
When the terminal judges the business to be initiated of terminal according to the service lists information or grade of service index information
When allowing to access, then the Non-Access Stratum of the terminal initiates NAS message to the network, and carrying business in the NAS message is
The mark of no permission, so that the network judges whether the business that the terminal to be initiated allows to access according to the mark.
In this step, in conjunction with Fig. 5, embodiment in Fig. 6, Fig. 7, when the terminal is according to the service lists information or industry
When the business that business hierarchy index information judges that terminal to be initiated allows, then the Non-Access Stratum of the terminal is initiated to the network
NAS message, the mark whether business that carries in the NAS message allows, so that the network is according to mark judgement
Whether the business to be initiated of terminal allows.With specific reference to shown in Figure 14.
Wherein, it is subsequent to continue to establish connection to network transmission RRC connection when terminal judges that business allows by Non-Access Stratum
IE value is carried in request message, so that the network continues to judge whether business allows according to the IE value.It can be with to realize
Further detection is done to business, prevents that correct judgement can be done by network when terminal operating is detected and broken down.
It is subsequent to continue to network when terminal judges that business allows by Non-Access Stratum or access layer in the embodiment of the present invention
It sends RRC connection and establishes carrying information unit (Information Element, IE) in connection request message, indicate that the RRC connects
Connecing request is initiated by permission business so that the network continues to judge whether business allows according to the IE value.It can to realize
To do further detection to business, prevent from that correct judgement can be done by network when terminal operating is detected and broken down.
Embodiment three
It is a kind of method flow diagram of the control for service access that the embodiment of the present invention three provides with reference to Fig. 3, Fig. 3.It is described
Method includes:
Step 301, service lists information or grade of service index information are configured to terminal by network;
Preferable, the network configuration service lists information or grade of service index information are to terminal specifically:
The network by way of OMA DM configuration service list information or configuration service hierarchy index information to terminal.
In this step, with reference to the step 501 or step 1001 of Fig. 5 or Figure 10.The network is matched by way of OMA DM
Purchase of property business list information or configuration service hierarchy index information are to terminal.
Wherein, network can carry out configuration service list information or the grade of service to single user by way of OMA DM
Index information.
Preferable, the network configuration service lists information or grade of service index information are to terminal specifically:
The network configuration service list information or configuration service hierarchy index information by way of NAS signaling are given eventually
End.
In this step, the step 601 with reference to shown in Fig. 6 or Figure 11 and 602 or 1101 and 1102, when terminal is attached in initiation
Or tracing section updating or Routing Area Update or PDN connection establish etc. when establishing connection request message, core net attachment or with
By service lists information or grade of service index information in the response messages such as the update of track area or Routing Area Update or PDN connection foundation
It is sent to terminal.
Wherein, network can carry out configuration service list information or business etc. to single user by way of NAS signaling
Grade index information.
Preferable, the network configuration service lists information or grade of service index information are to terminal specifically:
The network configuration service list information or configuration service hierarchy index information by way of system broadcasts are given eventually
End.
In this step, with reference to shown in the step 703 or step 1203 of Fig. 7 or Figure 12, wireless access network passes through system broadcasts
Message, notice terminal access layer will start ACDC, while carrying ACDC business configuration list configuration by system broadcast message and arriving
Terminal.
Wherein, network multiple users can be carried out configuring by way of system broadcasts identical service lists information or
Grade of service index information.
Preferable, the network configuration service lists information or grade of service index information are to terminal specifically:
Service lists information or grade of service index information are handed down to terminal by SOCKS server by the network.
In this step, with reference to Fig. 8 step 803 or Fig. 9 in step 902, the network is by SOCKS server by industry
Business list information or grade of service index information are handed down to terminal.
Wherein, service lists information or grade of service index information are handed down to by network by way of SOCKS server
Terminal can carry out configuration service list information or grade of service index information to single user.
Step 302, the instruction that the network is issued to the terminal, so that the terminal is believed according to the service lists
Breath or grade of service index information judge whether the business that terminal to be initiated allows to access.
Preferable, the network issues instruction to the terminal specifically:
The network is by way of system broadcasts or the mode of dedicated signaling sends an indication to terminal.
In this step, in conjunction with Fig. 5 or Fig. 6 or Fig. 7 or Figure 10 or Figure 11 or Figure 12 or embodiment shown in Fig. 8, the net
Network is by way of system broadcasts or the mode of dedicated signaling sends an indication to terminal.
Preferable, the network issues instruction to the terminal specifically:
The network issues instruction to the terminal by way of application layer.
In this step, with reference to the step 902 of Fig. 9, the network issues instruction to the terminal by way of application layer.
The embodiment of the invention discloses a kind of control method of service access, the method terminal passes through network configuration business
List information or grade of service index information are to terminal;, the network issues instruction to the terminal so that the terminal according to
The service lists information or grade of service index information judge whether the business that terminal to be initiated allows.Realize special scenes or
Service access control in the case where network congestion, saves Internet resources to ensure the access of permission business, reinforces operator pair
The processing capacity of control and the emergency event of business.
Example IV
With reference to Fig. 4, figure is a kind of control mode flow chart for service access that the embodiment of the present invention four provides.
Step 401, service lists information or grade of service index information are configured to terminal by network;
Step 402, the network issues instruction to the terminal, so that the terminal is according to the service lists information
Or grade of service index information judges whether the business that terminal to be initiated allows;
Step 403, the mark that the business whether carried in the solicited message that the network is sent according to the terminal allows,
Judge whether the business that terminal to be initiated allows.
Preferable, the mark that the business whether carried in the solicited message that the network is sent according to the terminal allows
Know, judge whether the business that terminal to be initiated allows specifically:
Whether business permission is carried in the RRC connection request information that the wireless access network of the network is initiated according to terminal
Mark, judges whether the business that terminal to be initiated allows.
In this step, in conjunction with Figure 10, the embodiment of Figure 11, Figure 12, when the terminal according to the service lists information or
When the business that grade of service index information judges that terminal to be initiated allows, then the access layer of the terminal is initiated to the network
RRC connection request information, the mark whether business that carries in the RRC connection request information allows so that the network according to
The mark judges whether the business that the terminal to be initiated allows.With specific reference to shown in Figure 13.
Wherein, when terminal judges that business allows by access layer, it is subsequent continue to send RRC connection to network establish connection and ask
Carrying IE value in message is sought, so that the network continues to judge whether business allows according to the IE value.It can be right to realize
Business does further detection, prevents that correct judgement can be done by network when terminal operating is detected and broken down.
Preferable, the mark that the business whether carried in the solicited message that the network is sent according to the terminal allows
Know, judge whether the business that terminal to be initiated allows specifically:
The mark that business permission whether is carried in the NAS message that the core net of the network is initiated according to terminal, judges end
Whether the business to be initiated of end allows.
In this step, in conjunction with Fig. 5, embodiment in Fig. 6, Fig. 7, when the terminal is according to the service lists information or industry
When the business that business hierarchy index information judges that terminal to be initiated allows, then the Non-Access Stratum of the terminal is initiated to the network
NAS message, the mark whether business that carries in the NAS message allows, so that the network is according to mark judgement
Whether the business to be initiated of terminal allows.With specific reference to shown in Figure 14.
Wherein, it is subsequent to continue to establish connection to network transmission RRC connection when terminal judges that business allows by Non-Access Stratum
IE value is carried in request message, so that the network continues to judge whether business allows according to the IE value.It can be with to realize
Further detection is done to business, prevents that correct judgement can be done by network when terminal operating is detected and broken down.
It is subsequent to continue to network when terminal judges that business allows by Non-Access Stratum or access layer in the embodiment of the present invention
It sends RRC connection and establishes carrying information unit (Information Element, IE) in connection request message, indicate that the RRC connects
Connecing request is initiated by permission business so that the network continues to judge whether business allows according to the IE value.It can to realize
To do further detection to business, prevent from that correct judgement can be done by network when terminal operating is detected and broken down.
Illustrate embodiment one, embodiment two, embodiment three, the embodiment in example IV in order to clearer, below with
The mode of Signalling exchange does more detailed description to embodiment one, two, three, four.Wherein, following figure Fig. 5, Fig. 6, Fig. 7, Fig. 8, Fig. 9,
Figure 10, Figure 11, Figure 12, Figure 13, Figure 14 are the control methods for the Service control access that the embodiment of the present invention one, two, three, four provides
Schematic diagram.
Fig. 5 is a kind of control method schematic diagram of service access provided in an embodiment of the present invention.It is as shown in Figure 5:
501, network is configured service lists to terminal by way of OMA DM, and service lists can be black or white list
Form, include the service identification for allowing or forbidding business in list;
If 502, congestion occurs for core net, by network congestion condition notification to wireless access network;
503, in the case where knowing that congestion occurs for core network congestion or itself, wireless access network determines wireless access network
Start ACDC;
504, wireless access network will start ACDC by system broadcast message, notice terminal access layer;For connected state
The notification message of terminal, ACDC can also be sent by dedicated signaling, be not limited to the advice method of broadcast message;
505, access layer is after receiving the ACDC initiation message of system broadcasts, by ACDC starting notice to the non-access of terminal
Layer;
506, it when application layer initiates business, is sent from application layer or application layer by operating system to the Non-Access Stratum of terminal
Service request carries service related information, and the service related information is corresponding with the mark of business in service lists, such as all uses
Application identities identify business;
507, the service identification that terminal Non-Access Stratum carries in obtaining the service request that application layer or operating system are sent
Afterwards, whether the ACDC service lists received in checking step 501 see the business to be initiated in allowing service lists;
508, to the business of initiation not in allowing service lists, then terminal Non-Access Stratum refuses the service request;If
The business to be initiated then continues follow-up business start flow in allowing service lists.
Preferable, step 506, which can be used, in Fig. 5 sends terminal Non-Access Stratum for the application identities of service request, by
Service identification information is sent to terminal access layer again by the terminal Non-Access Stratum, carries out whether business allows by terminal access layer
Judgement;To initiation business not in the service lists of permission, then terminal Non-Access Stratum refuses the service request;To hair
The business risen then continues follow-up business start flow, with specific reference to shown in Figure 10 in the service lists of permission.
Fig. 6 is a kind of control method schematic diagram of service access provided in an embodiment of the present invention.It is as shown in Figure 6:
601, terminal establishes connection request in initiation attachment or tracing section updating or Routing Area Update or PDN connection foundation etc.
Message.
602, core net is in the response messages such as attachment or tracing section updating or Routing Area Update PDN connection foundation by business
List is sent to terminal, and it includes the business for allowing or forbidding business in list that service lists, which can be black or white list form,
Mark;
If 603, congestion occurs for core net, by network congestion condition notification to wireless access network;
604, in the case where knowing that congestion occurs for core network congestion or itself, wireless access network determines wireless access network
Start ACDC;
605, wireless access network will start ACDC by system broadcast message, notice terminal access layer;For connected state
The notification message of terminal, ACDC can also be sent by dedicated signaling, be not limited to the advice method of broadcast message;
606, access layer is after receiving the ACDC initiation message of system broadcasts, by ACDC starting notice to the non-access of terminal
Layer;
607, it when application layer initiates business, is sent from application layer or application layer by operating system to the Non-Access Stratum of terminal
Service request carries service related information, and the service related information is corresponding with the mark of business in service lists, such as all uses
Application identities identify business;
608, the service identification that terminal Non-Access Stratum carries in obtaining the service request that application layer or operating system are sent
Afterwards, whether the ACDC service lists received in checking step 602 see the business to be initiated in allowing service lists;
609, to the business of initiation not in allowing service lists, then terminal Non-Access Stratum refuses the service request;If
The business to be initiated then continues follow-up business start flow in allowing service lists.
In this Fig. 6, it can also judge whether business allows by terminal access layer, i.e., in step 606 by non-access
ACDC service list is sent to access layer by layer.Service request is sent to Non-Access Stratum by application layer in step 607, then is connect by non-
Enter layer and be sent to access layer, the judgement whether business allows is carried out by terminal access layer: not allowing industry to the business of initiation
It is engaged in list, then terminal Non-Access Stratum refuses the service request;To initiation business allow service lists in, then continue after
Continuous business start flow, with specific reference to shown in Figure 11.
Fig. 7 is a kind of control method schematic diagram of service access provided in an embodiment of the present invention.It is as shown in Figure 7:
If 701, congestion occurs for core net, by network congestion condition notification to wireless access network;
702, wireless access network determines starting ACDC in the case where knowing that congestion occurs for core network congestion or itself;
703, for wireless access network by system broadcast message, notice terminal access layer will start ACDC, simultaneity factor broadcast
Message carries ACDC service lists and configures to terminal, and service lists can be the form of black/white business list, includes permitting in list
Perhaps/forbid the service identification of business.For the terminal of connected state, the notification message of ACDC can also be sent by dedicated signaling,
It is not limited to the advice method of broadcast message;
704, access layer is non-access to terminal by ACDC starting notice after receiving the ACDC initiation message of system broadcasts
Layer.
705, it when application layer initiates business, is sent from application layer or application layer by operating system to the Non-Access Stratum of terminal
Service request carries service related information, and the service related information is corresponding with the mark of business in service lists, such as all uses
Application identities identify business;
706, the service identification that terminal Non-Access Stratum carries in obtaining the service request that application layer or operating system are sent
Afterwards, whether the ACDC service lists received in checking step 701 see the business to be initiated in allowing service lists;
707, to the business of initiation not in allowing service lists, then terminal Non-Access Stratum refuses the service request;If
The business to be initiated then continues follow-up business start flow in allowing service lists.
In Fig. 7, it can also judge whether business allows by terminal access layer, i.e. omited steps 704, and in step
Service identification information is sent to terminal access layer by terminal Non-Access Stratum after 705, carries out whether business permits by terminal access layer
Perhaps judgement: to initiation business not allow service lists in, then terminal Non-Access Stratum refuses the service request;To hair
The business risen then continues follow-up business start flow in allowing service lists.With specific reference to shown in Figure 12.
Fig. 8 is a kind of control mode schematic diagram of service access provided in an embodiment of the present invention.It is as shown in Figure 8:
801, congestion occurs for wireless access network or core net occurs to notify wireless access network when congestion;
802, wireless access network sends ACDC starting notice and service lists to SOCKS server;
803, wireless access network notifies ACDC starting to terminal Non-Access Stratum/access layer by broadcast message, simultaneously will
ACDC service lists are sent to Non-Access Stratum/access layer.For the terminal of connected state, the notification message of ACDC can also be by special
It is sent with signaling, is not limited to the advice method of broadcast message;
804, terminal Non-Access Stratum/access layer notice UE firewall ACDC starting, while ACDC service lists being sent to
UE firewall;
805, terminal applies layer/operating system sends service request and gives UE firewall, which carries service identification;
806, UE firewall checks ACDC service lists, confirms whether the business allows to initiate
807, UE firewall is initiated according to inspection result, permission/refusal business.
Fig. 9 is a kind of control mode schematic diagram of service access provided in an embodiment of the present invention.It is as shown in Figure 9:
901, core net occurs under congestion situation, and congestion occurs by core net notice SOCKS server core net;Or
When congestion occurs for wireless access network, congestion is occurred by wireless access network notice SOCKS server wireless access network;
902, it after SOCKS server receives core net or wireless access network congestion information, sends ACDC and starts notification message
UE firewall is given, while ACDC service list is handed down to UE firewall;
903, terminal firewall is first sent to when terminal originating service request, terminal firewall checks ACDC service list,
Judge whether the business allows;
904, whether terminal firewall allows according to business, allows or refuse business to ask by open or closed port
It asks, achievees the purpose that terminal side service initiates control.
Figure 10 is a kind of control mode schematic diagram of service access provided in an embodiment of the present invention.It is as shown in Figure 10:
1001, network passes through OMA DM(equipment management) service lists are configured to terminal, service lists can be black/white
The form of list includes the traffic flag of Enable/Disable business in list;
1002, ACDC service lists are sent to access layer by Non-Access Stratum;
If 1003, congestion occurs for core net, by network congestion condition notification to wireless access network;
1004, wireless access network in the case where knowing that congestion occurs for core network congestion or itself, determine by wireless access network
Surely start ACDC;
1005, wireless access network will start ACDC by system broadcast message, notice terminal access layer;For connected state
The notification message of terminal, ACDC can also be sent by dedicated signaling, be not limited to the advice method of broadcast message;
1006, it when application layer initiates business, is sent out from application layer or application layer by operating system to the Non-Access Stratum of terminal
Service request is sent, service related information is carried, the service related information is corresponding with the mark of business in service lists, such as all adopts
Business is identified with application identities;
1007, the service identification that terminal access layer carries in obtaining the service request that application layer or operating system are sent
Afterwards, whether the ACDC service lists received in checking step 1001 see the business to be initiated in allowing service lists;
1008a) to the business of initiation not in allowing service lists, then terminal Non-Access Stratum refuses the service request;
1008b) then continue follow-up business start flow in allowing service lists to the business of initiation.
Figure 11 is a kind of control mode schematic diagram of service access provided in an embodiment of the present invention.It is as shown in figure 11:
1101, terminal is established connection and is asked in initiation attachment or tracing section updating or Routing Area Update or PDN connection foundation etc.
Seek message.
1102, core net is in the response messages such as attachment or tracing section updating or Routing Area Update PDN connection foundation by industry
Business list is sent to terminal, and it includes the industry for allowing or forbidding business in list that service lists, which can be black or white list form,
Business mark;
If 1103, congestion occurs for core net, by network congestion condition notification to wireless access network;
1104, wireless access network in the case where knowing that congestion occurs for core network congestion or itself, determine by wireless access network
Surely start ACDC;
1105, wireless access network will start ACDC by system broadcast message, notice terminal access layer;For connected state
The notification message of terminal, ACDC can also be sent by dedicated signaling, be not limited to the advice method of broadcast message;
1106, ACDC service list is sent to access layer by Non-Access Stratum;
1107, service request is sent to Non-Access Stratum by application layer, then is sent to access layer by Non-Access Stratum, is connect by terminal
Enter layer and carry out the judgement that whether allows of business: to initiation business not in allowing service lists, then terminal Non-Access Stratum is refused
The exhausted service request;To initiation business allow service lists in, then continue follow-up business start flow;
1108, the service identification that terminal access layer carries in obtaining the service request that application layer or operating system are sent
Afterwards, whether the ACDC service lists received in checking step 1102 see the business to be initiated in allowing service lists;
1109, to the business of initiation not in allowing service lists, then terminal Non-Access Stratum refuses the service request;If
The business to be initiated then continues follow-up business start flow in allowing service lists.
Figure 12 is a kind of control mode schematic diagram of service access provided in an embodiment of the present invention.It is as shown in figure 12:
If 1201, congestion occurs for core net, by network congestion condition notification to wireless access network;
1202, wireless access network determines starting ACDC in the case where knowing that congestion occurs for core network congestion or itself;
1203, for wireless access network by system broadcast message, notice terminal access layer will start ACDC, simultaneity factor broadcast
Message carries ACDC service lists and configures to terminal, and service lists can be the form of black/white business list, includes permitting in list
Perhaps/forbid the service identification of business.For the terminal of connected state, the notification message of ACDC can also be sent by dedicated signaling,
It is not limited to the advice method of broadcast message;
1204, it when application layer initiates business, is sent from application layer or application layer by operating system to the access layer of terminal
Service request carries service related information, and the service related information is corresponding with the mark of business in service lists, such as all uses
Application identities identify business;
1205, the service identification that terminal access layer carries in obtaining the service request that application layer or operating system are sent
Afterwards, whether the ACDC service lists received in checking step 1201 see the business to be initiated in allowing service lists;
1206a), to the business of initiation not in allowing service lists, then terminal Non-Access Stratum refuses the service request;
1206a), then continue follow-up business start flow in allowing service lists to the business of initiation.
Figure 13 is a kind of control method schematic diagram of service access provided in an embodiment of the present invention.The method includes as follows
Step:
1301, terminal configures ACDC service lists, and configuration mode includes: terminal pre-configuration, or by way of OMADM,
Or it is broadcasted by system message to terminal, or obtained by processes such as attachment/tracing section updating/Routing Area Update/PDN connection foundation
Take ACDC service lists.The embodiment is without restriction to the mode of configurating terminal ACDC service lists.Service lists can be it is black/
The form of white list includes the service identification of Enable/Disable business in list;
If 1302, congestion occurs for core net, by network congestion condition notification to wireless access network;
1303, wireless access network in the case where knowing that congestion occurs for core network congestion or itself, determine by wireless access network
Surely start ACDC;
1304, wireless access network will start ACDC by system broadcast message, notice terminal access layer.For connected state
The notification message of terminal, ACDC can also be sent by dedicated signaling, be not limited to the advice method of broadcast message;
1305, access layer is non-access to terminal by ACDC starting notice after receiving the ACDC initiation message of system broadcasts
Layer;
1306, it when application layer initiates business, is sent out from application layer or application layer by operating system to the Non-Access Stratum of terminal
Service request is sent, service related information is carried, the service related information is corresponding with the mark of business in service lists, such as all adopts
Business is identified with application identities;
1307, the service identification that terminal access layer carries in obtaining the service request that application layer or operating system are sent
Afterwards, whether terminal ACDC service lists in checking step 1301 see the business to be initiated in allowing service lists;
1308, to the business of initiation in allowing service lists, then access layer is established connection in the RRC connection of initiation and is asked
It asks in message, carries IE information, such as " MO-ACDC permitted ".
1309, network element checks that the RRC connects if wireless access network is when receiving RRC connection and establishing connection request message
It connects to establish in connection request message and whether carries IE information described in step 1308, such as " MO-ACDC permitted ".
1310, network element, as wireless access network establishes in connection request message whether carry step according to RRC connection
IE information described in 1308 establishes connection request message to determine whether accepting or rejecting RRC connection, if RRC connection is established
RRC connection in connection request message not comprising this IE value is established connection request message and is prohibited, by the mechanism come to sending out
The business risen is controlled.
Figure 14 is a kind of control method schematic diagram of service access provided in an embodiment of the present invention.The method is as follows:
1401, terminal configures ACDC service lists, and configuration mode includes: terminal pre-configuration, or by way of OMADM,
Or it is broadcasted by system message to terminal, or obtained by processes such as attachment/tracing section updating/Routing Area Update/PDN connection foundation
Take ACDC service lists.The embodiment is without restriction to the mode of configurating terminal ACDC service lists.Service lists can be it is black/
The form of white list includes the service identification of Enable/Disable business in list;
If 1402, congestion occurs for core net, by network congestion condition notification to wireless access network;
1403, wireless access network in the case where knowing that congestion occurs for core network congestion or itself, determine by wireless access network
Surely start ACDC;
1404, wireless access network will start ACDC by system broadcast message, notice terminal access layer.For connected state
The notification message of terminal, ACDC can also be sent by dedicated signaling, be not limited to the advice method of broadcast message;
1405, access layer is non-access to terminal by ACDC starting notice after receiving the ACDC initiation message of system broadcasts
Layer;
1406, it when application layer initiates business, is sent out from application layer or application layer by operating system to the Non-Access Stratum of terminal
Service request is sent, service related information is carried, the service related information is corresponding with the mark of business in service lists, such as all adopts
Business is identified with application identities;
1407, the service identification that terminal Non-Access Stratum carries in obtaining the service request that application layer or operating system are sent
Afterwards, whether terminal ACDC service lists in checking step 1401 see the business to be initiated in allowing service lists;
1408, to the business of initiation in allowing service lists, then Non-Access Stratum establishes connection request in the NAS of initiation
In message, such as service request or PDN connectivity reqeust message, IE information, such as " ACDC are carried
service permitted”。
1409, network element checks that the NAS is established and connects if MME or SGSN is when receiving NAS and establishing connection request message
It connects and whether carries IE information described in step 1408 in request message, such as " ACDC service permitted ".
1410, network element, if whether MME or SGSN is according to carrying IE information described in step 1408 in NAS message
To determine whether accepting or rejecting NAS request, the NAS of this IE value is not included if established in connection request message in NAS message
Message is prohibited, and is controlled by the mechanism the business to be initiated.
Embodiment five
It is a kind of terminal device structure chart provided in the embodiment of the present invention five with reference to Figure 15, Figure 15.The equipment includes:
Acquiring unit 1501 accesses control unit 1502, identifies unit 1503;
Wherein, acquiring unit 1501 is used to execute the step 101 in one Fig. 1 of embodiment, and access control unit 1502 is used for
The step 102 in one Fig. 1 of embodiment is executed, mark unit 1503 is used to execute the step 203 of Fig. 2 in embodiment two.
Those of ordinary skill in the art will appreciate that be each included by the terminal device in the embodiment of the present invention five
A unit is only divided according to the functional logic, but is not limited to the above division, as long as can be realized corresponding function
Energy;In addition, the specific name of each functional unit is also only for convenience of distinguishing each other, the guarantor being not intended to limit this application
Protect range.
Acquiring unit 1501 obtains service lists information or grade of service index information, the service lists for terminal
Information includes the identification information for the business for allowing and/or forbidding, and the grade of service index information includes to allow and/or forbid
The mark and class information of business;The service lists information or grade of service index information that the acquiring unit will acquire are sent to
Access control unit;
In this unit, terminal can obtain service lists information or grade of service index information by way of pre-configuration.
The service lists information or grade of service index information can be stored on SIM cards of mobile phones by the pre- mode in advance, described
Service lists information can be black or white list form, include the service identification for allowing or forbidding business in list.The industry
Business hierarchy index information includes allowing or forbidding outside the service identification of business, further includes the hierarchy index information of business importance,
Business is divided by the priority of business, and index information is established according to division, allow terminal to certain business into
Row allows or quiescing, and permission or quiescing can also be carried out to different grades of business.
Wherein, terminal obtains service lists information from network or grade of service index information includes but is not limited to pass through to connect
Network service lists information or grade of service index information by way of OMA DM are received, or receives network and passes through NAS signaling
Mode service lists information or grade of service index information, or receive the service lists that network is issued by way of system broadcasts
Information or grade of service index information, or receive service lists information or industry that network is issued by the SOCKS server of network
Business hierarchy index information.
Preferable, the acquiring unit 1501 is specifically used for:
The terminal reception service lists information or grade of service index information by way of OMA DM by the network.
In this unit, service lists information or grade of service index information are configured to institute by way of OMA DM by network
State terminal.With specific reference to the step 501 of Fig. 5, network is indexed service lists information or the grade of service by way of OMA DM
Information configuration is to terminal.
Wherein, service lists information or business that the terminal is issued by way of receiving the network by OMA DM
Hierarchy index information allows to carry out configuration service list information or grade of service index information to the single user of terminal.
Preferable, the acquiring unit is specifically used for:
The terminal reception service lists information or grade of service index letter by way of NAS signaling by the network
Breath.
In this unit, terminal is initiating the foundation such as attachment or tracing section updating or Routing Area Update or PDN connection foundation company
When connecing request message, the core net of the network is rung in attachment or tracing section updating or Routing Area Update or PDN connection foundation etc.
It answers in message and sends the terminal for service lists information or grade of service index information.With specific reference to Fig. 6 step 601 and
602。
Wherein, service lists information or industry that the terminal is issued by way of receiving the network by NAS signaling
Business hierarchy index information allows to carry out configuration service list information or grade of service index information to the single user of terminal.
Preferable, the acquiring unit 1501 is specifically used for:
The terminal reception service lists information or grade of service index letter by way of system broadcasts by the network
Breath.
In this unit, if congestion occurs for core net, by network congestion condition notification to wireless access network;It is described wirelessly to connect
It networks in the case where knowing that congestion occurs for core network congestion or itself, determines instruction;Wireless access network passes through system broadcasts
Message, notice terminal will start ACDC, and simultaneity factor broadcast message carries ACDC service lists information configuration to terminal.Specific step
The rapid step 701-703 with reference in Fig. 7.
Wherein, service lists information or industry that the terminal is issued by way of receiving the network by system broadcasts
Business hierarchy index information allows to carry out all users of terminal to configure identical service lists information or grade of service rope
Fuse breath, but configuration service list information or grade of service index information can not be carried out to the single user of terminal.
The access control unit 1502, for after the terminal receives the instruction that the network issues, then according to institute
It states service lists information or grade of service index information judges whether the business that terminal to be initiated allows, if so, to the net
Network initiates the business to be initiated of the terminal, if it is not, then forbidding initiating the business to be initiated of the terminal to the network.
Preferable, the access control unit 1502 is specifically used for:
After the terminal receives the instruction that the network issues, the Non-Access Stratum of the terminal is believed according to the service lists
Breath or grade of service index information judge whether the business that terminal to be initiated allows.
Preferable, the access control unit 1502 is specifically used for:
After the terminal receives the instruction that the network issues, the access layer of the terminal is according to the service lists information
Or grade of service index information judges whether the business that terminal to be initiated allows.
In this unit, when terminal receives what the network issued by way of OMA DM or NAS signaling or system broadcasts
When service lists information or grade of service index information, after the terminal receives the instruction below the network, the terminal
Access layer or Non-Access Stratum the industry to be initiated of terminal judged according to the service lists information or grade of service index information
Whether business allows.With specific reference to the explanation in Fig. 5, Fig. 6, Fig. 7.
Preferable, the access control unit 1502 is specifically used for:
After the terminal receives the starting ACDC message that the network issues, the terminal is by terminal firewall according to institute
It states service lists information or grade of service index information judges whether the business that terminal to be initiated allows.
In this unit, with reference to shown in the step 806 of Fig. 8, UE firewall judges whether business permits by checking service lists
Perhaps;With reference to shown in the step 903 of Fig. 9, whether UE firewall allows according to business, is allowed by open or closed port or is refused
Exhausted service lists.
Preferable, the access control unit 1502 is specifically used for:
The terminal is obtained from network by way of system broadcast message and is indicated.
In this unit, congestion occurs for wireless access network or core net occurs to notify wireless access network when congestion;Wirelessly connect
It networks and sends ACDC starting notice and service lists information or grade of service index information to SOCKS server, it is described wirelessly to connect
When networking through system broadcast message to terminal Non-Access Stratum or access layer notice starting ACDC, at the same by service lists information or
Grade of service index information is sent to the terminal Non-Access Stratum or access layer.With specific reference to the step 801-803 of Fig. 8.
Preferable, the access control unit 1502 is specifically used for:
The terminal by way of dedicated signaling or the mode of application layer from network obtain indicate.
In this unit, core net occurs under congestion situation, and congestion occurs by core net notice SOCKS server core net;
Or when wireless access network generation congestion, congestion is occurred by wireless access network notice SOCKS server wireless access network.Fire prevention
After wall server receives core net or wireless access network congestion information, it is (whole to UE firewall to send ACDC starting notification message
Hold firewall), while service lists information or grade of service index information are sent to UE firewall.With specific reference to being walked in Fig. 9
Rapid 901-902.
As another preferable embodiment, the equipment further include:
Unit 1503 is identified, for judging when the terminal according to the service lists information or grade of service index information
When business that terminal to be initiated allows, then the terminal carries industry in the solicited message to the network initiated request information
The mark whether business allows, so that the network judges whether the business that the terminal to be initiated allows according to the mark.
Preferable, the mark unit 1503 is specifically used for:
When the terminal judges the business to be initiated of terminal according to the service lists information or grade of service index information
When permission, then the access layer of the terminal initiates RRC connection request information to the network, in the RRC connection request information
The mark whether carrying business allows, so that the network judges whether the business that the terminal to be initiated permits according to the mark
Perhaps.
In this unit, in conjunction with Figure 10, the embodiment of Figure 11, Figure 12, when the terminal according to the service lists information or
When the business that grade of service index information judges that terminal to be initiated allows, then the access layer of the terminal is initiated to the network
RRC connection request information, the mark whether business that carries in the RRC connection request information allows so that the network according to
The mark judges whether the business that the terminal to be initiated allows.With specific reference to shown in Figure 13.
Wherein, when terminal judges that business allows by access layer, it is subsequent continue to send RRC connection to network establish connection and ask
Carrying IE value in message is sought, so that the network continues to judge whether business allows according to the IE value.It can be right to realize
Business does further detection, prevents that correct judgement can be done by network when terminal operating is detected and broken down.
Preferable, the mark unit 1503 is specifically used for:
When the terminal judges the business to be initiated of terminal according to the service lists information or grade of service index information
When permission, then the Non-Access Stratum of the terminal initiates NAS message to the network, carries whether business permits in the NAS message
Perhaps mark, so that the network judges whether the business that the terminal to be initiated allows according to the mark.
In this unit, in conjunction with Fig. 5, embodiment in Fig. 6, Fig. 7, when the terminal is according to the service lists information or industry
When the business that business hierarchy index information judges that terminal to be initiated allows, then the Non-Access Stratum of the terminal is initiated to the network
NAS message, the mark whether business that carries in the NAS message allows, so that the network is according to mark judgement
Whether the business to be initiated of terminal allows.With specific reference to shown in Figure 14.
Wherein, it is subsequent to continue to establish connection to network transmission RRC connection when terminal judges that business allows by Non-Access Stratum
IE value is carried in request message, so that the network continues to judge whether business allows according to the IE value.It can be with to realize
Further detection is done to business, prevents that correct judgement can be done by network when terminal operating is detected and broken down.
The embodiment of the invention discloses a kind of equipment of control business, the equipment includes acquiring unit 1501, access control
Unit 1502 processed, terminal obtain service lists information or the grade of service by acquiring unit 1501 for pre-configuration or from network
Index information;It is used for after the terminal receives the instruction that the network issues by access control unit 1502, then according to institute
It states service lists information or grade of service index information judges whether the business that terminal to be initiated allows, if so, to the net
Network initiates the business to be initiated of the terminal, if it is not, then forbidding initiating the business to be initiated of the terminal to the network.It realizes
Service access control in the case where special scenes or network congestion, saves Internet resources to ensure the access of permission business, adds
Processing capacity of the strong operator to control and the emergency event of business.
Embodiment six
It is a kind of network element device structure chart that the embodiment of the present invention six provides with reference to Figure 16, Figure 16.The equipment includes:
Configuration unit 1601, issuance unit 1602, processing unit 1603;
Wherein, configuration unit 1601 is used to execute the step 301 in three Fig. 3 of embodiment, and issuance unit 1602 is for executing
Step 302 in three Fig. 3 of embodiment, processing unit 1603 are used to execute the step 403 of Fig. 4 in example IV.
Those of ordinary skill in the art will appreciate that be each included by the terminal device in the embodiment of the present invention five
A unit is only divided according to the functional logic, but is not limited to the above division, as long as can be realized corresponding function
Energy;In addition, the specific name of each functional unit is also only for convenience of distinguishing each other, the guarantor being not intended to limit this application
Protect range.
Service lists information or grade of service index information are configured to terminal for network by configuration unit 1601;
Preferable, configuration unit 1601 is specifically used for:
The network by way of OMA DM configuration service list information or configuration service hierarchy index information to terminal.
In this unit, with reference to the step 501 or step 1001 of Fig. 5 or Figure 10.The network is matched by way of OMA DM
Purchase of property business list information or configuration service hierarchy index information are to terminal.
Wherein, network can carry out configuration service list information or the grade of service to single user by way of OMA DM
Index information.
Preferable, the configuration unit 1601 is specifically used for:
The network configuration service list information or configuration service hierarchy index information by way of NAS signaling are given eventually
End.
In this unit, the step 601 with reference to shown in Fig. 6 or Figure 11 and step 602 or step 1101 and step 1102, when
Terminal is when connection request message is established in initiation attachment or tracing section updating or Routing Area Update or PDN connection foundation etc., core
Net is in the response messages such as attachment or tracing section updating or Routing Area Update or PDN connection foundation by service lists information or business
Hierarchy index information is sent to terminal.
Wherein, network can carry out configuration service list information or business etc. to single user by way of NAS signaling
Grade index information.
Preferable, the configuration unit 1601 is specifically used for:
The network configuration service list information or configuration service hierarchy index information by way of system broadcasts are given eventually
End.
In this unit, with reference to shown in the step 703 or step 1203 of Fig. 7 or Figure 12, wireless access network passes through system broadcasts
Message, notice terminal access layer will start ACDC, while carrying ACDC business configuration list configuration by system broadcast message and arriving
Terminal.
Wherein, network multiple users can be carried out configuring by way of system broadcasts identical service lists information or
Grade of service index information.
Preferable, the configuration unit 1601 is specifically used for:
Service lists information or grade of service index information are handed down to terminal by SOCKS server by the network.
In this unit, with reference to Fig. 8 step 803 or Fig. 9 in step 902, the network is by SOCKS server by industry
Business list information or grade of service index information are handed down to terminal.
Wherein, service lists information or grade of service index information are handed down to by network by way of SOCKS server
Terminal can carry out configuration service list information or grade of service index information to single user.
Issuance unit 1602, is used for, and the network issues instruction to the terminal, so that the terminal is according to the business
List information or grade of service index information judge whether the business that terminal to be initiated allows.
Preferable, the issuing unit 1602 is specifically used for:
The network is by way of system broadcasts or the mode of dedicated signaling sends an indication to terminal.
In this unit, in conjunction with Fig. 5 or Fig. 6 or Fig. 7 or Figure 10 or Figure 11 or Figure 12 or embodiment shown in Fig. 8, the net
Network is by way of system broadcasts or the mode of dedicated signaling sends an indication to terminal.
Preferable, the issuing unit 1602 is specifically used for:
The network issues instruction to the terminal by way of application layer.
In this unit, with reference to the step 902 of Fig. 9, the network issues instruction to the terminal by way of application layer.
As a kind of preferable embodiment, the equipment further include:
Processing unit 1603, the business whether carried in the solicited message sent for the network according to the terminal permit
Perhaps mark, judges whether the business that terminal to be initiated allows.
Preferable, the processing unit 1603 is specifically used for:
Whether business permission is carried in the RRC connection request information that the wireless access network of the network is initiated according to terminal
Mark, judges whether the business that terminal to be initiated allows.
In this unit, in conjunction with Figure 10, the embodiment of Figure 11, Figure 12, when the terminal according to the service lists information or
When the business that grade of service index information judges that terminal to be initiated allows, then the access layer of the terminal is initiated to the network
RRC connection request information, the mark whether business that carries in the RRC connection request information allows so that the network according to
The mark judges whether the business that the terminal to be initiated allows.With specific reference to shown in Figure 13.
Wherein, when terminal judges that business allows by access layer, it is subsequent continue to send RRC connection to network establish connection and ask
Carrying IE value in message is sought, so that the network continues to judge whether business allows according to the IE value.It can be right to realize
Business does further detection, prevents that correct judgement can be done by network when terminal operating is detected and broken down.
Preferable, the processing unit 1603 is specifically used for:
The mark that business permission whether is carried in the NAS message that the core net of the network is initiated according to terminal, judges end
Whether the business to be initiated of end allows.
In this unit, in conjunction with Fig. 5, embodiment in Fig. 6, Fig. 7, when the terminal is according to the service lists information or industry
When the business that business hierarchy index information judges that terminal to be initiated allows, then the Non-Access Stratum of the terminal is initiated to the network
NAS message, the mark whether business that carries in the NAS message allows, so that the network is according to mark judgement
Whether the business to be initiated of terminal allows.With specific reference to shown in Figure 14.
Wherein, it is subsequent to continue to establish connection to network transmission RRC connection when terminal judges that business allows by Non-Access Stratum
IE value is carried in request message, so that the network continues to judge whether business allows according to the IE value.It can be with to realize
Further detection is done to business, prevents that correct judgement can be done by network when terminal operating is detected and broken down.
It is subsequent to continue to network when terminal judges that business allows by Non-Access Stratum or access layer in the embodiment of the present invention
It sends RRC connection and establishes carrying information unit (Information Element, IE) in connection request message, indicate that the RRC connects
Connecing request is initiated by permission business so that the network continues to judge whether business allows according to the IE value.It can to realize
To do further detection to business, prevent from that correct judgement can be done by network when terminal operating is detected and broken down.
Embodiment seven
It is a kind of terminal device 1700 provided in an embodiment of the present invention with reference to Figure 17, Figure 17, the terminal device can be
Cell phone etc., the specific embodiment of the invention do not limit the specific implementation of the terminal device.The equipment 1700 is wrapped
It includes:
Processor (processor) 1701, communication interface (Communications Interface) 1702, memory
(memory) 1703, bus 1704.
Processor 1701, communication interface 1702, memory 1703 complete mutual communication by bus 1704.
Communication interface 1702, for being communicated with network element;
Processor 1701, for executing program 1705.
Specifically, program 1705 may include program code, and said program code includes computer operation instruction.
Processor 1701 may be a central processor CPU or specific integrated circuit ASIC(Application
Specific Integrated Circuit), or be arranged to implement the integrated electricity of one or more of the embodiment of the present invention
Road.
Memory 1703, for storing program 1705.Memory 1703 may include high speed RAM memory, it is also possible to also
Including nonvolatile memory (non-volatile memory), for example, at least a magnetic disk storage.Program 1705 specifically may be used
To include:
Acquiring unit 1501 for terminal by pre-configuration, or obtains service lists information or the grade of service from network
Index information, the service lists information or grade of service index information include the identification information for the business for allowing and/or forbidding;
Control unit 1502 is accessed, for after the terminal receives the instruction that the network issues, then according to the industry
Business list information or grade of service index information judge whether the business that terminal to be initiated allows, if so, sending out to the network
The business to be initiated of the terminal is played, if it is not, then forbidding initiating the business to be initiated of the terminal to the network.
Corresponding units in program 1705 in the specific implementation embodiment shown in Figure 15 of each unit, this will not be repeated here.
Embodiment eight
It is a kind of network element device 1800 provided in an embodiment of the present invention with reference to Figure 18, Figure 18, the specific embodiment of the invention is simultaneously
The specific implementation of the terminal device is not limited.The equipment 1800 includes:
Processor (processor) 1801, communication interface (Communications Interface) 1802, memory
(memory) 1803, bus 1804.
Processor 1801, communication interface 1802, memory 1803 complete mutual communication by bus 1804.
Communication interface 1802, for being communicated with network element;
Processor 1801, for executing program 1805.
Specifically, program 1805 may include program code, and said program code includes computer operation instruction.
Processor 1801 may be a central processor CPU or specific integrated circuit ASIC(Application
Specific Integrated Circuit), or be arranged to implement the integrated electricity of one or more of the embodiment of the present invention
Road.
Memory 1803, for storing program 1805.Memory 1803 may include high speed RAM memory, it is also possible to also
Including nonvolatile memory (non-volatile memory), for example, at least a magnetic disk storage.Program 1805 specifically may be used
To include:
Service lists information or grade of service index information are configured to terminal for network by configuration unit 1601;
Issuance unit 1602, is used for, the instruction that the network is issued to the terminal, so that the terminal is according to the industry
Business list information or grade of service index information judge whether the business that terminal to be initiated allows.
Corresponding units in program 1805 in the specific implementation embodiment shown in Figure 16 of each unit, this will not be repeated here.
The foregoing is merely the preferred embodiment of the present invention, are not intended to limit the scope of the present invention..It is any
Made any modifications, equivalent replacements, and improvements etc. within the spirit and principles in the present invention, should be included in the present invention claims
Within scope.
Claims (59)
1. a kind of control method of service access, which is characterized in that the described method includes:
Terminal obtains service lists information or grade of service index information from network, and the service lists information includes to allow
And/or the identification information for the business forbidden, the grade of service index information include allow and/or the mark of business forbidden and
Class information;The service lists information is presented in the form of black or white list;
After the terminal receives the instruction that the network issues, then according to the service lists information or grade of service index letter
Breath judges whether the business that the terminal to be initiated allows to access, specifically: the terminal receives the instruction that the network issues
Afterwards, the Non-Access Stratum or access layer of the terminal judge the end according to the service lists information or grade of service index information
Whether the business to be initiated of end allows to access;
If judging, the business that the terminal to be initiated allows to access, and initiates the industry to be initiated of the terminal to the network
Business access request.
2. the method according to claim 1, wherein described according to the service lists information or grade of service rope
Fuse breath judges whether the business that the terminal to be initiated allows to access specifically:
According to the service lists information, when the business that the terminal to be initiated is allowed in the service lists information,
Then judge that the business that the terminal to be initiated allows to access;
Or according to the grade of service index information, when the business that the terminal to be initiated is in the grade of service index information
It is the grade for belonging to permission, then judges that the business that the terminal to be initiated allows to access.
3. the method according to claim 1, wherein the terminal obtains service lists information or industry from network
Business hierarchy index information specifically:
The terminal receive by the network by way of open type moving alliance device management OMADM service lists information or
Grade of service index information.
4. the method according to claim 1, wherein the terminal obtains service lists information or industry from network
Business hierarchy index information specifically:
By the network, service lists information or the grade of service by way of Non-Access Stratum NAS signaling are indexed for the terminal reception
Information.
5. the method according to claim 1, wherein the terminal obtains service lists information or industry from network
Business hierarchy index information specifically:
The terminal reception service lists information or grade of service index information by way of system broadcasts by the network.
6. any one of -5 method according to claim 1, which is characterized in that the method also includes:
When the terminal judges that the business that terminal to be initiated allows according to the service lists information or grade of service index information
When access, then the terminal establishes connection request message to network initiation, carries whether business permits in the solicited message
Perhaps mark, so that the network judges whether the business that the terminal to be initiated allows according to the mark.
7. according to the method described in claim 6, it is characterized in that, it is described when the terminal according to the service lists information or
When the business that grade of service index information judges that terminal to be initiated allows, then the terminal is established connection to network initiation and is asked
Message is sought, the mark whether business allows is carried in the solicited message, so that the network is according to mark judgement
Whether the business to be initiated of terminal allows specifically:
When the terminal judges that the business that terminal to be initiated allows according to the service lists information or grade of service index information
When access, then the access layer of the terminal initiates radio resource control RRC connectivity request message to the network, and the RRC connects
It connects and carries the mark whether business allows in solicited message, so that the network judges that the terminal will be initiated according to the mark
Business whether allow to access;
When the terminal judges that the business that terminal to be initiated allows according to the service lists information or grade of service index information
When access, then the Non-Access Stratum of the terminal initiates NAS message to the network, carries whether business permits in the NAS message
Perhaps mark, so that the network judges whether the business that the terminal to be initiated allows to access according to the mark.
8. the method according to claim 1, wherein to receive the instruction that the network issues specific for the terminal
Are as follows:
The terminal is by way of system broadcast message or the mode of the mode of dedicated signaling or application layer refers to from network acquisition
Show.
9. according to the method described in claim 8, it is characterized in that, described when the terminal receives the instruction that the network issues
Afterwards, then judge whether the business that terminal to be initiated allows specifically according to the service lists information or grade of service index information
Are as follows:
After the terminal receives the instruction that the network issues, the terminal is believed by terminal firewall according to the service lists
Breath or grade of service index information judge whether the business that terminal to be initiated allows to access.
10. a kind of control method of service access, which is characterized in that the described method includes:
Service lists information or grade of service index information are configured to terminal by network;
The instruction that the network is issued to the terminal, so that the terminal is according to the service lists information or grade of service rope
Fuse breath judges whether the business that terminal to be initiated allows to access, specifically: the terminal receives the instruction that the network issues
Afterwards, the Non-Access Stratum or access layer of the terminal judge the end according to the service lists information or grade of service index information
Whether the business to be initiated of end allows to access;The service lists information is presented in the form of black or white list;
If judging, the business that the terminal to be initiated allows to access, and initiates the industry to be initiated of the terminal to the network
Business access request.
11. according to the method described in claim 10, it is characterized in that, the network is by service lists information or grade of service rope
Fuse breath is configured to terminal specifically:
The network by way of OMADM configuration service list information or configuration service hierarchy index information to terminal.
12. according to the method described in claim 10, it is characterized in that, the network is by service lists information or grade of service rope
Fuse breath is configured to terminal specifically:
The network by way of NAS signaling configuration service list information or configuration service hierarchy index information to terminal.
13. according to the method described in claim 10, it is characterized in that, the network is by service lists information or grade of service rope
Fuse breath is configured to terminal specifically:
The network by way of system broadcasts configuration service list information or configuration service hierarchy index information to terminal.
14. the described in any item methods of 0-13 according to claim 1, which is characterized in that the network is to bristling with anger under the terminal
Show specifically:
The network is by way of system broadcasts or the mode of dedicated signaling sends an indication to terminal.
15. according to the method for claim 14, which is characterized in that the method also includes:
What the network received that the terminal sends establishes connection request message, and described establish carries business in connection request message
Whether the mark that accesses is allowed;
The network judges whether the business that terminal to be initiated allows to access according to the mark.
16. according to the method for claim 15, which is characterized in that the network received that the terminal sends establishes connection
Request message, the mark established in connection request message the business that carries and whether allow to access;The network is according to the mark
Know, judge whether the business that terminal to be initiated allows to access specifically:
Whether the mark of business permission is carried in the RRC connection request information that the wireless access network of the network is initiated according to terminal
Know, judges whether the business that terminal to be initiated allows.
17. according to the method for claim 15, which is characterized in that the network received that the terminal sends establishes connection
Request message, the mark established in connection request message the business that carries and whether allow to access;The network is according to the mark
Know, judge whether the business that terminal to be initiated allows to access specifically:
The mark that business permission whether is carried in the NAS message that the core net of the network is initiated according to terminal, judges that terminal is wanted
Whether the business of initiation allows.
18. according to the method described in claim 10, it is characterized in that, the network is by service lists information or grade of service rope
Fuse breath is configured to terminal specifically:
Service lists information or grade of service index information are configured to terminal by SOCKS server by the network.
19. according to the method for claim 18, which is characterized in that the instruction that the network is issued to the terminal is specific
Are as follows:
The network is by way of system broadcasts or the mode of the mode of dedicated signaling or application layer is issued to the terminal
Instruction.
20. a kind of terminal device, which is characterized in that the equipment includes:
Acquiring unit obtains service lists information or grade of service index information, the service lists for terminal from network
Information includes the identification information for the business for allowing and/or forbidding, and the grade of service index information includes to allow and/or forbid
The mark and class information of business;The service lists information is presented in the form of black or white list;
Control unit is accessed, for after the terminal receives the instruction that the network issues, then believing according to the service lists
Breath or grade of service index information judge whether the business that the terminal to be initiated allows to access, specifically: the terminal receives
After the instruction that the network issues, the Non-Access Stratum or access layer of the terminal are according to the service lists information or the grade of service
Index information judges whether the business that the terminal to be initiated allows to access;If judging, the business that the terminal to be initiated is to allow
Access, then the terminal service access to be initiated request is initiated to the network.
21. terminal device according to claim 20, which is characterized in that the access control unit is for executing step institute
It states and judges whether the business that the terminal to be initiated allows to access according to the service lists information or grade of service index information
Specifically:
According to the service lists information, when the business that the terminal to be initiated is allowed in the service lists information,
Then judge that the business that the terminal to be initiated allows to access;
Or according to the grade of service index information, when the business that the terminal to be initiated is in the grade of service index information
It is the grade for belonging to permission, then judges that the business that the terminal to be initiated allows to access.
22. equipment according to claim 20, which is characterized in that the acquiring unit is specifically used for: the terminal receives
By the network by way of OMADM service lists information or grade of service index information.
23. equipment according to claim 20, which is characterized in that the acquiring unit is specifically used for: the terminal receives
By the network by way of NAS signaling service lists information or grade of service index information.
24. equipment according to claim 20, which is characterized in that the acquiring unit is specifically used for: the terminal receives
By the network by way of system broadcasts service lists information or grade of service index information.
25. according to the described in any item equipment of claim 20-24, which is characterized in that the access control unit is specifically used
In:
After the terminal receives the instruction that the network issues, the Non-Access Stratum or access layer of the terminal are arranged according to the business
Table information or grade of service index information judge whether the business that terminal to be initiated allows to access.
26. according to the described in any item equipment of claim 20-24, which is characterized in that the equipment further include: mark unit,
For judging that the business that terminal to be initiated allows according to the service lists information or grade of service index information when the terminal
When access, then the terminal establishes connection request message to network initiation, carries whether business permits in the solicited message
Perhaps mark, so that the network judges whether the business that the terminal to be initiated allows according to the mark.
27. equipment according to claim 26, which is characterized in that the mark unit is specifically used for:
When the terminal judges that the business that terminal to be initiated allows according to the service lists information or grade of service index information
When access, then the access layer of the terminal initiates radio resource control RRC connectivity request message to the network, and the RRC connects
It connects and carries the mark whether business allows in solicited message, so that the network judges that the terminal will be initiated according to the mark
Business whether allow to access;
When the terminal judges that the business that terminal to be initiated allows according to the service lists information or grade of service index information
When access, then the Non-Access Stratum of the terminal initiates NAS message to the network, carries whether business permits in the NAS message
Perhaps mark, so that the network judges whether the business that the terminal to be initiated allows to access according to the mark.
28. equipment according to claim 20, which is characterized in that the access control unit is specifically used for:
The terminal is by way of system broadcast message or the mode of the mode of dedicated signaling or application layer refers to from network acquisition
Show.
29. equipment according to claim 28, which is characterized in that the access control unit is specifically used for:
After the terminal receives the instruction that the network issues, the terminal is believed by terminal firewall according to the service lists
Breath or grade of service index information judge whether the business that terminal to be initiated allows to access.
30. a kind of network element device, which is characterized in that the equipment includes:
Service lists information or grade of service index information are configured to terminal for network by configuration unit;The service lists
Information is presented in the form of black or white list;
Issuance unit, for the instruction that the network is issued to the terminal, so that the terminal is believed according to the service lists
Breath or grade of service index information judge whether the business that terminal to be initiated allows to access, specifically: described in the terminal receives
After the instruction that network issues, the Non-Access Stratum or access layer of the terminal are indexed according to the service lists information or the grade of service
Information judges whether the business that the terminal to be initiated allows to access;If judging, the business that the terminal to be initiated is to allow to access
, then the terminal service access to be initiated request is initiated to the network.
31. equipment according to claim 30, which is characterized in that the configuration unit is specifically used for: the network passes through
The mode configuration service list information or configuration service hierarchy index information of OMADM is to terminal.
32. equipment according to claim 30, which is characterized in that the configuration unit is specifically used for: the network passes through
The mode configuration service list information or configuration service hierarchy index information of NAS signaling are to terminal.
33. equipment according to claim 30, which is characterized in that the configuration unit is specifically used for: the network passes through
The mode configuration service list information or configuration service hierarchy index information of system broadcasts are to terminal.
34. according to the described in any item equipment of claim 30-33, which is characterized in that the issuing unit is specifically used for: institute
Network is stated by way of system broadcasts or the mode of dedicated signaling sends an indication to terminal.
35. equipment according to claim 34, which is characterized in that the equipment further include:
Processing unit receives the connection request message of establishing of the terminal transmission for the network, described to establish connection request
The mark whether business allows to access is carried in message;
The network judges whether the business that terminal to be initiated allows to access according to the mark.
36. equipment according to claim 35, which is characterized in that the processing unit is specifically used for: the nothing of the network
The mark that business permission whether is carried in the RRC connection request information that line access is initiated according to terminal, judges that terminal will be initiated
Business whether allow.
37. equipment according to claim 35, which is characterized in that the processing unit is specifically used for: the core of the network
The mark that business permission whether is carried in the NAS message that heart net is initiated according to terminal, judges whether the business that terminal to be initiated permits
Perhaps.
38. equipment according to claim 30, which is characterized in that the configuration unit is specifically used for: the network passes through
Service lists information or grade of service index information are configured to terminal by SOCKS server.
39. the equipment according to claim 38, which is characterized in that the issuing unit is specifically used for: the network passes through
The mode of the mode of system broadcasts or the mode of dedicated signaling or application layer issues instruction to the terminal.
40. a kind of terminal device, which is characterized in that the equipment includes:
Acquiring unit obtains service lists information or grade of service index information, the service lists for terminal from network
Information includes the identification information for the business for allowing and/or forbidding, and the grade of service index information includes to allow and/or forbid
The mark and class information of business;The service lists information is presented in the form of black or white list;The acquiring unit will obtain
The service lists information or grade of service index information taken is sent to access control unit;
The access control unit, for after the terminal receives the instruction that the network issues, then being arranged according to the business
Table information or grade of service index information judge whether the business that terminal to be initiated allows to access, specifically: the terminal receives
After the instruction that the network issues, the Non-Access Stratum or access layer of the terminal are according to the service lists information or the grade of service
Index information judges whether the business that the terminal to be initiated allows to access;It is wanted if so, initiating the terminal to the network
The service access of initiation is requested, if it is not, then forbidding initiating the terminal service access to be initiated request to the network.
41. equipment according to claim 40, which is characterized in that the equipment includes processor, communication interface, memory
And bus;
Wherein processor, communication interface, memory complete mutual communication by bus;
The communication interface, for being communicated with network element device;
The processor, for executing program;
The memory, for storing program;
Wherein program passes through for terminal and is pre-configured, or service lists information or grade of service index information are obtained from network,
The service lists information or grade of service index information include the identification information for the business for allowing and/or forbidding;For working as
It states after terminal receives the instruction that the network issues, is then judged eventually according to the service lists information or grade of service index information
Whether the business to be initiated of end allows to access, if so, the terminal service access to be initiated request is initiated to the network,
If it is not, then forbidding initiating the terminal service access to be initiated request to the network.
42. equipment according to claim 41, which is characterized in that the acquiring unit is specifically used for: the terminal receives
By the network by way of OMADM service lists information or grade of service index information.
43. equipment according to claim 41, which is characterized in that the acquiring unit is specifically used for: the terminal receives
By the network by way of NAS signaling service lists information or grade of service index information.
44. equipment according to claim 41, which is characterized in that the acquiring unit is specifically used for: the terminal receives
By the network by way of system broadcasts service lists information or grade of service index information.
45. according to the described in any item equipment of claim 41-44, which is characterized in that the access control unit is specifically used
In:
After the terminal receives the instruction that the network issues, the Non-Access Stratum or access layer of the terminal are arranged according to the business
Table information or grade of service index information judge whether the business that terminal to be initiated allows to access.
46. according to the described in any item equipment of claim 41-44, which is characterized in that the equipment further include: mark unit,
For judging that the business that terminal to be initiated allows according to the service lists information or grade of service index information when the terminal
When access, then the terminal establishes connection request message to network initiation, carries whether business permits in the solicited message
Perhaps mark, so that the network judges whether the business that the terminal to be initiated allows according to the mark.
47. equipment according to claim 46, which is characterized in that the mark unit is specifically used for:
When the terminal judges that the business that terminal to be initiated allows according to the service lists information or grade of service index information
When access, then the access layer of the terminal initiates radio resource control RRC connectivity request message to the network, and the RRC connects
It connects and carries the mark whether business allows in solicited message, so that the network judges that the terminal will be initiated according to the mark
Business whether allow to access;
When the terminal judges that the business that terminal to be initiated allows according to the service lists information or grade of service index information
When access, then the Non-Access Stratum of the terminal initiates NAS message to the network, carries whether business permits in the NAS message
Perhaps mark, so that the network judges whether the business that the terminal to be initiated allows to access according to the mark.
48. equipment according to claim 41, which is characterized in that the access control unit is specifically used for:
The terminal is by way of system broadcast message or the mode of the mode of dedicated signaling or application layer refers to from network acquisition
Show.
49. equipment according to claim 48, which is characterized in that the access control unit is specifically used for:
After the terminal receives the instruction that the network issues, the terminal is believed by terminal firewall according to the service lists
Breath or grade of service index information judge whether the business that terminal to be initiated allows to access.
50. equipment according to claim 30, which is characterized in that the network element device includes processor, and communication interface is deposited
Reservoir and bus:
Wherein processor, communication interface, memory complete mutual communication by bus;
The communication interface, for being communicated with terminal device;
The processor, for executing program;
The memory, for storing program;
Wherein service lists information or grade of service index information are configured to terminal for network by program;The network is to described
The instruction that terminal issues, so that the terminal judges that terminal will be sent out according to the service lists information or grade of service index information
Whether the business risen allows to access.
51. equipment according to claim 50, which is characterized in that the configuration unit is specifically used for: the network passes through
The mode configuration service list information or configuration service hierarchy index information of OMADM is to terminal.
52. equipment according to claim 50, which is characterized in that the configuration unit is specifically used for: the network passes through
The mode configuration service list information or configuration service hierarchy index information of NAS signaling are to terminal.
53. equipment according to claim 50, which is characterized in that the configuration unit is specifically used for: the network passes through
The mode configuration service list information or configuration service hierarchy index information of system broadcasts are to terminal.
54. according to the described in any item equipment of claim 51-53, which is characterized in that the issuing unit is specifically used for:
The network is by way of system broadcasts or the mode of dedicated signaling sends an indication to terminal.
55. equipment according to claim 54, which is characterized in that the equipment further include:
Processing unit receives the connection request message of establishing of the terminal transmission for the network, described to establish connection request
The mark whether business allows to access is carried in message;
The network judges whether the business that terminal to be initiated allows to access according to the mark.
56. equipment according to claim 55, which is characterized in that the processing unit is specifically used for:
Whether the mark of business permission is carried in the RRC connection request information that the wireless access network of the network is initiated according to terminal
Know, judges whether the business that terminal to be initiated allows.
57. equipment according to claim 55, which is characterized in that the processing unit is specifically used for:
The mark that business permission whether is carried in the NAS message that the core net of the network is initiated according to terminal, judges that terminal is wanted
Whether the business of initiation allows.
58. equipment according to claim 50, which is characterized in that the configuration unit is specifically used for: the network passes through
Service lists information or grade of service index information are handed down to terminal by SOCKS server.
59. equipment according to claim 58, which is characterized in that the issuing unit is specifically used for: the network passes through
The mode of the mode of system broadcasts or the mode of dedicated signaling or application layer issues instruction to the terminal.
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201811545031.XA CN109963320B (en) | 2012-10-26 | 2012-10-26 | Service access control method and device |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
PCT/CN2012/083600 WO2014063360A1 (en) | 2012-10-26 | 2012-10-26 | Control method and device for service access |
Related Child Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN201811545031.XA Division CN109963320B (en) | 2012-10-26 | 2012-10-26 | Service access control method and device |
Publications (2)
Publication Number | Publication Date |
---|---|
CN104662966A CN104662966A (en) | 2015-05-27 |
CN104662966B true CN104662966B (en) | 2019-02-19 |
Family
ID=50543905
Family Applications (2)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN201811545031.XA Active CN109963320B (en) | 2012-10-26 | 2012-10-26 | Service access control method and device |
CN201280002943.7A Expired - Fee Related CN104662966B (en) | 2012-10-26 | 2012-10-26 | The control method and equipment of service access |
Family Applications Before (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN201811545031.XA Active CN109963320B (en) | 2012-10-26 | 2012-10-26 | Service access control method and device |
Country Status (2)
Country | Link |
---|---|
CN (2) | CN109963320B (en) |
WO (1) | WO2014063360A1 (en) |
Families Citing this family (9)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN109963320B (en) * | 2012-10-26 | 2021-03-23 | 华为技术有限公司 | Service access control method and device |
CA2996178C (en) * | 2015-09-30 | 2019-12-31 | Guangdong Oppo Mobile Telecommunications Corp., Ltd. | Service bearer congestion control method and device |
CN105847102B (en) * | 2016-04-29 | 2020-11-24 | 珠海格力智能装备技术研究院有限公司 | Method, equipment and system for realizing field bus communication |
WO2018086059A1 (en) | 2016-11-11 | 2018-05-17 | Qualcomm Incorporated | Access control in connected mode, idle mode, and inactive state |
CN108738072B (en) * | 2017-04-21 | 2023-08-15 | 中兴通讯股份有限公司 | Method, device and terminal for realizing network slice admission control |
WO2019232757A1 (en) * | 2018-06-07 | 2019-12-12 | 华为技术有限公司 | Method, device, and system for sending service request |
CN110971622A (en) * | 2020-03-04 | 2020-04-07 | 信联科技(南京)有限公司 | Bidirectional access method and system between public network application system and intranet application system |
CN116032838A (en) * | 2021-10-25 | 2023-04-28 | 惠州Tcl移动通信有限公司 | Transmission method, electronic device, and computer-readable storage medium |
CN116806423A (en) * | 2022-01-25 | 2023-09-26 | 北京小米移动软件有限公司 | Method, device, communication equipment and storage medium for providing perception service |
Citations (4)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101925151A (en) * | 2009-06-12 | 2010-12-22 | 华为技术有限公司 | Method, equipment and system for controlling access |
CN102118833A (en) * | 2011-03-04 | 2011-07-06 | 电信科学技术研究院 | Cell accessing indication method, cell selection method and device |
WO2011131064A1 (en) * | 2010-04-21 | 2011-10-27 | 中兴通讯股份有限公司 | Home nodeb (hnb) access control method and system |
WO2014063360A1 (en) * | 2012-10-26 | 2014-05-01 | 华为技术有限公司 | Control method and device for service access |
Family Cites Families (7)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US7941669B2 (en) * | 2001-01-03 | 2011-05-10 | American Express Travel Related Services Company, Inc. | Method and apparatus for enabling a user to select an authentication method |
US20040177247A1 (en) * | 2003-03-05 | 2004-09-09 | Amir Peles | Policy enforcement in dynamic networks |
CN105635944A (en) * | 2010-04-30 | 2016-06-01 | 中兴通讯股份有限公司 | Machine communication access control method and system and system |
CN102271382B (en) * | 2010-06-07 | 2014-08-20 | 电信科学技术研究院 | Access control method and equipment for machine type communication (MTC) equipment |
CN102340821B (en) * | 2010-07-20 | 2015-09-16 | 中兴通讯股份有限公司 | A kind of connection control method of MTC device and system |
CN102469520B (en) * | 2010-11-09 | 2015-09-09 | 大唐移动通信设备有限公司 | A kind of jamming control method and equipment |
US20120170503A1 (en) * | 2010-12-30 | 2012-07-05 | Motorola, Inc. | Method and apparatus for controlling network access in a multi-technology wireless communication system |
-
2012
- 2012-10-26 CN CN201811545031.XA patent/CN109963320B/en active Active
- 2012-10-26 CN CN201280002943.7A patent/CN104662966B/en not_active Expired - Fee Related
- 2012-10-26 WO PCT/CN2012/083600 patent/WO2014063360A1/en active Application Filing
Patent Citations (4)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101925151A (en) * | 2009-06-12 | 2010-12-22 | 华为技术有限公司 | Method, equipment and system for controlling access |
WO2011131064A1 (en) * | 2010-04-21 | 2011-10-27 | 中兴通讯股份有限公司 | Home nodeb (hnb) access control method and system |
CN102118833A (en) * | 2011-03-04 | 2011-07-06 | 电信科学技术研究院 | Cell accessing indication method, cell selection method and device |
WO2014063360A1 (en) * | 2012-10-26 | 2014-05-01 | 华为技术有限公司 | Control method and device for service access |
Also Published As
Publication number | Publication date |
---|---|
CN109963320A (en) | 2019-07-02 |
WO2014063360A1 (en) | 2014-05-01 |
CN104662966A (en) | 2015-05-27 |
CN109963320B (en) | 2021-03-23 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
CN104662966B (en) | The control method and equipment of service access | |
CN109661838B (en) | Connection attempting method and user equipment, and connection control method and base station | |
CN103026777B (en) | By the system and method that the access of Non-Access Stratum instruction instruction local internet protocol is supported | |
CN105122896A (en) | Access network discovery and selection | |
CN104335638A (en) | Methods, systems, and computer readable media for access network discovery and selection | |
CN105359600B (en) | A kind of update method and user equipment of RPLMN information | |
CN103368930B (en) | The method and user equipment of core net are accessed for controlling | |
CN105850187A (en) | Enabling D2D functionality for public safety applications | |
CN104170460A (en) | Network switching method and terminal | |
CN104363990B (en) | The method and Wi-Fi access nodes of user equipment access Wireless Fidelity Wi-Fi | |
CN103747504A (en) | Communicator and communication method | |
CN104243406A (en) | Terminal access authentication method and device in internet of things system | |
CN104335641A (en) | Method, device and system for processing data service under roaming scenario | |
CN106657154B (en) | Wireless access method, system, WiFi platform and operator number taking platform | |
CN104619045A (en) | Access control method and device for mobile terminal | |
CN108282751A (en) | A kind of connection control method and device | |
WO2011054251A1 (en) | Method, system and terminal for preventing access from illegal terminals | |
CN104270720A (en) | Method and device for accessing wireless local area network, and mobile terminal | |
CN105657711B (en) | A kind of method for connecting network and electronic equipment | |
CN105635934B (en) | Service opening method and device and HSS (home subscriber server) | |
CN104968021A (en) | Bandwidth control method and device in bluetooth shared network | |
CN103248691A (en) | Vehicle networking system and data backup method thereof | |
CN102891900B (en) | A kind of method, apparatus and system of the domain name mapping in flow unloading | |
CN108738023A (en) | Prevent method, Internet of Things server and the system of internet-of-things terminal access pseudo-base station | |
CN105472530A (en) | Method, device and system for near distance communication discovery |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
C06 | Publication | ||
PB01 | Publication | ||
C10 | Entry into substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
GR01 | Patent grant | ||
GR01 | Patent grant | ||
CB03 | Change of inventor or designer information | ||
CB03 | Change of inventor or designer information |
Inventor after: Zhang Wanqiang Inventor after: Zhao Yang Inventor after: FRANK MADEMMAN Inventor before: Zhang Wanqiang Inventor before: Zhao Yang Inventor before: Ma Demanfulanke |
|
CF01 | Termination of patent right due to non-payment of annual fee | ||
CF01 | Termination of patent right due to non-payment of annual fee |
Granted publication date: 20190219 Termination date: 20211026 |