CN105027630A - Method and device for controlling terminal to access network - Google Patents

Method and device for controlling terminal to access network Download PDF

Info

Publication number
CN105027630A
CN105027630A CN201380002772.2A CN201380002772A CN105027630A CN 105027630 A CN105027630 A CN 105027630A CN 201380002772 A CN201380002772 A CN 201380002772A CN 105027630 A CN105027630 A CN 105027630A
Authority
CN
China
Prior art keywords
terminal
access
network
request
centralized control
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201380002772.2A
Other languages
Chinese (zh)
Inventor
孟嘉
李欢
乔伟华
刘海
夏海涛
胡华东
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Huawei Technologies Co Ltd
Original Assignee
Huawei Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Huawei Technologies Co Ltd filed Critical Huawei Technologies Co Ltd
Publication of CN105027630A publication Critical patent/CN105027630A/en
Pending legal-status Critical Current

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W48/00Access restriction; Network selection; Access point selection
    • H04W48/16Discovering, processing access restriction or access information

Abstract

Disclosed are a method and device for controlling a terminal to access a network. The method comprises: acquiring, by a first centralized control entity, a request for a terminal to access a network; acquiring the number of access times of the terminal within a preset time; judging whether the number of access times is greater than a pre-set threshold value, and obtaining a first judgement result (103); and when the first judgement result represents that the number of access times is not greater than the pre-set threshold value, sending a first control instruction to an access point, the first control instruction representing that the terminal is permitted to establish a connection with the base station. By means of the method or device of the present invention, a request for a terminal to access a network can be refused when the number of access times of the terminal is greater than a pre-set threshold value, so that the occupation of a large number of network resources due to the fact that the terminal frequently accesses the network can be avoided, and thereby preventing the influence on the network performance and preventing the waste of network resources.

Description

Method and device for controlling terminal to access network
A kind of method and device technical field of control terminal access network
The present invention relates to network communication technology field, more particularly to a kind of method and device of control terminal access network.
Background technology
With continuing to develop for the communication technology, producing level also more and more higher of the terminal for network.The increasing application in terminal operationally needs access network, and data are obtained from network.
At the same time, a part of rogue program or malicious act are also occurred in that in the prior art.The rogue program or malicious act can cause terminal continually to access and disconnect network.The specific manifestation of the rogue program or malicious act can be that terminal has just been accessed after some network, and the network is disconnected at once, and the network or other networks are then accessed once more.
Terminal frequently access network, substantial amounts of signaling can be produced in a network, take a large amount of Internet resources, and causes the waste of Internet resources, have a strong impact on the performance of network.The content of the invention
In view of this, the present invention provides a kind of method and device of control terminal access network, can the number of times of access network be controlled to the process of accessing terminal to network within a period of time according to terminal, the a large amount of Internet resources of network occupancy are frequently accessed so as to solve terminal, the problem of causing network resources waste, influence network performance.Its concrete scheme is as follows:
According to the first possible implementation of the first aspect of the application, the application provides a kind of method of control terminal access network, and methods described includes:
First centralized control entity obtains the request of accessing terminal to network;
Obtain access number of times of the terminal in preset time;
Judge whether the access number of times is more than predetermined threshold value, obtain the first judged result;
When first judged result represents that the number of times is not more than the predetermined threshold value, the first control instruction is sent to access point, first control instruction represents to allow the terminal to set up the connection with described access point.
With reference to second of possible implementation of first aspect, first centralized control entity obtains terminal The request of access network, is specifically included:
First centralized control entity obtains the attach request that the terminal in failed cluster state is initiated to described access point.
With reference to the third possible implementation of first aspect, first centralized control entity obtains the request of accessing terminal to network, specifically included:
First centralized control entity obtains the re-positioning request of the second centralized control entity forwarding, and the re-positioning request represents that the network that the terminal request is accessed to the terminal is switched over.
With reference to the first embodiment of second of possible implementation of first aspect, access number of times of the acquisition terminal in preset time is specifically included:
Obtain access number of times of the terminal of the first centralized control entity record in preset time.With reference to the first embodiment of the third possible implementation of first aspect, access number of times of the acquisition terminal in preset time is specifically included:
Obtain the access number information included in the re-positioning request;The access number information is for representing access number of times of the terminal of the second centralized control entity record in preset time.
It is described to send the first control instruction to access point with reference to second of embodiment of the third possible implementation of first aspect, specifically include:
The re-positioning request is forwarded to described access point.
With reference to the 4th kind of possible implementation of first aspect, methods described also includes:
When first judged result represents that the number of times is more than predetermined threshold value, the second control instruction is sent to described access point, second control instruction represents to refuse the terminal foundation and the connection of described access point.It is described to send the second control instruction to described access point with reference to the first embodiment of the 4th kind of possible implementation of first aspect, in addition to:
The second control instruction for including refusal information is sent to described access point, to show Reason For Denial in the terminal, the refusal information is used for the Reason For Denial for representing the refusal accessing terminal to network.
With reference to first aspect eight kinds of possible implementations in any one, it is described to access point send the first control instruction after, in addition to:
The terminal is judged before the request of the access network is sent, and whether the access state of the terminal is refusal access state; If it is, sending the first access state information to User Information Database server;Wherein, the first access state information represents to allow the accessing terminal to network.
With reference to first aspect eight kinds of possible implementations in any one, methods described also includes:When first judged result represents that the number of times is more than predetermined threshold value, the terminal is judged before the request of the access network is sent, and whether the access state of the terminal is to allow access state;
If it is, sending the second access state information to User Information Database server;
Wherein, the second access state information represents to refuse the accessing terminal to network.
With reference to first aspect eight kinds of possible implementations in any one, first centralized control entity includes:Serving GPRS Support Node, mobile management entity or authentication and authorization charging server.
With reference to first aspect eight kinds of possible implementations in any one, second centralized control entity includes:Serving GPRS Support Node, mobile management entity or authentication and authorization charging server.The method for providing another control terminal access network according to the first possible implementation of the second aspect of the application, the application, methods described includes:
First centralized control entity obtains the request of accessing terminal to network;
Determine access number of times of the terminal in preset time;
The re-positioning request for including access number information is sent to the second centralized control entity, the access number information is used to represent the access number of times.The method for providing another control terminal access network according to the first possible implementation of the third aspect of the application, the application, methods described includes:
User Information Database server obtains the access state information that the first centralized control entity is sent;The first access state information represents to allow the accessing terminal to network;
The access state information is sent to the second centralized control entity;
The access state information allows the first access state information of the accessing terminal to network for expression, or, the access state information is the second access state information for representing the refusal accessing terminal to network.According to the first possible implementation of the fourth aspect of the application, the application provides a kind of device of control terminal access network, and described device includes: Acquiring unit, the request for obtaining accessing terminal to network;
It is additionally operable to obtain access number of times of the terminal in preset time;
Judging unit, for judging whether the access number of times is more than predetermined threshold value, obtains the first judged result;Transmitting element, for when first judged result represents that the number of times is not more than the predetermined threshold value, the first control instruction to be sent to access point, first control instruction represents to allow the terminal to set up the connection with described access point.
With reference to second of possible implementation of fourth aspect, the acquiring unit, specifically for:Obtain the attach request that the terminal in failed cluster state is initiated to described access point.
With reference to the third possible implementation of fourth aspect, the acquiring unit, specifically for:The re-positioning request of the second centralized control entity forwarding is obtained, the re-positioning request represents that the network that the terminal request is accessed to the terminal is switched over.
With reference to the first embodiment of the third possible implementation of fourth aspect, the acquiring unit, specifically for:
Obtain access number of times of the terminal of the first centralized control entity record in preset time.With reference to second of embodiment of the third possible implementation of fourth aspect, the acquiring unit, specifically for:
Obtain the access number information included in the re-positioning request;The access number information is for representing access number of times of the terminal of the second centralized control entity record in preset time.
With reference to the third embodiment of the third possible implementation of fourth aspect, the transmitting element, specifically for:
The re-positioning request is forwarded to described access point.
With reference to the 4th kind of possible implementation of fourth aspect, the transmitting element is additionally operable to:
When first judged result represents that the number of times is more than predetermined threshold value, the second control instruction is sent to described access point, second control instruction represents to refuse the terminal foundation and the connection of described access point.
With reference to the first embodiment of the 4th kind of possible implementation of fourth aspect, the transmitting element is additionally operable to:
The second control instruction for including refusal information is sent to described access point, to show Reason For Denial in the terminal, the refusal information is used for the Reason For Denial for representing the refusal accessing terminal to network.
With reference to fourth aspect eight kinds of possible implementations in any one, the judging unit is also used In:
After sending the first control instruction to access point, the terminal is judged before the request of the access network is sent, and whether the access state of the terminal is refusal access state, obtains the second judged result;Accordingly, the transmitting element, is additionally operable to:When second judged result is to be, the first access state information is sent to User Information Database server;
Wherein, the first access state information represents to allow the accessing terminal to network.
With reference to fourth aspect eight kinds of possible implementations in any one, the judging unit is additionally operable to:
When first judged result represents that the number of times is more than predetermined threshold value, the terminal is judged before the request of the access network is sent, and whether the access state of the terminal is to allow access state, obtains the 3rd judged result;
Accordingly, the transmitting element, is additionally operable to:When the 3rd judged result is to be, the second access state information is sent to User Information Database server;
Wherein, the second access state information represents to refuse the accessing terminal to network.According to the first possible implementation of the 5th of the application the aspect, the application provides the device of another control terminal access network, and described device includes:
Acquiring unit, the request for obtaining accessing terminal to network;
Determining unit, for determining access number of times of the terminal in preset time;
Transmitting element, for sending the re-positioning request for including access number information to the second centralized control entity, the access number information is used to represent the access number of times.According to the first possible implementation of the 6th of the application the aspect, the application provides the device of another control terminal access network, and described device includes:
Acquiring unit, for obtaining the access state information that the first centralized control entity is sent;The first access state information represents to allow the accessing terminal to network;
Transmitting element, for the access state information to be sent to the second centralized control entity;The access state information allows the first access state information of the accessing terminal to network for expression, or, the access state information is the second access state information for representing the refusal accessing terminal to network. It can be seen from above-mentioned technical scheme that, the control terminal network access method and device of the application, by obtaining access number of times of the terminal in preset time, judge whether the access number of times is more than predetermined threshold value, when the number of times is not more than the predetermined threshold value, just being sent to access point allows the first control instruction of the accessing terminal to network, can be when the access number of times of terminal be more than the predetermined threshold value, refuse the request of the accessing terminal to network, a large amount of Internet resources are taken so as to avoid terminal from frequently accessing network, avoid influenceing network performance, and prevent from causing the waste of Internet resources.Brief description of the drawings
In order to illustrate more clearly about the embodiment of the present invention or technical scheme of the prior art, the required accompanying drawing used in embodiment or description of the prior art will be briefly described below, apparently, drawings in the following description are only some embodiments of the present invention, for those of ordinary skill in the art, on the premise of not paying creative work, other accompanying drawings can also be obtained according to these accompanying drawings.
Fig. 1 is the flow chart of the embodiment of the method 1 of the control terminal access network of the application;
Fig. 2 is the flow chart of the embodiment of the method 2 of the control terminal access network of the application;
Fig. 3 is the flow chart of the embodiment of the method 3 of the control terminal access network of the application;
Fig. 4 is the flow chart of the embodiment of the method 4 of the control terminal access network of the application;
Fig. 5 is the flow chart of the embodiment of the method for another control terminal access network of the application;Fig. 6 is the flow chart of the embodiment of the method for another control terminal access network of the application;Fig. 7 is the structure chart of the device of the control terminal access network of the application;
Fig. 8 is the structure chart of the device of the control terminal access network of the application;
Fig. 9 is the structure chart of the device of the control terminal access network of the application;
Figure 10 is the structure chart of the calculate node of the application.
Embodiment
Below in conjunction with the accompanying drawing in the embodiment of the present invention, the technical scheme in the embodiment of the present invention is clearly and completely described, it is clear that described embodiment is only a part of embodiment of the invention, rather than whole embodiments.Based on the embodiment in the present invention, the every other embodiment that those of ordinary skill in the art are obtained under the premise of creative work is not made belongs to the scope of protection of the invention.
Fig. 1 is the flow chart of the embodiment of the method 1 of the control terminal access network of the application.As shown in figure 1, This method can include:
Step 101:First centralized control entity obtains the request of accessing terminal to network;
First centralized control entity, refers to the network element for playing centralized Control effect in a network.In 3GPP (the 3rd Generation Partnership Project, third generation cooperative partner program)In network, first centralized control entity can be mobile management entity(Mobility Management Entity, Μ Μ Ε), or can be Serving GPRS Support Node( Serving GPRS Support Node, SGSN ).In non-3 gpp network, first centralized control entity can be authentication and authorization charging server (Authentication, Authorization and Accounting, AAA).
The terminal can be the electronic equipment that mobile phone, tablet personal computer etc. have mobile communication function.
The request of the accessing terminal to network, can be position updating request or path handover request that the attach request of request access network or the terminal of accessed network of the terminal initiation of non-access network are initiated.
In 3GPP networks, the terminal can send the request of the access network to base station first, then forward the request to the first centralized control entity by base station.First centralized control entity can obtain the request of the base station forwarding.
In non-3 GPP network, the terminal can be first to WAP(Access Point, AP) request of the access network is sent, then the first centralized control entity is forwarded the request to by AP.First centralized control entity can obtain the request of the AP forwardings.
Step 102:Obtain access number of times of the terminal in preset time;
The preset time can be set according to the actual requirements.For example, it may be one hour or 30 minutes etc..The access number of times represents that the terminal accesses the number of times of the network in preset time.
The preset times can be counted and recorded in the associated documents of first centralized control entity by first centralized control entity itself.
The preset times can also be the second centralized control entity statistics, and first centralized control entity can obtain access number of times of the terminal in preset time from second centralized control entity.
Step 103:Judge whether the access number of times is more than predetermined threshold value, obtain the first judged result;The predetermined threshold value can also be set according to the actual requirements.After the predetermined threshold value is determined, the terminal that indegree is more than the predetermined threshold value can will be inscribed in Virtual network operator in preset time, be determined as access network excessively frequently terminal.That is the access behavior of the terminal causes influence on network performance. The terminal that number of times is less than or equal to the predetermined threshold value is accessed, then be can determine that as the terminal of normal access network.
Step 104:When first judged result represents that the number of times is not more than the predetermined threshold value, the first control instruction is sent to access point, first control instruction represents to allow the terminal to set up the connection with described access point.
It is less than or equal to the terminal of the predetermined threshold value for access number of times, the accessing terminal to network can be allowed.Therefore, first centralized control entity can send the first control instruction to access point, to indicate that described access point allows the terminal to set up the connection with described access point.
In 3GPP networks, described access point can be evolved base station(Evolved Node B, eNB), base station sub-system(Base Station Subsystem, BSS) or radio network controller( Radio Network Controller, RNC ).
In non-3 GPP network, described access point can be wireless Α Ρ.
When first judged result represents that the number of times is more than the predetermined threshold value, the terminal of the predetermined threshold value is more than for access number of times, the request of the accessing terminal to network can be refused.Specifically, first centralized control entity can not do any response.
In summary, in the present embodiment, by obtaining access number of times of the terminal in preset time, judge whether the access number of times is more than predetermined threshold value, when the number of times is not more than the predetermined threshold value, just being sent to access point allows the first control instruction of the accessing terminal to network, can be when the access number of times of terminal be more than the predetermined threshold value, refuse the request of the accessing terminal to network, a large amount of Internet resources are taken so as to avoid terminal from frequently accessing network, avoid influenceing network performance, and prevent from causing the waste of Internet resources.
Fig. 2 is the flow chart of the embodiment of the method 2 of the control terminal access network of the application.So that in 3GPP networks, the terminal in failed cluster state is initiated to illustrate exemplified by attach request to access point in the present embodiment.As shown in Fig. 2 the flow can include:
Step 201:Terminal, i.e. user equipment(), UE attach request is initiated to access point;
The terminal is in failed cluster state, can refer to that terminal has just been started shooting or in the area covered without network signal.
Described access point, can be different network elements in different types of 3GPP networks.For example, in LTE network or the land radio access web of evolution(Ε-UTRAN) in, described access point can be eNB;In land radio access web(UMTS Terrestrial Radio Access Network, UTRAN) in, institute It can be RNC to state access point;In global system for mobile communications(Global System of Mobile communication, GSM) in network, described access point can be BSS.Global system for mobile communications network includes the wireless access network under GSM( GSM EDGE Radio Access Network, GERAN ).
Step 202:Described access point forwards the attach request to the first centralized control entity.
Step 203:First centralized control entity judges whether access number of times of the terminal in preset time is more than predetermined threshold value.If not, step 204 is performed,;Otherwise, the instruction of refusal terminal access can not be responded or be sent to access point.
First centralized control entity can be counted to the access number of times of terminal.In the associated documents that statistical result is stored in first centralized control entity.In this case, first centralized control entity can directly obtain the access number of times of the terminal from the associated documents.
First centralized control entity, can be different network elements in different types of 3GPP networks.For example, in LTE network or E- UTRAN, first centralized control entity can be MME;In utran, first centralized control entity can be SGSN;In GERAN, first centralized control entity can also be SGSN.
Step 204:First centralized control entity sends the first control instruction to access point, and first control instruction represents to allow the terminal to set up the connection with the base station.
In summary, the present embodiment can realize Access Control when attach request is initiated for terminal.
It should be noted that in non-3 GPP network, it would however also be possible to employ the method for the present embodiment.When being applied in non-3 gpp network, described access point is wireless aps, and first centralized control entity is AAA.
Fig. 3 is the flow chart of the embodiment of the method 3 of the control terminal access network of the application.So that in 3GPP networks, the terminal in networking state is initiated to illustrate exemplified by handover request to access point in the present embodiment.
Step 301:Signalling exchange is carried out according to prior art between terminal and source access point, trigger source access point initiates handover request;
The source access point, can be different network elements in different types of 3GPP networks.For example, in LTE network or E- UTRAN, described access point can be eNB;In utran, described access point can be RNC;In GERAN, described access point can be BSS.
Step 302:Source access point initiates the handover request to the second centralized control entity;
Second centralized control entity, can be MME in LTE network or E- UTRAN;In utran, it can be SGSN;In GERAN or SGSN. Step 303:Second centralized control entity sends re-positioning request to the first centralized control entity;Comprising the terminal access number information in preset time in the re-positioning request.
Second centralized control entity, can be MME in LTE network or E- UTRAN;In utran, it can be SGSN;In GERAN or SGSN.The re-positioning request is used to ask the first centralized control entity to reposition the access point of the terminal, so that the terminal is switched on the access point of the first centralized control entity control.
Second centralized control entity can be counted to the access number of times of the terminal.When sending re-positioning request, access number of times addition can be sent in re-positioning request to the first centralized control entity, so that the first centralized control entity determines whether that terminal is accessed according to the access number of times.
In practical application, in order to reduce the resource occupation for the second centralized control entity, also for more reasonably persistently being counted to the access number of times of terminal, the access number of times of the terminal is sent to the first centralized control entity in the second centralized control entity, the second centralized control entity can remove the access number of times of the terminal.
Step 304:First centralized control entity judges whether the access number of times is more than predetermined threshold value, if not, performing step 305;If it is, can be with without any processing.
Step 305:First centralized control entity sends handover request to target access;
This step is used to inform target access, and the terminal request accesses the target access.
Step 306:Target access sends switching request acknowledgement message to the first centralized control entity;In this step, target access can also obtain the policy information accessed in the configuration file of itself storage for terminal, determine whether that terminal is accessed according to the policy information.If it is allowed, performing this step again;If it is not allowed, can then send the message for refusing terminal access to the first centralized control entity.
Step 307:First centralized control entity sends re-positioning request response to the second centralized control entity.In the present embodiment, by the access number information that terminal is added in re-positioning request, can be when the access point to terminal be switched over, make the first centralized control entity, access number of times of the terminal in the second centralized control entity before can also be got, and the control for accessing terminal to network can be realized according to the access number of times.
It should be noted that first centralized control entity and second centralized control entity, may belong to different types of network.For example, first centralized control entity can be MME, second collection Middle controlled entity can be SGSN;Or, first centralized control entity can be SGSN, and second centralized control entity can be MME.
It can further be stated that, in step 304, if the first centralized control entity judges that the access number of times is more than predetermined threshold value, first centralized control entity can also send the second control instruction to target access, and second control instruction represents to refuse the terminal foundation and the connection of the base station.In second control instruction, refusal information can be included.The refusal information is used for the Reason For Denial for representing the refusal accessing terminal to network.Terminal can show the refusal information on the display unit, so that user knows the reason for access request of terminal is rejected.
Fig. 4 is the flow chart of the embodiment of the method 4 of the control terminal access network of the application.Illustrated in the present embodiment so that the centralized control entity in the centralized control entity and non-3 GPP network in 3GPP networks jointly controls to dual-mode terminal as an example.
Dual-mode terminal can be accessed while accessing two distinct types of network, such as while accessing 3GPP networks and non-3 GPP network.Due to the centralized control entity in the centralized control entity and non-3 GPP network in 3GPP networks can not direct communication, accordingly, it would be desirable to be controlled using another way to the access request of terminal.
As shown in figure 4, this method can include:
Step 401:Terminal initiates access request to 3GPP access points;
Step 402:3GPP access points send the access request the first centralized control entity into 3GPP networks;
Step 403:First centralized control entity determines the access state of terminal according to the access number of times of terminal, judges whether the access state of the terminal is changed.In the event of changing, step 404 is performed;If do not changed, subsequent step can not be performed.
When accessing number of times more than predetermined threshold value, the access state is refusal access state;When it is less than predetermined threshold value to access number of times, the access state is permission access state.
First centralized control entity can be according to terminal before the access request is initiated access state, and whether this allow the judged result that terminal is accessed, and judges whether the access state of the terminal is changed.
Specifically, described changed, including:The access state of the terminal is changed into permission access state by refusal access state, or is changed into refusal access state from permission access state. Step 404:First centralized control entity sends the access state information of the terminal to User Information Database server.
The access state information can be represented to allow the first access state information of the accessing terminal to network or represent the second access state information of the refusal accessing terminal to network.
The User Information Database server, is the server for recording user profile.Can be user's subscribed services device in practical application( Home Subscriber Server , HSS ).
Generally, User Information Database server be can be with the access point communication in 3GPP networks, access point communication that can also be with non-3 GPP network.
Step 405:User Information Database server sends the access state information the second centralized control entity into non-3 GPP network.
User Information Database server can also preserve the access state information, to be subsequent supplied to the centralized control entity for needing to obtain the information.
Second centralized control entity can be AAA.
Step 406:Second centralized control entity is refused according to the access state information or allows the terminal for the access request of non-3 GPP network.
It should be noted that, in the present embodiment, it is equally applicable for the access request that terminal is initiated to non-3 GPP access point, as long as regarding the respective network elements in 3GPP networks as the respective network elements in non-3 gpp network as the second centralized control entity as the first centralized control entity.
In summary, in the present embodiment, by the way that the access state information of terminal is sent to User Information Database server, centralized control entity of the access state information transmission into non-3 GPP network by User Information Database server by the terminal in 3GPP networks, it is possible to achieve the centralized control entity in centralized control entity and non-3 GPP network in 3GPP networks jointly controls to dual-mode terminal access network.Disclosed herein as well is the method for another control terminal access network.Fig. 5 is the flow chart of the embodiment of the method for another control terminal access network of the application.As shown in figure 5, this method can include:Step 501:First centralized control entity obtains the request of accessing terminal to network;
Step 502:Determine access number of times of the terminal in preset time;
Step 503:The re-positioning request for including access number information is sent to the second centralized control entity, the access number information is used to represent the access number of times. It should be noted that second centralized control entity of first centralized control entity equivalent to Fig. 3 into Fig. 4 in the present embodiment.First centralized control entity of second centralized control entity equivalent to Fig. 3 into Fig. 4 in the present embodiment.
In the present embodiment, the first centralized control entity can be sent the access number information of terminal to the second centralized control entity by re-positioning request, so that the second centralized control entity obtains the access number of times of terminal.
Disclosed herein as well is the method for another control terminal access network.Fig. 6 is the flow chart of the embodiment of the method for another control terminal access network of the application.As shown in fig. 6, this method can include:Step 601:User Information Database server obtains the access state information that the first centralized control entity is sent;The first access state information represents to allow the accessing terminal to network;
Step 602:The access state information is sent to the second centralized control entity;
The access state information allows the first access state information of the accessing terminal to network for expression, or, the access state information is the second access state information for representing the refusal accessing terminal to network.
The method of the present embodiment, can be pushed the access state information of terminal between 3GPP networks and non-3 GPP network, to realize for while accessing jointly controlling for the dual-mode terminal of 3GPP networks and non-3 GPP network.Disclosed herein as well is a kind of device of control terminal access network.In different types of 3GPP networks, described device can be different network elements.In LTE network or E- UTRAN, described device can be MME;In utran, described device can be SGSN;In GERAN, described device can also be SGSN.In non-3 GPP network, described device can be authentication and authorization charging server.
Fig. 7 is the structure chart of the device of the control terminal access network of the application.As shown in fig. 7, the device can include:
Acquiring unit 701, the request for obtaining accessing terminal to network;
It is additionally operable to obtain access number of times of the terminal in preset time;
The terminal can be the electronic equipment that mobile phone, tablet personal computer etc. have mobile communication function.
The request of the accessing terminal to network, can be position updating request or path handover request that the attach request of request access network or the terminal of accessed network of the terminal initiation of non-access network are initiated. In 3GPP networks, the terminal can send the request of the access network to base station first, then forward the request to device by base station.Described device can obtain the request of the base station forwarding.
In non-3 GPP network, the terminal can be first to WAP(Access Point, AP) request of the access network is sent, then device is forwarded the request to by AP.Described device can obtain the request of the AP forwardings.
The preset time can be set according to the actual requirements.For example, it may be one hour or 30 minutes etc..The access number of times represents that the terminal accesses the number of times of the network in preset time.
The preset times can be counted and recorded in the associated documents of described device by described device itself.
The preset times can also be the second centralized control entity statistics, and described device can obtain access number of times of the terminal in preset time from second centralized control entity.
Judging unit 702, for judging whether the access number of times is more than predetermined threshold value, obtains the first judged result;
The predetermined threshold value can also be set according to the actual requirements.After the predetermined threshold value is determined, the terminal that indegree is more than the predetermined threshold value can will be inscribed in Virtual network operator in preset time, be determined as access network excessively frequently terminal.That is the access behavior of the terminal causes influence on network performance.
The terminal that number of times is less than or equal to the predetermined threshold value is accessed, then be can determine that as the terminal of normal access network.
Transmitting element 703, for when first judged result represents that the number of times is not more than the predetermined threshold value, the first control instruction to be sent to access point, first control instruction represents to allow the terminal to set up the connection with described access point.
It is less than or equal to the terminal of the predetermined threshold value for access number of times, the accessing terminal to network can be allowed.Therefore, described device can send the first control instruction to access point, to indicate that described access point allows the terminal to set up the connection with described access point.
In 3GPP networks, described access point can be evolved base station(Evolved Node B, eNB), base station sub-system(Base Station Subsystem, BSS) or radio network controller( Radio Network Controller, RNC ).
In non-3 GPP network, described access point can be wireless Α Ρ.
It is big for access number of times when first judged result represents that the number of times is more than the predetermined threshold value In the terminal of the predetermined threshold value, the request of the accessing terminal to network can be refused.Specifically, described device can be with not # zhangs any response.
In summary, in the present embodiment, by obtaining access number of times of the terminal in preset time, judge whether the access number of times is more than predetermined threshold value, when the number of times is not more than the predetermined threshold value, just being sent to access point allows the first control instruction of the accessing terminal to network, can be when the access number of times of terminal be more than the predetermined threshold value, refuse the request of the accessing terminal to network, a large amount of Internet resources are taken so as to avoid terminal from frequently accessing network, avoid influenceing network performance, and prevent from causing the waste of Internet resources.
In practical application, the acquiring unit 701 specifically can be used for:
Obtain the attach request that the terminal in failed cluster state is initiated to described access point.
In practical application, the acquiring unit 701 specifically can be used for:
The re-positioning request of the second centralized control entity forwarding is obtained, the re-positioning request represents that the network that the terminal request is accessed to the terminal is switched over.
In practical application, the acquiring unit 701 specifically can be used for:
Obtain access number of times of the terminal of the first centralized control entity record in preset time.In practical application, the acquiring unit 701 specifically can be used for:
Obtain the access number information included in the re-positioning request;The access number information is for representing access number of times of the terminal of the second centralized control entity record in preset time.
In practical application, the transmitting element 703 specifically can be used for:
The re-positioning request is forwarded to described access point.
In practical application, the transmitting element 703 can be also used for:
When first judged result represents that the number of times is more than predetermined threshold value, the second control instruction is sent to described access point, second control instruction represents to refuse the terminal foundation and the connection of described access point.
In practical application, the transmitting element 703 can be also used for:
The second control instruction for including refusal information is sent to described access point, to show Reason For Denial in the terminal, the refusal information is used for the Reason For Denial for representing the refusal accessing terminal to network.
In practical application, the judging unit 702 can be also used for:
After sending the first control instruction to access point, the terminal is judged before the request of the access network is sent, and whether the access state of the terminal is refusal access state, obtains the second judged result;Accordingly, the transmitting element 703, can be also used for:When second judged result is to be, The first access state information is sent to User Information Database server;
Wherein, the first access state information represents to allow the accessing terminal to network.
In practical application, the judging unit 702 can be also used for:
When first judged result represents that the number of times is more than predetermined threshold value, the terminal is judged before the request of the access network is sent, and whether the access state of the terminal is to allow access state, obtains the 3rd judged result;
Accordingly, the transmitting element 703, can be also used for:When the 3rd judged result is to be, the second access state information is sent to User Information Database server;
Wherein, the second access state information represents to refuse the accessing terminal to network.Disclosed herein as well is the device of another control terminal access network.In different types of 3GPP networks, described device can be different network elements.In LTE network or E- UTRAN, described device can be MME;In utran, described device can be SGSN;In GERAN, described device can also be SGSN.In non-3 GPP network, described device can be authentication and authorization charging server.
Fig. 8 is the structure chart of the device of the control terminal access network of the application.As shown in figure 8, the device can include:
Acquiring unit 801, the request for obtaining accessing terminal to network;
Determining unit 802, for determining access number of times of the terminal in preset time;
Transmitting element 803, for sending the re-positioning request for including access number information to the second centralized control entity, the access number information is used to represent the access number of times.
In the present embodiment, the first centralized control entity can be sent the access number information of terminal to the second centralized control entity by re-positioning request, so that the second centralized control entity obtains the access number of times of terminal.Disclosed herein as well is the device of another control terminal access network.Described device can be User Information Database server.
Fig. 9 is the structure chart of the device of the control terminal access network of the application.As shown in figure 9, the device can include:
Acquiring unit 901, for obtaining the access state information that the first centralized control entity is sent;Described One access state information represents to allow the accessing terminal to network;
Transmitting element 902, for the access state information to be sent to the second centralized control entity;The access state information allows the first access state information of the accessing terminal to network for expression, or, the access state information is the second access state information for representing the refusal accessing terminal to network.
The device of the present embodiment, can be pushed the access state information of terminal between 3GPP networks and non-3 GPP network, to realize for while accessing jointly controlling for the dual-mode terminal of 3GPP networks and non-3 GPP network.In addition, the embodiment of the present application additionally provides a kind of calculate node, calculate node is probably the host server comprising computing capability, or personal computer PC, either portable portable computer or terminal etc., the application specific embodiment do not limited implementing for calculate node.
Figure 10 is the structure chart of the calculate node of the application.As shown in Figure 10, calculate node 700 includes:Processor(Processor) 710, communication interface(Communications Interface) 720, memory(Memory) 730, bus 740.
Processor 710, communication interface 720, memory 730 completes mutual communication by bus 740.Processor 710, for configuration processor 732.
Specifically, program 732 can include program code, and described program code includes computer-managed instruction.Processor 710 is probably a central processor CPU, either specific integrated circuit ASIC (Application Specific Integrated Circuit), or it is arranged to implement one or more integrated circuits of the embodiment of the present application.
Memory 730, for depositing program 732.Memory 730 may include high-speed RAM memory, it is also possible to also including nonvolatile memory(Non-volatile memory), for example, at least one magnetic disk storage.Program 732 can specifically include the corresponding units in Fig. 7-embodiment illustrated in fig. 9, and Redundant is not stated herein.The embodiment of each in this specification is described by the way of progressive, what each embodiment was stressed be between the difference with other embodiment, each embodiment identical similar portion mutually referring to.For device disclosed in embodiment, because it is corresponded to the method disclosed in Example, so description is fairly simple, related part is referring to method part illustration.
Professional further appreciates that, with reference to each example of the embodiments described herein description Unit and algorithm steps, can be realized by electronic hardware or electronic hardware in the way of computer software is combined.In order to clearly demonstrate the interchangeability of fractional hardware and software, the composition and step of each example are generally described according to function in the above description.These functions are performed in the way of hardware or software and hardware combining actually, depending on the application-specific and design constraint of technical scheme.Professional and technical personnel is considered as beyond the scope of this invention.
Hardware, the software module of computing device, or the combination of the two can be directly used to implement with reference to the step of the method or algorithm that the embodiments described herein is described.Software module can be placed in random access memory (RAM), internal memory, read-only storage (ROM), electrically programmable ROM, electrically erasable ROM, in register, hard disk, moveable magnetic disc, any other form of storage medium well known in CD-ROM, or technical field.
The foregoing description of the disclosed embodiments, enables professional and technical personnel in the field to realize or using the present invention.A variety of modifications to these embodiments be will be apparent for those skilled in the art, and generic principles defined herein can be realized in other embodiments without departing from the spirit or scope of the present invention.Therefore, the present invention is not intended to be limited to the embodiments shown herein, and is to fit to the most wide scope consistent with features of novelty with principles disclosed herein.
+

Claims (1)

  1. Claim
    1st, a kind of method of control terminal access network, it is characterised in that methods described includes:First centralized control entity obtains the request of accessing terminal to network;
    Obtain access number of times of the terminal in preset time;
    Judge whether the access number of times is more than predetermined threshold value, obtain the first judged result;
    When first judged result represents that the number of times is not more than the predetermined threshold value, the first control instruction is sent to access point, first control instruction represents to allow the terminal to set up the connection with described access point.
    2nd, according to the method described in claim 1, it is characterised in that first centralized control entity obtains the request of accessing terminal to network, specifically includes:
    First centralized control entity obtains the attach request that the terminal in failed cluster state is initiated to described access point.
    3rd, according to the method described in claim 1, it is characterised in that first centralized control entity obtains the request of accessing terminal to network, specifically includes:
    First centralized control entity obtains the re-positioning request of the second centralized control entity forwarding, and the re-positioning request represents that the network that the terminal request is accessed to the terminal is switched over.
    4th, method according to claim 2, it is characterised in that access number of times of the acquisition terminal in preset time, is specifically included:
    Obtain access number of times of the terminal of the first centralized control entity record in preset time.5th, method according to claim 3, it is characterised in that access number of times of the acquisition terminal in preset time, is specifically included:
    Obtain the access number information included in the re-positioning request;The access number information is for representing access number of times of the terminal of the second centralized control entity record in preset time.
    6th, method according to claim 3, it is characterised in that described to send the first control instruction to access point, is specifically included:
    The re-positioning request is forwarded to described access point.
    7th, according to the method described in claim 1, it is characterised in that methods described also includes:When first judged result represents that the number of times is more than predetermined threshold value, the second control instruction is sent to described access point, second control instruction represents to refuse the terminal foundation and the connection of described access point. 8th, method according to claim 7, it is characterised in that described to send the second control instruction to described access point, in addition to:
    The second control instruction for including refusal information is sent to described access point, to show Reason For Denial in the terminal, the refusal information is used for the Reason For Denial for representing the refusal accessing terminal to network.
    9th, the method according to claim any one of 1-8, it is characterised in that after first control instruction of transmission to access point, in addition to:
    The terminal is judged before the request of the access network is sent, and whether the access state of the terminal is refusal access state;
    If it is, sending the first access state information to User Information Database server;
    Wherein, the first access state information represents to allow the accessing terminal to network.
    10th, the method according to claim any one of 1-8, it is characterised in that methods described also includes:When first judged result represents that the number of times is more than predetermined threshold value, the terminal is judged before the request of the access network is sent, and whether the access state of the terminal is to allow access state;
    If it is, sending the second access state information to User Information Database server;
    Wherein, the second access state information represents to refuse the accessing terminal to network.
    11st, the method according to claim any one of 1-8, it is characterised in that first centralized control entity includes:Serving GPRS Support Node, mobile management entity or authentication and authorization charging server.
    12nd, the method according to claim any one of 1-8, it is characterised in that second centralized control entity includes:Serving GPRS Support Node, mobile management entity or authentication and authorization charging server.
    13rd, a kind of method of control terminal access network, it is characterised in that methods described includes:First centralized control entity obtains the request of accessing terminal to network;
    Determine access number of times of the terminal in preset time;
    The re-positioning request for including access number information is sent to the second centralized control entity, the access number information is used to represent the access number of times.
    14th, a kind of method of control terminal access network, it is characterised in that methods described includes:User Information Database server obtains the access state information that the first centralized control entity is sent;The first access state information represents to allow the accessing terminal to network;
    The access state information is sent to the second centralized control entity;
    The access state information allows the first access state information of the accessing terminal to network for expression, or Person, the access state information refuses the second access state information of the accessing terminal to network for expression.
    15th, a kind of device of control terminal access network, it is characterised in that described device includes:Acquiring unit, the request for obtaining accessing terminal to network;
    It is additionally operable to obtain access number of times of the terminal in preset time;
    Judging unit, for judging whether the access number of times is more than predetermined threshold value, obtains the first judged result;Transmitting element, for when first judged result represents that the number of times is not more than the predetermined threshold value, the first control instruction to be sent to access point, first control instruction represents to allow the terminal to set up the connection with described access point.
    16th, device according to claim 15, it is characterised in that the acquiring unit, specifically for:
    Obtain the attach request that the terminal in failed cluster state is initiated to described access point.
    17th, device according to claim 15, it is characterised in that the acquiring unit, specifically for:
    The re-positioning request of the second centralized control entity forwarding is obtained, the re-positioning request represents that the network that the terminal request is accessed to the terminal is switched over.
    18th, device according to claim 17, it is characterised in that the acquiring unit, specifically for:
    Obtain access number of times of the terminal of the first centralized control entity record in preset time.
    19th, device according to claim 17, it is characterised in that the acquiring unit, specifically for:
    Obtain the access number information included in the re-positioning request;The access number information is for representing access number of times of the terminal of the second centralized control entity record in preset time.
    20th, device according to claim 17, it is characterised in that the transmitting element, specifically for:
    The re-positioning request is forwarded to described access point.
    21st, device according to claim 15, it is characterised in that the transmitting element is additionally operable to:When first judged result represents that the number of times is more than predetermined threshold value, the second control instruction is sent to described access point, second control instruction represents to refuse the terminal foundation and the connection of described access point.
    22nd, device according to claim 21, it is characterised in that the transmitting element, is additionally operable to: The second control instruction for including refusal information is sent to described access point, to show Reason For Denial in the terminal, the refusal information is used for the Reason For Denial for representing the refusal accessing terminal to network.
    23rd, the device according to claim any one of 15-22, it is characterised in that the judging unit, is additionally operable to:
    After sending the first control instruction to access point, the terminal is judged before the request of the access network is sent, and whether the access state of the terminal is refusal access state, obtains the second judged result;
    Accordingly, the transmitting element, is additionally operable to:When second judged result is to be, the first access state information is sent to User Information Database server;
    Wherein, the first access state information represents to allow the accessing terminal to network.
    24th, the device according to claim any one of 15-22, it is characterised in that the judging unit, is additionally operable to:
    When first judged result represents that the number of times is more than predetermined threshold value, the terminal is judged before the request of the access network is sent, and whether the access state of the terminal is to allow access state, obtains the 3rd judged result;
    Accordingly, the transmitting element, is additionally operable to:When the 3rd judged result is to be, the second access state information is sent to User Information Database server;
    Wherein, the second access state information represents to refuse the accessing terminal to network.
    25th, a kind of device of control terminal access network, it is characterised in that described device includes:Acquiring unit, the request for obtaining accessing terminal to network;
    Determining unit, for determining access number of times of the terminal in preset time;
    Transmitting element, for sending the re-positioning request for including access number information to the second centralized control entity, the access number information is used to represent the access number of times.
    26th, a kind of device of control terminal access network, it is characterised in that described device includes:Acquiring unit, for obtaining the access state information that the first centralized control entity is sent;The first access state information represents to allow the accessing terminal to network;
    Transmitting element, for the access state information to be sent to the second centralized control entity;
    The access state information allows the first access state information of the accessing terminal to network for expression, or, the access state information is the second access state information for representing the refusal accessing terminal to network.
CN201380002772.2A 2013-11-29 2013-11-29 Method and device for controlling terminal to access network Pending CN105027630A (en)

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
PCT/CN2013/088200 WO2015077997A1 (en) 2013-11-29 2013-11-29 Method and device for controlling terminal to access network

Publications (1)

Publication Number Publication Date
CN105027630A true CN105027630A (en) 2015-11-04

Family

ID=53198239

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201380002772.2A Pending CN105027630A (en) 2013-11-29 2013-11-29 Method and device for controlling terminal to access network

Country Status (2)

Country Link
CN (1) CN105027630A (en)
WO (1) WO2015077997A1 (en)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN113347646A (en) * 2021-07-08 2021-09-03 博为科技有限公司 Mesh networking management method and related equipment

Families Citing this family (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN110620736B (en) * 2019-10-23 2022-08-26 杭州迪普科技股份有限公司 Method and device for flow scheduling
CN116233944A (en) * 2021-12-06 2023-06-06 华为技术有限公司 Communication method and device

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101448245A (en) * 2008-04-01 2009-06-03 中兴通讯股份有限公司 Method for home network IMS domain to obtain UE access information
CN102870470A (en) * 2012-06-27 2013-01-09 华为技术有限公司 Method, device and system for redirection processing
CN102960029A (en) * 2011-06-21 2013-03-06 华为技术有限公司 Method, device, user equipment and system for repeated access detection and restriction
EP2436214B1 (en) * 2009-05-28 2013-08-14 QUALCOMM Incorporated Reducing frequent handoffs of a wireless communication device

Family Cites Families (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN100415028C (en) * 2003-09-11 2008-08-27 华为技术有限公司 Method of accessing target base station for mobile terminal switching between base stations

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101448245A (en) * 2008-04-01 2009-06-03 中兴通讯股份有限公司 Method for home network IMS domain to obtain UE access information
EP2436214B1 (en) * 2009-05-28 2013-08-14 QUALCOMM Incorporated Reducing frequent handoffs of a wireless communication device
CN102960029A (en) * 2011-06-21 2013-03-06 华为技术有限公司 Method, device, user equipment and system for repeated access detection and restriction
CN102870470A (en) * 2012-06-27 2013-01-09 华为技术有限公司 Method, device and system for redirection processing

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN113347646A (en) * 2021-07-08 2021-09-03 博为科技有限公司 Mesh networking management method and related equipment
CN113347646B (en) * 2021-07-08 2023-03-24 博为科技有限公司 Mesh networking management method and related equipment

Also Published As

Publication number Publication date
WO2015077997A1 (en) 2015-06-04

Similar Documents

Publication Publication Date Title
US8340636B2 (en) Determining if an access terminal is authorized to use an access point
US20180109953A1 (en) Method, Apparatus, and System for Preventing Diameter Signaling Attack in Wireless Network
EP3574678B1 (en) Management of security contexts at idle mode mobility between different wireless communication systems
EP3596985B1 (en) Method and apparatus for protection of privacy in paging of user equipment
CN106031105B (en) Overload control for trusted WLAN access to EPC
CN108293259B (en) NAS message processing and cell list updating method and equipment
US10448286B2 (en) Mobility in mobile communications network
WO2011002580A1 (en) Service continuity during outbound handover from a home network base station with local internet protocol access
CN103843379A (en) Information processing method and device
EP3761590B1 (en) Method for controlling terminal to access network, and network element
CN103313239A (en) Method and system for accessing user equipment to integrated core network
JP2014502078A (en) Method and apparatus for communication
CN105027630A (en) Method and device for controlling terminal to access network
CN112911658A (en) Communication method and device
WO2012146202A1 (en) Method and system for establishing radio resource control connection
CN102572783B (en) Registration processing method, system and device
Qiang et al. Security analysis of TAU procedure in LTE network
CN104219656A (en) Service control method for machine type communication equipment, related devices and service control systems
CN103702380B (en) A kind of mobile management network element and method
CN106604329B (en) A kind of method for switching network and equipment
CN101594607B (en) Maintaining method, system and device of gateway information of packet data network
WO2022067815A1 (en) Communication method and apparatus, and device
CN104303473A (en) Flow control method and apparatus of operator sharing network
CN103843406B (en) mobile network sharing method and device
EP3403428A1 (en) Central node management of ue context

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
RJ01 Rejection of invention patent application after publication

Application publication date: 20151104

RJ01 Rejection of invention patent application after publication