CN105792200B - A kind of method for authenticating, system and relevant apparatus - Google Patents

A kind of method for authenticating, system and relevant apparatus Download PDF

Info

Publication number
CN105792200B
CN105792200B CN201410834846.5A CN201410834846A CN105792200B CN 105792200 B CN105792200 B CN 105792200B CN 201410834846 A CN201410834846 A CN 201410834846A CN 105792200 B CN105792200 B CN 105792200B
Authority
CN
China
Prior art keywords
user
identification code
pcrf
authentication identification
service request
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201410834846.5A
Other languages
Chinese (zh)
Other versions
CN105792200A (en
Inventor
黄震宁
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
China Mobile Communications Group Co Ltd
Original Assignee
China Mobile Communications Group Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by China Mobile Communications Group Co Ltd filed Critical China Mobile Communications Group Co Ltd
Priority to CN201410834846.5A priority Critical patent/CN105792200B/en
Publication of CN105792200A publication Critical patent/CN105792200A/en
Application granted granted Critical
Publication of CN105792200B publication Critical patent/CN105792200B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Landscapes

  • Data Exchanges In Wide-Area Networks (AREA)
  • Management, Administration, Business Operations System, And Electronic Commerce (AREA)

Abstract

The embodiment of the invention discloses a kind of method for authenticating, system and relevant apparatus, this method comprises: service server is obtained from Gateway GPRS Support Node/packet data node gateway GGSN/PGW service request, the service request carries authentication identification code;Service server sends authentication request to policy control and charging regulation function entity PCRF, and the authentication request carries the authentication identification code;Service server obtains the authenticating result from PCRF, the authenticating result be by when, provide corresponding service according to the service request.According to embodiments of the present invention, network side can be carried out multiple authentication without user, be simplified user's operation, improve user experience with intercommunication authenticating result.

Description

A kind of method for authenticating, system and relevant apparatus
Technical field
The present invention relates to subscription authentication field more particularly to a kind of method for authenticating, system and relevant apparatus.
Background technique
In order to reach differentiated service ability, resource dredges ability, the targets such as network flow optimization ability, according to 3GPP (3rd Generation Partnership Project, third generation partner program) standard criterion, in existing grouping net Strategy is introduced in network with charging control (Policy and Charging Control, PCC) system architecture to Packet data service Carry out QoS (Quality of Service, service quality) control.
Fig. 1 show PCC configuration diagram, and with reference to Fig. 1, the main network elements in PCC framework include: PCRF (Policy And Charging Rules Function, policy control and charging regulation function entity), PCEF (Policy and Charging Enforcement Function, policy control and charging execution function entity), AF (Application Function, Application Function), OCS/OFCS (Online Charging System/Offline Charging System, online charging system/off-line accounting system) and SPR (Subscription Profile Repository, signing letter Cease library), in which:
PCRF: having the function of policy control decision and the charging control based on stream, provides to PCEF about business datum Stream detection, gate are based on QoS and are based on the network control function of flow based charging (in addition to diameter credit control).
PCEF: be responsible for business data flow detection, strategy execution and the billing function based on stream, be generally located on GGSN or On P-GW.
AF: mainly carrying out dynamic strategy/charging control to the behavior of IP-CAN user face, is arranged on business platform.
SPR: for logic entity, permit for storage information relevant to all contracted users or signing, including contracted user Perhaps business etc..
OCS/OFCS: it is used for on-line/off-line charging.
Based on existing authentication management scheme, core net is not interconnected known to network service server the authentication of user, It is required to authenticate to which user accesses business, for example, initiating attach process and reaching the user of PCRF, have already been through Core net authentication, still, if the user needs to access own business or Internet business, it is still necessary to input user again and set The user name set, password carry out authentication, to realize cumbersome, reduce user experience.
Summary of the invention
In view of this, the embodiment of the present invention provides to solve existing technical problem:
A kind of method for authenticating, comprising:
Service server acquisition is asked from Gateway GPRS Support Node/packet data node gateway GGSN/PGW business It asks, the service request carries authentication identification code;
Service server sends authentication request to policy control and charging regulation function entity PCRF, and the authentication request is taken With the authentication identification code;
Service server obtain the authenticating result from PCRF, the authenticating result be by when, asked according to the business The corresponding service of offer is provided.
In one specific embodiment, before the service server obtains the service request from GGSN/PGW, this method is also Include:
The service request of GGSN/PGW acquisition user;
The authentication identification code of the user is inserted into the service request;
The service request of the insertion authentication identification code is sent to service server.
In one specific embodiment, this method further include:
When user activates, PCRF judge that whether the user contracts single authorization business and legal, determines user's signing singly Sub-authorization business and it is legal when, triggering generates the authentication identification code of the user;
The authentication identification code of the user of generation is sent to GGSN/PGW.
In one specific embodiment, between the service server and PCRF by application programming interface API equipment into Row communication.
The embodiment of the present invention also provides a kind of service server, comprising: first obtains module, sending module, the second acquisition Module and processing module;Wherein,
Described first obtains module, and for obtaining the service request from GGSN/PGW, the service request carries authentication Identification code;
The sending module, for sending authentication request to PCRF, the authentication request carries the authentication identification code;
Described second obtains module, for obtaining the authenticating result from PCRF;
The processing module, for when the authenticating result from PCRF be by when, according to the service request provide phase The service answered.
The embodiment of the present invention also provides a kind of GGSN/PGW, comprising: obtains module, service request modified module and sends mould Block;Wherein,
The acquisition module, for obtaining the service request of user;
The service request modified module, for the authentication identification code of the user to be inserted into the service request;
The sending module, for the service request of the insertion authentication identification code to be sent to service server.
The embodiment of the present invention also provides a kind of PCRF, comprising: judgment module, authentication identification code generation module and transmission mould Block;Wherein,
The judgment module, in user's activation, judging whether the user contracts single authorization business and legal;
The authentication identification code generation module, for determining user's signing single authorization business and conjunction in the judgment module When method, triggering generates the authentication identification code of the user;
The sending module, for the authentication identification code of the user to be sent to GGSN/PGW.
The embodiment of the present invention also provides a kind of right discriminating system, comprising: service server, GGSN/PGW and PCRF;Wherein,
The service server is service server described in claim 5;
The GGSN/PGW is GGSN/PGW as claimed in claim 6;
The PCRF is PCRF as claimed in claim 7.
In one specific embodiment, which further includes API equipment,
The API equipment, for realizing the communication between service server and PCRF.
Method for authenticating described in the embodiment of the present invention, system and relevant apparatus, service server, which obtains, comes from gateway GPRS Supporting node/packet data node gateway GGSN/PGW service request, the service request carry authentication identification code;Business clothes Device be engaged in policy control and charging regulation function entity PCRF transmission authentication request, the authentication request carries the authentication identification Code;Service server obtain the authenticating result from PCRF, the authenticating result be by when, according to the service request provide Corresponding service.According to embodiments of the present invention, network side can repeatedly be authenticated with intercommunication authenticating result without user Certification, simplifies user's operation, improves user experience.
Detailed description of the invention
Fig. 1 is PCC configuration diagram;
Fig. 2 is a kind of method for authenticating flow diagram of the embodiment of the present invention;
Fig. 3 is another method for authenticating flow diagram of the embodiment of the present invention;
Fig. 4 is a kind of service server structural schematic diagram of the embodiment of the present invention;
Fig. 5 is a kind of GGSN/PGW structural schematic diagram of the embodiment of the present invention;
Fig. 6 is a kind of PCRF structural schematic diagram of the embodiment of the present invention;
Fig. 7 is a kind of right discriminating system structural schematic diagram of the embodiment of the present invention;
Fig. 8 is another right discriminating system structural schematic diagram of the embodiment of the present invention;
Fig. 9 is authorizing procedure schematic diagram described in the embodiment of the present invention 1.
Specific embodiment
In order to simplify user's operation, the embodiment of the present invention proposes a kind of method for authenticating, as shown in Fig. 2, this method packet It includes:
Step 201: service server obtains the service request from GGSN/PGW, and the service request carries authentication identification Code.
It should be noted that authentication identification code can adhere in user or other early periods and PCRF interaction flow in, by PCRF generates and is handed down to gateway, which has certain length, distinguishes each industry of each user enough Business request, create-rule can be the authentication identification code that the next generation of speculative arbitration is avoided passing through by certain algorithm.
In one specific embodiment, when user activates, PCRF judges whether the user contracts single authorization business and legal, Determine user contract single authorization business and it is legal when, triggering generates the authentication identification code of the user;Later, by the institute of generation The authentication identification code for stating user is sent to GGSN/PGW.
It should be noted that authenticating identification code unique identification user and being changed in each user activation.
Step 202: service server sends authentication request to PCRF, and the authentication request carries the authentication identification code;
Step 203: service server obtain the authenticating result from PCRF, the authenticating result be by when, authorization use Family accesses giving credit, i.e., provides corresponding service according to the service request.
In one specific embodiment, as shown in figure 3, the service server obtain the service request from GGSN/PGW it Before, this method further include:
Step 301;The service request of GGSN/PGW acquisition user;
Step 302: the authentication identification code of the user is inserted into the service request.
Specifically, the authentication identification code can be transmitted by HTTP insertions to business platform.
Under normal circumstances, after the service request of GGSN/PGW acquisition user, first, in accordance with preset strategy to the user's The service request is judged, it is determined whether needs to carry out the subscription authentication of network offer, if it is desired, continue to execute step 302。
In addition, it is necessary to explanation, while insertion authenticates identification code, can be inserted can be used for authenticating is somebody's turn to do GGSN/PGW The operator URL of identification code.
Step 303;The service request of the insertion authentication identification code is sent to service server.
In the embodiment of the present invention, application programming interface (API) can be passed through between the service server and PCRF Equipment is communicated.
The embodiment of the present invention also correspondingly proposes a kind of service server, as shown in figure 4, the service server includes: First obtains module 401, sending module 402, second obtains module 403 and processing module 404;Wherein,
Described first obtains module 401, and for obtaining the service request from GGSN/PGW, the service request carries mirror Weigh identification code;
The sending module 402, for sending authentication request to PCRF, the authentication request carries the authentication identification Code;
Described second obtains module 403, for obtaining the authenticating result from PCRF;
The processing module 404, for when the authenticating result from PCRF be by when, according to the service request provide Corresponding service.
The embodiment of the present invention also correspondingly proposes a kind of GGSN/PGW, as shown in figure 5, the GGSN/PGW includes: to obtain Module 501, service request modified module 502 and sending module 503;Wherein,
The acquisition module 501, for obtaining the service request of user;
The service request modified module 502, for the authentication identification code of the user to be inserted into the service request;
The sending module 503, for the service request of the insertion authentication identification code to be sent to service server.
The embodiment of the present invention also correspondingly proposes a kind of PCRF, as shown in fig. 6, the PCRF include: judgment module 601, Authenticate identification code generation module 602 and sending module 603;Wherein,
The judgment module 601, for judging whether the user contracts single authorization business and conjunction in user's activation Method;
The authentication identification code generation module 602, for determining user's signing single authorization industry in the judgment module 601 When being engaged in and is legal, triggering generates the authentication identification code of the user;
The sending module 603, for the authentication identification code of the user to be sent to GGSN/PGW.
The embodiment of the present invention also correspondingly proposes a kind of right discriminating system, as shown in fig. 7, the right discriminating system includes: business Server 701, GGSN/PGW702 and PCRF 703;Wherein,
The service server 701 is service server shown in Fig. 4;
The GGSN/PGW 702 is GGSN/PGW shown in fig. 5;
The PCRF 703 is PCRF shown in fig. 6.
In one embodiment, as shown in figure 8, the system further includes API equipment 801,
The API equipment 801, for realizing the communication between service server 701 and PCRF 703.
The embodiment of the present invention is effectively utilized network side to the authentication functions of user, reduces user in business access process The middle authentication operation for needing to participate in;Also, user authentication is carried out by interim authentication identification code, it is whole to avoid leakage user End number, external system forge the risk that user terminal number steals user resources.
Technical solution of the present invention is described in further detail below by specific embodiment.
Embodiment 1
AF, which is transformed, in the present embodiment becomes API platform (i.e. API equipment), and improved API platform can receive internet clothes The request that business device (server) is initiated, and be converted to the Diameter message that original core net can identify;The present embodiment is based on System structure shown in Fig. 8 is realized.
Fig. 9 is authorizing procedure schematic diagram described in the embodiment of the present invention 1, as shown in figure 9, the process includes:
Step 901: user activate when, PCRF determine user contract single authorization business and it is legal after, triggering generate one Identification code is authenticated, GGSN/PGW is issued to.
Step 902: for user to business platform initiating business request, GGSN/PGW detects the service request of user, according to Strategy (such as PCRF issue business game) judge whether the service request of user needs to carry out the user of network offer and reflect Power determines that insertion subscription authentication identification code is into customer service request when needing to carry out the subscription authentication of network offer.
Step 903:GGSN/PGW continues the service request of modified insertion authentication identification code to be sent to business service Device.
Step 904: service server is received comprising after identification code service request, access operator network is looked into PCRF Ask the validity of the authentication identification code.
For example, the process can be service server by API equipment, authentication identification code is requested to PCRF.
After step 905:PCRF receives the request of service server, authentication identification code authentication is carried out.
Step 906: if authentication identification code authentication passes through, return authentication passes through, and provides user's correlation for allowing to service Information.
For example, whether relevant information can be that user is allowed to use the registration information of network, user-association in business such as Customs Assigned Number etc..
Step 907: if authentication identification code authentication does not pass through, return authentication failure.
Here it is possible to return to error reason value simultaneously (identification code failure, identification code can not be found).
The present embodiment is based on original PCC framework, and API function is superimposed in AF equipment, is allowed to have and internet platform Interactive ability, and the authentication request process that can receive internet platform initiation is interacted with PCRF and is responded, and user is made to exist Remove the process for repeatedly inputting user name password from when accessing giving credit.
Above-mentioned each unit can by electronic equipment central processing unit (Central Processing Unit, CPU), Digital signal processor (Digital Signal Processor, DSP) or programmable logic array (Field- Programmable Gate Array, FPGA) it realizes.
It should be understood by those skilled in the art that, the embodiment of the present invention can provide as method, system or computer program Product.Therefore, the shape of hardware embodiment, software implementation or embodiment combining software and hardware aspects can be used in the present invention Formula.Moreover, the present invention, which can be used, can use storage in the computer that one or more wherein includes computer usable program code The form for the computer program product implemented on medium (including but not limited to magnetic disk storage and optical memory etc.).
The present invention be referring to according to the method for the embodiment of the present invention, the process of equipment (system) and computer program product Figure and/or block diagram describe.It should be understood that every one stream in flowchart and/or the block diagram can be realized by computer program instructions The combination of process and/or box in journey and/or box and flowchart and/or the block diagram.It can provide these computer programs Instruct the processor of general purpose computer, special purpose computer, Embedded Processor or other programmable data processing devices to produce A raw machine, so that being generated by the instruction that computer or the processor of other programmable data processing devices execute for real The device for the function of being specified in present one or more flows of the flowchart and/or one or more blocks of the block diagram.
These computer program instructions, which may also be stored in, is able to guide computer or other programmable data processing devices with spy Determine in the computer-readable memory that mode works, so that it includes referring to that instruction stored in the computer readable memory, which generates, Enable the manufacture of device, the command device realize in one box of one or more flows of the flowchart and/or block diagram or The function of being specified in multiple boxes.
These computer program instructions also can be loaded onto a computer or other programmable data processing device, so that counting Series of operation steps are executed on calculation machine or other programmable devices to generate computer implemented processing, thus in computer or The instruction executed on other programmable devices is provided for realizing in one or more flows of the flowchart and/or block diagram one The step of function of being specified in a box or multiple boxes.
The foregoing is only a preferred embodiment of the present invention, is not intended to limit the scope of the present invention.

Claims (9)

1. a kind of method for authenticating, which is characterized in that this method comprises:
Service server is obtained from Gateway GPRS Support Node/packet data node gateway GGSN/PGW service request, institute It states service request and carries authentication identification code;Wherein, the authentication identification code is to determine user's label by PCRF in user's activation About single authorization business and it is legal when triggering generate, and the GGSN/PGW is sent to by PCRF;The authentication identification code energy Each service request of each user is enough distinguished, and is changed in each user activation;
Service server sends authentication request to policy control and charging regulation function entity PCRF, and the authentication request carries institute State authentication identification code;
Service server obtain the authenticating result from PCRF, the authenticating result be by when, mentioned according to the service request For servicing accordingly.
2. the method according to claim 1, wherein the service server obtains the business from GGSN/PGW Before request, this method further include:
The service request of GGSN/PGW acquisition user;
The authentication identification code of the user is inserted into the service request;
The service request of the insertion authentication identification code is sent to service server.
3. according to the method described in claim 2, it is characterized in that, this method further include:
When user activates, PCRF judge that whether the user contracts single authorization business and legal, determines that user's signing single is awarded Power business and it is legal when, triggering generates the authentication identification code of the user;
The authentication identification code of the user of generation is sent to GGSN/PGW.
4. method according to any one of claims 1 to 3, which is characterized in that lead between the service server and PCRF Application programming interface API equipment is crossed to be communicated.
5. a kind of service server, which is characterized in that the service server includes: the first acquisition module, sending module, second obtains Modulus block and processing module;Wherein,
Described first obtains module, and for obtaining the service request from GGSN/PGW, the service request carries authentication identification Code;Wherein, the authentication identification code be user activation when, by PCRF determine user contract single authorization business and it is legal when What triggering generated, and the GGSN/PGW is sent to by PCRF;The authentication identification code can distinguish each of each user A service request, and changed in each user activation;
The sending module, for sending authentication request to PCRF, the authentication request carries the authentication identification code;
Described second obtains module, for obtaining the authenticating result from PCRF;
The processing module, for when the authenticating result from PCRF be by when, provided according to the service request corresponding Service.
6. a kind of GGSN/PGW, which is characterized in that the GGSN/PGW includes: to obtain module, service request modified module and transmission Module;Wherein,
The acquisition module, for obtaining the service request of user;
The service request modified module, for the authentication identification code of the user to be inserted into the service request;Wherein, described Authentication identification code be user activation when, by PCRF determine user contract single authorization business and it is legal when triggering generate, And the GGSN/PGW is sent to by PCRF;The authentication identification code can distinguish each service request of each user, And it is changed in each user activation;
The sending module, for the service request of the insertion authentication identification code to be sent to service server.
7. a kind of PCRF, which is characterized in that the PCRF includes: judgment module, authentication identification code generation module and sending module;Its In,
The judgment module, in user's activation, judging whether the user contracts single authorization business and legal;
The authentication identification code generation module, for determining that user contracts single authorization business and legal in the judgment module When, triggering generates the authentication identification code of the user;Wherein, the authentication identification code can distinguish each of each user Service request, and changed in each user activation;
The sending module, for the authentication identification code of the user to be sent to GGSN/PGW.
8. a kind of right discriminating system, which is characterized in that the right discriminating system includes: service server, GGSN/PGW and PCRF;Wherein,
The service server is service server described in claim 5;
The GGSN/PGW is GGSN/PGW as claimed in claim 6;
The PCRF is PCRF as claimed in claim 7.
9. system according to claim 8, which is characterized in that the system further includes API equipment,
The API equipment, for realizing the communication between service server and PCRF.
CN201410834846.5A 2014-12-26 2014-12-26 A kind of method for authenticating, system and relevant apparatus Active CN105792200B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201410834846.5A CN105792200B (en) 2014-12-26 2014-12-26 A kind of method for authenticating, system and relevant apparatus

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201410834846.5A CN105792200B (en) 2014-12-26 2014-12-26 A kind of method for authenticating, system and relevant apparatus

Publications (2)

Publication Number Publication Date
CN105792200A CN105792200A (en) 2016-07-20
CN105792200B true CN105792200B (en) 2019-05-10

Family

ID=56389102

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201410834846.5A Active CN105792200B (en) 2014-12-26 2014-12-26 A kind of method for authenticating, system and relevant apparatus

Country Status (1)

Country Link
CN (1) CN105792200B (en)

Families Citing this family (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN111031538B (en) * 2018-10-09 2021-12-03 华为技术有限公司 Authentication method and device
CN109451484B (en) * 2019-01-03 2021-12-10 中国联合网络通信集团有限公司 APN automatic configuration method and system

Citations (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102196434A (en) * 2010-03-10 2011-09-21 中国移动通信集团公司 Authentication method and system for wireless local area network terminal
CN102355657A (en) * 2011-06-28 2012-02-15 成都市华为赛门铁克科技有限公司 Service access control method, device and system
CN102497379A (en) * 2011-12-19 2012-06-13 成都市华为赛门铁克科技有限公司 Network access method, system and equipment
CN102511145A (en) * 2010-05-25 2012-06-20 华为技术有限公司 Method, system and corresponding apparatus for implementing policy and charging control
CN103686719A (en) * 2012-09-04 2014-03-26 中国电信股份有限公司 Method and system for determining bearer control policy
CN103888928A (en) * 2014-03-04 2014-06-25 华为技术有限公司 Business strategy control method and system
CN104009872A (en) * 2014-06-09 2014-08-27 中国联合网络通信集团有限公司 Service access control method and system, terminal and operator policy server
CN104144378A (en) * 2013-05-10 2014-11-12 中国电信股份有限公司 Service management method and system and plug-in

Family Cites Families (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20120320801A1 (en) * 2010-02-16 2012-12-20 Telefonaktiebolaget L M Ericsson (Publ) Nodes For Improved Credit Validation
US9356975B2 (en) * 2011-09-16 2016-05-31 Telefonaktiebolaget Lm Ericsson (Publ) Method and apparatuses for TDF session establishment

Patent Citations (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102196434A (en) * 2010-03-10 2011-09-21 中国移动通信集团公司 Authentication method and system for wireless local area network terminal
CN102511145A (en) * 2010-05-25 2012-06-20 华为技术有限公司 Method, system and corresponding apparatus for implementing policy and charging control
CN102355657A (en) * 2011-06-28 2012-02-15 成都市华为赛门铁克科技有限公司 Service access control method, device and system
CN102497379A (en) * 2011-12-19 2012-06-13 成都市华为赛门铁克科技有限公司 Network access method, system and equipment
CN103686719A (en) * 2012-09-04 2014-03-26 中国电信股份有限公司 Method and system for determining bearer control policy
CN104144378A (en) * 2013-05-10 2014-11-12 中国电信股份有限公司 Service management method and system and plug-in
CN103888928A (en) * 2014-03-04 2014-06-25 华为技术有限公司 Business strategy control method and system
CN104009872A (en) * 2014-06-09 2014-08-27 中国联合网络通信集团有限公司 Service access control method and system, terminal and operator policy server

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
Orange."Discussion on the scope of the TR, regarding (not Diameter-based) interaction between AF and PCRF".《3GPP TSG-CT WG3 Meeting #74 》.2013,

Also Published As

Publication number Publication date
CN105792200A (en) 2016-07-20

Similar Documents

Publication Publication Date Title
CN108881232B (en) Sign-on access method, apparatus, storage medium and the processor of operation system
JP7236991B2 (en) Methods and systems implemented by blockchain
US8321498B2 (en) Policy interface description framework
CN104917721B (en) Authorization method, device and system based on oAuth agreement
US20150180863A1 (en) Authority management server and authority management method
CN104954330B (en) A kind of methods, devices and systems to be conducted interviews to data resource
US10182161B2 (en) Modifying a quality of a connection between a terminal and an application server
CN109300038B (en) Resource flow transaction system
CN105228126B (en) A kind of method and system of network access point trustship
WO2011120462A2 (en) Method for rating group processing, method for data service charging, and related device and system
US9342667B2 (en) Extended OAuth architecture
CN110276184A (en) A kind of cloud computing resources authorization method and device
JP2015505649A (en) Method and apparatus for performing billing control on application layer data
WO2011120378A1 (en) Method and device for controlling data flow of subscriber service
CN110069909A (en) It is a kind of to exempt from the close method and device for logging in third party system
CN107872445A (en) Access authentication method, equipment and Verification System
CN105792200B (en) A kind of method for authenticating, system and relevant apparatus
CN110417905B (en) Contract issuing method, device, equipment and union chain system
CN104796876B (en) OCS, PCEF, PCRF and terminal bandwidth control method
EP2472775B1 (en) A method, device and computer program product for controlling use of electronic communication services
WO2016107177A1 (en) Charging method, apparatus and system
CN109462600A (en) Access method, user equipment, login service device and the storage medium of application
CN106936603A (en) A kind of data service billing method, device and system
CN107566416B (en) Authentication performance testing method, device and system, terminal and network access server
CN103686719B (en) It is determined that carrying the method and system of control strategy

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant