CN106385397B - Network access device access control and type configuration method and device - Google Patents
Network access device access control and type configuration method and device Download PDFInfo
- Publication number
- CN106385397B CN106385397B CN201510466740.9A CN201510466740A CN106385397B CN 106385397 B CN106385397 B CN 106385397B CN 201510466740 A CN201510466740 A CN 201510466740A CN 106385397 B CN106385397 B CN 106385397B
- Authority
- CN
- China
- Prior art keywords
- access
- request
- public
- network access
- identifier
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Active
Links
Images
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/10—Network architectures or network communication protocols for network security for controlling access to devices or network resources
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L67/00—Network arrangements or protocols for supporting network services or applications
- H04L67/01—Protocols
- H04L67/02—Protocols based on web technology, e.g. hypertext transfer protocol [HTTP]
- H04L67/025—Protocols based on web technology, e.g. hypertext transfer protocol [HTTP] for remote control or remote monitoring of applications
Landscapes
- Engineering & Computer Science (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Computer Hardware Design (AREA)
- Computer Security & Cryptography (AREA)
- Computing Systems (AREA)
- General Engineering & Computer Science (AREA)
- Telephonic Communication Services (AREA)
Abstract
本发明涉及一种网络接入设备访问控制及类型配置方法和装置,该网络接入设备访问控制方法包括:接收与第一用户标识对应的携带有设备标识的设备公共化请求;第一用户标识和设备标识具有设备绑定关系;根据设备公共化请求,将设备标识对应的设备类型从默认的私人设备类型配置为公共设备类型;接收携带有设备标识的第一设备访问请求;检测第一设备访问请求所携带的设备标识所对应的设备类型;当检测到公共设备类型时,则允许访问所述设备标识所对应的网络接入设备。本发明提供的网络接入设备访问控制及类型配置方法和装置,可以在保证安全性的前提下可以让更多的用户来使用该网络接入设备。用户可以很方便地将网络接入设备公共化,提高了操作便利性。
The invention relates to a network access device access control and type configuration method and device. The network access device access control method includes: receiving a device publicization request carrying a device identifier corresponding to a first user identifier; the first user identifier It has a device binding relationship with the device identifier; according to the device publicization request, configure the device type corresponding to the device identifier from the default private device type to the public device type; receive the first device access request carrying the device identifier; detect the first device The device type corresponding to the device identifier carried in the access request; when a public device type is detected, access to the network access device corresponding to the device identifier is allowed. The network access device access control and type configuration method and device provided by the present invention can allow more users to use the network access device on the premise of ensuring security. The user can conveniently publicize the network access device, which improves the convenience of operation.
Description
技术领域technical field
本发明涉及互联网技术领域,特别是涉及一种网络接入设备访问控制及类型配置方法和装置。The present invention relates to the field of Internet technologies, and in particular, to a method and device for access control and type configuration of network access equipment.
背景技术Background technique
物联网是新一代信息技术的重要组成部分,其英文名称是“The Internet ofthings”,是指物物相连的互联网。物联网的核心和基础仍然是互联网,是在互联网基础上的延伸和扩展的网络,物联网使得基于用户终端的互联网延伸和扩展到了用户终端与物品、物品与物品之间的信息交换和通信。The Internet of Things is an important part of the new generation of information technology. Its English name is "The Internet of things", which refers to the Internet of things connected. The core and foundation of the Internet of Things is still the Internet, which is an extension and expansion network based on the Internet. The Internet of Things extends and expands the Internet based on user terminals to information exchange and communication between user terminals and items, and items and items.
目前,各设备生产厂商可以在插座、摄像头、空调、冰箱以及手表等设备内植入网络模块,制成网络接入设备。网络接入设备就可以接入设备接入开放平台,用户通过用户终端也接入设备接入开放平台,就可以通过用户终端来对网络接入设备进行远程控制。At present, various equipment manufacturers can implant network modules in sockets, cameras, air conditioners, refrigerators, watches and other equipment to make network access equipment. The network access device can access the device to access the open platform, and the user can also access the device to access the open platform through the user terminal, and can remotely control the network access device through the user terminal.
然而,为了保证网络接入设备的安全性,网络接入设备是与网络接入设备的实际所有者绑定在一起的,用户对网络接入设备的访问需要经过严格的鉴权,这样导致访问网络接入设备的使用者范围受到严格限制,而且严格的鉴权也给用户访问网络接入设备带来了不便。However, in order to ensure the security of the network access device, the network access device is bound to the actual owner of the network access device, and the user's access to the network access device needs to undergo strict authentication, which leads to access The range of users of the network access device is strictly limited, and strict authentication also brings inconvenience to users accessing the network access device.
发明内容SUMMARY OF THE INVENTION
基于此,有必要针对目前访问网络接入设备的使用者范围受到严格限制的问题,提供一种网络接入设备访问控制及类型配置方法和装置。Based on this, it is necessary to provide a network access device access control and type configuration method and apparatus for the problem that the range of users accessing the network access device is currently strictly limited.
一种网络接入设备访问控制方法,所述方法包括:A network access device access control method, the method comprising:
接收与第一用户标识对应的携带有设备标识的设备公共化请求;所述第一用户标识和所述设备标识具有设备绑定关系;receiving a device publicization request carrying a device identity corresponding to a first user identity; the first user identity and the device identity have a device binding relationship;
根据所述设备公共化请求,将所述设备标识对应的设备类型从默认的私人设备类型配置为公共设备类型;According to the device publicization request, configure the device type corresponding to the device identifier from a default private device type to a public device type;
接收携带有所述设备标识的第一设备访问请求;receiving a first device access request carrying the device identifier;
检测所述第一设备访问请求所携带的设备标识所对应的设备类型;Detecting the device type corresponding to the device identifier carried in the first device access request;
当检测到公共设备类型时,则允许访问所述设备标识所对应的网络接入设备。When the public device type is detected, access to the network access device corresponding to the device identification is allowed.
一种网络接入设备访问控制装置,所述装置包括:A network access device access control device, the device comprising:
设备公共化请求接收模块,用于接收与第一用户标识对应的携带有设备标识的设备公共化请求;所述第一用户标识和所述设备标识具有设备绑定关系;a device publicization request receiving module, configured to receive a device publicization request corresponding to a first user identity that carries a device identity; the first user identity and the device identity have a device binding relationship;
公共化配置模块,用于根据所述设备公共化请求,将所述设备标识对应的设备类型从默认的私人设备类型配置为公共设备类型;The public configuration module is configured to configure the device type corresponding to the device identifier from the default private device type to the public device type according to the device publicization request;
第一设备访问请求接收模块,用于接收携带有所述设备标识的第一设备访问请求;a first device access request receiving module, configured to receive a first device access request carrying the device identifier;
检测模块,用于检测所述第一设备访问请求所携带的设备标识所对应的设备类型;a detection module, configured to detect the device type corresponding to the device identifier carried in the first device access request;
决策模块,用于当检测到公共设备类型时,则允许访问所述设备标识所对应的网络接入设备。The decision module is configured to allow access to the network access device corresponding to the device identifier when the public device type is detected.
上述网络接入设备访问控制方法和装置,第一用户标识和设备标识具有设备绑定关系,则该用户对该设备标识对应的网络接入设备具有管理权限。该设备标识对应的设备类型默认为私人设备类型,允许用户私人访问。当接收到与第一用户标识对应的携带有设备标识的设备公共化请求时,表示用户希望将该设备标识的网络接入设备公开,此时将设备标识对应的设备类型配置为公共设备类型。当接收到其他用户发送的第一设备访问请求时,就可以根据该网络接入设备的公共设备类型允许该第一设备访问请求。这样网络接入设备默认是私人设备类型,可以保证网络接入设备的安全性;在用户的设备公共化请求下将网络接入设备更改为公共设备类型,这样在设备所有者的授权下将网络接入设备的访问权公共化,可以在保证安全性的前提下可以让更多的用户来使用该网络接入设备。In the above method and apparatus for controlling access to a network access device, if the first user identifier and the device identifier have a device binding relationship, the user has management authority over the network access device corresponding to the device identifier. The device type corresponding to the device ID is a private device type by default, allowing users to access privately. When receiving the device publicization request carrying the device identification corresponding to the first user identification, it indicates that the user wishes to disclose the network access device of the device identification, and at this time, the device type corresponding to the device identification is configured as a public device type. When a first device access request sent by another user is received, the first device access request may be allowed according to the public device type of the network access device. In this way, the network access device is a private device type by default, which can ensure the security of the network access device; the network access device is changed to a public device type under the user's device public request, so that the network access device is authorized by the device owner. The access rights of the access device are made public, and more users can use the network access device under the premise of ensuring security.
一种网络接入设备类型配置方法,所述方法包括:A method for configuring a network access device type, the method comprising:
在即时通信应用的网络接入设备配置页面,根据与第一用户标识具有设备绑定关系的设备标识绘制相应的网络接入设备公共化控件;On the network access device configuration page of the instant messaging application, draw the corresponding network access device public control according to the device ID that has a device binding relationship with the first user ID;
检测对所述网络接入设备公共化控件的操作,触发与第一用户标识对应的携带有设备标识的设备公共化请求;Detecting an operation on the network access device publicization control, and triggering a device publicization request carrying the device identity corresponding to the first user identity;
将所述设备公共化请求发送至设备接入开放平台,使所述设备接入开放平台将所述设备标识对应的设备类型从默认的私人设备类型配置为公共设备类型。The device publicization request is sent to the device access open platform, so that the device access open platform configures the device type corresponding to the device identifier from a default private device type to a public device type.
一种网络接入设备类型配置装置,所述装置包括:An apparatus for configuring a network access device type, the apparatus comprising:
网络接入设备配置页面管理模块,用于在即时通信应用的网络接入设备配置页面,根据与第一用户标识具有设备绑定关系的设备标识绘制相应的网络接入设备公共化控件;The network access device configuration page management module is used to draw the corresponding network access device public control according to the device identification with the device binding relationship with the first user identification on the network access device configuration page of the instant messaging application;
设备公共化请求触发模块,用于检测对所述网络接入设备公共化控件的操作,触发与第一用户标识对应的携带有设备标识的设备公共化请求;a device publicization request triggering module, configured to detect an operation on the network access device publicization control, and trigger a device publicization request corresponding to the first user identity that carries the device identity;
设备公共化请求发送模块,用于将所述设备公共化请求发送至设备接入开放平台,使所述设备接入开放平台将所述设备标识对应的设备类型从默认的私人设备类型配置为公共设备类型。A device publicization request sending module, configured to send the device publicization request to the device access open platform, so that the device access open platform configures the device type corresponding to the device identifier from the default private device type to public Equipment type.
上述网络接入设备类型配置方法和装置,用户使用即时通信应用可以对网络接入设备的设备类型进行配置。即时通信应用所提供的网络接入设备配置页面可以展示网络接入设备信息和网络接入设备公共化控件。当检测到用户对所述网络接入设备公共化控件的操作,就可以触发与第一用户标识对应的携带有设备标识的设备公共化请求发送至设备接入开放平台。设备接入开放平台则根据该设备公共化请求将网络接入设备从默认的私人设备类型配置为公共设备类型。这样用户可以通过即时通信应用,将所拥有的网络接入设备一键转化为公共设备类型,使得用户可以很方便地将网络接入设备公共化,提高了操作便利性。With the above method and apparatus for configuring the network access device type, the user can configure the device type of the network access device by using the instant messaging application. The network access device configuration page provided by the instant messaging application can display network access device information and network access device common controls. When a user's operation on the network access device publicization control is detected, a device publicization request corresponding to the first user identity and carrying the device identity can be triggered to be sent to the device access open platform. The device access open platform configures the network access device from the default private device type to the public device type according to the device publicization request. In this way, the user can convert the owned network access device into a public device type with one click through the instant messaging application, so that the user can conveniently make the network access device public, and the operation convenience is improved.
附图说明Description of drawings
图1为一个实施例中物联网通信系统的环境图;1 is an environment diagram of an IoT communication system in one embodiment;
图2为一个实施例中设备接入开放平台的内部结构示意图;FIG. 2 is a schematic diagram of the internal structure of a device accessing an open platform in an embodiment;
图3为一个实施例中用户终端的内部结构示意图;3 is a schematic diagram of the internal structure of a user terminal in one embodiment;
图4为一个实施例中网络接入设备的内部结构示意图;4 is a schematic diagram of the internal structure of a network access device in one embodiment;
图5为一个实施例中网络接入设备访问控制方法的流程示意图;5 is a schematic flowchart of a method for controlling access to a network access device in one embodiment;
图6为一个实施例中处理第二设备访问请求的步骤的流程示意图;6 is a schematic flowchart of steps of processing a second device access request in one embodiment;
图7为一个实施例中处理第三设备访问请求的步骤的流程示意图;7 is a schematic flowchart of steps of processing a third device access request in one embodiment;
图8为一个实施例中网络接入设备类型配置方法的流程示意图;8 is a schematic flowchart of a method for configuring a network access device type in an embodiment;
图9为一个实施例中即时通信应用的联系人页面的示意图;9 is a schematic diagram of a contact page of an instant messaging application in one embodiment;
图10为一个实施例中设备标识对应的消息会话页面的示意图;10 is a schematic diagram of a message conversation page corresponding to a device identifier in one embodiment;
图11为一个实施例中设备标识对应的设备详细资料页面的示意图;11 is a schematic diagram of a device detail page corresponding to a device identifier in one embodiment;
图12为一个实施例中网络接入设备类型配置方法的流程示意图;12 is a schematic flowchart of a method for configuring a network access device type in an embodiment;
图13为一个实施例中网络接入设备访问控制装置的结构框图;13 is a structural block diagram of an apparatus for access control of network access equipment in one embodiment;
图14为一个实施例中决策模块的结构框图;14 is a structural block diagram of a decision module in one embodiment;
图15为另一个实施例中网络接入设备访问控制装置的结构框图;15 is a structural block diagram of an apparatus for access control of network access equipment in another embodiment;
图16为再一个实施例中网络接入设备访问控制装置的结构框图;16 is a structural block diagram of an apparatus for access control of network access equipment in yet another embodiment;
图17为一个实施例中网络接入设备类型配置装置的结构框图;17 is a structural block diagram of an apparatus for configuring a network access device type in an embodiment;
图18为另一个实施例中网络接入设备类型配置装置的结构框图。FIG. 18 is a structural block diagram of an apparatus for configuring a network access device type in another embodiment.
具体实施方式Detailed ways
为了使本发明的目的、技术方案及优点更加清楚明白,以下结合附图及实施例,对本发明进行进一步详细说明。应当理解,此处所描述的具体实施例仅仅用以解释本发明,并不用于限定本发明。In order to make the objectives, technical solutions and advantages of the present invention clearer, the present invention will be further described in detail below with reference to the accompanying drawings and embodiments. It should be understood that the specific embodiments described herein are only used to explain the present invention, but not to limit the present invention.
如图1所示,在一个实施例中,提供了一种物联网通信系统100,包括设备接入开放平台102、用户终端104和网络接入设备106。图1中用户终端104包括104(1)、104(2)……104(n),相应的用户为用户1、用户2……用户n,n大于等于1;网络接入设备106包括106(1)、106(2)、106(3)、106(4)……106(m),m大于等于1。As shown in FIG. 1 , in one embodiment, an
其中设备接入开放平台102包括一个或多个物理服务器,是为各厂商的网络接入设备106提供接入服务的第三方平台,并为用户终端104提供与网络接入设备106交互的接口。用户终端104是具有数据处理功能且被用户直接操作的终端,包括计算机以及移动终端等,移动终端包括手机、平板电脑以及PDA(个人数字助理)等。网络接入设备106是具有网络接入功能且可被远程控制的设备,包括具有网络接入功能的手表、插座、摄像头、空调以及冰箱等。The device access
如图2所示,在一个实施例中,设备接入开放平台102包括处理器、非易失性存储介质、内存储器和网络接口。该处理器具有计算功能和控制整个设备接入开放平台102工作的功能,该处理器被配置为执行一种网络接入设备访问控制方法。非易失性存储介质包括磁存储介质、光存储介质以及闪存式存储介质。非易失性存储介质存储有操作系统和网络接入设备访问控制装置,该网络接入设备访问控制装置具有实现一种网络接入设备访问控制方法的功能模块。内存储器用于为操作系统和网络接入设备访问控制装置提供高速缓存。网络接口用于连接到网络。As shown in FIG. 2, in one embodiment, the device access
如图3所示,在一个实施例中,提供了一种用户终端104,包括通过系统总线连接的处理器、非易失性存储介质、内存储器、网络接口、显示屏以及输入装置。其中处理器具有计算功能和控制整个用户终端104工作的功能,该处理器被配置为执行一种网络接入设备类型配置方法。非易失性存储介质包括磁存储介质、光存储介质以及闪存式存储介质。非易失性存储介质存储有操作系统和网络接入设备类型配置装置,该网络接入设备类型配置装置具有实现一种网络接入设备类型配置方法的功能模块。内存储器用于为操作系统和网络接入设备类型配置装置提供高速缓存。显示屏可以是液晶显示屏或者电子墨水显示屏。输入装置包括触控板、轨迹球、鼠标以及与显示屏重叠的触摸层,其中显示屏和触摸层构成触控屏。网络接口则用于连接到网络。As shown in FIG. 3, in one embodiment, a
如图4所示,在一个实施例中,网络接入设备106与用户终端104不同,直接或者通过网关中转而通过网络与设备接入开放平台102连接;网络接入设备106可通过Zigbee(一种短距离、低功耗的无线通信技术)、Z-wave(一种基于射频的低功耗、适于网络的短距离无线通信技术)、BLE(一种低功耗蓝牙技术)与网关连接。在一个实施例,网络接入设备106包括控制芯片和工作功能模块。网络接入设备106可以是网络摄像头、智能电视机、打印机、智能灯泡以及智能开关等。对于网络摄像头其工作功能模块至少具有捕捉影像的功能,对于智能电视则其工作功能模块至少具有接收电视节目信号以及播放电视节目的功能,以此类推。As shown in FIG. 4 , in one embodiment, the
如图5所示,在一个实施例中,提供了一种网络接入设备访问控制方法,本实施例以该方法应用于上述图1和图2中的设备接入开放平台102来举例说明。该方法具体包括如下步骤:As shown in FIG. 5 , in one embodiment, a method for controlling network access device access is provided, and this embodiment is illustrated by applying the method to the device access
步骤502,接收与第一用户标识对应的携带有设备标识的设备公共化请求;第一用户标识和设备标识具有设备绑定关系。Step 502: Receive a device publicization request that corresponds to the first user identifier and carries the device identifier; the first user identifier and the device identifier have a device binding relationship.
具体地,第一用户标识用于唯一标识出网络接入设备的所有者,这里第一用户标识与下述的第二用户标识区分开,该设备标识可唯一标识出相应的网络接入设备。第一用户标识和设备标识具有设备绑定关系,表示该用户对该网络接入设备的管理权限。用户可以事先在设备接入开放平台上建立该设备绑定关系。Specifically, the first user identifier is used to uniquely identify the owner of the network access device, where the first user identifier is distinguished from the second user identifier described below, and the device identifier can uniquely identify the corresponding network access device. The first user identifier and the device identifier have a device binding relationship, indicating the user's management authority on the network access device. The user can establish the device binding relationship on the device access open platform in advance.
设备接入开放平台接收第一用户标识所对应的用户终端发来的设备公共化请求,该设备公共化请求携带有设备标识,设备公共化请求用于请求设备接入开放平台更改该设备标识所对应的网络接入设备的设备类型,从而有限地公开或者完全公开对该网络接入设备的访问权限。The device access open platform receives the device publicization request sent by the user terminal corresponding to the first user identity, the device publicization request carries the device identity, and the device publicization request is used to request the device access open platform to change the device identity. The device type of the corresponding network access device, so that the access authority to the network access device is disclosed in a limited way or completely.
步骤504,根据设备公共化请求,将设备标识对应的设备类型从默认的私人设备类型配置为公共设备类型。
具体地,设备接入开放平台上通过记录设备标识和设备类型的对应关系,表示该网络接入设备的公开属性。其中设备类型包括私人设备类型和公共设备类型,私人设备类型的网络接入设备在访问时需要与该设备标识具有设备绑定关系的第一用户标识对应的授权,而公共设备类型的网络接入设备则可以有限或者完全公开地被其它用户访问。Specifically, by recording the correspondence between the device identifier and the device type on the device access open platform, the public attributes of the network access device are represented. The device type includes a private device type and a public device type. The network access device of the private device type needs the authorization corresponding to the first user ID with the device binding relationship with the device ID when accessing, and the network access device of the public device type The device can then be accessed by other users with limited or full public access.
设备接入开放平台上任意网络接入设备在初始化时均对应相应的设备标识默认记录为私人设备类型,这样网络接入设备在生产出来后均初始化为私人设备类型,需要用户进行绑定操作产生设备绑定关系后,该用户则具有对该网络接入设备的管理权限。Any network access device on the device access open platform will be recorded as a private device type by default according to the corresponding device ID during initialization, so that the network access device will be initialized as a private device type after production, and the user needs to perform a binding operation to generate After the device is bound, the user has the management authority to the network access device.
在一个实施例中,步骤504包括:根据设备公共化请求,验证设备公共化请求所对应的第一用户标识和携带的设备标识是否具有设备绑定关系;若具有设备绑定关系,则将设备标识对应的设备类型从默认的私人设备类型配置为公共设备类型;若不具有设备绑定关系,则拒绝设备公共化请求。In one embodiment,
步骤506,接收携带有设备标识的第一设备访问请求。Step 506: Receive a first device access request carrying a device identifier.
具体地,设备接入开放平台接收携带有设备标识的第一设备访问请求,该第一设备访问请求与下述的第二、第三设备访问请求区分开。该第一设备访问请求是对公共设备类型的网络接入设备的访问请求,第一设备访问请求可以是任意用户发起的访问请求。Specifically, the device access open platform receives a first device access request carrying a device identifier, where the first device access request is distinguished from the second and third device access requests described below. The first device access request is an access request to a network access device of a public device type, and the first device access request may be an access request initiated by any user.
这里的设备访问请求可以是控制网络接入设备的请求、向网络接入设备发送消息的请求以及拉取网络接入设备上存储的信息的请求等。其中控制网络接入设备的请求包括控制网络接入设备开启、关闭以及工作状态的请求,发送消息的请求所发送的消息包括文本消息、图像消息、视频消息及其结合。The device access request here may be a request to control a network access device, a request to send a message to the network access device, a request to pull information stored on the network access device, and the like. The request to control the network access device includes a request to control the opening, closing and working status of the network access device, and the messages sent by the request to send a message include text messages, image messages, video messages, and combinations thereof.
步骤508,检测第一设备访问请求所携带的设备标识所对应的设备类型。Step 508: Detect the device type corresponding to the device identifier carried in the first device access request.
具体地,设备接入开放平台在接收到任意设备访问请求后,会检测该设备访问请求所携带的设备标识所对应的设备类型。Specifically, after receiving any device access request, the device access open platform will detect the device type corresponding to the device identifier carried in the device access request.
步骤510,当检测到公共设备类型时,则允许访问设备标识所对应的网络接入设备。In
具体地,设备接入开放平台根据设备公共化请求配置设备标识对应的设备类型为公共设备类型后,此时设备接入开放平台会检测到第一设备访问请求所携带的设备标识所对应的设备类型为公共设备类型,此时可以直接允许访问设备标识所对应的网络接入设备。Specifically, after the device access open platform configures the device type corresponding to the device identifier as a public device type according to the device publicization request, the device access open platform will detect the device corresponding to the device identifier carried in the first device access request. The type is a public device type, and the network access device corresponding to the device ID can be directly allowed to be accessed.
设备接入开放平台在允许访问设备标识所对应的网络接入设备后,将第一设备访问请求转发给该第一设备访问请求所携带的设备标识所对应的网络接入设备,进而接收该网络接入设备反馈的设备访问结果,并将该设备访问结果返回给发起第一设备访问请求的用户终端。After allowing access to the network access device corresponding to the device identifier, the device access open platform forwards the first device access request to the network access device corresponding to the device identifier carried in the first device access request, and then receives the network access device. Access the device access result fed back by the device, and return the device access result to the user terminal that initiated the first device access request.
在一个实施例中,设备接入开放平台在允许访问设备标识所对应的网络接入设备后,可向发起第一设备访问请求的用户终端以及设备标识对应的网络接入设备分别发送允许访问的通知,从而该用户终端可以与该网络接入设备在接收到该允许访问的通知后,直接建立连接进行通信。In one embodiment, after allowing access to the network access device corresponding to the device identifier, the device access open platform may send access permission to the user terminal that initiated the first device access request and the network access device corresponding to the device identifier, respectively. notification, so that the user terminal can directly establish a connection to communicate with the network access device after receiving the access permission notification.
上述网络接入设备访问控制方法,第一用户标识和设备标识具有设备绑定关系,则该用户对该设备标识对应的网络接入设备具有管理权限。该设备标识对应的设备类型默认为私人设备类型,允许用户私人访问。当接收到与第一用户标识对应的携带有设备标识的设备公共化请求时,表示用户希望将该设备标识的网络接入设备公开,此时将设备标识对应的设备类型配置为公共设备类型。当接收到其他用户发送的第一设备访问请求时,就可以根据该网络接入设备的公共设备类型允许访问设备标识所对应的网络接入设备。这样网络接入设备默认是私人设备类型,可以保证网络接入设备的安全性;在用户的设备公共化请求下将网络接入设备更改为公共设备类型,这样在设备所有者的授权下将网络接入设备的访问权公共化,可以在保证安全性的前提下可以让更多的用户来使用该网络接入设备。In the above-mentioned network access device access control method, if the first user identifier and the device identifier have a device binding relationship, the user has management authority on the network access device corresponding to the device identifier. The device type corresponding to the device ID is a private device type by default, allowing users to access privately. When receiving the device publicization request carrying the device identification corresponding to the first user identification, it indicates that the user wishes to disclose the network access device of the device identification, and at this time, the device type corresponding to the device identification is configured as a public device type. When a first device access request sent by another user is received, access to the network access device corresponding to the device identifier may be allowed according to the public device type of the network access device. In this way, the network access device is a private device type by default, which can ensure the security of the network access device; the network access device is changed to a public device type under the user's device public request, so that the network access device is authorized by the device owner. The access rights of the access device are made public, and more users can use the network access device under the premise of ensuring security.
在一个实施例中,设备接入开放平台在接收到与第一用户标识对应的携带有设备标识的设备私人化请求后,将该设备标识所对应的设备类型配置为私人设备类型。设备接入开放平台具体可以根据第一用户标识进行验证,验证通过后根据设备私人化请求将该设备标识所对应的设备类型配置为私人设备类型。In one embodiment, the device access open platform configures the device type corresponding to the device identifier as a private device type after receiving the device personalization request carrying the device identifier corresponding to the first user identifier. The device accessing the open platform may specifically perform verification according to the first user identifier, and after the verification is passed, configure the device type corresponding to the device identifier as a private device type according to the device personalization request.
在一个实施例中,该网络接入设备访问控制方法还包括:根据设备公共化请求配置设备标识所对应的公共访问方式;步骤510包括:当检测到公共设备类型时,根据设备标识所对应的公共访问方式确定是否允许访问设备标识所对应的网络接入设备。In one embodiment, the network access device access control method further includes: configuring a public access mode corresponding to the device identifier according to the device publicization request;
具体地,公共访问方式是网络接入设备被非限定设备所有者的公众访问的方式。在一个实施例中,公共访问方式包括完全公开权限访问方式、限时公开权限访问方式、有限白名单访问方式、有限黑名单访问方式以及密码验证访问方式中的至少一种。Specifically, the public access mode is the mode in which the network access device is accessed by the public who is not limited to the owner of the device. In one embodiment, the public access mode includes at least one of a full public access mode, a time-limited public access mode, a limited whitelist access mode, a limited blacklist access mode, and a password verification access mode.
其中完全公开权限访问方式是指任意用户可以无限制访问网络接入设备;限时公开权限访问方式是指非设备所有者的其它用户可以在预设时限范围内访问网络接入设备;有限白名单访问方式是指在预设白名单中的非设备所有者的其它用户才可以访问该网络接入设备;有限黑名单访问方式是指在预设黑名单中的用户不可以访问该网络接入设备;密码验证访问方式是指非设备所有者的其它用户需要提供预设密码才可以访问该网络接入设备。The fully public access means that any user can access the network access device without restrictions; the time-limited public access means that other users who are not the device owner can access the network access device within a preset time limit; limited whitelist access The mode means that other users who are not the device owner in the preset whitelist can access the network access device; the limited blacklist access mode means that the users in the preset blacklist cannot access the network access device; Password authentication access means that other users who are not the device owner need to provide a preset password before they can access the network access device.
设备公共化请求可以指定公共访问方式,这样设备接入开放平台在接收到设备公共化请求后,可以根据该设备公共化请求,配置设备标识所对应的公共访问方式为设备公共化请求所指定的公共访问方式。设备接入开放平台也可以根据设备公共化请求直接配置设备标识所对应的公共访问方式为默认的公共访问方式。用户还可以在设备接入开放平台上对该公共访问方式进行更改。The device publicization request can specify the public access mode, so that after receiving the device publicization request, the device access open platform can configure the public access mode corresponding to the device identification to the one specified by the device publicization request according to the device publicization request. public access. The device access open platform can also directly configure the public access mode corresponding to the device identification as the default public access mode according to the device publicization request. Users can also change the public access method on the device access open platform.
设备接入开放平台在检测到设备标识对应公共设备类型时,根据设备标识所对应的公共访问方式来确定是否允许访问设备标识所对应的网络接入设备。若允许访问设备标识所对应的网络接入设备,则将第一设备访问请求转发给该第一设备访问请求所携带的设备标识所对应的网络接入设备,进而接收该网络接入设备反馈的设备访问结果,并将该设备访问结果返回给发起第一设备访问请求的用户终端。若不允许访问设备标识所对应的网络接入设备,即拒绝访问设备标识所对应的网络接入设备,则可向发起第一设备访问请求的用户终端返回拒绝请求的反馈信息。When detecting that the device identification corresponds to the public device type, the device access open platform determines whether to allow access to the network access device corresponding to the device identification according to the public access mode corresponding to the device identification. If it is allowed to access the network access device corresponding to the device identifier, forward the first device access request to the network access device corresponding to the device identifier carried in the first device access request, and then receive the feedback from the network access device. device access result, and return the device access result to the user terminal that initiated the first device access request. If access to the network access device corresponding to the device identifier is not allowed, that is, access to the network access device corresponding to the device identifier is denied, feedback information of rejecting the request may be returned to the user terminal that initiated the first device access request.
在一个实施例中,根据设备标识所对应的公共访问方式确定是否允许访问设备标识所对应的网络接入设备的步骤,包括:当设备标识所对应的公共访问方式为完全公开权限访问方式时,直接允许访问设备标识所对应的网络接入设备。In one embodiment, the step of determining whether to allow access to the network access device corresponding to the device identification according to the public access mode corresponding to the device identification includes: when the public access mode corresponding to the device identification is a fully public access mode, Directly allow access to the network access device corresponding to the device ID.
具体地,设备接入开放平台在检测到设备标识对应公共设备类型时,且设备标识所对应的公共访问方式为完全公开权限访问方式,表示用户在将网络接入设备公共化时,赋予所有用户访问该网络接入设备的权限,设备接入开放平台可以直接允许访问设备标识所对应的网络接入设备。Specifically, when the device access open platform detects that the device ID corresponds to the type of public device, and the public access mode corresponding to the device ID is the fully public access mode, it means that when the user makes the network access device public, it gives all users With the permission to access the network access device, the device access open platform can directly allow access to the network access device corresponding to the device ID.
在一个实施例中,根据设备标识所对应的公共访问方式确定是否允许访问设备标识所对应的网络接入设备的步骤,包括:当设备标识所对应的公共访问方式为限时公开权限访问方式时,判断当前时间是否在预设时限范围内;若是则允许访问设备标识所对应的网络接入设备;若否则拒绝访问设备标识所对应的网络接入设备。In one embodiment, the step of determining whether to allow access to the network access device corresponding to the device identification according to the public access mode corresponding to the device identification includes: when the public access mode corresponding to the device identification is a time-limited public access mode, Determine whether the current time is within the preset time limit; if so, allow access to the network access device corresponding to the device identifier; otherwise, deny access to the network access device corresponding to the device identifier.
具体地,设备接入开放平台在检测到设备标识对应公共设备类型时,且设备标识所对应的公共访问方式为限时公开权限访问方式时,表示该网络接入设备允许非设备所有者的其他用户在相应的预设时限范围内访问该网络接入设备。预设时限范围比如从每天的上午9点到下午6点,或者比如每周的周六和周日等。Specifically, when the device access open platform detects that the device identifier corresponds to a public device type, and the public access mode corresponding to the device identifier is a time-limited public access mode, it means that the network access device allows other users who are not the device owner. Access the network access device within a corresponding preset time limit. The preset time limit ranges, for example, from 9:00 am to 6:00 pm every day, or for example, every Saturday and Sunday, etc.
在一个实施例中,根据设备标识所对应的公共访问方式确定是否允许访问设备标识所对应的网络接入设备的步骤,包括:当设备标识所对应的公共访问方式为有限白名单访问方式时,判断第一设备访问请求所携带的第二用户标识是否在预设白名单中,若是则允许访问设备标识所对应的网络接入设备;若否则拒绝访问设备标识所对应的网络接入设备。In one embodiment, the step of determining whether to allow access to the network access device corresponding to the device identification according to the public access mode corresponding to the device identification includes: when the public access mode corresponding to the device identification is a limited whitelist access mode, Determine whether the second user identifier carried in the access request of the first device is in the preset whitelist, and if so, allow access to the network access device corresponding to the device identifier; otherwise, deny access to the network access device corresponding to the device identifier.
具体地,第二用户标识与第一用户标识相区分,设备接入开放平台在检测到设备标识对应公共设备类型时,获取第一设备访问请求所携带的第二用户标识,进而判断获取的第二用户标识是否在预设白名单中。该预设白名单是用户编辑生成的,包括允许访问该网络接入设备的用户所对应的用户标识。这样设备接入开放平台就可以根据该预设白名单,确定允许还是拒绝访问设备标识所对应的网络接入设备。Specifically, the second user identifier is distinguished from the first user identifier, and when the device access open platform detects that the device identifier corresponds to the public device type, it acquires the second user identifier carried in the first device access request, and then determines the acquired first user identifier. 2. Whether the user ID is in the preset whitelist. The preset whitelist is edited and generated by the user, and includes user identifiers corresponding to users who are allowed to access the network access device. In this way, the device access open platform can determine whether to allow or deny access to the network access device corresponding to the device identifier according to the preset whitelist.
在一个实施例中,根据设备标识所对应的公共访问方式确定是否允许访问设备标识所对应的网络接入设备的步骤,包括:当设备标识所对应的公共访问方式为有限黑名单访问方式时,判断第一设备访问请求所携带的第二用户标识是否在预设黑名单中,若是则拒绝访问设备标识所对应的网络接入设备;若否则允许访问设备标识所对应的网络接入设备。In one embodiment, the step of determining whether to allow access to the network access device corresponding to the device identification according to the public access mode corresponding to the device identification includes: when the public access mode corresponding to the device identification is a limited blacklist access mode, Determine whether the second user identifier carried in the access request of the first device is in the preset blacklist, and if so, deny access to the network access device corresponding to the device identifier; otherwise, allow access to the network access device corresponding to the device identifier.
具体地,第二用户标识与第一用户标识相区分,设备接入开放平台在检测到设备标识对应公共设备类型时,获取第一设备访问请求所携带的第二用户标识,进而判断获取的第二用户标识是否在预设黑名单中。该预设黑名单是用户编辑生成的,包括不允许访问该网络接入设备的用户所对应的用户标识。这样设备接入开放平台就可以根据该预设黑名单,确定允许还是拒绝访问设备标识所对应的网络接入设备。Specifically, the second user identifier is distinguished from the first user identifier, and when the device access open platform detects that the device identifier corresponds to the public device type, it acquires the second user identifier carried in the first device access request, and then determines the acquired first user identifier. 2. Whether the user ID is in the preset blacklist. The preset blacklist is edited and generated by the user, and includes user identifiers corresponding to users who are not allowed to access the network access device. In this way, the device access open platform can determine whether to allow or deny access to the network access device corresponding to the device identifier according to the preset blacklist.
在一个实施例中,根据设备标识所对应的公共访问方式确定是否允许访问设备标识所对应的网络接入设备的步骤,包括:当设备标识所对应的公共访问方式为密码验证访问方式时,获取第一设备访问请求所对应的输入密码以及设备标识所对应的预设密码;比较输入密码与预设密码是否一致;若一致,则允许访问设备标识所对应的网络接入设备;若不一致,则拒绝访问设备标识所对应的网络接入设备。In one embodiment, the step of determining whether to allow access to the network access device corresponding to the device identification according to the public access mode corresponding to the device identification includes: when the public access mode corresponding to the device identification is a password verification access mode, obtaining The input password corresponding to the first device access request and the preset password corresponding to the device ID; compare whether the input password is consistent with the preset password; if they are consistent, allow access to the network access device corresponding to the device ID; if not, then Deny access to the network access device corresponding to the device ID.
具体地,设备接入开放平台在检测到设备标识对应公共设备类型时,且设备标识所对应的公共访问方式为密码验证访问方式时,则可向发起第一设备访问请求的用户终端返回密码输入指令,从而使得该用户终端根据该密码输入指令显示密码输入框,获取密码输入框中输入的字符作为输入密码并发送给设备接入开放平台。设备接入开放平台则比较输入密码与预设密码是否一致,从而根据比较结果来确定允许还是拒绝访问设备标识所对应的网络接入设备。设备接入开放平台也可以直接从第一设备访问请求中提取输入密码,进而比较输入密码与预设密码是否一致。Specifically, when the device access open platform detects that the device identifier corresponds to the public device type and the public access mode corresponding to the device identifier is the password verification access mode, it can return the password input to the user terminal that initiated the first device access request command, so that the user terminal displays a password input box according to the password input command, acquires the characters entered in the password input box as the input password and sends the input to the device to access the open platform. When the device accesses the open platform, it compares whether the input password is consistent with the preset password, so as to determine whether to allow or deny access to the network access device corresponding to the device identifier according to the comparison result. The device accessing the open platform may also directly extract the input password from the first device access request, and then compare whether the input password is consistent with the preset password.
上述各个实施例中,设备接入开放平台可以提供多种公共访问方式供用户选择,这样用户便可以控制网络接入设备是完全公开权限还是有限公开权限地供其他用户访问,便于用户对网络接入设备的管理。In the above embodiments, the device access open platform can provide a variety of public access methods for users to choose, so that the user can control whether the network access device has full public authority or limited public authority for other users to access, which is convenient for users to access the network. access device management.
如图6所示,在一个实施例中,步骤502之前还包括处理第二设备访问请求的步骤,具体包括如下步骤:As shown in FIG. 6, in one embodiment, before
步骤602,接收携带有第一用户标识和设备标识的第二设备访问请求。Step 602: Receive a second device access request carrying the first user identifier and the device identifier.
具体地,第二设备访问请求是用户访问私人设备类型的网络接入设备的设备访问请求。设备接入开放平台接收第一用户标识所对应的用户终端发送的携带有第一用户标识和设备标识的第二设备访问请求。Specifically, the second device access request is a device access request for a user to access a private device type network access device. The device access open platform receives a second device access request that carries the first user identifier and the device identifier and is sent by the user terminal corresponding to the first user identifier.
步骤604,检测到第二设备访问请求所携带的设备标识对应私人设备类型时,根据第一用户标识对第二设备访问请求进行验证。Step 604: When it is detected that the device identifier carried in the second device access request corresponds to the private device type, verify the second device access request according to the first user identifier.
设备接入开放平台在接收到第二设备访问请求后,检测第二设备访问请求所携带的设备标识对应的设备类型,若检测到私人设备类型时,则根据第一用户标识对第二设备访问请求进行验证。After receiving the second device access request, the device access open platform detects the device type corresponding to the device identifier carried in the second device access request, and if a private device type is detected, accesses the second device according to the first user identifier Request for verification.
设备接入开放平台根据第一用户标识对第二设备访问请求进行验证,具体可以获取第二设备访问请求中与第一用户标识对应的登录凭据,对该登录凭据进行有效性验证。有效性验证包括验证当前时间是否在登录凭据表示的有效登录时间范围内和验证登录凭据是否是第一用户标识的登录凭据等。设备接入开放平台还可以验证第一用户标识和设备标识的设备绑定关系。The device access open platform verifies the second device access request according to the first user identifier, and specifically may obtain the login credential corresponding to the first user identifier in the second device access request, and verify the validity of the login credential. The validity verification includes verifying whether the current time is within the valid login time range indicated by the login credential, and verifying whether the login credential is the login credential of the first user identification, and the like. The device accessing the open platform may also verify the device binding relationship between the first user identifier and the device identifier.
步骤606,对第二设备访问请求验证通过后,允许访问设备标识所对应的网络接入设备。Step 606: After the verification of the access request to the second device is passed, the network access device corresponding to the device identifier is allowed to be accessed.
具体地,设备接入开放平台在对第二设备访问请求验证通过后,就可以直接允许访问设备标识所对应的网络接入设备,将该第二设备访问请求转发给第二设备访问请求携带的设备标识所对应的网络接入设备,并在接收到网络接入设备反馈的设备访问结果后反馈给发起第二设备访问请求的用户终端。设备接入开放平台在对第二设备访问请求验证失败后,则可向发起第二设备访问请求的用户终端发送拒绝请求的反馈信息。Specifically, after the device access open platform has passed the verification of the second device access request, it can directly allow access to the network access device corresponding to the device identifier, and forward the second device access request to the data carried in the second device access request. The device identifies the corresponding network access device, and after receiving the device access result fed back by the network access device, feeds it back to the user terminal that initiates the second device access request. After the device access open platform fails to verify the second device access request, it may send feedback information of rejecting the request to the user terminal that initiates the second device access request.
本实施例中,网络接入设备的所有者可以自由访问私人设备类型的网络接入设备,设备接入开放平台在根据第一用户标识对第二设备访问请求进行验证后,就可以允许用户的访问,保证了访问网络接入设备的安全性。In this embodiment, the owner of the network access device can freely access the network access device of the private device type, and the device access open platform can allow the user's access, ensuring the security of accessing network access equipment.
如图7所示,在一个实施例中,步骤502之前还包括处理第三设备访问请求的步骤,具体包括如下步骤:As shown in FIG. 7, in one embodiment, before
步骤702,接收携带有第二用户标识和设备标识的第三设备访问请求。Step 702: Receive a third device access request carrying the second user identifier and the device identifier.
具体地,第三设备访问请求是非设备所有者的其他用户访问私人设备类型的网络接入设备的设备访问请求。设备接入开放平台接收第二用户标识对应的用户终端发起的携带有第二用户标识和设备标识的第三设备访问请求。Specifically, the third device access request is a device access request for other users who are not the device owner to access a private device type network access device. The device access open platform receives a third device access request that carries the second user identifier and the device identifier and is initiated by the user terminal corresponding to the second user identifier.
步骤704,检测到第三设备访问请求所携带的设备标识对应私人设备类型时,获取与设备标识具有设备绑定关系的第一用户标识。Step 704: When it is detected that the device identifier carried in the third device access request corresponds to the private device type, obtain a first user identifier that has a device binding relationship with the device identifier.
具体地,设备接入开放平台在接收到第三设备访问请求后,检测第三设备访问请求所携带的设备标识对应的设备类型,若检测到私人设备类型,则获取与设备标识具有设备绑定关系的第一用户标识。Specifically, after receiving the third device access request, the device access open platform detects the device type corresponding to the device identifier carried in the third device access request, and if the private device type is detected, obtains a device binding with the device identifier. The first user ID of the relationship.
步骤706,生成授权申请并发送给第一用户标识所对应的用户终端,并接收用户终端反馈的授权结果。Step 706: Generate an authorization application and send it to the user terminal corresponding to the first user ID, and receive the authorization result fed back by the user terminal.
具体地,授权申请是申请设备所有者的授权的请求,授权结果则是设备所有者根据该授权申请反馈的是否授权的结果。设备接入开放平台生成授权申请并发送给第一用户标识所对应的用户终端,并接收该第一用户标识所对应的用户终端所反馈的授权结果。Specifically, the authorization application is a request to apply for authorization of the device owner, and the authorization result is the result of whether or not the device owner reports authorization according to the authorization application. The device accesses the open platform to generate an authorization application and send it to the user terminal corresponding to the first user identifier, and receive the authorization result fed back by the user terminal corresponding to the first user identifier.
授权申请可携带有设备标识和第二用户标识,这样第一用户标识所对应的用户终端在接收到授权申请后,展示该设备标识所对应的网络接入设备信息以及第二用户标识所对应的用户信息,并展示确认授权的控件和拒绝授权的控件。其中网络接入设备信息包括设备名称、设备型号以及设备功能介绍等信息,用户信息包括用户名称、用户等级、用户登录地以及与设备所有者是否为好友关系等信息。The authorization application may carry the device identification and the second user identification, so that the user terminal corresponding to the first user identification displays the network access device information corresponding to the device identification and the corresponding second user identification after receiving the authorization application. User information, and displays controls to confirm authorization and controls to deny authorization. The network access device information includes device name, device model, and device function introduction, and user information includes user name, user level, user login location, and whether the device owner is a friend.
第一用户标识所对应的用户终端在检测到用户对确认授权的控件的操作时,触发确认授权的授权结果并发送给设备接入开放平台;第一用户标识所对应的用户终端在检测到用户对拒绝授权的控件的操作时,触发拒绝授权的授权结果并发送给设备接入开放平台。When the user terminal corresponding to the first user identifier detects that the user operates the control for confirming authorization, it triggers an authorization result for confirming authorization and sends it to the device to access the open platform; the user terminal corresponding to the first user identifier detects the user When the control that refuses authorization is operated, the authorization result of refusing authorization is triggered and sent to the device to access the open platform.
步骤708,根据授权结果确定是否允许访问设备标识所对应的网络接入设备。Step 708: Determine whether to allow access to the network access device corresponding to the device identifier according to the authorization result.
具体地,授权结果包括确认授权以及拒绝授权。设备接入开放平台在接收到表示确认授权的授权结果后,允许访问设备标识所对应的网络接入设备;设备接入开放平台在接收到表示拒绝授权的授权结果后,则拒绝访问设备标识所对应的网络接入设备。Specifically, the authorization result includes confirming the authorization and denying the authorization. After receiving the authorization result indicating that the authorization is confirmed, the device access open platform is allowed to access the network access device corresponding to the device identification; after the device access open platform receives the authorization result indicating that the authorization is denied, it refuses to access the network access device corresponding to the device identification. Corresponding network access device.
在一个实施例中,设备接入开放平台可以在发出授权申请后超过预设时长仍未接收到相应的授权结果,则直接拒绝访问设备标识所对应的网络接入设备。其中预设时长比如可以是5秒或者10秒。In one embodiment, the device access open platform may directly refuse to access the network access device corresponding to the device identifier after the authorization application is issued and the corresponding authorization result is not received for a preset period of time. The preset duration may be, for example, 5 seconds or 10 seconds.
本实施例中,非设备所有者的其他用户在企图访问网络接入设备时,设备接入开放平台可以向设备所有者申请授权来保证网络接入设备的访问安全。In this embodiment, when other users who are not the device owner attempt to access the network access device, the device access open platform may apply to the device owner for authorization to ensure access security of the network access device.
如图8所示,在一个实施例中,提供了一种网络接入设备类型配置方法,本实施例以该方法应用于上述图1和图3中的用户终端104来举例说明。该方法具体包括如下步骤:As shown in FIG. 8 , in an embodiment, a method for configuring a network access device type is provided, and this embodiment is illustrated by applying the method to the
步骤802,在即时通信应用的网络接入设备配置页面,根据与第一用户标识具有设备绑定关系的设备标识绘制相应的网络接入设备公共化控件。Step 802 , on the network access device configuration page of the instant messaging application, draw a corresponding network access device common control according to the device ID that has a device binding relationship with the first user ID.
第一用户标识和设备标识具有设备绑定关系,表示该用户对该网络接入设备的管理权限。用户可以事先在设备接入开放平台上建立该设备绑定关系。第一用户标识对应的用户在用户终端上登录即时通信应用,该用户终端在即时通信应用中根据与当前登录的第一用户标识具有设备绑定关系的设备标识获取相应的网络接入设备信息并展示,并在网络接入设备配置页面绘制与该设备标识对应的网络接入设备公共化控件。The first user identifier and the device identifier have a device binding relationship, indicating the user's management authority on the network access device. The user can establish the device binding relationship on the device access open platform in advance. The user corresponding to the first user identification logs in the instant messaging application on the user terminal, and the user terminal obtains the corresponding network access device information in the instant messaging application according to the device identification that has a device binding relationship with the currently logged in first user identification, and Display, and draw the network access device public control corresponding to the device ID on the network access device configuration page.
其中网络接入设备配置页面是即时通信应用提供的用于对网络接入设备进行配置的页面。网络接入设备信息用于直接向用户提供相应的网络接入设备的细节信息,可以为用户是否将该网络接入设备公共化提供依据,网络接入设备信息包括设备名称、设备型号以及设备功能介绍等信息。与设备标识对应的网络接入设备公共化控件,是用于触发设备公共化请求的开关控件。开关控件是具有开启和关闭功能的控件,比如勾选框或者滑动条。The network access device configuration page is a page provided by the instant messaging application for configuring the network access device. The network access device information is used to directly provide the user with the detailed information of the corresponding network access device, and can provide a basis for the user whether to make the network access device public. The network access device information includes the device name, device model, and device function. introduction, etc. The network access device publicization control corresponding to the device identifier is a switch control for triggering a device publicization request. Toggle controls are controls that have on and off functions, such as checkboxes or sliders.
举例来说,参照图9,第一用户标识对应的用户终端展示即时通信应用的联系人页面,在“我的设备”类目下可以展示与第一用户标识具有设备绑定关系的设备标识对应的网络接入设备信息,比如图9中展示的“我的电视”以及“我的摄像头”等信息。用户点击相应的网络接入设备信息,比如点击“我的摄像头”,则相应地,用户终端检测到对展示的网络接入设备信息的操作,触发该操作所对应的设备标识对应的消息会话页面,如图10所示。For example, referring to FIG. 9 , the user terminal corresponding to the first user ID displays the contact page of the instant messaging application, and under the “My Device” category, the corresponding device IDs that have a device binding relationship with the first user ID can be displayed. information of network access devices, such as "My TV" and "My Camera" shown in Figure 9. The user clicks the corresponding network access device information, for example, clicks "My Camera", and accordingly, the user terminal detects an operation on the displayed network access device information, and triggers the message session page corresponding to the device ID corresponding to the operation. , as shown in Figure 10.
第一用户标识对应的用户终端在消息会话页面展示消息编辑页面1001,该消息编辑页面1001同时可以作为网络接入设备配置页面,在该网络接入设备配置页面中展示与设备标识对应的网络接入设备公共化控件1002。The user terminal corresponding to the first user ID displays a
或者,第一用户标识对应的用户终端可以在消息会话页面展示设备详细资料控件,在检测到对该设备详细资料控件的操作后,进入如图11所示的设备详细资料页面,该设备详细资料页面可作为网络接入设备配置页面,并展示与设备标识对应的网络接入设备公共化控件1101Alternatively, the user terminal corresponding to the first user ID may display the device details control on the message session page, and after detecting the operation of the device details control, enter the device details page shown in FIG. 11 , where the device details The page can be used as a network access device configuration page, and displays the network access device
步骤804,检测对网络接入设备公共化控件的操作,触发与第一用户标识对应的携带有设备标识的设备公共化请求。Step 804: Detect the operation of the network access device publicization control, and trigger a device publicization request corresponding to the first user identity and carrying the device identity.
具体地,第一用户标识对应的用户终端在检测到对网络接入设备公共化控件的操作后,比如点击、滑动或者双击等,可直接触发与第一用户标识对应的携带有设备标识的设备公共化请求。Specifically, after the user terminal corresponding to the first user ID detects an operation on the common control of the network access device, such as clicking, sliding, or double-clicking, etc., it can directly trigger the device carrying the device ID corresponding to the first user ID. public request.
步骤806,将设备公共化请求发送至设备接入开放平台,使设备接入开放平台将设备标识对应的设备类型从默认的私人设备类型配置为公共设备类型。Step 806: Send the device publicization request to the device access open platform, so that the device access open platform configures the device type corresponding to the device identifier from the default private device type to the public device type.
具体地,第一用户标识对应的用户终端将设备公共化请求发送至设备接入开放平台。设备接入开放平台接收第一用户标识所对应的用户终端发来的设备公共化请求,该设备公共化请求携带有设备标识,设备公共化请求用于请求设备接入开放平台更改该设备标识所对应的网络接入设备的设备类型,从而有限地公开或者完全公开对该网络接入设备的访问权限。Specifically, the user terminal corresponding to the first user identifier sends the device publicization request to the device access open platform. The device access open platform receives the device publicization request sent by the user terminal corresponding to the first user identity, the device publicization request carries the device identity, and the device publicization request is used to request the device access open platform to change the device identity. The device type of the corresponding network access device, so that the access authority to the network access device is disclosed in a limited way or completely.
设备接入开放平台上通过记录设备标识和设备类型的对应关系,表示该网络接入设备的公开属性。其中设备类型包括私人设备类型和公共设备类型,私人设备类型的网络接入设备在访问时需要与该设备标识具有设备绑定关系的第一用户标识对应的授权,而公共设备类型的网络接入设备则可以有限或者完全公开地被其它用户访问。On the device access open platform, the public attribute of the network access device is represented by recording the corresponding relationship between the device identifier and the device type. The device type includes a private device type and a public device type. The network access device of the private device type needs the authorization corresponding to the first user ID with the device binding relationship with the device ID when accessing, and the network access device of the public device type The device can then be accessed by other users with limited or full public access.
设备接入开放平台上任意网络接入设备在初始化时均对应相应的设备标识默认记录为私人设备类型,这样网络接入设备在生产出来后均初始化为私人设备类型,需要用户进行绑定操作产生设备绑定关系后,该用户则具有对该网络接入设备的管理权限。Any network access device on the device access open platform will be recorded as a private device type by default according to the corresponding device ID during initialization, so that the network access device will be initialized as a private device type after production, and the user needs to perform a binding operation to generate After the device is bound, the user has the management authority to the network access device.
在一个实施例中,设备接入开放平台根据设备公共化请求,验证设备公共化请求所对应的第一用户标识和携带的设备标识是否具有设备绑定关系;若具有设备绑定关系,则将设备标识对应的设备类型从默认的私人设备类型配置为公共设备类型;若不具有设备绑定关系,则拒绝设备公共化请求。In one embodiment, the device access open platform verifies whether the first user identity corresponding to the device publicization request and the device identity carried by the device publicization request have a device binding relationship according to the device publicization request; The device type corresponding to the device ID is configured from the default private device type to the public device type; if there is no device binding relationship, the device publicization request is rejected.
上述网络接入设备类型配置方法,用户使用即时通信应用可以对网络接入设备的设备类型进行配置。即时通信应用所提供的网络接入设备配置页面可以展示网络接入设备信息和网络接入设备公共化控件。当检测到用户对网络接入设备公共化控件的操作,就可以触发与第一用户标识对应的携带有设备标识的设备公共化请求发送至设备接入开放平台。设备接入开放平台则根据该设备公共化请求将网络接入设备从默认的私人设备类型配置为公共设备类型。这样用户可以通过即时通信应用,将所拥有的网络接入设备一键转化为公共设备类型,使得用户可以很方便地将网络接入设备公共化,提高了操作便利性。In the above method for configuring the network access device type, the user can use the instant messaging application to configure the device type of the network access device. The network access device configuration page provided by the instant messaging application can display network access device information and network access device common controls. When the user's operation on the network access device publicization control is detected, a device publicization request corresponding to the first user identity and carrying the device identity can be triggered to be sent to the device access open platform. The device access open platform configures the network access device from the default private device type to the public device type according to the device publicization request. In this way, the user can convert the owned network access device into a public device type with one click through the instant messaging application, so that the user can conveniently make the network access device public, and the operation convenience is improved.
在一个实施例中,第一用户标识对应的用户终端在检测到对网络接入设备公共化控件的再次操作后,触发与第一用户标识对应的携带有设备标识的设备私人化请求。该用户终端将设备私人化请求发送给设备接入开放平台,使设备接入开放平台在接收到与第一用户标识对应的携带有设备标识的设备私人化请求后,将该设备标识所对应的设备类型配置为私人设备类型。设备接入开放平台具体可以根据第一用户标识进行验证,验证通过后根据设备私人化请求将该设备标识所对应的设备类型配置为私人设备类型。In one embodiment, the user terminal corresponding to the first user identification triggers a device personalization request corresponding to the first user identification that carries the device identification after detecting the re-operation of the public control of the network access device. The user terminal sends the device personalization request to the device access open platform, so that the device access open platform receives the device personalization request corresponding to the first user identifier and carries the device identifier, and the device identifier corresponding to the device The device type is configured as a private device type. The device accessing the open platform may specifically perform verification according to the first user identifier, and after the verification is passed, configure the device type corresponding to the device identifier as a private device type according to the device personalization request.
如图12所示,在一个实施例中,一种网络接入设备类型配置方法,具体包括如下步骤:As shown in FIG. 12, in one embodiment, a method for configuring a network access device type specifically includes the following steps:
步骤1202,在即时通信应用的网络接入设备配置页面,根据与第一用户标识具有设备绑定关系的设备标识绘制相应的网络接入设备公共化控件。Step 1202: On the network access device configuration page of the instant messaging application, draw a corresponding network access device common control according to the device ID that has a device binding relationship with the first user ID.
步骤1204,检测对网络接入设备公共化控件的操作并获取公共访问方式配置指令。Step 1204: Detect the operation on the public control of the network access device and obtain the public access mode configuration instruction.
具体地,参照图11,第一用户标识对应的用户终端可以在网络接入设备配置页面展示网络接入设备公共化控件后,检测对该网络接入设备公共化控件的操作。该用户终端在检测到对该网络接入设备公共化控件的操作后,展示可选的公共访问方式,进而检测对可选的公共访问方式的选择操作从而触发公共访问方式配置指令。Specifically, referring to FIG. 11 , the user terminal corresponding to the first user identification can detect the operation of the common control of the network access device after displaying the common control of the network access device on the configuration page of the network access device. After detecting the operation of the publicized control of the network access device, the user terminal displays an optional public access mode, and further detects the selection operation of the optional public access mode to trigger a public access mode configuration instruction.
公共访问方式配置指令是指用于配置公共访问方式及相关信息的指令。具体地,公共访问方式配置指令包括指定完全公开权限访问方式还是有限公开权限访问方式。若是有限公开权限访问方式,还可以具体指定限时公开权限访问方式、有限白名单访问方式、有限黑名单访问方式或者密码验证访问方式,还需要指定相应的预设时限范围、预设白名单、预设黑名单或者预设密码。The public access mode configuration instruction refers to the instruction used to configure the public access mode and related information. Specifically, the public access mode configuration instruction includes specifying a full public access mode or a limited public access mode. In the case of limited public access, you can also specify time-limited public access, limited whitelist access, limited blacklist access, or password authentication access. You also need to specify the corresponding preset time limit, preset whitelist, preset Set a blacklist or preset password.
步骤1206,根据公共访问方式配置指令所指定的公共访问方式,生成与第一用户标识对应的携带有设备标识的设备公共化请求;公共访问方式包括完全公开权限访问方式、限时公开权限访问方式、有限白名单访问方式、有限黑名单访问方式以及密码验证访问方式中的至少一种。
具体地,公共访问方式是网络接入设备被非限定设备所有者的公众访问的方式。在一个实施例中,公共访问方式包括完全公开权限访问方式、限时公开权限访问方式、有限白名单访问方式、有限黑名单访问方式以及密码验证访问方式中的至少一种。Specifically, the public access mode is the mode in which the network access device is accessed by the public who is not limited to the owner of the device. In one embodiment, the public access mode includes at least one of a full public access mode, a time-limited public access mode, a limited whitelist access mode, a limited blacklist access mode, and a password verification access mode.
其中完全公开权限访问方式是指任意用户可以无限制访问网络接入设备;限时公开权限访问方式是指非设备所有者的其它用户可以在预设时限范围内访问网络接入设备;有限白名单访问方式是指在预设白名单中的非设备所有者的其它用户才可以访问该网络接入设备;有限黑名单访问方式是指在预设黑名单中的用户不可以访问该网络接入设备;密码验证访问方式是指非设备所有者的其它用户需要提供预设密码才可以访问该网络接入设备。The fully public access means that any user can access the network access device without restrictions; the time-limited public access means that other users who are not the device owner can access the network access device within a preset time limit; limited whitelist access The mode means that other users who are not the device owner in the preset whitelist can access the network access device; the limited blacklist access mode means that the users in the preset blacklist cannot access the network access device; Password authentication access means that other users who are not the device owner need to provide a preset password before they can access the network access device.
步骤1208,将设备公共化请求发送至设备接入开放平台,使设备接入开放平台将设备标识对应的设备类型从默认的私人设备类型配置为公共设备类型,并根据设备公共化请求配置设备标识所对应的公共访问方式。Step 1208: Send the device publicization request to the device access open platform, so that the device access open platform configures the device type corresponding to the device identifier from the default private device type to the public device type, and configures the device identifier according to the device publicization request The corresponding public access method.
设备公共化请求可以指定公共访问方式,这样设备接入开放平台在接收到设备公共化请求后,可以根据该设备公共化请求,配置设备标识所对应的公共访问方式为设备公共化请求所指定的公共访问方式。设备接入开放平台也可以根据设备公共化请求直接配置设备标识所对应的公共访问方式为默认的公共访问方式。用户还可以在设备接入开放平台上对该公共访问方式进行更改。The device publicization request can specify the public access mode, so that after receiving the device publicization request, the device access open platform can configure the public access mode corresponding to the device identification to the one specified by the device publicization request according to the device publicization request. public access. The device access open platform can also directly configure the public access mode corresponding to the device identification as the default public access mode according to the device publicization request. Users can also change the public access method on the device access open platform.
本实施例中,设备接入开放平台可以提供多种公共访问方式供用户选择,这样用户便可以控制网络接入设备是完全公开权限还是有限公开权限地供其他用户访问,便于用户对网络接入设备的管理。In this embodiment, the device access open platform can provide a variety of public access methods for users to choose, so that the user can control whether the network access device has full public authority or limited public authority for other users to access, which is convenient for users to access the network. Device management.
在一个实施例中,该网络接入设备类型配置方法还包括:向设备接入开放平台发送携带有设备标识的设备访问请求,使设备接入开放平台在检测到设备标识所对应的设备类型为公共设备类型时,根据设备标识所对应的公共访问方式确定是否允许访问设备标识所对应的网络接入设备;接收设备接入开放平台所反馈的设备访问结果。In one embodiment, the network access device type configuration method further includes: sending a device access request carrying a device identifier to the device access open platform, so that the device access open platform detects that the device type corresponding to the device identifier is In the case of a public device type, determine whether to allow access to the network access device corresponding to the device identifier according to the public access mode corresponding to the device identifier; and receive the device access result fed back by the device accessing the open platform.
具体地,这里的设备访问请求是上述网络接入设备访问控制方法中的第一设备访问请求。设备接入开放平台接收携带有设备标识的设备访问请求,该设备访问请求是对公共设备类型的网络接入设备的访问请求,设备访问请求可以是任意用户发起的访问请求。Specifically, the device access request here is the first device access request in the foregoing network access device access control method. The device access open platform receives a device access request carrying a device identifier, the device access request is an access request to a network access device of a public device type, and the device access request can be an access request initiated by any user.
这里的设备访问请求可以是控制网络接入设备的请求、向网络接入设备发送消息的请求以及拉取网络接入设备上存储的信息的请求等。其中控制网络接入设备的请求包括控制网络接入设备开启、关闭以及工作状态的请求,发送消息的请求所发送的消息包括文本消息、图像消息、视频消息及其结合。The device access request here may be a request to control a network access device, a request to send a message to the network access device, a request to pull information stored on the network access device, and the like. The request to control the network access device includes a request to control the opening, closing and working status of the network access device, and the messages sent by the request to send a message include text messages, image messages, video messages, and combinations thereof.
设备接入开放平台在接收到任意设备访问请求后,会检测该设备访问请求所携带的设备标识所对应的设备类型。当检测到公共设备类型时,则直接允许访问设备标识所对应的网络接入设备。设备接入开放平台在允许访问设备标识所对应的网络接入设备后,将设备访问请求转发给该设备访问请求所携带的设备标识所对应的网络接入设备,进而接收该网络接入设备反馈的设备访问结果,并将该设备访问结果返回给发起设备访问请求的用户终端。After receiving any device access request, the device access open platform will detect the device type corresponding to the device identifier carried in the device access request. When the public device type is detected, the network access device corresponding to the device identification is directly allowed to be accessed. After allowing access to the network access device corresponding to the device ID, the device access open platform forwards the device access request to the network access device corresponding to the device ID carried in the device access request, and then receives feedback from the network access device The device access result is returned, and the device access result is returned to the user terminal that initiated the device access request.
本实施例中,在用户的设备公共化请求下将网络接入设备更改为公共设备类型,这样在设备所有者的授权下将网络接入设备的访问权公共化,可以在保证安全性的前提下可以让更多的用户来使用该网络接入设备。In this embodiment, the network access device is changed to a public device type under the user's device publicization request, so that the access rights of the network access device are publicized under the authorization of the device owner, which can ensure the security on the premise. This allows more users to use the network access device.
在一个实施例中,第一用户标识对应的用户终端还可以向设备接入开放平台发送携带有第一用户标识和设备标识的第二设备访问请求,使设备接入开放平台在检测到第二设备访问请求所携带的设备标识对应私人设备类型时,根据第一用户标识对第二设备访问请求进行验证;根据验证结果确定是否允许访问设备标识所对应的网络接入设备;接收设备接入开放平台所反馈的与第二设备访问请求对应的设备访问结果。In one embodiment, the user terminal corresponding to the first user identifier may also send a second device access request carrying the first user identifier and the device identifier to the device access open platform, so that the device access open platform detects the second device access request. When the device identification carried in the device access request corresponds to the private device type, the second device access request is verified according to the first user identification; according to the verification result, it is determined whether to allow access to the network access device corresponding to the device identification; the receiving device is open for access The device access result corresponding to the second device access request fed back by the platform.
下面用一个具体应用场景来说明上述网络接入设备类型配置方法和网络接入设备访问控制方法的原理。具体如下:The following uses a specific application scenario to illustrate the principles of the above-mentioned network access device type configuration method and network access device access control method. details as follows:
参照图1和图9,用户1在用户终端104(1)登录即时通信应用,用户2也在用户终端104(2)登录即时通信应用。若用户1的第一用户标识与用户2的第二用户标识具有社交好友关系,或者用户1事先将网络摄像头分享给用户2,那么用户2就可以通过用户终端104(2)向设备接入开放平台发送与网络摄像头的设备标识对应的携带有第二用户标识的第三设备访问请求。设备接入开放平台检测到设备标识对应私人设备类型,则生成授权申请发送给用户终端104(1)。用户1在用户终端104(1)进行授权确认后,向用户终端104(2)返回授权确认的授权结果。用户终端104(2)则在收到该授权结果后,允许访问设备标识所对应的网络接入设备。1 and 9 ,
用户1在用户终端104(1)的联系人页面中可以看到“我的设备”,点击后用户终端104(1)就可以展示当前用户所绑定的所有网络接入设备的信息,具体在图9中为“我的电视机”和“我的摄像头”,相应的网络接入设备为电视机和网络摄像头。用户1点击“我的摄像头”就可以进入如图10所示的网络摄像头的消息会话页面。
用户1的第一用户标识和网络摄像头的设备标识具有绑定关系,这样用户1就具有私人访问网络摄像头的权限,用户1在消息会话页面中可以与我的摄像头进行互动。用户1点击在消息会话页面的消息编辑页面中展示的网络接入设备公共化控件,进而触发与第一用户标识对应的携带有设备标识的设备公共化请求,并发送给设备接入开放平台。或者用户1还可以点击消息会话页面中的设备详细资料控件,进入设备详细资料页面,进而触发与第一用户标识对应的携带有设备标识的设备公共化请求,并发送给设备接入开放平台。The first user ID of
设备接入开放平台接收第一用户标识所对应的用户终端104(1)发来的设备公共化请求,根据设备公共化请求,将设备标识对应的设备类型从默认的私人设备类型配置为公共设备类型。设备接入开放平台接收携带有设备标识的第一设备访问请求,检测第一设备访问请求所携带的设备标识所对应的设备类型,当检测到公共设备类型时,则允许访问设备标识所对应的网络接入设备。设备接入开放平台在允许访问设备标识所对应的网络接入设备后,将第一设备访问请求转发给该第一设备访问请求所携带的设备标识所对应的网络接入设备,进而接收该网络接入设备反馈的设备访问结果,并将该设备访问结果返回给发起第一设备访问请求的用户终端104(1)。The device access open platform receives the device publicization request sent by the user terminal 104(1) corresponding to the first user identification, and configures the device type corresponding to the device identification from the default private device type to the public device according to the device publicization request. type. The device access open platform receives the first device access request carrying the device identifier, detects the device type corresponding to the device identifier carried in the first device access request, and allows access to the device corresponding to the device identifier when the public device type is detected. network access equipment. After allowing access to the network access device corresponding to the device identifier, the device access open platform forwards the first device access request to the network access device corresponding to the device identifier carried in the first device access request, and then receives the network access device. Access the device access result fed back by the device, and return the device access result to the user terminal 104(1) that initiated the first device access request.
如图13所示,在一个实施例中,提供了一种网络接入设备访问控制装置1300,具有实现上述各个实施例的网络接入设备访问控制方法的功能模块。该网络接入设备访问控制装置1300包括:设备公共化请求接收模块1301、公共化配置模块1302、第一设备访问请求接收模块1303、检测模块1304和决策模块1305。As shown in FIG. 13 , in one embodiment, a network access device access control apparatus 1300 is provided, which has functional modules for implementing the network access device access control methods of the foregoing embodiments. The network access device access control apparatus 1300 includes: a device publicization
设备公共化请求接收模块1301,用于接收与第一用户标识对应的携带有设备标识的设备公共化请求。第一用户标识和设备标识具有设备绑定关系。The device publicization
公共化配置模块1302,用于根据设备公共化请求,将设备标识对应的设备类型从默认的私人设备类型配置为公共设备类型。The
第一设备访问请求接收模块1303,用于接收携带有设备标识的第一设备访问请求。The first device access
检测模块1304,用于检测第一设备访问请求所携带的设备标识所对应的设备类型。The
决策模块1305,用于当检测到公共设备类型时,则允许访问设备标识所对应的网络接入设备。The
在一个实施例中,公共化配置模块1302还用于根据设备公共化请求配置设备标识所对应的公共访问方式。In one embodiment, the
决策模块1305还用于当检测到公共设备类型时,根据设备标识所对应的公共访问方式确定是否允许访问设备标识所对应的网络接入设备。The
如图14所示,在一个实施例中,决策模块1305包括完全公开权限访问方式处理模块1305a、限时公开权限访问方式处理模块1305b、有限白名单访问方式处理模块1305c、有限黑名单访问方式处理模块1305d和密码验证访问方式处理模块1305e中的至少一种。As shown in FIG. 14, in one embodiment, the decision-
完全公开权限访问方式处理模块1305a用于当设备标识所对应的公共访问方式为完全公开权限访问方式时,直接允许访问设备标识所对应的网络接入设备。The full disclosure authority access mode processing module 1305a is configured to directly allow access to the network access device corresponding to the device identification when the public access mode corresponding to the device identification is the full disclosure authority access mode.
限时公开权限访问方式处理模块1305b用于当设备标识所对应的公共访问方式为限时公开权限访问方式时,判断当前时间是否在预设时限范围内;若是则允许访问设备标识所对应的网络接入设备;若否则拒绝访问设备标识所对应的网络接入设备。The time-limited disclosure authority access method processing module 1305b is configured to determine whether the current time is within the preset time limit when the public access method corresponding to the device identification is the time-limited disclosure authority access method; if so, allow access to the network access corresponding to the device identification device; otherwise deny access to the network access device corresponding to the device ID.
有限白名单访问方式处理模块1305c用于当设备标识所对应的公共访问方式为有限白名单访问方式时,判断第一设备访问请求所携带的第二用户标识是否在预设白名单中,若是则允许访问设备标识所对应的网络接入设备;若否则拒绝访问设备标识所对应的网络接入设备。The limited whitelist access
有限黑名单访问方式处理模块1305d用于当设备标识所对应的公共访问方式为有限黑名单访问方式时,判断第一设备访问请求所携带的第二用户标识是否在预设黑名单中,若是则拒绝访问设备标识所对应的网络接入设备;若否则允许访问设备标识所对应的网络接入设备。The limited blacklist access
密码验证访问方式处理模块1305e用于当设备标识所对应的公共访问方式为密码验证访问方式时,获取第一设备访问请求所对应的输入密码以及设备标识所对应的预设密码;比较输入密码与预设密码是否一致;若一致,则允许访问设备标识所对应的网络接入设备;若不一致,则拒绝访问设备标识所对应的网络接入设备。The password verification access mode processing module 1305e is configured to obtain the input password corresponding to the first device access request and the preset password corresponding to the device ID when the public access mode corresponding to the device ID is the password verification access mode; compare the input password with Whether the preset passwords are the same; if they are the same, allow access to the network access device corresponding to the device ID; if not, deny access to the network access device corresponding to the device ID.
如图15所示,在一个实施例中,网络接入设备访问控制装置1300还包括:第二设备访问请求接收模块1306和第二设备访问请求验证模块1307。As shown in FIG. 15 , in one embodiment, the apparatus 1300 for controlling network access device access further includes: a second device access
第二设备访问请求接收模块1306,用于接收携带有第一用户标识和设备标识的第二设备访问请求。The second device access
检测模块1304,用于检测第二设备访问请求所携带的设备标识对应的设备类型。The
第二设备访问请求验证模块1307,用于检测到第二设备访问请求所携带的设备标识对应私人设备类型时,根据第一用户标识对第二设备访问请求进行验证。The second device access
决策模块1305还用于对第二设备访问请求验证通过后,允许访问设备标识所对应的网络接入设备。The decision-
如图16所示,在一个实施例中,网络接入设备访问控制装置1300还包括:第三设备访问请求接收模块1308、第一用户标识获取模块1309和授权申请模块1310。As shown in FIG. 16 , in one embodiment, the apparatus 1300 for controlling network access device access further includes: a third device access
第三设备访问请求接收模块1308,用于接收携带有第二用户标识和设备标识的第三设备访问请求。The third device access
检测模块1304,用于检测第三设备访问请求所携带的设备标识对应的设备类型。The
第一用户标识获取模块1309,用于检测到第三设备访问请求所携带的设备标识对应私人设备类型时,获取与设备标识具有设备绑定关系的第一用户标识;The first user
授权申请模块1310,用于生成授权申请并发送给第一用户标识所对应的用户终端,并接收用户终端反馈的授权结果。The
决策模块1305还用于根据授权结果确定是否允许访问设备标识所对应的网络接入设备。The
上述网络接入设备访问控制装置1300,第一用户标识和设备标识具有设备绑定关系,则该用户对该设备标识对应的网络接入设备具有管理权限。该设备标识对应的设备类型默认为私人设备类型,允许用户私人访问。当接收到与第一用户标识对应的携带有设备标识的设备公共化请求时,表示用户希望将该设备标识的网络接入设备公开,此时将设备标识对应的设备类型配置为公共设备类型。当接收到其他用户发送的第一设备访问请求时,就可以根据该网络接入设备的公共设备类型允许该第一设备访问请求。这样网络接入设备默认是私人设备类型,可以保证网络接入设备的安全性;在用户的设备公共化请求下将网络接入设备更改为公共设备类型,这样在设备所有者的授权下将网络接入设备的访问权公共化,可以在保证安全性的前提下可以让更多的用户来使用该网络接入设备。In the above-mentioned network access device access control apparatus 1300, if the first user identifier and the device identifier have a device binding relationship, the user has management authority on the network access device corresponding to the device identifier. The device type corresponding to the device ID is a private device type by default, allowing users to access privately. When receiving the device publicization request carrying the device identification corresponding to the first user identification, it indicates that the user wishes to disclose the network access device of the device identification, and at this time, the device type corresponding to the device identification is configured as a public device type. When a first device access request sent by another user is received, the first device access request may be allowed according to the public device type of the network access device. In this way, the network access device is a private device type by default, which can ensure the security of the network access device; the network access device is changed to a public device type under the user's device public request, so that the network access device is authorized by the device owner. The access rights of the access device are made public, and more users can use the network access device under the premise of ensuring security.
如图17所示,在一个实施例中,提供了一种网络接入设备类型配置装置1700,具有实现上述各个实施例的网络接入设备类型配置方法的功能模块。网络接入设备类型配置装置1700包括:As shown in FIG. 17 , in one embodiment, a network access device type configuration apparatus 1700 is provided, which has functional modules for implementing the network access device type configuration methods of the foregoing embodiments. The network access device type configuration apparatus 1700 includes:
网络接入设备配置页面管理模块1701,用于在即时通信应用的网络接入设备配置页面,根据与第一用户标识具有设备绑定关系的设备标识绘制相应的网络接入设备公共化控件。The network access device configuration
设备公共化请求触发模块1702,用于检测对网络接入设备公共化控件的操作,触发与第一用户标识对应的携带有设备标识的设备公共化请求。The device publicization
设备公共化请求发送模块1703,用于将设备公共化请求发送至设备接入开放平台,使设备接入开放平台将设备标识对应的设备类型从默认的私人设备类型配置为公共设备类型。The device publicization
在一个实施例中,设备公共化请求触发模块1702还用于检测对网络接入设备公共化控件的操作并获取公共访问方式配置指令;根据公共访问方式配置指令所指定的公共访问方式,生成与第一用户标识对应的携带有设备标识的设备公共化请求;公共访问方式包括完全公开权限访问方式、限时公开权限访问方式、有限白名单访问方式、有限黑名单访问方式以及密码验证访问方式中的至少一种。In one embodiment, the device publicization
设备公共化请求发送模块1703还用于将设备公共化请求发送至设备接入开放平台,使设备接入开放平台将设备标识对应的设备类型从默认的私人设备类型配置为公共设备类型,并根据设备公共化请求配置设备标识所对应的公共访问方式。The device publicization
如图18所示,在一个实施例中,网络接入设备类型配置装置1700还包括:设备访问请求发送模块1704和设备访问结果接收模块1705。As shown in FIG. 18 , in one embodiment, the network access device type configuration apparatus 1700 further includes: a device access
设备访问请求发送模块1704,用于向设备接入开放平台发送携带有设备标识的设备访问请求,使设备接入开放平台在检测到设备标识所对应的设备类型为公共设备类型时,根据设备标识所对应的公共访问方式确定是否允许访问设备标识所对应的网络接入设备。The device access
设备访问结果接收模块1705,用于接收设备接入开放平台所反馈的与该设备访问请求对应的设备访问结果。The device access result receiving
在一个实施例中,设备访问请求发送模块1704还用于向设备接入开放平台发送携带有第一用户标识和设备标识的第二设备访问请求,使设备接入开放平台在检测到第二设备访问请求所携带的设备标识对应私人设备类型时,根据第一用户标识对第二设备访问请求进行验证;根据验证结果确定是否允许访问设备标识所对应的网络接入设备。In one embodiment, the device access
设备访问结果接收模块1705还用于接收设备接入开放平台所反馈的与第二设备访问请求对应的设备访问结果。The device access result receiving
上述网络接入设备类型配置装置1700,用户使用即时通信应用可以对网络接入设备的设备类型进行配置。即时通信应用所提供的网络接入设备配置页面可以展示网络接入设备信息和网络接入设备公共化控件。当检测到用户对网络接入设备公共化控件的操作,就可以触发与第一用户标识对应的携带有设备标识的设备公共化请求发送至设备接入开放平台。设备接入开放平台则根据该设备公共化请求将网络接入设备从默认的私人设备类型配置为公共设备类型。这样用户可以通过即时通信应用,将所拥有的网络接入设备一键转化为公共设备类型,使得用户可以很方便地将网络接入设备公共化,提高了操作便利性。In the above-mentioned network access device type configuration apparatus 1700, the user can use the instant messaging application to configure the device type of the network access device. The network access device configuration page provided by the instant messaging application can display network access device information and network access device common controls. When the user's operation on the network access device publicization control is detected, a device publicization request corresponding to the first user identity and carrying the device identity can be triggered to be sent to the device access open platform. The device access open platform configures the network access device from the default private device type to the public device type according to the device publicization request. In this way, the user can convert the owned network access device into a public device type with one click through the instant messaging application, so that the user can conveniently make the network access device public, and the operation convenience is improved.
本领域普通技术人员可以理解实现上述实施例方法中的全部或部分流程,是可以通过计算机程序来指令相关的硬件来完成,所述的程序可存储于一计算机可读取存储介质中,该程序在执行时,可包括如上述各方法的实施例的流程。其中,所述的存储介质可为磁碟、光盘、只读存储记忆体(Read-Only Memory,ROM)等非易失性存储介质,或随机存储记忆体(Random Access Memory,RAM)等。Those of ordinary skill in the art can understand that all or part of the processes in the methods of the above embodiments can be implemented by instructing relevant hardware through a computer program, and the program can be stored in a computer-readable storage medium. During execution, the processes of the embodiments of the above-mentioned methods may be included. The storage medium may be a non-volatile storage medium such as a magnetic disk, an optical disk, a read-only memory (Read-Only Memory, ROM), or a random access memory (Random Access Memory, RAM).
以上所述实施例的各技术特征可以进行任意的组合,为使描述简洁,未对上述实施例中的各个技术特征所有可能的组合都进行描述,然而,只要这些技术特征的组合不存在矛盾,都应当认为是本说明书记载的范围。The technical features of the above-described embodiments can be combined arbitrarily. For the sake of brevity, all possible combinations of the technical features in the above-described embodiments are not described. However, as long as there is no contradiction between the combinations of these technical features, All should be regarded as the scope described in this specification.
以上所述实施例仅表达了本发明的几种实施方式,其描述较为具体和详细,但并不能因此而理解为对发明专利范围的限制。应当指出的是,对于本领域的普通技术人员来说,在不脱离本发明构思的前提下,还可以做出若干变形和改进,这些都属于本发明的保护范围。因此,本发明专利的保护范围应以所附权利要求为准。The above-mentioned embodiments only represent several embodiments of the present invention, and the descriptions thereof are specific and detailed, but should not be construed as a limitation on the scope of the invention patent. It should be pointed out that for those of ordinary skill in the art, without departing from the concept of the present invention, several modifications and improvements can also be made, which all belong to the protection scope of the present invention. Therefore, the protection scope of the patent of the present invention should be subject to the appended claims.
Claims (24)
Priority Applications (1)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| CN201510466740.9A CN106385397B (en) | 2015-07-31 | 2015-07-31 | Network access device access control and type configuration method and device |
Applications Claiming Priority (1)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| CN201510466740.9A CN106385397B (en) | 2015-07-31 | 2015-07-31 | Network access device access control and type configuration method and device |
Publications (2)
| Publication Number | Publication Date |
|---|---|
| CN106385397A CN106385397A (en) | 2017-02-08 |
| CN106385397B true CN106385397B (en) | 2020-09-01 |
Family
ID=57916368
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| CN201510466740.9A Active CN106385397B (en) | 2015-07-31 | 2015-07-31 | Network access device access control and type configuration method and device |
Country Status (1)
| Country | Link |
|---|---|
| CN (1) | CN106385397B (en) |
Families Citing this family (6)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN108462713B (en) * | 2018-03-22 | 2021-07-02 | 北京可信华泰信息技术有限公司 | Method and system for client to perform credibility verification |
| CN113169970B (en) * | 2019-06-14 | 2023-10-27 | Oppo广东移动通信有限公司 | An access control method, device and storage medium |
| CN112351059B (en) * | 2020-07-30 | 2021-09-10 | 中兴通讯股份有限公司 | Request processing method and device, electronic equipment and computer-readable storage medium |
| CN114466249B (en) * | 2022-04-13 | 2022-09-20 | 荣耀终端有限公司 | Data request processing method, device and storage medium |
| CN115065719B (en) * | 2022-06-09 | 2023-07-14 | 深圳创维数字技术有限公司 | Equipment interactive access method and device, electronic equipment and readable storage medium |
| US12341778B2 (en) * | 2023-09-13 | 2025-06-24 | Howard Hong-Dough Lee | Di chip, smartphone, system, and operating method |
Citations (3)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN101079730A (en) * | 2006-05-25 | 2007-11-28 | 中国移动通信集团公司 | Remote control system and control method of information appliance |
| CN103729590A (en) * | 2013-12-27 | 2014-04-16 | 四川长虹电器股份有限公司 | Method, device and system for setting equipment access right |
| CN104243250A (en) * | 2014-08-18 | 2014-12-24 | 小米科技有限责任公司 | Access authorization method, device and equipment based on intelligent housing system |
Family Cites Families (2)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US9405594B2 (en) * | 2008-11-03 | 2016-08-02 | Samsung Electronics Co., Ltd. | Method and apparatus for controlling access to resources in remote user interface service |
| CN103607372B (en) * | 2013-08-19 | 2016-12-28 | 深信服网络科技(深圳)有限公司 | The authentication method of network insertion and device |
-
2015
- 2015-07-31 CN CN201510466740.9A patent/CN106385397B/en active Active
Patent Citations (3)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN101079730A (en) * | 2006-05-25 | 2007-11-28 | 中国移动通信集团公司 | Remote control system and control method of information appliance |
| CN103729590A (en) * | 2013-12-27 | 2014-04-16 | 四川长虹电器股份有限公司 | Method, device and system for setting equipment access right |
| CN104243250A (en) * | 2014-08-18 | 2014-12-24 | 小米科技有限责任公司 | Access authorization method, device and equipment based on intelligent housing system |
Also Published As
| Publication number | Publication date |
|---|---|
| CN106385397A (en) | 2017-02-08 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| US20220224679A1 (en) | Authenticated Session Management Across Multiple Electronic Devices Using A Virtual Session Manager | |
| CN113272805B (en) | Proximity-based unlocking of public computing devices | |
| CN110121873B (en) | Access token management method, terminal and server | |
| US11824644B2 (en) | Controlling electronically communicated resources | |
| US20200304999A1 (en) | Integrated physical and logical security management via a portable device | |
| EP3864541B1 (en) | Progressive access to data and device functionality | |
| CN103516514B (en) | The establishing method of account access rights and control device | |
| KR102377724B1 (en) | Device network configuration method and apparatus, and medium | |
| US20180191700A1 (en) | Two-token based authenticated session management | |
| WO2017140240A1 (en) | Guest authentication method and system | |
| CN103248657B (en) | Web Publishing facility information method and facility information sharing method thereof | |
| CN106471784A (en) | Equipment access control | |
| US20190281047A1 (en) | Trusted status transfer between associated devices | |
| CN105337974B (en) | Account authorization method, account login method, account authorization device and client | |
| CN105263193B (en) | The WIFI connection methods of mobile terminal and system | |
| CN106385397A (en) | Network access equipment access control and type configuration method and apparatus thereof | |
| KR20160014518A (en) | Method for sharing data and apparatus thereof | |
| CN105262823A (en) | Method, apparatus and system for controlling terminal | |
| CN105392141A (en) | Device control method and device | |
| CN116887382A (en) | Network distribution methods, devices, equipment, media and program products for intelligent equipment | |
| CN112035807A (en) | Object authentication method and device, storage medium and electronic device | |
| US11444950B2 (en) | Automated verification of authenticated users accessing a physical resource | |
| CN116204893A (en) | Access control method, access condition configuration method, device, equipment and medium | |
| CN107231338B (en) | Network connection method, device and device for network connection | |
| CN104618906B (en) | Wi-Fi cut-in methods, Wi-Fi access systems and terminal |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| C06 | Publication | ||
| PB01 | Publication | ||
| SE01 | Entry into force of request for substantive examination | ||
| SE01 | Entry into force of request for substantive examination | ||
| GR01 | Patent grant | ||
| GR01 | Patent grant |
