CN106506520B - A kind of authentication method and device based on single-sign-on - Google Patents

A kind of authentication method and device based on single-sign-on Download PDF

Info

Publication number
CN106506520B
CN106506520B CN201611053404.2A CN201611053404A CN106506520B CN 106506520 B CN106506520 B CN 106506520B CN 201611053404 A CN201611053404 A CN 201611053404A CN 106506520 B CN106506520 B CN 106506520B
Authority
CN
China
Prior art keywords
certification request
address
request type
chain manager
logic chain
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201611053404.2A
Other languages
Chinese (zh)
Other versions
CN106506520A (en
Inventor
邓鹏�
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Maipu Communication Technology Co Ltd
Original Assignee
Maipu Communication Technology Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Maipu Communication Technology Co Ltd filed Critical Maipu Communication Technology Co Ltd
Priority to CN201611053404.2A priority Critical patent/CN106506520B/en
Publication of CN106506520A publication Critical patent/CN106506520A/en
Application granted granted Critical
Publication of CN106506520B publication Critical patent/CN106506520B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0815Network architectures or network communication protocols for network security for authentication of entities providing single-sign-on or federations

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Hardware Design (AREA)
  • Computer Security & Cryptography (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)
  • Computer And Data Communications (AREA)

Abstract

The present invention discloses a kind of authentication method and device based on single-sign-on, is related to field of communication technology, can solve the problem of terminal can not access WEB server.The certification request that the embodiment of the present invention is sent by receiving terminal, then the certification request type of certification request is determined according to the IP address to be visited in certification request, and then judge whether there is the corresponding filter logic chain manager of the certification request type, if there is, then call directly the corresponding filter logic chain manager processes certification request of certification request type, if there is no, the corresponding filter logic chain manager of the certification request type and three-party library filter group are then created, and then calls the filter logic chain manager processes certification request of creation.Scheme provided in an embodiment of the present invention uses when being suitable for single sign-on authentication.

Description

A kind of authentication method and device based on single-sign-on
Technical field
The present invention relates to field of communication technology more particularly to a kind of authentication methods and device based on single-sign-on.
Background technique
SSO (Single Sign On, single-sign-on) is that user, which only needs to log in, once can in multiple application systems It is one of the solution of business event integration popular at present to access the application system of all mutual trusts.In WEB In (network) application, single-sign-on can be realized using three-party library, the three-party library used in WEB application is generally at present CAS (Central Authentication Service, center certification service), the needs when carrying out single-sign-on using CAS The configurating filtered device in WEB container, and need to configure the parameters such as authenticating address in the filter, these parameters are all according to tool The preconfigured parameter of the WEB application of body.
Currently, only one filter in a general WEB container, the authenticating address in the filter is according to publicly-owned IP Address configuration.But currently in order to realizing network security, terminal generally accesses network by private IP address, when terminal is sent out When sending access request, the private IP address in access request can be carried out NAT (Network Address by router Translation, network address translation), private IP address is converted into public ip address to realize accessing terminal to network.In reality When existing single-sign-on, terminal sends certification request to filter first, private IP address is carried in certification request, due to filter In and the relevant information of the private IP address is not configured, so the certification request for carrying private IP address can not be handled, lead to end End can not access WEB server.
Summary of the invention
The embodiment of the present invention provides a kind of authentication method and device based on single-sign-on, and can solve terminal can not visit The problem of asking WEB server.
In order to achieve the above objectives, the embodiment of the present invention adopts the following technical scheme that
A kind of authentication method based on single-sign-on, comprising:
The certification request that terminal is sent is received, carries IP address to be visited in certification request;
The certification request type of certification request is determined according to IP address to be visited;
Judge whether there is the corresponding filter logic chain manager of the certification request type;
If it exists, then the corresponding filter logic chain manager processes certification request of the certification request type is called;
If it does not exist, then it creates the corresponding filter logic chain manager of the certification request type and the certification is asked Seek the corresponding three-party library filter group of type;
Call the corresponding filter logic chain manager processes certification request of the certification request type.
A kind of authentication device based on single-sign-on, comprising:
Receiving unit carries IP address to be visited in certification request for receiving the certification request of terminal transmission;
Determination unit, for determining that certification is asked according to the IP address to be visited in the received certification request of the receiving unit The certification request type asked;
Judging unit, the corresponding filtering of the certification request type determined for judging whether there is the determination unit Device logic chain manager;
Processing unit calls the certification request type pair in the presence of being for the judging result when the judging unit The filter logic chain manager processes certification request answered;
Creating unit creates the certification request type in the absence of being for the judging result when the judging unit Corresponding filter logic chain manager and the corresponding three-party library filter group of the certification request type;
The processing unit is also used to call the corresponding filter of the certification request type of the creating unit creation Logic chain manager processes certification request.
The certification that authentication method and device provided in an embodiment of the present invention based on single-sign-on, first reception terminal are sent Request, then determines the certification request type of certification request, and then judge whether according to the IP address to be visited in certification request There are the corresponding filter logic chain managers of the certification request type, if it is present calling directly certification request type pair The filter logic chain manager processes certification request answered, if it does not exist, then creating the corresponding filtering of certification request type Device logic chain manager and three-party library filter group, and then the filter logic chain manager processes certification of creation is called to ask Ask, in the prior art due to can not carry out single sign-on authentication and lead to not access WEB server the problem of compared with, this hair In bright embodiment, when filter logic chain manager corresponding if there is no certification request type, it just will create the certification and ask Ask the corresponding filter logic chain manager of type and three-party library filter group, and then can be by the filter logic chain that creates Manager handles certification request, is equivalent to even if carrying private IP address in certification request, if do not used in WEB container In the filter logic chain manager for handling the private IP address, the corresponding filter logic of the private IP address can also be created Chain manager is not in the case where can not handling certification request, so the embodiment of the present invention can handle with carrying private ip The certification request of location is not in due to the case where can not handling certification request and causing terminal that can not access WEB server.
Detailed description of the invention
In order to more clearly explain the embodiment of the invention or the technical proposal in the existing technology, to embodiment or will show below There is attached drawing needed in technical description to be briefly described, it should be apparent that, the accompanying drawings in the following description is only this Some embodiments of invention for those of ordinary skill in the art without creative efforts, can be with It obtains other drawings based on these drawings.
Fig. 1 is a kind of flow chart of the authentication method based on single-sign-on provided in an embodiment of the present invention;
Fig. 2 is the flow chart of another authentication method based on single-sign-on provided in an embodiment of the present invention;
Fig. 3 is a kind of logical construction schematic diagram of the authentication device based on single-sign-on provided in an embodiment of the present invention;
Fig. 4 is the logical construction schematic diagram of another authentication device based on single-sign-on provided in an embodiment of the present invention.
Specific embodiment
Following will be combined with the drawings in the embodiments of the present invention, and technical solution in the embodiment of the present invention carries out clear, complete Site preparation description, it is clear that described embodiments are only a part of the embodiments of the present invention, instead of all the embodiments.It is based on Embodiment in the present invention, it is obtained by those of ordinary skill in the art without making creative efforts every other Embodiment shall fall within the protection scope of the present invention.
Single sign-on authentication can not be carried out under the scene of NAT in order to solve terminal, and then causes terminal that can not access WEB The problem of server, the embodiment of the present invention provide a kind of authentication method based on single-sign-on, as shown in Figure 1, this method comprises:
101, the certification request that terminal is sent is received, carries IP address to be visited in certification request.
Firstly, it is necessary to which it can be to be integrated in WEB container with processing that is illustrated, which is the executing subject of the embodiment of the present invention, The filter proxy container of function, or different steps can be executed by the different functional modules in WEB container.
It should be noted that the address to be visited carried in certification request is private IP address, when terminal is privately owned using this When IP address accesses network, which can be converted to public ip address by router.
102, the certification request type of certification request is determined according to IP address to be visited.
Wherein, a public ip address corresponds to multiple private IP address, and each private IP address corresponds to a kind of certification request Type, for example, private IP address 1, private IP address 2, private IP address 3 can be converted to the same public ip address, and private There are IP address 1, private IP address 2, private IP address 3 to respectively correspond a kind of certification request type, each type of certification request By the corresponding filter logic link manager processing of respective type.
103, the corresponding filter logic chain manager of certification request type is judged whether there is.
If it exists, 104 are thened follow the steps, if it does not exist, thens follow the steps 105.
104, the corresponding filter logic chain manager processes certification request of certification request type is called.
105, the corresponding filter logic chain manager of creation certification request type and certification request type corresponding three Square library filter group.
It should be noted that if there is no the corresponding filter logic chain manager of certification request type, then WEB container In there is currently no the filter that can handle the certification request, in order to avoid there is the case where can not authenticating, need to create and recognize The three-party library filtering that the card corresponding filter logic chain manager of request type and the filter logic chain manager are managed Device group.
In an implementation of the embodiment of the present invention, three-party library filter group may include end check filter, Stub checks that filter, certification user obtain filter.
Detection filter is exited, for realizing single-sign-on exit function, realizes exit function for system;
Authentication check filter, for checking whether active user logs in after user's input address, if not logged in It needs to jump CAS certificate server and carries out the certification of user name Password Input;
Stub checks filter, is used for after system is by a upper authentication check filter, if authenticated successfully, CAS Certificate server can carry stub and jump back to the system, which is to check that current stub whether there is, if effectively, in vain It can prompt mistake.
User's acquisition filter is authenticated, for after the completion of certification, reading the user information that user logs in, CAS is by being somebody's turn to do Filter is completed.
106, the corresponding filter logic chain manager processes certification request of certification request type is called.
It is understood that filter logic chain manager can call each filter in three-party library filter group Function handles certification request.
The method for calling the corresponding filter logic chain manager processes certification request of certification request type is carried out below Illustrate, filter logic chain manager need to call tripartite's filter group, jump to Verification System according to Verification System address, then User can be prompted to input log-on message, such as username and password in the display interface of Verification System, then Verification System pair The log-on message received is verified, if be proved to be successful, by authentication information storage into Verification System, and regeneration certification The corresponding ticket of information and the cookie for establishing session, Verification System jumps again understands WEB application system, in jump address The parameter of ticket is carried, at this time terminal access WEB server, filter logic chain manager reads authentication information to complete Certification.
The certification request that authentication method provided in an embodiment of the present invention based on single-sign-on, first reception terminal are sent, Then the certification request type of certification request is determined according to the IP address to be visited in certification request, and then judges whether there is this The corresponding filter logic chain manager of certification request type, if it is present calling directly the corresponding mistake of certification request type Filter logic chain manager processes certification request, if it does not exist, then creating the corresponding filter logic of certification request type Chain manager and three-party library filter group, and then the filter logic chain manager processes certification request of creation is called, with Lead to not the problem of accessing WEB server since single sign-on authentication can not be carried out in the prior art and compare, the present invention is real It applies in example, when filter logic chain manager corresponding if there is no certification request type, just will create the certification request class The corresponding filter logic chain manager of type and three-party library filter group, and then can be by the filter logic chain management that creates Device handles certification request, is equivalent to even if carrying private IP address in certification request, if not for locating in WEB container The filter logic chain manager for managing the private IP address can also create the corresponding filter logic chain pipe of the private IP address Device is managed, is not in the case where can not handling certification request, so the embodiment of the present invention, which can handle, carries private IP address Certification request is not in due to the case where can not handling certification request and causing terminal that can not access WEB server.
In another implementation provided in an embodiment of the present invention, to creation filter logic chain manager and three-party library The method of filter is illustrated, as shown in Fig. 2, above-mentioned steps 105, the corresponding filter logic of creation certification request type Chain manager and the corresponding three-party library filter group of the certification request type, specifically can be implemented as step 1051 to step 1053。
1051, the corresponding filter logic chain manager of creation certification request type.
It should be noted that each filter logic chain manager is used to handle a type of certification request, and each One group of three-party library filter of filter logic chain manager administration.
1052, the configuration parameter of the corresponding three-party library filter group of certification request type is generated according to IP address to be visited.
Wherein, configuration parameter includes: Verification System address, WEB application address, authentication information storage address.
Wherein, Verification System address is the address of the Verification System for being authenticated to the certification request.
WEB application address is the address of WEB application system corresponding to IP address to be visited.
Authentication information storage address is for the storage region of authentication storage information or the address of system.
1053, the corresponding three-party library filter group of certification request type is created according to configuration parameter.
It is understood that being and the certification request type since configuration parameter is generated according to IP address to be visited The matched configuration parameter of institute, so can be used for handling the certification of the type according to tripartite's filter group that the configuration parameter generates Request.
It should be noted that in order to subsequently received same type certification request when, the filter can be called directly Logic chain manager handles certification request, after creating the corresponding filter logic chain manager of the certification request, also needs Corresponding relationship between authentication storage request type and filter logic chain manager.
For the embodiment of the present invention, when filter logic chain manager corresponding with certification request type is not present, just The corresponding filter logic chain manager of the certification request type and three-party library filter are created, avoiding certification request can not Processed situation occurs, and creation filter logic link manager every time, can all store newly-built filter logic chain pipe The corresponding relationship for managing device and certification request type, when receiving the certification request of same type next time, so that it may it calls directly, Without re-creating filter logic chain manager, the treatment effeciency of certification request is improved.
Corresponding to above method embodiment, the embodiment of the present invention also provides a kind of authentication device based on single-sign-on, such as Shown in Fig. 3, which includes: receiving unit 301, determination unit 302, judging unit 303, processing unit 304, creating unit 305。
Receiving unit 301 carries IP address to be visited in certification request for receiving the certification request of terminal transmission;
Determination unit 302, for determining certification according to the IP address to be visited in the received certification request of receiving unit 301 The certification request type of request;
Judging unit 303, the corresponding filter of certification request type determined for judging whether there is determination unit 302 Logic chain manager;
Processing unit 304 in the presence of being for the judging result when judging unit 303, calls certification request type corresponding Filter logic chain manager processes certification request;
Creating unit 305 in the absence of being for the judging result when judging unit 303, creates certification request type pair The corresponding three-party library filter group of filter logic chain manager and certification request type answered;
Processing unit 304, the corresponding filter logic chain of certification request type for being also used to that creating unit 305 is called to create Manager processes certification request.
In another implementation provided in an embodiment of the present invention, creating unit 305 is also used to create certification request class The corresponding filter logic chain manager of type;The corresponding three-party library filter of certification request type is generated according to IP address to be visited The configuration parameter of group;The corresponding three-party library filter group of certification request type is created according to configuration parameter.
Wherein, configuration parameter includes at least: Verification System address, WEB application address, authentication information storage address.
In another implementation provided in an embodiment of the present invention, as shown in figure 4, the device further include: storage unit 306。
Storage unit 306, for the corresponding relationship between authentication storage request type and filter logic chain manager.
In another implementation provided in an embodiment of the present invention, processing unit 304 is also used to through request type pair The filter logic chain manager answered calls three-party library filter group to jump to the corresponding Verification System in Verification System address;? The log-on message of user's input is received in Verification System;The log-on message of user's input is verified;It, will if being proved to be successful Authentication information is stored into authentication information storage address;The corresponding WEB application system in WEB application address is jumped to, and is answered to WEB Authentication information is sent with system;Authentication information is read from authentication information storage address, is verified by the authentication information read The validity of the authentication information received from Verification System;If being proved to be successful, certification request success response is sent to terminal.
Authentication device provided in an embodiment of the present invention based on single-sign-on, first receiving unit receive recognizing for terminal transmission Card request, then determination unit determines the certification request type of certification request according to the IP address to be visited in certification request, into And judging unit judges whether there is the corresponding filter logic chain manager of the certification request type, if it does, processing is single It is first then call directly the corresponding filter logic chain manager processes certification request of certification request type, if it does not exist, then wound It builds unit and creates the corresponding filter logic chain manager of the certification request type and three-party library filter group, and then handle single Filter logic chain manager processes certification request of metacall creation, and in the prior art since single-sign-on can not be carried out It authenticates and leads to not compare the problem of accessing WEB server, in the embodiment of the present invention, if there is no certification request type pair When the filter logic chain manager answered, it just will create the corresponding filter logic chain manager of the certification request type and three Square library filter group, and then certification request can be handled by the filter logic chain manager created, it is equivalent to even if certification Private IP address is carried in request, if not for handling the filter logic chain pipe of the private IP address in WEB container Device is managed, the corresponding filter logic chain manager of the private IP address can also be created, be not in that can not handle certification request The case where, so the embodiment of the present invention can handle the certification request for carrying private IP address, it is not in due to that can not handle Certification request and the case where cause terminal that can not access WEB server.
Through the above description of the embodiments, it is apparent to those skilled in the art that the present invention can borrow Help software that the mode of required common hardware is added to realize, naturally it is also possible to which the former is more preferably by hardware, but in many cases Embodiment.Based on this understanding, the portion that technical solution of the present invention substantially in other words contributes to the prior art Dividing can be embodied in the form of software products, which stores in a readable storage medium, such as count The floppy disk of calculation machine, hard disk or CD etc., including some instructions are used so that computer equipment (it can be personal computer, Server or the network equipment etc.) execute method described in each embodiment of the present invention.
The above description is merely a specific embodiment, but scope of protection of the present invention is not limited thereto, any Those familiar with the art in the technical scope disclosed by the present invention, can easily think of the change or the replacement, and should all contain Lid is within protection scope of the present invention.Therefore, protection scope of the present invention should be based on the protection scope of the described claims.

Claims (10)

1. a kind of authentication method based on single-sign-on characterized by comprising
The certification request that terminal is sent is received, carries IP address to be visited in certification request;
The certification request type of certification request is determined according to IP address to be visited;
Judge whether there is the corresponding filter logic chain manager of the certification request type;
If it exists, then the corresponding filter logic chain manager processes certification request of the certification request type is called;
If it does not exist, then the corresponding filter logic chain manager of the certification request type and the certification request class are created The corresponding three-party library filter group of type;
Call the corresponding filter logic chain manager processes certification request of the certification request type.
2. the authentication method according to claim 1 based on single-sign-on, which is characterized in that create the certification request class The corresponding filter logic chain manager of type and the corresponding three-party library filter group of the certification request type, comprising:
Create the corresponding filter logic chain manager of the certification request type;
The configuration parameter of the corresponding three-party library filter group of the certification request type is generated according to IP address to be visited;
The corresponding three-party library filter group of the certification request type is created according to the configuration parameter.
3. the authentication method according to claim 1 or 2 based on single-sign-on, which is characterized in that creating the certification After the corresponding filter logic chain manager of request type and the corresponding three-party library filter group of the certification request type, The method also includes:
Store the corresponding relationship between the certification request type and the filter logic chain manager.
4. the authentication method according to claim 3 based on single-sign-on, which is characterized in that configuration parameter includes at least: Verification System address, WEB application address, authentication information storage address.
5. the authentication method according to claim 4 based on single-sign-on, which is characterized in that call the certification request class The corresponding filter logic chain manager processes certification request of type, comprising:
By the corresponding filter logic chain manager of the request type, three-party library filter group is called to jump to Verification System The corresponding Verification System in address;
The log-on message of user's input is received in Verification System;
The log-on message of user's input is verified;
If being proved to be successful, by authentication information storage into authentication information storage address;
The corresponding WEB application system in WEB application address is jumped to, and sends authentication information to WEB application system;
Authentication information is read from authentication information storage address, is verified by the authentication information read and is received from Verification System The validity of the authentication information arrived;
If being proved to be successful, certification request success response is sent to terminal.
6. a kind of authentication device based on single-sign-on characterized by comprising
Receiving unit carries IP address to be visited in certification request for receiving the certification request of terminal transmission;
Determination unit, for determining certification request according to the IP address to be visited in the received certification request of the receiving unit Certification request type;
Judging unit is patrolled for judging whether there is the corresponding filter of the certification request type that the determination unit determines Collect chain manager;
Processing unit calls the certification request type corresponding in the presence of being for the judging result when the judging unit Filter logic chain manager processes certification request;
In the absence of being for the judging result when the judging unit, it is corresponding to create the certification request type for creating unit Filter logic chain manager and the corresponding three-party library filter group of the certification request type;
The processing unit is also used to call the corresponding filter logic of the certification request type of the creating unit creation Chain manager processes certification request.
7. the authentication device according to claim 6 based on single-sign-on, which is characterized in that
The creating unit is also used to create the corresponding filter logic chain manager of the certification request type;According to wait visit Ask that IP address generates the configuration parameter of the corresponding three-party library filter group of the certification request type;It is created according to the configuration parameter Build the corresponding three-party library filter group of the certification request type.
8. the authentication device according to claim 6 or 7 based on single-sign-on, which is characterized in that described device further include:
Storage unit, for storing the corresponding relationship between the certification request type and the filter logic chain manager.
9. the authentication device according to claim 8 based on single-sign-on, which is characterized in that configuration parameter includes at least: Verification System address, WEB application address, authentication information storage address.
10. the authentication device according to claim 9 based on single-sign-on, which is characterized in that the processing unit is also used In by the corresponding filter logic chain manager of the request type, three-party library filter group is called with jumping to Verification System The corresponding Verification System in location;The log-on message of user's input is received in Verification System;The log-on message of user's input is carried out Verifying;If being proved to be successful, by authentication information storage into authentication information storage address;It is corresponding to jump to WEB application address WEB application system, and authentication information is sent to WEB application system;Authentication information is read from authentication information storage address, is passed through The validity for the authentication information that the authentication information verifying read is received from Verification System;If being proved to be successful, to terminal Send certification request success response.
CN201611053404.2A 2016-11-24 2016-11-24 A kind of authentication method and device based on single-sign-on Active CN106506520B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201611053404.2A CN106506520B (en) 2016-11-24 2016-11-24 A kind of authentication method and device based on single-sign-on

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201611053404.2A CN106506520B (en) 2016-11-24 2016-11-24 A kind of authentication method and device based on single-sign-on

Publications (2)

Publication Number Publication Date
CN106506520A CN106506520A (en) 2017-03-15
CN106506520B true CN106506520B (en) 2019-09-20

Family

ID=58328503

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201611053404.2A Active CN106506520B (en) 2016-11-24 2016-11-24 A kind of authentication method and device based on single-sign-on

Country Status (1)

Country Link
CN (1) CN106506520B (en)

Families Citing this family (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN110032842B (en) * 2019-03-03 2020-11-13 北京立思辰安科技术有限公司 Method and system for simultaneously supporting single sign-on and third party sign-on

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102215486A (en) * 2010-04-02 2011-10-12 华为终端有限公司 Network access method, system, network authentication method, equipment and terminal
CN102752216A (en) * 2012-07-13 2012-10-24 中国科学院计算技术研究所 Method for identifying dynamic characteristic application flow
CN104202444A (en) * 2014-09-26 2014-12-10 上海斐讯数据通信技术有限公司 External access control method, gateway and DNS server
CN104254073A (en) * 2014-09-03 2014-12-31 深信服网络科技(深圳)有限公司 Method and device for authentication of access terminal
CN106060006A (en) * 2016-05-09 2016-10-26 杭州华三通信技术有限公司 Access method and device

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102215486A (en) * 2010-04-02 2011-10-12 华为终端有限公司 Network access method, system, network authentication method, equipment and terminal
CN102752216A (en) * 2012-07-13 2012-10-24 中国科学院计算技术研究所 Method for identifying dynamic characteristic application flow
CN104254073A (en) * 2014-09-03 2014-12-31 深信服网络科技(深圳)有限公司 Method and device for authentication of access terminal
CN104202444A (en) * 2014-09-26 2014-12-10 上海斐讯数据通信技术有限公司 External access control method, gateway and DNS server
CN106060006A (en) * 2016-05-09 2016-10-26 杭州华三通信技术有限公司 Access method and device

Also Published As

Publication number Publication date
CN106506520A (en) 2017-03-15

Similar Documents

Publication Publication Date Title
US11544356B2 (en) Systems and methods for dynamic flexible authentication in a cloud service
US8856892B2 (en) Interactive authentication
CN109815656A (en) Login authentication method, device, equipment and computer readable storage medium
CN104734849B (en) The method and system that third-party application is authenticated
US9781096B2 (en) System and method for out-of-band application authentication
CN112800411B (en) Multi-protocol and multi-mode supporting safe and reliable identity authentication method and device
CN112468481B (en) Single-page and multi-page web application identity integrated authentication method based on CAS
CN107124431A (en) Method for authenticating, device, computer-readable recording medium and right discriminating system
CN106331003B (en) The access method and device of application door system on a kind of cloud desktop
US20170034164A1 (en) Multifactor authentication for mail server access
CN105162775A (en) Logging method and device of virtual machine
CN106254328B (en) A kind of access control method and device
CN110069909A (en) It is a kind of to exempt from the close method and device for logging in third party system
US20200267146A1 (en) Network analytics for network security enforcement
CN106161475A (en) The implementation method of subscription authentication and device
CN103379093B (en) A kind of method and device for realizing account intercommunication
CN105704154B (en) A kind of service processing method based on RESTful, apparatus and system
CN111726328A (en) Method, system and related device for remotely accessing a first device
CN106506520B (en) A kind of authentication method and device based on single-sign-on
CN109905402B (en) SSO login method and device based on SSL VPN
CN111090881A (en) Database access method and device
CN109861982A (en) A kind of implementation method and device of authentication
CN113472545B (en) Equipment network access method, device, equipment, storage medium and communication system
CN111385313B (en) Method and system for verifying object request validity
CN105991631B (en) A kind of client device access authentication method and device

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant
CP02 Change in the address of a patent holder

Address after: 610041 15-24 floor, 1 1 Tianfu street, Chengdu high tech Zone, Sichuan

Patentee after: MAIPU COMMUNICATION TECHNOLOGY Co.,Ltd.

Address before: No.16 Jiuxing Avenue, high tech Development Zone, Chengdu, Sichuan 610041

Patentee before: MAIPU COMMUNICATION TECHNOLOGY Co.,Ltd.

CP02 Change in the address of a patent holder
CP02 Change in the address of a patent holder

Address after: 610041 nine Xing Xing Road 16, hi tech Zone, Sichuan, Chengdu

Patentee after: MAIPU COMMUNICATION TECHNOLOGY Co.,Ltd.

Address before: 610041 15-24 floor, 1 1 Tianfu street, Chengdu high tech Zone, Sichuan

Patentee before: MAIPU COMMUNICATION TECHNOLOGY Co.,Ltd.

CP02 Change in the address of a patent holder