CN109067762B - Identification method, device and equipment of Internet of things equipment - Google Patents

Identification method, device and equipment of Internet of things equipment Download PDF

Info

Publication number
CN109067762B
CN109067762B CN201810994083.9A CN201810994083A CN109067762B CN 109067762 B CN109067762 B CN 109067762B CN 201810994083 A CN201810994083 A CN 201810994083A CN 109067762 B CN109067762 B CN 109067762B
Authority
CN
China
Prior art keywords
internet
network
equipment
things
target terminal
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201810994083.9A
Other languages
Chinese (zh)
Other versions
CN109067762A (en
Inventor
王永强
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Sangfor Technologies Co Ltd
Original Assignee
Sangfor Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Sangfor Technologies Co Ltd filed Critical Sangfor Technologies Co Ltd
Priority to CN201810994083.9A priority Critical patent/CN109067762B/en
Publication of CN109067762A publication Critical patent/CN109067762A/en
Application granted granted Critical
Publication of CN109067762B publication Critical patent/CN109067762B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources
    • H04L63/101Access control lists [ACL]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/01Protocols
    • H04L67/12Protocols specially adapted for proprietary or special-purpose networking environments, e.g. medical networks, sensor networks, networks in vehicles or remote metering networks

Landscapes

  • Engineering & Computer Science (AREA)
  • Computing Systems (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Hardware Design (AREA)
  • Computer Security & Cryptography (AREA)
  • General Engineering & Computer Science (AREA)
  • Health & Medical Sciences (AREA)
  • General Health & Medical Sciences (AREA)
  • Medical Informatics (AREA)
  • Computer And Data Communications (AREA)
  • Mobile Radio Communication Systems (AREA)

Abstract

The application discloses an identification method of Internet of things equipment, which comprises the following steps: acquiring a network access request record of target terminal equipment; acquiring a uniform resource locator of a network resource which is requested to be accessed by target terminal equipment according to the network access request record; calling a preset first network resource database, wherein uniform resource locators of all known network resources of the Internet of things equipment are stored in the first network resource database; judging whether uniform resource locators of network resources requested to be accessed by the target terminal equipment are successfully matched in the first network resource database; and if so, judging that the target terminal equipment is the Internet of things equipment. According to the method and the system, the Internet of things equipment can be effectively identified according to all network resources which can be accessed by the Internet of things equipment, so that the problem of safe Internet access of the Internet of things equipment and intelligent equipment is solved at the same time. The application also discloses an identification device, equipment and a computer readable storage medium of the Internet of things equipment, and the beneficial effects are also achieved.

Description

Identification method, device and equipment of Internet of things equipment
Technical Field
The present application relates to the field of network technologies, and in particular, to a method, an apparatus, a device, and a computer-readable storage medium for identifying an internet of things device.
Background
Internet Of Things (IOT) is a technology for enabling a plurality Of independently addressable common physical objects, i.e., Internet Of Things devices, to achieve interconnection and intercommunication in a network based on information carriers such as the Internet and a traditional telecommunication network.
The internet of things equipment is various in types, and any physical object loaded with information sensing equipment such as radio frequency identification, infrared sensors and laser scanners can be accessed to a network to become the internet of things equipment, such as lighting lamps and water heaters, so that the internet of things technology is specifically applied to the fields of safe home, intelligent fire fighting, environment monitoring, building lighting management and control, water system monitoring and the like.
Generally, many enterprises and public institutions employ an Access Controller (Access Controller) to manage the internet Access behavior of a terminal device connected to a network to ensure network security, i.e. perform Access Control (AC). Before the birth of the internet of things technology, the terminal device mainly aims at only intelligent devices with strong interactivity and functionality, such as a mobile phone, a computer and the like, so for the purpose of network security protection, before the intelligent device is allowed to access network resources, a general access controller requires that the intelligent device must pass internet authentication, and for the terminal device which fails in internet authentication or does not perform internet authentication, the access controller performs internet interception. In addition, since the internet of things device is a simple physical device that does not support the internet access authentication function, AC products such as an access controller in the prior art generally intercept the internet access behavior of the internet of things device, which affects the normal use of the internet of things device.
Therefore, what kind of identification method of the internet of things device is adopted to respectively perform targeted response on the network access requests of the internet of things device and the intelligent device, and meanwhile, the problem of safe internet access of the internet of things device and the intelligent device is effectively solved, which is a technical problem to be urgently solved by technical staff in the field.
Disclosure of Invention
The application aims to provide an identification method, an identification device, equipment and a computer-readable storage medium for equipment of the Internet of things, so that network access requests of the equipment of the Internet of things and intelligent equipment can be responded in a targeted manner, and meanwhile, the problem of safe internet surfing of the equipment of the Internet of things and the intelligent equipment can be effectively solved.
In order to solve the technical problem, the application provides an identification method for internet of things equipment, which includes:
acquiring a network access request record of target terminal equipment;
acquiring a uniform resource locator of the network resource which the target terminal equipment requests to access according to the network access request record;
calling a preset first network resource database, wherein uniform resource locators of all known network resources of the Internet of things equipment are stored in the first network resource database; judging whether uniform resource locators of network resources requested to be accessed by the target terminal equipment are successfully matched in the first network resource database;
and if so, judging that the target terminal equipment is the Internet of things equipment.
Optionally, after the determining whether all the uniform resource locators of the network resources requested to be accessed by the target terminal device are successfully matched in the first network resource database, the method further includes:
if not, calling a preset second network resource database, wherein uniform resource locators of all known network resources of the intelligent equipment are stored in the second network resource database;
judging whether the uniform resource locators which are failed to be matched in the first network resource database are successfully matched in the second network resource database;
and if the matching is successful in the second network resource database, judging that the target terminal equipment is intelligent equipment.
Optionally, after the determining whether all the uniform resource locators that have failed to be matched in the first network resource database are successfully matched in the second network resource database, the method further includes:
if not, the target terminal device is judged to be the Internet of things device of unknown type.
Optionally, the obtaining the network access request record of the target terminal device includes:
and periodically acquiring a network access request record of the target terminal equipment in a preset time period.
Optionally, after obtaining the uniform resource locator of the network resource requested to be accessed by the target terminal device according to the network access request record and before invoking a preset first network resource database, the method further includes:
judging whether the total number of uniform resource locators of the network resources requested to be accessed by the target terminal equipment is smaller than a preset threshold value or not;
if yes, continuing to execute the step of calling the preset first network resource database;
if not, the target terminal device is judged to be the intelligent device.
Optionally, after the determining that the target terminal device is an internet of things device, the method further includes:
storing the equipment information of the target terminal equipment which is judged as the equipment of the Internet of things into an identification information database;
after receiving a network access request sent by terminal equipment, matching and searching the terminal equipment in the identification information database;
if the search is successful, the terminal equipment is judged to be the Internet of things equipment, and a permission response is made to the network access request.
Optionally, after the matching and searching are performed on the terminal device in the identification information database, the method further includes:
if the search fails, the terminal equipment is judged to be intelligent equipment, and an internet access authentication process is called so as to make a permission response to the network access request after the internet access authentication of the terminal equipment is successful, or make a prohibition response to the network access request after the internet access authentication of the terminal equipment fails.
The application also provides an identification device of internet of things equipment, including:
an acquisition module: the network access request record is used for acquiring the network access request record of the target terminal equipment;
an extraction module: the uniform resource locator is used for acquiring the network resource which is requested to be accessed by the target terminal equipment according to the network access request record;
a judging module: the system comprises a first network resource database, a second network resource database and a server, wherein the first network resource database is used for calling a preset first network resource database, and uniform resource locators of all known network resources of the Internet of things equipment are stored in the first network resource database; judging whether uniform resource locators of network resources requested to be accessed by the target terminal equipment are successfully matched in the first network resource database; and if so, judging that the target terminal equipment is the Internet of things equipment.
Optionally, the method further comprises:
a storage module: the device information of the target terminal device judged as the Internet of things device by the judging module is stored in an identification information database;
a response module: the system comprises an identification information database, a network access request database and a terminal device, wherein the identification information database is used for storing identification information of the terminal device; if the search is successful, the terminal equipment is judged to be the Internet of things equipment, and a permission response is made to the network access request.
The application also provides an identification equipment of thing networking device, includes:
a memory: for storing a computer program;
a processor: for executing the computer program to implement the steps of any of the internet of things device identification methods introduced above.
The present application also provides a computer-readable storage medium, in which a computer program is stored, and the computer program is used for implementing the steps of any method for identifying an internet of things device as described above when being executed by a processor.
The identification method of the Internet of things equipment comprises the following steps: acquiring a network access request record of target terminal equipment; acquiring a uniform resource locator of the network resource which the target terminal equipment requests to access according to the network access request record; calling a preset first network resource database, wherein uniform resource locators of all known network resources of the Internet of things equipment are stored in the first network resource database; judging whether uniform resource locators of network resources requested to be accessed by the target terminal equipment are successfully matched in the first network resource database; and if so, judging that the target terminal equipment is the Internet of things equipment.
Therefore, compared with the prior art, the method for identifying the internet of things equipment provided by the application establishes the first network resource database according to all network resources which may be accessed by the internet of things equipment, and performs matching query on the network resources which are historically accessed by the target terminal equipment by using the first network resource database, so that the internet of things equipment which only accesses the network resources in the first network resource database can be effectively identified. By the identification method, the Internet of things equipment and the intelligent equipment can be effectively distinguished, so that the Internet of things equipment can be conveniently subjected to authentication-free Internet surfing and the intelligent equipment can be conveniently subjected to authentication Internet surfing, and meanwhile, the problem of safe Internet surfing of the Internet of things equipment and the intelligent equipment is solved. The identification device, the equipment and the computer-readable storage medium of the Internet of things equipment can realize the identification method of the Internet of things equipment, and also have the beneficial effects.
Drawings
In order to more clearly illustrate the technical solutions in the prior art and the embodiments of the present application, the drawings that are needed to be used in the description of the prior art and the embodiments of the present application will be briefly described below. Of course, the following description of the drawings related to the embodiments of the present application is only a part of the embodiments of the present application, and it will be obvious to those skilled in the art that other drawings can be obtained from the provided drawings without any creative effort, and the obtained other drawings also belong to the protection scope of the present application.
Fig. 1 is a flowchart of an identification method for an internet of things device provided in the present application;
fig. 2 is a block diagram of a structure of an identification apparatus of an internet of things device provided in the present application.
Detailed Description
The core of the application is to provide an identification method, an identification device, equipment and a computer-readable storage medium for the equipment of the internet of things, so as to respectively perform targeted response on network access requests of the equipment of the internet of things and intelligent equipment, and simultaneously effectively solve the problem of safe internet access of the equipment of the internet of things and the intelligent equipment.
In order to more clearly and completely describe the technical solutions in the embodiments of the present application, the technical solutions in the embodiments of the present application will be described below with reference to the drawings in the embodiments of the present application. It is to be understood that the embodiments described are only a few embodiments of the present application and not all embodiments. All other embodiments, which can be derived by a person skilled in the art from the embodiments given herein without making any creative effort, shall fall within the protection scope of the present application.
Referring to fig. 1, fig. 1 is a flowchart of an identification method for an internet of things device provided in the present application, and mainly includes the following steps:
step 11: and acquiring a network access request record of the target terminal equipment.
Step 12: and acquiring the uniform resource locator of the network resource which the target terminal equipment requests to access according to the network access request record.
Specifically, the identification method of the internet of things device provided by the application is mainly applied to an access controller for managing and controlling network connection. For an access controller, any terminal device, when performing networking, first sends a network access request to the access controller, and generally, the network access request carries specific information of a network resource that the terminal device wants to access, so that the access controller establishes a network connection for the terminal device and the network resource after granting the network access request of the terminal device.
The access controller is a network device responsible for managing wireless access points in a wireless network in a certain area, and the access controller mainly has the functions of: and issuing configuration, radio frequency intelligent management, access control and the like to different wireless access points. Access control is a security function that prevents or controls user communications and interactions, i.e., manages access to computers, networks, Web servers, additional networks, and various other devices.
The access controller may learn which network resources are specifically accessed by any one target terminal device by invoking the network access request record for that target terminal device. The target terminal device is a terminal device that needs to identify the internet of things device, and it is easy to understand that each terminal device has corresponding unique identification information, such as a MAC address, an IP address, and the like, and the access controller can store respective network access request records for different terminal devices according to the unique identification information, so as to directly call the network access request records of the target terminal device when identifying the target terminal device.
According to the network access request record of the target terminal device, which network resources the target terminal device has historically accessed can be obtained. Specifically, in network technology, network resources are specifically represented and identified by Uniform Resource Locators (URLs), that is, each network resource has a unique uniform resource Locator that is different from other network resources. The internet of things equipment is identified through different characteristics of network resources accessed by the internet of things equipment and the intelligent terminal equipment.
Specifically, because the internet of things devices are only some non-intelligent devices added with information sensing devices, such as household energy saving lamps, air conditioners and the like, and the purpose of networking is only to realize transmission of working state data and instruction information from a control end in a network, the types of network resources accessed by each internet of things device are fixed and very limited, and even a certain dedicated website may be used. On the contrary, since the smart devices such as mobile phones and computers have various networking applications including social, game, video, information, etc., basically each smart device has access to a plurality of network resources, and the network resources accessed by the smart devices are different from the network resources accessed by the internet of things devices, the network resources accessed by the smart devices are basically common to the public rather than a dedicated network resource.
Step 13: calling a preset first network resource database, wherein uniform resource locators of all known network resources of the Internet of things equipment are stored in the first network resource database; judging whether uniform resource locators of network resources requested to be accessed by the target terminal equipment are successfully matched in the first network resource database; if yes, go to step 14.
Step 14: and judging that the target terminal equipment is the Internet of things equipment.
Specifically, the method for analyzing the network resources accessed by the target terminal device is used for judging whether the target terminal device is the internet of things device. As mentioned above, the network resources accessed by the internet of things devices are all fixed and limited, so that a library, i.e. the first network resource database, can be established in advance for all the network resources that may be accessed by various types of internet of things devices, and of course, what is stored in the library is the uniform resource locator of the network resources that the internet of things devices will access.
When judging whether the target terminal equipment is the equipment of the Internet of things, detecting whether the network resources accessed by the target terminal equipment appear in a first network resource database; if all the network resources are network resources in the first network resource database, the target terminal device can be determined to be the internet of things device.
Therefore, according to the identification method of the internet of things equipment, the first network resource database is established according to all network resources which may be accessed by the internet of things equipment, and the first network resource database is used for carrying out matching query on the network resources which are historically accessed by the target terminal equipment, so that the internet of things equipment which only accesses the network resources in the first network resource database can be effectively identified. By the identification method, the Internet of things equipment and the intelligent equipment can be effectively distinguished, so that the Internet of things equipment can be conveniently subjected to authentication-free Internet surfing and the intelligent equipment can be conveniently subjected to authentication Internet surfing, and meanwhile, the problem of safe Internet surfing of the Internet of things equipment and the intelligent equipment is solved.
The identification method of the internet of things equipment provided by the application is based on the embodiment:
as a preferred embodiment, after determining whether the uniform resource locators of the network resources requested to be accessed by the target terminal device are successfully matched in the first network resource database, the method further includes:
if not, calling a preset second network resource database, wherein the second network resource database stores all uniform resource locators of known network resources of the intelligent equipment;
judging whether the uniform resource locators which are failed to be matched in the first network resource database are successfully matched in the second network resource database;
and if the matching is successful in the second network resource database, the target terminal equipment is judged to be intelligent equipment.
Specifically, a second network resource database can be further established to store the uniform resource locators of all the network resources that may be accessed by various intelligent devices. When the network resources which are historically requested to be accessed by the target terminal device are not in the first network resource database, whether the network resources belong to the second network resource database or not can be further judged, and if yes, the target terminal device can be judged to be the intelligent device.
As a preferred embodiment, after the determining whether all the uniform resource locators that failed to be matched in the first network resource database are successfully matched in the second network resource database, the method further includes:
if not, the target terminal device is judged to be the Internet of things device of unknown type.
Specifically, it is easily understood that the establishment of the first network resource database is realized on the basis of the knowledge of the known internet of things devices, and in practical application, with the continuous access of new types of internet of things devices, more new network resources dedicated to a certain internet of things device or a certain type of internet of things devices appear. Therefore, the network resources accessed by these newly-appeared internet-of-things devices will not match the currently-established first network resource database and second network resource database. Therefore, the target terminal equipment with the accessed network resources not belonging to the first network resource database or the second network resource database can be judged as newly-appeared unknown-type Internet of things equipment, and the Internet of things equipment is classified into the Internet of things equipment.
As a preferred embodiment, the obtaining the network access request record of the target terminal device includes:
and periodically acquiring a network access request record of the target terminal equipment in a preset time period.
In particular, it is readily understood that the network access request record necessarily corresponds to a certain statistical time. Specifically, the access controller may regularly and periodically call the network access request record of the target terminal device, and the interval between two adjacent calls, i.e. the preset time period, may be selected and set by a person skilled in the art. For example, in general, 24 hours can be set, because too frequent calls on the one hand are not necessary and on the other hand can increase the workload of the system, which affects the efficiency of normal business.
It is easy to understand that each time the target terminal device is judged and identified, the previous identification result is actually updated, so as to prevent the data only in a certain time period from being generalized. In fact, in practical application, an alternate replacement of some terminal devices is not required, for example, a certain internet of things device may exit the system network after being used for a period of time and is not used any more, so that the update work is very important, and the similar discarded and unused related data of the internet of things device can be deleted every time after being identified.
As a preferred embodiment, after the obtaining the uniform resource locator of the network resource requested to be accessed by the target terminal device according to the network access request record and before the invoking a preset first network resource database, the method further includes:
judging whether the total number of uniform resource locators of the network resources requested to be accessed by the target terminal equipment is smaller than a preset threshold value or not;
if yes, continuing to execute the step of calling the preset first network resource database;
if not, the target terminal device is judged to be the intelligent device.
Specifically, as described above, the network resources generally accessed by the internet of things device are relatively limited, while the intelligent devices generally access multiple types of network resources, so that the two types of network resources can be simply distinguished only from the types and the number of the accessed network resources.
Specifically, before the first network resource database is used for matching detection with the network resource accessed by the target terminal device, the method may further screen the number of the network resource accessed by the target terminal device: if the number of the types of the network resources accessed by the target terminal device, namely the total number of the uniform resource locators is smaller than a preset threshold value, it is indicated that the types of the network resources accessed by the target terminal device are less, and the network resources are suspected to be internet of things devices, so that the first network resource database can be continuously utilized for identification; if the total number of the uniform resource locators is not smaller than the preset threshold value, it is indicated that the types of the network resources accessed by the target terminal device are more, and the target terminal device can be regarded as an intelligent device. From this, can get rid of the smart machine of certain quantity through carrying out quantity prescreening in advance, effectively improve recognition efficiency.
As a preferred embodiment, after determining that the target terminal device is an internet of things device, the method further includes:
storing the equipment information of the target terminal equipment which is judged as the equipment of the Internet of things into an identification information database;
after receiving a network access request sent by the terminal equipment, matching and searching the terminal equipment in an identification information database;
if the search is successful, the terminal equipment is judged to be the Internet of things equipment, and a permission response is made to the network access request.
The identification information database stores all the equipment information of the terminal equipment identified as the equipment of the internet of things, and all the terminal equipment appearing in the identification information database is the equipment of the internet of things. The device information may be unique identification information such as a device ID number, and may be selected and set by a person skilled in the art according to an actual use situation.
Specifically, since the identification process of the internet of things device is relatively time-consuming, and if the identification process is performed too frequently, the normal operation performance of the system may be affected, as described above, each terminal device in the communication network may be periodically and sequentially identified as a target terminal device, and the identification result may be stored in the identification information database. For example, the identification may be performed every 24 hours. Therefore, after a network request sent by a certain terminal device is received, the identification result of the terminal device in the identification information database can be directly called to distinguish whether the terminal device is an internet of things device or an intelligent device, and then the terminal device is distinguished according to the identification result, namely the intelligent device is required to establish network connection for the terminal device after internet authentication is passed, and the internet of things device is directly established for the terminal device without internet authentication.
As a preferred embodiment, after performing a matching lookup on the terminal device in the identification information database, the method further includes:
if the search fails, the terminal equipment is judged to be intelligent equipment, and an internet access authentication process is called so as to make a permission response to the network access request after the internet access authentication of the terminal equipment is successful, or make a prohibition response to the network access request after the internet access authentication of the terminal equipment fails.
Specifically, if the terminal device requesting access to the network is not the internet of things device recorded in the identification information database, it is determined that the terminal device is an intelligent device. For the intelligent equipment, the access controller can process according to a normal authentication network access flow, namely, the intelligent equipment is required to carry out network access authentication, if the network access authentication is successful, a permission response is made, and if the network access authentication is unsuccessful, a prohibition response is made.
Referring to fig. 2, fig. 2 is a block diagram of a structure of an identification apparatus of an internet of things device provided in the present application, and mainly includes an obtaining module 21, an extracting module 22, and a determining module 23;
the obtaining module 21 is configured to obtain a network access request record of a target terminal device;
the extracting module 22 is configured to obtain a uniform resource locator of a network resource requested to be accessed by the target terminal device according to the network access request record;
the judging module 23 is configured to invoke a preset first network resource database, where uniform resource locators of all known network resources of the internet of things device are stored in the first network resource database; judging whether uniform resource locators of network resources requested to be accessed by the target terminal equipment are successfully matched in the first network resource database; and if so, judging that the target terminal equipment is the Internet of things equipment.
Therefore, the identification device of the internet of things equipment provided by the application establishes the first network resource database according to all network resources which may be accessed by the internet of things equipment, and performs matching query on the network resources historically accessed by the target terminal equipment by using the first network resource database, so that the internet of things equipment which only accesses the network resources in the first network resource database can be effectively identified. By the identification method, the Internet of things equipment and the intelligent equipment can be effectively distinguished, so that the Internet of things equipment can be conveniently subjected to authentication-free Internet surfing and the intelligent equipment can be conveniently subjected to authentication Internet surfing, and meanwhile, the problem of safe Internet surfing of the Internet of things equipment and the intelligent equipment is solved.
On the basis of the foregoing embodiment, the identification apparatus for internet of things equipment further includes, as a preferred embodiment:
a storage module: the device information of the target terminal device which is judged as the Internet of things device by the judging module is stored in the identification information database;
a response module: the device is used for matching and searching the terminal equipment in the identification information database after receiving a network access request sent by the terminal equipment; if the search is successful, the terminal equipment is judged to be the Internet of things equipment, and a permission response is made to the network access request.
As a preferred embodiment, the response module is further configured to:
after matching search is carried out on terminal equipment in an identification information database, if the search fails, the terminal equipment is judged to be intelligent equipment, and an internet access authentication process is called, so that permission response is carried out on the network access request after the internet access authentication of the terminal equipment is successful, or forbidden response is carried out on the network access request after the internet access authentication of the terminal equipment fails.
The application also provides an identification equipment of thing networking device, includes:
a memory: for storing a computer program;
a processor: for executing a computer program to implement the steps of any of the methods for identifying internet of things devices as described above.
The present application further provides a computer-readable storage medium, in which a computer program is stored, and the computer program is used for implementing the steps of any method for identifying an internet of things device as described above when being executed by a processor.
The specific embodiments of the identification apparatus, the device and the computer-readable storage medium for the internet of things device provided by the present application and the identification method for the internet of things device described above may be referred to correspondingly, and are not described herein again.
The embodiments are described in a progressive manner, each embodiment focuses on differences from other embodiments, and the same and similar parts among the embodiments are referred to each other. For the embodiment disclosure, since it corresponds to the method of the embodiment disclosure, the description is simple, and the relevant points can be referred to the method part for description.
It is further noted that, throughout this document, relational terms such as "first" and "second" are used solely to distinguish one entity or action from another entity or action without necessarily requiring or implying any actual such relationship or order between such entities or actions. Furthermore, the terms "comprises," "comprising," or any other variation thereof, are intended to cover a non-exclusive inclusion, such that a process, method, article, or apparatus that comprises a list of elements does not include only those elements but may include other elements not expressly listed or inherent to such process, method, article, or apparatus. Without further limitation, an element defined by the phrase "comprising an … …" does not exclude the presence of other identical elements in a process, method, article, or apparatus that comprises the element.
The technical solutions provided by the present application are described in detail above. The principles and embodiments of the present application are explained herein using specific examples, which are provided only to help understand the method and the core idea of the present application. It should be noted that, for those skilled in the art, it is possible to make several improvements and modifications to the present application without departing from the principle of the present application, and such improvements and modifications also fall within the scope of the claims of the present application.

Claims (11)

1. An identification method for Internet of things equipment is characterized by comprising the following steps:
acquiring a network access request record of target terminal equipment;
acquiring a uniform resource locator of the network resource which the target terminal equipment requests to access according to the network access request record;
calling a preset first network resource database, wherein uniform resource locators of all known network resources of the Internet of things equipment are stored in the first network resource database; judging whether uniform resource locators of network resources requested to be accessed by the target terminal equipment are successfully matched in the first network resource database;
and if so, judging that the target terminal equipment is the Internet of things equipment.
2. The identification method according to claim 1, wherein after said determining whether the uniform resource locators of the network resources requested to be accessed by the target terminal device are all successfully matched in the first network resource database, further comprising:
if not, calling a preset second network resource database, wherein uniform resource locators of all known network resources of the intelligent equipment are stored in the second network resource database;
judging whether the uniform resource locators which are failed to be matched in the first network resource database are successfully matched in the second network resource database;
and if the matching is successful in the second network resource database, judging that the target terminal equipment is intelligent equipment.
3. The method according to claim 2, wherein after determining whether all the matching failure urls in the first network resource database are successfully matched in the second network resource database, the method further comprises:
if not, the target terminal device is judged to be the Internet of things device of unknown type.
4. The identification method according to claim 1, wherein the obtaining of the network access request record of the target terminal device comprises:
and periodically acquiring a network access request record of the target terminal equipment in a preset time period.
5. The identification method according to claim 1, wherein after the obtaining the uniform resource locator of the network resource requested to be accessed by the target terminal device according to the network access request record and before the invoking of the preset first network resource database, further comprises:
judging whether the total number of uniform resource locators of the network resources requested to be accessed by the target terminal equipment is smaller than a preset threshold value or not;
if yes, continuing to execute the step of calling the preset first network resource database;
if not, the target terminal device is judged to be the intelligent device.
6. The identification method according to any one of claims 1 to 5, wherein after the determining that the target terminal device is an internet of things device, the method further comprises:
storing the equipment information of the target terminal equipment which is judged as the equipment of the Internet of things into an identification information database;
after receiving a network access request sent by terminal equipment, matching and searching the terminal equipment in the identification information database;
if the search is successful, the terminal equipment is judged to be the Internet of things equipment, and a permission response is made to the network access request.
7. The identification method according to claim 6, wherein after the matching lookup of the terminal device in the identification information database, further comprising:
if the search fails, the terminal equipment is judged to be intelligent equipment, and an internet access authentication process is called so as to make a permission response to the network access request after the internet access authentication of the terminal equipment is successful, or make a prohibition response to the network access request after the internet access authentication of the terminal equipment fails.
8. An identification device of internet of things equipment is characterized by comprising:
an acquisition module: the network access request record is used for acquiring the network access request record of the target terminal equipment;
an extraction module: the uniform resource locator is used for acquiring the network resource which is requested to be accessed by the target terminal equipment according to the network access request record;
a judging module: the system comprises a first network resource database, a second network resource database and a server, wherein the first network resource database is used for calling a preset first network resource database, and uniform resource locators of all known network resources of the Internet of things equipment are stored in the first network resource database; judging whether uniform resource locators of network resources requested to be accessed by the target terminal equipment are successfully matched in the first network resource database; and if so, judging that the target terminal equipment is the Internet of things equipment.
9. The identification device of claim 8, further comprising:
a storage module: the device information of the target terminal device judged as the Internet of things device by the judging module is stored in an identification information database;
a response module: the system comprises an identification information database, a network access request database and a terminal device, wherein the identification information database is used for storing identification information of the terminal device; if the search is successful, the terminal equipment is judged to be the Internet of things equipment, and a permission response is made to the network access request.
10. An identification device of internet of things equipment, comprising:
a memory: for storing a computer program;
a processor: steps for executing the computer program to implement the method of identifying an internet of things device as claimed in any one of claims 1 to 7.
11. A computer-readable storage medium, in which a computer program is stored, which, when being executed by a processor, is configured to implement the steps of the method for identifying an internet of things device according to any one of claims 1 to 7.
CN201810994083.9A 2018-08-29 2018-08-29 Identification method, device and equipment of Internet of things equipment Active CN109067762B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201810994083.9A CN109067762B (en) 2018-08-29 2018-08-29 Identification method, device and equipment of Internet of things equipment

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201810994083.9A CN109067762B (en) 2018-08-29 2018-08-29 Identification method, device and equipment of Internet of things equipment

Publications (2)

Publication Number Publication Date
CN109067762A CN109067762A (en) 2018-12-21
CN109067762B true CN109067762B (en) 2020-10-27

Family

ID=64757598

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201810994083.9A Active CN109067762B (en) 2018-08-29 2018-08-29 Identification method, device and equipment of Internet of things equipment

Country Status (1)

Country Link
CN (1) CN109067762B (en)

Families Citing this family (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN110034970A (en) * 2019-03-18 2019-07-19 清华大学 The network equipment distinguishes method of discrimination and device
CN110121175A (en) * 2019-04-12 2019-08-13 国家计算机网络与信息安全管理中心 It is a kind of for moving the data monitoring method and system of Intelligent terminal for Internet of things
CN111385360B (en) * 2020-03-05 2023-09-05 深信服科技股份有限公司 Terminal equipment identification method, device and computer readable storage medium
CN111404893B (en) * 2020-03-06 2021-12-21 深信服科技股份有限公司 Host classification method, device, equipment and computer storage medium
CN111447115B (en) * 2020-03-25 2021-08-27 北京奥陌科技有限公司 State monitoring method for entity of Internet of things
CN112383431A (en) * 2020-11-13 2021-02-19 武汉虹旭信息技术有限责任公司 Method and device for identifying data of internet of things in internet

Citations (12)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101505236A (en) * 2009-03-12 2009-08-12 成都市华为赛门铁克科技有限公司 Method and apparatus for implementing green internet surfing
CN103297270A (en) * 2013-05-24 2013-09-11 华为技术有限公司 Application type recognition method and network equipment
CN104113880A (en) * 2014-06-06 2014-10-22 深圳市深信服电子科技有限公司 Data flow control method and system
CN104796969A (en) * 2015-04-29 2015-07-22 广州物联家信息科技股份有限公司 Network accessing method and system for equipment of internet of things on basis of recognition codes of internet of things
CN105376072A (en) * 2015-11-04 2016-03-02 中国联合网络通信集团有限公司 Internet of things terminal state information obtaining method and device
CN105516395A (en) * 2016-01-14 2016-04-20 深圳市深信服电子科技有限公司 Network address assignment method and device
CN107086928A (en) * 2017-04-11 2017-08-22 深信服科技股份有限公司 The detection method and device of the shared network terminal
CN107370685A (en) * 2017-07-28 2017-11-21 深圳市盛路物联通讯技术有限公司 A kind of internet-of-things terminal cut-in method and device
CN107807965A (en) * 2017-09-30 2018-03-16 广东美的制冷设备有限公司 Progress control method, resource shared device and computer-readable recording medium
CN107888605A (en) * 2017-11-27 2018-04-06 国家计算机网络与信息安全管理中心 A kind of Internet of Things cloud platform traffic security analysis method and system
CN108234405A (en) * 2016-12-15 2018-06-29 上海仪电(集团)有限公司中央研究院 A kind of terminal device automatic identification authentication method based on intelligent gateway
CN110855602A (en) * 2018-08-21 2020-02-28 国家计算机网络与信息安全管理中心 Internet of things cloud platform event identification method and system

Family Cites Families (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20150006296A1 (en) * 2013-06-26 2015-01-01 Qualcomm Innovation Center, Inc. NOTIFICATION DISMISSAL IN AN INTERNET OF THINGS (IoT) ENVIRONMENT

Patent Citations (12)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101505236A (en) * 2009-03-12 2009-08-12 成都市华为赛门铁克科技有限公司 Method and apparatus for implementing green internet surfing
CN103297270A (en) * 2013-05-24 2013-09-11 华为技术有限公司 Application type recognition method and network equipment
CN104113880A (en) * 2014-06-06 2014-10-22 深圳市深信服电子科技有限公司 Data flow control method and system
CN104796969A (en) * 2015-04-29 2015-07-22 广州物联家信息科技股份有限公司 Network accessing method and system for equipment of internet of things on basis of recognition codes of internet of things
CN105376072A (en) * 2015-11-04 2016-03-02 中国联合网络通信集团有限公司 Internet of things terminal state information obtaining method and device
CN105516395A (en) * 2016-01-14 2016-04-20 深圳市深信服电子科技有限公司 Network address assignment method and device
CN108234405A (en) * 2016-12-15 2018-06-29 上海仪电(集团)有限公司中央研究院 A kind of terminal device automatic identification authentication method based on intelligent gateway
CN107086928A (en) * 2017-04-11 2017-08-22 深信服科技股份有限公司 The detection method and device of the shared network terminal
CN107370685A (en) * 2017-07-28 2017-11-21 深圳市盛路物联通讯技术有限公司 A kind of internet-of-things terminal cut-in method and device
CN107807965A (en) * 2017-09-30 2018-03-16 广东美的制冷设备有限公司 Progress control method, resource shared device and computer-readable recording medium
CN107888605A (en) * 2017-11-27 2018-04-06 国家计算机网络与信息安全管理中心 A kind of Internet of Things cloud platform traffic security analysis method and system
CN110855602A (en) * 2018-08-21 2020-02-28 国家计算机网络与信息安全管理中心 Internet of things cloud platform event identification method and system

Also Published As

Publication number Publication date
CN109067762A (en) 2018-12-21

Similar Documents

Publication Publication Date Title
CN109067762B (en) Identification method, device and equipment of Internet of things equipment
CN105100032B (en) A kind of method and device for preventing resource from stealing
CN106878262B (en) Message detection method and device, and method and device for establishing local threat information library
CN108429721B (en) Identification method and device for web crawler
CN102891826B (en) The control method of web page access, equipment and system
US11696110B2 (en) Distributed, crowdsourced internet of things (IoT) discovery and identification using Block Chain
KR101619414B1 (en) System for detecting abnomal behaviors using personalized early use behavior pattern analsis
CN111176803B (en) Service processing method, device, server and storage medium
CN106537878A (en) Private content distribution network
CN102946320B (en) Distributed supervision method and system for user behavior log forecasting network
CN103401845B (en) A kind of detection method of website safety, device
US20140325628A1 (en) Login method, apparatus, and system
CN107743154B (en) Tracking and attendance system based on Wi-Fi intelligent terminal and method thereof
CN111767315B (en) Black product identification method and device, electronic equipment and storage medium
WO2017197757A1 (en) Method and device for apn assignment, and terminal
CN108154024B (en) Data retrieval method and device and electronic equipment
CN101599857B (en) Method, device and network detection system for detecting number of host computers accessed to sharing
CN104967632A (en) Webpage abnormal data processing method, data server and system
CN102253948A (en) Method and device for searching information in multi-source information system
CN112286911B (en) Database management method and device, equipment and storage medium
CN113094719B (en) Access control method, device and equipment
CN109815081A (en) The long range acquisition method and collection device of database performance
CN105163335B (en) A kind of network access management method, server, mobile terminal and system
KR101619419B1 (en) System for detecting abnomal behaviors using personalized continuative behavior pattern analsis
JP2018097821A (en) Control device and communication control method

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant