CN113472769A - Office network management method and network architecture system based on same - Google Patents

Office network management method and network architecture system based on same Download PDF

Info

Publication number
CN113472769A
CN113472769A CN202110714929.0A CN202110714929A CN113472769A CN 113472769 A CN113472769 A CN 113472769A CN 202110714929 A CN202110714929 A CN 202110714929A CN 113472769 A CN113472769 A CN 113472769A
Authority
CN
China
Prior art keywords
network
office
resources
worker
acquiring
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN202110714929.0A
Other languages
Chinese (zh)
Inventor
徐雅闰
刘超
马雅琴
张晓霞
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Suzhou Maihe Architectural Decoration Design Co ltd
Original Assignee
Suzhou Maihe Architectural Decoration Design Co ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Suzhou Maihe Architectural Decoration Design Co ltd filed Critical Suzhou Maihe Architectural Decoration Design Co ltd
Priority to CN202110714929.0A priority Critical patent/CN113472769A/en
Publication of CN113472769A publication Critical patent/CN113472769A/en
Pending legal-status Critical Current

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/04Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks
    • H04L63/0428Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Hardware Design (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Small-Scale Networks (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)

Abstract

The application relates to the technical field of computer network management, in particular to an office network management method and a network architecture system based on the method, aiming at solving the following defects in the prior art: the general computer network has the problem of poor security, and when the general computer network is attacked, the conditions of abnormal operation of enterprises or secret leakage and the like easily occur, and the technical scheme is as follows: an office network management method comprising the steps of: acquiring a network access request, and identifying the identity information of a worker requesting a network; acquiring the network use authority of the worker according to the identity information; according to the network use authority, a network entrance matched with the network use authority of the worker is opened for the worker, and network resources are configured.

Description

Office network management method and network architecture system based on same
Technical Field
The present application relates to the field of computer network management technologies, and in particular, to an office network management method and a network architecture system based on the office network management method.
Background
Computer networks are complex and orderly in many respects, computer technology, communication, use, etc. Networks are ubiquitous in military, industrial, educational, home, and corporate offices, among others. There is a very strict regulatory order in the management of networks. The computer network system is that all computers are connected together through a network to realize the sharing and interaction of information.
The network architecture is a network structure for implementing network communication connections, and is a blueprint providing a framework and technical foundation for designing, constructing and managing a communication network. The network architecture defines each aspect of the data network communication system including, but not limited to, the type of interface used by the user, the network protocol used, and the type of network cabling that may be used.
At present, a communication network used by an enterprise needs to be erected in daily operation of the enterprise, so that the effect of improving the operation efficiency of the enterprise is achieved.
With respect to the related art among the above, the inventors consider that the following drawbacks exist: the general computer network has the problem of poor security, and when the general computer network is attacked, the conditions of abnormal operation of enterprises, secret leakage and the like are easy to occur.
Disclosure of Invention
In order to improve the security of an office network, the application provides an office network management method and a network architecture system based on the office network management method.
In a first aspect, the present application provides an office network management method, which adopts the following technical solution:
an office network management method comprising the steps of:
acquiring a network access request, and identifying the identity information of a worker requesting a network;
acquiring the network use authority of the worker according to the identity information;
and opening a network entrance matched with the network use authority of the worker according to the network use authority, and configuring network resources.
By adopting the technical scheme, the identity of the worker is identified after the network access request is obtained, the network use permission suitable for the identity of the worker is accurately judged for the worker according to the identity information of the worker, then the network resource is distributed according to the permission, the safety of an office network is ensured, meanwhile, the network resource is distributed according to the permission, the possibility of network resource waste is reduced, and the use efficiency of the network resource is improved.
Optionally, the acquiring a network access request and identifying identity information of a worker requesting a network further include:
acquiring topographic information of an office area, and generating an area topographic map according to the topographic information;
and collecting all equipment information with network connection requirements in the office area, and displaying all the equipment in the regional topographic map.
By adopting the technical scheme, the regional terrain is collected, the topographic map is generated according to the topographic information of the office area, the distribution of the network utilization equipment in the office area can be mastered visually, the equipment and the nodes accessed in the office network can be planned and arranged reasonably, and meanwhile, when the network utilization equipment sends a fault or is abnormal, a maintainer can conveniently find abnormal equipment in the office area to overhaul and maintain, so that the convenience of office network maintenance is improved.
Optionally, the acquiring a network access request and identifying identity information of a worker requesting a network further include:
acquiring existing network resource information of an office area; dividing the existing network resources into external network resources and internal network resources;
and establishing communication connection between the external network resources and the public network, and establishing communication connection between the internal network resources and the external network resources.
By adopting the technical scheme, the network resources are divided into the extranet resources and the intranet resources, special network resource allocation is facilitated according to different network use requirements, the rationality and the use efficiency of network resource allocation are facilitated to be improved, the extranet resources and the public network are connected, network utilization equipment can be accessed into the public network through the extranet resources, communication contact with the outside and network information browsing are facilitated to workers through the network utilization equipment, the intranet resources and the extranet resources are connected, the intranet resources cannot be directly connected with the public network, the safety of the intranet resources is improved, the work with higher safety requirements on the intranet resources by the workers is facilitated to be processed, and the possibility that company office data are invaded by the network is reduced.
Optionally, the establishing a communication connection between an external network resource and a public network, and establishing a communication connection between an internal network resource and an external network resource further include:
an encryption gateway is arranged between the communication connection of the internal network resource and the external network resource.
By adopting the technical scheme, the encryption gateway is arranged between the intranet resources and the extranet resources, so that the network connection between the intranet resources and the extranet resources is limited and protected conveniently, the connection safety between the intranet resources and the extranet resources is enhanced, the reliability of an office network system is further enhanced, and the confidentiality of confidential information of a company is maintained.
Optionally, the opening a network entry matched with the network usage right of the staff to the staff according to the network usage right, and configuring a network resource, and then further comprising:
and identifying the equipment applying for the network access request, and configuring specific network resources suitable for the use requirements of the equipment according to the equipment information.
By adopting the technical scheme, the characteristics of the network resources used by the equipment are judged according to the equipment information, the network resources suitable for the current equipment are configured according to the characteristics of the network equipment, the rationality of network resource allocation is improved, and the use efficiency of the network resources in an office network system is improved.
Optionally, the opening a network entry matched with the network usage right of the staff to the staff according to the network usage right, and configuring a network resource, and then further comprising:
network access requests and corresponding network usage records are collected and stored.
By adopting the technical scheme, the network use condition of the network equipment is recorded, so that various abnormal conditions in an office network system can be traced, the fault or the leak can be filled conveniently, meanwhile, the network use condition is recorded, the distribution of the network resources can be adjusted by the recorded conditions, the use efficiency of the network resources can be further enhanced, and the network use experience of an office worker can be improved.
In a second aspect, the present application provides an office network management system, which adopts the following technical solutions:
an office network management system comprising:
the network request module is used for acquiring a network access request and identifying the identity information of a worker requesting the network;
the authority identification module acquires the network use authority of the worker according to the identity information;
and the network configuration module is used for opening a network entrance matched with the network use authority of the staff according to the network use authority and configuring network resources.
By adopting the technical scheme, the identity of the worker is identified after the network access request is obtained, the network use permission suitable for the identity of the worker is accurately judged for the worker according to the identity information of the worker, then the network resource is distributed according to the permission, the safety of an office network is ensured, meanwhile, the network resource is distributed according to the permission, the possibility of network resource waste is reduced, and the use efficiency of the network resource is improved.
In a third aspect, the present application provides an office network architecture system, which adopts the following technical solutions:
the utility model provides an office network architecture system, includes a plurality of equipment and the central server of going into the net, the central server includes intranet server and the extranet server of being connected with public network, extranet server still with intranet server communication connection, be equipped with encryption gateway, a plurality of between extranet server and the intranet server the equipment of going into the net all is connected with central server.
By adopting the technical scheme, the network resources are divided into the extranet resources and the intranet resources, special network resource allocation is facilitated according to different network use requirements, the rationality and the use efficiency of network resource allocation are facilitated to be improved, the extranet resources and the public network are connected, network utilization equipment can be accessed into the public network through the extranet resources, communication contact with the outside and network information browsing are facilitated to workers through the network utilization equipment, the intranet resources and the extranet resources are connected, the intranet resources cannot be directly connected with the public network, the safety of the intranet resources is improved, the work with higher safety requirements on the intranet resources by the workers is facilitated to be processed, and the possibility that company office data are invaded by the network is reduced.
In a fourth aspect, the present application provides an intelligent terminal, which adopts the following technical scheme:
an intelligent terminal comprises a memory and a processor, wherein the memory is stored with a computer program which can be loaded by the processor and executes the method.
By adopting the technical scheme, the processor in the intelligent terminal can realize the office network management method according to the related computer program stored in the memory, so that safe and efficient office network management service is provided for enterprises or companies.
In a fifth aspect, the present application provides a computer-readable storage medium, which adopts the following technical solutions:
a computer-readable storage medium storing a computer program that can be loaded by a processor and executes the above-mentioned method.
By adopting the technical scheme, the corresponding program can be stored, and further, safe and efficient office network management service is provided for enterprises or companies.
In summary, the present application includes at least one of the following beneficial technical effects:
1. the identity of the worker is identified after the network access request is obtained, so that the identity of the worker can be accurately judged according to the identity information of the worker, the network use permission suitable for the identity of the worker can be accurately judged, the network resources can be distributed according to the permission, the safety of an office network can be guaranteed, the network resources can be distributed according to the permission, the possibility of network resource waste can be reduced, and the use efficiency of the network resources can be improved;
2. the network resources are divided into the extranet resources and the intranet resources, so that special network resource allocation is facilitated according to different network use requirements, the reasonability and the use efficiency of network resource allocation are facilitated to be improved, the extranet resources are connected with the public network, the network utilization equipment can be accessed into the public network through the extranet resources, communication contact with the outside and network information browsing are facilitated for workers through the network utilization equipment, the intranet resources are connected with the extranet resources, the intranet resources cannot be directly connected with the public network, the safety of the intranet resources is improved, the work with higher safety requirements on the intranet resources is facilitated for the workers, and the possibility that company office data are invaded by the network is reduced;
3. the network use condition of the network equipment is recorded, so that various abnormal conditions in an office network system can be traced, the fault or the leak can be filled conveniently, meanwhile, the network use condition is recorded, the distribution of the network resources can be adjusted through the recorded conditions, the use efficiency of the network resources is further enhanced, and the network use experience of an office worker is improved.
Drawings
Fig. 1 is a flowchart of an office network management method shown in an embodiment of the present application;
fig. 2 is a system block diagram of an office network management system shown in an embodiment of the present application;
fig. 3 is a system block diagram of an office network architecture system shown in the embodiment of the present application.
Description of reference numerals: 1. a network request module; 2. a permission identification module; 3. a network configuration module; 4. a network access device; 5. a central server; 6. an intranet server; 7. an extranet server; 8. encrypting the gateway; 9. a public network.
Detailed Description
The present application is described in further detail below with reference to figures 1-3.
The embodiment of the application discloses an office network management method.
Referring to fig. 1, an office network management method includes the steps of:
s100, acquiring a network access request, and identifying identity information of a worker requesting a network;
before the step, topographic information of the office area is obtained, wherein the topographic information specifically comprises: the method comprises the steps of generating an office building topographic map, an office building floor distribution map, equipment distribution in an office area, a network wiring map in the office area and the like, generating a regional topographic map of the office area according to topographic information, wherein the regional topographic map mainly comprises office building floor distribution, the office building topographic map of the current floor is displayed in detail in each floor, highlighting the network wiring map by different marks in the office building topographic map of the current floor, and finally highlighting the equipment distribution map at the terminal of the network wiring map.
At the same time, information on all network devices in the office area that need to be connected to the network is collected, and the specific network devices are displayed in the device distribution map in accordance with the connection relationship between the network devices and the communication lines in the network wiring diagram. Then classifying the collected network devices, analyzing and collecting the network use requirements of each type of network device, wherein the network use requirements specifically comprise: network communication protocols, IP addresses, connection ports, and traffic characteristics, etc.
In this step, the identity information of the staff requesting the network is identified, specifically, an account login system is set, a work account is configured for each staff, and then a network authority is set for the work account of each staff.
The network resources of companies and enterprises are divided into intranet resources and extranet resources, the extranet resources are connected with a public network, the extranet resources are set to be used for carrying out information interaction work with the public network such as data retrieval, information inquiry and communication contact, the intranet resources are in communication connection with the extranet resources, and the intranet resources are set to be used for carrying out work such as processing, transmission and storage on data with high secret value.
An encryption gateway is arranged between the intranet resources and the extranet resources, and the encryption gateway is an information security channel for realizing interconnection and intercommunication between the intranet resources and the extranet resources through means such as passwords and the like.
S200, acquiring the network use permission of the worker according to the identity information;
specifically, the work account number is provided with a network use permission of the worker, and the network use permission includes: communication authority between the intranet resources and the extranet resources, network bandwidth use range, network access duration limitation and the like.
S300, opening a network entrance matched with the network use authority of the worker according to the network use authority, and configuring network resources;
and then identifying the equipment which the worker requests to access the network, distributing specific network resources which meet the network use requirements of the equipment according to the network use requirements of the equipment, recording the network use condition of the worker after the worker accesses the office network through the equipment, and binding the network use record with the account number of the worker.
Based on the method, the embodiment of the application also discloses an office network management system based on the office network management method.
Referring to fig. 2, an office network management system includes:
the network request module 1 is used for acquiring a network access request and identifying the identity information of a worker requesting a network;
the authority identification module 2 is used for acquiring the network use authority of the worker according to the identity information;
and the network configuration module 3 opens a network entrance matched with the network use authority of the staff according to the network use authority and configures network resources.
Based on the method, the embodiment of the application also discloses an office network architecture system.
Referring to fig. 3, an office network architecture system includes:
a plurality of equipment 4 and central server 5 of going into network, central server 5 include intranet server 6 and the extranet server 7 of being connected with public network 9, extranet server 7 still with intranet server 6 communication connection, be equipped with encryption gateway 8 between extranet server 7 and the intranet server 6, a plurality of equipment 4 of going into network is connected with central server 5.
The embodiment of the application also discloses an intelligent terminal, which comprises a memory and a processor, wherein the memory is stored with a computer program which can be loaded by the processor and can execute the office network management method.
An embodiment of the present application further discloses a computer-readable storage medium, which stores a computer program that can be loaded by a processor and executes the office network management method, and the computer-readable storage medium includes, for example: various media capable of storing program codes, such as a usb disk, a removable hard disk, a Read-Only Memory (ROM), a Random Access Memory (RAM), a magnetic disk, or an optical disk.
The above examples are only used to illustrate the technical solutions of the present application, and do not limit the scope of protection of the application. It is to be understood that the embodiments described are only some of the embodiments of the present application and not all of them. All other embodiments, which can be derived by a person skilled in the art from these embodiments without making any inventive step, are within the scope of the present application.

Claims (10)

1. An office network management method, characterized by comprising the steps of:
acquiring a network access request, and identifying the identity information of a worker requesting a network;
acquiring the network use authority of the worker according to the identity information;
and opening a network entrance matched with the network use authority of the worker according to the network use authority, and configuring network resources.
2. An office network management method according to claim 1, characterized in that: the acquiring of the network access request and the identification of the identity information of the staff requesting the network further comprise:
acquiring topographic information of an office area, and generating an area topographic map according to the topographic information;
and collecting all equipment information with network connection requirements in the office area, and displaying all the equipment in the regional topographic map.
3. An office network management method according to claim 1, characterized in that: the acquiring of the network access request and the identification of the identity information of the staff requesting the network further comprise:
acquiring existing network resource information of an office area; dividing the existing network resources into external network resources and internal network resources;
and establishing communication connection between the external network resources and the public network, and establishing communication connection between the internal network resources and the external network resources.
4. An office network management method according to claim 3, wherein: the establishing of the communication connection between the external network resources and the public network and the establishing of the communication connection between the internal network resources and the external network resources further comprises the following steps:
an encryption gateway is arranged between the communication connection of the internal network resource and the external network resource.
5. An office network management method according to claim 1, characterized in that: according to the network use authority, opening a network entrance matched with the network use authority to the staff, and configuring network resources, and then, the method further comprises the following steps:
and identifying the equipment applying for the network access request, and configuring specific network resources suitable for the use requirements of the equipment according to the equipment information.
6. An office network management method according to claim 1, characterized in that: according to the network use authority, opening a network entrance matched with the network use authority to the staff, and configuring network resources, and then, the method further comprises the following steps:
network access requests and corresponding network usage records are collected and stored.
7. An office network management system, comprising:
the network request module (1) is used for acquiring a network access request and identifying the identity information of a worker requesting the network;
the authority identification module (2) is used for acquiring the network use authority of the worker according to the identity information;
and the network configuration module (3) opens a network entrance matched with the network use authority of the staff according to the network use authority and configures network resources.
8. An office network architecture system, characterized by: including a plurality of equipment (4) and central server (5) of going into network, central server (5) include intranet server (6) and outer net server (7) of being connected with public network (9), outer net server (7) still with intranet server (6) communication connection, be equipped with encryption gateway (8), a plurality of between outer net server (7) and intranet server (6) equipment (4) of going into network is connected with central server (5).
9. An intelligent terminal, comprising a memory and a processor, the memory having stored thereon a computer program that can be loaded by the processor and that executes the method according to any one of claims 1 to 6.
10. A computer-readable storage medium, in which a computer program is stored which can be loaded by a processor and which executes the method of any one of claims 1 to 6.
CN202110714929.0A 2021-06-25 2021-06-25 Office network management method and network architecture system based on same Pending CN113472769A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN202110714929.0A CN113472769A (en) 2021-06-25 2021-06-25 Office network management method and network architecture system based on same

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN202110714929.0A CN113472769A (en) 2021-06-25 2021-06-25 Office network management method and network architecture system based on same

Publications (1)

Publication Number Publication Date
CN113472769A true CN113472769A (en) 2021-10-01

Family

ID=77873224

Family Applications (1)

Application Number Title Priority Date Filing Date
CN202110714929.0A Pending CN113472769A (en) 2021-06-25 2021-06-25 Office network management method and network architecture system based on same

Country Status (1)

Country Link
CN (1) CN113472769A (en)

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103607372A (en) * 2013-08-19 2014-02-26 深信服网络科技(深圳)有限公司 Authentication method and device for network access
CN104796261A (en) * 2015-04-16 2015-07-22 长安大学 Secure access control system and method for network terminal nodes
WO2015159072A1 (en) * 2014-04-15 2015-10-22 Vodafone Ip Licensing Limited Provisioning a network subscription
CN105306549A (en) * 2015-09-28 2016-02-03 北京奇虎科技有限公司 Visualization method and device for terminal location distribution
CN106533727A (en) * 2015-09-14 2017-03-22 飞幕科技有限公司 Management system for network terminal equipment correspondingly displaying physical geographical position

Patent Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103607372A (en) * 2013-08-19 2014-02-26 深信服网络科技(深圳)有限公司 Authentication method and device for network access
WO2015159072A1 (en) * 2014-04-15 2015-10-22 Vodafone Ip Licensing Limited Provisioning a network subscription
US20170041733A1 (en) * 2014-04-15 2017-02-09 Vodafone Ip Licensing Limited Provisioning a network subscription
CN104796261A (en) * 2015-04-16 2015-07-22 长安大学 Secure access control system and method for network terminal nodes
CN106533727A (en) * 2015-09-14 2017-03-22 飞幕科技有限公司 Management system for network terminal equipment correspondingly displaying physical geographical position
CN105306549A (en) * 2015-09-28 2016-02-03 北京奇虎科技有限公司 Visualization method and device for terminal location distribution

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
陈彦彬 *

Similar Documents

Publication Publication Date Title
CN101901315B (en) Security isolation and monitoring management method of USB mobile storage media
AlHarthy et al. Implement network security control solutions in BYOD environment
CN108134764A (en) A kind of Distributed data share exchange method and system
CN107547480A (en) A kind of method, apparatus and virtual desktop management system of virtual desktop security control
CN111274569A (en) Research, development, operation and maintenance integrated system for unified login authentication and login authentication method thereof
CN114866346B (en) Password service platform based on decentralization
CN108966216A (en) A kind of method of mobile communication and device applied to power distribution network
CN112383631A (en) Regional Internet of things platform and data processing method based on regional Internet of things platform
CN114357490A (en) Data sharing method, device and system based on block chain
CN114244568B (en) Security access control method, device and equipment based on terminal access behavior
CN106487770B (en) Method for authenticating and authentication device
CN109903046A (en) User data management and device based on block chain
CN116228195B (en) Data processing method, device, equipment and storage medium suitable for worksheets
CN113472769A (en) Office network management method and network architecture system based on same
CN106790219A (en) The access control method and system of a kind of SDN controllers
CN107465688B (en) Method for identifying network application permission of state monitoring and evaluating system
CN114466038B (en) Communication protection system of electric power thing networking
CN114520734B (en) Network data security management and control method and system based on bidirectional transmission
CN109754149A (en) Power communication is credible background management system, terminal and power communication trusted system
CN202153753U (en) Remote communication service device of industrial Internet distributed system
CN117527840A (en) All-purpose card management platform system for resident service
CN110489947B (en) Safe office management and control system
CN102916928A (en) Method for protecting safety of nodes in P2P (peer-to-peer) system
CN112328605B (en) Block chain-based power field security data management method and system
CN215897739U (en) Terminal for remote substation to transfer recording file

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
RJ01 Rejection of invention patent application after publication

Application publication date: 20211001

RJ01 Rejection of invention patent application after publication