CN113497806B - Remote login method, device and storage medium - Google Patents

Remote login method, device and storage medium Download PDF

Info

Publication number
CN113497806B
CN113497806B CN202110756594.9A CN202110756594A CN113497806B CN 113497806 B CN113497806 B CN 113497806B CN 202110756594 A CN202110756594 A CN 202110756594A CN 113497806 B CN113497806 B CN 113497806B
Authority
CN
China
Prior art keywords
vehicle
account
user
address
host
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN202110756594.9A
Other languages
Chinese (zh)
Other versions
CN113497806A (en
Inventor
姜良和
黄湘绯
佘高伟
曹晓芳
吕达
朱志伟
赵敏军
葛云飞
李军
张伟辉
王忠峰
申佳胤
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
China Railway Jixun Technology Co Ltd
Original Assignee
China Railway Jixun Technology Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by China Railway Jixun Technology Co Ltd filed Critical China Railway Jixun Technology Co Ltd
Priority to CN202110756594.9A priority Critical patent/CN113497806B/en
Publication of CN113497806A publication Critical patent/CN113497806A/en
Application granted granted Critical
Publication of CN113497806B publication Critical patent/CN113497806B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/02Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
    • H04L63/0272Virtual private networks
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/083Network architectures or network communication protocols for network security for authentication of entities using passwords
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/01Protocols
    • H04L67/08Protocols specially adapted for terminal emulation, e.g. Telnet
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/01Protocols
    • H04L67/10Protocols in which an application is distributed across nodes in the network
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/01Protocols
    • H04L67/12Protocols specially adapted for proprietary or special-purpose networking environments, e.g. medical networks, sensor networks, networks in vehicles or remote metering networks

Abstract

The application discloses a remote login method, a remote login device and a storage medium, which are used for uniformly managing accounts and vehicle-end authorities and improving safety. The remote login method disclosed by the application comprises the following steps: the user uses a domain control account to remotely log in; performing matching verification on the domain control account; determining the authority corresponding to the domain control account according to the result of the matching verification, and acquiring an on-line vehicle list; determining a dynamic host IP address according to the vehicle codes in the online vehicle list; a host accessing the IP address through a default user; wherein the default account is different from the domain controlled account. The application also provides a remote login device and a storage medium.

Description

Remote login method, device and storage medium
Technical Field
The present application relates to the field of internet of vehicles, and in particular, to a remote login method, device and storage medium.
Background
In the internet of vehicles technology, a user remotely logs in to an on-board system has an important role. In the prior art, as shown in fig. 1, a user accesses a vehicle-mounted system remotely through an office gateway, then accesses the vehicle-mounted springboard system through a domain control system and a security fort system, and the vehicle-mounted springboard system accesses the vehicle-mounted system. The office gateway is gateway software for realizing remote security access through a web browser, and accesses an internal system through an office gateway portal. In the prior art, the security fort system and the domain control system are required to apply for the account separately, the naming of the account is not uniform, the maintenance of changing, creating, withdrawing and the like of the account is not easy, the account is scattered, and the account is easy to lose due to human misoperation; the domain control system, office gateway, security fort machine and authority of vehicle-mounted springboard system belong to different roles and are not uniformly managed. The vehicle-mounted springboard system can log in directly, does not have the principle of minimizing allocation permission, has no password control strategy, and can log in all target servers as long as a user can take an account number, so that hidden danger of operation risks exists. The method and the device have the advantages that account and authority management is not uniform, and safety is not high in the prior art.
Disclosure of Invention
Aiming at the technical problems, the embodiment of the application provides a remote login method, a remote login device and a storage medium, which are used for improving the security of remote login of a vehicle-mounted system.
In a first aspect, an embodiment of the present application provides a telnet method, including:
the user uses a domain control account to remotely log in;
performing matching verification on the domain control account;
determining the authority corresponding to the domain control account according to the result of the matching verification, and acquiring an on-line vehicle list;
determining a dynamic host IP address according to the vehicle codes in the online vehicle list;
a host accessing the IP address through a default user;
wherein the default account is different from the domain controlled account.
Further, before the remote login using the domain control account, the method further comprises:
and the user applies for the vehicle on the vehicle terminal line on the intelligent management and control system and obtains the authority of logging in the vehicle.
The performing matching verification on the domain control account comprises the following steps:
and carrying out matching verification on the domain control account through a domain control system, if the user name and the password of the domain control account are correct, verifying to pass, otherwise, not verifying to pass.
Further, the user telnet using the domain controlled account includes:
establishing a virtual special channel through a vehicle-mounted springboard system, wherein the virtual special channel is used for a tunnel for safe data transmission between a user and a vehicle;
and establishing a mapping relation between the domain name and the SN code of the vehicle-mounted system, and performing remote login through IP.
Preferably, in the present invention, the default account is an account preset by the system and having authority to access the host.
By using the remote login method provided by the invention, the account numbers are managed uniformly, and in a uniform corporate account number architecture, the external account numbers are accessed, so that the external account numbers can access a specific internal system, access a vehicle-end machine in a public network environment, and the account numbers can be created everywhere. According to the invention, the unified and centralized management and the authority control management of the account numbers are added, and a virtual special channel is established through the vehicle-mounted springboard system and is provided for a tunnel for safe data transmission between a user and a vehicle, so that the safety is improved.
In a second aspect, embodiments of the present application further provide a telnet device, including:
an intelligent management and control system configured to receive a remote login request for a domain controlled account;
the domain control system is configured to perform matching verification on the domain control account, determine the authority corresponding to the domain control account according to the matching verification result, and acquire an on-line vehicle list; the method comprises the steps of carrying out a first treatment on the surface of the
The IP query system is configured to query the cloud server for the IP address of the dynamic host according to the vehicle codes in the online vehicle list;
a vehicle-mounted springboard system configured for accessing a host of the IP address by a default user;
wherein the default account is different from the domain controlled account.
In a third aspect, embodiments of the present application further provide a telnet device, including: a memory, a processor, and a user interface;
the memory is used for storing a computer program;
the user interface is used for realizing interaction with a user;
the processor is used for reading the computer program in the memory, and when the processor executes the computer program, the remote login method provided by the invention is realized.
In a fourth aspect, embodiments of the present application further provide a processor-readable storage medium, where the processor-readable storage medium stores a computer program, and when the processor executes the computer program, implements the telnet method provided by the present invention.
Drawings
In order to more clearly illustrate the technical solutions of the embodiments of the present application, the drawings that are needed in the description of the embodiments will be briefly described below, and it is obvious that the drawings in the following description are only some embodiments of the present application, and other drawings may be obtained according to these drawings without inventive effort for a person skilled in the art.
FIG. 1 is a schematic diagram of a prior art telnet system;
FIG. 2 is a schematic diagram of a telnet process according to an embodiment of the present application;
FIG. 3 is a schematic diagram of a telnet system according to an embodiment of the present disclosure;
fig. 4 is a schematic diagram of a user registration process provided in an embodiment of the present application;
FIG. 5 is a schematic diagram of a telnet device according to an embodiment of the present disclosure;
fig. 6 is a schematic structural diagram of another telnet device according to an embodiment of the present application.
Detailed Description
In order to make the objects, technical solutions and advantages of the present invention more apparent, the present invention will be described in further detail below with reference to the accompanying drawings, and it is apparent that the described embodiments are only some embodiments of the present invention, not all embodiments. All other embodiments, which can be made by those skilled in the art based on the embodiments of the invention without making any inventive effort, are intended to be within the scope of the invention.
Some words appearing hereinafter are explained:
1. in the embodiment of the invention, the term "and/or" describes the association relation of the association objects, which means that three relations can exist, for example, a and/or B can be expressed as follows: a exists alone, A and B exist together, and B exists alone. The character "/" generally indicates that the context-dependent object is an "or" relationship.
2. The term "plurality" in the embodiments of the present application means two or more, and other adjectives are similar thereto.
As shown in fig. 1, a user accesses the vehicle-mounted system remotely through an office gateway, then accesses the vehicle-mounted springboard system through a domain control system and a security fort system, and the vehicle-mounted springboard system accesses the vehicle-mounted system. After the user performs the telnet, the user can access functions or interfaces provided in the vehicle-mounted system, such as a clock server, a 5G (fifth generation mobile communication system) gateway, a switch, a UPF (User Plane Function ) server, a MEC (Mobile Edge Computing, edge computing technology) server, an application server, and the like. The office gateway is gateway software for realizing remote security access through a web browser, and accesses an internal system through an office gateway portal. In the prior art, the security fort system and the domain control system are required to apply for the account separately, the naming of the account is not uniform, the maintenance of changing, creating, withdrawing and the like of the account is not easy, the account is scattered, and the account is easy to lose due to human misoperation; the domain control system, office gateway, security fort machine and authority of vehicle-mounted springboard system belong to different roles and are not uniformly managed. The vehicle-mounted springboard system can log in directly, does not have the principle of minimizing allocation authority, has no password control strategy, and can log in all target servers as long as the user can take an account number, so that hidden danger of operation risks exists. The method and the device have the advantages that account and authority management is not uniform, and safety is not high in the prior art. In view of the above technical problems, the present invention provides a remote login method, a device and a storage medium, which are used for improving security of remote login.
The following description of the technical solutions in the embodiments of the present application will be made clearly and completely with reference to the accompanying drawings in the embodiments of the present application, and it is apparent that the described embodiments are only some embodiments of the present application, but not all embodiments. All other embodiments, which can be made by one of ordinary skill in the art without undue burden from the present disclosure, are within the scope of the present disclosure.
It should be noted that, the display sequence of the embodiments of the present application only represents the sequence of the embodiments, and does not represent the advantages or disadvantages of the technical solutions provided by the embodiments.
Example 1
Referring to fig. 2, a schematic diagram of a telnet method according to an embodiment of the present application is shown in fig. 2, and the method includes steps S201 to S205:
s201, a user uses a domain control account to remotely log in;
s202, performing matching verification on the domain control account;
s203, determining the authority corresponding to the domain control account according to the result of the matching verification, and acquiring an on-line vehicle list;
s204, determining the IP address of the dynamic host according to the vehicle codes in the on-line vehicle list;
s205, accessing the host of the IP address through a default user;
wherein the default account is different from the domain controlled account.
As a preferred example, in step 201, before a user telnet using a domain controlled account, it includes:
and the user applies for the vehicle on the vehicle terminal line on the intelligent management and control system and obtains the authority of logging in the vehicle.
As a preferred example, the obtaining the authority to log in the vehicle includes:
the intelligent authority management and control system creates initial authorities according to the role information of the group to which the account belongs;
the role information includes one or a combination of the following: internal staff, third party vendors, developing application program interface APIs.
A specific example is given below in connection with fig. 4, as shown in fig. 4:
step 1: the user puts forward an application to the intelligent management and control system;
step 2: according to the role, applying for different authorities, and creating initial authorities by the intelligent authority management and control system according to the role information of the group to which the account belongs; as a preferred example, roles are classified into one of the following: the third party vendor, external staff, internal staff, developing application program interfaces, may also include other types of roles, and embodiments of the present invention are not particularly limited.
Step 3: according to different roles, selecting an on-line vehicle according to the needs of the roles;
step 4: different vehicles are connected through the vehicle-mounted springboard system.
It should be noted that, the steps 1 to 4 may be used in a registration process of the user or may be used in a user access process.
As a preferred example, in the present embodiment S201, the user telnet using the domain controlled account includes:
establishing a virtual special channel through a vehicle-mounted springboard system, wherein the virtual special channel is used for a tunnel for safe data transmission between a user and a vehicle;
and establishing a mapping relation between the domain name and the SN code of the vehicle-mounted system, and performing remote login through IP.
As a preferred example, in the embodiment S202, performing the matching check on the domain control account includes:
and carrying out matching verification on the domain control account through a domain control system, if the user name and the password of the domain control account are correct, verifying to pass, otherwise, not verifying to pass.
In the embodiment S205 of the present invention, after the IP address resolution is completed, the system default account is used to access the target IP address, instead of using the domain control account to access the target IP address. Specifically, the default account is an account preset by the system and having permission to access the host. For example, after a domain control account successfully applies for a dynamic IP at a vehicle end, the vehicle enters through a vehicle-mounted springboard system, a designated command pssh vehicle bottom number is input, a cloud interface is called according to the vehicle bottom number to obtain a plurality of dynamic IPs, the dynamic IPs are displayed for a user, after the dynamic IPs are selected by the user, the dynamic IPs enter by default users with a wireless authority, and after the dynamic IPs enter, only readable authorities are needed, if writing operation is needed, the intelligent management and control system needs to obtain passwords. In the embodiment of the invention, pssh is a secure protocol based on ssh, and is used for remote login session, a public key is placed on a vehicle-end server to be accessed, and a pssh command sends a request to the vehicle-end server according to the acquired vehicle-end dynamic IP, user name and port, and the request is used for secure verification login by the key.
In an embodiment of the present invention, the relationship between telnet and vehicle-mounted system is shown in fig. 3. The intelligent management and control system is a head station for user registration and remote login access, and the following processing can be realized through the intelligent management and control system:
A. unified authentication account
And providing unified identity authentication service for remote login through a domain control system. After the unified identity authentication is completed, all information of the user is stored in the domain control service. When the user needs to use, the user needs to pass the authentication of the domain control server. Each employee only needs to memorize one password, and when user information needs to be modified, the information in the domain control system can be directly modified by providing a password modification interface through an administrator.
B. Rights management
The full life cycle of the rights comprises three stages of creation, change and closing, and a complete closed loop of rights management is formed.
It should be noted that, the three-stage lifecycle of the rights corresponds to the three stages of the authentication account, that is, the creation stage of the authentication account corresponds to the rights of the creation stage, the change stage of the authentication account corresponds to the rights of the change stage, and the closing stage of the authentication account corresponds to the rights of the closing stage.
When the unified authentication account is created, role information such as roles of internal staff, third party manufacturers, development APIs and the like is distributed according to the requirement, and the intelligent management and control system automatically creates initial permission according to the role information of the group of the account.
C. Telnet
And establishing a virtual special channel through the vehicle-mounted springboard system, and providing a tunnel for safe data transmission between a user and a vehicle.
And establishing a mapping relation between the domain name and the SN code of the vehicle-mounted system, and performing remote login through the IP address after analyzing. And inquiring the IP address, namely inquiring the IP of the dynamic host through the IP inquiring system to the cloud.
By the method of the embodiment, the online vehicle actively connects with the server, acquires the sequence of registering the registered vehicle to the cloud, allocates an IP section, associates the vehicle bottom number with the IP, sets the IP address as the own virtual network card IP address when the VPN is started, and synchronizes the virtual IP to a dynamic address pool in the vehicle-mounted springboard system. When a user passes through the pssh vehicle bottom number of the vehicle-mounted springboard system, searching an IP address pool of the dynamic host according to the vehicle codes in the on-line vehicle list, obtaining a corresponding IP address in a matching way, and connecting the on-line vehicles by using the IP address; when the host with the IP address is accessed through the default user wifiadm, if the host and the host are consistent, the access is successful.
By the method of the embodiment, the account number is uniformly managed, the intelligent authority management and control system is integrated with each software tool, the account number is created in one system and can be used in other systems, and an organization structure and personnel data are established, so that the daily use problem is solved.
Example two
Based on the same inventive concept, the embodiment of the present invention further provides a telnet device, as shown in fig. 5, including:
an intelligent rights management and control system 501 configured to receive a remote login request for a domain controlled account;
the domain control system 502 is configured to perform matching verification on the domain control account, determine authority corresponding to the domain control account according to the result of the matching verification, and acquire an on-line vehicle list; the method comprises the steps of carrying out a first treatment on the surface of the
The IP query system 503 is configured to query the cloud server for a dynamic host IP address according to the vehicle codes in the on-line vehicle list;
an in-vehicle springboard system 504 configured for accessing a host of the IP address by a default user;
wherein the default account is different from the domain controlled account.
It should be noted that, the intelligent authority management and control system 501 provided in the present embodiment can implement all the functions included in step S201 in the first embodiment, solve the same technical problem, achieve the same technical effect, and are not described herein again;
it should be noted that, the domain control system 502 provided in the present embodiment can implement all the functions included in steps S202 and S203 in the first embodiment, solve the same technical problem, achieve the same technical effect, and are not described herein again;
it should be noted that, the IP query system 503 provided in the present embodiment can implement all the functions included in step S204 in the first embodiment, solve the same technical problem, achieve the same technical effect, and are not described herein again;
it should be noted that, the vehicle-mounted springboard system 504 provided in this embodiment can implement all the functions included in step S205 in the first embodiment, solve the same technical problems, achieve the same technical effects, and are not described herein again;
it should be noted that, the device provided in the second embodiment and the method provided in the first embodiment belong to the same inventive concept, solve the same technical problem, achieve the same technical effect, and the device provided in the second embodiment can implement all the methods in the first embodiment, and the same points are not repeated.
Example III
Based on the same inventive concept, the embodiment of the present invention further provides a telnet device, as shown in fig. 6, including:
including a memory 602, a processor 601 and a user interface 603;
the memory 602 is used for storing a computer program;
the user interface 603 is configured to interact with a user;
the processor 601 is configured to read a computer program in the memory 602, where the processor 601 implements:
the user uses a domain control account to remotely log in;
performing matching verification on the domain control account;
determining the authority corresponding to the domain control account according to the result of the matching verification, and acquiring an on-line vehicle list;
determining a dynamic host IP address according to the vehicle codes in the online vehicle list;
a host accessing the IP address through a default user;
wherein the default account is different from the domain controlled account.
Where in FIG. 6, a bus architecture may comprise any number of interconnected buses and bridges, with one or more processors, represented in particular by processor 601, and various circuits of the memory, represented by memory 602, linked together. The bus architecture may also link together various other circuits such as peripheral devices, voltage regulators, power management circuits, etc., which are well known in the art and, therefore, will not be described further herein. The bus interface provides an interface. The processor 601 is responsible for managing the bus architecture and general processing, and the memory 602 may store data used by the processor 501 in performing operations.
The processor 601 may be CPU, ASIC, FPGA or a CPLD, and the processor 601 may also employ a multi-core architecture.
The processor 601, when executing the computer program stored in the memory 602, implements any of the telnet methods of the first embodiment.
It should be noted that, the device provided in the third embodiment and the method provided in the first embodiment belong to the same inventive concept, solve the same technical problem, achieve the same technical effect, and the device provided in the third embodiment can implement all the methods in the first embodiment, and the same points are not repeated.
The present application also proposes a processor readable storage medium. The processor-readable storage medium stores a computer program, and the processor implements any of the telnet methods of the first embodiment when executing the computer program.
It should be noted that, in the embodiment of the present application, the division of the units is schematic, which is merely a logic function division, and other division manners may be implemented in actual practice. In addition, each functional unit in each embodiment of the present application may be integrated in one processing unit, or each unit may exist alone physically, or two or more units may be integrated in one unit. The integrated units may be implemented in hardware or in software functional units.
It will be appreciated by those skilled in the art that embodiments of the present application may be provided as a method, system, or computer program product. Accordingly, the present application may take the form of an entirely hardware embodiment, an entirely software embodiment, or an embodiment combining software and hardware aspects. Furthermore, the present application may take the form of a computer program product embodied on one or more computer-usable storage media (including, but not limited to, magnetic disk storage, optical storage, and the like) having computer-usable program code embodied therein.
The present application is described with reference to flowchart illustrations and/or block diagrams of methods, apparatus (systems) and computer program products according to embodiments of the application. It will be understood that each flow and/or block of the flowchart illustrations and/or block diagrams, and combinations of flows and/or blocks in the flowchart illustrations and/or block diagrams, can be implemented by computer program instructions. These computer program instructions may be provided to a processor of a general purpose computer, special purpose computer, embedded processor, or other programmable data processing apparatus to produce a machine, such that the instructions, which execute via the processor of the computer or other programmable data processing apparatus, create means for implementing the functions specified in the flowchart flow or flows and/or block diagram block or blocks.
These computer program instructions may also be stored in a computer-readable memory that can direct a computer or other programmable data processing apparatus to function in a particular manner, such that the instructions stored in the computer-readable memory produce an article of manufacture including instruction means which implement the function specified in the flowchart flow or flows and/or block diagram block or blocks.
It will be apparent to those skilled in the art that various modifications and variations can be made in the present application without departing from the spirit or scope of the application. Thus, if such modifications and variations of the present application fall within the scope of the claims and the equivalents thereof, the present application is intended to cover such modifications and variations.

Claims (8)

1. A method of telnet comprising:
the user uses a domain control account to remotely log in;
performing matching verification on the domain control account;
determining the authority corresponding to the domain control account according to the result of the matching verification, and acquiring an on-line vehicle list;
determining a dynamic host IP address according to the vehicle codes in the online vehicle list;
a host accessing the IP address through a default user;
wherein the default account is different from the domain control account, the default account is an account with access host authority preset by the system, after the domain control account successfully applies for the dynamic IP of the vehicle end, the vehicle-mounted springboard system enters the system, a designated command pssh vehicle bottom number is input, a cloud interface is called according to the vehicle bottom number to acquire a plurality of dynamic IP and is displayed to a user, after the user selects, the user enters the system by default user with authority, only the system has readable authority after entering the system, if writing operation is needed, the intelligent management and control system is needed to acquire a password,
the online vehicle actively connects with a service end, acquires the sequence of registering the vehicle to the cloud, distributes an IP section, associates the vehicle bottom number with the IP, sets the IP address as the own virtual network card IP address when the VPN is started, and synchronizes the virtual IP into a dynamic address pool in the vehicle-mounted springboard system; when a user passes through the pssh vehicle bottom number of the vehicle-mounted springboard system, searching an IP address pool of the dynamic host according to the vehicle codes in the on-line vehicle list, obtaining a corresponding IP address in a matching way, and connecting the on-line vehicles by using the IP address; when the host with the IP address is accessed through the default user wifiadm, if the host and the host are consistent, the access is successful.
2. The method of claim 1, wherein prior to telnet using the domain controlled account further comprises:
and the user applies for the vehicle on the vehicle terminal line on the intelligent management and control system and obtains the authority of logging in the vehicle.
3. The method of claim 1, wherein the matching verification of the domain controlled account comprises:
and carrying out matching verification on the domain control account through a domain control system, if the user name and the password of the domain control account are correct, verifying to pass, otherwise, not verifying to pass.
4. The method of claim 1, wherein the user telnet using a domain controlled account comprises:
establishing a virtual special channel through a vehicle-mounted springboard system, wherein the virtual special channel is used for a tunnel for safe data transmission between a user and a vehicle;
and establishing a mapping relation between the domain name and the SN code of the vehicle-mounted system, and performing remote login through IP.
5. The method according to one of claims 1 to 4, wherein the default account is a system-preset account with access to the host.
6. A telnet device, comprising:
an intelligent management and control system configured to receive a remote login request for a domain controlled account;
the domain control system is configured to perform matching verification on the domain control account, determine the authority corresponding to the domain control account according to the matching verification result, and acquire an on-line vehicle list;
the IP query system is configured to query the cloud server for the IP address of the dynamic host according to the vehicle codes in the online vehicle list;
a vehicle-mounted springboard system configured for accessing a host of the IP address by a default user;
wherein the default account is different from the domain control account, the default account is an account with access host authority preset by the system, after the domain control account successfully applies for the dynamic IP of the vehicle end, the vehicle-mounted springboard system enters the system, a designated command pssh vehicle bottom number is input, a cloud interface is called according to the vehicle bottom number to acquire a plurality of dynamic IP and is displayed to a user, after the user selects, the user enters the system by default user with authority, only the system has readable authority after entering the system, if writing operation is needed, the intelligent management and control system is needed to acquire a password,
the online vehicle actively connects with a service end, acquires the sequence of registering the vehicle to the cloud, distributes an IP section, associates the vehicle bottom number with the IP, sets the IP address as the own virtual network card IP address when the VPN is started, and synchronizes the virtual IP into a dynamic address pool in the vehicle-mounted springboard system; when a user passes through the pssh vehicle bottom number of the vehicle-mounted springboard system, searching an IP address pool of the dynamic host according to the vehicle codes in the on-line vehicle list, obtaining a corresponding IP address in a matching way, and connecting the on-line vehicles by using the IP address; when the host with the IP address is accessed through the default user wifiadm, if the host and the host are consistent, the access is successful.
7. A telnet device comprising a memory, a processor, and a user interface;
the memory is used for storing a computer program;
the user interface is used for realizing interaction with a user;
the processor being configured to read a computer program in the memory, the processor implementing a telnet method according to one of claims 1 to 5 when the computer program is executed.
8. A processor-readable storage medium, characterized in that the processor-readable storage medium stores a computer program, which when executed by the processor implements a telnet method according to one of claims 1 to 5.
CN202110756594.9A 2021-07-05 2021-07-05 Remote login method, device and storage medium Active CN113497806B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN202110756594.9A CN113497806B (en) 2021-07-05 2021-07-05 Remote login method, device and storage medium

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN202110756594.9A CN113497806B (en) 2021-07-05 2021-07-05 Remote login method, device and storage medium

Publications (2)

Publication Number Publication Date
CN113497806A CN113497806A (en) 2021-10-12
CN113497806B true CN113497806B (en) 2023-07-04

Family

ID=77997892

Family Applications (1)

Application Number Title Priority Date Filing Date
CN202110756594.9A Active CN113497806B (en) 2021-07-05 2021-07-05 Remote login method, device and storage medium

Country Status (1)

Country Link
CN (1) CN113497806B (en)

Families Citing this family (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN114844697B (en) * 2022-04-29 2023-03-24 杭州云缔盟科技有限公司 Method and device for realizing remote access of Windows computer to AD domain and readable storage medium

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN105991613A (en) * 2015-03-03 2016-10-05 北京神州泰岳信息安全技术有限公司 Resource remote login method and system
CN106657091A (en) * 2016-12-28 2017-05-10 北京奇艺世纪科技有限公司 Online server authorization management method and system
CN110971566A (en) * 2018-09-29 2020-04-07 上海擎感智能科技有限公司 Account unified management method, system and computer readable storage medium
CN111490981A (en) * 2020-04-01 2020-08-04 广州虎牙科技有限公司 Access management method and device, bastion machine and readable storage medium
CN111639314A (en) * 2020-05-15 2020-09-08 京东数字科技控股有限公司 Container login system, method, server and storage medium

Family Cites Families (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20200402049A1 (en) * 2015-06-11 2020-12-24 APPI Technologia S/A (D.B.A. MUXI) Antifraud Resilient Transaction Identifier Datastructure Apparatuses, Methods and Systems
JP7076819B2 (en) * 2016-09-15 2022-05-30 ナッツ・ホールディングス、エルエルシー Move and store encrypted user data

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN105991613A (en) * 2015-03-03 2016-10-05 北京神州泰岳信息安全技术有限公司 Resource remote login method and system
CN106657091A (en) * 2016-12-28 2017-05-10 北京奇艺世纪科技有限公司 Online server authorization management method and system
CN110971566A (en) * 2018-09-29 2020-04-07 上海擎感智能科技有限公司 Account unified management method, system and computer readable storage medium
CN111490981A (en) * 2020-04-01 2020-08-04 广州虎牙科技有限公司 Access management method and device, bastion machine and readable storage medium
CN111639314A (en) * 2020-05-15 2020-09-08 京东数字科技控股有限公司 Container login system, method, server and storage medium

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
运维堡垒机的设计和应用前景分析;车千里;《信息与电脑(理论版)》;20170523(第10期);全文 *

Also Published As

Publication number Publication date
CN113497806A (en) 2021-10-12

Similar Documents

Publication Publication Date Title
CN112651011B (en) Login verification method, device and equipment for operation and maintenance system and computer storage medium
CN108289098B (en) Authority management method and device of distributed file system, server and medium
CN110049048B (en) Data access method, equipment and readable medium for government affair public service
CN107480509A (en) O&M safety auditing system logs in vessel process, system, equipment and storage medium
CN105812350B (en) Cross-platform single sign-on system
CN112528251B (en) User account authority management method, device, equipment and readable medium
CN113612740B (en) Authority management method and device, computer readable medium and electronic equipment
CN107770192A (en) Identity authentication method and computer-readable recording medium in multisystem
CN105162775A (en) Logging method and device of virtual machine
KR102080156B1 (en) Auto Recharge System, Method and Server
CN108377200A (en) Cloud user management method and system based on LDAP and SLURM
CN109587126A (en) User anthority identifying method and system
WO2021242454A1 (en) Secure resource authorization for external identities using remote principal objects
CN103975567B (en) Two-factor authentication method and virtual machine facility
CN111798302A (en) Quota updating method and device based on micro service, electronic equipment and storage medium
CN112202708A (en) Identity authentication method and device, electronic equipment and storage medium
CN105957170A (en) Intelligent work attendance management method and system based on cloud computing
CN105162774A (en) Virtual machine login method and device used for terminal
CN113497806B (en) Remote login method, device and storage medium
CN112905978B (en) Authority management method and device
CN106529216B (en) Software authorization system and software authorization method based on public storage platform
CN106156549A (en) Application program authorization processing method and device
CN113507375B (en) Remote login method and device based on time sequence password and storage medium
CN111814130B (en) Single sign-on method and system
CN115396229A (en) Cross-domain resource isolation sharing system based on block chain

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant