CN1750568A - Data service control system and control network and service control method - Google Patents

Data service control system and control network and service control method Download PDF

Info

Publication number
CN1750568A
CN1750568A CN200510102744.5A CN200510102744A CN1750568A CN 1750568 A CN1750568 A CN 1750568A CN 200510102744 A CN200510102744 A CN 200510102744A CN 1750568 A CN1750568 A CN 1750568A
Authority
CN
China
Prior art keywords
data service
user
information
control system
server
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN200510102744.5A
Other languages
Chinese (zh)
Other versions
CN1750568B (en
Inventor
李默芳
魏冰
周彬
王晓云
袁向阳
段翔
王崇萍
段晓东
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
China Mobile Communications Group Co Ltd
Original Assignee
China Mobile Communications Group Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by China Mobile Communications Group Co Ltd filed Critical China Mobile Communications Group Co Ltd
Priority to CN200510102744.5A priority Critical patent/CN1750568B/en
Publication of CN1750568A publication Critical patent/CN1750568A/en
Application granted granted Critical
Publication of CN1750568B publication Critical patent/CN1750568B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Landscapes

  • Telephonic Communication Services (AREA)

Abstract

This invention provides data service control system and data service control network for mobile communication network based on communication network, and method for controlling user data service request and SP server providing data service, which contains interface sub-system, database module and user information control module connected respectively with database module and interface sub-system, SP service module, ordering relation control module and SP synchronous module. Said invention provides uniform access mode and control system avoiding user privacy leakage and SP fraud.

Description

Data service control system and Control Network and service control method
Technical field
The present invention relates to a kind of data service control system and Control Network and service control method, be particularly related to a kind of data service control system, a kind of data service Control Network that comprises this data service control system, and a kind of method that the user data service service request is controlled or provided the data service service to control to the SP server based on described data service control system or data service Control Network.
Background technology
Raising along with the user terminal production technology, the fixed terminal that comprises hand-held mobile terminal and have the data service ability, function on the subscriber terminal equipment is complicated day by day, from initial monochromatic display screen to color screen again to the interpolation of camera, from simple ring to enriching changeable CRBT, from single-tone to 16 chords again to 32 chords, or the like; The service application that user terminal is supported also from simple speech business develop into compatible speech business and supplementary data services (such as, multimedia message, CRBT etc.).
Simultaneously, along with the development of IT technology, communication network and interconnect netlist reveal the trend of fusion.The real name of communication network, can run, anonymity, the low cost of highly reliable ability and the Internet, can expand etc. and to be bonded together, can provide easy-to-use, highly reliable good data service whenever and wherever possible for the user, formed the data services network that constitutes by user terminal, subscriber access system, operation system and service provider (Service Provider is called for short SP).The user is by subscriber access systems such as Internet or note, WAP, provide user terminal number to SP, order services such as ordering note, multimedia message, CRBT, SP offers user terminal by operation systems such as sms center, MMS center and Java download centers with the service that the user orders again.
Obviously, the user can realize ordering of service by mobile communications network or by the Internet network.But universal day by day along with multimedia message, CRBT and short message service, the consumer group grows stronger day by day, and some drawbacks are also appeared in one's mind gradually.
The first, be the fraud that has SP.Because the terminal use is generated by SP the relation of ordering of the business of SP, between terminal use and SP, directly carry out, operator has neither part nor lot in the generative process of the relation of ordering, and only be to send approach for SP provides information, therefore, operator can't confirm whether SP meets the relation of ordering to the information that the terminal use sends; SP can give arbitrarily by Short Message Service Gateway that the terminal use sends note, multimedia message and CRBT arbitrarily, and this process is uncontrolled, and under user's condition of unknown, SP will charge to the user behind transmission note, multimedia message and the CRBT of success; At this moment, even the user pinpoints the problems, not only the fund of duplicity consumption in advance can't be return, even also can meet with a lot of troubles when unsubscribe from services.
The second, there is user terminal user's fraud.Since business system can not the real-time judge terminal use in operation flow the state terminal; cause the appearance of following situation: the user uses the terminal of oneself to use professional in the SP registration; then the terminal of oneself is shut down; but the business of using SP to provide can be provided for he; SP and operator but can't sustain a loss from user's charge.
The 3rd, the risk that exists privacy of user to leak.Traditional data service with Subscriber Number MSISDN as user ID, no matter the user still is mobile network's subscribed services by the Internet, all need the user terminal number of oneself is informed SP, Subscriber Number MSISDN can be exposed to service provider SP inevitably.Service provider SP can be analyzed the Subscriber Number resource, finds out the customer group with characteristic value, and carries out some specific aim controls.For example, initiatively send the mass promotion advertisement to VIP user; Perhaps directly sell other mobile operator or the like the VIP Subscriber Number.
The 4th, service and control disperse.Because the user need order corresponding service respectively to different SP, opening and remove a certain service all needs special path, does not therefore have unified interface, also can not carry out unified control to all business that user terminal is ordered.
Obviously, can't carry out unified control and processing to the data business in the prior art scheme.
Summary of the invention
First purpose of the present invention is at the existing defective of above-mentioned existing communication network, and a kind of data service control system is provided, and this system provides unified data processing platform (DPP) for user terminal and SP server data.
Second purpose of the present invention is at the existing defective of above-mentioned existing communication network, a kind of data service Control Network that the existing communication network is managed is provided, this data service Control Network combines above-mentioned data service control system with the existing communication network, formation can prevent the user data network of SP and user's swindle.
The 3rd purpose of the present invention is according to data service control system or data service Control Network, a kind of method that the user data service service request is controlled is provided, this method is carried out authentication at the data service service request that the user sends, and whether decision carries out this request according to authenticating result.
The 4th purpose of the present invention is according to data service control system or data service Control Network, a kind of method that provides the data service service to control to the SP server is provided, this method is carried out authentication at the data service service that the SP server sends, and whether decision sends this service according to authenticating result.
For realizing above-mentioned first purpose, the invention provides a kind of data service control system, comprise an interface and a database module, also comprise:
One user information control module is connected with described database module with described interface respectively, and this user information control module is used to obtain the instruction of user terminal or SP server, or to user terminal or SP server return result; Also be used for the instruction of user terminal or SP server is carried out the authentication operations of user profile, or to user profile generate, delete, inquiry or alter operation;
One SP message control module is connected with described database module with described interface respectively, is used to obtain the instruction of user terminal or SP server, or to user terminal or SP server return result; Also be used for the instruction of user terminal or SP server is carried out the authentication operations of SP business information, or to the SP business information generate, delete, inquiry or alter operation;
One orders and concerns control module, is connected with described database module with described interface respectively, is used to obtain the instruction of user terminal or SP server, or to user terminal or SP server return result; Also be used for the authentication operations that the user orders relation information is carried out in the instruction of user terminal or SP server, or according to the authenticating result of described user information control module and described SP message control module to the user order that relation information generates, deletes, inquiry or alter operation; Described ordering concerns that control module also is connected with described SP message control module with described user information control module, is used to obtain the authenticating result of described user information control module and described SP message control module;
One SP synchronization module concerns that with described ordering control module is connected, and is used to obtain generation, deletion, inquiry or the modification information that the user orders relation information; Also be connected, be used for the user is ordered generation, deletion, inquiry or the modification information of relation information synchronously to the SP server with described interface.
For realizing second purpose, the invention provides a kind of data service Control Network, comprise user terminal, operation system, subscriber access system in the communication network and the SP server that is connected with communication network, also comprise above-mentioned data service control system, this data service control system is obtained user terminal or SP server instruction from operation system and/or subscriber access system, carry out ordering the operation of generation, deletion, modification and the inquiry of relation information, and authentication is carried out in described instruction at user profile, SP business information and user.
For realizing above-mentioned the 3rd purpose, the invention provides a kind of method that the user data service service request is controlled, comprise the steps:
Step 11, data service control system are obtained the solicited message of the data service service of user terminal transmission by subscriber access system and/or operation system, the business information that contains SP code, subscriber identity information and request in the described request information, described SP code is as destination code;
Step 12, data service control system are carried out authentication to described request information, to the unsanctioned solicited message of authentication, send the invalid information of request to the user, and the operation of end data business service; To the solicited message that authentication is passed through, execution in step 13;
When step 13, described request information were business use operation requests information, the data service control system was returned authentication by instruction to subscriber access system or operation system, and subscriber access system or operation system pass to the SP server with user's service request information;
Described request information is to order or during the unsubscription solicited message, the data service control system is carried out and ordered or the unsubscription operation;
When described request information is professional program request operation requests information, the data service control system generates this service chaining and subscriber access system or operation system is returned in this link, subscriber access system and/or operation system should link and user's service request information sends to the SP server together, and subscriber access system and/or operation system send to user terminal with this link;
When described request information was user inquiring operation requests information, the data service control system was finished corresponding query manipulation, and Query Result is returned the user by subscriber access system or operation system.
For realizing above-mentioned the 4th purpose, a kind of method that provides the data service service to control to the SP server also is provided in the present invention, comprises the steps:
Step 21, described subscriber access system and/or operation system receive user terminal number and the described business information that described SP server sends, and described user terminal number is a destination code;
Step 22, described subscriber access system and/or operation system generate and send service authentication information at described destination code and business information to described data service control system;
Step 23, data service control system are carried out authentication to described authentication request information and described destination code information, to the unsanctioned request of authentication, execution in step 4; To the request that authentication is passed through, execution in step 5;
Step 24, data service control system are invalid instruction to subscriber access system and/or operation system transmission authenticating result, and subscriber access system and/or operation system are invalid instruction to SP server forwards authenticating result;
Step 25, the service of passing through for authentication, the data service control system sends grant instruction to subscriber access system and/or operation system, and operation system and/or subscriber access system send to the specified user terminal of described destination code with described business information.
Therefore, the present invention has the following advantages:
1, unified user controls, and when setting up order relations user profile is checked, avoids the user to swindle;
2, unified SP controls, and carries out matching check when SP sends business information, avoids the SP swindle;
3, pseudo-code technology, SP can not be known user identity, avoids privacy of user to leak;
4, the unified access mode and the hierarchy of control, no matter the user is by mobile communications network or the Internet, and what visited all is the data service control system, avoided the problem of the corresponding a kind of access mode of a kind of data service, save user's time, and be convenient to user's inquiry and control.
Below in conjunction with drawings and Examples, technical scheme of the present invention is described in further detail.
Description of drawings
Fig. 1 is the structure chart of data service control system embodiment 1 of the present invention;
Fig. 2 is the structure chart of data service control system embodiment 2 of the present invention;
Fig. 3 is the structure chart of data service control system embodiment 3 of the present invention;
Fig. 4 is the structure chart of data service control system embodiment 4 of the present invention;
Fig. 5 is the structure chart of data service control system embodiment 5 of the present invention;
Fig. 6 is the structure chart of data service Control Network embodiment 1 of the present invention;
Fig. 7 is the structure chart of data service Control Network embodiment 2 of the present invention;
Fig. 8 is the structure chart of data service Control Network embodiment 3 of the present invention;
Fig. 9 is the structure chart of data service Control Network embodiment 4 of the present invention;
Figure 10 is the schematic diagram of data service control method of the present invention;
The flow chart of Figure 11 in the data service control method of the present invention user request service being controlled;
The flow chart of Figure 12 for providing service to control to SP in the data service control method of the present invention.
Embodiment
The specific embodiment 1 of data service control system A of the present invention as shown in Figure 1, is the system construction drawing of data service control system of the present invention; Comprising that an interface 11, one database module 12, one user information control modules 13, one SP message control modules 14, are ordered concerns a control module 15 and a SP synchronization module 16.
Interface 11 comprises interface that is connected with operation system and/or the interface that is connected with subscriber access system: operation system comprises one of MMS system, note system, Java download system, stream media system, personal information control service system, position service system, terminal control system, WAP gateway system or HTTP gateway system or its combination in any; Subscriber access system comprises one of note connecting system, WAP connecting system, WWW connecting system, voice value-added service (IVR) connecting system, client software connecting system or its combination in any.
Interface 11 also comprises message routing forwarding interface, carries out message forwarding when being used for the networking of data service control system.
Database 12 and user information control module 13, SP message control module 14 concerns that with ordering control module 15 is connected, mode with tabulation is preserved the corresponding data of above-mentioned module respectively, specifically, be according to user information control module 13, SP message control module 14 and order the operational order that concerns control module 15 and carry out user profile, SP business information and user order the generation of relation information, deletion or modification change perhaps provide and preserve data for user information control module 13, SP message control module 14 and the relation of ordering are controlled mould control module 15 and are called inquiry.
User information control module 13 is connected with interface 11, is used to obtain the instruction of user terminal or SP server, or to user terminal or SP server return result, and wherein, user terminal is portable terminal or fixed terminal with transmitting-receiving ability; When service request that the instruction of obtaining from interface 11 sends for the user, carry out generation, deletion or the alter operation of user profile, and this instruction carries out the authentication of user profile, and the user profile of this moment is subscriber identity information, such as judging whether validated user of this user; For user, this authentication sent to order by information concern control module 15 by authentication; When the instruction of obtaining from interface 11 for the SP server send to the query statement of subscriber identity information the time, inquire about and return the query manipulation result to the SP server by interface 11.
User information control module 13 is connected with database module 12,13 pairs of user profile of database module 12 storing subscriber information control modules generate, delete, the data of inquiry or alter operation, and the respective stored data are provided when the authentication of user profile is carried out in the instruction of 13 pairs of user terminals of user information control module or SP server.
SP message control module 14 is connected with interface 11, is used to obtain the instruction of user terminal or SP server, or to user terminal or SP server return result; When SP business information that the instruction of obtaining from interface 11 sends for the SP server, carry out preservation generation, deletion or the alter operation of SP business information; When service request that the instruction of obtaining from interface 11 sends for the user, carry out the authentication of SP business information, and authenticating result is sent to user terminal by interface 11; When the instruction of obtaining from interface 11 for the user send to the query statement of SP business information the time, inquire about and send the query manipulation result to user terminal by interface 11.
SP message control module 14 is connected with database module 12,13 pairs of SP business information of database module 12 storage SP message control modules generate, delete, the data of inquiry or alter operation, and the respective stored data are provided when the authentication of SP business information is carried out in the instruction of 14 pairs of user terminals of SP message control module or SP server.
Order and concern that control module 15 is connected with interface 11, be used to obtain the instruction of user terminal or SP server, or to user terminal or SP server return result; Be connected with SP message control module 14 with user information control module 13, be used to obtain the authenticating result of user information control module 13 and SP message control module 14; When service request that the instruction user that obtains from interface 11 sends, the authenticating result of invoke user information Control module 13 and SP message control module 14, if authentication is passed through, promptly the user has the right to use the SP business, and this SP is professional to be existed, and then generates or changes the user and order relation information; When releasing user order relations information command that the instruction of obtaining from interface 11 sends for the user, the deletion user orders relation information; When information on services that the instruction of obtaining from interface 11 sends for the SP server, user according to storage orders the authentication that relation information carries out information on services, and authentication is passed through, and then information on services is sent to the user by interface 11, otherwise, return service failure information and give the SP server; When the instruction that receives be the querying order relations information of user or the transmission of SP server, inquire about and return Query Result to user or SP server respectively.
Order and concern that control module 15 is connected with database module 12, database module 12 storage order concern that 15 couples of users of control module order that relation information generates, deletes, the data of inquiry or alter operation, and when ordering the authentication that the instruction that concerns 15 pairs of user terminals of control module or SP server orders relation information, provide the respective stored data.
SP synchronization module 16 concerns that control module 15 is connected with ordering, and is used to obtain generation, deletion, inquiry or the modification information that the user orders relation information; Be connected with described interface 11, be used for the user is ordered generation, deletion, inquiry or the modification information of relation information synchronously to the SP server.When the user orders relationship module 15 when carrying out generation that the user orders relation information, deletion, inquiry or alter operation, when carrying out database module 12 stored records, this information is sent to SP synchronization module 16, give the SP server with this information synchronously by interface 11 by SP synchronization module 16.
In the specific embodiment 1, interface 11 also comprises the interface that is connected with the BOSS system, by this interface 11, the BOSS system is synchronized to user information control module 14 with user account information, and is saved in by user information control module 14 in the user profile of database module 12.
During service request that the instruction of obtaining from interface 11 when user information control module 13 sends for the user, carry out generation, deletion or the alter operation of user profile, and carry out the authentication of user profile, the user profile of this moment comprises user account information and subscriber identity information, such as judging whether validated user of this user, and whether the user account remaining sum satisfies application condition etc.For user, this authentication sent to order by information concern control module 15 by authentication.
In the specific embodiment 1, interface 11 also comprises the interface that is connected with the SP service control system, and the SP service control system is a SP server connecting system, and the SP server is examined the professional application of SP by the SP service control system; The SP service control system is controlled the business information in the SP server, and by this interface 11, gives SP message control module 14 with the business information after the control and treatment synchronously by interface, generates the SP business information that is stored in the database module 12.That is to say that in the present embodiment, the SP business information that SP message control module 14 generates is not directly to obtain from the SP server, but obtains from the SP service control system.
The specific embodiment 2 of data service control system A of the present invention, referring to Fig. 2, comprise an interface 11, one database module, 12, one user information control modules, 13, one SP message control modules 14, one orders and concerns a control module 15 and a SP synchronization module 16, also comprise a pseudo-code control module 17, this pseudo-code control module 17 is serially connected between SP synchronization module 16 and the database module 12, is used to finish pseudo-code generation and/or the inquiry of Subscriber Number MSISDN.
Pseudo-code control module 17 adopts the pseudo-code generating algorithms to generate pseudo-codes, finishes forward and reverse encryption conversion between Subscriber Number MSISDN and the pseudo-code, and pseudo-code authenticity, integrity checking; This pseudo-code generating algorithm adopts key schedule, finishes the generation of the key that uses in the pseudo-code generating algorithm; Adopt the key derivation algorithm in this key schedule, ID finishes the dispersion of root key to the SP private key according to the SP sign.Wherein, pseudo-code generating algorithm, key schedule and key derivation algorithm can use arbitrary pseudo-code generating algorithm, key schedule and the key derivation algorithm known to those skilled in the art.
Pseudo-code control module 17 is set up the corresponding relation of user terminal number and pseudo-code, and sends user information control module 13 to by ordering relationship module, is stored in the database module 12 by user information control module 13.Through the control of pseudo-code control module 17, SP synchronization module 16 orders in the relation information for synchronously the user of SP server, and the pseudo-code that user terminal number is generated substitutes, and the SP server can not be recognized real user terminal number; Accordingly, order and concern in the information on services that SP server that control module 15 receives provides, destination Mobile Station International ISDN Number also is user's pseudo-code, then call pseudo-code control module 17 and carry out anti-fake sign indicating number control and obtain user terminal number, order subsequently relationship module 15 still to user terminal number corresponding with the SP business information order in addition authentication of relation information.
The specific embodiment 3 of data service control system A of the present invention, referring to Fig. 3, comprise an interface 11, one database module 12, one user information control module 13, one SP message control module 14, one orders and concerns a control module 15 and a SP synchronization module 16, also comprise a single sign-on module 18, this single-sign-on module 18 is embodied as the user by the mode at the embedded login page of SP server provides unified access of user and information inquiry control, specifically, be with the embedded login page of iframe mode in the SP server.This single-sign-on module 18 is connected with interface 11, and is mutual with user information control module 13, order relations control module 15 and SP message control module 14 by interface 11.Single sign-on module 18 is made of independent external interface (not shown) and database submodule (not shown), when the user logins by the login page of SP server, in fact sign in on the single-sign-on module 18 by the independent external interface (not shown) that is connected with the SP server; The user is stored in the database submodule (not shown) in login username, password and the random session key information that login page uses.When the user wants to use non-current SP professional, need not login once more, because this user's identity information has obtained the affirmation and the record of single-sign-on module 18, this user can carry out the inquiry of any SP business or this user terminal, single-sign-on module 18 is according to the record of database submodule (not shown), with mutual, carry out the query manipulation of user's command adapted thereto by interface 11 with user information control module 13, order relations control module 15 and SP message control module 14; Similarly, the user can carry out the generation of user profile or order deletion, modification of relation information etc. equally in single-sign-on module 18.Simultaneously, because single sign-on module 18 is not limited to the difference of SP server, therefore, can provide unified control for the user, such as unified business or the control of ordering.For example, the user lands some SP servers, selects service, and at this moment, the user is actual, and what use is to be embedded in the interior data service control system login page of SP; When the user jumps to SP2 when selecting service from SP1, because it has landed success in the data service control system, therefore need not land SP2 once more, can directly carry out services selection.
The specific embodiment 4 of data service control system A of the present invention, referring to Fig. 4, comprise an interface 11, one database module 12, one user information control module, 13, one SP message control modules 14, are ordered and are concerned a control module 15 and a SP synchronization module 16, also comprise some card control modules 19, this card control module 19 is used to carry out the operation of generation, authentication, destruction and the overtime control of user's charging point card; Be connected with user information control module 13 and be used for simultaneous user's information; Concern that control module 15 is connected, and is used to trigger the charging authentication function with ordering; Described some card control module is connected with interface 11, be used for to the SP server authentication operation that charges, and to BOSS system synchronization account information.
User's charging point card is disposable multidigit decimal sequence number, comprises user ID at least, timestamp, expense, false proof random sequence number, information of check code.
Point card control module 19 perhaps from the direct simultaneous user's account information of BOSS system, is carried out the generation of user's charging point card according to the user account information in the user information control module 13; And deduct the user account information of the corresponding amount of money of charging point card synchronously to BOSS.Simultaneously, the charging point card information is stored in the database module 12 as user account information by user information control module 13.
Use this user's charging point card, be equivalent to pre-payment has been carried out in service, when the user uses professional that SP provides, need not use user account authentication and synchronous BOSS to deduct the corresponding amount of money, and concern that by ordering control module 15 directly calls charging point card module 19, authenticated by interface 11 by charging point card module 19, authentication means is deducted the corresponding amount of money for revising charging point card data.
More embodiment of data service control system can be formed by the foregoing description 1-4 combination in any; The preferred embodiment 5 of notebook data service control system A, referring to Fig. 5, by an interface 11, one database module, 12, one user information control modules, 13, one SP message control modules 14, one orders and concerns a control module 15 and a SP synchronization module 16, one pseudo-code control module 17, a single sign-on module 18 and some card control modules 19 are formed, and simultaneously, are connected with BOSS system and SP service control system outside.
The specific embodiment 1 of data service Control Network of the present invention referring to Fig. 6, is the system construction drawing of data service Control Network of the present invention, is made of data service control system 1-a, subscriber access system/operation system 2, SP server 3 and user terminal 4.Wherein, data service control system 1-a be the ownership place of user terminal 4 according to service control system, subscriber access system/operation system 2 and SP server 3 carry out data interaction with data service control system 1-a.User terminal 4 is portable terminal or fixed terminal with transceive data professional ability.
The data service Control Network is the network that the communication network that is made of user terminal 4 and subscriber access system/operation system 2 and the SP server 3 that is connected with communication network are controlled.Data service control system 1-a obtains user terminal 4 or 3 instructions of SP server from subscriber access system/operation system 2 in the data service Control Network, carry out ordering generation, deletion, the modification of relation information, the operation of inquiry at user profile, SP business information and user, and the instruction of user terminal 4 or SP server 3 carried out authentication, will send to user terminal 4 or SP server 3 by the result of authentication.
The specific embodiment 2 of data service Control Network of the present invention referring to Fig. 7, is made of data service control system 1-a, subscriber access system/operation system 2, SP server 3, user terminal 4 and BOSS charge system 5.
User account information in the synchronous BOSS charge system 5 of data service control system 1-a carries out the authentication operations of user account information.
The specific embodiment 3 of data service Control Network of the present invention referring to Fig. 8, is made of data service control system 1-a, subscriber access system/operation system 2, SP server 3, user terminal 4 and SP service control system 6.
Data service control system 1-a is by the business information in the SP service control system 6 synchronous SP servers 3.
In the present embodiment, data service control system 1-a generation/synchronous SP business information is not directly to obtain from SP server 3, but obtains from SP service control system 6.
The specific embodiment 4 of data service Control Network of the present invention, referring to Fig. 9, constitute by data service control system 1-a, subscriber access system/operation system 2, SP server 3, user terminal 4, BOSS charge system 5 and SP service control system 6, also comprise data service control system 1-b, the subscriber access system, operation system and the SP server that carry out data interaction with data service control system 1-b are not shown in the figures.
For user terminal 4, data service control system 1-a is its ownership place data service control system; For SP server 3, data service control system 1-a is that it inserts ground data service control system.
When SP server 4 is certain user terminal (not shown) service, the ownership place data service control system of this user terminal is data service control system 1-b, when then this user terminal requests is served, service request information is sent to data business management system 1-b, and data business management system 1-b authentication also sends to SP server 3 with the service request information that authentication is passed through by subscriber access system/operation system 2; When SP server 3 provides service, information on services is sent to subscriber access system/operation system 2, subscriber access system/operation system 2 generates service authentication information and sends to data service control system 1-a according to information on services, data service control system 1-a is synchronized to data service control system 1-b with service authentication information, 1-b carries out authentication by the data service control system, and data service control system 1-b is synchronized to data service control system 1-a with authenticating result; If authentication is passed through, data service control system 1-a sends grant instruction to subscriber access system/operation system 2, subscriber access system/operation system 2 sends to the subscriber access system/operation system (not shown) of user terminal ownership place with information on services, sends to described user terminal (not shown) by the subscriber access system/operation system (not shown) of user terminal ownership place.
The specific embodiment 5 of data service Control Network of the present invention, for comprising an above data service control system in the data service Control Network, the foundation of these data service control system can be divided according to the region, such as, with administration province is the division of unit, etc.Each data service control system receives the instruction of this system's location operation system or subscriber access system, controls and serves by location operation system or subscriber access system, synchronously location SP service control system, SP, BOSS system data; Simultaneously, carry out data sync between each data service control system.
Referring to Figure 10, it is the schematic diagram of data service control method embodiment 1 of the present invention, when user terminal or SP send instruction or service are provided to the other side, earlier through subscriber access system/Service Gateway, through the control of data service control system, send to the other side through subscriber access system or Service Gateway by Service Gateway again.Wherein, comprise and provide service to control user request service and SP.
In this course, also by with synchronisation associated user's account information of BOSS charge system, SP service control system and the business information of SP; By being connected, will ordering the relation information synchronized transmission and give the SP server with the direct of SP server.
Referring to Figure 11, be the flow chart of in the data service control method of the present invention user request service being controlled.Comprise the steps:
Step 101, user send the solicited message that data service is served by subscriber access system and/or operation system, contain the business information of SP code, subscriber identity information and request in this solicited message, and this SP code is a destination code;
Step 102, data service control system are obtained this solicited message;
Step 103, data service control system are carried out authentication; Comprise according to the SP business information destination code of request and the business information of request are carried out authentication; Subscriber identity information is carried out authentication; The method of this authentication can adopt the arbitrary method for authenticating known to those skilled in the art; To the request that authentication is passed through, execution in step 103; Otherwise, execution in step 109;
The action type of step 104, judgement described request information, and generate the corresponding service code;
Step 105 is if the professional operation requests information of using, the data service control system is returned authentication by instruction to subscriber access system and/or operation system, subscriber access system or operation system send to the SP server with user's service request information, and execution in step 110;
Step 106 is if order or the unsubscription solicited message, and the data service control system is carried out and ordered or the unsubscription operation; Specifically comprise:
Step 1061, data service control system are judged generation or unsubscription relation; Be the unsubscription relation, then execution in step 1062; Otherwise, execution in step 1064;
If step 1062 unsubscription relation is then ordered the situation of relation in the data query service control system, confirm that this order relations exists; There is not execution in step 109;
The relation of ordering that exists in step 1063, the cancellation database, and carry out 1065;
Relation is ordered in step 1064, generation;
Step 1065, data service control system will be ordered the variation of relation information and be given the SP server synchronously by subscriber access system and/or operation system;
Step 1066, data service control system will be ordered the variation of relation information and be notified the user by subscriber access system and/or operation system, and execution in step 110;
Step 107 is if professional program request operation requests information, the data service control system generates this service chaining and this link is sent to subscriber access system/operation system, subscriber access system/operation system should link with user's request instruction and user's pseudo-code number and send to the SP server, subscriber access system/operation system sends to the user with this link, and execution in step 110;
Step 108 is if user inquiring operation requests information, and the data service control system is carried out respective queries, and Query Result is returned the user by subscriber access system and/or operation system, and execution in step 110;
Step 109, will ask invalid information to return the user by subscriber access system/operation system;
Step 110, the operation of end data business service.
Before the step 101, the data service control system is obtained the SP business information from the SP server, perhaps obtains the SP business information of SP server by the SP service control system, and this SP business information is preserved; Obtain subscriber identity information according to user terminal; SP business information and subscriber identity information all are used as authentication and use.
The embodiment 2 of the method for in the data service control method of the present invention user request service being controlled, be that step 101 also comprises the steps: to carry out synchronously with BOSS before, obtain user account information, perhaps after carrying out synchronously with BOSS, generate user's charging point card according to user account information, replace user account information, this user account information or charging point card are used to carry out paid data service service.
Wherein, the data service control system according to the step that user account information generates user's charging point card is: obtain simultaneous user's account information of BOSS, generate user's charging point card, deduct the user account information of the corresponding amount of money of charging point card to BOSS synchronously.The step that generates user's charging point card is for generating a disposable multidigit decimal sequence number, and this sequence number comprises user ID at least, timestamp, expense, false proof random sequence number, information of check code.
If carry out paid data service service, then the authentication to request is in the step 102: according to the SP business information destination code of request and the business information of request are carried out authentication; Subscriber identity information is carried out authentication; User account information is carried out authentication.The method of this authentication can adopt the arbitrary method for authenticating known to those skilled in the art.
The embodiment 3 of the method for in the data service control method of the present invention user request service being controlled, when user in the step 1 carries out service request by WWW connecting system and WAP connecting system, the user can be by carrying out the single-point register, freely switch the SP server in authentication by the back, do not need to pass through once more subscription authentication.
The user is that the user carries out the single sign-on operation by the page that is embedded in the iframe mode in the SP server by the step that WWW connecting system and WAP connecting system carry out service request.
The embodiment 4 of the method for in the data service control method of the present invention user request service being controlled, be in step 104, also the solicited message that authentication is passed through is carried out the pseudo-code control operation, be that user terminal number is carried out pseudo-code control, generate pseudo-code and replace the user terminal number that sends to the SP server.The pseudo-code control operation can adopt the pseudo-code generating algorithm to generate pseudo-code, finishes forward and reverse encryption conversion between Subscriber Number MSISDN and the pseudo-code, and the authenticity and integrity inspection of carrying out pseudo-code.The pseudo-code generating algorithm can adopt key schedule, is used for finishing the generation of the key that the pseudo-code generating algorithm uses.Key schedule can adopt the key derivation algorithm, and this key derivation algorithm is finished the dispersion of root key to SP server-specific key according to SP server identification ID.Wherein, pseudo-code generating algorithm, key schedule and key derivation algorithm can adopt arbitrary pseudo-code generating algorithm, key schedule and the key derivation algorithm known to those skilled in the art.
After user profile carried out pseudo-code control, the data service control system was also set up and the corresponding relation of stored user termination number and pseudo-code.
The embodiment 5 of the method for in the data service control method of the present invention user request service being controlled, be when the SP server inserts ground data service control system and is not the service of user terminal data service control system, the method that user request service is controlled.At this moment, the solicited message that the data service that data service control system in the step 101 is obtained the user terminal transmission by the subscriber access system or the operation system of the ownership place of user terminal is served, in the step 103, the operation that the data service control system is carried out authentication to described request information is to be undertaken by the data service control system of the ownership place of user terminal, and the service request that the data service control system of the ownership place of this user terminal will be by authentication sends to this SP server by the subscriber access system of the ownership place of user terminal or operation system subscriber access system or the operation system by the access ground of SP server.
Referring to Figure 12, be the embodiment 1 that provides service to control to SP in the data service control method of the present invention, comprise the steps:
Step 201, subscriber access system and/or operation system receive user terminal number and the business information that the SP server sends, and destination code is a user terminal number;
Step 202, subscriber access system and/or operation system generate and send service authentication information at destination code and business information to the data service control system, this service authentication information comprises authentication request and user terminal number, this authentication request comprises some diagnostic characteristicses of business information, such as content segments and SP service provider information etc.; The data service control system is obtained service authentication information, judges COS;
Step 203, for professional program request type, carry out the destination code authentication according to user profile, carry out the business information authentication according to the SP business information, the method for this authentication can adopt the arbitrary method for authenticating known to those skilled in the art; Judge whether the link that SP provides effective, promptly the user whether this service is crossed in program request; Authentication is passed through, execution in step 205; Otherwise, execution in step 206;
Step 204, for the ordering services type, carry out the destination code authentication according to user profile, carry out the business information authentication according to the SP business information, the method for this authentication can adopt the arbitrary method for authenticating known to those skilled in the art; Entitlement comprises orders the relation information authentication.The service that authentication is passed through, execution in step 205; Otherwise, execution in step 206;
Step 205, the service of passing through for authentication, the data service control system sends the instruction of serving grant to subscriber access system and/or operation system, and operation system and/or subscriber access system send to the specified user terminal of destination code with information on services;
Step 206, for the unsanctioned service of authentication, it is invalid instruction that the data service control system sends authenticating result to subscriber access system and/or operation system, and subscriber access system and/or operation system are refused issuing of this service and be invalid instruction to SP server forwards authenticating result.
The embodiment 2 that provides service to control to SP in the data service control method of the present invention, be before step 203 is carried out authentication, data service control system and BOSS carry out synchronously, obtain user account information, perhaps data service control system generates user's charging point card according to user account information, replace user account information, this user account information or user's charging point card are used to carry out paid data service service.
Wherein, the data service control system according to the step that user account information generates user's charging point card is: obtain simultaneous user's account information of BOSS, generate user's charging point card, deduct the user account information of the corresponding amount of money of charging point card to BOSS synchronously.The step that generates user's charging point card is for generating a disposable multidigit decimal sequence number, and this sequence number comprises user ID at least, timestamp, expense, false proof random sequence number, information of check code.
Then the authentication in the step 203 also comprises: user account information is carried out authentication, and the method for this authentication can adopt the arbitrary method for authenticating known to those skilled in the art.
When the data service control system provides paid data service service, step 205 also comprises, when described data service control system sends grant instruction, also be provided with described data service control system at the billing operation that sends business information to user terminal, the billing operation method is the described service fee that sends business information to user terminal of deduction in user account information, finish modification, and give the BOSS system synchronously amended user account information to user account information; Perhaps the charged party maneuver is corresponding the counting of deduction in user's charging point card, the service fee that this is counted and sends business information to user terminal corresponding to described.
The embodiment 3 that provides service to control to SP in the data service control method of the present invention, be when the user terminal number that obtains is pseudo-code, also user terminal number is carried out anti-fake sign indicating number control before the described step 203, will be converted to user terminal number with the destination code that pseudocode form sends.The concrete steps of destination code being carried out anti-fake sign indicating number control are: the user terminal number that data service control system query calls stores in advance and the corresponding relation of pseudo-code will be converted to user terminal number with the destination code that pseudocode form sends.
The embodiment 4 that provides service to control to SP in the data service control method of the present invention is when SP server access ground data service control system is not user terminal ownership place data service control system, provides the method for controlling of serving to SP.
The subscriber access system on the access of SP server ground or operation system receive user terminal number and the described business information that the SP server sends in the step 201;
The subscriber access system on the access of SP server ground and/or operation system generate and the data service control system to the access ground of SP server sends service authentication information in the step 202;
The step of authentication is in the step 203, and the data service control system on the access ground of SP server is forwarded to service authentication information the data service control system of the ownership place of user terminal; The data service control system of the ownership place of user terminal is carried out authentication to described service authentication information; The data service control system of the ownership place of user terminal is synchronized to authenticating result the data service control system on the access ground of SP server;
The step that sends grant instruction in the step 205 is: the data service control system on the access ground of SP server sends grant instruction to the subscriber access system or the operation system on the access ground of SP server;
The step that sends business information in the step 205 is: the subscriber access system on the access ground of SP server or subscriber access system or the operation system that operation system sends to described business information the ownership place of user terminal; The subscriber access system of the ownership place of user terminal or operation system send to the specified user terminal of described destination code with described business information.
It should be noted last that, above embodiment is only unrestricted in order to technical scheme of the present invention to be described, although the present invention is had been described in detail with reference to preferred embodiment, those of ordinary skill in the art is to be understood that, can make amendment or be equal to replacement technical scheme of the present invention, and not break away from the spirit and scope of technical solution of the present invention.

Claims (50)

1, a kind of data service control system is characterized in that: comprise an interface and a database module, also comprise:
One user information control module is connected with described database module with described interface respectively, and this user information control module is used to obtain the instruction of user terminal or SP server, or to user terminal or SP server return result; Also be used for the instruction of user terminal or SP server is carried out the authentication operations of user profile, or to user profile generate, delete, inquiry or alter operation;
One SP message control module is connected with described database module with described interface respectively, is used to obtain the instruction of user terminal or SP server, or to user terminal or SP server return result; Also be used for the instruction of user terminal or SP server is carried out the authentication operations of SP business information, or to the SP business information generate, delete, inquiry or alter operation;
One orders and concerns control module, is connected with described database module with described interface respectively, is used to obtain the instruction of user terminal or SP server, or to user terminal or SP server return result; Also be used for the authentication operations that the user orders relation information is carried out in the instruction of user terminal or SP server, or according to the authenticating result of described user information control module and described SP message control module to the user order that relation information generates, deletes, inquiry or alter operation; Described ordering concerns that control module also is connected with described SP message control module with described user information control module, is used to obtain the authenticating result of described user information control module and described SP message control module;
One SP synchronization module concerns that with described ordering control module is connected, and is used to obtain generation, deletion, inquiry or the modification information that the user orders relation information; Also be connected, be used for the user is ordered generation, deletion, inquiry or the modification information of relation information synchronously to the SP server with described interface.
2, according to the described data service control system of claim 1, it is characterized in that: described interface comprises interface that is connected with operation system and/or the interface that is connected with subscriber access system.
3, according to the described data service control system of claim 2, it is characterized in that: described operation system comprises one of MMS system, note system, Java download system, stream media system, personal information control service system, position service system, terminal control system, WAP gateway system or HTTP gateway system or its combination in any.
4, according to the described data service control system of claim 2, it is characterized in that: described subscriber access system comprises one of note connecting system, WAP connecting system, WWW connecting system, voice value-added service (IVR) connecting system, client software connecting system or its combination in any.
5, according to the described data service control system of claim 1, it is characterized in that: described interface also comprises message routing forwarding interface, carries out message forwarding when being used for the networking of data service control system.
6, according to the described data service control system of claim 1, it is characterized in that: described interface also comprises the interface that is connected with the BOSS system, described BOSS system is synchronized to the user information control module with user account information, and is saved in by the user information control module in the user profile of database module.
7, according to claim 1 or 6 described data service control system, it is characterized in that: described user profile comprises user account information and subscriber identity information.
8, according to the described data service control system of claim 1, it is characterized in that: described interface also comprises the interface that is connected with the SP service control system, described SP service control system is controlled the business information in the SP server, and the business information after will controlling is given the SP message control module synchronously by interface.
9, according to the described data service control system of claim 1, it is characterized in that: also be serially connected with a pseudo-code control module between described SP synchronization module and the database module, this pseudo-code control module is used to finish pseudo-code generation and/or the inquiry of Subscriber Number MSISDN.
10, according to the described data service control system of claim 1, it is characterized in that: described interface also is connected with a single sign-on module, this single sign-on module is mutual by described interface and user information control module, order relations control module and SP message control module, is used to the user to provide unified and inserts and information inquiry control.
11, according to the described data service control system of claim 10, it is characterized in that: described single sign-on module is made of independent external interface and database submodule, described independent external interface is connected with the SP server, and described database submodule is used to preserve relevant login username, password and random session key information.
12, according to the described data service control system of claim 1, it is characterized in that: described user information control module, order and concern that control module and interface also are connected with some card control modules, this card control module is used to carry out the operation of generation, authentication, destruction and the overtime control of user's charging point card; Be used for simultaneous user's information; Also be used to trigger the charging authentication function, to the SP server authentication operation that charges.
13, want 12 described data service control system according to right, it is characterized in that: described user's charging point card is disposable multidigit decimal sequence number, comprises user ID in this sequence number, timestamp, expense, false proof random sequence number, information of check code.
14, a kind of data service Control Network, comprise user terminal, operation system, subscriber access system in the communication network and the SP server that is connected with communication network, it is characterized in that also comprising the arbitrary described data service control system of claim 1-13, this data service control system is obtained user terminal or SP server instruction from operation system and/or subscriber access system, carry out ordering the operation of generation, deletion, modification and the inquiry of relation information, and authentication is carried out in described instruction at user profile, SP business information and user.
15, according to the described data service control system of claim 14, it is characterized in that: described user terminal is portable terminal or fixed terminal with transceive data professional ability.
16, according to the described data service Control Network of claim 14, it is characterized in that: described data service control system also is connected with the BOSS charge system, user account information in the synchronous BOSS charge system of data service control system carries out the authentication operations of user account information.
17, according to the described data service Control Network of claim 14, it is characterized in that: described data service control system also is connected with the SP service control system, is used for the business datum of synchronous SP server.
18, according to the described data service Control Network of claim 14, it is characterized in that: described data service control system is more than one, and described more than one data service control system is connected to each other, and carries out the data sync operation.
19, a kind of method that the user data service service request is controlled is characterized in that: comprise the steps:
Step 1, data service control system are obtained the solicited message of the data service service of user terminal transmission by subscriber access system and/or operation system, the business information that contains SP code, subscriber identity information and request in the described request information, described SP code is a destination code;
Step 2, data service control system are carried out authentication to described request information, to the unsanctioned solicited message of authentication, send the invalid information of request to the user, and the operation of end data business service; To the solicited message that authentication is passed through, execution in step 3;
When step 3, described request information were business use operation requests information, the data service control system was returned authentication by instruction to subscriber access system or operation system, and subscriber access system or operation system pass to the SP server with user's service request information;
Described request information is to order or during the unsubscription solicited message, the data service control system is carried out and ordered or the unsubscription operation;
When described request information is professional program request operation requests information, the data service control system generates this service chaining and subscriber access system or operation system is returned in this link, subscriber access system and/or operation system should link and user's service request information sends to the SP server together, and subscriber access system and/or operation system send to user terminal with this link;
When described request information was user inquiring operation requests information, the data service control system was finished corresponding query manipulation, and Query Result is returned the user by subscriber access system or operation system.
20, according to the described method that the user data service service request is controlled of claim 19, it is characterized in that: before the step 1, the data service control system is obtained the SP business information and this SP business information is preserved from the SP server.
21, according to the described method that the user data service service request is controlled of claim 20, it is characterized in that: described SP server sends to described data service control system by the SP service control system with described SP business information.
22, according to claim 19, the 20 or 21 described methods that the user data service service request is controlled, it is characterized in that: the authentication to solicited message described in the step 2 comprises: according to the SP business information destination code of request and the business information of request are carried out authentication; Subscriber identity information is carried out authentication.
23, according to the described method that the user data service service request is controlled of claim 19, it is characterized in that: in the step 2 described request information is carried out also comprising before the authentication, data service control system and BOSS carry out synchronously, obtain user account information, be used to carry out paid data service service.
24, want the 23 described methods that the user data service service request is controlled according to right, it is characterized in that: after described data service control system and BOSS carry out synchronously, described data service control system also generates user's charging point card according to user account information, is used to replace user account information.
25, want the 24 described methods that the user data service service request is controlled according to right, it is characterized in that: the step of described generation user charging point card is: the simultaneous user's account information that obtains BOSS, generate user's charging point card, deduct the user account information of the corresponding amount of money of charging point card to BOSS synchronously.
26, according to the described method that the user data service service request is controlled of claim 24, it is characterized in that: the step of described generation user charging point card is for generating a disposable multidigit decimal sequence number, and this sequence number comprises user ID, timestamp, cost data, false proof random sequence number and information of check code at least.
27, according to claim 23 or the 24 described methods that the user data service service request is controlled, it is characterized in that: the authentication to solicited message described in the step 2 comprises: according to the SP business information destination code of request and the business information of request are carried out authentication; Subscriber identity information is carried out authentication; User account information is carried out authentication.
28, according to the described method that the user data service service request is controlled of claim 19, it is characterized in that: in the described step 1, when user terminal carries out service request by described WWW connecting system and described WAP connecting system, can carry out the single sign-on operation by the page that is embedded in the iframe mode in the SP server.
29, according to the described method that the user data service service request is controlled of claim 19, it is characterized in that: in the described step 2, the data service control system is also carried out the pseudo-code control operation to the solicited message that authentication is passed through.
30, want the 29 described methods that the user data service service request is controlled according to right, it is characterized in that: described pseudo-code control operation is the operation that the data service control system replaces with user terminal number pseudo-code.
31, according to the described method that the user data service service request is controlled of claim 30, it is characterized in that: described pseudo-code control operation also comprises the authenticity and integrity inspection of adopting the pseudo-code generating algorithm to generate pseudo-code, finish forward and the reverse encryption conversion between Subscriber Number MSISDN and the pseudo-code and carry out described pseudo-code.
32, according to the described method that the user data service service request is controlled of claim 31, it is characterized in that: adopt key schedule in the described pseudo-code generating algorithm, be used for finishing the generation that pseudo-code generates employed key.
33, according to the described method that the user data service service request is controlled of claim 32, it is characterized in that: adopt the key derivation algorithm in the described key schedule, this key derivation algorithm is finished the dispersion of root key to SP server-specific key according to SP server identification ID.
34, according to claim 29 or the 30 described methods that the user data service service request is controlled, it is characterized in that: after the data service control system was carried out the pseudo-code control operation, this data service control system was also set up and the corresponding relation of stored user termination number and pseudo-code.
35, according to the described method that the user data service service request is controlled of claim 19, it is characterized in that: order in the step 3 or unsubscription operation specifically comprises:
Step 31, data service control system generate or the unsubscription relation information;
Step 32, data service control system will be ordered the variation of relation information and be given the SP server synchronously;
Step 33, data service control system will be ordered the variation of relation information and be notified the user by subscriber access system or operation system.
36, according to the described method that the user data service service request is controlled of claim 35, it is characterized in that: before the unsubscription relation, also comprise the situation of relation of ordering in the data query service control system in the step 31, confirm that this relation of ordering exists.
37, according to the described method that the user data service service request is controlled of claim 19, it is characterized in that: when the access ground of SP server is not the ownership place of user terminal, the solicited message that the data service that data service control system in the described step 1 is obtained the user terminal transmission by the subscriber access system or the operation system of the ownership place of user terminal is served, in the described step 2, the operation that the data service control system is carried out authentication to described request information is to be undertaken by the data service control system of the ownership place of user terminal, and the service request that the data service control system of the ownership place of this user terminal will be by authentication sends to this SP server by the subscriber access system of the ownership place of user terminal or operation system subscriber access system or the operation system by the access ground of SP server.
38. a method that provides the data service service to control to the SP server is characterized in that: comprise the steps:
Step 1, subscriber access system and/or operation system receive user terminal number and the business information that the SP server sends, and described user terminal number is a destination code;
Step 2, described subscriber access system and/or operation system generate and send service authentication information at described destination code and business information to the data service control system;
Step 3, data service control system are carried out authentication to described authentication request information and described destination code information, to the unsanctioned request of authentication, execution in step 4; To the request that authentication is passed through, execution in step 5;
Step 4, data service control system are invalid instruction to subscriber access system and/or operation system transmission authenticating result, and subscriber access system and/or operation system are invalid instruction to SP server forwards authenticating result;
Step 5, the service of passing through for authentication, the data service control system sends grant instruction to subscriber access system and/or operation system, and operation system and/or subscriber access system send to the specified user terminal of described destination code with described business information.
39, according to the described method that provides the data service service to control to the SP server of claim 38, it is characterized in that: the authentication in the step 3 is: according to SP business information of preserving in the described data service control system and user profile described destination code and business information are carried out authentication.
40, according to the described method that provides the data service service to control to the SP server of claim 38, it is characterized in that: step 3 comprises that also data service control system and BOSS carry out synchronously, obtain user account information, be used to carry out paid data service service.
41, want the 40 described methods that the user data service service request is controlled according to right, it is characterized in that: after described data service control system and BOSS carry out synchronously, described data service control system also generates user's charging point card according to user account information, is used to replace user account information.
42, want the 41 described methods that provide the data service service to control to the SP server according to right, it is characterized in that: described data service control system according to the step that user account information generates user's charging point card is: the simultaneous user's account information that obtains BOSS, generate user's charging point card, deduct the user account information of the corresponding amount of money of charging point card to BOSS synchronously.
43, according to the described method that provides the data service service to control to the SP server of claim 41, it is characterized in that: the step of described generation user charging point card is for generating a disposable multidigit decimal sequence number, and this sequence number comprises user ID, timestamp, cost data, false proof random sequence number and information of check code at least.
44, according to claim 40 or the 41 described methods that provide the data service service to control to the SP server, it is characterized in that: the authentication described in the step 3 comprises: according to SP business information of preserving in the described data service control system and user profile described destination code and business information are carried out authentication; User account information is carried out authentication.
45, according to the described method that provides the data service service to control to the SP server of claim 38, it is characterized in that described step 3 comprises that also described destination code is carried out anti-fake sign indicating number to be controlled, the destination code that is used for sending with pseudocode form is converted to user terminal number.
46, according to the described method that provides the data service service to control to the SP server of claim 45, it is characterized in that: the concrete steps of described destination code being carried out anti-fake sign indicating number control are: the data service control system is called the user terminal number of storage in advance and the corresponding relation of pseudo-code, will be converted to user terminal number with the destination code that pseudocode form sends.
47, according to the described method that provides the data service service to control to the SP server of claim 38, it is characterized in that: in the described step 5, when described data service control system sends grant instruction, also be provided with described data service control system at the billing operation that sends business information to user terminal.
48, according to the described method that provides the data service service to control to the SP server of claim 47, it is characterized in that: described billing operation is the described service fee that sends business information to user terminal of deduction in user account information, finish modification, and give the BOSS system synchronously amended user account information to user account information.
49, according to the described method that provides the data service service to control to the SP server of claim 47, it is characterized in that: described billing operation is corresponding the counting of deduction in user's charging point card, the service fee that this is counted and sends business information to user terminal corresponding to described.
50, according to the described method that provides the data service service to control to the SP server of claim 38, it is characterized in that: when the data service control system on the access of SP server ground is not the data service control system of ownership place of user terminal,
The subscriber access system on the access of SP server ground or operation system receive user terminal number and the described business information that described SP server sends in the described step 1;
The subscriber access system on the access of SP server ground and/or operation system generate and the data service control system to the access ground of SP server sends service authentication information in the described step 2;
The step of authentication is in the described step 3, and the data service control system on the access ground of SP server is forwarded to service authentication information the data service control system of the ownership place of user terminal; The data service control system of the ownership place of user terminal is carried out authentication to described service authentication information; The data service control system of the ownership place of user terminal is synchronized to authenticating result the data service control system on the access ground of SP server;
The step that sends grant instruction in the described step 5 is: the data service control system on the access ground of SP server sends grant instruction to the subscriber access system or the operation system on the access ground of SP server;
The step that sends business information in the described step 5 is: the subscriber access system on the access ground of SP server or subscriber access system or the operation system that operation system sends to described business information the ownership place of user terminal; The subscriber access system of the ownership place of user terminal or operation system send to the specified user terminal of described destination code with described business information.
CN200510102744.5A 2005-09-09 2005-09-09 Data service control system and control network and service control method Active CN1750568B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN200510102744.5A CN1750568B (en) 2005-09-09 2005-09-09 Data service control system and control network and service control method

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN200510102744.5A CN1750568B (en) 2005-09-09 2005-09-09 Data service control system and control network and service control method

Publications (2)

Publication Number Publication Date
CN1750568A true CN1750568A (en) 2006-03-22
CN1750568B CN1750568B (en) 2010-05-12

Family

ID=36605821

Family Applications (1)

Application Number Title Priority Date Filing Date
CN200510102744.5A Active CN1750568B (en) 2005-09-09 2005-09-09 Data service control system and control network and service control method

Country Status (1)

Country Link
CN (1) CN1750568B (en)

Cited By (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2010003381A1 (en) * 2008-07-11 2010-01-14 中兴通讯股份有限公司 Central authentication system of the voice information service and implementing method thereof
CN101742505A (en) * 2009-11-24 2010-06-16 广东宇天信通通信科技有限公司 System and method for providing integration of multiple data services
CN101282505B (en) * 2007-04-04 2011-10-05 中国电信股份有限公司 Method for managing service of telecommunication system
CN102420808A (en) * 2011-06-30 2012-04-18 南京中兴软创科技股份有限公司 Method for realizing single signon on telecom on-line business hall
CN103650541A (en) * 2011-04-01 2014-03-19 高通股份有限公司 Methods and apparatus for managing data connectivity

Family Cites Families (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1092886C (en) * 1998-12-15 2002-10-16 华为技术有限公司 Method for realizing intelligent network service management point to be unconcerned with concrete service
CN1218602C (en) * 2003-08-23 2005-09-07 华为技术有限公司 Method for implementing operational control of ringing back tone
CN1585212A (en) * 2004-03-28 2005-02-23 叶云弟 Manufacturing method for high-temperature resistant reinforced ring of commutator

Cited By (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101282505B (en) * 2007-04-04 2011-10-05 中国电信股份有限公司 Method for managing service of telecommunication system
WO2010003381A1 (en) * 2008-07-11 2010-01-14 中兴通讯股份有限公司 Central authentication system of the voice information service and implementing method thereof
CN101626434B (en) * 2008-07-11 2011-12-28 中兴通讯股份有限公司 Audio signal service centralized authentication system and realization method thereof
CN101742505A (en) * 2009-11-24 2010-06-16 广东宇天信通通信科技有限公司 System and method for providing integration of multiple data services
CN103650541A (en) * 2011-04-01 2014-03-19 高通股份有限公司 Methods and apparatus for managing data connectivity
CN103650541B (en) * 2011-04-01 2017-04-12 高通股份有限公司 Methods and apparatus for managing data connectivity
CN102420808A (en) * 2011-06-30 2012-04-18 南京中兴软创科技股份有限公司 Method for realizing single signon on telecom on-line business hall
CN102420808B (en) * 2011-06-30 2014-07-23 南京中兴软创科技股份有限公司 Method for realizing single signon on telecom on-line business hall

Also Published As

Publication number Publication date
CN1750568B (en) 2010-05-12

Similar Documents

Publication Publication Date Title
CN1178442C (en) Authentication system using network
CN1197297C (en) A platform information switch
CN102196035B (en) For providing the method and system of unified web service discovery
CN1855832A (en) Conference system and terminal apparatus
CN1946023A (en) Authentication and authorization architecture for an access gateway
US9946984B2 (en) System and method for transporting a document between a first service provider and a second service provider
CN101034984A (en) Establishing the true identify database of the user with the personal information submitted by the user
CN1823519A (en) Peer-to-peer telephone system
CN1852094A (en) Method and system for protecting account of network business user
CN1901460A (en) Billing method for an information communication network
CN1716251A (en) Method and apparatus for accessing web services
CN1901515A (en) Push-type information transmission method and transer apparatus therefor
CN1852319A (en) Method and system for realizing message business for network television network
CN101060403A (en) Wireless communication terminal-based interactive dynamic password safety service system
CN1859388A (en) Dynamic content transfer method and personalized engine and dynamic content transmitting system
CN1658636A (en) Immediate voice communication method for implementing interactive of 3G network and internet
CN1750568A (en) Data service control system and control network and service control method
CN101032118A (en) Method and system for processing a user's identity
CN1870636A (en) Method and system for client redirection
CN1917700A (en) Method for processing position information of mobile terminal
CN1859387A (en) Terminal user surrogate system and its method for subscribing and using service
CN101079132A (en) On-line payment system and method and on-line payment client terminal
CN1183732C (en) Service system in network
CN1258301C (en) Negotiation for telecommunication resources
CN1422060A (en) Method of opening control point business capacity of intelligent network service to the third party

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant