WO2009089771A1 - Method and system for network management, terminal and automatic configuration server - Google Patents

Method and system for network management, terminal and automatic configuration server Download PDF

Info

Publication number
WO2009089771A1
WO2009089771A1 PCT/CN2009/070018 CN2009070018W WO2009089771A1 WO 2009089771 A1 WO2009089771 A1 WO 2009089771A1 CN 2009070018 W CN2009070018 W CN 2009070018W WO 2009089771 A1 WO2009089771 A1 WO 2009089771A1
Authority
WO
WIPO (PCT)
Prior art keywords
management
terminal
parameter
module
automatic configuration
Prior art date
Application number
PCT/CN2009/070018
Other languages
French (fr)
Chinese (zh)
Inventor
Ke Zhang
Original Assignee
Huawei Technologies Co., Ltd.
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Huawei Technologies Co., Ltd. filed Critical Huawei Technologies Co., Ltd.
Publication of WO2009089771A1 publication Critical patent/WO2009089771A1/en

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L12/00Data switching networks
    • H04L12/66Arrangements for connecting between networks having differing types of switching systems, e.g. gateways

Definitions

  • the present invention relates to communication technologies, and more particularly to a network management method and system, a terminal, and an automatic configuration server. Background technique
  • the Simple Network Management Protocol (hereinafter referred to as SNMP) is the most commonly used environmental management protocol. It provides a method for collecting network management information from devices on the network, and also reports the device to the network management workstation. Problems and errors provide a way. According to the SNMP protocol, the network management server initiates network management. Because the network management server cannot know which terminal device is online, the terminal device cannot be effectively managed. Therefore, the SNMP protocol does not apply to the management of terminal devices.
  • TR069 protocol a network management protocol applicable to the terminal equipment: TR069 protocol.
  • TR069 protocol can be used to automate device configuration, software and hardware upgrades, device status and performance monitoring, and troubleshooting.
  • FIG. 1 it is a schematic structural diagram of a network management system based on the TR069 protocol in the prior art.
  • the network management system includes Customer Premises Equipment (hereinafter referred to as: CPE), Digital Subscriber Line Access Multiplexer (DSLAM), Broadband Remote Access Server (BRAS) and Automatic Configuration Server (Automatic Configuration Server, below) Abbreviation: ACS).
  • CPE Customer Premises Equipment
  • DLAM Digital Subscriber Line Access Multiplexer
  • BRAS Broadband Remote Access Server
  • Automatic Configuration Server Automatic Configuration Server
  • ACS Automatic Configuration Server
  • the remote centralized management of the terminal devices in the home namely: CPE
  • the managed terminal devices may be network devices such as a home gateway, a set top box, an IP telephone adapter, and a network storage device. .
  • the inventor has found that at least the following problems exist in the prior art:
  • the ACS manages the terminal device according to the management policy, that is, the management authority of the terminal device is completely controlled by the ACS.
  • the terminal device user lacks the authority to determine the terminal device's management rights managed by the ACS, and cannot participate in the network management.
  • the management of the ACS is accepted. In this way, the personalized configuration parameters set by the user on the terminal device may be modified by the ACS, and the legitimate interests of the terminal device user cannot be guaranteed. Summary of the invention
  • the technical problem to be solved by the embodiments of the present invention is: Allowing the terminal device user to participate in determining the authority of the terminal device to be managed by the network management.
  • a network management method includes: acquiring a management authority parameter for identifying a management authority that a terminal allows an automatic configuration server to manage;
  • the terminal is managed according to the management policy.
  • a terminal including:
  • a sending module configured to send the management permission parameter set by the setting module to the automatic configuration server or a pre-designated storage device.
  • an automatic configuration server including: a first obtaining module, configured to acquire a management authority parameter reported by a terminal;
  • a second obtaining module configured to acquire, according to the correspondence relationship between the management authority parameter and the management policy, a management policy corresponding to the management permission parameter acquired by the first acquiring module
  • a management module configured to manage the terminal according to the management policy acquired by the second obtaining module.
  • a network management system includes a terminal and an automatic configuration server, where the terminal includes:
  • a setting module configured to set an administrative permission parameter that identifies an administrative authority that the terminal allows to automatically configure the server to manage
  • a sending module configured to send the management permission parameter set by the setting module to the automatic configuration server or a pre-specified storage device
  • the automatic configuration server includes:
  • a first obtaining module configured to acquire a management authority parameter sent by the sending module
  • a second obtaining module configured to acquire, according to the correspondence relationship between the management authority parameter and the management policy, a management policy corresponding to the management permission parameter acquired by the first acquiring module
  • a management module configured to manage the terminal according to the management policy acquired by the second obtaining module.
  • the automatic configuration server obtains the management authority parameter for identifying the management authority that the terminal allows the automatic configuration server to manage
  • the automatic configuration server obtains the management authority parameter according to the correspondence relationship between the management authority parameter and the management policy.
  • Corresponding management policies, and managing the terminal according to the management policy allowing the terminal user to participate in determining the right of the terminal device to be managed by the automatically configured server to participate in the network management, thereby improving the management authority of the user, which can effectively ensure The legitimate interests of the terminal equipment user.
  • FIG. 1 is a schematic structural diagram of a network management system based on the TR069 protocol in the prior art
  • FIG. 2 is a flowchart of Embodiment 1 of a network management method according to the present invention
  • Embodiment 3 is a flowchart of Embodiment 2 of a network management method according to the present invention.
  • Embodiment 1 of a terminal according to the present invention is a schematic structural diagram of Embodiment 1 of a terminal according to the present invention.
  • Embodiment 2 of a terminal according to the present invention is a schematic structural diagram of Embodiment 2 of a terminal according to the present invention.
  • Embodiment 1 of an automatic configuration server according to the present invention
  • Embodiment 7 is a schematic structural diagram of Embodiment 2 of an automatic configuration server according to the present invention.
  • Embodiment 8 is a schematic structural diagram of Embodiment 1 of a network management system according to the present invention.
  • FIG. 9 is a schematic structural diagram of Embodiment 2 of a network management system according to the present invention. detailed description
  • the user should be allowed to select the terminal device that can be managed by the ACS.
  • the ACS obtains the correspondence information between the identifier parameter and the management policy, acquires a management policy corresponding to the management authority parameter, and manages the terminal according to the management policy, thereby allowing the user to participate in the decision.
  • the terminal device is authorized by the ACS to manage administrative rights, which enhances the user's management rights.
  • the terminal can be specifically a CPE.
  • FIG. 2 it is a flowchart of Embodiment 1 of a network management method according to the present invention, which includes the following steps:
  • Step 101 The user sets an administrative authority parameter for identifying the management authority of the CPE to allow the ACS to manage the CPE, for example: respectively, indicating that the ACS has high management on the CPE. Permissions, general administrative privileges, and "High”, “Mid”, “Low” with low administrative privileges. This administrative rights parameter can be stored in the CPE.
  • Step 102 The CPE reports the management authority parameter set by the user to the ACS.
  • the CPE may write the management permission parameter into the registration request information (Inform) of the TR069 protocol, and manage the permission parameter by using the registration request information to the ACS.
  • the specific content instance of an "Inform" message carrying the administrative permission parameter "High” reported to the ACS for the CPE is as follows:
  • Step 103 The ACS receives the management authority parameter reported by the CPE. If the CPE reports the management authority parameter to the ACS through the registration request information, the privilege parameter is obtained from the registration request information.
  • Step 104 The ACS queries the corresponding relationship information between the preset management authority parameter and the management policy, and obtains a management policy corresponding to the management authority parameter sent or acquired by the CPE.
  • Step 105 The ACS manages the CPE according to a management policy.
  • the ACS can initiate the configuration parameter query to the CPE through the "GetParameterValues" command.
  • the configuration parameters of the CPE stored in the ACS database are compared. If the two do not match, the CPE is delivered to the CPE.
  • the "SetParameterValues" command updates the configuration parameters of the CPE with the configuration parameters of the CPE stored in the database. If the privilege is that the privilege parameter is "Low”, the ACS does not send the configuration parameter query and subsequent operations to the CPE.
  • the operator sets various management policies for managing the terminal device on the ACS in advance, and the ACS performs corresponding management on the terminal device according to the management policy, that is, management of the terminal device.
  • the authority is completely controlled by the ACS.
  • the terminal device user lacks the right to decide the terminal device to be managed by the ACS. It cannot participate in the network management and can only passively accept the management of the ACS. In this way, the personalized configuration set by the user on the terminal device.
  • the parameters may be modified by the ACS and there is no guarantee of the legitimate benefit of the terminal device user.
  • the CPE can manage the user-configured management authority parameters to the ACS, and the ACS manages the management policy CPE corresponding to the management authority parameter, allowing the CPE user to participate in determining the CPE ACS.
  • the power to manage the management rights to participate in network management enhance the user's management authority, and effectively guarantee the legitimate interests of CPE users.
  • FIG. 3 it is a flowchart of Embodiment 2 of the network management method of the present invention, which includes the following steps:
  • Step 201 The user sets an administrative authority parameter for identifying the management authority for the CPE to allow the ACS to manage the CPE on the CPE, for example: respectively indicating that the ACS has high management authority, general management authority, and low management authority for the CPE. , "Mid", "Low”.
  • Step 202 The CPE stores the management authority parameter in a pre-designated storage device. It can be set that only the CPE user has the modify permission for the administrative authority parameter, which is read-only for the ACS.
  • Step 203 After the CPE restarts the connection with the ACS, the CPE sends the registration request information to the ACS, where the registration request information carries the CPE user identifier.
  • Step 204 After receiving the registration request information sent by the CPE, the ACS obtains the management authority parameter corresponding to the CPE user identifier from the storage device according to the CPE user identifier carried in the CPE.
  • Step 205 The ACS sets a correspondence between the management authority parameter and the management policy according to a preset Information, obtain the management policy corresponding to the management permission parameters.
  • Step 206 The ACS manages the CPE according to the management policy.
  • the ACS configures the CPE according to the management policy, or updates the configuration parameters of the CPE.
  • the operator sets various management policies for managing the terminal device on the ACS in advance, and the ACS performs corresponding management on the terminal device according to the management policy, that is, management of the terminal device.
  • the authority is completely controlled by the ACS.
  • the terminal device user lacks the right to decide the terminal device to be managed by the ACS. It cannot participate in the network management and can only passively accept the management of the ACS. In this way, the personalized configuration set by the user on the terminal device.
  • the parameters may be modified by the ACS and there is no guarantee of the legitimate benefit of the terminal device user.
  • the CPE may store the user-configured management authority parameter in a pre-designated storage device, and the ACS may obtain the management authority parameter set by the CPE user from the storage device according to the CPE identifier.
  • the management policy CPE corresponding to the management authority parameter is used for management, allowing the CPE user to participate in determining the power of the CPE to be managed by the ACS to participate in the network management, improving the management authority of the user, and effectively ensuring the legitimate interests of the CPE user.
  • the network management authority parameter is used as an example for the ACS to have "High", “Mid” and “Low” with high management authority, general management authority and low management authority.
  • the network management authority parameter may also be other embodiments.
  • the network management permission parameter is "High” and “Low” indicating that the ACS has all management rights and general management rights to the terminal, or directly indicates that the ACS has configuration parameter management rights to the terminal and does not have configuration parameter management rights. Y" and "N”, etc. As long as the correspondence between the management authority parameter and the management policy is set in the ACS, the ACS can determine the management rights to the terminal.
  • a terminal provided by the embodiment of the present invention includes interconnecting: a setting module 301, configured to send an administrative authority parameter set by the setting module 301 to an ACS or a pre-designated storage device.
  • FIG. 4 it is a schematic structural diagram of Embodiment 1 of the terminal of the present invention.
  • sending The module is specifically configured as a reporting module 302, which is used to report the management authority parameters to the ACS.
  • the terminal further includes a first storage module 303, which is respectively connected to the setting module 301 and the reporting module 302, and is configured to store the management authority parameter set by the setting module 301.
  • the reporting module 302 is configured from the first storage module 303.
  • the management authority parameter is obtained, and the management authority parameter is written into the registration request information, and the management authority parameter is reported to the ACS through the registration request information.
  • the configuration permission parameter can be sent to the ACS by the reporting module 302, so that the ACS can access the terminal according to the management authority parameter.
  • the corresponding management is performed, so that the terminal user can participate in determining the power of the terminal to be managed by the ACS, thereby improving the management authority of the user, and effectively ensuring the legitimate interests of the terminal user.
  • the sending module is specifically a storage executing module 302, configured to store the management permission parameter in a pre-designated storage device, and Can be used to send registration request information to the ACS.
  • the storable execution module 302 may store the management authority parameter in a pre-specified storage device, so that the ACS performs the terminal according to the management authority parameter.
  • Corresponding management so that the end user can participate in the power to determine the terminal's management rights managed by the ACS, enhance the user's management authority, and effectively guarantee the legitimate interests of the end user.
  • FIG. 6 is a schematic structural diagram of Embodiment 1 of an ACS according to the present invention, where the ACS of the embodiment includes:
  • the first obtaining module 401 is configured to obtain a management authority parameter reported by the terminal;
  • the second obtaining module 402 is configured to obtain, according to the correspondence relationship between the management authority parameter and the management policy, a management policy corresponding to the management authority parameter acquired by the first obtaining module 401, where the management authority parameter and the management policy are Correspondence information can be preset by the administrator;
  • the management module 403 is configured to manage the terminal according to the management policy acquired by the second obtaining module 402.
  • the ACS of the foregoing embodiment may further include a second storage module 404, and is connected to the second obtaining module 402, and configured to store correspondence relationship information between the management authority parameter and the management policy.
  • the corresponding relationship information in the second storage module 404 acquires a management policy corresponding to the management authority parameter.
  • the second storage module 404 configured in the ACS may store the correspondence relationship between the management authority parameter and the management policy, so that the ACS determines the corresponding management policy according to the management authority parameter set by the user, and performs corresponding processing on the terminal.
  • Rights management which enables end users to participate in determining the terminal's authority to be managed by the ACS.
  • FIG. 7 it is a schematic structural diagram of Embodiment 2 of an ACS according to the present invention.
  • the first obtaining module 401 is connected to each other: a receiving unit 501 is configured to receive a registration request reported by the reporting module 302 in the terminal.
  • the information obtaining unit 502 is configured to acquire, from the pre-designated storage device, a management authority parameter corresponding to the terminal user identifier carried in the registration request information received by the receiving unit 501.
  • the second obtaining module 402 is connected to the obtaining unit 502, and is configured to obtain a management policy corresponding to the management authority parameter acquired by the acquiring unit 502 according to the correspondence relationship between the management authority parameter and the management policy.
  • the ACS of the embodiment shown in FIG. 7 may further include a second storage module 404, and is connected to the second obtaining module 402, and configured to store correspondence relationship information between the management authority parameter and the management policy.
  • the second obtaining module 402 is configured according to Corresponding relationship information in the second storage module 404 acquires a management policy corresponding to the management authority parameter.
  • the network management system provided by the embodiment of the present invention includes a terminal 1 and an ACS 2, which can be used to implement the embodiment shown in FIG. 2 and FIG. 3 of the present invention.
  • the terminal 1 is connected to each other: a setting module sending module is configured to send the management authority parameter set by the setting module 301 to the ACS or the pre-specified storage device.
  • the ACS2 includes: a first obtaining module 401, configured to obtain a management authority parameter reported by the sending module; and a second obtaining module 402, configured to acquire, according to the correspondence relationship between the management authority parameter and the management policy, the first obtaining module 401
  • the management authority parameter 403 is used to manage the terminal 1 according to the management policy acquired by the second obtaining module 402. Management.
  • the terminal 1 may set a management authority parameter that allows the ACS2 to manage the management authority, and the ACS2 may obtain a corresponding management policy according to the management authority parameter set by the terminal 1, and according to the management policy.
  • the terminal 1 is managed to implement the power of the terminal user to determine the management authority of the terminal to be managed by the ACS, thereby improving the management authority of the user, and effectively ensuring the legitimate interests of the terminal user.
  • FIG. 8 it is a schematic structural diagram of Embodiment 1 of the network management system of the present invention.
  • the network management system of this embodiment can implement the process of the network management method embodiment shown in FIG. 2, which includes the terminal 1 and the ACS 2, where
  • the terminal 1 can use the terminal in any embodiment shown in FIG. 4, and the ACS2 can use the ACS provided in any embodiment shown in FIG. 6, where the upper 4 ⁇ module 302 of the terminal 1 is the first in the ACS2.
  • the obtaining module 401 reports the management authority parameter.
  • FIG. 9 it is a schematic structural diagram of Embodiment 2 of the network management system of the present invention.
  • the network management system of this embodiment can be used to implement the process flow of the network management method shown in FIG. 3 , which includes the terminal 1 and the storage device 3 .
  • the ACS2 wherein the storage device 3 is configured to store correspondence information between the terminal user identifier and the management authority parameter; the terminal 1 uses the terminal shown in the embodiment shown in FIG. 5, and the ACS2 can use any of the devices shown in FIG.
  • the ACS of the embodiment wherein the storage execution module 302 in the terminal 1 stores the management authority parameter in the storage device 3; the second acquisition module 402 in the ACS 2 is configured to acquire the terminal user carried in the registration request information from the storage device 3 Identifies the corresponding administrative permission parameters.
  • the method includes the steps of the foregoing method embodiments; and the foregoing storage medium includes: a medium that can store program codes, such as a ROM, a RAM, a magnetic disk, or an optical disk.
  • the user can set the management authority parameter for identifying the management authority for the terminal to allow the automatic configuration server to manage the terminal, and the automatic configuration server obtains the management authority according to the correspondence relationship between the management authority parameter and the management policy.
  • Parameter corresponding management strategy and The terminal is managed according to the management policy, and the user is allowed to participate in determining the right of the terminal device to be managed by the automatically configured server to participate in the network management, thereby improving the management authority of the user, and effectively ensuring the legitimate interests of the terminal device user.

Abstract

A method and a system for network management, a terminal and an automatic configuration server are disclosed. The network management method comprises: acquiring a management authority parameter for identifying a terminal allowing the automatic configuration server to manage the management authority; acquiring the management policy corresponding to the said management policy according to the relationship between the management authority parameter and the management policy; managing the terminal according to the management policy.

Description

网络管理方法与系统、 终端与自动配置服务器 本申请要求于 2008 年 1 月 11 日提交中国专利局、 申请号为 200810056076.0、 发明名称为 "网络管理方法与系统、 终端与自动配置服务 器" 的中国专利申请的优先权, 其全部内容通过引用结合在本申请中。 技术领域  Network Management Method and System, Terminal and Automatic Configuration Server This application claims to be submitted to the Chinese Patent Office on January 11, 2008, the application number is 200810056076.0, and the invention is entitled "Network Management Method and System, Terminal and Automatic Configuration Server". Priority of the application, the entire contents of which are incorporated herein by reference. Technical field
本发明涉及通信技术, 尤其是一种网络管理方法与系统、 终端与自动配 置服务器。 背景技术  The present invention relates to communication technologies, and more particularly to a network management method and system, a terminal, and an automatic configuration server. Background technique
现有的通信技术中, 数字用户线(X Digital Subscriber Line , 以下简称: xDSL ) 已经是家庭和小企业宽带接入的主流。 简单网络管理协议 (Simple Network Management Protocol, 以下简称: SNMP )是目前最常用的环境管理 协议, 它提供了一种从网络上的设备中收集网络管理信息的方法, 也为设备 向网络管理工作站报告问题和错误提供了一种方法。 根据 SNMP协议, 由网 管服务器发起网管管理, 由于网管服务器无法获知哪个终端设备在线, 无法 对终端设备进行有效管理。 因此, SNMP协议不适用于终端设备的管理。  Among the existing communication technologies, the digital subscriber line (X Digital Subscriber Line, hereinafter referred to as xDSL) has become the mainstream of broadband access for homes and small businesses. The Simple Network Management Protocol (hereinafter referred to as SNMP) is the most commonly used environmental management protocol. It provides a method for collecting network management information from devices on the network, and also reports the device to the network management workstation. Problems and errors provide a way. According to the SNMP protocol, the network management server initiates network management. Because the network management server cannot know which terminal device is online, the terminal device cannot be effectively managed. Therefore, the SNMP protocol does not apply to the management of terminal devices.
为了可以对终端设备进行有效管理, DSL论坛组织提出了适用于终端设 备的网管协议: TR069协议。 TR069协议可用于完成设备的自动配置、 设备的 软件和硬件的升级、 设备的状态和性能监测以及故障诊断。 通过部署基于 TR069协议的网管系统, 可以在艮大程度上减少用户对终端设备的配置 /管理 工作, 提高终端设备的易用性与可管理性, 便于家庭网络中终端设备的快速 部署与业务的迅速开展。  In order to effectively manage the terminal equipment, the DSL Forum organization proposed a network management protocol applicable to the terminal equipment: TR069 protocol. The TR069 protocol can be used to automate device configuration, software and hardware upgrades, device status and performance monitoring, and troubleshooting. By deploying the network management system based on the TR069 protocol, you can reduce the user's configuration/management of terminal devices to a large extent, improve the ease of use and manageability of terminal devices, and facilitate the rapid deployment and service of terminal devices in the home network. Develop quickly.
如图 1所示, 为现有技术基于 TR069协议的网络管理系统的结构示意图, 该网络管理系统包括用户驻地设备 ( Customer Premises Equipment ,以下简称: CPE ) 、 数字用户线接入复用器( Digital Subscriber Line Access Multiplexer, 以下简称: DSLAM )、宽带远程接入服务器( Broadband Remote Access Server, 以下简称: BRAS )与自动配置服务器( Automatic Configuration Server, 以下 简称: ACS ) 。 在基于 TR069协议的网络管理系统中, 家庭中终端设备, 即: CPE的远程集中管理主要由 ACS来完成, 被管理的终端设备可以是家庭网关、 机顶盒、 IP电话适配器、 网络存储设备等网络设备。 As shown in FIG. 1 , it is a schematic structural diagram of a network management system based on the TR069 protocol in the prior art. The network management system includes Customer Premises Equipment (hereinafter referred to as: CPE), Digital Subscriber Line Access Multiplexer (DSLAM), Broadband Remote Access Server (BRAS) and Automatic Configuration Server (Automatic Configuration Server, below) Abbreviation: ACS). In the network management system based on the TR069 protocol, the remote centralized management of the terminal devices in the home, namely: CPE, is mainly performed by the ACS. The managed terminal devices may be network devices such as a home gateway, a set top box, an IP telephone adapter, and a network storage device. .
在实现本发明的过程中, 发明人发现现有技术至少存在如下问题: 在现有的基于 TR069协议的网络管理系统中, 运营商预先在 ACS上设置 用于管理终端设备的各种管理策略, 由 ACS根据该管理策略对终端设备进行 相应管理, 即: 终端设备的管理权限完全由 ACS控制, 终端设备用户缺乏自 主决定终端设备受 ACS管理的管理权限的权力, 无法参与网络管理, 只能被 动接受 ACS的管理, 这样, 由用户在终端设备上设置的个性化的配置参数可 能被 ACS修改, 无法保证终端设备用户的正当利益。 发明内容  In the process of implementing the present invention, the inventor has found that at least the following problems exist in the prior art: In the existing network management system based on the TR069 protocol, the operator sets various management policies for managing the terminal device on the ACS in advance. The ACS manages the terminal device according to the management policy, that is, the management authority of the terminal device is completely controlled by the ACS. The terminal device user lacks the authority to determine the terminal device's management rights managed by the ACS, and cannot participate in the network management. The management of the ACS is accepted. In this way, the personalized configuration parameters set by the user on the terminal device may be modified by the ACS, and the legitimate interests of the terminal device user cannot be guaranteed. Summary of the invention
本发明实施例所要解决的技术问题是: 允许终端设备用户参与决定终端 设备受网管管理的权限。  The technical problem to be solved by the embodiments of the present invention is: Allowing the terminal device user to participate in determining the authority of the terminal device to be managed by the network management.
根据本发明实施例的第一个方面, 提供的一种网络管理方法, 包括: 获取用于标识终端允许自动配置服务器对其进行管理的管理权限的管理 权限参数;  According to a first aspect of the embodiments of the present invention, a network management method includes: acquiring a management authority parameter for identifying a management authority that a terminal allows an automatic configuration server to manage;
根据管理权限参数与管理策略之间的对应关系信息, 获取与所述管理权 限参数相应的管理策略;  Obtaining a management policy corresponding to the management authority parameter according to the correspondence relationship between the management authority parameter and the management policy;
根据所述管理策略对所述终端进行管理。  The terminal is managed according to the management policy.
根据本发明实施例的第二个方面, 提供的一种终端, 包括:  According to a second aspect of the embodiments of the present invention, a terminal is provided, including:
设置模块, 用于设置标识终端允许自动配置服务器对其进行管理的管理 发送模块, 用于向所述自动配置服务器或预先指定的存储装置发送所述 设置模块设置的所述管理权限参数。 A setting module for setting management for the identification terminal to allow the automatic configuration server to manage it And a sending module, configured to send the management permission parameter set by the setting module to the automatic configuration server or a pre-designated storage device.
根据本发明实施例的第三个方面, 提供的一种自动配置服务器, 包括: 第一获取模块, 用于获取终端上报的管理权限参数;  According to a third aspect of the embodiments of the present invention, an automatic configuration server is provided, including: a first obtaining module, configured to acquire a management authority parameter reported by a terminal;
第二获取模块,用于根据管理权限参数与管理策略之间的对应关系信息, 获取与所述第一获取模块获取的所述管理权限参数相应的管理策略;  a second obtaining module, configured to acquire, according to the correspondence relationship between the management authority parameter and the management policy, a management policy corresponding to the management permission parameter acquired by the first acquiring module;
管理模块, 用于根据所述第二获取模块获取到的所述管理策略对所述终 端进行管理。  And a management module, configured to manage the terminal according to the management policy acquired by the second obtaining module.
根据本发明实施例的第四个方面, 提供的一种网络管理系统, 包括终端 与自动配置服务器, 所述终端包括:  According to a fourth aspect of the present invention, a network management system includes a terminal and an automatic configuration server, where the terminal includes:
设置模块, 用于设置标识终端允许自动配置服务器对其进行管理的管理 权限的管理权限参数;  a setting module, configured to set an administrative permission parameter that identifies an administrative authority that the terminal allows to automatically configure the server to manage;
发送模块, 用于向所述自动配置服务器或预先指定的存储装置发送所述 设置模块设置的所述管理权限参数;  a sending module, configured to send the management permission parameter set by the setting module to the automatic configuration server or a pre-specified storage device;
所述自动配置服务器包括:  The automatic configuration server includes:
第一获取模块, 用于获取所述发送模块发送的管理权限参数;  a first obtaining module, configured to acquire a management authority parameter sent by the sending module;
第二获取模块,用于根据管理权限参数与管理策略之间的对应关系信息, 获取与所述第一获取模块获取的所述管理权限参数相应的管理策略;  a second obtaining module, configured to acquire, according to the correspondence relationship between the management authority parameter and the management policy, a management policy corresponding to the management permission parameter acquired by the first acquiring module;
管理模块, 用于根据所述第二获取模块获取到的所述管理策略对所述终 端进行管理。  And a management module, configured to manage the terminal according to the management policy acquired by the second obtaining module.
本发明实施例中, 自动配置服务器获取用于标识终端允许自动配置服务 器对其进行管理的管理权限的管理权限参数后, 根据管理权限参数与管理策 略之间的对应关系信息, 获取与管理权限参数相应的管理策略, 并根据该管 理策略对所述终端进行管理, 允许终端用户参与决定终端设备受自动配置服 务器管理的管理权限的权力, 以参与网络管理, 提升了用户的管理权限, 可 有效保证终端设备用户的正当利益。 下面通过附图和实施例, 对本发明的技术方案做进一步的详细描述。 附图说明 In the embodiment of the present invention, after the automatic configuration server obtains the management authority parameter for identifying the management authority that the terminal allows the automatic configuration server to manage, the automatic configuration server obtains the management authority parameter according to the correspondence relationship between the management authority parameter and the management policy. Corresponding management policies, and managing the terminal according to the management policy, allowing the terminal user to participate in determining the right of the terminal device to be managed by the automatically configured server to participate in the network management, thereby improving the management authority of the user, which can effectively ensure The legitimate interests of the terminal equipment user. The technical solution of the present invention will be further described in detail below through the accompanying drawings and embodiments. DRAWINGS
图 1为现有技术基于 TR069协议的网络管理系统的结构示意图; 图 2为本发明网络管理方法实施例一的流程图;  1 is a schematic structural diagram of a network management system based on the TR069 protocol in the prior art; FIG. 2 is a flowchart of Embodiment 1 of a network management method according to the present invention;
图 3为本发明网络管理方法实施例二的流程图;  3 is a flowchart of Embodiment 2 of a network management method according to the present invention;
图 4为本发明终端实施例一的结构示意图;  4 is a schematic structural diagram of Embodiment 1 of a terminal according to the present invention;
图 5为本发明终端实施例二的结构示意图;  5 is a schematic structural diagram of Embodiment 2 of a terminal according to the present invention;
图 6为本发明自动配置服务器实施例一的结构示意图;  6 is a schematic structural diagram of Embodiment 1 of an automatic configuration server according to the present invention;
图 7为本发明自动配置服务器实施例二的结构示意图;  7 is a schematic structural diagram of Embodiment 2 of an automatic configuration server according to the present invention;
图 8为本发明网络管理系统实施例一的结构示意图;  8 is a schematic structural diagram of Embodiment 1 of a network management system according to the present invention;
图 9为本发明网络管理系统实施例二的结构示意图。 具体实施方式  FIG. 9 is a schematic structural diagram of Embodiment 2 of a network management system according to the present invention. detailed description
由于终端设备直接面向用户, 为了维护用户的正当利益, 应该允许用户 选择终端设备可受 ACS管理的权限, 例如: 只允许 ACS对该终端发起自动 升级, 但不允许修改终端的配置参数。 本发明实施例中, ACS获取用于标识 参数与管理策略之间的对应关系信息, 获取与该管理权限参数相应的管理策 略, 并根据该管理策略对所述终端进行管理, 从而允许用户参与决定终端设 备受 ACS管理的管理权限的权力, 提升用户的管理权限。 其中的终端具体可 以为 CPE。  Because the terminal device is directly facing the user, in order to maintain the legitimate interests of the user, the user should be allowed to select the terminal device that can be managed by the ACS. For example, only the ACS is allowed to initiate an automatic upgrade to the terminal, but the configuration parameters of the terminal are not allowed to be modified. In the embodiment of the present invention, the ACS obtains the correspondence information between the identifier parameter and the management policy, acquires a management policy corresponding to the management authority parameter, and manages the terminal according to the management policy, thereby allowing the user to participate in the decision. The terminal device is authorized by the ACS to manage administrative rights, which enhances the user's management rights. The terminal can be specifically a CPE.
如图 2所示, 为本发明网络管理方法实施例一的流程图, 其包括以下步 骤:  As shown in FIG. 2, it is a flowchart of Embodiment 1 of a network management method according to the present invention, which includes the following steps:
步骤 101 , 用户预先在 CPE上设置用于标识 CPE允许 ACS对其进行管 理的管理权限的管理权限参数, 例如: 分别表示 ACS对该 CPE具有高管理 权限、 一般管理权限与低管理权限的 "High"、 "Mid" , "Low"。 该管理权限 参数可以存储在 CPE中。 Step 101: The user sets an administrative authority parameter for identifying the management authority of the CPE to allow the ACS to manage the CPE, for example: respectively, indicating that the ACS has high management on the CPE. Permissions, general administrative privileges, and "High", "Mid", "Low" with low administrative privileges. This administrative rights parameter can be stored in the CPE.
步骤 102, CPE向 ACS上报用户设置的管理权限参数。  Step 102: The CPE reports the management authority parameter set by the user to the ACS.
具体的, CPE可以在向 ACS发起注册请求时,将管理权限参数写入注册 请求信息( TR069协议的 Inform )中, 通过该注册请求信息向 ACS上 4艮管理 权限参数。 如下所示, 为 CPE向 ACS上报的携带有管理权限参数 "High" 的一个 "Inform" 消息的具体内容实例:  Specifically, when the CPE initiates the registration request, the CPE may write the management permission parameter into the registration request information (Inform) of the TR069 protocol, and manage the permission parameter by using the registration request information to the ACS. As shown below, the specific content instance of an "Inform" message carrying the administrative permission parameter "High" reported to the ACS for the CPE is as follows:
<ParameterList soap:arrayType="cwmp:ParameterValueStruct[2]">  <ParameterList soap:arrayType="cwmp:ParameterValueStruct[2]">
<ParameterValue Struct>  <ParameterValue Struct>
<Name>XXXXXXX</Name>  <Name>XXXXXXX</Name>
<Value  <Value
xsi:type="xsd:string">XXXXXXX</Value>  Xsi:type="xsd:string">XXXXXXX</Value>
</ParameterValue Struct>  </ParameterValue Struct>
<ParameterValueStruct>  <ParameterValueStruct>
<Name>InternetGatewayDevice.ManagementServer.AcsPriority</Nam>  <Name>InternetGatewayDevice.ManagementServer.AcsPriority</Nam>
<Value xsi:type="xsd: string">High</Value> </ParameterValueStruct>  <Value xsi:type="xsd: string">High</Value> </ParameterValueStruct>
</ParameterList>  </ParameterList>
步骤 103 , ACS接收 CPE上报的管理权限参数, 若 CPE通过注册请求 信息向 ACS上报管理权限参数, 则从注册请求信息中获取管理权限参数。  Step 103: The ACS receives the management authority parameter reported by the CPE. If the CPE reports the management authority parameter to the ACS through the registration request information, the privilege parameter is obtained from the registration request information.
步骤 104, ACS查询预先设置的管理权限参数与管理策略之间的对应关 系信息, 获取与 CPE发送的或获取到的管理权限参数相应的管理策略。  Step 104: The ACS queries the corresponding relationship information between the preset management authority parameter and the management policy, and obtains a management policy corresponding to the management authority parameter sent or acquired by the CPE.
步骤 105 , ACS根据管理策略对所述 CPE进行管理。  Step 105: The ACS manages the CPE according to a management policy.
例如: 若根据预先设置的规则, CPE向 ACS上报的携带有管理权限参数 为 "High" , 表示 ACS 可以完全管理该 CPE , 则 ACS 通过可以通过 "GetParameterValues" 命令向 CPE发起配置参数查询, 并与 ACS数据库中 存储的该 CPE 的配置参数进行比较, 若二者不匹配, 则向 CPE 下发 "SetParameterValues"命令, 以数据库中存储的该 CPE的配置参数更新 CPE 的配置参数。而如果权限为 CPE向 ACS上报的携带有管理权限参数为 "Low", 表示 ACS对该 CPE的管理权限较低,则 ACS不向 CPE发起配置参数查询及 后续操作。 For example, if the CPE carries the management permission parameter "High" to the ACS, the ACS can initiate the configuration parameter query to the CPE through the "GetParameterValues" command. The configuration parameters of the CPE stored in the ACS database are compared. If the two do not match, the CPE is delivered to the CPE. The "SetParameterValues" command updates the configuration parameters of the CPE with the configuration parameters of the CPE stored in the database. If the privilege is that the privilege parameter is "Low", the ACS does not send the configuration parameter query and subsequent operations to the CPE.
在现有的基于 TR069协议的网络管理系统中, 运营商预先在 ACS上设置 用于管理终端设备的各种管理策略, 由 ACS根据该管理策略对终端设备进行 相应管理, 即: 终端设备的管理权限完全由 ACS控制, 终端设备用户缺乏自 主决定终端设备受 ACS管理的管理权限的权力, 无法参与网络管理, 只能被 动接受 ACS的管理, 这样, 由用户在终端设备上设置的个性化的配置参数可 能被 ACS修改, 无法保证终端设备用户的正当利益。  In the existing network management system based on the TR069 protocol, the operator sets various management policies for managing the terminal device on the ACS in advance, and the ACS performs corresponding management on the terminal device according to the management policy, that is, management of the terminal device. The authority is completely controlled by the ACS. The terminal device user lacks the right to decide the terminal device to be managed by the ACS. It cannot participate in the network management and can only passively accept the management of the ACS. In this way, the personalized configuration set by the user on the terminal device. The parameters may be modified by the ACS and there is no guarantee of the legitimate benefit of the terminal device user.
在图 2所示的本发明实施例中, CPE可以将用户配置的管理权限参数上 才艮给 ACS , ACS釆用与管理权限参数相应的管理策略 CPE进行管理, 允许 CPE用户参与决定 CPE受 ACS管理的管理权限的权力, 以参与网络管理, 提升了用户的管理权限, 可有效保证 CPE用户的正当利益。 如图 3所示, 为 本发明网络管理方法实施例二的流程图, 其包括以下步骤:  In the embodiment of the present invention shown in FIG. 2, the CPE can manage the user-configured management authority parameters to the ACS, and the ACS manages the management policy CPE corresponding to the management authority parameter, allowing the CPE user to participate in determining the CPE ACS. The power to manage the management rights to participate in network management, enhance the user's management authority, and effectively guarantee the legitimate interests of CPE users. As shown in FIG. 3, it is a flowchart of Embodiment 2 of the network management method of the present invention, which includes the following steps:
步骤 201 , 用户在 CPE上设置用于标识 CPE允许 ACS对其进行管理的 管理权限的管理权限参数, 例如: 分别表示 ACS对该 CPE具有高管理权限、 一般管理权限与低管理权限的 "High"、 "Mid" , "Low"。  Step 201: The user sets an administrative authority parameter for identifying the management authority for the CPE to allow the ACS to manage the CPE on the CPE, for example: respectively indicating that the ACS has high management authority, general management authority, and low management authority for the CPE. , "Mid", "Low".
步骤 202, CPE将管理权限参数存储在预先指定的存储装置中。 可以设 置仅有该 CPE 用户具有对该管理权限参数的修改权限, 该管理权限参数对 ACS只读。  Step 202: The CPE stores the management authority parameter in a pre-designated storage device. It can be set that only the CPE user has the modify permission for the administrative authority parameter, which is read-only for the ACS.
步骤 203 , CPE重启与 ACS建立连接后, 向 ACS发送注册请求信息, 该注册请求信息中携带有 CPE用户标识。  Step 203: After the CPE restarts the connection with the ACS, the CPE sends the registration request information to the ACS, where the registration request information carries the CPE user identifier.
步骤 204, ACS接收到 CPE发送的注册请求信息后, 根据其中携带的 CPE用户标识, 从存储装置获取与 CPE用户标识对应的管理权限参数。  Step 204: After receiving the registration request information sent by the CPE, the ACS obtains the management authority parameter corresponding to the CPE user identifier from the storage device according to the CPE user identifier carried in the CPE.
步骤 205 , ACS根据预先设置管理权限参数与管理策略之间的对应关系 信息, 获取与管理权限参数相应的管理策略。 Step 205: The ACS sets a correspondence between the management authority parameter and the management policy according to a preset Information, obtain the management policy corresponding to the management permission parameters.
步骤 206, ACS根据管理策略对所述 CPE进行管理, 例如: ACS根据管 理策略对 CPE进行配置, 或对 CPE的配置参数进行更新。  Step 206: The ACS manages the CPE according to the management policy. For example, the ACS configures the CPE according to the management policy, or updates the configuration parameters of the CPE.
在现有的基于 TR069协议的网络管理系统中, 运营商预先在 ACS上设置 用于管理终端设备的各种管理策略, 由 ACS根据该管理策略对终端设备进行 相应管理, 即: 终端设备的管理权限完全由 ACS控制, 终端设备用户缺乏自 主决定终端设备受 ACS管理的管理权限的权力, 无法参与网络管理, 只能被 动接受 ACS的管理, 这样, 由用户在终端设备上设置的个性化的配置参数可 能被 ACS修改, 无法保证终端设备用户的正当利益。  In the existing network management system based on the TR069 protocol, the operator sets various management policies for managing the terminal device on the ACS in advance, and the ACS performs corresponding management on the terminal device according to the management policy, that is, management of the terminal device. The authority is completely controlled by the ACS. The terminal device user lacks the right to decide the terminal device to be managed by the ACS. It cannot participate in the network management and can only passively accept the management of the ACS. In this way, the personalized configuration set by the user on the terminal device. The parameters may be modified by the ACS and there is no guarantee of the legitimate benefit of the terminal device user.
在图 3所示的本发明实施例中, CPE可以将用户配置的管理权限参数存 储在预先指定的存储装置中, ACS 可以根据 CPE标识从存储装置中获取该 CPE用户设定的管理权限参数, 并釆用该管理权限参数对应的管理策略 CPE 进行管理, 允许 CPE用户参与决定 CPE受 ACS管理的管理权限的权力, 以 参与网络管理, 提升了用户的管理权限, 可有效保证 CPE用户的正当利益。 本发明上述网络管理方法实施例中, 以网络管理权限参数为表示 ACS对终端 具有高管理权限、 一般管理权限与低管理权限的 "High"、 "Mid" 与 "Low" 为例进行说明。 另外, 网络管理权限参数也可以为釆用其它的实施例。 例如: 网络管理权限参数为表示 ACS 对终端具有全部管理权限与一般管理权限的 "High" 与 "Low" , 或者, 直接为表示 ACS对终端具有配置参数管理权限 与不具有配置参数管理权限的 "Y" 与 "N" 等。 只要在 ACS 中设置了管理 权限参数与管理策略之间的对应关系信息,使 ACS可以确定对终端的管理权 限即可。  In the embodiment of the present invention shown in FIG. 3, the CPE may store the user-configured management authority parameter in a pre-designated storage device, and the ACS may obtain the management authority parameter set by the CPE user from the storage device according to the CPE identifier. And the management policy CPE corresponding to the management authority parameter is used for management, allowing the CPE user to participate in determining the power of the CPE to be managed by the ACS to participate in the network management, improving the management authority of the user, and effectively ensuring the legitimate interests of the CPE user. . In the foregoing network management method embodiment of the present invention, the network management authority parameter is used as an example for the ACS to have "High", "Mid" and "Low" with high management authority, general management authority and low management authority. In addition, the network management authority parameter may also be other embodiments. For example: The network management permission parameter is "High" and "Low" indicating that the ACS has all management rights and general management rights to the terminal, or directly indicates that the ACS has configuration parameter management rights to the terminal and does not have configuration parameter management rights. Y" and "N", etc. As long as the correspondence between the management authority parameter and the management policy is set in the ACS, the ACS can determine the management rights to the terminal.
本发明实施例提供的一种终端, 包括相互连接的: 设置模块 301 , 用于 用于向 ACS或预先指定的存储装置发送设置模块 301设置的管理权限参数。  A terminal provided by the embodiment of the present invention includes interconnecting: a setting module 301, configured to send an administrative authority parameter set by the setting module 301 to an ACS or a pre-designated storage device.
如图 4所示, 为本发明终端实施例一的结构示意图, 该实施例中, 发送 模块具体为一个上报模块 302, 用于向 ACS上报管理权限参数。 As shown in FIG. 4, it is a schematic structural diagram of Embodiment 1 of the terminal of the present invention. In this embodiment, sending The module is specifically configured as a reporting module 302, which is used to report the management authority parameters to the ACS.
再参见图 4,其中的终端还可以包括第一存储模块 303 ,分别与设置模块 301及上报模块 302连接, 用于存储设置模块 301设置的管理权限参数; 上 报模块 302从第一存储模块 303中获取管理权限参数, 并将该管理权限参数 写入注册请求信息中, 通过该注册请求信息向 ACS上报管理权限参数。  Referring to FIG. 4, the terminal further includes a first storage module 303, which is respectively connected to the setting module 301 and the reporting module 302, and is configured to store the management authority parameter set by the setting module 301. The reporting module 302 is configured from the first storage module 303. The management authority parameter is obtained, and the management authority parameter is written into the registration request information, and the management authority parameter is reported to the ACS through the registration request information.
图 4所示的本发明终端实施例中, 设置模块 301在第一存储模块 303中 设置管理权限参数后, 可以通过上报模块 302将管理权限参数发送给 ACS , 以便 ACS根据该管理权限参数对终端进行相应管理,这样终端用户就可以参 与决定终端受 ACS管理的管理权限的权力, 提升了用户的管理权限, 可有效 保证终端用户的正当利益。  In the terminal embodiment of the present invention shown in FIG. 4, after the setting module 301 sets the management authority parameter in the first storage module 303, the configuration permission parameter can be sent to the ACS by the reporting module 302, so that the ACS can access the terminal according to the management authority parameter. The corresponding management is performed, so that the terminal user can participate in determining the power of the terminal to be managed by the ACS, thereby improving the management authority of the user, and effectively ensuring the legitimate interests of the terminal user.
如图 5所示,为本发明终端实施例二的结构示意图,该实施例的终端中, 发送模块具体为一存储执行模块 302, 用于将管理权限参数存储在预先指定 的存储装置中, 还可用于向 ACS发送注册请求信息。  As shown in FIG. 5, it is a schematic structural diagram of a second embodiment of the terminal of the present invention. In the terminal of the embodiment, the sending module is specifically a storage executing module 302, configured to store the management permission parameter in a pre-designated storage device, and Can be used to send registration request information to the ACS.
图 5所示的本发明终端实施例中, 设置模块 301设置管理权限参数后, 可存储执行模块 302可以将管理权限参数存储在预先指定的存储装置中, 以 便 ACS根据该管理权限参数对终端进行相应管理,这样终端用户就可以参与 决定终端受 ACS管理的管理权限的权力, 提升了用户的管理权限, 可有效保 证终端用户的正当利益。  In the terminal embodiment of the present invention shown in FIG. 5, after the setting module 301 sets the management authority parameter, the storable execution module 302 may store the management authority parameter in a pre-specified storage device, so that the ACS performs the terminal according to the management authority parameter. Corresponding management, so that the end user can participate in the power to determine the terminal's management rights managed by the ACS, enhance the user's management authority, and effectively guarantee the legitimate interests of the end user.
如图 6所示, 为本发明 ACS实施例一的结构示意图, 该实施例的 ACS 包括依次连接的:  FIG. 6 is a schematic structural diagram of Embodiment 1 of an ACS according to the present invention, where the ACS of the embodiment includes:
第一获取模块 401 , 用于获取终端上报的管理权限参数;  The first obtaining module 401 is configured to obtain a management authority parameter reported by the terminal;
第二获取模块 402, 用于根据管理权限参数与管理策略之间的对应关系 信息, 获取与第一获取模块 401获取的管理权限参数相应的管理策略, 其中 的管理权限参数与管理策略之间的对应关系信息可由管理员预先设置;  The second obtaining module 402 is configured to obtain, according to the correspondence relationship between the management authority parameter and the management policy, a management policy corresponding to the management authority parameter acquired by the first obtaining module 401, where the management authority parameter and the management policy are Correspondence information can be preset by the administrator;
管理模块 403 , 用于根据第二获取模块 402获取到的管理策略对终端进 行管理。 再参见图 6, 上述实施例的 ACS还可以包括第二存储模块 404, 与第二 获取模块 402连接,用于存储管理权限参数与管理策略之间的对应关系信息; 第二获取模块 402根据第二存储模块 404中的对应关系信息, 获取与管理权 限参数相应的管理策略。 The management module 403 is configured to manage the terminal according to the management policy acquired by the second obtaining module 402. Referring to FIG. 6, the ACS of the foregoing embodiment may further include a second storage module 404, and is connected to the second obtaining module 402, and configured to store correspondence relationship information between the management authority parameter and the management policy. The corresponding relationship information in the second storage module 404 acquires a management policy corresponding to the management authority parameter.
该实施例中, ACS中设置的第二存储模块 404可以存储管理权限参数与 管理策略之间的对应关系信息, 以便 ACS根据用户设置的管理权限参数确定 相应的管理策略, 来对终端进行相应的权限管理, 使终端用户参与决定终端 受 ACS管理的管理权限的权力。 如图 7所示, 为本发明 ACS实施例二的结 构示意图, 该实施例 ACS中, 第一获取模块 401包括相互连接的: 接收单元 501 , 用于接收终端中的上报模块 302上报的注册请求信息; 获取单元 502, 用于从预先指定的存储装置中获取与接收单元 501接收的注册请求信息携带 的终端用户标识对应的管理权限参数。 第二获取模块 402与获取单元 502连 接, 用于根据管理权限参数与管理策略之间的对应关系信息, 获取与获取单 元 502获取到的管理权限参数相应的管理策略。  In this embodiment, the second storage module 404 configured in the ACS may store the correspondence relationship between the management authority parameter and the management policy, so that the ACS determines the corresponding management policy according to the management authority parameter set by the user, and performs corresponding processing on the terminal. Rights management, which enables end users to participate in determining the terminal's authority to be managed by the ACS. As shown in FIG. 7 , it is a schematic structural diagram of Embodiment 2 of an ACS according to the present invention. In the ACS of the embodiment, the first obtaining module 401 is connected to each other: a receiving unit 501 is configured to receive a registration request reported by the reporting module 302 in the terminal. The information obtaining unit 502 is configured to acquire, from the pre-designated storage device, a management authority parameter corresponding to the terminal user identifier carried in the registration request information received by the receiving unit 501. The second obtaining module 402 is connected to the obtaining unit 502, and is configured to obtain a management policy corresponding to the management authority parameter acquired by the acquiring unit 502 according to the correspondence relationship between the management authority parameter and the management policy.
进一步地, 图 7所示实施例的 ACS也可以包括第二存储模块 404, 与第 二获取模块 402连接, 用于存储管理权限参数与管理策略之间的对应关系信 息; 第二获取模块 402根据第二存储模块 404中的对应关系信息, 获取与管 理权限参数相应的管理策略。  Further, the ACS of the embodiment shown in FIG. 7 may further include a second storage module 404, and is connected to the second obtaining module 402, and configured to store correspondence relationship information between the management authority parameter and the management policy. The second obtaining module 402 is configured according to Corresponding relationship information in the second storage module 404 acquires a management policy corresponding to the management authority parameter.
本发明实施例提供的网络管理系统包括终端 1与 ACS2, 可用于实现如 本发明图 2与图 3所示的实施例。 其中, 终端 1包括相互连接的: 设置模块 发送模块,用于向 ACS或预先指定的存储装置发送设置模块 301设置的管理 权限参数。 ACS2包括: 第一获取模块 401 , 用于获取发送模块上报的管理权 限参数; 第二获取模块 402, 用于根据管理权限参数与管理策略之间的对应 关系信息, 获取与第一获取模块 401获取的管理权限参数相应的管理策略; 管理模块 403 , 用于根据第二获取模块 402获取到的管理策略对终端 1进行 管理。 The network management system provided by the embodiment of the present invention includes a terminal 1 and an ACS 2, which can be used to implement the embodiment shown in FIG. 2 and FIG. 3 of the present invention. The terminal 1 is connected to each other: a setting module sending module is configured to send the management authority parameter set by the setting module 301 to the ACS or the pre-specified storage device. The ACS2 includes: a first obtaining module 401, configured to obtain a management authority parameter reported by the sending module; and a second obtaining module 402, configured to acquire, according to the correspondence relationship between the management authority parameter and the management policy, the first obtaining module 401 The management authority parameter 403 is used to manage the terminal 1 according to the management policy acquired by the second obtaining module 402. Management.
本发明实施例提供的网络管理系统中, 终端 1可以设置允许 ACS2对其 进行管理的管理权限的管理权限参数, ACS2可以根据终端 1设置的管理权限 参数获取相应的管理策略, 并根据该管理策略对终端 1进行管理, 从而实现 终端用户参与决定终端受 ACS管理的管理权限的权力,提升了用户的管理权 限, 可有效保证终端用户的正当利益。  In the network management system provided by the embodiment of the present invention, the terminal 1 may set a management authority parameter that allows the ACS2 to manage the management authority, and the ACS2 may obtain a corresponding management policy according to the management authority parameter set by the terminal 1, and according to the management policy. The terminal 1 is managed to implement the power of the terminal user to determine the management authority of the terminal to be managed by the ACS, thereby improving the management authority of the user, and effectively ensuring the legitimate interests of the terminal user.
如图 8所示, 为本发明网络管理系统实施例一的结构示意图, 该实施例 的网络管理系统可以实现如图 2所示的网络管理方法实施例的流程, 其包括 终端 1与 ACS2, 其中, 终端 1可以釆用图 4所示任一实施例的终端, ACS2 可以釆用图 6所示任一实施例提供的 ACS , 其中, 终端中 1的上 4艮模块 302 向 ACS2中的第一获取模块 401上报管理权限参数。  As shown in FIG. 8 , it is a schematic structural diagram of Embodiment 1 of the network management system of the present invention. The network management system of this embodiment can implement the process of the network management method embodiment shown in FIG. 2, which includes the terminal 1 and the ACS 2, where The terminal 1 can use the terminal in any embodiment shown in FIG. 4, and the ACS2 can use the ACS provided in any embodiment shown in FIG. 6, where the upper 4艮 module 302 of the terminal 1 is the first in the ACS2. The obtaining module 401 reports the management authority parameter.
如图 9所示, 为本发明网络管理系统实施例二的结构示意图, 该实施例 的网络管理系统可用于实现如图 3所示网络管理方法的实施例流程, 其包括 终端 1、 存储装置 3与 ACS2, 其中, 存储装置 3用于存储终端用户标识与管 理权限参数之间的对应关系信息;终端 1釆用如图 5所示实施例的终端, ACS2 可釆用如图 7所示任一实施例的 ACS, 其中, 终端 1中的存储执行模块 302 将管理权限参数存储在存储装置 3中; ACS2中的第二获取模块 402用于从存 储装置 3中获取与注册请求信息携带的终端用户标识对应的管理权限参数。  As shown in FIG. 9 , it is a schematic structural diagram of Embodiment 2 of the network management system of the present invention. The network management system of this embodiment can be used to implement the process flow of the network management method shown in FIG. 3 , which includes the terminal 1 and the storage device 3 . And the ACS2, wherein the storage device 3 is configured to store correspondence information between the terminal user identifier and the management authority parameter; the terminal 1 uses the terminal shown in the embodiment shown in FIG. 5, and the ACS2 can use any of the devices shown in FIG. The ACS of the embodiment, wherein the storage execution module 302 in the terminal 1 stores the management authority parameter in the storage device 3; the second acquisition module 402 in the ACS 2 is configured to acquire the terminal user carried in the registration request information from the storage device 3 Identifies the corresponding administrative permission parameters.
本领域普通技术人员可以理解: 实现上述方法实施例的全部或部分步骤 可以通过程序指令相关的硬件来完成, 前述的程序可以存储于一计算机可读 取存储介质中, 该程序在执行时, 执行包括上述方法实施例的步骤; 而前述 的存储介质包括: ROM, RAM, 磁碟或者光盘等各种可以存储程序代码的介 质。  A person skilled in the art can understand that all or part of the steps of implementing the above method embodiments may be completed by using hardware related to program instructions, and the foregoing program may be stored in a computer readable storage medium, and the program is executed when executed. The method includes the steps of the foregoing method embodiments; and the foregoing storage medium includes: a medium that can store program codes, such as a ROM, a RAM, a magnetic disk, or an optical disk.
本发明实施例用户可通过终端设置用于标识终端允许自动配置服务器对 其进行管理的管理权限的管理权限参数, 自动配置服务器根据管理权限参数 与管理策略之间的对应关系信息, 获取与管理权限参数相应的管理策略, 并 根据该管理策略对所述终端进行管理, 允许用户参与决定终端设备受自动配 置服务器管理的管理权限的权力, 以参与网络管理, 提升了用户的管理权限, 可有效保证终端设备用户的正当利益。 In the embodiment of the present invention, the user can set the management authority parameter for identifying the management authority for the terminal to allow the automatic configuration server to manage the terminal, and the automatic configuration server obtains the management authority according to the correspondence relationship between the management authority parameter and the management policy. Parameter corresponding management strategy, and The terminal is managed according to the management policy, and the user is allowed to participate in determining the right of the terminal device to be managed by the automatically configured server to participate in the network management, thereby improving the management authority of the user, and effectively ensuring the legitimate interests of the terminal device user.
最后所应说明的是: 以上实施例仅用以说明本发明的技术方案, 而非对 本发明作限制性理解。 尽管参照上述较佳实施例对本发明进行了详细说明, 本领域的普通技术人员应当理解: 其依然可以对本发明的技术方案进行修改 或者等同替换, 而这种修改或者等同替换并不脱离本发明技术方案的精神和 范围。  It should be noted that the above embodiments are merely illustrative of the technical solutions of the present invention and are not to be construed as limiting. Although the present invention has been described in detail with reference to the preferred embodiments thereof, those skilled in the art will understand that the invention may be modified or equivalently substituted without departing from the teachings of the present invention. The spirit and scope of the programme.

Claims

权 利 要 求 Rights request
1、 一种网络管理方法, 其特征在于, 包括: A network management method, characterized in that it comprises:
获取用于标识终端允许自动配置服务器对其进行管理的管理权限的管理 权限参数;  Obtaining a management permission parameter for identifying an administrative authority that the terminal allows the automatic configuration server to manage;
根据管理权限参数与管理策略之间的对应关系信息, 获取与所述管理权 限参数相应的管理策略;  Obtaining a management policy corresponding to the management authority parameter according to the correspondence relationship between the management authority parameter and the management policy;
根据所述管理策略对所述终端进行管理。  The terminal is managed according to the management policy.
2、根据权利要求 1所述的网络管理方法, 其特征在于, 所述获取用于标 识终端允许自动配置服务器对其进行管理的管理权限的管理权限参数之前, 还包括: 在所述终端上设置用于标识终端允许自动配置服务器对其进行管理 的管理权限的管理权限参数。  The network management method according to claim 1, wherein before the obtaining the management authority parameter for identifying the management authority that the terminal allows the automatic configuration server to manage, the method further includes: setting the terminal An administrative authority parameter that identifies the administrative authority that the terminal allows to automatically configure the server to manage it.
3、 根据权利要求 2所述的网络管理方法, 其特征在于, 所述获取用于标 识终端允许自动配置服务器对其进行管理的管理权限的管理权限参数具体为: 所述终端向所述自动配置服务器上报所述管理权限参数; 或者  The network management method according to claim 2, wherein the obtaining the management authority parameter for identifying the management authority that the terminal allows the automatic configuration server to manage is specifically: the terminal is configured to the automatic configuration. The server reports the management permission parameter; or
所述终端将所述管理权限参数存储在预先指定的存储装置中;  The terminal stores the management authority parameter in a pre-designated storage device;
自动配置服务器接收到所述终端发送的注册请求信息后, 根据所述注册 请求信息中携带的终端用户标识, 从所述存储装置获取所述与所述终端用户 标识对应的管理权限参数。  After receiving the registration request information sent by the terminal, the automatic configuration server acquires the management authority parameter corresponding to the terminal user identifier from the storage device according to the terminal user identifier carried in the registration request information.
4、根据权利要求 3所述的网络管理方法, 其特征在于, 所述终端向所述 自动配置服务器上报所述管理权限参数具体为:  The network management method according to claim 3, wherein the terminal reporting the management authority parameter to the automatic configuration server is specifically:
所述终端将所述管理权限参数写入注册请求信息中, 通过该注册请求信 息向所述自动配置服务器上报所述管理权限参数。  The terminal writes the management authority parameter into the registration request information, and reports the management authority parameter to the automatic configuration server by using the registration request information.
5、根据权利要求 1至 4任意一项所述的网络管理方法, 其特征在于, 根 据所述管理策略对所述终端进行管理具体为:  The network management method according to any one of claims 1 to 4, wherein managing the terminal according to the management policy is specifically:
所述自动配置服务器根据所述管理策略对所述终端进行配置, 或对所述 The automatic configuration server configures the terminal according to the management policy, or the
6、 一种终端, 其特征在于, 包括: 6. A terminal, comprising:
设置模块, 用于设置标识终端允许自动配置服务器对其进行管理的管理 权限的管理权限参数;  a setting module, configured to set an administrative permission parameter that identifies an administrative authority that the terminal allows to automatically configure the server to manage;
发送模块, 用于向所述自动配置服务器或预先指定的存储装置发送所述 设置模块设置的所述管理权限参数。  And a sending module, configured to send the management permission parameter set by the setting module to the automatic configuration server or a pre-designated storage device.
7、 根据权利要求 6所述的终端, 其特征在于, 还包括:  The terminal according to claim 6, further comprising:
第一存储模块, 用于存储所述设置模块设置的管理权限参数;  a first storage module, configured to store an administrative permission parameter set by the setting module;
所述发送模块从所述第一存储模块中获取所述管理权限参数, 并将该管 理权限参数写入注册请求信息中, 通过该注册请求信息向所述自动配置服务 器上报所述管理权限参数。  The sending module acquires the management authority parameter from the first storage module, and writes the management authority parameter into the registration request information, and reports the management authority parameter to the automatic configuration server by using the registration request information.
8、 一种自动配置服务器, 其特征在于, 包括:  8. An automatic configuration server, comprising:
第一获取模块, 用于获取终端上报的管理权限参数;  a first obtaining module, configured to acquire a management authority parameter reported by the terminal;
第二获取模块,用于根据管理权限参数与管理策略之间的对应关系信息, 获取与所述第一获取模块获取的所述管理权限参数相应的管理策略;  a second obtaining module, configured to acquire, according to the correspondence relationship between the management authority parameter and the management policy, a management policy corresponding to the management permission parameter acquired by the first acquiring module;
管理模块, 用于根据所述第二获取模块获取到的所述管理策略对所述终 端进行管理。  And a management module, configured to manage the terminal according to the management policy acquired by the second obtaining module.
9、根据权利要求 8所述的自动配置服务器, 其特征在于, 所述第一获取 模块包括:  The automatic configuration server according to claim 8, wherein the first obtaining module comprises:
接收单元, 用于接收终端上报的注册请求信息;  a receiving unit, configured to receive registration request information reported by the terminal;
获取单元, 用于从预先指定的存储装置中获取与所述接收单元接收的注 册请求信息携带的终端用户标识对应的管理权限参数。  And an obtaining unit, configured to acquire, from the pre-designated storage device, an administrative authority parameter corresponding to the terminal user identifier carried in the registration request information received by the receiving unit.
10、根据权利要求 8或 9所述的自动配置服务器, 其特征在于, 还包括: 第二存储模块,用于存储管理权限参数与管理策略之间的对应关系信息; 所述第二获取模块根据所述第二存储模块中的所述对应关系信息, 获取 与所述管理权限参数相应的管理策略。  The automatic configuration server according to claim 8 or 9, further comprising: a second storage module, configured to store correspondence relationship information between the management authority parameter and the management policy; And the corresponding relationship information in the second storage module acquires a management policy corresponding to the management permission parameter.
11、 一种网络管理系统, 包括终端与自动配置服务器, 其特征在于, 所 述终端包括: 11. A network management system, comprising a terminal and an automatic configuration server, characterized in that: The terminal includes:
设置模块, 用于设置标识终端允许自动配置服务器对其进行管理的管理 权限的管理权限参数;  a setting module, configured to set an administrative permission parameter that identifies an administrative authority that the terminal allows to automatically configure the server to manage;
发送模块, 用于向所述自动配置服务器或预先指定的存储装置发送所述 设置模块设置的所述管理权限参数;  a sending module, configured to send the management permission parameter set by the setting module to the automatic configuration server or a pre-specified storage device;
所述动配置服务器包括:  The dynamic configuration server includes:
第一获取模块, 用于获取所述发送模块发送的管理权限参数;  a first obtaining module, configured to acquire a management authority parameter sent by the sending module;
第二获取模块,用于根据管理权限参数与管理策略之间的对应关系信息, 获取与所述第一获取模块获取的所述管理权限参数相应的管理策略;  a second obtaining module, configured to acquire, according to the correspondence relationship between the management authority parameter and the management policy, a management policy corresponding to the management permission parameter acquired by the first acquiring module;
管理模块, 用于根据所述第二获取模块获取到的所述管理策略对所述终 端进行管理。  And a management module, configured to manage the terminal according to the management policy acquired by the second obtaining module.
12、根据权利要求 11所述的网络管理系统,其特征在于,所述终端还包括: 第一存储模块, 用于存储所述设置模块设置的管理权限参数;  The network management system according to claim 11, wherein the terminal further comprises: a first storage module, configured to store a management authority parameter set by the setting module;
所述发送模块从所述第一存储模块中获取所述管理权限参数, 并将该管 理权限参数写入注册请求信息中, 通过该注册请求信息向所述自动配置服务 器上报所述管理权限参数。  The sending module acquires the management authority parameter from the first storage module, and writes the management authority parameter into the registration request information, and reports the management authority parameter to the automatic configuration server by using the registration request information.
13、根据权利要求 12所述的网络管理系统, 其特征在于, 所述第一获取 模块包括:  The network management system according to claim 12, wherein the first obtaining module comprises:
接收单元, 用于接收所述发送模块发送的注册请求信息;  a receiving unit, configured to receive registration request information sent by the sending module;
获取单元, 用于从预先指定的存储装置中获取与所述接收单元接收的注 册请求信息携带的终端用户标识对应的管理权限参数。  And an obtaining unit, configured to acquire, from the pre-designated storage device, an administrative authority parameter corresponding to the terminal user identifier carried in the registration request information received by the receiving unit.
14、 根据权利要求 11或 12所述的网络管理系统, 其特征在于, 所述自 动配置服务器还包括:  The network management system according to claim 11 or 12, wherein the automatic configuration server further comprises:
第二存储模块,用于存储管理权限参数与管理策略之间的对应关系信息; 所述第二获取模块根据所述第二存储模块中的所述对应关系信息, 获取 与所述管理权限参数相应的管理策略。  a second storage module, configured to store correspondence information between the management authority parameter and the management policy; the second obtaining module acquires, according to the correspondence relationship information in the second storage module, a corresponding to the management permission parameter Management strategy.
PCT/CN2009/070018 2008-01-11 2009-01-05 Method and system for network management, terminal and automatic configuration server WO2009089771A1 (en)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CNA2008100560760A CN101483543A (en) 2008-01-11 2008-01-11 Network management method and system, terminal and automatic configuration server
CN200810056076.0 2008-01-11

Publications (1)

Publication Number Publication Date
WO2009089771A1 true WO2009089771A1 (en) 2009-07-23

Family

ID=40880486

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2009/070018 WO2009089771A1 (en) 2008-01-11 2009-01-05 Method and system for network management, terminal and automatic configuration server

Country Status (2)

Country Link
CN (1) CN101483543A (en)
WO (1) WO2009089771A1 (en)

Families Citing this family (10)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102158871B (en) * 2010-02-12 2016-04-13 中兴通讯股份有限公司 A kind of communication means, system, control station and terminal adapting to terminal differentiation
CN102238153A (en) * 2010-05-05 2011-11-09 华为终端有限公司 Service interaction method, system, customer premises equipment and automatic configuration server
CN102724051B (en) * 2011-03-30 2017-10-03 中兴通讯股份有限公司 Communication means and communication equipment for low-cost user equipment
CN103973637B (en) * 2013-01-28 2017-04-26 华为终端有限公司 Method for configuring permission, agent equipment and server
CN105306451A (en) * 2015-09-28 2016-02-03 青岛海信电器股份有限公司 Method and device for controlling DLNA (Digital Living Network Alliance) equipment service permission
CN107425994B (en) * 2016-05-24 2021-08-17 中兴通讯股份有限公司 Method, terminal and server for realizing remote parameter management
CN108243165B (en) * 2016-12-26 2020-10-30 中移(苏州)软件技术有限公司 Authentication method and device
CN106888117B (en) * 2017-02-15 2020-10-23 金钱猫科技股份有限公司 Method and system for acquiring network element IP
CN112714140B (en) * 2019-10-24 2023-04-07 海信电子科技(武汉)有限公司 Data transmission method, device and system
CN111770151B (en) * 2020-06-24 2024-03-15 京信网络系统股份有限公司 Processing method and device for custom flow, electronic equipment and storage medium

Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1558606A (en) * 2004-02-10 2004-12-29 Ut斯达康通讯有限公司 Network terminal automatic configuration method
CN1859160A (en) * 2005-04-30 2006-11-08 华为技术有限公司 Method and its system for managing user stationed equipment configuration

Patent Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1558606A (en) * 2004-02-10 2004-12-29 Ut斯达康通讯有限公司 Network terminal automatic configuration method
CN1859160A (en) * 2005-04-30 2006-11-08 华为技术有限公司 Method and its system for managing user stationed equipment configuration

Also Published As

Publication number Publication date
CN101483543A (en) 2009-07-15

Similar Documents

Publication Publication Date Title
WO2009089771A1 (en) Method and system for network management, terminal and automatic configuration server
US7991861B2 (en) Method, device and system for configuring device parameters in digital subscriber line access network
KR101425002B1 (en) Remote activation of home devices
TWI520639B (en) Method, apparatus and system for dynamically creating serving groups
US8111631B2 (en) Systems and methods for automatic configuration of customer premises equipments
US20120324567A1 (en) Method and Apparatus for Home Network Discovery
US10496397B2 (en) System and method for providing automatic firmware update management
US9036582B2 (en) Method and system for efficient management of a telecommunications network and the connection between the telecommunications network and a customer premises equipment
US8683039B2 (en) Method, apparatus and communication system for enabling terminal to be managed by multiple servers
CA2761820C (en) Configuring network devices
WO2006005262A1 (en) A method for automatically configuring terminal equipment
WO2007012242A1 (en) Method and system for implementing initialization configuration for the managed devices
TW201141126A (en) Apparatus and methods for managing network resources
KR20050117936A (en) System and method of managing device for device managing technology
EP2053790A1 (en) Method and system for implementing configuration management of devices in network
CN101127631A (en) Method and system for managing configuration of network devices
EP3382988B1 (en) Method for self-provisioning of cable modems and multimedia terminal adapters
WO2011082684A1 (en) Data configuration method and apparatus
WO2009021460A1 (en) Method for reporting implement result of policy, network communication system and equipment
WO2008022590A1 (en) Method, device and system for managing object instances
US20110196962A1 (en) Method for Obtaining Information from a Local Terminal Environment
KR20070037148A (en) System for controlling and managing network appratus and method thereof
KR20100062225A (en) A method for collecting audience research in a iptv and a system thereof
CN102201925A (en) Management method of terminal equipment and agent equipment
JP2011186571A (en) Server and client system

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 09702797

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

122 Ep: pct application non-entry in european phase

Ref document number: 09702797

Country of ref document: EP

Kind code of ref document: A1