WO2016206300A1 - Ip地址管理方法、上网方法、溯源方法及装置和系统 - Google Patents

Ip地址管理方法、上网方法、溯源方法及装置和系统 Download PDF

Info

Publication number
WO2016206300A1
WO2016206300A1 PCT/CN2015/095328 CN2015095328W WO2016206300A1 WO 2016206300 A1 WO2016206300 A1 WO 2016206300A1 CN 2015095328 W CN2015095328 W CN 2015095328W WO 2016206300 A1 WO2016206300 A1 WO 2016206300A1
Authority
WO
WIPO (PCT)
Prior art keywords
address
mobile user
public network
static public
location register
Prior art date
Application number
PCT/CN2015/095328
Other languages
English (en)
French (fr)
Inventor
易飞
Original Assignee
中兴通讯股份有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 中兴通讯股份有限公司 filed Critical 中兴通讯股份有限公司
Publication of WO2016206300A1 publication Critical patent/WO2016206300A1/zh

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W8/00Network data management
    • H04W8/26Network addressing or numbering for mobility support
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L61/00Network arrangements, protocols or services for addressing or naming
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L61/00Network arrangements, protocols or services for addressing or naming
    • H04L61/30Managing network names, e.g. use of aliases or nicknames
    • H04L61/3015Name registration, generation or assignment

Definitions

  • the present invention relates to the field of mobile communications, and in particular, to a mobile user IP address management method, an internet access method, a traceability method, and a device and system.
  • the private network address is assigned by the GGSN (Gateway GPRS Support Node), and the user dynamic IP address is assigned by the CGN (Carrier-Grade Net Address Translation) or the firewall device to complete the NAT (Network Address Translation).
  • CGN Carrier-Grade Net Address Translation
  • the user uses the dynamic IP address to perform the Internet service.
  • the process of assigning the dynamic IP address is shown in Figure 1.
  • Step 101 The user completes registration, and initiates an online request to the GGSN.
  • Step 102 The GGSN requests a public network IP address from the firewall, and the firewall allocates a public network IP address according to its own policy and resources.
  • Step 103 The user uses the public network IP address to perform internet service.
  • the CGN or the firewall reclaims the previously assigned dynamic IP.
  • the common method is to log in the firewall and trace the source later.
  • such a scheme has a large transformation for the firewall, and due to the rapid change of the IP, the real-time traceability is poor.
  • the main technical problem to be solved by the embodiments of the present invention is to provide a mobile user IP address management method, an internet access method, a traceability method, a device and a system, and solve the problem that the related mobile user has large traceability and poor real-time performance.
  • an embodiment of the present invention provides a mobile user IP address management method, including:
  • the mobile user opens an account in the identity location register
  • the identity location register assigns a static public network IP address to the mobile user.
  • the method before the identity location register allocates a static public IP address to the mobile user, the method further includes:
  • the method further includes: periodically reassigning the static public network IP address to the mobile user.
  • the method further includes: recording, between the static public network IP address and the user identifier of the mobile user Correspondence relationship.
  • the embodiment of the present invention further provides a mobile user access method, including:
  • the GRPS service gateway After receiving the online request initiated by the mobile user, the GRPS service gateway requests the access network device for the public network IP address;
  • the static public network IP address of the mobile user is the identity location register allocated for the mobile user;
  • the access network device accesses the mobile user to the Internet according to the static public network IP address.
  • the present invention also provides a mobile user traceability method, including:
  • the static public network IP address is allocated to the mobile user by the identity location register;
  • the mobile user corresponding to the static public network IP address is searched for, according to the record of the static public network IP address assigned to each mobile user.
  • an embodiment of the present invention further provides a mobile communication network system, including an identity location register, configured to allocate a static public network IP to the mobile user when detecting that the mobile user opens an account in the identity location register. address.
  • the identity location register is further configured to: after the static user IP address is assigned to the mobile user, record and between the static public network IP address and the user identifier of the mobile user. Correspondence.
  • the GRPS service gateway and the access network device are further included;
  • the GRPS service gateway is configured to: after receiving the online request initiated by the mobile user, request the public network IP address from the access network device;
  • the access network device is configured to obtain a static public network IP address of the mobile user from an identity location register, and access the mobile user to the Internet according to the static public network IP address.
  • the embodiment of the present invention further provides a mobile user traceability device, including:
  • the IP address obtaining module is configured to obtain a static public network IP address used by the mobile user for Internet access; the static public network IP address is the identity location register allocated for the mobile user;
  • a register lookup module configured to find an identity location register to which the static public network IP belongs
  • the identity determining module is configured to find a mobile user corresponding to the static public network IP address by using a record of the static public network IP address assigned to each mobile user according to the identity location register.
  • the mobile user IP address management method, the internet access method, the traceability method, the device and the system provided by the embodiment of the present invention after the mobile user opens the account in the identity location register, the identity location register allocates a static public network IP address for the mobile user; the mobile user accesses the Internet
  • the GRPS service gateway requests the public network IP address from the access network device; the access network device obtains the static public network IP address of the mobile user from the identity location register, and then according to the static public network The IP address connects the mobile user to the Internet.
  • the static public IP address used by the mobile user for Internet access When tracing the source, obtain the static public IP address used by the mobile user for Internet access, and then find the identity location register to which the static public IP address belongs, and locate the record of the static public IP address for each mobile user according to the identity location register.
  • the mobile user corresponding to the static public IP address.
  • the embodiment of the present invention can allocate a static public IP address to a mobile user, and the mobile user uses the same IP address for a relatively long period of time.
  • the IP address needs to be queried on the identity location register.
  • the corresponding user information can be obtained, and the implementation is simple, and the traceability is fast and accurate.
  • FIG. 1 is a schematic flowchart of allocating a dynamic IP address
  • FIG. 2 is a schematic flowchart of a mobile user IP address management method according to Embodiment 1 of the present invention
  • FIG. 3 is a schematic diagram of a process for a mobile user to access an Internet according to Embodiment 1 of the present invention
  • FIG. 4 is a schematic diagram of a source tracing process for a mobile user according to Embodiment 1 of the present invention.
  • FIG. 5 is a schematic structural diagram of a mobile communication network system according to Embodiment 2 of the present invention.
  • FIG. 6 is a schematic structural diagram of a mobile user traceability device according to Embodiment 2 of the present invention.
  • FIG. 7 is a schematic structural diagram of a mobile communication network system according to Embodiment 3 of the present invention.
  • FIG. 8 is a schematic flowchart of a mobile user IP address management method according to Embodiment 3 of the present invention.
  • FIG. 9 is a schematic flowchart of a static public network IP address allocation process according to Embodiment 3 of the present invention.
  • the identity location register allocates a static public network IP address to the mobile user after the mobile user opens the account; the mobile user can always use the static public network IP address to perform related services when accessing the Internet.
  • the mobile user can always use the static public network IP address to perform related services when accessing the Internet.
  • tracing the source obtain the static public IP address used by the mobile user for Internet access, and then find the identity location register to which the static public IP address belongs, and locate the record of the static public IP address for each mobile user according to the identity location register.
  • the mobile user corresponding to the static public IP address.
  • the mobile user in the present invention uses the same IP address for a long period of time.
  • the IP address can be queried to the identity location register to obtain the corresponding user information, which is simple and traceable. Fast and accurate.
  • Embodiment 1 is a diagrammatic representation of Embodiment 1:
  • the mobile user IP address management method in this embodiment includes:
  • Step 201 The mobile user opens an account in an identity location register (ILR), that is, the mobile user places a number in the identity location register;
  • ILR identity location register
  • Step 202 The identity location register allocates a static public network IP address to the mobile user.
  • the mobile user can always use the static public IP address for Internet service on the network.
  • the method further includes:
  • the identity location register in this embodiment allocates static public IP addresses to mobile users, and can periodically re-allocate statics for mobile users.
  • Public network IP address For some mobile users to pay attention to their own public IP addresses, in order to reduce the perception of such users, the identity location register in this embodiment allocates static public IP addresses to mobile users, and can periodically re-allocate statics for mobile users.
  • Public network IP address For some mobile users to pay attention to their own public IP addresses, in order to reduce the perception of such users, the identity location register in this embodiment allocates static public IP addresses to mobile users, and can periodically re-allocate statics for mobile users.
  • the identity location register records the correspondence between the static public network IP address and the user identifier of the mobile user after the static user IP address is assigned to the mobile user, so as to be used in subsequent traceability.
  • the user identifier in this embodiment may be an IMSI (International Mobile Subscriber Identity) or the like.
  • the identity location register may also recover the static IP address assigned to the mobile user at the appropriate time, such as when the mobile subscriber logs out of the account.
  • Step 301 The mobile user completes registration, and initiates an online request to the GRPS service gateway.
  • Step 302 After receiving the online request initiated by the mobile user, the GRPS service gateway requests the access network device (ASN) to request the public network IP address. Specifically, the firewall may request the public network IP address from the access network device through the firewall.
  • ASN access network device
  • Step 303 The access network device obtains the static public network IP address of the mobile user from the identity location register.
  • Step 304 The access network device accesses the mobile user to the Internet according to the static public network IP address.
  • Step 401 Obtain a static public network IP address used by the mobile user for Internet access; the static public network IP address is assigned to the mobile user by the identity location register;
  • Step 402 Find an identity location register to which the static public network IP belongs.
  • Step 403 Assign a static public IP address record to each mobile user according to the identity location register (the record records the static public network IP address and the user identity of each mobile user) to find the mobile user corresponding to the static public network IP address. .
  • the IP resource provider allocates IP resources 10.10.10.1 to 10.10.10.255 to an identity location register
  • the identity location register allocates the address 10.10.10.1 to the mobile user A when the number is assigned; the identity location register records the association relationship between the IP address and the user A;
  • the ASN When the mobile user A performs the internet service, the ASN requests the ISN to the public network address 10.10.10.1, and subsequently uses the address for internet access.
  • Embodiment 2 is a diagrammatic representation of Embodiment 1:
  • the mobile communication network system includes an identity location register, which is used when a mobile user opens an account in the identity location register, that is, after the mobile user places a number in the identity location register, The user assigns a static public IP address.
  • the mobile user can always use the static public IP address for Internet service on the network.
  • the identity location register is further configured to record a correspondence between the static public network IP address and the user identifier of the mobile user after the static public network IP address is assigned to the mobile user. For later traceability.
  • the user identifier in this embodiment may be an IMSI (International Mobile Subscriber Identity) or the like.
  • the method before the identity location register allocates a static public IP address to the mobile user, the method further includes:
  • the identity location register in this embodiment allocates static public IP addresses to mobile users, and can periodically re-allocate statics for mobile users.
  • Public network IP address For some mobile users to pay attention to their own public IP addresses, in order to reduce the perception of such users, the identity location register in this embodiment allocates static public IP addresses to mobile users, and can periodically re-allocate statics for mobile users.
  • Public network IP address For some mobile users to pay attention to their own public IP addresses, in order to reduce the perception of such users, the identity location register in this embodiment allocates static public IP addresses to mobile users, and can periodically re-allocate statics for mobile users.
  • the mobile communication network system further includes a GRPS service gateway and an access network device;
  • the GRPS service gateway is configured to request a public network IP address from the access network device after receiving the online request initiated by the mobile user.
  • the access network device is configured to obtain a static public IP address of the mobile user from the identity location register, and access the mobile user to the Internet according to the obtained static public IP address.
  • the embodiment further provides a mobile user traceability device, including:
  • the IP address obtaining module is configured to obtain a static public network IP address used by the mobile user for Internet access; the static public network IP address is assigned to the mobile user by the identity location register;
  • a register lookup module configured to find an identity location register to which the static public network IP belongs
  • the identity determining module is configured to allocate a static public network IP address record to each mobile user according to the identity location register (the record records the static public network IP address and the user identity of each mobile user) to find a static public network IP address corresponding to the static public network IP address.
  • the identity location register the record records the static public network IP address and the user identity of each mobile user
  • Embodiment 3 is a diagrammatic representation of Embodiment 3
  • the network architecture superimposes a new network element in the current wireless network: an identity location register ILR and an access network device ASN;
  • the ILR is used to assign a static public IP address to the mobile user and record the association between the static public IP address and the user ID.
  • the ASN is used to obtain the public network IP address when the mobile user accesses, and provides the user network access function.
  • Step 801 The mobile user places a number in the ILR, and the ILR statically allocates a public network address;
  • Step 802 The mobile user completes registration, and initiates an online request to the GGSN.
  • Step 803 The GGSN requests a public network IP address from the firewall.
  • Step 804 The firewall requests the public network IP address from the ASN.
  • Step 805 The ASN requests the public network IP address from the ILR.
  • Step 806 The ILR returns the previously assigned public network IP address.
  • step 807 the ASN uses the public network IP to perform internet service.
  • step 801 the process of static public network IP address allocation is shown in Figure 9, including:
  • Step 901 The ILR performs user static address allocation.
  • Step 902 First determine whether the mobile user has previously assigned an address, if already assigned, go to step 905; otherwise, go to step 903;
  • Step 903 The ILR determines whether there are any idle IP resources in the IP resource pool, if not, go to step 905; otherwise, go to step 804;
  • Step 904 The ILR selects one of the idle IP resource pools to be allocated to the user, and records the association between the IP and the user.
  • Step 905 Not allocated for the mobile user.
  • the embodiment of the present invention can allocate a static public IP address to a mobile user, and the mobile user uses the same IP address for a relatively long period of time.
  • the IP address needs to be queried on the identity location register.
  • the corresponding user information can be obtained, and the implementation is simple, and the traceability is fast and accurate. Furthermore, the problem of large-scale retrofit and related real-time performance for related mobile users is solved.

Abstract

本发明公开了一种移动用户IP地址管理方法、上网方法、溯源方法及装置和系统,身份位置寄存器在移动用户开户后,为移动用户分配静态公网IP地址;移动用户访问互联网时可一直使用该静态公网IP地址进行相关业务。溯源时,获取移动用户进行互联网访问时使用的静态公网IP地址,进而查找到静态公网IP所归属的身份位置寄存器,根据身份位置寄存器为各移动用户分配静态公网IP地址的记录查找到静态公网IP地址对应的移动用户。本发明针对移动用户可为其分配静态公网IP地址,移动用户在相当长的一段时间内使用的是同一个IP地址,在进行溯源时,只需要到身份位置寄存器上对IP进行查询即可获取到对应的用户信息,实现简单,溯源快速而准确。

Description

IP地址管理方法、上网方法、溯源方法及装置和系统 技术领域
本发明涉及移动通信领域,具体涉及一种移动用户IP地址管理方法、上网方法、溯源方法及装置和系统。
背景技术
移动用户注册时,由GGSN(Gateway GPRS Support Node,GPRS业务网关节点)分配私网地址,由CGN(Carrier-Grade Net Address Translation)或者防火墙设备进行用户动态IP地址分配,完成NAT(Network Address Translation)转换;用户使用动态IP进行Internet业务,该动态IP地址的分配流程请参见图1所示,包括:
步骤101:用户完成注册,向GGSN发起上线请求;
步骤102:GGSN向防火墙请求公网IP地址,防火墙根据自身策略和资源分配公网IP地址;
步骤103:用户使用公网IP地址进行internet业务。
移动用户下线以后,CGN或者防火墙回收之前分配的动态IP,下次用户注册获取新的IP地址进行Internet业务;对移动用户进行IP溯源时,常用的方法是在防火墙进行日志记录,后期进行溯源,但是此种方案对于防火墙改造较大,且由于IP变化较快,导致溯源实时性较差。
发明内容
本发明实施例要解决的主要技术问题是,提供一种移动用户IP地址管理方法、上网方法、溯源方法及装置和系统,解决针对相关移动用户溯源改造较大,实时性差的问题。
为解决上述技术问题,本发明实施例提供一种移动用户IP地址管理方法,包括:
移动用户在所述身份位置寄存器中开户;
所述身份位置寄存器为所述移动用户分配静态公网IP地址。
在本发明的一种实施例中,身份位置寄存器为所述移动用户分配静态公网IP地址之前,还包括:
判断是否已经为所述移动用户分配过静态公网IP地址;
和/或,
判断IP资源池中当前是否还存在空闲静态公网IP地址资源。
在本发明的一种实施例中,所述身份位置寄存器为所述移动用户分配静态公网IP地址后,还包括:定期为所述移动用户重新分配静态公网IP地址。
在本发明的一种实施例中,所述身份位置寄存器为所述移动用户分配静态公网IP地址后,还包括:记录所述静态公网IP地址与所述移动用户的用户标识之间的对应关系。
为了解决上述问题,本发明实施例还提供了一种移动用户上网方法,包括:
GRPS业务网关接收移动用户发起的上线请求后,向接入网设备请求公网IP地址;
接入网设备从身份位置寄存器获取所述移动用户的静态公网IP地址;该静态公网IP地址为所述身份位置寄存器为所述移动用户分配的;
接入网设备根据所述静态公网IP地址将所述移动用户接入互联网。
为了解决上述问题,本发明还提供了一种移动用户溯源方法,包括:
获取移动用户进行互联网访问时使用的静态公网IP地址;该静态公网IP地址为所述身份位置寄存器为所述移动用户分配的;
查找到所述静态公网IP所归属的身份位置寄存器;
根据所述身份位置寄存器为各移动用户分配静态公网IP地址的记录查找到所述静态公网IP地址对应的移动用户。
为了解决上述问题,本发明实施例还提供了一种移动通信网络系统,包括身份位置寄存器,用于在检测到移动用户在该身份位置寄存器中开户时,为所述移动用户分配静态公网IP地址。
在本发明的一种实施例中,所述身份位置寄存器还用于为所述移动用户分配静态公网IP地址后,记录与所述静态公网IP地址与所述移动用户的用户标识之间的对应关系。
在本发明的一种实施例中,还包括GRPS业务网关和接入网设备;
所述GRPS业务网关用于接收移动用户发起的上线请求后,向接入网设备请求公网IP地址;
所述接入网设备用于从身份位置寄存器获取所述移动用户的静态公网IP地址,以及根据所述静态公网IP地址将所述移动用户接入互联网。
为了解决上述问题,本发明实施例还提供了一种移动用户溯源装置,包括:
IP地址获取模块,设置为获取移动用户进行互联网访问时使用的静态公网IP地址;该静态公网IP地址为所述身份位置寄存器为所述移动用户分配的;
寄存器查找模块,设置为查找到所述静态公网IP所归属的身份位置寄存器;
身份确定模块,设置为根据所述身份位置寄存器为各移动用户分配静态公网IP地址的记录查找到所述静态公网IP地址对应的移动用户。
本发明实施例的有益效果是:
本发明实施例提供的移动用户IP地址管理方法、上网方法、溯源方法及装置和系统,移动用户在身份位置寄存器中开户后,身份位置寄存器为移动用户分配静态公网IP地址;移动用户访问互联网时向GRPS业务网关发起的上线请求,GRPS业务网关向接入网设备请求公网IP地址;接入网设备从身份位置寄存器获取移动用户的静态公网IP地址,进而可根据所述静态公网IP地址将所述移动用户接入互联网。溯源时,获取移动用户进行互联网访问时使用的静态公网IP地址,进而查找到静态公网IP所归属的身份位置寄存器,根据身份位置寄存器为各移动用户分配静态公网IP地址的记录查找到静态公网IP地址对应的移动用户。本发明实施例针对移动用户可为其分配静态公网IP地址,移动用户在相当长的一段时间内使用的是同一个IP地址,在进行溯源时,只需要到身份位置寄存器上对IP进行查询即可获取到对应的用户信息,实现简单,溯源快速而准确。
附图说明
图1为分配动态IP地址的流程示意图;
图2为本发明实施例一提供的移动用户IP地址管理方法流程示意图;
图3为本发明实施例一提供的移动用户访问互联网流程的示意图;
图4为本发明实施例一提供的对移动用户进行溯源过程的示意图;
图5为本发明实施例二提供的移动通信网络系统结构示意图;
图6为本发明实施例二提供的移动用户溯源装置结构示意图;
图7为本发明实施例三提供的移动通信网络系统结构示意图;
图8为本发明实施例三提供的移动用户IP地址管理方法流程示意图;
图9为本发明实施例三提供的静态公网IP地址分配过程流程示意图。
具体实施方式
本发明实施例中,身份位置寄存器在移动用户开户后,为移动用户分配静态公网IP地址;移动用户访问互联网时可一直使用该静态公网IP地址进行相关业务。溯源时,获取移动用户进行互联网访问时使用的静态公网IP地址,进而查找到静态公网IP所归属的身份位置寄存器,根据身份位置寄存器为各移动用户分配静态公网IP地址的记录查找到静态公网IP地址对应的移动用户。本发明中的移动用户在相当长的一段时间内使用的是同一个IP地址,在进行溯源时,只需要到身份位置寄存器上对IP进行查询即可获取到对应的用户信息,实现简单,溯源 快速而准确。下面通过具体实施方式结合附图对本发明作进一步详细说明。
实施例一:
请参见图2,本实施例中移动用户IP地址管理方法包括:
步骤201:移动用户在身份位置寄存器(ILR)中开户,也即移动用户在该身份位置寄存器中放号;
步骤202:身份位置寄存器为该移动用户分配静态公网IP地址。移动用户在本网络可始终使用该静态公网IP地址进行Internet业务。
在本实施例中,在上述步骤202身份位置寄存器为移动用户分配静态公网IP地址之前,还包括:
判断是否已经为该移动用户分配过静态公网IP地址;如是,则不再为其分配;
和/或,
判断IP资源池中当前是否还存在空闲静态公网IP地址资源,如不存在,则不为该移动用户分配。
对于某些移动用户关注自身公网IP地址的情况,为了减少这类用户的感知,本实施例中的身份位置寄存器为移动用户分配静态公网IP地址后,还可定期为移动用户重新分配静态公网IP地址。
本实施例中,身份位置寄存器为移动用户分配静态公网IP地址后,记录静态公网IP地址与移动用户的用户标识之间的对应关系,以便于后续溯源时使用。本实施例中的用户标识可以是IMSI(International Mobile Subscriber Identity,国际移动用户标识)等。
当然,在本实施例中,身份位置寄存器还可在适当的时机将分配给移动用户的静态IP地址回收,例如在移动用户注销开户时。
在为移动用户分配完静态公网IP地址后,移动用户访问互联网的过程请参见图3所示,包括:
步骤301:移动用户完成注册,向GRPS业务网关发起上线请求;
步骤302:GRPS业务网关接收移动用户发起的上线请求后,向接入网设备(ASN)请求公网IP地址;具体可通过防火墙向接入网设备请求公网IP地址;
步骤303:接入网设备从身份位置寄存器获取移动用户的静态公网IP地址;步骤304:接入网设备根据静态公网IP地址将移动用户接入互联网。
针对上述移动用户进行溯源的过程请参见图4所示,包括:
步骤401:获取移动用户进行互联网访问时使用的静态公网IP地址;该静态公网IP地址为身份位置寄存器为移动用户分配的;
步骤402:查找到静态公网IP所归属的身份位置寄存器;
步骤403:根据身份位置寄存器为各移动用户分配静态公网IP地址的记录(该记录记录有静态公网IP地址与各移动用户的用户标识对应关系)查找到静态公网IP地址对应的移动用户。
例如:
IP资源提供商给某身份位置寄存器分配IP资源10.10.10.1到10.10.10.255;
身份位置寄存器在放号时分配地址10.10.10.1给移动用户A;身份位置寄存器记录该IP地址和用户A之间的关联关系;
移动用户A进行internet业务时,ASN到ILR请求到公网地址10.10.10.1,后续使用该地址进行internet访问;
溯源时,使用10.10.10.1查找其归属的ILR,然后到ILR中查询其分配的用户号码A,能快速查找到移动用户A。
实施例二:
请参见图5所示,本实施例提供的移动通信网络系统包括身份位置寄存器,用于移动用户在该身份位置寄存器中开户时,也即移动用户在该身份位置寄存器中放号后,为移动用户分配静态公网IP地址。移动用户在本网络可始终使用该静态公网IP地址进行Internet业务。
身份位置寄存器还用于为移动用户分配静态公网IP地址后,记录与所述静态公网IP地址与所述移动用户的用户标识之间的对应关系。以便于后续溯源时使用。本实施例中的用户标识可以是IMSI(International Mobile Subscriber Identity,国际移动用户标识)等。
本实施例中,身份位置寄存器为移动用户分配静态公网IP地址之前,还包括:
判断是否已经为该移动用户分配过静态公网IP地址;如是,则不再为其分配;
和/或,
判断IP资源池中当前是否还存在空闲静态公网IP地址资源;如不存在,则不为该移动用户分配。
对于某些移动用户关注自身公网IP地址的情况,为了减少这类用户的感知,本实施例中的身份位置寄存器为移动用户分配静态公网IP地址后,还可定期为移动用户重新分配静态公网IP地址。
移动通信网络系统还包括GRPS业务网关和接入网设备;
GRPS业务网关用于接收移动用户发起的上线请求后,向接入网设备请求公网IP地址;
接入网设备用于从身份位置寄存器获取移动用户的静态公网IP地址,以及根据获取的静态公网IP地址将移动用户接入互联网。
请参见图6所示,本实施例还提供了一种移动用户溯源装置,包括:
IP地址获取模块,设置为获取移动用户进行互联网访问时使用的静态公网IP地址;该静态公网IP地址为身份位置寄存器为移动用户分配的;
寄存器查找模块,设置为查找到静态公网IP所归属的身份位置寄存器;
身份确定模块,设置为根据身份位置寄存器为各移动用户分配静态公网IP地址的记录(该记录记录有静态公网IP地址与各移动用户的用户标识对应关系)查找到静态公网IP地址对应的移动用户。
实施例三:
为了更好的理解本发明,下面以一具体的网络架构为例,对本发明做进一步的示例性说明。
请参见图7所示,该网络架构在目前的无线网络中叠加新网元:身份位置寄存器ILR和接入网设备ASN;
ILR用于为移动用户分配静态公网IP地址,以及记录静态公网IP地址与用户标识的关联关系。
ASN用于移动用户接入时公网IP地址的获取,提供用户网络接入功能。
基于上述网络构架,静态IP地址使用的流程参见图8所示,包括:
步骤801:移动用户在ILR中放号,ILR静态分配公网地址;
步骤802:移动用户完成注册,向GGSN发起上线请求;
步骤803:GGSN向防火墙请求公网IP地址;
步骤804:防火墙向ASN请求公网IP地址;
步骤805:ASN向ILR请求公网IP地址;
步骤806:ILR返回之前分配的公网IP地址;
步骤807,ASN使用公网IP进行internet业务。
上述步骤801中,静态公网IP地址分配的流程参见图9所示,包括:
步骤901:ILR进行用户静态地址分配;
步骤902:先判断移动用户是否之前已经分配了地址,如已分配,转至步骤905;否则,转至步骤903;
步骤903:ILR判断IP资源池中是否还有空闲的IP资源,如果没有,转至步骤905;否则,转至步骤804;
步骤904:ILR在空闲的IP资源池中选取一个分配给用户,同时记录IP和用户的关联关系。
步骤905:不为该移动用户分配。
以上内容是结合具体的实施方式对本发明所作的进一步详细说明,不能认定本发明的具体实施只局限于这些说明。对于本发明所属技术领域的普通技术人员来说,在不脱离本发明构思的前提下,还可以做出若干简单推演或替换,都应当视为属于本发明的保护范围。
工业实用性
本发明实施例针对移动用户可为其分配静态公网IP地址,移动用户在相当长的一段时间内使用的是同一个IP地址,在进行溯源时,只需要到身份位置寄存器上对IP进行查询即可获取到对应的用户信息,实现简单,溯源快速而准确。进而解决针对相关移动用户溯源改造较大,实时性差的问题。

Claims (10)

  1. 一种移动用户IP地址管理方法,包括:
    移动用户在身份位置寄存器中开户;
    所述身份位置寄存器为所述移动用户分配静态公网IP地址。
  2. 如权利要求1所述的移动用户IP地址管理方法,其中,身份位置寄存器为所述移动用户分配静态公网IP地址之前,还包括:
    判断是否已经为所述移动用户分配过静态公网IP地址;
    和/或,
    判断IP资源池中当前是否还存在空闲静态公网IP地址资源。
  3. 如权利要求1或2所述的移动用户IP地址管理方法,其中,所述身份位置寄存器为所述移动用户分配静态公网IP地址后,还包括:定期为所述移动用户重新分配静态公网IP地址。
  4. 如权利要求1或2所述的移动用户IP地址管理方法,其中,所述身份位置寄存器为所述移动用户分配静态公网IP地址后,还包括:记录所述静态公网IP地址与所述移动用户的用户标识之间的对应关系。
  5. 一种移动用户上网方法,包括:
    GRPS业务网关接收移动用户发起的上线请求后,向接入网设备请求公网IP地址;
    接入网设备从身份位置寄存器获取所述移动用户的静态公网IP地址;该静态公网IP地址为所述身份位置寄存器为所述移动用户分配的;
    接入网设备根据所述静态公网IP地址将所述移动用户接入互联网。
  6. 一种移动用户溯源方法,包括:
    获取移动用户进行互联网访问时使用的静态公网IP地址;该静态公网IP地址为所述身份位置寄存器为所述移动用户分配的;
    查找到所述静态公网IP所归属的身份位置寄存器;
    根据所述身份位置寄存器为各移动用户分配静态公网IP地址的记录查找到所述静态公网IP地址对应的移动用户。
  7. 一种移动通信网络系统,包括身份位置寄存器,用于在移动用户在该身份位置寄存器中开户后,为所述移动用户分配静态公网IP地址。
  8. 如权利要求7所述的移动通信网络系统,其中,所述身份位置寄存器还用于为所述移动用户分配静态公网IP地址后,记录与所述静态公网IP地址与所述移动用户的用户标识之间 的对应关系。
  9. 如权利要求7或8所述的移动通信网络系统,其中,还包括GRPS业务网关和接入网设备;
    所述GRPS业务网关用于接收移动用户发起的上线请求后,向接入网设备请求公网IP地址;
    所述接入网设备用于从身份位置寄存器获取所述移动用户的静态公网IP地址,以及根据所述静态公网IP地址将所述移动用户接入互联网。
  10. 一种移动用户溯源装置,包括:
    IP地址获取模块,设置为获取移动用户进行互联网访问时使用的静态公网IP地址;该静态公网IP地址为所述身份位置寄存器为所述移动用户分配的;
    寄存器查找模块,设置为查找到所述静态公网IP所归属的身份位置寄存器;
    身份确定模块,设置为根据所述身份位置寄存器为各移动用户分配静态公网IP地址的记录查找到所述静态公网IP地址对应的移动用户。
PCT/CN2015/095328 2015-06-23 2015-11-23 Ip地址管理方法、上网方法、溯源方法及装置和系统 WO2016206300A1 (zh)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN201510349141.9 2015-06-23
CN201510349141.9A CN106332064A (zh) 2015-06-23 2015-06-23 Ip地址管理方法、上网方法、溯源方法及装置和系统

Publications (1)

Publication Number Publication Date
WO2016206300A1 true WO2016206300A1 (zh) 2016-12-29

Family

ID=57584545

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2015/095328 WO2016206300A1 (zh) 2015-06-23 2015-11-23 Ip地址管理方法、上网方法、溯源方法及装置和系统

Country Status (2)

Country Link
CN (1) CN106332064A (zh)
WO (1) WO2016206300A1 (zh)

Families Citing this family (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN107979656B (zh) * 2017-11-22 2020-12-18 安徽皖通邮电股份有限公司 一种静态nat业务支持动态识别入向流量的方法
CN112752251B (zh) * 2019-10-29 2022-05-06 中国移动通信有限公司研究院 一种ue标识符的分配方法、装置和计算机可读存储介质
CN111405080A (zh) * 2020-03-09 2020-07-10 北京冠程科技有限公司 终端ip管理系统和基于该系统的用户行为审计方法

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102082837A (zh) * 2010-12-31 2011-06-01 华为技术有限公司 一种为ip终端分配公网地址的方法及设备
CN102611623A (zh) * 2012-03-09 2012-07-25 中国联合网络通信集团有限公司 基于网络访问的端口配置处理方法、装置和系统
CN102957754A (zh) * 2011-08-22 2013-03-06 中国电信股份有限公司 运营级网络地址转换方法、设备及网络系统

Family Cites Families (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102695167B (zh) * 2012-05-18 2015-04-29 中国联合网络通信集团有限公司 移动用户身份标识管理方法和装置
CN102790812B (zh) * 2012-07-31 2015-07-15 中国联合网络通信集团有限公司 基于移动终端的ip地址溯源方法、设备和系统
CN103139326B (zh) * 2013-03-06 2015-12-23 中国联合网络通信集团有限公司 Ip溯源方法、设备和系统
CN103731515A (zh) * 2014-01-15 2014-04-16 中国联合网络通信集团有限公司 一种ip溯源方法、设备及系统

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102082837A (zh) * 2010-12-31 2011-06-01 华为技术有限公司 一种为ip终端分配公网地址的方法及设备
CN102957754A (zh) * 2011-08-22 2013-03-06 中国电信股份有限公司 运营级网络地址转换方法、设备及网络系统
CN102611623A (zh) * 2012-03-09 2012-07-25 中国联合网络通信集团有限公司 基于网络访问的端口配置处理方法、装置和系统

Also Published As

Publication number Publication date
CN106332064A (zh) 2017-01-11

Similar Documents

Publication Publication Date Title
WO2019144826A1 (zh) 一种网络标识映射方法和系统以及终端、标识网关
US20170155619A1 (en) Location-based domain name system service discovery
US10320738B2 (en) Address allocation method, CGN device, and CGN dual-active system
US9049207B2 (en) Asset detection system
WO2021057889A1 (zh) 一种数据处理方法、装置、电子设备及存储介质
WO2016179950A1 (zh) 互联网协议ip地址的分配方法及装置
CN102075591A (zh) 获取介质访问控制地址的方法、装置和系统
CN103078877B (zh) 基于dns的用户认证和域名访问控制方法及系统
WO2014101041A1 (zh) Ipv6地址溯源方法、装置和系统
WO2019010694A1 (zh) 获取本地域名服务器地址的方法、装置和权威域名服务器
WO2020253631A1 (zh) Ip地址的配置方法、设备及系统
JP2017528052A5 (zh)
TW201517563A (zh) 雲閘道、雲閘道創建配置系統及方法
WO2016206300A1 (zh) Ip地址管理方法、上网方法、溯源方法及装置和系统
WO2015085850A1 (zh) 应用识别方法及装置
CN110099142B (zh) Ip地址分配方法、装置、设备和存储介质
WO2014047919A1 (zh) 一种分配地址的方法、装置及系统
US20190200197A1 (en) Identity Information Processing Method, Database Control System, and Related Device
WO2016034122A1 (zh) CPE设备基于Linux实现公网接入用户数限制的系统及方法
WO2018019216A1 (zh) Ap接入控制
KR101408034B1 (ko) 클라우드 컴퓨팅 서버 시스템의 가상머신 정책 설정 시스템, 가상머신 정책 설정 방법 및 가상머신 정책 제공 방법
CN105979202B (zh) 一种数据传输方法及装置
US20140189082A1 (en) Local Partitioning in a Distributed Communication System
US20120207060A1 (en) Method and System for Implementing ID/Locator Mapping
TW201134167A (en) AP device and method for managing IP-cameras using the AP device

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 15896184

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

122 Ep: pct application non-entry in european phase

Ref document number: 15896184

Country of ref document: EP

Kind code of ref document: A1