WO2017193798A1 - 一种垃圾信息监控方法、装置及通信系统 - Google Patents

一种垃圾信息监控方法、装置及通信系统 Download PDF

Info

Publication number
WO2017193798A1
WO2017193798A1 PCT/CN2017/081487 CN2017081487W WO2017193798A1 WO 2017193798 A1 WO2017193798 A1 WO 2017193798A1 CN 2017081487 W CN2017081487 W CN 2017081487W WO 2017193798 A1 WO2017193798 A1 WO 2017193798A1
Authority
WO
WIPO (PCT)
Prior art keywords
information
monitoring
processed
internal data
type
Prior art date
Application number
PCT/CN2017/081487
Other languages
English (en)
French (fr)
Inventor
黄剑玮
Original Assignee
中兴通讯股份有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 中兴通讯股份有限公司 filed Critical 中兴通讯股份有限公司
Publication of WO2017193798A1 publication Critical patent/WO2017193798A1/zh

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/12Detection or prevention of fraud
    • H04W12/128Anti-malware arrangements, e.g. protection against SMS fraud or mobile malware
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W4/00Services specially adapted for wireless communication networks; Facilities therefor
    • H04W4/12Messaging; Mailboxes; Announcements
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/12Detection or prevention of fraud
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W4/00Services specially adapted for wireless communication networks; Facilities therefor
    • H04W4/12Messaging; Mailboxes; Announcements
    • H04W4/14Short messaging services, e.g. short message services [SMS] or unstructured supplementary service data [USSD]

Definitions

  • the present application relates to, but is not limited to, the field of communications, and more particularly to a spam monitoring method, apparatus, and communication system.
  • the embodiment of the invention provides a garbage information monitoring method, device and communication system, and deploys the same monitoring platform for different types of messages to save resources.
  • An embodiment of the present invention provides a spam monitoring method, including:
  • the internal data of the information to be processed is subjected to garbage data detection, and the information to be processed is processed according to the detection result.
  • performing garbage data detection on the internal data of the information to be processed includes: processing the internal data of the to-be-processed information using a monitoring processor corresponding to the information type.
  • the spam monitoring method further includes: transferring internal data of the to-be-processed information of the same calling party to the same monitoring processor.
  • the spam monitoring method further includes: if a quantity of internal data processed by a monitoring processor is greater than a threshold, enabling a new monitoring processor, or replacing the type of information of other monitoring processors with the monitoring process The type of information corresponding to the machine.
  • performing garbage data detection on the internal data of the information to be processed includes: performing a list matching on the calling number of the information to be processed, determining a corresponding detection policy according to the matching result, and performing internal data of the information to be processed according to the corresponding detection policy. Garbage data detection.
  • An embodiment of the present invention provides a garbage information monitoring apparatus, including:
  • Obtaining a module configured to obtain information to be processed, and determine a type of information
  • the parsing module is configured to parse the information format of the information to be processed according to the information type, and convert the internal data into the information to be processed;
  • the processing module is configured to perform garbage data detection on the internal data of the information to be processed, and process the to-be-processed information according to the detection result.
  • the processing module is configured to process the internal data of the information to be processed using a monitoring processor corresponding to the type of information.
  • the processing module is further configured to process internal data of the same caller's pending information to the same monitoring processor.
  • the processing module is further configured to: if a quantity of internal data processed by the monitoring processor is greater than a threshold, enable the new monitoring processor, or replace the information type of the other monitoring processor with the information corresponding to the monitoring processor. Types of.
  • the processing module is configured to list the calling number of the information to be processed. Matching, determining a corresponding detection strategy according to the matching result, and performing garbage data detection according to the internal data of the information to be processed according to the corresponding detection strategy.
  • the embodiment of the invention provides a communication system, which comprises the garbage information monitoring device provided by the embodiment of the invention.
  • Embodiments of the present invention provide a computer readable storage medium storing computer executable instructions, which are implemented by a processor to implement the above-described spam monitoring method.
  • the embodiment of the present invention provides a garbage information monitoring method, which acquires information to be processed, determines the type of information, parses the information format of the information to be processed according to the information type, converts it into internal data of the information to be processed, and performs internal data of the information to be processed.
  • the garbage data is detected, and the pending information is processed according to the detection result, so that multiple message types can be accessed, and the common common monitoring strategy and the characteristic policies of various messages are used to analyze and monitor the spam.
  • FIG. 1 is a schematic structural diagram of a garbage information monitoring apparatus according to a first embodiment of the present invention
  • FIG. 2 is a flowchart of a spam monitoring method according to a second embodiment of the present invention.
  • FIG. 3 is a structural diagram of a garbage information monitoring apparatus according to a third embodiment of the present invention.
  • FIG. 4 is a schematic diagram of a garbage information monitoring method in a third embodiment of the present invention.
  • Fig. 5 is another schematic diagram of a garbage information monitoring method in a third embodiment of the present invention.
  • the garbage information monitoring apparatus includes:
  • the obtaining module 11 is configured to obtain information to be processed and determine a type of information
  • the parsing module 12 is configured to parse the information format of the information to be processed according to the information type, and convert the internal data into the information to be processed;
  • the processing module 13 is configured to perform garbage data detection on the internal data of the information to be processed, and process the to-be-processed information according to the detection result.
  • the processing module 13 in the above embodiment is arranged to process internal data of the information to be processed using a monitoring processor corresponding to the type of information.
  • the processing module 13 in the above embodiment is further configured to process internal data of the same caller's pending information to the same monitoring processor.
  • the processing module 13 in the above embodiment is further configured to enable the new monitoring processor when the amount of internal data processed by the monitoring processor is greater than a threshold, or replace the type of information that the other monitoring processor operates with. Monitor the type of information corresponding to the processor.
  • the processing module 13 in the foregoing embodiment is configured to perform a list matching on the calling number of the information to be processed, determine a corresponding detection policy according to the matching result, and perform garbage data according to the internal data of the processing information according to the corresponding detection policy. Detection.
  • the embodiment of the present invention provides a communication system, which includes the garbage information monitoring apparatus provided by the embodiment of the present invention.
  • the spam monitoring method includes:
  • S201 Acquire information to be processed, and determine a type of information
  • S202 parsing an information format of the information to be processed according to the information type, and converting the internal data into the information to be processed;
  • S203 Performing garbage data detection on internal data of the information to be processed, according to the detection result Treat information.
  • performing the garbage data detection on the internal data of the information to be processed in the foregoing embodiment includes: processing the internal data of the to-be-processed information by using a monitoring processor corresponding to the information type.
  • the method in the foregoing embodiment further includes: transferring internal data of the to-be-processed information of the same calling party to the same monitoring processor.
  • the method in the foregoing embodiment further includes: if a quantity of internal data processed by the monitoring processor is greater than a threshold, enabling a new monitoring processor, or replacing the type of information of other monitoring processors to the monitoring processing The type of information corresponding to the machine.
  • performing the garbage data detection on the internal data of the information to be processed in the foregoing embodiment includes: performing a list matching on the calling number of the information to be processed, determining a corresponding detection policy according to the matching result, and processing the corresponding detection policy according to the corresponding detection policy.
  • the internal data of the information is detected by the garbage data.
  • the embodiment of the present invention provides a platform for implementing multiple message monitoring at the same time, which can access multiple message types, and analyze and monitor spam messages through a unified common monitoring policy and various message characteristics policies, which can be completed through unified user data. Black and white list filtering, unified delivery of various interfaces of the external system, summary report analysis and classification data.
  • the monitoring platform provided by the embodiment of the present invention can reduce the number of modules to be deployed and reduce the investment of hardware and software of the operator through common integration; the unified maintenance platform can reduce the maintenance manpower requirement and reduce the operating cost of the operator; A comprehensive coverage of most of the news, is conducive to more accurate operational analysis, to achieve better spam governance.
  • the support for monitoring a plurality of spam systems provided in this embodiment is as shown in FIG. 3, and includes:
  • the module provides a message and file interface function with an external network element, and is mainly responsible for protocol conversion, message interaction between the system and a short message center, a multimedia message center, a converged message center, a management center (BOSS), and other third party systems, and File transfer and other functions. Due to possible external network elements Differently, the interface machine 301 can convert various external results into an internal unified data structure to ensure system stability and scalability; the interface machine 301 also has a message distribution function for the internal monitoring service module;
  • the monitoring processor 302 is responsible for the real-time and non-real-time monitoring functions of various types of messages, and sends a query request to the list management module to match the blacklists and whitelists according to the number, according to the configured keyword and traffic monitoring rules.
  • the message is analyzed to determine whether the message is spam; the monitoring processor 302 can monitor a certain message or all messages according to the configured rule; the monitoring processor 302 can bear the monitoring of a certain type of message, and can also bear the same. Multiple types of message monitoring;
  • the auditor can query and display through the interface and manually confirm or change the determination result of the monitoring processor 302; the manual auditing has the information that will be determined as spam.
  • the number is sent to the list management and the BOSS or other platform to perform the blackening operation; for the message determined to be normal, the blackout operation can be performed;
  • It is used to store data related to numbers such as blacklists, whitelists, and number groups. It responds to the number query request of other modules and returns the query result, and accepts the update request of other modules to add, delete, and modify the list.
  • monitoring rules such as keyword traffic, and synchronizing the monitoring rules and the like data to each monitoring processor 302; providing configuration of various types of lists, and synchronizing to the list management module 304;
  • system operation and maintenance functions including configuration data that can be configured for various types of system operations, and provides functions for synchronizing configuration data to other modules; collecting operational data and alarm data of each module and displaying them;
  • the method for supporting monitoring multiple spam information includes the following steps:
  • the interface machine receives data sent by the external system
  • the interface machine ensures that the same caller is distributed to the same monitoring processor according to the principle of modulus distribution, and the external request is converted into the internal structure of the corresponding message type according to the message type of the external request, and sent to the corresponding monitoring processor;
  • the monitoring processor After receiving the request, the monitoring processor sends the calling party to the list server to match the blacklist and the like list;
  • the monitoring processor judges according to the result of the list query, and if it is forbidden to deliver, it returns a prohibition issuing instruction to the interface machine, and the interface machine notifies the source node;
  • the monitoring processor saves the data conforming to the monitoring rules for subsequent analysis and processing
  • the blacklist request of the calling number is sent to the list server, and the calling server adds the calling number to the blacklist;
  • the monitoring processor and the manual audit need to send the blackout request to the external system such as BOSS, first send an internal blackout request to the interface machine, and the interface machine sends the request according to the external system interface specification to the corresponding format. .
  • the external systems connected to the monitoring system are mostly the same.
  • the system is connected to the external system through a unified connection, and does not need to be connected by separate services, thereby reducing the deployment of multiple systems in the past;
  • FIG. 4 is a flow chart of a monitoring processor supporting a message according to an embodiment of the present invention: it may include:
  • the interface system 301 is connected to the message system that needs to be monitored.
  • a short message center and a set of multimedia message center are connected as an example;
  • the interface machine 301 parses the message format according to the received message type, and converts it into an internal data interface;
  • the interface machine 301 forwards the message to the monitoring processor 302 supporting the corresponding service according to the message type, and sends the same calling message to the same monitoring according to the modulus distribution principle in the monitoring processor 302 supporting the type of message.
  • the interface machine 301 can dynamically allocate the processing type of the monitoring processor 302 according to various types of traffic. For example, when the short message traffic is high and the multimedia message traffic is low, the original MMS processor can be notified to stop the MMS processing service and changed to Enable SMS processing service; thus, it is possible to start different numbers of various types of service processing according to the configured traffic threshold of various messages to achieve better processing efficiency;
  • the monitoring processor 302 sends the calling number to the list server, that is, the list management module 304, to query the list type of the calling number;
  • the calling number does not hit any list, continue to calculate the various monitoring rules such as the traffic rule and the keyword rule of the message type. If some rules are hit, then according to The processing action configured by the rule performs corresponding operations, such as intercepting the message or adding the calling number to the blacklist;
  • the blackening request is sent to the list server 304, and the list server 304 adds the number to the blacklist table; if it needs to send a blackening request to an external system such as BOSS. Sending the request to the interface machine 301 at the same time, and forwarding it to the external system by the interface machine 301;
  • the monitored related message is sent to the manual auditing module 303, and the interface is displayed and verified to confirm whether the processing result of the monitoring processor 302 is correct; the manual audit can correct the previous auditing.
  • the blackening or blackout request is sent to the list server 304 according to the result or forwarded to the external system such as BOSS through the interface machine 301;
  • FIG. 5 is a flowchart of a monitoring processor supporting multiple messages at the same time according to an embodiment of the present invention, which may include:
  • the interface system 301 is connected to the message system that needs to be monitored.
  • a short message center and a set of multimedia message center are connected as an example;
  • the interface machine 301 parses the message format according to the received message type, and converts it into an internal data interface;
  • the interface machine 301 sends the same caller's message to the same monitoring processor 302 according to the principle of modulus distribution;
  • the monitoring processor 302 sends the calling number to the list server, that is, the list management module 304, to query the list type of the calling number;
  • the calculation of various monitoring rules such as the traffic rule and the keyword rule supporting the type can be performed according to the message type, and multiple types of messages can be simultaneously calculated; if a hit is made Some rules, according to the processing action configured by the rule Perform corresponding operations, such as intercepting the message or adding the calling number to the blacklist;
  • the blackening request is sent to the list server 304, and the list server 304 adds the number to the blacklist table; if it needs to send a blackening request to an external system such as BOSS. Sending the request to the interface machine 301 at the same time, and forwarding it to the external system by the interface machine 301;
  • the monitored related message is sent to the manual auditing module 303, and the interface is displayed and verified to confirm whether the processing result of the monitoring processor 302 is correct; the manual audit can correct the previous auditing.
  • a blackout or blackout request is sent to the list server 304 according to the result or forwarded to an external system such as BOSS through the interface machine 301.
  • the embodiment of the present invention provides a garbage information monitoring method, which acquires information to be processed, determines the type of information, parses the information format of the information to be processed according to the information type, converts it into internal data of the information to be processed, and performs internal data of the information to be processed.
  • the garbage data is detected, and the pending information is processed according to the detection result, so that multiple message types can be accessed, and the common common monitoring strategy and the characteristic policies of various messages are used to analyze and monitor the spam.
  • Embodiments of the present invention provide a computer readable storage medium storing computer executable instructions, which are implemented by a processor to implement the above-described spam monitoring method.
  • each module/unit in the above embodiment may be implemented in the form of hardware, for example, by implementing an integrated circuit to implement its corresponding function, or may be implemented in the form of a software function module, for example, executing a program stored in the memory by a processor. / instruction to achieve its corresponding function.
  • Embodiments of the invention are not limited to any specific form of combination of hardware and software.
  • the embodiment of the present invention provides a garbage information monitoring method, which acquires information to be processed, determines the type of information, parses the information format of the information to be processed according to the information type, converts it into internal data of the information to be processed, and performs internal data of the information to be processed.
  • the garbage data is detected, and the pending information is processed according to the detection result, so that multiple message types can be accessed, and the common common monitoring strategy and the characteristic policies of various messages are used to analyze and monitor the spam.
  • the monitoring platform provided by the embodiment of the present invention can reduce the number of modules to be deployed and reduce the investment of hardware and software of the operator through common integration; the unified maintenance platform can reduce the maintenance manpower requirement and reduce the operating cost of the operator; A comprehensive coverage of most of the news, is conducive to more accurate operational analysis, to achieve better spam governance.

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer And Data Communications (AREA)
  • Information Transfer Between Computers (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)

Abstract

本文公布一种垃圾信息监控方法、装置及通信系统,该方法包括:,获取待处理信息,确定信息类型;根据信息类型对待处理信息的信息格式进行解析,转换为待处理信息的内部数据;对待处理信息的内部数据进行垃圾数据检测,根据检测结果处理待处理信息。

Description

一种垃圾信息监控方法、装置及通信系统 技术领域
本申请涉及但不限于通信领域,尤指一种垃圾信息监控方法、装置及通信系统。
背景技术
随着移动通信网络的发展,手机的普及率也在不断提高,随之而来的问题就是不少商家和不法分子通过移动通信网络发送各种广告和诈骗信息,不仅严重影响手机用户的体验,更有甚者上当受骗导致损失。
对此,国家和运营商都非常重视垃圾信息的治理,针对短信、彩信以及融合通信消息等不同类型的消息,运营商需要投资部署不同的监控平台,这样带来的不利因素有:需针对每种消息进行监控平台建设投资,加剧运营商运营成本;运营商需要投入更多人力维护多套系统,增加运营商运营人力成本;不同消息类型的监控所使用的大部分配置数据和用户数据大多是一致的,分开建设无法做到数据共享;每个消息监控平台的外部接口基本类似,分开建设致使重复开发,不利于系统维护;多个系统的运营数据无法有效集成进行运营分析,即为不同类型的消息分别部署不同监控平台的方式带来资源浪费。
发明概述
以下是对本文详细描述的主题的概述。本概述并非是为了限制权利要求的保护范围。
本发明实施例提供了一种垃圾信息监控方法、装置及通信系统,为不同类型消息部署同一监控平台,以节省资源。
本发明实施例提供了一种垃圾信息监控方法,其包括:
获取待处理信息,确定信息类型;
根据信息类型对待处理信息的信息格式进行解析,转换为待处理信息 的内部数据;
对待处理信息的内部数据进行垃圾数据检测,根据检测结果处理待处理信息。
在一实施方式中,对待处理信息的内部数据进行垃圾数据检测包括:使用与信息类型对应的监控处理机处理待处理信息的内部数据。
在一实施方式中,所述垃圾信息监控方法还包括:将同一主叫的待处理信息的内部数据交由同一监控处理机处理。
在一实施方式中,所述垃圾信息监控方法还包括:若一监控处理机处理的内部数据数量大于阈值时,启用新监控处理机,或者将其他监控处理机工作的信息类型替换为该监控处理机对应的信息类型。
在一实施方式中,对待处理信息的内部数据进行垃圾数据检测包括:对待处理信息的主叫号码进行名单匹配,根据匹配结果确定对应的检测策略,根据对应的检测策略对待处理信息的内部数据进行垃圾数据检测。
本发明实施例提供了一种垃圾信息监控装置,其包括:
获取模块,设置为获取待处理信息,确定信息类型;
解析模块,设置为根据信息类型对待处理信息的信息格式进行解析,转换为待处理信息的内部数据;
处理模块,设置为对待处理信息的内部数据进行垃圾数据检测,根据检测结果处理待处理信息。
在一实施方式中,处理模块设置为使用与信息类型对应的监控处理机处理待处理信息的内部数据。
在一实施方式中,处理模块还设置为将同一主叫的待处理信息的内部数据交由同一监控处理机处理。
在一实施方式中,处理模块还设置为若一监控处理机处理的内部数据数量大于阈值时,启用新监控处理机,或者将其他监控处理机工作的信息类型替换为该监控处理机对应的信息类型。
在一实施方式中,处理模块设置为对待处理信息的主叫号码进行名单 匹配,根据匹配结果确定对应的检测策略,根据对应的检测策略对待处理信息的内部数据进行垃圾数据检测。
本发明实施例提供了一种通信系统,其包括本发明实施例提供的垃圾信息监控装置。
本发明实施例提供了一种计算机可读存储介质,存储有计算机可执行指令,所述计算机可执行指令被处理器执行时实现上述垃圾信息监控方法。
本发明实施例提供了一种垃圾信息监控方法,获取待处理信息,确定信息类型,根据信息类型对待处理信息的信息格式进行解析,转换为待处理信息的内部数据,对待处理信息的内部数据进行垃圾数据检测,根据检测结果处理待处理信息,这样可以接入多种消息类型,通过统一的共性监控策略和各类消息的特性策略进行垃圾消息的分析监控。
在阅读并理解了附图和详细描述后,可以明白其他方面。
附图概述
图1为本发明第一实施例提供的垃圾信息监控装置的结构示意图;
图2为本发明第二实施例提供的垃圾信息监控方法的流程图;
图3是本发明第三实施例提供的垃圾信息监控装置的结构图;
图4是本发明第三实施例中的垃圾信息监控方法的一种示意图;
图5是本发明第三实施例中的垃圾信息监控方法的另一种示意图。
详述
下面将结合本发明实施例中的附图,对本发明实施例中的技术方案进行清楚、完整地描述,所描述的实施例只是本发明中一部分实施例,而不是全部的实施例。基于本发明中的实施例,本领域普通技术人员在没有做出创造性劳动前提下所获得的所有其他实施例,都属于本申请保护的范围。
现通过实施方式结合附图的方式对本申请做出进一步的诠释说明。
第一实施例:
图1为本发明第一实施例提供的垃圾信息监控装置的结构示意图,由图1可知,在本实施例中,垃圾信息监控装置包括:
获取模块11,设置为获取待处理信息,确定信息类型;
解析模块12,设置为根据信息类型对待处理信息的信息格式进行解析,转换为待处理信息的内部数据;
处理模块13,设置为对待处理信息的内部数据进行垃圾数据检测,根据检测结果处理待处理信息。
在一些实施例中,上述实施例中的处理模块13设置为使用与信息类型对应的监控处理机处理待处理信息的内部数据。
在一些实施例中,上述实施例中的处理模块13还设置为将同一主叫的待处理信息的内部数据交由同一监控处理机处理。
在一些实施例中,上述实施例中的处理模块13还设置为若一监控处理机处理的内部数据数量大于阈值时,启用新监控处理机,或者将其他监控处理机工作的信息类型替换为该监控处理机对应的信息类型。
在一些实施例中,上述实施例中的处理模块13设置为对待处理信息的主叫号码进行名单匹配,根据匹配结果确定对应的检测策略,根据对应的检测策略对待处理信息的内部数据进行垃圾数据检测。
对应的,本发明实施例提供了一种通信系统,其包括本发明实施例提供的垃圾信息监控装置。
第二实施例:
图2为本发明第二实施例提供的垃圾信息监控方法的流程图,由图2可知,在本实施例中,垃圾信息监控方法包括:
S201:获取待处理信息,确定信息类型;
S202:根据信息类型对待处理信息的信息格式进行解析,转换为待处理信息的内部数据;
S203:对待处理信息的内部数据进行垃圾数据检测,根据检测结果处 理待处理信息。
在一些实施例中,上述实施例中的对待处理信息的内部数据进行垃圾数据检测包括:使用与信息类型对应的监控处理机处理待处理信息的内部数据。
在一些实施例中,上述实施例中的方法还包括:将同一主叫的待处理信息的内部数据交由同一监控处理机处理。
在一些实施例中,上述实施例中的方法还包括:若一监控处理机处理的内部数据数量大于阈值时,启用新监控处理机,或者将其他监控处理机工作的信息类型替换为该监控处理机对应的信息类型。
在一些实施例中,上述实施例中的对待处理信息的内部数据进行垃圾数据检测包括:对待处理信息的主叫号码进行名单匹配,根据匹配结果确定对应的检测策略,根据对应的检测策略对待处理信息的内部数据进行垃圾数据检测。
第三实施例:
现结合应用场景对本发明实施例做进一步的诠释说明。
本发明实施例提供一个同时实现多种消息监控的平台,可以接入多种消息类型,通过统一的共性监控策略和各类消息的特性策略进行垃圾消息的分析监控,可以通过统一的用户数据完成黑白名单过滤,统一提供外部系统的各个接口,汇总的报表分析和分类数据。本发明实施例提供的监控平台通过共性整合,可以减少需要部署的模块数量,降低运营商硬件和软件投资;统一的维护平台可以减少维护人力需求,降低运营商人力成本;统一提供的分析数据更全面的覆盖了大部分消息,有利于进行更准确的运营分析,达到更好的垃圾信息治理效果。
本实施例提供的支持监控多种垃圾信息系统如图3所示,其包括:
接口机301:
该模块提供与外部网元间消息和文件接口功能,主要负责本系统与短信中心、彩信中心、融合消息中心、管理中心(BOSS)及其他第三方系统之间的协议的转换、消息交互,以及文件传输等功能。由于外部网元可能 各不相同,通过接口机301可以将外部的各种结果转化为内部统一的数据结构,保证系统的稳定性和可扩展性;接口机301还具备对内部监控业务模块的消息分发功能;
监控处理机302:
监控处理机302负责各类消息的实时和非实时的监控功能,根据号码发送查询请求至名单管理模块进行黑名单、白名单等各类名单的匹配,根据配置的关键字和流量等监控规则对消息进行分析,判断消息是否为垃圾信息;监控处理机302可以根据配置的规则针对某一种消息或者对所有消息进行监控;监控处理机302既可承担某一种消息的监控,也可以同时承担多种类型的消息监控;
人工审核模块303:
经过监控处理机302判断为疑似垃圾消息的信息可以送至人工审核,审核人员可以通过界面查询展示并通过人工再次确认或改变监控处理机302的判定结果;人工审核同时具备将判定为垃圾消息的号码发送给名单管理以及BOSS或其他平台进行加黑操作;对判定为正常的消息则可以进行解黑操作;
名单管理模块304:
用于存放黑名单、白名单、号码分组等与号码相关的数据,响应其他模块的号码查询请求并返回查询结果,接受其他模块的更新请求对名单进行增加删除修改等操作;
策略管理模块305:
提供关键字流量等监控规则的配置,并可同步监控规则等数据至各个监控处理机302;提供各类名单的配置,并可同步至名单管理模块304;
运维告警模块306:
提供系统运维功能,包括可配置各类系统运行的配置数据,提供将配置数据同步至其他模块的功能;收集各模块的运行数据以及告警数据并进行展示;
报表分析模块307:
对系统运行的各项数据进行分析计算及统计,通过报表进行展现;
日志处理模块308:
对系统运行中产生的各项日志进行存储,并提供查询功能;
对应的,本实施例提供的支持监控多种垃圾信息的方法包括以下步骤:
1.接口机接收外部系统发送的数据;
2.接口机按照模值分发原则保证相同主叫分发至同一个监控处理机,根据外部请求的消息类型将外部请求转化为对应消息类型的内部结构发送至相应的监控处理机;
3.监控处理机接收到请求后,将主叫发送到名单服务器进行黑白名单等名单的匹配;
4.监控处理机根据名单查询结果进行判断,如果禁止下发则向接口机返回禁止下发指令,由接口机通知消息来源节点;
5.如果名单查询结果允许下发,则继续进行流量规则和关键字规则等各类规则的监控;
6.监控处理机将符合监控规则的数据进行日志保存,以便后续进行分析处理;
7.如果监控处理机监控到的数据需要进行加黑处理,则向名单服务器发送该主叫号码的加黑请求,名单服务器将该主叫号码加入到黑名单中;
8.如果需要对监控到的数据进行人工审核,则将监控的相关消息发送到人工审核,通过界面进行展示并审核确认监控处理机的处理结果是否正确;
9.如果监控处理机和人工审核有需要向BOSS等外部系统发送加解黑请求,则首先向接口机发送内部加解黑请求,由接口机根据外部系统接口规范转化为相应格式的请求进行发送。
本实施例达到了以下几个效果:
1.监控系统对接的外部系统大多相同,本系统通过统一对接外部系统,无需分业务进行对接,减少以往多套系统的部署;
2.内部处理支持多种消息类型的监控,可以根据不同类型的规模进行部署,减少资源冗余;
3.对于监控过程中的黑名单、白名单等数据与消息类型无关,本系统统一管理复用,减少以往每个系统一套的重复建设;
4.对于监控中使用的各种配置数据,可以统一配置管理;
图4是根据本发明实施例的监控处理机支持一种消息的流程:其可以包括:
1.由接口机301对接需要监控的消息系统,本例以对接一套短消息中心和一套彩信中心为例;
2.接口机301根据收到的消息类型对消息格式进行解析,并转化为内部数据接口;
3.接口机301根据消息类型将消息转发至支持对应业务的监控处理机302,并且在支持该类型消息的监控处理机302中根据模值分发原则,将相同主叫的消息发往同一个监控处理机302;
4.接口机301可以根据各种类型的流量来动态调配监控处理机302的处理类型,例如短信流量较高而彩信流量较低时,可以通知原有的彩信处理机停止彩信处理服务而改为启用短信处理服务;从而能够根据配置的各种消息的流量阈值决定启动不同数量的各类业务处理以达到更佳处理效率;
5.监控处理机302将主叫号码发送给名单服务器即名单管理模块304,查询该主叫号码的名单类型;
6.如果该主叫号码是黑名单则直接向接口机301返回禁止下发指令,由接口机301将该指令返回给上报该消息的系统;
7.如果该主叫号码是白名单则直接向接口机301返回放行指令,由接口机301将该指令返回给上报该消息的系统;
8.如果该主叫号码没有命中任何名单,则继续进行该消息类型的流量规则和关键字规则等各类监控规则的计算,如果命中了某些规则,则根据 该规则配置的处理动作进行相应的操作,例如对该消息进行拦截或将该主叫号码加入黑名单等;
9.如果该主叫号码命中的规则需要加入黑名单,则将加黑请求发送给名单服务器304,名单服务器304将该号码加入到黑名单表中;如果需要给BOSS等外部系统发送加黑请求,则同时将请求发送给接口机301,由接口机301转发至外部系统;
10.如果需要对监控到的数据进行人工审核,则将监控的相关消息发送到人工审核模块303,通过界面进行展示并审核确认监控处理机302的处理结果是否正确;人工审核可以校正之前的审核结果,并根据结果将加黑或解黑请求发送给名单服务器304或者通过接口机301转发至BOSS等外部系统;
图5是根据本发明实施例的监控处理机同时支持多种消息的流程,其可以包括:
1.由接口机301对接需要监控的消息系统,本例以对接一套短消息中心和一套彩信中心为例;
2.接口机301根据收到的消息类型对消息格式进行解析,并转化为内部数据接口;
3.接口机301根据模值分发原则,将相同主叫的消息发往同一个监控处理机302;
4.监控处理机302将主叫号码发送给名单服务器即名单管理模块304,查询该主叫号码的名单类型;
5.如果该主叫号码是黑名单则直接向接口机301返回禁止下发指令,由接口机301将该指令返回给上报该消息的系统;
6.如果该主叫号码是白名单则直接向接口机301返回放行指令,由接口机301将该指令返回给上报该消息的系统;
7.如果该主叫号码没有命中任何名单,则根据消息类型进行支持该类型的流量规则和关键字规则等各类监控规则的计算,亦可对多种类型的消息进行同时计算;如果命中了某些规则,则根据该规则配置的处理动作进 行相应的操作,例如对该消息进行拦截或将该主叫号码加入黑名单等;
8.如果该主叫号码命中的规则需要加入黑名单,则将加黑请求发送给名单服务器304,名单服务器304将该号码加入到黑名单表中;如果需要给BOSS等外部系统发送加黑请求,则同时将请求发送给接口机301,由接口机301转发至外部系统;
9.如果需要对监控到的数据进行人工审核,则将监控的相关消息发送到人工审核模块303,通过界面进行展示并审核确认监控处理机302的处理结果是否正确;人工审核可以校正之前的审核结果,并根据结果将加黑或解黑请求发送给名单服务器304或者通过接口机301转发至BOSS等外部系统。
综上可知,通过本发明实施例,至少存在以下有益效果:
本发明实施例提供了一种垃圾信息监控方法,获取待处理信息,确定信息类型,根据信息类型对待处理信息的信息格式进行解析,转换为待处理信息的内部数据,对待处理信息的内部数据进行垃圾数据检测,根据检测结果处理待处理信息,这样可以接入多种消息类型,通过统一的共性监控策略和各类消息的特性策略进行垃圾消息的分析监控。
本发明实施例提供了一种计算机可读存储介质,存储有计算机可执行指令,所述计算机可执行指令被处理器执行时实现上述垃圾信息监控方法。
本领域普通技术人员可以理解上述方法中的全部或部分步骤可通过程序来指令相关硬件(例如处理器)完成,所述程序可以存储于计算机可读存储介质中,如只读存储器、磁盘或光盘等。上述实施例的全部或部分步骤也可以使用一个或多个集成电路来实现。相应地,上述实施例中的各模块/单元可以采用硬件的形式实现,例如通过集成电路来实现其相应功能,也可以采用软件功能模块的形式实现,例如通过处理器执行存储于存储器中的程序/指令来实现其相应功能。本发明实施例不限制于任何特定形式的硬件和软件的结合。
以上仅是本发明的实施方式而已,并非对本申请做任何形式上的限制,凡是依据本申请的技术实质对以上实施方式所做的任意简单修改、等 同变化、结合或修饰,均仍属于本申请技术方案的保护范围。
工业实用性
本发明实施例提供了一种垃圾信息监控方法,获取待处理信息,确定信息类型,根据信息类型对待处理信息的信息格式进行解析,转换为待处理信息的内部数据,对待处理信息的内部数据进行垃圾数据检测,根据检测结果处理待处理信息,这样可以接入多种消息类型,通过统一的共性监控策略和各类消息的特性策略进行垃圾消息的分析监控。本发明实施例提供的监控平台通过共性整合,可以减少需要部署的模块数量,降低运营商硬件和软件投资;统一的维护平台可以减少维护人力需求,降低运营商人力成本;统一提供的分析数据更全面的覆盖了大部分消息,有利于进行更准确的运营分析,达到更好的垃圾信息治理效果。

Claims (12)

  1. 一种垃圾信息监控方法,包括:
    获取待处理信息,确定信息类型;
    根据所述信息类型对所述待处理信息的信息格式进行解析,转换为所述待处理信息的内部数据;
    对所述待处理信息的内部数据进行垃圾数据检测,根据检测结果处理所述待处理信息。
  2. 如权利要求1所述的垃圾信息监控方法,其中,所述对所述待处理信息的内部数据进行垃圾数据检测包括:使用与所述信息类型对应的监控处理机处理所述待处理信息的内部数据。
  3. 如权利要求2所述的垃圾信息监控方法,还包括:将同一主叫的待处理信息的内部数据交由同一监控处理机处理。
  4. 如权利要求2所述的垃圾信息监控方法,还包括:若一监控处理机处理的内部数据数量大于阈值时,启用新监控处理机,或者将其他监控处理机工作的信息类型替换为该监控处理机对应的信息类型。
  5. 如权利要求1至4任一项所述的垃圾信息监控方法,其中,所述对所述待处理信息的内部数据进行垃圾数据检测包括:对所述待处理信息的主叫号码进行名单匹配,根据匹配结果确定对应的检测策略,根据对应的检测策略对所述待处理信息的内部数据进行垃圾数据检测。
  6. 一种垃圾信息监控装置,包括:
    获取模块,设置为获取待处理信息,确定信息类型;
    解析模块,设置为根据所述信息类型对所述待处理信息的信息格式进行解析,转换为所述待处理信息的内部数据;
    处理模块,设置为对所述待处理信息的内部数据进行垃圾数据检测,根据检测结果处理所述待处理信息。
  7. 如权利要求6所述的垃圾信息监控装置,其中,所述处理模块设置为使用与所述信息类型对应的监控处理机处理所述待处理信息的内部数据。
  8. 如权利要求7所述的垃圾信息监控装置,其中,所述处理模块还设置为将同一主叫的待处理信息的内部数据交由同一监控处理机处理。
  9. 如权利要求7所述的垃圾信息监控装置,其中,所述处理模块还设置为若一监控处理机处理的内部数据数量大于阈值时,启用新监控处理机,或者将其他监控处理机工作的信息类型替换为该监控处理机对应的信息类型。
  10. 如权利要求6至9任一项所述的垃圾信息监控装置,其中,所述处理模块设置为对所述待处理信息的主叫号码进行名单匹配,根据匹配结果确定对应的检测策略,根据对应的检测策略对所述待处理信息的内部数据进行垃圾数据检测。
  11. 一种通信系统,包括如权利要求6至10任一项所述的垃圾信息监控装置。
  12. 一种计算机可读存储介质,存储有计算机可执行指令,所述计算机可执行指令用于执行权利要求1-5任一项的垃圾信息监控方法。
PCT/CN2017/081487 2016-05-11 2017-04-21 一种垃圾信息监控方法、装置及通信系统 WO2017193798A1 (zh)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN201610309394.8A CN107371141B (zh) 2016-05-11 2016-05-11 一种垃圾信息监控方法、装置及通信系统
CN201610309394.8 2016-05-11

Publications (1)

Publication Number Publication Date
WO2017193798A1 true WO2017193798A1 (zh) 2017-11-16

Family

ID=60266229

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2017/081487 WO2017193798A1 (zh) 2016-05-11 2017-04-21 一种垃圾信息监控方法、装置及通信系统

Country Status (2)

Country Link
CN (1) CN107371141B (zh)
WO (1) WO2017193798A1 (zh)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2023115890A1 (zh) * 2021-12-22 2023-06-29 郑州云海信息技术有限公司 一种文本的质量清洗方法、装置及介质

Families Citing this family (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN113067765B (zh) * 2020-01-02 2023-01-13 中国移动通信有限公司研究院 一种多媒体消息监控方法、装置及设备

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101272594A (zh) * 2007-03-22 2008-09-24 华为技术有限公司 过滤加密内容的方法、过滤设备和内容消费设备
CN101340454A (zh) * 2008-08-14 2009-01-07 青岛海信移动通信技术股份有限公司 一种推送消息的接收方法及移动通信设备
CN102932753A (zh) * 2011-08-08 2013-02-13 上海粱江通信系统股份有限公司 一种在多媒体系统的链路上实现垃圾彩信拦截的方法
US8948795B2 (en) * 2012-05-08 2015-02-03 Sybase 365, Inc. System and method for dynamic spam detection

Family Cites Families (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104883671B (zh) * 2014-02-27 2018-10-09 珠海市君天电子科技有限公司 一种垃圾短信的判断方法及系统

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101272594A (zh) * 2007-03-22 2008-09-24 华为技术有限公司 过滤加密内容的方法、过滤设备和内容消费设备
CN101340454A (zh) * 2008-08-14 2009-01-07 青岛海信移动通信技术股份有限公司 一种推送消息的接收方法及移动通信设备
CN102932753A (zh) * 2011-08-08 2013-02-13 上海粱江通信系统股份有限公司 一种在多媒体系统的链路上实现垃圾彩信拦截的方法
US8948795B2 (en) * 2012-05-08 2015-02-03 Sybase 365, Inc. System and method for dynamic spam detection

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2023115890A1 (zh) * 2021-12-22 2023-06-29 郑州云海信息技术有限公司 一种文本的质量清洗方法、装置及介质

Also Published As

Publication number Publication date
CN107371141A (zh) 2017-11-21
CN107371141B (zh) 2022-06-10

Similar Documents

Publication Publication Date Title
US9106603B2 (en) Apparatus, method and computer-readable storage mediums for determining application protocol elements as different types of lawful interception content
CN103108320A (zh) 一种监控移动设备的应用程序的方法和系统
KR20060071362A (ko) 스팸 차단 방법 및 스팸 차단 장치
US8625746B2 (en) System and method to push messages indicating status of trouble reports in a telecommunications network
RU2011110346A (ru) Система медийных ресурсов и способ предоставления медийных ресурсов
US8775532B1 (en) Method and system for synchronizing messages across multiple digital message accounts
CN112040429A (zh) 一种基于分布式存储的短信管理系统及方法
WO2014176991A1 (zh) 多媒体业务处理装置、方法及系统
WO2017193798A1 (zh) 一种垃圾信息监控方法、装置及通信系统
KR20000064041A (ko) 멀티미디어 메세징 시스템 및 방법
WO2015131561A1 (zh) 一种实现短信转发为即时消息的方法及装置
CN107426109B (zh) 一种流量调度方法、vnf模块及流量调度服务器
US8341650B1 (en) High thread count analyzer for web application server environment
WO2016037489A1 (zh) Rcs垃圾消息的监控方法、装置及系统
CN102231874A (zh) 一种短信处理方法、装置及系统
WO2021097713A1 (zh) 分布式安全检测系统、方法、设备及存储介质
KR100996709B1 (ko) 아이피 응용 스팸 차단 장치 및 방법
CN100456755C (zh) 消息过滤方法及其装置
CN115629880A (zh) 一种日志脱敏方法、装置、设备及存储介质
CN113055921B (zh) 故障处理方法和终端
CN117135580A (zh) 5g消息通用接入系统及方法
CN101217687B (zh) Mms消息状态信息处理方法
CN101674584A (zh) 病毒检测的方法及系统
RU2517438C2 (ru) Способ и система для распределения отчетов о доставке
TW201517653A (zh) 處理sms訊息在傳送時被拒絕時之方法及相關通訊系統

Legal Events

Date Code Title Description
NENP Non-entry into the national phase

Ref country code: DE

121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 17795416

Country of ref document: EP

Kind code of ref document: A1

122 Ep: pct application non-entry in european phase

Ref document number: 17795416

Country of ref document: EP

Kind code of ref document: A1