CN100464518C - Green internet-accessing system based on concentrated management and dictributed control, and method therefor - Google Patents

Green internet-accessing system based on concentrated management and dictributed control, and method therefor Download PDF

Info

Publication number
CN100464518C
CN100464518C CNB2005100052651A CN200510005265A CN100464518C CN 100464518 C CN100464518 C CN 100464518C CN B2005100052651 A CNB2005100052651 A CN B2005100052651A CN 200510005265 A CN200510005265 A CN 200510005265A CN 100464518 C CN100464518 C CN 100464518C
Authority
CN
China
Prior art keywords
internet
routing device
user
filter
access
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Expired - Fee Related
Application number
CNB2005100052651A
Other languages
Chinese (zh)
Other versions
CN1815971A (en
Inventor
褚亚军
王刚
张江鸣
吕振峰
顾文良
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
New H3C Technologies Co Ltd
Original Assignee
Hangzhou H3C Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Hangzhou H3C Technologies Co Ltd filed Critical Hangzhou H3C Technologies Co Ltd
Priority to CNB2005100052651A priority Critical patent/CN100464518C/en
Publication of CN1815971A publication Critical patent/CN1815971A/en
Application granted granted Critical
Publication of CN100464518C publication Critical patent/CN100464518C/en
Expired - Fee Related legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Landscapes

  • Data Exchanges In Wide-Area Networks (AREA)
  • Computer And Data Communications (AREA)

Abstract

The system includes route devices, filter, manager of configuration files, and manager of accounts. The invention also discloses method for green logging on network based on centralized management and distributed control. The method includes following steps: initializing route devices to obtain network address of manager of configuration files; carrying out user authentication for not authenticated user, who requests to access Internet; filter obtains new configuration file from manager of configuration files to update filter; route device sends restricted user, who requests to access Internet, to filter; based on filtering rule suitable to the user, the filter carries out filtering for access request. The invention can control time length for logging on network and restrict access to unhealthy network site. The invention is suitable to control students to log on network especially.

Description

Internet access control system, method and routing device based on the user
Technical field
The present invention relates to a kind of system, method and apparatus of green internet, particularly a kind of internet access control system, method and routing device based on the user.
Background technology
Along with popularizing of computer and broadband networks, the family online user is more and more, and the student can widen the vision, strengthen foreign exchanges, promotes personality development, open up the space of education by family's broadband network.But in recent years, in the time of the develop rapidly of China's Internet industry, some objectionable websites also occurred: the webpage that contains flames such as pornographic, violence, reaction in a large number is flooded with whole cyberspace, and grows in intensity, student's physical and mental health is on the hazard, brings out juvenile deliquency.Numerous students is wallowed in the network for a long time in addition, and the online of time-out can cause the spirit and the illness of body, unhealthful growth.This becomes the rather problem of headache of parents of student.
Visit objectionable website in order to stop the student, what arise at the historic moment is the green internet technical scheme.By these schemes can effectively control the student be in the online time and limit its visit to objectionable website.
In order to reach the purpose of green internet, can by the time period that this software comes controlling computer to surf the Net, shield the visit of user, the information of recording user online by specific software is installed usually on the computer of online to objectionable website.
But there are the following problems for this technical scheme.First, install, dispose complicated: need to install on computers and configuration URL (Uniform Resource Locator, uniform resource locator) filtering rule and temporal filtering rule, some heads of a family still can not familiar with computers, network, is difficult to install, disposes and safeguards.The second, poor reliability: because this software is mounted on the computer, the student can walk around this software by certain technology, even can close this software when online.The 3rd, can not centralized control: when needs manage multiple computers, need on every computer, install respectively.The 4th, invasion of privacy: can monitor any internet records of student by software, invade student's rights and interests.
Can realize green internet by before the online computer routing device being installed in addition, by the time period that routing device comes controlling computer to surf the Net, the shielding user is to the visit of objectionable website.
Existing router, as: the BR104 of three Kanggong departments of Huawei production, BR204, WBR204g+ model router, the DI-504 that DLINK company produces, DI-604, DI-604+ model router, have by ACL (Access Control List (ACL)) is set in router, forbid the online of certain IP or MAC Address, perhaps by the station address of disable access is set, reach the function of restriction online or limiting access part website, but these are provided with underaction, can not effectively distinguish and then provide more reasonably differentiation service on net to carrying out strictness to user's identity.
In addition, there are the following problems for technique scheme: the first, install, dispose complicated: need the parents of student on routing device, to dispose url filtering and temporal filtering,, then be difficult to install, dispose and safeguard if the parents of student can not skillfully use a computer.The second, can not support a large amount of url filterings:, can't realize the maintenance of a large amount of url filtering rules owing to need to carry out manual configuration by Web (World Wide Web, the World Wide Web (WWW)) page.
Summary of the invention
Technical problem to be solved by this invention is, overcome the defective of above-mentioned prior art, provide a kind of and can adopt the mode of user filtering, effectively control the internet access control system based on the user of surf time section and disable access objectionable website according to user's difference.
Another technical problem to be solved of the present invention is, overcome the defective of above-mentioned prior art, provide and to adopt the mode of user filtering according to user's difference, effectively control the internet access control method based on the user of surf time section and disable access objectionable website.
Another technical problem to be solved of the present invention is, overcomes the defective of above-mentioned prior art, provides to adopt the mode of user filtering according to user's difference, controls the routing device of surf time section and disable access objectionable website effectively.
In order to solve first above-mentioned technical problem, the technical scheme that a concrete execution mode of the present invention adopts is, a kind of internet access control system based on the user is provided, it includes and comprises routing device, and is used for the filter that the request of limited users access internet filtered according to filtering rule; Be used for authenticating, and the request of limited users access internet is sent to filter, the request of the internet access the Internet of non-limited users is sent to the Account Administration device of the routing module of routing device sending the internet access requesting users; Be used for the configuration file that comprises filtering rule is handled, and described configuration file downloaded to the Profile Manager of filter; Also comprise Redirect Server, in wherein said Profile Manager and described filter is arranged on described routing device is connected the described Redirect Server; Wherein said filtering rule comprises the url filtering restriction, described filtering rule comprises the url filtering restriction, and described url filtering limits the URL Internet resources pointed in a certain Internet resources pointed that are meant in the url list that does not allow the user capture appointment or the url list that only allows the user capture appointment.In addition, of the present invention concrete be in the embodiment, the Account Administration device can be wholely set with routing device.In identical or other execution modes, filter and Profile Manager also can be wholely set with routing device similarly.
Above-mentioned filtering rule can be url filtering restriction, time restriction etc.Routing device and Profile Manager are then undertaken by configuration protocol alternately.
In some other execution mode of the present invention system can also be set like this: filter or Profile Manager and Redirect Server are wholely set.
In the other execution mode of the present invention system can also be set like this: Profile Manager or filter and acting server are wholely set.
In order to solve second above-mentioned technical problem, the technical scheme that another concrete execution mode of the present invention adopts is, a kind of internet access control method based on the user is provided, and comprising:
Whether routing device authenticates to determine the user limited to sending the access internet requesting users;
According to authentication result, the request of the access internet that non-limited users is sent is sent to the Internet; Perhaps, according to authentication result, the request of the access internet that does not meet default filtering rule that the shielding limited users is sent; The request of the access internet that meets described filtering rule that limited users is sent is sent to the Internet, wherein said filtering rule comprises the url filtering restriction, and described url filtering limits the URL Internet resources pointed in a certain Internet resources pointed that are meant in the url list that does not allow the user capture appointment or the url list that only allows the user capture appointment; In the described method, routing device and Profile Manager are mutual, upgrade the configuration file that comprises filtering rule in the filter.In some embodiments, described routing device and Profile Manager are mutual, upgrade the configuration file that comprises filtering rule in the filter and comprise: filter and Profile Manager are alternately to determine the current redaction that whether has configuration file; If there is the configuration file of redaction, then obtains new configuration file and upgrade filter from Profile Manager.
Said method also can comprise following steps: non-limited users through after the authentification of user can by with alternately limited users being carried out personalization and disposes of routing device; After the user is through authentication, there is not data access can nullify account number automatically in the given time; Or the user can select to nullify account number on authentication interface; When not having account number online in the given time, can disconnect Internet connection; When having new version software, the user can select to carry out the updating operation of software version, and routing device is from the network site that management system is obtained latest edition software, and gets access to the software redaction from this position subsequently, it is preserved, and use new software version to restart.
In order to realize the 3rd purpose of the present invention, the present invention in the technical scheme that an execution mode adopts is: a kind of routing device is provided, comprise that this route comprises: routing module, and be used for the filter of filtering rule to filtering through the request of the access internet of filter according to configuration, be used for authenticating to sending the internet access requesting users, if the user is a limited users, then the request of its access internet is sent to the Account Administration device of filter; Wherein said filtering rule comprises the url filtering restriction, described url filtering limits the URL Internet resources pointed in a certain Internet resources pointed that are meant in the url list that does not allow the user capture appointment or the url list that only allows the user capture appointment, filter device therefor also is used for Profile Manager mutual, obtain new filtering rule from described Profile Manager, the filtering rule in the described filter is upgraded according to this new filtering rule.
The present invention can obtain following technique effect: green internet system and the method based on centralized management distribution control provided by the invention can realize centralized management, the configuration file that will comprise url filtering rule and temporal filtering rule is safeguarded by Profile Manager is unified, and is issued on each routing device; Can carry out classification to the user, limited account number is surfed the Net by the rule limits in the filter, and non-limited account number can the random access network; The importing of url filtering is in batches supported in the automatic importing of url filtering, by file url list information is imported in batches, and comes into force.
First kind of technical scheme of the present invention in addition can realize distributed filtering, finishes last net filtration to subordinate's computer by each routing device.
Description of drawings
Fig. 1 is the schematic diagram of the green internet system of first kind of execution mode according to the present invention;
Fig. 2 shows the networking plan figure according to the green internet system of first kind of execution mode of the present invention;
Fig. 3 is the schematic diagram of the green internet system of second kind of execution mode according to the present invention;
Fig. 4 shows the networking plan figure according to the green internet system of second kind of execution mode of the present invention;
Fig. 5 is the schematic diagram of the green internet system of the third execution mode according to the present invention;
Fig. 6 shows the networking plan figure according to the green internet system of the third execution mode of the present invention.
Embodiment
The present invention will be described in detail below in conjunction with the drawings and specific embodiments.
Fig. 1 is the schematic diagram of the green internet system of first kind of execution mode according to the present invention.
Fig. 2 has shown the networking plan figure according to the green internet system of first kind of execution mode of the present invention.
Now that the description of reference numerals among Fig. 2 is as follows:
The data flow of the non-limited users online of 1 expression;
2 expression limited users Internet data streams;
3 expression management control data streams;
The returned packet of the network access request that 4 expressions are sent by Redirect Server;
10 expression management systems; 20 expression Redirect Servers;
30 expression acting servers; 40 expression routing devices;
101 expression families one; 102 expression families two;
103 expression limited networks; The non-limited network of 104 expressions;
105 expression the Internets.
As depicted in figs. 1 and 2, the green internet system based on centralized management distribution control of the present invention comprises management system 10 and routing device 40.Management system 10 comprises Profile Manager, is used for to configuration file centralized management and with its renewal/download to filter.Configuration file comprises various filtering rules according to different account numbers.
Routing device 40 comprises: routing module; The Account Administration device, be used to authenticate and manage the different user that uses routing device 40 access internet 105, and the Internet 105 access request of limited users are sent to filter, the Internet 105 access request of non-limited users directly are committed to routing module, i.e. this request directly is submitted to the Internet 105 without restriction; Filter, the filtering rule that is used for being suitable for according to the user is controlled the visit of user to the Internet 105, the Internet 105 access request that are about to meet the filtering rule of this limited users are submitted to routing module, will not meet the Internet 105 access request shielding of the filtering rule of this limited users; Update module is used to dynamically update up-to-date software.
Wherein, filtering rule can be url filtering restriction or time restriction etc.Url filtering limits URL the Internet 105 resources pointed in a certain the Internet 105 resources pointed that are meant in the url list that does not allow the user capture appointment or the url list that only allows the user capture appointment.Time restriction can be divided into the restriction of surf time section and the restriction of online duration.Surf time section restriction is meant, only allows in the time period of appointment access internet 105.Online duration restriction is meant, to the at the appointed time restriction of online total time in the unit of user, and for example in 1 day, in addition, but also limited subscriber total surf time in 1 week, for example surfing the Net total time in 1 week can not be above 5 hour.
Filtering rule can be managed concentratedly, the network manager can by with management system 10 in Profile Manager mutual, regular update and safeguard url list, time period restriction rule and long restriction rule of time etc. in the filtering rule.In addition, personalized rule such as time period restriction rule and long restriction rule of time also can be disposed respectively by the user; Can use the corresponding url list of file lead-in mode batch configuration url filtering rule.
The user can be divided into limited users and non-limited users.Non-limited users, student's the head of a family for example, applicable unrestricted regular access internet 105 is not subjected to any restriction when promptly surfing the Net.Limited users, for example the student needs by rule restrictions such as url filtering rule, time rules during online.If when the URL that limited users will be visited belonged to a certain in the limited url list, filter did not allow this access request shielding it is conducted interviews.Or when limited users during in non-surf time section online, filter shields all the Internet 105 access request of this user, does not promptly allow this user in this time period online.
Profile Manager in routing device 40 and the management system 10 can be undertaken alternately by configuration protocol, with the renewal of the software of the renewal that realizes configuration file and routing device 40.Configuration protocol can be HTTP (HyperText Transfer Protocol, HTML (Hypertext Markup Language)), FTP (File TransferProtocol, file transfer protocol (FTP)), the proprietary protocol that can finish correlation function or other agreement.
Preserve configuration file in the management system 10, comprised url list and temporal filtering rule in the configuration file.
Routing device 40 upgrades up-to-date software and configuration file by mutual with management system 10.
As shown in Figure 2, one or more computer, can be shared routing device 40 and surf the Net simultaneously when many computers by routing device 40 online.
The user can be divided into: the account number online that " head of a family " and " student " is two types, can manage concentratedly, and only need a routing device 40, computers all in the family all can be surfed the Net, and all are subjected to the restriction of rule on the routing device 40 during online.
When all uses " student " account number is passed through HTTP access internet 105, be subjected to the restriction and the time restriction of url filtering.And during all uses " head of a family " account number access internet 105, can not be subjected to the restriction of above-mentioned rule.
In addition, routing device can be standard router, multi-layer switches or based on software router of WINDOWS (form) operating system or LINUX/UNIX operating system etc.
To describe the configuration and the operational process of the green internet system of this execution mode below in detail according to the present invention:
1) routing device 40 initialization: default WAN (Wide Area Network, wide area network) interface is DHCP (DHCP:Dynamic Host Configuration Protocol, dynamic host allocation protocol) obtain address mode, the address of default management system 10 is a gateway address;
2) routing device 40 hatchings, promptly send in user's hand: the address of the management system 10 when routing device 40 obtains normal the operation, and the differentiation configuration, for example information such as each user's network access, user name, user cipher, and initial time filter list and url filtering tabulation;
3) authentification of user, be that the user passes through routing device 40 online: when the user conducts interviews to the Internet 105 by WEB or alternate manner, before not authenticating, routing device 40 can return to the authentification of user page, the user carries out authenticate-acknowledge, after authentication was passed through, routing device 40 was initiated the Internet 105 and is connected;
4) personalized configuration: non-limited users can by with the personalized configuration information of the mutual configuration limited users of routing device 40, as restriction of online time period and online duration restriction etc.
5) and mutual (the normal operation) of management system 10: after routing device 40 inserts the Internets 105, send the information of configuration file, software version to management system 10, management system 10 relatively current versions confirming whether there is the redaction of configuration file and software, if redaction is arranged then notify routing device 40 to carry out version updating;
6) routing device 40 upgrades configuration: after routing device 40 receives the new configuration file of management system 10, carry out equipment disposition and upgrade;
7) routing device 40 upgrades version: when having new version software in the management system 10, the user can carry out the updating operation of software version, the network site of management system 10 notice routing devices 40 latest editions, after routing device 40 gets access to the software redaction from this position, it is preserved, and use new software version to restart;
8) routing device 40 filters: for the Internet 105 access request that non-limited users is sent, Profile Manager sends it to the routing module in the routing device 40, directly sends it to the Internet 105; For the Internet 105 access request that limited users is sent, Profile Manager sends it to filter, and filter filters access request according to the filtering rule that this user was suitable for, and shielding does not meet the access request of rule;
9) the authentication account number is nullified: after the account number login, in the scheduled time, for example in 5 minutes, if there is not data access, can nullify account number automatically; The user can nullify account number by " rolling off the production line " link of certification page in addition;
10) routing device 40 rolls off the production line: when not having account number online in the given time, can disconnect the Internet 105 and connect.
Below to second kind of description that execution mode carried out of the present invention.
Fig. 3 is the schematic diagram of the green internet system of second kind of execution mode according to the present invention.Fig. 4 has shown the networking plan figure according to the green internet system of second kind of execution mode of the present invention.
Shown in Fig. 3,4, second kind of execution mode of the present invention compared with first kind of execution mode, the management system 10 that second execution mode uses Redirect Server 20 to replace in first execution mode, and in Redirect Server 20, realize filter function.Wherein, Redirect Server 20 comprises Profile Manager, filter.Routing device 40 comprises Account Administration device and routing module.
During by routing device 40 online, the number of the account manager in the routing device 40 authenticates the user and distinguishes limited users (for example student) and non-limited users (for example head of a family) according to account number.Carry out the network data shunting by Redirect Server 20.Non-limited users is access internet 105 directly, and promptly the Internet 105 access request of non-limited users are directly sent to routing module in the routing device 40 by the Account Administration device.When limited users conducted interviews to the Internet 105, the Account Administration device in the routing device 40 sent to Redirect Server 20 with access request.Filter in the Redirect Server 20 filters the Internet 105 access request according to filtering rule; When returning, the all-access message, directly returns to calling party without Redirect Server 20.
To be described the third execution mode of the present invention below.
Fig. 5 is the schematic diagram of the green internet system of the third execution mode according to the present invention.Fig. 6 has shown the networking plan according to the green internet system of the third execution mode of the present invention.
As shown in Figure 5 and Figure 6, the third execution mode of the present invention is compared with first kind of execution mode, the management system 10 that the 3rd execution mode uses acting server 30 to replace in first execution mode, and in acting server 30, realize filter function.Acting server 30 comprises Profile Manager and filter.Routing device 40 comprises Account Administration device and routing module.
During by routing device 40 online, the number of the account manager in the routing device 40 authenticates the user and distinguishes limited users (for example student) and non-limited users (for example head of a family) according to account number.Non-limited users is access internet 105 directly, and promptly the Internet 105 access request of non-limited users are directly sent to routing module in the routing device 40 by the Account Administration device.When limited users conducted interviews to the Internet 105, routing device 40 sent to acting server 30 with access request; Filter in the acting server 30 filters the Internet 105 access request according to filtering rule; Legal access request is sent to the Internet 105, and returned packet sends to this limited users through acting server 30.

Claims (20)

1. the internet access control system based on the user comprises routing device;
Filter is used for according to filtering rule the request of limited users access internet being filtered;
The Account Administration device is used for authenticating sending the internet access requesting users, and the request of limited users access internet is sent to filter, the request of non-limited users access internet is sent to the routing module of routing device;
It is characterized in that, also comprise Profile Manager, be used for the configuration file that comprises filtering rule is handled, and described configuration file is downloaded to filter;
In the Redirect Server, wherein said Profile Manager and described filter is arranged on described routing device is connected described Redirect Server; Wherein said filtering rule comprises the url filtering restriction, described filtering rule comprises the url filtering restriction, and described url filtering limits the URL Internet resources pointed in a certain Internet resources pointed that are meant in the url list that does not allow the user capture appointment or the url list that only allows the user capture appointment.
2. the system as claimed in claim 1, it is characterized in that: described Account Administration device and described routing device are wholely set.
3. the system as claimed in claim 1, it is characterized in that: described filter and described routing device are wholely set.
4. the system as claimed in claim 1, it is characterized in that: described Profile Manager and described routing device are wholely set.
5. the system as claimed in claim 1 is characterized in that: also comprise acting server, and in Profile Manager and described filter is arranged on described routing device is connected the described acting server.
6. the system as claimed in claim 1, it is characterized in that also comprising: update module, described update module is used for Profile Manager mutual, dynamically updates software and/or device configuration information in the described routing module.
7. the system as claimed in claim 1 is characterized in that: described filtering rule also comprises online period restriction rule and/or online duration restriction rule.
8. one kind based on user's internet access control method, comprising:
Whether routing device authenticates to determine the user limited to sending the access internet requesting users;
According to authentication result, the request of the access internet that non-limited users is sent is sent to the Internet; Perhaps, according to authentication result, the request of the access internet that does not meet default filtering rule that the shielding limited users is sent; The request of the access internet that meets described filtering rule that limited users is sent is sent to the Internet, wherein said filtering rule comprises the url filtering restriction, and described url filtering limits the URL Internet resources pointed in a certain Internet resources pointed that are meant in the url list that does not allow the user capture appointment or the url list that only allows the user capture appointment;
In the described method, routing device and Profile Manager are mutual, upgrade the configuration file that comprises filtering rule in the filter.
9. method as claimed in claim 8 is characterized in that described routing device and Profile Manager are mutual, upgrades the configuration file that comprises filtering rule in the filter and comprises:
Filter and Profile Manager are alternately to determine the current configuration file that whether has redaction; If there is the configuration file of redaction, filter then obtains new configuration file and upgrades from Profile Manager.
10. method as claimed in claim 8 or 9, it is characterized in that, also comprising after authenticating sending the access internet requesting users: if certified user is non-limited users, then Profile Manager and described non-limited users are mutual, receive the configuration operation that described non-limited users is carried out described configuration file by routing device.
11. method is characterized in that as claimed in claim 8 or 9, also comprising after authenticating sending the access internet requesting users: if do not detect data access in the given time, described routing device is nullified described user's account number automatically; Or receive and carry out the order of the cancellation account number of described user's input.
12. method is characterized in that as claimed in claim 8 or 9, also comprises: it is online not detect user account number in the given time, and the routing device disconnection is connected with the Internet.
13. method as claimed in claim 8 or 9, it is characterized in that, also comprise: detect whether have new software and/or device configuration information, if exist, after then routing device reception user carries out the order of software release upgrade, automatically obtain the described new software and/or the network site of device configuration information from Profile Manager, obtain new software and/or device configuration information from described network site, and it is saved in the described routing device.
14. method as claimed in claim 8, described filtering rule also comprise online period restriction rule and/or online duration restriction rule.
15. a routing device comprises routing module, it is characterized in that, also comprises:
Filter is used for according to the filtering rule of configuration the request of the access internet of process filter being filtered; And be used for Profile Manager alternately, and obtain new filtering rule from described Profile Manager, according to this new filtering rule the filtering rule in the described filter is upgraded;
The Account Administration device is used for authenticating sending the internet access requesting users, if the user is a limited users, then the request with its access internet sends to filter;
Wherein said filtering rule comprises the url filtering restriction, and described url filtering limits the URL Internet resources pointed in a certain Internet resources pointed that are meant in the url list that does not allow the user capture appointment or the url list that only allows the user capture appointment.
16. routing device as claimed in claim 15 is characterized in that: described Account Administration device is used for the user is authenticated, if the user is non-limited users, then the request of its access internet is sent to the routing module of routing device.
17. routing device as claimed in claim 15 is characterized in that: described filtering rule also comprises url filtering restriction and/or online period restriction rule and/or online duration restriction rule.
18. routing device as claimed in claim 15 is characterized in that: described Account Administration device also is used for not having in scheduled time after user account number lands nullifying this user account number under the situation of data access.
19. routing device as claimed in claim 15 is characterized in that: described filter is used for accepting non-limited users by configuration protocol filtering rule is configured.
20. routing device as claimed in claim 15 is characterized in that: described routing device is in order to disconnect under the situation that does not have account number in the given time and reach the standard grade and being connected of the Internet.
CNB2005100052651A 2005-02-03 2005-02-03 Green internet-accessing system based on concentrated management and dictributed control, and method therefor Expired - Fee Related CN100464518C (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CNB2005100052651A CN100464518C (en) 2005-02-03 2005-02-03 Green internet-accessing system based on concentrated management and dictributed control, and method therefor

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CNB2005100052651A CN100464518C (en) 2005-02-03 2005-02-03 Green internet-accessing system based on concentrated management and dictributed control, and method therefor

Publications (2)

Publication Number Publication Date
CN1815971A CN1815971A (en) 2006-08-09
CN100464518C true CN100464518C (en) 2009-02-25

Family

ID=36907950

Family Applications (1)

Application Number Title Priority Date Filing Date
CNB2005100052651A Expired - Fee Related CN100464518C (en) 2005-02-03 2005-02-03 Green internet-accessing system based on concentrated management and dictributed control, and method therefor

Country Status (1)

Country Link
CN (1) CN100464518C (en)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103516681A (en) * 2012-06-26 2014-01-15 华为技术有限公司 Network access control method and device thereof

Families Citing this family (21)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101345905A (en) * 2007-07-12 2009-01-14 华为技术有限公司 Method and equipment for updating controlling parameter of network side user
CN101123559B (en) * 2007-08-27 2010-06-02 中兴通讯股份有限公司 A green network access service deployment system and authorized access method for this service
CN101465764B (en) * 2008-12-30 2013-01-02 公安部第三研究所 Inspection method for internet service business place information safety management
CN101505236A (en) * 2009-03-12 2009-08-12 成都市华为赛门铁克科技有限公司 Method and apparatus for implementing green internet surfing
CN101902335A (en) * 2009-05-27 2010-12-01 北京启明星辰信息技术股份有限公司 Data filter and combination method
CN101674268A (en) * 2009-09-25 2010-03-17 中兴通讯股份有限公司 Internet access control device and method and gateway thereof
CN102088468A (en) * 2009-12-08 2011-06-08 徐克林 Method for limiting Internet surfing with mobile phone
CN101834846B (en) * 2010-03-30 2012-10-17 王兴强 Minor health website authentication system and method
CN102480437A (en) * 2010-11-23 2012-05-30 中兴通讯股份有限公司 Method and device for controlling internet surfing data of home gateway
JP5750972B2 (en) * 2011-03-25 2015-07-22 富士ゼロックス株式会社 Information processing apparatus, program, and information processing system
CN102118398B (en) * 2011-03-31 2014-04-23 北京星网锐捷网络技术有限公司 Access control method, device and system
CN102158567B (en) * 2011-04-13 2016-08-03 华为数字技术(成都)有限公司 Equipment configuration method, strategic server and network address translation apparatus
CN103825865A (en) * 2012-11-19 2014-05-28 镇江金钛软件有限公司 Multi-point login communication method, multi-point login communication device, multi-point login communication system and user terminal
CN103873488A (en) * 2014-04-08 2014-06-18 北京极科极客科技有限公司 Internet surfing control method based on router plug-in
CN104852915B (en) * 2015-04-30 2019-02-22 Oppo广东移动通信有限公司 A kind of upper network control method and equipment
CN105162780B (en) * 2015-08-21 2018-04-06 上海斐讯数据通信技术有限公司 A kind of url filtering address setting method and system
CN105915359A (en) * 2015-10-22 2016-08-31 乐视致新电子科技(天津)有限公司 Method for controlling equipment networking condition and device and system thereof
CN106612209A (en) * 2016-12-29 2017-05-03 西安东途电子科技有限公司 Method of intelligent router for configuring webpage system and intelligent router
CN107659714A (en) * 2017-09-18 2018-02-02 上海斐讯数据通信技术有限公司 A kind of surf time based reminding method and system
CN108391267A (en) * 2018-01-05 2018-08-10 绿网天下(福建)网络科技股份有限公司 Online management method and system in a kind of class based on custom route device
CN109547490B (en) * 2019-01-03 2023-04-07 深圳壹账通智能科技有限公司 Monitoring method, device and storage medium

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO1999066385A2 (en) * 1998-06-19 1999-12-23 Sun Microsystems, Inc. Scalable proxy servers with plug in filters
CN1437361A (en) * 2002-02-07 2003-08-20 华为技术有限公司 Network access control method based on network address
CN1474534A (en) * 2002-08-09 2004-02-11 联想(北京)有限公司 Network protocol layer user identifying method for packet filter
CN1475930A (en) * 2002-08-15 2004-02-18 联想(北京)有限公司 Chain path layer location information filtering based on state detection
CN1527209A (en) * 2003-03-06 2004-09-08 华为技术有限公司 Network access control method based onuser's account number

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO1999066385A2 (en) * 1998-06-19 1999-12-23 Sun Microsystems, Inc. Scalable proxy servers with plug in filters
CN1437361A (en) * 2002-02-07 2003-08-20 华为技术有限公司 Network access control method based on network address
CN1474534A (en) * 2002-08-09 2004-02-11 联想(北京)有限公司 Network protocol layer user identifying method for packet filter
CN1475930A (en) * 2002-08-15 2004-02-18 联想(北京)有限公司 Chain path layer location information filtering based on state detection
CN1527209A (en) * 2003-03-06 2004-09-08 华为技术有限公司 Network access control method based onuser's account number

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103516681A (en) * 2012-06-26 2014-01-15 华为技术有限公司 Network access control method and device thereof
CN103516681B (en) * 2012-06-26 2017-08-18 华为技术有限公司 Method for network access control and device

Also Published As

Publication number Publication date
CN1815971A (en) 2006-08-09

Similar Documents

Publication Publication Date Title
CN100464518C (en) Green internet-accessing system based on concentrated management and dictributed control, and method therefor
CN103944890B (en) Virtual interaction system based on customer end/server mode and method
CN105745869B (en) For regional network/home network security gateway
US7243369B2 (en) Uniform resource locator access management and control system and method
EP1381199B1 (en) Firewall for dynamically granting and denying network resources
CN101515868A (en) Network privilege management method, device and system
CN105721420B (en) Access right control method and Reverse Proxy
CN102957699B (en) A kind of corporate intranet access control method and system
CN102724189A (en) Method and device for controlling user URL (uniform resource locator) access
MX2011003223A (en) Service provider access.
CN105721479A (en) URL filtering method and device
CN104580211B (en) SOA architecture-based intrusive system
CN103580962A (en) System and method for providing customization network service for home gateway user
CN103023856A (en) Single sign-on method, single sign-on system, information processing method and information processing system
CN103905395A (en) WEB access control method and system based on redirection
CN102916826A (en) Method and device for controlling network access
CN101674232A (en) Server, method and system of access control
JP2016148919A (en) User attribute information management system and user attribute information management method
CN106302590A (en) Cloud platform
CN105681352B (en) A kind of wireless network access safety management-control method and system
CN102045398A (en) Portal-based distributed control method and equipment
CN101969426B (en) Distributed user authentication system and method
CN104426890B (en) Network element access method and system based on B/S frameworks
CN1592221B (en) Method for realizing network access control
CN109151085B (en) Method and device for sending domain name query request

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
CP03 Change of name, title or address
CP03 Change of name, title or address

Address after: 310052 Binjiang District Changhe Road, Zhejiang, China, No. 466, No.

Patentee after: Xinhua three Technology Co., Ltd.

Address before: 310053 Hangzhou hi tech Industrial Development Zone, Zhejiang province science and Technology Industrial Park, No. 310 and No. six road, HUAWEI, Hangzhou production base

Patentee before: Huasan Communication Technology Co., Ltd.

CF01 Termination of patent right due to non-payment of annual fee
CF01 Termination of patent right due to non-payment of annual fee

Granted publication date: 20090225

Termination date: 20200203