CN101330757B - Method for implementing business safety grade in next generation network - Google Patents

Method for implementing business safety grade in next generation network Download PDF

Info

Publication number
CN101330757B
CN101330757B CN2008101262716A CN200810126271A CN101330757B CN 101330757 B CN101330757 B CN 101330757B CN 2008101262716 A CN2008101262716 A CN 2008101262716A CN 200810126271 A CN200810126271 A CN 200810126271A CN 101330757 B CN101330757 B CN 101330757B
Authority
CN
China
Prior art keywords
safety grade
business safety
user
service
business
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Expired - Fee Related
Application number
CN2008101262716A
Other languages
Chinese (zh)
Other versions
CN101330757A (en
Inventor
滕志猛
钱勇
韦银星
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
ZTE Corp
Original Assignee
ZTE Corp
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by ZTE Corp filed Critical ZTE Corp
Priority to CN2008101262716A priority Critical patent/CN101330757B/en
Publication of CN101330757A publication Critical patent/CN101330757A/en
Application granted granted Critical
Publication of CN101330757B publication Critical patent/CN101330757B/en
Expired - Fee Related legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Landscapes

  • Data Exchanges In Wide-Area Networks (AREA)

Abstract

The invention discloses a method for realizing service safety grades in a next-generation network. When a user registers, the service safety grade is subscribed to be taken as subscription information according to the safety demand of the service, or a default service safety grade is adopted as the subscription information; when a service controlling part receives a service request, the service safety grade of the service request is obtained according to a safety strategy rule, and the user subscription information is obtained in the process of performing authentication and authorization to the user; the service controlling part conducts comparative analysis of the obtained service safety grade and the service safety grade in the subscription information, thereby determining a used service safety grade according to the safety strategy rule; when the service controlling part interacts with a resource controlling part, the determined service safety grade is carried; the resource controlling part determines a logic entity or a physical entity supporting the service safety grades; after a transmitting part, a user terminal or a user network part receives the service safety grades, user data is transmitted according to the determined service safety grade.

Description

Business safety grade implementation method in a kind of next generation network
Technical field
The present invention relates to a kind of communication technology, specifically, relate to business safety grade implementation method in a kind of next generation network.
Background technology
TDM circuit, ATM, FR etc. are provided on IP network,, are called Everythingover IP or Internet Protocol to support traditional business.Along with the development of Everything over IP, in order to satisfy the user to the demand of packet network at QoS (Quality of Service, service quality) aspect, industry has proposed NGN (Next Generation Networks, next generation network).NGN is based on group technology, adopts operation layer and transport layer is separated from each other, uses and professional control is separated from each other, transmits control and the thought that transmission is separated from each other, and can support existing various access technology; Business such as speech, data, video, Streaming Media can be provided; Can support the miscellaneous service on the existing mobile network, realize fixed network and mobile network's fusion; Can guarantee the service quality of customer service according to user's needs.
As shown in Figure 1, be NGN architectural framework figure of the prior art.The NGN architectural framework comprises network insertion control section, resource control part, translator unit, professional control section and user terminal/user network part.
The network insertion control section partly provides functions such as registration, Authentication Authorization, address assignment, parameter configuration, location management for the user terminal/user network that inserts the NGN network.For example, network attachment controlled function (Network Attachment Control Functions) in Network Attachment Subsystem (Network Attachment Subsystem), the ITU-T NGN network in TISPAN (telecommunications and the Internet converged services and high-level network protocol) the NGN network.
Resource control part is based on strategy and network resource status, admits functions such as control, resource reservation when finishing user terminal/user network part access network.For example, strategy and charging rule functions (Policy and Charging Rules Function) among TISPAN NGN resources in network accommodation control subsystem (Resource and Admission Control Subsystem), ITU-T NGN resources in network accommodating control function (Resource and Admission Control Functions), the 3GPP mobile network.Translator unit is finished the transmitting function of information, and for example TISPAN transmits in processing capacity (Transport processingfunctions), the ITU-T NGN network strategy and charge execution function (Policy and Charging Enforcement Function) among transmitting function (Transport Functions), the 3GPP mobile network.
Professional control section belongs to the part in the operation layer, finishes functions such as registration, Authentication Authorization, resource control on professional level.For example, in the TISPAN NGN network in professional control subsystem (ServiceControl Subsystems), the ITU-T NGN network among service control function (Service ControlFunctions), the 3GPP mobile network IMS territory (IP Multimedia Subsystem).
User terminal/user network partly is used for providing network access facility to the user.For example, portable terminal/wireless side among CPE among the ITU-TNGN/TISPAN NGN (Customer Premises Equipment, ustomer premises access equipment)/CPN (Customer Premises Network, the local network of users), the 3GPP mobile network.
Exist various users and various business on the NGN.Different users has different demands for security and QoS requirement, same user has different demands for security and QoS requirement for different business, even same user also may have different demands for security and QoS requirement for same business under the different application environment.When validated user terminal/subscriber network portion is used NGN, in order to guarantee service quality, resource control part will be according to service request (comprising parameters such as service priority, service bandwidth demand) and network resource status information, admit control and network resource reservation based on moving speed decision-making, in this process, do not consider the influence of safety measure at present service quality.In fact, if the user does not have the network safety grade (yet can be called media safety description, service security description or differentiation security service) that satisfies in the service request, although there are the resources such as bandwidth of service request in network, can not carry out network service.
Summary of the invention
The technical problem to be solved in the present invention provides business safety grade implementation method in a kind of next generation network, has eliminated the influence of safety measure to service quality.
In order to address the above problem, the invention provides business safety grade implementation method in a kind of next generation network, comprising:
When the user registers, as CAMEL-Subscription-Information, or adopt default business safety grade according to service security demand signing service safe class, and be kept in the user signing contract information database as CAMEL-Subscription-Information;
When professional control section receives service request, draw the business safety grade of described service request according to the security strategy rule, and the user is being carried out in the Authentication Authorization process, from described user signing contract information database, obtain user signing contract information;
Described professional control section is analyzed the business safety grade that draws and the business safety grade in the described CAMEL-Subscription-Information, determines the business safety grade that uses according to the security strategy rule; Described professional control section and resource control part carry out carrying the described business safety grade of deciding when mutual;
Described resource control part determines to support the logic entity or the physical entity of described business safety grade;
Translator unit, user terminal or user network part transmit user data according to the described business safety grade of deciding after receiving described business safety grade.
Further, determine that the business safety grade that uses is: default business safety grade in the business safety grade of service request, the business safety grade in the CAMEL-Subscription-Information or the CAMEL-Subscription-Information.
Further, if the comparative analysis result be can not the admission service request business safety grade the time, described professional control section and described user terminal or user network are partly held consultation, according to the security strategy rule, draw the final result of decision: refuse described service request or use business safety grade in the described CAMEL-Subscription-Information as the business safety grade of described service request.
Further, in described CAMEL-Subscription-Information, described business safety grade is carried out unified planning according to the security strategy rule request, the corresponding one group of security parameter of each business safety grade.
Further, described business safety grade is described with following one or more information according to the security parameter that the security strategy rule request adopts: admit control mode, the network address translation mode, the terminal security Agent Type, the data encryption type, data encryption key, the data integrity type, the data integrity key length, the authentification of user type, subscriber authentication key length, the data origin authentication type, recipient's auth type, the data origin authentication key length, recipient's authenticate key length, the non-repudiation type, the non-repudiation key length, the access control type, anti-rubbish mail type or anti-refuse messages type.
Further, described resource control part and described translator unit, user terminal or user network carry out alternately, seek and support described business safety grade and realize described user terminal or the logic entity or the physical entity of the translator unit that user network inserts;
If seek less than suitable translator unit resource, then refuse resource allocation request, perhaps described resource control part and described user terminal or user network part are consulted again to described business safety grade, to determine suitable business safety grade.
Further, if professional control section comparative analysis result is the suitable business safety grade of making a strategic decision out, perhaps described professional control section and described user terminal/user network part is through consulting again, the suitable business safety grade of making a strategic decision out, then described professional control section and resource control part carry out carrying suitable business safety grade when mutual;
Described translator unit, user terminal or user network part transmit user data according to described business safety grade after receiving described business safety grade.
Further, described resource control part and other resource control part carry out need carrying suitable business safety grade when mutual.
Further, described resource control part adopts the business safety grade of determining that QoS parameter is revised according to the security strategy rule request.
Technique effect is as follows:
In the prior art, when the user does not have the network safety grade that satisfies in the service request, even there are the resources such as bandwidth of service request in network, can not carry out network service, so among the present invention, before business being admitted control and resource allocation, the authority that whether has business safety grade in the use service request by the checking user has solved defective of the prior art, has eliminated the influence of safety measure to service quality.
Description of drawings
Fig. 1 is NGN architectural framework figure of the prior art;
Fig. 2 is the NGN architectural framework figure among the present invention;
Fig. 3 is the flow chart of business safety grade implementation method among the NGN among the present invention.
Embodiment
Below in conjunction with drawings and Examples technical scheme of the present invention is described in detail.
As shown in Figure 2, be NGN architectural framework figure among the present invention.At operation layer, existing for the NGN terminal provides IP multimedia service subsystem based on the multimedia service of SIP (Session initiation Protocol), provides the PSTN/ISDN analog service system of PSTN/ISDN artificial service for being connected to traditional fixed network terminal in the fixed network NGN terminal, realizes each subsystem of other NGN business function, and a database of preserving user signing contract information, for example HLR/HSS among the User Summary server capability (UPSF) among the TISPAN NGN, the summary of the service-user among the ITU-T NGN (SUP), the 3GPP mobile network.
When the user registers, increase the business safety grade CAMEL-Subscription-Information, promptly at different business, according to the user to the service security demand, signatory specific business safety grade is as CAMEL-Subscription-Information, CAMEL-Subscription-Information leaves in the user signing contract information database, and/or default business safety grade is left in the user signing contract information database as CAMEL-Subscription-Information.
Business safety grade can adopt: admit control mode, the NAT mode, the terminal security Agent Type, the data encryption type, data encryption key, the data integrity type, the data integrity key length, the authentification of user type, subscriber authentication key length, data origin/recipient's auth type, data origin/recipient's authenticate key length, the non-repudiation type, the non-repudiation key length, the access control type, the anti-rubbish mail type, security parameters such as anti-refuse messages type are described.Wherein, these security parameters according to the security strategy rule request, both may occur simultaneously, also a part may only occur.Above-mentioned security parameter is used for characterizing business safety grade.Network transmits safety level information, in other words, transmits these parameter informations; Carry out business safety grade, in other words, dispose automatically according to these parameters.Therefore, in the present invention, service security is to weigh or quantize or specifically characterize with these parameters, and the realization of business safety grade need be measured with these parameters.
When professional control section received service request according to existing procedure, according to the business information of being asked, professional control section may need to extract or derive the business safety grade of institute's requested service.Professional control section is carrying out in the Authentication Authorization process the user, may need to obtain user signing contract information from the user signing contract information database, may need to obtain simultaneously business safety grade that the user contracts and/or default business safety grade this moment.
Business safety grade that professional control section is contracted to business safety grade that extracts or derive institute's requested service and the user who obtains and/or default business safety grade are analyzed, and draw the result of decision.If can not extract or derive the business safety grade of institute's requested service, then can be with the business safety grade of the business safety grade in the CAMEL-Subscription-Information as institute's requested service.If the result of decision is to admit, then can hold consultation according to flow process, or the refusal service request, or the business safety grade that directly uses CAMEL-Subscription-Information to ask as business.If the result of decision is to admit, then professional control section utilizes existing procedure and resource control part to carry out may needing to carry business safety grade information when mutual.
In ITU-T NGN, on the Rs reference point between professional control section and the resource control part, the QoS resource information sub-component of transmission (QoS Resource Information Sub-Components) information unit is as shown in table 1.
Table 1
Information unit (Information Component) Describe (Description)
Medium summaries (Media Profile) Be used for the set of the information sub-component of media session, can form (rtp streaming and the RTCP stream that for example are used for voip call) by data flow and control flows.Available in case of necessity asterisk wildcard is represented sub-component.A set of information sub-components for a media session, which may be composed of data flows and control flows (e.g., RTP and RTCP flows for a VoIP call) .The sub-components in a media profile can be represented by a wildcard as needed.
Medium number (Media Number) The identifier (for example SDP " m=" serial number of line position) that is used for media session.An identifier for a media session (e.g., ordinal number of the position of the " m=" line in the SDP).
Type of service (Type of Service) The type of service of media data flow (as voice, visual telephone, or video flowing).Indication of service type for the media data flow (e.g., voice, video telephony, or streaming video).
Applied business class (optional) (Application Class ofService) (Optional) Media application service class between resource request terminal and the decision making function entity (PD-FE) (for example, the first order) have local significance, decision making function entity (PD-FE) will be based on SLA and the network strategy rule this applied business class being converted into the Network class.The application service class for the media(e.g.,first class)is of local significance between the resource request client(i.e.,the owner of SCF)and the owner of PD-FE,and is to be converted by PD-FE to Network Class of Service(e.g.,Y.1541 class for
Performance requirement) based on SLA and network policy rules.
Media priority (optional) (Media Priority) (Optional) The information (for example TDR/ETS) that is used for processed.Information for priority handling (e.g., TDR/ETS).
Media Stream is described (Media Flow Description) The set of single or group media stream sub-component in media session.A set of sub-components of individual or a group of media flows within a media session.
In TISPAN NGN, on the Gq ' reference point between professional control section and the resource control part, the media description in the resource reservation request information (Media Description) information is as shown in table 2.
Table 2
Figure S2008101262716D00071
Figure S2008101262716D00081
For to resource control part transport service safety level information, increase business safety grade information in the information that need between professional control section and resource control part, transmit.For example, need to increase business safety grade (Service Security Class or Service Security Level) in the medium summaries (Media Profile) on the Rs reference point between professional control section of ITU-T NGN and the resource control part in the QoS resource information sub-component information unit (QoS Resource Information Components), as shown in table 3.Business safety grade also can be called media safety and describe (Media SecurityDescription), service security description (Service Security Description), differentiation security service (Differentiated Security Service) or the like.
Table 3
Information unit (Information Component) Describe (Description)
The medium summary Be used for the set of the information sub-component of media session, can form (rtp streaming and the RTCP stream that for example are used for voip call) by data flow and control flows.Available in case of necessity asterisk wildcard is represented sub-component.
(Media Profile) A set of information sub-components for a media session, which may be composed of data flows and control flows (e.g., RTP and RTCP flows for a VoIP call) .The sub-components in a media profile can be represented by a wildcard as needed.
Medium number (Media Number) The identifier (for example SDP " m=" serial number of line position) that is used for media session.An identifier for a media session (e.g., ordinal number of the position of the " m=" line in the SDP).
Type of service (Type of Service) The type of service of media data flow (as voice, visual telephone, or video flowing).Indication of service type for the media data flow (e.g., voice, video telephony, or streaming video).
Applied business class (optional) (Application Class of Service) (Optional) Media application service class between resource request terminal and the decision making function entity (PD-FE) (for example, the first order) have local significance, decision making function entity (PD-FE) will be based on SLA and the network strategy rule this applied business class being converted into the Network class.The application service class for the media (e.g., first class) is of local significance between the resource request client (i.e., the owner of SCF) and the owner of PD-FE, and is to be converted by PD-FE to Network Class of Service (e.g., Y.1541 class for performance requirement) based on SLA and network policy rules.
Media priority (optional) (Media Priority) (Optional) The information (for example TDR/ETS) that is used for processed.Information for priority handling (e.g., TDR/ETS).
Media Stream is described (Media Flow Description) The set of single or group media stream sub-component in media session.A set of sub-components of individual or a group of media flows within a media session.
Media safety is described (Media Security The security parameter relevant with Media Stream described.
Description) ?
Media description (Media Description) information the inside on the Gq ' reference point between professional control section of TISPAN NGN and the resource control part in the resource reservation request information increases business safety grade (Service Security Class, or Service Security Level) information is as shown in table 4.Business safety grade also can be called media safety and describe (Media Security Description), service security description (Service Security Description), differentiation security service (Differentiated SecurityService), or the like.
Table 4
Figure S2008101262716D00101
Figure S2008101262716D00111
Resource control part may need to utilize the business safety grade information that obtains that resource allocation process is revised.Resource control part searches out transport layer logic entity or the physical entity of supporting that the business safety grade in the described user signing contract information requires by internal interface, to support the telex network demand.
Resource control part search out can the supporting business safe class translator unit logic entity or physical entity.If seek, then need with user terminal/the user network part is consulted again to business safety grade, or the refusing user's resource allocation request less than adequate resources.
Resource control part and translator unit and/or user terminal/user network carry out alternately, carry out resource policy execution and resource allocation and carry out, and need include business safety grade information when transmitting the result of decision.For example, in ITU-T NGN, on the Rw reference point between translator unit and the resource control part, in mutual medium summary (Media Profile) information, need comprise business safety grade information, as shown in table 5.Business safety grade also can be called media safety and describe (Media Security Description), service security description (Service Security Description), differentiation security service (DifferentiatedSecurity Service), or the like.
Information assembly (Information Component) Describe (Description)
? Be used for the set of the information sub-component of media session, can form by data flow and control flows (for example be used for voip call RTP and
Information) (Optional) Ingress/egress path information at the PE-FE for a media flow (e.g., VPN ID).
Media Stream is described (Media Flow Description) The set of single or group media stream sub-component in the media session.A set of sub-components of individual or a group of media flows within a media session.
Media safety is described (Media Security Description) The security parameter relevant with Media Stream described.
In TISPAN NGN, need to comprise business safety grade information in the cocommutative information of Ia reference point between translator unit and the resource control part.
When exchange message, also need business safety grade is comprised to come between the resource control part.Resource control part inside also needs business safety grade is comprised to come in when exchange message.
Translator unit and/or user terminal/user network receive include business safety grade information after, when transmitting user data, need and can carry out the business safety grade of deciding the user data that is transmitted.
As shown in Figure 3, be the flow chart of business safety grade implementation method among the NGN among the present invention, the business safety grade implementation method is specific as follows among the NGN:
Step 301: in the user signing contract information database of professional control section, business safety grade information that the preservation user contracts and/or default business safety grade information are as user signing contract information.
Step 302: resource control part comprises network safety grade in network resource status information, can obtain by dynamical fashion, also can obtain by static mode.
Business safety grade in the user-subscribed database is meant the business safety grade of user's request, and the network safety grade in the user-subscribed database that network safety grade ability herein is on the network equipment to be had is the ability of network reality.Network safety grade herein may be higher than, and also may be equal to or less than the network safety grade in the user-subscribed database, does not have specific corresponding relation.
Step 303: when professional control section received service request, professional control section may need to extract or derive the business safety grade of institute's requested service according to the security strategy rule.
Step 304: professional control section is carrying out in the Authentication Authorization process service request, if desired, then obtains the business safety grade in the user signing contract information from the user signing contract information database; Default if desired business safety grade then obtains default business safety grade.
Step 305: two kinds of business safety grades that network safety grade that professional control section obtains step 303 and step 304 obtain are analyzed and make a strategic decision, and promptly the service request that receives are carried out the Authentication Authorization process.
Three kinds of results of decision are finally arranged:
As a result one, with user terminal/user network part consultation business service safe class again;
Refusal service request as a result two;
The business safety grade that as a result three, it is suitable that professional control section is made a strategic decision out.
Step 306: the safe class that judges whether to admit described service request; If the result of decision is to admit, carry out step S307; If the result of decision is to admit, carry out step S308.
Step S307:, then need further to judge whether to refuse this service request, if refuse then process ends if the result of decision is to admit (professional control section does not extract or derive business safety grade); If do not refuse this service request, then carry out step S308.
Step S308: if the result of decision is and user terminal/user network part consultation business service safe class again, then professional control section is according to flow process, partly hold consultation with user terminal/user network, the possibility of result of consulting is the refusal service request, also may be the business safety grade that directly uses in the CAMEL-Subscription-Information; If directly use the business safety grade in the CAMEL-Subscription-Information or use default business safety grade, then carry out step S309.
Step 309: professional control section and resource control part carry out carrying suitable business safety grade when mutual.Business safety grade may also may be to extract or derive business safety grade from business safety grade in the CAMEL-Subscription-Information or default business safety grade (from step S308).
Step 310: resource control part may need to utilize the business safety grade that obtains that QoS parameter is revised according to the security strategy rule request.
Step 311: resource control part and translator unit carry out alternately, and searching can the supporting business safe class also can realize translator unit functional entity or the physical entity that user terminal/user network inserts, if can search out, then carry out step 312.
If resource control part is sought less than suitable translator unit or user network resource, then resource control part need be consulted business safety grade again with user terminal/user network part, the suitable business safety grade of perhaps making a strategic decision out, and restart resource allocation process; Perhaps refuse resource allocation request.
Step 312: resource control part is partly carrying out need comprising business safety grade when mutual with translator unit, user terminal/user network.Translator unit, user terminal/user network part need and can carry out the business safety grade of having determined to the user data that is transmitted when transmitting user data.

Claims (9)

1. business safety grade implementation method in the next generation network is characterized in that, comprising:
When the user registers, as CAMEL-Subscription-Information, or adopt default business safety grade according to service security demand signing service safe class, and be kept in the user signing contract information database as CAMEL-Subscription-Information;
When professional control section receives service request, draw the business safety grade of described service request according to the security strategy rule, and the user is being carried out in the Authentication Authorization process, from described user signing contract information database, obtain user signing contract information;
Described professional control section is analyzed the business safety grade that draws and the business safety grade in the described CAMEL-Subscription-Information, determines the business safety grade that uses according to the security strategy rule; Described professional control section and resource control part carry out carrying the described business safety grade of deciding when mutual;
Described resource control part determines to support the logic entity or the physical entity of the described business safety grade of deciding;
Translator unit, user terminal or user network part transmit user data according to the described business safety grade of deciding after receiving the described business safety grade of deciding.
2. business safety grade implementation method in the next generation network as claimed in claim 1, it is characterized in that, determine that the business safety grade that uses is: default business safety grade in the business safety grade of service request, the business safety grade in the CAMEL-Subscription-Information or the CAMEL-Subscription-Information.
3. business safety grade implementation method in the next generation network as claimed in claim 1, it is characterized in that, if the comparative analysis result be can not the admission service request business safety grade the time, described professional control section and described user terminal or user network are partly held consultation, according to the security strategy rule, draw the final result of decision: refuse described service request or use business safety grade in the described CAMEL-Subscription-Information as the business safety grade of described service request.
4. business safety grade implementation method in the next generation network as claimed in claim 1, it is characterized in that, in described CAMEL-Subscription-Information, described business safety grade is carried out unified planning according to the security strategy rule request, the corresponding one group of security parameter of each business safety grade.
5. business safety grade implementation method in the next generation network as claimed in claim 1, it is characterized in that described business safety grade is described with following one or more information according to the security parameter that the security strategy rule request adopts: admit control mode, the network address translation mode, the terminal security Agent Type, the data encryption type, data encryption key, the data integrity type, the data integrity key length, the authentification of user type, subscriber authentication key length, the data origin authentication type, recipient's auth type, the data origin authentication key length, recipient's authenticate key length, the non-repudiation type, the non-repudiation key length, the access control type, anti-rubbish mail type or anti-refuse messages type.
6. business safety grade implementation method in the next generation network as claimed in claim 1 is characterized in that,
Described resource control part and described translator unit, user terminal or user network carry out alternately, seek and support the described business safety grade of deciding and realize described user terminal or the logic entity or the physical entity of the translator unit that user network inserts;
If seek less than suitable translator unit resource, then refuse resource allocation request, perhaps described resource control part and described user terminal or user network part are consulted again to described business safety grade, to determine suitable business safety grade.
7. business safety grade implementation method in the next generation network as claimed in claim 1 is characterized in that,
If professional control section comparative analysis result is the suitable business safety grade of making a strategic decision out, perhaps described professional control section and described user terminal/user network part is through consulting again, the suitable business safety grade of making a strategic decision out, then described professional control section and resource control part carry out carrying suitable business safety grade when mutual;
Described translator unit, user terminal or user network part transmit user data according to the described business safety grade of deciding after receiving the described business safety grade of deciding.
8. business safety grade implementation method in the next generation network as claimed in claim 1 is characterized in that, described resource control part and other resource control part carry out need carrying the business safety grade of deciding when mutual.
9. business safety grade implementation method in the next generation network as claimed in claim 1 is characterized in that, described resource control part adopts the business safety grade of determining that QoS parameter is revised according to the security strategy rule request.
CN2008101262716A 2008-07-28 2008-07-28 Method for implementing business safety grade in next generation network Expired - Fee Related CN101330757B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN2008101262716A CN101330757B (en) 2008-07-28 2008-07-28 Method for implementing business safety grade in next generation network

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN2008101262716A CN101330757B (en) 2008-07-28 2008-07-28 Method for implementing business safety grade in next generation network

Publications (2)

Publication Number Publication Date
CN101330757A CN101330757A (en) 2008-12-24
CN101330757B true CN101330757B (en) 2011-07-13

Family

ID=40206290

Family Applications (1)

Application Number Title Priority Date Filing Date
CN2008101262716A Expired - Fee Related CN101330757B (en) 2008-07-28 2008-07-28 Method for implementing business safety grade in next generation network

Country Status (1)

Country Link
CN (1) CN101330757B (en)

Families Citing this family (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101729531B (en) * 2009-03-16 2016-04-13 中兴通讯股份有限公司 Network security policy distribution method, Apparatus and system
CN102378358B (en) * 2010-08-12 2015-09-16 中兴通讯股份有限公司 A kind ofly realize multi-link framework and method
CN102368760B (en) * 2010-12-31 2014-10-22 中国人民解放军信息工程大学 Data secure transmission method among multilevel information systems
CN105451207B (en) * 2014-07-25 2020-10-30 阿尔卡特朗讯 PCC architecture-based service function chain control method and device
CN113824744B (en) * 2021-11-24 2022-04-26 深圳市永达电子信息股份有限公司 Situation awareness visualization method and system for business view and storage medium

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6438285B1 (en) * 2000-05-31 2002-08-20 International Business Machines Corporation Facility for intializing a fiber optic data link in one mode of a plurality of modes
CN1791008A (en) * 2004-12-17 2006-06-21 北邮英科(北京)信息技术研究所有限公司 Isolation method and isolation switch apparatus between multiple different safety class networks
CN101001144A (en) * 2006-01-13 2007-07-18 华为技术有限公司 Method for implementing authentication by entity authentication centre

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6438285B1 (en) * 2000-05-31 2002-08-20 International Business Machines Corporation Facility for intializing a fiber optic data link in one mode of a plurality of modes
CN1791008A (en) * 2004-12-17 2006-06-21 北邮英科(北京)信息技术研究所有限公司 Isolation method and isolation switch apparatus between multiple different safety class networks
CN101001144A (en) * 2006-01-13 2007-07-18 华为技术有限公司 Method for implementing authentication by entity authentication centre

Also Published As

Publication number Publication date
CN101330757A (en) 2008-12-24

Similar Documents

Publication Publication Date Title
US8189596B2 (en) Method for the mapping of packet flows to bearers in a communication system
TWI423634B (en) Method for the transfer of information during hand-overs in a communication system
CN102138313B (en) In-band DPI media reservation modifications to RFC 3313
WO2009146621A1 (en) Data processing method, broadband network gateway, policy controller and access device
Psimogiannos et al. An IMS-based network architecture for WiMAX-UMTS and WiMAX-WLAN interworking
CN109120528A (en) A kind of network communication method and relevant device
CN102215155B (en) The resource acceptance control method of a kind of home network and system
EP2285050B1 (en) Method and system for resource admission control
CN101330757B (en) Method for implementing business safety grade in next generation network
US20090154397A1 (en) System and method for providing quality of service enablers for third party applications
EP2109275A1 (en) Method and device of controlling the number of sessions of user
CN101330469B (en) Method for implementing collection of safety parameter of resource control part in the next generation network
CN101489266B (en) IMS user stage controlling method and system based on signature data
Sambath et al. High quality of service video conferencing over ims
CN101330462B (en) Method for implementing network safety gradation in the next generation network
CN101237448B (en) Selection method for policy decision function entity in resource receiving control system
de Gouveia et al. A framework to improve QoS and mobility management for multimedia applications in the IMS
KR101064758B1 (en) Method and Apparatus for providing VoIP service guaranteeing Qos
Tompros et al. A strategy for harmonised QoS manipulation in heterogeneous IMS networks
Wang et al. Architecture of IMS over WiMAX PCC and the QoS mechanism
Hemami et al. Analysis and optimization of resource control schemes in Next Generation Networks
CN102026302A (en) Pull-mode resource admission control method and system at wholesale scene
Kim et al. The resource management method for providing VoIP service with guaranteed QoS in BcN
Zhuang End to End Quality of Service in UMTS Systems
Paliwal Convergence: the next big step

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
CF01 Termination of patent right due to non-payment of annual fee
CF01 Termination of patent right due to non-payment of annual fee

Granted publication date: 20110713

Termination date: 20200728