CN106211217A - A kind of WIFI network method for auditing safely, platform - Google Patents

A kind of WIFI network method for auditing safely, platform Download PDF

Info

Publication number
CN106211217A
CN106211217A CN201510218513.4A CN201510218513A CN106211217A CN 106211217 A CN106211217 A CN 106211217A CN 201510218513 A CN201510218513 A CN 201510218513A CN 106211217 A CN106211217 A CN 106211217A
Authority
CN
China
Prior art keywords
user terminal
gateway device
security audit
mac address
public security
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201510218513.4A
Other languages
Chinese (zh)
Inventor
王庆顺
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Shenzhen Business Opportunity Unlimited Network Technology Ltd
Original Assignee
Shenzhen Business Opportunity Unlimited Network Technology Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Shenzhen Business Opportunity Unlimited Network Technology Ltd filed Critical Shenzhen Business Opportunity Unlimited Network Technology Ltd
Priority to CN201510218513.4A priority Critical patent/CN106211217A/en
Publication of CN106211217A publication Critical patent/CN106211217A/en
Pending legal-status Critical Current

Links

Landscapes

  • Management, Administration, Business Operations System, And Electronic Commerce (AREA)

Abstract

The present invention is applicable to mobile internet technical field, provide a kind of WIFI network method for auditing safely, platform, gateway device is connected with businessman modem in a series arrangement, and described method includes: public security audit server collection accesses the MAC Address of the user terminal of WIFI network;Gateway device gathers the internet behavior information of user, and forwards described internet behavior information to public security audit server;Described internet behavior information is analyzed by public security audit server, when abnormal internet behavior being detected, corresponding relation according to MAC Address with IP address obtains the MAC Address of the user terminal producing described abnormal internet behavior, locks the user terminal corresponding with described MAC Address.The network words and deeds of the equipment of all Internet users, Internet user can be entered record, follow the tracks of, so can accomplish problematic can find source by the present invention, real for businessman's releasing trouble and worry.

Description

A kind of WIFI network method for auditing safely, platform
Technical field
The invention belongs to mobile internet technical field, particularly relate to a kind of WIFI network security audit side Method, platform.
Background technology
Along with the arrival in mobile Internet epoch, the huge market demand expedites the emergence of Wi-Fi hotspot construction upsurge, cuts Only in December, 2014, China mobile netizen's rule reaches 5.57 hundred million, and increasing netizen is more likely to Select to be surfed the Net by WiFi, and the businessman of shrewdness finds by providing free Wi-Fi hotspot service to attract Potential customer resources, collect customer information, service of goods displaying, advertising campaign publicity, expand businessman Popularity, the publicity cost of reduction, the epoch-making product of Wireless Advertisement router-is born therewith.
Existing Wireless Advertisement router can by Cloud Server control advertisement, collect customer information, I.e. provide the user free service on net, provide advertisement, marketing service for businessman again, support simultaneously WiFi network security audit is supervised, and is provided non-profit-making place by WiFi network security audit platform WiFi internet behavior is supervised, and can monitor all cellphone subscribers and computer user in real time by WiFi All behaviors of net.
But, in realizing process of the present invention, inventor finds that the WiFi network safety that prior art provides is examined At least there are the following problems for meter platform:
Carry out the traditional WiFi network security audit platform monitored in bypass mode, merchant device every several days just under Line, all says it is that equipment crashes, cannot supervise at all, bring many to the scouting of public security department, case cracking Trouble.
Summary of the invention
In view of this, the embodiment of the present invention provides a kind of WIFI network method for auditing safely, platform, to solve The WiFi network security audit platform that certainly prior art provides, merchant device just rolled off the production line every several days, cannot at all Supervision, brings many troublesome problems to the scouting of public security department, case cracking.
First aspect, it is provided that a kind of WIFI network method for auditing safely, gateway device in a series arrangement with business Family's modem connects, and described method includes:
Public security audit server collection accesses the MAC Address of the user terminal of WIFI network;
Gateway device gathers the internet behavior information of user, and forwards described internet behavior information to audit to public security Server;
Described internet behavior information is analyzed by public security audit server, when abnormal internet behavior being detected Time, the user producing described abnormal internet behavior is obtained according to the corresponding relation of MAC Address with IP address The MAC Address of terminal, locks the user terminal corresponding with described MAC Address.
Further, described user terminal includes cell phone user terminal and computer user terminal;
When described user terminal is cell phone user terminal, described public security audit server also gathers access WIFI The phone number of the user terminal of network.
Further, the internet behavior information of described gateway device collection include dial account, dialing time, Browse web sites, search engine and keyword, the upper and lower machine time, mail, chat, microblogging, FTP, game, Forum.
Further, the MAC of the user terminal of WIFI network is accessed in described public security audit server collection Before address, also include:
Gateway device receives the initialization requests that user terminal sends;
User terminal is authenticated in corresponding portal website by gateway device according to described initialization requests;
After certification success, user terminal accesses gateway device according to the authority got;
Gateway device sends described authority to cloud server;
Cloud server confirms the effectiveness of described voucher;
If it is valid, cloud server has accessed WIFI network by gateway device notice user terminal.
Further, the MAC of the user terminal of WIFI network is accessed in described public security audit server collection Before address, described method also includes:
Public security audit server monitors online, off-line, the transmission data mode of gateway device in real time, finds to set After standby gateway breaks down and alarm.
Second aspect, it is provided that a kind of WIFI network security audit platform, described security audit platform includes: extremely A few user terminal, gateway device, businessman's modem, cloud server and public security audit server, Gateway device is connected with businessman modem in a series arrangement, gateway device also with public security audit server and Cloud server connects respectively, utilizes gateway device and cloud server to provide the user WIFI service on net, Wherein, public security audit server includes MAC Address collecting unit and MAC Address lock cell, gateway device Including behavioural information collecting unit;
Described MAC Address collecting unit, for gathering the MAC Address of the user terminal accessing WIFI network;
Described behavioural information collecting unit, for gathering the internet behavior information of user, and forwards described online Behavioural information is to public security audit server;
MAC Address lock cell, for described internet behavior information is analyzed, abnormal when detecting During internet behavior, obtain according to the corresponding relation of MAC Address with IP address and produce described abnormal online row For the MAC Address of user terminal, lock the user terminal corresponding with described MAC Address.
Further, user terminal includes cell phone user terminal and computer user terminal;
When user terminal is cell phone user terminal, public security audit server also includes phone number collecting unit;
Described phone number collecting unit, for gathering the phone number of the user terminal accessing WIFI network.
Further, the internet behavior information of gateway device collection includes dialing account, dialing time, browses Website, search engine and keyword, upper and lower machine time, mail, chat, microblogging, FTP, play, discuss Altar.
Further, gateway device also includes: request reception unit, authentication ' unit and authority transmitting element;
User terminal includes gateway access unit;
Cloud server includes: voucher confirmation unit and notification unit;
Request reception unit, for receiving the initialization requests that user terminal sends;
Described authentication ' unit, for entering user terminal in corresponding portal website according to described initialization requests Row certification;
Described gateway access unit, after certification success, accesses gateway device according to the authority got;
Described authority transmitting element, is used for sending described authority to cloud server;
Described voucher confirmation unit, for confirming the effectiveness of described voucher;
By gateway device, described notification unit, for if it is confirmed that described voucher is effective, then notifies that user is eventually End has accessed WIFI network.
Further, described public security audit server also includes gateway monitoring means;
Described gateway monitoring means, for online, off-line, the transmission data mode of monitoring gateway device in real time,
After discovering device gateway breaks down and alarm.
In the embodiment of the present invention, gateway device is connected, to businessman with businessman modem in a series arrangement The internet behavior of the user of user terminal is monitored, can to the equipment of all Internet users (such as: eventually End MAC, phone number etc.), the network words and deeds of Internet user enter record, follow the tracks of, so can accomplish have Problem can find source, really releases trouble and worry for businessman.Avoid the WIFI network that prior art provides Method for auditing safely, merchant device just rolled off the production line every several days, cannot supervise at all, to the scouting of public security department, Case cracking brings many troublesome problems.
Accompanying drawing explanation
Fig. 1 is the flowchart of WIFI network method for auditing safely embodiment of the present invention;
Fig. 2 is the structured flowchart of WIFI network security audit platform embodiment of the present invention.
Detailed description of the invention
In order to make the purpose of the present invention, technical scheme and advantage clearer, below in conjunction with accompanying drawing and reality Execute example, the present invention is further elaborated.Only should be appreciated that specific embodiment described herein Only in order to explain the present invention, it is not intended to limit the present invention.
In embodiments of the present invention, gateway device is connected, to businessman with businessman modem in a series arrangement The internet behavior of user of user terminal monitor, can to the equipment of all Internet users (such as: Terminal MAC, phone number etc.), the network words and deeds of Internet user enter record, follow the tracks of, so can accomplish Problematic can find source, real for businessman's releasing trouble and worry.
Below in conjunction with specific embodiment, the realization of the present invention is described in detail:
Embodiment one
What Fig. 1 showed the WIFI network method for auditing safely that the embodiment of the present invention one provides realizes flow process, This realizes flow process and can apply in WIFI network security audit platform, and this security audit platform includes at least One user terminal, gateway device, businessman's modem, cloud server and public security audit server, its In, gateway device is connected with businessman modem in a series arrangement, gateway device also with public security auditing service Device and cloud server connect respectively, it is possible to use gateway device and end server provide the user on WIFI Net service, details are as follows for described flow process:
In step S101, public security audit server collection accesses the MAC ground of the user terminal of WIFI network Location.
In embodiments of the present invention, user terminal is successfully accessed WIFI network, Yong Huke by gateway device After normal online, at this moment public security audit server can collect the user terminal of access WIFI network MAC Address.
Wherein, user terminal can include cell phone user terminal and computer user terminal, when user terminal is hands During machine user terminal, public security audit server can also gather the mobile phone of the user terminal accessing WIFI network Number.
Wherein, before the MAC Address of the user terminal of public security audit server collection access WIFI network, User terminal generally also can be web authentication based on realizing Portal certification on OpenWRT, not recognize When card user surfs the Net, gateway device forces user to sign in particular station, and user can be therein with free access Service.When user needs to use the out of Memory in the Internet, it is necessary to be authenticated in portal website, only Having certification to pass through the rear Internet resources that just can use, audit internet behavior simultaneously, concrete, user is eventually Need before terminating WIFI network perform following steps:
Step 1, gateway device receive the initialization requests that user terminal sends.
Wherein, user terminal can send initialization requests to gateway device, such as visits Ask www.***.com.
User terminal is carried out in corresponding portal website by step 2, gateway device according to described initialization requests Certification.
The initialization requests that gateway device is received by the firewall rule of gateway device is redirected to local gateway Port on, this port be WiFidog monitor port.Wfidog provides a HTTP redirection to return Multiple, it is redirected to the web authentication page, the Querystring of the Url of redirection contains Gateway The FQDN of ID, Gateway and other information.
User terminal sends certification request to cloud server, and this certification request is as follows:
http://portal_server:port/login_script?
Gw_id=[GatewayID, default: " default "]
Gw_address=[GatewayAddress, internal IP of router]
Gw_port=[GatewayPort, port that WiFidog Gateway is listening on]
Url=[user requested url];
Gateway device returns (can be self-defining) splash (also referred to as " logging in ") page.
User terminal provides its authority information, such as phone number and short message verification code, it is also possible to be wechat The multiple authentication modes such as certification, QQ certification or microblogging certification.
After step 3, certification success, user terminal accesses gateway device according to the authority got.
If success identity, user terminal will be redirected on the web page of oneself of gateway device, And with a certification authority (a disposable token), content is as follows:
http://GatewayIP:GatewayPort/WiFidog/auth?Token=[auth token]
The subscriber equipment authority got accesses gateway device.
Step 4, gateway device send described authority to cloud server.
The authority that gateway device transmission subscriber equipment gets, to cloud server, is confirmed by cloud server The effectiveness of token.
Step 5, cloud server confirm the effectiveness of described voucher.
Step 6 is if it is valid, cloud server has accessed WIFI by gateway device notice user terminal Network.
Gateway device sends and redirects to user terminal, successfully points out the page to obtain on cloud server, It is redirected to this position of http://portal_server:port/portal_script.Cloud server passes through gateway Equipment notice user terminal has been successfully accessed WIFI network, and user can surf the Net.
In step s 102, gateway device gathers the internet behavior information of user, and forwards described internet behavior Information is to public security audit server.
In embodiments of the present invention, gateway device can monitor all cellphone subscribers in real time and computer user passes through All behaviors of WIFI online, the internet behavior information of collection includes dialing account, dialing time, browses net Stand, search engine and keyword, upper and lower machine time, mail, chat, microblogging, FTP, game, forum Deng.
Wherein, user terminal uses entirely autonomous privately owned tunnel protocol, ensures by the way of TCP encapsulates Wlan network performance, improves forward efficiency.Meanwhile, proprietary protocol support, can be with effective guarantee user's industry The safety of business data.
Tunnel protocol uses and controls tunnel and the distinct pattern of data tunnel, controls tunnel and uses TCP to lead to The mode of letter realizes, and data tunnel is completely combined high-performance and forwards platform, and independent design tunnel header can be with High efficiency completes tunnel encapsulation and conciliates encapsulation operation.
Private cunicular advantage:
1), control tunnel and use the mode individual packages of TCP communication.To a certain degree avoid other agreements by Increase what extra validation of information mechanism caused in the control information dropout using UDP transmission message to cause Performance consumption;
2), data tunnel use independent design head, additionally contain User Part authorization message, save Part solves user's message pathfinding forward efficiency behind tunnel;
3), the user service data potential safety hazard owing to using open source protocol to cause effectively is alleviated in privately owned tunnel.
Using during user terminal reported data and concentrate retransmission technique, the data acquisition of user terminal is assisted with privately owned tunnel View encapsulation, adds the safety of customer service.Concentrate retransmission technique decrease access (Access Point, AP) complexity of side configuration, it is simple to AP concentrates deployment on a large scale.Simultaneously because customer traffic unification is from net Close and send to auditing system, the transparent network structure penetrated between AP and gateway, it is simple to the collection of subscriber policy Middle management and traffic statistics.
The management frame of user, such as 802.11 management, controls message and 802.1x protocol massages etc., directly leads to Cross gateway device to be transmitted to public security audit server in real time and focus on.
The Frame of user, including 802.11 data with from 802.3 wired data messages, sets at gateway Carry out in Bei resolving, encapsulation etc. is forwarded to public security audit server after processing in real time, it is achieved at the high speed of data Reason and depth analysis.
Preferably, the internet behavior information of the user collected can be screened by gateway device, has uploaded , effective internet behavior information is to public security audit server.
Wherein, gateway device can be radio network gateway, can also be cable gateway, by wired or unlimited Mode establish a connection with user terminal.
Preferably, the internet behavior information cryptographically real-time synchronization of user can be uploaded to by gateway device Public security audit server, more has the supervision utilizing public security bureau's door.
In step s 103, described internet behavior information is analyzed by public security audit server, when detecting During abnormal internet behavior, obtain generation according to MAC Address and the corresponding relation of IP address described abnormal upper The MAC Address of the user terminal of net behavior, locks the user terminal corresponding with described MAC Address.
In embodiments of the present invention, the internet behavior information that gateway device can be uploaded by public security audit server It is analyzed, not only can real-time monitor the internet behavior of some exception from which IP address, Er Qiezhi Connecing locking is which mobile phone (or computer) sends or downloads, furthermore it is also possible to join with Surveillance center in real time Net, warn in time.Decrease conventional a large amount of human and material resources to investigate one by one;The more important thing is, real Time obtain " dangerous information " early warning, direct lock onto target, quickly reflect, all grasped in bud.
Preferably, public security audit server monitors online, off-line, the transmission data mode of gateway device in real time, After discovering device gateway breaks down and alarm.
It addition, during the execution of whole WIFI network method for auditing safely, public security audit server is not required to Gateway device will be sent any control instruction, all are all independently reported by gateway device, alleviate public affairs The operating pressure of peace audit server.
The present embodiment, gateway device is connected with businessman modem in a series arrangement, to the user of businessman eventually The internet behavior of user of end is monitored, can to the equipment of all Internet users (such as: terminal MAC, Phone number etc.), the network words and deeds of Internet user enter record, follow the tracks of, so can accomplish problematic can find Source, really releases trouble and worry for businessman.Avoid the WIFI network security audit that prior art provides Method, merchant device just rolled off the production line every several days, cannot supervise at all, to the scouting of public security department, case cracking Bring many troublesome problems.
Should be understood that in embodiments of the present invention, the size of the sequence number of above-mentioned each process is not meant to perform suitable The priority of sequence, the execution sequence of each process should determine with its function and internal logic, and should be unreal to the present invention The implementation process executing example constitutes any restriction.
One of ordinary skill in the art will appreciate that all or part of step realizing in the various embodiments described above method The program that can be by completes to instruct relevant hardware, and corresponding program can be stored in a computer can Reading in storage medium, described storage medium, such as ROM/RAM, disk or CD etc..
Embodiment two
Fig. 2 shows the concrete structure frame of the WIFI network security audit platform that the embodiment of the present invention two provides Figure, for convenience of description, illustrate only the part relevant to the embodiment of the present invention.This WIFI network safety Audit platform 2 includes: at least one user terminal 21, gateway device 22, businessman's modem 23, cloud End server 24 and public security audit server 25, gateway device 22 in a series arrangement with businessman's modem 23 connect, and gateway device 22 is also connected respectively with public security audit server 25 and cloud server 24, profit Providing the user WIFI service on net with gateway device 22 and cloud server 24, wherein, public security is audited Server 25 includes MAC Address collecting unit and MAC Address lock cell, and gateway device 22 includes row For information acquisition unit;
Described MAC Address collecting unit, for gathering the MAC Address of the user terminal accessing WIFI network;
Described behavioural information collecting unit, for gathering the internet behavior information of user, and forwards described online Behavioural information is to public security audit server;
MAC Address lock cell, for described internet behavior information is analyzed, abnormal when detecting During internet behavior, obtain according to the corresponding relation of MAC Address with IP address and produce described abnormal online row For the MAC Address of user terminal, lock the user terminal corresponding with described MAC Address.
Further, user terminal 21 includes cell phone user terminal and computer user terminal;
When user terminal 21 is cell phone user terminal, public security audit server 25 also includes that phone number is adopted Collection unit;
Described phone number collecting unit, for gathering the cell-phone number of the user terminal 21 accessing WIFI network Code.
Further, the internet behavior information that gateway device 22 gathers includes dialling account, dialing time, clear Look at website, search engine and keyword, the upper and lower machine time, mail, chat, microblogging, FTP, game, Forum.
Further, gateway device 22 also includes: request reception unit, authentication ' unit and authority transmitting element;
User terminal 21 includes gateway access unit;
Cloud server 24 includes: voucher confirmation unit and notification unit;
Request reception unit, for receiving the initialization requests that user terminal 21 sends;
Described authentication ' unit, for according to described initialization requests in corresponding portal website to user terminal 21 It is authenticated;
Described gateway access unit, after certification success, accesses gateway device 22 according to the authority got;
Described authority transmitting element, is used for sending described authority to cloud server 24;
Described voucher confirmation unit, for confirming the effectiveness of described voucher;
Described notification unit, for if it is confirmed that described voucher is effective, then notifying user by gateway device 22 Terminal 21 has accessed WIFI network.
Further, described public security audit server 25 also includes gateway monitoring means;
Described gateway monitoring means, for online, off-line, the transmission data shape of monitoring gateway device 22 in real time State, after discovering device gateway 22 breaks down and alarm.
The WIFI network security audit platform that the embodiment of the present invention provides can apply the method in aforementioned correspondence In embodiment one, details see the description of above-described embodiment one, do not repeat them here.
Those of ordinary skill in the art are it is to be appreciated that combine respectively showing of the embodiments described herein description The unit of example and algorithm steps, it is possible to come with the combination of electronic hardware or computer software and electronic hardware Realize.These functions perform with hardware or software mode actually, depend on the application-specific of technical scheme And design constraint.Each specifically should being used for can be used different methods to realize by professional and technical personnel Described function, but this realization is it is not considered that beyond the scope of this invention.
Those skilled in the art is it can be understood that arrive, for convenience and simplicity of description, and foregoing description The specific works process of system, device and unit, be referred to the corresponding process in preceding method embodiment, Do not repeat them here.
In several embodiments provided herein, it should be understood that disclosed system, device and side Method, can realize by another way.Such as, device embodiment described above is only schematically , such as, the division of described unit, be only a kind of logic function and divide, actual can have when realizing another Outer dividing mode, the most multiple unit or assembly can in conjunction with or be desirably integrated into another system, or Some features can be ignored, or does not performs.Another point, shown or discussed coupling each other or straight Connect coupling or communication connection can be the INDIRECT COUPLING by some interfaces, device or unit or communication connection, Can be electrical, machinery or other form.
The described unit illustrated as separating component can be or may not be physically separate, as The parts that unit shows can be or may not be physical location, i.e. may be located at a place, or Can also be distributed on multiple NE.Can select therein some or all of according to the actual needs Unit realizes the purpose of the present embodiment scheme.
It addition, each functional unit in each embodiment of the present invention can be integrated in a processing unit, Can also be that unit is individually physically present, it is also possible to two or more unit are integrated in a unit In.
If described function realizes and as independent production marketing or use using the form of SFU software functional unit Time, can be stored in a computer read/write memory medium.Based on such understanding, the skill of the present invention Part that prior art is contributed by art scheme the most in other words or the part of this technical scheme can be with The form of software product embodies, and this computer software product is stored in a storage medium, if including Dry instruction is with so that a computer equipment (can be personal computer, server, or the network equipment Deng) perform all or part of step of method described in each embodiment of the present invention.And aforesaid storage medium bag Include: USB flash disk, portable hard drive, read only memory (ROM, Read-Only Memory), random access memory are deposited Reservoir (RAM, Random Access Memory), magnetic disc or CD etc. are various can store program generation The medium of code.
The above, the only detailed description of the invention of the present invention, but protection scope of the present invention is not limited to This, any those familiar with the art, in the technical scope that the invention discloses, can readily occur in Change or replacement, all should contain within protection scope of the present invention.Therefore, protection scope of the present invention should Described it is as the criterion with scope of the claims.

Claims (10)

1. a WIFI network method for auditing safely, it is characterised in that gateway device in a series arrangement with business Family's modem connects, and described method includes:
Public security audit server collection accesses the MAC Address of the user terminal of WIFI network;
Gateway device gathers the internet behavior information of user, and forwards described internet behavior information to audit to public security Server;
Described internet behavior information is analyzed by public security audit server, when abnormal internet behavior being detected Time, the user producing described abnormal internet behavior is obtained according to the corresponding relation of MAC Address with IP address The MAC Address of terminal, locks the user terminal corresponding with described MAC Address.
2. the method for claim 1, it is characterised in that described user terminal includes that cellphone subscriber is eventually End and computer user terminal;
When described user terminal is cell phone user terminal, described public security audit server also gathers access WIFI The phone number of the user terminal of network.
3. the method for claim 1, it is characterised in that the internet behavior that described gateway device gathers Information include dialling account, dialing time, browse web sites, search engine and keyword, the upper and lower machine time, Mail, chat, microblogging, FTP, game, forum.
4. the method as described in any one of claims 1 to 3, it is characterised in that at described public security audit clothes Before the MAC Address of the user terminal that business device collection accesses WIFI network, also include:
Gateway device receives the initialization requests that user terminal sends;
User terminal is authenticated in corresponding portal website by gateway device according to described initialization requests;
After certification success, user terminal accesses gateway device according to the authority got;
Gateway device sends described authority to cloud server;
Cloud server confirms the effectiveness of described voucher;
If it is valid, cloud server has accessed WIFI network by gateway device notice user terminal.
5. method as described in claim 4, it is characterised in that gather at described public security audit server Before the MAC Address of the user terminal accessing WIFI network, described method also includes:
Public security audit server monitors online, off-line, the transmission data mode of gateway device in real time, finds to set After standby gateway breaks down and alarm.
6. a WIFI network security audit platform, it is characterised in that described security audit platform includes: At least one user terminal, gateway device, businessman's modem, cloud server and public security audit server, Gateway device is connected with businessman modem in a series arrangement, gateway device also with public security audit server and Cloud server connects respectively, utilizes gateway device and cloud server to provide the user WIFI service on net, Wherein, public security audit server includes MAC Address collecting unit and MAC Address lock cell, gateway device Including behavioural information collecting unit;
Described MAC Address collecting unit, for gathering the MAC Address of the user terminal accessing WIFI network;
Described behavioural information collecting unit, for gathering the internet behavior information of user, and forwards described online Behavioural information is to public security audit server;
MAC Address lock cell, for described internet behavior information is analyzed, abnormal when detecting During internet behavior, obtain according to the corresponding relation of MAC Address with IP address and produce described abnormal online row For the MAC Address of user terminal, lock the user terminal corresponding with described MAC Address.
7. security audit platform as claimed in claim 6, it is characterised in that user terminal includes that mobile phone is used Family terminal and computer user terminal;
When user terminal is cell phone user terminal, public security audit server also includes phone number collecting unit;
Described phone number collecting unit, for gathering the phone number of the user terminal accessing WIFI network.
8. security audit platform as claimed in claim 6, it is characterised in that the online that gateway device gathers Behavioural information include dialling account, dialing time, browse web sites, search engine and when keyword, upper and lower machine Between, mail, chat, microblogging, FTP, game, forum.
9. the security audit platform as described in any one of claim 6 to 8, it is characterised in that gateway device Also include: request reception unit, authentication ' unit and authority transmitting element;
User terminal includes gateway access unit;
Cloud server includes: voucher confirmation unit and notification unit;
Request reception unit, for receiving the initialization requests that user terminal sends;
Described authentication ' unit, for entering user terminal in corresponding portal website according to described initialization requests Row certification;
Described gateway access unit, after certification success, accesses gateway device according to the authority got;
Described authority transmitting element, is used for sending described authority to cloud server;
Described voucher confirmation unit, for confirming the effectiveness of described voucher;
By gateway device, described notification unit, for if it is confirmed that described voucher is effective, then notifies that user is eventually End has accessed WIFI network.
10. security audit platform as described in claim 9, it is characterised in that described public security audit clothes Business device also includes gateway monitoring means;
Described gateway monitoring means, for online, off-line, the transmission data mode of monitoring gateway device in real time, After discovering device gateway breaks down and alarm.
CN201510218513.4A 2015-04-30 2015-04-30 A kind of WIFI network method for auditing safely, platform Pending CN106211217A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201510218513.4A CN106211217A (en) 2015-04-30 2015-04-30 A kind of WIFI network method for auditing safely, platform

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201510218513.4A CN106211217A (en) 2015-04-30 2015-04-30 A kind of WIFI network method for auditing safely, platform

Publications (1)

Publication Number Publication Date
CN106211217A true CN106211217A (en) 2016-12-07

Family

ID=57458560

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201510218513.4A Pending CN106211217A (en) 2015-04-30 2015-04-30 A kind of WIFI network method for auditing safely, platform

Country Status (1)

Country Link
CN (1) CN106211217A (en)

Cited By (12)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106713362A (en) * 2017-02-27 2017-05-24 深圳市携网科技有限公司 Method for realizing security investigation of WiFi network access
CN107294954A (en) * 2017-05-22 2017-10-24 深信服科技股份有限公司 Cloud pipe platform, the network log-in management system and method based on cloud pipe platform
CN107342903A (en) * 2017-07-18 2017-11-10 杭州敦崇科技股份有限公司 One kind bypass certification and auditing method
CN107707535A (en) * 2017-09-25 2018-02-16 深圳市友华软件科技有限公司 Realize that more peaces of hot-swap examine plateform system and method
CN108199869A (en) * 2017-12-26 2018-06-22 浙江帝杰曼信息科技股份有限公司 For the wireless MAN and its safety management system of education sector
CN108900383A (en) * 2018-07-19 2018-11-27 深圳云盈网络科技有限公司 Data image method based on privately owned HEAD
CN109714417A (en) * 2018-12-27 2019-05-03 迈普通信技术股份有限公司 Network control system and method based on user behavior
CN109714448A (en) * 2018-12-26 2019-05-03 深圳创维数字技术有限公司 The internet information statistical method and device of PON terminal
CN110808845A (en) * 2018-08-06 2020-02-18 新疆联海创智信息科技有限公司 MAC address information acquisition system and method based on WiFi equipment
CN112565159A (en) * 2019-09-25 2021-03-26 ***通信集团广东有限公司 Method for plugging abnormal user equipment and electronic equipment
CN113312465A (en) * 2021-06-04 2021-08-27 广州天辰信息科技有限公司 Intelligent question-answering robot device and method based on big data analysis
CN117792798A (en) * 2024-02-27 2024-03-29 常州银杉信息技术有限公司 Instant messaging information interaction system and method

Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101453388A (en) * 2008-12-30 2009-06-10 公安部第三研究所 Inspection method for Internet service operation field terminal safety control operation
US20090191913A1 (en) * 2008-01-24 2009-07-30 Jones Randall S Video camera utilizing subscriber-based networks
CN101523812A (en) * 2006-06-30 2009-09-02 艾姆巴克控股有限公司 System and method for collecting network performance information
CN102857388A (en) * 2012-07-12 2013-01-02 上海云辰信息科技有限公司 Cloud detection safety management auditing system
CN104270250A (en) * 2014-09-25 2015-01-07 合肥城市云数据中心有限公司 WiFi Internet surfing connecting authentication method and system based on asymmetric full-process encryption
CN104580233A (en) * 2015-01-16 2015-04-29 重庆邮电大学 Internet of Things smart home security gateway system

Patent Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101523812A (en) * 2006-06-30 2009-09-02 艾姆巴克控股有限公司 System and method for collecting network performance information
US20090191913A1 (en) * 2008-01-24 2009-07-30 Jones Randall S Video camera utilizing subscriber-based networks
CN101453388A (en) * 2008-12-30 2009-06-10 公安部第三研究所 Inspection method for Internet service operation field terminal safety control operation
CN102857388A (en) * 2012-07-12 2013-01-02 上海云辰信息科技有限公司 Cloud detection safety management auditing system
CN104270250A (en) * 2014-09-25 2015-01-07 合肥城市云数据中心有限公司 WiFi Internet surfing connecting authentication method and system based on asymmetric full-process encryption
CN104580233A (en) * 2015-01-16 2015-04-29 重庆邮电大学 Internet of Things smart home security gateway system

Cited By (15)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106713362A (en) * 2017-02-27 2017-05-24 深圳市携网科技有限公司 Method for realizing security investigation of WiFi network access
CN107294954A (en) * 2017-05-22 2017-10-24 深信服科技股份有限公司 Cloud pipe platform, the network log-in management system and method based on cloud pipe platform
CN107342903A (en) * 2017-07-18 2017-11-10 杭州敦崇科技股份有限公司 One kind bypass certification and auditing method
CN107707535A (en) * 2017-09-25 2018-02-16 深圳市友华软件科技有限公司 Realize that more peaces of hot-swap examine plateform system and method
CN108199869A (en) * 2017-12-26 2018-06-22 浙江帝杰曼信息科技股份有限公司 For the wireless MAN and its safety management system of education sector
CN108900383B (en) * 2018-07-19 2021-04-06 深圳云盈网络科技有限公司 Data mirroring method based on private HEAD
CN108900383A (en) * 2018-07-19 2018-11-27 深圳云盈网络科技有限公司 Data image method based on privately owned HEAD
CN110808845A (en) * 2018-08-06 2020-02-18 新疆联海创智信息科技有限公司 MAC address information acquisition system and method based on WiFi equipment
CN109714448A (en) * 2018-12-26 2019-05-03 深圳创维数字技术有限公司 The internet information statistical method and device of PON terminal
CN109714417A (en) * 2018-12-27 2019-05-03 迈普通信技术股份有限公司 Network control system and method based on user behavior
CN112565159A (en) * 2019-09-25 2021-03-26 ***通信集团广东有限公司 Method for plugging abnormal user equipment and electronic equipment
CN112565159B (en) * 2019-09-25 2022-09-13 ***通信集团广东有限公司 Method for plugging abnormal user equipment and electronic equipment
CN113312465A (en) * 2021-06-04 2021-08-27 广州天辰信息科技有限公司 Intelligent question-answering robot device and method based on big data analysis
CN117792798A (en) * 2024-02-27 2024-03-29 常州银杉信息技术有限公司 Instant messaging information interaction system and method
CN117792798B (en) * 2024-02-27 2024-05-14 常州银杉信息技术有限公司 Instant messaging information interaction system and method

Similar Documents

Publication Publication Date Title
CN106211217A (en) A kind of WIFI network method for auditing safely, platform
CN107431712B (en) System and method for webflow logging for multi-tenant environments
KR101662605B1 (en) System and method for correlating network information with subscriber information in a mobile network environment
US10616266B1 (en) Distributed malware detection system and submission workflow thereof
US11184459B2 (en) Method and system for a network presence platform with intelligent routing
WO2017107780A1 (en) Method, device and system for recognizing illegitimate proxy for charging fraud
JP2018507639A (en) System and method for global virtual network
CN104301161B (en) Computational methods, computing device and the communication system of quality of service index
CN102857388A (en) Cloud detection safety management auditing system
CN102739684B (en) Portal authentication method based on virtual IP address, and server thereof
CN108270882A (en) The analysis method and device of domain name, storage medium, electronic device
CN103139137B (en) Network service provider method and device
CN106603491A (en) Portal authentication method based on https protocol, and router
CN104168316B (en) A kind of Webpage access control method, gateway
CN105530638B (en) A kind of free WIFI Verification System shared based on circle of friends
CN108390955A (en) Domain Name acquisition method, Website access method and server
CN102984165B (en) Wireless network secure supervisory control system and method
CN103997479B (en) A kind of asymmetric services IP Proxy Methods and equipment
CN104363265B (en) Proxy surfing detection method and device
CN109617753A (en) A kind of platform management method, system and electronic equipment and storage medium
CN105657710A (en) Wireless network authentication method and system
CN107454040A (en) The login method and device of application
CN102638472B (en) Portal authentication method and equipment
EP3096492B1 (en) Page push method and system
EP3382981A1 (en) A user equipment and method for protection of user privacy in communication networks

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
AD01 Patent right deemed abandoned
AD01 Patent right deemed abandoned

Effective date of abandoning: 20201013