WO2012171203A1 - Procédé et dispositif pour contrôler l'accès d'utilisateurs à un système - Google Patents
Procédé et dispositif pour contrôler l'accès d'utilisateurs à un système Download PDFInfo
- Publication number
- WO2012171203A1 WO2012171203A1 PCT/CN2011/075813 CN2011075813W WO2012171203A1 WO 2012171203 A1 WO2012171203 A1 WO 2012171203A1 CN 2011075813 W CN2011075813 W CN 2011075813W WO 2012171203 A1 WO2012171203 A1 WO 2012171203A1
- Authority
- WO
- WIPO (PCT)
- Prior art keywords
- user
- priority
- accessed
- service
- access
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Ceased
Links
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W48/00—Access restriction; Network selection; Access point selection
- H04W48/02—Access restriction performed under specific conditions
- H04W48/06—Access restriction performed under specific conditions based on traffic conditions
Definitions
- the present invention relates to the field of communications, and in particular, to a method and apparatus for controlling a user access system. Background technique
- License such as a software product sales license
- the management node 11 assigns the license to each service.
- Access point 14 When the user 15 from the service request initiator or the service provider requests to access the system, after the load balancing 12, the users are allocated to the respective service access points 14, and the service access points 14 are assigned according to the licenses of the management nodes 11.
- Control traffic If the number of users and traffic of the current access system has reached the number of assigned licenses, the access of the user 15 is denied; if the number of service users and traffic of the current access system is less than the assigned license The number allows access by the user 15.
- the service processing module 13 completes the service processing. During the peak period of the service, a large number of users request access to the system. When the number of connected users has reached the maximum number of licenses in the system, all new users will be denied access. In an emergency such as an earthquake or tsunami, the government department needs to issue early warning information, or it may not be able to issue notification information because there are too many users to access it. That is to say, the prior art solution performs unified and non-differential management for all users' access, without considering the user priority, and even high-priority users are denied access due to unified license control. Summary of the invention
- the present invention provides a method for controlling a user access system, in order to overcome the defect that the high-priority user cannot access the system or is difficult to access the system during the peak period and the emergency state due to the unified license control. Device.
- the technical solution is as follows:
- a method for controlling a user access system comprising:
- the number of accessed users that have the same priority as the user or service to be accessed, and the user or service to be accessed If the number of licensed users is less than the number of licensed licenses corresponding to the priority of the user or service to be accessed, the user is allowed to access; If the number is equal to the number of licenses corresponding to the priority of the user or service to be accessed, the user is denied access.
- An apparatus for controlling a user access system comprising:
- a receiving module configured to receive a user access message
- a priority determining module configured to determine a priority of a user to be accessed that sends the user or service access message received by the receiving module
- the execution module the license license corresponding to the priority of the user or service to be accessed obtained by the priority determining module, and the license corresponding to the priority of the user or service to be accessed If the number of the access users is less than the number of licensed licenses corresponding to the priority of the user or service to be accessed, the user is allowed to access; if the number of accessed users is equal to the number of users to be accessed If the number of licensed licenses corresponding to the priority of the service is denied, the user is denied access.
- the technical solution provided by the embodiment of the present invention has the following advantages: the license that is differentiated according to the priority of the user or the service, and the license that corresponds to the priority of the user or service to be accessed and the priority of the user or service to be accessed.
- the number is used to control user access, so that users with higher priority can use resources preferentially when the number of licenses such as peak hours and emergency status is limited.
- 1 is a networking diagram of an existing telecommunication software system
- FIG. 2 is a flowchart of a method for controlling a user to access a system according to Embodiment 1 of the present invention
- Embodiment 3 is a flowchart of a method for controlling a user access system provided by Embodiment 2 of the present invention.
- Embodiment 4 is a structural block diagram of an apparatus for controlling a user access system provided by Embodiment 3 of the present invention. detailed description
- this embodiment provides a method for controlling a user access system, which includes the following steps:
- Method 1 The priority is directly carried in the user access message, and the service access point obtains the waiting message from the user access message. The priority of the access user.
- the second method determines the priority of the user to be accessed according to the access information of the user, such as the access address and the access account.
- Manner 3 Query the database according to the user information to obtain the priority of the user to be accessed.
- the user's priority can be defaulted to the lowest level.
- the priority of the user is described as a high-level user, a normal user, and a low-level user.
- the license can be classified into three categories, which correspond to high-level users, ordinary users, and low-level users. If the current priority of the user to be accessed is a high-level user, the number of the high-level users that have been accessed is compared with the number of licenses corresponding to the high-level user. If the value is greater than, the access is allowed. If it is greater than, the access is denied. . In this way, by assigning a larger number of licenses to the high-level users, more high-level users can access the system during peak traffic hours.
- the method for controlling a user to access the system in this embodiment may further include allocating the total number of the licenses to the priorities.
- all licenses can be assigned to high-level users, and the number of licenses assigned to users of other priorities is zero. In this case, only high-level users are allowed to access, while other levels of users are denied access.
- the method for controlling a user accessing the system in the embodiment of the present invention further includes: if the priority of the user to be accessed is a specified priority, marking the user to omit part of the auxiliary service processing after the user accesses Processes, such as authentication and accounting, to further improve the processing efficiency of high-level users, thereby enabling rapid processing of high-level users in an emergency state.
- the method in this embodiment may also select whether to control the access of the user according to the priority of the user according to the actual situation and control the access of the user according to the specific manner, so that User access control can be performed only in the emergency state or during peak traffic to save system resources.
- the management node can be implemented by setting a control switch on the management node, only during peak hours or emergency situations. Then, the user's access is controlled according to the priority of the user to be accessed and the number of licenses corresponding to the priority of the user to be accessed.
- the license may be allocated according to the priority of the service, so that the user who performs the high priority service can preferentially access.
- the user's access is controlled by distinguishing the priority of the user or the service, and according to the priority of the user or service to be accessed and the number of licenses corresponding to the priority of the user to be accessed. This ensures that users with higher priority can use resources preferentially when the number of licenses such as peak hours and emergency status is limited.
- FIG. 3 is an example of a service provider (Service Provider) that uses an SMS (Service Provider) to access a SAG (Service Access Gateway).
- the method for controlling a user accessing a system in this embodiment includes:
- the SA (Service Access) module receives a user access message from the SP.
- the SP invokes the SMPP protocol to send a short message; the load balancer distributes the Submit_sm3.4 message, that is, the user access message, to the SA according to the distribution policy.
- the SA determines the priority of the SP to be accessed.
- the SP may be prioritized in one of the following ways or in any combination:
- the first step is to directly carry the priority in the user access message, and the SA obtains the priority of the SP from the user access message.
- Manner 2 Determine the priority of the SP according to the access information of the SP, such as the access address and the access account.
- Method 3 Query the database according to the user information to obtain the priority of the SP.
- the priority of the user can be defaulted to the lowest level.
- the user is divided into a high-level user, a normal user, and a low-level user for explanation.
- step 305 If access is allowed, then go to step 305; if access is denied, go to step 304.
- the management node such as CMSever (Control & Management Sever). Specifically, a number of licenses are assigned to the high-level users, the common users, and the low-level users. For example, the number of the licenses of the high-level users is 3000, the number of licenses of the common users is 2000, and the number of licenses of the low-level users is 1000.
- the SP determined in step 302 is a high-level user
- the SA checks the number of high-level users accessed in the system. If the number of high-level users accessed in the current system is N, when N ⁇ 3000, the SP accesses the system.
- it is also handled as described above. In this way, by assigning a larger number of licenses to the high-level users, more high-level users can access the system during peak traffic hours. Therefore, when the number of licenses is limited, high-level users are preferentially accessed.
- the number of licenses mentioned above is for illustrative purposes only and is not limited to this.
- licenses can be assigned as follows: High-level users The total number of licenses is
- the number of licenses is 0.
- the number of licenses of the common users is 0.
- the number of licenses of the low-level users is 0. Only the high-level users can access them.
- the SP is marked to omit part of the auxiliary service processing flow after the SP access, such as authentication, charging, etc., to further improve the height.
- the processing efficiency of the level users enables fast processing of high-level users in an emergency state.
- the SO module performs a service processing process, including service capability authorization check, service access level control, parameter check, content filtering, mass splitting, and authentication and charging. If the SP is received in the Submit_sm message received by the S0 module, such as carrying the release flag, the part of the auxiliary service processing process after the user access is omitted, such as service access level control, content filtering, and MDSP. (Mobi le Data Service Platform, mobile data service platform) The authentication and accounting interaction is performed. Only the service capability authorization check, parameter check, and group splitting are performed. After the SP returns the corresponding message Submit_sm3. 4RSP, the SMS is directly triggered. Process. In this way, system processing capabilities can be accelerated in an emergency, and business requests can be responded quickly.
- a service processing process including service capability authorization check, service access level control, parameter check, content filtering, mass splitting, and authentication and charging.
- the method in this embodiment may also select whether to control the access of the user according to the priority of the user according to the actual situation and control the access of the user according to the specific manner, so that User access control can be performed only in the emergency state or during peak traffic to save system resources.
- it can be implemented by setting a control switch on the management node, and only in the case of a peak business period or an emergency state, the user's priority is controlled according to the user's priority.
- the foregoing user priority is only an exemplary description, and is not limited thereto.
- the priority of the service corresponding to the license may be allocated, so that the user who performs the high priority service may preferentially access.
- the user's connection is controlled by distinguishing the priority of the user or the service, and according to the priority of the user or service to be accessed and the number of licenses corresponding to the priority of the user or service to be accessed. This ensures that users with high priority or services can use resources preferentially when the number of licenses such as peak hours and emergency status is limited.
- an embodiment of the present invention provides an apparatus for controlling a user to access a system, where the apparatus includes: a receiving module 401, configured to receive a user access message;
- the priority determining module 402 is configured to determine a priority of the user or service to be accessed corresponding to the user access message received by the receiving module 401;
- the execution module 403 is configured to compare the number of accessed users with the same priority of the user or service to be accessed obtained by the priority determining module 402, and the number of the license corresponding to the priority of the user or service to be accessed. If the number of the access users is less than the number of the users corresponding to the priority of the user or the service to be accessed, the user is allowed to access; if the number of the accessed users is equal to the priority of the users or services to be accessed The number of licenses corresponding to the level is denied access by the user.
- the priority determining module 402 may obtain the priority of the user to be accessed in one of the following ways or in any combination:
- the first step is to directly carry the priority in the user access message, and the service access point obtains the priority of the user to be accessed from the user access message.
- the second method determines the priority of the user to be accessed according to the access information of the user, such as the access address and the access account.
- Manner 3 Query the database according to the user information to obtain the priority of the user to be accessed.
- the execution module 403 includes:
- a comparison unit configured to compare the number of accessed users having the same priority as the user or service to be accessed, and the number of licenses corresponding to the priority of the user or service to be accessed;
- the first execution unit is configured to allow the user to access when the comparison result of the comparison unit is that the number of the accessed users is less than the number of the licenses corresponding to the priority of the user or service to be accessed, and when the comparison is performed,
- the comparison result of the unit is that when the number of connected users is equal to the number of licenses corresponding to the priority of the user or service to be accessed, the number of licenses is rejected. User access.
- the execution module 403 includes:
- a first determining unit configured to determine whether a priority of the user or the service to be accessed is a specified priority
- a second executing unit configured to: when the judgment result of the first determining unit is yes,
- the user is marked to omit part of the auxiliary service processing flow after the user accesses.
- the device for controlling a user to access the system in this embodiment further includes:
- the device for controlling the user accessing the system in this embodiment is the same as the method for controlling the user accessing the system in the embodiment of the method. For details, refer to the method embodiment, and details are not described herein.
- the user's connection is controlled by distinguishing the priority of the user or the service, and according to the priority of the user or service to be accessed and the number of licenses corresponding to the priority of the user or service to be accessed. This ensures that users with higher priority can use resources preferentially when the number of licenses such as peak hours and emergency status is limited.
- the present invention is not limited to the field of telecommunications, and can be applied to a large-capacity game server design and a large-capacity network application software design field.
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Data Exchanges In Wide-Area Networks (AREA)
- Telephonic Communication Services (AREA)
- Computer And Data Communications (AREA)
Abstract
Dans ses modes de réalisation, la présente invention se rapporte à un procédé et à un dispositif adaptés pour contrôler l'accès d'utilisateurs à un système. L'invention appartient au domaine technique de la communication. Le procédé selon l'invention comprend les étapes suivantes, consistant : à recevoir un message de demande d'accès d'un utilisateur; à déterminer le niveau de priorité de l'utilisateur ou du service qui attendent d'accéder au système, le message de demande d'accès d'utilisateur correspondant à l'utilisateur ou au service susmentionnés; à comparer le nombre d'utilisateurs ayant accédé au système et qui ont le même niveau de priorité que l'utilisateur ou le service qui attendent d'accéder au système, au nombre de licences correspondant au niveau de priorité de l'utilisateur ou du service qui attendent d'accéder au système et, si le nombre d'utilisateurs ayant accédé au système est inférieur au nombre de licences correspondant au niveau de priorité de l'utilisateur ou du service qui attendent d'accéder au système, à autoriser alors l'utilisateur à accéder au système; autrement, si le nombre d'utilisateurs ayant accédé au système est égal au nombre de licences correspondant au niveau de priorité de l'utilisateur ou du service qui attendent d'accéder au système, à ne pas autoriser l'utilisateur à accéder au système. La présente invention régule l'accès des utilisateurs en différenciant les niveaux de priorité des utilisateurs sur la base des niveaux de priorité des utilisateurs et du nombre de licences correspondant à un niveau de priorité donné. De cette manière, des utilisateurs ayant un niveau de priorité élevé peuvent utiliser les ressources du système en priorité, durant des pics de trafic, dans des cas d'urgence ou lorsque le nombre de licences est limité.
Priority Applications (2)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| CN201180001701.1A CN103493543B (zh) | 2011-06-16 | 2011-06-16 | 一种控制用户接入系统的方法及装置 |
| PCT/CN2011/075813 WO2012171203A1 (fr) | 2011-06-16 | 2011-06-16 | Procédé et dispositif pour contrôler l'accès d'utilisateurs à un système |
Applications Claiming Priority (1)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| PCT/CN2011/075813 WO2012171203A1 (fr) | 2011-06-16 | 2011-06-16 | Procédé et dispositif pour contrôler l'accès d'utilisateurs à un système |
Publications (1)
| Publication Number | Publication Date |
|---|---|
| WO2012171203A1 true WO2012171203A1 (fr) | 2012-12-20 |
Family
ID=47356510
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| PCT/CN2011/075813 Ceased WO2012171203A1 (fr) | 2011-06-16 | 2011-06-16 | Procédé et dispositif pour contrôler l'accès d'utilisateurs à un système |
Country Status (2)
| Country | Link |
|---|---|
| CN (1) | CN103493543B (fr) |
| WO (1) | WO2012171203A1 (fr) |
Cited By (2)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN107040976A (zh) * | 2017-03-13 | 2017-08-11 | 上海斐讯数据通信技术有限公司 | 无线终端sta接入无线接入点ap的控制方法、装置及系统 |
| CN109257785A (zh) * | 2018-11-26 | 2019-01-22 | 努比亚技术有限公司 | 网络制式切换方法、终端及计算机可读存储介质 |
Families Citing this family (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN115843087A (zh) * | 2022-11-25 | 2023-03-24 | 珠海格力电器股份有限公司 | 无线路由器的接入方法、装置、电子设备及存储介质 |
Citations (3)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN101047939A (zh) * | 2006-04-10 | 2007-10-03 | 华为技术有限公司 | 高速下行分组接入中许可证码的控制方法及装置 |
| CN101282576A (zh) * | 2007-04-02 | 2008-10-08 | 中兴通讯股份有限公司 | 一种随机接入信道资源的分配方法 |
| CN101651975A (zh) * | 2008-08-15 | 2010-02-17 | 华为技术有限公司 | 控制用户设备接入的方法、系统和装置 |
Family Cites Families (3)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US7801092B2 (en) * | 2003-03-21 | 2010-09-21 | Cisco Technology, Inc. | Method for a simple 802.11e HCF implementation |
| CN101119317B (zh) * | 2007-08-31 | 2010-07-21 | 华为技术有限公司 | 分配许可的方法、设备及系统 |
| CN102067644B (zh) * | 2008-06-16 | 2016-05-04 | 爱立信电话股份有限公司 | 全球运营商许可优先级区分和分配 |
-
2011
- 2011-06-16 WO PCT/CN2011/075813 patent/WO2012171203A1/fr not_active Ceased
- 2011-06-16 CN CN201180001701.1A patent/CN103493543B/zh not_active Expired - Fee Related
Patent Citations (3)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN101047939A (zh) * | 2006-04-10 | 2007-10-03 | 华为技术有限公司 | 高速下行分组接入中许可证码的控制方法及装置 |
| CN101282576A (zh) * | 2007-04-02 | 2008-10-08 | 中兴通讯股份有限公司 | 一种随机接入信道资源的分配方法 |
| CN101651975A (zh) * | 2008-08-15 | 2010-02-17 | 华为技术有限公司 | 控制用户设备接入的方法、系统和装置 |
Cited By (2)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN107040976A (zh) * | 2017-03-13 | 2017-08-11 | 上海斐讯数据通信技术有限公司 | 无线终端sta接入无线接入点ap的控制方法、装置及系统 |
| CN109257785A (zh) * | 2018-11-26 | 2019-01-22 | 努比亚技术有限公司 | 网络制式切换方法、终端及计算机可读存储介质 |
Also Published As
| Publication number | Publication date |
|---|---|
| CN103493543B (zh) | 2017-11-28 |
| CN103493543A (zh) | 2014-01-01 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| CN110166409B (zh) | 设备接入方法、相关平台及计算机存储介质 | |
| US9026595B2 (en) | Intelligent connection manager | |
| CN107784221B (zh) | 权限控制方法、服务提供方法、装置、系统及电子设备 | |
| EP3742785B1 (fr) | Procédé et dispositif de gestion de session | |
| US20220174533A1 (en) | Systems and methods for providing edge-based quality of service orchestration for multi-access edge computing (mec) in a network | |
| US10117103B2 (en) | Method for sharing network and network element | |
| CN103650614B (zh) | 资源分配方法、装置、网络侧设备和终端 | |
| CN112653681B (zh) | 多特征融合的用户登录准入方法、装置和系统 | |
| CN110830481A (zh) | 一种车载设备上网方法、装置、服务器及存储介质 | |
| CN112616143B (zh) | 一种分配通信号码的方法、装置、电子设备及存储介质 | |
| WO2020015649A1 (fr) | Procédé, dispositif et système de traitement de relation d'exclusion mutuelle de tranches de réseau, et support | |
| US20110035499A1 (en) | Discontinuous access management method using waiting ticket for resource allocation control, waiting ticket management method, and resource allocation control method | |
| CN102369701B (zh) | 多用户捆绑网络资源控制的方法及装置 | |
| CN111093160B (zh) | 一种呼叫方法、设备及系统 | |
| CN111050359A (zh) | 负载均衡控制方法、通信方法、装置及通信系统 | |
| CN113891374A (zh) | 故障网元识别方法、装置及设备 | |
| WO2012171203A1 (fr) | Procédé et dispositif pour contrôler l'accès d'utilisateurs à un système | |
| CN111782406A (zh) | 资源配置方法、装置、电子设备及计算机可读存储介质 | |
| CN106604250B (zh) | 一种td-lte集群系统预占优先呼叫的实现方法 | |
| CN111147468A (zh) | 用户接入方法、装置、电子设备及存储介质 | |
| CN103841081A (zh) | 一种能力调用方法和系统 | |
| CN115225504A (zh) | 资源配置方法、装置、电子设备及存储介质 | |
| CN109819480A (zh) | 一种通信方法及装置 | |
| KR101160903B1 (ko) | 네트워크 식별자 분류 시스템 및 그 방법 | |
| CN118590447A (zh) | 一种多类型流量管理的方法、装置和存储介质 |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| 121 | Ep: the epo has been informed by wipo that ep was designated in this application |
Ref document number: 11867846 Country of ref document: EP Kind code of ref document: A1 |
|
| NENP | Non-entry into the national phase |
Ref country code: DE |
|
| 122 | Ep: pct application non-entry in european phase |
Ref document number: 11867846 Country of ref document: EP Kind code of ref document: A1 |