Network resource access control method, device and related equipment

An access control and network resource technology, applied in the field of network information security, can solve the problems of manual configuration method being cumbersome to operate, reducing the security of network resource access, etc., to achieve the effect of dynamic authorization, simplify authorization process, and ensure security.

Active Publication Date: 2014-07-02
BEIJING XINWANG RUIJIE NETWORK TECH CO LTD
View PDF6 Cites 2 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0006] In order to solve the above problems, the prior art proposes the following two solutions: 1) Manually configure the URL class table, according to the content of the URL that is allowed to be accessed, manually add the content contained in the page corresponding to the URL that is allowed to be accessed on the SSLVPN gateway. URL, but the manual configuration method is cumbersome to operate. If the page corresponding to the allowed URL changes, you need to compare the page corresponding to the original URL and manually add or delete it; 2) Turn off the authorization, and the remote host can be unlimited after the authorization is turned off access to all URLs, which will reduce the security of network resource access

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Network resource access control method, device and related equipment
  • Network resource access control method, device and related equipment
  • Network resource access control method, device and related equipment

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0025] In order to simplify the network-side device authorization process and ensure the security of network resource access when a remote host accesses a URL that is allowed to access a URL that does not exist in the URL list through an allowed URL, an embodiment of the present invention provides a network resource access control method and related equipment.

[0026] In order to accurately distinguish whether the remote host is accessing a URL that does not exist in the URL list based on the page corresponding to the URL that is allowed to be accessed during the process of the remote host accessing network resources, so as to simplify the network-side device authorization process and ensure the security of network resource access In this embodiment of the present invention, the network side device adds an authorization tag information to the URL contained in the page corresponding to the URL that is allowed to be accessed, where the authorization tag information can be a laye...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a network resource access control method, device and related equipment, which are used for accurately recognizing whether a distance host accesses a URL (Uniform Resource Locator) which does not exist in an access allowed URL list on the basis of a page corresponding to the access allowed URL list for simplifying an authorization process of network side equipment and ensuring safety of network resource access, wherein the network resource access control method comprises the steps: the network side equipment receives a first URL submitted by the distance host, wherein the first URL comprises authorization label information to be verified; the authorization label information to be verified is extracted from the first URL; and the network side equipment judges whether the authorization label information to be verified is matched with authorization label information corresponding to the first URL, if yes, allows the distance to access the page corresponding to the first URL, and if not, prohibits the distance host from accessing the page corresponding to the first URL.

Description

technical field [0001] The present invention relates to the technical field of network information security, in particular to a network resource access control method, device and related equipment. Background technique [0002] A virtual private network (VPN, Virtual Private Network) is defined as establishing a temporary and secure connection through a public network (which may be the Internet), and is a safe and stable tunnel passing through the public network. VPN can help remote users, company branches, and other companies' intranets establish visible and secure connections. Secure Sockets Layer (SSL, Secure Sockets Layer) is a set of Internet data security protocols, which are widely used for identity authentication and encrypted data transmission between Web browsers and servers. The SSL protocol is located between the TCP / IP protocol and various application layer protocols, and uses encryption methods to protect the security of data transmitted on the Internet. [0...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Patents(China)
IPC IPC(8): H04L29/06
Inventor 彭谦
Owner BEIJING XINWANG RUIJIE NETWORK TECH CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products