Unlock instant, AI-driven research and patent intelligence for your innovation.

A method of transparently transmitting ipv6 address in network access control system

A control system and network access technology, applied in the field of data communication

Active Publication Date: 2016-04-20
NEW H3C TECH CO LTD
View PDF4 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

Therefore, this solution is not suitable for IPv6 network environment

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • A method of transparently transmitting ipv6 address in network access control system
  • A method of transparently transmitting ipv6 address in network access control system
  • A method of transparently transmitting ipv6 address in network access control system

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0016] In order to realize the purpose of the present invention, the core idea adopted by the present invention is: after the client RADIUS authentication is successful but before the RADIUS server sends the Access-Accept message, the RADIUS server sends an Access-Challenge message to the user terminal, which carries An EAP-Message attribute, the EAP-Message attribute contains an EAPRequest message, which is used to request an ExpandedTypes. By carrying the IPv6 address and listening port of the policy server in the ExpandedTypes, the EAPRequest message is transparently transmitted through the access device to the After the client, the client parses out the two extended attributes of the policy server's IPv6 address and the listening port Port, and then responds with an EAPResponse message, which carries the attributes of confirming receipt of the IPv6 address and listening port. The invention can solve the problem of transparently transmitting the specified IPv6 address from t...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses a method for passing through IPv6 addresses in a network access control system. After client RADIUS authentication is successful and before an RADIUS server sends an Access-Accept message, the RADIUS server sends an Access-Challenge message to a client, wherein the Access-Challenge message carries an EAP-Message attribute, and Expanded Types of an EAP Request message in the EAP-Message attribute carries an IPv6 address and listening port of a policy server. After the EAP Request message is sent to the client, the client resolves two extended attributes of the IPv6 address and listening Port of the policy server, and responses an EAP Response message which carries attributes of confirming to have received the IPv6 address and listening port. The method can solve a problem of passing through specified IPv6 addresses from the policy server to the client in the network access control system.

Description

technical field [0001] The invention relates to the technical field of data communication, in particular to a method for transparently transmitting an IPV6 address in a network access control system. Background technique [0002] With the increasing popularity and deepening of network applications, network security has become a very important issue. The application of the Network Access Control (NAC) technical solution provides a relatively complete network security solution. For example: H3C's EndpointAdmissionDomination (EAD), Cisco's NetworkAdmissionControl (CNAC), etc. are all network access control application systems. Generally speaking, the network access control application system is composed of identity authentication server, security policy server, access device and client software. [0003] After the client passes the identity authentication, it needs to communicate with the security policy server to complete the security check of the user terminal to ensure tha...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Patents(China)
IPC IPC(8): H04L29/12H04L29/06
Inventor 王钰洁
Owner NEW H3C TECH CO LTD