Unlock instant, AI-driven research and patent intelligence for your innovation.

Authentication system and authentication method for network security access

An access authentication and secure access technology, which is applied in the field of authentication system for network security access, can solve the problems of DSCP value legality check, DSCP value spoofing, DSCP value irregularity, etc., and achieve easy IPQoS guarantee and simple internal state Effect

Active Publication Date: 2018-03-13
SOUTH CHINA UNIV OF TECH +1
View PDF3 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0003] 1. Since there is no legality check on the source MAC address and source IP address of the user IP message that has passed web authentication, false address spoofing and related network attacks may occur, and such network spoofing and attack behaviors are difficult to track, making It is becoming more and more difficult for network administrators to effectively manage the network
[0004] 2. Since the DSCP value of the IP packet is mainly set by the user terminal when sending the packet, the network access system does not check the legality of the DSCP value of the IP packet, resulting in some DSCP values ​​of the IP packet appearing in the network Irregularities or DSCP value spoofing, etc., it is difficult for network service providers to provide differentiated services for various services based on the DSCP value of IP packets

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Authentication system and authentication method for network security access
  • Authentication system and authentication method for network security access
  • Authentication system and authentication method for network security access

Examples

Experimental program
Comparison scheme
Effect test

Embodiment

[0049] Such as figure 1 As shown, it is a schematic diagram of a typical system structure of the switch-based network authentication system, including multiple security access control switches, Web access authentication servers and user terminals, wherein the Web access authentication server and security access control switches pass The network is interconnected, and the security access control switch is connected to the user terminal through the access network.

[0050] Such as figure 2 As shown, a typical implementation of a secure access control switch includes a user terminal information learning unit, a tuple group information maintenance unit, a Web authentication unit, a control proxy unit, and a message filtering unit, and the control proxy unit and the user terminal information learning unit, a tuple group The information maintenance unit is connected with the Web authentication unit, and the multi-group information maintenance unit is also connected with the user t...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention provides a network security access authentication system. The network security access authentication system comprises security access control switches, a Web access authentication server and user terminals. The invention further provides an authentication method of the network security access authentication system. The method includes the steps that (1) new user terminals have access to a network; (2) the Web access authentication server validates redirection information; (3) the Web access authentication server authenticates users; (4) DSCP values corresponding to the users are obtained if the users pass authentication (5) the Web access authentication server transmits authentication passing information and the DSCP values to the security access control switches through a control interface module; (6) the security access control switches execute actions related to authentication passing of the users and enable the DSCP values of IP messages of the users to be set as corresponding values. The network security access authentication system and the authentication method of the network security access authentication system have the advantages of improving the security of network access and providing support for QoS guarantees.

Description

technical field [0001] The invention relates to a network security access technology, in particular to an authentication system and an authentication method for network security access. Background technique [0002] With the rapid increase in the number and types of access network devices, network management and security issues are becoming more and more severe, and network users have different needs for accessing the network, and the traditional secure access system is becoming more and more difficult to adapt to the increase in network scale and user needs. The requirement of diversity makes the disadvantages of traditional network access increasingly prominent. Web authentication is a widely used secure access authentication method at present. It relies on a Web browser to perform interactive authentication with a Web authentication server through the HTTP protocol. The current IP Quality of Service (QoS) technology mainly adopts the differential service model: when the ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Patents(China)
IPC IPC(8): H04L29/06
Inventor 胡金龙张凌陈虹钊
Owner SOUTH CHINA UNIV OF TECH