Domain name service (DNS) based multicast security control method and apparatus

A security control and multicast technology, applied in the field of communication, can solve the problems of no control of multicast sources and inability to realize dynamic control, and achieve the effect of simplifying the complex processing process of filtering multicast sources, reducing network attacks and effective security control.

Active Publication Date: 2016-04-13
ZTE CORP
View PDF7 Cites 5 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0003] The main purpose of the present invention is to provide a DNS-based multicast security control method and device, aiming to solve the problem that the existing multicast implementation technology has no control over the multicast source or cannot realize dynamic control

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Domain name service (DNS) based multicast security control method and apparatus
  • Domain name service (DNS) based multicast security control method and apparatus
  • Domain name service (DNS) based multicast security control method and apparatus

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0050] It should be understood that the specific embodiments described here are only used to explain the present invention, not to limit the present invention.

[0051] The solution of the embodiment of the present invention is mainly: by sending DNS (DomainNameservice, domain name service) request message to domain name server, obtain the multicast source DNS address list of IPTV server; Afterwards, carry out address verification to the multicast data message according to the multicast address list of the multicast source DNS address list and local maintenance; According to the verification result, the multicast data message is forwarded and controlled, if the verification meets the requirements , the message is forwarded, and the message is discarded if it does not meet the requirements. Therefore, the method of filtering the message through the DNS list of the multicast source realizes effective control of the multicast service flow and simplifies the complex process of filt...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention relates to a domain name service (DNS) based multicast security control method and apparatus. The method comprises the steps of sending a DNS request message to a domain name server, and acquiring a multicast source DNS address list of an internet protocol television (IPTV) server; after a multicast data message delivered by the IPTV server is received, performing address verification on the multicast data message according to the multicast source DNS address list and a multicast address list maintained locally; and performing forwarding control on the multicast data message according to a verification result. Through adoption of the method, multicast source verification can be carried out effectively, multicast service streams can be controlled effectively and safely, the multicast services are guaranteed to be stable, network attacks are reduced, a complicated filtering process of the multicast source is simplified, and engineering implementation and deployment are easy.

Description

technical field [0001] The invention relates to the technical field of communications, in particular to a DNS-based multicast security control method and device. Background technique [0002] Multicast is the core of IPTV services, so security is a very important issue. Judging from the current implementation of broadband access equipment, there is no good solution. Among them, a key issue is the authentication of the multicast source. Prior art protocols, such as the source filtering function of the IGMPV3 protocol, are currently not implemented or supported in user terminal equipment (such as STB) or central office equipment due to the complexity of implementation, resulting in any multicast server being able to send multicast streams to terminal equipment, which poses a security risk. Therefore, the prior art cannot control or realize dynamic control of the multicast source. Contents of the invention [0003] The main purpose of the present invention is to provide a...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04N21/6405H04N21/643
CPCH04N21/6405H04L61/4511H04L9/3271H04L63/0236H04L63/04H04L63/101H04L63/104
Inventor 高春生武云飞魏煜
Owner ZTE CORP
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products