Control method, device and system for remote accessing intranet, and terminal equipment

A technology of remote access and terminal equipment, applied in the Internet field, can solve the problems of hidden dangers, the convenience of intranet access and the difficulty in realizing the security, and achieve the effect of ensuring security, ensuring convenience, and improving performance

Active Publication Date: 2018-01-12
NEW H3C TECH CO LTD
View PDF10 Cites 16 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

Once the mobile terminal is legal, all APPs on it can access the intranet server, and for APPs with higher security requirements, because the APP is opened under the VPN technology of the public network, there are certain security risks
Aiming at the difficulty of balancing the convenience and security of intranet access, no effective solution has been proposed so far.

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Control method, device and system for remote accessing intranet, and terminal equipment
  • Control method, device and system for remote accessing intranet, and terminal equipment
  • Control method, device and system for remote accessing intranet, and terminal equipment

Examples

Experimental program
Comparison scheme
Effect test

Embodiment 1

[0034] This embodiment provides a method for controlling remote access to an intranet. The method is applied to a terminal device. The terminal device is installed with an authentication client, and a VPN tunnel is established between the authentication client and the intranet, and the VPN tunnel information is saved. Legal APP information;

[0035]The authentication client can be an application software or a plug-in installed in a terminal device; the authentication client can establish the above-mentioned VPN tunnel with a service server or a gateway in the intranet to communicate with the intranet; the above-mentioned The legitimate APP information may be a list of APPs allowed to use the VPN tunnel to access the intranet, and information such as APP identifiers are stored in the list.

[0036] see figure 2 The flow chart of the first remote access intranet control method shown, the method includes the following steps:

[0037] Step S202, when the authentication client r...

Embodiment 2

[0042] see image 3 The flow chart of the second control method for remote access to the intranet is shown. On the basis of the control method for remote access to the intranet provided in Embodiment 1, the method further includes:

[0043] The authentication client registers the device with the MDM server. After the device is successfully registered, it obtains the VPN configuration file and the association command between the APP and the VPN tunnel from the MDM server. The association command carries the identification of the APP associated with the VPN tunnel;

[0044] Establish a VPN tunnel according to the VPN configuration file, and add the APP identifier in the association command to the legal APP information of the VPN tunnel to determine whether the APP has permission to use the VPN tunnel. For example: when the authentication client receives an APP's intranet access request, it will check whether there is an ID of the APP in the legal APP information; if so, determin...

Embodiment 3

[0064] see Figure 4 The flow chart of the third control method for remote access to the intranet shown; the method is based on the control method for remote access to the intranet provided in Embodiment 2, and the method further includes: the authentication client authenticates to the authentication server; When the authentication is passed, the authentication server sends the identification of the authentication client to the MDM server to notify the MDM server that the authentication client has passed the authentication; correspondingly, the steps for the authentication client to register the device with the MDM server include: sending A device registration request, the device registration request carries the identification of the authentication client, so that the MDM server performs device registration for the authentication client after determining that the authentication client is legal according to the authentication client identification sent by the authentication serv...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention provides a control method, device and system for remotely accessing the intranet, and terminal equipment. The method is applied to the terminal equipment, an authentication client is installed in the terminal equipment, a VPN tunnel is established between the authentication client and the intranet, and legal APP information of the VPN tunnel is saved; the method comprises the following steps: when the authentication client receives an intranet access request of an APP, judging whether the APP is permitted to use the VPN tunnel according to the legal APP information; if the APP ispermitted to use the VPN tunnel, allowing the APP to access the intranet through the VPN tunnel. The control method provided by the invention can take both the convenience and the security of accessing the intranet by the terminal equipment into consideration, and the system performance is improved.

Description

technical field [0001] The present disclosure relates to the technical field of the Internet, and in particular to a control method, device, system and terminal equipment for remote access to an intranet. Background technique [0002] With the popularization of mobile terminals such as mobile phones and tablet computers, APPs (Application, application software) on the mobile terminals are also increasingly diversified. In order to facilitate employees to handle office affairs, many enterprises and administrative units have developed internal office APPs. These APPs log in to business servers (that is, servers in the enterprise intranet) through the intranet for data communication. [0003] If the internal business server of the enterprise is opened to the public network, it will pose a threat to the security of the enterprise intranet; if the mobile APP is forced to be accessed only in the enterprise intranet environment, it will bring a lot of inconvenience to users. In th...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/06H04W12/06H04L12/46H04W12/08
Inventor 代庆瑜
Owner NEW H3C TECH CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products