The invention relates to a kernel-based Portal
authentication method, which comprises the following steps of: capturing an
internet access request message sent by a user, and determining to release, discard or redirect to an
authentication page according to an interface type, a white
list, an authenticated terminal table and a message protocol; and verifying the
authentication information submitted by the user, and updating the authenticated terminal information through the
procfs to allow the release of subsequent messages. According to the method, user mode
copying is avoided through kernel mode
message processing, and the
throughput is remarkably improved; a large number of iptables rules are not needed, and the configuration complexity and the function conflict risk are reduced; the user mode authentication service ensures stability and security, and supports flexible connection with third-party authentication; the development and maintenance difficulty is reduced through the
modular design, and the
system stability is enhanced; the method is suitable for network equipment based on a
Linux kernel, and high performance and universality are both considered.