said NAS D2 invokes (2) said first AAA server D7 for a user authentication-authorization-and-accounting and when said first AAA server D7 is not responsible for the user authentication-authorization-and-accounting,said first AAA server D7 partly steers the NAS D2 operation and identifying a configuration for a responsible second AAA server D8, if this information is available and if no information is available, forcing said NAS D2 to select or identify a configuration for the responsible second AAA server D8 andsaid NAS D2 invokes said second AAA server D8, based on the said configuration, andthis second AAA server D8 performs a real user authentication-authorization-and-accounting and a decisive steering of the NAS operation (5).;Further it relates to a network access server, an authentication-authorization-and-accounting server, and computer software products for proxying user authentication-authorization-and-accounting messages via a network access server."/> A method, a network access server, an authentication-authorization-and-accounting server, and a computer software product for proxying user authentication-authorization-and-accounting messages via a network access server
首页> 外国专利> A method, a network access server, an authentication-authorization-and-accounting server, and a computer software product for proxying user authentication-authorization-and-accounting messages via a network access server

A method, a network access server, an authentication-authorization-and-accounting server, and a computer software product for proxying user authentication-authorization-and-accounting messages via a network access server

机译:用于经由网络访问服务器代理用户认证授权和计费消息的方法,网络访问服务器,认证授权和计费服务器以及计算机软件产品

摘要

The invention relates to providing network access to separate virtual private network. It relates to a method for proxying user authentication-authorization-and-accounting messages via a network access server (NAS) and at least two separated virtual private networks (VPNs), wherein a first VPN has it's own first authentication-authorization-and-accounting server (AAA server), and a second VPN has it's own second AAA server, comprising the steps of:said NAS D2 invokes (2) said first AAA server D7 for a user authentication-authorization-and-accounting and when said first AAA server D7 is not responsible for the user authentication-authorization-and-accounting,said first AAA server D7 partly steers the NAS D2 operation and identifying a configuration for a responsible second AAA server D8, if this information is available and if no information is available, forcing said NAS D2 to select or identify a configuration for the responsible second AAA server D8 andsaid NAS D2 invokes said second AAA server D8, based on the said configuration, andthis second AAA server D8 performs a real user authentication-authorization-and-accounting and a decisive steering of the NAS operation (5).;Further it relates to a network access server, an authentication-authorization-and-accounting server, and computer software products for proxying user authentication-authorization-and-accounting messages via a network access server.
机译:本发明涉及提供对单独的虚拟专用网络的网络访问。本发明涉及一种用于经由网络访问服务器(NAS)和至少两个分离的虚拟专用网络(VPN)代理用户认证授权和计费消息的方法,其中第一VPN具有其自己的第一认证授权和认证。计费服务器(AAA服务器),第二个VPN拥有自己的第二个AAA服务器,包括以下步骤: ,当NAS D2调用(2)所述第一AAA服务器D7进行用户身份验证和计费时,以及当所述第一AAA服务器D7调用时 所述第一AAA服务器D7部分负责引导NAS D2操作并标识负责的第二AAA服务器D8的配置(如果此信息可用),并且不负责用户身份验证,授权和计费。如果没有可用的信息,则迫使所述NAS D2选择或标识负责的第二AAA服务器D8的配置,并且 所述NAS D2基于所述配置来调用所述第二AAA服务器D8,并且 第二个AAA服务器D8对NAS操作执行真实的用户身份验证和记帐以及决定性的操作(5)。 ;此外,它还涉及网络访问服务器,认证授权和计费服务以及用于通过网络访问服务器代理用户身份验证,授权和计费消息的计算机软件产品。

著录项

  • 公开/公告号EP1370040B1

    专利类型

  • 公开/公告日2005-03-02

    原文格式PDF

  • 申请/专利权人 CIT ALCATEL;

    申请/专利号EP20020360161

  • 发明设计人 VAN ACKERE MICHEL;FOCANT STÉPHANE;

    申请日2002-06-04

  • 分类号H04L29/06;

  • 国家 EP

  • 入库时间 2022-08-21 22:09:18

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号