首页> 外国专利> Two-tier authentication system where clients first authenticate with independent service providers and then automatically exchange messages with a client controller to gain network access

Two-tier authentication system where clients first authenticate with independent service providers and then automatically exchange messages with a client controller to gain network access

机译:两层身份验证系统,其中客户端首先向独立的服务提供商进行身份验证,然后与客户端控制器自动交换消息以获取网络访问权限

摘要

A method and apparatus to control a client in a communication network accessed by the client through a service provider independent of a client controller. In one embodiment, a hardware capable Internet Service Provider (ISP) functions as the communications network service provider. A virtual ISP operates the client controller, leases Internet access time from the hardware capable ISP, and resells Internet services to users. A client accesses the network through a two stage authentication process. First, the hardware capable ISP authenticates the client using a user-provided ID and password. After successfully logging on to the hardware capable ISP, the client automatically sends a start session message containing user identity information to the client controller. In response, the client controller sends a control message to the client authorizing use of the network for a predetermined time period. When the client stops accessing the network, the client informs the client controller using an end session message. If the client wants to access the network beyond the predetermined time period, the client informs the client controller using a continue session message. If no end session or continue session message is received, the client controller assumes that the client is no longer accessing the network at the end of the predetermined time. The client controller can initiate communication with the client by sending other control messages, such as display and download commands.
机译:一种控制通信网络中的客户端的方法和装置,该通信网络由客户端通过独立于客户端控制器的服务提供商访问。在一个实施例中,具有硬件能力的互联网服务提供商(ISP)充当通信网络服务提供商。虚拟ISP操作客户端控制器,从具有硬件功能的ISP租用Internet访问时间,然后将Internet服务转售给用户。客户端通过两阶段身份验证过程访问网络。首先,具有硬件功能的ISP使用用户提供的ID和密码对客户端进行身份验证。成功登录到具有硬件功能的ISP后,客户端会自动将包含用户身份信息的开始会话消息发送到客户端控制器。作为响应,客户端控制器向客户端发送控制消息,以授权在预定时间段内使用网络。当客户端停止访问网络时,客户端使用结束会话消息通知客户端控制器。如果客户端希望在预定时间段之后访问网络,则客户端使用继续会话消息通知客户端控制器。如果没有收到结束会话或继续会话消息,则客户端控制器假定客户端在预定时间结束时不再访问网络。客户端控制器可以通过发送其他控制消息(例如显示和下载命令)来启动与客户端的通信。

著录项

相似文献

  • 专利
  • 外文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号