发明名称 ACCESS CONTROL METHOD, ACCESS DEVICE AND SYSTEM
摘要 <p>The present invention discloses an access control method, an access device, and a system, including: receiving an access request, and acquiring an IP address and a MAC address; when the MAC address is already bound, a port bound to the MAC address is different from a current port, and a binding relationship between the MAC address and the bound port is invalid, deleting the binding relationship between the MAC address and the bound port, and establishing a binding relationship between the MAC address and the current port; when the MAC address is not bound, the quantity of MAC addresses bound to the current port already reaches a maximum value, and binding relationships of the current port include an invalid binding relationship, deleting the invalid binding relationship, and establishing a binding relationship between the MAC address and the current port. By using the access control method disclosed in the present invention, the validity of a binding relationship is detected to determine whether a received protocol request is address spoofing or authorized address migration caused by a normal service requirement is determined. In this way, not only a requirement for a security feature is satisfied, but also a requirement in a special scenario is satisfied.</p>
申请公布号 EP2677716(A1) 申请公布日期 2013.12.25
申请号 EP20120761353 申请日期 2012.03.16
申请人 HUAWEI TECHNOLOGIES CO., LTD. 发明人 YANG, XIANJIE;YIN, JIASHENG
分类号 H04L29/06;H04L29/12 主分类号 H04L29/06
代理机构 代理人
主权项
地址