发明名称 Method and system for network access control
摘要 Prior art quarantine networks were implemented by two methods, the IEEE802.1x method and the DHCP method, but these methods both have different problems. The problem with the IEEE802.1x method is that it is difficult to make the transition from an existing management framework. The problem with the DHCP method is that it is difficult to prevent attacks on the network itself, and to repeat client quarantine. The present invention implements client login authentication and client security status quarantine independently, and controls layer-2 connectivity based on the respective results. This permits quarantine using an existing management framework, as well as enhancing network protection by layer-2 connection control and permitting repeat quarantine of the client using the same IP address. Moreover, by incorporating other layer-2 connectivity control mechanisms, flexible layer-2 connectivity control outside the quarantine network can also be implemented.
申请公布号 US7917621(B2) 申请公布日期 2011.03.29
申请号 US20060443355 申请日期 2006.05.31
申请人 ALAXALA NETWORKS CORPORATION 发明人 SUZUKI SHINSUKE;SHIBATA TAKESHI;HIGUCHI HIDEMITSU;MIYABE TAKAO
分类号 G06F21/20 主分类号 G06F21/20
代理机构 代理人
主权项
地址