JPH0248764A - Terminal controlling system - Google Patents
Terminal controlling systemInfo
- Publication number
- JPH0248764A JPH0248764A JP63197933A JP19793388A JPH0248764A JP H0248764 A JPH0248764 A JP H0248764A JP 63197933 A JP63197933 A JP 63197933A JP 19793388 A JP19793388 A JP 19793388A JP H0248764 A JPH0248764 A JP H0248764A
- Authority
- JP
- Japan
- Prior art keywords
- terminal device
- terminal equipment
- processing unit
- central processing
- terminal
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Pending
Links
Abstract
Description
【発明の詳細な説明】
〔産業上の利用分野〕
本発明は、管理中央処理装置を通信路に設置すことに係
り通信路と接続されている端末装置を管理してセキュリ
ティ効果を向上させるのに有効な端末管理方式に関する
ものである。[Detailed Description of the Invention] [Industrial Application Field] The present invention relates to installing a management central processing unit on a communication path, and improving the security effect by managing terminal devices connected to the communication path. This is related to an effective terminal management method.
従来の端末管理方式は、特開昭62−198947号公
報にあるように端末装置と端末管理処理を行う中央処理
装置間の認証方式であり、承認を得た端末装置は、他の
中央処理装置のパスワードを受領し、データ送受信を行
うものである。The conventional terminal management method is an authentication method between a terminal device and a central processing unit that performs terminal management processing, as described in Japanese Patent Application Laid-Open No. 62-198947. It receives the password and sends and receives data.
上記従来技術では、通信路に接続されている端末装置は
、他中央処理装置のパスワードを知っていれば管理中央
処理装置の承認を受領しなくても他中央処理装置のアク
セスが可能であった。In the above conventional technology, if a terminal device connected to a communication path knows the password of another central processing unit, it can access the other central processing unit without receiving approval from the managing central processing unit. .
本発明の目的は、管理中央処理装置に登録済みの端末装
置と未登録の端末装置間のデータ送受信を禁止すること
にある。An object of the present invention is to prohibit data transmission and reception between terminal devices registered in a management central processing unit and terminal devices that are not registered.
上記目的は、通信路の中に管理中央処理装置を設け、起
動を承認した端末装置に認証符号を与えて、端末装置は
認証符号が付加されている相手端末装置とのみデータ送
受信を行うことにより達成される。The above purpose is to provide a management central processing unit in the communication path, give an authentication code to the terminal device that has approved activation, and allow the terminal device to send and receive data only with the other terminal device to which the authentication code has been added. achieved.
管理中央処理装置は、起動した端末装置のバージョンチ
ェックコードをチェックして正しければその端末装置に
パスワードと認証符号を与える。The management central processing unit checks the version check code of the activated terminal device, and if it is correct, gives the terminal device a password and an authentication code.
端末装置は認証符号を受取ると、通信路内の他の端末装
置とのデータ送信に際し、この認証符号をパスワードに
付加する。受信側端末装置はパスワードと認証符号が一
致しなければ、その端末装置からの受信データを受取ら
ない。それによって通信路内の登録済端末装置と、未登
録端末装置間のデータ送受信を禁止できる。When the terminal device receives the authentication code, it adds this authentication code to the password when transmitting data to other terminal devices within the communication path. If the password and authentication code do not match, the receiving terminal device will not receive data from the terminal device. This makes it possible to prohibit data transmission and reception between registered terminal devices and unregistered terminal devices within the communication path.
以下、本発明の一実施例を第1図により説明する。通信
路106には、端末装置A100.端末装置B102.
端末装置n107.管理中央処理装置101が接続され
、端末装置間の相互通信ができるように構成されている
。An embodiment of the present invention will be described below with reference to FIG. The communication path 106 includes a terminal device A100. Terminal device B102.
Terminal device n107. A management central processing unit 101 is connected and configured to allow mutual communication between terminal devices.
端末装置A100は起動103する時バージョンチェッ
クコードを管理中央処理装置101へ送信し、管理中央
処理装置101は、バージョンコードをチェックして正
しければ確認104応答を行う。確認応答は、第2図セ
キュリティニード−覧200の確認202で示すように
、パスワードに認証符号を付加したデータである。端末
装置A100は、確認104を受取ると以降認証符号が
その端末装置に割付される。端末装置A100がら、端
末装置B102へのデータ送信は第2図データ送受信2
03に示すパスワードに認証符号を付加して送信する。When the terminal device A 100 starts up 103, it transmits a version check code to the management central processing unit 101, and the management central processing unit 101 checks the version code, and if it is correct, sends a confirmation 104 response. The confirmation response is data obtained by adding an authentication code to the password, as shown by confirmation 202 in the security needs list 200 in FIG. When the terminal device A 100 receives the confirmation 104, an authentication code is subsequently assigned to the terminal device. Data transmission from the terminal device A 100 to the terminal device B 102 is shown in Figure 2 Data Transmission/Reception 2
The authentication code is added to the password shown in 03 and sent.
端末装置B102は、受信データのパスワードと認証符
号をチェックして、管理中央処理装置101によって承
認された端末装置からの受信データならば、その受信デ
ータを受付ける。受信データが管理中央処理装置101
によって承認を受けていないことを示すならば、その受
信データを無視する。The terminal device B 102 checks the password and authentication code of the received data, and if the received data is from a terminal device approved by the management central processing unit 101, it accepts the received data. Received data is managed by a central processing unit 101
indicates that the received data has not been approved.
第3図は1通信路内の端末装置が起動を行った後、他の
端末装置との間でデータ送受信するまでのフローを示す
。以下、第3図について説明する。FIG. 3 shows a flow from when a terminal device within one communication path starts up to transmitting and receiving data with another terminal device. FIG. 3 will be explained below.
通信路内の端末装置が起動すると、管理中央処理装置へ
の接続起動報告300を行い管理中央処理装置へバージ
ョンチェックコード303を送信する。管理中央処理装
置では、バージョンチェックコートをチェックして、正
しければ確認応答としてパスワードに認証コードを付加
したフレーム304を端末装置に返送する。端末装置は
、確認応答を受信するまで待ち状態301となり、確認
応答を受信後、通信路内端末装置とデータ送受信開始3
02する。本端末装置と他端末装置とのデータ送受信は
、送受信データにパスワードと認証コードを付加したフ
レーム305により行われる。When the terminal device in the communication path starts up, it makes a connection activation report 300 to the management central processing unit and transmits a version check code 303 to the management central processing unit. The management central processing unit checks the version check code, and if it is correct, returns a frame 304 with an authentication code added to the password as a confirmation response to the terminal device. The terminal device is in a waiting state 301 until it receives an acknowledgment response, and after receiving the acknowledgment response, it starts transmitting and receiving data with the terminal device within the communication path 3.
02. Data transmission and reception between this terminal device and other terminal devices is performed using a frame 305 in which a password and an authentication code are added to the transmitted and received data.
これにより承認された端末装置間でのみ通信が可能とな
る。This allows communication only between approved terminal devices.
本実施例によれば、管理中央処理装置によって承認され
た端末装置間でなければ、データ送受信ができず、不法
な通信路への割込みを防止できる〔発明の効果〕
本発明によれば、管理中央処理装置によって承認された
端末装置間以外はデータ送受信が禁止されるので、不法
な通信路への割込みに対し、セキュリティ効果がある。According to this embodiment, data cannot be sent or received unless it is between terminal devices approved by the management central processing unit, and it is possible to prevent illegal interruptions to communication channels. [Effects of the Invention] According to the present invention, the management Since data transmission and reception is prohibited between terminal devices other than those approved by the central processing unit, there is a security effect against illegal interruptions to the communication path.
第1図は本発明の一実施例のネットワーク構成図、第2
図はセキュリティコード−覧説明図、第3図は端末装置
起動フロー図である。
100・・・端末装置A、
101・・・管理中央処理装置、
102・・・端末装置B、 103・・・起動メツセ
ージ、104・・・確認応答、 105・・・送受信
データ、106・・・通信路、 107・・・端
末装置n、200・・・セキュリティコード−覧。Figure 1 is a network configuration diagram of an embodiment of the present invention, Figure 2 is a network configuration diagram of an embodiment of the present invention.
The figure is a security code list explanatory diagram, and FIG. 3 is a terminal device startup flow diagram. 100... Terminal device A, 101... Management central processing unit, 102... Terminal device B, 103... Startup message, 104... Confirmation response, 105... Transmission/reception data, 106... Communication path, 107... terminal device n, 200... security code - view.
Claims (1)
されたシステムにおける端末管理方式において、業務処
理の開始前に端末装置と前記管理中央処理装置との間で
通信を行い、通信路に接続されたすべての端末装置に対
して、あらかじめ管理中央処理装置に登録してある端末
装置であるか否かをチェックし、登録済みであれば認証
符号を与え、さらに登録済端末装置と、未登録であれば
未登録端末装置と識別したのち、端末装置間のデータ送
受信を行う際に送信側端末装置が前記認証符号の付加を
行い、受信側端末装置が認証符号のチェックを行い、前
記登録済端末装置と未登録端末装置間のデータ送受信を
禁止することを特徴とする端末管理方式。1. In a terminal management method in a system in which a terminal device and a management central processing unit are connected to a communication channel, communication is performed between the terminal device and the management central processing unit before the start of business processing, and the terminal device and the management central processing unit are connected to the communication channel. All registered terminal devices are checked to see if they have been registered in the management central processing unit in advance, and if they are registered, an authentication code is given, and registered terminal devices and unregistered terminal devices are identified. If so, after identifying it as an unregistered terminal device, the sending terminal device adds the authentication code when transmitting/receiving data between the terminal devices, and the receiving terminal device checks the authentication code and identifies the registered terminal device. A terminal management method characterized by prohibiting data transmission and reception between a terminal device and an unregistered terminal device.
Priority Applications (1)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| JP63197933A JPH0248764A (en) | 1988-08-10 | 1988-08-10 | Terminal controlling system |
Applications Claiming Priority (1)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| JP63197933A JPH0248764A (en) | 1988-08-10 | 1988-08-10 | Terminal controlling system |
Publications (1)
| Publication Number | Publication Date |
|---|---|
| JPH0248764A true JPH0248764A (en) | 1990-02-19 |
Family
ID=16382703
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| JP63197933A Pending JPH0248764A (en) | 1988-08-10 | 1988-08-10 | Terminal controlling system |
Country Status (1)
| Country | Link |
|---|---|
| JP (1) | JPH0248764A (en) |
Cited By (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| JPH05274335A (en) * | 1992-02-12 | 1993-10-22 | Nec Corp | Terminal equipment for bank |
-
1988
- 1988-08-10 JP JP63197933A patent/JPH0248764A/en active Pending
Cited By (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| JPH05274335A (en) * | 1992-02-12 | 1993-10-22 | Nec Corp | Terminal equipment for bank |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| US5311596A (en) | Continuous authentication using an in-band or out-of-band side channel | |
| US6754713B1 (en) | System and method of controlling communication sessions | |
| US20060190997A1 (en) | Method and system for transparent in-line protection of an electronic communications network | |
| US8065402B2 (en) | Network management using short message service | |
| EP2327234B1 (en) | Method of providing a mixed group communication session | |
| JPS6253061A (en) | Method for preventing illegal access | |
| US20050055579A1 (en) | Server apparatus, and method of distributing a security policy in communication system | |
| PL351501A1 (en) | Method of and hardware set for ensuring safe transmission of data between equipment units | |
| US5325434A (en) | Method for authenticating communications participants, system for application of the method and first communications participant and second communication participant for application in the system | |
| JP2000507057A (en) | Method and apparatus for confirming a subscriber terminal on a communication network | |
| US7620183B2 (en) | Method for establishing a connection between a terminal and an operating mobile radio network, mobile radio network and terminal used in such a method | |
| US20030123434A1 (en) | Internet telephone system | |
| EP0018129A1 (en) | Method of providing security of data on a communication path | |
| CN109922058B (en) | Intranet protection method for preventing illegal access to intranet | |
| JPH0248764A (en) | Terminal controlling system | |
| CN102316119A (en) | Security control method and equipment | |
| US20050249200A1 (en) | Remote diagnosis system and method and printing machine having the system | |
| JP2002091600A (en) | Method and device for preventing and controlling network remote input by using caller id | |
| KR0126855B1 (en) | Message transmission control method that conforms to two security policies | |
| KR102167575B1 (en) | Method for blocking loop around connection between servers utilizing imaginary accoun | |
| JPH0282836A (en) | Security guard system for network | |
| JP2003153342A (en) | Call control method | |
| AU773314B2 (en) | Network session wall | |
| JPS62213338A (en) | Illegal access prevention system | |
| JPH0580995A (en) | Confirming system for matching property of system edition |