JPH0248764A - Terminal controlling system - Google Patents

Terminal controlling system

Info

Publication number
JPH0248764A
JPH0248764A JP63197933A JP19793388A JPH0248764A JP H0248764 A JPH0248764 A JP H0248764A JP 63197933 A JP63197933 A JP 63197933A JP 19793388 A JP19793388 A JP 19793388A JP H0248764 A JPH0248764 A JP H0248764A
Authority
JP
Japan
Prior art keywords
terminal device
terminal equipment
processing unit
central processing
terminal
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
JP63197933A
Other languages
Japanese (ja)
Inventor
Noboru Sakoyama
佐子山 昇
Miyuki Tsuda
幸 津田
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Hitachi Ltd
Maxell Ltd
Original Assignee
Hitachi Ltd
Hitachi Maxell Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Hitachi Ltd, Hitachi Maxell Ltd filed Critical Hitachi Ltd
Priority to JP63197933A priority Critical patent/JPH0248764A/en
Publication of JPH0248764A publication Critical patent/JPH0248764A/en
Pending legal-status Critical Current

Links

Abstract

PURPOSE:To give security effect to illegal interruption to a communication channel by inhibiting data transmission/reception except between terminal equipments approved by an administrative central processing unit. CONSTITUTION:The administrative central processing unit 101 checks the version check code of the started terminal equipment 100, and if it is correct, it gives a pass word and an approval code 202 to the terminal equipment 100. When the terminal equipment 100 receives the approval code 202, it adds this approval code 202 to the pass word 203 at the time of data transmission to other terminal equipment 102 in the communication channel 106. The receiving side terminal equipment 102 does not receive reception data from that terminal equipment unless the pass word and the approval code coincide. Thus, the data transmission/reception between a registered terminal equipment and an unregistered terminal equipment in the communication channel can be inhibited, and the security effect can be given.

Description

【発明の詳細な説明】 〔産業上の利用分野〕 本発明は、管理中央処理装置を通信路に設置すことに係
り通信路と接続されている端末装置を管理してセキュリ
ティ効果を向上させるのに有効な端末管理方式に関する
ものである。
[Detailed Description of the Invention] [Industrial Application Field] The present invention relates to installing a management central processing unit on a communication path, and improving the security effect by managing terminal devices connected to the communication path. This is related to an effective terminal management method.

〔従来の技術〕[Conventional technology]

従来の端末管理方式は、特開昭62−198947号公
報にあるように端末装置と端末管理処理を行う中央処理
装置間の認証方式であり、承認を得た端末装置は、他の
中央処理装置のパスワードを受領し、データ送受信を行
うものである。
The conventional terminal management method is an authentication method between a terminal device and a central processing unit that performs terminal management processing, as described in Japanese Patent Application Laid-Open No. 62-198947. It receives the password and sends and receives data.

〔発明が解決しようとする課題〕[Problem to be solved by the invention]

上記従来技術では、通信路に接続されている端末装置は
、他中央処理装置のパスワードを知っていれば管理中央
処理装置の承認を受領しなくても他中央処理装置のアク
セスが可能であった。
In the above conventional technology, if a terminal device connected to a communication path knows the password of another central processing unit, it can access the other central processing unit without receiving approval from the managing central processing unit. .

本発明の目的は、管理中央処理装置に登録済みの端末装
置と未登録の端末装置間のデータ送受信を禁止すること
にある。
An object of the present invention is to prohibit data transmission and reception between terminal devices registered in a management central processing unit and terminal devices that are not registered.

〔課題を解決するための手段〕[Means to solve the problem]

上記目的は、通信路の中に管理中央処理装置を設け、起
動を承認した端末装置に認証符号を与えて、端末装置は
認証符号が付加されている相手端末装置とのみデータ送
受信を行うことにより達成される。
The above purpose is to provide a management central processing unit in the communication path, give an authentication code to the terminal device that has approved activation, and allow the terminal device to send and receive data only with the other terminal device to which the authentication code has been added. achieved.

〔作用〕[Effect]

管理中央処理装置は、起動した端末装置のバージョンチ
ェックコードをチェックして正しければその端末装置に
パスワードと認証符号を与える。
The management central processing unit checks the version check code of the activated terminal device, and if it is correct, gives the terminal device a password and an authentication code.

端末装置は認証符号を受取ると、通信路内の他の端末装
置とのデータ送信に際し、この認証符号をパスワードに
付加する。受信側端末装置はパスワードと認証符号が一
致しなければ、その端末装置からの受信データを受取ら
ない。それによって通信路内の登録済端末装置と、未登
録端末装置間のデータ送受信を禁止できる。
When the terminal device receives the authentication code, it adds this authentication code to the password when transmitting data to other terminal devices within the communication path. If the password and authentication code do not match, the receiving terminal device will not receive data from the terminal device. This makes it possible to prohibit data transmission and reception between registered terminal devices and unregistered terminal devices within the communication path.

〔実施例〕〔Example〕

以下、本発明の一実施例を第1図により説明する。通信
路106には、端末装置A100.端末装置B102.
端末装置n107.管理中央処理装置101が接続され
、端末装置間の相互通信ができるように構成されている
An embodiment of the present invention will be described below with reference to FIG. The communication path 106 includes a terminal device A100. Terminal device B102.
Terminal device n107. A management central processing unit 101 is connected and configured to allow mutual communication between terminal devices.

端末装置A100は起動103する時バージョンチェッ
クコードを管理中央処理装置101へ送信し、管理中央
処理装置101は、バージョンコードをチェックして正
しければ確認104応答を行う。確認応答は、第2図セ
キュリティニード−覧200の確認202で示すように
、パスワードに認証符号を付加したデータである。端末
装置A100は、確認104を受取ると以降認証符号が
その端末装置に割付される。端末装置A100がら、端
末装置B102へのデータ送信は第2図データ送受信2
03に示すパスワードに認証符号を付加して送信する。
When the terminal device A 100 starts up 103, it transmits a version check code to the management central processing unit 101, and the management central processing unit 101 checks the version code, and if it is correct, sends a confirmation 104 response. The confirmation response is data obtained by adding an authentication code to the password, as shown by confirmation 202 in the security needs list 200 in FIG. When the terminal device A 100 receives the confirmation 104, an authentication code is subsequently assigned to the terminal device. Data transmission from the terminal device A 100 to the terminal device B 102 is shown in Figure 2 Data Transmission/Reception 2
The authentication code is added to the password shown in 03 and sent.

端末装置B102は、受信データのパスワードと認証符
号をチェックして、管理中央処理装置101によって承
認された端末装置からの受信データならば、その受信デ
ータを受付ける。受信データが管理中央処理装置101
によって承認を受けていないことを示すならば、その受
信データを無視する。
The terminal device B 102 checks the password and authentication code of the received data, and if the received data is from a terminal device approved by the management central processing unit 101, it accepts the received data. Received data is managed by a central processing unit 101
indicates that the received data has not been approved.

第3図は1通信路内の端末装置が起動を行った後、他の
端末装置との間でデータ送受信するまでのフローを示す
。以下、第3図について説明する。
FIG. 3 shows a flow from when a terminal device within one communication path starts up to transmitting and receiving data with another terminal device. FIG. 3 will be explained below.

通信路内の端末装置が起動すると、管理中央処理装置へ
の接続起動報告300を行い管理中央処理装置へバージ
ョンチェックコード303を送信する。管理中央処理装
置では、バージョンチェックコートをチェックして、正
しければ確認応答としてパスワードに認証コードを付加
したフレーム304を端末装置に返送する。端末装置は
、確認応答を受信するまで待ち状態301となり、確認
応答を受信後、通信路内端末装置とデータ送受信開始3
02する。本端末装置と他端末装置とのデータ送受信は
、送受信データにパスワードと認証コードを付加したフ
レーム305により行われる。
When the terminal device in the communication path starts up, it makes a connection activation report 300 to the management central processing unit and transmits a version check code 303 to the management central processing unit. The management central processing unit checks the version check code, and if it is correct, returns a frame 304 with an authentication code added to the password as a confirmation response to the terminal device. The terminal device is in a waiting state 301 until it receives an acknowledgment response, and after receiving the acknowledgment response, it starts transmitting and receiving data with the terminal device within the communication path 3.
02. Data transmission and reception between this terminal device and other terminal devices is performed using a frame 305 in which a password and an authentication code are added to the transmitted and received data.

これにより承認された端末装置間でのみ通信が可能とな
る。
This allows communication only between approved terminal devices.

本実施例によれば、管理中央処理装置によって承認され
た端末装置間でなければ、データ送受信ができず、不法
な通信路への割込みを防止できる〔発明の効果〕 本発明によれば、管理中央処理装置によって承認された
端末装置間以外はデータ送受信が禁止されるので、不法
な通信路への割込みに対し、セキュリティ効果がある。
According to this embodiment, data cannot be sent or received unless it is between terminal devices approved by the management central processing unit, and it is possible to prevent illegal interruptions to communication channels. [Effects of the Invention] According to the present invention, the management Since data transmission and reception is prohibited between terminal devices other than those approved by the central processing unit, there is a security effect against illegal interruptions to the communication path.

【図面の簡単な説明】[Brief explanation of the drawing]

第1図は本発明の一実施例のネットワーク構成図、第2
図はセキュリティコード−覧説明図、第3図は端末装置
起動フロー図である。 100・・・端末装置A、 101・・・管理中央処理装置、 102・・・端末装置B、  103・・・起動メツセ
ージ、104・・・確認応答、  105・・・送受信
データ、106・・・通信路、    107・・・端
末装置n、200・・・セキュリティコード−覧。
Figure 1 is a network configuration diagram of an embodiment of the present invention, Figure 2 is a network configuration diagram of an embodiment of the present invention.
The figure is a security code list explanatory diagram, and FIG. 3 is a terminal device startup flow diagram. 100... Terminal device A, 101... Management central processing unit, 102... Terminal device B, 103... Startup message, 104... Confirmation response, 105... Transmission/reception data, 106... Communication path, 107... terminal device n, 200... security code - view.

Claims (1)

【特許請求の範囲】[Claims] 1、通信路に端末装置および管理中央処理装置が、接続
されたシステムにおける端末管理方式において、業務処
理の開始前に端末装置と前記管理中央処理装置との間で
通信を行い、通信路に接続されたすべての端末装置に対
して、あらかじめ管理中央処理装置に登録してある端末
装置であるか否かをチェックし、登録済みであれば認証
符号を与え、さらに登録済端末装置と、未登録であれば
未登録端末装置と識別したのち、端末装置間のデータ送
受信を行う際に送信側端末装置が前記認証符号の付加を
行い、受信側端末装置が認証符号のチェックを行い、前
記登録済端末装置と未登録端末装置間のデータ送受信を
禁止することを特徴とする端末管理方式。
1. In a terminal management method in a system in which a terminal device and a management central processing unit are connected to a communication channel, communication is performed between the terminal device and the management central processing unit before the start of business processing, and the terminal device and the management central processing unit are connected to the communication channel. All registered terminal devices are checked to see if they have been registered in the management central processing unit in advance, and if they are registered, an authentication code is given, and registered terminal devices and unregistered terminal devices are identified. If so, after identifying it as an unregistered terminal device, the sending terminal device adds the authentication code when transmitting/receiving data between the terminal devices, and the receiving terminal device checks the authentication code and identifies the registered terminal device. A terminal management method characterized by prohibiting data transmission and reception between a terminal device and an unregistered terminal device.
JP63197933A 1988-08-10 1988-08-10 Terminal controlling system Pending JPH0248764A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
JP63197933A JPH0248764A (en) 1988-08-10 1988-08-10 Terminal controlling system

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
JP63197933A JPH0248764A (en) 1988-08-10 1988-08-10 Terminal controlling system

Publications (1)

Publication Number Publication Date
JPH0248764A true JPH0248764A (en) 1990-02-19

Family

ID=16382703

Family Applications (1)

Application Number Title Priority Date Filing Date
JP63197933A Pending JPH0248764A (en) 1988-08-10 1988-08-10 Terminal controlling system

Country Status (1)

Country Link
JP (1) JPH0248764A (en)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JPH05274335A (en) * 1992-02-12 1993-10-22 Nec Corp Terminal equipment for bank

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JPH05274335A (en) * 1992-02-12 1993-10-22 Nec Corp Terminal equipment for bank

Similar Documents

Publication Publication Date Title
US5311596A (en) Continuous authentication using an in-band or out-of-band side channel
US6754713B1 (en) System and method of controlling communication sessions
US20060190997A1 (en) Method and system for transparent in-line protection of an electronic communications network
US8065402B2 (en) Network management using short message service
EP2327234B1 (en) Method of providing a mixed group communication session
JPS6253061A (en) Method for preventing illegal access
US20050055579A1 (en) Server apparatus, and method of distributing a security policy in communication system
PL351501A1 (en) Method of and hardware set for ensuring safe transmission of data between equipment units
US5325434A (en) Method for authenticating communications participants, system for application of the method and first communications participant and second communication participant for application in the system
JP2000507057A (en) Method and apparatus for confirming a subscriber terminal on a communication network
US7620183B2 (en) Method for establishing a connection between a terminal and an operating mobile radio network, mobile radio network and terminal used in such a method
US20030123434A1 (en) Internet telephone system
EP0018129A1 (en) Method of providing security of data on a communication path
CN109922058B (en) Intranet protection method for preventing illegal access to intranet
JPH0248764A (en) Terminal controlling system
CN102316119A (en) Security control method and equipment
US20050249200A1 (en) Remote diagnosis system and method and printing machine having the system
JP2002091600A (en) Method and device for preventing and controlling network remote input by using caller id
KR0126855B1 (en) Message transmission control method that conforms to two security policies
KR102167575B1 (en) Method for blocking loop around connection between servers utilizing imaginary accoun
JPH0282836A (en) Security guard system for network
JP2003153342A (en) Call control method
AU773314B2 (en) Network session wall
JPS62213338A (en) Illegal access prevention system
JPH0580995A (en) Confirming system for matching property of system edition