US 11,909,738 B2
Network access control method and device
Jingyun Cao, Hangzhou (CN); and Huazhi Yang, Shenzhen (CN)
Assigned to Huawei Technologies Co., Ltd., Shenzhen (CN)
Filed by Huawei Technologies Co., Ltd., Shenzhen (CN)
Filed on May 10, 2021, as Appl. No. 17/316,388.
Application 17/316,388 is a continuation of application No. PCT/CN2020/086361, filed on Apr. 23, 2020.
Claims priority of application No. 201910354917.4 (CN), filed on Apr. 29, 2019.
Prior Publication US 2021/0266327 A1, Aug. 26, 2021
Int. Cl. G06F 21/00 (2013.01); H04L 9/40 (2022.01); H04L 45/74 (2022.01); H04L 61/4511 (2022.01); H04L 61/5007 (2022.01)
CPC H04L 63/102 (2013.01) [H04L 45/74 (2013.01); H04L 61/4511 (2022.05); H04L 61/5007 (2022.05); H04L 63/0876 (2013.01)] 20 Claims
OG exemplary drawing
 
1. A method comprising:
receiving, by a first device in an internal network, a first domain name request packet sent by a second device in the internal network, wherein the first domain name request packet carries a source internet protocol (IP) address and a first local domain name, and the first local domain name indicates a device other than the second device in the internal network, the first device being a forwarding device in the internal network;
determining, by the first device, whether the first local domain name is authenticated;
when the first local domain name is authenticated, generating, by the first device, a first entry in forwarding information, wherein the first entry comprises a first address pair comprising the source IP address and a first IP address corresponding to the first local domain name, and the forwarding information comprises one or more entries each of which includes a corresponding address pair;
receiving, by the first device, a data request packet sent by the second device, wherein the data request packet carries the source IP address and a destination IP address; and
determining, by the first device based on the source IP address, the destination IP address and the forwarding information, whether to forward the data request packet, wherein the data request packet requests to access the internal network.