IP Library Granted Patent US 9,258,310
Granted Patent B2
US 9,258,310 · App. 14/433,890 · Granted Feb 9, 2016

Method and device for processing and tracking TACACS+ session

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,258,310
App. No.
14/433,890
Granted
Feb 9, 2016
Kind
B2
Abstract

A method and device for processing and tracking a TACACS+ session, wherein, the method includes: registering an attribute value in a TACACS+ packet of a TACACS+ session to be tracked; when a TACACS+ client receives a TACACS+ request packet, analyzing the TACACS+ request packet to judge whether an attribute value in the TACACS+ request packet is the same as the registered attribute value or not; if the two are the same, saving the Session_id value in the TACACS+ request packet; when the TACACS+ client receives a TACACS+ response packet, comparing the Session_id value in the TACACS+ response packet with a saved Session_id value, and if the two Session_id values are the same, setting the status of the corresponding TACACS+ session as successful. The embodiments of the present document track the TACACS+ response packet, so as to implement the function of tracking the whole TACACS+ session that conforms to specific conditions.

Claims (16)

1. A method for processing and tracking a terminal access controller access control system (TACACS+) session, comprising:

registering an attribute value in a TACACS+ packet of a TACACS+ session to be tracked;

when a TACACS+ client receives a TACACS+ request packet, analyzing the TACACS+ request packet to judge whether an attribute value in the TACACS+ request packet is the same as the registered attribute value or not, when the two are the same, saving a Session_id value in the TACACS+ request packet;

when the TACACS+ client receives a TACACS+ response packet, comparing a Session_id value in the TACACS+ response packet with the saved Session_id value, and when the two are the same, setting a status of the corresponding TACACS+ session as successful.

2. The method for processing and tracking a TACACS+ session of claim 1 , wherein, the attribute value comprises user account information, IP address information and port information.

3. The method for processing and tracking a TACACS+ session of claim 1 , wherein, if Session_id values in all TACACS+ response packets received by the TACACS+ client are all different from the saved Session_id value, the status of the corresponding TACACS+ session is set as failed.

4. The method for processing and tracking a TACACS+ session of claim 1 , wherein, if the attribute value in the TACACS+ request packet is different from the registered attribute value, the TACACS+ request packet is discarded.

5. The method for processing and tracking a TACACS+ session of claim 1 , wherein, when the corresponding TACACS+ session ends, the saved Session_id value is deleted.

6. A device for processing and tracking a TACACS+ session, comprising:

a packet attribute value registering module, configured to: register an attribute value in a TACACS+ packet of a TACACS+ session to be tracked;

a request packet analysis processing module, configured to: when a TACACS+ client receives a TACACS+ request packet, analyze the TACACS+ request packet to judge whether the attribute value in the TACACS+ request packet is the same as the registered attribute value or not, when the two are the same, save a Session_id value in the TACACS+ request packet; and

a response packet comparison processing module, configured to: when the TACACS+ client receives a TACACS+ response packet, compare a Session_id value in the TACACS+ response packet with the saved Session_id value, when the two are the same, set a status of the corresponding TACACS+ session as successful.

7. The device for processing and tracking a TACACS+ session of claim 6 , wherein, the attribute value comprises user account information, IP address information or port information.

8. The device for processing and tracking a TACACS+ session of claim 6 , wherein, the response packet comparison processing module is configured to: acquire that the Session_id values in all the TACACS+ response packets received by the TACACS+ client are all different from the saved Session_id value, and set the status of the corresponding TACACS+ session as failed.

9. The device for processing and tracking a TACACS+ session of claim 6 , wherein, the request packet analysis processing module is configured to: acquire that the attribute value in the TACACS+ request packet is different from the registered attribute value, discard the TACACS+ request packet.

10. The device for processing and tracking a TACACS+ session of claim 6 , wherein, the response packet comparison processing module is configured to: after the corresponding TACACS + session ends, delete the saved Session_id value.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 14, 2016
From: ZTE CORPORATION
To: XI'AN ZHONGXING NEW SOFTWARE CO., LTD.
Reel/Frame 040017/0584 →