WO2007033553A1 - A multicast managing method and the device thereof in pon system - Google Patents
A multicast managing method and the device thereof in pon system Download PDFInfo
- Publication number
- WO2007033553A1 WO2007033553A1 PCT/CN2006/001663 CN2006001663W WO2007033553A1 WO 2007033553 A1 WO2007033553 A1 WO 2007033553A1 CN 2006001663 W CN2006001663 W CN 2006001663W WO 2007033553 A1 WO2007033553 A1 WO 2007033553A1
- Authority
- WO
- WIPO (PCT)
- Prior art keywords
- user
- multicast
- preview
- optical network
- rights
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Ceased
Links
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04N—PICTORIAL COMMUNICATION, e.g. TELEVISION
- H04N21/00—Selective content distribution, e.g. interactive television or video on demand [VOD]
- H04N21/60—Network structure or processes for video distribution between server and client or between remote clients; Control signalling between clients, server and network components; Transmission of management data between server and client, e.g. sending from server to client commands for recording incoming content stream; Communication details between server and client
- H04N21/63—Control signaling related to video distribution between client, server and network components; Network processes for video distribution between server and clients or between remote clients, e.g. transmitting basic layer and enhancement layers over different transmission paths, setting up a peer-to-peer communication via Internet between remote STB's; Communication protocols; Addressing
- H04N21/64—Addressing
- H04N21/6405—Multicasting
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04B—TRANSMISSION
- H04B10/00—Transmission systems employing electromagnetic waves other than radio-waves, e.g. infrared, visible or ultraviolet light, or employing corpuscular radiation, e.g. quantum communication
- H04B10/27—Arrangements for networking
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04J—MULTIPLEX COMMUNICATION
- H04J3/00—Time-division multiplex systems
- H04J3/16—Time-division multiplex systems in which the time allocation to individual channels within a transmission cycle is variable, e.g. to accommodate varying complexity of signals, to vary number of channels transmitted
- H04J3/1694—Allocation of channels in TDM/TDMA networks, e.g. distributed multiplexers
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04N—PICTORIAL COMMUNICATION, e.g. TELEVISION
- H04N21/00—Selective content distribution, e.g. interactive television or video on demand [VOD]
- H04N21/40—Client devices specifically adapted for the reception of or interaction with content, e.g. set-top-box [STB]; Operations thereof
- H04N21/47—End-user applications
- H04N21/472—End-user interface for requesting content, additional data or services; End-user interface for interacting with content, e.g. for content reservation or setting reminders, for requesting event notification, for manipulating displayed content
- H04N21/47202—End-user interface for requesting content, additional data or services; End-user interface for interacting with content, e.g. for content reservation or setting reminders, for requesting event notification, for manipulating displayed content for requesting content on demand, e.g. video on demand
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04N—PICTORIAL COMMUNICATION, e.g. TELEVISION
- H04N21/00—Selective content distribution, e.g. interactive television or video on demand [VOD]
- H04N21/80—Generation or processing of content or additional data by content creator independently of the distribution process; Content per se
- H04N21/85—Assembly of content; Generation of multimedia applications
- H04N21/854—Content authoring
- H04N21/8549—Creating video summaries, e.g. movie trailer
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04N—PICTORIAL COMMUNICATION, e.g. TELEVISION
- H04N7/00—Television systems
- H04N7/16—Analogue secrecy systems; Analogue subscription systems
- H04N7/173—Analogue secrecy systems; Analogue subscription systems with two-way working, e.g. subscriber sending a programme selection signal
- H04N7/17309—Transmission or handling of upstream communications
- H04N7/17318—Direct or substantially direct transmission and handling of requests
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04N—PICTORIAL COMMUNICATION, e.g. TELEVISION
- H04N7/00—Television systems
- H04N7/22—Adaptations for optical transmission
Definitions
- the present invention relates to the field of communications technologies, and in particular, to a multicast optical network system multicast authority management method and apparatus. Background of the invention
- optical fiber transmission is gradually being widely used.
- the optical fiber has the advantages of transmission frequency bandwidth, large capacity, low loss, strong anti-interference ability, etc., and is very suitable as a transmission medium for high-speed and broadband services.
- PON Passive Optical Network
- PON Passive Optical Network
- PON does not require node equipment at the optical branch point. It only needs to install a simple optical splitter, thus saving fiber cable resources, sharing bandwidth resources, saving equipment room investment, and equipment security. High performance, fast network construction, and low cost of integrated network construction.
- FIG. 1 shows the structure of a PON multicast network.
- the passive optical network accesses signals from the OLT (optical network line terminal), and is assigned to each user ONU/ONT through an ODN (Optical Distribution Network).
- the ONT is an optical network user.
- the terminal is directly located at the user end; and the ONU is an optical network subscriber unit, and is connected to the client end and other networks such as Ethernet, and the multimedia signal can be viewed at the user end.
- the OLT is located at the central office, the ONU/ONT is located at the user end, and the direction of the OLT to the ONU/ONT is the downlink direction, and vice versa. In the downlink direction, the time division multiplexing based multicast mode is adopted.
- the ODN distributes the optical signals input by the OLT to a number of output clients evenly according to the power, and generally has a distribution scheme of 1 minute 16, 1 minute 32 or 1 minute 64.
- FIG. 2 is a flow chart of a method for performing multicast video on demand through a PON access system.
- the OLT allocates an independent public downlink service channel for each multicast group, and each multicast group sends only one multicast data stream, and the multicast data stream only those ONT users send out ONT applications. In order to receive on this channel normally.
- the OLT also generates a public key for each multicast group. When the multicast data stream is sent, the key is used for encryption; and the key and the public service channel number are sent to the multicast receiving authority by using the management channel.
- the ONT uses the key to decrypt the multicast data stream on the public service channel, and receives and forwards the multicast data stream to the user. It is not difficult to see that the method only implements the on-demand application of the users under multiple ONTs under the same PON port. After the OLT sends only one multicast data on each PON port as needed, multiple users can simultaneously perform on-demand broadcasting. Program. Without considering the management of the user's on-demand rights, the user-on-demand process under the ONT is completely uncontrolled, and therefore, it is impossible to develop various multicast services that must be controlled, such as video on demand services, which requires each on the OLT. The on-demand rights of each multicast group of the user under the ONT are separately controlled, and the video on-demand service cannot be extended if the user under the ONT is not controlled.
- the object of the present invention is to provide a method and a device for controlling the multicast rights of a passive optical network system.
- the OLT allocates a public downlink service channel number and a public key to the authorized user.
- the public downlink service channel number and the public key are updated periodically, and the preview time and the preview time in the specified time are set for the user with the preview permission, which is used to control the multicast service authority.
- a multicast privilege management and control method for a PON passive optical network system including: - A, a passive optical network PON system sets a user on-demand permission at an optical network line terminal OLT;
- the OLT allocates the multicast group common downlink service channel number and the public key for the multicast service to the user with the on-demand service.
- the user on-demand permission is determined according to the passive optical network identifier PON ID of the user's optical network user terminal ONT.
- the user rights include: authorization, unauthorized, and/or previewable.
- the step A further includes:
- Al set the preview time and/or limit the number of previews for the specified time for users who can preview.
- the step B includes -
- the OLT sends the public downlink service channel number and a public key.
- the step B includes: starting from the allocation of the public downlink service channel number and the public key, and updating the public downlink service channel number every time the specified time is reached.
- the step B further includes -
- the public key is updated every time the specified time is reached, starting from the allocation of the public downlink service channel number and the public key.
- the method further includes:
- the OLT terminates the processing of the user's on-demand application.
- a multicast optical network system multicast authority control device comprising:
- a user right authentication module configured to set and save user rights, and authenticate the user according to the set user rights in the multicast operation
- the security management module is configured to allocate a multicast group public downlink service channel number and a public key for the user multicast service with the corresponding authority.
- the device also includes:
- the timer is used to time the operation of the downlink service channel number and the public key to the security management module; and/or, the preview management module is configured to control the preview operation of the user with the preview permission.
- the present invention implements the control of the on-demand rights of the PON network access system, and divides the user's on-demand rights into authorized, unauthorized, and previewable, so that only users with corresponding rights can The corresponding service is obtained, and the user with the preview permission can preview the program stream for a short time, so that the commercial video on demand service can be carried out in the PON system.
- FIG. 1 is a schematic structural diagram of a prior art PON multicast network
- FIG. 2 is a flow chart of operation of multicast video on demand in a prior art PON access system
- FIG. 3 is a flow chart of the operation and control operation of the user's on-demand authority in the PON access system of the present invention.
- the core idea of the present invention is to provide a multicast optical network system multicast authority management method and device.
- the OLT By setting a user's on-demand permission on the OLT, for an authorized user, the OLT allocates a public downlink service channel number and a public key to the user, and Timing update realizes the control of multicast service permissions.
- the present invention provides a method for controlling the multicast rights of a passive optical network system.
- an operation flowchart of the method according to the present invention is provided.
- the method for controlling the multicast rights of the PON system specifically includes: Step 10: The OLT receives And processing the on-demand request of the user under the ONT;
- the user can send the on-demand request through the IGMP (Internet Group Management Protocol) protocol;
- IGMP Internet Group Management Protocol
- Step 11 The OLT authenticates the user.
- the user's on-demand rights can be set in advance on the OLT.
- the user permission table for each multicast group is configured for each user, and the on-demand rights of each user are specified according to the PON ID of each user's ONT, and the user permission table defines the user's on-demand rights. : Authorized, Unlicensed, Previewable, etc., and sets the number of previews for each preview time and/or specified time for previewable users;
- the OLT After receiving the on-demand request of the user, the OLT obtains the PON ID of the ONT of the user, and determines the on-demand permission of the user according to the PON ID according to the user permission table;
- Step 12 If the user is authorized or has preview permission, the OLT searches whether the local database has the multicast group data stream requested by the user;
- the OLT searches for a multicast group data stream requested by the user in the local database according to the user's request for on-demand; the local database is used to store local multicast group data stream information;
- Step 13 If the multicast group data stream is not available, the OLT requests the upstream device to obtain the multicast group data stream. If the OLT does not find the multicast group data stream requested by the user in the local database, the OLT goes upstream.
- the device applies for obtaining the multicast group data stream;
- the upstream device includes a network device that can obtain a multicast group data stream, such as a routing server and a broadband access server;
- Step 14 The OLT allocates a public downlink service channel number and a public key for the multicast group data flow, and starts timing, determining whether the public downlink service channel number and the key are timed out;
- the OLT After obtaining the multicast group data stream requested by the user, the OLT allocates a public downlink service channel number and a public key for the multicast group data stream, and the OLT starts timing after generating the public downlink service channel number and the public key. It is used to determine whether the current public downlink service channel number and the key are timed out, and update the public downlink service channel number and the public key every time the specified time is reached, that is, the OLT periodically replaces the public downlink service channel number and the public key, and the specified time value may be Determined according to needs; for simple implementation, the replacement operation can only replace the public key, and keep the public downlink service channel number unchanged;
- Step 15 The OLT sends an encrypted multicast data stream on the allocated public downlink service channel.
- the multicast group data requested by the user is sent on the public downlink service channel that is allocated, and the multicast group data stream is encrypted by using the allocated public key; if the OLT is in the foregoing step 12 If the multicast group data stream requested by the user is found in the local database, the operation of step 15 is directly performed;
- Step 16 After the above operation is completed, determine whether the user has preview permission.
- Step 17 If the user has the preview permission, determine whether the preview time and the preview number have arrived; if the user has the preview permission, judge according to the preview time specified in the user permission table and the preview number in the specified time Whether the user's preview time and/or preview number has arrived; Step 18: If it is determined that the preview time and/or the preview number has expired, the OLT stops sending the public downlink service channel number and the key of the multicast group data stream to the ONT of the user;
- the OLT stops sending the public downlink service channel number and the key of the multicast group data stream to the ONT of the user, and the preview operation of the user is prohibited;
- Step 19 If the user does not have the preview permission, that is, the user right is authorized, or the above-mentioned judgment that the preview time and the preview number of the user do not reach the specified limit, the OLT passes the public downlink service channel number of the multicast group and the public through the management channel. The key is sent to the user's ONT;
- the multicast group data stream requested by the user has been sent through the public downlink service channel allocated by the OLT, and the ONT of the user can receive the multicast group data stream information only after obtaining the public downlink service channel number and the key;
- Step 20 If it is determined in step 11 that the user is an unauthorized user, the OLT terminates the processing of the on-demand application of the user.
- the present invention also provides a multicast privilege management and control device for a passive optical network system.
- the device is disposed at the OLT end, and includes the following device-user privilege authentication module, configured to set user rights according to the PON ID of each user, in the multicast operation.
- the user authority is authenticated according to the user PON ID; the pre-set authority may be in the form of a user permission table, and the user's on-demand rights are specified in the user permission table: authorization, unauthorized, previewable, etc. Levels, and set the number of previews per preview time and/or specified time for users who can preview;
- a security management module configured to allocate a multicast group public downlink service channel number and a public key for the user multicast service with the corresponding authority
- the timer is configured to time the operation of the downlink service channel number and the public key to the security management module, so that the security management module can periodically update the delivered information.
- the preview control module is configured to control the preview operation of the user with the preview permission, including detecting whether the preview operation of the preview user exceeds the duration specified in the user authorization identification module, and whether the preview number within the specified time exceeds the user authorization identification module The number of times specified in the table.
- the present invention implements the control of the on-demand process of the PON network access system, so that only users with corresponding rights can obtain corresponding services, so that commercial video on demand services can be carried out in the PON system.
Landscapes
- Engineering & Computer Science (AREA)
- Signal Processing (AREA)
- Multimedia (AREA)
- Computer Networks & Wireless Communication (AREA)
- Databases & Information Systems (AREA)
- Computer Security & Cryptography (AREA)
- Computing Systems (AREA)
- Physics & Mathematics (AREA)
- Electromagnetism (AREA)
- Human Computer Interaction (AREA)
- Small-Scale Networks (AREA)
Abstract
Description
一种无源光网络系统组播权限管控方法及装置 Multicast authority management and control method and device for passive optical network system
技术领域 Technical field
本发明涉及通信技术领域,尤其涉及一种无源光网络系统组播权限管控方法及装置。 发明背景 The present invention relates to the field of communications technologies, and in particular, to a multicast optical network system multicast authority management method and apparatus. Background of the invention
近年来, 随着互联网的快速发展和个人电脑的普及, Internet数据流的激增加剧了接 入部分的容量限制,接入网中传统的铜缆接入方式显然已经无法满足通信业务增长的需 求。 为此, 光纤传输逐渐被广泛应用, 光纤具有传输频带宽、 容量大、 损耗低、 抗干扰 能力强等优点, 非常适合作为高速、 宽带业务的传输媒体。 在各种光接入技术中, PON (无源光网络) 由于釆用无源节点, 具有敷设和运行维护成本低、 对业务透明及易于升 级等优点而备受关注。 In recent years, with the rapid development of the Internet and the popularity of personal computers, the surge in Internet data flow has dramatically limited the capacity of the access part. The traditional copper access method in the access network is obviously unable to meet the growth of communication services. For this reason, optical fiber transmission is gradually being widely used. The optical fiber has the advantages of transmission frequency bandwidth, large capacity, low loss, strong anti-interference ability, etc., and is very suitable as a transmission medium for high-speed and broadband services. Among various optical access technologies, PON (Passive Optical Network) has attracted attention due to the advantages of low cost of laying, operation and maintenance, transparency to services, and easy upgrade due to the use of passive nodes.
PON作为一种新兴的宽带接入光纤技术, 其在光分支点不需要节点设备, 只需安装 一个简单的光分支器即可, 因此具有节省光缆资源、 带宽资源共享、 节省机房投资、 设 备安全性高、 建网速度快、 综合建网成本低等优点。 As an emerging broadband access fiber technology, PON does not require node equipment at the optical branch point. It only needs to install a simple optical splitter, thus saving fiber cable resources, sharing bandwidth resources, saving equipment room investment, and equipment security. High performance, fast network construction, and low cost of integrated network construction.
同时, 随着通信技术的快速发展, 数字多媒体信号也越来越受到人们的青睐, 通过 接入网络实现视频或音频的点播、组播和广播等应用, 将更多地出现在目前和以后的网 络接入系统中。 At the same time, with the rapid development of communication technology, digital multimedia signals are also increasingly favored by people. Applications such as video or audio on-demand, multicast and broadcast through access networks will appear more and more in the present and future. In the network access system.
如图 1所示为 PON组播网络结构示意图, 无源光网络从 OLT (光网络线路终端) 接 入信号,通过 ODN (光分配网络)分配给各用户端 ONU/ ONT, ONT为光网络用户终端, 直接位于用户端; 而 ONU为光网络用户单元, 与用户端及其它的网络如以太网相连, 在 用户端可收看多媒体信号。其中 OLT位于局端, ONU/ONT位于用户端, OLT到 ONU/ONT 的方向为下行方向, 反之为上行方向。 下行方向采用基于时分复用的组播方式, ODN 将由 OLT输入的光信号按功率平均分配到若干输出用户端, 一般有 1分 16、 1分 32或 1分 64等分配方案。 Figure 1 shows the structure of a PON multicast network. The passive optical network accesses signals from the OLT (optical network line terminal), and is assigned to each user ONU/ONT through an ODN (Optical Distribution Network). The ONT is an optical network user. The terminal is directly located at the user end; and the ONU is an optical network subscriber unit, and is connected to the client end and other networks such as Ethernet, and the multimedia signal can be viewed at the user end. The OLT is located at the central office, the ONU/ONT is located at the user end, and the direction of the OLT to the ONU/ONT is the downlink direction, and vice versa. In the downlink direction, the time division multiplexing based multicast mode is adopted. The ODN distributes the optical signals input by the OLT to a number of output clients evenly according to the power, and generally has a distribution scheme of 1 minute 16, 1 minute 32 or 1 minute 64.
该现有的组播视频点播操作过程参照图 2所示, 图 2为一种通过 PON接入系统进行组 播视频点播的方法流程。 图中, OLT为每个组播组分配一个独立公用下行业务通道, 每 个组播组只发送一份组播数据流,并且该组播数据流只有那些下挂的用户发出了点播申 请的 ONT才能正常在该通道上接收。 OLT还要为每个组播组产生一个公共密钥, 在发送 组播数据流时, 利用该密钥进行加密; 并将该密钥和公用业务通道号利用管理通道发送 给具有组播接收权限的 ONT, ONT利用该密钥在公用业务通道上对该组播数据流进行解 密, 接收并向用户转发该组播数据流。 不难看出, 该方法只是实现了同一个 PON口下的多个 ONT下的用户发出点播申请 后, OLT根据需要在每个 PON口上只发送一份组播数据就可 实现多用户同时进行点播 的方案。而没有考虑对用户的点播权限进行管理,ONT下的用户点播的过程完全不受控, 因此,无法幵展各种必须受控的组播业务,如视频点播业务,它要求在 OLT上对每个 ONT 下的用户的每个组播组的点播权限分别进行控制,而在 ONT下的用户不受控的情况下无 法幵展该视频点播业务。 The existing multicast video on demand operation process is shown in FIG. 2. FIG. 2 is a flow chart of a method for performing multicast video on demand through a PON access system. In the figure, the OLT allocates an independent public downlink service channel for each multicast group, and each multicast group sends only one multicast data stream, and the multicast data stream only those ONT users send out ONT applications. In order to receive on this channel normally. The OLT also generates a public key for each multicast group. When the multicast data stream is sent, the key is used for encryption; and the key and the public service channel number are sent to the multicast receiving authority by using the management channel. The ONT, the ONT uses the key to decrypt the multicast data stream on the public service channel, and receives and forwards the multicast data stream to the user. It is not difficult to see that the method only implements the on-demand application of the users under multiple ONTs under the same PON port. After the OLT sends only one multicast data on each PON port as needed, multiple users can simultaneously perform on-demand broadcasting. Program. Without considering the management of the user's on-demand rights, the user-on-demand process under the ONT is completely uncontrolled, and therefore, it is impossible to develop various multicast services that must be controlled, such as video on demand services, which requires each on the OLT. The on-demand rights of each multicast group of the user under the ONT are separately controlled, and the video on-demand service cannot be extended if the user under the ONT is not controlled.
因此, 需要提供一种方法可以对点播端各用户的权限进行管控。 Therefore, it is necessary to provide a method for controlling the rights of each user on the on-demand side.
发明内容 Summary of the invention
本发明的目的在于提供一种无源光网络系统组播权限管控方法及装置, 通过在 OLT 上设置用户点播权限, 对于已授权用户, OLT为用户分配公用下行业务通道号和公用密 钥, 并定时更新公用下行业务通道号和公用密钥, 且为具有预览权限的用户设置每次预 览时间及规定时间内的预览次数, 用来实现对组播业务权限的管控。 The object of the present invention is to provide a method and a device for controlling the multicast rights of a passive optical network system. By setting a user-on-demand right on the OLT, the OLT allocates a public downlink service channel number and a public key to the authorized user. The public downlink service channel number and the public key are updated periodically, and the preview time and the preview time in the specified time are set for the user with the preview permission, which is used to control the multicast service authority.
本发明的目的是通过以下技术方案实现的: The object of the invention is achieved by the following technical solutions:
一种 PON无源光网络系统组播权限管控方法, 包括- A、 无源光网络 PON系统在光网络线路终端 OLT设置用户点播权限; A multicast privilege management and control method for a PON passive optical network system, including: - A, a passive optical network PON system sets a user on-demand permission at an optical network line terminal OLT;
B、 在用户开展组播业务过程中, OLT为具有点播权限的用户分配用于开展组播业 务的组播组公用下行业务通道号及公用密钥。 B. In the process of the user performing the multicast service, the OLT allocates the multicast group common downlink service channel number and the public key for the multicast service to the user with the on-demand service.
所述的用户点播权限是根据用户的光网络用户终端 ONT的无源光网络标识 PON ID 确定。 The user on-demand permission is determined according to the passive optical network identifier PON ID of the user's optical network user terminal ONT.
所述的用户权限包括: 授权、 非授权和 /或可预览。 The user rights include: authorization, unauthorized, and/or previewable.
所述步骤 A进一步包括: The step A further includes:
Al、 为可预览的用户设置每次预览时间和 /或限制规定时间内的预览次数。 Al, set the preview time and/or limit the number of previews for the specified time for users who can preview.
所述步骤 B包括- The step B includes -
Bl、 根据设置的用户点播权限确定所述用户为授权用户; 或具有预览权限的用户, 且所述具有预览权限的用户的预览时间没有达到规定上限和 /或规定时间内的预览次数 没有达到规定上限; Bl, determining, according to the set user-on-demand permission, that the user is an authorized user; or a user having preview permission, and the preview time of the user with the preview permission does not reach the prescribed upper limit and/or the preview number within the specified time does not meet the requirement Upper limit
B2、 OLT发送所述公用下行业务通道号及公用密钥。 B2. The OLT sends the public downlink service channel number and a public key.
所述步骤 B包括: 从分配公用下行业务通道号及公用密钥幵始计时, 每达到规定时 间更新所述公用下行业务通道号。 The step B includes: starting from the allocation of the public downlink service channel number and the public key, and updating the public downlink service channel number every time the specified time is reached.
所述步骤 B进一歩包括- 从分配公用下行业务通道号及公用密钥开始计时,每达到规定时间更新所述公用密 钥。 The step B further includes - The public key is updated every time the specified time is reached, starting from the allocation of the public downlink service channel number and the public key.
所述方法还包括: The method further includes:
确定该用户为非授权用户, 则 OLT终止对该用户的点播申请的处理。 If the user is determined to be an unauthorized user, the OLT terminates the processing of the user's on-demand application.
一种无源光网络系统组播权限管控装置, 包括: A multicast optical network system multicast authority control device, comprising:
用户权限鉴定模块, 用于设置并保存用户权限, 在组播操作中根据所述设置的用户 权限对用户进行鉴权; a user right authentication module, configured to set and save user rights, and authenticate the user according to the set user rights in the multicast operation;
安全管理模块,用于为具有相应权限的用户组播业务分配组播组公用下行业务通道 号及公用密钥。 The security management module is configured to allocate a multicast group public downlink service channel number and a public key for the user multicast service with the corresponding authority.
所述装置还包括: The device also includes:
计时器, 用于对安全管理模块下发下行业务通道号及公用密钥的操作计时; 和 /或, 预览管控模块, 用于对具有预览权限的用户的预览操作进行管控。 The timer is used to time the operation of the downlink service channel number and the public key to the security management module; and/or, the preview management module is configured to control the preview operation of the user with the preview permission.
由上述本发明提供的技术方案可以看出,本发明实现了对 PON网络接入系统用户点 播权限的管控, 将用户点播权限分为授权、 非授权、 可预览, 使只有拥有相应权限的用 户才能得到相应的服务, 并使具有预览权限的用户短时间预览节目流, 使得在 PON系统 中能够开展商业的视频点播业务。 It can be seen from the technical solution provided by the present invention that the present invention implements the control of the on-demand rights of the PON network access system, and divides the user's on-demand rights into authorized, unauthorized, and previewable, so that only users with corresponding rights can The corresponding service is obtained, and the user with the preview permission can preview the program stream for a short time, so that the commercial video on demand service can be carried out in the PON system.
附图简要说明 BRIEF DESCRIPTION OF THE DRAWINGS
图 1为现有技术 PON组播网络结构示意图; 1 is a schematic structural diagram of a prior art PON multicast network;
图 2为现有技术 PON接入系统进行组播视频点播的操作流程图; 2 is a flow chart of operation of multicast video on demand in a prior art PON access system;
图 3为本发明 PON接入系统实现用户点播权限管控操作流程图。 FIG. 3 is a flow chart of the operation and control operation of the user's on-demand authority in the PON access system of the present invention.
实施本发明的方式 Mode for carrying out the invention
本发明的核心思想是提供一种无源光网络系统组播权限管控方法及装置, 通过在 OLT上设置用户点播权限, 对于授权用户, OLT为用户分配公用下行业务通道号和公用 密钥, 并定时更新, 实现了对组播业务权限的管控。 The core idea of the present invention is to provide a multicast optical network system multicast authority management method and device. By setting a user's on-demand permission on the OLT, for an authorized user, the OLT allocates a public downlink service channel number and a public key to the user, and Timing update realizes the control of multicast service permissions.
本发明提供了一种无源光网络系统组播权限管控方法, 参照图 3所示为本发明所述 方法的操作流程图, 该 PON系统组播权限管控方法具体包括- 步骤 10: OLT收到并处理 ONT下的用户的点播请求; The present invention provides a method for controlling the multicast rights of a passive optical network system. Referring to FIG. 3, an operation flowchart of the method according to the present invention is provided. The method for controlling the multicast rights of the PON system specifically includes: Step 10: The OLT receives And processing the on-demand request of the user under the ONT;
用户可通过 IGMP (互联网组管理协议)协议发送该点播请求; The user can send the on-demand request through the IGMP (Internet Group Management Protocol) protocol;
步骤 11 : OLT对该用户进行鉴权; 可预先在 OLT设置各用户点播权限, 如配置各用户针对各个组播组的用户权限表, 根据各用户的 ONT的 PON ID规定各用户的点播权限, 该用户权限表规定用户的点播权 限分为: 授权、 非授权、 可预览等三个级别, 并对可预览的用户设置每次预览时间和 / 或规定时间内的预览次数; Step 11: The OLT authenticates the user. The user's on-demand rights can be set in advance on the OLT. For example, the user permission table for each multicast group is configured for each user, and the on-demand rights of each user are specified according to the PON ID of each user's ONT, and the user permission table defines the user's on-demand rights. : Authorized, Unlicensed, Previewable, etc., and sets the number of previews for each preview time and/or specified time for previewable users;
OLT在收到用户的点播请求后, 获取该用户的 ONT的 PON ID, 根据该 PON ID对照 上述用户权限表确定该用户的点播权限; After receiving the on-demand request of the user, the OLT obtains the PON ID of the ONT of the user, and determines the on-demand permission of the user according to the PON ID according to the user permission table;
步骤 12: 若上述用户已被授权或具有预览权限, 则 OLT查找本地资料库是否有该用 户请求的组播组数据流; Step 12: If the user is authorized or has preview permission, the OLT searches whether the local database has the multicast group data stream requested by the user;
OLT根据该用户的点播请求查找本地资料库中是否存在该用户请求的组播组数据 流; 所述本地资料库用于存储本地组播组数据流信息; The OLT searches for a multicast group data stream requested by the user in the local database according to the user's request for on-demand; the local database is used to store local multicast group data stream information;
步骤 13 : 若没有该组播组数据流, 则 OLT向上游设备申请获得该组播组数据流; 若 OLT没有在本地资料库中查找到该用户请求的组播组数据流, 则 OLT向上游设备 申请获得该组播组数据流; 所述上游设备包括路由服务器、 宽带接入服务器等可以获得 组播组数据流的网络设备; Step 13: If the multicast group data stream is not available, the OLT requests the upstream device to obtain the multicast group data stream. If the OLT does not find the multicast group data stream requested by the user in the local database, the OLT goes upstream. The device applies for obtaining the multicast group data stream; the upstream device includes a network device that can obtain a multicast group data stream, such as a routing server and a broadband access server;
步骤 14: OLT为该组播组数据流分配一个公用下行业务通道号和公用密钥, 并开始 计时, 判断公用下行业务通道号和密钥是否超时; Step 14: The OLT allocates a public downlink service channel number and a public key for the multicast group data flow, and starts timing, determining whether the public downlink service channel number and the key are timed out;
获取上述用户请求的组播组数据流后, OLT为该组播组数据流分配一个公用下行业 务通道号及公用密钥, OLT在生成的公用下行业务通道号及公用密钥后就开始计时, 用 于判断当前公用下行业务通道号和密钥是否超时,每达到规定时间更新该公用下行业务 通道号及公用密钥, 即 OLT定时更换公用下行业务通道号及公用密钥, 该规定时间值可 根据需要确定; 为实现起来简单, 该更换操作可以只更换公用密钥, 而保持公用下行业 务通道号不变; After obtaining the multicast group data stream requested by the user, the OLT allocates a public downlink service channel number and a public key for the multicast group data stream, and the OLT starts timing after generating the public downlink service channel number and the public key. It is used to determine whether the current public downlink service channel number and the key are timed out, and update the public downlink service channel number and the public key every time the specified time is reached, that is, the OLT periodically replaces the public downlink service channel number and the public key, and the specified time value may be Determined according to needs; for simple implementation, the replacement operation can only replace the public key, and keep the public downlink service channel number unchanged;
步骤 15: OLT在上述分配的公用下行业务通道上发送加密组播数据流; Step 15: The OLT sends an encrypted multicast data stream on the allocated public downlink service channel.
OLT完成上述操作后, 在上述分配的公用下行业务通道上发送上述用户请求的组播 组数据,并利用上述分配的公用密钥对该组播组数据流进行加密;若上述步骤 12中, OLT 在本地资料库中査找到该用户请求的组播组数据流, 则直接进行步骤 15的操作; After the OLT completes the foregoing operation, the multicast group data requested by the user is sent on the public downlink service channel that is allocated, and the multicast group data stream is encrypted by using the allocated public key; if the OLT is in the foregoing step 12 If the multicast group data stream requested by the user is found in the local database, the operation of step 15 is directly performed;
步骤 16: 上述操作完成后, 判断该用户是否具有预览权限; Step 16: After the above operation is completed, determine whether the user has preview permission.
步骤 17: 若所述用户具有预览权限, 则判断预览时间及预览次数是否已到; 若所述用户具有预览权限,则根据用户权限表中规定的每次预览时间及规定时间内 的预览次数判断该用户的预览时间和 /或预览次数是否已到; 步骤 18:若判断上述预览时间和 /或预览次数已到,则 OLT停止向该用户的 ONT发送 该组播组数据流的公用下行业务通道号和密钥; Step 17: If the user has the preview permission, determine whether the preview time and the preview number have arrived; if the user has the preview permission, judge according to the preview time specified in the user permission table and the preview number in the specified time Whether the user's preview time and/or preview number has arrived; Step 18: If it is determined that the preview time and/or the preview number has expired, the OLT stops sending the public downlink service channel number and the key of the multicast group data stream to the ONT of the user;
当判断上述预览时间和 /或预览次数已到时, OLT停止向该用户的 ONT发送该组播组 数据流的公用下行业务通道号和密钥, 该用户的预览操作将被禁止; When it is determined that the preview time and/or the preview number have expired, the OLT stops sending the public downlink service channel number and the key of the multicast group data stream to the ONT of the user, and the preview operation of the user is prohibited;
步骤 19: 若该用户没有预览权限, 即该用户权限为授权, 或上述判断该用户的预览 时间及预览次数没有达到规定 限, 则 OLT通过管理通道将组播组的公用下行业务通道 号和公用密钥发送给用户的 ONT; Step 19: If the user does not have the preview permission, that is, the user right is authorized, or the above-mentioned judgment that the preview time and the preview number of the user do not reach the specified limit, the OLT passes the public downlink service channel number of the multicast group and the public through the management channel. The key is sent to the user's ONT;
, 由于该用户请求的组播组数据流已通过 OLT分配的公用下行业务通道发送, 该用户 的 ONT只有得到该公用下行业务通道号及密钥才能接收该组播组数据流信息; The multicast group data stream requested by the user has been sent through the public downlink service channel allocated by the OLT, and the ONT of the user can receive the multicast group data stream information only after obtaining the public downlink service channel number and the key;
步骤 20: 若上述步骤 11中判断该用户为非授权用户, 则 OLT终止对该用户的点播申 请的处理。 Step 20: If it is determined in step 11 that the user is an unauthorized user, the OLT terminates the processing of the on-demand application of the user.
本发明还提供一种无源光网络系统组播权限管控装置, 所述装置设置于 OLT端, 包 括如下设备- 用户权限鉴定模块, 用于根据各用户的 PON ID设置用户权限, 在组播操作中根据 用户 PON ID对用户权限进行鉴定; 所述预先设定的权限可采用用户权限表的形式, 在 所述用户权限表中规定用户的点播权限分为: 授权、 非授权、 可预览等三个级别, 并对 可预览的用户设置每次预览时间和 /或规定时间内的预览次数; The present invention also provides a multicast privilege management and control device for a passive optical network system. The device is disposed at the OLT end, and includes the following device-user privilege authentication module, configured to set user rights according to the PON ID of each user, in the multicast operation. The user authority is authenticated according to the user PON ID; the pre-set authority may be in the form of a user permission table, and the user's on-demand rights are specified in the user permission table: authorization, unauthorized, previewable, etc. Levels, and set the number of previews per preview time and/or specified time for users who can preview;
安全管理模块,用于为具有相应权限的用户组播业务分配组播组公用下行业务通道 号及公用密钥; a security management module, configured to allocate a multicast group public downlink service channel number and a public key for the user multicast service with the corresponding authority;
计时器, 用于对安全管理模块下发下行业务通道号及公用密钥的操作计时, 以便安 全管理模块可以定期对下发的所述信息进行更新; The timer is configured to time the operation of the downlink service channel number and the public key to the security management module, so that the security management module can periodically update the delivered information.
预览管控模块, 用于对具有预览权限的用户的预览操作进行管控, 包括检测预览用 户的预览操作是否超过用户权限鉴定模块中规定的时长,规定时间内的预览次数是否超 过所述用户权限鉴定模块中规定的次数等。 The preview control module is configured to control the preview operation of the user with the preview permission, including detecting whether the preview operation of the preview user exceeds the duration specified in the user authorization identification module, and whether the preview number within the specified time exceeds the user authorization identification module The number of times specified in the table.
综上所述, 本发明实现了 PON网络接入系统用户点播过程的受控, 使只有拥有相应 权限的用户才能得到相应的服务, 使得在 PON系统中能够开展商业的视频点播业务。 In summary, the present invention implements the control of the on-demand process of the PON network access system, so that only users with corresponding rights can obtain corresponding services, so that commercial video on demand services can be carried out in the PON system.
以上所述, 仅为本发明较佳的具体实施方式, 但本发明的保护范围并不局限于此, 任何熟悉本技术领域的技术人员在本发明揭露的技术范围内, 可轻易想到的变化或替 换, 都应涵盖在本发明的保护范围之内。 因此, 本发明的保护范围应该以权利要求的保 护范围为准。 The above is only a preferred embodiment of the present invention, but the scope of the present invention is not limited thereto, and any person skilled in the art can easily think of changes or within the technical scope disclosed by the present invention. Alternatives are intended to be covered by the scope of the present invention. Therefore, the scope of protection of the present invention should be determined by the scope of the claims.
Claims
Applications Claiming Priority (2)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| CN 200510103487 CN1866857A (en) | 2005-09-19 | 2005-09-19 | PON system multicast authority managing and controlling method |
| CN200510103487.7 | 2005-09-19 |
Publications (1)
| Publication Number | Publication Date |
|---|---|
| WO2007033553A1 true WO2007033553A1 (en) | 2007-03-29 |
Family
ID=37425748
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| PCT/CN2006/001663 Ceased WO2007033553A1 (en) | 2005-09-19 | 2006-07-13 | A multicast managing method and the device thereof in pon system |
Country Status (2)
| Country | Link |
|---|---|
| CN (1) | CN1866857A (en) |
| WO (1) | WO2007033553A1 (en) |
Cited By (3)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| WO2011131132A1 (en) * | 2010-04-23 | 2011-10-27 | 中兴通讯股份有限公司 | Method and system for implementing multicast preview control in optical network |
| US8813191B2 (en) | 2006-02-15 | 2014-08-19 | Thomson Licensing | Method and apparatus for controlling the number of devices installed in an authorized domain |
| CN114667051A (en) * | 2022-05-25 | 2022-06-24 | 绍兴中科通信设备有限公司 | Anti-interference optical module |
Families Citing this family (5)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN101056167B (en) * | 2007-05-31 | 2010-08-18 | 中兴通讯股份有限公司 | A Gigabit Passive Optical Network Key Exchange and Switching Method |
| CN101321073B (en) * | 2007-06-04 | 2010-09-08 | 华为技术有限公司 | Method and device for multicast service authorization control |
| CN101771901B (en) * | 2008-12-31 | 2013-04-24 | 华为技术有限公司 | Method of multicast permission control in passive optical network, system and multi-dwelling unit |
| CN102136907A (en) * | 2010-01-25 | 2011-07-27 | 中兴通讯股份有限公司 | Multicast service encryption method and device for passive optical network system |
| CN103731763A (en) * | 2014-01-14 | 2014-04-16 | 上海斐讯数据通信技术有限公司 | Method for achieving controllable multicast previewing authority in gigabit passive optical network (GPON) system and GPON system |
Citations (5)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN1558676A (en) * | 2004-01-19 | 2004-12-29 | 大唐电信科技股份有限公司光通信分公 | Multimedia information demanding system and demanding method |
| CN1578200A (en) * | 2003-07-14 | 2005-02-09 | 三星电子株式会社 | Multicast transmission method in gem mode in gigabit-capable passive optical network and method of processing frame |
| CN1588839A (en) * | 2004-07-29 | 2005-03-02 | 北京航空航天大学 | Safety group broadcast management system and method |
| US20050135365A1 (en) * | 2003-12-17 | 2005-06-23 | Sung Jung S. | Method for supporting multicast service in ethernet passive optical network system |
| JP2005197947A (en) * | 2004-01-06 | 2005-07-21 | Mitsubishi Electric Corp | Terminal station apparatus and terminal apparatus |
-
2005
- 2005-09-19 CN CN 200510103487 patent/CN1866857A/en active Pending
-
2006
- 2006-07-13 WO PCT/CN2006/001663 patent/WO2007033553A1/en not_active Ceased
Patent Citations (5)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN1578200A (en) * | 2003-07-14 | 2005-02-09 | 三星电子株式会社 | Multicast transmission method in gem mode in gigabit-capable passive optical network and method of processing frame |
| US20050135365A1 (en) * | 2003-12-17 | 2005-06-23 | Sung Jung S. | Method for supporting multicast service in ethernet passive optical network system |
| JP2005197947A (en) * | 2004-01-06 | 2005-07-21 | Mitsubishi Electric Corp | Terminal station apparatus and terminal apparatus |
| CN1558676A (en) * | 2004-01-19 | 2004-12-29 | 大唐电信科技股份有限公司光通信分公 | Multimedia information demanding system and demanding method |
| CN1588839A (en) * | 2004-07-29 | 2005-03-02 | 北京航空航天大学 | Safety group broadcast management system and method |
Cited By (4)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US8813191B2 (en) | 2006-02-15 | 2014-08-19 | Thomson Licensing | Method and apparatus for controlling the number of devices installed in an authorized domain |
| WO2011131132A1 (en) * | 2010-04-23 | 2011-10-27 | 中兴通讯股份有限公司 | Method and system for implementing multicast preview control in optical network |
| CN114667051A (en) * | 2022-05-25 | 2022-06-24 | 绍兴中科通信设备有限公司 | Anti-interference optical module |
| CN114667051B (en) * | 2022-05-25 | 2022-08-30 | 绍兴中科通信设备有限公司 | Anti-interference optical module |
Also Published As
| Publication number | Publication date |
|---|---|
| CN1866857A (en) | 2006-11-22 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| CN100536399C (en) | A distributed controllable multicast system of passive optical network and its implementation method | |
| EP1340336B1 (en) | Access control enhancements, network access unit and service provider server for delivery of video and other services | |
| CA2473324C (en) | System and method for managing provisioning parameters in a cable network | |
| US7924835B2 (en) | Method and device for providing multicast services to multiple customers | |
| EP1715628B1 (en) | A method for realizing the multicast service | |
| JP2004135281A (en) | Stable multicast flow | |
| US11968483B2 (en) | Mutually secure optical data network and method | |
| CN101394277A (en) | Method and device for realizing multicast authentication | |
| JP2006238433A (en) | System and method for providing Internet protocol-based broadcast service | |
| CN101414920A (en) | Method for implementing multicast preview in point-to-multi-point optical network | |
| WO2007033553A1 (en) | A multicast managing method and the device thereof in pon system | |
| WO2011088700A1 (en) | Method and device for encrypting multicast service in passive optical network system | |
| CA2514355A1 (en) | Method and apparatus for providing channel key data | |
| US20170063542A1 (en) | Mutually secure optical data network and method | |
| CN101547086A (en) | Method, system and device for broadband access network multicast control | |
| KR100670786B1 (en) | Apparatus and method for selectively providing IP broadcast service using subscriber profile | |
| WO2012100497A1 (en) | Method and system for configuring white list in coaxial ethernet system | |
| CN101267681A (en) | A passive optical network access device and multicast control method | |
| CN113014554A (en) | Automatic switching method and system for internet access channel, ONU (optical network unit) equipment and OLT (optical line terminal) equipment | |
| CN101409628A (en) | Method for implementing multicast control in point-to-multi-point optical network | |
| KR100606095B1 (en) | Method and device for transmitting encryption key after subscriber authentication in passive optical subscriber network system | |
| JP4889984B2 (en) | Communication system and communication method | |
| JP2009510895A (en) | Method and apparatus for controlling security channel in Ethernet Pong | |
| CN101227309B (en) | Next Generation Network Multicast Service Admission Control Method | |
| WO2011131132A1 (en) | Method and system for implementing multicast preview control in optical network |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| 121 | Ep: the epo has been informed by wipo that ep was designated in this application | ||
| NENP | Non-entry into the national phase |
Ref country code: DE |
|
| 122 | Ep: pct application non-entry in european phase |
Ref document number: 06761415 Country of ref document: EP Kind code of ref document: A1 |