Go to Main Contents

Campus network 5G Two-area network certification administration

A campus identity, 5G network and in-school operations.

The operator is responsible for the construction of a 5G network, through which schools manage access, accessibility and timely adaptation of competencies following changes in identity through the 5G network Authentication Gateway and the unified identity platform.

Capacity Overview

3 times

Credible ID check.

Internet users, cell phone numbers, campus identity check-up.

2

Certification build mode

Harmonization of the identity of the campus or use of an independent certification platform

Full cycle

School identity management

Applications, bindings, clearances, authorizations, changes and write-offs

End-to-end

CPE Terminal Control

Harmonization of address, accreditation, rights, behaviour and logs

• Building relationships

See first: Operators build networks, schools manage identity and business

The two-area network does not create a separate campus identity but links the operator ' s 5G access capability to existing identification, competencies and business systems in schools.

01

5G Terminal and CPE

The WiFi, cable and object network terminals (CLIC) that are attached to the cell phone, tablet and CPE launch access.

02

Operator 5G Network

Operators provide 5G access, proprietary user recognition and network capabilities such as DNN and UPF.

03

5G Network Authentication Gateway

Relay of operator network and campus side to perform number verification, authentication connection, strategic control and log retention.

04

School identity and operations

The school has a unified management of teacher and student status, the school situation, access rights and entry points for application in schools.

Operator side

Provision of 5G wireless access, core network, exclusive web user identification and out-of-school flow diversion conditions.

Campus side.

Manage teacher/student identification, number binding, network qualification, resource rights, terminal behaviour and operating logbooks.

• Value of construction

After 5G access, the school still has no vision and no control.

Connect operator numbers, campus personnel and actual terminals to a manageable identity link, allowing the 5G network to operate from “network accessible” into “identity control, access control, processability”.

01

I'm gonna have to get a little more personal.

The operator number is independent of the student/teacher status on campus, and it is difficult for schools to judge whether current entrants remain effective.

02

Life cycle is not synchronized

Changes in enrolment, transfer and school leaving status are not communicated to the 5G network in time and can easily lead to delays in access.

03

Intransparent access process

5G Users have fragmented access strategies and records of use, and schools lack a uniform operating and retroactive entry.

04

CPE Hang Terminal Not visible

The NAT of CPE will hide the hanger device, making it difficult to distinguish between real terminal identity, access and behaviour.

• Credible access

Three tests to confirm the identity of the network, its number and campus.

The three-tier verification addresses the “reliability” of the “accessibility” to specialized networks and “required with in-school identity and authority”, together forming a credible access link for teachers and students.

1

:: First weight: operator network verification

Confirm if it's a web user.

The operator-side identification number or user has a campus 5G network access qualification.

2

Second weight: verification of this machine's number

Confirm if it's my number.

The ability to verify terminal and number relationships through the home number capability reduces loan and risk of exposure to account numbers.

3

:: School ID

Confirm if it's a valid teacher or student.

The source of the school identity, the identification of the person, the status of the school and the range of resources available.

The specific links of the current computer number and three forensics will need to be identified in conjunction with the operator ' s open range of competencies, the current network interface and the school identity system.

Core competencies

Complete management of 5G users from application to school leaving

From identity mapping, eligibility clearance to strategy implementation and logbacks, management actions scattered over the operator network, campus identification systems and end-side are linked into a main line.

01

Move IP and Identity Map

Create a 5G connection between mobile addresses, cellular numbers and campus accounts to provide an identity base for strategy implementation and problems retroactively.

02

5G Self-help applications and clearances

Support for online applications, number binding, eligibility clearance and authorization to teachers and students to reduce offline registration and double entry.

03

Double-modern identification

Both existing unified identity platforms for the host schools and independent certification models based on projects can be used to accommodate different stages of construction.

04

Identity synchronized throughout life cycle

Reconciling the network of competencies and resources around enrolment, attendance, transfer, leaving school etc.

05

Quantified authorization with NATSHEL_LOG_AUDIT

Access strategies can be set by personnel, end, region and operations, and centralize authentication, online and access logs.

06

CPE Hang Terminal Fine Management

Identify and manage computer, mobile phone and object networking equipment after CPE in conjunction with VXLAN, centralized DHCP and terminal certification.

• Two application routes

Manages both the original 5G terminal and each CPE-backed device

Depending on whether the terminal has direct access to 5G, a system of competencies and logs is eventually integrated into the campus by different identification and network organization.

Route A. Original 5G Terminal

Cell phones, flat boards directly into campus 5G Two Area Network

Operators first identify the users of the network, Authentication Gateway, then complete the number-to-school identification and the scope of their in-school operations available on the basis of teacher/student status.

Network qualificationsNumber VerificationSchool identityOperational mandates

Route B. 5G CPE Down Terminal

Re-visit the WiFi, cable and object network terminals after CPE

Centrally completes address allocation, terminal authentication, access rights, behavioural records and trans-CPE roaming management through the VXLAN channel between CPE and NATSHEL_AUTH_GATEWAY.

DHCP CentralisedTerminal authenticationPermission PolicyLog AuditWhite list of mute terminals

06 Life cycle

Identity changes, network qualifications and access rights synchronized

The building of closed circles around the status of school personnel, avoiding user leaving post-school numbers that are still accessible or whose rights have not been adjusted for a long time.

  1. 01

    Online applications

  2. 02

    Number tied.

  3. 03

    Eligibility

  4. 04

    Policy Authorization

  5. 05

    Open for use

  6. 06

    Change of identity

  7. 07

    School leave write-offs

• Applied scene

Overwrite mobile access, fast netting and CPE terminal access

The campus 5G dual area network serves different types of people and terminals, the scope being determined jointly by the operator ' s exclusive network conditions, the campus off-site network and business privileges.

Mobile teaching and office

Teachers and students are able to match their identities with competencies by accessing the teaching platform, office system and in-school resources through 5G.

Research and specialized networks

Provide relatively independent, identifiable network access to scientific research sites, experimental areas and mobile operations.

Accommodation and temporary accommodation

Fast-refill cable or WiFi overlay through 5G CPE and continue to manage the hang-up terminal.

Material Network Terminal Access

A white list or a specific strategy for equipment that cannot be cross-certified is used to include uniform address and log management.

• Conditions of deployment

Four types of conditions that require joint identification before landing

5G The two-area network covers the operator network, campus identity, CPE terminals and in-school operations, with multiple interfaces and liability boundaries to be identified at the programme stage.

01

Confirm operator network architecture, DNN/UPF diversion and the authentication interfaces available

02

Confirming the campus ' s unified identity, personnel status, organizational information and access protocols

03

Combination 5G terminals, CPE models, hang-up terminal size and current network address planning

04

Clear scope of operations, rules of access, log requirements and joint test window within the school

Campus 5G Two Area Network

Confirm the current network conditions and then determine authentication and diversion routes.

Providing operational information on existing operators, identity platforms, CPE terminals and intended access to them will assist in the collating of enforceable construction boundaries.

Obtain preliminary project judgements

Backstage maintenance ongoing

Relevant programme information

The content is organized around the certified control points, identity and current network conditions of the campus ' s 5G two-area network.

2022-12-02

Building mode 5

The operators have increased the APU value by selling a 5G school set in cooperation with schools.

Check the original project details *

2022-12-02

Building mode 4

Non-5G equipment can be accessed via 5G CPE using Wi-Fi, wired access to the campus network.

Check the original project details *

2022-12-02

Building mode 3

The 5G frequency is based on the operator band and schools do not need to consider frequency bands.

Check the original project details *

2022-12-02

5G terminal personal hotspot Anti-Sharing

Identifying the terminals (e.g. PC, tablet computers) that are connected through personal hotspots on mobile phones to control the diversity of end types, numbers, blacklists and other strategies for personal hotspot access, providing schools with controlled commonality

Check the original project details *

2022-12-02

Number authentication: one key login, this phone number check

The system provides a high-performance mobile IP to one-to-one map of the campus web IPv4 address, and allows for an application access experience consistent with the campus network.

Check the original project details *

2022-12-02

Control of Wi-Fi centralization of the Wi-Fi terminal with access to 5G CPE

Supported network with 5G CPE VXLAN, centralized Wi-Fi terminal address allocation for 5G CPE, central certification, online behavior management, access control and NATSHEL_LOG_AUDIT

Check the original project details *

2022-12-02

Integration of the life cycle management of school users

Integration of campus-based uniform identification and integrated life cycle management for users

Check the original project details *

2022-12-02

Secure access to 4

No memory passwords, no misdescription of passwords, missing of confidentiality, and getting the accounts back, efficient login

Check the original project details *

2022-12-01

Secure access to 3

One key login to complete the mainframe validation and school certification

Check the original project details *

2022-12-01

Secure access to 2

We're tied to the phone. We have a real identity guarantee.

Check the original project details *

2022-12-01

Secure access to 1

One Qualification: Operator; Second Quality Qualification: Validation of the Host Number; Three Qualifications: School Certification

Check the original project details *

2022-12-01

Building mode 2

Schools can access the campus network only, or all traffic including the Internet, as required.

Check the original project details *
Access Program I'll be right back. Telephone counselling