The invention relates to the technical field of
local area network access technologies, in particular to an IP-MAC real-name binding based
network access control system and control method. The
system comprises a core switch, a DHCP
server, an FTP
server and an access terminal, wherein the core switch uses a
DHCP Snooping function and an ARP Inspection function; and the
system further comprises a network access
database server, a
network access control server, a production network firewall, a server area firewall, an internet firewall and a private firewall. According to the IP-MAC real-name binding based
network access control system and control method, Web programs and background programs are built in the network
access control server; parameter configuration can be performed on the system through the Web programs; meanwhile, parameters are performed by utilizing the background programs, IP-MAC real-name binding and access authority
effective time control can be implemented. Furthermore, due to function configuration of the core switch, shielding on a counterfeit DHCP server and a manually configured
IP address can be implemented, so that sequential management of an
IP address is facilitated.