CN101155106B - Method and device for building WLAN security system - Google Patents

Method and device for building WLAN security system Download PDF

Info

Publication number
CN101155106B
CN101155106B CN200710165436.6A CN200710165436A CN101155106B CN 101155106 B CN101155106 B CN 101155106B CN 200710165436 A CN200710165436 A CN 200710165436A CN 101155106 B CN101155106 B CN 101155106B
Authority
CN
China
Prior art keywords
wlan
module
wps
terminal
searching
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN200710165436.6A
Other languages
Chinese (zh)
Other versions
CN101155106A (en
Inventor
常影
张明杰
刘文超
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
China Telecom Corp Ltd
Original Assignee
China Telecom Corp Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by China Telecom Corp Ltd filed Critical China Telecom Corp Ltd
Priority to CN200710165436.6A priority Critical patent/CN101155106B/en
Publication of CN101155106A publication Critical patent/CN101155106A/en
Application granted granted Critical
Publication of CN101155106B publication Critical patent/CN101155106B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Landscapes

  • Mobile Radio Communication Systems (AREA)

Abstract

The invention provides a method and device of establishing WLAN safety system, comprising: (1)the user triggering WLAN terminal to search WLANAP device for supporting the WPSPBC function at all the usable wireless channel, when the WLANAP is searched, the WLAN terminal judges that whether the number is 1 or not, if yes, the step(2) is performed; step(2) the WLANAP device triggered by user detecting the number information of WLAN terminal actively searched in time T before triggering, T is preset constant, the WLANAP judges that whether the number of WLAN terminal is 1 or not, if yes, the step(3) is performed; step(3) the WLAN terminal sending a WPS consultation request to the opposite terminal WLANAP, if the two sides successfully consult, the safety connection is established. The said invention can quickly establish safe WLAN wireless network to make the user conveniently, quickly and effectively establish the WLAN safety system.

Description

A kind of method and apparatus of building WLAN security system
Technical field
The present invention relates to WLAN (Wireless LAN WLAN (wireless local area network)) networking and application, especially a kind of method and apparatus of fast assembling wlan security system.
Background technology
Along with supporting equipment universal of WLAN function, increasing user can contact and use WLAN, uses that to possess the equipment building WLAN wireless network of WLAN function very popular in places such as families, and whole industry is still with rapid growth.
But, most (60-70%) users do not enable safety function in the time of building WLAN wireless network, under attack very risky of communication process, the nearest a survey report of WFA/Kelton research company thinks, approximately 40% people thinks that wlan network fail safe is set is more difficult or very difficult and do not want to implement.
Wheresoever is difficulty so? at present, domestic consumer wants the wlan network of a safety of oneself establishment very inconvenient, need user to select the WLAN AP equipment that will connect according to the WLAN AP list searching, then on WLAN AP (Access Point access point) equipment, configure SSID (Service Set Identifier Service Area Identifier symbol), Channel (channel), cipher mode, the parameters such as wildcard, and on WLAN terminal equipment, need configuration to wish the SSID connecting, cipher mode, the parameters such as wildcard, having configured rear WLAN terminal can connect with WLAN AP equipment.In this process, what domestic consumer need to understand is SSID, understand various cipher modes and collocation method, and user is difficult to understand and use, and the building process of wlan security network is very complicated.
Summary of the invention
The technical problem to be solved in the present invention is to provide a kind of method and apparatus of building WLAN security system, user no longer needs WLAN AP equipment and WLAN terminal to carry out complicated configuration, realization by the method on equipment and use, the WLAN wireless network that gets final product a safety of fast assembling, makes the establishment that user is convenient, fast, complete efficiently wlan security system.
In order to address the above problem, the present invention proposes a kind of method of building WLAN security system, comprise the following steps:
(1) whether user triggers WLAN terminal and on all available wireless channels, searches for the WLAN AP equipment of supporting WPS PBC function, in the time searching WLAN AP, be 1 by WLAN terminal judges quantity, if so, and execution step (2);
(2) triggered the quantity information of WLAN terminal of active searching in the time T before WLAN AP equipment inspection triggers by user, T is for setting constant, and WLAN AP judge whether WLAN terminal quantity is 1, if so, performs step (3);
(3) send WPS by WLAN terminal to opposite end WLAN AP and consult request, if both sides consult successfully, set up safety and connect.
Further, the method of above-mentioned building WLAN security system also can have following characteristics, (11) user triggers a WPS module by the first trigger module of WLAN terminal, calls the first driver module on all available wireless channels, search for the WLAN AP equipment of supporting WPSPBC function by a WPS module; (12), in the time searching WLAN AP, the WLAN AP quantity information searching is sent to a WPS module by the first driver module; (13) judge whether to search 1 WLAN AP equipment by a WPS module, if so, execution step (2).
Further, the method of above-mentioned building WLAN security system also can have following characteristics, the quantity information of the WLAN AP searching is sent to the first display module by a WPS module by WLAN terminal, and shown according to this information by it, in the time that the quantity of the WLAN AP equipment searching is 0, the first display module is pointed out user's connection error; When the quantity of the WLAN AP equipment searching is during more than 1, the first display module prompting user conversation is overlapping.
Further, the method of above-mentioned building WLAN security system also can have following characteristics, (21) trigger the 2nd WPS module by user by the second trigger module on WLAN AP equipment, called the quantity information of the WLAN terminal of active searching in the time T before the second driver module inspection triggers by the 2nd WPS module, T is for setting constant; (22) by the second driver module of WLAN AP, the quantity information of the WLAN terminal of active searching is sent to the 2nd WPS module; (23) judge by the 2nd WPS module whether described WLAN terminal quantity is 1, if so, execution step (3).
Further, the method of above-mentioned building WLAN security system also can have following characteristics, the WLAN terminal quantity information of active searching is sent to the second display module by the 2nd WPS module by WLAN AP, and shown according to this information by it, in the time that the quantity of described WLAN terminal is 0, the second display module is pointed out user's connection error; When the quantity of the WLAN terminal searching is during more than 1, the second display module prompting user conversation is overlapping.
Further, the method of above-mentioned building WLAN security system also can have following characteristics, send WPS by a WPS module of WLAN terminal to the 2nd WPS module of opposite end WLAN AP and consult request, negotiate content comprises: cipher mode, WLAN AP sends to WLAN terminal according to this request by wildcard, and both sides are key derivation respectively.
Further, the method for above-mentioned building WLAN security system also can have following characteristics, by a described WPS module, negotiation result is sent to the first display module, in the time consulting successfully, and the first display module prompting user successful connection; While failing to consultations, the first display module prompting user connection error.
Further, the method of above-mentioned building WLAN security system also can have following characteristics, (4) preserve by the 2nd WPS module of WLAN AP and/or a WPS module of WLAN terminal the information connecting safely of having set up, after WLAN AP and/or WLAN restarting terminal device, automatically set up safe connection according to the information of having preserved.
A device for building WLAN security system, comprising:
WLAN terminal, for searching for the WLAN AP equipment of supporting WPS PBC function on all available wireless channels according to user's triggering; In the time searching described WLAN AP equipment, judge whether its quantity is 1, if so, send WPS to opposite end WLAN AP and consult request, after consulting successfully, be connected safely with its foundation;
WLAN AP, for the quantity information of the WLAN terminal of active searching in the time T before triggering according to user's triggering inspection, T, for setting constant, judges whether WLAN terminal quantity is 1, if so, after consulting successfully with this WLAN terminal, sets up safety and is connected.
Further, the device of above-mentioned building WLAN security system also can have following characteristics, and the first trigger module, for sending to user's trigger message the one WPS module; The one WPS module, for sending to the first driver module by user's trigger message; Whether be 1 for the quantity that judges the WLAN AP that the first driver module searches, if, send WPS to opposite end WLANAP and consult request, negotiate content comprises: cipher mode, WLAN AP sends to WLAN terminal according to this request by wildcard, both sides are key derivation respectively, and is connected safely with its foundation after consulting successfully; The first driver module, for search for the WLAN AP equipment of supporting WPS PBC function on all available wireless channels according to trigger message, and in the time searching WLANAP, sends to WPS module by its quantity information.
Further, the device of above-mentioned building WLAN security system also can have following characteristics, the first display module, for according to a WPS block search to the quantity information of WLAN AP show, in the time that the quantity of the WLAN AP equipment searching is 0, point out user's connection error; When the quantity of the WLAN AP equipment searching is during more than 1, prompting user conversation is overlapping.
Further, the device of above-mentioned building WLAN security system also can have following characteristics, and the second trigger module, for sending to WPS module by user's trigger message; The 2nd WPS module, for sending to the second driver module by user's trigger message; Whether the quantity that is used for the WLAN terminal that judges active searching is 1, if, carry out WPS negotiation with this WLAN terminal, negotiate content comprises: cipher mode, WLAN AP sends to WLAN terminal according to this request by wildcard, both sides are key derivation respectively, and after consulting successfully, sets up safety connection; The second driver module, for checking the quantity information of WLAN terminal of active searching in the time T before triggering, T is constant, and described quantity information is sent to the 2nd WPS module.
Further, the device of above-mentioned building WLAN security system also can have following characteristics, and the second display module shows for the WLAN terminal quantity information according to active searching,, in the time that the quantity of described WLAN terminal is 0, points out user's connection error; When the quantity of described WLAN terminal is during more than 1, prompting user conversation is overlapping.
Further, the device of above-mentioned building WLAN security system also can have following characteristics, and the first display module, for point out user successful connection in the time consulting successfully, is pointed out user connection error while failing to consultations.
Further, the device of above-mentioned building WLAN security system also can have following characteristics, the 2nd WPS module and/or a WPS module are preserved the information of the safety connection of having set up, and after WLAN AP and/or WLAN restarting terminal device, automatically set up safe connection according to the information of having preserved.
Compared with prior art, the present invention has used up-to-date WPS technology, increase corresponding WPS module, user no longer needs WLAN AP equipment and WLAN terminal to carry out complicated configuration, realization by the method on equipment and use, the WLAN wireless network that gets final product a safety of fast assembling, makes the establishment that user is convenient, fast, complete efficiently wlan security system.
Brief description of the drawings
Fig. 1 is the installation drawing of building WLAN security system in embodiment.
Fig. 2 is the flow chart of building WLAN security system in embodiment.
Embodiment
Wi-Fi (WirelessFidelity; Wireless Fidelity) alliance is in order to simplify user configuration; WPS (Wi-Fi Protected Setup has been proposed; Wi-Fi protects configuration) new method, user adds client in secure network to by pressing special button built-in in access point and client.The present invention has increased the WPS module with WPS function, on the software and hardware of wlan device, realize PBC (Push-Button Configuration key configurations) function, trigger or call wlan device by WPS module, organically combine with the original function of wlan device, for user provides operation readiness.
The present invention realizes following precondition or hypothesis: 1) all wlan devices are all supported standard IEEE 802.11 agreements; 2) all wlan devices are all supported EAP (ExtensibleAuthentication Protocol, Extensible Authentication Protocol); 3) all wlan devices are all supported WPA-PSK (Wi-Fi Protected Access Pre-Shared Key; Wi-Fi protects access-wildcard) and/or WPA2-PSK (Wi-Fi Protected Access 2 Pre-SharedKey, Wi-Fi protection access 2-wildcard).
Describe the present invention in detail below in conjunction with drawings and Examples.
As shown in Figure 1, a kind of device of building WLAN security system, comprising: WLAN terminal and WLAN AP, wherein,
WLAN terminal, for searching for the WLAN AP equipment of supporting WPS PBC function on all available wireless channels according to user's triggering; In the time only searching WLAN AP equipment, judge whether its quantity is 1, if so, send WPS to opposite end WLAN AP and consult request, after consulting successfully, be connected safely with its foundation;
WLAN AP, for the WLAN terminal equipment information of active searching in the time T before triggering according to user's triggering inspection, T, for setting constant, judges whether WLAN terminal quantity is 1, if so, after consulting successfully with this WLAN terminal, sets up safety and is connected.
Described WLAN terminal, for example possess WLAN network interface card computer, possess PDA (Personal Digital Assistant, personal digital assistant), the Wi-Fi phone etc. of WLAN function.Comprise: the first trigger module 101, the one WPS module 103, the first driver modules 105, wherein,
The first trigger module 101, for sending to user's trigger message the one WPS module;
The one WPS module 103, for sending to the first driver module by user's trigger message; Whether be 1 for the quantity that judges the WLAN AP that the first driver module searches, if, send WPS to opposite end WLAN AP and consult request, negotiate content comprises: cipher mode, WLAN AP sends to WLAN terminal according to this request by wildcard, both sides are key derivation respectively, and is connected safely with its foundation after consulting successfully;
The first driver module 105, for search for the WLAN AP equipment of supporting WPS PBC function on all available wireless channels according to trigger message, and in the time searching WLAN AP, the configuration parameter of its reply and quantity information being sent to WPS module, configuration parameter comprises: SSID and channel.
The first driver module initiatively sends Probe Request (probe requests thereby) message; in message, carry specific fields (WPS IE; Wi-Fi Protected Setup InformationElement; Wi-Fi protects configuration information unit) show to search the WLAN AP that supports WPS PBC function, this message can send and wait for ProbeResponse (probe response) message at all channels of network interface card support.
WLAN AP receives after Probe Request message, if support WPS PBC function, replys the Probe Response message that carries specific fields (WPS IE), comprises: SSID, Channel at this message.Wherein, SSID and Channel are predetermined before triggering by WLAN AP, pre-set, or user can manual configuration etc. as dispatched from the factory.
In another embodiment, described WLAN terminal also comprises: the first display module 107, and for showing connection state information according to the treatment state of a WPS module.
Described WLAN AP, such as WLAN AP equipment, wireless router, family gateway equipment etc., comprising: the second trigger module 201, the two WPS module 203, the second driver modules 205, wherein,
The second trigger module 201, for sending to user's trigger message the 2nd WPS module;
The 2nd WPS module 203, for sending to the second driver module by user's trigger message; Whether the quantity that is used for the WLAN terminal that judges active searching is 1, if, carry out WPS negotiation with this WLAN terminal, negotiate content comprises: cipher mode, WLAN AP sends to WLAN terminal according to this request by wildcard, both sides are key derivation respectively, and after consulting successfully, sets up safety connection;
The second driver module 205, for checking the quantity information of WLAN terminal of active searching in the time T before triggering, T is constant, and described quantity information is sent to the 2nd WPS module.
In another embodiment, described WLAN AP also comprises: the second display module 207, and for showing connection state information according to the treatment state of the 2nd WPS module.
A method for building WLAN security system, as shown in Figure 2, comprises the following steps:
Step 210, whether user triggers WLAN terminal and on all available wireless channels, searches for the WLAN AP equipment of supporting WPS PBC function, in the time searching WLAN AP, be 1 by WLAN terminal judges quantity, if so, performs step 220, otherwise, process ends;
Step 220, is triggered the quantity information of WLAN terminal of active searching in the time T before WLAN AP equipment inspection triggers by user, T is for setting constant, and WLAN AP judge whether WLAN terminal quantity is 1, if so, performs step 230, otherwise, process ends;
Step 230, sends WPS by WLAN terminal to opposite end WLAN AP and consults request, if both sides consult successfully, sets up safety and connects, and finishes; Otherwise, directly process ends.
Wherein, step 210 comprises:
Step 2101, user triggers a WPS module by the first trigger module of WLAN terminal, calls the first driver module on all available wireless channels, search for the WLANAP equipment of supporting WPS PBC function by a WPS module;
The first driver module initiatively sends Probe Request (probe requests thereby) message; in message, carry specific fields (WPS IE; Wi-Fi Protected Setup InformationElement, Wi-Fi protects configuration information unit) show to search the WLAN AP that supports WPS PBC function.
Step 2102, in the time searching WLAN AP equipment, the WLAN AP configuration parameter searching and quantity information are sent to a WPS module by the first driver module, and configuration parameter comprises: SSID and channel;
WLAN AP receives after Probe Request message, if support WPS PBC function, replys the Probe Response message that carries specific fields (WPS IE), comprises: SSID and channel at this message.Wherein, SSID and Channel are predetermined before triggering by WLAN AP, pre-set, or user can manual configuration etc. as dispatched from the factory.
Step 2103, judges whether to search 1 WLAN AP equipment by a WPS module, if so, and execution step 220, otherwise, finish.
If WLAN terminal completes after search, only have 1 WLAN AP response, the Channel of this WLAN AP work is exactly the channel that WLAN terminal need to be used, and only has after 1 WLAN AP so search, and WLAN terminal can be determined the channel of oneself.
In the time that WLAN terminal also comprises the first display module, in step 2103, also comprise: the quantity information of the WLAN AP searching is sent to the first display module by the WPS module by WLAN terminal, and shown according to this information by it, in the time that the quantity of the WLAN AP equipment searching is 0, the first display module prompting user " connection error ", this triggers end; When the quantity of the WLAN AP equipment searching is during more than 1, the first display module prompting user " session is overlapping ", this triggers end.
Wherein, step 220 comprises:
Step 2201, trigger the 2nd WPS module by user by the second trigger module on WLAN AP equipment, called the quantity information of WLAN terminal of active searching in the time T before the second driver module inspection triggers by the 2nd WPS module, T is for setting constant, as T=120 second;
WLAN AP is sending after message response to WLAN terminal, records time and the corresponding WLAN end message (as recorded MAC Address) of this response.Receive after triggering at WLAN AP, detect the current system time and find out the respective record in T=120s.Wherein, T value is the numerical value pre-setting, as is typically 120 seconds.Because WLAN AP and WLAN terminal may be in Same Physical positions, user, after completing and triggering for the first time, needs walking just can complete to another equipment place for the second time and triggers, and T value is to ensure that general user can complete the time interval of 2 triggerings.
Step 2202, the quantity information of the WLAN terminal of active searching is sent to the 2nd WPS module by the second driver module of WLAN AP;
In order to ensure the fail safe of access, WPS has specified that negotiations process must and can only be man-to-man, i.e. access between a WLAN terminal and a WLAN AP, and other situation is all wrong or illegal, so want amount detection herein.For example, successively there are 2 WLAN terminals within the T time, to carry out triggering (one is emitted user to trigger), user triggers WLAN AP subsequently, which WLAN terminal WLAN AP should hold consultation with because determining, can only process ends, can stop so the illegal access as emitted user.After this user can hold consultation again as long as again re-start triggering.
Step 2203, judges whether only to have 1 WLAN terminal by the 2nd WPS module, if so, and execution step 230, otherwise, finish.
In the time that WLAN AP also comprises the second display module, in step 2203, also comprise: the WLAN terminal quantity information of active searching is sent to the second display module by the 2nd WPS module by WLAN AP, and shown according to this information by it, in the time that the quantity of WLAN terminal is 0, the second display module prompting user " connection error ", this triggers end; When the quantity of WLAN terminal is during more than 1, the second display module prompting user " session is overlapping ", this triggers end.
Wherein, step 230 comprises: send WPS by the WPS module of WLAN terminal to the WPS module of opposite end WLANAP and consult request, negotiate content comprises: cipher mode, and WLAN AP sends to WLAN terminal according to this request by wildcard, and both sides are key derivation respectively.Now, both sides consult successfully, set up safety and connect.In the time that WLAN terminal also comprises the first display module, by a WPS module, negotiation result is sent to the first display module, and shown according to this information by it, in the time consulting successfully, corresponding the first display module prompting user " successful connection ", this triggers end; While failing to consultations, corresponding the first display module prompting user " connection error ", this triggers end.
After step 230, also comprise:
Step 240, preserves by the 2nd WPS module of WLAN AP and/or a WPS module of WLAN terminal the information connecting safely of having set up, and after WLAN AP and/or WLAN restarting terminal device, automatically sets up safe connection according to the information of having preserved.
After WLAN terminal and WLAN AP connect, can repeatedly carry out this method flow process, can make other WLAN terminals connect with WLAN AP successively.In addition, within the time period that WLAN terminal and WLAN AP connect, WLAN AP can guarantee to have connected connection and the use of WLAN terminal.
In the present invention, wlan device has WPS module, supports the realization of WPS agreement; Wlan device possesses trigger module, and this trigger module can be hardware, can be also software, and specific implementation is not limited to.By in conjunction with WLAN and WPS technology, system has realized the function of fast assembling wlan security network automatically, sets up the wireless network of a safety for domestic consumer provides a kind of simple and efficient method.Thereby, user does not need to understand abstruse professional term, does not need to carry out loaded down with trivial details configuration yet, only needs simple triggering for 2 times just can realize originally complicated configuration and be connected flow process, convenient for users, and play a role in promoting for the universal and popularization of WLAN related service.

Claims (10)

1. a method for building WLAN security system, comprising:
(1) whether user triggers WLAN terminal and on all available wireless channels, searches for the WLAN AP equipment of supporting WPS PBC function, in the time searching WLAN AP, be 1 by WLAN terminal judges quantity, if so, and execution step (2);
Step (1) comprising:
(11) user triggers a WPS module by the first trigger module of WLAN terminal, calls the first driver module on all available wireless channels, search for the WLAN AP equipment of supporting WPS PBC function by a WPS module;
(12) in the time searching WLAN AP, the configuration parameter of the WLAN AP searching and the WLAN AP quantity information searching are sent to a WPS module by the first driver module, and configuration parameter comprises: SSID and channel;
(13) judge whether to search 1 WLAN AP equipment by a WPS module, if so, execution step (2);
(2) triggered the quantity information of WLAN terminal of active searching in the time T before WLAN AP equipment inspection triggers by user, T is for setting constant, and WLAN AP judge whether WLAN terminal quantity is 1, if so, performs step (3);
Step (2) comprising:
(21) trigger the 2nd WPS module by user by the second trigger module on WLAN AP equipment, called the quantity information of the WLAN terminal of active searching in the time T before the second driver module inspection triggers by the 2nd WPS module, T is for setting constant;
(22) by the second driver module of WLAN AP, the quantity information of the WLAN terminal of active searching is sent to the 2nd WPS module;
(23) judge by the 2nd WPS module whether described WLAN terminal quantity is 1, if so, execution step (3);
(3) send WPS by WLAN terminal to opposite end WLAN AP and consult request, if both sides consult successfully, set up safety and connect, after connecting, other WLAN terminals connect with WLAN AP successively;
Step (3) comprising:
Send WPS by a WPS module of WLAN terminal to the 2nd WPS module of opposite end WLAN AP and consult request, negotiate content comprises: cipher mode, WLAN AP sends to WLAN terminal according to this request by wildcard, and both sides are key derivation respectively, sets up safety and connect after consulting successfully.
2. the method for building WLAN security system as claimed in claim 1, step (13) also comprises:
By a WPS module of WLAN terminal, the quantity information of the WLAN AP searching is sent to the first display module of WLAN terminal, and shown according to this information by it, in the time that the quantity of the WLAN AP equipment searching is 0, the first display module is pointed out user's connection error; When the quantity of the WLAN AP equipment searching is during more than 1, the first display module prompting user conversation is overlapping.
3. the method for building WLAN security system as claimed in claim 1, step (23) also comprises:
By the 2nd WPS module of WLAN AP, the WLAN terminal quantity information of active searching is sent to the second display module of WLAN AP, and shown according to this information by it, in the time that the quantity of described WLAN terminal is 0, the second display module is pointed out user's connection error; When the quantity of the WLAN terminal searching is during more than 1, the second display module prompting user conversation is overlapping.
4. the method for building WLAN security system as claimed in claim 2, step (3) also comprises:
By a described WPS module, negotiation result is sent to the first display module of WLAN terminal, in the time consulting successfully, the first display module prompting user successful connection; While failing to consultations, the first display module prompting user connection error.
5. the method for building WLAN security system as claimed in claim 1, step (3) also comprises afterwards:
(4) preserve by the 2nd WPS module of WLAN AP and/or a WPS module of WLAN terminal the information connecting safely of having set up, after WLAN AP and/or WLAN restarting terminal device, automatically set up safe connection according to the information of having preserved.
6. a device for building WLAN security system, comprising:
WLAN terminal, for searching for the WLAN AP equipment of supporting WPS PBC function on all available wireless channels according to user's triggering; In the time searching described WLAN AP equipment, judge whether its quantity is 1, if so, send WPS to opposite end WLAN AP and consult request, after consulting successfully, be connected safely with its foundation;
Described WLAN terminal comprises:
The first trigger module, for sending to user's trigger message the one WPS module;
The one WPS module, for sending to the first driver module by user's trigger message; Whether be 1 for the quantity that judges the WLAN AP that the first driver module searches, if, send WPS to opposite end WLAN AP and consult request, negotiate content comprises: cipher mode, WLAN AP sends to WLAN terminal according to this request by wildcard, both sides are key derivation respectively, and is connected safely with its foundation after consulting successfully;
The first driver module, for search for the WLAN AP equipment of supporting WPS PBC function on all available wireless channels according to trigger message, and in the time searching WLAN AP, the configuration parameter of its reply and quantity information being sent to a WPS module, configuration parameter comprises: SSID and channel;
WLAN AP, for the quantity information of the WLAN terminal of active searching in the time T before triggering according to user's triggering inspection, T is for setting constant, judge whether WLAN terminal quantity is 1, if, after consulting successfully with this WLAN terminal, set up safety and be connected, after connecting, other WLAN terminals connect with WLAN AP successively;
Described WLAN AP comprises:
The second trigger module, for sending to user's trigger message the 2nd WPS module;
The 2nd WPS module, for sending to the second driver module by user's trigger message; Whether the quantity that is used for the WLAN terminal that judges active searching is 1, if, carry out WPS negotiation with this WLAN terminal, negotiate content comprises: cipher mode, WLAN AP sends to WLAN terminal according to this request by wildcard, both sides are key derivation respectively, and after consulting successfully, sets up safety connection;
The second driver module, for checking the quantity information of WLAN terminal of active searching in the time T before triggering, T is constant, and described quantity information is sent to the 2nd WPS module.
7. the device of building WLAN security system as claimed in claim 6, described WLAN terminal also comprises:
The first display module, for according to a WPS block search to the quantity information of WLAN AP show, in the time that the quantity of the WLAN AP equipment searching is 0, prompting user connection error; When the quantity of the WLAN AP equipment searching is during more than 1, prompting user conversation is overlapping.
8. the device of building WLAN security system as claimed in claim 6, described WLANAP comprises:
The second display module, shows for the WLAN terminal quantity information according to active searching,, in the time that the quantity of described WLAN terminal is 0, points out user's connection error; When the quantity of described WLAN terminal is during more than 1, prompting user conversation is overlapping.
9. the device of building WLAN security system as claimed in claim 7, comprising:
The first display module, for point out user successful connection in the time consulting successfully, is pointed out user connection error while failing to consultations.
10. the device of building WLAN security system as claimed in claim 6, comprising:
The one WPS module of the 2nd WPS module of WLAN AP and/or WLAN terminal is preserved the information of the safety connection of having set up, and after WLAN AP and/or WLAN restarting terminal device, automatically sets up safe connection according to the information of having preserved.
CN200710165436.6A 2007-10-26 2007-10-26 Method and device for building WLAN security system Active CN101155106B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN200710165436.6A CN101155106B (en) 2007-10-26 2007-10-26 Method and device for building WLAN security system

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN200710165436.6A CN101155106B (en) 2007-10-26 2007-10-26 Method and device for building WLAN security system

Publications (2)

Publication Number Publication Date
CN101155106A CN101155106A (en) 2008-04-02
CN101155106B true CN101155106B (en) 2014-06-11

Family

ID=39256555

Family Applications (1)

Application Number Title Priority Date Filing Date
CN200710165436.6A Active CN101155106B (en) 2007-10-26 2007-10-26 Method and device for building WLAN security system

Country Status (1)

Country Link
CN (1) CN101155106B (en)

Families Citing this family (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101668290B (en) * 2008-09-04 2013-10-09 华为终端有限公司 Method and device for configuring wireless local area network (WLAN)
CN101771659B (en) * 2008-11-20 2013-06-12 华为终端有限公司 Method, system and equipment for safe switch configuration
CN102378397A (en) * 2010-08-18 2012-03-14 宏碁股份有限公司 Method for rapidly establishing wireless connection
CN103269287B (en) * 2013-06-08 2018-09-28 上海斐讯数据通信技术有限公司 WIFI protection setting LED control methods
CN109246690A (en) * 2017-04-27 2019-01-18 中兴通讯股份有限公司 Method for network access, device, storage medium and processor

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
Wi-Fi alliance.WI-FI Protected Setup Specification Version 1.0h.《Wi-FI技术文档(互联网)》.2006,第77-81页. *

Also Published As

Publication number Publication date
CN101155106A (en) 2008-04-02

Similar Documents

Publication Publication Date Title
US10136319B2 (en) Methods and apparatus to discover authentication information in a wireless networking environment
JP4445974B2 (en) A method for a wireless LAN user terminal to re-select an operation network within an environment including various types of operation networks
EP2873201B1 (en) On-demand access tunnel between service provider network and wireless communication network
EP1589703B1 (en) System and method for accessing a wireless network
JP5097171B2 (en) Station status determination in the local area
JP2007533277A (en) How to establish an emergency connection within a local wireless network
CN102883320A (en) WiFi (Wireless Fidelity) authentication method and system thereof
US20140126565A1 (en) Communication device, control method therefor, and program
CN102869014A (en) Terminal and data communication method
CN104853448A (en) Method for automatically establishing wireless connection and device thereof
WO2012171184A1 (en) Wireless local area network authentication method based on media access control address and device thereof
JP6429206B2 (en) Method and apparatus for constructing simple and easy wireless connection
KR100666947B1 (en) Network Access Method of WLAN Terminal And Network system thereof
WO2014034305A1 (en) Communication apparatus and network connection method
CN111050415B (en) Wireless data transmission method convenient to operate
CN104205782A (en) Push button configuration for hybrid network devices
CN107979864B (en) Access method, device and system of access point
JP6476523B2 (en) Wireless access point
EP3648488B1 (en) Methods, devices, system and computer-readable storage medium for acquiring identifier of terminal device
CN101155106B (en) Method and device for building WLAN security system
EP1947818B1 (en) A communication system and a communication method
WO2008140325A2 (en) Methods and devices for initiating handover, discovering candidates access points and initiating authentication of a wireless terminal in a wireless network
JP2005192163A (en) Communication method and mobile phone
WO2015157981A1 (en) Wireless local area network user side device and information processing method
WO2013174312A2 (en) Control method and device, and mobile terminal

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant