CN105282740A - Portal authentication method, mobile terminal, authentication server and Portal authentication system - Google Patents

Portal authentication method, mobile terminal, authentication server and Portal authentication system Download PDF

Info

Publication number
CN105282740A
CN105282740A CN201410270635.3A CN201410270635A CN105282740A CN 105282740 A CN105282740 A CN 105282740A CN 201410270635 A CN201410270635 A CN 201410270635A CN 105282740 A CN105282740 A CN 105282740A
Authority
CN
China
Prior art keywords
authentication
mobile terminal
portal
wlan
username
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201410270635.3A
Other languages
Chinese (zh)
Inventor
陈超
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
China Mobile Communications Group Co Ltd
Original Assignee
China Mobile Communications Group Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by China Mobile Communications Group Co Ltd filed Critical China Mobile Communications Group Co Ltd
Priority to CN201410270635.3A priority Critical patent/CN105282740A/en
Publication of CN105282740A publication Critical patent/CN105282740A/en
Pending legal-status Critical Current

Links

Landscapes

  • Mobile Radio Communication Systems (AREA)

Abstract

The invention provides a Portal authentication method, a mobile terminal, an authentication server and a Portal authentication system. The Portal authentication method is applied to the mobile terminal, and comprises that a WLAN access request is initialized; a WLAN terminal authentication information request sent by the authentication server according to the WLAN access request is received; a communication number of the mobile terminal serves as an authentication username, and an authentication cipher is generated according to IMSI corresponding to an SIM card of the mobile terminal; and the authentication username and the authentication cipher are sent to the authentication server, so that the authentication server carries out Portal authentication on the mobile terminal. The IMSI in the SIM card of the mobile terminal is utilized to implement Portal authentication, a user needs not to input and memorize cipher information, the problem in cipher distribution in Portal authentication is solved, convenience is provided for use, and leakage of the cipher is avoided.

Description

Door portal authentication method, mobile terminal, certificate server and portal certification system
Technical field
The present invention relates to the communications field, particularly relate to a kind of door portal authentication method, mobile terminal, certificate server and portal certification system.
Background technology
The features such as WLAN (WirelessLocalAreaNetwork, WLAN (wireless local area network)) disposes simple with it, access is convenient were widely used in recent years.The public places such as market, coffee shop, airport have spread all over Wi-Fi hotspot, wireless city becoming a reality slowly.Because the information of WLAN (wireless local area network) is propagated in atmosphere, be very easy to be ravesdropping, so the safety problem of WLAN (wireless local area network) seems particularly important.The fail safe of WLAN is embodied in access control and data encryption two aspect, and Portal certification is widely used in a wlan as a kind of important access authentication.Portal certification is generally divided into 2 kinds, and the first, release certification page input username and password by browser and carry out certification.The second, Authentication Client software is installed, client software inputs username and password and carries out certification.Current portal authentication mode, the ways of distribution of password generally adopts short message mode to obtain, very inconvenient, and easily reveals.
Summary of the invention
In order to solve the problems of the technologies described above, the invention provides a kind of door portal authentication method, mobile terminal, certificate server and portal certification system, the IMSI in the SIM card of mobile terminal is utilized to carry out Portal certification, without the need to user's input also memory cipher information, avoid the problem of the password distribution of Portal certification, convenient for users, avoid password and reveal.
To achieve these goals, the invention provides a kind of door portal authentication method, for mobile terminal, described authentication method comprises: initiate wlan network access request; Receive the WLAN terminal authentication information request that certificate server sends according to described wlan network access request; Using the communication number of described mobile terminal as authentication username, the international mobile subscriber identity IMSI corresponding by the SIM card of described mobile terminal generates authentication password; Described authentication username and described authentication password are sent to described certificate server, to make described certificate server, Portal certification is carried out to described mobile terminal.
Present invention also offers a kind of door portal authentication method, described authentication method comprises: the first receiving step: the authentication request of mobile terminal receive, described authentication request comprises authentication username and authentication password, described authenticated user is called the communication number of described mobile terminal, and described authentication password is generated by the international mobile subscriber identity IMSI that the SIM card of described mobile terminal is corresponding; First obtaining step: get the SIM card information corresponding with described authentication username and user signing contract information from HLR, described user signing contract information carries the indication information being used to indicate and whether allowing described authenticated user to access WLAN; Authenticating step: according to described SIM card information and user signing contract information, carries out certification to the authentication password of described mobile terminal, obtains authentication result.
Above-mentioned door portal authentication method, wherein, before described first obtaining step, also comprise: determining step: according to the user profile of pre-stored, determine that situation opened by the WLAN set meal that described authentication username is corresponding, when described WLAN set meal open situation show that described authentication username has opened WLAN set meal time, enter described first obtaining step, otherwise, notify the failure of described mobile terminal authentication.
Above-mentioned door portal authentication method, wherein, described authentication password is the authentication password after encryption, described first receiving step specifically comprises: the authentication request receiving the mobile terminal that Portal server forwards, described authentication request comprises the authentication password after authentication username and encryption, authentication password after described encryption is that the described Portal server authentication password that adopts preset algorithm to send described mobile terminal and the first enciphered message are encrypted and obtain, described first enciphered message is supplied to described Portal server by Radio Access Controller AC in response to the request of described Portal server, described authenticating step is specially: according to described SIM card information, the first enciphered message and user signing contract information, carry out certification, obtain authentication result to the authentication password after described encryption.
Present invention also offers a kind of mobile terminal, comprising: access request module, for initiating wlan network access request; First receiver module, for receiving the WLAN terminal authentication information request that certificate server sends according to described wlan network access request; Generation module, for using the communication number of described mobile terminal as authentication username, generate authentication password by international mobile subscriber identity IMSI corresponding to the SIM card of described mobile terminal; First sending module, for described authentication username and described authentication password are sent to described certificate server, carries out Portal certification to make described certificate server to described mobile terminal.
Present invention also offers a kind of certificate server, comprise: the second receiver module, for the authentication request of mobile terminal receive, described authentication request comprises authentication username and authentication password, described authenticated user is called the communication number of described mobile terminal, and described authentication password is generated by the international mobile subscriber identity IMSI that the SIM card of described mobile terminal is corresponding; First acquisition module, for getting the SIM information corresponding with described authentication username and user signing contract information from HLR, described user signing contract information carries the indication information being used to indicate and whether allowing described authenticated user to access WLAN; Authentication module, for according to described SIM card information and user signing contract information, carries out certification to the authentication password of described mobile terminal, obtains authentication result.
Above-mentioned certificate server, wherein, also comprise: determination module, for the user profile according to pre-stored, determine that situation opened by the WLAN set meal that described authentication username is corresponding, when described WLAN set meal open situation show that described authentication username has opened WLAN set meal time, enter described first acquisition module, otherwise, notify the failure of described mobile terminal authentication.
Above-mentioned certificate server, wherein, described authentication password is the authentication password after encryption, described second receiver module is further used for the authentication request receiving the mobile terminal that Portal server forwards, described authentication request comprises the authentication password after authentication username and encryption, authentication password after described encryption is that the described Portal server authentication password that adopts preset algorithm to send described mobile terminal and the first enciphered message are encrypted and obtain, described first enciphered message is supplied to described Portal server by Radio Access Controller AC in response to the request of described Portal server, described authentication module is further used for, according to described SIM card information, the first enciphered message and user signing contract information, carrying out certification, obtain authentication result to the authentication password after described encryption.
Present invention also offers a kind of portal certification system, comprise Radio Access Controller AC, Portal server and certificate server; Described AC intercepts and captures the WLAN access request that mobile terminal is initiated, by described mobile terminal access Portal server; Described Portal server sends WLAN terminal authentication information request to described mobile terminal, and after the authentication username receiving the transmission of described mobile terminal and authentication password, the authentication request comprising described authentication username and authentication password is sent to described certificate server, described authenticated user is called the communication number of described mobile terminal, and described authentication password is generated by the international mobile subscriber identity IMSI that the SIM card of described mobile terminal is corresponding; After described certificate server receives described authentication request, the SIM information corresponding with described authentication username and user signing contract information is got from HLR, described user signing contract information carries the indication information being used to indicate and whether allowing described authenticated user to access WLAN, according to described SIM card information and user signing contract information, certification is carried out to the authentication password of described mobile terminal, obtains authentication result.
The beneficial effect of technique scheme of the present invention is as follows:
The invention provides a kind of door portal authentication method, mobile terminal, certificate server and portal certification system, the IMSI in the SIM card of mobile terminal is utilized to carry out Portal certification, without the need to user's input also memory cipher information, avoid the problem of the password distribution of Portal certification, convenient for users, avoid password and reveal.
Accompanying drawing explanation
Fig. 1 is the schematic flow sheet of portal authentication method provided by the invention at mobile terminal side.
Fig. 2 is the schematic flow sheet being used portal authentication method provided by the invention by Portal Authentication Client.
Fig. 3 is the schematic flow sheet of portal authentication method provided by the invention in certificate server side.
Fig. 4 is the communication process schematic diagram that portal certification system provided by the invention carries out Portal certification.
Embodiment
For making the technical problem to be solved in the present invention, technical scheme and advantage clearly, be described in detail below in conjunction with the accompanying drawings and the specific embodiments.
The present invention is directed in prior art, when carrying out Portal certification, user is needed to input and memory cipher, make troubles to user or obtained the password distributed by note, thus the safety problem caused, provide a kind of door portal authentication method, mobile terminal, certificate server and portal certification system, the IMSI in the SIM card of mobile terminal is utilized to carry out Portal certification, without the need to user's input also memory cipher information, avoid the problem of the password distribution of Portal certification, convenient for users, avoid password and reveal.
Fig. 1 is the schematic flow sheet of portal authentication method provided by the invention, and for mobile terminal, as shown in the figure, described method comprises:
Step S100, initiates wlan network access request;
Step S102, receives the WLAN terminal authentication information request that certificate server sends according to described wlan network access request;
Step S104, using the communication number of described mobile terminal as authentication username, the international mobile subscriber identity IMSI corresponding by the SIM card of described mobile terminal generates authentication password;
Step S106, sends to described certificate server by described authentication username and described authentication password, carries out Portal certification to make described certificate server to described mobile terminal.
The mobile terminal only having certification to pass through just allows to access wlan network, therefore, mobile terminal is after transmission wlan network access request, the WLAN terminal authentication information request of certificate server can be received, require that authentication username and authentication password are sent to certificate server to accept the certification of certificate server by mobile terminal, the mobile terminal that certification is passed through can access wlan network, otherwise, can not wlan network be accessed.
Portal authentication method provided by the invention, use the communication number of mobile terminal as authentication username, the IMSI in SIM card generates authentication password, without the need to user's input also memory cipher, convenient for users, avoids password and reveals.
Fig. 2 is the schematic flow sheet being used portal authentication method provided by the invention by Portal Authentication Client, as shown in the figure, comprising:
Step S200, installs Portal Authentication Client on mobile terminals;
Step S202, starts Portal client;
Step S204, Portal client reads the communication number of mobile terminal as authentication username;
The IMSI that the SIM card of step S206, Portal client reading mobile terminal is corresponding generates authentication password;
Step S208, is sent to certificate server etc. to be certified by authentication username and authentication password.
And from certificate server side, above-mentioned portal authentication method, as shown in Figure 3, specifically comprises:
Step S302, the authentication request of mobile terminal receive, described authentication request comprises authentication username and authentication password, and described authenticated user is called the communication number of described mobile terminal, and described authentication password is generated by the international mobile subscriber identity IMSI that the SIM card of described mobile terminal is corresponding;
Step S304, gets the SIM information corresponding with described authentication username and user signing contract information from HLR, and described user signing contract information carries the indication information being used to indicate and whether allowing described authenticated user to access WLAN;
Step S306, according to described SIM card information and user signing contract information, carries out certification to the authentication password of described mobile terminal, obtains authentication result.
Receive the communication number that comprises mobile terminal as authentication username and the authentication request of authentication password that generated by the IMSI in SIM card after, obtain SIM information from HLR and certification is carried out to authentication password, simultaneously, user signing contract information can also be got, judge whether the user that described authentication username is corresponding is allowed to access WLAN, only have this user to be allowed to access WLAN and authentication password is consistent with the SIM information obtained from HLR time, this user is considered to certification and passes through.
Portal authentication method provided by the invention, without the need to storing username and password in certificate server, and can get SIM card information corresponding to authentication username from HLR, therefrom extracts IMSI and carries out certification to authentication password.
Due to when carrying out certification to authentication password, need to obtain relevant information from HLR, namely need to communicate with HLR, and owing to storing the service fulfillment information of user in certificate server, only have and opened relevant service movable terminal and can access WLAN, therefore, before communicating with HLR, pre-authentication can be carried out according to the service fulfillment information stored, avoid unnecessary communication, above-mentioned portal authentication method, wherein, can also comprise before step S302:
Step S300, according to the user profile of pre-stored, determines that situation opened by the WLAN set meal that described authentication username is corresponding, when described WLAN set meal open situation show that described authentication username has opened WLAN set meal time, enter step S302, otherwise, notify the failure of described mobile terminal authentication.
The object of aforesaid operations is, according to the user profile stored, judges that situation opened by the WLAN set meal that authentication username is corresponding, only having when having opened WLAN set meal, just can communicate with HLR and carrying out cipher authentication, otherwise, mobile terminal authentication failure can be notified, without the need to carrying out unnecessary communication with HLR.
In the present invention one specific embodiment, described authentication password is the authentication password after encryption, authentication password after described encryption is obtained through encryption the IMSI in the SIM card of described mobile terminal and the first enciphered message by preset algorithm, described first enciphered message is supplied to described Portal server by Radio Access Controller AC in response to the request of described Portal server, and described authentication request also comprises described first enciphered message;
Described step S306 is specifically as follows:
According to described SIM card information, the first enciphered message and user signing contract information, certification is carried out to the authentication password after described encryption, obtains authentication result.
In order to improve the fail safe of authentication password in communication process, can be encrypted authentication password and obtain the authentication password after encrypting, can be obtained through encryption the IMSI in the SIM card of described mobile terminal and the first enciphered message by preset algorithm, when carrying out certification to the authentication password after encryption, certification can be carried out by the first enciphered message and SIM card information to it.
Present invention also offers a kind of mobile terminal, comprising: access request module, for initiating wlan network access request; First receiver module, for receiving the WLAN terminal authentication information request that certificate server sends according to described wlan network access request; Generation module, for using the communication number of described mobile terminal as authentication username, generate authentication password by international mobile subscriber identity IMSI corresponding to the SIM card of described mobile terminal; First sending module, for described authentication username and described authentication password are sent to described certificate server, carries out Portal certification to make described certificate server to described mobile terminal.
Present invention also offers a kind of certificate server, comprise: the second receiver module, for the authentication request of mobile terminal receive, described authentication request comprises authentication username and authentication password, described authenticated user is called the communication number of described mobile terminal, and described authentication password is generated by the international mobile subscriber identity IMSI that the SIM card of described mobile terminal is corresponding; First acquisition module, for getting the SIM information corresponding with described authentication username and user signing contract information from HLR, described user signing contract information carries the indication information being used to indicate and whether allowing described authenticated user to access WLAN; Authentication module, for according to described SIM card information and user signing contract information, carries out certification to the authentication password of described mobile terminal, obtains authentication result.
Above-mentioned certificate server, wherein, also comprise: determination module, for the user profile according to pre-stored, determine that situation opened by the WLAN set meal that described authentication username is corresponding, when described WLAN set meal open situation show that described authentication username has opened WLAN set meal time, enter described first acquisition module, otherwise, notify the failure of described mobile terminal authentication.
Above-mentioned certificate server, wherein, described authentication password is the authentication password after encryption, described second receiver module is further used for the authentication request receiving the mobile terminal that Portal server forwards, described authentication request comprises the authentication password after authentication username and encryption, authentication password after described encryption is that the described Portal server authentication password that adopts preset algorithm to send described mobile terminal and the first enciphered message are encrypted and obtain, described first enciphered message is supplied to described Portal server by Radio Access Controller AC in response to the request of described Portal server, described authentication module is further used for, according to described SIM card information, the first enciphered message and user signing contract information, carrying out certification, obtain authentication result to the authentication password after described encryption.
Present invention also offers a kind of portal certification system, comprise Radio Access Controller AC, Portal server and certificate server;
Described AC intercepts and captures the WLAN access request that mobile terminal is initiated, by described mobile terminal access Portal server;
Described Portal server sends WLAN terminal authentication information request to described mobile terminal, and after the authentication username receiving the transmission of described mobile terminal and authentication password, the authentication request comprising described authentication username and authentication password is sent to described certificate server, described authenticated user is called the communication number of described mobile terminal, and described authentication password is generated by the international mobile subscriber identity IMSI that the SIM card of described mobile terminal is corresponding;
After described certificate server receives described authentication request, the SIM information corresponding with described authentication username and user signing contract information is got from HLR, described user signing contract information carries the indication information being used to indicate and whether allowing described authenticated user to access WLAN, according to described SIM card information and user signing contract information, certification is carried out to the authentication password of described mobile terminal, obtains authentication result.
Fig. 4 is the communication process schematic diagram that portal certification system provided by the invention carries out Portal certification, as shown in the figure, described portal certification system comprises Radio Access Controller AC, Portal server and 3A server, and wherein 3A server is used for carrying out certification, comprising:
Step S400, WLAN terminal associates with wireless network;
Step S402, WLAN terminal initiates HTTP request;
Step S404, AC intercept and capture the HTTP request that WLAN terminal sends, and force HTTP request to Portal server, namely HTTP request is intercepted and captured by AC, make WLAN terminal access Portal server;
Step S406, Portal server sends WLAN terminal authentication information request to WLAN terminal, the authentication information of acquisition request WLAN terminal;
Step S408, authentication username and authentication password are sent a Portal server by WLAN terminal, and wherein, authenticated user is called the communication number of WLAN terminal, and authentication password is generated by the IMSI of the SIM card of WLAN terminal;
Step S410, after Portal server receives authentication username and authentication password, sends user information request to 3A server, obtains the user profile that this authentication username is corresponding;
Step S412,3A server, according to user name searching user's information, feeds back to Portal server, and meanwhile, the single of all right reponse system configuration connects the longest duration, to facilitate follow-up charging; Wherein, user profile comprises this authentication username and whether has opened WLAN online set meal indication information, only have when having opened WLAN online set meal, just need to carry out further certification to authentication password, otherwise, do not open WLAN online set meal and mean that the user that this authentication username is corresponding can not access WLAN net, therefore, without the need to carrying out certification to authentication password;
Step S414, Portal server asks Challenge message to AC, for being encrypted authentication password, improves the fail safe of authentication password in communication process;
Step S416, AC feed back Challenge information, comprise ChallengeID and Challenge, and wherein this ChallengeID and Challenge is used for being encrypted authentication password;
Step S418, the Challenge-Password that ChallengeID and Challenge obtains after MD5 algorithm calculates is sent to AC by Portal server, initiate certification, wherein Challenge-Password is obtained through encryption authentication password, ChallengeID and Challenge by MD5 algorithm;
ChallengeID, Challenge, Challenge-Password, Called-Station-ID are sent to 3A server by step S420, AC, and wherein, Called-Station-ID is the network access Identifier of WLAN terminal;
Step S422,3A server initiates SIM information and user signing contract information request to HLR, obtains the SIM card information corresponding with authentication username and user signing contract information.
Step S424, HLR are to the 3A server feedback SIM card information corresponding with authentication username and user signing contract information.
Step S426,3A server, after receiving the SIM card information corresponding with authentication username and user signing contract information, sends a notification message to HLR, informs that HLR completes the acquisition process of SIM card information and user signing contract information.
After step S428, HLR receive the notice of 3A server transmission, send feedback information to 3A server, confirmed the interaction flow of HLR.
Step S430,3A server carries out certification according to SIM card information and user signing contract information;
Step S432,3A server sends authentication result to AC, if success, to AC return authentication success message, and carry protocol parameter, and the related service attribute of user is to subscriber authorisation, otherwise, to AC return authentication failure message, wherein, the reason of authentification failure is carried in authentification failure message;
Authentication result is fed back to Portal server by step S434, AC;
Step S436, when the authentication is successful, WLAN terminal access wlan network, the timing of 3A startup of server, otherwise, the reason of prompting user authentication failure.
The above is the preferred embodiment of the present invention; it should be pointed out that for those skilled in the art, under the prerequisite not departing from principle of the present invention; can also make some improvements and modifications, these improvements and modifications also should be considered as protection scope of the present invention.

Claims (9)

1. a door portal authentication method, for mobile terminal, is characterized in that, described authentication method comprises:
Initiate wlan network access request;
Receive the WLAN terminal authentication information request that certificate server sends according to described wlan network access request;
Using the communication number of described mobile terminal as authentication username, the international mobile subscriber identity IMSI corresponding by the SIM card of described mobile terminal generates authentication password;
Described authentication username and described authentication password are sent to described certificate server, to make described certificate server, Portal certification is carried out to described mobile terminal.
2. a door portal authentication method, is characterized in that, described authentication method comprises:
First receiving step: the authentication request of mobile terminal receive, described authentication request comprises authentication username and authentication password, described authenticated user is called the communication number of described mobile terminal, and described authentication password is generated by the international mobile subscriber identity IMSI that the SIM card of described mobile terminal is corresponding;
First obtaining step: get the SIM card information corresponding with described authentication username and user signing contract information from HLR, described user signing contract information carries the indication information being used to indicate and whether allowing described authenticated user to access WLAN;
Authenticating step: according to described SIM card information and user signing contract information, carries out certification to the authentication password of described mobile terminal, obtains authentication result.
3. method as claimed in claim 2, is characterized in that, before described first obtaining step, also comprise:
Determining step: according to the user profile of pre-stored, determine that situation opened by the WLAN set meal that described authentication username is corresponding, when described WLAN set meal open situation show that described authentication username has opened WLAN set meal time, enter described first obtaining step, otherwise, notify the failure of described mobile terminal authentication.
4. method as claimed in claim 2, is characterized in that, described authentication password is the authentication password after encryption, and described first receiving step specifically comprises:
Receive the authentication request of the mobile terminal that Portal server forwards, described authentication request comprises the authentication password after authentication username and encryption, authentication password after described encryption is that the described Portal server authentication password that adopts preset algorithm to send described mobile terminal and the first enciphered message are encrypted and obtain, and described first enciphered message is supplied to described Portal server by Radio Access Controller AC in response to the request of described Portal server;
Described authenticating step is specially:
According to described SIM card information, the first enciphered message and user signing contract information, certification is carried out to the authentication password after described encryption, obtains authentication result.
5. a mobile terminal, is characterized in that, comprising:
Access request module, for initiating wlan network access request;
First receiver module, for receiving the WLAN terminal authentication information request that certificate server sends according to described wlan network access request;
Generation module, for using the communication number of described mobile terminal as authentication username, generate authentication password by international mobile subscriber identity IMSI corresponding to the SIM card of described mobile terminal;
First sending module, for described authentication username and described authentication password are sent to described certificate server, carries out Portal certification to make described certificate server to described mobile terminal.
6. a certificate server, is characterized in that, comprising:
Second receiver module, for the authentication request of mobile terminal receive, described authentication request comprises authentication username and authentication password, described authenticated user is called the communication number of described mobile terminal, and described authentication password is generated by the international mobile subscriber identity IMSI that the SIM card of described mobile terminal is corresponding;
First acquisition module, for getting the SIM information corresponding with described authentication username and user signing contract information from HLR, described user signing contract information carries the indication information being used to indicate and whether allowing described authenticated user to access WLAN;
Authentication module, for according to described SIM card information and user signing contract information, carries out certification to the authentication password of described mobile terminal, obtains authentication result.
7. certificate server as claimed in claim 6, is characterized in that, also comprise:
Determination module, for the user profile according to pre-stored, determine that situation opened by the WLAN set meal that described authentication username is corresponding, when described WLAN set meal open situation show that described authentication username has opened WLAN set meal time, enter described first acquisition module, otherwise, notify the failure of described mobile terminal authentication.
8. certificate server as claimed in claim 6, it is characterized in that, described authentication password is the authentication password after encryption, described second receiver module is further used for the authentication request receiving the mobile terminal that Portal server forwards, described authentication request comprises the authentication password after authentication username and encryption, authentication password after described encryption is that the described Portal server authentication password that adopts preset algorithm to send described mobile terminal and the first enciphered message are encrypted and obtain, described first enciphered message is supplied to described Portal server by Radio Access Controller AC in response to the request of described Portal server,
Described authentication module is further used for, according to described SIM card information, the first enciphered message and user signing contract information, carrying out certification, obtain authentication result to the authentication password after described encryption.
9. a portal certification system, is characterized in that, comprises Radio Access Controller AC, Portal server and certificate server;
Described AC intercepts and captures the WLAN access request that mobile terminal is initiated, by described mobile terminal access Portal server;
Described Portal server sends WLAN terminal authentication information request to described mobile terminal, and after the authentication username receiving the transmission of described mobile terminal and authentication password, the authentication request comprising described authentication username and authentication password is sent to described certificate server, described authenticated user is called the communication number of described mobile terminal, and described authentication password is generated by the international mobile subscriber identity IMSI that the SIM card of described mobile terminal is corresponding;
After described certificate server receives described authentication request, the SIM information corresponding with described authentication username and user signing contract information is got from HLR, described user signing contract information carries the indication information being used to indicate and whether allowing described authenticated user to access WLAN, according to described SIM card information and user signing contract information, certification is carried out to the authentication password of described mobile terminal, obtains authentication result.
CN201410270635.3A 2014-06-17 2014-06-17 Portal authentication method, mobile terminal, authentication server and Portal authentication system Pending CN105282740A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201410270635.3A CN105282740A (en) 2014-06-17 2014-06-17 Portal authentication method, mobile terminal, authentication server and Portal authentication system

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201410270635.3A CN105282740A (en) 2014-06-17 2014-06-17 Portal authentication method, mobile terminal, authentication server and Portal authentication system

Publications (1)

Publication Number Publication Date
CN105282740A true CN105282740A (en) 2016-01-27

Family

ID=55150897

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201410270635.3A Pending CN105282740A (en) 2014-06-17 2014-06-17 Portal authentication method, mobile terminal, authentication server and Portal authentication system

Country Status (1)

Country Link
CN (1) CN105282740A (en)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN109005154A (en) * 2018-07-01 2018-12-14 甘肃万维信息技术有限责任公司 One kind being based on 3DES algorithm telecommunications broadband AAA network access authentication decryption method

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101621801A (en) * 2009-08-11 2010-01-06 深圳华为通信技术有限公司 Method, system, server and terminal for authenticating wireless local area network
CN102255904A (en) * 2011-07-07 2011-11-23 上海顶竹通讯技术有限公司 Communication network and terminal authentication method thereof
CN102892110A (en) * 2012-09-19 2013-01-23 邦讯技术股份有限公司 Method and system for keeping consistency of user identifications of terminal in different networks
CN102984689A (en) * 2012-11-21 2013-03-20 东莞宇龙通信科技有限公司 System and method for verifying mobile terminal
US20130263239A1 (en) * 2012-03-27 2013-10-03 University-Industrycooperation Group Of Kyung Hee University Apparatus and method for performing user authentication by proxy in wireless communication system

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101621801A (en) * 2009-08-11 2010-01-06 深圳华为通信技术有限公司 Method, system, server and terminal for authenticating wireless local area network
CN102255904A (en) * 2011-07-07 2011-11-23 上海顶竹通讯技术有限公司 Communication network and terminal authentication method thereof
US20130263239A1 (en) * 2012-03-27 2013-10-03 University-Industrycooperation Group Of Kyung Hee University Apparatus and method for performing user authentication by proxy in wireless communication system
CN102892110A (en) * 2012-09-19 2013-01-23 邦讯技术股份有限公司 Method and system for keeping consistency of user identifications of terminal in different networks
CN102984689A (en) * 2012-11-21 2013-03-20 东莞宇龙通信科技有限公司 System and method for verifying mobile terminal

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN109005154A (en) * 2018-07-01 2018-12-14 甘肃万维信息技术有限责任公司 One kind being based on 3DES algorithm telecommunications broadband AAA network access authentication decryption method

Similar Documents

Publication Publication Date Title
DK1348280T3 (en) Approval data communications
CN102761870B (en) Terminal authentication and service authentication method, system and terminal
KR20160124648A (en) Method and apparatus for downloading and installing a profile
US20150181424A1 (en) Mobile wireless access
CN103297403A (en) Method and system for achieving dynamic password authentication
CN104836787A (en) System and method for authenticating client station
CN105792194B (en) Authentication method, authentication device, the network equipment, the Verification System of base station legitimacy
CN104917775A (en) Internet access method
US11711693B2 (en) Non-3GPP device access to core network
CN106330445B (en) Vehicle authentication method and device
US11917416B2 (en) Non-3GPP device access to core network
WO2014161277A1 (en) Method and system for connecting portable wlan hotspot
CN104683343A (en) Method for rapidly logging WiFi hotspot by terminal
CN112995090B (en) Authentication method, device and system for terminal application and computer readable storage medium
CN105282740A (en) Portal authentication method, mobile terminal, authentication server and Portal authentication system
KR101431214B1 (en) Mutual authentication method and system with network in machine type communication, key distribution method and system, and uicc and device pair authentication method and system in machine type communication
CN103139770B (en) The method and system of pairwise master key is transmitted in WLAN access network
CN103745364A (en) Scan code differential scanning-based anti-fake method and scan code differential scanning method
CN107426724B (en) Method and system for accessing intelligent household electrical appliance to wireless network, terminal and authentication server
CN102014385A (en) Authentication method for mobile terminal, and mobile terminal
KR20150043628A (en) Apparatus and method for sharing content using short-range communications in mobile devices
CN109981420B (en) Intelligent device network distribution method and intelligent device
CN110972130A (en) Virtual SIM card migration method, system and computer readable storage medium

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
RJ01 Rejection of invention patent application after publication

Application publication date: 20160127

RJ01 Rejection of invention patent application after publication