CN105933898A - Portal authentication method and system - Google Patents

Portal authentication method and system Download PDF

Info

Publication number
CN105933898A
CN105933898A CN201610224933.8A CN201610224933A CN105933898A CN 105933898 A CN105933898 A CN 105933898A CN 201610224933 A CN201610224933 A CN 201610224933A CN 105933898 A CN105933898 A CN 105933898A
Authority
CN
China
Prior art keywords
ssid
portal server
portal
frame
response frame
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201610224933.8A
Other languages
Chinese (zh)
Inventor
王斌
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Shanghai Feixun Data Communication Technology Co Ltd
Original Assignee
Shanghai Feixun Data Communication Technology Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Shanghai Feixun Data Communication Technology Co Ltd filed Critical Shanghai Feixun Data Communication Technology Co Ltd
Priority to CN201610224933.8A priority Critical patent/CN105933898A/en
Publication of CN105933898A publication Critical patent/CN105933898A/en
Pending legal-status Critical Current

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/06Authentication

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Mobile Radio Communication Systems (AREA)

Abstract

The present invention provides a portal authentication method and system. The method includes the following steps that: beacon frames and detection response frames are pre-extended, and the extended beacon frames and detection response frames contain the uniform resource locator of a portal server corresponding to an SSID configured by an access point; when receiving the beacon frames or the detection response frames from the access point, a station site obtains the uniform resource locator of the portal server corresponding to the SSID; and if the station site is correlated with the SSID, the uniform resource locator of the portal server corresponding to the SSID is sent to a browser, so that the browser can be made to request portal authentication from the portal server. With the portal authentication method and system of the invention adopted, convenient and more guaranteed portal authentication can be realized.

Description

A kind of method and system of Portal certification
Technical field
The present embodiments relate to communication technical field, a kind of method particularly relating to Portal certification And system.
Background technology
In current the most either family or public environment, all there is numerous wireless WIFI Network, especially in public business environment, people generally utilize the mobile device in hands Access exterior I nternet network, and the businessman in business environment all compare emphasis commercial interest, So the wireless network of " freely " typically will not be provided for user, it is wireless that businessman provides Network generally requires Portal certification (introduction certification), user by cell-phone number, QQ account, Wechat account or microblog account etc. are authenticated online.Portal authentication mode have need not peace Dress Authentication Client, reduces the maintenance workload of client, it is simple to operation, can be at Portal The advantages such as expansion, technology maturation of commencing business on the page and be widely used in operator, The networks such as school.
Traditional Portal certification is to be intercepted STA by AP (Access Point, access point) (Transmission Control Protocol passes transport control protocol to the TCP of (Station, website) View) HTTP (Hyper Text Transfer Protocol, HTML (Hypertext Markup Language)) of 80 ports Request, then redirects http response message by forgery and allows STA send HTTP request To Portal server.
This method drawback is a lot, on the one hand, when STA quantity is the biggest, the performance to AP There is the biggest pressure, because by every Bao Bicha, AP must confirm which is only needs and blocks The HTTP request of TCP 80 port cut;On the other hand, if STA transmission is TCP The HTTPS request of 443 ports, because HTTPS is encryption, so AP cannot forge Message redirects response.
Summary of the invention
The present invention provides the method and system of a kind of Portal certification, it is possible to realizes convenient and more has guarantor The Portal certification of barrier.
The present invention provides a kind of method of Portal certification, including: extended beacon frame and detection in advance Response frame, described extended beacon frame includes that with probing response frame the SSID that access point configures is corresponding The URL of Portal server;When website receives the beacon frame from access point or spy When surveying response frame, from described beacon frame with probing response frame, obtain Portal service corresponding for SSID The URL of device;If station associate SSID, by Portal corresponding for described SSID The URL of server is sent to browser, so that browser please to Portal server Ask Portal certification.
Further, the described frame of extended beacon in advance and probing response frame, including: pass through beacon frame Parameter field is specified to add Portal server corresponding for SSID with the manufacturer in probing response frame URL。
It is further, described when website receives from access point beacon frame or probing response frame, Portal server URL corresponding to SSID is obtained from described beacon frame with probing response frame, including: When website receives for the first time from access point beacon frame or probing response frame, from described beacon frame The Portal server URL corresponding with acquisition SSID in probing response frame, and locally created described Portal server URL corresponding for SSID;Again receive from access point beacon frame when website or During probing response frame, from described beacon frame with probing response frame, obtain Portal clothes corresponding for SSID Business device URL, and the Portal server URL corresponding for described SSID recorded is updated.
Further, if described station associate SSID, by Portal clothes corresponding for described SSID Business device URL is sent to browser, so that browser asks Portal certification to Portal server, Including: website associates with SSID, if the locally stored Portal having described SSID corresponding of described website Server URL, then be sent to browser by Portal server URL corresponding for described SSID, So that browser is according to the URL of Portal server, to corresponding Portal server Send request message and carry out Portal certification.
Further, described method also includes: after station associate SSID, if described website connects Receive beacon frame and the probing response frame of described SSID, obtain from described beacon frame and probing response frame The URL of the Portal server that described SSID is corresponding, and to described in recording Portal server URL corresponding for SSID is updated.
The present invention provides the system of a kind of Portal certification, including: access point, for extending in advance Beacon frame and probing response frame, described extended beacon frame and probing response frame include that access point configures The URL of Portal server corresponding for SSID;Website, for when receiving arrival When beacon frame or the probing response frame of access point, obtain from described beacon frame and probing response frame The URL of the Portal server that SSID is corresponding;If Associated SSID, by described The URL of the Portal server that SSID is corresponding is sent to browser, so that browser Portal certification is asked to Portal server.
Further, described access point, for extended beacon frame and probing response frame in advance, specifically For: specify parameter field to add SSID by beacon frame with the manufacturer in probing response frame corresponding The URL of Portal server.
Further, described website, it is used for receiving from access point beacon frame or probing response frame Time, from described beacon frame with probing response frame, obtain Portal server URL corresponding to SSID, Particularly as follows: described website, for receiving for the first time from access point beacon frame or probe response During frame, from described beacon frame with probing response frame, obtain Portal server URL corresponding to SSID, And at locally created Portal server URL corresponding for described SSID;When again receiving from connecing When access point beacon frame or probing response frame, from described beacon frame and probing response frame, obtain SSID pair The Portal server URL answered, and to the Portal server corresponding for described SSID recorded URL is updated.
Further, described website, if for Associated SSID, by Portal corresponding for described SSID Server URL is sent to browser, so that browser asks Portal certification to Portal server, Particularly as follows: described website, for associating with SSID, if described website is locally stored have described in Portal server URL corresponding for SSID, then by Portal server URL corresponding for described SSID It is sent to browser, so that browser is according to the URL of Portal server, to right The Portal server answered sends request message and carries out Portal certification.
Further, described website, it is additionally operable to: after station associate SSID, if described website Receive beacon frame and the probing response frame of described SSID, obtain from described beacon frame and probing response frame Take the URL of Portal server corresponding for described SSID, and to described in recording Portal server URL corresponding for SSID is updated.
The method and system of the Portal certification that the present invention provides, by beacon frame and probe response Frame extends the URL of the Portal server corresponding for SSID of access point configuration, makes Proper when receiving from the beacon frame of access point or probing response frame, website can obtain and record The URL of the Portal server that SSID is corresponding;When website is connected to SSID, If website local record has the URL of Portal server corresponding for SSID, then will The URL of the Portal server that this SSID is corresponding is sent to browser, so that browsing Device asks Portal certification to Portal server.Therefore, present invention achieves convenient and more secure Portal certification.
Accompanying drawing explanation
In order to be illustrated more clearly that the embodiment of the present invention or technical scheme of the prior art, below will The accompanying drawing used required in embodiment or description of the prior art is briefly described, aobvious and easy Insight, the accompanying drawing in describing below is some embodiments of the present invention, for ordinary skill From the point of view of personnel, on the premise of not paying creative work, it is also possible to obtain it according to these accompanying drawings His accompanying drawing.
Fig. 1 is the schematic flow sheet of the method carrying out Portal certification in the embodiment of the present invention;
Fig. 2 is the configuration diagram of the system carrying out Portal certification in the embodiment of the present invention.
Detailed description of the invention
For making the purpose of the embodiment of the present invention, technical scheme and advantage clearer, below in conjunction with Accompanying drawing in the embodiment of the present invention, carries out clear, complete to the technical scheme in the embodiment of the present invention Ground describes, it is clear that described embodiment is a part of embodiment of the present invention rather than whole Embodiment.Based on the embodiment in the present invention, those of ordinary skill in the art are not making creation The every other embodiment obtained under property work premise, broadly falls into the scope of protection of the invention.
Fig. 1 is the schematic flow sheet of the method carrying out Portal certification in the embodiment of the present invention, such as Fig. 1 Shown in, including:
Step S11, in advance extended beacon frame and probing response frame, described extended beacon frame and detection ring The SSID (Service Set Identifier, service set) answering frame to include that access point configures is right The URL (Uniform Resoure Locator, URL) of the Portal server answered.
Beacon (Beacon) frame, by periodically sending Beacon frame, allows mobile workstation learn this The existence of network, thus adjust parameter necessary to this network of addition.In basic network, access Point must be responsible for sending Beacon frame, and Beacon frame scope in one's power is basic service region, due to All communications all must pass through access point, and therefore work station otherwise cannot be able to not receive away from too far away To beacon Beacon frame.
Probe response (Probe Response) frame, if probe requests thereby (Probe Request) frame The network detected is the most compatible, and this network will be with Probe Response frame response.On basis In architecture network, the work station being responsible for response is access point, and access point can periodically send Beacon Signal.
In this step, relative to prior art, extend beacon frame and probing response frame, specifically Can specify parameter (Vendor Specific) word by the manufacturer in beacon frame and probing response frame The Portal server URL that Duan Tianjia WLAN is corresponding.
One WLAN can be divided into several subnet needing different identity to verify by SSID technology Network, each sub-network is required for independent authentication, only by the user of authentication Corresponding sub-network can be entered, prevent unauthorized user from entering present networks.
One AP can configure multiple SSID, and AP is sending Beacon frame and the Probe of SSID During Response, Portal server URL corresponding for this SSID is placed on Vendor Specific In.
Step S12, when website receives from the beacon frame of access point or probing response frame, from letter Mark frame or probing response frame obtain Portal server URL corresponding to SSID.
In this step, the Beacon frame from access point or Probe are received for the first time as STA During Response frame, in the Vendor Specific from Beacon frame or Probe Response frame Obtain Portal server URL corresponding to SSID, and carry out record.
Because Portal server URL corresponding for SSID is probably dynamically change, so follow-up When again receiving Beacon frame or Probe Response frame, SSID can be obtained corresponding Portal server URL, and be updated.
Step S13, as station associate SSID, by Portal server URL corresponding for this SSID It is sent to browser, so that browser asks Portal certification to Portal server.
In this step, owing to website stores Portal server URL corresponding for SSID, so If during certain SSID of station associate, can Portal server URL corresponding for this SSID Being sent to browser, such browser is known which Portal server to carry out Portal to Have authenticated, browser sends connection request and carries out Portal certification to Portal server.
After STA Associated SSID, it is also possible to continue to obtain Beacon frame and the Probe of this SSID The Portal server URL of Response frame carries out record.
Fig. 2 is the configuration diagram of the system carrying out Portal certification in the embodiment of the present invention.Such as Fig. 2 Shown in, including:
Access point, for extended beacon frame and probing response frame, described extended beacon frame and spy in advance Survey the unified resource location of the Portal server corresponding for SSID that response frame includes that access point configures Symbol;
Website, for when receiving from the beacon frame of access point or probing response frame, from described Beacon frame and the unified resource location obtaining Portal server corresponding for SSID in probing response frame Symbol;If Associated SSID, the unified resource of Portal server corresponding for described SSID is positioned Symbol is sent to browser, so that browser asks Portal certification to Portal server.
Specifically,
Parameter field is specified to add SSID by beacon frame with the manufacturer in probing response frame corresponding The URL of Portal server.
Described website, when receiving from access point beacon frame or probing response frame for the first time, from The Portal server URL that described beacon frame is corresponding with acquisition SSID in probing response frame, and at this Ground creates the Portal server URL that described SSID is corresponding;Believe from access point when again receiving When mark frame or probing response frame, from described beacon frame with probing response frame, obtain SSID corresponding Portal server URL, and to the Portal server URL corresponding for described SSID recorded It is updated.
If station associate SSID, there is described SSID corresponding if described website is locally stored Portal server URL, then be sent to clear by Portal server URL corresponding for described SSID Look at device, so that browser is according to the URL of Portal server, to corresponding Portal Server sends request message and carries out Portal certification.
Described website, is additionally operable to: after station associate SSID, if described website receives described The beacon frame of SSID and probing response frame, obtain described SSID from described beacon frame and probing response frame The URL of corresponding Portal server, and corresponding to the described SSID recorded Portal server URL is updated.
The method and system of the Portal certification that the embodiment of the present invention provides, by beacon frame and spy Survey the unified resource location of the Portal server corresponding for SSID extending access point configuration in response frame Symbol so that when receiving from the beacon frame of access point or probing response frame, website can obtain And record the URL of Portal server corresponding for SSID;When website is connected to SSID Time, if website local record has the URL of Portal server corresponding for SSID, Then the URL of Portal server corresponding for this SSID is sent to browser, so that Browser asks Portal certification to Portal server.Therefore, the embodiment of the present invention achieve convenient And more secure Portal certification.
System embodiment described above is only schematically, wherein said as separating component The unit illustrated can be or may not be physically separate, the parts shown as unit Can be or may not be physical location, i.e. may be located at a place, or can also divide Cloth is on multiple NEs.Some or all of mould therein can be selected according to the actual needs Block realizes the purpose of the present embodiment scheme.Those of ordinary skill in the art are not paying creativeness In the case of work, i.e. it is appreciated that and implements.
Through the above description of the embodiments, those skilled in the art is it can be understood that arrive Each embodiment can add the mode of required general hardware platform by software and realize, and the most also may be used To pass through hardware.Based on such understanding, technique scheme is the most in other words to prior art The part contributed can embody with the form of software product, and this computer software product can With storage in a computer-readable storage medium, such as ROM/RAM, magnetic disc, CD etc., including Some instructions with so that computer equipment (can be personal computer, server, or The network equipment etc.) perform the method described in some part of each embodiment or embodiment.
Last it is noted that above example is only in order to illustrate technical scheme, rather than It is limited;Although the present invention being described in detail with reference to previous embodiment, this area Those of ordinary skill is it is understood that it still can be to the technical scheme described in foregoing embodiments Modify, or wherein portion of techniques feature is carried out equivalent;And these are revised or replace Change, do not make appropriate technical solution essence depart from various embodiments of the present invention technical scheme spirit and Scope.

Claims (10)

1. the method for a Portal certification, it is characterised in that including:
Extended beacon frame and probing response frame in advance, wraps in described extended beacon frame and probing response frame Include the URL of the Portal server corresponding for SSID of access point configuration;
When website receives from the beacon frame of access point or probing response frame, from described beacon frame With the URL obtaining Portal server corresponding for SSID in probing response frame;
If station associate SSID, by the unified resource of Portal server corresponding for described SSID Finger URL is sent to browser, so that browser asks Portal certification to Portal server.
The method carrying out Portal certification the most according to claim 1, it is characterised in that institute State extended beacon frame and probing response frame in advance, including:
Parameter field is specified to add SSID by beacon frame with the manufacturer in probing response frame corresponding The URL of Portal server.
The method carrying out Portal certification the most according to claim 1, it is characterised in that institute State when website receives from access point beacon frame or probing response frame, from described beacon frame and spy Survey and response frame obtains Portal server URL corresponding to SSID, including:
When website receives for the first time from access point beacon frame or probing response frame, from described letter The Portal server URL that mark frame is corresponding with acquisition SSID in probing response frame, and locally created Portal server URL corresponding for described SSID;
When website receives again from access point beacon frame or probing response frame, from described beacon The Portal server URL that frame is corresponding with acquisition SSID in probing response frame, and to the institute recorded State Portal server URL corresponding for SSID to be updated.
The method carrying out Portal certification the most according to claim 3, it is characterised in that institute If stating station associate SSID, Portal server URL corresponding for described SSID is sent to clear Look at device, so that browser asks Portal certification to Portal server, including:
Website associates with SSID, if the locally stored Portal having described SSID corresponding of described website Server URL, then be sent to browser by Portal server URL corresponding for described SSID, So that browser is according to the URL of Portal server, to corresponding Portal server Send request message and carry out Portal certification.
The method carrying out Portal certification the most according to claim 4, it is characterised in that institute Method of stating also includes:
After station associate SSID, if described website receives beacon frame and the spy of described SSID Survey response frame, obtain Portal corresponding for described SSID from described beacon frame with probing response frame and service The URL of device, and unified to the Portal server corresponding for described SSID recorded URLs is updated.
6. the system of a Portal certification, it is characterised in that including:
Access point, for extended beacon frame and probing response frame, described extended beacon frame and spy in advance Survey the unified resource location of the Portal server corresponding for SSID that response frame includes that access point configures Symbol;
Website, for when receiving from the beacon frame of access point or probing response frame, from described Beacon frame and the unified resource location obtaining Portal server corresponding for SSID in probing response frame Symbol;If Associated SSID, the unified resource of Portal server corresponding for described SSID is positioned Symbol is sent to browser, so that browser asks Portal certification to Portal server.
The system carrying out Portal certification the most according to claim 6, it is characterised in that institute State access point, for extended beacon frame and probing response frame in advance, particularly as follows:
Parameter field is specified to add SSID by beacon frame with the manufacturer in probing response frame corresponding The URL of Portal server.
The system carrying out Portal certification the most according to claim 6, it is characterised in that institute State website, when being used for receiving from access point beacon frame or probing response frame, from described beacon frame The Portal server URL corresponding with acquisition SSID in probing response frame, particularly as follows:
Described website, is used for when receiving from access point beacon frame or probing response frame for the first time, Portal server URL corresponding for acquisition SSID from described beacon frame with probing response frame, and Locally created Portal server URL corresponding for described SSID;When again receiving from access point When beacon frame or probing response frame, from described beacon frame with probing response frame, obtain SSID corresponding Portal server URL, and to the Portal server URL corresponding for described SSID recorded It is updated.
The system carrying out Portal certification the most according to claim 8, it is characterised in that institute State website, if for Associated SSID, sent out by Portal server URL corresponding for described SSID Give browser, so that browser asks Portal certification to Portal server, particularly as follows:
Described website, for associating with SSID, if described website is locally stored described SSID Corresponding Portal server URL, then send out Portal server URL corresponding for described SSID Give browser, so that browser is according to the URL of Portal server, to correspondence Portal server send request message carry out Portal certification.
The system carrying out Portal certification the most according to claim 9, it is characterised in that Described website, is additionally operable to:
After station associate SSID, if described website receives beacon frame and the spy of described SSID Survey response frame, obtain Portal corresponding for described SSID from described beacon frame with probing response frame and service The URL of device, and unified to the Portal server corresponding for described SSID recorded URLs is updated.
CN201610224933.8A 2016-04-12 2016-04-12 Portal authentication method and system Pending CN105933898A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201610224933.8A CN105933898A (en) 2016-04-12 2016-04-12 Portal authentication method and system

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201610224933.8A CN105933898A (en) 2016-04-12 2016-04-12 Portal authentication method and system

Publications (1)

Publication Number Publication Date
CN105933898A true CN105933898A (en) 2016-09-07

Family

ID=56838019

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201610224933.8A Pending CN105933898A (en) 2016-04-12 2016-04-12 Portal authentication method and system

Country Status (1)

Country Link
CN (1) CN105933898A (en)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN107707560A (en) * 2017-10-31 2018-02-16 迈普通信技术股份有限公司 Authentication method, system, network access equipment and Portal server

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1794730A (en) * 2004-12-16 2006-06-28 Sap股份公司 Enhanced Internet session management protocol
CN102769928A (en) * 2011-05-05 2012-11-07 四零四科技股份有限公司 Wireless device, system and method for selecting online target according to signal quality
US20140059172A1 (en) * 2006-12-19 2014-02-27 International Business Machines Corporation Remote portlet consumer with enhanced resource url processing
CN105049416A (en) * 2015-06-15 2015-11-11 小米科技有限责任公司 Method and apparatus for accessing to wifi network

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1794730A (en) * 2004-12-16 2006-06-28 Sap股份公司 Enhanced Internet session management protocol
US20140059172A1 (en) * 2006-12-19 2014-02-27 International Business Machines Corporation Remote portlet consumer with enhanced resource url processing
CN102769928A (en) * 2011-05-05 2012-11-07 四零四科技股份有限公司 Wireless device, system and method for selecting online target according to signal quality
CN105049416A (en) * 2015-06-15 2015-11-11 小米科技有限责任公司 Method and apparatus for accessing to wifi network

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
ALEX-DG: "portal(web)概述", 《CSDN博客》 *

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN107707560A (en) * 2017-10-31 2018-02-16 迈普通信技术股份有限公司 Authentication method, system, network access equipment and Portal server
CN107707560B (en) * 2017-10-31 2019-11-08 迈普通信技术股份有限公司 Authentication method, system, network access equipment and Portal server

Similar Documents

Publication Publication Date Title
CN104380776B (en) A kind of method for connecting network, hot terminal and management terminal
US9179314B2 (en) Secure and automatic connection to wireless network
EP2936881B1 (en) Connecting to a wireless network using social network identifier
CN106209726B (en) Mobile application single sign-on method and device
EP3120591B1 (en) User identifier based device, identity and activity management system
US20180351943A1 (en) Server for providing a token
CN105827676B (en) A kind of user's portrait Information Acquisition System, method and device
US20150281239A1 (en) Provision of access privileges to a user
JP6157222B2 (en) Communication device, control method, and program
CN108270882A (en) The analysis method and device of domain name, storage medium, electronic device
CN105827658A (en) Method and device for multi-application synchronization login
CN107241727A (en) Method and apparatus for obtaining WAP information
CN106921971B (en) Method, device and system for wireless application
CN107517189A (en) Method, the equipment that a kind of WLAN user access authentication and configuration information issue
CN103997479B (en) A kind of asymmetric services IP Proxy Methods and equipment
CN104618449A (en) Web singe-point login implementing method and device
US20150103678A1 (en) Identification of user home system in a distributed environment
CN104780168A (en) Portal authentication method and equipment
CN107508822A (en) Access control method and device
CN107889194A (en) Obtain, provide method, equipment and the medium of WAP access information
CN104811439A (en) Portal authentication method and device
CN103634792B (en) Method, device, client and the system of WLAN network user state monitoring
CN108696546A (en) A kind of method and device of the user terminal access public network of Enterprise Mobile private network
WO2017181800A1 (en) Adaptive portal authentication page system based on operating system, and method for same
CN107071900A (en) A kind of user facility positioning method and device

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
RJ01 Rejection of invention patent application after publication
RJ01 Rejection of invention patent application after publication

Application publication date: 20160907