WO2016177158A1 - Terminal access method, system, terminal, network device, and computer storage medium - Google Patents

Terminal access method, system, terminal, network device, and computer storage medium Download PDF

Info

Publication number
WO2016177158A1
WO2016177158A1 PCT/CN2016/076929 CN2016076929W WO2016177158A1 WO 2016177158 A1 WO2016177158 A1 WO 2016177158A1 CN 2016076929 W CN2016076929 W CN 2016076929W WO 2016177158 A1 WO2016177158 A1 WO 2016177158A1
Authority
WO
WIPO (PCT)
Prior art keywords
terminal
identifier
network device
access request
message
Prior art date
Application number
PCT/CN2016/076929
Other languages
French (fr)
Chinese (zh)
Inventor
王曦
Original Assignee
中兴通讯股份有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 中兴通讯股份有限公司 filed Critical 中兴通讯股份有限公司
Publication of WO2016177158A1 publication Critical patent/WO2016177158A1/en

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/08Access security

Definitions

  • the present invention relates to access technologies for wireless networks, and in particular, to a terminal access method, a system terminal, a network device, and a computer storage medium.
  • the wireless network After collecting the mobile device international identity code (IMEI, International Mobile Equipment Identity) of the terminal, the wireless network sends the IMEI to the Equipment Identity Register (EIR), and the EIR determines the IMEI according to its stored data and filtering principle. Whether it is in the gray/blacklist, if not, it is determined that the IMEI is whitelisted. The terminal to which the IMEI belongs can communicate freely. If it is a blacklist, you cannot make calls or even access the network.
  • IMEI mobile device international identity code
  • EIR Equipment Identity Register
  • the IMEI number must be determined after the terminal accesses the network. If the IMEI of the terminal is illegal, the interaction between the terminal and the wireless network becomes meaningless before the IMEI is determined to be illegal, and the wireless resource is wasted.
  • an embodiment of the present invention is to provide a terminal access method, system, terminal, network device, and computer storage medium.
  • the first aspect provides a terminal access method, including:
  • the connection establishment message is sent to the terminal.
  • the identifier of the terminal includes a temporary identifier of the terminal and a unique identifier of the terminal that is different from the other terminal, and the corresponding preset list is a whitelist that includes a preset unique identifier, where the method further includes:
  • the terminal sends a first reject message to notify the terminal to refuse to establish a connection.
  • the identifier of the terminal is a temporary identifier of the terminal
  • the corresponding preset list is a preset temporary identifier list
  • the terminal sends a second reject message to the terminal, where the second reject message is used to notify the terminal to refuse to establish a connection, and trigger the terminal to send and carry There is an access request message that the terminal is uniquely distinguished from other terminals.
  • the temporary identifier is a System Architecture Evolution Temporary Mobile Station Identifier (S-TMSI), and the unique identifier is an IMEI.
  • S-TMSI System Architecture Evolution Temporary Mobile Station Identifier
  • a second aspect provides a terminal access method, where the method includes:
  • the method further includes:
  • PLMN Public Land Mobile Network
  • the PLMN is added to a PLMN list, which is a PLMN set that does not need to be searched at the time of PLMN search.
  • the method further includes:
  • a network device including:
  • a receiving unit configured to receive an access request message sent by the terminal, where the access request message carries an identifier of the terminal;
  • the sending unit is configured to send a connection establishment message to the terminal when the identifier of the terminal is in the preset list.
  • the identifier of the terminal includes a temporary identifier of the terminal and a unique identifier of the terminal that is different from the other terminal, and the corresponding preset list is a whitelist that includes a preset unique identifier, and the sending unit is further configured. for:
  • the terminal sends a first reject message to notify the terminal to refuse to establish a connection.
  • the identifier of the terminal is a temporary identifier of the terminal
  • the corresponding preset list is a preset temporary identifier list
  • the sending unit is further configured to:
  • the terminal sends a second reject message to the terminal, where the second reject message is configured to notify the terminal to refuse to establish a connection, and trigger the terminal to send and carry There is an access request message that the terminal is uniquely distinguished from other terminals.
  • the temporary identifier is an S-TMSI
  • the unique identifier is an IMEI
  • a fourth aspect provides a terminal, where the terminal includes:
  • a sending unit configured to send an access request message to the network device, where the access request message carries an identifier of the terminal;
  • a receiving unit configured to receive a connection establishment message sent by the network device
  • the receiving unit is further configured to receive, by the network device, a first reject message for notifying that the connection is refused to be established;
  • the terminal further includes:
  • An obtaining unit configured to acquire a public land mobile network PLMN of the wireless network
  • the joining unit is configured to join the PLMN to the PLMN list, which is a PLMN set that does not need to be searched when the PLMN searches.
  • the receiving unit is further configured to receive a second reject message sent by the network device, where the second reject message is used to notify the terminal to refuse to establish a connection, and trigger the terminal to send and carry the The terminal is distinguished from the uniquely identified access request message of the other terminal;
  • the sending unit is further configured to send, to the network device, an access request message carrying the unique identifier.
  • a fifth aspect provides a terminal access system, where the system includes:
  • the terminal is configured to send an access request message to the network device, where the access request message carries an identifier of the terminal, receives a connection establishment message sent by the network device, and establishes a connection with the wireless network according to the connection establishment message. Connection;
  • the network device is configured to receive an access request message sent by the terminal, where the access request message carries an identifier of the terminal, and when the identifier of the terminal is in a preset list, send a connection establishment message to the terminal. .
  • a computer storage medium comprising a set of instructions, when executed, causing at least one processor to execute a terminal access method on the network device side, or performing the terminal side Terminal access method.
  • the embodiment of the present invention provides a terminal access method, a system, a terminal, a network device, and a computer storage medium, and receives an access request message sent by the terminal, where the access request message carries the identifier of the terminal;
  • a connection establishment message is sent to the terminal.
  • the terminal and the wireless network can be connected before determining whether the identifier of the terminal carried in the access request message is in the preset list. In this way, it can be ensured that each terminal that is accessed is a legal terminal, and the access is legal access. Therefore, the legal terminal can be accessed, and the interaction between the terminal and the wireless network is meaningful interaction, thereby reducing wireless. Waste of resources.
  • FIG. 1 is a flowchart of a terminal access method according to an embodiment of the present invention
  • FIG. 2 is a flowchart of still another method for accessing a terminal according to an embodiment of the present invention.
  • FIG. 3 is a flowchart of still another terminal access method according to an embodiment of the present invention.
  • FIG. 4 is a schematic structural diagram of a network device according to an embodiment of the present disclosure.
  • FIG. 5 is a schematic structural diagram of a terminal according to an embodiment of the present disclosure.
  • FIG. 6 is a schematic structural diagram of another terminal according to an embodiment of the present disclosure.
  • FIG. 7 is a schematic structural diagram of a terminal access system according to an embodiment of the present invention.
  • the network device receives an access request message sent by the terminal, where the access request message carries the identifier of the terminal; when the identifier of the terminal is in the preset list, The network device sends a connection establishment message to the terminal.
  • the embodiment of the invention provides a terminal access method, which is applied to a network device. As shown in FIG. 1 , the method includes:
  • Step 101 Receive an access request message sent by the terminal.
  • the access request message carries an identifier of the terminal.
  • the identifier of the terminal can be divided into two types.
  • the identifier of one terminal includes a temporary identifier and a unique identifier different from other terminals; the identifier of another terminal includes only the temporary identifier.
  • the temporary identifier may be the S-TMSI of the terminal or a random value, and the unique identifier may be an IMEI.
  • the temporary identification is a variable identification, and the unique identification is fixed and immutable and is used to indicate the unique identification of the terminal.
  • Step 102 When the identifier of the terminal is in the preset list, send a connection establishment message to the terminal.
  • the preset list is a list of identifiers of terminals that can access the wireless network.
  • the terminal and the wireless network can be connected after determining whether the identifier of the terminal carried in the access request message is in the preset list.
  • each terminal that is accessed is a legal terminal, and the access is legal access. Therefore, the interaction between the terminal and the wireless network is a meaningful interaction, thereby reducing the waste of wireless resources.
  • the method may further include: When the unique identifier is not in the whitelist, a first reject message for notifying the terminal to refuse to establish a connection is sent to the terminal.
  • the method may further include: when the temporary identifier of the terminal is not in the preset temporary identifier list.
  • Sending a second reject message to the terminal the second reject message is used to notify the terminal to refuse to establish a connection, and trigger the terminal to send an access request message carrying a unique identifier of the terminal different from other terminals.
  • the second reject message is used to notify the terminal to reject The connection is established, and is also used to trigger the terminal to send an access request message carrying a unique identifier different from the other terminal.
  • An embodiment of the present invention provides a terminal access method, which is applied to a terminal. As shown in FIG. 2, the method includes:
  • Step 201 Send an access request message to the network device.
  • the access request message carries the identifier of the terminal.
  • Step 202 Receive a connection establishment message sent by the network device.
  • connection establishment message is a message that is sent when the identifier of the terminal is determined to be in a preset list.
  • Step 203 Establish a connection with the wireless network according to the connection establishment message.
  • the terminal and the wireless network can be connected after determining whether the identifier of the terminal carried in the access request message is in the preset list.
  • each terminal that is accessed is a legal terminal, and the access is legal access. Therefore, the interaction between the terminal and the wireless network is a meaningful interaction, thereby reducing the waste of wireless resources.
  • the method may further include: the receiving network device sends a first reject message for notifying the establishment of the connection; acquiring the PLMN of the wireless network; adding the PLMN to the PLMN list, where the PLMN list is during the PLMN search There is no need to search for PLMN collections.
  • the method may further include: receiving a second reject message sent by the network device, where the second reject message is used to notify the terminal to refuse to establish a connection, and trigger the terminal to send the terminal that is different from other terminals.
  • a uniquely identified access request message; an access request message carrying the unique identifier is sent to the network device. in other words.
  • the second reject message is used to notify the terminal to refuse to establish a connection, and is also used to trigger the terminal to send an access request message carrying the unique identifier of the terminal different from other terminals.
  • An embodiment of the present invention provides a terminal access method, which is applied to a terminal access system (wireless network), where the terminal is a smart phone, and the terminal access system (wireless network) includes a smart phone and is used for managing terminal access. Network equipment.
  • the method may include:
  • Step 301 The smart phone sends an access request message to the network device.
  • the access request message in this embodiment is a Radio Resource Control (RRC) connection request message.
  • RRC Radio Resource Control
  • the RRC connection request may include S-TMSI, connection reason, and IMEI; and may include only S-TMSI and connection reason.
  • Step 302 The network device determines whether the access request message carries the IMEI. If yes, go to step 303; if no, go to step 309.
  • Step 303 The network device determines whether the IMEI is in the white list. If yes, go to step 304; if no, go to step 306.
  • the whitelist is generally stored in the core network. Therefore, the network device can obtain the whitelist in the core network and then judge. The network device can send the IMEI or S-TMSI to the device in the core network to save the whitelist for judgment. This embodiment is not limited.
  • Step 304 The network device sends a connection establishment message to the smart phone.
  • connection setup message in this embodiment is an RRC connection setup message.
  • Step 305 The smart phone establishes an RRC connection according to the connection setup message, and ends the process.
  • Step 306 The network device sends a first reject message to the smart phone.
  • the first reject message of this embodiment is an RRC Connection Reject message. Because the RRC connection reject message in the existing 3rd Generation Partnership Project (3GPP, 3rd Generation Partnership Project) 36.331 has only two valid parameters: wait time (waitTime) and priority order (deprioritisationReq), the RRC connection reject message is used. Make the following improvements, add the parameter first Reject Cause value to the message, when the first reason is rejected When the value indicates that the IMEI of the terminal (the smartphone in this embodiment) is illegal, it indicates that the network determines that the IMEI of the current terminal is not in the white list, and denies the access of the terminal.
  • 3GPP, 3rd Generation Partnership Project 36.331 has only two valid parameters: wait time (waitTime) and priority order (deprioritisationReq)
  • the RRC connection reject message is used. Make the following improvements, add the parameter first Reject Cause value to the message, when the first reason is rejected When the value indicates that the IMEI of the terminal (the smartphone in this embodiment) is illegal, it indicates that
  • Step 307 The smart phone acquires a PLMN of the wireless network.
  • Step 308 The smartphone adds the PLMN to the PLMN list.
  • the PLMN joining the list can be ignored by the search in the subsequent PLMN search, and the flow is ended. If the network registration process is initiated again (step 301), a cell under a certain PLMN needs to be registered. If there is no suitable PLMN, the terminal enters a sleep state.
  • Step 309 The network device determines whether the S-TMSI is in the preset temporary identifier list. If yes, go to step 304; if no, go to step 310.
  • step 309 is performed.
  • Step 310 The network device sends a second reject message to the smart phone.
  • the second reject message is a modified RRC Connection Reject message, which can trigger the retransmission of the connection setup message carrying the unique identifier.
  • the RRC connection reject message in the 3GPP 36.331 protocol has only two valid parameters: wait time (waitTime) and priority order (deprioritisationReq)
  • this patent improves the RRC connection reject message and adds the second parameter to the RRC Connection Reject message.
  • the reason value is rejected, and the second reject reason value indicates that the network requires the terminal (the smartphone in this embodiment) to initiate the RRC connection request again, and attaches the IMEI of the terminal to the request.
  • Step 311 The smart phone sends an access request message carrying the IMEI to the network device, and step 302 is performed.
  • the embodiment of the present invention provides a network device 40.
  • the network device 40 includes:
  • the receiving unit 401 is configured to receive an access request message sent by the terminal, where the access request message carries an identifier of the terminal;
  • the sending unit 402 is configured to send the identifier of the terminal to the terminal when the identifier of the terminal is in the preset list. Send a connection setup message.
  • the terminal and the wireless network can be connected after determining whether the identifier of the terminal carried in the access request message is in the preset list.
  • each terminal that is accessed is a legal terminal, and the access is legal access. Therefore, the interaction between the terminal and the wireless network is a meaningful interaction, thereby reducing the waste of wireless resources.
  • the sending unit 402 is also configured to:
  • a first reject message for notifying the terminal to refuse to establish a connection is sent to the terminal.
  • the sending unit 402 is further configured to:
  • the second reject message is sent to the terminal, where the second reject message is used to notify the terminal to refuse to establish a connection, and trigger the terminal to send and carry the
  • the terminal is distinguished from the uniquely identified access request message of other terminals.
  • the second reject message is used to notify the terminal to refuse to establish a connection, and is also used to trigger the terminal to send an access request message carrying a unique identifier different from the other terminal.
  • the temporary identifier is S-TMSI
  • the unique identifier is IMEI
  • the sending unit 402 and the receiving unit 401 may each be a central processing unit (CPU, Central Processing Unit), a microprocessor (MPU, a digital processor unit), a digital signal processor (located in the network device 40).
  • CPU Central Processing Unit
  • MPU microprocessor
  • DSP Digital Signal Processor
  • FPGA Field Programmable Gate Array
  • the embodiment of the present invention provides a terminal 50.
  • the terminal 50 may include:
  • the sending unit 501 is configured to send an access request message to the network device, where the access request message carries an identifier of the terminal;
  • the receiving unit 502 is configured to receive a connection establishment message sent by the network device.
  • the establishing unit 503 is configured to establish a connection with the wireless network according to the connection establishment message.
  • connection establishment message is a message that is sent when the identifier of the terminal is determined to be in the preset list.
  • the terminal and the wireless network can be connected after determining whether the identifier of the terminal carried in the access request message is in the preset list.
  • each terminal that is accessed is a legal terminal, and the access is legal access. Therefore, the interaction between the terminal and the wireless network is a meaningful interaction, thereby reducing the waste of wireless resources.
  • the receiving unit 502 is further configured to receive, by the network device, a first reject message for notifying that the connection is refused to be established;
  • the terminal 50 may further include:
  • the obtaining unit 504 is configured to acquire a PLMN of the wireless network
  • the joining unit 505 is configured to add the PLMN to the PLMN list, where the PLMN list is a PLMN set that does not need to be searched when the PLMN searches;
  • the receiving unit 502 is further configured to receive a second reject message sent by the network device, where the second reject message is used to notify the terminal to refuse to establish a connection, and trigger the terminal to send and carry the bearer.
  • the second reject message is used to notify the terminal to refuse to establish a connection, and is also used to trigger the terminal to send an access request message carrying the unique identifier of the terminal different from other terminals.
  • the sending unit 501 is further configured to send, to the network device, an access request message carrying the unique identifier.
  • the sending unit 501, the receiving unit 502, and the obtaining unit 504 may be The CPU, the MPU, the DSP, the FPGA, and the like located in the terminal 50 are implemented in combination with the transceiver; the establishing unit 503 and the adding unit 505 can be implemented by a CPU, an MPU, a DSP, or an FPGA located in the terminal 50.
  • the embodiment of the present invention provides a terminal access system 60.
  • the terminal access system 60 includes:
  • the network device 40 is configured to receive an access request message sent by the terminal, where the access request message carries the identifier of the terminal, and when the identifier of the terminal is in the preset list, send a connection establishment message to the terminal. .
  • the terminal 50 is configured to send an access request message to the network device, receive a connection establishment message sent by the network device, and establish a connection with the wireless network according to the connection establishment message.
  • embodiments of the present invention can be provided as a method, system, or computer program product. Accordingly, the present invention can take the form of a hardware embodiment, a software embodiment, or a combination of software and hardware. Moreover, the invention can take the form of a computer program product embodied on one or more computer-usable storage media (including but not limited to disk storage and optical storage, etc.) including computer usable program code.
  • the computer program instructions can also be stored in a computer readable memory that can direct a computer or other programmable data processing device to operate in a particular manner, such that the instructions stored in the computer readable memory produce an article of manufacture comprising the instruction device.
  • the apparatus implements the functions specified in one or more blocks of a flow or a flow and/or block diagram of the flowchart.
  • These computer program instructions can also be loaded onto a computer or other programmable data processing device such that a series of operational steps are performed on a computer or other programmable device to produce computer-implemented processing for execution on a computer or other programmable device.
  • the instructions provide steps for implementing the functions specified in one or more of the flow or in a block or blocks of a flow diagram.
  • an embodiment of the present invention further provides a computer storage medium, where the computer storage medium includes a set of instructions, when executed, causing at least one processor to execute a terminal access method on the network device side, or The terminal access method on the terminal side is performed.

Abstract

Disclosed is a terminal access method, comprising: receiving an access request message transmitted by a terminal, where the access request message carries an identifier of the terminal; and, when the identifier of the terminal is on a preset list, transmitting a connection establishment message to the terminal. Also disclosed are a network device, a terminal, a terminal access system, and a computer storage medium.

Description

终端接入方法、系统、终端、网络设备及计算机存储介质Terminal access method, system, terminal, network device and computer storage medium 技术领域Technical field
本发明涉及无线网络的接入技术,尤其涉及一种终端接入方法、系统终端、网络设备及计算机存储介质。The present invention relates to access technologies for wireless networks, and in particular, to a terminal access method, a system terminal, a network device, and a computer storage medium.
背景技术Background technique
随着无线网络在人类生活各个领域所扮演的角色日趋重要,但无线网络的安全问题日益严重,特别是非法终端入侵,针对非法终端入侵这一问题,目前的防止非法终端接入的技术为:无线网络收集到终端的移动设备国际身份码(IMEI,International Mobile Equipment Identity)后,把IMEI发送到设备识别寄存器(EIR,Equipment Identity Register),由EIR依据自身的存储数据和筛选原则,判定该IMEI是否在灰\黑名单中,如果不是则判定该IMEI属于白名单。该IMEI所属的终端可以自由通讯。如果是黑名单则不能进行通话,甚至接入网络。With the increasing role of wireless networks in various fields of human life, the security of wireless networks is becoming more and more serious, especially for illegal terminal intrusion. For the problem of illegal terminal intrusion, the current technologies for preventing illegal terminal access are: After collecting the mobile device international identity code (IMEI, International Mobile Equipment Identity) of the terminal, the wireless network sends the IMEI to the Equipment Identity Register (EIR), and the EIR determines the IMEI according to its stored data and filtering principle. Whether it is in the gray/blacklist, if not, it is determined that the IMEI is whitelisted. The terminal to which the IMEI belongs can communicate freely. If it is a blacklist, you cannot make calls or even access the network.
但是上述方法中,IMEI号判别必须是在终端接入网络后才发生,如果终端的IMEI非法,则IMEI判定非法前,终端和无线网络间的交互都变得没有意义,浪费无线资源。However, in the above method, the IMEI number must be determined after the terminal accesses the network. If the IMEI of the terminal is illegal, the interaction between the terminal and the wireless network becomes meaningless before the IMEI is determined to be illegal, and the wireless resource is wasted.
发明内容Summary of the invention
为解决上述技术问题,本发明实施例期望提供一种终端接入方法、系统、终端、网络设备及计算机存储介质。To solve the above technical problem, an embodiment of the present invention is to provide a terminal access method, system, terminal, network device, and computer storage medium.
本发明实施例的技术方案是这样实现的:The technical solution of the embodiment of the present invention is implemented as follows:
第一方面,提供一种终端接入方法,包括:The first aspect provides a terminal access method, including:
接收终端发送的接入请求消息,所述接入请求消息携带有所述终端的 标识;Receiving an access request message sent by the terminal, where the access request message carries the terminal Identification
所述终端的标识在预设名单中时,向所述终端发送连接建立消息。When the identifier of the terminal is in the preset list, the connection establishment message is sent to the terminal.
可选地,所述终端的标识包括所述终端的临时标识和所述终端区别于其他终端的唯一标识,对应的预设名单是包括预设的唯一标识的白名单,所述方法还包括:Optionally, the identifier of the terminal includes a temporary identifier of the terminal and a unique identifier of the terminal that is different from the other terminal, and the corresponding preset list is a whitelist that includes a preset unique identifier, where the method further includes:
所述终端的唯一标识不在所述白名单中时,向所述终端发送用于通知所述终端拒绝建立连接的第一拒绝消息。When the unique identifier of the terminal is not in the whitelist, the terminal sends a first reject message to notify the terminal to refuse to establish a connection.
可选地,所述终端的标识是所述终端的临时标识,对应的预设名单是预设临时标识名单,所述方法还包括:Optionally, the identifier of the terminal is a temporary identifier of the terminal, and the corresponding preset list is a preset temporary identifier list, where the method further includes:
所述终端的临时标识不在所述预设临时标识名单中时,向所述终端发送第二拒绝消息,所述第二拒绝消息用于通知所述终端拒绝建立连接,并触发所述终端发送携带有所述终端区别于其他终端的唯一标识的接入请求消息。When the temporary identifier of the terminal is not in the preset temporary identifier list, the terminal sends a second reject message to the terminal, where the second reject message is used to notify the terminal to refuse to establish a connection, and trigger the terminal to send and carry There is an access request message that the terminal is uniquely distinguished from other terminals.
可选地,所述临时标识是系统架构演进临时移动用户标识(S-TMSI,System Architecture Evolution Temporary Mobile Station Identifier),所述唯一标识是IMEI。Optionally, the temporary identifier is a System Architecture Evolution Temporary Mobile Station Identifier (S-TMSI), and the unique identifier is an IMEI.
第二方面,提供一种终端接入方法,所述方法包括:A second aspect provides a terminal access method, where the method includes:
向网络设备发送接入请求消息,所述接入请求消息携带有所述终端的标识;Sending an access request message to the network device, where the access request message carries an identifier of the terminal;
接收所述网络设备发送的连接建立消息;Receiving a connection establishment message sent by the network device;
根据所述连接建立消息,建立与无线网络的连接。Establishing a connection with the wireless network based on the connection setup message.
可选地,所述方法还包括:Optionally, the method further includes:
接收所述网络设备发送用于通知拒绝建立连接的第一拒绝消息;Receiving, by the network device, a first reject message for notifying that the connection is refused to be established;
获取无线网络的公共陆地移动网络(PLMN,Public Land Mobile Network); Obtaining a public land mobile network (PLMN, Public Land Mobile Network) of a wireless network;
将所述PLMN加入PLMN列表,所述PLMN列表是在PLMN搜索时,无需被搜索的PLMN集合。The PLMN is added to a PLMN list, which is a PLMN set that does not need to be searched at the time of PLMN search.
可选地,所述方法还包括:Optionally, the method further includes:
接收所述网络设备发送的第二拒绝消息,所述第二拒绝消息用于通知所述终端拒绝建立连接,并触发所述终端发送携带有所述终端区别于其他终端的唯一标识的接入请求消息;Receiving a second reject message sent by the network device, where the second reject message is used to notify the terminal to refuse to establish a connection, and trigger the terminal to send an access request that carries the unique identifier of the terminal different from other terminals. Message
向所述网络设备发送携带有所述唯一标识的接入请求消息。Sending an access request message carrying the unique identifier to the network device.
第三方面,提供一种网络设备,包括:In a third aspect, a network device is provided, including:
接收单元,配置为接收终端发送的接入请求消息,所述接入请求消息携带有所述终端的标识;a receiving unit, configured to receive an access request message sent by the terminal, where the access request message carries an identifier of the terminal;
发送单元,配置为所述终端的标识在预设名单中时,向所述终端发送连接建立消息。The sending unit is configured to send a connection establishment message to the terminal when the identifier of the terminal is in the preset list.
可选地,所述终端的标识包括所述终端的临时标识和所述终端区别于其他终端的唯一标识,对应的预设名单是包括预设的唯一标识的白名单,所述发送单元还配置为:Optionally, the identifier of the terminal includes a temporary identifier of the terminal and a unique identifier of the terminal that is different from the other terminal, and the corresponding preset list is a whitelist that includes a preset unique identifier, and the sending unit is further configured. for:
所述终端的唯一标识不在所述白名单中时,向所述终端发送用于通知所述终端拒绝建立连接的第一拒绝消息。When the unique identifier of the terminal is not in the whitelist, the terminal sends a first reject message to notify the terminal to refuse to establish a connection.
可选地,所述终端的标识是所述终端的临时标识,对应的预设名单是预设临时标识名单,所述发送单元还配置为:Optionally, the identifier of the terminal is a temporary identifier of the terminal, and the corresponding preset list is a preset temporary identifier list, where the sending unit is further configured to:
所述终端的临时标识不在所述预设临时标识名单中时,向所述终端发送第二拒绝消息,所述第二拒绝消息配置为通知所述终端拒绝建立连接,并触发所述终端发送携带有所述终端区别于其他终端的唯一标识的接入请求消息。When the temporary identifier of the terminal is not in the preset temporary identifier list, the terminal sends a second reject message to the terminal, where the second reject message is configured to notify the terminal to refuse to establish a connection, and trigger the terminal to send and carry There is an access request message that the terminal is uniquely distinguished from other terminals.
可选地,所述临时标识是S-TMSI,所述唯一标识是IMEI。Optionally, the temporary identifier is an S-TMSI, and the unique identifier is an IMEI.
第四方面,提供一种终端,所述终端包括: A fourth aspect provides a terminal, where the terminal includes:
发送单元,配置为向网络设备发送接入请求消息,所述接入请求消息携带有所述终端的标识;a sending unit, configured to send an access request message to the network device, where the access request message carries an identifier of the terminal;
接收单元,配置为接收所述网络设备发送的连接建立消息;a receiving unit, configured to receive a connection establishment message sent by the network device;
建立单元,配置为根据所述连接建立消息,建立与无线网络的连接。Establishing a unit configured to establish a connection with the wireless network according to the connection establishment message.
可选地,所述接收单元,还配置为接收所述网络设备发送用于通知拒绝建立连接的第一拒绝消息;Optionally, the receiving unit is further configured to receive, by the network device, a first reject message for notifying that the connection is refused to be established;
所述终端还包括:The terminal further includes:
获取单元,配置为获取无线网络的公共陆地移动网络PLMN;An obtaining unit configured to acquire a public land mobile network PLMN of the wireless network;
加入单元,配置为将所述PLMN加入PLMN列表,所述PLMN列表是在PLMN搜索时,无需被搜索的PLMN集合。The joining unit is configured to join the PLMN to the PLMN list, which is a PLMN set that does not need to be searched when the PLMN searches.
可选地,所述接收单元,还配置为接收所述网络设备发送的第二拒绝消息,所述第二拒绝消息用于通知所述终端拒绝建立连接,并触发所述终端发送携带有所述终端区别于其他终端的唯一标识的接入请求消息;Optionally, the receiving unit is further configured to receive a second reject message sent by the network device, where the second reject message is used to notify the terminal to refuse to establish a connection, and trigger the terminal to send and carry the The terminal is distinguished from the uniquely identified access request message of the other terminal;
所述发送单元,还配置为向所述网络设备发送携带有所述唯一标识的接入请求消息。The sending unit is further configured to send, to the network device, an access request message carrying the unique identifier.
第五方面,提供一种终端接入系统,所述系统包括:A fifth aspect provides a terminal access system, where the system includes:
终端,配置为向网络设备发送接入请求消息,所述接入请求消息携带有所述终端的标识;接收所述网络设备发送的连接建立消息;并根据所述连接建立消息,建立与无线网络的连接;The terminal is configured to send an access request message to the network device, where the access request message carries an identifier of the terminal, receives a connection establishment message sent by the network device, and establishes a connection with the wireless network according to the connection establishment message. Connection;
所述网络设备,配置为接收终端发送的接入请求消息,所述接入请求消息携带有所述终端的标识;所述终端的标识在预设名单中时,向所述终端发送连接建立消息。The network device is configured to receive an access request message sent by the terminal, where the access request message carries an identifier of the terminal, and when the identifier of the terminal is in a preset list, send a connection establishment message to the terminal. .
第六方面,提供一种计算机存储介质,所述计算机存储介质包括一组指令,当执行所述指令时,引起至少一个处理器执行上述网络设备侧的终端接入方法,或者执行上述终端侧的终端接入方法。 According to a sixth aspect, a computer storage medium is provided, the computer storage medium comprising a set of instructions, when executed, causing at least one processor to execute a terminal access method on the network device side, or performing the terminal side Terminal access method.
本发明实施例提供了一种终端接入方法、系统、终端、网络设备及计算机存储介质,接收终端发送的接入请求消息,所述接入请求消息携带有终端的标识;当终端的标识在预设名单中时,向终端发送连接建立消息。这样一来,先需要确定接入请求消息携带的终端的标识是否在预设名单中之后,才能将终端和无线网络建立连接。这样,就可以保证每次接入的终端都是合法终端,接入都是合法接入,因此,能够接入合法的终端,终端和无线网络间的交互都是有意义的交互,从而减少无线资源的浪费。The embodiment of the present invention provides a terminal access method, a system, a terminal, a network device, and a computer storage medium, and receives an access request message sent by the terminal, where the access request message carries the identifier of the terminal; When the list is preset, a connection establishment message is sent to the terminal. In this way, the terminal and the wireless network can be connected before determining whether the identifier of the terminal carried in the access request message is in the preset list. In this way, it can be ensured that each terminal that is accessed is a legal terminal, and the access is legal access. Therefore, the legal terminal can be accessed, and the interaction between the terminal and the wireless network is meaningful interaction, thereby reducing wireless. Waste of resources.
附图说明DRAWINGS
在附图(其不一定是按比例绘制的)中,相似的附图标记可在不同的视图中描述相似的部件。具有不同字母后缀的相似附图标记可表示相似部件的不同示例。附图以示例而非限制的方式大体示出了本文中所讨论的各个实施例。In the drawings, which are not necessarily to scale, the Like reference numerals with different letter suffixes may indicate different examples of similar components. The drawings generally illustrate the various embodiments discussed herein by way of example and not limitation.
图1为本发明实施例提供的一种终端接入方法的流程图;FIG. 1 is a flowchart of a terminal access method according to an embodiment of the present invention;
图2为本发明实施例提供的又一种终端接入方法的流程图;2 is a flowchart of still another method for accessing a terminal according to an embodiment of the present invention;
图3为本发明实施例提供的再一种终端接入方法的流程图;FIG. 3 is a flowchart of still another terminal access method according to an embodiment of the present invention;
图4为本发明实施例提供的一种网络设备的结构示意图;FIG. 4 is a schematic structural diagram of a network device according to an embodiment of the present disclosure;
图5为本发明实施例提供的一种终端的结构示意图;FIG. 5 is a schematic structural diagram of a terminal according to an embodiment of the present disclosure;
图6为本发明实施例提供的另一种终端的结构示意图;FIG. 6 is a schematic structural diagram of another terminal according to an embodiment of the present disclosure;
图7为本发明实施例提供的终端接入系统的结构示意图。FIG. 7 is a schematic structural diagram of a terminal access system according to an embodiment of the present invention.
具体实施方式detailed description
下面将结合本发明实施例中的附图,对本发明实施例中的技术方案进行清楚、完整地描述。The technical solutions in the embodiments of the present invention will be clearly and completely described in the following with reference to the accompanying drawings.
在本发明的各种实施例中:网络设备接收终端发送的接入请求消息,所述接入请求消息携带有终端的标识;当终端的标识在预设名单中时,所 述网络设备向终端发送连接建立消息。In various embodiments of the present invention, the network device receives an access request message sent by the terminal, where the access request message carries the identifier of the terminal; when the identifier of the terminal is in the preset list, The network device sends a connection establishment message to the terminal.
实施例一Embodiment 1
本发明实施例提供一种终端接入方法,应用于网络设备,如图1所示,该方法包括:The embodiment of the invention provides a terminal access method, which is applied to a network device. As shown in FIG. 1 , the method includes:
步骤101、接收终端发送的接入请求消息。Step 101: Receive an access request message sent by the terminal.
这里,所述接入请求消息携带有终端的标识。其中,终端的标识可以分为两种。一种终端的标识包括临时标识和区别于其他终端的唯一标识;另一种终端的标识只包括临时标识。实际应用时,临时标识可以是终端的S-TMSI或者是一个随机值,唯一标识可以是IMEI。这里,临时标识是可变的标识,唯一标识是固定的不可变且用于表示该终端的唯一标识。Here, the access request message carries an identifier of the terminal. Among them, the identifier of the terminal can be divided into two types. The identifier of one terminal includes a temporary identifier and a unique identifier different from other terminals; the identifier of another terminal includes only the temporary identifier. In actual application, the temporary identifier may be the S-TMSI of the terminal or a random value, and the unique identifier may be an IMEI. Here, the temporary identification is a variable identification, and the unique identification is fixed and immutable and is used to indicate the unique identification of the terminal.
步骤102、终端的标识在预设名单中时,向终端发送连接建立消息。Step 102: When the identifier of the terminal is in the preset list, send a connection establishment message to the terminal.
这里,预设名单是可以接入无线网络的终端的标识名单。Here, the preset list is a list of identifiers of terminals that can access the wireless network.
这样一来,在需要确定接入请求消息携带的终端的标识是否在预设名单中之后,才能将终端和无线网络建立连接。这样,就可以保证每次接入的终端都是合法终端,接入都是合法接入,因此,终端和无线网络间的交互都是有意义的交互,从而减少无线资源的浪费。In this way, the terminal and the wireless network can be connected after determining whether the identifier of the terminal carried in the access request message is in the preset list. In this way, each terminal that is accessed is a legal terminal, and the access is legal access. Therefore, the interaction between the terminal and the wireless network is a meaningful interaction, thereby reducing the waste of wireless resources.
在一实施例中,当所述终端的标识包括终端的临时标识和终端区别于其他终端的唯一标识,对应的预设名单是包括预设的唯一标识的白名单时,该方法还可以包括:当唯一标识不在白名单中时,向终端发送用于通知终端拒绝建立连接的第一拒绝消息。In an embodiment, when the identifier of the terminal includes the temporary identifier of the terminal and the unique identifier of the terminal that is different from the other terminal, and the corresponding preset list is a whitelist that includes the preset unique identifier, the method may further include: When the unique identifier is not in the whitelist, a first reject message for notifying the terminal to refuse to establish a connection is sent to the terminal.
在一实施例中,当所述终端的标识是终端的临时标识,对应的预设名单是预设临时标识名单时,该方法还可以包括:当终端的临时标识不在预设临时标识名单中时,向终端发送第二拒绝消息,所述第二拒绝消息用于通知终端拒绝建立连接,并触发终端发送携带有终端区别于其他终端的唯一标识的接入请求消息。换句话说,所述第二拒绝消息用于通知终端拒绝 建立连接,同时还用于触发终端发送携带有终端区别于其他终端的唯一标识的接入请求消息。In an embodiment, when the identifier of the terminal is a temporary identifier of the terminal, and the corresponding preset list is a preset temporary identifier list, the method may further include: when the temporary identifier of the terminal is not in the preset temporary identifier list. Sending a second reject message to the terminal, the second reject message is used to notify the terminal to refuse to establish a connection, and trigger the terminal to send an access request message carrying a unique identifier of the terminal different from other terminals. In other words, the second reject message is used to notify the terminal to reject The connection is established, and is also used to trigger the terminal to send an access request message carrying a unique identifier different from the other terminal.
实施例二Embodiment 2
本发明实施例提供一种终端接入方法,应用于终端,如图2所示,该方法包括:An embodiment of the present invention provides a terminal access method, which is applied to a terminal. As shown in FIG. 2, the method includes:
步骤201、向网络设备发送接入请求消息。Step 201: Send an access request message to the network device.
这里,接入请求消息携带有终端的标识。Here, the access request message carries the identifier of the terminal.
步骤202、接收网络设备发送的连接建立消息。Step 202: Receive a connection establishment message sent by the network device.
这里,所述连接建立消息为确定所述终端的标识在预设名单中时发送的消息。Here, the connection establishment message is a message that is sent when the identifier of the terminal is determined to be in a preset list.
步骤203、根据连接建立消息,建立与无线网络的连接。Step 203: Establish a connection with the wireless network according to the connection establishment message.
这样一来,在需要确定接入请求消息携带的终端的标识是否在预设名单中之后,才能将终端和无线网络建立连接。这样,就可以保证每次接入的终端都是合法终端,接入都是合法接入,因此,终端和无线网络间的交互都是有意义的交互,从而减少无线资源的浪费。In this way, the terminal and the wireless network can be connected after determining whether the identifier of the terminal carried in the access request message is in the preset list. In this way, each terminal that is accessed is a legal terminal, and the access is legal access. Therefore, the interaction between the terminal and the wireless network is a meaningful interaction, thereby reducing the waste of wireless resources.
在一实施例中,该方法还可以包括:接收网络设备发送用于通知拒绝建立连接的第一拒绝消息;获取无线网络的PLMN;将该PLMN加入PLMN列表,所述PLMN列表是在PLMN搜索时,无需被搜索的PLMN集合。In an embodiment, the method may further include: the receiving network device sends a first reject message for notifying the establishment of the connection; acquiring the PLMN of the wireless network; adding the PLMN to the PLMN list, where the PLMN list is during the PLMN search There is no need to search for PLMN collections.
在一实施例中,该方法还可以包括:接收网络设备发送的第二拒绝消息,所述第二拒绝消息用于通知终端拒绝建立连接,并触发终端发送携带有所述终端区别于其他终端的唯一标识的接入请求消息;向网络设备发送携带有所述唯一标识的接入请求消息。换句话说。所述第二拒绝消息用于通知终端拒绝建立连接,同时还用于触发终端发送携带有所述终端区别于其他终端的唯一标识的接入请求消息。In an embodiment, the method may further include: receiving a second reject message sent by the network device, where the second reject message is used to notify the terminal to refuse to establish a connection, and trigger the terminal to send the terminal that is different from other terminals. A uniquely identified access request message; an access request message carrying the unique identifier is sent to the network device. in other words. The second reject message is used to notify the terminal to refuse to establish a connection, and is also used to trigger the terminal to send an access request message carrying the unique identifier of the terminal different from other terminals.
实施例三 Embodiment 3
本发明实施例提供一种终端接入方法,应用于终端接入系统(无线网络),以终端为智能手机为例,该终端接入系统(无线网络)包括智能手机和用于管理终端接入的网络设备。在智能手机还没有接入无线网络时的场景下,例如智能手机处于刚开机等场景。如图3所示,该方法可以包括:An embodiment of the present invention provides a terminal access method, which is applied to a terminal access system (wireless network), where the terminal is a smart phone, and the terminal access system (wireless network) includes a smart phone and is used for managing terminal access. Network equipment. In the scenario where the smart phone is not yet connected to the wireless network, for example, the smart phone is in a scene such as just starting up. As shown in FIG. 3, the method may include:
步骤301、智能手机向网络设备发送接入请求消息。Step 301: The smart phone sends an access request message to the network device.
本实施例中的接入请求消息为无线资源控制(RRC,Radio Resource Control)连接请求消息。The access request message in this embodiment is a Radio Resource Control (RRC) connection request message.
所述RRC连接请求可以包括S-TMSI、连接原因和IMEI;也可以只包括S-TMSI和连接原因。The RRC connection request may include S-TMSI, connection reason, and IMEI; and may include only S-TMSI and connection reason.
步骤302、网络设备判断接入请求消息是否携带有IMEI。若是,则执行步骤303;若否,则执行步骤309。Step 302: The network device determines whether the access request message carries the IMEI. If yes, go to step 303; if no, go to step 309.
步骤303、网络设备判断IMEI是否在白名单中。若是,则执行步骤304;若否,则执行步骤306。Step 303: The network device determines whether the IMEI is in the white list. If yes, go to step 304; if no, go to step 306.
该白名单一般保存在核心网中,因此,网络设备可以获取核心网中的白名单再进行判断,或者,网络设备可以将IMEI或S-TMSI发送到核心网中保存白名单的设备进行判断。本实施例不做限定。The whitelist is generally stored in the core network. Therefore, the network device can obtain the whitelist in the core network and then judge. The network device can send the IMEI or S-TMSI to the device in the core network to save the whitelist for judgment. This embodiment is not limited.
步骤304、网络设备向智能手机发送连接建立消息。Step 304: The network device sends a connection establishment message to the smart phone.
本实施例中的连接建立消息是RRC连接建立消息。The connection setup message in this embodiment is an RRC connection setup message.
步骤305、智能手机根据连接建立消息建立RRC连接,结束本次流程。Step 305: The smart phone establishes an RRC connection according to the connection setup message, and ends the process.
步骤306、网络设备向智能手机发送第一拒绝消息。Step 306: The network device sends a first reject message to the smart phone.
这里,本实施例的第一拒绝消息是RRC连接拒绝消息。因为现有的第三代合作伙伴计划(3GPP,3rd Generation Partnership Project)36.331协议里面的RRC连接拒绝消息只有等待时间(waitTime)和优先级顺序(deprioritisationReq)2个有效参数,所以对RRC连接拒绝消息做如下改进,在消息中加入参数第一拒绝原因(Reject Cause)值,当第一拒绝原因 值表示终端(本实施例中的智能手机)的IMEI非法时,则表示网络判定当前终端的IMEI不在白名单中,且拒绝终端的接入。Here, the first reject message of this embodiment is an RRC Connection Reject message. Because the RRC connection reject message in the existing 3rd Generation Partnership Project (3GPP, 3rd Generation Partnership Project) 36.331 has only two valid parameters: wait time (waitTime) and priority order (deprioritisationReq), the RRC connection reject message is used. Make the following improvements, add the parameter first Reject Cause value to the message, when the first reason is rejected When the value indicates that the IMEI of the terminal (the smartphone in this embodiment) is illegal, it indicates that the network determines that the IMEI of the current terminal is not in the white list, and denies the access of the terminal.
步骤307、智能手机获取无线网络的PLMN。Step 307: The smart phone acquires a PLMN of the wireless network.
步骤308、智能手机将该PLMN加入PLMN列表。Step 308: The smartphone adds the PLMN to the PLMN list.
这里,加入该列表的PLMN在之后的PLMN搜索时可以被忽略搜索,结束本次流程。若再次发起网络注册过程(执行步骤301),则需注册上某个PLMN下的一个小区,如没有合适的PLMN,则终端进入休眠状态。Here, the PLMN joining the list can be ignored by the search in the subsequent PLMN search, and the flow is ended. If the network registration process is initiated again (step 301), a cell under a certain PLMN needs to be registered. If there is no suitable PLMN, the terminal enters a sleep state.
步骤309、网络设备判断S-TMSI是否在预设临时标识名单中。若是,则执行步骤304;若否,则执行步骤310。Step 309: The network device determines whether the S-TMSI is in the preset temporary identifier list. If yes, go to step 304; if no, go to step 310.
这里,当RRC连接请求只包括S-TMSI和连接原因时,执行步骤309。Here, when the RRC connection request includes only the S-TMSI and the connection reason, step 309 is performed.
步骤310、网络设备向智能手机发送第二拒绝消息。Step 310: The network device sends a second reject message to the smart phone.
这里,第二拒绝消息是改进的RRC连接拒绝消息,能够触发再次发送携带有唯一标识的连接建立消息。因为3GPP 36.331协议里面的RRC连接拒绝消息只有等待时间(waitTime)和优先级顺序(deprioritisationReq)2个有效参数,所以本专利对RRC连接拒绝消息进行一些改进,在RRC Connection Reject消息中加入参数第二拒绝原因值,且第二拒绝原因值表示网络要求终端(本实施例中的智能手机)再次发起RRC连接请求,并在该请求中附上终端的IMEI。Here, the second reject message is a modified RRC Connection Reject message, which can trigger the retransmission of the connection setup message carrying the unique identifier. Because the RRC connection reject message in the 3GPP 36.331 protocol has only two valid parameters: wait time (waitTime) and priority order (deprioritisationReq), this patent improves the RRC connection reject message and adds the second parameter to the RRC Connection Reject message. The reason value is rejected, and the second reject reason value indicates that the network requires the terminal (the smartphone in this embodiment) to initiate the RRC connection request again, and attaches the IMEI of the terminal to the request.
步骤311、智能手机向网络设备发送携带有IMEI的接入请求消息,执行步骤302。Step 311: The smart phone sends an access request message carrying the IMEI to the network device, and step 302 is performed.
实施例四Embodiment 4
本发明实施例提供一种网络设备40,如图4所示,该网络设备40包括:The embodiment of the present invention provides a network device 40. As shown in FIG. 4, the network device 40 includes:
接收单元401,配置为接收终端发送的接入请求消息,所述接入请求消息携带有所述终端的标识;The receiving unit 401 is configured to receive an access request message sent by the terminal, where the access request message carries an identifier of the terminal;
发送单元402,配置为所述终端的标识在预设名单中时,向所述终端发 送连接建立消息。The sending unit 402 is configured to send the identifier of the terminal to the terminal when the identifier of the terminal is in the preset list. Send a connection setup message.
这样一来,在需要确定接入请求消息携带的终端的标识是否在预设名单中之后,才能将终端和无线网络建立连接。这样,就可以保证每次接入的终端都是合法终端,接入都是合法接入,因此,终端和无线网络间的交互都是有意义的交互,从而减少无线资源的浪费。In this way, the terminal and the wireless network can be connected after determining whether the identifier of the terminal carried in the access request message is in the preset list. In this way, each terminal that is accessed is a legal terminal, and the access is legal access. Therefore, the interaction between the terminal and the wireless network is a meaningful interaction, thereby reducing the waste of wireless resources.
在一实施例中,当所述终端的标识包括所述终端的临时标识和所述终端区别于其他终端的唯一标识,对应的预设名单是包括预设的唯一标识的白名单时,所述发送单元402还配置为:In an embodiment, when the identifier of the terminal includes the temporary identifier of the terminal and the unique identifier of the terminal different from the other terminal, and the corresponding preset list is a whitelist including a preset unique identifier, The sending unit 402 is also configured to:
当所述终端的唯一标识不在所述白名单中时,向所述终端发送用于通知所述终端拒绝建立连接的第一拒绝消息。When the unique identifier of the terminal is not in the whitelist, a first reject message for notifying the terminal to refuse to establish a connection is sent to the terminal.
在一实施例中,当所述终端的标识是所述终端的临时标识,对应的预设名单是预设临时标识名单时,所述发送单元402还配置为:In an embodiment, when the identifier of the terminal is a temporary identifier of the terminal, and the corresponding preset list is a preset temporary identifier list, the sending unit 402 is further configured to:
当所述终端的临时标识不在预设临时标识名单中时,向所述终端发送第二拒绝消息,所述第二拒绝消息用于通知所述终端拒绝建立连接,并触发所述终端发送携带有所述终端区别于其他终端的唯一标识的接入请求消息。换句话说,所述第二拒绝消息用于通知终端拒绝建立连接,同时还用于触发终端发送携带有终端区别于其他终端的唯一标识的接入请求消息。When the temporary identifier of the terminal is not in the preset temporary identifier list, the second reject message is sent to the terminal, where the second reject message is used to notify the terminal to refuse to establish a connection, and trigger the terminal to send and carry the The terminal is distinguished from the uniquely identified access request message of other terminals. In other words, the second reject message is used to notify the terminal to refuse to establish a connection, and is also used to trigger the terminal to send an access request message carrying a unique identifier different from the other terminal.
实际应用时,所述临时标识是S-TMSI,所述唯一标识是IMEI。In actual application, the temporary identifier is S-TMSI, and the unique identifier is IMEI.
在实际应用中,所述发送单元402和接收单元401均可由位于网络设备40中的中央处理器(CPU,Central Processing Unit,)、微处理器(MPU,Micro Processor Unit)、数字信号处理器(DSP,Digital Signal Processor)、或现场可编程门阵列(FPGA,Field Programmable Gate Array)结合收发机实现。In practical applications, the sending unit 402 and the receiving unit 401 may each be a central processing unit (CPU, Central Processing Unit), a microprocessor (MPU, a digital processor unit), a digital signal processor (located in the network device 40). DSP (Digital Signal Processor), or Field Programmable Gate Array (FPGA) is implemented in combination with a transceiver.
实施例五Embodiment 5
本发明实施例提供一种终端50,如图5所示,该终端50可以包括: The embodiment of the present invention provides a terminal 50. As shown in FIG. 5, the terminal 50 may include:
发送单元501,配置为向网络设备发送接入请求消息,所述接入请求消息携带有所述终端的标识;The sending unit 501 is configured to send an access request message to the network device, where the access request message carries an identifier of the terminal;
接收单元502,配置为接收所述网络设备发送的连接建立消息;The receiving unit 502 is configured to receive a connection establishment message sent by the network device.
建立单元503,配置为根据所述连接建立消息,建立与无线网络的连接。The establishing unit 503 is configured to establish a connection with the wireless network according to the connection establishment message.
其中,所述连接建立消息为确定所述终端的标识在预设名单中时发送的消息。The connection establishment message is a message that is sent when the identifier of the terminal is determined to be in the preset list.
这样一来,在需要确定接入请求消息携带的终端的标识是否在预设名单中之后,才能将终端和无线网络建立连接。这样,就可以保证每次接入的终端都是合法终端,接入都是合法接入,因此,终端和无线网络间的交互都是有意义的交互,从而减少无线资源的浪费。In this way, the terminal and the wireless network can be connected after determining whether the identifier of the terminal carried in the access request message is in the preset list. In this way, each terminal that is accessed is a legal terminal, and the access is legal access. Therefore, the interaction between the terminal and the wireless network is a meaningful interaction, thereby reducing the waste of wireless resources.
在一实施例中,所述接收单元502,还配置为接收所述网络设备发送用于通知拒绝建立连接的第一拒绝消息;In an embodiment, the receiving unit 502 is further configured to receive, by the network device, a first reject message for notifying that the connection is refused to be established;
如图6所示,所述终端50还可以包括:As shown in FIG. 6, the terminal 50 may further include:
获取单元504,配置为获取无线网络的PLMN;The obtaining unit 504 is configured to acquire a PLMN of the wireless network;
加入单元505,配置为将所述PLMN加入PLMN列表,所述PLMN列表是在PLMN搜索时,无需被搜索的PLMN集合;The joining unit 505 is configured to add the PLMN to the PLMN list, where the PLMN list is a PLMN set that does not need to be searched when the PLMN searches;
在一实施例中,所述接收单元502,还配置为接收所述网络设备发送的第二拒绝消息,所述第二拒绝消息用于通知所述终端拒绝建立连接,并触发所述终端发送携带有所述终端区别于其他终端的唯一标识的接入请求消息。换句话说。所述第二拒绝消息用于通知终端拒绝建立连接,同时还用于触发终端发送携带有所述终端区别于其他终端的唯一标识的接入请求消息。In an embodiment, the receiving unit 502 is further configured to receive a second reject message sent by the network device, where the second reject message is used to notify the terminal to refuse to establish a connection, and trigger the terminal to send and carry the bearer. There is an access request message that the terminal is uniquely distinguished from other terminals. in other words. The second reject message is used to notify the terminal to refuse to establish a connection, and is also used to trigger the terminal to send an access request message carrying the unique identifier of the terminal different from other terminals.
所述发送单元501,还配置为向所述网络设备发送携带有所述唯一标识的接入请求消息。The sending unit 501 is further configured to send, to the network device, an access request message carrying the unique identifier.
在实际应用中,所述发送单元501、接收单元502及获取单元504可由 位于终端50中的CPU、MPU、DSP、FPGA等结合收发机实现;所述建立单元503、加入单元505均可由位于终端50中的CPU、MPU、DSP)或FPGA等实现。In an actual application, the sending unit 501, the receiving unit 502, and the obtaining unit 504 may be The CPU, the MPU, the DSP, the FPGA, and the like located in the terminal 50 are implemented in combination with the transceiver; the establishing unit 503 and the adding unit 505 can be implemented by a CPU, an MPU, a DSP, or an FPGA located in the terminal 50.
实施例六Embodiment 6
本发明实施例提供一种终端接入系统60,如图7所示,该终端接入系统60包括:The embodiment of the present invention provides a terminal access system 60. As shown in FIG. 7, the terminal access system 60 includes:
网络设备40; Network device 40;
和终端50。And terminal 50.
其中,网络设备40配置为接收终端发送的接入请求消息,所述接入请求消息携带有所述终端的标识;所述终端的标识在预设名单中时,向所述终端发送连接建立消息。The network device 40 is configured to receive an access request message sent by the terminal, where the access request message carries the identifier of the terminal, and when the identifier of the terminal is in the preset list, send a connection establishment message to the terminal. .
终端50配置为向网络设备发送接入请求消息;接收所述网络设备发送的连接建立消息;并根据所述连接建立消息,建立与无线网络的连接。The terminal 50 is configured to send an access request message to the network device, receive a connection establishment message sent by the network device, and establish a connection with the wireless network according to the connection establishment message.
其中,网络设备40与终端50的具体处理过程已在上文详述,这里不再赘述。The specific processing procedure of the network device 40 and the terminal 50 has been described in detail above, and details are not described herein again.
本领域内的技术人员应明白,本发明的实施例可提供为方法、系统、或计算机程序产品。因此,本发明可采用硬件实施例、软件实施例、或结合软件和硬件方面的实施例的形式。而且,本发明可采用在一个或多个其中包含有计算机可用程序代码的计算机可用存储介质(包括但不限于磁盘存储器和光学存储器等)上实施的计算机程序产品的形式。Those skilled in the art will appreciate that embodiments of the present invention can be provided as a method, system, or computer program product. Accordingly, the present invention can take the form of a hardware embodiment, a software embodiment, or a combination of software and hardware. Moreover, the invention can take the form of a computer program product embodied on one or more computer-usable storage media (including but not limited to disk storage and optical storage, etc.) including computer usable program code.
本发明是参照根据本发明实施例的方法、设备(系统)、和计算机程序产品的流程图和/或方框图来描述的。应理解可由计算机程序指令实现流程图和/或方框图中的每一流程和/或方框、以及流程图和/或方框图中的流程和/或方框的结合。可提供这些计算机程序指令到通用计算机、专用计算机、嵌入式处理机或其他可编程数据处理设备的处理器以产生一个机器,使得 通过计算机或其他可编程数据处理设备的处理器执行的指令产生用于实现在流程图一个流程或多个流程和/或方框图一个方框或多个方框中指定的功能的装置。The present invention has been described with reference to flowchart illustrations and/or block diagrams of methods, apparatus (system), and computer program products according to embodiments of the invention. It will be understood that each flow and/or block of the flowchart illustrations and/or FIG. These computer program instructions can be provided to a processor of a general purpose computer, a special purpose computer, an embedded processor or other programmable data processing device to produce a machine such that Instructions executed by a processor of a computer or other programmable data processing device generate means for implementing the functions specified in a block or blocks of a flow or a flow and/or a block diagram of the flowchart.
这些计算机程序指令也可存储在能引导计算机或其他可编程数据处理设备以特定方式工作的计算机可读存储器中,使得存储在该计算机可读存储器中的指令产生包括指令装置的制造品,该指令装置实现在流程图一个流程或多个流程和/或方框图一个方框或多个方框中指定的功能。The computer program instructions can also be stored in a computer readable memory that can direct a computer or other programmable data processing device to operate in a particular manner, such that the instructions stored in the computer readable memory produce an article of manufacture comprising the instruction device. The apparatus implements the functions specified in one or more blocks of a flow or a flow and/or block diagram of the flowchart.
这些计算机程序指令也可装载到计算机或其他可编程数据处理设备上,使得在计算机或其他可编程设备上执行一系列操作步骤以产生计算机实现的处理,从而在计算机或其他可编程设备上执行的指令提供用于实现在流程图一个流程或多个流程和/或方框图一个方框或多个方框中指定的功能的步骤。These computer program instructions can also be loaded onto a computer or other programmable data processing device such that a series of operational steps are performed on a computer or other programmable device to produce computer-implemented processing for execution on a computer or other programmable device. The instructions provide steps for implementing the functions specified in one or more of the flow or in a block or blocks of a flow diagram.
基于此,本发明实施例还提供了一种计算机存储介质,所述计算机存储介质包括一组指令,当执行所述指令时,引起至少一个处理器执行上述网络设备侧的终端接入方法,或者执行上述终端侧的终端接入方法。Based on this, an embodiment of the present invention further provides a computer storage medium, where the computer storage medium includes a set of instructions, when executed, causing at least one processor to execute a terminal access method on the network device side, or The terminal access method on the terminal side is performed.
以上所述,仅为本发明的较佳实施例而已,并非用于限定本发明的保护范围。 The above is only the preferred embodiment of the present invention and is not intended to limit the scope of the present invention.

Claims (16)

  1. 一种终端接入方法,所述方法包括:A terminal access method, the method comprising:
    接收终端发送的接入请求消息,所述接入请求消息携带有所述终端的标识;Receiving an access request message sent by the terminal, where the access request message carries an identifier of the terminal;
    所述终端的标识在预设名单中时,向所述终端发送连接建立消息。When the identifier of the terminal is in the preset list, the connection establishment message is sent to the terminal.
  2. 根据权利要求1所述的方法,其中,所述终端的标识包括所述终端的临时标识和所述终端区别于其他终端的唯一标识,对应的预设名单是包括预设的唯一标识的白名单,所述方法还包括:The method according to claim 1, wherein the identifier of the terminal comprises a temporary identifier of the terminal and a unique identifier of the terminal different from other terminals, and the corresponding preset list is a white list including a preset unique identifier. The method further includes:
    所述终端的唯一标识不在所述白名单中时,向所述终端发送用于通知所述终端拒绝建立连接的第一拒绝消息。When the unique identifier of the terminal is not in the whitelist, the terminal sends a first reject message to notify the terminal to refuse to establish a connection.
  3. 根据权利要求1所述的方法,其中,所述终端的标识是所述终端的临时标识,对应的预设名单是预设临时标识名单,所述方法还包括:The method according to claim 1, wherein the identifier of the terminal is a temporary identifier of the terminal, and the corresponding preset list is a preset temporary identifier list, and the method further includes:
    所述终端的临时标识不在所述预设临时标识名单中时,向所述终端发送第二拒绝消息,所述第二拒绝消息用于通知所述终端拒绝建立连接,并触发所述终端发送携带有所述终端区别于其他终端的唯一标识的接入请求消息。When the temporary identifier of the terminal is not in the preset temporary identifier list, the terminal sends a second reject message to the terminal, where the second reject message is used to notify the terminal to refuse to establish a connection, and trigger the terminal to send and carry There is an access request message that the terminal is uniquely distinguished from other terminals.
  4. 根据权利要求2或3所述的方法,其中,所述临时标识是系统架构演进临时移动用户标识S-TMSI,所述唯一标识是移动设备国际身份码IMEI。The method of claim 2 or 3, wherein the temporary identity is a System Architecture Evolution Temporary Mobile Subscriber Identity S-TMSI, the unique identity being a Mobile Device International Identity Code IMEI.
  5. 一种终端接入方法,所述方法包括:A terminal access method, the method comprising:
    向网络设备发送接入请求消息,所述接入请求消息携带有所述终端的标识;Sending an access request message to the network device, where the access request message carries an identifier of the terminal;
    接收所述网络设备发送的连接建立消息;Receiving a connection establishment message sent by the network device;
    根据所述连接建立消息,建立与无线网络的连接。Establishing a connection with the wireless network based on the connection setup message.
  6. 根据权利要求5所述的方法,其中,所述方法还包括: The method of claim 5 wherein the method further comprises:
    接收所述网络设备发送用于通知拒绝建立连接的第一拒绝消息;Receiving, by the network device, a first reject message for notifying that the connection is refused to be established;
    获取无线网络的公共陆地移动网络PLMN;Obtaining a public land mobile network PLMN of a wireless network;
    将所述PLMN加入PLMN列表,所述PLMN列表是在PLMN搜索时,无需被搜索的PLMN集合。The PLMN is added to a PLMN list, which is a PLMN set that does not need to be searched at the time of PLMN search.
  7. 根据权利要求5所述的方法,其中,所述方法还包括:The method of claim 5 wherein the method further comprises:
    接收所述网络设备发送的第二拒绝消息,所述第二拒绝消息用于通知所述终端拒绝建立连接,并触发所述终端发送携带有所述终端区别于其他终端的唯一标识的接入请求消息;Receiving a second reject message sent by the network device, where the second reject message is used to notify the terminal to refuse to establish a connection, and trigger the terminal to send an access request that carries the unique identifier of the terminal different from other terminals. Message
    向所述网络设备发送携带有所述唯一标识的接入请求消息。Sending an access request message carrying the unique identifier to the network device.
  8. 一种网络设备,所述网络设备包括:A network device, the network device comprising:
    接收单元,配置为接收终端发送的接入请求消息,所述接入请求消息携带有所述终端的标识;a receiving unit, configured to receive an access request message sent by the terminal, where the access request message carries an identifier of the terminal;
    发送单元,配置为所述终端的标识在预设名单中时,向所述终端发送连接建立消息。The sending unit is configured to send a connection establishment message to the terminal when the identifier of the terminal is in the preset list.
  9. 根据权利要求8所述的网络设备,其中,所述终端的标识包括所述终端的临时标识和所述终端区别于其他终端的唯一标识,对应的预设名单是包括预设的唯一标识的白名单,所述发送单元还配置为:The network device according to claim 8, wherein the identifier of the terminal includes a temporary identifier of the terminal and a unique identifier of the terminal different from other terminals, and the corresponding preset list is white including a preset unique identifier. The list, the sending unit is further configured to:
    所述终端的唯一标识不在所述白名单中时,向所述终端发送用于通知所述终端拒绝建立连接的第一拒绝消息。When the unique identifier of the terminal is not in the whitelist, the terminal sends a first reject message to notify the terminal to refuse to establish a connection.
  10. 根据权利要求8所述的网络设备,其中,所述终端的标识是所述终端的临时标识,对应的预设名单是预设临时标识名单,所述发送单元还配置为:The network device according to claim 8, wherein the identifier of the terminal is a temporary identifier of the terminal, and the corresponding preset list is a preset temporary identifier list, and the sending unit is further configured to:
    所述终端的临时标识不在所述预设临时标识名单中时,向所述终端发送第二拒绝消息,所述第二拒绝消息用于通知所述终端拒绝建立连接,并触发所述终端发送携带有所述终端区别于其他终端的唯一标识的接入请求 消息。When the temporary identifier of the terminal is not in the preset temporary identifier list, the terminal sends a second reject message to the terminal, where the second reject message is used to notify the terminal to refuse to establish a connection, and trigger the terminal to send and carry There is an access request that is uniquely identified by the terminal from other terminals. Message.
  11. 根据权利要求9或10所述的网络设备,其中,所述临时标识是S-TMSI,所述唯一标识是IMEI。The network device according to claim 9 or 10, wherein the temporary identifier is S-TMSI and the unique identifier is IMEI.
  12. 一种终端,所述终端包括:A terminal, the terminal comprising:
    发送单元,配置为向网络设备发送接入请求消息,所述接入请求消息携带有所述终端的标识;a sending unit, configured to send an access request message to the network device, where the access request message carries an identifier of the terminal;
    接收单元,配置为接收所述网络设备发送的连接建立消息;a receiving unit, configured to receive a connection establishment message sent by the network device;
    建立单元,配置为根据所述连接建立消息,建立与无线网络的连接。Establishing a unit configured to establish a connection with the wireless network according to the connection establishment message.
  13. 根据权利要求12所述的终端,其中,所述接收单元,还配置为接收所述网络设备发送用于通知拒绝建立连接的第一拒绝消息;The terminal according to claim 12, wherein the receiving unit is further configured to receive, by the network device, a first reject message for notifying that the connection is refused to be established;
    所述终端还包括:The terminal further includes:
    获取单元,配置为获取无线网络的公共陆地移动网络PLMN;An obtaining unit configured to acquire a public land mobile network PLMN of the wireless network;
    加入单元,配置为将所述PLMN加入PLMN列表,所述PLMN列表是在PLMN搜索时,无需被搜索的PLMN集合。The joining unit is configured to join the PLMN to the PLMN list, which is a PLMN set that does not need to be searched when the PLMN searches.
  14. 根据权利要求12所述的终端,其中,The terminal according to claim 12, wherein
    所述接收单元,还配置为接收所述网络设备发送的第二拒绝消息,所述第二拒绝消息用于通知所述终端拒绝建立连接,并触发所述终端发送携带有所述终端区别于其他终端的唯一标识的接入请求消息;The receiving unit is further configured to receive a second reject message sent by the network device, where the second reject message is used to notify the terminal to refuse to establish a connection, and trigger the terminal to send the terminal to be different from other The uniquely identified access request message of the terminal;
    所述发送单元,还配置为向所述网络设备发送携带有所述唯一标识的接入请求消息。The sending unit is further configured to send, to the network device, an access request message carrying the unique identifier.
  15. 一种终端接入系统,所述系统包括:A terminal access system, the system comprising:
    终端,配置为向网络设备发送接入请求消息,所述接入请求消息携带有所述终端的标识;接收所述网络设备发送的连接建立消息;并根据所述连接建立消息,建立与无线网络的连接;The terminal is configured to send an access request message to the network device, where the access request message carries an identifier of the terminal, receives a connection establishment message sent by the network device, and establishes a connection with the wireless network according to the connection establishment message. Connection;
    所述网络设备,配置为接收终端发送的接入请求消息,所述接入请求 消息携带有所述终端的标识;所述终端的标识在预设名单中时,向所述终端发送连接建立消息。The network device is configured to receive an access request message sent by the terminal, where the access request is The message carries the identifier of the terminal; when the identifier of the terminal is in the preset list, the connection establishment message is sent to the terminal.
  16. 一种计算机存储介质,所述计算机存储介质包括一组指令,当执行所述指令时,引起至少一个处理器执行如权利要求1至4任一项所述的终端接入方法,或者执行如权利要求5至7任一项所述的终端接入方法。 A computer storage medium comprising a set of instructions that, when executed, cause at least one processor to perform the terminal access method of any one of claims 1 to 4, or to perform the right The terminal access method of any one of 5 to 7 is required.
PCT/CN2016/076929 2015-09-21 2016-03-21 Terminal access method, system, terminal, network device, and computer storage medium WO2016177158A1 (en)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN201510604418.8A CN106550363A (en) 2015-09-21 2015-09-21 A kind of terminal access method, terminal, the network equipment and wireless network
CN201510604418.8 2015-09-21

Publications (1)

Publication Number Publication Date
WO2016177158A1 true WO2016177158A1 (en) 2016-11-10

Family

ID=57218494

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2016/076929 WO2016177158A1 (en) 2015-09-21 2016-03-21 Terminal access method, system, terminal, network device, and computer storage medium

Country Status (2)

Country Link
CN (1) CN106550363A (en)
WO (1) WO2016177158A1 (en)

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101877669A (en) * 2009-04-30 2010-11-03 中兴通讯股份有限公司 Terminal management method and high rate packet data system
CN101945380A (en) * 2009-07-06 2011-01-12 中兴通讯股份有限公司 Terminal management method, terminal and system for code division multiple access system
US8515394B2 (en) * 2010-12-20 2013-08-20 Electronics And Telecommunications Research Institute Method for controlling access of subscribers in wireless communication system supporting femto cell and apparatus for the same
CN103987130A (en) * 2014-05-16 2014-08-13 北京奇虎科技有限公司 Terminal access method, device and system based on WIFI equipment

Family Cites Families (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1274169C (en) * 2003-01-03 2006-09-06 华为技术有限公司 Method for limiting illegal mobile telephone
CN101043724A (en) * 2006-03-25 2007-09-26 中兴通讯股份有限公司 Method for detecting terminal embezzlement in personal handhold telephone system
CN102469435B (en) * 2010-11-08 2014-11-05 中国移动通信集团广东有限公司 Method for raising terminal model identification accuracy of mobile terminal and apparatus thereof
CN102227147B (en) * 2011-06-20 2013-08-21 王兰睿 Method and system used for corporately verifying international equipment identification
CN103118360B (en) * 2012-12-21 2015-08-19 成都科来软件有限公司 A kind of system blocking mobile radio terminal
CN103442097B (en) * 2013-08-30 2016-12-28 烽火通信科技股份有限公司 A kind of home gateway controls the system and method for WiFi terminal access authority
CN103619018A (en) * 2013-11-21 2014-03-05 北京奇虎科技有限公司 Method and device for detecting access right of wireless network and router
JP6424235B2 (en) * 2014-04-02 2018-11-14 ▲華▼▲為▼終端有限公司Huawei Device Co., Ltd. Method and router for accessing a network
CN204145542U (en) * 2014-11-12 2015-02-04 厦门掌沃软件科技有限公司 One is anti-rubs network router

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101877669A (en) * 2009-04-30 2010-11-03 中兴通讯股份有限公司 Terminal management method and high rate packet data system
CN101945380A (en) * 2009-07-06 2011-01-12 中兴通讯股份有限公司 Terminal management method, terminal and system for code division multiple access system
US8515394B2 (en) * 2010-12-20 2013-08-20 Electronics And Telecommunications Research Institute Method for controlling access of subscribers in wireless communication system supporting femto cell and apparatus for the same
CN103987130A (en) * 2014-05-16 2014-08-13 北京奇虎科技有限公司 Terminal access method, device and system based on WIFI equipment

Also Published As

Publication number Publication date
CN106550363A (en) 2017-03-29

Similar Documents

Publication Publication Date Title
US9220031B2 (en) Access control method and device
US9723476B2 (en) Location registration for a device-to-device (D2D) user equipment
WO2018171310A1 (en) Method, apparatus and device for allowing terminal to move between 4g and 5g networks
WO2017078143A1 (en) User device, base station, method for establishing connection, and method for acquiring context information
US11765587B2 (en) Wireless network access control method, device, and system
TW202110225A (en) Method and apparatus for handling non-integrity protected reject messages in non-public networks
WO2017119490A1 (en) Base station, user apparatus, and context information holding method
CN107333311B (en) Method for preventing LTE terminal from repeatedly initiating tracking area updating process in idle state
US10772033B2 (en) Avoiding reselection of a fake cell in a wireless communication network
JP2013528985A (en) Method and system for controlling a machine-type communication device for accessing a network
WO2017024811A1 (en) Scheduling information processing method and device, and computer storage medium
CN105340212A (en) Methods and apparatus for generating keys in device-to-device communications
CN105828413A (en) Safety method of D2D mode B discovery, terminal and system
CN108990132B (en) Access control method and device
US20210258857A1 (en) Methods, apparatuses, and computer program products for managing a devices network capabilities in private networks
JP2022507032A (en) Methods and equipment for session management
US9813964B2 (en) Signaling for mobility and mobility state estimation
WO2012109823A1 (en) Congestion control method and system of machine type communication equipments
WO2018045805A1 (en) Network registration method and device
JP2022530864A (en) Methods and equipment for service discovery
WO2013120370A1 (en) Access control method and device
CN109660982B (en) Method and device for acquiring identification
WO2015131305A1 (en) Scheduling based on data traffic patterns
WO2015139442A1 (en) Local network access control method and device, and computer storage medium
WO2013113240A1 (en) Method for transmitting rn information, method for paging ue and apparatus thereof

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 16789152

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

122 Ep: pct application non-entry in european phase

Ref document number: 16789152

Country of ref document: EP

Kind code of ref document: A1