Summary of the invention
In view of this, need provide a kind of network access equipment, be used to be provided with the key of mobile communication equipment.
In addition, also need provide a kind of key setting method, be used for the key that network access equipment is provided with mobile communication equipment.
In addition, also need provide a kind of mobile communication equipment and key setting method thereof, and a kind of mobile communication system.
A kind of network access equipment is used for being provided with by Key Management server the key of mobile communication equipment, comprises beacon news frame broadcast module, receiver module, key generation module and sending module.Beacon news frame broadcast module is used for regularly sending beacon news frame, so that mobile communication equipment knows the address of network access equipment and be sent to the short message service gateway by note, to be sent to Key Management server.Receiver module is used to receive the key request that Key Management server sends.The key generation module is used for producing key according to key request.Sending module is used to send this key to Key Management server, to be sent to mobile communication equipment by the short message service gateway with another note.
A kind of key setting method, be used for the key that network access equipment is provided with mobile communication equipment, may further comprise the steps: send beacon news frame, this beacon news frame comprises the address of network access equipment, so that mobile communication equipment knows the address of network access equipment and is sent to the short message service gateway by note, to be sent to Key Management server; Receive the key request that Key Management server sends; Produce key according to key request; And send this key to Key Management server, to be sent to mobile communication equipment with another note by the short message service gateway.
A kind of mobile communication equipment can be provided with communication key by network access equipment, comprises mobile communication module and short message transceiving module.Mobile communication module is used to receive the beacon news frame that network access equipment sends, to obtain the address of network access equipment.Short message transceiving module is used for obtaining from mobile communication module the address of network access equipment, and send this address to the short message service gateway by note, to be sent to Key Management server, make Key Management server to network access equipment request key and be back to the short message service gateway, and receive the key of short message service gateway, and the key that receives is sent to mobile communication module with another short message returning.
A kind of key setting method is used for mobile communication equipment, comprising: mobile communication module receives the beacon news frame that network access equipment sends, to obtain the address of network access equipment; From the address that mobile communication module obtains network access equipment, and send this address to the short message service gateway,, make Key Management server to network access equipment request key and be back to the short message service gateway to be sent to Key Management server by note; Reach the key that receives with another short message returning, and the key that receives is sent to mobile communication module.
A kind of mobile communication system comprises first network access equipment, mobile communication equipment, short message service gateway and Key Management server.First network access equipment is used for regularly sending beacon news frame, and this beacon news frame comprises the address of first network access equipment.Mobile communication equipment comprises mobile communication module and short message transceiving module, mobile communication module is used to receive beacon news frame, to obtain the address of first network access equipment, short message transceiving module is used for obtaining from mobile communication module the address of first network access equipment, and sends the address of first network access equipment by note.The short message service gateway is used to receive the note that mobile communication equipment sends, and obtains the address and the transmission of first network access equipment from this note.Key Management server is used to receive the address of first network access equipment that the short message service gateway transmits, obtain the identification title of first network access equipment according to the address of first network access equipment, send key request to the first network access equipment according to the identification title.First network access equipment also is used for producing key according to key request, sends key to Key Management server.Key Management server is sent to the short message service gateway with this key, and to be sent to the short message transceiving module of this mobile communication equipment by another note, short message transceiving module sends key to mobile communication module.Mobile communication module can carry out the key setting with the way of short messages and first network access equipment by short message transceiving module, and need not to be equipped with extra agreement and program, thereby can alleviate the burden of mobile communication module.
Embodiment
See also Fig. 1, be depicted as the Organization Chart of mobile communication system 10 in an embodiment of the present invention.In the present embodiment, mobile communication system 10 is used for carrying out the key setting between the mobile communication equipment 100 and first network access equipment 180, and it comprises mobile communication equipment 100, short message service gateway 130, Key Management server 140 and first network access equipment 180.
First network access equipment 180 regularly sends beacon news frame (beacon frame), and this beacon news frame comprises the address of first network access equipment 180.In the present embodiment, first network access equipment 180 is an access point, and it is every 100ms broadcast beacon news frame, and this beacon news frame comprises media interviews control (media access control, the MAC) address of first network access equipment 180.In the present embodiment, first network access equipment 180 be access point (access point, AP).
Mobile communication equipment 100 receives this beacons news frame, obtaining the address of first network access equipment 180, and sends the address of first network access equipment 180 by note.In the present embodiment, mobile communication equipment 100 comprises mobile communication module 101 and short message transceiving module 110.Mobile communication module 101 receives this beacon news frame, with the address that obtains first network access equipment 180 from this beacon news frame.Short message transceiving module 110 is from the address that mobile communication module 101 obtains first network access equipment 180, and sends this address to short message service gateway 130 by note (Short Message).
In the present embodiment, mobile communication module 101 is notebook computer or palmtop PC, short message transceiving module 110 is a mobile phone, and mobile communication module 101 and short message transceiving module 110 are connected by signal transmssion line, and communicate by AT (attention) order.In another embodiment of the present invention, short message transceiving module 110 also can be the software module that is built in the mobile communication module 101, can realize function of receiving and sending short message.In the present embodiment, mobile communication module 101 transmits the address of first network access equipment 180 to short message transceiving module 110 by the AT order.In another embodiment of the present invention, short message transceiving module 110 also can be imported the address that the address of first network access equipment 180 obtains first network access equipment 180 by the user of mobile communication module 101 and short message transceiving module 110.
In another embodiment of the present invention, mobile communication equipment 100 is a dual-mode handset, mobile communication module 101 is the WIFI module of this dual-mode handset, short message transceiving module 110 is global mobile communication (the Global System for Mobile Communication of this dual-mode handset, GSM) module or code division multiple access (Code DivisionMultiple Access, CDMA) module.
Short message service gateway 130 is used to receive the note that mobile communication equipment 100 sends, the address that from this note, obtains this first network access equipment 180, and this address is sent to Key Management server 140.Key Management server 140 is used to receive the address of first network access equipment 180 that short message service gateway 130 transmits, obtain the identification title of first network access equipment 180 according to this address, send key request to the first network access equipment 180 according to this identification title, obtaining key, and this key is sent to short message service gateway 130.Short message service gateway 130 utilizes short message mode to pass through short message transceiving module 110 again and transmits this key to mobile communication module 101.In the present embodiment, the identification name of first network access equipment 180 is called the IP address of first network access equipment 180.
Mobile communication system 10 also comprises first network 160, is used to communicate to connect the Key Management server 140 and first network access equipment 180.In the present embodiment, first network 160 is the internet.Mobile communication system 10 also further comprises one second network access equipment 170, is used to communicate to connect first network access equipment 180 and first network 160, and wherein this second network access equipment 170 is a modulator-demodulator.
Mobile communication system 10 also comprises second network 120, is used to communicate to connect short message transceiving module 110 and short message service gateway 130.In the present embodiment, second network 120 is the GSM network.In other embodiments, second network 120 also can be cdma network.
Mobile communication system 10 also comprises a name server 150, and this name server 150 links to each other with Key Management server 140, is used to store the address and the corresponding identification title of first network access equipment 180.Wherein Key Management server 140 obtains the identification title of first network access equipment 180 according to the address lookup name server 150 of first network access equipment 180.In another embodiment of the present invention, short message service gateway 130, Key Management server 140 and name server 150 can integrate.
In another embodiment of the present invention, the note that mobile communication module 101 control short message transceiving module 110 transmit also comprises mobile communication equipment 100, particularly the address of mobile communication module 101.In the present embodiment, the address of this mobile communication module 101 is the MAC Address of mobile communication module 101.Short message service gateway 130 also transmits the address of mobile communication module 101 to Key Management server 140, key management servo 140 is according to the status of the address validation mobile communication module 101 of mobile communication module 101, for example, whether checking mobile communication module 101 is validated user.
Figure 2 shows that the module map of first network access equipment 180 in an embodiment of the present invention.First network access equipment 180 comprises beacon news frame broadcast module 1800, receiver module 1802, key generation module 1804 and sending module 1806.Beacon news frame broadcast module 1800 is used for regularly sending beacon news frame, this beacon news frame comprises the address of first network access equipment 180, so that mobile communication equipment 100 obtains the address of first network access equipment 180, and be sent to short message service gateway 130 by note, to be sent to Key Management server 140.
Receiver module 1802 is used to receive the key request that Key Management server 140 sends.Key generation module 1804 is used for producing key according to this key request.In the present embodiment, key generation module 1804 dynamically produces key according to key request.Sending module 1806 is used to send this key to Key Management server 140, finally to be sent to mobile communication equipment 100.In the present embodiment, key request and key all transmit with the internet package.
In other execution mode of the present invention, first network access equipment 180 more comprises storage module 1808, links to each other with this key generation module 1804, is used to store default key.In the present embodiment, key generation module 1804 is selected default key according to key request from storage module 1808.
Figure 3 shows that the flow chart of the key setting method of mobile communication system in an embodiment of the present invention.In the present embodiment, this key setting method is in order to carry out the key setting between the mobile communication module 101 of mobile communication equipment 100 and first network access equipment 180.First network access equipment 180 regularly sends beacon news frame, and this beacon news frame comprises the address of first network access equipment 180.
At step S300, mobile communication equipment 100 obtains the address of first network access equipment 180, and this address is sent to short message service gateway 130 by note.
At step S302, short message service gateway 130 receives note, obtains the address of first network access equipment 180, and is sent to Key Management server 140.
At step S304, Key Management server 140 receives the address of first network access equipment 180, obtains the identification title of first network access equipment 180 according to this address, and sends key request to discerning the first corresponding network access equipment 180 of title with this.After first network access equipment 180 receives this key request, produce and the passback key.
At step S306, Key Management server 140 receives this key, and is sent to mobile communication equipment 100 by short message service gateway 130 by another note.
Figure 4 shows that the key setting method of first network access equipment 180 in an embodiment of the present invention.At first, at step S400, the beacon news frame broadcast module 1800 of first network access equipment 180 sends beacon news frame, this beacon news frame comprises the address of first network access equipment 180, so that mobile communication equipment 100 is known the address of first network access equipment 180, and this address finally is sent to Key Management server 140.Key Management server 140 obtains the identification title of first network access equipment 180 according to this address, sends key request to the first network access equipment 180 according to this identification title then.
At step S402, receiver module 1802 receives the key request that Key Management server 140 sends.
At step S404, key generation module 1804 produces key according to key request.
At step S406, sending module 1806 sends this key to Key Management server 140, to be sent to mobile communication equipment 180.
Figure 5 shows that the flow chart of the key setting method of mobile communication equipment 100 in an embodiment of the present invention.At step S500, the mobile communication module 101 of mobile communication equipment 100 receives the beacon news frame that first network access equipment 180 sends, to obtain the address of first network access equipment 180.
At step S502, short message transceiving module 110 is obtained the address of first network access equipment 180 from mobile communication module 101, send this address by note, to be sent to Key Management server 140 by short message service gateway 130, make Key Management server 140 send key request to the first network access equipment 180, to obtain key.In the present embodiment, mobile communication module 101 orders the address of transmitting first network access equipment 180 to short message transceiving module 110 by AT, and short message transceiving module 110 transmits key to mobile communication module 101 by the AT order.
At step S504, short message transceiving module 110 receives the key with another short message returning, and the key that receives is sent to mobile communication module 101.
Figure 6 shows that the detail flowchart of key setting method.At first, at step S600, first network access equipment 180 sends beacon news frame, and this beacon news frame comprises the address of first network access equipment 180.In the present embodiment, the address of first network access equipment 180 is the MAC Address of first network access equipment 180.
At step S602, mobile communication module 101 receives this beacon news frame, obtains the address of first network access equipment 180 from this beacon news frame, and transmits this address to short message transceiving module 110.In the present embodiment, mobile communication module 101 transmits the address of first network access equipment 180 to short message transceiving module 110 by the AT order.In another embodiment of the present invention, the user of mobile communication module 101 can be with the address input short message transceiving module 100 of first network access equipment 180.
At step S604, short message transceiving module 110 receives the address of first network access equipment 180, and this address is sent to short message service gateway 130 by note.
At step S606, short message service gateway 130 receives the address of first network access equipment 180, and is sent to Key Management server 140.In the present embodiment, short message service gateway 130 transmits the address of first network access equipment 180 to Key Management server 140 by the AT order.
At step S608, Key Management server 140 sends the address of first network access equipment 180 to name server 150, to inquire about the identification title of first network access equipment 180.In the present embodiment, the identification name of first network access equipment 180 is called the IP address of first network access equipment 180.
At step S610, name server 150 sends the identification title of first network access equipment 180 to Key Management server 140.
At step S612, Key Management server 140 sends key request to discerning the first corresponding network access equipment 180 of title with this.
At step S314, after first network access equipment 180 receives this key request, produce key according to this key request, and return this key to Key Management server 140.In the present embodiment, wherein step S608, S610, S612 and S614 all communicate by the internet package.
At step S616, Key Management server 140 receives this key, and this key is sent to short message service gateway 130.Key Management server 140 transmits key to short message service gateway 130 by the AT order.
At step S618, short message service gateway 130 transmits key to short message transceiving module 110 by another note.
At step S620, short message transceiving module 110 transmits this key to mobile communication module 101.In the present embodiment, short message transceiving module 110 transmits key to mobile communication module 101 by the AT order.So, just, finish the key setting between the mobile communication module 101 and first network access equipment 180.
Mobile communication module 101 can carry out the key setting by the way of short messages and first network access equipment 180 by short message transceiving module 110, and need not to be equipped with extra agreement and program, thereby can alleviate the burden of mobile communication module 101.