CN102970732A - Method, system and equipment for wireless local area network (WLAN) sharing authentication - Google Patents

Method, system and equipment for wireless local area network (WLAN) sharing authentication Download PDF

Info

Publication number
CN102970732A
CN102970732A CN2012104872679A CN201210487267A CN102970732A CN 102970732 A CN102970732 A CN 102970732A CN 2012104872679 A CN2012104872679 A CN 2012104872679A CN 201210487267 A CN201210487267 A CN 201210487267A CN 102970732 A CN102970732 A CN 102970732A
Authority
CN
China
Prior art keywords
operation network
authentication information
shared
network access
portable terminal
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN2012104872679A
Other languages
Chinese (zh)
Other versions
CN102970732B (en
Inventor
李建勇
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
ZTE Corp
Original Assignee
ZTE Corp
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by ZTE Corp filed Critical ZTE Corp
Priority to CN201210487267.9A priority Critical patent/CN102970732B/en
Publication of CN102970732A publication Critical patent/CN102970732A/en
Priority to PCT/CN2013/081905 priority patent/WO2013189389A2/en
Application granted granted Critical
Publication of CN102970732B publication Critical patent/CN102970732B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/04Key management, e.g. using generic bootstrapping architecture [GBA]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/06Authentication
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/40Security arrangements using identity modules
    • H04W12/43Security arrangements using identity modules using shared identity modules, e.g. SIM sharing
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W84/00Network topologies
    • H04W84/02Hierarchically pre-organised networks, e.g. paging networks, cellular networks, WLAN [Wireless Local Area Network] or WLL [Wireless Local Loop]
    • H04W84/10Small scale networks; Flat hierarchical networks
    • H04W84/12WLAN [Wireless Local Area Networks]

Abstract

The invention discloses a method for wireless local area network (WLAN) sharing authentication. The method comprises the following steps: a sharing authentication server receives Wi-Fi (Wireless Fidelity) operation network sharing authentication information uploaded by a first mobile terminal and stores the Wi-Fi operation network sharing authentication information; and the sharing authentication server receives a Wi-Fi operation network access request from a second mobile terminal, locally retrieves the Wi-Fi operation network sharing authentication information meeting the Wi-Fi operation network access request according to the stored Wi-Fi operation network sharing authentication information, and enables the second mobile terminal to access a Wi-Fi operation network. The invention simultaneously discloses a system and equipment for WLAN sharing authentication. With the adoption of the method, the system and the equipment, disclosed by the invention, secondary authentication user credentials of the Wi-Fi operation network can be shared, the number of mobile terminals capable of accessing to the Wi-Fi operation network needing secondary authentication is increased, the utilization ratio of the Wi-Fi operation network is increased, and the load of a cellular network is reduced.

Description

A kind of WLAN (wireless local area network) is shared method, system and the equipment of authentication
Technical field
The present invention relates to wireless communication technology, relate in particular to method, system and equipment that a kind of WLAN (wireless local area network) is shared authentication.
Background technology
Wireless Fidelity (Wi-Fi, Wireless Fidelity) at WLAN (wireless local area network) (WLAN, Wireless LocalArea Network) category refers to " wireless compatibility authentication ", it is in fact a kind of commercial verification, also be a kind of technology of Wireless Networking simultaneously, and the place that can access the Wi-Fi Operation Network is called as focus.The local area network (LAN) of all use 802.11 standard agreements is called again Wi-Fi, and therefore, Wi-Fi almost becomes the synonym of WLAN.
In recent years, the explosive growth of mobile Internet has not only caused huge flow pressure to cellular network, also make cellular carrier be absorbed in high investment, hang down the predicament of output, for effectively alleviating flow pressure and reducing operating cost, cellular carrier is numerous and confused to develop WLAN, Large scale construction Wi-Fi Hotspot on a large scale, thereby has promoted the fusion of WLAN and mobile cellular network.
At present, other WLAN development of carrier-class is very fast, but need to carry out re-authentication when the user enters, i.e. WEB PORTAL authentication.And there is certain region contingency in the WLAN that the user uses operator to provide.Because WLAN is the fixed position, only could use the WLAN service of operator at ad-hoc location, but operator does not recognize the user and uses the non-regularity of WLAN service, still the WLAN operation was managed according to the time, the WLAN duration all is according to settling accounts per month, for the exhaustless user of WLAN duration per month, residue WLAN duration is a kind of waste; And concerning the WLAN duration had the user who happens suddenly but not continue demand, the WLAN duration was finished per month, and it is restricted again to access WLAN again; And then caused the quantity of Wi-Fi portable terminal of low, the accessible WLAN of Wi-Fi Operation Network utilization rate few, thereby cause the large problem of mobile cellular network load.
Summary of the invention
In view of this, main purpose of the present invention is to provide a kind of WLAN (wireless local area network) to share method, system and the equipment of authentication, realizes different mobile terminal sharing WLAN.
For achieving the above object, technical scheme of the present invention is achieved in that
The invention provides a kind of WLAN (wireless local area network) and share the method for authentication, the method comprises:
Shared certificate server receives the shared authentication information of Wi-Fi Operation Network and the storage that the first portable terminal is uploaded;
Shared certificate server receives the Wi-Fi Operation Network access request of the second portable terminal, Wi-Fi Operation Network according to storage is shared authentication information, satisfy the Wi-Fi Operation Network of described Wi-Fi Operation Network access request in this locality retrieval and share authentication information, and with the second portable terminal access Wi-Fi Operation Network.
In the such scheme, described shared certificate server receives the shared authentication information of Wi-Fi Operation Network and the storage that the first portable terminal is uploaded, and comprising:
Share the accessible duration of service set SSID, Wi-Fi Operation Network access authentication information and Wi-Fi Operation Network that the certificate server mobile terminal receive is uploaded, set up list item as index at local data base take SSID and the accessible duration of Wi-Fi Operation Network received, preserve the mapping relations of the accessible duration of described SSID, Wi-Fi Operation Network access authentication information and Wi-Fi Operation Network at described list item.
In the such scheme, described Wi-Fi Operation Network is shared authentication information and is comprised that SSID, Wi-Fi Operation Network access authentication information and Wi-Fi Operation Network can be accessed by duration;
Described shared certificate server is shared authentication information according to the Wi-Fi Operation Network of storage, satisfies the Wi-Fi Operation Network of described Wi-Fi Operation Network access request in this locality retrieval and shares authentication information, comprising:
SSID corresponding to the Wi-Fi Operation Network access authentication information of retrieve stored is consistent with the SSID that Wi-Fi Operation Network access request is carried, and the accessible duration of Wi-Fi Operation Network corresponding to the Wi-Fi Operation Network access authentication information of storage is not less than the Wi-Fi Operation Network request access duration that Wi-Fi Operation Network access request is carried, and the Wi-Fi Operation Network access authentication information that obtains is that the Wi-Fi Operation Network that satisfies described Wi-Fi Operation Network access request is shared authentication information.
In the such scheme, described with the second portable terminal access Wi-Fi Operation Network, comprising:
Share certificate server the Wi-Fi Operation Network access authentication information that retrieves is sent to the second portable terminal;
The second portable terminal is according to described Wi-Fi Operation Network access authentication information access Wi-Fi Operation Network.
In the such scheme, described with behind the second portable terminal access Wi-Fi Operation Network, the method also comprises:
According to the Wi-Fi Operation Network request access duration that Wi-Fi Operation Network access request is carried, the Wi-Fi Operation Network of updated stored is shared the accessible duration of Wi-Fi Operation Network corresponding to described Wi-Fi Operation Network access authentication information in the authentication information.
The invention provides a kind of portable terminal, described portable terminal comprises:
The Wi-Fi sharing module is used for that the Wi-Fi Operation Network is shared authentication information and uploads to shared certificate server.
In the such scheme, described portable terminal further comprises:
Wi-Fi request authentication module is used for sending Wi-Fi Operation Network access request to shared certificate server; The Wi-Fi Operation Network access authentication information of utilizing shared certificate server to return accesses the Wi-Fi Operation Network with portable terminal.
The invention provides another kind of portable terminal, described the second portable terminal comprises:
Wi-Fi request authentication module is used for sending Wi-Fi Operation Network access request to shared certificate server, and the Wi-Fi Operation Network access authentication information of utilizing shared certificate server to return accesses the Wi-Fi Operation Network with portable terminal.
The invention provides a kind of shared certificate server, described shared certificate server comprises Wi-Fi share service module and database module; Wherein,
Described database module is used for the shared authentication information of Wi-Fi Operation Network that storage the first portable terminal is uploaded;
Described Wi-Fi share service module, be used for receiving the Wi-Fi Operation Network access request of the second portable terminal, Wi-Fi Operation Network according to described database module stores is shared authentication information, retrieval is satisfied the Wi-Fi Operation Network of described Wi-Fi Operation Network access request and is shared authentication information, with the second portable terminal access Wi-Fi Operation Network.
In the such scheme, described Wi-Fi Operation Network is shared authentication information and is comprised that SSID, Wi-Fi Operation Network access authentication information and Wi-Fi Operation Network can be accessed by duration;
Described Wi-Fi share service module, also be used for: set up list item as index in database module take SSID and the accessible duration of Wi-Fi Operation Network received, preserve the mapping relations of the accessible duration of described SSID, Wi-Fi Operation Network access authentication information and Wi-Fi Operation Network at described list item.
In the such scheme, described Wi-Fi Operation Network is shared authentication information and is comprised that SSID, Wi-Fi Operation Network access authentication information and Wi-Fi Operation Network can be accessed by duration;
Described Wi-Fi share service module, specifically be used for: in described database module, SSID corresponding to the Wi-Fi Operation Network access authentication information of retrieve stored is consistent with the SSID that Wi-Fi Operation Network access request is carried, and the accessible duration of Wi-Fi Operation Network corresponding to the Wi-Fi Operation Network access authentication information of storage is not less than the Wi-Fi Operation Network request access duration that Wi-Fi Operation Network access request is carried, and the Wi-Fi Operation Network access authentication information that obtains is that the Wi-Fi Operation Network that satisfies described Wi-Fi Operation Network access request is shared authentication information.
In the such scheme, described Wi-Fi share service module, also be used for: according to the Wi-Fi Operation Network request access duration that Wi-Fi Operation Network access request is carried, the Wi-Fi Operation Network of updated stored is shared the accessible duration of Wi-Fi Operation Network corresponding to described Wi-Fi Operation Network access authentication information in the authentication information.
Accordingly, the present invention also provides a kind of WLAN (wireless local area network) to share the system of authentication, and this system comprises the first portable terminal, the second portable terminal and shared certificate server; Wherein,
Described the first portable terminal is used for uploading the Wi-Fi Operation Network to described shared certificate server and shares authentication information;
Described the second portable terminal is used for sending Wi-Fi Operation Network access request to shared certificate server, utilizes and shares the Wi-Fi Operation Network access authentication information access Wi-Fi Operation Network that certificate server returns;
Described shared certificate server, be used for the shared authentication information of Wi-Fi Operation Network that storage the first portable terminal is uploaded, also be used for receiving the Wi-Fi Operation Network access request of the second portable terminal, Wi-Fi Operation Network according to storage is shared authentication information, retrieve the Wi-Fi Operation Network access authentication information that satisfies described Wi-Fi Operation Network access request in this locality, and the Wi-Fi Operation Network access authentication information that retrieves is sent to the second portable terminal.
In the such scheme, described shared certificate server also is used for: according to the Wi-Fi Operation Network request access duration that Wi-Fi Operation Network access request is carried, the Wi-Fi Operation Network of updated stored is shared the accessible duration of Wi-Fi Operation Network corresponding to described Wi-Fi Operation Network access authentication information in the authentication information.
WLAN (wireless local area network) provided by the present invention is shared method, system and the equipment of authentication, and the accessible exhaustless user of duration of Wi-Fi Operation Network uploads the Wi-Fi Operation Network by portable terminal to shared certificate server and shares authentication information; There is the user who happens suddenly but not continue demand then can obtain the shared authentication information of the Wi-Fi Operation Network that can access this Wi-Fi Operation Network by sharing certificate server to the accessible duration of Wi-Fi Operation Network, with access Wi-Fi Operation Network, thus the multiple users share of realization Wi-Fi Operation Network.So, the present invention shares Wi-Fi Operation Network re-authentication user voucher, has increased the quantity that can be accessed by the portable terminal of the Wi-Fi Operation Network that needs re-authentication, has improved Wi-Fi Operation Network utilization rate, thereby has alleviated the cellular network load.
Description of drawings
Fig. 1 is the composition structural representation that WLAN (wireless local area network) of the present invention is shared Verification System;
Fig. 2 is the realization flow schematic diagram that WLAN (wireless local area network) of the present invention is shared authentication method;
Fig. 3 is the schematic flow sheet that embodiment of the invention mobile terminal UE A, UE B realize the shared authentication of WLAN (wireless local area network).
Embodiment
Basic thought of the present invention is: the first portable terminal uploads that the Wi-Fi Operation Network is shared authentication information and by shared authentication server stores to shared certificate server; Shared certificate server receives the Wi-Fi Operation Network access request of the second portable terminal, Wi-Fi Operation Network according to storage is shared authentication information, satisfy the Wi-Fi Operation Network of described Wi-Fi Operation Network access request in this locality retrieval and share authentication information, and with the second portable terminal access Wi-Fi Operation Network.
Among the present invention, realize that the present invention program's prerequisite comprises:
Portable terminal possesses WLAN (wireless local area network) access capability and mobile cellular network packet domain access capability.
Among the present invention, describe for convenient, the authentication that the following describes all refers to re-authentication, and also i.e. access needs the Wi-Fi Operation Network of re-authentication; Described Wi-Fi Operation Network access authentication information comprises user name (Username) and password (Key), also namely accesses the re-authentication user voucher of Wi-Fi Operation Network.
Fig. 1 is the composition structural representation that WLAN (wireless local area network) of the present invention is shared Verification System, and as shown in Figure 1, this WLAN (wireless local area network) is shared Verification System and comprised the first portable terminal 11, the second portable terminal 13 and shared certificate server 12; Wherein,
The first portable terminal 11 is used for uploading the Wi-Fi Operation Network to shared certificate server 12 and shares authentication information;
The second portable terminal 13 is used for sending Wi-Fi Operation Network access request to shared certificate server 12, utilizes and shares the Wi-Fi Operation Network access authentication information access Wi-Fi Operation Network that certificate server 12 returns;
Share certificate server 12, be used for the shared authentication information of Wi-Fi Operation Network that storage the first portable terminal 11 is uploaded; Also be used for receiving the Wi-Fi Operation Network access request of the second portable terminal 13, Wi-Fi Operation Network according to storage is shared authentication information, satisfy the Wi-Fi Operation Network of described Wi-Fi Operation Network access request in this locality retrieval and share authentication information, and with the second portable terminal 13 access Wi-Fi Operation Networks.
Concrete, described Wi-Fi Operation Network is shared authentication information and is comprised that service set (SSID, ServiceSet Identifier), Wi-Fi Operation Network access authentication information and Wi-Fi Operation Network can be accessed by duration.
Concrete, sharing certificate server 12 specifically is used for: SSID and the request of Wi-Fi Operation Network of carrying according to Wi-Fi Operation Network access request access duration, satisfy the Wi-Fi Operation Network access authentication information of described Wi-Fi Operation Network access request in this locality retrieval, the SSID corresponding to Wi-Fi Operation Network access authentication information of i.e. storage is consistent with the SSID that Wi-Fi Operation Network access request is carried, and the accessible duration of Wi-Fi Operation Network corresponding to the Wi-Fi Operation Network access authentication information of storage is not less than the Wi-Fi Operation Network request access duration that Wi-Fi Operation Network access request is carried, and the Wi-Fi Operation Network access authentication information that retrieves is sent to described the second portable terminal 13.
After described shared certificate server 12 sends described the second portable terminal 13 with the Wi-Fi Operation Network access authentication information that retrieves, also be used for: according to the Wi-Fi Operation Network request access duration that Wi-Fi Operation Network access request is carried, the Wi-Fi Operation Network of updated stored is shared the accessible duration of Wi-Fi Operation Network corresponding to described Wi-Fi Operation Network access authentication information in the authentication information.
Described shared certificate server 12 is further used for: according to the shared authentication information of Wi-Fi Operation Network of receiving that the first portable terminal 11 sends again, the Wi-Fi Operation Network that sends before the first portable terminal 11 of updated stored is shared authentication information.
Concrete, the first portable terminal 11 comprises Wi-Fi sharing module 111, described Wi-Fi sharing module 111 is used for that the Wi-Fi Operation Network is shared authentication information and uploads to shared certificate server 12;
Concrete, the second portable terminal 13 comprises Wi-Fi request authentication module 131, described Wi-Fi request authentication module 131 is used for sending Wi-Fi Operation Network access request to shared certificate server 12; The Wi-Fi Operation Network access authentication information of utilizing shared certificate server 12 to return accesses the Wi-Fi Operation Networks with the second portable terminal 13.
Concrete, a kind of portable terminal is also proposed among the present invention, comprise Wi-Fi sharing module and Wi-Fi request authentication, wherein,
Described Wi-Fi sharing module is used for that the Wi-Fi Operation Network is shared authentication information and uploads to shared certificate server;
Described Wi-Fi request authentication module is used for sending the access of Wi-Fi Operation Network to shared certificate server; The Wi-Fi Operation Network access authentication information of utilizing shared certificate server to return accesses the Wi-Fi Operation Network with portable terminal.
Among the present invention, Wi-Fi Operation Network access authentication information comprises user name (Username) and password (Key), also is Wi-Fi Operation Network re-authentication user voucher.
Concrete, described shared certificate server 12 comprises Wi-Fi share service module 121 and database module 122; Wherein,
Described database module 122 is used for the shared authentication information of Wi-Fi Operation Network that storage the first portable terminal 11 is uploaded;
Described Wi-Fi share service module 121, be used for receiving the Wi-Fi Operation Network access request of the second portable terminal 13, Wi-Fi Operation Network according to described database module 122 storages is shared authentication information, retrieval is satisfied the Wi-Fi Operation Network of described Wi-Fi Operation Network access request and is shared authentication information, and with the second portable terminal 13 access Wi-Fi Operation Networks.
Concrete, described Wi-Fi Operation Network is shared authentication information and is comprised that SSID, Wi-Fi Operation Network access authentication information and Wi-Fi Operation Network can be accessed by duration; Described Wi-Fi Operation Network access request carries SSID and Wi-Fi Operation Network request access duration;
Described Wi-Fi share service module 121, the concrete Wi-Fi Operation Network access request that is used for receiving the second portable terminal 13, SSID and the request of Wi-Fi Operation Network of carrying according to Wi-Fi Operation Network access request access duration, the Wi-Fi Operation Network access authentication information of described Wi-Fi Operation Network access request is satisfied in retrieval in database module 122, be that the SSID that carries of SSID corresponding to Wi-Fi Operation Network access authentication information and the Wi-Fi Operation Network access request of storage in the database module 122 is consistent, and the accessible duration of Wi-Fi Operation Network corresponding to the Wi-Fi Operation Network access authentication information of storage is not less than the Wi-Fi Operation Network request access duration that Wi-Fi Operation Network access request is carried in the database module 122, and the Wi-Fi Operation Network access authentication information that retrieves is sent to the second portable terminal 13.
Concrete, described Wi-Fi share service module 121, concrete SSID, Wi-Fi Operation Network access authentication information and the Wi-Fi Operation Network of uploading for reception the first portable terminal 11 can be accessed by duration, in database module 122, set up list item as index take described SSID and the accessible duration of Wi-Fi Operation Network, preserve the mapping relations of the accessible duration of described SSID, Wi-Fi Operation Network access authentication information and Wi-Fi Operation Network at described list item.
SSID and Wi-Fi Operation Network request access duration that described Wi-Fi share service module 121 is carried according to Wi-Fi Operation Network access request, the Wi-Fi Operation Network access authentication information of described Wi-Fi Operation Network access request is satisfied in retrieval in database module 122, comprising:
In database module 122, SSID and the request of Wi-Fi Operation Network of carrying take described Wi-Fi Operation Network access request access duration as index, the accessible duration of retrieval Wi-Fi Operation Network is not less than described Wi-Fi Operation Network request access duration, and the list item that SSID is identical with the SSID that described Wi-Fi Operation Network access request is carried, be the Wi-Fi Operation Network access authentication information that satisfies described Wi-Fi Operation Network access request with the Wi-Fi Operation Network access authentication message identification in the described list item, send to and send described the second portable terminal 13.
After described Wi-Fi share service module 121 sends to described the second portable terminal 13 with the Wi-Fi Operation Network access authentication information that retrieves, the accessible duration of Wi-Fi Operation Network in the data table items that the described Wi-Fi Operation Network access authentication information of storage in the database module 122 is corresponding is updated to the accessible duration of described Wi-Fi Operation Network and deducts Wi-Fi Operation Network request access duration duration afterwards.
Described Wi-Fi share service module 121, also be used for: according to the shared authentication information of Wi-Fi Operation Network of receiving that the first portable terminal 11 sends, upgrade the shared authentication information of Wi-Fi Operation Network that sends before the first portable terminal 11 of storage in the database module 122.
Concrete, if there has been the accessible duration of SSID, Wi-Fi Operation Network access authentication information and Wi-Fi Operation Network that the first portable terminal 11 is uploaded in the database module 122, when it is uploaded again, when the accessible duration of 121 pairs of Wi-Fi Operation Networks of Wi-Fi share service module upgrades, if the first portable terminal 11 users have revised Wi-Fi Operation Network access authentication information, then Wi-Fi share service module 121 also can be upgraded Wi-Fi Operation Network access authentication information, as upgrades the password that the first portable terminal 11 users revise.
Concrete, described database module 122 is used for SSID, Wi-Fi Operation Network access authentication information that storage the first portable terminal 11 is uploaded, and the accessible duration of Wi-Fi Operation Network.
Fig. 2 is the realization flow schematic diagram that WLAN (wireless local area network) of the present invention is shared authentication method, and as shown in Figure 2, the method may further comprise the steps:
Step 201: the first portable terminal is uploaded the Wi-Fi Operation Network to shared certificate server and is shared authentication information by shared authentication server stores;
Concrete, the first portable terminal self can be able to be used the Wi-Fi Operation Network relevant information, be that the Wi-Fi Operation Network is shared authentication information and is uploaded to shared certificate server, described Wi-Fi Operation Network is shared authentication information and is comprised that SSID, Wi-Fi Operation Network access authentication information and Wi-Fi Operation Network can be accessed by duration;
Concrete, share the accessible duration of SSID, Wi-Fi Operation Network access authentication information and Wi-Fi Operation Network that the certificate server mobile terminal receive is uploaded, set up list item as index at local data base take described SSID and the accessible duration of Wi-Fi Operation Network, preserve the mapping relations of the accessible duration of described SSID, Wi-Fi Operation Network access authentication information and Wi-Fi Operation Network.
Step 202: shared certificate server receives the Wi-Fi Operation Network access request of the second portable terminal, Wi-Fi Operation Network according to storage is shared authentication information, retrieve the Wi-Fi Operation Network access authentication information that satisfies described Wi-Fi Operation Network access request in this locality, and the Wi-Fi Operation Network access authentication information that retrieves is sent to the second portable terminal;
Concrete, described Wi-Fi Operation Network access request is carried SSID and Wi-Fi Operation Network request access duration, after shared certificate server is received the Wi-Fi Operation Network access request of the second portable terminal, satisfy the Wi-Fi Operation Network access authentication information of described Wi-Fi Operation Network access request in this locality retrieval, the SSID corresponding to Wi-Fi Operation Network access authentication information of i.e. storage is consistent with the SSID that Wi-Fi Operation Network access request is carried, and the accessible duration of Wi-Fi Operation Network corresponding to the Wi-Fi Operation Network access authentication information of storage is not less than the Wi-Fi Operation Network request access duration that Wi-Fi Operation Network access request is carried, and the Wi-Fi Operation Network access authentication information that retrieves is sent to the second portable terminal;
Here, SSID and request access duration that described shared certificate server carries according to Wi-Fi Operation Network access request are retrieved the Wi-Fi Operation Network access authentication information that satisfies described Wi-Fi Operation Network access request in this locality, comprising:
In local data base, SSID and the request of Wi-Fi Operation Network of carrying take described Wi-Fi Operation Network access request access duration as index, the accessible duration of the Wi-Fi Operation Network of retrieve stored is not less than described Wi-Fi Operation Network request access duration, and the list item that SSID is identical with the SSID that described Wi-Fi Operation Network access request is carried, be the Wi-Fi Operation Network access authentication information that satisfies described Wi-Fi Operation Network access request with the Wi-Fi Operation Network access authentication message identification in the described list item, send the second portable terminal to send to.
Here, described when the Wi-Fi Operation Network access authentication information that retrieves is sent to second portable terminal, the method also comprises:
According to the Wi-Fi Operation Network request access duration that Wi-Fi Operation Network access request is carried, the Wi-Fi Operation Network of updated stored is shared the accessible duration of Wi-Fi Operation Network corresponding to described Wi-Fi Operation Network access authentication information in the authentication information; Concrete, the accessible duration of Wi-Fi Operation Network in the data table items that the described Wi-Fi Operation Network access authentication information of storage is corresponding is updated to the accessible duration of described Wi-Fi Operation Network and deducts Wi-Fi Operation Network request access duration duration afterwards.
Step 203: the second portable terminal receives shares the Wi-Fi Operation Network access authentication information that certificate server sends, and according to described Wi-Fi Operation Network access authentication information access Wi-Fi Operation Network.
Concrete, the second mobile phone users uses username and password in the Wi-Fi Operation Network access authentication information, namely the username and password of the first mobile phone users accesses the Wi-Fi Operation Network.
Further, the inventive method also comprises: share certificate server according to the shared authentication information of Wi-Fi Operation Network of receiving that the first portable terminal sends again, the Wi-Fi Operation Network that sends before the first portable terminal of updated stored is shared authentication information; Concrete, there has been the accessible duration of SSID, Wi-Fi Operation Network access authentication information and Wi-Fi Operation Network that the first portable terminal is uploaded if share certificate server this locality, when it is uploaded again, when shared certificate server upgrades the accessible duration of Wi-Fi Operation Network, if the first mobile phone users has been revised Wi-Fi Operation Network access authentication information, then also can upgrade Wi-Fi Operation Network access authentication information, as upgrade the password that the first mobile phone users is revised.
Fig. 3 is the schematic flow sheet that embodiment of the invention mobile terminal UE A, UEB realize the shared authentication of WLAN (wireless local area network), and as shown in Figure 3, this flow process may further comprise the steps:
The Wi-Fi switch opens of step 301: mobile terminal UE A connect to need the Wi-Fi Hotspot of access, such as focus S.
Concrete, the Wi-Fi switch opens of UE A searches the focus S that needs access, after the user inputs its Wi-Fi Operation Network access authentication information, initiates the connection to focus S.
Step 302: after the focus S successful connection, UE A initiates the authentication to the Wi-Fi Operation Network.
Concrete, after the focus S successful connection, focus S can give UE A distributing IP address; The Wi-Fi sharing module of UE A is obtained the IP address, and detects authentication success, and the Wi-Fi sharing module can be set up HTTPS trusty with shared certificate server and be connected safely.
Step 303:UE A authentication success connects Internet by focus S.
Here, after the authentication of the Wi-Fi Operation Network that UEA must provide by operator, just can provide to UEA the service of access Internet.
Concrete, behind the UEA authentication success, the Wi-Fi sharing module of UEA is obtained the accessible duration of SSID, Wi-Fi Operation Network access authentication information and Wi-Fi Operation Network of the focus S of current connection.
Step 304:UE A encrypts the accessible duration of SSID, Wi-Fi Operation Network access authentication information and Wi-Fi Operation Network and sends to shared certificate server by HTTPS, and authority is set for sharing.
Step 305: the accessible duration encrypting storing of SSID, Wi-Fi Operation Network access authentication information and the Wi-Fi Operation Network that shared certificate server is uploaded UE A is to local data base.
Concrete, after shared certificate server is received the accessible duration of SSID, Wi-Fi Operation Network access authentication information and Wi-Fi Operation Network that UE A uploads, in local data base, carry out match search according to SSID, if in the SSID of database table, do not search record, set up list item as index at local data base take described SSID and the accessible duration of Wi-Fi Operation Network, preserve the mapping relations of the accessible duration of described SSID, Wi-Fi Operation Network access authentication information and Wi-Fi Operation Network; If in the SSID of database table, search record, then carry out the Username contrast, if Username is consistent, then carry out the renewal of the accessible duration of Key and Wi-Fi Operation Network; Username is inconsistent, then newly-increased record.
Here, carrying out the Key renewal is because the user of UE A might revise the password of oneself.
Above-mentioned steps 301~305th, sharer (the per month exhaustless user of WLAN duration) sends to the process that the certificate server proposition is shared of sharing with Wi-Fi Operation Network access authentication information.
Step 306:UE B opens the Wi-Fi switch, searches focus X.
Concrete, the Wi-Fi switch opens of UE B searches the focus X of Wi-Fi Operation Network, and focus X and focus S belong to the focus that same operator provides, and therefore, focus S is the same with the SSID of focus X.
Step 307:UE B sets up HTTPS with shared certificate server and is connected, and initiates the Wi-Fi Operation Network access request of focus X.
Concrete, the user does not input Wi-Fi Operation Network access authentication information and directly connects focus X, the Wi-Fi request authentication module of UE B starts, setting up HTTPS with shared certificate server by the cellular network packet domain is connected, and with the SSID of focus X request is connected duration and is carried in the Wi-Fi Operation Network access request to connect to encrypt by HTTPS and sends to shared certificate server with the Wi-Fi Operation Network, initiate obtaining of Wi-Fi Operation Network access authentication information.
Step 308: share certificate server and return to UE B by the Wi-Fi Operation Network access authentication information encryption that HTTPS connects focus X.
Concrete, after sharing the Wi-Fi Operation Network access request of certificate server mobile terminal receive UE B, in local data base, SSID and the request of Wi-Fi Operation Network of carrying take described Wi-Fi Operation Network access request access duration as index, the accessible duration of retrieval Wi-Fi Operation Network is not less than described Wi-Fi Operation Network request access duration, and the list item that SSID is identical with the SSID that described Wi-Fi Operation Network access request is carried, be the Wi-Fi Operation Network access authentication information that satisfies described Wi-Fi Operation Network access request with the Wi-Fi Operation Network access authentication message identification in the described list item, send UE B.
After step 309:UE B receives the Wi-Fi Operation Network access authentication information of focus X, according to connection and the authentication of Wi-Fi Operation Network access authentication information initiation to focus X, thereby by focus X access Internet.
Concrete, UE B initiates the authentication to focus X after receiving and sharing the Wi-Fi Operation Network access authentication information that certificate server returns; Behind the authentication success, UE B is connected to Internet, obtains the online ability.
Step 306~309th, user's (using duration that burst is arranged but not the user that continues demand to the Wi-Fi Operation Network) does not know that Wi-Fi Operation Network access authentication information or the Wi-Fi Operation Network access authentication information of self can't use in the situation of (can be accessed by duration such as own Wi-Fi Operation Network is finished), the certificate server application is shared to sharing, the process of acquisition Wi-Fi Operation Network access authentication information, and the Wi-Fi Operation Network access authentication information of acquisition is provided by the sharer.
The above is preferred embodiment of the present invention only, is not for limiting protection scope of the present invention.

Claims (14)

1. a WLAN (wireless local area network) is shared the method that authenticates, and it is characterized in that the method comprises:
Shared certificate server receives the wireless shared authentication information of compatibility authentication Wi-Fi Operation Network and the storage that the first portable terminal is uploaded;
Shared certificate server receives the Wi-Fi Operation Network access request of the second portable terminal, Wi-Fi Operation Network according to storage is shared authentication information, satisfy the Wi-Fi Operation Network of described Wi-Fi Operation Network access request in this locality retrieval and share authentication information, and with the second portable terminal access Wi-Fi Operation Network.
2. method according to claim 1 is characterized in that, described shared certificate server receives the shared authentication information of Wi-Fi Operation Network and the storage that the first portable terminal is uploaded, and comprising:
Share the accessible duration of service set SSID, Wi-Fi Operation Network access authentication information and Wi-Fi Operation Network that the certificate server mobile terminal receive is uploaded, set up list item as index at local data base take SSID and the accessible duration of Wi-Fi Operation Network received, preserve the mapping relations of the accessible duration of described SSID, Wi-Fi Operation Network access authentication information and Wi-Fi Operation Network at described list item.
3. method according to claim 1 is characterized in that,
Described Wi-Fi Operation Network is shared authentication information and is comprised that SSID, Wi-Fi Operation Network access authentication information and Wi-Fi Operation Network can be accessed by duration;
Described shared certificate server is shared authentication information according to the Wi-Fi Operation Network of storage, satisfies the Wi-Fi Operation Network of described Wi-Fi Operation Network access request in this locality retrieval and shares authentication information, comprising:
SSID corresponding to the Wi-Fi Operation Network access authentication information of retrieve stored is consistent with the SSID that Wi-Fi Operation Network access request is carried, and the accessible duration of Wi-Fi Operation Network corresponding to the Wi-Fi Operation Network access authentication information of storage is not less than the Wi-Fi Operation Network request access duration that Wi-Fi Operation Network access request is carried, and the Wi-Fi Operation Network access authentication information that obtains is that the Wi-Fi Operation Network that satisfies described Wi-Fi Operation Network access request is shared authentication information.
4. method according to claim 3 is characterized in that, and is described with the second portable terminal access Wi-Fi Operation Network, comprising:
Share certificate server the Wi-Fi Operation Network access authentication information that retrieves is sent to the second portable terminal;
The second portable terminal is according to described Wi-Fi Operation Network access authentication information access Wi-Fi Operation Network.
5. according to claim 1 to 4 arbitrary described methods, it is characterized in that described with behind the second portable terminal access Wi-Fi Operation Network, the method also comprises:
According to the Wi-Fi Operation Network request access duration that Wi-Fi Operation Network access request is carried, the Wi-Fi Operation Network of updated stored is shared the accessible duration of Wi-Fi Operation Network corresponding to described Wi-Fi Operation Network access authentication information in the authentication information.
6. a portable terminal is characterized in that, described portable terminal comprises:
The Wi-Fi sharing module is used for that the Wi-Fi Operation Network is shared authentication information and uploads to shared certificate server.
7. portable terminal according to claim 6 is characterized in that, described portable terminal further comprises:
Wi-Fi request authentication module is used for sending Wi-Fi Operation Network access request to shared certificate server; The Wi-Fi Operation Network access authentication information of utilizing shared certificate server to return accesses the Wi-Fi Operation Network with portable terminal.
8. a portable terminal is characterized in that, described the second portable terminal comprises:
Wi-Fi request authentication module is used for sending Wi-Fi Operation Network access request to shared certificate server, and the Wi-Fi Operation Network access authentication information of utilizing shared certificate server to return accesses the Wi-Fi Operation Network with portable terminal.
9. a shared certificate server is characterized in that, described shared certificate server comprises Wi-Fi share service module and database module; Wherein,
Described database module is used for the shared authentication information of Wi-Fi Operation Network that storage the first portable terminal is uploaded;
Described Wi-Fi share service module, be used for receiving the Wi-Fi Operation Network access request of the second portable terminal, Wi-Fi Operation Network according to described database module stores is shared authentication information, retrieval is satisfied the Wi-Fi Operation Network of described Wi-Fi Operation Network access request and is shared authentication information, with the second portable terminal access Wi-Fi Operation Network.
10. shared certificate server according to claim 9 is characterized in that,
Described Wi-Fi Operation Network is shared authentication information and is comprised that SSID, Wi-Fi Operation Network access authentication information and Wi-Fi Operation Network can be accessed by duration;
Described Wi-Fi share service module, also be used for: set up list item as index in database module take SSID and the accessible duration of Wi-Fi Operation Network received, preserve the mapping relations of the accessible duration of described SSID, Wi-Fi Operation Network access authentication information and Wi-Fi Operation Network at described list item.
11. shared certificate server according to claim 9 is characterized in that,
Described Wi-Fi Operation Network is shared authentication information and is comprised that SSID, Wi-Fi Operation Network access authentication information and Wi-Fi Operation Network can be accessed by duration;
Described Wi-Fi share service module, specifically be used for: in described database module, SSID corresponding to the Wi-Fi Operation Network access authentication information of retrieve stored is consistent with the SSID that Wi-Fi Operation Network access request is carried, and the accessible duration of Wi-Fi Operation Network corresponding to the Wi-Fi Operation Network access authentication information of storage is not less than the Wi-Fi Operation Network request access duration that Wi-Fi Operation Network access request is carried, and the Wi-Fi Operation Network access authentication information that obtains is that the Wi-Fi Operation Network that satisfies described Wi-Fi Operation Network access request is shared authentication information.
12. according to claim 9,10 or 11 described shared certificate servers, it is characterized in that, described Wi-Fi share service module, also be used for: according to the Wi-Fi Operation Network request access duration that Wi-Fi Operation Network access request is carried, the Wi-Fi Operation Network of updated stored is shared the accessible duration of Wi-Fi Operation Network corresponding to described Wi-Fi Operation Network access authentication information in the authentication information.
13. a WLAN (wireless local area network) is shared the system of authentication, it is characterized in that this system comprises the first portable terminal, the second portable terminal and shared certificate server; Wherein,
Described the first portable terminal is used for uploading the Wi-Fi Operation Network to described shared certificate server and shares authentication information;
Described the second portable terminal is used for sending Wi-Fi Operation Network access request to shared certificate server, utilizes and shares the Wi-Fi Operation Network access authentication information access Wi-Fi Operation Network that certificate server returns;
Described shared certificate server, be used for the shared authentication information of Wi-Fi Operation Network that storage the first portable terminal is uploaded, also be used for receiving the Wi-Fi Operation Network access request of the second portable terminal, Wi-Fi Operation Network according to storage is shared authentication information, retrieve the Wi-Fi Operation Network access authentication information that satisfies described Wi-Fi Operation Network access request in this locality, and the Wi-Fi Operation Network access authentication information that retrieves is sent to the second portable terminal.
14. system according to claim 13, it is characterized in that, described shared certificate server also is used for: according to the Wi-Fi Operation Network request access duration that Wi-Fi Operation Network access request is carried, the Wi-Fi Operation Network of updated stored is shared the accessible duration of Wi-Fi Operation Network corresponding to described Wi-Fi Operation Network access authentication information in the authentication information.
CN201210487267.9A 2012-11-26 2012-11-26 Method, system and equipment for wireless local area network (WLAN) sharing authentication Active CN102970732B (en)

Priority Applications (2)

Application Number Priority Date Filing Date Title
CN201210487267.9A CN102970732B (en) 2012-11-26 2012-11-26 Method, system and equipment for wireless local area network (WLAN) sharing authentication
PCT/CN2013/081905 WO2013189389A2 (en) 2012-11-26 2013-08-20 Method, system and device for sharing authentication of wireless local area network

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201210487267.9A CN102970732B (en) 2012-11-26 2012-11-26 Method, system and equipment for wireless local area network (WLAN) sharing authentication

Publications (2)

Publication Number Publication Date
CN102970732A true CN102970732A (en) 2013-03-13
CN102970732B CN102970732B (en) 2015-06-10

Family

ID=47800524

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201210487267.9A Active CN102970732B (en) 2012-11-26 2012-11-26 Method, system and equipment for wireless local area network (WLAN) sharing authentication

Country Status (2)

Country Link
CN (1) CN102970732B (en)
WO (1) WO2013189389A2 (en)

Cited By (12)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2013174319A2 (en) * 2013-04-22 2013-11-28 中兴通讯股份有限公司 Access authentication method and device for wireless local area network
CN103428725A (en) * 2013-08-08 2013-12-04 福州瑞芯微电子有限公司 Method and system for controlling data traffic on mobile device
WO2013189389A2 (en) * 2012-11-26 2013-12-27 中兴通讯股份有限公司 Method, system and device for sharing authentication of wireless local area network
CN105007580A (en) * 2015-07-29 2015-10-28 上海斐讯数据通信技术有限公司 Wireless network authentication method, system thereof, and electronic device
CN105101433A (en) * 2015-07-02 2015-11-25 深圳平安通信科技有限公司 Control server, hotspot resource sharing control method and system
CN105745946A (en) * 2013-11-11 2016-07-06 索尼公司 Terminal device and information processing device
CN105794242A (en) * 2013-11-04 2016-07-20 微软技术许可有限责任公司 Delivery of shared wifi credentials
CN106664522A (en) * 2014-09-26 2017-05-10 苹果公司 Measuring device and method for measuring the level of a liquid in a container
CN107846720A (en) * 2016-09-20 2018-03-27 上海掌门科技有限公司 For connecting the method and apparatus of WAP
CN108012270A (en) * 2017-12-27 2018-05-08 努比亚技术有限公司 A kind of method of information processing, equipment and computer-readable recording medium
CN108521651A (en) * 2018-03-30 2018-09-11 连尚(新昌)网络科技有限公司 A kind of secondary authentication method of WiFi network
WO2022199313A1 (en) * 2021-03-23 2022-09-29 Oppo广东移动通信有限公司 Information sharing method and device

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102111766A (en) * 2011-01-10 2011-06-29 中兴通讯股份有限公司 Network accessing method, device and system
CN102685750A (en) * 2012-06-12 2012-09-19 刘梦阳 Method for accessing wireless network, equipment and wireless network system
US20120265861A1 (en) * 2011-04-15 2012-10-18 Realtek Semiconductor Corp. Method for sharing access to a wireless lan access point

Family Cites Families (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
KR100724882B1 (en) * 2005-02-18 2007-06-04 삼성전자주식회사 WLAN-3G interworking network structure with radio over fiber link
CN100479403C (en) * 2006-06-30 2009-04-15 华为技术有限公司 System and method for access external network of non-radio local network terminal
CN100448196C (en) * 2006-12-29 2008-12-31 西安西电捷通无线网络通信有限公司 WAPI-based wireless LAN operation method
CN102970732B (en) * 2012-11-26 2015-06-10 中兴通讯股份有限公司 Method, system and equipment for wireless local area network (WLAN) sharing authentication

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102111766A (en) * 2011-01-10 2011-06-29 中兴通讯股份有限公司 Network accessing method, device and system
US20120265861A1 (en) * 2011-04-15 2012-10-18 Realtek Semiconductor Corp. Method for sharing access to a wireless lan access point
CN102685750A (en) * 2012-06-12 2012-09-19 刘梦阳 Method for accessing wireless network, equipment and wireless network system

Cited By (19)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2013189389A2 (en) * 2012-11-26 2013-12-27 中兴通讯股份有限公司 Method, system and device for sharing authentication of wireless local area network
WO2013189389A3 (en) * 2012-11-26 2014-02-13 中兴通讯股份有限公司 Method, system and device for sharing authentication of wireless local area network
WO2013174319A2 (en) * 2013-04-22 2013-11-28 中兴通讯股份有限公司 Access authentication method and device for wireless local area network
WO2013174319A3 (en) * 2013-04-22 2014-03-13 中兴通讯股份有限公司 Access authentication method and device for wireless local area network
CN103428725A (en) * 2013-08-08 2013-12-04 福州瑞芯微电子有限公司 Method and system for controlling data traffic on mobile device
CN105794242A (en) * 2013-11-04 2016-07-20 微软技术许可有限责任公司 Delivery of shared wifi credentials
US10575347B2 (en) 2013-11-04 2020-02-25 Microsoft Technology Licensing, Llc Delivery of shared WiFi credentials
CN105745946B (en) * 2013-11-11 2019-10-18 索尼公司 Terminal device and information processing equipment
CN105745946A (en) * 2013-11-11 2016-07-06 索尼公司 Terminal device and information processing device
CN106664522A (en) * 2014-09-26 2017-05-10 苹果公司 Measuring device and method for measuring the level of a liquid in a container
CN106664522B (en) * 2014-09-26 2020-09-08 苹果公司 Network bandwidth sharing for mobile devices
CN105101433A (en) * 2015-07-02 2015-11-25 深圳平安通信科技有限公司 Control server, hotspot resource sharing control method and system
CN105007580B (en) * 2015-07-29 2018-03-02 上海斐讯数据通信技术有限公司 A kind of wireless network authentication method, system and a kind of electronic equipment
CN105007580A (en) * 2015-07-29 2015-10-28 上海斐讯数据通信技术有限公司 Wireless network authentication method, system thereof, and electronic device
CN107846720A (en) * 2016-09-20 2018-03-27 上海掌门科技有限公司 For connecting the method and apparatus of WAP
CN108012270A (en) * 2017-12-27 2018-05-08 努比亚技术有限公司 A kind of method of information processing, equipment and computer-readable recording medium
CN108521651A (en) * 2018-03-30 2018-09-11 连尚(新昌)网络科技有限公司 A kind of secondary authentication method of WiFi network
CN108521651B (en) * 2018-03-30 2022-04-22 上海尚往网络科技有限公司 Secondary authentication method of WiFi network
WO2022199313A1 (en) * 2021-03-23 2022-09-29 Oppo广东移动通信有限公司 Information sharing method and device

Also Published As

Publication number Publication date
WO2013189389A3 (en) 2014-02-13
CN102970732B (en) 2015-06-10
WO2013189389A2 (en) 2013-12-27

Similar Documents

Publication Publication Date Title
CN102970732B (en) Method, system and equipment for wireless local area network (WLAN) sharing authentication
CN111052777B (en) Method and apparatus for supporting inter-device profile transfer in a wireless communication system
EP2922327B1 (en) Communications terminal and system and rights management method
US8265599B2 (en) Enabling and charging devices for broadband services through nearby SIM devices
CN105162748B (en) The processing of electronic user identification module application identifier
CN104247505B (en) For the system and method using ANQP server-capabilities enhancing ANDSF
KR20110042711A (en) Method and apparatus for providing service using personal network
US10567350B2 (en) Virtual card downloading method, terminal, and intermediate device
CN106656547B (en) Method and device for updating network configuration of household electrical appliance
CN101990202B (en) Method for updating user policy and application server
CN103873454A (en) Authentication method and equipment
JP2006332863A (en) Information mobile terminal equipment, and wireless communications system
CN104871511A (en) Device authentication by tagging
CN102223231A (en) Machine-to-machine (M2M) terminal authentication system and M2M terminal authentication method
CN108293055A (en) Method, apparatus and system for authenticating to mobile network and for by the server of device authentication to mobile network
CN105491093A (en) Terminal authentication method, network access methods, server, wireless access point and terminal
AU2004216606A1 (en) Layer 2 switch device with verification management table
JP2007005892A (en) Information distribution system, information distribution method, wireless lan terminal, information acquisition method of wireless lan terminal, and access point
CN105451298A (en) Network-sharing method and system, network access method and system, and electronic device
CN108243631B (en) Network access method and equipment
CN103391527B (en) Implementation method, equipment and the system that in wireless access hotspot device, function is shared
WO2018007461A1 (en) Method, server and system for sending data from a source device to a destination device
EP2811769A1 (en) Method and system for accessing a service
CN104243423A (en) Ad-hoc network encryption and authentication method and system and terminals
CN104539446A (en) Shared WLAN management achieving method and system and WLAN shared registering server

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant