CN103796202A - Network access method and system, terminal, access network equipment and core network equipment - Google Patents

Network access method and system, terminal, access network equipment and core network equipment Download PDF

Info

Publication number
CN103796202A
CN103796202A CN201210430091.3A CN201210430091A CN103796202A CN 103796202 A CN103796202 A CN 103796202A CN 201210430091 A CN201210430091 A CN 201210430091A CN 103796202 A CN103796202 A CN 103796202A
Authority
CN
China
Prior art keywords
type information
terminal
equipment
access
card type
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201210430091.3A
Other languages
Chinese (zh)
Inventor
曹磊
赵晔
王庆扬
尹珂
陈洁
朱红梅
林奕琳
林衡华
谢沛荣
刘宁芳
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
China Telecom Corp Ltd
Original Assignee
China Telecom Corp Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by China Telecom Corp Ltd filed Critical China Telecom Corp Ltd
Priority to CN201210430091.3A priority Critical patent/CN103796202A/en
Publication of CN103796202A publication Critical patent/CN103796202A/en
Pending legal-status Critical Current

Links

Images

Landscapes

  • Mobile Radio Communication Systems (AREA)
  • Telephonic Communication Services (AREA)

Abstract

The invention discloses a network access method and system, a terminal, access network equipment and core network equipment, and relates to the technical field of mobile communication. The method comprises the following steps: the terminal reports terminal type information and card type information to the access network equipment; the access network equipment initiates an access process to the corresponding core network equipment according to the terminal type information and reports the card type information of the terminal in the access process; and when the core network equipment judges that the card type information of the terminal does not match the current network type, the core network equipment does not initiate an authentication process and directly goes into a service process. With the above scheme, a card does not need to be changed, and a user can still use the old card to carry out service communication with a new network, thereby solving the problem of card changing in the network upgrading process.

Description

Method, system, terminal, access network equipment and the equipment of the core network of access network
Technical field
The present invention relates to mobile communication technology field, particularly method and connecting system and terminal, Access Network and the equipment of the core network of a kind of access network under mobile communications network upgrading technical background.
Background technology
Code division multiple access (Code Division Multiple Access at present, be called for short CDMA) Subscriber Identity Module under standard, for example, third generation partner program 2(is called for short 3GPP2) subscriber identification module (User Identity Module, be called for short UIM) client identification module (Subscriber Identity Module the is called for short SIM) card of card, third generation partner program (be called for short 3GPP), although be all Subscriber Identity Module, but title is different, actual structure is also different.From the essential characteristic of mobile communication, the effect of Subscriber Identity Module mainly comprises 2 points: the one, and realize and search net, find corresponding mobile network, the 2nd, realize identification, i.e. the authentication of validated user.
Along with the fast development of mobile communication technology, at present except HRPD (high rate packet data) (High Rate Packet Data, be called for short HRPD) network, also there is HRPD (high rate packet data) (the Evolution High Rate Packet Data of evolution, be called for short eHRPD) network, Long Term Evolution (Long Term Evolution, be called for short LTE) network etc., and present the network of different systems the situation of depositing.But the network of different systems often adopts different authentication arithmetics.Therefore, also can bring the problem of " changing card " in the process of regenerating in network upgrade, the Subscriber Identity Module that user need to more renew could access new network.The angle of experiencing from user, go to business hall to handle changing card business is a trouble.From the one-tenth of card originally, changed neocaine, old card is just unavailable, is a useless card, is also great waste.Based on above-mentioned consideration, industry clearly proposes in network upgrade replacement process to observe " three not principle ", does not change card, the not number of changing, non-registration that is:.
Therefore, in network upgrade replacement process, how to solve the problem of " changing card ", become the focus that industry is paid close attention to and competed.
Summary of the invention
An embodiment of the present invention technical problem to be solved is: provide a kind of method, system, terminal, access network equipment and equipment of the core network of access network, to solve " changing card " problem in current network upgrade replacement process.
According to the embodiment of the present invention aspect, a kind of method of access network is provided, comprising:
Terminal is to access network equipment reporting terminal type information and Card Type information; Described access network equipment is initiated access process according to described terminal type information to corresponding equipment of the core network, and in access process, reports the Card Type information of described terminal; Described equipment of the core network is determined when the Card Type information of described terminal is not mated with current network standard, does not initiate authorizing procedure, directly carries out operation flow.
The execution mode exemplary according to some, in the time that described terminal type information be evolution HRPD (high rate packet data) eHRPD/ Long Term Evolution LTE, described Card Type information is integrated circuit card ICC, described access network equipment is initiated access process according to terminal type eHRPD/LTE to eHRPD/LTE server net equipment, eHRPD/LTE server net equipment is determined when ICC does not mate with eHRPD/LTE network, do not initiate EAP-AKA authorizing procedure, directly carry out operation flow.
The execution mode exemplary according to some, does not mate with current network standard if access network equipment is determined the Card Type information of described terminal, in access process, also reports the authentication request information of exempting from; Equipment of the core network determines that the Card Type information of terminal do not mate with current network standard and receive while exempting from authentication request information, does not initiate authorizing procedure, directly carries out operation flow.
The execution mode exemplary according to some, the method also comprises: described equipment of the core network is determined when the Card Type information of described terminal is mated with current network standard, initiate authorizing procedure according to the method for authenticating of current network standard, authentication by after carry out again operation flow.
The execution mode exemplary according to some, before described access network equipment is initiated access process, the method also comprises: described access network equipment to Access Network authentication, authorize the server A N-AAA that accounts and initiate cellular authentication and voice encryption CAVE authentication or the Message Digest Algorithm 5 MD5 authentication to described terminal.
According to another aspect of the embodiment of the present invention, a kind of connecting system is provided, comprising: terminal, access network equipment and equipment of the core network; Terminal, for reporting terminal type information and the Card Type information of described terminal to described access network equipment; Access network equipment for initiating access process according to described terminal type information to corresponding equipment of the core network, and reports the Card Type information of described terminal in access process; Equipment of the core network, while coupling, does not initiate authorizing procedure for the Card Type information of definite described terminal with current network standard, directly carries out operation flow.
The execution mode exemplary according to some, in the time that the terminal type information of described terminal be evolution HRPD (high rate packet data) eHRPD/ Long Term Evolution LTE, Card Type information is integrated circuit card ICC, described access network equipment is for initiating access process according to terminal type eHRPD/LTE to eHRPD/LTE server net equipment, when eHRPD/LTE server net equipment does not mate with eHRPD/LTE network for definite ICC, do not initiate EAP-AKA authorizing procedure, directly carry out operation flow.
The execution mode exemplary according to some, described access network equipment if also do not mated with current network standard for the Card Type information of determining described terminal, also reports the authentication request information of exempting from access process; Described equipment of the core network, does not also mate with current network standard for the Card Type information of definite described terminal and receives while exempting from authentication request information, does not initiate authorizing procedure, directly carries out operation flow.
The execution mode exemplary according to some, described equipment of the core network, also when determining that the Card Type information of described terminal is mated with current network standard, according to the method for authenticating initiation authorizing procedure of current network standard, authentication by after carry out again operation flow.
The execution mode exemplary according to some, access network equipment also initiate before access process for to Access Network authentication, authorize the server A N-AAA that accounts and initiate cellular authentication and voice encryption CAVE authentication or the Message Digest Algorithm 5 MD5 authentication to described terminal.
According to another aspect of the embodiment of the present invention, a kind of terminal is provided, comprising:
Information acquisition unit, for obtaining terminal type information and the Card Type information of described terminal; And information reporting unit, for reporting to access network equipment the terminal type information and the Card Type information that get, so that described access network equipment is initiated access process according to described terminal type information to corresponding equipment of the core network, and in access process, report the Card Type information of described terminal, so that described equipment of the core network is determined when the Card Type information of described terminal is not mated with current network standard, do not initiate authorizing procedure, directly carry out operation flow.
According to another aspect of the embodiment of the present invention, a kind of access network equipment is provided, comprising:
Information receiving unit, the terminal type information reporting for receiving terminal and Card Type information; Route determining unit, for determining corresponding equipment of the core network according to terminal type information; And access unit, for initiating access process to the corresponding equipment of the core network of described terminal type information, and in access process, report the Card Type information of described terminal, so that described equipment of the core network is determined when the Card Type information of described terminal is not mated with current network standard, do not initiate authorizing procedure, directly carry out operation flow.
The execution mode exemplary according to some, described access unit, if also do not mated with current network standard for the Card Type information of determining described terminal, in access process, also report the authentication request information of exempting from, so that described equipment of the core network is determined the Card Type information of described terminal and is not mated with current network standard and receive while exempting from authentication request information, do not initiate authorizing procedure, directly carry out operation flow.
The execution mode exemplary according to some, access network equipment also comprises: authentication is initiated unit, for to Access Network authentication, authorize the server A N-AAA that accounts and initiate cellular authentication and voice encryption CAVE authentication or the Message Digest Algorithm 5 MD5 authentication to described terminal.
According to another aspect of the embodiment of the present invention, a kind of equipment of the core network is provided, comprising:
Information receiving unit, for the access process of initiating in response to access network equipment, the Card Type information of receiving terminal in access process; Whether judging unit, mate with current network standard for the Card Type information that judges described terminal; Processing unit, in the time that the Card Type information of judging described terminal is not mated with current network standard, does not initiate authorizing procedure, directly carries out operation flow.
The execution mode exemplary according to some, described information receiving unit, also for receiving the authentication request information of exempting from; Described processing unit, also, for determining that the Card Type information of described terminal do not mate with current network standard and receive while exempting from authentication request information, does not initiate authorizing procedure, directly carries out operation flow.
Based on scheme provided by the invention, terminal is to access network equipment reporting terminal type information and Card Type information, access network equipment is initiated access process according to terminal type information to corresponding equipment of the core network, and in access process the Card Type information of reporting terminal, equipment of the core network is determined when the Card Type information of terminal is not mated with current network standard, do not initiate authorizing procedure, directly carry out operation flow, user need not change card, still use old card just can carry out service communication with new network, solved the card problem of changing in network upgrade replacement process.
By the detailed description to exemplary embodiment of the present invention referring to accompanying drawing, it is clear that further feature of the present invention and advantage thereof will become.
Accompanying drawing explanation
In order to be illustrated more clearly in the embodiment of the present invention or technical scheme of the prior art, to the accompanying drawing of required use in embodiment or description of the Prior Art be briefly described below, apparently, accompanying drawing in the following describes is only some embodiments of the present invention, for those of ordinary skills, do not paying under the prerequisite of creative work, can also obtain according to these accompanying drawings other accompanying drawing.
Fig. 1 illustrates according to the schematic flow sheet of the method for a kind of access network of exemplary embodiment of the present invention.
Fig. 2 illustrates that the new terminal of exemplary embodiment of the present invention uses the schematic flow sheet of the method for a kind of access network of old card.
Fig. 3 illustrates according to the structural representation of a kind of connecting system of exemplary embodiment of the present invention.
Fig. 4 illustrates according to the structural representation of a kind of terminal of exemplary embodiment of the present invention.
Fig. 5 illustrates according to the structural representation of a kind of access network equipment of exemplary embodiment of the present invention.
Fig. 6 illustrates according to the structural representation of a kind of equipment of the core network of exemplary embodiment of the present invention.
Embodiment
Below in conjunction with the accompanying drawing in the embodiment of the present invention, the technical scheme in the embodiment of the present invention is clearly and completely described, obviously, described embodiment is only the present invention's part embodiment, rather than whole embodiment.Illustrative to the description only actually of at least one exemplary embodiment below, never as any restriction to the present invention and application or use.Based on the embodiment in the present invention, those of ordinary skills, not making the every other embodiment obtaining under creative work prerequisite, belong to the scope of protection of the invention.
Unless illustrate in addition, otherwise the parts of setting forth in these embodiments and positioned opposite, numeral expression formula and the numerical value of step not limited the scope of the invention.
, it should be understood that for convenience of description, the size of the various piece shown in accompanying drawing is not to draw according to actual proportionate relationship meanwhile.
May not discuss in detail for the known technology of person of ordinary skill in the relevant, method and apparatus, but in suitable situation, described technology, method and apparatus should be regarded as authorizing a part for specification.
In all examples with discussing shown here, it is exemplary that any occurrence should be construed as merely, rather than as restriction.Therefore, other example of exemplary embodiment can have different values.
It should be noted that: in similar label and letter accompanying drawing below, represent similar terms, therefore, once be defined in an a certain Xiang Yi accompanying drawing, in accompanying drawing subsequently, do not need it to be further discussed.
Fig. 1 illustrates according to the schematic flow sheet of the method for a kind of access network of exemplary embodiment of the present invention.As shown in Figure 1, this embodiment comprises the following steps:
S102, terminal is to access network equipment reporting terminal type information and Card Type information.
As a kind of exemplary execution mode, terminal for example can be in the time carrying out session negotiation with access network equipment reporting terminal type information and Card Type information.Terminal can be expanded the field of a terminal type, so that reporting terminal type information.Terminal can be expanded a Card Type attribute, to report Card Type information.In addition, terminal can directly read the type of Subscriber Identity Module, to obtain Card Type information.
Terminal type information represents the type of terminal, and terminal type information for example can comprise HRPD (high rate packet data) eHRPD, the Long Term Evolution LTE etc. of HRPD (high rate packet data) HRPD, evolution, but is not limited to this.Wherein, the terminal of HRPD type also can be called old terminal in embodiments of the present invention, old terminal is applicable to the old networks such as such as HRPD network, the terminal of eHRPD type or LTE type also can be called new terminal in embodiments of the present invention, and new terminal is applicable to new network such as such as eHRPD network or LTE network etc.
Card Type information represents the type of Subscriber Identity Module, the Subscriber Identity Module of one type is the network formats of corresponding a type conventionally, Card Type information for example can comprise integrated circuit card (Integrated Circuit Card, be called for short ICC) and Universal Integrated Circuit Card (Universal Integrated Circuit Card, be called for short UICC), but be not limited to this.Wherein, ICC also can be called old card in embodiments of the present invention, and UICC also can be called neocaine in embodiments of the present invention.
It will be appreciated by those skilled in the art that, different access network equipment corresponding to network, for example, access network equipment in CDMA2000 network is base station controller (Base Station Controller, be called for short BSC), Wideband Code Division Multiple Access (WCDMA) (Wideband Code Division Multiple Access, being called for short WCDMA) access network equipment in network is radio network controller (Radio Network Controller, be called for short RNC), the access network equipment of LTE network is evolved base station (Evolved Node B is called for short eNodeB).
S104, access network equipment is initiated access process according to terminal type information to corresponding equipment of the core network, and in access process the Card Type information of reporting terminal.
As a kind of exemplary execution mode, if terminal type information is the old terminals such as HRPD type, access network equipment is initiated access process to corresponding old server net equipment, for example access network device can be to WCDMA server net equipment GPRS serving GPRS support node (Serving GPRS SUPPORT NODE, be called for short SGSN) or initiate access process to CDMA2000 server net device packets data serving node (Packet Data Serving Node is called for short PDSN).
As a kind of exemplary execution mode, if terminal type information is the new terminal such as eHRPD type or LTE type, access network equipment is initiated access process to corresponding new server net equipment, for example access network device can be to eHRPD server net equipment HRPD gateway (be called for short HSGW), or initiates access process to LTE server net device packets data gateway (being called for short PGW).
As optional step, if access network equipment is determined the Card Type information of terminal and is not mated with current network standard, for example, new terminal uses the situation of old card, new terminal is initiated access process to new network, and the old card that this new terminal uses will not mate with new network, and access network equipment can also further report the authentication request information of exempting from access process, clearly to indicate equipment of the core network this terminal not to be carried out to authentication, user uses old card also can carry out service communication with new network.
As a kind of exemplary execution mode, can transform for example A11 link request message of link request message of eating dishes without rice or wine, the Card Type information that the link request message that makes to eat dishes without rice or wine can carried terminal, can also further carry and exempt from authentication request information.
As optional step, before access network equipment is initiated access process, can also be to Access Network authentication, authorize the server that accounts (Access Network-Authentication Accounting Authorization Server, be called for short AN-AAA) initiate the authorizing procedure to terminal, authentication is initiated access process again after passing through.Method for authenticating for example can adopt cellular authentication and voice encryption (Cellular Authentication voice Encryption, be called for short CAVE) authentication or Message Digest Algorithm 5 (Message Digest Algorithm 5 is called for short MD5) authentication etc.CDMA 1X can use CAVE authentication, and HRPD can use MD5 authentication.Wherein, CAVE authentication is Electronic Serial Number (the Electronic Serial Number according to Mobile phone card, be called for short ESN), international mobile subscriber identity (International Mobile Subscriber Identification Number, being called for short IMSI) authentication code (Authentication Key, be called for short Akey) etc. determines user identity.MD5 authentication is to determine user identity according to AN-AAA account number cipher.
S106, equipment of the core network is determined when the Card Type information of terminal is not mated with current network standard, does not initiate authorizing procedure, directly carries out operation flow.
As a kind of exemplary execution mode, if new terminal uses the situation of old card, equipment of the core network can determine that the Card Type information of terminal do not mate with current network standard.For example, the corresponding new network eHRPD/LTE network of new terminal eHRPD/LTE terminal, if eHRPD/LTE terminal is used old card ICC, Card Type information is not mated with current network standard, now, eHRPD/LTE server net equipment HSGW/PGW does not initiate authorizing procedure to eHRPD/LTE terminal, directly carries out operation flow.Operation flow can be for example vendor specific Network Control Protocol (Vendor Specific Network Control Protocol, be called for short VSCNP) or conventional data transmission platform (General Data Transfer Platform, be called for short GTP) operation flow, but be not limited to this.
As a kind of exemplary execution mode, if access network equipment has also reported the authentication request information of exempting from step S104, equipment of the core network is determining that the Card Type information of terminal do not mate with current network standard and receive while exempting from authentication request information, do not initiate authorizing procedure, directly carry out operation flow.Operation flow specifically can, with reference to aforementioned, repeat no more here.
In addition, equipment of the core network determines when the Card Type information of terminal is mated with current network standard, initiates authorizing procedure according to the method for authenticating of current network standard, authentication by after carry out again operation flow.For example, new terminal uses neocaine and old terminal to use old card all to belong to the situation of coupling, illustrates one by one below.
Use the situation of neocaine UICC for new terminal eHRPD/LTE terminal, the corresponding new network eHRPD/LTE network of eHRPD/LTE terminal, neocaine UICC and new network eHRPD/LTE net mate, initiate Extensible Authentication Protocol-authentication and key agreement (Extensible Authentication Protocol Authentication and Key Agreement according to the method for authenticating of new network eHRPD/LTE network, be called for short EAP-AKA) authorizing procedure, authentication by after carry out again operation flow.
Use the situation of old card ICC for old terminal HRPD terminal, the corresponding network HRPD of HRPD terminal network, old card ICC and old network HRPDE net mate, initiate inquiry Challenge-Handshake Authentication Protocol (Challenge Handshake Authentication Protocol according to the method for authenticating of old network HRPD network, or password authentication protocol (Password Authentication Protocol CHAP), PAP) authorizing procedure, authentication by after carry out again operation flow.
In above-described embodiment, terminal is to access network equipment reporting terminal type information and Card Type information, access network equipment is initiated access process according to terminal type information to corresponding equipment of the core network, and in access process the Card Type information of reporting terminal, equipment of the core network is determined when the Card Type information of terminal is not mated with current network standard, do not initiate authorizing procedure, directly carry out operation flow, user need not change card, still use old card just can carry out service communication with new network, solved the card problem of changing in network upgrade replacement process.
Use the situation of old card as example take new terminal below, describe the method for above-mentioned access network.Fig. 2 illustrates that the new terminal of exemplary embodiment of the present invention uses the schematic flow sheet of the method for a kind of access network of old card.As shown in Figure 2, this embodiment comprises the following steps:
S202, eHRPD terminal sends session establishment request, wherein carried terminal type information eHRPD and Card Type information ICC to access network equipment.
S204, access network equipment receives after session establishment request, initiates the authorizing procedure to terminal to AN-AAA.Method for authenticating for example can adopt CAVE authentication or MD5 authentication etc.CDMA 1X can use CAVE authentication, and HRPD can use MD5 authentication.Wherein, CAVE authentication is to determine user identity according to the ESN of Mobile phone card, IMSI, Akey etc.MD5 authentication is to determine user identity according to AN-AAA account number cipher.
It should be noted that, the present embodiment can directly perform step S206 after step S202, also can after step S204, perform step S206.
S206, access network equipment is determined and need to be initiated access process to eHRPD server net equipment HSGW according to the terminal type information eHRPD carrying in session establishment request, therefore access network equipment sends A11 link request message to HSGW, wherein carries Card Type information ICC.Optionally, if access network equipment is determined the Card Type information ICC of terminal and is not mated with current network standard eHRPD network, access network equipment can also further report the authentication request information of exempting from access process, clearly to indicate equipment of the core network HSGW this terminal not to be carried out to authentication, so that user uses old card also can carry out service communication with new network.
S208, HSGW receives after A11 link request message, judges Card Type information ICC and does not mate with eHRPD network, does not initiate authorizing procedure.Or HSGW judges Card Type information ICC and does not mate with eHRPD network, and receives the authentication request information of exempting from, and does not initiate authorizing procedure.
S210, HSGW directly carries out operation flow.Operation flow can be for example VSCNP or GTP operation flow, but is not limited to this.
In above-described embodiment, for outstanding step related to the present invention, some steps unrelated to the invention or relation is little are omitted, such as partial response message or contingent verification process etc., those skilled in the art can increase the operations such as some responses or authentication on the basis of scheme shown in Fig. 2 in conjunction with actual needs.
Above-described embodiment, new terminal is to access network equipment reporting terminal type information eHRPD and Card Type information ICC card, access network equipment is initiated access process according to terminal type information eHRPD to corresponding equipment of the core network HSGW, and in access process the Card Type information of reporting terminal, equipment of the core network is determined when the Card Type information of terminal is not mated with current network standard, do not initiate authorizing procedure, directly carry out operation flow, user need not change card, still use old card just can carry out service communication with new network, solved the card problem of changing in network upgrade replacement process.
It will be appreciated by those skilled in the art that, use the situation of old card to be suitable for equally and the scheme shown in Fig. 2 for other new terminals, difference is, the network entity relating to and message are slightly different according to different terminals, those skilled in the art can be easy to conversion in conjunction with the common practise of this area and draw on the basis of scheme shown in Fig. 2, will not enumerate all situations here.
Fig. 3 illustrates according to the structural representation of a kind of connecting system of exemplary embodiment of the present invention.As shown in Figure 3, the connecting system of this embodiment comprises: terminal 302, access network equipment 304 and equipment of the core network 306;
Terminal 302, for terminal type information and Card Type information to access network equipment 304 reporting terminals 302;
Access network equipment 304, for initiating access process according to terminal type information to corresponding equipment of the core network 306, and in access process the Card Type information of reporting terminal 302;
Equipment of the core network 306, while coupling, does not initiate authorizing procedure for the Card Type information of definite terminal 302 with current network standard, directly carries out operation flow.
As a kind of exemplary execution mode, terminal 302 can be for reporting terminal type information and Card Type information in the time carrying out session negotiation with access network equipment 304.
As a kind of exemplary execution mode, can transform for example A11 link request message of link request message of eating dishes without rice or wine, access network equipment 304 can use the Card Type information that the link request message of eating dishes without rice or wine after improvement can carried terminal, can also further carry and exempt from authentication request information.
As a kind of exemplary execution mode, in the time that the terminal type information of terminal 302 be evolution HRPD (high rate packet data) eHRPD/ Long Term Evolution LTE, Card Type information is integrated circuit card ICC, access network equipment 304 is for initiating access process according to terminal type eHRPD/LTE to eHRPD/LTE server net equipment 306, when eHRPD/LTE server net equipment 306 does not mate with eHRPD/LTE network for definite ICC, do not initiate EAP-AKA authorizing procedure, directly carry out operation flow.
As a kind of exemplary execution mode, access network equipment 304 if also do not mated with current network standard for the Card Type information of determining terminal, also reports the authentication request information of exempting from access process; Equipment of the core network 306, does not also mate with current network standard for the Card Type information of definite terminal 302 and receives while exempting from authentication request information, does not initiate authorizing procedure, directly carries out operation flow.
As a kind of exemplary execution mode, equipment of the core network 306, also when determining that the Card Type information of terminal 302 is mated with current network standard, according to the method for authenticating initiation authorizing procedure of current network standard, authentication by after carry out again operation flow.
As a kind of exemplary execution mode, access network equipment 304 also initiate before access process for to Access Network authentication, authorize the server A N-AAA that accounts and initiate cellular authentication and voice encryption CAVE authentication or the Message Digest Algorithm 5 MD5 authentication to terminal.
In above-described embodiment, terminal is to access network equipment reporting terminal type information and Card Type information, access network equipment is initiated access process according to terminal type information to corresponding equipment of the core network, and in access process the Card Type information of reporting terminal, equipment of the core network is determined when the Card Type information of terminal is not mated with current network standard, do not initiate authorizing procedure, directly carry out operation flow, user need not change card, still use old card just can carry out service communication with new network, solved the card problem of changing in network upgrade replacement process.
Fig. 4 illustrates according to the structural representation of a kind of terminal of exemplary embodiment of the present invention.As shown in Figure 4, the terminal of this embodiment comprises:
Information acquisition unit 402, for obtaining terminal type information and the Card Type information of terminal; And
Information reporting unit 404, for reporting to access network equipment the terminal type information and the Card Type information that get, so that access network equipment is initiated access process according to terminal type information to corresponding equipment of the core network, and in access process the Card Type information of reporting terminal, so that equipment of the core network is determined when the Card Type information of terminal is not mated with current network standard, do not initiate authorizing procedure, directly carry out operation flow.
As a kind of exemplary execution mode, the information reporting unit 404 of terminal can be in the time carrying out session negotiation with access network equipment reporting terminal type information and Card Type information.
In above-described embodiment, terminal is to access network equipment reporting terminal type information and Card Type information, access network equipment is initiated access process according to terminal type information to corresponding equipment of the core network, and in access process the Card Type information of reporting terminal, equipment of the core network is determined when the Card Type information of terminal is not mated with current network standard, do not initiate authorizing procedure, directly carry out operation flow, user need not change card, still use old card just can carry out service communication with new network, solved the card problem of changing in network upgrade replacement process.
Fig. 5 illustrates according to the structural representation of a kind of access network equipment of exemplary embodiment of the present invention.As shown in Figure 5, the access network equipment of this embodiment comprises:
Information receiving unit 502, the terminal type information reporting for receiving terminal and Card Type information;
Route determining unit 504, for determining corresponding equipment of the core network according to terminal type information; And
Access unit 506, for initiating access process to the corresponding equipment of the core network of terminal type information, and in access process the Card Type information of reporting terminal, so that equipment of the core network is determined when the Card Type information of terminal is not mated with current network standard, do not initiate authorizing procedure, directly carry out operation flow.
As a kind of exemplary execution mode, can transform for example A11 link request message of link request message of eating dishes without rice or wine, access unit 506, can use the Card Type information that the link request message of eating dishes without rice or wine after improvement can carried terminal, can also further carry and exempt from authentication request information.
As a kind of exemplary execution mode, access unit 506, if also do not mated with current network standard for the Card Type information of determining terminal, in access process, also report the authentication request information of exempting from, so that equipment of the core network is determined the Card Type information of terminal and is not mated with current network standard and receive while exempting from authentication request information, do not initiate authorizing procedure, directly carry out operation flow.
As a kind of exemplary execution mode, access network equipment also comprises: authentication is initiated unit, for to Access Network authentication, authorize the server A N-AAA that accounts and initiate cellular authentication and voice encryption CAVE authentication or the Message Digest Algorithm 5 MD5 authentication to described terminal.
In above-described embodiment, the terminal type information that access network equipment receiving terminal reports and Card Type information, initiate access process according to terminal type information to corresponding equipment of the core network, and in access process the Card Type information of reporting terminal, equipment of the core network is determined when the Card Type information of terminal is not mated with current network standard, do not initiate authorizing procedure, directly carry out operation flow, user need not change card, still use old card just can carry out service communication with new network, solved the card problem of changing in network upgrade replacement process.
Fig. 6 illustrates according to the structural representation of a kind of equipment of the core network of exemplary embodiment of the present invention.As shown in Figure 6, the equipment of the core network of this embodiment comprises:
Information receiving unit 602, for the access process of initiating in response to access network equipment, the Card Type information of receiving terminal in access process;
Whether judging unit 604, mate with current network standard for the Card Type information that judges terminal;
Processing unit 606, in the time that the Card Type information of judging terminal is not mated with current network standard, does not initiate authorizing procedure, directly carries out operation flow.
As a kind of exemplary execution mode, information receiving unit 602, also for receiving the authentication request information of exempting from; Processing unit 606, also, for determining that the Card Type information of terminal do not mate with current network standard and receive while exempting from authentication request information, does not initiate authorizing procedure, directly carries out operation flow.
In above-described embodiment, the access process that equipment of the core network is initiated in response to access network equipment, the Card Type information of receiving terminal in access process, in the time that the Card Type information of determining terminal is not mated with current network standard, do not initiate authorizing procedure, directly carry out operation flow, user need not change card, still use old card just can carry out service communication with new network, solved the card problem of changing in network upgrade replacement process.
One of ordinary skill in the art will appreciate that all or part of step that realizes above-described embodiment can complete by hardware, also can carry out the hardware that instruction is relevant by program completes, described program can be stored in a kind of computer-readable recording medium, the above-mentioned storage medium of mentioning can be read-only memory, disk or CD etc.
The foregoing is only preferred embodiment of the present invention, in order to limit the present invention, within the spirit and principles in the present invention not all, any modification of doing, be equal to replacement, improvement etc., within all should being included in protection scope of the present invention.

Claims (16)

1. a method for access network, is characterized in that, described method comprises:
Terminal is to access network equipment reporting terminal type information and Card Type information;
Described access network equipment is initiated access process according to described terminal type information to corresponding equipment of the core network, and in access process, reports the Card Type information of described terminal;
Described equipment of the core network is determined when the Card Type information of described terminal is not mated with current network standard, does not initiate authorizing procedure, directly carries out operation flow.
2. method according to claim 1, it is characterized in that, in the time that described terminal type information be evolution HRPD (high rate packet data) eHRPD/ Long Term Evolution LTE, described Card Type information is integrated circuit card ICC, described access network equipment is initiated access process according to terminal type eHRPD/LTE to eHRPD/LTE server net equipment, eHRPD/LTE server net equipment is determined when ICC does not mate with eHRPD/LTE network, do not initiate EAP-AKA authorizing procedure, directly carry out operation flow.
3. method according to claim 1, is characterized in that, does not mate with current network standard if described access network equipment is determined the Card Type information of described terminal, in access process, also reports the authentication request information of exempting from;
Described equipment of the core network determines that the Card Type information of described terminal do not mate with current network standard and receive while exempting from authentication request information, does not initiate authorizing procedure, directly carries out operation flow.
4. method according to claim 1, is characterized in that, also comprises:
Described equipment of the core network determines when the Card Type information of described terminal is mated with current network standard, initiates authorizing procedure according to the method for authenticating of current network standard, authentication by after carry out again operation flow.
5. method according to claim 1, is characterized in that, before described access network equipment is initiated access process, also comprises:
Described access network equipment to Access Network authentication, authorize the server A N-AAA that accounts and initiate cellular authentication and voice encryption CAVE authentication or the Message Digest Algorithm 5 MD5 authentication to described terminal.
6. a connecting system, is characterized in that, described connecting system comprises: terminal, access network equipment and equipment of the core network;
Described terminal, for reporting terminal type information and the Card Type information of described terminal to described access network equipment;
Described access network equipment for initiating access process according to described terminal type information to corresponding equipment of the core network, and reports the Card Type information of described terminal in access process;
Described equipment of the core network, while coupling, does not initiate authorizing procedure for the Card Type information of definite described terminal with current network standard, directly carries out operation flow.
7. connecting system according to claim 6, it is characterized in that, in the time that the terminal type information of described terminal be evolution HRPD (high rate packet data) eHRPD/ Long Term Evolution LTE, Card Type information is integrated circuit card ICC, described access network equipment is for initiating access process according to terminal type eHRPD/LTE to eHRPD/LTE server net equipment, when eHRPD/LTE server net equipment does not mate with eHRPD/LTE network for definite ICC, do not initiate EAP-AKA authorizing procedure, directly carry out operation flow.
8. connecting system according to claim 6, is characterized in that, described access network equipment, if also do not mated with current network standard for the Card Type information of determining described terminal, also reports the authentication request information of exempting from access process;
Described equipment of the core network, does not also mate with current network standard for the Card Type information of definite described terminal and receives while exempting from authentication request information, does not initiate authorizing procedure, directly carries out operation flow.
9. connecting system according to claim 6, it is characterized in that, described equipment of the core network, when also coupling with current network standard for the Card Type information of definite described terminal, initiate authorizing procedure according to the method for authenticating of current network standard, authentication by after carry out again operation flow.
10. connecting system according to claim 6, it is characterized in that, described access network equipment also initiate before access process for to Access Network authentication, authorize the server A N-AAA that accounts and initiate cellular authentication and voice encryption CAVE authentication or the Message Digest Algorithm 5 MD5 authentication to described terminal.
11. 1 kinds of terminals, is characterized in that, comprising:
Information acquisition unit, for obtaining terminal type information and the Card Type information of described terminal; And
Information reporting unit, for reporting to access network equipment the terminal type information and the Card Type information that get, so that described access network equipment is initiated access process according to described terminal type information to corresponding equipment of the core network, and in access process, report the Card Type information of described terminal, so that described equipment of the core network is determined when the Card Type information of described terminal is not mated with current network standard, do not initiate authorizing procedure, directly carry out operation flow.
12. 1 kinds of access network equipments, is characterized in that, comprising:
Information receiving unit, the terminal type information reporting for receiving terminal and Card Type information;
Route determining unit, for determining corresponding equipment of the core network according to terminal type information; And
Access unit, for initiating access process to the corresponding equipment of the core network of described terminal type information, and in access process, report the Card Type information of described terminal, so that described equipment of the core network is determined when the Card Type information of described terminal is not mated with current network standard, do not initiate authorizing procedure, directly carry out operation flow.
13. access network equipments according to claim 12, it is characterized in that, described access unit, if also do not mated with current network standard for the Card Type information of determining described terminal, in access process, also report the authentication request information of exempting from, so that described equipment of the core network is determined the Card Type information of described terminal and is not mated with current network standard and receive while exempting from authentication request information, do not initiate authorizing procedure, directly carry out operation flow.
14. access network equipments according to claim 12, is characterized in that, also comprise:
Authentication is initiated unit, for to Access Network authentication, authorize the server A N-AAA that accounts and initiate cellular authentication and voice encryption CAVE authentication or the Message Digest Algorithm 5 MD5 authentication to described terminal.
15. 1 kinds of equipments of the core network, is characterized in that, comprising:
Information receiving unit, for the access process of initiating in response to access network equipment, the Card Type information of receiving terminal in access process;
Whether judging unit, mate with current network standard for the Card Type information that judges described terminal;
Processing unit, in the time that the Card Type information of judging described terminal is not mated with current network standard, does not initiate authorizing procedure, directly carries out operation flow.
16. equipments of the core network according to claim 15, is characterized in that, described information receiving unit, also for receiving the authentication request information of exempting from;
Described processing unit, also, for determining that the Card Type information of described terminal do not mate with current network standard and receive while exempting from authentication request information, does not initiate authorizing procedure, directly carries out operation flow.
CN201210430091.3A 2012-11-01 2012-11-01 Network access method and system, terminal, access network equipment and core network equipment Pending CN103796202A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201210430091.3A CN103796202A (en) 2012-11-01 2012-11-01 Network access method and system, terminal, access network equipment and core network equipment

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201210430091.3A CN103796202A (en) 2012-11-01 2012-11-01 Network access method and system, terminal, access network equipment and core network equipment

Publications (1)

Publication Number Publication Date
CN103796202A true CN103796202A (en) 2014-05-14

Family

ID=50671387

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201210430091.3A Pending CN103796202A (en) 2012-11-01 2012-11-01 Network access method and system, terminal, access network equipment and core network equipment

Country Status (1)

Country Link
CN (1) CN103796202A (en)

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20050141527A1 (en) * 2003-12-29 2005-06-30 Nokia Corporation Method, system, and devices for transmitting information between a user equipment and an IP packet gateway
CN101600205A (en) * 2009-07-10 2009-12-09 华为技术有限公司 The method and the relevant device of SIM card subscriber equipment cut-in evolution network
CN102378174A (en) * 2010-08-25 2012-03-14 大唐移动通信设备有限公司 Access method, device and system of user terminal of SIM (Subscriber Identity Module) card

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20050141527A1 (en) * 2003-12-29 2005-06-30 Nokia Corporation Method, system, and devices for transmitting information between a user equipment and an IP packet gateway
CN101600205A (en) * 2009-07-10 2009-12-09 华为技术有限公司 The method and the relevant device of SIM card subscriber equipment cut-in evolution network
CN102378174A (en) * 2010-08-25 2012-03-14 大唐移动通信设备有限公司 Access method, device and system of user terminal of SIM (Subscriber Identity Module) card

Similar Documents

Publication Publication Date Title
US11895157B2 (en) Network security management method, and apparatus
CN100417274C (en) Certificate based authentication authorization accounting scheme for loose coupling interworking
JP4722056B2 (en) Method and apparatus for personalization and identity management
EP1860906B1 (en) A general authentication form and a method for implementing the authentication
AU2005317777B2 (en) Method for producing authentication information
EP2232906B1 (en) Method and system for preventing use of stolen terminal through forced location re-registration
US20030223450A1 (en) Aggregating multiple air interfaces with a multi-link protocol
CN106105134A (en) Improved end-to-end data protection
JP2011141877A (en) Authentication in communication system
CN102204307A (en) Wlan authentication method based on MAC address and device thereof
KR20060046712A (en) Wireless communication network, wireless terminal, access server, and method therefor
CN101156364A (en) Access control method, unit and system for user changing access network
CN101662768B (en) Authenticating method and equipment based on user identification module of personal handy phone system
EP3614741B1 (en) Processing apparatus for terminal access to 3gpp network and communication system and corresponding system and computer program product
US9584604B2 (en) Utilization of subscriber data in a telecommunication system
WO2021168829A1 (en) User identifier verification method and related device
CN103379490A (en) Authentication method, device and system of user equipment
WO2009120714A2 (en) Method for securely storing a programmable identifier in a communication station
JP2005528008A (en) System and method for using CDMA mobile with GSM core infrastructure
US10149163B2 (en) Methods and apparatuses of device identity check in a core network for a wireless network
US8229398B2 (en) GSM authentication in a CDMA network
JP4984020B2 (en) Communication system, node, authentication server, communication method and program thereof
CN102547698B (en) Authentication system, method and intermediate authentication platform
CN102970678B (en) Cryptographic algorithm negotiating method, network element and mobile station
CN106912047B (en) Terminal authentication method, device and system

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
RJ01 Rejection of invention patent application after publication

Application publication date: 20140514

RJ01 Rejection of invention patent application after publication