CN103906056A - Unified certification method under hybrid networking and system thereof - Google Patents

Unified certification method under hybrid networking and system thereof Download PDF

Info

Publication number
CN103906056A
CN103906056A CN201210574721.4A CN201210574721A CN103906056A CN 103906056 A CN103906056 A CN 103906056A CN 201210574721 A CN201210574721 A CN 201210574721A CN 103906056 A CN103906056 A CN 103906056A
Authority
CN
China
Prior art keywords
authentication
mode terminal
dual
wlan
base station
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201210574721.4A
Other languages
Chinese (zh)
Other versions
CN103906056B (en
Inventor
张光辉
孙震强
朱彩勤
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
China Telecom Corp Ltd
Original Assignee
China Telecom Corp Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by China Telecom Corp Ltd filed Critical China Telecom Corp Ltd
Priority to CN201210574721.4A priority Critical patent/CN103906056B/en
Publication of CN103906056A publication Critical patent/CN103906056A/en
Application granted granted Critical
Publication of CN103906056B publication Critical patent/CN103906056B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Landscapes

  • Mobile Radio Communication Systems (AREA)

Abstract

The invention relates to a unified certification method under hybrid networking and a system thereof. The method comprises that: in the process of initiating a business request to an LTE network via an LTE base station at a dual-mode terminal supporting LTE and WLAN carrier aggregation, an MME sends an authentication request message to the dual-mode terminal via the LTE base station; authentication is performed at a network side by the dual-mode terminal according to the authentication request message; after passing of authentication, the generated authentication result is returned to the MME by the dual-mode terminal via an authentication response message; the MME performs certification via comparison of the certification result of the authentication response message and an authentication variable acquired from an HSS, if certification is succeeded, the dual-mode terminal is notified to revise the LTE certification state to be the certificated state, and the WLAN certification of the dual-mode terminal is continuously completed. The unified certification process under the LTE and WLAN hybrid networking is realized via the certification process sharing the LTE so that use is facilitated for users, the base station can adjust loads of the LTE network and the WLAN network according to service quality requirements of the business, and thus resource utilization rate is enhanced.

Description

Uniform authentication method and system under mixed networking
Technical field
The present invention relates to wireless communication technology, relate in particular to uniform authentication method and system under a kind of mixed networking.
Background technology
Long Term Evolution (Long Term Evolution, be called for short LTE) be 3G (Third Generation) Moblie partnership projects (Third Generation Partnership Project, be called for short 3GPP) release new generation of wireless communication system, be the evolution technology of 3G, be commonly referred to as 3.9G or accurate 4G.LTE is total R8, R9, tri-versions of R10 at present, wherein R8 and R9 version are respectively at freezing in the end of the year 2008 and the end of the year 2009, represent that the R10 version of 4G technology is also referred to as LTE-Advanced, its main technical specification also completes at the beginning of 2011, and R11 has completed standardization effort in September, 2012.
LTE is by adopting OFDM (Orthogonal Frequency DivisionMultiplexing, be called for short OFDM) and multiple-input, multiple-output (Multiple Input MultipleOutput, be called for short MIMO) as the mainstream standard of its wireless network evolution, LTE R8 can provide the peak rate of descending 100Mbit/s and up 50Mbit/s under 20MHz spectral bandwidth, improve cell capacity simultaneously, reduced system delay, can meet better the demand of user to data service.
WLAN (wireless local area network) (Wireless Local Area Network, be called for short WLAN) be that one transmits and receive data by radio, infrared signal or other technologies, do not require and between each node and hub, have physical connection the local area network (LAN) of (for example, adopting wire or coaxial cable etc.).WLAN (wireless local area network) based on IEEE802.11 standard allows to use 2.4 or 5.8GHz radio-frequency range in the ISM band that can authorize to carry out wireless connections in LAN environment.They are widely used in user and for example carry, in the environment such as office, factory and the public of movable termination (, portable computer, mobile subscriber terminal etc.).
At present, the mixed networking of LTE and WLAN has become the development trend of cellular carrier, and LTE network under current mixed networking environment and the verification process of wlan network are to complete by access network element separately respectively.For user, in the time using mobile phone access business of networking, need to complete respectively the verification process of LTE network and wlan network, for example visited WLAN network also needs to input account and password, therefore cumbersome, affects user and experiences.
Summary of the invention
The object of the invention is to propose uniform authentication method and system under a kind of mixed networking, realize the unified certification under LTE and WLAN mixed networking, be user-friendly to business of networking.
For achieving the above object, the invention provides uniform authentication method under a kind of mixed networking, comprising:
The dual-mode terminal of supporting Long Term Evolution and the polymerization of WLAN (wireless local area network) carrier wave by long term evolution base station in the process of long-term evolving network initiating business request, mobile management entity by described long term evolution base station to described dual-mode terminal transmission authentication request message;
Described dual-mode terminal carries out authentication according to described authentication request message to network side;
After authentication is passed through, described dual-mode terminal returns to described mobile management entity by the authentication result of generation by Authentication Response message;
The authentication result of described mobile management entity to described Authentication Response message and the authentication variable obtaining from home subscriber server compare to authenticate, if authentication success, notify described dual-mode terminal that Long Term Evolution authentication state is revised as to verified status, and continued the wireless local area network (WLAN) verification of described dual-mode terminal.
Further, the operation that described mobile management entity obtains authentication variable from described home subscriber server specifically comprises:
Described mobile management entity sends authentication information request message to described home subscriber server, and described authentication information request message comprises the international mobile subscriber identity of described dual-mode terminal;
Described home subscriber server checks according to described authentication information request message whether the international mobile subscriber identity of described dual-mode terminal is contracted user, and by authentication information response message, authentication vector is returned to described mobile management entity.
Further, the operation of the described wireless local area network (WLAN) verification that has continued described dual-mode terminal is specially:
It is verified status by wireless local area network (WLAN) verification status modifier that described mobile management entity is notified described dual-mode terminal, and sends and notify described dual-mode terminal by the message of wireless local area network (WLAN) verification to wireless local network connecting point, access controller/Broadband Remote Access Server, aaa server and described home subscriber server.
Further, the operation of the described wireless local area network (WLAN) verification that has continued described dual-mode terminal is specially:
Described dual-mode terminal sends international mobile subscriber identity and the password of described dual-mode terminal to access controller/Broadband Remote Access Server by described long term evolution base station;
Described access controller/Broadband Remote Access Server is initiated authentication request packet according to the international mobile subscriber identity of described dual-mode terminal and password to aaa server;
Described aaa server is accessed described home subscriber server, authenticates, after certification is passed through, to described access controller/Broadband Remote Access Server return authentication back message using according to the international mobile subscriber identity of described dual-mode terminal and password;
It is verified status by wireless local area network (WLAN) verification status modifier that described access controller/Broadband Remote Access Server is notified described dual-mode terminal by described long term evolution base station.
Further, the function of described long term evolution base station and wireless local network connecting point all realizes by the dual-mode base station of supporting Long Term Evolution and the polymerization of WLAN (wireless local area network) carrier wave.
For achieving the above object, the invention provides Centralized Authentication System under a kind of mixed networking, comprising:
Long term evolution base station;
Dual-mode terminal, support Long Term Evolution and WLAN (wireless local area network) carrier wave polymerizable functional, for passing through described long term evolution base station to long-term evolving network initiating business request, and in the time receiving the authentication request message of mobile management entity transmission, according to described authentication request message, network side is carried out to authentication, and after authentication is passed through, the authentication result of generation is returned to described mobile management entity by Authentication Response message;
Mobile management entity, for in the time that described dual-mode terminal passes through described long term evolution base station to long-term evolving network initiating business request, send authentication request message by described long term evolution base station to described dual-mode terminal, and in the time receiving the Authentication Response message of described dual-mode terminal transmission, authentication result to described Authentication Response message and the authentication variable obtaining from home subscriber server compare to authenticate, if authentication success, notify described dual-mode terminal that Long Term Evolution authentication state is revised as to verified status, and continue the wireless local area network (WLAN) verification of described dual-mode terminal.
Further, also comprise:
Home subscriber server, for in the time that described mobile management entity sends authentication information request message to described home subscriber server, whether the international mobile subscriber identity that checks described dual-mode terminal according to described authentication information request message is contracted user, and by authentication information response message, authentication vector being returned to described mobile management entity, described authentication information request message comprises the international mobile subscriber identity of described dual-mode terminal.
Further, described mobile management entity is also verified status for notifying described dual-mode terminal by wireless local area network (WLAN) verification status modifier, and sends and notify described dual-mode terminal by the message of wireless local area network (WLAN) verification to wireless local network connecting point, access controller/Broadband Remote Access Server, aaa server and described home subscriber server.
Further, also comprise:
Access controller/Broadband Remote Access Server, for receiving international mobile subscriber identity and the password of the described dual-mode terminal that described dual-mode terminal sends by described long term evolution base station, and initiate authentication request packet according to the international mobile subscriber identity of described dual-mode terminal and password to aaa server, and in the time receiving the certification back message using that described aaa server returns, notifying described dual-mode terminal by described long term evolution base station is verified status by wireless local area network (WLAN) verification status modifier;
Aaa server, for receive described access controller/Broadband Remote Access Server send authentication request packet time, authenticate according to the international mobile subscriber identity of described dual-mode terminal and password, after certification is passed through, to described access controller/Broadband Remote Access Server return authentication back message using.
Further, the function of described long term evolution base station and wireless local network connecting point all realizes by the dual-mode base station of supporting Long Term Evolution and the polymerization of WLAN (wireless local area network) carrier wave.
Based on technique scheme, the present invention adopts the WLAN certification of supporting the dual-mode terminal of LTE and WLAN carrier aggregation to continue described dual-mode terminal after LTE has authenticated, by sharing the verification process of LTE, realize the unified certification process under LTE and WLAN mixed networking, and without the certification respectively of carrying out LTE network and wlan network, thereby make user after access LTE network, also just completed the access of wlan network, not only convenient for users, and base station can be according to the quality of service requirement of business, adjust the load of LTE network and wlan network, improve resource utilization.
Brief description of the drawings
Accompanying drawing described herein is used to provide a further understanding of the present invention, forms the application's a part, and schematic description and description of the present invention is used for explaining the present invention, does not form inappropriate limitation of the present invention.In the accompanying drawings:
Fig. 1 is the network architecture schematic diagram of the applied mixed networking of uniform authentication method embodiment under mixed networking of the present invention.
Fig. 2 is the schematic flow sheet of an embodiment of uniform authentication method under mixed networking of the present invention.
Fig. 3 is the signaling process schematic diagram of another embodiment of uniform authentication method under mixed networking of the present invention.
Fig. 4 is the signaling process schematic diagram of the another embodiment of uniform authentication method under mixed networking of the present invention.
Fig. 5 is the structural representation of an embodiment of Centralized Authentication System under mixed networking of the present invention.
Fig. 6 is the structural representation of another embodiment of Centralized Authentication System under mixed networking of the present invention.
Embodiment
Below by drawings and Examples, technical scheme of the present invention is described in further detail.
As shown in Figure 1, be the network architecture schematic diagram of the applied mixed networking of uniform authentication method embodiment under mixed networking of the present invention.In the present embodiment; use the terminal of radio communication service for supporting the dual-mode terminal of LTE and WLAN carrier aggregation; LTE base station (being eNodeB or eNB) can be the transfer of data that dual-mode terminal is realized LTE network and wlan network as base station independently respectively with WLAN AP, also can adopt the function of supporting the dual-mode base station of LTE and WLAN carrier aggregation to realize LTE base station and WLAN AP.
Dual-mode base station is by S1-MME interface and mobile management entity (MobileManagement Entity; be called for short MME) communicate alternately; by S1-U interface and Service Gateway (Serving Gateway; be called for short SGW) or grouped data network gateway (PacketData Network Gateway; be called for short PDN GW or PGW) communicate alternately; dual-mode base station also with access controller (Access Controller; be called for short AC) or Broadband Remote Access Server (Broadband Remote Access Server, be called for short BRAS) communicate mutual.
MME communicates mutual by S6a interface and home subscriber server (Home SubscriberServer is called for short HSS), HSS and AC/BRAS all communicate with aaa server alternately.SGW/PGW communicates mutual by Gx interface and "Policy and Charging Rules Function (Policy and Charging Rules Function is called for short PCRF).PCRF and SGW/PGW are respectively for example, by Rx interface and SGi interface and operator's IP operation (Operator ' s IP Services, IP Multimedia System IMS, packet switching streaming media service PSS).
Based on the network configuration of above-mentioned mixed networking, Fig. 2 is the schematic flow sheet of an embodiment of uniform authentication method under mixed networking of the present invention.In the present embodiment, under mixed networking, unified certification flow process comprises:
Step 101, the dual-mode terminal of supporting LTE and WLAN carrier aggregation by LTE base station in the process of LTE network initiating business request, MME by LTE base station to dual-mode terminal transmission authentication request message; '
Step 102, dual-mode terminal carry out authentication according to authentication request message to network side;
Step 103, after authentication is passed through, dual-mode terminal returns to MME by the authentication result of generation by Authentication Response message;
Authentication result to Authentication Response message of step 104, MME and the authentication variable obtaining from HSS compare to authenticate, if authentication success notifies dual-mode terminal that LTE authentication state is revised as to verified status;
Step 105, continue the WLAN certification of dual-mode terminal.
In the present embodiment, LTE base station can be separate with WLAN base station, can be also the dual-mode base station of supporting LTE and WLAN carrier aggregation in Fig. 1.In LTE verification process, MME first sends authentication information request message to HSS, this authentication information request message comprises the international mobile subscriber identity (International MobileSubscriberIdentification Number is called for short IMSI) of described dual-mode terminal.HSS checks according to authentication information request message whether the IMSI of dual-mode terminal is contracted user, and by authentication information response message, authentication vector is returned to MME.
MME sends authentication request message by dual-mode base station to dual-mode terminal, and dual-mode terminal carries out authentication according to authentication request message to network side; After authentication is passed through, dual-mode terminal eats dishes without rice or wine the authentication result of generation to return to MME by Authentication Response message by the LTE of dual-mode base station.If authentication is not passed through, refuse LTE network insertion.
In step 105, the WLAN of dual-mode terminal certification continues automatically to complete after LTE has authenticated, and initiatively initiates without user.For user, common use habit is that the LTE Chief Web Officer time is online, and be not often to open WLAN switch, only in needs, just open WLAN switch, and in the time opening WLAN switch, existing mode needs user to input account and password information, therefore cumbersome, and LTE has authenticated rear continuation and has automatically completed WLAN certification in the present invention, while making user open WLAN switch, can directly use wlan network, and without input account and password information, therefore user uses more conveniently, improve user's experience.
As shown in Figure 3, be the signaling process schematic diagram of another embodiment of uniform authentication method under mixed networking of the present invention.In the present embodiment, the request of adhering to of initiating LTE network with dual-mode terminal starts, and flow process comprises:
Step 201, dual-mode terminal are initiated the request of adhering to of LTE network to the eNB in dual-mode base station;
Step 202, dual-mode terminal, dual-mode base station, MME and HSS complete LTE certification jointly, and after authentication success, LTE authentication state is revised as verified status by MME notice dual-mode terminal;
WLAN authentication state is revised as verified status by step 203, MME notice dual-mode terminal;
Step 204, MME send to WLAN AP, AC/BRAS, aaa server and HSS in dual-mode base station the message that notice dual-mode terminal authenticates by WLAN, make said network element know the WLAN authentication state of this dual-mode terminal;
Step 205, MME and HSS carry out position renewal;
ENB, MME, SGW and PGW in step 206, dual-mode base station set up default bearing;
Step 207, be dual-mode terminal distributing IP address, complete LTE network attachment process.
In the present embodiment, dual-mode terminal has also been thought WLAN verification process completing LTE verification process, therefore only need complete after LTE verification process, notify respectively dual-mode terminal and each above-mentioned network element, so that dual-mode terminal transmits data by wlan network in follow-up flow process.
As shown in Figure 4, be the signaling process schematic diagram of the another embodiment of uniform authentication method under mixed networking of the present invention.In the present embodiment, the request of adhering to of initiating LTE network with dual-mode terminal starts, and flow process comprises:
Step 301, dual-mode terminal are initiated the request of adhering to of LTE network to the eNB in dual-mode base station;
Step 302, dual-mode terminal, dual-mode base station, MME and HSS complete LTE certification jointly, and after authentication success, LTE authentication state is revised as verified status by MME notice dual-mode terminal;
Step 303, dual-mode terminal by the eNB in dual-mode base station to AC(or BRAS) send IMSI and the password of dual-mode terminal, AC(or BRAS) initiate authentication request packet according to the IMSI of dual-mode terminal and password to aaa server, aaa server access HSS, authenticate according to the IMSI of dual-mode terminal and password, after certification is passed through, to AC(or BRAS) return authentication back message using, AC(or BRAS) by the eNB notice dual-mode terminal in dual-mode base station, WLAN authentication state is revised as to verified status;
Step 304, MME and HSS carry out position renewal;
ENB, MME, SGW and PGW in step 305, dual-mode base station set up default bearing;
Step 306, be dual-mode terminal distributing IP address, complete LTE network attachment process.
In the present embodiment, dual-mode terminal completes LTE verification process, continues to eat dishes without rice or wine to carry out WLAN verification process by LTE, and WLAN authentication message is by LTE empty port load-supporting, and employing LTE authenticates authentication information used.The ciphering process of wlan system uses the key passing through in LTE verification process.Complete after LTE and wlan network certification and security process at dual-mode terminal, can set up service connection at LTE network, also can initiate to reconnect (reassociation) process at wlan network, in wlan network transmission data.Can certainly be simultaneously in LTE network and wlan network transmission data.And initiate to reconnect process at wlan network, just without reauthentication.
One of ordinary skill in the art will appreciate that: all or part of step that realizes said method embodiment can complete by the relevant hardware of program command, aforesaid program can be stored in a computer read/write memory medium, this program, in the time carrying out, is carried out the step that comprises said method embodiment; And aforesaid storage medium comprises: various media that can be program code stored such as ROM, RAM, magnetic disc or CDs.
As shown in Figure 5, be the structural representation of an embodiment of Centralized Authentication System under mixed networking of the present invention.In the present embodiment, under mixed networking, Centralized Authentication System comprises: LTE base station 1, dual-mode terminal 2 and MME 3.
Dual-mode terminal 2 is supported LTE and WLAN carrier aggregation function, for passing through LTE base station 1 to LTE network initiating business request, and in the time receiving the authentication request message that MME 3 sends, according to authentication request message, network side is carried out to authentication, and after authentication is passed through, the authentication result of generation is returned to MME 3 by Authentication Response message.
MME 3 is responsible in the time that dual-mode terminal 2 passes through LTE base station 1 to LTE network initiating business request, send authentication request message by LTE base station 1 to dual-mode terminal 2, and receive dual-mode terminal 2 send Authentication Response message time, authentication result to Authentication Response message and the authentication variable obtaining from HSS 4 compare to authenticate, if authentication success, notify dual-mode terminal 2 that LTE authentication state is revised as to verified status, and continued the WLAN certification of dual-mode terminal 2.
In another embodiment, also comprise HSS 4, in the time that MME 3 sends authentication information request message to HSS 4, HSS 4 checks according to authentication information request message whether the IMSI of dual-mode terminal 2 is contracted user, and by authentication information response message, authentication vector being returned to MME 3, authentication information request message comprises the IMSI of dual-mode terminal 2.
WLAN verification process after LTE has authenticated can have two kinds of implementations, one is that WLAN authentication state is revised as verified status by MME notice dual-mode terminal, and sends to WLAN access point, AC/BRAS, aaa server and HSS the message that notice dual-mode terminal authenticates by WLAN.
Another kind is to utilize eated dishes without rice or wine WLAN certification of LTE, as shown in Figure 6, is the structural representation of another embodiment of Centralized Authentication System under mixed networking of the present invention.Compared with Fig. 5 embodiment, the present embodiment also comprises AC/BRAS 5 and aaa server 6.
IMSI and the password of the dual-mode terminal 2 that the responsible reception dual-mode terminal of AC/BRAS 5 sends by LTE base station 1, and initiate authentication request packet according to the IMSI of dual-mode terminal 2 and password to aaa server 6, and in the time receiving the certification back message using that aaa server 6 returns, notify dual-mode terminal 2 that WLAN authentication state is revised as to verified status by LTE base station 1.
Aaa server 6 be responsible for receive AC/BRAS 5 send authentication request packet time, access HSS 4, authenticate according to the IMSI of dual-mode terminal 2 and password, certification pass through after, to AC/BRAS 5 return authentication back message usings.
In above-mentioned each system embodiment, the function of LTE base station and WLAN access point all can realize by the dual-mode base station of supporting LTE and WLAN carrier aggregation.
Finally should be noted that: above embodiment is only in order to illustrate that technical scheme of the present invention is not intended to limit; Although the present invention is had been described in detail with reference to preferred embodiment, those of ordinary skill in the field are to be understood that: still can modify or part technical characterictic is equal to replacement the specific embodiment of the present invention; And not departing from the spirit of technical solution of the present invention, it all should be encompassed in the middle of the technical scheme scope of request protection of the present invention.

Claims (10)

1. a uniform authentication method under mixed networking, comprising:
The dual-mode terminal of supporting Long Term Evolution and the polymerization of WLAN (wireless local area network) carrier wave by long term evolution base station in the process of long-term evolving network initiating business request, mobile management entity by described long term evolution base station to described dual-mode terminal transmission authentication request message;
Described dual-mode terminal carries out authentication according to described authentication request message to network side;
After authentication is passed through, described dual-mode terminal returns to described mobile management entity by the authentication result of generation by Authentication Response message;
The authentication result of described mobile management entity to described Authentication Response message and the authentication variable obtaining from home subscriber server compare to authenticate, if authentication success, notify described dual-mode terminal that Long Term Evolution authentication state is revised as to verified status, and continued the wireless local area network (WLAN) verification of described dual-mode terminal.
2. uniform authentication method under mixed networking according to claim 1, the operation that wherein said mobile management entity obtains authentication variable from described home subscriber server specifically comprises:
Described mobile management entity sends authentication information request message to described home subscriber server, and described authentication information request message comprises the international mobile subscriber identity of described dual-mode terminal;
Described home subscriber server checks according to described authentication information request message whether the international mobile subscriber identity of described dual-mode terminal is contracted user, and by authentication information response message, authentication vector is returned to described mobile management entity.
3. uniform authentication method under mixed networking according to claim 1, the operation of the wherein said wireless local area network (WLAN) verification that has continued described dual-mode terminal is specially:
It is verified status by wireless local area network (WLAN) verification status modifier that described mobile management entity is notified described dual-mode terminal, and sends and notify described dual-mode terminal by the message of wireless local area network (WLAN) verification to wireless local network connecting point, access controller/Broadband Remote Access Server, aaa server and described home subscriber server.
4. uniform authentication method under mixed networking according to claim 1, the operation of the wherein said wireless local area network (WLAN) verification that has continued described dual-mode terminal is specially:
Described dual-mode terminal sends international mobile subscriber identity and the password of described dual-mode terminal to access controller/Broadband Remote Access Server by described long term evolution base station;
Described access controller/Broadband Remote Access Server is initiated authentication request packet according to the international mobile subscriber identity of described dual-mode terminal and password to aaa server;
Described aaa server is accessed described home subscriber server, authenticates, after certification is passed through, to described access controller/Broadband Remote Access Server return authentication back message using according to the international mobile subscriber identity of described dual-mode terminal and password;
It is verified status by wireless local area network (WLAN) verification status modifier that described access controller/Broadband Remote Access Server is notified described dual-mode terminal by described long term evolution base station.
5. according to uniform authentication method under the mixed networking described in claim 3 or 4, the function of wherein said long term evolution base station and wireless local network connecting point all realizes by the dual-mode base station of supporting Long Term Evolution and the polymerization of WLAN (wireless local area network) carrier wave.
6. a Centralized Authentication System under mixed networking, comprising:
Long term evolution base station;
Dual-mode terminal, support Long Term Evolution and WLAN (wireless local area network) carrier wave polymerizable functional, for passing through described long term evolution base station to long-term evolving network initiating business request, and in the time receiving the authentication request message of mobile management entity transmission, according to described authentication request message, network side is carried out to authentication, and after authentication is passed through, the authentication result of generation is returned to described mobile management entity by Authentication Response message;
Mobile management entity, for in the time that described dual-mode terminal passes through described long term evolution base station to long-term evolving network initiating business request, send authentication request message by described long term evolution base station to described dual-mode terminal, and in the time receiving the Authentication Response message of described dual-mode terminal transmission, authentication result to described Authentication Response message and the authentication variable obtaining from home subscriber server compare to authenticate, if authentication success, notify described dual-mode terminal that Long Term Evolution authentication state is revised as to verified status, and continue the wireless local area network (WLAN) verification of described dual-mode terminal.
7. Centralized Authentication System under mixed networking according to claim 6, wherein also comprises:
Home subscriber server, for in the time that described mobile management entity sends authentication information request message to described home subscriber server, whether the international mobile subscriber identity that checks described dual-mode terminal according to described authentication information request message is contracted user, and by authentication information response message, authentication vector being returned to described mobile management entity, described authentication information request message comprises the international mobile subscriber identity of described dual-mode terminal.
8. Centralized Authentication System under mixed networking according to claim 6, wherein said mobile management entity is also verified status for notifying described dual-mode terminal by wireless local area network (WLAN) verification status modifier, and sends and notify described dual-mode terminal by the message of wireless local area network (WLAN) verification to wireless local network connecting point, access controller/Broadband Remote Access Server, aaa server and described home subscriber server.
9. Centralized Authentication System under mixed networking according to claim 7, wherein also comprises:
Access controller/Broadband Remote Access Server, for receiving international mobile subscriber identity and the password of the described dual-mode terminal that described dual-mode terminal sends by described long term evolution base station, and initiate authentication request packet according to the international mobile subscriber identity of described dual-mode terminal and password to aaa server, and in the time receiving the certification back message using that described aaa server returns, notifying described dual-mode terminal by described long term evolution base station is verified status by wireless local area network (WLAN) verification status modifier;
Aaa server, for receive described access controller/Broadband Remote Access Server send authentication request packet time, access described home subscriber server, authenticate according to the international mobile subscriber identity of described dual-mode terminal and password, after certification is passed through, to described access controller/Broadband Remote Access Server return authentication back message using.
10. Centralized Authentication System under mixed networking according to claim 8 or claim 9, the function of wherein said long term evolution base station and wireless local network connecting point is all by supporting the dual-mode base station realization of Long Term Evolution and the polymerization of WLAN (wireless local area network) carrier wave.
CN201210574721.4A 2012-12-26 2012-12-26 Uniform authentication method and system under mixed networking Active CN103906056B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201210574721.4A CN103906056B (en) 2012-12-26 2012-12-26 Uniform authentication method and system under mixed networking

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201210574721.4A CN103906056B (en) 2012-12-26 2012-12-26 Uniform authentication method and system under mixed networking

Publications (2)

Publication Number Publication Date
CN103906056A true CN103906056A (en) 2014-07-02
CN103906056B CN103906056B (en) 2018-01-09

Family

ID=50997164

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201210574721.4A Active CN103906056B (en) 2012-12-26 2012-12-26 Uniform authentication method and system under mixed networking

Country Status (1)

Country Link
CN (1) CN103906056B (en)

Cited By (11)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2016004822A1 (en) * 2014-07-10 2016-01-14 华为技术有限公司 Method and apparatus for network switching
CN105611594A (en) * 2016-01-28 2016-05-25 努比亚技术有限公司 Network switching device and method
WO2017008402A1 (en) * 2015-07-15 2017-01-19 宇龙计算机通信科技(深圳)有限公司 Method for authenticated access, base station, and terminal
CN106358187A (en) * 2015-07-14 2017-01-25 宏达国际电子股份有限公司 Device and method of handling authentication procedure
CN106686743A (en) * 2015-11-11 2017-05-17 苹果公司 Radio resource aggregation with suspend/resume support
CN107211488A (en) * 2014-12-04 2017-09-26 瑞典爱立信有限公司 It is used for the method to the business datum application safety of reception by what the WLAN node in integrated wireless communications network was performed
CN107231644A (en) * 2016-03-25 2017-10-03 三星电子株式会社 Method and electronic equipment for providing communication function
CN107295512A (en) * 2016-03-31 2017-10-24 展讯通信(上海)有限公司 Communication equipment and the method authenticated from LTE into WLAN handoff procedures
CN110621083A (en) * 2014-10-07 2019-12-27 三星电子株式会社 Apparatus and method for providing multiple connections using different radio access technologies
CN111869261A (en) * 2015-08-06 2020-10-30 艾锐势有限责任公司 Discovery and security in LWA communications
US10849191B2 (en) 2016-07-13 2020-11-24 Huawei International PTE., Ltd. Unified authentication for heterogeneous networks

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101150594A (en) * 2007-10-18 2008-03-26 中国联合通信有限公司 An integrated access method and system for mobile cellular network and WLAN
CN102215530A (en) * 2011-05-27 2011-10-12 上海华为技术有限公司 Data flow transmission method and related equipment and system
CN102421097A (en) * 2010-09-27 2012-04-18 中国移动通信集团公司 User authorization method, device and system
CN102769848A (en) * 2010-12-21 2012-11-07 特克特朗尼克公司 Evolved packet system non access stratum deciphering using real-time LTE monitoring

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101150594A (en) * 2007-10-18 2008-03-26 中国联合通信有限公司 An integrated access method and system for mobile cellular network and WLAN
CN102421097A (en) * 2010-09-27 2012-04-18 中国移动通信集团公司 User authorization method, device and system
CN102769848A (en) * 2010-12-21 2012-11-07 特克特朗尼克公司 Evolved packet system non access stratum deciphering using real-time LTE monitoring
CN102215530A (en) * 2011-05-27 2011-10-12 上海华为技术有限公司 Data flow transmission method and related equipment and system

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
3RD GENERATION PARTNERSHIP PROJECT: "3GPP system to Wireless Local Area Network (WLAN) interworking;", 《3GPP TS 23.234 V11.0.0》 *

Cited By (18)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2016004822A1 (en) * 2014-07-10 2016-01-14 华为技术有限公司 Method and apparatus for network switching
CN110621083A (en) * 2014-10-07 2019-12-27 三星电子株式会社 Apparatus and method for providing multiple connections using different radio access technologies
CN110621083B (en) * 2014-10-07 2023-02-17 三星电子株式会社 Apparatus and method for providing multiple connections using different radio access technologies
CN107211488A (en) * 2014-12-04 2017-09-26 瑞典爱立信有限公司 It is used for the method to the business datum application safety of reception by what the WLAN node in integrated wireless communications network was performed
CN107211488B (en) * 2014-12-04 2021-02-23 瑞典爱立信有限公司 Method for applying security to service data, WLAN node and wireless device
CN106358187A (en) * 2015-07-14 2017-01-25 宏达国际电子股份有限公司 Device and method of handling authentication procedure
CN106358187B (en) * 2015-07-14 2019-10-18 宏达国际电子股份有限公司 Handle the device and method of authentication procedure
WO2017008402A1 (en) * 2015-07-15 2017-01-19 宇龙计算机通信科技(深圳)有限公司 Method for authenticated access, base station, and terminal
CN111869261A (en) * 2015-08-06 2020-10-30 艾锐势有限责任公司 Discovery and security in LWA communications
CN106686743A (en) * 2015-11-11 2017-05-17 苹果公司 Radio resource aggregation with suspend/resume support
US11317458B2 (en) 2015-11-11 2022-04-26 Apple Inc. Radio resource aggregation with suspend/resume support
CN105611594B (en) * 2016-01-28 2020-12-29 努比亚技术有限公司 Network switching device and method
CN105611594A (en) * 2016-01-28 2016-05-25 努比亚技术有限公司 Network switching device and method
CN107231644A (en) * 2016-03-25 2017-10-03 三星电子株式会社 Method and electronic equipment for providing communication function
CN107231644B (en) * 2016-03-25 2022-04-15 三星电子株式会社 Method and electronic device for providing communication function
CN107295512A (en) * 2016-03-31 2017-10-24 展讯通信(上海)有限公司 Communication equipment and the method authenticated from LTE into WLAN handoff procedures
CN107295512B (en) * 2016-03-31 2021-01-08 展讯通信(上海)有限公司 Communication equipment and method for authenticating in process of switching from LTE (Long term evolution) to WLAN (Wireless local area network)
US10849191B2 (en) 2016-07-13 2020-11-24 Huawei International PTE., Ltd. Unified authentication for heterogeneous networks

Also Published As

Publication number Publication date
CN103906056B (en) 2018-01-09

Similar Documents

Publication Publication Date Title
CN103906056A (en) Unified certification method under hybrid networking and system thereof
CN104969612B (en) OpenFlow enabled WiFi management entity framework
CN110771188B (en) Apparatus and method for providing operator-specific services
WO2013123643A1 (en) Signalling interfaces in communications
WO2014084760A1 (en) System for handling access by wireless devices in wi-fi network
CN107079371B (en) Method and apparatus for improving quality of service experienced by a user when transmitting media over a wireless local area network
EP3332581A1 (en) Discovery and security in lwa communication
CN110024326A (en) Dynamic in 5G and long term evolution (LTE) subscribes to disposition
CN103428664A (en) Network convergence method and device and communication system
CN103384365A (en) Method and system for network access, method for processing business and equipment
US20220232365A1 (en) Systems and methods for enabling efficient establishment of policy control associations
CN108353269A (en) Subscriber profiles in WLAN are pre-configured
US20190053300A1 (en) Enabling data services for visiting users
US11929907B2 (en) Endpoint assisted selection of routing paths over multiple networks
Hinger et al. Review of mobile data offloading through Wi-Fi
CN101483904B (en) Network selection method, network element equipment and grid system
US20220201469A1 (en) Layer-2 Grouping of Electronic Devices Across Heterogeneous Networks
EP3222089B1 (en) Radio access network interworking
CN104349317A (en) Mobile network access method, UE, security service gateway, and system
WO2021199581A1 (en) Wireless access network node device, amf device, and method for same
US10470032B1 (en) Wireless communication service delivery over external wireless communication networks
KR20210040776A (en) Method and apparatus for activating 5g user in 5g system
CN101938735B (en) Method for accessing terminal to a WiMAX core network through WiFi network and interworking network
KR101780401B1 (en) Method and apparatus for setting of authorazation and security in radio communication system
CN111869309B (en) Method, apparatus and system for establishing session for communication with local area network in wireless communication system

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant