CN104219662B - A kind of sending method and equipment of Beacon frame - Google Patents

A kind of sending method and equipment of Beacon frame Download PDF

Info

Publication number
CN104219662B
CN104219662B CN201410409608.XA CN201410409608A CN104219662B CN 104219662 B CN104219662 B CN 104219662B CN 201410409608 A CN201410409608 A CN 201410409608A CN 104219662 B CN104219662 B CN 104219662B
Authority
CN
China
Prior art keywords
encryption algorithm
type
wireless service
pmf
beacon frame
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201410409608.XA
Other languages
Chinese (zh)
Other versions
CN104219662A (en
Inventor
刘佳
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
New H3C Technologies Co Ltd
Original Assignee
New H3C Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by New H3C Technologies Co Ltd filed Critical New H3C Technologies Co Ltd
Priority to CN201410409608.XA priority Critical patent/CN104219662B/en
Publication of CN104219662A publication Critical patent/CN104219662A/en
Priority to PCT/CN2015/087353 priority patent/WO2016026426A1/en
Application granted granted Critical
Publication of CN104219662B publication Critical patent/CN104219662B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/20Network architectures or network communication protocols for network security for managing network security; network security policies in general
    • H04L63/205Network architectures or network communication protocols for network security for managing network security; network security policies in general involving negotiation or determination of the one or more network security mechanisms to be used, e.g. by negotiation between the client and the server or between peers or by selection according to the capabilities of the entities involved
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/04Key management, e.g. using generic bootstrapping architecture [GBA]
    • H04W12/043Key management, e.g. using generic bootstrapping architecture [GBA] using a trusted network node as an anchor
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W84/00Network topologies
    • H04W84/02Hierarchically pre-organised networks, e.g. paging networks, cellular networks, WLAN [Wireless Local Area Network] or WLL [Wireless Local Loop]
    • H04W84/10Small scale networks; Flat hierarchical networks
    • H04W84/12WLAN [Wireless Local Area Networks]

Abstract

The invention discloses the sending methods and equipment of a kind of Beacon frame, this method comprises: AP determines the multiple encryption algorithms type that wireless service is supported;AP is that every kind of encryption algorithm type generates the corresponding Beacon frame of the encryption algorithm type;The AP sends the corresponding Beacon frame of each encryption algorithm type with broadcast mode.In the embodiment of the present invention, the STA for supporting various encryption algorithm types is set can correctly to parse wireless service from Beacon frame, and access this wireless service using the encryption algorithm type that itself is supported.

Description

A kind of sending method and equipment of Beacon frame
Technical field
The present invention relates to field of communication technology more particularly to a kind of sending methods and equipment of Beacon frame.
Background technique
In WLAN (Wireless Local Area Networks, Wireless LAN), for some wireless service, AP (Access Point, access point) can periodically send Beacon (beacon) frame, and the range which is covered is BSS (Basic Service Set, basic service area).Further, STA (Station, wireless client) is being listened to After Beacon frame, by parsing the Beacon frame, to know corresponding wireless service, so that user be allowed whether to determine the STA The wireless service is added.
PMF (Protected Management Frames, conservative management frame) is a kind of wireless service, PMF wireless service For providing the encryption mechanism of wireless management message, strong supplement of the PMF as the encryption mechanism of wireless data message, Ke Yiwei Wireless communication provides safer guarantee.Wherein, which supports Encryption Algorithm AES-CCMP-SHA 256 (Advanced Encryption Standard-Counter CBC-MAC Protocol-Secure Hash Algorithm 256, Advanced Encryption Standard-counter mode cypher block chaining message integrity code Protocol-Security hashing algorithm 256) Encryption Algorithm, but It is that PMF wireless service does not support TKIP (Temporal Key Integrity Protocol, Temporal Key Integrirty Protocol) to add Close algorithm.
In a kind of technology known to applicant, in order to realize PMF wireless service, carried in the Beacon frame that AP is sent 256 key information of AES-CCMP-SHA.STA is after listening to Beacon frame, if STA supports PMF wireless service, STA 256 key information of AES-CCMP-SHA can be parsed from Beacon frame.Believed based on this 256 key of AES-CCMP-SHA Breath, between STA and AP can with interactive authentication message, be associated with message, and STA can establish connection with AP.But if STA PMF wireless service is not supported, then STA can not parse 256 key information of AES-CCMP-SHA from Beacon frame, then make Between STA and AP can not interactive authentication message, be associated with message, and connection can not be established between STA and AP, therefore, do not supported The STA of PMF wireless service will be unable to access network by AP.
Summary of the invention
The embodiment of the present invention provides a kind of sending method of beacon Beacon frame, method includes the following steps:
Access point AP determines the multiple encryption algorithms type that wireless service is supported;
The AP is that every kind of encryption algorithm type generates the corresponding Beacon frame of the encryption algorithm type;
The AP sends the corresponding Beacon frame of each encryption algorithm type with broadcast mode.
Described access point AP before determining the multiple encryption algorithms type that wireless service is supported, further wrap by the method Include: the AP judges robust security network RSN information element whether is configured under the wireless service;If under the wireless service Configured with RSN information element, then the AP judges conservative management frame PMF wireless service whether is opened under the wireless service;Such as PMF wireless service is opened under wireless service described in fruit, then the AP executes the multiple encryption algorithms for determining that wireless service is supported The step of type.
The AP is that every kind of encryption algorithm type generates the corresponding Beacon frame of the encryption algorithm type, is specifically included: institute AP is stated in the corresponding Beacon frame of generation encryption algorithm type, it is corresponding that the encryption algorithm type is added in Beacon frame Encryption algorithm key information and PMF wireless service ability information.
The encryption algorithm type includes: Temporal Key Integrirty Protocol TKIP type, Advanced Encryption Standard-counter mould 1 type of formula cypher block chaining message integrity code Protocol-Security hashing algorithm AES-CCMP-SHA, 256 type of AES-CCMP-SHA; When the encryption algorithm type is TKIP type, the corresponding encryption algorithm key information of the encryption algorithm type is that TKIP is close Key information, the corresponding PMF wireless service ability information of the encryption algorithm type be it is local do not support PMF wireless service ability, And opposite end is not required to support PMF wireless service ability;It is described when the encryption algorithm type is 1 type of AES-CCMP-SHA The corresponding encryption algorithm key information of encryption algorithm type is 1 key information of AES-CCMP-SHA, the encryption algorithm type pair The PMF wireless service ability information answered is locally-supported PMF wireless service ability but opposite end is not required to support PMF wireless service Ability;When the encryption algorithm type is 256 type of AES-CCMP-SHA, the corresponding encryption calculation of the encryption algorithm type Method key information is 256 key information of AES-CCMP-SHA, the corresponding PMF wireless service ability letter of the encryption algorithm type Breath is locally-supported PMF wireless service ability and opposite end is required to support PMF wireless service ability.
The encryption algorithm key information and the PMF wireless service ability information carry the RSN in the Beacon frame In information element.
The AP sends the process of the corresponding Beacon frame of each encryption algorithm type with broadcast mode, specifically includes: pressing Beacon frame transmission sequence is corresponded to according to scheduled encryption algorithm type, the AP sends an encryption and calculate when sending cycle reaches The corresponding Beacon frame of method type.
The embodiment of the present invention provides a kind of access point AP, and the AP is specifically included:
Determining module, the multiple encryption algorithms type supported for determining wireless service;Generation module, for adding for every kind Close algorithm types generate the corresponding beacon Beacon frame of the encryption algorithm type;Sending module, it is every for being sent with broadcast mode The corresponding Beacon frame of a encryption algorithm type.
The determining module is further used for judging robust security network RSN information whether is configured under the wireless service Element;If being configured with RSN information element under the wireless service, further judge guarantor whether is opened under the wireless service Protect management frame PMF wireless service;If opening PMF wireless service under the wireless service, wireless service is further determined that The multiple encryption algorithms type of support.
The generation module is specifically used in the corresponding Beacon frame of generation encryption algorithm type, in Beacon frame Add the corresponding encryption algorithm key information of the encryption algorithm type and PMF wireless service ability information.
The encryption algorithm type includes: Temporal Key Integrirty Protocol TKIP type, Advanced Encryption Standard-counter mould 1 type of formula cypher block chaining message integrity code Protocol-Security hashing algorithm AES-CCMP-SHA, 256 type of AES-CCMP-SHA; When the encryption algorithm type is TKIP type, the corresponding encryption algorithm key information of the encryption algorithm type is that TKIP is close Key information, the corresponding PMF wireless service ability information of the encryption algorithm type be it is local do not support PMF wireless service ability, And opposite end is not required to support PMF wireless service ability;It is described when the encryption algorithm type is 1 type of AES-CCMP-SHA The corresponding encryption algorithm key information of encryption algorithm type is 1 key information of AES-CCMP-SHA, the encryption algorithm type pair The PMF wireless service ability information answered is locally-supported PMF wireless service ability but opposite end is not required to support PMF wireless service Ability;When the encryption algorithm type is 256 type of AES-CCMP-SHA, the corresponding encryption calculation of the encryption algorithm type Method key information is 256 key information of AES-CCMP-SHA, the corresponding PMF wireless service ability letter of the encryption algorithm type Breath is locally-supported PMF wireless service ability and opposite end is required to support PMF wireless service ability.
The generation module is specifically used for calculating the encryption in the corresponding Beacon frame of generation encryption algorithm type Method key information and the PMF wireless service ability information carry in the RSN information element of the Beacon frame.
The sending module is specifically used for corresponding to Beacon frame transmission sequence according to scheduled encryption algorithm type, send out When the period being sent to reach, the corresponding Beacon frame of an encryption algorithm type is sent.
Based on the above-mentioned technical proposal, corresponding by being generated for every kind of encryption algorithm type in the embodiment of the present invention Beacon frame, and the corresponding Beacon frame of each encryption algorithm type is sent with broadcast mode, to make that various encryptions is supported to calculate The STA of method type can correctly parse wireless service, and the encryption algorithm type supported using itself from Beacon frame Access this wireless service.Further, aforesaid way can to support interactive authentication between the STA and AP of PMF wireless service Message, association message, and STA and AP is made to establish connection;And aforesaid way is not it is also possible that support PMF wireless service Interactive authentication message between STA and AP is associated with message, and STA and AP is made to establish connection.
Detailed description of the invention
Fig. 1 is a kind of sending method flow diagram of Beacon frame provided in an embodiment of the present invention;
Fig. 2-Fig. 4 is the schematic diagram of the Beacon frame proposed in the embodiment of the present invention;
Fig. 5 is the structural schematic diagram of AP provided in an embodiment of the present invention a kind of.
Specific embodiment
Aiming at the problems existing in the prior art, the embodiment of the invention provides a kind of sending methods of Beacon frame, should Method can be applied to include in the WLAN of AP and multiple STA.
As shown in Figure 1, the sending method of the Beacon frame can specifically include following steps:
Step 101, AP determines the multiple encryption algorithms type that wireless service is supported.
Wherein, identical encryption algorithm type can be supported for the multiple STA for including in WLAN, each STA, can also props up Hold different encryption algorithm types.Therefore, wireless service needs support the corresponding encryption algorithm type of each STA, and every kind Encryption algorithm type corresponds to a kind of STA type.
In the embodiment of the present invention, the encryption algorithm type that wireless service is supported is specifically including but not limited to: TKIP type, 1 type of AES-CCMP-SHA, 256 type of AES-CCMP-SHA.Assuming that include in WLAN 3 STA (STA1, STA2 and STA3), the encryption algorithm type that STA1 is supported is TKIP type, i.e. the STA type of STA1 is to support the STA of TKIP type; The encryption algorithm type that STA2 is supported is 1 type of AES-CCMP-SHA, i.e. the STA type of STA2 is to support AES-CCMP-SHA The STA of 1 type;The encryption algorithm type that STA3 is supported is 256 type of AES-CCMP-SHA, i.e. the STA type of STA3 is to support The STA of 256 type of ES-CCMP-SHA.
In the embodiment of the present invention, before determining the multiple encryption algorithms type that wireless service is supported, AP opens wireless AP Service, and judge whether to configure RSN under the wireless service (Robust Security Network, robust security network) information Element.If illustrating not needing to parse from Beacon frame corresponding without configuration RSN information element under the wireless service Key information come certified transmission message be associated with message, therefore terminate process, no longer execution step 101, also do not use the present invention The technical solution that embodiment proposes.If being configured with RSN information element under the wireless service, illustrate to need from Beacon frame Parse corresponding key information come certified transmission message be associated with message.AP judge whether to open under the wireless service PMF without Line service.If being not turned on PMF wireless service under the wireless service, terminate process, no longer execution step 101, does not also adopt The technical solution proposed with the embodiment of the present invention.If opening PMF wireless service under the wireless service, 101 are thened follow the steps, and The technical solution proposed using the embodiment of the present invention.
Step 102, AP is that every kind of encryption algorithm type generates the corresponding Beacon frame of the encryption algorithm type.
In the embodiment of the present invention, AP is that every kind of encryption algorithm type generates Beacon frame corresponding to the encryption algorithm type Process, be specifically including but not limited to such as under type: AP is when generating the corresponding Beacon frame of encryption algorithm type, at this The corresponding encryption algorithm key information of the encryption algorithm type and PMF wireless service ability information are added in Beacon frame.Into one Step, encryption algorithm key information and PMF wireless service ability information can be carried the RSN information element in Beacon frame by AP In.
One, when encryption algorithm type is TKIP type, the encryption algorithm type added in Beacon frame is corresponding to be added Close algorithm secret key information is TKIP key information, the corresponding PMF wireless service of the encryption algorithm type added in Beacon frame Ability information is locally not support PMF wireless service ability and opposite end is not required to support PMF wireless service ability.Passing through will MFPC in the RSN information element of Beacon frame is identified as 0, indicates local and does not support PMF wireless service ability, pass through by MFPR in the RSN information element of Beacon frame is identified as 0, and expression does not require opposite end to support PMF wireless service ability.
As shown in Fig. 2, be the schematic diagram that encryption algorithm type is Beacon frame corresponding to TKIP type, the Beacon frame For a kind of relevant Beacon frame of TKIP type, which does not support PMF wireless service.Wherein, TKIP type can be TKIP type based on WPA (Wi-Fi Protected Access, wireless fidelity network secure accessing) or based on RSN's TKIP type.
Two, when encryption algorithm type is 1 type of AES-CCMP-SHA, Encryption Algorithm that AP is added in Beacon frame Encryption algorithm key information corresponding to type is 1 key information of AES-CCMP-SHA, and what AP was added in Beacon frame adds PMF wireless service ability information corresponding to close algorithm types is locally-supported PMF wireless service ability, it is not required that opposite end Support PMF wireless service ability.Further, AP is identified as 1 by the MFPC in the RSN information element by Beacon frame, with Indicating the locally-supported PMF wireless service ability of AP, AP is identified as 0 by the MFPR in the RSN information element by Beacon frame, with Expression does not require opposite end (i.e. STA) to support PMF wireless service ability.
As shown in figure 3, be the schematic diagram that encryption algorithm type is Beacon frame corresponding to 1 type of AES-CCMP-SHA, The Beacon frame is a kind of relevant Beacon frame of 1 type of AES-CCMP-SHA, which can support PMF wirelessly to take Business, can not also support PMF wireless service.Wherein, the encryption algorithm type of 1 type of AES-CCMP-SHA can be for based on WPA The encryption algorithm type of AES-CCMP or encryption algorithm type based on RSN AES-CCMP-SHA 1.
Three, when encryption algorithm type is 256 type of AES-CCMP-SHA, the encryption that AP is added in Beacon frame is calculated Encryption algorithm key information corresponding to method type is 256 key information of AES-CCMP-SHA, what AP was added in Beacon frame PMF wireless service ability information corresponding to encryption algorithm type is locally-supported PMF wireless service ability and requires opposite end branch Hold PMF wireless service ability.Further, AP is identified as 1 by the MFPC in the RSN information element by Beacon frame, with table Show the locally-supported PMF wireless service ability of AP, AP is identified as 1 by the MFPR in the RSN information element by Beacon frame, with table Show that requirement opposite end (i.e. STA) supports PMF wireless service ability.
As shown in figure 4, be the schematic diagram that encryption algorithm type is the corresponding Beacon frame of 256 type of AES-CCMP-SHA, The Beacon frame is a kind of relevant Beacon frame of 256 type of AES-CCMP-SHA, and it is wireless which needs support PMF Service.Wherein, the encryption algorithm type of 256 type of AES-CCMP-SHA can be for based on RSN AES-CCMP-SHA's 256 Encryption algorithm type or 256 encryption algorithm type of AES-CCMP-SHA based on PMF.
Step 103, AP sends the corresponding Beacon frame of each encryption algorithm type with broadcast mode.
The transmission sequence of Beacon frame is corresponded to according to scheduled encryption algorithm type, AP is sent when sending cycle reaches The corresponding Beacon frame of one encryption algorithm type.For example, it is assumed that wireless service support encryption algorithm type be TKIP type, 1 type of AES-CCMP-SHA, 256 type of AES-CCMP-SHA, then AP periodically sends TKIP type pair with broadcast mode The Beacon frame answered, the corresponding Beacon frame of 1 type of AES-CCMP-SHA, 256 type of AES-CCMP-SHA are corresponding Beacon frame.
In the embodiment of the present invention, AP sends the process of the corresponding Beacon frame of each encryption algorithm type with broadcast mode, It is specifically including but not limited to such as under type: corresponding to Beacon frame transmission sequence according to scheduled encryption algorithm type, AP is being sent When period reaches, the corresponding Beacon frame of an encryption algorithm type is sent.For example, it is assumed that the Encryption Algorithm class that wireless service is supported Type is TKIP type, 1 type of AES-CCMP-SHA, 256 type of AES-CCMP-SHA, and scheduled encryption algorithm type is corresponding Beacon frame transmission sequence is that successively the corresponding Beacon frame of transmission TKIP type, 1 type of AES-CCMP-SHA are corresponding The corresponding Beacon frame of Beacon frame, 256 type of AES-CCMP-SHA, then: when sending cycle reaches for the first time, AP is with wide Broadcast mode sends the corresponding Beacon frame of TKIP type, and when sending cycle reaches for the second time, AP sends AES- with broadcast mode The corresponding Beacon frame of 1 type of CCMP-SHA, when sending cycle third time reaches, AP sends AES-CCMP- with broadcast mode The corresponding Beacon frame of 256 type of SHA, then in the 4th arrival of sending cycle, AP sends TKIP type pair with broadcast mode The Beacon frame answered, and so on, subsequent Beacon frame transmission process no longer repeats in detail.
Since the STA1 encryption algorithm type supported is TKIP type, STA1 is receiving 1 type of AES-CCMP-SHA When corresponding Beacon frame and the corresponding Beacon frame of 256 type of AES-CCMP-SHA, STA1 will abandon AES-CCMP-SHA 1 The corresponding Beacon frame of type and the corresponding Beacon frame of 256 type of AES-CCMP-SHA;STA1 is receiving TKIP type correspondence Beacon frame when, STA1 can parse TKIP key information from Beacon frame, be based on this TKIP key information, STA1 with Can be with interactive authentication message, association message between AP, and STA1 can establish connection with AP.Since the STA2 encryption supported is calculated Method type is 1 type of AES-CCMP-SHA, therefore STA2 is receiving the corresponding Beacon frame of TKIP type and AES-CCMP-SHA When the corresponding Beacon frame of 256 types, which will abandon the corresponding Beacon frame of the TKIP type and AES-CCMP-SHA The corresponding Beacon frame of 256 types;For STA2 when receiving the corresponding Beacon frame of 1 type of AES-CCMP-SHA, STA2 can be from 1 key information of AES-CCMP-SHA is parsed in Beacon frame, is based on this 1 key information of AES-CCMP-SHA, STA2 and AP Between can be with interactive authentication message, association message, and STA2 can establish connection with AP.The Encryption Algorithm supported due to STA3 Type is 256 type of AES-CCMP-SHA, therefore STA3 is receiving the corresponding Beacon frame of TKIP type and AES-CCMP-SHA When the corresponding Beacon frame of 1 type, which will abandon the corresponding Beacon frame of TKIP type and 1 type of AES-CCMP-SHA Corresponding Beacon frame;For STA3 when receiving the corresponding Beacon frame of 256 type of AES-CCMP-SHA, STA3 is from Beacon frame In parse 256 key information of AES-CCMP-SHA, be based on 256 key information of AES-CCMP-SHA, can between STA3 and AP With interactive authentication message, association message, STA3 can establish connection with AP.
Based on the above-mentioned technical proposal, corresponding by being generated for every kind of encryption algorithm type in the embodiment of the present invention Beacon frame, and the corresponding Beacon frame of each encryption algorithm type is sent with broadcast mode, to make that various encryptions is supported to calculate The STA of method type can correctly parse wireless service, and the encryption algorithm type supported using itself from Beacon frame Access this wireless service.Further, aforesaid way can to support interactive authentication between the STA and AP of PMF wireless service Message, association message, and STA and AP is made to establish connection;And aforesaid way is not it is also possible that support PMF wireless service Interactive authentication message between STA and AP is associated with message, and STA and AP is made to establish connection.
Based on inventive concept same as the above method, a kind of access point AP, such as Fig. 5 are additionally provided in the embodiment of the present invention Shown, the AP is specifically included:
Determining module 11, the multiple encryption algorithms type supported for determining wireless service;Generation module 12, for being every Kind encryption algorithm type generates the corresponding beacon Beacon frame of the encryption algorithm type;Sending module 13, for broadcast mode Send the corresponding Beacon frame of each encryption algorithm type.
The determining module 11 is further used for judging robust security network RSN letter whether is configured under the wireless service Cease element;If being configured with RSN information element under the wireless service, further judge whether open under the wireless service Conservative management frame PMF wireless service;If opening PMF wireless service under the wireless service, wireless clothes are further determined that The multiple encryption algorithms type that business is supported.
In the embodiment of the present invention, the generation module 12 is specifically used for generating the corresponding Beacon of encryption algorithm type When frame, the corresponding encryption algorithm key information of the encryption algorithm type and PMF wireless service ability are added in Beacon frame Information.
The encryption algorithm type includes: Temporal Key Integrirty Protocol TKIP type, Advanced Encryption Standard-counter mould 1 type of formula cypher block chaining message integrity code Protocol-Security hashing algorithm AES-CCMP-SHA, 256 type of AES-CCMP-SHA; When the encryption algorithm type is TKIP type, the corresponding encryption algorithm key information of the encryption algorithm type is that TKIP is close Key information, the corresponding PMF wireless service ability information of the encryption algorithm type be it is local do not support PMF wireless service ability, And opposite end is not required to support PMF wireless service ability;It is described when the encryption algorithm type is 1 type of AES-CCMP-SHA The corresponding encryption algorithm key information of encryption algorithm type is 1 key information of AES-CCMP-SHA, the encryption algorithm type pair The PMF wireless service ability information answered is locally-supported PMF wireless service ability but opposite end is not required to support PMF wireless service Ability;When the encryption algorithm type is 256 type of AES-CCMP-SHA, the corresponding encryption calculation of the encryption algorithm type Method key information is 256 key information of AES-CCMP-SHA, the corresponding PMF wireless service ability letter of the encryption algorithm type Breath is locally-supported PMF wireless service ability and opposite end is required to support PMF wireless service ability.
In the embodiment of the present invention, the generation module 12 is specifically used for generating the corresponding Beacon of encryption algorithm type When frame, the encryption algorithm key information and the PMF wireless service ability information are carried and believed in the RSN of the Beacon frame It ceases in element.
The sending module 13 is specifically used for corresponding to Beacon frame transmission sequence according to scheduled encryption algorithm type, When sending cycle reaches, the corresponding Beacon frame of an encryption algorithm type is sent.
Wherein, the modules of apparatus of the present invention can integrate in one, can also be deployed separately.Above-mentioned module can close And be a module, multiple submodule can also be further split into.
Through the above description of the embodiments, those skilled in the art can be understood that the present invention can be by Software adds the mode of required general hardware platform to realize, naturally it is also possible to which by hardware, but in many cases, the former is more Good embodiment.Based on this understanding, technical solution of the present invention substantially in other words contributes to the prior art Part can be embodied in the form of software products, which is stored in a storage medium, if including Dry instruction is used so that a computer equipment (can be personal computer, server or the network equipment etc.) executes this hair Method described in bright each embodiment.It will be appreciated by those skilled in the art that attached drawing is the schematic diagram of a preferred embodiment, Module or process in attached drawing are not necessarily implemented necessary to the present invention.It will be appreciated by those skilled in the art that in embodiment Device in module can according to embodiment describe be distributed in the device of embodiment, corresponding change position can also be carried out In the one or more devices for being different from the present embodiment.The module of above-described embodiment can be merged into a module, can also be with It is further split into multiple submodule.The serial number of the above embodiments of the invention is only for description, does not represent the advantages or disadvantages of the embodiments.With Upper disclosed several specific embodiments only of the invention, still, the present invention is not limited to this, any those skilled in the art Member can think of variation should all fall into protection scope of the present invention.

Claims (8)

1. a kind of sending method of beacon Beacon frame, which is characterized in that method includes the following steps:
Access point AP determines the multiple encryption algorithms type that wireless service is supported;
The AP is that every kind of encryption algorithm type generates the corresponding Beacon frame of the encryption algorithm type;
The AP sends the corresponding Beacon frame of each encryption algorithm type with broadcast mode;
The AP is the process that every kind of encryption algorithm type generates the corresponding Beacon frame of the encryption algorithm type, is specifically included: It is corresponding to add the encryption algorithm type in the corresponding Beacon frame of generation encryption algorithm type in Beacon frame by the AP Encryption algorithm key information and PMF wireless service ability information;
Wherein, the encryption algorithm type includes: Temporal Key Integrirty Protocol TKIP type, Advanced Encryption Standard-counter 1 type of mode cypher block chaining message integrity code Protocol-Security hashing algorithm AES-CCMP-SHA, 256 class of AES-CCMP-SHA Type;When the encryption algorithm type is TKIP type, the corresponding encryption algorithm key information of the encryption algorithm type is TKIP key information, the corresponding PMF wireless service ability information of the encryption algorithm type are local not support PMF wireless service Ability and do not require opposite end support PMF wireless service ability;When the encryption algorithm type is 1 type of AES-CCMP-SHA When, the corresponding encryption algorithm key information of the encryption algorithm type is 1 key information of AES-CCMP-SHA, the encryption calculation The corresponding PMF wireless service ability information of method type is locally-supported PMF wireless service ability but opposite end is not required to support PMF Wireless service ability;When the encryption algorithm type is 256 type of AES-CCMP-SHA, the encryption algorithm type is corresponding Encryption algorithm key information be 256 key information of AES-CCMP-SHA, the corresponding PMF of the encryption algorithm type wirelessly takes Business ability information is locally-supported PMF wireless service ability and opposite end is required to support PMF wireless service ability.
2. the method as described in claim 1, which is characterized in that described access point AP determine wireless service support it is a variety of plus Before close algorithm types, the method further includes:
The AP judges robust security network RSN information element whether is configured under the wireless service;If the wireless service It is configured with RSN information element down, then the AP judges conservative management frame PMF wireless service whether is opened under the wireless service; If opening PMF wireless service under the wireless service, the AP, which is executed, determines that a variety of encryptions that wireless service is supported are calculated The step of method type.
3. the method as described in claim 1, which is characterized in that the encryption algorithm key information and the PMF wireless service Ability information carries in the RSN information element of the Beacon frame.
4. the method as described in claim 1, which is characterized in that the AP sends each encryption algorithm type pair with broadcast mode The process for the Beacon frame answered, specifically includes:
Beacon frame transmission sequence is corresponded to according to scheduled encryption algorithm type, the AP sends one when sending cycle reaches The corresponding Beacon frame of encryption algorithm type.
5. a kind of access point AP, which is characterized in that the AP is specifically included:
Determining module, the multiple encryption algorithms type supported for determining wireless service;
Generation module, for generating the corresponding beacon Beacon frame of the encryption algorithm type for every kind of encryption algorithm type;
Sending module, for sending the corresponding Beacon frame of each encryption algorithm type with broadcast mode;
The generation module is specifically used for adding in Beacon frame in the corresponding Beacon frame of generation encryption algorithm type The corresponding encryption algorithm key information of the encryption algorithm type and PMF wireless service ability information;
Wherein, the encryption algorithm type includes: Temporal Key Integrirty Protocol TKIP type, Advanced Encryption Standard-counter 1 type of mode cypher block chaining message integrity code Protocol-Security hashing algorithm AES-CCMP-SHA, 256 class of AES-CCMP-SHA Type;When the encryption algorithm type is TKIP type, the corresponding encryption algorithm key information of the encryption algorithm type is TKIP key information, the corresponding PMF wireless service ability information of the encryption algorithm type are local not support PMF wireless service Ability and do not require opposite end support PMF wireless service ability;When the encryption algorithm type is 1 type of AES-CCMP-SHA When, the corresponding encryption algorithm key information of the encryption algorithm type is 1 key information of AES-CCMP-SHA, the encryption calculation The corresponding PMF wireless service ability information of method type is locally-supported PMF wireless service ability but opposite end is not required to support PMF Wireless service ability;When the encryption algorithm type is 256 type of AES-CCMP-SHA, the encryption algorithm type is corresponding Encryption algorithm key information be 256 key information of AES-CCMP-SHA, the corresponding PMF of the encryption algorithm type wirelessly takes Business ability information is locally-supported PMF wireless service ability and opposite end is required to support PMF wireless service ability.
6. AP as claimed in claim 5, which is characterized in that
The determining module is further used for judging robust security network RSN information element whether is configured under the wireless service; If being configured with RSN information element under the wireless service, further judge whether open protection pipe under the wireless service Manage frame PMF wireless service;If opening PMF wireless service under the wireless service, further determine that wireless service is supported Multiple encryption algorithms type.
7. AP as claimed in claim 5, which is characterized in that the generation module is specifically used for generating encryption algorithm type When corresponding Beacon frame, the encryption algorithm key information and the PMF wireless service ability information are carried described In the RSN information element of Beacon frame.
8. AP as claimed in claim 5, which is characterized in that
The sending module is specifically used for corresponding to Beacon frame transmission sequence according to scheduled encryption algorithm type, is sending week When phase reaches, the corresponding Beacon frame of an encryption algorithm type is sent.
CN201410409608.XA 2014-08-19 2014-08-19 A kind of sending method and equipment of Beacon frame Active CN104219662B (en)

Priority Applications (2)

Application Number Priority Date Filing Date Title
CN201410409608.XA CN104219662B (en) 2014-08-19 2014-08-19 A kind of sending method and equipment of Beacon frame
PCT/CN2015/087353 WO2016026426A1 (en) 2014-08-19 2015-08-18 Sending beacon frames

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201410409608.XA CN104219662B (en) 2014-08-19 2014-08-19 A kind of sending method and equipment of Beacon frame

Publications (2)

Publication Number Publication Date
CN104219662A CN104219662A (en) 2014-12-17
CN104219662B true CN104219662B (en) 2019-05-07

Family

ID=52100724

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201410409608.XA Active CN104219662B (en) 2014-08-19 2014-08-19 A kind of sending method and equipment of Beacon frame

Country Status (2)

Country Link
CN (1) CN104219662B (en)
WO (1) WO2016026426A1 (en)

Families Citing this family (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104219662B (en) * 2014-08-19 2019-05-07 新华三技术有限公司 A kind of sending method and equipment of Beacon frame
EP3639574B1 (en) * 2017-06-15 2022-08-03 Panasonic Intellectual Property Corporation of America Communication apparatus and method for secure low power transmission

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1681239A (en) * 2004-04-08 2005-10-12 华为技术有限公司 Method for supporting multiple safe mechanism in wireless local network system
WO2006124347A2 (en) * 2005-05-17 2006-11-23 Intel Corporation Negotiation of security parameters for protecting management frames in wireless networks
CN101453409A (en) * 2007-12-07 2009-06-10 中国移动通信集团公司 Information broadcast method for supporting terminal combined access, apparatus and system thereof
CN101489222A (en) * 2009-02-25 2009-07-22 杭州华三通信技术有限公司 Method for simultaneously providing clear text and ciphering service by the same hot spot and wireless access apparatus

Family Cites Families (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
KR100479260B1 (en) * 2002-10-11 2005-03-31 한국전자통신연구원 Method for cryptographing wireless data and apparatus thereof
KR20080060925A (en) * 2006-12-27 2008-07-02 삼성전자주식회사 Method for protecting broadcast frame, terminal for authenticating the broadcast frame and access point for broadcasting the broadcast frame
CN103581901B (en) * 2012-08-09 2017-03-15 展讯通信(上海)有限公司 A kind of Wi Fi wireless networks access the processing method of configuration information and equipment
CN103945369B (en) * 2013-01-18 2017-12-19 杭州古北电子科技有限公司 A kind of length by checking WIFI packets realizes the Internet-surfing configuration method of WIFI equipment
CN104219662B (en) * 2014-08-19 2019-05-07 新华三技术有限公司 A kind of sending method and equipment of Beacon frame

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1681239A (en) * 2004-04-08 2005-10-12 华为技术有限公司 Method for supporting multiple safe mechanism in wireless local network system
WO2006124347A2 (en) * 2005-05-17 2006-11-23 Intel Corporation Negotiation of security parameters for protecting management frames in wireless networks
CN101453409A (en) * 2007-12-07 2009-06-10 中国移动通信集团公司 Information broadcast method for supporting terminal combined access, apparatus and system thereof
CN101489222A (en) * 2009-02-25 2009-07-22 杭州华三通信技术有限公司 Method for simultaneously providing clear text and ciphering service by the same hot spot and wireless access apparatus

Also Published As

Publication number Publication date
CN104219662A (en) 2014-12-17
WO2016026426A1 (en) 2016-02-25

Similar Documents

Publication Publication Date Title
CN102118387B (en) System and method for secure transaction of data between wireless communication device and server
CN108848112B (en) Cut-in method, equipment and the system of user equipment (UE)
CN101917272B (en) Secret communication method and system among neighboring user terminals
US20140337950A1 (en) Method and Apparatus for Secure Communications in a Wireless Network
US20160050565A1 (en) Secure provisioning of an authentication credential
EP2651156B1 (en) Centralized 802.1x authentication method, device and system of wireless local area network
US8954739B2 (en) Efficient terminal authentication in telecommunication networks
CN106134231B (en) Key generation method, equipment and system
CN1835436B (en) General power authentication frame and method of realizing power auttientication
US20180084416A1 (en) Methods and systems for authentic interoperability
CN103039053A (en) Secure registration of group of clients using single registration procedure
JP7127689B2 (en) CORE NETWORK DEVICE, COMMUNICATION TERMINAL, AND COMMUNICATION METHOD
CN103581901A (en) Method and device for processing Wi-Fi wireless network access configuration information
CN101926151A (en) Method and communication network system for establishing security conjunction
CN105898743B (en) A kind of method for connecting network, apparatus and system
CN105933895A (en) Transmission method of WIFI network configuration data, intelligent device, and intelligent terminal
CN101640887A (en) Authentication method, communication device and communication system
CN107181770A (en) Method of data synchronization and system
CN103906061A (en) Wireless access point
US11297496B2 (en) Encryption and decryption of management frames
CN110784865A (en) Network distribution method and terminal of Internet of things equipment, Internet of things equipment and network distribution system
CN104219662B (en) A kind of sending method and equipment of Beacon frame
US9356931B2 (en) Methods and apparatuses for secure end to end communication
JP6471039B2 (en) Wireless communication system and wireless terminal
CN103763697B (en) A kind of WAP multi-key cipher supports system and method

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
EXSB Decision made by sipo to initiate substantive examination
SE01 Entry into force of request for substantive examination
CB02 Change of applicant information

Address after: 310052 Binjiang District Changhe Road, Zhejiang, China, No. 466, No.

Applicant after: Xinhua three Technology Co., Ltd.

Address before: 310052 Binjiang District Changhe Road, Zhejiang, China, No. 466, No.

Applicant before: Huasan Communication Technology Co., Ltd.

GR01 Patent grant
GR01 Patent grant