CN104770007A - Access method and device for wireless local area network - Google Patents

Access method and device for wireless local area network Download PDF

Info

Publication number
CN104770007A
CN104770007A CN201380003749.5A CN201380003749A CN104770007A CN 104770007 A CN104770007 A CN 104770007A CN 201380003749 A CN201380003749 A CN 201380003749A CN 104770007 A CN104770007 A CN 104770007A
Authority
CN
China
Prior art keywords
information
network
wlan
wlan network
sensitive information
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201380003749.5A
Other languages
Chinese (zh)
Other versions
CN104770007B (en
Inventor
吴义壮
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Huawei Technologies Co Ltd
Original Assignee
Huawei Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Huawei Technologies Co Ltd filed Critical Huawei Technologies Co Ltd
Publication of CN104770007A publication Critical patent/CN104770007A/en
Application granted granted Critical
Publication of CN104770007B publication Critical patent/CN104770007B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/06Authentication
    • H04W12/069Authentication using certificates or pre-shared keys
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/06Authentication
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/04Key management, e.g. using generic bootstrapping architecture [GBA]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W48/00Access restriction; Network selection; Access point selection
    • H04W48/16Discovering, processing access restriction or access information
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W84/00Network topologies
    • H04W84/02Hierarchically pre-organised networks, e.g. paging networks, cellular networks, WLAN [Wireless Local Area Network] or WLL [Wireless Local Loop]
    • H04W84/10Small scale networks; Flat hierarchical networks
    • H04W84/12WLAN [Wireless Local Area Networks]

Abstract

Provided are an access method and device for a wireless local area network. The method comprises: acquiring, by a user equipment UE, first sensitive information about a wireless local area network WLAN from a network device of a mobile communication network, wherein the first sensitive information comprises related information for security authentication of the WLAN; and according to the first sensitive information, establishing, by the UE, a connection to an access point AP of the WLAN. Various embodiments of the present invention solve the problem that a UE cannot normally access a WLAN due to the fact that the related sensitive information about the WLAN is easily tampered with, realize the accurate accessing of the WLAN, and improve the access security of the WLAN.

Description

Access method and device for wireless local area network
The cut-in method and device of WLAN
Technical field
The present embodiments relate to the cut-in method and device of the communication technology, more particularly to a kind of WLAN.Background technology
Widely available with smart mobile phone and tablet personal computer, people use mobile device to carry out substantial amounts of data service so that the data service flow of network increases very fast, so as to cause mobile operator network capacity to be limited.And WLAN(Wireless Local Area Networks, abbreviation WLAN) be it is a kind of the wireless access technology of higher transmission rates can be provided, can as mobile operator wide-area, wireless networks useful supplement.
Wlan network and mobile communications network are combined together by prior art frequently with two ways, to realize the data service of shunting user, so as to mitigate the network burden of operator.The first is to be integrated into WLAN networks as independent access network in mobile communications network, need independent operation and safeguard WLAN networks, second is that wlan network is polymerize into deployment with mobile communications network, that is WLAN access points (Access Point, abbreviation AP) united two into one with the access network element of mobile communications network, or WLAN AP individually deployment but by the network element control of 3GPP access networks.WLAN as one kind eat dishes without rice or wine access technology transmission user data, these user data and by the data of traditional mobile communications network air interface transmission in mobile communication in-network aggregation, realize and save operator's access network interface-free resources, improve speed and capacity of the user by access of eating dishes without rice or wine.
Under above-mentioned scene, when UE is by WLAN access networks, pass through beacon (beacon) frame received or probe response first(Probe response) relevant information of wlan network is obtained, then the authentication method such as supported, AES ability information complete the network foundation between follow-up UE and WLAN according to these information.
But, it is above-mentioned in the prior art, the relevant information of wlan network, especially robust security network (Robust Security network, abbreviation RSN) information word(Information Element, abbreviation IE), auth type(Authentication type) etc. sensitive information be to be transferred to UE in clear text manner, attacker can distort to these sensitive informations, so as to cause UE can not normally access WLAN nets Network, it is impossible to carry out the transmission of business.The content of the invention
The embodiment of the present invention provides a kind of cut-in method and device of WLAN, UE can be made to get the relevant information of correct wlan network, to realize WLAN correct access.
First aspect of the embodiment of the present invention provides a kind of cut-in method of WLAN, including:User equipment (UE) obtains the first sensitive information of WLAN wlan network from the network equipment of mobile communications network;Wherein, first sensitive information includes the relevant information that the wlan network carries out safety certification;
The UE sets up with the access point AP of the wlan network according to first sensitive information and is connected.
With reference in a first aspect, in the first possible embodiment of first aspect, first sensitive information also includes the relevant information for aiding in the UE to carry out network selection.
With reference in a first aspect, in second of possible embodiment of first aspect, the network equipment is access network discovery and selection function ANDSF;
The UE obtains the first sensitive information of WLAN wlan network from the network equipment of mobile communications network, including:
The UE sends access network information acquisition request to the ANDSF;
What the UE receptions ANDSF was returned includes the response message of access network information list, wherein, the information of the wlan network is included in the access network information list, the information of the wlan network includes first sensitive information.
With reference in a first aspect, in the third possible embodiment of first aspect, the access network information acquisition request also includes the positional information of the UE;Correspondingly, the access network information list is that the ANDSF is determined according to the positional information of the UE.
With reference in a first aspect, in the 4th kind of possible embodiment of first aspect, the UE obtains the first sensitive information of wlan network from the network equipment of mobile communications network, including:
The UE receives the radio resource control RRC connection reconfiguration request that net control device is sent, and the RRC connections reconfiguration request includes first sensitive information.
With reference in a first aspect, in the 5th kind of possible embodiment of first aspect, the first sensitive information that the UE obtains wlan network from the network equipment of mobile communications network includes: The UE obtains the first sensitive information of multiple wlan networks from the network equipment of mobile communications network, and for judging the information of each wlan network priority;
Correspondingly, the UE set up according to first sensitive information with the access point AP of the WLAN networks be connected including:The UE selects first sensitive information according to the information of the wlan network priority, sets up and is connected with the access point AP of the wlan network.
With reference in a first aspect, in the 6th kind of possible embodiment of first aspect, the wlan network is with Hotspot2.0 abilities and reaches the wlan network of required level of security;
Before the UE is connected according to first sensitive information with the access point AP foundation of the wlan network, in addition to:
The UE sends access network information inquiry request to the AP;
The UE receives the query response message for the status information including the wlan network that the AP is returned, and determines that the wlan network can use according to the status information of the wlan network.
With reference to first aspect, in the 7th kind of possible embodiment of first aspect, the relevant information that the auxiliary UE carries out network selection is the capability indication informations of Hotspot 2.0, and the capability indication informations of Hotspot 2.0 are used to indicate that the wlan network has Hotspot2.0 abilities and reaches required level of security.
With reference in a first aspect, in the 8th kind of possible embodiment of first aspect, the UE is sent to the AP before access network information inquiry request, in addition to:
The UE determines that first sensitive information includes the capability indication informations of Hotspot 2.0.With reference in a first aspect, in the 9th kind of possible embodiment of first aspect, the UE includes before being connected according to first sensitive information with the access point AP foundation of the wlan network:The UE obtains the second sensitive information of the wlan network from the wlan network, and second sensitive information includes the relevant information that the wlan network carries out safety certification;
The UE determines that first sensitive information is consistent with second sensitive information.
With reference in a first aspect, in the tenth kind of possible embodiment of first aspect, the UE from
The second sensitive information of the wlan network is obtained in wlan network, including:
Second sensitive information is obtained in the probe response including second sensitive information that the UE is returned from the AP of the wlan network received, the probe response is received after the UE sends detection frame to the AP of the wlan network;Or,
The UE includes the described second sensitive letter from what the AP of the wlan network received was sent Second sensitive information is obtained in the beacon frame of breath.
Second aspect of the embodiment of the present invention provides the cut-in method of another WLAN, including:Access network discovery and selection function ANDSF receive the access network information acquisition request that user equipment (UE) is sent;
The ANDSF sends the information for including including wlan network in the response message of access network information list, the access network information list to the UE, and the information of the wlan network includes the first sensitive information;Wherein, first sensitive information includes the relevant information that the wlan network carries out safety certification.
With reference to second aspect, in the first possible embodiment of second aspect, first sensitive information also includes the relevant information for aiding in the UE to carry out network selection.
With reference to second aspect, in second of possible embodiment of second aspect, the access network information acquisition request also includes the positional information of the UE, then before the ANDSF includes the response message of access network information list to UE transmissions, in addition to:
The ANDSF determines available access network information around the UE according to the positional information of the UE.
With reference to second aspect, in the third possible embodiment of second aspect, the access network information list also includes the information for being used to judge wlan network priority, so that the UE selects the wlan network according to the information of the priority.The third aspect of the embodiment of the present invention provides the cut-in method of another WLAN, including:
Net control device determines to use WLAN wlan network;
The net control device determines the available wlan networks of the UE;
The net control device is asked to the UE radio resource control RRC connection reconfigurations for sending the first sensitive information comprising the wlan network, and the RRC connections reconfiguration request is used to indicate that the UE is connected according to first sensitive information with the access point AP foundation of the wlan network;Wherein, first sensitive information includes the relevant information that the wlan network carries out safety certification.
With reference to the third aspect, in the first possible embodiment of the third aspect, first sensitive information also includes the relevant information for aiding in the UE to carry out network selection.
With reference to the third aspect, in second of possible embodiment of the third aspect, the net control device determines the available wlan networks of the UE according to the positional information of user equipment (UE).
With reference to the third aspect, in the third possible embodiment of the third aspect, the network control Equipment determination uses WLAN wlan network, including:
The net control device determines to use wlan network according to current network policies and the UE ability information.
With reference to the third aspect, in the 4th kind of possible embodiment of the third aspect, the RRC connections reconfiguration request also includes the information for being used to judge wlan network priority, so that the UE selects the wlan network according to the information of the priority.
Fourth aspect of the embodiment of the present invention provides a kind of user equipment, including:
Acquisition module, the first sensitive information for obtaining WLAN wlan network from the network equipment of mobile communications network;Wherein, first sensitive information includes the relevant information that the wlan network carries out safety certification;
Processing module, first sensitive information for being obtained according to the acquisition module is set up with the access point AP of the wlan network to be connected.
With reference to fourth aspect, in the first possible embodiment of fourth aspect, first sensitive information also includes the relevant information that assist said user equipment carries out network selection.
With reference to fourth aspect, in second of possible embodiment of fourth aspect, the network equipment is access network discovery and selection function ANDSF;
The acquisition module obtains the first sensitive information of WLAN WLAN networks from the network equipment of mobile communications network, including:
The acquisition module sends access network information acquisition request to the ANDSF;
What the acquisition module reception ANDSF was returned includes the response message of access network information list, wherein, the information of the wlan network is included in the access network information list, the information of the wlan network includes first sensitive information.
With reference to fourth aspect, in the third possible embodiment of fourth aspect, the access network information acquisition request also includes the positional information of the user equipment;Correspondingly, the access network information list is that the ANDSF is determined according to the positional information of the user equipment.
With reference to fourth aspect, in the 4th kind of possible embodiment of fourth aspect, the acquisition module is specifically for receiving the radio resource control RRC connection reconfiguration request that net control device is sent, the RRC connections reconfiguration request includes first sensitive information.
With reference to fourth aspect, in the 5th kind of possible embodiment of fourth aspect, the acquisition module from the network equipment of mobile communications network specifically for obtaining the first sensitive letter of multiple wlan networks Breath, and for judging the information of each wlan network priority;
Correspondingly, the processing module is specifically for selecting first sensitive information according to the information of the wlan network priority, setting up and be connected with the access point AP of the wlan network.
With reference to fourth aspect, in the 6th kind of possible embodiment of fourth aspect, the wlan network is with Hotspot2.0 abilities and reaches the wlan network of required level of security;
The user equipment also includes:
First sending module, for before the processing module is set up with the access point AP of the WLAN networks according to first sensitive information and is connected, access network information inquiry request to be sent to the AP;The acquisition module is additionally operable to, and receives the query response message for the status information including the wlan network that the AP is returned;
The processing module is additionally operable to, after the acquisition module receives the query response message, determines that the wlan network can use according to the status information of the wlan network.
With reference to fourth aspect, in the 7th kind of possible embodiment of fourth aspect, the relevant information that the assist said user equipment carries out network selection is the capability indication informations of Hotspot 2.0, and the capability indication informations of Hotspot 2.0 are used to indicate that the wlan network has Hotspot2.0 abilities and reaches required level of security.
With reference to fourth aspect, in the 8th kind of possible embodiment of fourth aspect, the processing module is additionally operable to, before first sending module sends access network information inquiry request to the AP, determine that first sensitive information includes the capability indication informations of Hotspot 2.0.
With reference to fourth aspect, in the 9th kind of possible embodiment of fourth aspect, the acquisition module is additionally operable to, before the processing module is set up with the access point AP of the wlan network according to first sensitive information and is connected, the second sensitive information of the wlan network is obtained from the wlan network, second sensitive information includes the relevant information that the wlan network carries out safety certification;
The processing module is additionally operable to, and is set up according to first sensitive information with the access point AP of the wlan network before being connected, is determined that first sensitive information is consistent with second sensitive information.
With reference to fourth aspect, in the tenth kind of possible embodiment of fourth aspect, the acquisition module obtains the second sensitive information of the wlan network from the wlan network, specifically includes:Second sensitive information is obtained in the probe response including second sensitive information returned from the AP of the wlan network received, the probe response is received after the user equipment sends detection frame to the AP of the WLAN networks;Or, Second sensitive information is obtained in the beacon frame including second sensitive information sent from the AP of the wlan network received.
The aspect of the embodiment of the present invention the 5th provides a kind of ANDSF, including:
Receiving module, the access network information acquisition request for receiving user equipment (UE) transmission;Second sending module, for sending the information for including including wlan network in the response message of access network information list, the access network information list to the UE, the information of the wlan network includes the first sensitive information;Wherein, first sensitive information includes the relevant information that the WLAN networks carry out safety certification.
With reference to the 5th aspect, in the first possible embodiment of the 5th aspect, first sensitive information also includes the relevant information for aiding in the UE to carry out network selection.
With reference to the 5th aspect, in second of possible embodiment of the 5th aspect, the access network information acquisition request also includes the positional information of the UE;The ANDSF also includes:
First determining module, for before second sending module includes the response message of access network information list to UE transmissions, available access network information around the UE to be determined according to the positional information of the UE.
With reference to the 5th aspect, in the third possible embodiment of the 5th aspect, the access network information list also includes the information for being used to judge wlan network priority, so that the UE selects the wlan network according to the information of the priority.The aspect of the embodiment of the present invention the 6th provides a kind of net control device, including:
Second determining module, for determining to use WLAN wlan network;
3rd determining module, for determining the available wlan networks of the UE;
3rd sending module, radio resource control RRC connection reconfiguration for sending from the first sensitive information comprising the wlan network to the UE is asked, and the RRC connections reconfiguration request is used to indicate that the UE is connected according to first sensitive information with the access point AP foundation of the wlan network;Wherein, first sensitive information includes the relevant information that the wlan network carries out safety certification.
With reference to the 6th aspect, in the first possible embodiment of the 6th aspect, first sensitive information also includes the relevant information for aiding in the UE to carry out network selection.
With reference to the 6th aspect, in second of possible embodiment of the 6th aspect, the 3rd determining module according to the positional information of user equipment (UE) specifically for determining the available wlan networks of the UE.
With reference to the 6th aspect, in the third possible embodiment of the 6th aspect, described second determines Module according to current network policies and the UE ability information specifically for determining to use wlan network.
With reference to the 6th aspect, in the 4th kind of possible embodiment of the 6th aspect, the RRC connections reconfiguration request also includes the information for being used to judge wlan network priority, so that the UE selects the wlan network according to the information of the priority.
The aspect of the embodiment of the present invention the 7th provides another user equipment, including:
Receiver, the first sensitive information for obtaining WLAN wlan network from the network equipment of mobile communications network;Wherein, first sensitive information includes the relevant information that the wlan network carries out safety certification;
Processor, first sensitive information for being obtained according to the receiver is set up with the access point AP of the wlan network to be connected.
With reference to the 7th aspect, in the first possible embodiment of the 7th aspect, first sensitive information also includes the relevant information for aiding in the UE to carry out network selection.
With reference to the 7th aspect, in second of possible embodiment of the 7th aspect, the network equipment is access network discovery and selection function ANDSF;
The receiver obtains the first sensitive information of WLAN WLAN networks from the network equipment of mobile communications network, including:
The receiver sends access network information acquisition request to the ANDSF;
What the receiver reception ANDSF was returned includes the response message of access network information list, wherein, the information of the wlan network is included in the access network information list, the information of the wlan network includes first sensitive information.
With reference to the 7th aspect, in the third possible embodiment of the 7th aspect, the access network information acquisition request also includes the positional information of the user equipment;Correspondingly, the access network information list is that the ANDSF is determined according to the positional information of the user equipment.
With reference to the 7th aspect, in the 4th kind of possible embodiment of the 7th aspect, the receiver is specifically for receiving the radio resource control RRC connection reconfiguration request that net control device is sent, the RRC connections reconfiguration request includes first sensitive information.
With reference to the 7th aspect, in the 5th kind of possible embodiment of the 7th aspect, the receiver from the network equipment of mobile communications network specifically for obtaining the first sensitive information of multiple WLAN networks, and for judging the information of each wlan network priority; Correspondingly, the processor is specifically for selecting first sensitive information according to the information of the wlan network priority, setting up and be connected with the access point AP of the wlan network.
With reference to the 7th aspect, in the 6th kind of possible embodiment of the 7th aspect, the wlan network is with Hotspot2.0 abilities and reaches the wlan network of required level of security;
The user equipment also includes:
Transmitter, for before the processor is set up with the access point AP of the wlan network according to first sensitive information and is connected, access network information inquiry request to be sent to the AP;
The receiver is additionally operable to, and receives the query response message for the status information including the wlan network that the AP is returned;
The processor is additionally operable to, after the receiver receives the query response message, determines that the wlan network can use according to the status information of the wlan network.
With reference to the 7th aspect, in the 7th kind of possible embodiment of the 7th aspect, the relevant information that the assist said user equipment carries out network selection is the capability indication informations of Hotspot 2.0, and the capability indication informations of Hotspot 2.0 are used to indicate that the wlan network has Hotspot2.0 abilities and reaches required level of security.
With reference to the 7th aspect, in the 8th kind of possible embodiment of the 7th aspect, the processor is additionally operable to, and before the transmitter sends access network information inquiry request to the AP, determines that first sensitive information includes the capability indication informations of Hotspot 2.0.
With reference to the 7th aspect, in the 9th kind of possible embodiment of the 7th aspect, the receiver is additionally operable to, before the processor is set up with the access point AP of the wlan network according to first sensitive information and is connected, the second sensitive information of the wlan network is obtained from the wlan network, second sensitive information includes the relevant information that the wlan network carries out safety certification;
The processor is additionally operable to, and is set up according to first sensitive information with the access point AP of the wlan network before being connected, is determined that first sensitive information is consistent with second sensitive information.
With reference to the 7th aspect, in the tenth kind of possible embodiment of the 7th aspect, the receiver obtains the second sensitive information of the wlan network from the wlan network, specifically includes:
Second sensitive information is obtained in the probe response including second sensitive information returned from the AP of the wlan network received, the probe response is received after the user equipment sends detection frame to the AP of the WLAN networks;Or,
Include the beacon of second sensitive information from what the AP of the wlan network received was sent Second sensitive information is obtained in frame.
Eighth aspect of the embodiment of the present invention provides another ANDSF, including:
Receiver, the access network information acquisition request for receiving user equipment (UE) transmission;
Transmitter, for sending the information for including including wlan network in the response message of access network information list, the access network information list to the UE, the information of the wlan network includes the first sensitive information;Wherein, first sensitive information includes the relevant information that the wlan network carries out safety certification.
With reference to eighth aspect, in the first possible embodiment of eighth aspect, first sensitive information also includes the relevant information for aiding in the UE to carry out network selection.
With reference to eighth aspect, in second of possible embodiment of eighth aspect, the access network information acquisition request also includes the positional information of the UE;The ANDSF also includes:
Processor, for before the transmitter includes the response message of access network information list to UE transmissions, available access network information around the UE to be determined according to the positional information of the UE.
With reference to eighth aspect, in the third possible embodiment of eighth aspect, the access network information list also includes the information for being used to judge wlan network priority, so that the UE selects the wlan network according to the information of the priority.
The aspect of the embodiment of the present invention the 9th provides another net control device, including:
Processor, for determining to use WLAN wlan network, and determines the available wlan networks of the UE;
Transmitter, radio resource control RRC connection reconfiguration for sending from the first sensitive information comprising the wlan network to the UE is asked, and the RRC connections reconfiguration request is used to indicate that the UE is connected according to first sensitive information with the access point AP foundation of the wlan network;Wherein, first sensitive information includes the relevant information that the wlan network carries out safety certification.
With reference to the 9th aspect, in the first possible embodiment of the 9th aspect, first sensitive information also includes the relevant information for aiding in the UE to carry out network selection.
With reference to the 9th aspect, in second of possible embodiment of the 9th aspect, the processor is additionally operable to, and the available wlan networks of the UE are determined according to the positional information of user equipment (UE).
With reference to the 9th aspect, in the third possible embodiment of the 9th aspect, the processor according to current network policies and the UE ability information specifically for determining to use wlan network.
With reference to the 9th aspect, in the 4th kind of possible embodiment of the 9th aspect, the RRC connections Reconfiguration request also includes the information for being used to judge wlan network priority, so that the UE selects the wlan network according to the information of the priority.
The cut-in method and device of WLAN provided in an embodiment of the present invention, solve because the relevant sensitization information of WLAN networks is easily tampered and causes the problem of UE can not normally access WLAN networks, the accurate access of wlan network is realized, the security of wlan network access is improved.Brief description of the drawings
In order to illustrate more clearly about the embodiment of the present invention or technical scheme of the prior art, the required accompanying drawing used in embodiment or description of the prior art will be briefly described below, apparently, drawings in the following description are some embodiments of the present invention, for those of ordinary skill in the art, without having to pay creative labor, other accompanying drawings can also be obtained according to these accompanying drawings.
Fig. 1 is the flow chart of the cut-in method of one embodiment of the invention WLAN;
Fig. 2 is the flow chart of the cut-in method of another embodiment of the present invention WLAN;
Fig. 3 is the flow chart of the cut-in method of yet another embodiment of the invention WLAN;
Fig. 4 is the flow chart of the cut-in method of further embodiment of this invention WLAN;
Fig. 5 is the flow chart of the cut-in method of further embodiment of this invention WLAN;
Fig. 6 is the signaling process figure of the cut-in method of further embodiment of this invention WLAN;Fig. 7 is the signaling process figure of the cut-in method of further embodiment of this invention WLAN;Fig. 8 is the structural representation of user equipment embodiment of the invention;
Fig. 9 is that structural representation Figure 10 of an access network discovery of the invention and selection function apparatus embodiments is net control device example structure schematic diagram of the invention;
Figure 11 is another user equipment example structure schematic diagram of the invention;
Figure 12 is another access network discovery of the invention and selection function apparatus embodiments structural representation;Figure 13 is another net control device example structure schematic diagram of the invention.Embodiment
To make the purpose, technical scheme and advantage of the embodiment of the present invention clearer, below in conjunction with the accompanying drawing in the embodiment of the present invention, technical scheme in the embodiment of the present invention is clearly and completely described, obviously, described embodiment is a part of embodiment of the invention, rather than whole embodiments.Based on the embodiment in the present invention, those of ordinary skill in the art are obtained under the premise of creative work is not made The every other embodiment obtained, belongs to the scope of protection of the invention.
Fig. 1 is the flow chart of the cut-in method of one embodiment of the invention WLAN, this method is applied to the network insertion during business using WLAN shunt mobile communications network, this method can be applied to the situation that mobile communications network polymerize deployment with WLAN simultaneously, can also be applied to the situation that mobile communications network is independently disposed with WLAN.As shown in figure 1, this method includes:
S101, UE obtain the first sensitive information of wlan network from the network equipment of mobile communications network;Wherein, first sensitive information includes the relevant information that the wlan network carries out safety certification.
Wherein, the network equipment of above-mentioned mobile communications network can be:Base station(Such as:ENodeB), radio network controller(Radio Network Controller, abbreviation RNC), or, access network discovery and selection work(Hui ^ (Access Network Discovery Support Functions, abbreviation ANDSF).The ANDSF can be independent ANDSF servers, or the functional module being integrated on miscellaneous equipment, be not limited thereto.
First, UE first determines the service distributing for needing to use wlan network to move communication network, the network strategy that the process can be issued by operator is determined, also determination can be voluntarily judged according to local policy by UE, no limitations are hereby intended, for the present invention, emphasis essentially consists in how UE accurately accesses WLAN after it is determined that carrying out service distributing using WLAN.
In this step, it can be carried out according to two kinds of scenes:
Mode one, UE first judge whether to use wlan network, it is determined that after using wlan network progress service distributing, the first sensitive information of the WLAN is obtained from the network equipment of mobile communications network.
Mode two, UE first obtain access network information, then judge whether to use wlan network again, and after it is determined that carrying out service distributing using wlan network, the first sensitive information of the WLAN networks is directly inquired about from access network information.
Illustrated in mode one as an example, it is determined that UE needs to use WLAN to carry out as after data service distributing, UE obtains the mark and corresponding first sensitive information of wlan network from the network equipment of mobile communications network, first sensitive information is the crucial access parameter information that UE sets up network connection with wlan network, the relevant information that wlan network carries out safety certification can be included, if these information are tampered, UE will be unable to access wlan network or be misguided.
Wherein, the mobile communications network is third generation partner program(The 3rd Generation Partnership Project, abbreviation 3GPP) network, such as global system for mobile communications(Global System of Mobilecommunication, abbreviation GSM) network, UMTS(Universal Mobile Telecommunications System, abbreviation UMTS) network and Long Term Evolution (Long Term Evolution, abbreviation LTE) network.
Preferably, the relevant information of wlan network progress safety certification can include the RSN IE standing grain mouthful/or auth type Authentication type of wlan network.
Further, if mobile communications network is independently disposed with wlan network, the first sensitive information that UE obtains wlan network from the network equipment of mobile communications network can be carried out according to following flow:The UE sends access network information acquisition request to ANDSF;
The UE receive the ANDSF return include the response message of access network information list, wherein, the information of the wlan network is included in the access network information list, the information of the wlan network includes first sensitive information.
Further, the access network information acquisition request also includes the positional information of the UE;Then the access network information list is that the ANDSF is determined according to the positional information of the UE.
If mobile communications network polymerize deployment with WLAN, the first sensitive information that UE obtains wlan network from the network equipment of mobile communications network can be carried out according to following flow:
The UE receives the RRC connection reconfiguration requests that net control device is sent, and the RRC connections reconfiguration request includes the first sensitive information of wlan network.
S102, the UE set up with the access point AP of the wlan network according to first sensitive information and are connected.
Specifically, the UE can set up with wlan network according to following different modes and be connected after the first sensitive information of the wlan network is got.
First way:The UE directly sets up with the AP of the wlan network according to the first sensitive information of the WLAN networks obtained from the network equipment of mobile communications network and is connected.Specifically, the UE is after initiating probe requests thereby to the AP of wlan network and receiving the probe response of return, or, after the beacon frames of AP broadcast for intercepting the wlan network, the UE directly sets up with the AP of the wlan network according to the first sensitive information of the wlan network and is connected, i.e. the UE no longer carries out sensitive information contrast, improves and sets up the efficiency being connected with wlan network.
The second way:Before S102, the UE also obtains the second sensitive information of the wlan network from wlan network, and second sensitive information includes the relevant information that the wlan network carries out safety certification;Then S102 can be carried out according to following flow:
The UE judges the first quick of the wlan network obtained from the network equipment of mobile communications network Whether the second sensitive information for feeling the wlan network of the information with being obtained from WLAN is consistent, if unanimously, the UE sets up with the AP of the wlan network and is connected.
Wherein, second sensitive information and the content included by first sensitive information are consistent, and its difference is essentially consisted in, and first sensitive information is that UE is obtained from mobile communications network, and second sensitive information is that UE is obtained from WLAN.Preferably, the relevant information of wlan network progress safety certification can include RSN IE and/or auth type the Authentication type of wlan network.
Further, the UE obtains the second sensitive information of the WLAN AP from wlan network, can implement in the following way:
Second sensitive information is obtained in the probe response including second sensitive information that the UE is returned from the AP of the wlan network received, the probe response is received after the UE sends detection frame to the AP of the wlan network;Or,
Second sensitive information is obtained in the Beacon frames including second sensitive information that the UE is sent from the AP of the WLAN networks received.
The present embodiment, it is determined that UE using WLAN to mobile communications network carry out service distributing after, UE obtains the first sensitive information of wlan network from the network equipment of mobile communications network, directly initiated to connect to WLAN according to first sensitive information, or the second sensitive information of the wlan network by first sensitive information with being obtained from wlan network is contrasted, if consistent, set up and be connected with the AP of wlan network.With it, solving because the relevant sensitization information of wlan network is easily tampered and causes the problem of UE normally can not access wlan network, the accurate access of wlan network is realized, the security of wlan network access is improved.
Fig. 2 is the flow chart of the cut-in method of another embodiment of the present invention WLAN, and the present embodiment is on the basis of above-described embodiment, and S101 can include:The UE obtains the first sensitive information of available wlan network from the network equipment of mobile communications network, and for judging the information of each wlan network priority.Then correspondingly, S102 can include:The UE selects first sensitive information according to the information of wlan network priority, sets up and is connected with selected WLAN AP.As shown in Fig. 2 this method can be carried out according to following flow:
S201, UE obtain the first sensitive information of multiple wlan networks from the network equipment of mobile communications network, and for judging the information of each wlan network priority.
Specifically, either mobile communications network is independently disposed with WLAN or polymerize deployment, and the wlan network that can be connected that UE is obtained from mobile communications network may have multiple, and now UE connects to preparation The selection of the wlan network entered needs to be used to judge that the information of wlan network priority is judged by these, now, by these for judging that the information of wlan network priority is also sent to UE while mobile communications network sends the first sensitive information of these wlan networks to UE.
S202, UE select first sensitive information according to the information of the wlan network priority, set up and are connected with the access point AP of the wlan network.
Wherein, UE sets up with wlan network according to the first sensitive information of selected wlan network and is connected, can be directly to be set up to be connected with WLAN networks according to the first sensitive information of selected wlan network with UE, can also be that UE is connected by the way that the first sensitive information is contrasted with the second sensitive information, and after knowing unanimously with wlan network foundation;If information is inconsistent, chooses the low wlan network of a priority and re-start above-mentioned flow again.
The present embodiment, the information for judging the available wlan network priority that UE is sent according to mobile communications network is chosen available wlan network one by one, it is ensured that UE can be with the high wlan network of access priority.
On the basis of the various embodiments described above, first sensitive information can also include the relevant information for aiding in the UE to carry out network selection.Wherein, the relevant information that the described auxiliary UE carries out network selection can be the capability indication informations of Hotspot 2.0, then UE can also include the capability indication informations of Hotspot 2.0 when being connected by the way of being contrasted using the first sensitive information with the second sensitive information to determine whether to set up with the AP at the WLAN networkings in second sensitive information.
The capability indication informations of Hotspot 2.0, which are used for instruction equipment, to be had Hotspot2.0 abilities and reaches required level of security.It is that then the UE can also include before being connected according to the access point AP foundation of first sensitive information and the wlan network with Hotspot2.0 abilities and in the case of reaching the wlan network of required level of security in wlan network:UE sends access network information inquiry request to AP, and receives the query response message for the status information including the wlan network that the AP is returned, and determines that the wlan network can use according to the status information of the wlan network.
Specifically, also include the capability indication informations of Hotspot 2.0 in first sensitive information, i.e. when mobile communications network issues the first sensitive information of wlan network, the capability indication informations of Hotspot 2.0 for being used to identify that the WLAN networks are the wlan networks of Hotspot 2.0 can be included if the wlan network is the wlan networks of Hotspot 2.0, in the first sensitive information of the wlan network.Wherein, it is the UE with the abilities of Hotspot 2.0 that the UE, which needs,.
Further, in the first sensitive information received due to UE, the first not all sensitive letter Include the capability indication informations of Hotspot 2.0 in breath, then before the AP transmission access network information inquiring requests of UE wlan networks of Hotspot 2.0 comprising the capability indication informations of Hotspot 2.0 into first sensitive information, also need to judge whether include the capability indication informations of Hotspot 2.0 in first sensitive information, that is the UE judges whether include the capability indication informations of Hotspot 2.0 in first sensitive information, access network information inquiry request is sent with the AP for determining whether the wlan networks of Hotspot 2.0 comprising the capability indication informations of Hotspot 2.0.
Another sunset is foretold, the status information can for the loading condition for reflecting the wlan networks of Hotspot 2.0 information, but not limited to this.For judging whether the wlan networks of Hotspot 2.0 meet the condition as available wlan network or the rule according to actual setting judges that judgment rule is not limited to loading condition.
Fig. 3 is the flow chart of the cut-in method of yet another embodiment of the invention WLAN, this method is applied to the situation that mobile communications network is independently disposed with WLAN, it can be implemented by ANDSF, the function of the ANDSF is to provide access information about network connection for the UE of 3GPP access networks or non-3 GPP access network, the purpose is to assist the access network of UE discoveries in its vicinity, and the order of priority of access is provided and the concatenate rule of these networks is managed.Wherein, the non-3 GPP access network includes such as World Interoperability for Microwave Access, WiMax (Worldwide Interoperability for Microwave Access, abbreviation WiMAX) network, wlan network and CDMA2000.As shown in figure 3, this method can be carried out according to following flow:
5301st, ANDSF receives the access network information acquisition request that user equipment (UE) is sent.
Wherein, the ANDSF can be entity apparatus, be independently disposed in mobile communications network, in the network equipment that can also be attached to all kinds of mobile communications networks, i.e. the ANDSF, which refers to, all can realize the access network discovery and the device of selection function.
5302nd, ANDSF sends the information for including including wlan network in the response message of access network information list, the access network information list to the UE, and the information of the wlan network includes the first sensitive information;Wherein, first sensitive information includes the relevant information that the wlan network carries out safety certification.
Specifically, all access network information lists of network support can be sent to UE by the ANDSF, and UE can choose the access network oneself caning be found that according to the ability of discovery of itself from the access network information list and set up connection.
Preferably, the access network information acquisition request also includes the positional information of the UE, and the shellfish lj ANDSF are sent to the UE before the response message for including access network information list, in addition to:The ANDSF roots Available access network information around the UE is determined according to the positional information of the UE.
Specifically, ANDSF is after the access network information acquisition request of UE transmissions is received, according to the UE carried in the access network information acquisition request positional information, the access network information that can be accessed around the UE is searched from the access network information being locally stored, the access network information includes the available access network type of surrounding, such as WLAN and WiMAX, and the access network type precedence information, the priority can be set by operator.For example, in a certain specific region, operator's prioritizing selection is using service distributing networks of the WLAN as mobile communications network, then in the specific region, WLAN priority will be above other non-3 GPP access networks such as WiMAX, i.e., the precedence information set by operator can instruct the UE prioritizing selection wlan networks to be accessed.The ANDSF is determined after the access network information around the UE, and a response message is returned to the UE, and the UE is sent in the response message while the list of these access network information is carried.When there is the information of wlan network in the list, the information of the WLAN networks includes WLAN AP the first sensitive information, while the identification information comprising WLAN.
Alternatively, the relevant information of wlan network progress safety certification can include RSN IE and/or auth type the Authentication type of wlan network.First sensitive information also includes the relevant information for aiding in the UE to carry out network selection, such as HotSThe capability indication informations of pot 2.0, these are only citing, it is not limited to this.
Further, the access network information list can also include the information for being used to judge the available wlan network priority, and the wlan network connected is set up so that the UE chooses according to the information for being used to judge the available wlan network priority from available wlan network.
The present embodiment, in order to realize that UE accurately accesses wlan network, the sensitive information of wlan network is arranged in ANDSF by certain safe mode, when UE obtains access network information to ANDSF, these sensitive informations are sent jointly to the UE by ANDSF, because mobile communications network has perfect security mechanism, the sensitive information for the wlan network that UE is obtained from ANDSF is reliable, so as to be effectively guaranteed the accuracy that UE accesses wlan network.
Fig. 4 is the flow chart of the cut-in method of further embodiment of this invention WLAN, this method is applied to the situation that mobile communications network polymerize deployment with WLAN, it can be implemented by the net control device of mobile communications network, the present embodiment is illustrated so that mobile communications network is LTE as an example, i.e., now the net control device is evolved base station(Evolved Node B, abbreviation eNB).As shown in figure 4, this method can include: S401, net control device determine to use wlan network.
Because LTE network polymerize deployment with wlan network, eNB sides are stored with the relevant information of around non-3 GPP access network.ENB can determine whether to carry out service distributing using wlan network according to information such as current network policies, UE ability informations.ENB can use WLAN networks progress service distributing according to actual conditions selection, as the whole business of some UE are shunted using wlan network, or determine that some types business therein is shunted using wlan network according to UE type of service, but selection mode is not limited, herein by way of example only.Preferably, the net control device determines to use WLAN wlan network according to current network policies and UE ability information.
Wherein, current network policies for example can be:After eNB traffic load exceedes a certain threshold value, the UE in guiding cell carries out data service shunting by wlan network.
Alternatively, if the mobile communications network is GSM network, the net control device is base station controller(Base Station Controller, abbreviation BSC);If the mobile communications network is UMTS network, the net control device is radio network controller(Radio Network Controller, abbreviation RNC);If the mobile communications network is LTE network, the net control device is eNB.
Further, this step can also be carried out according to following flow:
The net control device receives mobile management entity(Mobility Management Entity, abbreviation MME) send Data Radio Bearer(Data Radio Bearer, abbreviation DRB) request is set up, it is that the MME judges to determine according to current network policies and/or UE business that the DRB, which sets up request,;The net control device sets up request according to the DRB and judges that determination uses wlan network.
S402, net control device determine the available wlan networks of the UE.
Specifically, the eNB according to the positional information of the UE it is determined that after using service distributing, can determine the wlan network that can be accessed.
S403, net control device send the RRC connection reconfiguration requests of the first sensitive information comprising the wlan network to the UE, and the RRC connections reconfiguration request is used to indicate that the UE is connected according to first sensitive information with the access point AP foundation of the wlan network;Wherein, first sensitive information includes the relevant information that the wlan network carries out safety certification.
Specifically, the eNB carries the relevant information of the UE wlan networks that can be accessed in wireless heterogeneous networks(Radio Resource Control, abbreviation RRC) connect in reconfiguration request, it is handed down to the UE.Wherein, the relevant information of the WLAN AP includes the first sensitive information and identification information of the WLAN AP.The UE can set up with the wlan network according to first sensitive information and be connected. Alternatively, the relevant information of wlan network progress safety certification can include RSN IE and/or auth type the Authentication type of wlan network.First sensitive information also includes the relevant information for aiding in the UE to carry out network selection, and such as capability indication informations of Hotspot 2.0 these are only citing, it is not limited to this.
Alternatively, if net control device determines that the available wlan network in UE positions is multiple, now, the RRC connections reconfiguration request also includes the information for being used to judge wlan network priority, and the WLAN networks connected are set up so that the UE chooses according to the precedence information from available wlan network.
The present embodiment, in order to realize that UE accurately accesses wlan network, the net control device of mobile communications network obtains the first sensitive information of wlan network by certain safe mode, it is network controlled equipment and the UE determined using service distributing is handed down to according to network strategy, because mobile communications network has perfect security mechanism, the sensitive information for the wlan network that UE is obtained is reliable, so as to be effectively guaranteed the accuracy at UE access WLAN networkings.
Fig. 5 is the flow chart of the cut-in method of further embodiment of this invention WLAN, this method is applied to support the WLAN of the types of Hotspot 2.0, this method polymerize the situation of deployment or independent deployment suitable for mobile communications network with WLAN simultaneously, it can be implemented by the WLAN AP of Hotspot 2.0, as shown in figure 5, this method can be carried out according to following flow:
5501st, the WLAN AP of Hotspot 2.0 receive the access network inquiry request that UE is sent.
5502nd, the WLAN AP of Hotspot 2.0 send the access network information inquiry response message for the status information for including the wlan networks of Hotspot 2.0 to the UE, and the status information of the wlan networks of Hotspot 2.0 is that the WLAN AP of Hotspot 2.0 are obtained from ANQP servers.
Specifically, when it is 2.0 WLAN AP of Hotspot that UE, which determines WLAN AP, UE sends access network inquiry request to the WLAN AP of Hotspot 2.0, and the WLAN AP of Hotspot 2.0 are received after state information acquisition request, to access network vlan query protocol VLAN(Access network query protocol, abbreviation ANQP) server forward the state information acquisition ask, ANQP servers receive the status information for sending the WLAN AP of Hotspot 2.0 after the access network inquiry request to the WLAN AP of Hotspot 2.0, and the status information, which includes but is not limited to load information, concatenation ability of the WLAN AP of Hotspot 2.0 etc., to be used to judge whether to select the network and some information for being used to judge network priority.Afterwards, the status information of the WLAN networks of place Hotspot 2.0 got from ANQP servers is sent to UE by the WLAN AP of Hotspot 2.0, is determined whether for UE according to the status information by the Hotspot 2.0 Wlan network is used as available wlan network.If for example, the status information shows the wlan network present load saturations of Hotspot 2.0, in busy state, then the WLAN networks of Hotspot 2.0 will not be included in available wlan network by UE.
Alternatively, if the WLAN AP of Hotspot 2.0 polymerize with the ANQP servers, the status information of the wlan networks of Hotspot 2.0 is that the WLAN AP of Hotspot 2.0 are obtained from the information being locally stored.SP, if the function of ANQP servers is placed on the WLAN AP of Hotspot 2.0, i.e. ANQP servers and the WLAN AP of Hotspot 2.0 are unified, now the WLAN AP of Hotspot 2.0 are after the access network inquiry request of UE transmissions is received, the status information of the wlan networks of Hotspot 2.0 is directly obtained in the relevant information that local ANDSF modules are stored, the status information is carried and is sent to UE in access network information inquiry response message.
The present embodiment, the net control device of mobile communications network will reflect that identification informations of the WLAN AP for the WLAN AP of Hotspot 2.0 is the capability indication informations of Hotspot 2.0 as a part for the first sensitive information and is handed down to UE, UE is set to send access network inquiry request to the WLAN AP of Hotspot 2.0, state to determine the wlan networks of Hotspot 2.0 realizes the compatibility to the wlan networks of Hotspot 2.0 if appropriate for as available wlan network.
The above method is illustrated from different scenes below.
Scene one, mobile communications network is independently disposed with WLAN(The explanation so that mobile communications network is LTE network as an example).
Fig. 6 is the signaling process figure of the cut-in method of further embodiment of this invention WLAN, and as shown in Fig. 6, this method can be carried out according to following flow:
5601st, UE accesses LTE network.
First, the UE is first attach to LTE network, i.e., the UE first accesses LTE network, with grouped data network gateway(Packet Data Network Gateway, abbreviation PGW) interaction.
5602nd, the UE determines to carry out service distributing using non-3 GPP access network according to carrier policy.Specifically, the carrier policy can be the mobility strategy of such as different system, meanwhile, the carrier policy can be that the ANDSF of LTE network be handed down to UE's or the local policys that are locally stored of UE, and no limitations are hereby intended.
5603rd, the UE sends access network information request to ANDSF.
Wherein, the positional information of the UE is alternatively included in the access network information request message.
S604, the ANDSF determine available access network around the UE according to the positional information of the UE. Wherein, available access network is, for example, WLAN or WiMAX around the UE.When not including UE positional information in request message, ANDSF will return to all available access network information.
5605th, the ANDSF sends access network response message to the UE.
Wherein, available access network type, access network mark and Public Land Mobile Network can be included by being carried in the response message in access network information list, the access network information list(Public Land Mobile Network) information such as identity, the information for being used to judge access network priority can also be included.Meanwhile, if the access network information list includes the information of wlan network, the information includes the first sensitive information of wlan network.Due to present invention is generally directed to the design of WLAN accurate access, then not considering not include the situation of the information of wlan network in access network information list herein.
5606th, access network information lists of the UE in the response message determines the wlan network to be accessed.
Wherein, in the access network information list access network type and access network precedence information determines the access network type to be accessed, such as WiMAX or WLAN.Based on the present invention, the UE determines to carry out service distributing using wlan network according to access network precedence information, regard the wlan network in the access network information list as available wlan network.
Further, the information for being used to judge the available WLAN network priorities can also be included in the access network information list, the UE can be used to judge that the information of the available wlan network priority to choose a wlan network of highest priority as wlan network to be connected according to this.
S607, the UE send probe requests thereby to the AP of wlan network.
Wherein, the wlan network is the wlan network to be connected determined before.
S608, the AP of the wlan network send probe response to the UE.
Wherein, the probe response includes the AP of the wlan network the second sensitive information.
Specifically, in this step, UE obtains the second sensitive information that wlan network is included in the information of the wlan network, described information from wlan network.The UE is associated according to the AP of first sensitive information and the second sensitive information and the wlan network.That is the UE needs to contrast the first sensitive information of the wlan network and the second sensitive information, is associated it is determined that being set up after consistent with the AP of the wlan network.
Alternatively, the UE can also be contrasted without sensitive information, directly set up network connection according to the AP of first sensitive information and the wlan network. Further, S607 and S608 can be substituted using following steps:The UE intercepts Beacon frames to obtain second sensitive information.
5609th, the uniformity of the second sensitive information of the wlan network that the UE judges the first sensitive information of the wlan network got from ANDSF and got from wlan network.
Wherein, if the first sensitive information and the second sensitive information are inconsistent, a senior wlan network of reselection time re-starts step S607 from access network information list;S610 is performed if consistent.
5610th, the UE and the wlan network set up network connection.
Scene two, mobile communications network polymerize deployment with WLAN(The explanation so that mobile communications network is LTE network as an example).
Fig. 7 is the signaling process figure of the cut-in method of further embodiment of this invention WLAN, and as shown in Fig. 6, this method can be carried out according to following flow:
S701, UE access LTE network.
First, the UE is first attach to LTE network, i.e., the UE first accesses LTE network, is interacted with MME.
S702, MME send DRB to eNB and set up request.
Wherein, MME determines that the eNB is currently needed for setting up new DRB according to network strategy and/or business actual demand.
S703, eNB determine the UE using WLAN to carry out service distributing according to UE type of service, ability information and the loading condition of itself.
Wherein, the eNB judges whether the UE is the UE with WLAN abilities according to the ability information of the UE, and sets up request according to the DRB received and go to judge whether to need to use WLAN to carry out service distributing.
Alternatively, not necessarily, the eNB can also directly determine which UE needs to use WLAN to carry out service distributing according to itself strategy by S701 and S702.
S704, the eNB send RRC connection reconfiguration requests to the UE.
Wherein, after it is determined that UE possesses WLAN abilities and determine that UE carries out service distributing using WLAN, the RRC connections reconfiguration request includes the AP of the sensitive information of wlan network first and wlan network identification information.
Further, the information for being used to judge wlan network priority can also be included in the RRC connection reconfiguration requests, when there are multiple available wlan networks around UE, the UE can be according to the use In judge available wlan network priority information choose highest priority a wlan network as wlan network to be connected, and to the wlan network AP send probe requests thereby.
5705th, UE sends probe requests thereby to the AP of the wlan network.
Wherein, UE is received after the RRC connection reconfiguration requests, determines the AP transmission probe requests therebies to the WLAN networkings after wlan network to be connected.
5706th, the AP of the wlan network sends probe response to the UE.
Wherein, the probe response includes the second sensitive information of the wlan network.
Further, S705 and S706 can be substituted using following steps:The UE intercepts Beacon frames to obtain second sensitive information.
The uniformity of the second sensitive information of the wlan network that S707, the UE judge the first sensitive information of the wlan network got from the eNB and got from the wlan network.
Wherein, if the first sensitive information and the second sensitive information are inconsistent, one wlan network of reselection re-starts step S705 in the multiple wlan networks included from the RRC connections reconfiguration request;S708 is performed if consistent.
Alternatively, the UE can also be without S707 steps, directly according to first sensitive information and this
The AP of wlan network sets up association, completes network connection.
S708, the UE and the wlan network set up network connection.
Fig. 8 is the structural representation of user equipment embodiment of the invention, as shown in figure 8, the UE includes:Acquisition module 81 and processing module 82, wherein, acquisition module 81 is used for the first sensitive information that WLAN wlan network is obtained from the network equipment of mobile communications network;Wherein, first sensitive information includes the relevant information that the wlan network carries out safety certification;The access point AP foundation that processing module 82 is used for the first sensitive information and wlan network obtained according to acquisition module 81 is connected.
Alternatively, the relevant information of wlan network progress safety certification can include the RSN IE and/or auth type of wlan network, but be not limited to this.
Alternatively, first sensitive information also includes the relevant information for aiding in the UE to carry out network selection.Alternatively, the network equipment is access network discovery and selection function ANDSF.Correspondingly, acquisition module 81 obtains the first sensitive information of WLAN wlan network from the network equipment of mobile communications network, including acquisition module 81 access network information acquisition request is sent to ANDSF, and receive ANDSF return include the response message of access network information list, wherein, the access network information list In include the information of the wlan network, the information of the wlan network includes first sensitive information.Further, the access network information acquisition request also includes the positional information of user equipment.Correspondingly, the access network information list is that ANDSF is determined according to the positional information of user equipment.In the above-described embodiments, acquisition module 81 is specifically for receiving the radio resource control RRC connection reconfiguration request that net control device is sent, the RRC connections reconfiguration request includes first sensitive information.
In the above-described embodiments, acquisition module 81 is additionally operable to obtain the first sensitive information of multiple wlan networks from the network equipment of mobile communications network, and for judging the information of each wlan network priority;Correspondingly, processing module 82 is specifically for selecting first sensitive information according to the information of the wlan network priority, setting up and be connected with the access point AP of the wlan network.
In the above-described embodiments, the wlan network is with Hotspot2.0 abilities and reaches the wlan network of required level of security;Correspondingly, the user equipment also includes the first sending module 83, for before processing module 82 is set up with the access point AP of the wlan network according to first sensitive information and is connected, access network information inquiry request to be sent to the AP.Correspondingly, acquisition module 81 is additionally operable to, and receives the query response message for the status information including the wlan network that the AP is returned;Processing module 82 is additionally operable to after acquisition module 81 receives the query response message, determines that the wlan network can use according to the status information of the wlan network.
In the above-described embodiments, the relevant information that the auxiliary UE carries out network selection can be the capability indication informations of Hotspot 2.0, but be not limited to this.The capability indication informations of Hotspot 2.0 are used to indicate that the WLAN networks have Hotspot2.0 abilities and reach required level of security.Processing module 82 is additionally operable to before the first sending module 83 sends access network information inquiry request to the AP, determines that first sensitive information includes the capability indication informations of Hotspot 2.0.
In the above-described embodiments, acquisition module 81 is additionally operable to before processing module 82 is set up with the access point AP of the wlan network according to first sensitive information and is connected, the second sensitive information of the wlan network is obtained from the wlan network, second sensitive information includes the relevant information that the WLAN networks carry out safety certification.Correspondingly, before processing module 82 is additionally operable to be connected with the access point AP foundation of the wlan network according to first sensitive information, determine that first sensitive information is consistent with second sensitive information.Further, acquisition module 81 obtains the second sensitive information of the wlan network from the wlan network, specifically include and obtain second sensitive information from the probe response including second sensitive information of the AP returns of the wlan network received The probe response is received after the user equipment sends detection frame to the AP of the wlan network;Or, obtain second sensitive information in the beacon frame including second sensitive information sent from the AP of the wlan network received.The user equipment that the present embodiment is provided, the handling process in can specifically being shone with above-mentioned each method embodiment, its function refers to above method embodiment, and here is omitted.
The user equipment that the present embodiment is provided, solve because the relevant sensitization information of wlan network is easily tampered and causes the problem of UE normally can not access wlan network, the accurate access of wlan network is realized, the security of wlan network access is improved.
Fig. 9 is an access network discovery of the invention and the structural representation of selection function apparatus embodiments, as shown in Figure 9, the ANDSF can include the sending module 92 of receiving module 91 and second, wherein, receiving module 91 is used for the access network information acquisition request for receiving user equipment (UE) transmission;Second sending module 92 is used to send the information for including including wlan network in the response message of access network information list, the access network information list to the UE, and the information of the wlan network includes the first sensitive information;Wherein, first sensitive information includes the relevant information that the wlan network carries out safety certification.
Alternatively, the relevant information of wlan network progress safety certification can include the RSN IE and/or auth type of wlan network, but be not limited to this.
Alternatively, first sensitive information also includes the relevant information for aiding in the UE to carry out network selection, such as HotSPot2.0 capability indication informations, but it is not limited to this.
Alternatively, the access network information acquisition request also includes the positional information of the UE;It is described
ANDSF also includes:First determining module 93, for before the second sending module 92 includes the response message of access network information list to UE transmissions, available access network information around the UE to be determined according to the positional information of the UE.
In the above-described embodiments, the access network information list also includes the information for being used to judge wlan network priority, so that the UE selects the wlan network according to the information of the priority.
The ANDSF that the present embodiment is provided, the handling process in can specifically being shone with above-mentioned each method embodiment, its function refers to above method embodiment, and here is omitted.
The ANDSF that the present embodiment is provided, solves because the relevant sensitization information of wlan network is easily tampered and causes the problem of UE normally can not access wlan network, realizes the accurate access of wlan network, improves the security of wlan network access. Figure 10 is net control device example structure schematic diagram of the invention, as shown in Figure 10, the net control device can include the second determining module 101, the 3rd determining module 102 and the 3rd sending module 103, wherein, the second determining module 101 is used to determine to use WLAN wlan network;3rd determining module 102 is used to determine the available wlan networks of the UE;3rd sending module 103 is used to connect reconfiguration request to the radio resource control RRC that the UE sends the first sensitive information comprising the wlan network, and the RRC connections reconfiguration request is connected for indicating that the UE is set up according to first sensitive information with the access point AP of the wlan network;Wherein, first sensitive information includes the relevant information that the wlan network carries out safety certification.
Alternatively, the relevant information of wlan network progress safety certification can include the RSN IE and/or auth type of wlan network, but be not limited to this.
Alternatively, first sensitive information also includes the relevant information for aiding in the UE to carry out network selection, such as Hotspot2.0 capability indication informations, but be not limited to this.In the above-described embodiments, the second determining module 102 according to current network policies and the UE ability information specifically for determining to use WLAN networks.
In the above-described embodiments, the 3rd determining module 102 specifically can be used for determining the available wlan networks of the UE according to the positional information of user equipment (UE).
In the above-described embodiments, the RRC connections reconfiguration request also includes the information for being used to judge wlan network priority, so that the UE selects the wlan network according to the information of the priority.
The net control device that the present embodiment is provided, the handling process in can specifically being shone with above-mentioned each method embodiment, its function refers to above method embodiment, and here is omitted.
The net control device that the present embodiment is provided, solve because the relevant sensitization information of wlan network is easily tampered and causes the problem of UE normally can not access wlan network, the accurate access of wlan network is realized, the security of wlan network access is improved.
Figure 11 is another user equipment example structure schematic diagram of the invention, as shown in figure 11, the UE can include receiver 111 and processor 112, wherein, receiver 111 is used for the first sensitive information that WLAN wlan network is obtained from the network equipment of mobile communications network;Wherein, first sensitive information includes the relevant information that the wlan network carries out safety certification;The access point AP foundation that processor 112 is used for the first sensitive information and wlan network obtained according to receiver 111 is connected.
Alternatively, the relevant information of wlan network progress safety certification can include wlan network RSN IE and/or auth type, but it is not limited to this.
Alternatively, first sensitive information also includes the relevant information for aiding in the UE to carry out network selection, such as HotSPot2.0 capability indication informations, but it is not limited to this.
Alternatively, the network equipment is access network discovery and selection function ANDSF.Further, receiver 111 obtains the first sensitive information of WLAN wlan network from the network equipment of mobile communications network, including:Receiver 111 sends access network information acquisition request to the ANDSF, and receive that the ANDSF returns include the response message of access network information list, wherein, the information of the wlan network is included in the access network information list, the information of the wlan network includes first sensitive information.
Yet further, described access network information acquisition request also includes the positional information of the user equipment;Correspondingly, the access network information list is that the ANDSF is determined according to the positional information of the user equipment.
Alternatively, receiver 111 is specifically for receiving the radio resource control RRC connection reconfiguration request that net control device is sent, the RRC connections reconfiguration request includes first sensitive information.
Alternatively, receiver 111 from the network equipment of mobile communications network specifically for obtaining multiple
First sensitive information of wlan network, and for judging the information of each wlan network priority.Correspondingly, processor 112 is specifically for selecting first sensitive information according to the information of the wlan network priority, setting up and be connected with the access point AP of the wlan network.
Alternatively, the wlan network is with Hotspot2.0 abilities and reaches the wlan network of required level of security.The user equipment also includes transmitter 113, for before processor 112 is set up with the access point AP of the wlan network according to first sensitive information and is connected, access network information inquiry request to be sent to the AP.Correspondingly, receiver 111 is additionally operable to, and receives the query response message for the status information including the wlan network that the AP is returned;Processor 112 is additionally operable to, after the receiver receives the query response message, determines that the wlan network can use according to the status information of the wlan network.
Alternatively, the relevant information that the assist said user equipment carries out network selection is the capability indication informations of Hotspot 2.0, and the capability indication informations of Hotspot 2.0 are used to indicate that the WLAN networks have Hotspot2.0 abilities and reach required level of security.
Alternatively, processor 112 is additionally operable to, and before transmitter 113 sends access network information inquiry request to the AP, determines that first sensitive information includes the capability indication informations of Hotspot 2.0. Alternatively, receiver 111 is additionally operable to, before processor 112 is set up with the access point AP of the wlan network according to first sensitive information and is connected, the second sensitive information of the wlan network is obtained from the wlan network, second sensitive information includes the relevant information that the wlan network carries out safety certification.Correspondingly, processor 112 is additionally operable to, and is set up according to first sensitive information with the access point AP of the wlan network before being connected, is determined that first sensitive information is consistent with second sensitive information.
Alternatively, receiver 111 obtains the second sensitive information of the wlan network from the wlan network, specifically includes:
Second sensitive information is obtained in the probe response including second sensitive information returned from the AP of the wlan network received, the probe response is received after the user equipment sends detection frame to the AP of the WLAN networks;Or,
Second sensitive information is obtained in the beacon frame including second sensitive information sent from the AP of the wlan network received.
The user equipment that the present embodiment is provided, the handling process in can specifically being shone with above-mentioned each method embodiment, its function refers to above method embodiment, and here is omitted.
The user equipment that the present embodiment is provided, solve because the relevant sensitization information of wlan network is easily tampered and causes the problem of UE normally can not access wlan network, the accurate access of wlan network is realized, the security of wlan network access is improved.
Figure 12 is another access network discovery of the invention and selection function apparatus embodiments structural representation, as shown in figure 12, the ANDSF can include receiver 121 and transmitter 122, wherein, receiver 121 is used for the access network information acquisition request for receiving user equipment (UE) transmission;Transmitter 122 is used to send the information for including including wlan network in the response message of access network information list, the access network information list to the UE, and the information of the wlan network includes the first sensitive information;Wherein, first sensitive information includes the relevant information that the wlan network carries out safety certification.
Alternatively, the relevant information of wlan network progress safety certification can include wlan network
RSN IE and/or auth type, but it is not limited to this.
Alternatively, first sensitive information also includes the relevant information for aiding in the UE to carry out network selection, such as HotSPot2.0 capability indication informations, but it is not limited to this.
Alternatively, the access network information acquisition request also includes the positional information of the UE.Then ANDSF also includes:Processor 123, which is used to send to the UE in transmitter 122, includes access network information list Response message before, available access network information around UE is determined according to the positional information of the UE.Alternatively, the access network information list also includes the information for being used to judge WLAN network priorities, so that the UE selects the wlan network according to the information of the priority.
The ANDSF that the present embodiment is provided, the handling process in can specifically being shone with above-mentioned each method embodiment, its function refers to above method embodiment, and here is omitted.
The ANDSF that the present embodiment is provided, solves because the relevant sensitization information of wlan network is easily tampered and causes the problem of UE normally can not access wlan network, realizes the accurate access of wlan network, improves the security of wlan network access.
Figure 13 is another net control device example structure schematic diagram of the invention, as shown in figure 13, the net control device can include processor 131 and transmitter 132, wherein, processor 131 is used to determine to use WLAN wlan network, and determines the available wlan networks of the UE;Transmitter 132 is used to ask to the radio resource control RRC connection reconfiguration that the UE sends the first sensitive information comprising the wlan network, and the RRC connections reconfiguration request is connected for indicating that the UE is set up according to first sensitive information with the access point AP of the wlan network;Wherein, first sensitive information includes the relevant information that the wlan network carries out safety certification.
Alternatively, the relevant information of wlan network progress safety certification can include the RSN IE and/or auth type of wlan network, but be not limited to this.
Alternatively, first sensitive information also includes the relevant information for aiding in the UE to carry out network selection, such as HotSPot2.0 capability indication informations, but it is not limited to this.
Alternatively, processor 131 can specifically determine the available wlan networks of the UE according to the positional information of user equipment (UE).
Alternatively, processor 131 according to current network policies and the UE ability information specifically for determining to use wlan network.
Alternatively, the RRC connections reconfiguration request also includes the information for being used to judge wlan network priority, so that the UE selects the wlan network according to the information of the priority.
The net control device that the present embodiment is provided, the handling process in can specifically being shone with above-mentioned each method embodiment, its function refers to above method embodiment, and here is omitted.
The net control device that the present embodiment is provided, solve because the relevant sensitization information of wlan network is easily tampered and causes the problem of UE normally can not access wlan network, the accurate access of wlan network is realized, the security of wlan network access is improved. In several embodiments provided by the present invention, it should be understood that disclosed apparatus and method, it can realize by another way.For example, device embodiment described above is only schematical, for example, the division of the unit, it is only a kind of division of logic function, there can be other dividing mode when actually realizing, such as multiple units or component can combine or be desirably integrated into another system, or some features can be ignored, or do not perform.Another, it, by some interfaces, the INDIRECT COUPLING or communication connection of device or unit, can be electrical, machinery or other forms that shown or discussed coupling or direct-coupling or communication connection each other, which can be,.
The unit illustrated as separating component can be or may not be physically separate, and the part shown as unit can be or may not be physical location, you can with positioned at a place, or can also be distributed on multiple NEs.Some or all of unit therein can be selected to realize the purpose of this embodiment scheme according to the actual needs.
In addition, each functional unit in each of the invention embodiment can be integrated in a processing unit or unit is individually physically present, can also two or more units it is integrated in a unit.Above-mentioned integrated unit can both be realized in the form of hardware, it would however also be possible to employ hardware adds the form of SFU software functional unit to realize.
The above-mentioned integrated unit realized in the form of SFU software functional unit, can be stored in a computer read/write memory medium.Above-mentioned SFU software functional unit is stored in a storage medium, including some instructions are to cause a computer equipment(Can be personal computer, server, or network equipment etc.) or processor(Processor the part steps of each embodiment methods described of the invention) are performed.And foregoing storage medium includes:USB flash disk, mobile hard disk, read-only storage(Read-Only Memory, ROM), random access memory(Random Access Memory, RAM), magnetic disc or CD etc. are various can be with the medium of store program codes.
Those skilled in the art can be understood that, for convenience and simplicity of description, only it is illustrated with the division of above-mentioned each functional module, in practical application, it can as needed and by above-mentioned functions distribute and be completed by different functional modules, the internal structure of device is divided into different functional modules, to complete all or part of function described above.The specific work process of the device of foregoing description, may be referred to the corresponding process in preceding method embodiment, will not be repeated here.
Finally it should be noted that:Various embodiments above is merely illustrative of the technical solution of the present invention, rather than its limitations;Although the present invention is described in detail with reference to foregoing embodiments, it will be understood by those within the art that:It can still modify to the technical scheme described in foregoing embodiments, Or equivalent substitution is carried out to which part or all technical characteristic;And these modifications or replacement, the essence of appropriate technical solution is departed from the scope of various embodiments of the present invention technical scheme.

Claims (42)

  1. Claims
    1st, a kind of cut-in method of WLAN, it is characterised in that including:
    User equipment (UE) obtains the first sensitive information of WLAN wlan network from the network equipment of mobile communications network;Wherein, first sensitive information includes the relevant information that the wlan network carries out safety certification;
    The UE sets up with the access point AP of the wlan network according to first sensitive information and is connected.
    2nd, according to the method described in claim 1, it is characterised in that first sensitive information also includes the relevant information for aiding in the UE to carry out network selection.
    3rd, method according to claim 1 or 2, it is characterised in that the network equipment is access network discovery and selection function ANDSF;
    The UE obtains the first sensitive information of WLAN wlan network from the network equipment of mobile communications network, including:
    The UE sends access network information acquisition request to the ANDSF;
    What the UE receptions ANDSF was returned includes the response message of access network information list, wherein, the information of the wlan network is included in the access network information list, the information of the wlan network includes first sensitive information.
    4th, method according to claim 3, it is characterised in that the access network information acquisition request also includes the positional information of the UE;Correspondingly, the access network information list is that the ANDSF is determined according to the positional information of the UE.
    5th, method according to claim 1 or 2, it is characterised in that the UE obtains the first sensitive information of wlan network from the network equipment of mobile communications network, including:
    The UE receives the radio resource control RRC connection reconfiguration request that net control device is sent, and the RRC connections reconfiguration request includes first sensitive information.
    6th, according to any described methods of claim 1-5, it is characterised in that the first sensitive information that the UE obtains wlan network from the network equipment of mobile communications network includes:
    The UE obtains the first sensitive information of multiple wlan networks from the network equipment of mobile communications network, and for judging the information of each wlan network priority;
    Correspondingly, the UE set up according to first sensitive information with the access point AP of the WLAN networks be connected including:The UE is according to the information of wlan network priority selection described the One sensitive information, sets up with the access point AP of the wlan network and is connected.
    7th, according to any described methods of claim 2-6, it is characterised in that the wlan network is with Hotspot2.0 abilities and reaches the wlan network of required level of security;
    Before the UE is connected according to first sensitive information with the access point AP foundation of the wlan network, in addition to:
    The UE sends access network information inquiry request to the AP;
    The UE receives the query response message for the status information including the wlan network that the AP is returned, and determines that the wlan network can use according to the status information of the wlan network.
    8th, method according to claim 7, it is characterized in that, the relevant information that the auxiliary UE carries out network selection is the capability indication informations of Hotspot 2.0, and the capability indication informations of Hotspot 2.0 are used to indicate that the wlan network has Hotspot2.0 abilities and reaches required level of security.
    9th, method according to claim 8, it is characterised in that the UE is sent to the AP before access network information inquiry request, in addition to:
    The UE determines that first sensitive information includes the capability indication informations of Hotspot 2.0.10th, according to any described methods of claim 1-9, it is characterised in that the UE includes before being connected according to first sensitive information with the access point AP foundation of the wlan network:
    The UE obtains the second sensitive information of the wlan network from the wlan network, and second sensitive information includes the relevant information that the wlan network carries out safety certification;
    The UE determines that first sensitive information is consistent with second sensitive information.
    11st, method according to claim 10, it is characterised in that the UE obtains the second sensitive information of the wlan network from wlan network, including:
    Second sensitive information is obtained in the probe response including second sensitive information that the UE is returned from the AP of the wlan network received, the probe response is received after the UE sends detection frame to the AP of the wlan network;Or,
    Second sensitive information is obtained in the beacon frame including second sensitive information that the UE is sent from the AP of the wlan network received.
    12nd, a kind of cut-in method of WLAN, it is characterised in that including:
    Access network discovery and selection function ANDSF receive the access network information acquisition request that user equipment (UE) is sent;
    The ANDSF is sent to the UE includes the response message of access network information list, the access The information of wlan network is included in net information list, the information of the wlan network includes the first sensitive information;Wherein, first sensitive information includes the relevant information that the wlan network carries out safety certification.
    13rd, method according to claim 12, it is characterised in that first sensitive information also includes the relevant information for aiding in the UE to carry out network selection.
    14th, the method according to claim 12 or 13, it is characterized in that, the access network information acquisition request also includes the positional information of the UE, then before the ANDSF includes the response message of access network information list to UE transmissions, in addition to:
    The ANDSF determines available access network information around the UE according to the positional information of the UE.
    15th, the method according to claim 12 or 13 or 14, it is characterised in that the access network information list also includes the information for being used to judge wlan network priority, so that the UE selects the wlan network according to the information of the priority.
    16th, a kind of cut-in method of WLAN, it is characterised in that including:
    Net control device determines to use WLAN wlan network;
    The net control device determines the available wlan networks of the UE;
    The net control device is asked to the UE radio resource control RRC connection reconfigurations for sending the first sensitive information comprising the wlan network, and the RRC connections reconfiguration request is used to indicate that the UE is connected according to first sensitive information with the access point AP foundation of the wlan network;Wherein, first sensitive information includes the relevant information that the wlan network carries out safety certification.
    17th, method according to claim 16, it is characterised in that first sensitive information also includes the relevant information for aiding in the UE to carry out network selection.
    18th, the method according to claim 16 or 17, it is characterised in that the net control device determines that the available wlan networks of the UE include:
    The net control device determines that the UE is available according to the positional information of user equipment (UE)
    Wlan network.
    19th, the method according to claim 16 or 17 or 18, it is characterised in that the net control device determination uses WLAN wlan network, including:
    The net control device determines to use wlan network according to current network policies and the UE ability information. 20th, according to any described methods of claim 16-19, it is characterized in that, the RRC connections reconfiguration request also includes the information for being used to judge wlan network priority, so that the UE selects the wlan network according to the information of the priority.
    21st, a kind of user equipment, it is characterised in that including:
    Acquisition module, the first sensitive information for obtaining WLAN wlan network from the network equipment of mobile communications network;Wherein, first sensitive information includes the relevant information that the wlan network carries out safety certification;
    Processing module, first sensitive information for being obtained according to the acquisition module is set up with the access point AP of the wlan network to be connected.
    22nd, user equipment according to claim 21, it is characterised in that first sensitive information also includes the relevant information that assist said user equipment carries out network selection.
    23rd, the user equipment according to claim 21 or 22, it is characterised in that the network equipment is access network discovery and selection function ANDSF;
    The acquisition module obtains the first sensitive information of WLAN WLAN networks from the network equipment of mobile communications network, including:
    The acquisition module sends access network information acquisition request to the ANDSF;
    What the acquisition module reception ANDSF was returned includes the response message of access network information list, wherein, the information of the wlan network is included in the access network information list, the information of the wlan network includes first sensitive information.
    24th, user equipment according to claim 23, it is characterised in that the access network information acquisition request also includes the positional information of the user equipment;Correspondingly, the access network information list is that the ANDSF is determined according to the positional information of the user equipment.
    25th, according to any described user equipmenies of claim 21-24, it is characterized in that, the acquisition module is specifically for receiving the radio resource control RRC connection reconfiguration request that net control device is sent, the RRC connections reconfiguration request includes first sensitive information.
    26th, according to any described user equipmenies of claim 21-25, it is characterized in that, the acquisition module from the network equipment of mobile communications network specifically for obtaining the first sensitive information of multiple wlan networks, and for judging the information of each wlan network priority;
    Correspondingly, the processing module is specifically for selecting first sensitive information according to the information of the wlan network priority, setting up and be connected with the access point AP of the wlan network. 27th, according to any described user equipmenies of claim 22-26, it is characterised in that the WLAN networks are with Hotspot2.0 abilities and reach the wlan network of required level of security;
    The user equipment also includes:
    First sending module, for before the processing module is set up with the access point AP of the wlan network according to first sensitive information and is connected, access network information inquiry request to be sent to the AP;
    The acquisition module is additionally operable to, and receives the query response message for the status information including the wlan network that the AP is returned;
    The processing module is additionally operable to, after the acquisition module receives the query response message, determines that the wlan network can use according to the status information of the wlan network.
    28th, user equipment according to claim 27, it is characterized in that, the relevant information that the assist said user equipment carries out network selection is the capability indication informations of Hotspot 2.0, and the capability indication informations of Hotspot 2.0 are used to indicate that the wlan network has Hotspot2.0 abilities and reaches required level of security.
    29th, user equipment according to claim 28, it is characterized in that, the processing module is additionally operable to, before first sending module sends access network information inquiry request to the AP, determine that first sensitive information includes the capability indication informations of Hotspot 2.0.
    30th, according to any described user equipmenies of claim 21-29, it is characterized in that, the acquisition module is additionally operable to, before the processing module is set up with the access point AP of the wlan network according to first sensitive information and is connected, the second sensitive information of the wlan network is obtained from the wlan network, second sensitive information includes the relevant information that the WLAN networks carry out safety certification;
    The processing module is additionally operable to, and is set up according to first sensitive information with the access point AP of the wlan network before being connected, is determined that first sensitive information is consistent with second sensitive information.
    31st, user equipment according to claim 30, it is characterised in that the acquisition module obtains the second sensitive information of the wlan network from the wlan network, specifically includes:
    Obtain second sensitive information in the probe response including second sensitive information returned from the AP of the wlan network received, the probe response is the user equipment to the WLAN Received after the AP transmission detection frames of network;Or,
    Second sensitive information is obtained in the beacon frame including second sensitive information sent from the AP of the wlan network received.
    32nd, a kind of ANDSF, it is characterised in that including:
    Receiving module, the access network information acquisition request for receiving user equipment (UE) transmission;Second sending module, for sending the information for including including wlan network in the response message of access network information list, the access network information list to the UE, the information of the wlan network includes the first sensitive information;Wherein, first sensitive information includes the relevant information that the wlan network carries out safety certification.
    33rd, ANDSF according to claim 32, it is characterised in that first sensitive information also includes the relevant information for aiding in the UE to carry out network selection.
    34th, the ANDSF according to claim 32 or 33, it is characterised in that the access network information acquisition request also includes the positional information of the UE;The ANDSF also includes:
    First determining module, for before second sending module includes the response message of access network information list to UE transmissions, available access network information around the UE to be determined according to the positional information of the UE.
    35th, the ANDSF according to claim 32 or 33 or 34, it is characterized in that, the access network information list also includes the information for being used to judge wlan network priority, so that the UE selects the wlan network according to the information of the priority.
    36th, a kind of net control device, it is characterised in that including:
    Second determining module, for determining to use WLAN wlan network;
    3rd determining module, for determining the available wlan networks of the UE;
    3rd sending module, radio resource control RRC connection reconfiguration for sending from the first sensitive information comprising the wlan network to the UE is asked, and the RRC connections reconfiguration request is used to indicate that the UE is connected according to first sensitive information with the access point AP foundation of the wlan network;Wherein, first sensitive information includes the relevant information that the wlan network carries out safety certification.
    37th, net control device according to claim 36, it is characterised in that first sensitive information also includes the relevant information for aiding in the UE to carry out network selection.
    38th, the net control device according to claim 36 or 37, it is characterised in that the 3rd determining module according to the positional information of user equipment (UE) specifically for determining that the UE is available Wlan network.
    39th, the net control device according to claim 36 or 37, it is characterised in that second determining module according to current network policies and the UE ability information specifically for determining to use wlan network.
    40th, according to any described net control devices of claim 36-39, it is characterised in that described
    RRC connections reconfiguration request also includes the information for being used to judge wlan network priority, so that the UE selects the wlan network according to the information of the priority.
    41st, a kind of user equipment, it is characterised in that including:
    Receiver, the first sensitive information for obtaining WLAN wlan network from the network equipment of mobile communications network;Wherein, first sensitive information includes the relevant information that the wlan network carries out safety certification;
    Processor, first sensitive information for being obtained according to the receiver is set up with the access point AP of the wlan network to be connected.
    42nd, user equipment according to claim 41, it is characterised in that first sensitive information also includes the relevant information for aiding in the UE to carry out network selection.
    43rd, the user equipment according to claim 41 or 42, it is characterised in that the network equipment is access network discovery and selection function ANDSF;
    The receiver obtains the first sensitive information of WLAN WLAN networks from the network equipment of mobile communications network, including:
    The receiver sends access network information acquisition request to the ANDSF;
    What the receiver reception ANDSF was returned includes the response message of access network information list, wherein, the information of the wlan network is included in the access network information list, the information of the wlan network includes first sensitive information.
    44th, user equipment according to claim 43, it is characterised in that the access network information acquisition request also includes the positional information of the user equipment;Correspondingly, the access network information list is that the ANDSF is determined according to the positional information of the user equipment.
    45th, the user equipment according to claim 43 or 44, it is characterized in that, the receiver is specifically for receiving the radio resource control RRC connection reconfiguration request that net control device is sent, the RRC connections reconfiguration request includes first sensitive information.
    46th, according to any described user equipmenies of claim 41-45, it is characterised in that the reception Implement body is used for, and the first sensitive information of multiple wlan networks is obtained from the network equipment of mobile communications network, and for judging the information of each wlan network priority;
    Correspondingly, the processor is specifically for selecting first sensitive information according to the information of the wlan network priority, setting up and be connected with the access point AP of the wlan network.
    47th, according to any described user equipmenies of claim 42-46, it is characterised in that the WLAN networks are with Hotspot2.0 abilities and reach the wlan network of required level of security;
    The user equipment also includes:
    Transmitter, for before the processor is set up with the access point AP of the wlan network according to first sensitive information and is connected, access network information inquiry request to be sent to the AP;
    The receiver is additionally operable to, and receives the query response message for the status information including the wlan network that the AP is returned;
    The processor is additionally operable to, after the receiver receives the query response message, determines that the wlan network can use according to the status information of the wlan network.
    48th, user equipment according to claim 47, it is characterized in that, the relevant information that the assist said user equipment carries out network selection is the capability indication informations of Hotspot 2.0, and the capability indication informations of Hotspot 2.0 are used to indicate that the wlan network has Hotspot2.0 abilities and reaches required level of security.
    49th, user equipment according to claim 48, it is characterized in that, the processor is additionally operable to, and before the transmitter sends access network information inquiry request to the AP, determines that first sensitive information includes the capability indication informations of Hotspot 2.0.
    50th, according to any described user equipmenies of claim 41-49, it is characterized in that, the receiver is additionally operable to, before the processor is set up with the access point AP of the wlan network according to first sensitive information and is connected, the second sensitive information of the wlan network is obtained from the wlan network, second sensitive information includes the relevant information that the wlan network carries out safety certification;
    The processor is additionally operable to, according to first sensitive information and the access point of the wlan network
    AP is set up before connection, determines that first sensitive information is consistent with second sensitive information.
    51st, user equipment according to claim 50, it is characterised in that the receiver obtains the second sensitive information of the wlan network from the wlan network, specifically includes:
    Obtain second sensitive information in the probe response including second sensitive information returned from the AP of the wlan network received, the probe response is the user equipment to the WLAN Received after the AP transmission detection frames of network;Or,
    Second sensitive information is obtained in the beacon frame including second sensitive information sent from the AP of the wlan network received.
    52nd, a kind of ANDSF, it is characterised in that including:
    Receiver, the access network information acquisition request for receiving user equipment (UE) transmission;
    Transmitter, for sending the information for including including wlan network in the response message of access network information list, the access network information list to the UE, the information of the wlan network includes the first sensitive information;Wherein, first sensitive information includes the relevant information that the wlan network carries out safety certification.
    53rd, ANDSF according to claim 52, it is characterised in that first sensitive information also includes the relevant information for aiding in the UE to carry out network selection.
    54th, the ANDSF according to claim 52 or 53, it is characterised in that the access network information acquisition request also includes the positional information of the UE;The ANDSF also includes:
    Processor, for before the transmitter includes the response message of access network information list to UE transmissions, available access network information around the UE to be determined according to the positional information of the UE.
    55th, the ANDSF according to claim 52 or 53 or 54, it is characterized in that, the access network information list also includes the information for being used to judge wlan network priority, so that the UE selects the wlan network according to the information of the priority.
    56th, a kind of net control device, it is characterised in that including:
    Processor, for determining to use WLAN wlan network, and determines that the UE is available
    Wlan network;
    Transmitter, radio resource control RRC connection reconfiguration for sending from the first sensitive information comprising the wlan network to the UE is asked, and the RRC connections reconfiguration request is used to indicate that the UE is connected according to first sensitive information with the access point AP foundation of the wlan network;Wherein, first sensitive information includes the relevant information that the wlan network carries out safety certification.
    57th, net control device according to claim 56, it is characterised in that first sensitive information also includes the relevant information for aiding in the UE to carry out network selection.
    58th, the net control device according to claim 56 or 57, it is characterised in that the processor is additionally operable to, the available wlan networks of the UE are determined according to the positional information of user equipment (UE).
    59th, the net control device according to claim 56 or 57 or 58, it is characterised in that institute Processor is stated specifically for determining to use WLAN networks according to current network policies and the UE ability information.
    60th, according to any described net control devices of claim 56-59, it is characterized in that, the RRC connections reconfiguration request also includes the information for being used to judge wlan network priority, so that the UE selects the wlan network according to the information of the priority.
CN201380003749.5A 2013-11-04 2013-11-04 The cut-in method and device of WLAN Active CN104770007B (en)

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
PCT/CN2013/086503 WO2015062105A1 (en) 2013-11-04 2013-11-04 Access method and device for wireless local area network

Publications (2)

Publication Number Publication Date
CN104770007A true CN104770007A (en) 2015-07-08
CN104770007B CN104770007B (en) 2019-04-19

Family

ID=53003204

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201380003749.5A Active CN104770007B (en) 2013-11-04 2013-11-04 The cut-in method and device of WLAN

Country Status (2)

Country Link
CN (1) CN104770007B (en)
WO (1) WO2015062105A1 (en)

Families Citing this family (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN108616888A (en) * 2018-05-04 2018-10-02 努比亚技术有限公司 Hotspot mandate connection method, mobile terminal and computer readable storage medium

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101577909A (en) * 2008-05-05 2009-11-11 大唐移动通信设备有限公司 Method, system and device for acquiring trust type of non-3GPP access system
CN101730172A (en) * 2009-06-30 2010-06-09 中兴通讯股份有限公司 Switching method and device based on access network selection
CN103338483A (en) * 2013-07-24 2013-10-02 成都西加云杉科技有限公司 Data distribution method, data distribution device and heterogeneous network

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101577909A (en) * 2008-05-05 2009-11-11 大唐移动通信设备有限公司 Method, system and device for acquiring trust type of non-3GPP access system
CN101730172A (en) * 2009-06-30 2010-06-09 中兴通讯股份有限公司 Switching method and device based on access network selection
CN103338483A (en) * 2013-07-24 2013-10-02 成都西加云杉科技有限公司 Data distribution method, data distribution device and heterogeneous network

Also Published As

Publication number Publication date
WO2015062105A1 (en) 2015-05-07
CN104770007B (en) 2019-04-19

Similar Documents

Publication Publication Date Title
KR102164230B1 (en) Terminal registration method and apparatus therefor in wireless communication system
CN110832897B (en) Method and SMF for supporting QOS
US10779142B2 (en) Method and device for controlling multipriority in wireless communication system
US10477455B2 (en) Wireless power transmitter and receiver
EP3537843B1 (en) Method for moving from ngs to eps in wireless communication system and apparatus therefor
USRE46870E1 (en) Method and terminal for determining handover for traffic offloaded onto WLAN
CN111357339B (en) Method for transmitting and receiving signal related to handover access in wireless communication system and apparatus therefor
EP3145228B1 (en) Method and apparatus for signal transmission and reception of hss/mme in wireless communication system
EP2810461B1 (en) System and method for partner network sharing architecture
US10827536B2 (en) Method and terminal for creating, modifying, releasing session in next-generation mobile communication
US20230069252A1 (en) Communication Method and Communication Apparatus
US11224011B2 (en) Method for supporting NAS signaling by base station in wireless communication system and apparatus therefor
US20130182607A1 (en) Control method and device based on multiple priorities in wireless communication system
CN104521287A (en) Network switching method, apparatus, device and system
CN108702802A (en) user equipment and its data transmission method and network node and its data transmission method
CN104471988A (en) Method, Device And System For Network Selection
CN108886831A (en) A kind of cut-in method and device
CN104969589A (en) Communication device access processing method and device, and communication system
US10299298B2 (en) Packet data network connection process in wireless communication system, and apparatus for same
CN105594259A (en) Method and user equipment for selecting network and performing traffic routing
CN104170421B (en) Wireless local area network access method, base station controller and user equipment
EP3432677A1 (en) Method and wireless device for transmitting rrc message when using cp ciot eps optimization
CN108432293A (en) Terminal device, the network equipment, the method and wireless communication system for selecting cell
CN104782215A (en) Method, base station, user equipment and wireless fidelity access point for managing wireless resources
US10499443B2 (en) Data transmission method, related device, and system

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
EXSB Decision made by sipo to initiate substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant