CN113630782A - Wireless sharing detection method, device, system and computer readable storage medium - Google Patents

Wireless sharing detection method, device, system and computer readable storage medium Download PDF

Info

Publication number
CN113630782A
CN113630782A CN202110927298.0A CN202110927298A CN113630782A CN 113630782 A CN113630782 A CN 113630782A CN 202110927298 A CN202110927298 A CN 202110927298A CN 113630782 A CN113630782 A CN 113630782A
Authority
CN
China
Prior art keywords
access point
terminal
access
detection
wireless
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN202110927298.0A
Other languages
Chinese (zh)
Inventor
张永才
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Maipu Communication Technology Co Ltd
Original Assignee
Maipu Communication Technology Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Maipu Communication Technology Co Ltd filed Critical Maipu Communication Technology Co Ltd
Priority to CN202110927298.0A priority Critical patent/CN113630782A/en
Publication of CN113630782A publication Critical patent/CN113630782A/en
Pending legal-status Critical Current

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W16/00Network planning, e.g. coverage or traffic planning tools; Network deployment, e.g. resource partitioning or cells structures
    • H04W16/14Spectrum sharing arrangements between different networks
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W16/00Network planning, e.g. coverage or traffic planning tools; Network deployment, e.g. resource partitioning or cells structures
    • H04W16/18Network planning tools

Abstract

The application provides a wireless sharing detection method, a device, a system and a computer readable storage medium, and relates to the technical field of network communication. The method applied to the wireless access controller comprises the following steps: detecting the presence of an abnormally deployed wireless network; controlling each terminal access point to send an access point detection message to the access terminal connected with each terminal access point, so that the access terminal shared by the wireless network sends the access point detection message out, wherein the access point detection message has access point specific message characteristics, and the access point specific message characteristics corresponding to each terminal access point are different; after detecting that the access point receives a message which is not sent by the terminal access point and accords with the specific message characteristics of the access point, determining the terminal access point of the affiliated access terminal with wireless network sharing based on the corresponding relation between the specific message characteristics of the access point and each terminal access point. Therefore, the wireless network system completes the detection of wireless sharing without deploying gateway equipment with a wireless network sharing detection function.

Description

Wireless sharing detection method, device, system and computer readable storage medium
Technical Field
The present application relates to the field of network communication technologies, and in particular, to a wireless sharing detection method, apparatus, system, and computer-readable storage medium.
Background
Under the normal condition of network communication, a legal terminal can normally access a wireless network to carry out legal network access, but many terminal devices have a wireless network sharing function, and the legal terminal shares the wireless network to a terminal without network access authority in a network sharing mode.
The above-mentioned wireless Network sharing is usually that a legal terminal uses NAT (Network Address Translation) to share, and when a terminal without Network access authority accesses a Network, information is converted into information of a legal terminal locked for connection to perform Network connection.
At present, the main means for detecting the shared wireless network is as follows: and acquiring and analyzing the terminal flow through the exit gateway equipment, and finally detecting whether a network sharing behavior exists according to an analysis result. In the prior art, whether a network sharing behavior exists in a network needs to be judged by analyzing traffic, so that the requirement on the computing capacity of an exit gateway is high, and the deployment cost is high.
Disclosure of Invention
In view of this, embodiments of the present application provide a wireless sharing detection method, apparatus, system, and computer readable storage medium to solve the problems in the prior art that it is necessary to determine whether a network sharing behavior exists in a network by analyzing traffic, which has a high requirement on the computing capability of an egress gateway and a high deployment cost.
The embodiment of the application provides a wireless sharing detection method, which is applied to a wireless access controller, wherein the wireless access controller is connected with a terminal access point and a detection access point through a switch, the number of the terminal access points is one or more, and the method comprises the following steps: detecting the presence of an abnormally deployed wireless network; controlling each terminal access point to send an access point detection message to an access terminal connected with the terminal access point, so that the access terminal shared by the wireless network sends the access point detection message out, wherein the access point detection message has access point specific message characteristics, and the access point specific message characteristics corresponding to each terminal access point are different; and after the detection access point receives a message which is not sent by the terminal access point and accords with the specific message characteristics of the access point, determining the terminal access point of the access terminal with wireless network sharing based on the corresponding relation between the specific message characteristics of the access point and each terminal access point.
In the implementation mode, the terminal access points are controlled by the wireless access controller to send access point detection messages to the access terminals connected with the terminal access points, so that according to the characteristic that the access terminals can send data related to the access point detection messages when the access terminals share the wireless network, the terminal access points shared by the wireless network are located according to the data received by the detection access points, the wireless network system can perform shared wireless network detection by virtue of the self capacity by monitoring the access point detection messages, and the exit gateway equipment does not need to be additionally deployed or is required to have wireless network shared detection capacity, so that the network deployment cost is reduced.
Optionally, the detecting that there is an abnormally deployed wireless network includes: sending a channel to be monitored to the detection access point so that the detection access point can obtain first monitoring data in the channel to be monitored; after the first monitoring data indicates that a wireless network which is not released by the wireless access controller exists, the first monitoring data indicates that the abnormally deployed wireless network exists.
In the implementation mode, the wireless access controller monitors the channel to be monitored by detecting the access point, and deploys the precondition for the monitoring trigger of the abnormally deployed wireless network, so that the real-time monitoring of the abnormally deployed wireless network in the specified range is ensured, and the timeliness of discovering the abnormally deployed wireless network is improved.
Optionally, after determining that the access terminal has a terminal access point shared by a wireless network based on the correspondence between the specific packet feature and each terminal access point, the method further includes: generating a terminal detection message aiming at each access terminal connected with a terminal access point with wireless network sharing, wherein the terminal detection message has terminal specific message characteristics, and the terminal specific message characteristics corresponding to each access terminal are different; controlling the terminal access point with wireless network sharing to send a terminal detection message corresponding to each access terminal; and after the detection access point receives a message which is not sent by the access terminal and accords with the specific message characteristics of the terminal, the access terminal with wireless network sharing is detected based on the corresponding relation between the specific message characteristics of the terminal and each access terminal.
In the implementation mode, the access terminal shared by the wireless network is positioned in the same mode as the access point of the terminal for detecting the wireless network sharing based on the message monitoring of the specific message characteristics, so that the terminal sharing the wireless network can be accurately positioned and the information of the shared wireless network can be determined, and meanwhile, the message monitored based on the specific message characteristics of the terminal also provides conditions for positioning the terminal using the wireless network.
The embodiment of the application also provides a wireless sharing detection method, which is applied to detecting the access point, wherein the detection access point is connected with the wireless access controller through a switch, and the method comprises the following steps: acquiring first monitoring data in a channel to be monitored; sending the first monitoring data to the wireless access controller so that the wireless access controller detects that an abnormally deployed wireless network exists, and controls each terminal access point to send an access point detection message to each connected access terminal, wherein the access point detection message has access point specific message characteristics, and the access point specific message characteristics corresponding to each terminal access point are different; and acquiring second monitoring data in the channel to be monitored, and sending the second monitoring data to the wireless access controller, so that the wireless access controller determines a terminal access point of the affiliated access terminal with wireless network sharing based on the corresponding relation between the specific message characteristics of the access point and each terminal access point after the second monitoring data indicates that a message which is not sent by the terminal access point and accords with the specific message characteristics of the access point is received, wherein the specific message characteristics of the access point corresponding to each terminal access point are different.
In the implementation mode, the detection access point performs channel monitoring under the control of the wireless access controller, and monitors messages according with the specific message characteristics of the access point according to the characteristic that the access terminal can send out the relevant data of the access point detection messages when the access terminal performs wireless network sharing, so that the wireless access controller is matched to monitor the access point detection messages, a wireless network system can perform shared wireless network detection by virtue of the self capacity, and no additional outlet gateway equipment is required to be deployed or the outlet gateway equipment is required to have wireless network shared detection capacity, thereby reducing the network deployment cost.
Optionally, the method further comprises: and acquiring third monitoring data in the channel to be monitored, and sending the third monitoring data to the wireless access controller, so that the wireless access controller detects that the access terminal sharing the wireless network exists based on the corresponding relation between the specific message characteristics of the terminal and each access terminal after the detection access point receives the message which is not sent by the access terminal and accords with the specific message characteristics of the terminal, wherein the specific message characteristics of the terminal corresponding to each access terminal are different.
In the implementation mode, the access terminal shared by the wireless network is positioned in the same mode as the access point of the terminal for detecting the wireless network sharing based on the message monitoring of the specific message characteristics, so that the terminal sharing the wireless network can be accurately positioned and the information of the shared wireless network can be determined, and meanwhile, the message monitored based on the specific message characteristics of the terminal also provides conditions for positioning the terminal using the wireless network.
Optionally, the access point-specific message features are different message lengths and/or message transmission intervals corresponding to each terminal access point, and the terminal-specific message features are different message lengths and/or message transmission intervals corresponding to each access terminal.
The embodiment of the present application further provides a wireless sharing detection device, which is applied to a wireless access controller, the wireless access controller is connected with a terminal access point and a detection access point through a switch, the terminal access point is one or more, the device includes: the abnormal network detection module is used for detecting that an abnormal deployment wireless network exists; a detection message sending module, configured to control each terminal access point to send an access point detection message to an access terminal connected to the terminal access point, so that the access terminal shared in the wireless network sends the access point detection message out, where the access point detection message has access point-specific message characteristics, and the access point-specific message characteristics corresponding to each terminal access point are different; and the access point positioning module is used for determining the terminal access point of the affiliated access terminal with wireless network sharing based on the corresponding relation between the access point specific message characteristics and each terminal access point after the detection access point receives the message which is not sent by the terminal access point and accords with the access point specific message characteristics.
In the implementation mode, the terminal access points are controlled by the wireless access controller to send access point detection messages to the access terminals connected with the terminal access points, so that according to the characteristic that the access terminals can send data related to the access point detection messages when the access terminals share the wireless network, the terminal access points shared by the wireless network are located according to the data received by the detection access points, the wireless network system can perform shared wireless network detection by virtue of the self capacity by monitoring the access point detection messages, and the exit gateway equipment does not need to be additionally deployed or is required to have wireless network shared detection capacity, so that the network deployment cost is reduced.
Optionally, the abnormal network detecting module is specifically configured to: sending a channel to be monitored to the detection access point so that the detection access point can obtain first monitoring data in the channel to be monitored; after the first monitoring data indicates that a wireless network which is not released by the wireless access controller exists, the first monitoring data indicates that the abnormally deployed wireless network exists.
In the implementation mode, the wireless access controller monitors the channel to be monitored by detecting the access point, and deploys the precondition for the monitoring trigger of the abnormally deployed wireless network, so that the real-time monitoring of the abnormally deployed wireless network in the specified range is ensured, and the timeliness of discovering the abnormally deployed wireless network is improved.
Optionally, the wireless sharing detection apparatus further includes: the terminal positioning module is used for generating a terminal detection message aiming at each access terminal connected with a terminal access point with wireless network sharing, wherein the terminal detection message has terminal specific message characteristics, and the terminal specific message characteristics corresponding to each access terminal are different; controlling the terminal access point with wireless network sharing to send a terminal detection message corresponding to each access terminal; and after the detection access point receives a message which is not sent by the access terminal and accords with the specific message characteristics of the terminal, the access terminal with wireless network sharing is detected based on the corresponding relation between the specific message characteristics of the terminal and each access terminal.
In the implementation mode, the access terminal shared by the wireless network is positioned in the same mode as the access point of the terminal for detecting the wireless network sharing based on the message monitoring of the specific message characteristics, so that the terminal sharing the wireless network can be accurately positioned and the information of the shared wireless network can be determined, and meanwhile, the message monitored based on the specific message characteristics of the terminal also provides conditions for positioning the terminal using the wireless network.
The embodiment of the present application further provides a wireless sharing detection device, which is applied to detecting an access point, the detecting access point is connected to a wireless access controller through a switch, and the device includes: the monitoring module is used for acquiring first monitoring data in a channel to be monitored; a first sending module, configured to send the first monitoring data to the wireless access controller, so that the wireless access controller detects that an abnormally deployed wireless network exists, and controls each terminal access point to send an access point detection packet to an access terminal connected to the access point detection packet, where the access point detection packet has access point-specific packet characteristics, and the access point-specific packet characteristics corresponding to each terminal access point are different; and the second sending module is used for acquiring second monitoring data in the channel to be monitored and sending the second monitoring data to the wireless access controller, so that the wireless access controller determines the terminal access point of the access terminal to which the wireless network sharing exists based on the corresponding relation between the specific message characteristics of the access point and each terminal access point after the second monitoring data indicates that a message which is not sent by the terminal access point and accords with the specific message characteristics of the access point is received, and the specific message characteristics of the access point corresponding to each terminal access point are different.
In the implementation mode, the detection access point performs channel monitoring under the control of the wireless access controller, and monitors messages according with the specific message characteristics of the access point according to the characteristic that the access terminal can send out the relevant data of the access point detection messages when the access terminal performs wireless network sharing, so that the wireless access controller is matched to monitor the access point detection messages, a wireless network system can perform shared wireless network detection by virtue of the self capacity, and no additional outlet gateway equipment is required to be deployed or the outlet gateway equipment is required to have wireless network shared detection capacity, thereby reducing the network deployment cost.
Optionally, the wireless sharing detection apparatus further includes: and the third sending module is used for acquiring third monitoring data in the channel to be monitored and sending the third monitoring data to the wireless access controller, so that the wireless access controller detects the access terminal with wireless network sharing based on the corresponding relation between the specific message characteristics of the terminal and each access terminal after the detection access point receives a message which is not sent by the access terminal and accords with the specific message characteristics of the terminal, and the specific message characteristics of the terminal corresponding to each access terminal are different.
In the implementation mode, the access terminal shared by the wireless network is positioned in the same mode as the access point of the terminal for detecting the wireless network sharing based on the message monitoring of the specific message characteristics, so that the terminal sharing the wireless network can be accurately positioned and the information of the shared wireless network can be determined, and meanwhile, the message monitored based on the specific message characteristics of the terminal also provides conditions for positioning the terminal using the wireless network.
The embodiment of the application also provides a wireless sharing detection system, which comprises a wireless access controller, a switch, a terminal access point and a detection access point, wherein the wireless access controller is connected with the terminal access point and the detection access point through the switch; the terminal access point is used for acquiring monitoring data in a channel to be monitored; the switch is used for performing data exchange among the wireless access controller, the terminal access point and the detection access point; the wireless access controller is used for controlling each terminal access point to send the access point detection message to the respective connected access terminal after detecting that the abnormal deployment wireless network exists, wherein the access point detection message has access point specific message characteristics, and the access point specific message characteristics corresponding to each terminal access point are different; each terminal access point is used for sending the access point detection message to the access terminal connected with the terminal access point; and the detection access point is used for determining the terminal access point of the affiliated access terminal with wireless network sharing based on the corresponding relation between the access point specific message characteristics and each terminal access point after the detection access point receives the message which is not sent by the terminal access point and accords with the access point specific message characteristics.
An embodiment of the present application further provides a computer-readable storage medium, where computer program instructions are stored in the computer-readable storage medium, and when the computer program instructions are read and executed by a processor, the steps in any of the above implementation manners are performed.
Drawings
In order to more clearly illustrate the technical solutions of the embodiments of the present application, the drawings that are required to be used in the embodiments of the present application will be briefly described below, it should be understood that the following drawings only illustrate some embodiments of the present application and therefore should not be considered as limiting the scope, and that those skilled in the art can also obtain other related drawings based on the drawings without inventive efforts.
Fig. 1 is a schematic structural diagram of a wireless sharing detection apparatus according to an embodiment of the present disclosure.
Fig. 2 is a flowchart illustrating a wireless sharing detection method according to an embodiment of the present application.
Fig. 3 is a block diagram of a wireless sharing detection apparatus applied to a radio access controller according to an embodiment of the present application.
Fig. 4 is a block diagram of a wireless sharing detection apparatus for detecting an access point according to an embodiment of the present application.
Icon: 10-wireless shared detection system; 11-a radio access controller; 12-a switch; 121-core switches; 122-an access switch; 13-terminal access point; 14-detecting an access point; 15-an access terminal; 16-an egress gateway; 17-the internet; 20-wireless sharing detection means; 21-abnormal network detection module; 22-detection message sending module; 23-an access point location module; 30-wireless sharing detection means; 31-a listening module; 32-a first sending module; 33-second sending module.
Detailed Description
The technical solution in the embodiments of the present application will be described below with reference to the drawings in the embodiments of the present application.
First, a wireless sharing detection system 10 that may be involved in executing a wireless sharing detection method according to an embodiment of the present application is described, please refer to fig. 1, where fig. 1 is a schematic structural diagram of a wireless sharing detection system according to an embodiment of the present application.
The wireless sharing detection system 10 comprises a wireless access controller 11, a switch 12, a terminal access point 13 and a detection access point 14, wherein the wireless access controller 11 is in communication connection with the terminal access point 13 and the detection access point 14 through the switch 12, and the terminal access point 13 is in communication connection with an access terminal 15.
A wireless Access controller 11, referred to as ac (wireless Access Point controller), is a network device for centralized control of a wireless Access Point (AP), and is generally used for issuing configuration to the AP, modifying related configuration parameters, performing radio frequency intelligent management, performing Access security control, and the like. The terminal access point 13 is a wireless access point to which the terminal is connected, and the detection access point 14 is a wireless access point for detecting whether or not a shared wireless network exists.
Alternatively, the switch 12 in this embodiment may include a core switch 121 and an access switch 122, the main purpose of the core switch 121 is to provide a fast and reliable backbone transport structure through high-speed forwarding communication, and the main purpose of the access switch 122 is to allow end users to connect to the network, so the core switch 121 in this embodiment is also communicatively connected to the internet 17 through the egress gateway 16.
The number of the terminal access points 13 may be one or more, each terminal access point 13 is used for connecting the access terminal 15 through a wireless network, and the access terminal 15 accessed by each terminal access point 13 may be one or more.
Alternatively, the terminal access point 13 in this embodiment may be a routing switching integrated device, a pure access point device, or other access devices with a terminal access function.
It should be understood that the detection access point 14 in this embodiment may be the same type of wireless access point as the terminal access point 13, but the detection access point 14 does not provide access to the access terminal 15, but rather performs data monitoring on the wireless network in the surrounding environment.
For the access terminal 15, there may be a situation that the access terminal 15 of a certain legal access terminal access point 13 shares the wireless network out for other terminals to use through the network sharing tool, and the wireless sharing detection device 10 can complete the detection of wireless sharing through the wireless network system itself without deploying a gateway device with a wireless network sharing detection function.
Referring to fig. 2, fig. 2 is a schematic flow chart of a wireless sharing detection method according to an embodiment of the present application, where the method includes the following specific steps:
the terminal access points 13 are registered to the wireless access controller 11, the management of the terminal access points 13 is carried out through the wireless access controller 11, and the wireless access controller 11 controls one or more terminal access points 13 to release a normally deployed wireless network.
The wireless access controller 11 sends the relevant information of the channel to be monitored to the detection access point 14, and the detection access point 14 monitors the channel to be monitored according to the relevant information of the channel to be monitored.
Optionally, the detecting access point 14 in this embodiment may listen to the channel to be monitored in a polling manner, so as to obtain the first listening data.
Optionally, the first listening data may include one or more types of data capable of indicating identities of the wireless network and the communication device, such as beacon frames, probe requests, probe responses, and terminal data messages.
The detection access point 14 analyzes the wireless network existing in each channel based on the monitoring data, or the detection access point 14 sends the monitoring data to the wireless access controller 11, and the wireless network existing in each channel is analyzed according to the monitoring data through the wireless access controller 11.
Next, the detecting access point 14 determines whether the wireless network is a normally deployed wireless network released by the wireless access controller 11 based on the analyzed name of the wireless network, the wireless network BSSID (Basic Service Set Identity), and the like.
Specifically, when the information such as the name of the wireless network and the wireless network BSSID indicates that the wireless network is not configured by the radio access controller 11, it indicates that the detection access point 14 detects that the wireless network is an abnormally deployed wireless network.
When the detection access point 14 detects that there is an abnormally deployed wireless network, it records the related information (such as the name of the wireless network, the wireless network BSSID, the working channel, etc.) of the abnormally deployed wireless network.
After the polling detection of the channel to be monitored by the detection access point 14 is completed, the detected and recorded related information of the abnormally deployed wireless network is reported to the wireless access controller 11.
Optionally, in this embodiment, the detection access point 14 may directly send related information of the wireless network (for example, a name of the wireless network, a wireless network BSSID, a working channel, and the like) to the wireless access controller 11, and the wireless access controller 11 determines whether the wireless network is a normally deployed wireless network released by the wireless access controller 11 based on the name of the wireless network and the wireless network BSSID without performing abnormal deployment or normal deployment of the wireless network.
After determining that an abnormally deployed wireless network exists, the wireless access controller 11 sends a management message to the terminal access points 13 in the abnormally deployed wireless network area, where the management message includes access point-specific message feature configurations corresponding to each terminal access point 13, so as to notify the terminal access points 13 in the abnormally deployed wireless network area to generate access point detection messages based on the corresponding access point-specific message feature configurations, and send corresponding access point detection messages to the access terminals 15 connected to the terminal access points.
The message lengths and/or message transmission intervals configured for different terminal access points 13 are used as access point specific message characteristics corresponding to the different terminal access points 13, and the access point specific message characteristics of the access point detection messages corresponding to each terminal access point 13 are different.
Alternatively, the terminal access point 13 may send an access point detection message to the respective connected access terminal 15 through a User Datagram Protocol (UDP) communication port in use.
After receiving the access point detection message, the terminal access point 13 will send out the access point detection message through the connected access terminal 15 if it is in the wireless network sharing state, and if the access terminal 15 of the terminal access point 13 has illegal wireless network sharing, the access terminal 15 will send the access point detection message through the abnormally deployed wireless network.
The access point-specific message characteristics may be data having differences in message length, message transmission interval, and the like.
For the message length, the radio access controller 11 needs to locally calculate the actual message length when the shared radio network is not encrypted and when different encryption algorithms are used. Furthermore, the terminal access point 13 needs to record the UDP port being used by the access terminal 15 accessing itself.
Next, the radio access controller 11 issues data configuring a radio network requiring the detection access point 14 to monitor channels and BSSIDs corresponding to the abnormally deployed radio network, and issues a specific message feature of the access point to be detected to the detection access point 14.
For example, when the detection access point 14 detects an abnormally deployed wireless network with BSSID of 1.1.1 and channel of 11, the wireless access controller 11 issues all messages configured to require the detection access point 14 to monitor the channel of 11 and the BSSID of 1.1.1.
By detecting the continuous monitoring of the access point 14, second monitoring data is acquired in the channel to be monitored, the message length and/or the message sending interval of the message in the second monitoring data is analyzed, when the message with the message length and/or the message sending interval identical to the specific message characteristic of the access point exists in the second monitoring data, the message meeting the specific message characteristic of the access point is judged, and the message meeting the specific message characteristic of the access point in the second monitoring data is sent to the wireless access controller 11 as a detection result.
Optionally, in this embodiment, the detection access point 14 may also directly send the second monitoring data to the wireless access controller 11, and the wireless access controller 11 determines whether a packet meeting the access point-specific packet feature exists in the second monitoring data.
After receiving the message satisfying the specific message characteristics of the access point sent by the detection access point 14, the wireless access controller 11 determines that there is a terminal access point 13 of an abnormally deployed wireless network based on the message satisfying the specific message characteristics of the access point, and records a wireless network SSID (Service Set Identifier), a BSSID, a channel, an encryption mode, and the like of the abnormally deployed wireless network.
Optionally, the manner of determining whether the terminal access point 13 of the wireless network is abnormally deployed based on the message meeting the access point specific message feature may be that when the message is not sent by the registered terminal access point 13 in the wireless access controller 11 and has the access point specific message feature, it is determined that the terminal access point 13 corresponding to the message has the abnormally deployed network.
Since the message satisfying the specific message characteristic of the access point is used as the second monitoring data which is the same as the first monitoring data and includes data capable of representing the identities of the wireless network and the communication device, the terminal access point 13 having an abnormally deployed network can be located based on the message.
Thus, the present embodiment completes the positioning of the terminal access point 13 performing the illegal wireless network sharing, and then may also perform the positioning of the access terminal 15 performing the illegal wireless network sharing.
The wireless access controller 11, according to the monitored existence of the terminal access point 13 shared by the wireless network, sends a management message to each access terminal 15 connected to the terminal access point 13, where the management message includes a terminal-specific message feature configuration corresponding to each access terminal 15, so as to notify the terminal access point 13 in the area of the abnormally deployed wireless network to generate a terminal detection message based on the corresponding terminal-specific message feature configuration, and send the corresponding terminal detection message to the respective connected access terminal 15.
The message lengths and/or message transmission intervals configured for different access terminals 15 are used as terminal-specific message characteristics corresponding to the different access terminals 15, and the terminal-specific message characteristics of the message detected by the terminal corresponding to each access terminal 15 are different. It should be understood that, in this embodiment, the step of subsequently positioning the access terminal 15 for performing wireless network sharing by the wireless access controller 11, the terminal access point 13, and the detection access point 14 is similar to the step of determining the terminal access point 13 for performing wireless network sharing, except that the wireless access controller 11 issues configuration to make the access terminal 15 connected to the terminal access point 13 for performing illegal wireless network sharing perform sending of the terminal detection message, and then detects the message with the terminal specific message characteristic through the detection access point 14, and other steps are not described herein again.
It should be understood that, in the present embodiment, the detection and the positioning of the abnormally deployed wireless network are repeated for each terminal access point 13 and the access terminal 15, and the detection of the illegal wireless network sharing can be completed for all the terminal access points 13 and the access terminals 15 controlled by the wireless access controller 11.
Optionally, in this embodiment, the radio access controller 11 may start or execute the above-mentioned wireless sharing detection method according to a manual instruction or according to a cycle, and execute the above-mentioned wireless sharing detection method according to a specified time period, so as to complete detection of illegal wireless network sharing.
In order to cooperate with the wireless sharing detection method, embodiments of the present application provide a wireless sharing detection apparatus for a wireless access controller and a detection access point, respectively.
Referring to fig. 3, fig. 3 is a block diagram of a wireless sharing detection apparatus applied to a radio access controller according to an embodiment of the present application.
The wireless sharing detection device 20 applied to the wireless access controller includes:
the abnormal network detection module 21 is used for detecting that an abnormal deployment wireless network exists;
a detection message sending module 22, configured to control each terminal access point to send an access point detection message to each connected access terminal, so that the access terminal in the wireless network share sends an access point detection message to the outside, where the access point detection message has access point-specific message characteristics, and the access point-specific message characteristics corresponding to each terminal access point are different;
And the access point positioning module 23 is configured to determine, after detecting that the access point receives a message that is not sent by the terminal access point and conforms to the specific message characteristics of the access point, a terminal access point of the access terminal that the access point belongs to which the wireless network sharing exists based on a corresponding relationship between the specific message characteristics of the access point and each terminal access point.
Optionally, the abnormal network detecting module 21 is specifically configured to: sending a channel to be monitored to a detection access point so that the detection access point can acquire first monitoring data in the channel to be monitored; after the first listening data indicates that a wireless network which is not released by the wireless access controller exists, the first listening data indicates that an abnormally deployed wireless network exists.
Optionally, the wireless sharing detection apparatus 20 further includes: the terminal positioning module is used for generating a terminal detection message aiming at each access terminal connected with a terminal access point with wireless network sharing, wherein the terminal detection message has terminal specific message characteristics, and the terminal specific message characteristics corresponding to each access terminal are different; controlling a terminal access point with wireless network sharing to send a terminal detection message corresponding to each access terminal; after the detection access point receives the message which is not sent by the access terminal and accords with the specific message characteristics of the terminal, the access terminal shared by the wireless network is detected based on the corresponding relation between the specific message characteristics of the terminal and each access terminal.
Referring to fig. 4, fig. 4 is a block diagram of a wireless sharing detection apparatus for detecting an access point according to an embodiment of the present disclosure.
The wireless sharing detection apparatus 30 applied to detect an access point includes:
the monitoring module 31 is configured to obtain first monitored data in a channel to be monitored;
a first sending module 32, configured to send the first monitoring data to the wireless access controller, so that the wireless access controller detects that an abnormally deployed wireless network exists, and controls each terminal access point to send an access point detection packet to each connected access terminal, where the access point detection packet has access point-specific packet characteristics, and the access point-specific packet characteristics corresponding to each terminal access point are different;
the second sending module 33 is configured to obtain second monitoring data in the channel to be monitored, and send the second monitoring data to the wireless access controller, so that the wireless access controller determines, based on a correspondence between the access point specific packet characteristics and each terminal access point, a terminal access point where the access terminal belongs to has wireless network sharing after the second monitoring data indicates that a packet which is not sent by the terminal access point and conforms to the access point specific packet characteristics is received, where the access point specific packet characteristics corresponding to each terminal access point are different.
Optionally, the wireless sharing detection apparatus 30 further includes: and the third sending module is used for acquiring third monitoring data in a channel to be monitored and sending the third monitoring data to the wireless access controller, so that the wireless access controller detects that the access terminals shared by the wireless network exist based on the corresponding relation between the specific message characteristics of the terminals and each access terminal after detecting that the access point receives a message which is not sent by the access terminal and accords with the specific message characteristics of the terminals, and the specific message characteristics of the terminals corresponding to each access terminal are different.
Optionally, the access point-specific message features are different message lengths and/or message transmission intervals corresponding to each access terminal, and the terminal-specific message features are different message lengths and/or message transmission intervals corresponding to each access terminal.
The embodiment of the present application further provides a computer-readable storage medium, in which computer program instructions are stored, and when the computer program instructions are read and executed by a processor, the steps in the wireless sharing detection method are executed.
To sum up, the embodiment of the present application provides a method, an apparatus, a system and a computer-readable storage medium for wireless sharing detection, where the method applied to a wireless access controller includes: detecting the presence of an abnormally deployed wireless network; controlling each terminal access point to send an access point detection message to an access terminal connected with the terminal access point, so that the access terminal shared by the wireless network sends the access point detection message out, wherein the access point detection message has access point specific message characteristics, and the access point specific message characteristics corresponding to each terminal access point are different; and after the detection access point receives a message which is not sent by the terminal access point and accords with the specific message characteristics of the access point, determining the terminal access point of the access terminal with wireless network sharing based on the corresponding relation between the specific message characteristics of the access point and each terminal access point.
In the implementation mode, the terminal access points are controlled by the wireless access controller to send access point detection messages to the access terminals connected with the terminal access points, so that according to the characteristic that the access terminals can send data related to the access point detection messages when the access terminals share the wireless network, the terminal access points shared by the wireless network are located according to the data received by the detection access points, the wireless network system can perform shared wireless network detection by virtue of the self capacity by monitoring the access point detection messages, and the exit gateway equipment does not need to be additionally deployed or is required to have wireless network shared detection capacity, so that the network deployment cost is reduced.
In the embodiments provided in the present application, it should be understood that the disclosed apparatus may be implemented in other manners. The apparatus embodiments described above are merely illustrative, and for example, the block diagrams in the figures illustrate the architecture, functionality, and operation of possible implementations of devices according to various embodiments of the present application. In this regard, each block in the block diagrams may represent a module, segment, or portion of code, which comprises one or more executable instructions for implementing the specified logical function(s). It should also be noted that, in some alternative implementations, the functions noted in the block may occur out of the order noted in the figures. For example, two blocks shown in succession may, in fact, be executed substantially concurrently, or the blocks may sometimes be executed in the reverse order, depending upon the functionality involved. It will also be noted that each block of the block diagrams, and combinations of blocks in the block diagrams, can be implemented by special purpose hardware-based systems which perform the specified functions or acts, or combinations of special purpose hardware and computer instructions.
In addition, functional modules in the embodiments of the present application may be integrated together to form an independent part, or each module may exist separately, or two or more modules may be integrated to form an independent part.
The functions, if implemented in the form of software functional modules and sold or used as a stand-alone product, may be stored in a computer readable storage medium. Therefore, the present embodiment further provides a readable storage medium, in which computer program instructions are stored, and when the computer program instructions are read and executed by a processor, the computer program instructions perform the steps of any of the block data storage methods. Based on such understanding, the technical solution of the present application or portions thereof that substantially contribute to the prior art may be embodied in the form of a software product stored in a storage medium and including instructions for causing a computer device (which may be a personal computer, a server, or a network device) to execute all or part of the steps of the method according to the embodiments of the present application. And the aforementioned storage medium includes: various media capable of storing program codes, such as a usb disk, a removable hard disk, a Read-Only Memory (ROM), a RanDom Access Memory (RAM), a magnetic disk, or an optical disk.
The above description is only an example of the present application and is not intended to limit the scope of the present application, and various modifications and changes may be made by those skilled in the art. Any modification, equivalent replacement, improvement and the like made within the spirit and principle of the present application shall be included in the protection scope of the present application. It should be noted that: like reference numbers and letters refer to like items in the following figures, and thus, once an item is defined in one figure, it need not be further defined and explained in subsequent figures.
It is noted that, herein, relational terms such as first and second, and the like may be used solely to distinguish one entity or action from another entity or action without necessarily requiring or implying any actual such relationship or order between such entities or actions. Also, the terms "comprises," "comprising," or any other variation thereof, are intended to cover a non-exclusive inclusion, such that a process, method, article, or apparatus that comprises a list of elements does not include only those elements but may include other elements not expressly listed or inherent to such process, method, article, or apparatus. Without further limitation, an element defined by the phrase "comprising … …" does not exclude the presence of other identical elements in a process, method, article, or apparatus that comprises the element.

Claims (10)

1. A wireless sharing detection method is applied to a wireless access controller, the wireless access controller is connected with a terminal access point and a detection access point through a switch, the number of the terminal access points is one or more, and the method comprises the following steps:
detecting the presence of an abnormally deployed wireless network;
controlling each terminal access point to send an access point detection message to an access terminal connected with the terminal access point, so that the access terminal shared by the wireless network sends the access point detection message out, wherein the access point detection message has access point specific message characteristics, and the access point specific message characteristics corresponding to each terminal access point are different;
and after the detection access point receives a message which is not sent by the terminal access point and accords with the specific message characteristics of the access point, determining the terminal access point of the access terminal with wireless network sharing based on the corresponding relation between the specific message characteristics of the access point and each terminal access point.
2. The method of claim 1, wherein the detecting the presence of the abnormally deployed wireless network comprises:
sending a channel to be monitored to the detection access point so that the detection access point can obtain first monitoring data in the channel to be monitored;
After the first monitoring data indicates that a wireless network which is not released by the wireless access controller exists, the first monitoring data indicates that the abnormally deployed wireless network exists.
3. The method according to claim 1, wherein after determining that there is a terminal access point sharing in the access terminal based on the correspondence between the access point-specific packet characteristics and each of the terminal access points, the method further comprises:
generating a terminal detection message aiming at each access terminal connected with a terminal access point with wireless network sharing, wherein the terminal detection message has terminal specific message characteristics, and the terminal specific message characteristics corresponding to each access terminal are different;
controlling the terminal access point with wireless network sharing to send a terminal detection message corresponding to each access terminal;
and after the detection access point receives a message which is not sent by the access terminal and accords with the specific message characteristics of the terminal, the access terminal with wireless network sharing is detected based on the corresponding relation between the specific message characteristics of the terminal and each access terminal.
4. A wireless sharing detection method is applied to detecting an access point, wherein the detecting access point is connected with a wireless access controller through a switch, and the method comprises the following steps:
acquiring first monitoring data in a channel to be monitored;
sending the first monitoring data to the wireless access controller so that the wireless access controller detects that an abnormally deployed wireless network exists, and controls each terminal access point to send an access point detection message to each connected access terminal, wherein the access point detection message has access point specific message characteristics, and the access point specific message characteristics corresponding to each terminal access point are different;
and acquiring second monitoring data in the channel to be monitored, and sending the second monitoring data to the wireless access controller, so that the wireless access controller determines a terminal access point of the affiliated access terminal with wireless network sharing based on the corresponding relation between the specific message characteristics of the access point and each terminal access point after the second monitoring data indicates that a message which is not sent by the terminal access point and accords with the specific message characteristics of the access point is received, wherein the specific message characteristics of the access point corresponding to each terminal access point are different.
5. The method of claim 4, further comprising:
and acquiring third monitoring data in the channel to be monitored, and sending the third monitoring data to the wireless access controller, so that the wireless access controller detects that the access terminal sharing the wireless network exists based on the corresponding relation between the specific message characteristics of the terminal and each access terminal after the detection access point receives the message which is not sent by the access terminal and accords with the specific message characteristics of the terminal, wherein the specific message characteristics of the terminal corresponding to each access terminal are different.
6. The method of claim 4, wherein the access point-specific packet characteristics are different packet lengths and/or packet transmission intervals corresponding to each access terminal, and wherein the terminal-specific packet characteristics are different packet lengths and/or packet transmission intervals corresponding to each access terminal.
7. A wireless sharing detection device is applied to a wireless access controller, the wireless access controller is connected with a terminal access point and a detection access point through a switch, the terminal access points are one or more, and the device comprises:
The abnormal network detection module is used for detecting that an abnormal deployment wireless network exists;
a detection message sending module, configured to control each terminal access point to send an access point detection message to an access terminal connected to the terminal access point, so that the access terminal shared in the wireless network sends the access point detection message out, where the access point detection message has access point-specific message characteristics, and the access point-specific message characteristics corresponding to each terminal access point are different;
and the access point positioning module is used for determining the terminal access point of the affiliated access terminal with wireless network sharing based on the corresponding relation between the access point specific message characteristics and each terminal access point after the detection access point receives the message which is not sent by the terminal access point and accords with the access point specific message characteristics.
8. A wireless sharing detection apparatus, applied to a detection access point, the detection access point being connected to a wireless access controller through a switch, the apparatus comprising:
the monitoring module is used for acquiring first monitoring data in a channel to be monitored;
a first sending module, configured to send the first monitoring data to the wireless access controller, so that the wireless access controller detects that an abnormally deployed wireless network exists, and controls each terminal access point to send an access point detection packet to an access terminal connected to the access point detection packet, where the access point detection packet has access point-specific packet characteristics, and the access point-specific packet characteristics corresponding to each terminal access point are different;
And the second sending module is used for acquiring second monitoring data in the channel to be monitored and sending the second monitoring data to the wireless access controller, so that the wireless access controller determines the terminal access point of the access terminal to which the wireless network sharing exists based on the corresponding relation between the specific message characteristics of the access point and each terminal access point after the second monitoring data indicates that a message which is not sent by the terminal access point and accords with the specific message characteristics of the access point is received, and the specific message characteristics of the access point corresponding to each terminal access point are different.
9. A wireless sharing detection system is characterized by comprising a wireless access controller, a switch, a terminal access point and a detection access point, wherein the wireless access controller is connected with the terminal access point and the detection access point through the switch;
the terminal access point is used for acquiring monitoring data in a channel to be monitored;
the switch is used for performing data exchange among the wireless access controller, the terminal access point and the detection access point;
the wireless access controller is used for controlling each terminal access point to send the access point detection message to the respective connected access terminal after detecting that the abnormal deployment wireless network exists, wherein the access point detection message has access point specific message characteristics, and the access point specific message characteristics corresponding to each terminal access point are different;
Each terminal access point is used for sending the access point detection message to the access terminal connected with the terminal access point;
and the detection access point is used for determining the terminal access point of the affiliated access terminal with wireless network sharing based on the corresponding relation between the access point specific message characteristics and each terminal access point after the detection access point receives the message which is not sent by the terminal access point and accords with the access point specific message characteristics.
10. A computer-readable storage medium having computer program instructions stored thereon for execution by a processor to perform the steps of the method of any one of claims 1-6.
CN202110927298.0A 2021-08-09 2021-08-09 Wireless sharing detection method, device, system and computer readable storage medium Pending CN113630782A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN202110927298.0A CN113630782A (en) 2021-08-09 2021-08-09 Wireless sharing detection method, device, system and computer readable storage medium

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN202110927298.0A CN113630782A (en) 2021-08-09 2021-08-09 Wireless sharing detection method, device, system and computer readable storage medium

Publications (1)

Publication Number Publication Date
CN113630782A true CN113630782A (en) 2021-11-09

Family

ID=78385050

Family Applications (1)

Application Number Title Priority Date Filing Date
CN202110927298.0A Pending CN113630782A (en) 2021-08-09 2021-08-09 Wireless sharing detection method, device, system and computer readable storage medium

Country Status (1)

Country Link
CN (1) CN113630782A (en)

Citations (17)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20080066157A1 (en) * 2006-08-25 2008-03-13 Qwest Communications International Inc. Detection of unauthorized wireless access points
KR20120129129A (en) * 2011-05-19 2012-11-28 주식회사 케이티 System and method for detecting tethering
CN102843684A (en) * 2011-06-21 2012-12-26 航天信息股份有限公司 Method and system for detecting rogue wireless access point in local area network
CN103139015A (en) * 2013-02-08 2013-06-05 华为技术有限公司 Method, device and equipment of network sharing detection
US20130159503A1 (en) * 2011-12-19 2013-06-20 Jeffrey Erman Method and apparatus for detecting tethering in a communications network
CN103780430A (en) * 2014-01-20 2014-05-07 华为技术有限公司 Method and device for monitoring network equipment
US20140325615A1 (en) * 2011-11-30 2014-10-30 British Telecommunications Public Limited Company Rogue access point detection
US20140334317A1 (en) * 2013-05-09 2014-11-13 Avaya Inc. Rogue AP Detection
CN104378761A (en) * 2014-12-05 2015-02-25 迈普通信技术股份有限公司 Method, device and system for detecting illegal access devices
CN104852894A (en) * 2014-12-10 2015-08-19 北京奇虎科技有限公司 Wireless message monitor detecting method, system and central control server
CN105119901A (en) * 2015-07-17 2015-12-02 中国科学院信息工程研究所 Method and system for detecting phishing hotspot
US9226141B1 (en) * 2013-11-04 2015-12-29 Sprint Communications Company L.P. Identifying unsubscribed tethering in a wireless network
CN106507363A (en) * 2017-01-06 2017-03-15 北京锐云通信息技术有限公司 A kind of method for finding fishing access point
CN106973401A (en) * 2017-03-30 2017-07-21 深圳市磊科实业有限公司 A kind of detection suppressing method for being directed to rogue AP in wireless networking environment
CN107277771A (en) * 2017-07-06 2017-10-20 杭州敦崇科技股份有限公司 A kind of rogue AP detection suppression technology based on wireless location
CN110012469A (en) * 2019-04-29 2019-07-12 四川英得赛克科技有限公司 A kind of hotspot legitimacy quick discrimination method under industrial control condition
CN106658509B (en) * 2016-10-31 2020-02-04 迈普通信技术股份有限公司 Method and equipment for countering illegal wireless access point and wireless local area network

Patent Citations (17)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20080066157A1 (en) * 2006-08-25 2008-03-13 Qwest Communications International Inc. Detection of unauthorized wireless access points
KR20120129129A (en) * 2011-05-19 2012-11-28 주식회사 케이티 System and method for detecting tethering
CN102843684A (en) * 2011-06-21 2012-12-26 航天信息股份有限公司 Method and system for detecting rogue wireless access point in local area network
US20140325615A1 (en) * 2011-11-30 2014-10-30 British Telecommunications Public Limited Company Rogue access point detection
US20130159503A1 (en) * 2011-12-19 2013-06-20 Jeffrey Erman Method and apparatus for detecting tethering in a communications network
CN103139015A (en) * 2013-02-08 2013-06-05 华为技术有限公司 Method, device and equipment of network sharing detection
US20140334317A1 (en) * 2013-05-09 2014-11-13 Avaya Inc. Rogue AP Detection
US9226141B1 (en) * 2013-11-04 2015-12-29 Sprint Communications Company L.P. Identifying unsubscribed tethering in a wireless network
CN103780430A (en) * 2014-01-20 2014-05-07 华为技术有限公司 Method and device for monitoring network equipment
CN104378761A (en) * 2014-12-05 2015-02-25 迈普通信技术股份有限公司 Method, device and system for detecting illegal access devices
CN104852894A (en) * 2014-12-10 2015-08-19 北京奇虎科技有限公司 Wireless message monitor detecting method, system and central control server
CN105119901A (en) * 2015-07-17 2015-12-02 中国科学院信息工程研究所 Method and system for detecting phishing hotspot
CN106658509B (en) * 2016-10-31 2020-02-04 迈普通信技术股份有限公司 Method and equipment for countering illegal wireless access point and wireless local area network
CN106507363A (en) * 2017-01-06 2017-03-15 北京锐云通信息技术有限公司 A kind of method for finding fishing access point
CN106973401A (en) * 2017-03-30 2017-07-21 深圳市磊科实业有限公司 A kind of detection suppressing method for being directed to rogue AP in wireless networking environment
CN107277771A (en) * 2017-07-06 2017-10-20 杭州敦崇科技股份有限公司 A kind of rogue AP detection suppression technology based on wireless location
CN110012469A (en) * 2019-04-29 2019-07-12 四川英得赛克科技有限公司 A kind of hotspot legitimacy quick discrimination method under industrial control condition

Similar Documents

Publication Publication Date Title
KR101837923B1 (en) Profiling rogue access points
KR101453521B1 (en) Wireless access point apparatus and method for detecting unauthorized wireless lan node
Tang et al. Modeling and analysis of opportunistic spectrum sharing with unreliable spectrum sensing
JP2007067745A (en) Wireless terminal, management apparatus, control method of wireless lan, and wireless lan system
US20140379911A1 (en) Network Activity Association System and Method
CN107094293A (en) A kind of device and method for obtaining WiFi terminal real MAC address
JP2008141755A (en) Determining identifiers for wireless networks with hidden identifiers
EP2874367B1 (en) Call authentication method, device, and system
CN111182659B (en) Mode switching method and mode switching device of Mesh equipment and Mesh equipment
CN104580141A (en) Method and apparatus for detecting unauthorized access point
EP2218214B1 (en) Network location service
CN112469044A (en) Edge access control method and controller for heterogeneous terminal
JP6065916B2 (en) Information processing apparatus capable of analyzing communication behavior, mobile terminal control method, and computer program
CN108282551B (en) Message identification processing method and device, monitoring equipment and readable storage medium
CN111770094A (en) Access control method of wireless network and related device
CN113630782A (en) Wireless sharing detection method, device, system and computer readable storage medium
US20200396671A1 (en) Method for detecting and filtering out unauthorized wireless access point and device using the method
CN116719868A (en) Network asset identification method, device and equipment
EP2139279A1 (en) Systems and methods for monitoring performance of a communication system
CN113596089B (en) Distribution network binding method and device of equipment, storage medium and electronic device
JP2006217198A (en) Radio base station with a plurality of layer-2 functions
CN105792265A (en) Malicious traffic detection method and system and monitoring platform
CN113543282B (en) Wireless roaming method and system
CN109362091B (en) Ad hoc network-based AP (Access Point) diagnosis method and device
CN107566190B (en) Wireless access point management method and system

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination