CN117880805A - Network distribution method and device of intelligent equipment and electronic equipment - Google Patents

Network distribution method and device of intelligent equipment and electronic equipment Download PDF

Info

Publication number
CN117880805A
CN117880805A CN202311781644.4A CN202311781644A CN117880805A CN 117880805 A CN117880805 A CN 117880805A CN 202311781644 A CN202311781644 A CN 202311781644A CN 117880805 A CN117880805 A CN 117880805A
Authority
CN
China
Prior art keywords
key
network
target
intelligent
equipment
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN202311781644.4A
Other languages
Chinese (zh)
Inventor
张秀彤
李春光
徐玉姣
李威
周轩禹
聂利波
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Gree Electric Appliances Inc of Zhuhai
Zhuhai Lianyun Technology Co Ltd
Original Assignee
Gree Electric Appliances Inc of Zhuhai
Zhuhai Lianyun Technology Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Gree Electric Appliances Inc of Zhuhai, Zhuhai Lianyun Technology Co Ltd filed Critical Gree Electric Appliances Inc of Zhuhai
Priority to CN202311781644.4A priority Critical patent/CN117880805A/en
Publication of CN117880805A publication Critical patent/CN117880805A/en
Pending legal-status Critical Current

Links

Abstract

The application provides a network distribution method and device of intelligent equipment and electronic equipment, and belongs to the technical field of electronic equipment. The network distribution method of the intelligent equipment comprises the following steps: receiving a network allocation request broadcasted by a target intelligent device, wherein the network allocation request comprises a target device identifier of the target intelligent device; generating a target equipment key by adopting an installation password generating method according to the target equipment identifier; acquiring out-of-band configured reference key information, wherein the reference key information comprises equipment distribution network keys of at least one intelligent equipment which is connectable to a wireless access point corresponding to an intelligent gateway; performing key checking on the reference key information and the target device key; and under the condition that the target device key exists in the reference key information, sending network configuration information to the target intelligent device, wherein the network configuration information is used for the target intelligent device to connect with the wireless access point. The intelligent equipment network distribution method and device avoid the problem that the intelligent equipment of the network to be distributed has the network distribution error to a certain extent, and the success rate of the network distribution is improved.

Description

Network distribution method and device of intelligent equipment and electronic equipment
Technical Field
The application relates to the technical field of electronic equipment, in particular to a network distribution method and device of intelligent equipment and the electronic equipment.
Background
With the development of wireless communication technology, various intelligent electrical appliances such as intelligent sound boxes, intelligent televisions, intelligent door locks and the like are rapidly developed. When the intelligent equipment is used, the network distribution is usually needed to play a convenient function.
The current network distribution process of the intelligent equipment comprises the following steps: the network equipment to be distributed is connected with the intelligent gateway as an Access Point (AP) to receive wireless Access Point information comprising a network Access key sent by the intelligent gateway. And then, the equipment to be distributed is converted into a Station (STA) and is connected with a router by utilizing the information of the wireless access point, so that after the connection router is successful, a connection success message is transmitted to the intelligent gateway, and the distribution network is completed.
However, as intelligent devices increase, large-scale device networking scenarios gradually appear. And under the network access scene of the large-scale equipment, the plurality of equipment to be distributed are in a network distribution state at the same time, and data interaction is carried out between the equipment to be distributed and the intelligent gateway. However, the existing intelligent gateway does not need to perform identity verification on the equipment to be distributed when distributing the wireless receiving point information, so that the problem that the equipment to be distributed is wrongly distributed easily occurs, and the success rate of distribution is low.
Disclosure of Invention
In view of the above, the present application aims to provide a network distribution method and device for an intelligent device, and an electronic device, so as to solve the problem that the network distribution method for the intelligent device is easy to cause the network distribution error of the network distribution device to be distributed, and the network distribution success rate is low.
In order to achieve the above purpose, the technical scheme of the application is realized as follows:
in a first aspect, the present application provides a network allocation method of an intelligent device, applied to an intelligent gateway, where the method includes:
receiving a network allocation request broadcasted by a target intelligent device, wherein the network allocation request comprises a target device identifier of the target intelligent device;
generating a target equipment key by adopting an installation password generating method according to the target equipment identifier;
acquiring out-of-band configured reference key information, wherein the reference key information comprises a device distribution network key of at least one intelligent device which is connectable to a wireless access point corresponding to the intelligent gateway;
performing key verification on the reference key information and the target equipment key;
and under the condition that the target equipment key exists in the reference key information, sending network configuration information to the target intelligent equipment, wherein the network configuration information comprises a wireless local area network name of the wireless access point and a network key, and the network configuration information is used for the target intelligent equipment to connect with the wireless access point.
Optionally, the device distribution network key in the reference key information is updated periodically; the generating a target device key by adopting an installation password generating method according to the target device identifier comprises the following steps:
determining an initial key value and a salt value corresponding to the current updating period of the reference key information according to the target equipment identifier;
and generating a target equipment key with the length of the reference key by adopting a key derivation method according to the initial key value, the salt value, the reference iteration times and the reference key length.
Optionally, when the update opportunity of the reference key information is met, the device distribution network key is data generated by adopting a key derivation method according to the reference iteration times, the reference key length, the initial key value and the salt value of the intelligent device, the initial key value of the intelligent device is data generated by adopting a data generation algorithm corresponding to the current update period of the reference key information according to the device identification of the intelligent device, and the salt value of the intelligent device is the device identification of the intelligent device;
the determining, according to the target device identifier, the initial key value and the salt value corresponding to the reference key information in the current update period includes:
Generating an initial key value of the target intelligent device by adopting a data generation algorithm corresponding to the current updating period of the reference key information according to the target device identifier;
and determining the target equipment identification as the salt value of the target intelligent equipment.
Optionally, the target device identification includes at least one of the following data: the intelligent device comprises a media access control address, a universal unique identification code and a personal identification code.
Optionally, the method further comprises:
and sending a network distribution failure prompt message to the target intelligent equipment under the condition that the target equipment key does not exist in the reference key information.
Optionally, before the sending the network configuration information to the target smart device, the method further includes:
encrypting the network key by adopting the target equipment key to obtain the encrypted network key;
and generating the network configuration information, wherein the network configuration information comprises the wireless local area network name of the wireless access point and the encrypted network key.
In a second aspect, the present application provides a network allocation method of an intelligent device, applied to a target intelligent device, where the method includes:
Broadcasting a distribution network request, wherein the distribution network request comprises a target equipment identifier of the target intelligent equipment, and the distribution network request is used for the intelligent gateway to send network configuration information to the target intelligent equipment under the condition that the out-of-band configured reference key information exists a target equipment key after receiving the distribution network request;
receiving the network configuration information, wherein the network configuration information comprises a wireless local area network name and a network key of a wireless access point;
connecting the wireless access point according to the network configuration information,
the target device key is data generated by the intelligent gateway according to the target device identifier by adopting an installation password generation method, and the reference key information comprises a device distribution network key of at least one intelligent device which is connectable to a wireless access point corresponding to the intelligent gateway.
Optionally, the method further comprises: and receiving and outputting the distribution network failure prompt information sent by the intelligent gateway, wherein the distribution network failure prompt information is prompt information sent to the target intelligent device by the intelligent gateway under the condition that the target device key does not exist in the reference key information.
Optionally, the network configuration information includes a wireless local area network name of the wireless access point and the encrypted network key, where the encrypted network key is data obtained by encrypting the network key by the intelligent gateway using the target device key; the connecting the wireless access point according to the network configuration information comprises:
acquiring the target equipment key;
and decrypting the encrypted network key by adopting the target equipment key to obtain the decrypted network key.
In a third aspect, the present application provides a network configuration device of an intelligent device, applied to an intelligent gateway, where the device includes:
the receiving module is used for receiving a network allocation request broadcasted by the target intelligent equipment, wherein the network allocation request comprises a target equipment identifier of the target intelligent equipment;
the generation module is used for generating a target equipment key by adopting an installation password generation method according to the target equipment identifier;
the acquisition module is used for acquiring out-of-band configured reference key information, wherein the reference key information comprises equipment distribution network keys of at least one intelligent equipment which is connectable to a wireless access point corresponding to the intelligent gateway;
The checking module is used for checking the key between the reference key information and the target equipment key;
the sending module is configured to send network configuration information to the target intelligent device when the target device key exists in the reference key information, where the network configuration information includes a wireless local area network name of the wireless access point and a network key, and the network configuration information is used for the target intelligent device to connect to the wireless access point.
In a fourth aspect, the present application provides a network allocation apparatus of an intelligent device, applied to a target intelligent device, where the apparatus includes:
the intelligent gateway comprises a broadcasting module, a network allocation module and a network configuration module, wherein the broadcasting module is used for broadcasting a network allocation request, the network allocation request comprises a target equipment identifier of the target intelligent equipment, and the network allocation request is used for the intelligent gateway to send network configuration information to the target intelligent equipment under the condition that a target equipment key exists in out-of-band configured reference key information after the network allocation request is received;
a receiving module, configured to receive the network configuration information, where the network configuration information includes a wireless local area network name of a wireless access point and a network key;
A connection module for connecting the wireless access point according to the network configuration information,
the target device key is data generated by the intelligent gateway according to the target device identifier by adopting an installation password generation method, and the reference key information comprises a device distribution network key of at least one intelligent device which is connectable to a wireless access point corresponding to the intelligent gateway.
In a fifth aspect, the present application provides an electronic device, the electronic device comprising a processor, a memory, and a program or instructions stored on the memory and executable on the processor, the program or instructions, when executed by the processor, implementing the steps of the network allocation method of a smart device according to the first or second aspect.
In a sixth aspect, the present application provides a readable storage medium having stored thereon a program or instructions which when executed by a processor implement the steps of the network allocation method of a smart device according to the first or second aspect.
In a seventh aspect, the present application provides a chip, where the chip includes a processor and a communication interface, where the communication interface is coupled to the processor, and the processor is configured to execute a program or instructions to implement the network allocation method of the smart device according to the first aspect or the second aspect.
The present application has the following advantages over the related art:
in the embodiment of the application, after receiving the network allocation request broadcast by the target intelligent device, the intelligent gateway generates the target device key by adopting an installation password generation method according to the target device identifier of the target intelligent device carried by the network allocation request. The out-of-band configured reference key information comprises a device distribution network key of at least one intelligent device which is connectable to the wireless access point corresponding to the intelligent gateway. Therefore, by checking whether the target device key exists in the reference key information, whether the target intelligent device is a connectable object of the wireless access point corresponding to the intelligent gateway, namely, a network allocation object of the intelligent gateway is determined according to the checking result. And the network configuration information is sent to the target intelligent equipment under the condition that the target equipment key exists in the reference key information and indicates that the target intelligent equipment is a network allocation object of the intelligent gateway, so that the target intelligent equipment is connected with the wireless access point.
According to the technical scheme, the intelligent gateway is guaranteed to only send network configuration information to the corresponding network distribution object by checking the reference key information and the target device key of the target intelligent device, so that the network distribution service is provided. Therefore, the problem of incorrect network distribution of intelligent equipment to be distributed is avoided to a certain extent, and the success rate of network distribution is improved.
And, because the device distribution network key indicating the distribution network object in the reference key information is ciphertext data generated based on the device identifier of the intelligent device, but not plaintext data of the device identifier of the distribution network object. Therefore, the information security of the reference key information is effectively ensured, the distribution network security is further improved, and the distribution network success rate is improved.
Drawings
The accompanying drawings, which are included to provide a further understanding of the application, illustrate and explain the application and are not to be construed as limiting the application. In the drawings:
fig. 1 is one of schematic implementation environments of a network allocation method of an intelligent device according to an embodiment of the present application;
FIG. 2 is a second schematic diagram of an implementation environment of a network allocation method of an intelligent device according to an embodiment of the present application;
fig. 3 is one of flowcharts of a network allocation method of an intelligent device according to an embodiment of the present application;
fig. 4 is a second flowchart of a network allocation method of an intelligent device according to an embodiment of the present application;
fig. 5 is a third flowchart of a network allocation method of an intelligent device according to an embodiment of the present application;
fig. 6 is a flowchart of a network allocation method of an intelligent device according to an embodiment of the present application;
Fig. 7 is a fifth flowchart of a network allocation method of an intelligent device according to an embodiment of the present application;
fig. 8 is one of block diagrams of a network configuration device of an intelligent device provided in an embodiment of the present application;
fig. 9 is a second block diagram of a network distribution device of the intelligent device according to the embodiment of the present application;
fig. 10 is one of block diagrams of an electronic device provided in an embodiment of the present application.
Detailed Description
It should be noted that, in the case of no conflict, the embodiments and features in the embodiments may be combined with each other. The present application will be described in detail below with reference to the accompanying drawings in conjunction with embodiments.
With the development of wireless communication technology, various intelligent electrical appliances such as intelligent sound boxes, intelligent televisions, intelligent door locks and the like are rapidly developed. When the intelligent equipment is used, the network distribution is usually needed to play a convenient function.
The current network distribution process of the intelligent equipment comprises the following steps: the network equipment to be distributed is connected with the intelligent gateway as an Access Point (AP) to receive wireless Access Point information comprising a network Access key sent by the intelligent gateway. And then, the equipment to be distributed is converted into a Station (STA) and is connected with a router by utilizing the information of the wireless access point, so that after the connection router is successful, a connection success message is transmitted to the intelligent gateway, and the distribution network is completed.
However, as intelligent devices increase, large-scale device networking scenarios gradually appear. And under the network access scene of the large-scale equipment, the plurality of equipment to be distributed are in a network distribution state at the same time, and data interaction is carried out between the equipment to be distributed and the intelligent gateway. However, the existing intelligent gateway does not need to perform identity verification on the equipment to be distributed when distributing the wireless receiving point information, so that the problem that the equipment to be distributed is wrongly distributed easily occurs, and the success rate of distribution is low.
In particular, in a large-scale device networking scenario, there may be multiple modes of intelligent gateway sharding configuration. In this mode, different intelligent gateways are preset to provide distribution network services for intelligent devices in different geographical areas. However, in the current distribution network service mode of the intelligent gateway, because identity verification is not required to be performed on the equipment to be distributed when the wireless receiving point information is distributed, equipment for providing the distribution network service by the intelligent gateway possibly exists, the equipment does not belong to the preset intelligent equipment of the intelligent gateway, even one intelligent gateway can provide the distribution network service for all intelligent equipment, and the problem of confusion of the distribution network exists in the extreme situations that other intelligent gateways are idle, so that the success rate of the distribution network is lower.
The embodiment of the application provides a network distribution method of intelligent equipment, which can solve the problems to a certain extent. Referring to fig. 1, an implementation environment schematic diagram of a network allocation method of an intelligent device according to an embodiment of the present application is shown. As shown in fig. 1, the implementation environment includes: an intelligent gateway 101A and two intelligent devices 102A-102B.
Wherein the intelligent gateway and the intelligent device can be connected through a network. Optionally, the intelligent gateway and the intelligent device are connected through a wireless network. By way of example, the wireless network may be WI-FI, bluetooth, zigbee, or the like. In the embodiment of the application, the intelligent gateway and the intelligent device both support installation passwords (instruments Code technology). In an alternative scenario, the smart device may be a zigbee3.0 enabled smart device.
Fig. 2 is a schematic diagram of an implementation environment of another network allocation method of an intelligent device according to an embodiment of the present application. As shown in fig. 2, on the basis of the implementation environment shown in fig. 1, the method further comprises: intelligent gateway 101B and three intelligent gateways 102C-102E. The intelligent gateway 101A is preset to provide a network distribution service for the intelligent device 102A and the intelligent device 102B to connect to the first wireless access point. Intelligent gateway 101B is preset to provide a distribution network service for intelligent device 102C, intelligent device 102D, and intelligent device 102E to connect to the second wireless access point. The first wireless access point and the second wireless access point may be routers, for example.
It should be noted that, the number of intelligent gateways and the number of intelligent devices in the implementation environments shown in fig. 1 and fig. 2 are not limited to the number of intelligent gateways and intelligent devices that may be included in the implementation environments. Fig. 1 illustrates an implementation environment including 1 intelligent gateway and 2 intelligent devices, and fig. 2 illustrates an implementation environment including 2 intelligent gateways and 5 intelligent devices.
Referring to fig. 3, a flowchart of a network allocation method of an intelligent device according to an embodiment of the present application is shown. The network allocation method of the intelligent device may be applied to the implementation environments shown in fig. 1 and fig. 2, and the following description will take the application of the network allocation method of the intelligent device to the implementation environment shown in fig. 1 as an example, where in the embodiment of fig. 1, the intelligent gateway 101A is preset to provide a network allocation service for connecting a wireless access point to the intelligent device 102A and the intelligent device 102B. The target intelligent device may be any intelligent device in an implementation environment, and the intelligent gateway may be any intelligent gateway in the implementation environment. As shown in fig. 3, the network allocation method of the intelligent device includes:
step 301, the target intelligent device broadcasts a network allocation request. The distribution network request includes a target device identification of the target smart device.
In this embodiment of the present application, when the target intelligent device enters the network configuration state, the network configuration request may be broadcasted, so that the intelligent gateway receives the network configuration request and provides the network configuration service for the target intelligent device.
Optionally, the target device identifier included in the network allocation request may include at least one of the following data: the smart device's media access control address (MediaAccess ControlAddress, MAC) address, a universally unique identification code (Universally Unique Identifier, UUID), a personal identification code (Personal identification number, PIN). For example, the target device identification may be a MAC address of the target smart device.
For example, the target intelligent device may broadcast the probe request message under the condition of entering the network configuration state, so that the intelligent gateway receives the probe request message, analyzes the probe request message, and obtains the network configuration request carried by the probe request message.
And 302, the intelligent gateway generates a target device key by adopting an installation password generation method according to the target device identifier.
In this embodiment of the present application, after receiving a network allocation request broadcast by a target intelligent device, the intelligent gateway may generate a target device key by using an installation password generating method according to a target device identifier. And further executing the subsequent steps to judge whether the network distribution service is provided for the target intelligent device according to the verification result of the target device key and the reference key information.
Wherein the reference key information is data configured out-of-band. The reference key information includes: and the device distribution network key of at least one intelligent device which is connectable to the wireless access point corresponding to the intelligent gateway.
In one example, in the implementation environment shown in fig. 1, intelligent gateway 101A is preset to provide distribution network services for intelligent device 102A and intelligent device 102B. Based on this, the reference key information of intelligent gateway 101A includes the device distribution key of intelligent device 102A, and the device distribution key of intelligent device 102B.
As another example, in the implementation environment shown in fig. 2, intelligent gateway 101B is preset to provide distribution network services for intelligent device 102C, intelligent device 102D, and intelligent device 102E. Based on this, the reference key information of intelligent gateway 101A includes the device distribution key of intelligent device 102A, and the device distribution key of intelligent device 102B. The reference key information for intelligent gateway 101B includes the device distribution key for intelligent device 102C, the device distribution key for intelligent device 102D, and the device distribution key for intelligent device 102E.
The device distribution key is also called a link key (Linkkey) of the intelligent device. The equipment distribution network key of the intelligent equipment in the reference key information is data generated by adopting an installation password generation method according to the equipment identification of the intelligent equipment.
Optionally, after the intelligent device connectable to the wireless access point corresponding to the intelligent gateway is preset manually, the third party device may collect device identifiers of the connectable intelligent devices, further generate a target device key of each intelligent device according to the device identifier of each intelligent device by adopting an installation password generating method, and record reference key information. And the third party equipment transmits the reference key information to the intelligent gateway in an out-of-band transmission mode so as to restrict the object of the intelligent gateway which can provide the distribution network service by utilizing the reference key information. And, because the reference key information indicates that the device distribution network key of the distribution network object is ciphertext data, but not plaintext data of the device identifier of the distribution network object. Therefore, the information security of the reference key information is effectively ensured, and the monitored risk is reduced.
It should be noted that, the implementation manner of generating the target device key of each intelligent device by the third party device is the same as the implementation manner of generating the target device key by the intelligent gateway. Therefore, the third party device adopts the installation password generating method according to the device identifier of each intelligent device, and the description of the implementation manner of generating the target device key of each intelligent device by adopting the installation password generating method according to the target device key of the target intelligent device by the intelligent gateway can refer to the following description, which is not repeated in the embodiment of the present application.
For example, the intelligent device of the wireless access point target geographic area corresponding to the intelligent gateway is preset manually. The third party device can collect the intelligent devices in the target geographic area, namely the device identifiers of the connectable intelligent devices, further generates a target device key of each intelligent device by adopting an installation password generation method according to the device identifier of each intelligent device, and establishes a reference key table which records reference key information. The third party device writes the reference key table into the target database in an out-of-band transmission mode, so that the intelligent gateway can read the reference key information from the target database.
In the embodiment of the application, the target device key of the target intelligent device. Also known as the Link key (Link key) of the target smart device.
In a first alternative implementation, the installation password generation method is a key generation method supported by the instrumentation Code technology. The third party equipment adopts an installation password generating method according to the equipment identification, and the process of generating the equipment distribution network key comprises the following steps: and generating a device distribution network key through a hash function according to the device identification.
Accordingly, the process of generating the target device key by the intelligent gateway according to the target device identifier by using the installation password generation method may include step S11. In step S11, the intelligent gateway generates a target device key through a hash function according to the target device identifier.
In a second alternative implementation, the installation password generation method is a key generation method supported by the instrumentation Code technology. The third party equipment adopts an installation password generating method according to the equipment identification, and the process of generating the equipment distribution network key comprises the following steps: an initial key value and a salt value are determined based on the device identification. And generating a device configuration key with the length of the reference key by adopting a key derivation method according to the initial key value, the salt value, the reference iteration number and the reference key length.
In an alternative implementation, the third party device randomly generates an initial key value based on the device identification of the smart device, and determines the device identification of the smart device as the salt value. Thus, the randomness of the generated device distribution network key of the intelligent device can be ensured.
In another alternative implementation, the device identification of the smart device includes: first data and second data. The third party equipment determines the first data in the equipment identifier of the intelligent equipment and splicing data of the reference random number as an initial key value; and determining second data in the device identification of the intelligent device as a salt value.
In yet another alternative implementation, the device identification of the smart device includes: first data and second data. The third party device determines first data in the device identification of the intelligent device as an initial key value; and determining second data in the device identification of the intelligent device as a salt value. For example, the third party device determines the PIN of the smart device as an initial key value and the MAC address of the smart device as a salt value.
Accordingly, the intelligent gateway adopts the installation password generating method according to the target device identifier, and the process of generating the target device key can include steps S21 to S22.
In step S21, an initial key value and a salt value are determined from the target device identification.
In an alternative implementation, the intelligent gateway randomly generates an initial key value according to the target device identification, and determines the device identification of the intelligent device as the salt value.
In another alternative implementation, the target device identification includes: first data and second data. The intelligent gateway determines the spliced data of the first data in the target equipment identifier and the reference random number as an initial key value; and determining the second data in the target equipment identifier as a salt value.
In yet another alternative implementation, the target device identification includes: first data and second data. The intelligent gateway determines first data in the target equipment identifier as an initial key value; and determining the second data in the target equipment identifier as a salt value.
Corresponding example, the smart gateway determines the PIN of the target smart device as the initial key value and the MAC address of the smart device as the salt value.
In step S22, a key derivation method is used to generate a target device key with a length equal to the reference key length according to the initial key value, the salt value, the reference iteration number and the reference key length.
Alternatively, the key derivation method can be a cryptographic derivation algorithm such as KDF, HKDF, PBKDF2, bcrypt, scrypt or Argon 2. Specifically, for example, the key derivation method may be a HMAC-SHA 256-based cryptographic derivation algorithm to ensure good entropy distribution and security.
Illustratively, the key derivation method is exemplified by a KDF key derivation algorithm. And the intelligent gateway generates a target equipment key by adopting a key derivation method according to the initial key value, the salt value, the reference iteration number, the reference key length and the first formula. The first formula satisfies: k=kdf (x 1, x2, x3, x 4). K represents the target device key. x1 represents the initial key value of the target smart device. x2 represents the salt value of the target smart device. x3 represents the reference iteration number. x4 denotes a reference key length.
The reference key length may be a length of transmission data specified by a related transmission protocol of the smart device and the smart gateway. For example, a bluetooth connection is used between the smart device and the smart gateway. The reference key length may be 128 bits, i.e. 16 bytes, of transmission data specified by the bluetooth transmission protocol. The value of the reference iteration number can be set in a self-defined manner. The larger the value of the reference iteration number is, the higher the security of the equipment distribution network key generated based on the reference iteration number is. Illustratively, the reference iteration number may be 1000, 1500, 2000, or the like.
In some embodiments of the present application, the device distribution network key in the reference key information may be updated periodically. The equipment distribution network key of the distribution network object corresponding to the intelligent gateway can be updated periodically, so that the safety of the equipment distribution network key is ensured, and the distribution network safety is further ensured.
Optionally, the device distribution network key in the reference key information is updated periodically. The third party device may periodically update the reference key information. The update period of the reference key information may be half a year, 1 year, or the like.
The third party equipment adopts an installation password generating method according to the equipment identification, and the process of generating the equipment distribution network key comprises the following steps:
and determining the initial key value and the salt value corresponding to the current updating period of the reference key information according to the equipment identification of the intelligent equipment in response to the updating time meeting the reference key information. And generating a target device key with the length of the reference key length by adopting a key derivation method according to the initial key value and the salt value of the intelligent device and the reference key length of the reference iteration times.
In different updating periods of the reference key information, initial key values corresponding to the intelligent equipment are different, and salt values are the same. Alternatively, in different update periods of the reference key information, the initial key values corresponding to the smart devices are the same, and the salt values are the same. Or in different updating periods of the reference key information, the initial key value and the salt value corresponding to the intelligent device are different.
In an alternative implementation manner, the process of determining, by the third party device according to the device identifier of the intelligent device, the corresponding initial key value and the salt value in the current update period of the reference key information may include:
and the third party equipment generates an initial key value of the intelligent equipment by adopting a data generation algorithm corresponding to the current updating period of the reference key information according to the equipment identification of the intelligent equipment. And determining the device identification of the intelligent device as the salt value of the intelligent device.
Based on this, the device distribution network key in the reference key information is: and when the updating time of the reference key information is met, adopting data generated by a key derivation method according to the reference iteration times, the reference key length, the initial key value and the salt value of the intelligent equipment. The initial key value of the intelligent device is: and adopting data generated by a data generation algorithm corresponding to the current updating period of the reference key information according to the equipment identification of the intelligent equipment. The salt value of the intelligent equipment is as follows: device identification of the intelligent device.
In another alternative implementation manner, the process of determining, by the third party device according to the device identifier of the smart device, the corresponding initial key value and the salt value in the current update period of the reference key information may include:
And the third party equipment generates a salt value of the intelligent equipment by adopting a data generation algorithm corresponding to the current updating period of the reference key information according to the equipment identification of the intelligent equipment. The device identification of the smart device is determined as an initial key value of the smart device.
Based on this, the device distribution network key in the reference key information is: and when the updating time of the reference key information is met, adopting data generated by a key derivation method according to the reference iteration times, the reference key length, the initial key value and the salt value of the intelligent equipment. The salt value of the intelligent equipment is as follows: and adopting data generated by a data generation algorithm corresponding to the current updating period of the reference key information according to the equipment identification of the intelligent equipment. The initial key value of the intelligent device is: device identification of the intelligent device.
Accordingly, as shown in fig. 4, the process of generating the target device key by the intelligent gateway according to the target device identifier by adopting the installation password generation method may include:
step 401, determining an initial key value and a salt value corresponding to the current update period of the reference key information according to the target equipment identifier.
In an alternative implementation, the process of determining, by the intelligent gateway, the initial key value and the salt value corresponding to the current update period of the reference key information according to the target device identifier may include steps 4011A to 4012A.
In step 4011A, an initial key value of the target intelligent device is generated according to the target device identifier using a data generation algorithm corresponding to the current update period of the reference key information.
Wherein the data generation algorithms corresponding to different update periods of the reference key information may be different. The data generation algorithm may be different to refer to a specific algorithm. Alternatively, the specific algorithms are the same but utilize different parameters.
In step 4012A, the target device identification is determined as a salt value of the target smart device.
In an alternative implementation, the specific algorithms corresponding to the different update periods are different.
And the intelligent gateway generates an initial key value according to a random algorithm corresponding to the current updating period of the target equipment identifier and the reference key information, and determines the target equipment identifier as a salt value.
In another alternative implementation, the specific algorithms corresponding to different update periods are the same but the parameters utilized (reference random numbers) are different.
And the intelligent gateway determines spliced data of the reference random number corresponding to the current updating period of the target equipment identifier and the reference key information as an initial key value. The target device identification is determined as a salt value. Wherein the reference random numbers corresponding to different update periods of the reference key information are different.
In another alternative implementation, the process of determining, by the intelligent gateway, the initial key value and the salt value corresponding to the current update period of the reference key information according to the target device identifier may include steps 4011B to 4012B.
In step 4011B, according to the target equipment identifier, a data generation algorithm corresponding to the current update period of the reference key information is used to generate a salt value of the target intelligent equipment.
Wherein the data generation algorithms corresponding to different update periods of the reference key information may be different. The data generation algorithm may be different to refer to a specific algorithm. Alternatively, the specific algorithms are the same but utilize different parameters.
In step 4012B, the target device identification is determined as the initial key value of the target smart device.
In an alternative implementation, the specific algorithms corresponding to the different update periods are different.
And the intelligent gateway generates a salt value according to a random algorithm corresponding to the current updating period of the target equipment identifier and the reference key information, and determines the target equipment identifier as an initial key value.
In another alternative implementation, the specific algorithms corresponding to different update periods are the same but the parameters utilized (reference random numbers) are different.
And the intelligent gateway determines splicing data of the reference random number corresponding to the current updating period of the target equipment identifier and the reference key information as a salt value. The target device identification is determined to be the initial key value. Wherein the reference random numbers corresponding to different update periods of the reference key information are different.
And step 402, generating a target device key with the length of the reference key length by adopting a key derivation method according to the initial key value, the salt value, the reference iteration number and the reference key length.
The explanation and implementation of this step may refer to the explanation and implementation of the aforementioned step S22, which is not limited in the embodiment of the present application.
In some embodiments of the present invention, after reaching the update opportunity of the reference key information, the intelligent gateway may send the device distribution network key update prompt information to the intelligent device with successful distribution network, so that the intelligent device displays the distribution network key update prompt information, and prompts the user of the intelligent device to re-distribute the network for the intelligent device, so as to switch and use the new device distribution network key of the intelligent device to connect with the wireless access point.
Step 303, the intelligent gateway obtains the reference key information configured out-of-band. The reference key information includes a device distribution key of at least one intelligent device to which the wireless access point corresponding to the intelligent gateway is connectable.
Alternatively, the reference key information may be stored at the intelligent gateway. The smart gateway may obtain the reference key information from the memory space. Alternatively, the reference key information may be stored with the target database. The smart gateway may read the reference key information from the target database.
And 304, the intelligent gateway performs key verification on the reference key information and the target device key.
Optionally, the intelligent gateway may compare each device distribution key in the reference key information with the target device key to check whether the device distribution key is identical to the target device key, and determine whether the reference key information includes the target device key. In the event that the target device key is present in the reference key information, the intelligent gateway may perform step 305. Optionally, under the condition that the target device key does not exist in the reference key information, the intelligent gateway may send a network allocation failure prompt message to the target intelligent device, so that the target intelligent device outputs the network allocation failure prompt message, prompts a user of the target intelligent device that the network allocation of the target intelligent device fails, and the intelligent gateway refuses to connect to the wireless access point.
Step 305, the intelligent gateway sends network configuration information to the target intelligent device when the target device key exists in the reference key information.
Optionally, the intelligent gateway indicates that the target intelligent device is a network allocation object of the intelligent gateway when the target device key exists in the reference key information. The intelligent gateway obtains the wireless local area network name (Service Set Identifier, SSID) and network key (network key) of the corresponding wireless access point, and generates and sends network configuration information to the target intelligent device. Wherein the network configuration information includes an SSID of the wireless access point and a network key.
And 306, connecting the target intelligent device with the wireless access point according to the network configuration information.
Optionally, the target intelligent device receives the network configuration information sent by the intelligent gateway, and connects to the wireless access point indicated by the SSID according to the network key.
In summary, according to the network allocation method of the intelligent device provided by the embodiment of the application, after receiving the network allocation request broadcast by the target intelligent device, the intelligent gateway may generate the target device key by adopting the installation password generation method according to the target device identifier of the target intelligent device carried by the network allocation request. The out-of-band configured reference key information comprises a device distribution network key of at least one intelligent device which is connectable to the wireless access point corresponding to the intelligent gateway. Therefore, by checking whether the target device key exists in the reference key information, whether the target intelligent device is a connectable object of the wireless access point corresponding to the intelligent gateway, namely, a network allocation object of the intelligent gateway is determined according to the checking result. And the network configuration information is sent to the target intelligent equipment under the condition that the target equipment key exists in the reference key information and indicates that the target intelligent equipment is a network allocation object of the intelligent gateway, so that the target intelligent equipment is connected with the wireless access point.
According to the technical scheme, the intelligent gateway is guaranteed to only send network configuration information to the corresponding network distribution object by checking the reference key information and the target device key of the target intelligent device, so that the network distribution service is provided. Therefore, the problem of incorrect network distribution of intelligent equipment to be distributed is avoided to a certain extent, and the success rate of network distribution is improved.
And, because the device distribution network key indicating the distribution network object in the reference key information is ciphertext data generated based on the device identifier of the intelligent device, but not plaintext data of the device identifier of the distribution network object. Therefore, the information security of the reference key information is effectively ensured, the distribution network security is further improved, and the distribution network success rate is improved.
Furthermore, in the network access scene of the large-scale equipment, according to the network distribution service mode of the intelligent gateway in the technical scheme, each intelligent gateway can also utilize the reference key information to restrict the object of the intelligent gateway which can provide the network distribution service. Therefore, each intelligent gateway can only provide distribution network service for the corresponding distribution network object, so that the problem of incorrect distribution network of intelligent equipment to be distributed is avoided to a certain extent, and the distribution network success rate is improved more effectively.
Referring to fig. 5, a flowchart of a network allocation method of an intelligent device according to an embodiment of the present application is shown. The network allocation method of the intelligent device may be applied to the implementation environments shown in fig. 1 and fig. 2, and the following description will take the application of the network allocation method of the intelligent device to the implementation environment shown in fig. 1 as an example, where in the embodiment of fig. 1, the intelligent gateway 101A is preset to provide a network allocation service for connecting a wireless access point to the intelligent device 102A and the intelligent device 102B. The target intelligent device may be any intelligent device in an implementation environment, and the intelligent gateway may be any intelligent gateway in the implementation environment. As shown in fig. 5, the network allocation method of the intelligent device includes:
Step 501, the target intelligent device broadcasts a network allocation request. The distribution network request includes a target device identification of the target smart device.
The explanation and implementation of this step may refer to the explanation and implementation of step 301, which is not described in detail in the embodiments of the present application.
Step 502, the intelligent gateway generates a target device key by adopting an installation password generation method according to the target device identifier.
The explanation and implementation of this step may refer to the explanation and implementation of step 302, which is not described in detail in the embodiments of the present application.
Step 503, the intelligent gateway obtains the reference key information configured out-of-band. The reference key information includes a device distribution key of at least one intelligent device to which the wireless access point corresponding to the intelligent gateway is connectable.
The explanation and implementation of this step may refer to the explanation and implementation of step 303, which is not described in detail in the embodiments of the present application.
Step 504, the intelligent gateway performs key checking on the reference key information and the target device key.
The explanation and implementation of this step may refer to the explanation and implementation of step 304, which is not described in detail in the embodiments of the present application.
In step 505, the intelligent gateway encrypts the network key by using the target device key under the condition that the target device key exists in the reference key information, so as to obtain the encrypted network key.
Optionally, the intelligent gateway may acquire the network key of the wireless access point corresponding to the intelligent gateway, and encrypt the network key by using the target device key by using the target encryption algorithm to obtain the encrypted network key. Illustratively, the target encryption algorithm may be DES, 3DES, AES, or the like.
Step 506, the intelligent gateway generates network configuration information.
Optionally, the intelligent gateway may obtain the SSID of its corresponding wireless access point, and generate network configuration information. The network configuration information includes the SSID of the wireless access point and the encrypted network key.
Step 507, the intelligent gateway sends network configuration information to the target intelligent device.
Step 508, the target intelligent device connects to the wireless access point according to the network configuration information.
Optionally, after receiving the network configuration information sent by the intelligent gateway, the target intelligent device may parse the network configuration information to obtain the SSID of the wireless access point and the encrypted network key. The target intelligent device may decrypt the encrypted network key to obtain a decrypted network key. And connecting to the wireless access point indicated by the SSID according to the decrypted network key.
In an alternative implementation, the target smart device decrypts the encrypted network key, and the process of obtaining the decrypted network key may include step 001 and step 002.
In step 001, the target smart device acquires the target device key.
Optionally, the target intelligent device may generate the target device key according to the target device identifier thereof by using an installation password generating method, so as to obtain the target device key. The explanation and implementation manner of the target intelligent device generating the target device key by using the installation password generating method according to the target device identifier of the target intelligent device may refer to the explanation and implementation manner of step 302, which is not described in detail in the embodiment of the present application.
Alternatively, the network configuration information may include: target device key of target smart device. The target smart device may obtain the target device key from the network configuration information.
In step 002, the target intelligent device decrypts the encrypted network key with the target device key to obtain the decrypted network key.
Optionally, the target intelligent device may adopt a target decryption algorithm, and decrypt the encrypted network key with the target device key to obtain a decrypted network key. The target decryption algorithm is a decryption algorithm corresponding to the target encryption algorithm.
Step 509, the intelligent gateway sends a network failure prompt message to the target intelligent device when the target device key does not exist in the reference key information.
Optionally, in the case that the target device key is not present in the reference key information, it indicates that the target smart device is not a network allocation object of the smart gateway. The intelligent gateway can send a network allocation failure prompt message to the target intelligent device, so that the target intelligent device outputs the network allocation failure prompt message to prompt a user of the target intelligent device that the target intelligent device fails in network allocation, and the intelligent gateway refuses to connect to the wireless access point.
For example, after receiving the network allocation failure prompt information, the target intelligent device may display the network allocation failure prompt information to prompt the user of the target intelligent device that the network allocation of the target intelligent device fails, and the intelligent gateway refuses to connect to the wireless access point.
In summary, according to the network allocation method of the intelligent device provided by the embodiment of the application, after receiving the network allocation request broadcast by the target intelligent device, the intelligent gateway may generate the target device key by adopting the installation password generation method according to the target device identifier of the target intelligent device carried by the network allocation request. The out-of-band configured reference key information comprises a device distribution network key of at least one intelligent device which is connectable to the wireless access point corresponding to the intelligent gateway. Therefore, by checking whether the target device key exists in the reference key information, whether the target intelligent device is a connectable object of the wireless access point corresponding to the intelligent gateway, namely, a network allocation object of the intelligent gateway is determined according to the checking result. And the network configuration information is sent to the target intelligent equipment under the condition that the target equipment key exists in the reference key information and indicates that the target intelligent equipment is a network allocation object of the intelligent gateway, so that the target intelligent equipment is connected with the wireless access point.
According to the technical scheme, the intelligent gateway is guaranteed to only send network configuration information to the corresponding network distribution object by checking the reference key information and the target device key of the target intelligent device, so that the network distribution service is provided. Therefore, the problem of incorrect network distribution of intelligent equipment to be distributed is avoided to a certain extent, and the success rate of network distribution is improved.
And, because the device distribution network key indicating the distribution network object in the reference key information is ciphertext data generated based on the device identifier of the intelligent device, but not plaintext data of the device identifier of the distribution network object. Therefore, the information security of the reference key information is effectively ensured, the distribution network security is further improved, and the distribution network success rate is improved.
Referring to fig. 6, a flowchart of a network allocation method of an intelligent device according to an embodiment of the present application is shown. The network allocation method of the intelligent device can be applied to the implementation environments shown in fig. 1 and 2 and executed by the intelligent gateway. As shown in fig. 6, the network allocation method of the intelligent device includes:
step 601, receiving a network allocation request broadcasted by a target intelligent device, where the network allocation request includes a target device identifier of the target intelligent device.
And 602, generating a target device key by adopting an installation password generation method according to the target device identifier.
Step 603, obtaining reference key information configured out-of-band, where the reference key information includes a device distribution network key of at least one intelligent device connectable to a wireless access point corresponding to the intelligent gateway.
Step 604, the key checking is performed on the reference key information and the target device key.
Step 605, if the target device key exists in the reference key information, sending network configuration information to the target intelligent device, where the network configuration information includes an SSID of the wireless access point and the network key, and the network configuration information is used for the target intelligent device to connect to the wireless access point.
Optionally, the device distribution network key in the reference key information is updated periodically; generating a target device key by adopting an installation password generating method according to the target device identifier, comprising the following steps:
determining an initial key value and a salt value corresponding to the current updating period of the reference key information according to the target equipment identifier;
and generating a target device key with the length being the reference key length by adopting a key derivation method according to the initial key value, the salt value, the reference iteration number and the reference key length.
Optionally, when the update time of the reference key information is met, the device distribution network key is data generated by adopting a key derivation method according to the reference iteration times, the reference key length, an initial key value and a salt value of the intelligent device, the initial key value of the intelligent device is data generated by adopting a data generation algorithm corresponding to the current update period of the reference key information according to the device identification of the intelligent device, and the salt value of the intelligent device is the device identification of the intelligent device;
According to the target equipment identification, determining the initial key value and the salt value corresponding to the current updating period of the reference key information, wherein the method comprises the following steps:
according to the target equipment identification, generating an initial key value of the target intelligent equipment by adopting a data generation algorithm corresponding to the current updating period of the reference key information;
and determining the target device identification as the salt value of the target intelligent device.
Optionally, the target device identification includes at least one of the following data: MAC address, UUID, PIN of the intelligent device.
Optionally, the method further comprises: and sending a network distribution failure prompt message to the target intelligent device under the condition that the target device key does not exist in the reference key information.
Optionally, before sending the network configuration information to the target smart device, the method further comprises:
encrypting the network key by adopting the target equipment key to obtain an encrypted network key;
generating network configuration information, wherein the network configuration information comprises the SSID of the wireless access point and the encrypted network key.
In summary, according to the network allocation method of the intelligent device provided by the embodiment of the application, after receiving the network allocation request broadcast by the target intelligent device, the intelligent gateway may generate the target device key by adopting the installation password generation method according to the target device identifier of the target intelligent device carried by the network allocation request. The out-of-band configured reference key information comprises a device distribution network key of at least one intelligent device which is connectable to the wireless access point corresponding to the intelligent gateway. Therefore, by checking whether the target device key exists in the reference key information, whether the target intelligent device is a connectable object of the wireless access point corresponding to the intelligent gateway, namely, a network allocation object of the intelligent gateway is determined according to the checking result. And the network configuration information is sent to the target intelligent equipment under the condition that the target equipment key exists in the reference key information and indicates that the target intelligent equipment is a network allocation object of the intelligent gateway, so that the target intelligent equipment is connected with the wireless access point.
According to the technical scheme, the intelligent gateway is guaranteed to only send network configuration information to the corresponding network distribution object by checking the reference key information and the target device key of the target intelligent device, so that the network distribution service is provided. Therefore, the problem of incorrect network distribution of intelligent equipment to be distributed is avoided to a certain extent, and the success rate of network distribution is improved.
And, because the device distribution network key indicating the distribution network object in the reference key information is ciphertext data generated based on the device identifier of the intelligent device, but not plaintext data of the device identifier of the distribution network object. Therefore, the information security of the reference key information is effectively ensured, the distribution network security is further improved, and the distribution network success rate is improved.
Referring to fig. 7, a flowchart of a network allocation method of an intelligent device according to an embodiment of the present application is shown. The network allocation method of the intelligent device can be applied to the implementation environments shown in fig. 1 and 2 and executed by the intelligent device. As shown in fig. 7, the network allocation method of the intelligent device includes:
step 701, broadcasting a network allocation request, where the network allocation request includes a target device identifier of a target intelligent device, where the network allocation request is used for the intelligent gateway to send network configuration information to the target intelligent device when the reference key information configured out-of-band exists in the target device key after receiving the network allocation request.
Step 702, receiving network configuration information, where the network configuration information includes an SSID of a wireless access point and a network key.
Step 703, connecting the wireless access point according to the network configuration information.
The target device key is data generated by the intelligent gateway according to the target device identifier by adopting an installation password generation method, and the reference key information comprises a device distribution network key of at least one intelligent device which is connectable to a wireless access point corresponding to the intelligent gateway.
Optionally, the method further comprises: and receiving and outputting the network allocation failure prompt information sent by the intelligent gateway, wherein the network allocation failure prompt information is prompt information sent to target intelligent equipment by the intelligent gateway under the condition that the target equipment key does not exist in the reference key information.
Optionally, the network configuration information includes an SSID of the wireless access point and an encrypted network key, where the encrypted network key is data obtained by encrypting the network key by the intelligent gateway using the target device key; connecting the wireless access point according to the network configuration information, comprising:
acquiring a target equipment key;
and decrypting the encrypted network key by adopting the target equipment key to obtain the decrypted network key.
In summary, according to the network allocation method of the intelligent device provided by the embodiment of the application, after receiving the network allocation request broadcast by the target intelligent device, the intelligent gateway may generate the target device key by adopting the installation password generation method according to the target device identifier of the target intelligent device carried by the network allocation request. The out-of-band configured reference key information comprises a device distribution network key of at least one intelligent device which is connectable to the wireless access point corresponding to the intelligent gateway. Therefore, by checking whether the target device key exists in the reference key information, whether the target intelligent device is a connectable object of the wireless access point corresponding to the intelligent gateway, namely, a network allocation object of the intelligent gateway is determined according to the checking result. And the network configuration information is sent to the target intelligent equipment under the condition that the target equipment key exists in the reference key information and indicates that the target intelligent equipment is a network allocation object of the intelligent gateway, so that the target intelligent equipment is connected with the wireless access point.
According to the technical scheme, the intelligent gateway is guaranteed to only send network configuration information to the corresponding network distribution object by checking the reference key information and the target device key of the target intelligent device, so that the network distribution service is provided. Therefore, the problem of incorrect network distribution of intelligent equipment to be distributed is avoided to a certain extent, and the success rate of network distribution is improved.
And, because the device distribution network key indicating the distribution network object in the reference key information is ciphertext data generated based on the device identifier of the intelligent device, but not plaintext data of the device identifier of the distribution network object. Therefore, the information security of the reference key information is effectively ensured, the distribution network security is further improved, and the distribution network success rate is improved.
Fig. 8 is a block diagram of a network distribution device of an intelligent device according to an embodiment of the present application. The network distribution device of the intelligent equipment can be applied to the intelligent gateway. As shown in fig. 8, the network configuration device 800 of the intelligent device includes:
the receiving module 801 is configured to receive a network allocation request broadcasted by a target intelligent device, where the network allocation request includes a target device identifier of the target intelligent device.
A generating module 802, configured to generate a target device key according to the target device identifier by using an installation password generating device.
The obtaining module 803 is configured to obtain reference key information configured out-of-band, where the reference key information includes a device distribution network key of at least one intelligent device connectable to a wireless access point corresponding to the intelligent gateway.
A checking module 804, configured to perform key checking on the reference key information and the target device key.
The sending module 805 is configured to send, when the target device key exists in the reference key information, network configuration information to the target smart device, where the network configuration information includes an SSID of the wireless access point and the network key, where the network configuration information is used for the target smart device to connect to the wireless access point.
Optionally, the device distribution network key in the reference key information is updated periodically; the generating module 802 is further configured to:
determining an initial key value and a salt value corresponding to the current updating period of the reference key information according to the target equipment identifier;
and generating a target device key with the length being the reference key length by adopting a key derivation device according to the initial key value, the salt value, the reference iteration number and the reference key length.
Optionally, when the update time of the reference key information is met, the device distribution network key is data generated by adopting a key derivation device according to the reference iteration times, the reference key length, an initial key value and a salt value of the intelligent device, the initial key value of the intelligent device is data generated by adopting a data generation algorithm corresponding to the current update period of the reference key information according to the device identification of the intelligent device, and the salt value of the intelligent device is the device identification of the intelligent device; the generating module 802 is further configured to:
According to the target equipment identification, generating an initial key value of the target intelligent equipment by adopting a data generation algorithm corresponding to the current updating period of the reference key information;
and determining the target device identification as the salt value of the target intelligent device.
Optionally, the target device identification includes at least one of the following data: MAC address, UUID, PIN of the intelligent device.
Optionally, the sending module 805 is configured to send a network failure prompt message to the target intelligent device when the target device key does not exist in the reference key information.
Optionally, the network configuration device 800 of the smart device further includes:
the encryption module is used for encrypting the network key by adopting the target equipment key to obtain an encrypted network key;
a generating module 802, configured to generate network configuration information, where the network configuration information includes an SSID of the wireless access point and an encrypted network key.
In summary, in the network allocation device of the intelligent device provided in the embodiment of the present application, after receiving the network allocation request broadcast by the target intelligent device, the intelligent gateway may generate the target device key by using the installation password generating device according to the target device identifier of the target intelligent device carried by the network allocation request. The out-of-band configured reference key information comprises a device distribution network key of at least one intelligent device which is connectable to the wireless access point corresponding to the intelligent gateway. Therefore, by checking whether the target device key exists in the reference key information, whether the target intelligent device is a connectable object of the wireless access point corresponding to the intelligent gateway, namely, a network allocation object of the intelligent gateway is determined according to the checking result. And the network configuration information is sent to the target intelligent equipment under the condition that the target equipment key exists in the reference key information and indicates that the target intelligent equipment is a network allocation object of the intelligent gateway, so that the target intelligent equipment is connected with the wireless access point.
According to the technical scheme, the intelligent gateway is guaranteed to only send network configuration information to the corresponding network distribution object by checking the reference key information and the target device key of the target intelligent device, so that the network distribution service is provided. Therefore, the problem of incorrect network distribution of intelligent equipment to be distributed is avoided to a certain extent, and the success rate of network distribution is improved.
And, because the device distribution network key indicating the distribution network object in the reference key information is ciphertext data generated based on the device identifier of the intelligent device, but not plaintext data of the device identifier of the distribution network object. Therefore, the information security of the reference key information is effectively ensured, the distribution network security is further improved, and the distribution network success rate is improved.
Fig. 9 is a block diagram of a network configuration device of an intelligent device according to an embodiment of the present application. The network distribution device of the intelligent device can be applied to the target intelligent device. As shown in fig. 9, the network configuration device 900 of the intelligent device includes:
the broadcasting module 901 is configured to broadcast a network allocation request, where the network allocation request includes a target device identifier of a target intelligent device, and the network allocation request is used for the intelligent gateway to send network configuration information to the target intelligent device when the reference key information configured out-of-band exists in the target device key after receiving the network allocation request.
A receiving module 902, configured to receive network configuration information, where the network configuration information includes an SSID of a wireless access point and a network key.
A connection module 903, configured to connect to a wireless access point according to network configuration information.
The target device key is data generated by the intelligent gateway by adopting the installation password generating device according to the target device identifier, and the reference key information comprises a device distribution network key of at least one intelligent device which is connectable to a wireless access point corresponding to the intelligent gateway.
Optionally, the receiving module 902 is further configured to receive and output a network allocation failure prompt message sent by the intelligent gateway, where the network allocation failure prompt message is a prompt message sent by the intelligent gateway to the target intelligent device when the target device key does not exist in the reference key information.
Optionally, the network configuration information includes an SSID of the wireless access point and an encrypted network key, where the encrypted network key is data obtained by encrypting the network key by the intelligent gateway using the target device key; the receiving module 902 is further configured to:
acquiring a target equipment key;
and decrypting the encrypted network key by adopting the target equipment key to obtain the decrypted network key.
In summary, in the network allocation device of the intelligent device provided in the embodiment of the present application, after receiving the network allocation request broadcast by the target intelligent device, the intelligent gateway may generate the target device key by using the installation password generating device according to the target device identifier of the target intelligent device carried by the network allocation request. The out-of-band configured reference key information comprises a device distribution network key of at least one intelligent device which is connectable to the wireless access point corresponding to the intelligent gateway. Therefore, by checking whether the target device key exists in the reference key information, whether the target intelligent device is a connectable object of the wireless access point corresponding to the intelligent gateway, namely, a network allocation object of the intelligent gateway is determined according to the checking result. And the network configuration information is sent to the target intelligent equipment under the condition that the target equipment key exists in the reference key information and indicates that the target intelligent equipment is a network allocation object of the intelligent gateway, so that the target intelligent equipment is connected with the wireless access point.
According to the technical scheme, the intelligent gateway is guaranteed to only send network configuration information to the corresponding network distribution object by checking the reference key information and the target device key of the target intelligent device, so that the network distribution service is provided. Therefore, the problem of incorrect network distribution of intelligent equipment to be distributed is avoided to a certain extent, and the success rate of network distribution is improved.
And, because the device distribution network key indicating the distribution network object in the reference key information is ciphertext data generated based on the device identifier of the intelligent device, but not plaintext data of the device identifier of the distribution network object. Therefore, the information security of the reference key information is effectively ensured, the distribution network security is further improved, and the distribution network success rate is improved.
The application provides electronic equipment to solve the problem that the network distribution method of the existing intelligent equipment is easy to cause the network distribution error of the network distribution equipment, and the network distribution success rate is low.
Referring to fig. 10, a block diagram of an electronic device according to an embodiment of the present application is shown. As shown in fig. 10, the electronic device 1000 includes a processor 1001, a memory 1002, and a program or an instruction stored in the memory 1002 and capable of running on the processor 1001, where the program or the instruction implements a step of an intelligent gateway in the network deployment method of an intelligent device provided in the embodiment of the present application, or implements a step of a target intelligent device in the network deployment method of an intelligent device provided in the embodiment of the present application when executed by the processor 1001.
The network allocation method of the electronic device and the intelligent device provided by the embodiment of the application has the same advantages as those of the prior art, and is not described in detail herein.
The application provides a readable storage medium to solve the problem that the network distribution method of the intelligent device is easy to cause the network distribution error of the network distribution device to be distributed and has low network distribution success rate.
The readable storage medium stores a program or an instruction, where the program or the instruction, when executed by a processor, implements a step of an intelligent gateway in a network allocation method of an intelligent device provided by an embodiment of the present application, or implements a step of a target intelligent device in a network allocation method of an intelligent device provided by an embodiment of the present application.
The readable storage medium has the same advantages as the network allocation method of the intelligent device provided in the embodiment of the present application compared with the prior art, and is not described herein.
The application provides a chip to solve the problem that the network distribution method of the intelligent equipment at present is easy to cause the network distribution error of the network distribution equipment, and the success rate of the network distribution is low.
The chip comprises a processor and a communication interface, wherein the communication interface is coupled with the processor, and the processor is used for running programs or instructions to realize the steps of an intelligent gateway in the network distribution method of the intelligent device or the steps of a target intelligent device in the network distribution method of the intelligent device.
The advantages of the chip and the network distribution method of the intelligent device provided by the embodiment of the application are the same as those of the prior art, and are not described in detail herein.
The foregoing description of the preferred embodiments of the present invention is not intended to limit the invention to the precise form disclosed, and any modifications, equivalents, and variations which fall within the spirit and principles of the present invention are intended to be included within the scope of the present invention.
It should be noted that, in the embodiment of the present application, the various data-related processes are all performed under the condition of conforming to the corresponding data protection rule policy of the country of the location and obtaining the authorization given by the owner of the corresponding device.

Claims (10)

1. A network allocation method for an intelligent device, applied to an intelligent gateway, the method comprising:
receiving a network allocation request broadcasted by a target intelligent device, wherein the network allocation request comprises a target device identifier of the target intelligent device;
generating a target equipment key by adopting an installation password generating method according to the target equipment identifier;
acquiring out-of-band configured reference key information, wherein the reference key information comprises a device distribution network key of at least one intelligent device which is connectable to a wireless access point corresponding to the intelligent gateway;
Performing key verification on the reference key information and the target equipment key;
and under the condition that the target equipment key exists in the reference key information, sending network configuration information to the target intelligent equipment, wherein the network configuration information comprises a wireless local area network name SSID and a network key of the wireless access point, and the network configuration information is used for the target intelligent equipment to connect with the wireless access point.
2. The method of claim 1, wherein the device distribution network key in the reference key information is updated periodically; the generating a target device key by adopting an installation password generating method according to the target device identifier comprises the following steps:
determining an initial key value and a salt value corresponding to the current updating period of the reference key information according to the target equipment identifier;
and generating a target equipment key with the length of the reference key by adopting a key derivation method according to the initial key value, the salt value, the reference iteration times and the reference key length.
3. The method of claim 2, wherein the device distribution network key is data generated by adopting a key derivation method according to a reference iteration number, a reference key length, an initial key value and a salt value of the intelligent device when the update opportunity of the reference key information is satisfied, the initial key value of the intelligent device is data generated by adopting a data generation algorithm corresponding to a current update period of the reference key information according to a device identifier of the intelligent device, and the salt value of the intelligent device is the device identifier of the intelligent device;
The determining, according to the target device identifier, the initial key value and the salt value corresponding to the reference key information in the current update period includes:
generating an initial key value of the target intelligent device by adopting a data generation algorithm corresponding to the current updating period of the reference key information according to the target device identifier;
and determining the target equipment identification as the salt value of the target intelligent equipment.
4. The method according to claim 1, wherein the method further comprises:
and sending a network distribution failure prompt message to the target intelligent equipment under the condition that the target equipment key does not exist in the reference key information.
5. The method of claim 1, wherein prior to said sending network configuration information to said target smart device, the method further comprises:
encrypting the network key by adopting the target equipment key to obtain the encrypted network key;
generating the network configuration information, wherein the network configuration information comprises the SSID of the wireless access point and the encrypted network key.
6. A network allocation method for an intelligent device, applied to a target intelligent device, the method comprising:
Broadcasting a distribution network request, wherein the distribution network request comprises a target equipment identifier of the target intelligent equipment, and the distribution network request is used for the intelligent gateway to send network configuration information to the target intelligent equipment under the condition that the out-of-band configured reference key information exists a target equipment key after receiving the distribution network request;
receiving the network configuration information, wherein the network configuration information comprises a wireless local area network name SSID and a network key of a wireless access point;
connecting the wireless access point according to the network configuration information,
the target device key is data generated by the intelligent gateway according to the target device identifier by adopting an installation password generation method, and the reference key information comprises a device distribution network key of at least one intelligent device which is connectable to a wireless access point corresponding to the intelligent gateway.
7. The method according to claim 6, wherein the network configuration information includes an SSID of the wireless access point and the encrypted network key, and the encrypted network key is data obtained by encrypting the network key by the intelligent gateway using the target device key; the connecting the wireless access point according to the network configuration information comprises:
Acquiring the target equipment key;
and decrypting the encrypted network key by adopting the target equipment key to obtain the decrypted network key.
8. A network distribution device for an intelligent device, applied to an intelligent gateway, the device comprising:
the receiving module is used for receiving a network allocation request broadcasted by the target intelligent equipment, wherein the network allocation request comprises a target equipment identifier of the target intelligent equipment;
the generation module is used for generating a target equipment key by adopting an installation password generation method according to the target equipment identifier;
the acquisition module is used for acquiring out-of-band configured reference key information, wherein the reference key information comprises equipment distribution network keys of at least one intelligent equipment which is connectable to a wireless access point corresponding to the intelligent gateway;
the checking module is used for checking the key between the reference key information and the target equipment key;
the sending module is configured to send network configuration information to the target intelligent device when the target device key exists in the reference key information, where the network configuration information includes a wireless local area network name SSID of the wireless access point and a network key, and the network configuration information is used for the target intelligent device to connect to the wireless access point.
9. A network distribution device for an intelligent device, applied to a target intelligent device, the device comprising:
the intelligent gateway comprises a broadcasting module, a network allocation module and a network configuration module, wherein the broadcasting module is used for broadcasting a network allocation request, the network allocation request comprises a target equipment identifier of the target intelligent equipment, and the network allocation request is used for the intelligent gateway to send network configuration information to the target intelligent equipment under the condition that a target equipment key exists in out-of-band configured reference key information after the network allocation request is received;
a receiving module, configured to receive the network configuration information, where the network configuration information includes a wireless local area network name SSID and a network key of a wireless access point;
a connection module for connecting the wireless access point according to the network configuration information,
the target device key is data generated by the intelligent gateway according to the target device identifier by adopting an installation password generation method, and the reference key information comprises a device distribution network key of at least one intelligent device which is connectable to a wireless access point corresponding to the intelligent gateway.
10. An electronic device comprising a processor, a memory and a program or instruction stored on the memory and executable on the processor, the program or instruction when executed by the processor implementing the steps of the network deployment method of a smart device according to any one of claims 1 to 5 or the steps of the network deployment method of a smart device according to any one of claims 6 to 7.
CN202311781644.4A 2023-12-21 2023-12-21 Network distribution method and device of intelligent equipment and electronic equipment Pending CN117880805A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN202311781644.4A CN117880805A (en) 2023-12-21 2023-12-21 Network distribution method and device of intelligent equipment and electronic equipment

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN202311781644.4A CN117880805A (en) 2023-12-21 2023-12-21 Network distribution method and device of intelligent equipment and electronic equipment

Publications (1)

Publication Number Publication Date
CN117880805A true CN117880805A (en) 2024-04-12

Family

ID=90593904

Family Applications (1)

Application Number Title Priority Date Filing Date
CN202311781644.4A Pending CN117880805A (en) 2023-12-21 2023-12-21 Network distribution method and device of intelligent equipment and electronic equipment

Country Status (1)

Country Link
CN (1) CN117880805A (en)

Similar Documents

Publication Publication Date Title
US20240064003A1 (en) Encryption Method, Decryption Method, and Related Apparatus
US20190068591A1 (en) Key Distribution And Authentication Method And System, And Apparatus
US8094822B2 (en) Broadcast encryption key distribution system
EP3537652B1 (en) Method for securely controlling smart home appliance and terminal device
US11909869B2 (en) Communication method and related product based on key agreement and authentication
KR20090111315A (en) Power distribution system secure access communication system and method
CN113545115B (en) Communication method and device
CN115632779B (en) Quantum encryption communication method and system based on power distribution network
CN112187757A (en) Multilink privacy data circulation system and method
CN101697522A (en) Virtual private network networking method, communication system and related equipment
CN112512064B (en) Wireless distribution network method, wireless gateway and equipment to be accessed
JP2007110487A (en) Lan system and its communication method
CN111787514B (en) Method and device for acquiring equipment control data, storage medium and electronic device
KR20190040443A (en) Apparatus and method for creating secure session of smart meter
JP5721183B2 (en) Wireless LAN communication system, wireless LAN base unit, communication connection establishment method, and program
CN114390521A (en) Key updating method, device, equipment and storage medium
JP7404540B2 (en) Privacy information transmission methods, devices, computer equipment and computer readable media
CN117880805A (en) Network distribution method and device of intelligent equipment and electronic equipment
CN111800791B (en) Authentication method, core network equipment and terminal
CN111510991A (en) Method and device for updating new password, computer equipment and storage medium
CN110830243A (en) Symmetric key distribution method, device, vehicle and storage medium
KR20190050949A (en) Method and apparatus of constructing secure infra-structure for using embedded universal integrated circuit card
JP2006191429A (en) Authentication method and system in assembly type customer station network
CN111432404B (en) Information processing method and device
CN111194031B (en) Wireless hotspot connection method and device, electronic equipment and system

Legal Events

Date Code Title Description
PB01 Publication