CN1852192A - Network identifying method in wireless local network - Google Patents

Network identifying method in wireless local network Download PDF

Info

Publication number
CN1852192A
CN1852192A CN 200510100430 CN200510100430A CN1852192A CN 1852192 A CN1852192 A CN 1852192A CN 200510100430 CN200510100430 CN 200510100430 CN 200510100430 A CN200510100430 A CN 200510100430A CN 1852192 A CN1852192 A CN 1852192A
Authority
CN
Grant status
Application
Patent type
Prior art keywords
service set
extended service
ess
extended
id
Prior art date
Application number
CN 200510100430
Other languages
Chinese (zh)
Inventor
姚忠辉
Original Assignee
华为技术有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date

Links

Abstract

The wireless local area network includes at least one basic service set (BSS) in architecture of including multiple terminal devices. The BSS includes at least one extension service set (ESS). The method includes steps: ESS id of using unique id is adopted in the ESS; in time of scanning channels, the method adds id parameters for ESS; when terminal device is initial accessed, setting up id parameters of ESS as broadcast address of medium access control (MAC); otherwise, setting up it as specific id of ESS; in selecting network, the method synchronizes corresponding ESS; authentication and association are carried out for id of ESS as parameter by network system. Since setting up a new id of ESS in use for identifying each terminal device, and BSS id in different ESS, the method can unifies id globally. Thus, the invention meets need of quick roam for 802.11 terminals under same ESS.

Description

一种无线局域网中网络识别的方法 A wireless LAN network identification method

技术领域 FIELD

本发明涉及一种网络识别的方法,尤其涉及的是一种无线局域网中的网络识别方法。 The present invention relates to a method for identifying a network, in particular, it relates to a method for identifying a network in a wireless LAN.

背景技术 Background technique

现有技术中,WLAN(无线局域网)技术因其在联网的无线化特点、可比拟有线的高速率接入以及其价格低廉等优势而深受市场的欢迎。 Art, WLAN (wireless local area network) technology for its wireless networking technology features, comparable to wired high-speed access, and its low cost and other advantages and welcomed by the market. 目前已开始取代有线广泛应用于家庭、校园、酒店、企业办公等场合,并开始作为一种无线宽带接入技术广泛部署于公众场合,提供公众无线宽带数据接入服务。 Has begun to replace wired widely used in homes, schools, hotels, corporate offices and other occasions, and began as a wireless broadband access technology widely deployed in public places to provide public access wireless broadband data services. ISO/IEC 8802-11:1999“信息技术系统间远程通信和信息交换局域网和城域网特定要求第11部分:无线LAN某体访问控制(MAC,Media AccessControl地址是识别局域网节点的标识)和物理层(PHY)规范”是WLAN的国际标准,其内容对应IEEE 802.11标准。 ISO / IEC 8802-11: 1999 "Information technology - Telecommunications and information exchange between systems - Part 11 LAN and MAN specific requirements: a body of the wireless LAN access control (MAC, Media AccessControl address is an identification that identifies the LAN nodes) and physical layer (PHY) specifications "is the international standard WLAN, which content corresponds to the IEEE 802.11 standard.

中国也发布了WLAN国家标准GB/T 15629.11-2003,其与国际标准的主要差别在于在接入控制的安全机制。 China also released a WLAN National Standard GB / T 15629.11-2003, with the main difference is that international standards in security access control. 事实上,市场广泛应用的WLAN产品主要是IEEE 802.11标准项目组发布的针对IEEE 802.11的补充规范,包括IEEE802.11b、IEEE 802.11g、IEEE 802.11a等。 In fact, the market is widely used WLAN standard IEEE 802.11 products are mainly project team released supplement for IEEE 802.11 specification, including IEEE802.11b, IEEE 802.11g, IEEE 802.11a and so on. 其中,802.11b、802.11g工作于2.4Hz频段,802.11a工作在5GHz频段。 Which, 802.11b, 802.11g work at 2.4Hz frequency band, 802.11a working in 5GHz band. 802.11b支持的物理层速率可达到11Mb/s,802.11g、802.11a支持的物理层速率可达到54Mb/s。 802.11b physical layer supports rates up to 11Mb / s, 802.11g, 802.11a physical layer supports rates up to 54Mb / s. 目前IEEE 802.11正在制订支持更高吞吐量的标准802.11n以更好地支持各种实时业务及多媒体应用,增大系统容量。 Currently being developed IEEE 802.11 standard 802.11n supports higher throughput to better support the various real-time services and multimedia applications and increase the system capacity.

根据IEEE 802.11标准定义的WLAN系统,其基本结构如图1所示,STA(Station)指包含IEEE 802.11无线局域网接口的终端设备,目前市场上许多手机都支持无线局域网接口,便携机也已内置无线局域网接口。 The IEEE 802.11 standard defines a WLAN system, the basic structure shown in Figure 1, STA (Station) terminal apparatus comprising means IEEE 802.11 wireless local area network interface, the mobile phones currently on the market are many wireless local area network interface, the portable device has built-in wireless LAN interface. 对于一些不带无线局域网接口的设备,可以通过安装WLAN无线网卡的方式,提供无线局域网接口。 For some embodiments without wireless LAN device interface, can be mounted WLAN wireless network card, wireless local area network interface.

如图1所示的,AP(Access Point)即接入点,相当于移动网络的基站,其主要功能是使得各终端设备STA能与其它的STA或有线网络的相关设备进行通信,例如:多个STA接入到一个AP组成一个无线局域网进行通信,接入到不同的AP的STA组成一个局域网进行通信,以及STA与有线局域网的相关设备进行通信等等。 Shown in FIG. 1, AP (Access Point) that is an access point, a base station corresponding to a mobile network, its main function is such that each terminal device can communicate with another STA to STA wired network or related devices, for example: multi- a STA to an AP access form a wireless LAN communication, an access to a different AP STA consisting of a local area network communications, and the STA associated with the wired LAN communication device and the like. 关联到一个AP下的STA就构成了一个基本服务集(BSS)。 Associated with one AP at the STA constitutes a basic service set (BSS).

其中,DS(Distribution System)即分发系统,使得不同的基本服务集BSS之间、以及BSS与有线局域网之间能够组成一个大的局域网,称之为扩展服务集ESS;其中portal是指提供DS与有线局域网之间MAC服务数据单元(MSDUs)转发的逻辑点。 Wherein, DS (Distribution System) i.e. the distribution system, such that the different between the basic service set BSS, BSS and able to form between a wired LAN and a large LAN, the ESS is called an extended service set; refers to the DS where the portal MAC service data unit (of MSDUs for) forwarded between the wired LAN logical point.

在802.11标准中定义了服务集标识SSID,有时也被称之为ESSID,用于标识一个扩展服务集ESS,即当BSS通过DS互联组成一个ESS时,各AP上配置的SSID是相同的。 Is defined in the 802.11 standard service set identifier SSID, also sometimes referred to as ESSID, for identifying an ESS Extended Service Set, BSS i.e. when DS composed of a network through ESS, SSID arranged on each AP are the same. 但是,由于SSID的定义并没有一个全局编码的规范,即使是两个完全独立的不同的网络,也可能配置相同的SSID,因此,在实际应用中,即使两个BSS配置的SSID是一样的,也不能由此确定这两个BSS属于同一个ESS。 However, since the SSID does not define a global coding specification, even if two different networks completely independent, also possible to configure the same SSID, therefore, in practical application, even if the two SSID BSS configuration is the same, thereby determining not both belong to the same BSS ESS.

当一个STA从ESS内的一个BSS漫游到另一个BSS时,由于SSID不能可信地用于标识ESS,因此实质上不可能在STA与ESS之间建立任何关系;跨BSS的漫游相当于跨两个不同物理网络,这导致了STA与新的BSS重建关联特别是安全关联的复杂性,如需要预认证或重认证等。 When an STA roams from one BSS to another BSS within an ESS, since the SSID used to identify the ESS can not be trusted, and therefore virtually impossible to establish any relationship between the STA and the ESS; BSS roaming across two cross-equivalent different physical networks, which led to the BSS associated with the new STA reconstruction particular complexity of security association, such as the need to pre-authentication or re-authentication. 而且现有技术在漫游前进行目标BSS选择时,无法判断目标BSS是否与当前的BSS属于同一个ESS。 And when the prior art were selected before the target BSS roaming, it can not determine whether the current target BSS BSS belong to the same ESS.

因此,现有技术还存在缺陷,而有待于改进和发展。 Thus, the prior art also flawed, but room for improvement and development.

发明内容 SUMMARY

本发明的目的在于提供一种无线局域网中网络识别的方法,对应802.11标准定义的扩展服务集ESS概念,提出了一种ESS识别方案,能唯一标识不同的ESS,并满足802.11终端在同一ESS之下快速漫游的需求。 Object of the present invention is to provide a method for wireless local area network identification, corresponding to an extended service set ESS 802.11 standard defines the concept of ESS proposed identification scheme, can uniquely identify different ESS, and meet at the same ESS terminal 802.11 fast roaming needs.

为达到上述目的,本发明的技术方案包括:一种无线局域网中网络识别的方法,所述无线局域网包括多个终端设备架构而成,所述多个终端设备组成至少一个基本服务集,所述基本服务集又组成至少一扩展服务集;所述方法包括步骤:A、对所述扩展服务集采用唯一标识的扩展服务集标识,在进行信道扫描时,增加该扩展服务集标识参数;B、当终端设备初次接入时,将其扩展服务集标识参数设置为媒体访问控制广播地址;否则,设置为特定的扩展服务集标识;C、在网络选择时如果所述终端设备的扩展服务集标识参数不为媒体访问控制广播地址,则判断对应信道是否属于与该终端设备相同扩展服务集标识的扩展服务集,如是则同步到对应的扩展服务集,并以该扩展服务集标识为参数与网络系统进行鉴权和关联。 To achieve the above object, the technical solution of the present invention comprises: in a wireless local area network identification method, the wireless local area network architecture comprising a plurality of terminal devices from the plurality of terminal equipment into at least one basic service set, the and basic service set consisting of at least one extended service set; said method comprising the steps of: a, using an extended service set identifier that uniquely identifies the extended service set, during channel scanning, the increase in an extended service set identification parameters; B, when the first access terminal, which is an extended service set identification parameter set to a media access control address of the broadcast; otherwise, set to identify a specific extended service set; C, when an extended service set network selection if the identifier of the terminal device parameter is not a media access control broadcast address, it is determined whether the corresponding channel part of an extended service set to the terminal devices with the same extended service set identification, the case of synchronization to a corresponding extended service set, and in that an extended service set identifier as a parameter to the network system authentication and association.

所述的方法,其中,所述扩展服务集标识为对应扩展服务集的媒体访问控制广播地址。 The method of claim, wherein said extended service set identification address corresponding control broadcast media access an extended service set.

所述的方法,其中,所述扩展服务集表示为对应扩展服务集与外部网络互通的入口地址。 The method of claim, wherein the extended service set expressed as an extended service set corresponding to the external network interworking entry address.

所述的方法,其中,所述基本服务集所属的扩展服务集通过802.11信标帧中增加域扩展服务集广播其扩展服务集标识。 The method of claim, wherein said basic service set belongs to an extended service set by increasing the 802.11 beacon frame broadcast domain extended service set its extended service set identifier.

所述的方法,其中,所述基本服务集属于多个扩展服务集时,在所述域扩展服务集设置一扩展服务集标识的列表。 The method of claim, wherein said plurality of basic service sets belonging to an extended service set, a list is provided in an extended service set identifier of the domain extended service set.

所述的方法,其中,还包括:在信道扫描的应答帧中增加相应域扩展服务集携带其扩展服务集标识。 The method of claim, wherein further comprising: increasing the respective domains which carries an extended service set in an extended service set identifier response frame in the channel scanning.

所述的方法,其中,所述应答帧中未携带扩展服务集标识或扩展服务集标识为广播地址时,对应域扩展服务集标识为该基本服务集的扩展服务集标识。 The method of claim, wherein said response frame is not carried in an extended service set identifier or extended service set identification when a broadcast address, the corresponding field for an extended service set identifier extended service set identifier Basic Service Set.

所述的方法,其中,所述无线局域网根据所述扩展服务集标识对应为一层级架构,该层级架构包括:一基本服务集级和一扩展服务集级;一鉴权服务器连接该两级网络,并且各终端设备与鉴权服务器之间进行身份认证,协商主密钥,并生成相应的扩展服务集域密钥,以及基本服务集域密钥即会话密钥。 The method of claim, wherein the wireless local area network according to the extended service set identifier corresponding to a hierarchical structure, the hierarchical architecture comprising: a basic service set and an extended service set stage stage; a network authentication server connected to the two , and performs authentication, key negotiation between the master terminal device and the authentication server, and generate a corresponding set of extended service domain key and the domain key that is a basic service set session key.

所述的方法,其中,所述会话密钥依据所述扩展服务集域密钥生成,而所述扩展服务集域密钥依据所述终端设备与鉴权服务器之间协商的主密钥生成。 The method of claim, wherein the session key according to the key generation domain extended service set, an extended service set and the domain master key according to the key negotiation between the terminal device and the authentication server generates.

本发明所提供的一种无线局域网中网络识别的方法,由于设置了一新的扩展服务集标识以用于各终端设备和基本服务集在不同扩展服务集中的标识识别,能够统一标识,并且满足了802.11终端在同一ESS之下快速漫游的需求。 The present invention provides a wireless local area network identification method, since a new extended service set identifier for identifying each terminal device identifier and a basic service set in a different extended service set, identification can be unified, and satisfying 802.11 terminal under the same ESS fast roaming needs.

附图说明 BRIEF DESCRIPTION

图1为现有技术的802.11标准所规定的网络架构图;图2为本发明的无线局域网的网络架构示意图;图3a为本发明方法的信道扫描时的被动扫描的流程图;图3b为本发明方法的信道扫描时的主动扫描的流程图;图4为本发明方法的无线局域网的网络架构示意图。 FIG 1 is a network architecture defined in the 802.11 standard prior art; wireless local area network architecture diagram of the present invention. FIG. 2; passive scanning when the flowchart of the method of the present invention, the channel scan FIG. 3A; FIG. 3b present active scanning when the flowchart of a channel scanning method of the present invention; wireless local area network architecture diagram of the method of the present invention in FIG. 4.

具体实施方式 Detailed ways

以下结合附图,将对本发明的各较佳实施例进行较为详细的说明。 Conjunction with the drawings, various preferred embodiments of the present invention will be described in more detail.

本发明所述的无线局域网中网络识别的方法中,其设置了一新的ESS标识:扩展服务集标识ESSID,在现有的802.11标准定义的基本服务集BSS采用的标识BSSID是AP的MAC地址。 The method of the present invention, the WLAN network identified, a new set of ESS identifier: the ESSID Extended Service Set Identifier, BSSID Basic Service Set identifier defined in an existing 802.11 standard BSS using the MAC address of the AP . 对于ESS,采用SSID,不同于BSSID,SSID是一个字符串,目前唯一的应用是用户区分同一个AP上不同的用户群或业务。 For the ESS, the SSID employed, different from the BSSID, SSID is a string, the only application of the user to distinguish between different users on the same AP or service. 因此即使两个BSS设置有同样的SSID,也并不意味着这两个BSS就属于同一个ESS,SSID没有全局的编码方法。 Therefore, even if the two BSS is provided with same SSID, BSS does not mean that the two belong to the same ESS, SSID no global coding method. 因此,在本发明方法中,采用类似BSSID的定义方法,也使用一个MAC地址来标识一个ESS,称之为ESSID。 Thus, in the process of the present invention, a method analogous define a BSSID, a MAC address is also used to identify one the ESS, called ESSID. 由于MAC地址具有全局性的唯一标识性,因此不同的ESS可以通过MAC地址来唯一标识,这样,不同的ESS就具有不同的ESSID了。 Since the MAC address of the global unique identifier, so that different ESS may be uniquely identified by a MAC address, so that different ESS would have a different ESSID.

具体到本发明方法的一个ESS的实施例中,其ESSID可以是该ESS与外部网络互通的入口地址(Entrance Address)。 ESS to a particular embodiment of the method of the present invention, which may be the entry address of the ESSID ESS interworking with external networks (Entrance Address). 当该ESS完全是一种孤岛形式,即不与任何外部系统联系时,其ESSID可以设定为MAC广播地址。 When the ESS is a completely island form, i.e. without contact with any external system, which may be set ESSID broadcast MAC address.

在本发明方法的一个无线局域网物理网络中,可以只包含一个BSS,也可以只包含一个ESS,或也可以包含多个ESS。 In a wireless local area network physical method of the present invention, the BSS may comprise only one, the ESS may also contain only one, or may also comprise a plurality of ESS. 并且本发明方法允许一个BSS同时属于多个ESS,例如当该局域网存在多个与外部网络互通的入口时。 And the method of the present invention allows a plurality of BSS belongs ESS, for example, when there are a plurality of interworking with external networks inlet of the local area network. 由于无线局域网中的终端设备具有移动性,因此,无线局域网的架构不同于有线局域网,具有一定的灵活性。 Since the wireless local area network having a mobile terminal device, therefore, different from the wireless LAN wired LAN infrastructure, it has some flexibility. ESS与BSS之间的这种灵活的包含关系如图2所示的,BSS#1和BSS#2既属于ESS#1,又属于ESS#2;BSS#1和BSS#2以及BSS#3同属于ESS#1,BSS#1和BSS#2以及BSS#4同属于ESS#2。 This flexibility between the ESS and BSS comprises a relationship shown in FIG. 2, BSS # 1 and # 2 both belonging BSS ESS # 1, and belongs to ESS # 2; BSS # 1 and # 2 and the BSS BSS # 3 with belong to ESS # 1, BSS # 1 and and BSS # 2 BSS # 4 belong to ESS # 2.

本发明方法的工作原理包括:在基于ESSID的网络选择中,一个STA接入一个无线局域网存在以下几种情形:1)STA首次接入,不知道该网络的ESSID;2)STA要求接入特定的ESS,获知其ESSID;例如,漫游接入的情形,此时STA已接入特定的ESS,但要求从当前BSS漫游到该ESS内的另一个BSS。 The working principle of the present invention comprises a method of: selecting a network based on the ESSID in the presence of a STA access to a wireless local area network following situations:. 1) access the first STA, the network does not know ESSID; 2) requires access to a particular STA of the ESS, which is the ESSID known; for example, the case of roaming access, in which case the ESS STA has access to a specific, but requires roams from the current BSS to another BSS within the ESS.

基于ESSID的网络选择方法就是,在进行信道扫描时,增加参数ESSID。 Network selection method is based on the ESSID, during channel scanning, to increase the parameter ESSID. 当STA首次接入时,将ESSID设置为MAC广播地址;否则设置为特定的ESSID,即其所属的扩展服务集标识。 When the STA first access, the ESSID is set to a broadcast MAC address; otherwise, set to a specific ESSID, i.e., an extended service set identifier to which it belongs. 当参数ESSID为广播地址时,网络选择依赖于其他参数,与现有技术相同。 When the parameter ESSID broadcast address, the network selection depends on other parameters, the same as the prior art. 当参数ESSID不为广播地址时,只有当对应信道属于该ESS即拥有与终端同样的ESSID时,才允许同步到对应的ESS,并以该ESSID为参数与系统进行鉴权、关联等处理。 When the ESSID is not broadcast address parameters only when a corresponding channel ESS i.e. belonging to the same terminal has synchronization ESSID, corresponding to allowed the ESS, and authentication processing, and other parameters associated with the ESSID system.

本发明方法的无线网络中增加扩展服务集标识ESSID后,可通过在802.11信标(Beacon)帧增加相应域ESS广播该BSS所属于的ESSID,当一个BSS同时属于多个ESS时,该域包含一个ESSID列表;同时802.11探询帧Probe Request可增加相应域ESS携带ESSID,以主动扫描属于相应ESS的BSS;如图3a和图3b所示的,IEEE 802.11 Probe Response增加相应域ESS携带ESSID,当802.11 Probe Request未携带ESSID或ESSID为广播地址时,该域ESSID为该BSS所属的ESSID;或当BSS属于Probe Request所携带的ESSID对应ESS时,该域中ESSID等于Probe Request中对应ESSID值。 After the wireless network method of the present invention to increase the ESSID Extended Service Set Identifier, ESSID 802.11 by the beacon (the Beacon) broadcast frame a corresponding increase in the ESS domain BSS belongs, when a plurality of ESS BSS belongs, the domain comprises a list of ESSID; Probe Request frame while polling 802.11 increase ESS carry respective domains ESSID, corresponding BSS belonging to an active scanning of the ESS; Figures 3a and 3b shown, IEEE 802.11 Probe Response carrying ESSID corresponding increase ESS domain, when 802.11 when Probe Request does not carry the ESSID ESSID or a broadcast address, the ESSID field ESSID for BSS belongs; or when Probe Request BSS belonging carried ESSID corresponding to the ESS, the ESSID is equal Probe Request field corresponding ESSID value. 本发明方法中的被动扫描由BSS对STA发起,而主动扫描由STA主动发起。 The method of the present invention, the passive scanning STA initiated by BSS, and initiates active scanning by the STA.

本发明方法在确定ESSID后,802.11鉴权过程及关联过程可以增加ESSID参数,使得鉴权过程及关联过程与ESS关联起来,方便其鉴权。 The method of the present invention, after determining the ESSID, 802.11 authentication process and the association process parameters ESSID may be increased, so that the authentication procedure and the association procedure together with ESS, which facilitate authentication. 当ESSID为广播地址或该域为空时,上述相关处理流程与原来802.11标准相同。 When the ESSID is a broadcast address or the field is empty, the correlation processing flow identical with the original 802.11 standard.

当本发明方法设置了参数ESSID之后,就可以将无线局域网对应到一个层级安全架构中,在无线局域网内分为两级:ESS级及BSS级;如图4所示的,所述硬件网络中BSS可以交叉设置架构ESS,一鉴权服务器AS连接该分为两级的硬件网络,终端设备STA分别通过会话密钥PTK与BSS通讯,通过ESS密钥通信连接ESS,通过主密钥连接鉴权服务器AS。 When the method of the present invention the ESSID set parameters, may correspond to a wireless local area network level security architecture is divided into two in the WLAN: ESS and BSS grade level; shown in FIG. 4, the network hardware cROSS ESS BSS may set architecture, an authentication server AS connected to the network hardware is divided into two, respectively, through a terminal device STA session key PTK communication with BSS, ESS key via the communication connection ESS, the connection through authentication master key server AS.

基于该层级结构,当STA首次接入系统时,STA与鉴权服务器AS之间进行身份认证,协商主密钥MSK,并生成相应的ESS域密钥,以及BSS域密钥即会话密钥PTK。 Based on the hierarchical structure, when the first access system STA, STA performed between the authentication server AS and the authentication, negotiation master key MSK, and generate the appropriate ESS domain key, i.e., the domain key and the session key BSS PTK . STA与AP之间的会话密钥依据ESS域密钥生成,而ESS域密钥(ESS KEY)则依据STA与AS之间协商的主密钥生成。 Session key between the AP and the STA generate the domain key based ESS, the domain key ESS (ESS KEY) is generated based on negotiation between the master key and the AS STA. 因此,当STA在一个ESS内的BSS之间漫游时,只需要重新协商会话密钥,不需要802.11i所述预认证或重认证,减少了漫游处理的流程,实现了方便快捷的漫游通信。 Accordingly, when roaming between a STA BSS within the ESS, only need to renegotiate the session key, the 802.11i does not require re-authentication or pre-authentication, reducing the flow of the roaming process, to achieve a convenient roaming communication.

在上述本发明的层级架构中,在MSK的生命周期内,可以进行ESS KEY的定期更新,在ESS KEY的生命周期内,允许进行PTK的定期更新。 In the hierarchy of the present invention, in the life cycle of the MSK, may be regularly updated ESS KEY in the ESS KEY life cycle, allowing the PTK regularly updated. PTK、MSK的定义与IEEE 802.11i的PTK、MSK定义相对应,唯一的差别在于802.11i的PTK根据MSK生成,而本发明方法中的PTK是根据ESS KEY生成的。 PTK, MSK are as defined in IEEE 802.11i PTK, MSK corresponding to the definition, the only difference being the PTK 802.11i according MSK generation, the method of the present invention is based on ESS KEY PTK generated.

本发明方法的各密钥表示了协商双方之间的信任关系,并且须注意的是,上述架构示意图仅示出了本发明方法系统的基本架构,在实际应用中,如所述鉴权服务器可能与所述层级网络之间可以增加其他连接层次,而这些显然也在本发明的技术构思范围内。 Each key of the method of the present invention showing the relationship of trust between both parties, and it should be noted that the above architecture diagram only shows the basic system architecture of the method of the present invention, in practical applications, as the authentication server may between the network and may increase the level of other connection levels, which are apparently technical concept of the present invention range.

本发明方法对应802.11定义的ESS概念,提供了一种ESS识别方案,即设置一新的参数ESSID,利用MAC地址这一全局性的唯一标识参数,能够唯一的标识不同的ESS,并满足了802.11终端在同一ESS之下快速漫游的需求。 The method of the present invention corresponds to the concept defined in the 802.11 ESS, ESS provides an identification scheme, i.e. the ESSID set a new parameter, the MAC address uniquely identifies the global parameters can be different ESS unique identifier, and met 802.11 under the same terminal ESS fast roaming needs.

本发明方法可基于该唯一标识进行网络选择,并将安全机制对应到一种层级结构,增加ESS-KEY,避免了ESS内跨BSS漫游时802.11i所要求的预认证或重认证,实现漫游更迅速。 The method of the present invention may be based on the unique identifier for the network selection, and corresponds to one kind of security hierarchy increase ESS-KEY, avoiding the pre-authentication or re-authentication when the ESS inter-BSS 802.11i required roaming, roaming more rapid.

应当理解的是,上述针对具体实施例的描述较为具体,并不能因此而认为是对本发明专利专利保护范围的限制,本发明的专利保护范围应以所附权利要求为准。 It should be understood that the foregoing description of the specific embodiments for a more specific embodiment, and therefore can not be considered as limiting the scope of protection of the present patent disclosure, the scope of protection of the present invention shall be defined in the appended claims.

Claims (9)

  1. 1.一种无线局域网中网络识别的方法,所述无线局域网包括多个终端设备架构而成,所述多个终端设备组成至少一个基本服务集,所述基本服务集又组成至少一扩展服务集;所述方法包括步骤:A、对所述扩展服务集采用唯一标识的扩展服务集标识,在进行信道扫描时,增加该扩展服务集标识参数;B、当终端设备初次接入时,将其扩展服务集标识参数设置为媒体访问控制广播地址;否则,设置为特定的扩展服务集标识;C、在网络选择时如果所述终端设备的扩展服务集标识参数不为媒体访问控制广播地址,则判断对应信道是否属于与该终端设备相同扩展服务集标识的扩展服务集,如是则同步到对应的扩展服务集,并以该扩展服务集标识为参数与网络系统进行鉴权和关联。 A wireless LAN network identification method, the wireless local area network architecture comprising a plurality of terminal devices from the plurality of terminal equipment into at least one basic service set, composed of the basic service set and the at least one extended service set ; the method comprising the steps of: a, using an extended service set identifier that uniquely identifies the extended service set, during channel scanning, the increase in an extended service set identification parameters; B, when the first access terminal, which is extended service set identifier parameter set to a media access control address of the broadcast; otherwise, set to a specific extended service set identifier; C, when the network selection if the extended service set identification parameters of the terminal device is not a media access control is broadcast address determining whether the corresponding channel belonging to the same extended service set extended service set identifier with the terminal device, the case corresponding to the synchronization extended service set, and in that an extended service set identifier as a parameter to the network system for authentication and association.
  2. 2.根据权利要求1所述的方法,其特征在于,所述扩展服务集标识为对应扩展服务集的媒体访问控制广播地址。 2. The method according to claim 1, wherein the extended service set identification address corresponding control broadcast media access an extended service set.
  3. 3.根据权利要求1所述的方法,其特征在于,所述扩展服务集标识为对应扩展服务集与外部网络互通的入口地址。 3. The method according to claim 1, wherein the extended service set identification address entry corresponding extended service set interworking with external networks.
  4. 4.根据权利要求1所述的方法,其特征在于,所述基本服务集所属的扩展服务集通过802.11信标帧中增加域扩展服务集广播其扩展服务集标识。 4. The method according to claim 1, characterized in that, an extended service set belongs to the basic service set by increasing the 802.11 beacon frame broadcast domain extended service set its extended service set identifier.
  5. 5.根据权利要求4所述的方法,其特征在于,所述基本服务集属于多个扩展服务集时,在所述域扩展服务集设置一扩展服务集标识的列表。 5. The method according to claim 4, wherein said plurality of basic service sets belonging to an extended service set, a list is provided in an extended service set identifier of the domain extended service set.
  6. 6.根据权利要求1所述的方法,其特征在于,还包括:在信道扫描的应答帧中增加相应域扩展服务集携带其扩展服务集标识。 6. The method according to claim 1, characterized in that, further comprising: increasing the respective domains which carries an extended service set in an extended service set identifier response frame in the channel scanning.
  7. 7.根据权利要求6所述的方法,其特征在于,所述应答帧中未携带扩展服务集标识或扩展服务集标识为广播地址时,对应域扩展服务集标识为该基本服务集的扩展服务集标识。 7. The method according to claim 6, wherein said response frame is not an extended service set identifier carried in an extended service set identifier or a broadcast address, an extended service set identifier corresponding to the domain for the extension of service basic service set set identity.
  8. 8.根据权利要求1所述的方法,其特征在于,所述无线局域网根据所述扩展服务集标识对应为一层级架构,该层级架构包括:一基本服务集级和一扩展服务集级;一鉴权服务器连接该两级网络,并且各终端设备与鉴权服务器之间进行身份认证,协商主密钥,并生成相应的扩展服务集域密钥,以及基本服务集域密钥即会话密钥。 8. The method according to claim 1, wherein the wireless local area network as a service set identifier corresponding to the extended according to the hierarchy, the hierarchy architecture comprising: a basic service set level and a level extended service set; a two authentication server connected to the network, and performs authentication between the terminal device and the authentication server, negotiated master key, and generates the corresponding extended service set domain key and the domain key that is a basic service set session key .
  9. 9.根据权利要求8所述的方法,其特征在于,所述会话密钥依据所述扩展服务集域密钥生成,而所述扩展服务集域密钥依据所述终端设备与鉴权服务器之间协商的主密钥生成。 9. The method according to claim 8, wherein the session key according to the key generation extended service set domain, and domain key to the extended service set according to the terminal device and the authentication server negotiated between the master key generation.
CN 200510100430 2005-10-21 2005-10-21 Network identifying method in wireless local network CN1852192A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN 200510100430 CN1852192A (en) 2005-10-21 2005-10-21 Network identifying method in wireless local network

Applications Claiming Priority (4)

Application Number Priority Date Filing Date Title
CN 200510100430 CN1852192A (en) 2005-10-21 2005-10-21 Network identifying method in wireless local network
PCT/CN2006/002524 WO2007045147A1 (en) 2005-10-21 2006-09-25 An accessing network method, system and terminal of the wireless local area network terminal
CN 200680012393 CN101160833A (en) 2005-10-21 2006-09-25 Method of accessing network for wireless LAN terminal, system and terminal thereof
US11584407 US20070153732A1 (en) 2005-10-21 2006-10-20 Method for a wireless local area network terminal to access a network, a system and a terminal

Publications (1)

Publication Number Publication Date
CN1852192A true true CN1852192A (en) 2006-10-25

Family

ID=37133662

Family Applications (2)

Application Number Title Priority Date Filing Date
CN 200510100430 CN1852192A (en) 2005-10-21 2005-10-21 Network identifying method in wireless local network
CN 200680012393 CN101160833A (en) 2005-10-21 2006-09-25 Method of accessing network for wireless LAN terminal, system and terminal thereof

Family Applications After (1)

Application Number Title Priority Date Filing Date
CN 200680012393 CN101160833A (en) 2005-10-21 2006-09-25 Method of accessing network for wireless LAN terminal, system and terminal thereof

Country Status (1)

Country Link
CN (2) CN1852192A (en)

Cited By (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2010149072A1 (en) * 2009-06-25 2010-12-29 华为技术有限公司 Method, system for processing information and mobility management network element
CN102413200A (en) * 2011-11-04 2012-04-11 北京播思软件技术有限公司 Method for customizing wireless hot spot service set identifier (SSID) and apparatus thereof
CN103167586A (en) * 2013-03-01 2013-06-19 北京傲天动联技术股份有限公司 Wireless terminal access and reselecting method based on access point (AP) cluster
US9055511B2 (en) 2007-10-08 2015-06-09 Qualcomm Incorporated Provisioning communication nodes
CN104869621A (en) * 2015-06-12 2015-08-26 联想(北京)有限公司 Method and device for network awareness
US9167505B2 (en) 2007-10-08 2015-10-20 Qualcomm Incorporated Access management for wireless communication
CN105323758A (en) * 2014-07-02 2016-02-10 上海新联纬讯科技发展有限公司 Wireless router extended service identifier service providing method
CN102165827B (en) * 2008-09-25 2016-11-16 皇家飞利浦电子股份有限公司 Directional discovery protocol coordinated with the selected channel
US9775096B2 (en) 2007-10-08 2017-09-26 Qualcomm Incorporated Access terminal configuration and access control

Cited By (11)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US9167505B2 (en) 2007-10-08 2015-10-20 Qualcomm Incorporated Access management for wireless communication
US9055511B2 (en) 2007-10-08 2015-06-09 Qualcomm Incorporated Provisioning communication nodes
US9775096B2 (en) 2007-10-08 2017-09-26 Qualcomm Incorporated Access terminal configuration and access control
CN102165827B (en) * 2008-09-25 2016-11-16 皇家飞利浦电子股份有限公司 Directional discovery protocol coordinated with the selected channel
WO2010149072A1 (en) * 2009-06-25 2010-12-29 华为技术有限公司 Method, system for processing information and mobility management network element
CN101931935B (en) 2009-06-25 2013-09-11 华为技术有限公司 Terminal access method, network equipment and communication system
CN102413200A (en) * 2011-11-04 2012-04-11 北京播思软件技术有限公司 Method for customizing wireless hot spot service set identifier (SSID) and apparatus thereof
CN103167586A (en) * 2013-03-01 2013-06-19 北京傲天动联技术股份有限公司 Wireless terminal access and reselecting method based on access point (AP) cluster
CN103167586B (en) * 2013-03-01 2015-08-12 北京傲天动联技术股份有限公司 The wireless terminal and the access reselection method based on cluster ap
CN105323758A (en) * 2014-07-02 2016-02-10 上海新联纬讯科技发展有限公司 Wireless router extended service identifier service providing method
CN104869621A (en) * 2015-06-12 2015-08-26 联想(北京)有限公司 Method and device for network awareness

Also Published As

Publication number Publication date Type
CN101160833A (en) 2008-04-09 application

Similar Documents

Publication Publication Date Title
Pack et al. Fast-handoff support in IEEE 802.11 wireless networks
US6870822B2 (en) Method and equipment for supporting mobility in a telecommunication system
O'hara et al. IEEE 802.11 handbook: a designer's companion
US7339915B2 (en) Virtual LAN override in a multiple BSSID mode of operation
US20060062183A1 (en) Methods and systems for reducing MAC layer handoff latency in wireless networks
US20110286405A1 (en) Method and apparatus for dynamic station enablement procedure in a wireless local area network system
US20030185172A1 (en) Apparatus and method for supporting mobility between subnetworks of mobile node in wireless LAN
US20090010399A1 (en) Interworking procedure with external network in wireless lan and message format for the same
US20030185244A1 (en) Detecting a counterfeit access point in a wireless local area network
US20130166759A1 (en) Apparatus, systems, and methods of ip address discovery for tunneled direct link setup
US20100211785A1 (en) System and method for automatic wireless connection between a portable terminal and a digital device
US20060083377A1 (en) Derivation method for cached keys in wireless communication system
US20070002811A1 (en) Mechanism to enable optimized provision of beacon information in WLAN networks
Yang et al. Architecture taxonomy for control and provisioning of wireless access points (capwap)
EP1439667A2 (en) Method for fast roaming in a wireless network
US8249256B2 (en) Method for providing fast secure handoff in a wireless mesh network
US20100020746A1 (en) Advertisement of multiple security profiles in wireless local area networks
US20070192832A1 (en) Apparatus and method for protection of management frames
US20090067397A1 (en) Procedure for wireless network management and station supporting the procedure
US20070294760A1 (en) Method, apparatus and system for distributing and enforcing authenticated network connection policy
US20070019609A1 (en) Dynamic temporary mac address generation in wireless networks
US20060187878A1 (en) Methods, apparatuses and systems facilitating client handoffs in wireless network systems
US20070189168A1 (en) Method and Apparatus for Establishing a Virtual Link, Wireless Lan, and Method for Transmitting Data
WO2008147130A2 (en) Scanning procedure in wireless lan, station supporting the same, and frame format therefor
US20140195654A1 (en) Method, apparatus, and computer program product for configuring a mobile wireless hotspot

Legal Events

Date Code Title Description
C06 Publication
C10 Request of examination as to substance
C12 Rejection of an application for a patent