TW201611628A - System and method for authorizing network access and network device implemented with the method therein - Google Patents

System and method for authorizing network access and network device implemented with the method therein Download PDF

Info

Publication number
TW201611628A
TW201611628A TW104124019A TW104124019A TW201611628A TW 201611628 A TW201611628 A TW 201611628A TW 104124019 A TW104124019 A TW 104124019A TW 104124019 A TW104124019 A TW 104124019A TW 201611628 A TW201611628 A TW 201611628A
Authority
TW
Taiwan
Prior art keywords
network
mobile device
computer program
access
request
Prior art date
Application number
TW104124019A
Other languages
Chinese (zh)
Inventor
高宏鈞
詹森榮
林哲毅
羅琮民
林毓聲
謝廣霖
蕭柏堂
秦宗漢
Original Assignee
雲永科技股份有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 雲永科技股份有限公司 filed Critical 雲永科技股份有限公司
Publication of TW201611628A publication Critical patent/TW201611628A/en

Links

Landscapes

  • Mobile Radio Communication Systems (AREA)

Abstract

The disclosure relates a system, method, and network device for authorizing a mobile device to access a network. The method includes receiving a request for accessing the internet from the mobile device, sending a massage including downloading a computer program to the mobile device, receiving a request for downloading the computer program from the mobile device and sending the computer program to the mobile device, receiving an authorization request for accessing the internet and determining whether the mobile device meets at least one criterion for accessing the internet, and authorizing the mobile device to access the internet if the at least one criterion is met.

Description

授權網路接入的系統、方法及執行該方法的網路設備System and method for authorizing network access and network device for performing the method

本發明通常涉及網路技術,特別涉及一種管理局域網內的移動設備的網路接入授權的網路設備。本發明提供一種只在移動設備運行通過電腦程式執行預定義的動作時授權移動設備接入網路的方法及系統。另一方面,本發明還提供一提供上述電腦程式下載的方法及系統。The present invention relates generally to network technologies, and more particularly to a network device that manages network access authorization for mobile devices within a local area network. The present invention provides a method and system for authorizing a mobile device to access a network only when the mobile device is running a computer program to perform a predefined action. In another aspect, the present invention also provides a method and system for providing the above computer program download.

通常,網路設備,如在一個封閉的網路如一局域網(LAN)或一內部網內的無線接入點和閘道,在一授權過程後提供該封閉網路內的終端設備接入廣域網路(wide area network)或者互聯網。該授權過程可允許使用者通過密碼登錄,有時可能需要一使用者帳戶和一驗證碼用以登錄。通過告訴終端設備,尤其是移動設備的使用者該帳戶和登錄密碼,該網路設備的所有者可和使用者共用該網路接入。該網路設備的所有者可進一步通過管理登錄密碼的分佈來管理網路接入授權。上述過程可通過移動設備的網路軟體或該網路設備提供的網頁來輸入密碼到該網路設備實現。Typically, a network device, such as a wireless access point and gateway in a closed network such as a local area network (LAN) or an intranet, provides access to the wide area network within the closed network after an authorization process. (wide area network) or the Internet. The authorization process allows the user to log in with a password, and sometimes may require a user account and a verification code to log in. By telling the terminal device, and in particular the user of the mobile device, the account and the login password, the owner of the network device can share the network access with the user. The owner of the network device can further manage the network access authorization by managing the distribution of login passwords. The above process can be implemented by inputting a password to the network device through a network software of the mobile device or a webpage provided by the network device.

傳統地,上述過程可能只提供一簡單的授權機制來管理該網路設備的網路接入授權。該網路設備可能只限制不具有密碼的終端設備接入網路。如果需要更複雜的條件來管理網路接入,該網路設備的所有者可能需要依據上述條件自己決定是否提供密碼。上述局限性增加了移動設備的使用者通過網路設備接入網路的不便,特別是對於在公共場所如餐廳、購物中心、公共交通工具等的用戶。使用者可能不經常到上述區域。然而,每次用戶到一個使用者沒有到過的區域,可能還需要詢問上述區域的網路設備的密碼,並完成登錄過程以接入網路。此外,上述限制也限制了網路設備所有者通過該網路設備共用和管理網路接入的方式。Traditionally, the above process may only provide a simple authorization mechanism to manage the network access authorization of the network device. The network device may only restrict access to the network by terminal devices that do not have a password. If more complex conditions are required to manage network access, the owner of the network device may need to decide whether to provide a password based on the above conditions. These limitations increase the inconvenience of users of mobile devices accessing the network through network devices, particularly for users in public places such as restaurants, shopping malls, public transportation, and the like. Users may not go to the above areas often. However, each time the user goes to an area that the user has not visited, it may be necessary to ask for the password of the network device in the above area and complete the login process to access the network. In addition, the above restrictions also limit the way network device owners share and manage network access through the network device.

根據上述內容,需要提供一種方法和系統,以解決移動設備通過網路設備接入網路的不便的問題,以及共用所述的網路設備的網路接入至所述的移動設備的限制問題。因此,網路設備的所有者可以通過網路設備設置接入網路的條件和指導移動設備的使用者來滿足上述條件的流程。使用者可能只在使用者和/或移動設備滿足條件或遵循滿足條件的流程時具有通過網路設備接入網路的授權。因此,通過一個簡單的授權過程,網路設備周圍的網路接入(或用於網路接入的頻寬)可能是一種為移動設備所利用的實用的計算資源。According to the foregoing, there is a need to provide a method and system for solving the problem of inconvenience of a mobile device accessing a network through a network device, and a limitation problem of network access to the mobile device sharing the network device. . Therefore, the owner of the network device can set the conditions for accessing the network through the network device and guide the user of the mobile device to satisfy the above conditions. The user may only have authorization to access the network through the network device when the user and/or the mobile device meets the conditions or follows the process that satisfies the condition. Therefore, through a simple authorization process, network access around the network device (or bandwidth used for network access) may be a practical computing resource utilized by mobile devices.

此外,新的商業模式涉及這樣的“網路接入”資源可能為網路設備的所有者所開發。In addition, new business models involving such "network access" resources may be developed for the owners of network devices.

本發明提供一種通過網路設備管理網路接入授權的方法及系統,尤其是基於預定義條件授權網路接入。任何設備,尤其是移動設備,可被要求通過該網路設備下載一電腦程式來換取網路接入授權。一驗證機制可在該電腦程式中完成。該驗證機制用以判斷該設備或設備使用者是否滿足通過該網路設備接入網路的授權的條件。在本發明的一實施例中,下載、安裝和/或啟動該電腦程式可為通過該網路設備接入網路的條件。在本發明的另一實施例中,該條件可被定義在該電腦程式內。該設備的使用者可被要求輸入特定的資訊或授權通過該電腦程式執行的特定操作。一旦滿足上述條件,該網路設備可接收通過該由電腦程式提供的驗證機制觸發的一驗證結果和/或一授權。該網路設備授權該設備接入網路或利用其頻寬接入網路。因此,網路接入授權過程完成。進一步地,該條件可通過更新該電腦程式來更新。因此,該網路設備所有者可通過維護和更新該電腦程式來管理該網路接入授權。在本發明的另一實施例中,若干網路設備可使用同樣的電腦程式管理其網路接入。管理網路接入授權的複雜性因此被降低。The present invention provides a method and system for managing network access authorization through a network device, and in particular, authorizing network access based on predefined conditions. Any device, especially a mobile device, can be required to download a computer program over the network device in exchange for a network access authorization. A verification mechanism can be done in the computer program. The verification mechanism is used to determine whether the device or device user satisfies the conditions for authorization to access the network through the network device. In an embodiment of the invention, downloading, installing, and/or launching the computer program can be a condition for accessing the network through the network device. In another embodiment of the invention, the condition can be defined within the computer program. Users of the device may be required to enter specific information or authorize specific operations performed by the computer program. Once the above conditions are met, the network device can receive a verification result and/or an authorization triggered by the verification mechanism provided by the computer program. The network device authorizes the device to access the network or utilize its bandwidth to access the network. Therefore, the network access authorization process is completed. Further, the condition can be updated by updating the computer program. Therefore, the network device owner can manage the network access authorization by maintaining and updating the computer program. In another embodiment of the invention, several network devices can manage their network access using the same computer program. The complexity of managing network access authorization is therefore reduced.

從另一方面,本發明還提供一種用以通過允許移動設備通過網路設備接入網路來通過網路設備分配電腦程式給移動設備的方法或系統。不論移動終端的使用者何時到達具有實現本發明的系統或方法的網路設備的地方並尋求通過網路設備接入網路,促消活動、廣告和電子商務可通過本發明的該方法或系統提供給移動設備的使用者。In another aspect, the present invention also provides a method or system for distributing a computer program to a mobile device through a network device by allowing the mobile device to access the network through the network device. When the user of the mobile terminal arrives at a place with a network device implementing the system or method of the present invention and seeks to access the network through the network device, facilitating activities, advertisements, and e-commerce may be through the method or system of the present invention. Provided to users of mobile devices.

可理解,然而,本發明內容可能並沒有包括本發明實施例中的所有方面,本發明內容並不意味著在任何方式上的限制或限縮,另外,本領域技術人員對這裡所揭露的本發明的理解,將得出本發明相對于現有技術的明顯進步及改進。It should be understood, however, that the present disclosure may not include all aspects of the embodiments of the present invention, and the present invention is not intended to be limited or limited in any manner. The invention will be apparently improved and improved over the prior art.

附圖通過文字描述演示了本發明的一個或多個實施例,以解釋本發明的原理。有可能的話,附圖中所使用的相同標號是指一個實施例中相同或相似的元件,其中:The drawings illustrate one or more embodiments of the invention in the written description Wherever possible, the same reference numerals are used to refer to the same or

圖1至4為根據本發明某些實施例所描述的網路架構的示意圖。1 through 4 are schematic diagrams of network architectures in accordance with some embodiments of the present invention.

圖5至7為根據本發明某些實施例所描述的獲得接入網路授權的方法的流程圖。5 through 7 are flow diagrams of methods for obtaining access network authorization as described in accordance with some embodiments of the present invention.

圖8至11為根據本發明某些實施例所描述的獲得接入網路授權的方法的流程圖。8 through 11 are flowcharts of a method of obtaining access network authorization as described in accordance with some embodiments of the present invention.

圖12為根據本發明某些實施例的運行在網路設備的授權系統的功能架構的示意圖。12 is a schematic diagram of a functional architecture of an authorization system operating on a network device, in accordance with some embodiments of the present invention.

圖13至14為根據本發明某些實施例的用以通過監視電腦程式來驗證授權的授權管理者的功能架構的示意圖。13 through 14 are diagrams of functional architectures of an authorization manager to verify authorization by monitoring a computer program, in accordance with some embodiments of the present invention.

圖15為根據本發明某一實施例的獲得接入網路授權的方法的流程圖。15 is a flow chart of a method of obtaining access network authorization in accordance with an embodiment of the present invention.

根據慣例,不同描述的特徵沒有依比例繪圖,而是重點繪製本發明相關特徵。圖和正文中相關的標號符號表示相關的元件。In accordance with common practice, the various features described are not drawn to scale, but rather the features of the invention are. The reference numerals in the figures and the text indicate related elements.

以下將參考附圖來更全面地描述本發明的某些實施方式,在附圖中,演示了本發明的某些實施方式。具體實施上,本發明可以以很多不同的形式實現,並且不應認為限制於此處所記載的實施方式。反之,提供這些實施例以使公開內容更徹底且完整,並將本發明範圍完全傳達給本領域技術人員。貫穿全文,同樣的標號表示同樣的元件。Some embodiments of the present invention will be described more fully hereinafter with reference to the accompanying drawings in which, The present invention may be embodied in many different forms and should not be construed as limited to the embodiments described herein. Rather, these embodiments are provided so that this disclosure will be thorough and complete. Throughout the text, the same reference numerals denote the same elements.

此處在本發明的描述中使用的術語是用於描述特定實施例的目的而不旨在作為對本發明的限制。如在本發明的描述和所附權利要求書中使用的,除非上下文清楚地指出例外情況,單數形式“一”、“一個”、“一種”旨在也包括複數形式。還應理解,此處使用的術語“和/或”指包括一個或多個相關聯地列出的項目的任何和所有可能組合。還應理解,當在本說明書中使用術語“包括”和“包含”時,它們指敘述的特徵、整體、步驟、操作、元件和/或元件的存在,但是不排除一個或多個其它特徵、整體、步驟、操作、元件、元件和/或它們的組的存在或添加。The terminology used in the description of the present invention is for the purpose of describing particular embodiments and is not intended to limit the invention. As used in the description of the invention and the claims It will also be understood that the term "and/or" used herein is meant to include any and all possible combinations of one or more of the associated listed items. It is also to be understood that the terms "comprises" and "comprising", "the" The presence or addition of the whole, steps, operations, elements, elements and/or groups thereof.

應當理解的是,術語“和/或”包括一個或多個所列出的相關術語的任意組合及所有組合。還應理解的是,雖然這裡可使用第一、第二、第三等術語來描述各個元件、部件、區域、層和/或部分,但是這些元件、部件、區域、層和/或部分不應被這些術語限制。這些術語只是用來將一個元件、部件、區域、層或部分與另一元件、部件、區域、層或部分相區分。因此,在不脫離本發明的教導的情況下,下面討論的第一元件、部件、區域、層或部分可被描述為第二元件、部件、區域、層或部分。It should be understood that the term "and/or" includes any and all combinations of one or more of the listed related terms. It should also be understood that, although the terms, components, regions, layers, and/or portions may be described herein using the terms first, second, third, etc. Limited by these terms. These terms are only used to distinguish one element, component, region, layer, Thus, a first element, component, region, layer or portion may be described as a second element, component, region, layer or portion, without departing from the teachings of the invention.

除非以其他方式定義,本文中所使用的所有術語(包括技術和科學術語)具有與本發明所屬領域的普通技術人員通常理解的含意相同的含意。進一步理解的是,術語,諸如在通常使用的詞典中定義的那些,應當被解釋成具有與它們在本說明書和相關領域的上下文中的含意相一致的含意,而不應當在理想化或過度正式的意義上解釋,除非在本文中明確地如此定義。為了簡潔和/或清楚起見,可能未詳細地描述公知的功能或構造。All terms (including technical and scientific terms) used herein have the same meaning as commonly understood by one of ordinary skill in the art to which the invention belongs, unless otherwise defined. It is further understood that terms such as those defined in commonly used dictionaries should be interpreted as having meanings consistent with their meaning in the context of this specification and the related art, and should not be idealized or overly formalized. Explain in the sense of this unless explicitly defined as such in this document. Well-known functions or constructions may not be described in detail for the sake of brevity and/or clarity.

以下將結合圖1至圖15,對本發明實施例作出更具體的說明。參照附圖詳細描述本發明,其中所示元件不一定按比例繪製,並且在這些附圖之間及相同或相似的術語中採用相同標號表示相同或類似的元件。依照本發明的目的,正如這裡具體實施方式及廣泛的描述,本發明包括如下描述。A more specific description of the embodiments of the present invention will be made below with reference to FIGS. 1 through 15. The present invention is described in detail with reference to the accompanying drawings, in which the same reference numerals are used to refer to the same or the like. In accordance with the purpose of the present invention, as the specific embodiments and the broad description herein, the invention includes the following description.

圖1至4為本發明某一實施例的網路架構。1 to 4 are network architectures according to an embodiment of the present invention.

請參閱圖1,一網路設備200可連接一區域網和一互聯網300,並管理該區域網(rea network)和該互聯網300內的設備之間的連接。在本發明的一實施例中,該區域網可為一設在公共區域如公共建築、公共車站或公共交通工具等的局域網(local area network, LAN)。在本發明的另一實施例中,該區域網可為一無線通訊網路的擴展,如一為補充蜂窩網路覆蓋而被擴展的小基站(small cell)。移動設備,如第一移動設備100,可進入該區域網的覆蓋範圍,連接該網路設備200以及請求該網路設備200以接入網路。Referring to FIG. 1, a network device 200 can connect a regional network and an Internet 300, and manage the connection between the rea network and devices in the Internet 300. In an embodiment of the invention, the area network may be a local area network (LAN) located in a public area such as a public building, a public station, or a public transportation vehicle. In another embodiment of the invention, the regional network may be an extension of a wireless communication network, such as a small cell that is extended to supplement cellular network coverage. The mobile device, such as the first mobile device 100, can enter the coverage of the regional network, connect the network device 200, and request the network device 200 to access the network.

該移動設備100可發送一網路接入請求及其媒體接入控制(Media Access Control,MAC)位址至該網路設備200。該網路設備200可在一授權過程後建立該移動設備100和該互聯網300之間的連接。該網路設備200可基於至少一個預定義的條件來判斷是否授權該移動設備100接入該互聯網300。該條件在一電腦程式中被定義。因此,該網路設備200可提供該電腦程式至移動設備100。該條件可為該電腦程式的下載、安裝或者啟動。在本發明的一實施例中,該條件可為該電腦程式所定義的一特定的動作的運行。在本發明的一實施例中,該預定義的動作可包括啟動電腦程式或特定輸入的接收,例如點擊該移動設備100所顯示的一圖示、該移動設備的觸控式螢幕所檢測到的一觸摸訊號和一包括沿至少一個方向在該移動設備的100上移動一個或多個手指的特定手勢。在本發明的一實施例中,該預定義的動作可包括從使用者接收資訊或檢索來自該移動設備100的資訊,例如使用者的姓名、性別和年齡。使用者可被要求輸入特定的資訊和/或授權該移動設備100執行上述動作。The mobile device 100 can send a network access request and its Media Access Control (MAC) address to the network device 200. The network device 200 can establish a connection between the mobile device 100 and the Internet 300 after an authorization process. The network device 200 can determine whether to authorize the mobile device 100 to access the Internet 300 based on at least one predefined condition. This condition is defined in a computer program. Therefore, the network device 200 can provide the computer program to the mobile device 100. This condition can be the download, installation or startup of the computer program. In an embodiment of the invention, the condition may be the operation of a particular action defined by the computer program. In an embodiment of the invention, the predefined action may include initiating a computer program or receiving a specific input, such as clicking on an icon displayed by the mobile device 100, detected by the touch screen of the mobile device. A touch signal and a specific gesture comprising moving one or more fingers on the mobile device 100 in at least one direction. In an embodiment of the invention, the predefined action may include receiving information from the user or retrieving information from the mobile device 100, such as the user's name, gender, and age. The user may be required to enter specific information and/or authorize the mobile device 100 to perform the actions described above.

一個判斷該條件是否滿足的驗證機制也可在該電腦程式中定義。一旦移動設備100的使用者和/或者移動設備100滿足該條件,一個驗證結果可被該電腦程式生成。該移動設備100可被觸發向該網路設備200請求網路接入。該移動設備100可發送一包括該驗證結果的網路接入請求至該網路設備200。當從該移動設備10接收到被該電腦程式所觸發的網路接入請求時,該網路設備200可連接該移動設備100到該互聯網300或提供一授權給該移動設備來利用其頻寬加速網路接入。A verification mechanism that determines if the condition is met can also be defined in the computer program. Once the user of the mobile device 100 and/or the mobile device 100 meets the condition, a verification result can be generated by the computer program. The mobile device 100 can be triggered to request network access from the network device 200. The mobile device 100 can send a network access request including the verification result to the network device 200. Upon receiving a network access request triggered by the computer program from the mobile device 10, the network device 200 can connect the mobile device 100 to the Internet 300 or provide an authorization to the mobile device to utilize its bandwidth. Accelerate network access.

因此,本發明一較佳實施例提供一用以通過該網路設備200管理網路接入授權的系統。一進入該網路設備200的覆蓋範圍的移動設備,例如該移動設備100,可通過一由該系統通過該網路設備200提供的預定義的電腦程式獲得授權,具體的,是通過該電腦程式執行一預定義的動作。換句話說,本發明還提供了一用以分配一預定義的電腦程式給進入該網路設備200的覆蓋範圍的移動設備,並通過該電腦程式促進動作以交換允許該移動設備接入該互聯網300的系統。Accordingly, a preferred embodiment of the present invention provides a system for managing network access authorization through the network device 200. A mobile device that enters the coverage of the network device 200, such as the mobile device 100, can be authorized by a predefined computer program provided by the system through the network device 200, specifically through the computer program. Perform a predefined action. In other words, the present invention also provides a mobile device for allocating a predefined computer program to the coverage of the network device 200, and facilitating actions by the computer program to exchange the mobile device for accessing the Internet. 300 system.

在本發明的另一實施例中,該網路設備200也可提供一用以加速該移動設備100無線接入速度的額外的無線頻寬,來代替連接該移動設備100至該互聯網300。上述加速可被一在該移動設備100內執行的動態(通常是軟體定義)的載波聚合機制(carrier aggregation mechanism)完成。上述機制有時命名為“智慧廣播(smart radio)”或者“軟體定義無線電(software-defined radio)”。通過利用上述技術,只要該移動設備100下載該電腦程式和/或執行該電腦程式中定義的一特定的動作,該網路設備200的無線頻寬也可被提供用以提高該移動設備100的現有網路接入的品質。In another embodiment of the present invention, the network device 200 can also provide an additional wireless bandwidth for accelerating the wireless access speed of the mobile device 100 instead of connecting the mobile device 100 to the Internet 300. The above acceleration can be accomplished by a dynamic (typically software defined) carrier aggregation mechanism performed within the mobile device 100. The above mechanism is sometimes named "smart radio" or "software-defined radio". By utilizing the above techniques, as long as the mobile device 100 downloads the computer program and/or performs a specific action defined in the computer program, the wireless bandwidth of the network device 200 can also be provided to improve the mobile device 100. The quality of existing network access.

本發明的該移動設備100可為任何具有網路連接功能特別是網路接入功能的電腦,例如筆記型電腦、平板電腦、車載電腦系統(如智慧車)、可擕式無線共用點、可擕式無線接入點、可擕式熱點、智慧手機、電子書閱讀器、智慧電視、機上盒或者包括智慧手錶、智慧眼鏡和智慧手環等的可穿戴設備。The mobile device 100 of the present invention can be any computer with network connection function, especially network access function, such as a notebook computer, a tablet computer, a car computer system (such as a smart car), a portable wireless sharing point, and Portable wireless access points, portable hotspots, smart phones, e-book readers, smart TVs, set-top boxes, or wearable devices including smart watches, smart glasses, and smart bracelets.

該連接一區域網路至該互聯網300的網路設備200可為閘道、路由器、無線接入點或者通訊系統基站例如微小基站(pico base station)、飛蜂窩(femtocell)或者小基站(small cell)。The network device 200 connecting the regional network to the Internet 300 can be a gateway, a router, a wireless access point, or a communication system base station such as a pico base station, a femtocell, or a small cell. ).

請參閱圖2,一網路設備200可連接一區域網路、一伺服器400及該互聯網300。該網路設備200可管理基於該伺服器400的授權的該區域網路內的設備和該互聯網300之間的連接。在本發明的一實施例中,該區域網可為一設在公共區域如公共建築、公共車站或公共交通工具等的局域網(local area network, LAN)。在本發明的另一實施例中,該區域網可為一無線通訊網路的擴展,如一為補充蜂窩網路覆蓋而被擴展的小基站(small cell)。移動設備,如第一移動設備100,可進入該區域網的覆蓋範圍,連接該網路設備200以及請求該網路設備200以接入網路。Referring to FIG. 2, a network device 200 can be connected to a regional network, a server 400, and the Internet 300. The network device 200 can manage connections between devices within the local area network and the Internet 300 based on authorization of the server 400. In an embodiment of the invention, the area network may be a local area network (LAN) located in a public area such as a public building, a public station, or a public transportation vehicle. In another embodiment of the invention, the regional network may be an extension of a wireless communication network, such as a small cell that is extended to supplement cellular network coverage. The mobile device, such as the first mobile device 100, can enter the coverage of the regional network, connect the network device 200, and request the network device 200 to access the network.

該移動設備100可發送一用以網路接入的請求及MAC位址至該網路設備200。該網路設備200可記錄該MAC位址。在本發明的另一實施例中,該網路設備200可分配一與該移動設備100的MAC位址對應的IP位址,並轉發該請求以及該移動設備100的IP位址至該伺服器400。該伺服器400然後可發送至少一用以請求該移動設備100下載一電腦程式的消息至該移動設備100,其中至少有一用以通過該網路設備200接入網路的條件已被定義。在本發明的另一實施例中,該消息可包括下載該電腦程式的網路位址。該移動設備100可顯示一用以決定是否下載該電腦程式的使用者介面,並可在接收到一來自用戶的對應輸入時,發送一用以下載該電腦程式至伺服器400的請求。該伺服器400可提供該包括通過網路設備200來網路接入的條件的電腦程式至該移動設備100,並在上述條件滿足時從該移動設備100接收一驗證結果。該伺服器400可發送一授權請求至該網路設備200。該網路設備200可在接收到來自伺服器400的授權請求後建立該移動設備100和該互聯網300之間的連接。The mobile device 100 can send a request for network access and a MAC address to the network device 200. The network device 200 can record the MAC address. In another embodiment of the present invention, the network device 200 can allocate an IP address corresponding to the MAC address of the mobile device 100, and forward the request and the IP address of the mobile device 100 to the server. 400. The server 400 can then send at least one message requesting the mobile device 100 to download a computer program to the mobile device 100, wherein at least one condition for accessing the network through the network device 200 has been defined. In another embodiment of the invention, the message can include downloading a network address of the computer program. The mobile device 100 can display a user interface for deciding whether to download the computer program, and can send a request to download the computer program to the server 400 upon receiving a corresponding input from the user. The server 400 can provide the computer program including the conditions for network access through the network device 200 to the mobile device 100, and receive a verification result from the mobile device 100 when the above conditions are met. The server 400 can send an authorization request to the network device 200. The network device 200 can establish a connection between the mobile device 100 and the Internet 300 upon receiving an authorization request from the server 400.

但是,在本發明的另一實施例中,該條件可為該伺服器400所提供的一服務的完成。因此,該移動設備可根據該電腦程式的啟動請求一特定服務,來代替接收該驗證結果。該條件通過提供該被請求的服務給該移動設備100的方式被滿足。該伺服器400可發送一授權請求至該網路設備200。該網路設備200可在從該伺服器400接收到該授權請求後建立該移動設備100和該互聯網300之間的連接。However, in another embodiment of the invention, the condition may be the completion of a service provided by the server 400. Therefore, the mobile device can request a specific service instead of receiving the verification result according to the startup of the computer program. This condition is satisfied by providing the requested service to the mobile device 100. The server 400 can send an authorization request to the network device 200. The network device 200 can establish a connection between the mobile device 100 and the Internet 300 upon receiving the authorization request from the server 400.

請參閱圖3,一網路設備200可連接一區域網路,一伺服器400,一應用商店500,以及該互聯網300。該網路設備200可管理基於該伺服器400授權的該區域網路的設備和該互聯網300之間的連接。在本發明的一實施例中,該區域網可為一設在公共區域如公共建築、公共車站或公共交通工具等的局域網(local area network, LAN)。在本發明的另一實施例中,該區域網可為一無線通訊網路的擴展,如一為補充蜂窩網路覆蓋而被擴展的小基站(small cell)。移動設備,如第一移動設備100,可進入該區域網的覆蓋範圍,連接該網路設備200以及請求該網路設備200以接入網路。Referring to FIG. 3, a network device 200 can be connected to a regional network, a server 400, an application store 500, and the Internet 300. The network device 200 can manage the connection between the device based on the local area network authorized by the server 400 and the Internet 300. In an embodiment of the invention, the area network may be a local area network (LAN) located in a public area such as a public building, a public station, or a public transportation vehicle. In another embodiment of the invention, the regional network may be an extension of a wireless communication network, such as a small cell that is extended to supplement cellular network coverage. The mobile device, such as the first mobile device 100, can enter the coverage of the regional network, connect the network device 200, and request the network device 200 to access the network.

該移動設備100可發送一用以網路接入的請求及MAC位址至該網路設備200。該網路設備200可記錄該MAC位址。在本發明的另一實施例中,該網路設備200可分配一與該移動設備100的MAC位址對應的IP位址,並轉發該請求以及該移動設備100的IP位址至該伺服器400。該伺服器400然後可發送至少一用以請求該移動設備100下載一電腦程式的消息至該移動設備100,其中至少一用以通過該網路設備200接入網路的條件已被定義。相較於圖2,該電腦程式可由該應用商店500提供。該伺服器400可指示該移動設備100至一用以在該應用商店500下載該電腦程式的網頁。如果上述的條件被滿足,該伺服器400從該移動設備100接收一驗證結果。該伺服器400可發送一授權請求至該網路設備200。該網路設備200可在從該伺服器400接收到該授權請求後建立該移動設備100與該互聯網300之間的連接。The mobile device 100 can send a request for network access and a MAC address to the network device 200. The network device 200 can record the MAC address. In another embodiment of the present invention, the network device 200 can allocate an IP address corresponding to the MAC address of the mobile device 100, and forward the request and the IP address of the mobile device 100 to the server. 400. The server 400 can then send at least one message requesting the mobile device 100 to download a computer program to the mobile device 100, wherein at least one condition for accessing the network through the network device 200 has been defined. Compared to FIG. 2, the computer program can be provided by the application store 500. The server 400 can instruct the mobile device 100 to a web page for downloading the computer program at the application store 500. If the above conditions are met, the server 400 receives a verification result from the mobile device 100. The server 400 can send an authorization request to the network device 200. The network device 200 can establish a connection between the mobile device 100 and the Internet 300 upon receiving the authorization request from the server 400.

在本發明的一實施例中,考慮到應用商店500的安全性原則,該伺服器400可不具有來自應用商店500的指示該移動設備100至一用以在該應用商店500下載該電腦程式的網頁的授權。可替換地,該伺服器400可給該移動設備100一有限的網路接入授權以從軟體應用商店500下載該電腦程式,例如,一僅在一短時間段內接入該互聯網300的臨時授權或者一僅接入該應用商店500的網路位址的授權。該有限網路接入授權可通過發送一對應的授權請求至該網路設備200來完成。通過從該網路設備200或者該伺服器400接收一接入網路的該臨時授權的通知,該移動設備100的使用者可被通知從該應用商店500下載該電腦程式。在該移動設備100下載該電腦程式,甚至執行該電腦程式定義的一動作來滿足該條件後,該伺服器400可授權該移動設備100接入該互聯網300。In an embodiment of the present invention, in consideration of the security principle of the application store 500, the server 400 may not have a webpage from the application store 500 indicating that the mobile device 100 is to download the computer program at the application store 500. Authorization. Alternatively, the server 400 can give the mobile device 100 a limited network access authorization to download the computer program from the software application store 500, for example, a temporary access to the Internet 300 for only a short period of time. Authorization or authorization to access only the network address of the application store 500. The limited network access authorization can be accomplished by sending a corresponding authorization request to the network device 200. By receiving a notification of the temporary authorization of an access network from the network device 200 or the server 400, the user of the mobile device 100 can be notified to download the computer program from the application store 500. The server 400 can authorize the mobile device 100 to access the Internet 300 after the mobile device 100 downloads the computer program and even performs an action defined by the computer program to satisfy the condition.

在本發明的一實施例中,從應用商店500下載和安裝電腦程式可被該移動設備100的“移動軟體應用商店”程式管理,來代替指示該移動設備100至一用以從應用商店500下載電腦程式的網頁。該從該伺服器400接收的消息可啟動該“移動軟體應用商店”來下載該電腦程式。In an embodiment of the present invention, downloading and installing a computer program from the application store 500 may be managed by the "mobile software application store" program of the mobile device 100 instead of indicating that the mobile device 100 to one is for downloading from the application store 500. Web page of a computer program. The message received from the server 400 can launch the "mobile software application store" to download the computer program.

在本發明的一實施例中,該條件可為該伺服器400所提供的一服務的完成。因此,該移動設備可根據該電腦程式的啟動請求一特定服務,來代替接收該驗證結果。通過提供該被請求的服務給該移動設備100,該條件可被滿足。該伺服器400發送一授權請求至該網路設備200。該網路設備200可從伺服器400接收到的授權請求後建立該移動設備100和該互聯網300的連接。In an embodiment of the invention, the condition may be the completion of a service provided by the server 400. Therefore, the mobile device can request a specific service instead of receiving the verification result according to the startup of the computer program. This condition can be satisfied by providing the requested service to the mobile device 100. The server 400 sends an authorization request to the network device 200. The network device 200 can establish a connection between the mobile device 100 and the Internet 300 after receiving an authorization request from the server 400.

請參閱圖4,該網路設備200可包括一處理器210,一記憶體220,一存儲模組230,一第一通訊模組240和一第二通訊模組250,第一通訊模組240用以與至少一移動設備,例如該第一移動設備100,通過一區域網路,例如一無線局域網,進行通訊,第二通訊模組250用以與該互聯網300、該伺服器400或該應用商店500通過一廣域網路,例如公共交換電話網絡或無線通訊網路,進行通訊。Referring to FIG. 4, the network device 200 can include a processor 210, a memory 220, a storage module 230, a first communication module 240, and a second communication module 250. The first communication module 240 For communicating with at least one mobile device, such as the first mobile device 100, through a regional network, such as a wireless local area network, the second communication module 250 is used with the Internet 300, the server 400, or the application. The store 500 communicates over a wide area network, such as a public switched telephone network or a wireless communication network.

本發明的該處理器210可為一用以執行記憶體220內的程式指令的處理器或控制器。該記憶體220可為SRAM、DRAM、EPROM、EEPROM、快閃記憶體或其他類型的電腦記憶體。該處理器210可進一步包括一嵌入式系統或者一具有嵌入式程式指令的應用程式特定的積體電路(application specific integrated circuit,ASIC)。The processor 210 of the present invention can be a processor or controller for executing program instructions in the memory 220. The memory 220 can be SRAM, DRAM, EPROM, EEPROM, flash memory or other types of computer memory. The processor 210 can further include an embedded system or an application specific integrated circuit (ASIC) having embedded program instructions.

本發明的該存儲模組230可為一嵌入在網路設備200內的非易失性的電腦可讀記錄介質,包括ROM、RAM、EPROM、EEPROM、硬碟、固態硬碟、軟碟、CD-ROM、DVD-ROM或其他形式的電子的、電磁的或光學記錄介質。The storage module 230 of the present invention can be a non-volatile computer readable recording medium embedded in the network device 200, including ROM, RAM, EPROM, EEPROM, hard disk, solid state hard disk, floppy disk, CD - ROM, DVD-ROM or other form of electronic, electromagnetic or optical recording medium.

在本發明的一實施例中,圖1至圖4所述的網路設備200可在存儲模組230內存儲一組指令,用以在從移動設備100接收到一網路接入請求後判斷是否在移動設備100和該互聯網300之間建立連接。此外,該處理器210可執行該指令以發送一電腦程式,其中至少一用於該移動設備100通過該網路設備接入該互聯網300的條件被定義在該電腦程式,存儲在該存儲模組230,從該移動設備100接收一驗證結果,滿足條件時授權該移動設備100接入該互聯網300。在本發明的一實施例中,該處理器210可執行該指令以將該網路接入請求從該移動設備100轉發至一伺服器400,從伺服器400接收一驗證結果或授權請求,以及通知該移動設備100允許接入網路。In an embodiment of the present invention, the network device 200 illustrated in FIG. 1 to FIG. 4 may store a set of instructions in the storage module 230 for determining after receiving a network access request from the mobile device 100. Whether a connection is established between the mobile device 100 and the Internet 300. In addition, the processor 210 can execute the instruction to send a computer program, wherein at least one condition for the mobile device 100 to access the Internet 300 through the network device is defined in the computer program and stored in the storage module. 230. Receive a verification result from the mobile device 100, and authorize the mobile device 100 to access the Internet 300 when the condition is met. In an embodiment of the invention, the processor 210 can execute the instruction to forward the network access request from the mobile device 100 to a server 400, and receive a verification result or authorization request from the server 400, and The mobile device 100 is notified to allow access to the network.

在本發明的一實施例中,該電腦程式可存儲在一連接至該網路設備200的外部記憶體。該處理器210可檢索該電腦程式並發送至該移動設備100。In an embodiment of the invention, the computer program can be stored in an external memory connected to the network device 200. The processor 210 can retrieve the computer program and send it to the mobile device 100.

當移動設備發送一用以接入互聯網300的請求時,該存儲模組230可存儲移動設備在局域網內的MAC位址。該存儲模組230可記錄不同移動設備的MAC位址是否已被授權接入該互聯網300。該處理器210可基於該移動設備100所發送的驗證結果改變許可權設置。在本發明的一實施例中,該許可權設置可基於從伺服器400接收的授權請求被改變。When the mobile device sends a request to access the Internet 300, the storage module 230 can store the MAC address of the mobile device in the local area network. The storage module 230 can record whether the MAC address of different mobile devices has been authorized to access the Internet 300. The processor 210 can change the permission settings based on the verification result sent by the mobile device 100. In an embodiment of the invention, the permission setting may be changed based on an authorization request received from the server 400.

該第一通訊模組240和該第二通訊模組250可被作為一硬體、一固件或者一採用自訂的協議或者遵循現有條件(或者事實條件)例如乙太網、IEEE 802.11或IEEE 802.11系列、藍牙、近場通訊(NFC)或者電信標準例如GSM、CDMAone、CDMA2000、TD-SCDMA、WiMAX、FDD-LTE、TD-LTE或者正在開發中的5GPPP標準實現。此外,該第一通訊模組240和該第二通訊模組250可包括為了在不同的協議裡通訊的分離的積體電路。該第一通訊模組240和該第二通訊模組250可被定義為通訊模組。The first communication module 240 and the second communication module 250 can be used as a hardware, a firmware or a custom protocol or follow existing conditions (or factual conditions) such as Ethernet, IEEE 802.11 or IEEE 802.11. Series, Bluetooth, Near Field Communication (NFC) or telecommunications standards such as GSM, CDMAone, CDMA2000, TD-SCDMA, WiMAX, FDD-LTE, TD-LTE or the 5GPPP standard implementation under development. In addition, the first communication module 240 and the second communication module 250 may include separate integrated circuits for communication in different protocols. The first communication module 240 and the second communication module 250 can be defined as a communication module.

在本發明的一實施例中,該第一通訊模組240可為一用以與無線局域網內的設備通訊的Wi-Fi(IEEE 802.11)收發器。該第二通訊模組250可為一連接一模組式連接器(RJ45)或一通用序列匯流排(USB)的乙太網控制器。該具有該第一通訊模組240和第二通訊模組250的網路設備200可用作一位於室內的無線接入點。In an embodiment of the invention, the first communication module 240 can be a Wi-Fi (IEEE 802.11) transceiver for communicating with devices in the wireless local area network. The second communication module 250 can be an Ethernet controller connected to a modular connector (RJ45) or a universal serial bus (USB). The network device 200 having the first communication module 240 and the second communication module 250 can be used as a wireless access point located indoors.

在本發明的另一實施例中,該第一通訊模組240可為一用以與單元(或小基站)內的設備通訊的蜂窩通訊收發器。該第二通訊模組250可為一用以連接光纖的連接一模組式連接器(RJ45)的乙太網控制器或採用微波接入技術回程的收發器。具有第一通訊裝置2040和第二通訊裝置2050的網路設備200可作為小基站型基站(small cell base station)補充蜂窩網路中的基站的覆蓋範圍。在本發明的一實施例中,第一通訊模組2040可包括多輸入多輸出(MIMO)的天線系統,該天線系統具有用以分配和提供一特定頻寬給該移動設備100的波束形成功能以及具有用以在上述條件被滿足時加速該移動設備100的接入網路速度的載波聚合功能。In another embodiment of the present invention, the first communication module 240 can be a cellular communication transceiver for communicating with devices in the unit (or small base station). The second communication module 250 can be an Ethernet controller connected to a fiber optic connector (RJ45) or a transceiver using a microwave access technology backhaul. The network device 200 having the first communication device 2040 and the second communication device 2050 can serve as a small cell base station to supplement the coverage of the base station in the cellular network. In an embodiment of the invention, the first communication module 2040 can include a multiple input multiple output (MIMO) antenna system having beamforming functions for allocating and providing a specific bandwidth to the mobile device 100. And having a carrier aggregation function to accelerate the access network speed of the mobile device 100 when the above conditions are met.

當移動設備發送一用以接入互聯網300的請求時,該存儲模組230可存儲的移動設備100在局域網中的MAC位址。存儲模組230可記錄被授權訪問互聯網300的不同的移動設備的MAC位址。該處理器210可基於由該移動設備100通過電腦程式發送的一驗證結果來更改許可權設置。在本發明的一實施例中,該授權設置可以基於從伺服器400接收的授權請求來更改。在本發明的一實施例中,一個IP映射表和路由表可存儲在存儲模組230。該處理器210可基於從移動設備100接收到的MAC位址與上述表生成並分配一IP位址給移動設備100。該伺服器400可通過所述的IP位址識別該移動設備100,發送授權請求或用以授權該移動設備100接入該互聯網300的包括該IP地址的驗證結果。該網路設備200的處理器210可根據IP位址與上述表識別移動裝置100,並更改存儲在存儲模組230的許可權設置。When the mobile device sends a request to access the Internet 300, the storage module 230 can store the MAC address of the mobile device 100 in the local area network. The storage module 230 can record the MAC addresses of different mobile devices that are authorized to access the Internet 300. The processor 210 can change the permission settings based on a verification result sent by the mobile device 100 through a computer program. In an embodiment of the invention, the authorization setting may be changed based on an authorization request received from the server 400. In an embodiment of the invention, an IP mapping table and a routing table may be stored in the storage module 230. The processor 210 can generate and assign an IP address to the mobile device 100 based on the MAC address received from the mobile device 100 and the table. The server 400 can identify the mobile device 100 by the IP address, send an authorization request or a verification result including the IP address used to authorize the mobile device 100 to access the Internet 300. The processor 210 of the network device 200 can identify the mobile device 100 according to the IP address and the above table, and change the permission setting stored in the storage module 230.

圖5至7是根據本發明某些實施例所描述的獲得接入網路授權的方法的流程圖。5 through 7 are flow diagrams of methods for obtaining access network authorization as described in accordance with some embodiments of the present invention.

圖5是根據本發明某一實施例所描述的從一網路設備200獲得接入網路授權至一移動設備100的方法的流程圖。本發明的該方法執行如下步驟。在步驟S102中,該移動設備100發送一用以網路接入的第一請求。在步驟S104中,該網路設備200發送至少一消息至該移動設備100來回應該第一請求。在本發明的一實施例中,該消息可使該移動設備100提示一使用者介面以要求該移動設備100的使用者來啟動一特定的電腦程式。在該電腦程式中,一通過該網路設備200接入網路的條件被定義。在本發明的另一實施例中,該消息可包括一該電腦程式在該網路設備200內的下載連結。該移動設備100根據該消息被啟動以下載和安裝該電腦程式。在本發明的另一實施例中,在步驟S102中,該移動設備100可發送一用以通過該網路設備200接入該互聯網300的一服務的服務請求(該第一請求)。在步驟S104中,該網路設備200可判斷該移動設備100是否被授權接入該互聯網300,並發送一消息至該移動設備100,來回應移動設備100未被授權接入該互聯網300的判斷。5 is a flow diagram of a method of obtaining an access network grant from a network device 200 to a mobile device 100, in accordance with an embodiment of the present invention. The method of the present invention performs the following steps. In step S102, the mobile device 100 sends a first request for network access. In step S104, the network device 200 sends at least one message to the mobile device 100 to respond to the first request. In an embodiment of the invention, the message causes the mobile device 100 to prompt a user interface to request the user of the mobile device 100 to launch a particular computer program. In the computer program, a condition for accessing the network through the network device 200 is defined. In another embodiment of the invention, the message can include a download link of the computer program within the network device 200. The mobile device 100 is launched according to the message to download and install the computer program. In another embodiment of the present invention, in step S102, the mobile device 100 may send a service request (the first request) for accessing a service of the Internet 300 through the network device 200. In step S104, the network device 200 can determine whether the mobile device 100 is authorized to access the Internet 300 and send a message to the mobile device 100 in response to the mobile device 100 not being authorized to access the Internet 300. .

如果該移動設備100不包括該電腦程式,在步驟S106中,該移動設備100發送一第二請求來下載該電腦程式。在本發明的一實施例中,在執行步驟S106前,該移動設備100提示一使用者介面以要求使用者許可下載和安裝該電腦程式。如果該請求許可被拒絕,該獲得授權接入網路的過程可能會結束,因為該移動設備100不下載該電腦程式便可能不會有機會滿足電腦程式中定義的條件。在步驟S108中,該網路設備200發送該電腦程式至該移動設備100。在本發明的一實施例中,該網路設備200首先發送一包括一網路的條件的提示的消息。該條件可包括通過該電腦程式在該移動設備100上執行一預定義的動作。然而,在本發明的另一實施例中,如果該電腦程式已經存在於該移動設備100,該移動設備100可啟動該電腦程式,以代替執行步驟S106和S108來下載該電腦程式。If the mobile device 100 does not include the computer program, the mobile device 100 sends a second request to download the computer program in step S106. In an embodiment of the invention, prior to performing step S106, the mobile device 100 prompts a user interface to request the user to download and install the computer program. If the request is denied, the process of obtaining authorization to access the network may end because the mobile device 100 may not have the opportunity to satisfy the conditions defined in the computer program without downloading the computer program. In step S108, the network device 200 transmits the computer program to the mobile device 100. In an embodiment of the invention, the network device 200 first sends a message including a prompt for a condition of the network. The condition can include performing a predefined action on the mobile device 100 by the computer program. However, in another embodiment of the present invention, if the computer program already exists in the mobile device 100, the mobile device 100 can launch the computer program instead of performing steps S106 and S108 to download the computer program.

在步驟S110中,為了滿足定義在該電腦程式的該條件,該移動設備100執行一預定義的動作。在本發明的一實施例中,上述動作可包括啟動電腦程式或特定輸入的接收,例如點擊一個該移動設備100所顯示的圖示、該移動設備的觸控式螢幕所檢測到的一觸摸訊號以及一包括沿至少一個方向在該移動設備的100上移動一個或多個手指的特定手勢。在本發明的一實施例中,預定義的動作可包括從使用者接收資訊或檢索來自該移動設備100的資訊,例如使用者的姓名、性別、年齡。使用者可被要求輸入特定的資訊和/或者授權該移動設備100執行上述動作。In step S110, in order to satisfy the condition defined in the computer program, the mobile device 100 performs a predefined action. In an embodiment of the invention, the action may include starting a computer program or receiving a specific input, such as clicking on a icon displayed by the mobile device 100, and detecting a touch signal detected by the touch screen of the mobile device. And a particular gesture comprising moving one or more fingers on the mobile device 100 in at least one direction. In an embodiment of the invention, the predefined actions may include receiving information from the user or retrieving information from the mobile device 100, such as the user's name, gender, age. The user may be required to enter specific information and/or authorize the mobile device 100 to perform the above actions.

在本發明的一實施例中,該移動設備100從該網路設備200接收一使用者輸入的請求或者一動作的許可。該移動設備100進一步包括通知使用者該請求。如果該請求被拒絕,該授權過程可能會結束或者中斷直至使用者輸入或者許可該網路設備200。在本發明的一實施例中,上述請求或者通知可被該電腦程式生成,來代替從該網路設備200接收。In an embodiment of the invention, the mobile device 100 receives a request from a user or a permission for an action from the network device 200. The mobile device 100 further includes notifying the user of the request. If the request is denied, the authorization process may end or be interrupted until the user enters or licenses the network device 200. In an embodiment of the invention, the request or notification may be generated by the computer program instead of being received from the network device 200.

在步驟S112中,該移動設備100發送一用以請求網路接入的第三請求及一驗證結果至該網路設備200。如果滿足條件,該驗證結果可被該電腦程式生成。換句話說,該電腦程式可監視預定義的動作是否被執行以及在收到該動作被執行的檢測時觸發該移動設備100來執行步驟S112。在步驟S114中,在該網路設備200接收到該第三請求及該驗證結果之後,該網路設備200更新存儲在該網路設備200的許可權設置來授權該移動設備100接入該互聯網300。因此,該移動設備100可具有通過該網路設備200接入互聯網的授權。換句話說,該網路設備200可連接該移動設備和互聯網,來回應一來自移動設備100的網路接入請求。In step S112, the mobile device 100 sends a third request for requesting network access and a verification result to the network device 200. If the condition is met, the verification result can be generated by the computer program. In other words, the computer program can monitor whether the predefined action is performed and trigger the mobile device 100 to perform step S112 upon receiving a detection that the action is performed. In step S114, after the network device 200 receives the third request and the verification result, the network device 200 updates the permission setting stored in the network device 200 to authorize the mobile device 100 to access the Internet. 300. Thus, the mobile device 100 can have an authorization to access the Internet through the network device 200. In other words, the network device 200 can connect to the mobile device and the Internet in response to a network access request from the mobile device 100.

在步驟S116步中,該網路設備200通知該移動設備100該授權。此外,在本發明的一實施例中,上述的通知可在條件被滿足時由該電腦程式生成,來代替在步驟S116步中從該網路設備200接收。In step S116, the network device 200 notifies the mobile device 100 of the authorization. Moreover, in an embodiment of the invention, the notification may be generated by the computer program when the condition is satisfied instead of being received from the network device 200 in step S116.

先前描述的方法可以包括多個步驟,所述多個步驟可以以特定順序出現,應當理解的是,這些方法可能包括多於或少於上述步驟,這些步驟之間的順序還可以變換,不同的步驟可以合併。例如,步驟S116中可省略。The previously described method may comprise a plurality of steps, which may occur in a particular order, it being understood that the methods may include more or less than the above steps, the order between the steps may also be varied, different The steps can be combined. For example, it can be omitted in step S116.

圖6是根據本發明某一實施例所描述的通過一網路設備200要求接入網路的方法的流程圖。該方法可作為存儲在移動設備100的一組指令被執行。該方法可包括如下步驟。在步驟S302中,該移動設備100發送一用以接入互聯網300的第一請求。在步驟S304中,該移動設備100從該網路設備200接收至少一消息。在本發明的一實施例中,該消息可使該移動設備100提示一使用者介面以請求該移動設備100的使用者來啟動一特定的電腦程式,其中,一通過該網路設備200接入網路的條件被定義在該電腦程式中。在本發明的另一實施例中,該消息可包括一該電腦程式在該網路設備200的下載連結。該移動設備100可根據該消息被啟動以下載和安裝該電腦程式。在本發明的另一實施例中,在步驟S302中,該移動設備100發送一服務請求(該第一請求)以通過該網路設備200接入該互聯網300的一服務。該網路設備200判斷該移動設備100是否被授權接入該互聯網300,並發送一消息至該移動設備100,以回應移動設備100未被授權接入該互聯網300的判斷。6 is a flow diagram of a method of requesting access to a network by a network device 200, in accordance with an embodiment of the present invention. The method can be performed as a set of instructions stored on the mobile device 100. The method can include the following steps. In step S302, the mobile device 100 sends a first request to access the Internet 300. In step S304, the mobile device 100 receives at least one message from the network device 200. In an embodiment of the invention, the message may cause the mobile device 100 to prompt a user interface to request the user of the mobile device 100 to launch a specific computer program, wherein the network device 200 is accessed by the network device 200. The conditions of the network are defined in the computer program. In another embodiment of the invention, the message can include a download link of the computer program at the network device 200. The mobile device 100 can be launched according to the message to download and install the computer program. In another embodiment of the present invention, in step S302, the mobile device 100 sends a service request (the first request) to access a service of the Internet 300 through the network device 200. The network device 200 determines whether the mobile device 100 is authorized to access the Internet 300 and sends a message to the mobile device 100 in response to a determination that the mobile device 100 is not authorized to access the Internet 300.

在步驟S306中,該移動設備100判斷上述的包含通過該網路設備200接入網路的條件的電腦程式是否已經下載和安裝在該移動設備100。如果該電腦程式尚未被下載和安裝,在步驟S308中,該移動設備200發送一用以下載該電腦程式的第二請求至該網路設備200,並在步驟S310中下載該電腦程式。在本發明的另一實施例中,該移動設備100向該伺服器400請求該電腦程式,並從伺服器400下載該電腦程式。在本發明的另一實施例中,該電腦程式可由應用商店500或其他互聯網300內的網站提供,來代替該伺服器400和該網路設備200。返回至步驟S306,如果電腦程式已經被下載和安裝在移動設備上,步驟S308和S310可省略。In step S306, the mobile device 100 determines whether the computer program including the condition for accessing the network through the network device 200 has been downloaded and installed on the mobile device 100. If the computer program has not been downloaded and installed, in step S308, the mobile device 200 sends a second request to download the computer program to the network device 200, and downloads the computer program in step S310. In another embodiment of the present invention, the mobile device 100 requests the computer program from the server 400 and downloads the computer program from the server 400. In another embodiment of the invention, the computer program can be provided by a website within the application store 500 or other Internet 300 in place of the server 400 and the network device 200. Returning to step S306, if the computer program has been downloaded and installed on the mobile device, steps S308 and S310 may be omitted.

在本發明的一實施例中,從應用商店500下載和安裝電腦程式可被該移動設備100的“移動軟體應用商店”程式管理,來代替指示該移動設備100至一用以從應用商店500下載電腦程式的網頁。該從該伺服器400接收的消息可啟動該“移動軟體應用商店”程式來下載該電腦程式。In an embodiment of the present invention, downloading and installing a computer program from the application store 500 may be managed by the "mobile software application store" program of the mobile device 100 instead of indicating that the mobile device 100 to one is for downloading from the application store 500. Web page of a computer program. The message received from the server 400 can launch the "Mobile Software App Store" program to download the computer program.

在步驟S312中,該移動設備100判斷由該電腦程式定義的接入該互聯網300的條件是否已經滿足。該移動設備100連續地執行步驟S312來監視該條件的狀態直至條件滿足。在本發明的一實施例中,該移動設備可進一步生成並顯示一條件的提示給用戶。一旦條件滿足,在步驟S314中,該移動設備100發送一第三請求及一驗證結果至該網路設備200以接入互聯網300,並在步驟S316中接收一接入互聯網300的授權的通知。該授權過程可被該網路設備200或該伺服器400完成。也就是說,該移動設備100可發送該第三請求至該網路設備200或該伺服器400,並從該網路設備200或該伺服器400接收該授權通知。在步驟S316之後,該移動設備100可進一步通過請求該網路設備200接入互聯網300。In step S312, the mobile device 100 determines whether the condition for accessing the Internet 300 defined by the computer program has been met. The mobile device 100 continuously performs step S312 to monitor the state of the condition until the condition is satisfied. In an embodiment of the invention, the mobile device can further generate and display a prompt for a condition to the user. Once the condition is met, in step S314, the mobile device 100 sends a third request and a verification result to the network device 200 to access the Internet 300, and receives a notification of authorization to access the Internet 300 in step S316. The authorization process can be completed by the network device 200 or the server 400. That is, the mobile device 100 can send the third request to the network device 200 or the server 400 and receive the authorization notification from the network device 200 or the server 400. After step S316, the mobile device 100 can further access the Internet 300 by requesting the network device 200.

在本發明的一實施例中,在步驟S312中的上述條件可包括執行至少一定義在該電腦程式的動作。該動作可包括啟動電腦程式的或者特定輸入的接收例如點擊一個該移動設備100所顯示的圖示、該移動設備的觸控式螢幕所檢測到的一觸摸訊號以及一包括沿至少一個方向在該移動設備的100上移動一個或多個手指的特定手勢。在本發明的一實施例中,預定義的動作可包括從使用者接收資訊或者檢索來自該移動設備100的資訊,例如使用者的姓名、性別、年齡。使用者可被要求輸入特定的資訊和/或者授權該移動設備100執行上述動作。In an embodiment of the invention, the above condition in step S312 may include performing at least one action defined in the computer program. The action may include launching a computer program or receiving a specific input such as clicking on a icon displayed by the mobile device 100, a touch signal detected by the touch screen of the mobile device, and including in at least one direction A particular gesture of moving one or more fingers on the mobile device 100. In an embodiment of the invention, the predefined actions may include receiving information from the user or retrieving information from the mobile device 100, such as the user's name, gender, age. The user may be required to enter specific information and/or authorize the mobile device 100 to perform the above actions.

在本發明的一實施例中,該條件可為該伺服器400所提供的一服務的完成。因此,該移動設備可根據該電腦程式的啟動請求一特定的服務,來代替在步驟S314中生成和發送該驗證結果至該網路設備200。通過請求該服務,該條件被滿足,該伺服器400發送一授權請求至該網路設備200來授權該移動設備100接入該互聯網300。In an embodiment of the invention, the condition may be the completion of a service provided by the server 400. Therefore, the mobile device can request and send the verification result to the network device 200 in step S314 instead of requesting a specific service according to the startup of the computer program. By requesting the service, the condition is met and the server 400 sends an authorization request to the network device 200 to authorize the mobile device 100 to access the Internet 300.

在本發明的一實施例中,該移動設備100可被實現具有載波聚合功能來加速網路接入的速度。因此,在步驟S316之後,該移動設備100可向該網路設備200請求一額外的射頻帶寬代替僅僅接入網路。In an embodiment of the invention, the mobile device 100 can be implemented with carrier aggregation functionality to speed up network access. Therefore, after step S316, the mobile device 100 can request an additional radio frequency bandwidth from the network device 200 instead of merely accessing the network.

先前描述的方法可以包括多個步驟,所述多個步驟可以以特定順序出現,應當理解的是,這些方法可能包括多於或少於上述步驟,這些步驟之間的順序還可以變換,不同的步驟可以合併。例如,步驟S316中可省略。The previously described method may comprise a plurality of steps, which may occur in a particular order, it being understood that the methods may include more or less than the above steps, the order between the steps may also be varied, different The steps can be combined. For example, it can be omitted in step S316.

圖7是根據本發明某一實施例所描述的判斷是否通過一網路設備200建立一接入一移動設備100至一互聯網200的連接的方法的流程圖。在本發明的一實施例中,該方法可作為一組指令在該網路設備200內被執行。該方法可包括如下步驟。在步驟S402中,該網路設備200從移動設備100接收一用以接入網路的第一請求。在步驟S404中,該網路設備200可發送至少一消息至該移動設備100。在本發明的另一實施例中,在步驟S402中,該網路設備200可從該移動設備100接收一用以接入該互聯網300的一服務的服務請求(第一請求)。在步驟S404中,該網路設備200可判斷該移動設備100是否被授權接入該互聯網300並發送一消息至該移動設備100,來回應移動設備100未被授權接入該互聯網300的判斷。FIG. 7 is a flowchart of a method for determining whether to establish a connection between a mobile device 100 and an Internet 200 through a network device 200, according to an embodiment of the present invention. In an embodiment of the invention, the method can be executed within the network device 200 as a set of instructions. The method can include the following steps. In step S402, the network device 200 receives a first request from the mobile device 100 to access the network. In step S404, the network device 200 can send at least one message to the mobile device 100. In another embodiment of the present invention, in step S402, the network device 200 can receive a service request (first request) from the mobile device 100 for accessing a service of the Internet 300. In step S404, the network device 200 can determine whether the mobile device 100 is authorized to access the Internet 300 and send a message to the mobile device 100 in response to the determination that the mobile device 100 is not authorized to access the Internet 300.

在本發明的一實施例中,該消息可使該移動設備100提示一使用者介面以請求該移動設備100的使用者來啟動一特定的電腦程式,其中,一通過該網路設備200接入網路的條件被定義在該電腦程式中。在本發明的另一實施例中,該消息可包括一該電腦程式在該網路設備200的下載連結,以啟動該移動設備100來下載和安裝該電腦程式。In an embodiment of the invention, the message may cause the mobile device 100 to prompt a user interface to request the user of the mobile device 100 to launch a specific computer program, wherein the network device 200 is accessed by the network device 200. The conditions of the network are defined in the computer program. In another embodiment of the present invention, the message may include a download link of the computer program at the network device 200 to activate the mobile device 100 to download and install the computer program.

在步驟S406中,該網路設備200判斷是否從該移動設備100接收到一用以接入網路的第二請求及定義在電腦程式內的上述條件的驗證結果。如果該網路設備200在一段時間內未從該移動設備100接收到該第二請求,這意味著該移動設備100可能沒有該電腦程式。在步驟S408中,該網路設備200可進一步判斷是否從移動設備100接收一用以下載該電腦程式的第三請求。直到接收到第二請求或第三請求,該網路設備200可重複步驟S406和S408。在步驟S408中接收到第三要求時,在步驟S410中,該網路設備200發送該電腦程式至該移動設備100。In step S406, the network device 200 determines whether a second request for accessing the network and a verification result of the above condition defined in the computer program are received from the mobile device 100. If the network device 200 does not receive the second request from the mobile device 100 for a period of time, this means that the mobile device 100 may not have the computer program. In step S408, the network device 200 can further determine whether a third request for downloading the computer program is received from the mobile device 100. The network device 200 may repeat steps S406 and S408 until the second request or the third request is received. When the third request is received in step S408, the network device 200 transmits the computer program to the mobile device 100 in step S410.

返回至步驟S406,當從移動設備100接收到第二請求及驗證結果時,這意味該移動設備100接入該互聯網300的條件已經滿足。因此,在步驟S412中,該網路設備200授權該移動設備100接入網路。在步驟S414中,該網路設備200進一步通知該移動設備100該授權。該移動設備100在接收到通知後請求該網路設備200以接入網路。該網路設備200連接該移動設備100和該互聯網300,因為該移動設備100已被授權接入網路。在本發明的一實施例中,該網路設備200可分配並提供一特定頻寬給該移動設備100實現加速移動設備的網路接入的速度如果上述條件已經滿足,來代替連接該移動設備100至該互聯網300。Returning to step S406, when the second request and the verification result are received from the mobile device 100, this means that the condition that the mobile device 100 accesses the Internet 300 has been satisfied. Therefore, in step S412, the network device 200 authorizes the mobile device 100 to access the network. In step S414, the network device 200 further notifies the mobile device 100 of the authorization. The mobile device 100 requests the network device 200 to access the network upon receiving the notification. The network device 200 connects the mobile device 100 and the Internet 300 because the mobile device 100 has been authorized to access the network. In an embodiment of the present invention, the network device 200 can allocate and provide a specific bandwidth to the mobile device 100 to speed up network access of the mobile device. If the above conditions are met, instead of connecting the mobile device 100 to the Internet 300.

在本發明的另一實施例中,在步驟S406中,該網路設備200可從該移動設備100接收一用以接入該互聯網300的一服務的服務請求(該第二請求),來代替從該移動設備100接收該第二請求及驗證結果,執行該服務可為通過該網路設備200接入網路的條件。該網路設備200可在步驟S412中因此連接該移動設備100與該互聯網300,並轉發該服務請求和該請求的服務資料。In another embodiment of the present invention, in step S406, the network device 200 can receive a service request (the second request) for accessing a service of the Internet 300 from the mobile device 100 instead. Receiving the second request and the verification result from the mobile device 100, the execution of the service may be a condition for accessing the network through the network device 200. The network device 200 can thus connect the mobile device 100 with the Internet 300 in step S412 and forward the service request and the requested service profile.

先前描述的方法可以包括多個步驟,所述多個步驟可以以特定順序出現,應當理解的是,這些方法可能包括多於或少於上述步驟,這些步驟之間的順序還可以變換,不同的步驟可以合併。例如,步驟S414中可省略。The previously described method may comprise a plurality of steps, which may occur in a particular order, it being understood that the methods may include more or less than the above steps, the order between the steps may also be varied, different The steps can be combined. For example, it can be omitted in step S414.

圖8至11是根據本發明某些實施例所描述的獲得接入網路授權的方法的流程圖。8 through 11 are flow diagrams of methods for obtaining access network authorization as described in accordance with some embodiments of the present invention.

圖8是根據本發明某一實施例所描述的從一網路設備200獲得接入網路授權至一移動設備100的方法的流程圖,本發明的該方法執行如下步驟。8 is a flow diagram of a method of obtaining an access network grant from a network device 200 to a mobile device 100, in accordance with an embodiment of the present invention, the method of the present invention performing the following steps.

在步驟S202中,該移動設備100發送一用以接入該互聯網300的第一請求至網路設備200。在步驟S204中,該網路裝置200發送一第二請求到該伺服器400。在本發明的一實施例中,第二請求(請統一用語)可以由第一請求生成。該第二請求可進一步包括關於網路設備200的資訊如設備識別資訊、網路位址等。在本發明的另一實施例中,該網路設備200可能僅向該伺服器400轉發該請求,來代替生成和發送該第二請求。在步驟S206中,該伺服器400可發送通過該網路設備200至少一消息至移動設備100。在本發明的一實施例中,該消息可使該移動設備100提示一使用者介面以請求該移動設備100的使用者來啟動一特定的電腦程式,其中,一通過該網路設備200接入網路的條件被定義在該電腦程式中。在本發明的另一實施例中,該消息可包括一該電腦程式在該網路設備200的下載連結。該移動設備100根據該消息被啟動以下載和安裝該電腦程式。在本發明的另一實施例中,該電腦程式可通過應用商店500或互聯網300的網站提供,來代替該伺服器400。In step S202, the mobile device 100 sends a first request to access the Internet 300 to the network device 200. In step S204, the network device 200 sends a second request to the server 400. In an embodiment of the invention, the second request (please use a unified term) may be generated by the first request. The second request may further include information about the network device 200 such as device identification information, network address, and the like. In another embodiment of the invention, the network device 200 may only forward the request to the server 400 instead of generating and transmitting the second request. In step S206, the server 400 can transmit at least one message to the mobile device 100 through the network device 200. In an embodiment of the invention, the message may cause the mobile device 100 to prompt a user interface to request the user of the mobile device 100 to launch a specific computer program, wherein the network device 200 is accessed by the network device 200. The conditions of the network are defined in the computer program. In another embodiment of the invention, the message can include a download link of the computer program at the network device 200. The mobile device 100 is launched according to the message to download and install the computer program. In another embodiment of the present invention, the computer program can be provided through the website of the application store 500 or the Internet 300 instead of the server 400.

在本發明的另一實施例中,在步驟S102中,該移動設備100發送一服務請求(該第一請求)以通過該網路設備200接入該互聯網300的一服務。在步驟S204中,在接收到該第一請求時,該網路設備200判斷該移動設備100是否被授權接入該互聯網300,並指示從該移動設備100至該伺服器400的訪問,來回應該移動設備100未被授權接入該互聯網300的判斷。在步驟S206中,該伺服器400通過該網路設備200發送消息至移動裝置100。In another embodiment of the present invention, in step S102, the mobile device 100 sends a service request (the first request) to access a service of the Internet 300 through the network device 200. In step S204, upon receiving the first request, the network device 200 determines whether the mobile device 100 is authorized to access the Internet 300, and indicates access from the mobile device 100 to the server 400. The mobile device 100 is not authorized to access the Internet 300. In step S206, the server 400 sends a message to the mobile device 100 via the network device 200.

如果該移動設備100沒有安裝該電腦程式,在步驟S208中,該移動設備100發送一第三請求至伺服器400以下載該電腦程式。在步驟S210中,該伺服器400通過該網路設備200向該移動設備100發送該電腦程式。然而,在本發明的一實施例中,如果電腦程式已存在於該移動設備100,該移動裝置100可啟動的電腦程式,來代替執行步驟S208和S210下載該電腦程式。If the mobile device 100 does not have the computer program installed, in step S208, the mobile device 100 sends a third request to the server 400 to download the computer program. In step S210, the server 400 transmits the computer program to the mobile device 100 through the network device 200. However, in an embodiment of the present invention, if a computer program already exists in the mobile device 100, the mobile device 100 can start the computer program instead of performing the steps S208 and S210 to download the computer program.

在步驟S212中,該移動設備100執行一預定義的動作以滿足該電腦程式中定義的條件。在本發明的一實施例中,上述動作可包括啟動電腦程式或特定輸入的接收例如點擊一個該移動設備100所顯示的圖示、該移動設備的觸控式螢幕所檢測到的一觸摸訊號以及一包括沿至少一個方向在該移動設備的100上移動一個或多個手指的特定手勢。在本發明的一實施例中,預定義的動作可包括從使用者接收資訊或者檢索來自該移動設備100的資訊,例如使用者的姓名、性別、年齡。使用者可被要求輸入特定的資訊和/或授權該移動設備100執行上述動作。在本發明的一實施例中,該移動設備100從該網路設備200接收一使用者輸入請求或者一動作許可。該移動設備100可進一步包括通知用戶該請求。如果該請求被拒絕,該授權過程可能會結束或中斷直至使用者輸入或者許可該網路設備200。在本發明的一實施例中,上述請求或通知可被該電腦程式生成,來代替從該網路設備200接收。在本發明的一實施例中,一用於所述動作的提示可通過該電腦程式提供給該移動設備100的使用者。更具體地說,該提示也可被該電腦程式定義用以在電腦程式被啟動後顯示給使用者。In step S212, the mobile device 100 performs a predefined action to satisfy the conditions defined in the computer program. In an embodiment of the invention, the actions may include initiating a computer program or receiving a specific input, such as clicking on a icon displayed by the mobile device 100, a touch signal detected by the touch screen of the mobile device, and One includes a particular gesture of moving one or more fingers on the mobile device 100 in at least one direction. In an embodiment of the invention, the predefined actions may include receiving information from the user or retrieving information from the mobile device 100, such as the user's name, gender, age. The user may be required to enter specific information and/or authorize the mobile device 100 to perform the actions described above. In an embodiment of the invention, the mobile device 100 receives a user input request or an action permission from the network device 200. The mobile device 100 can further include notifying the user of the request. If the request is rejected, the authorization process may end or be interrupted until the user enters or licenses the network device 200. In an embodiment of the invention, the request or notification may be generated by the computer program instead of being received from the network device 200. In an embodiment of the invention, a prompt for the action can be provided to the user of the mobile device 100 by the computer program. More specifically, the prompt can also be defined by the computer program to be displayed to the user after the computer program is launched.

在本發明的一實施例中,該條件可為伺服器400提供一服務的完成。該移動設備100根據電腦程式的啟動請求一特定服務。例如,該伺服器400可提供廣告如網頁廣告或視頻廣告給該移動設備100,該移動裝置100可在播放一段時間廣告後滿足條件。另一個例子,該伺服器400可提供下載優惠券至移動裝置100。移動設備100可在下載優惠券後滿足條件。在本發明的一實施例中,當啟動電腦程式600時,該移動裝置100可被指示到一社交網路服務提供的伺服器。該移動裝置100在其使用者點擊社交網路服務的網頁的“喜歡”或“推薦”圖示後滿足條件。此外,在點擊社交網路服務的網頁的“喜歡”或“推薦”圖示前,使用者可能需要登錄社交網路服務。在本發明的另一實施例中,一計費系統可以在該伺服器400實現。當啟動該電腦程式600時,該移動裝置100可被指示到該計費系統。該計費系統提供支付服務給移動設備100的使用者來支付網路接入。例如,一要求信用卡資訊的使用者介面可能會根據支付服務生成。在接收到信用卡資訊後,該計費系統可生成一帳單到相應的銀行系統以收取通過網路設備200接入網路的費用。上述信用卡支付機制也可以通過該伺服器400內的計費系統實現的預先支付機制代替。在本發明的一實施例中,一種用於上述行動的提示可從伺服器400提供給移動設備100的使用者。更具體地說,提示也可通過電腦程式被移動設備100所接收。In an embodiment of the invention, the condition may provide completion of a service for the server 400. The mobile device 100 requests a specific service based on the startup of the computer program. For example, the server 400 can provide an advertisement, such as a web page advertisement or a video advertisement, to the mobile device 100, and the mobile device 100 can satisfy the condition after playing an advertisement for a period of time. As another example, the server 400 can provide a download coupon to the mobile device 100. The mobile device 100 can satisfy the condition after downloading the coupon. In an embodiment of the invention, when the computer program 600 is launched, the mobile device 100 can be instructed to a server provided by a social networking service. The mobile device 100 satisfies the condition after the user clicks on the "like" or "recommendation" icon of the web page of the social networking service. In addition, the user may need to log in to the social networking service before clicking on the "like" or "recommended" icon on the web page of the social networking service. In another embodiment of the invention, a billing system can be implemented at the server 400. When the computer program 600 is launched, the mobile device 100 can be instructed to the billing system. The billing system provides payment services to users of the mobile device 100 to pay for network access. For example, a user interface that requires credit card information may be generated based on a payment service. Upon receipt of the credit card information, the billing system can generate a bill to the corresponding banking system to charge for access to the network via the network device 200. The credit card payment mechanism described above can also be replaced by a pre-payment mechanism implemented by the billing system in the server 400. In an embodiment of the invention, a prompt for the above action may be provided from the server 400 to a user of the mobile device 100. More specifically, the prompts can also be received by the mobile device 100 via a computer program.

在步驟214中,該移動設備100發送一用以請求接入網路的第四請求及驗證結果至該伺服器400。如果滿足條件,該驗證結果可由電腦生成。換句話說,該電腦程式可監視預定義的動作是否被執行以及在接收到該動作被執行的檢測時觸發該移動設備100來執行步驟S214。在步驟S216中,該伺服器400發送一授權請求至該網路設備200。在步驟S218中,在該網路設備200從該伺服器400接收到該授權請求之後,該網路設備200更新存儲在該網路設備200的許可權設置來授權該移動設備100接入該互聯網300。因此,該移動設備100可具有通過該網路設備200接入互聯網的授權。換句話說,該網路設備200可連接該移動設備100和互聯網,來回應一來自移動設備100的網路接入請求。在步驟S220中,該網路設備200通知該移動設備100授權。此外,在本發明的一實施例中,上述通知可在滿足條件時由該電腦程式生成,來代替在步驟S216中從該網路設備200接收。In step 214, the mobile device 100 sends a fourth request to request access to the network and a verification result to the server 400. If the condition is met, the verification result can be generated by the computer. In other words, the computer program can monitor whether the predefined action is performed and trigger the mobile device 100 to perform step S214 upon receiving the detection that the action is performed. In step S216, the server 400 sends an authorization request to the network device 200. In step S218, after the network device 200 receives the authorization request from the server 400, the network device 200 updates the permission setting stored in the network device 200 to authorize the mobile device 100 to access the Internet. 300. Thus, the mobile device 100 can have an authorization to access the Internet through the network device 200. In other words, the network device 200 can connect the mobile device 100 and the Internet in response to a network access request from the mobile device 100. In step S220, the network device 200 notifies the mobile device 100 of the authorization. Further, in an embodiment of the present invention, the notification may be generated by the computer program when the condition is satisfied instead of being received from the network device 200 in step S216.

在本發明的一實施例中,在步驟S214中,該移動設備100發送一用以通過該伺服器200接入一伺服器400內的服務的服務請求(第四請求),該服務可為該網路設備200內定義的接入網路的條件。該網路設備200在步驟S216中驗證是否滿足條件,來代替從伺服器400接收該授權請求。回應在步驟S216中的驗證,該網路設備200可更新許可權設置,並在步驟S218中連接該移動設備100與該互聯網300。In an embodiment of the present invention, in step S214, the mobile device 100 sends a service request (fourth request) for accessing a service in the server 400 through the server 200, and the service may be The conditions of the access network defined within the network device 200. The network device 200 verifies whether the condition is satisfied in step S216 instead of receiving the authorization request from the server 400. In response to the verification in step S216, the network device 200 can update the permission setting and connect the mobile device 100 with the Internet 300 in step S218.

先前描述的方法可以包括多個步驟,所述多個步驟可以以特定順序出現,應當理解的是,這些方法可能包括多於或少於上述步驟,這些步驟之間的順序還可以變換,不同的步驟可以合併。例如,步驟S220可省略。The previously described method may comprise a plurality of steps, which may occur in a particular order, it being understood that the methods may include more or less than the above steps, the order between the steps may also be varied, different The steps can be combined. For example, step S220 can be omitted.

圖9是根據本發明某一實施例所描述的一移動設備100通過一網路設備200從一伺服器400獲得一接入網路的授權的方法的流程圖,本發明的該方法執行如下步驟。9 is a flow diagram of a method for a mobile device 100 to obtain an access network authorization from a server 400 via a network device 200, in accordance with an embodiment of the present invention, the method of the present invention performs the following steps .

在步驟S202中,該移動設備100發送一用以接入該互聯網300的第一請求至網路設備200。在步驟S204中,該網路裝置200發送一第二請求到該伺服器400。在本發明的一實施例中,第二請求可由第一請求生成。該第二請求可進一步包括關於網路設備200的資訊如設備識別資訊、網路位址等。在本發明的另一實施例中,該網路設備200可能僅僅向該伺服器400轉發該第一請求,來代替生成並發送該第二請求。在步驟S206中,該伺服器400可發送通過該網路設備200至少一消息至移動設備100。在本發明的一實施例中,該消息可使該移動設備100提示一使用者介面以請求該移動設備100的使用者來啟動一特定的電腦程式,其中,一通過該網路設備200接入網路的條件被定義在該電腦程式中。在本發明的另一實施例中,該消息可包括一該電腦程式在該網路設備200的下載連結。該移動設備100根據該消息被啟動以下載和安裝該電腦程式。在本發明的另一實施例中,該電腦程式可通過應用商店500或互聯網300的網站提供,來代替該伺服器400。In step S202, the mobile device 100 sends a first request to access the Internet 300 to the network device 200. In step S204, the network device 200 sends a second request to the server 400. In an embodiment of the invention, the second request may be generated by the first request. The second request may further include information about the network device 200 such as device identification information, network address, and the like. In another embodiment of the invention, the network device 200 may only forward the first request to the server 400 instead of generating and transmitting the second request. In step S206, the server 400 can transmit at least one message to the mobile device 100 through the network device 200. In an embodiment of the invention, the message may cause the mobile device 100 to prompt a user interface to request the user of the mobile device 100 to launch a specific computer program, wherein the network device 200 is accessed by the network device 200. The conditions of the network are defined in the computer program. In another embodiment of the invention, the message can include a download link of the computer program at the network device 200. The mobile device 100 is launched according to the message to download and install the computer program. In another embodiment of the present invention, the computer program can be provided through the website of the application store 500 or the Internet 300 instead of the server 400.

如果該移動設備100沒有安裝該電腦程式,在步驟S208中,該移動設備100發送一用以下載該電腦程式的第三請求至伺服器400。在步驟S210中,該伺服器400通過該網路設備200向該移動設備100發送該電腦程式。然而,在本發明的一實施例中,如果電腦程式已存在於該移動設備100,該移動裝置100可啟動電腦程式,來代替執行步驟S208和S210下載該電腦程式。If the mobile device 100 does not have the computer program installed, in step S208, the mobile device 100 sends a third request to download the computer program to the server 400. In step S210, the server 400 transmits the computer program to the mobile device 100 through the network device 200. However, in an embodiment of the present invention, if a computer program already exists in the mobile device 100, the mobile device 100 can start a computer program instead of executing the steps S208 and S210 to download the computer program.

在步驟S222中,該移動設備100啟動該電腦程式,並發送一用以接入該互聯網300的第四請求至該伺服器400。在步驟S224中,該伺服器400發送一包括一用以要求使用者輸入提示的消息來滿足該移動設備100通過該網路設備200接入網路的條件。在步驟S226中,該移動設備100發送該輸入要求至該伺服器400。In step S222, the mobile device 100 starts the computer program and sends a fourth request to access the Internet 300 to the server 400. In step S224, the server 400 sends a message including a message for requesting the user to input a prompt to satisfy the condition that the mobile device 100 accesses the network through the network device 200. In step S226, the mobile device 100 transmits the input request to the server 400.

在本發明的一實施例中,該條件可是該伺服器400提供的一服務的完成。該移動設備100可根據電腦程式的啟動請求一特定服務。例如,該伺服器400可提供廣告,如網頁廣告或視頻廣告,給該移動設備100,該移動裝置100可在播放一段時間廣告後滿足條件。另一個例子,該伺服器400可提供下載優惠券至移動裝置100。移動設備100可能在下載優惠券後滿足條件。在本發明的一實施例中,當啟動電腦程式600時,該移動裝置100可被指示到一社交網路服務提供的伺服器。該移動裝置100在其使用者點擊社交網路服務的網頁的“喜歡”或“推薦”圖示後滿足條件。此外,在點擊社交網路服務的網頁的“喜歡”或“推薦”圖示前,使用者可能需要登錄社交網路服務。在本發明的另一實施例中,一計費系統可以在該伺服器400實現。當啟動該電腦程式600時,該移動裝置100可被指示到該計費系統。該計費系統提供支付服務給移動設備100的使用者來支付網路接入。例如,一要求信用卡資訊的使用者介面可能會根據支付服務產生。在接收到信用卡資訊後,該計費系統可能會產生一帳單到相應的銀行系統以支付通過網路設備200接入網路的費用。上述信用卡支付機制也可以通過該伺服器400內的計費系統實現的預先支付機制代替。In an embodiment of the invention, the condition may be the completion of a service provided by the server 400. The mobile device 100 can request a specific service according to the startup of the computer program. For example, the server 400 can provide an advertisement, such as a web page advertisement or a video advertisement, to the mobile device 100, the mobile device 100 can satisfy the condition after playing an advertisement for a period of time. As another example, the server 400 can provide a download coupon to the mobile device 100. The mobile device 100 may satisfy the condition after downloading the coupon. In an embodiment of the invention, when the computer program 600 is launched, the mobile device 100 can be instructed to a server provided by a social networking service. The mobile device 100 satisfies the condition after the user clicks on the "like" or "recommendation" icon of the web page of the social networking service. In addition, the user may need to log in to the social networking service before clicking on the "like" or "recommended" icon on the web page of the social networking service. In another embodiment of the invention, a billing system can be implemented at the server 400. When the computer program 600 is launched, the mobile device 100 can be instructed to the billing system. The billing system provides payment services to users of the mobile device 100 to pay for network access. For example, a user interface that requires credit card information may be generated based on a payment service. Upon receipt of the credit card information, the billing system may generate a bill to the corresponding banking system to cover the cost of accessing the network through the network device 200. The credit card payment mechanism described above can also be replaced by a pre-payment mechanism implemented by the billing system in the server 400.

在步驟228中,當該條件被滿足時,該伺服器400發送一授權請求至該網路設備。在本發明的一實施例中,該授權請求可包括關於該移動設備100的識別資訊。在本發明的一實施例中,在步驟S202中,來自該移動設備100的MAC位址可被存儲在該網路設備200內。該網路設備200可具有一用以基於MAC位址產生並分配一IP位址給該移動設備100的IP映射表或路由表。該伺服器400可通過該IP位址識別該移動設備100並發送包括用以授權的該移動設備100接入該互聯網300的IP位址的授權請求。該網路裝置200可根據IP位址與上述表識別移動設備100及變更許可權設置。在步驟S230中,該網路設備200基於來自該伺服器400的授權請求更新許可權設置。在步驟S232中,網路設備200可通知該移動設備100授權。In step 228, when the condition is met, the server 400 sends an authorization request to the network device. In an embodiment of the invention, the authorization request may include identification information about the mobile device 100. In an embodiment of the invention, the MAC address from the mobile device 100 can be stored in the network device 200 in step S202. The network device 200 can have an IP mapping table or routing table for generating and assigning an IP address to the mobile device 100 based on the MAC address. The server 400 can identify the mobile device 100 by the IP address and send an authorization request including the IP address of the mobile device 100 for accessing the Internet 300. The network device 200 can identify the mobile device 100 and change the permission settings based on the IP address and the above table. In step S230, the network device 200 updates the permission settings based on the authorization request from the server 400. In step S232, the network device 200 can notify the mobile device 100 of the authorization.

先前描述的方法可以包括多個步驟,所述多個步驟可以以特定順序出現,應當理解的是,這些方法可能包括多於或少於上述步驟,這些步驟之間的順序還可以變換,不同的步驟可以合併。例如,步驟S232可省略。The previously described method may comprise a plurality of steps, which may occur in a particular order, it being understood that the methods may include more or less than the above steps, the order between the steps may also be varied, different The steps can be combined. For example, step S232 can be omitted.

在本發明的一實施例中,如果該移動設備100終止該網路接入,例如該移動設備100關閉或該移動設備100不在該網路設備200的局域網覆蓋的區域內時,該授權可被取消。換句話說,該移動設備100可能需要再次執行的所有步驟來獲得接入網路授權。In an embodiment of the present invention, if the mobile device 100 terminates the network access, for example, the mobile device 100 is turned off or the mobile device 100 is not in an area covered by the local area network of the network device 200, the authorization may be cancel. In other words, the mobile device 100 may need to perform all the steps again to obtain access network authorization.

圖10是根據本發明某一實施例所描述的基於從一伺服器400發送的授權請求判斷是否建立一接入一移動設備100至一互聯網300的連接的方法的流程圖。該方法可作為一組指令在該網路設備200內被執行。該方法可包括如下步驟。在步驟S502中,該網路設備200從移動設備100接收一用以網路接入的第一請求。在步驟S504中,該網路設備200可發送一第二請求至該伺服器400。在本發明的一實施例中,第二請求可由第一請求生成。該第二請求可進一步包括關於網路設備200的資訊如設備識別資訊、網路位址等。在本發明的另一實施例中,該網路設備200可能僅僅向該伺服器400轉發該第一請求,來代替生成和發送第二請求。10 is a flow diagram of a method for determining whether to establish a connection to a mobile device 100 to an Internet 300 based on an authorization request sent from a server 400, in accordance with an embodiment of the present invention. The method can be executed within the network device 200 as a set of instructions. The method can include the following steps. In step S502, the network device 200 receives a first request from the mobile device 100 for network access. In step S504, the network device 200 can send a second request to the server 400. In an embodiment of the invention, the second request may be generated by the first request. The second request may further include information about the network device 200 such as device identification information, network address, and the like. In another embodiment of the invention, the network device 200 may only forward the first request to the server 400 instead of generating and transmitting the second request.

在步驟S508中,該網路設備100判斷是否從該移動設備100接收到一用以接入網路的第三請求及一驗證結果。如果該網路設備200沒有接收到該第三請求,在步驟S510中,該網路裝置200判斷是否從該移動設備100接收到一用以下載一預定義的電腦程式的第四請求,該電腦程式定義有至少一用以該移動設備100接入該互聯網300的條件。當接收到該第四請求,在步驟S512中,該網路設備200轉發該第四請求至該伺服器400。在步驟S514中,該網路設備200從伺服器400接收該電腦程式,並轉發至該移動設備100。In step S508, the network device 100 determines whether a third request for accessing the network and a verification result are received from the mobile device 100. If the network device 200 does not receive the third request, in step S510, the network device 200 determines whether a fourth request for downloading a predefined computer program is received from the mobile device 100, the computer The program defines at least one condition for the mobile device 100 to access the Internet 300. Upon receiving the fourth request, the network device 200 forwards the fourth request to the server 400 in step S512. In step S514, the network device 200 receives the computer program from the server 400 and forwards it to the mobile device 100.

返回至步驟S508和步驟S510,如果網路設備200沒有接收到第三請求及第四請求,該移動設備100可能已下載或安裝該電腦程式。因此,該網路設備200可持續監視直至從移動設備100接收到通過電腦程式觸發的該第三請求及驗證結果。當從移動設備100接收到該第三請求及驗證結果,這意味著在電腦程式中定義的條件被滿足,在步驟S516中,該網路設備200轉發該第三請求及該驗證結果至該伺服器400。在步驟S518中,該網路設備200從該伺服器400接收允許該移動設備接入該互聯網300的授權請求。在步驟S520中,該網路設備200更新許可權設置,以回應該授權請求。此外,在步驟S522中,該網路設備200通知該移動設備100該授權。Returning to step S508 and step S510, if the network device 200 does not receive the third request and the fourth request, the mobile device 100 may have downloaded or installed the computer program. Thus, the network device 200 can continue to monitor until the third request and verification result triggered by the computer program is received from the mobile device 100. When the third request and the verification result are received from the mobile device 100, this means that the condition defined in the computer program is satisfied, and in step S516, the network device 200 forwards the third request and the verification result to the servo. 400. In step S518, the network device 200 receives an authorization request from the server 400 to allow the mobile device to access the Internet 300. In step S520, the network device 200 updates the permission settings to respond to the authorization request. Further, in step S522, the network device 200 notifies the mobile device 100 of the authorization.

在本發明的一實施例中,在步驟S508中,該移動設備100發送一用以通過網路設備200接入一伺服器400內的服務的服務請求,該服務可為該網路設備200內定義的接入網路的條件。該網路設備200可接收沒有驗證的第三請求。如果條件滿足,該網路設備200然後可進一步通過從移動設備100接收該服務請求至伺服器400驗證,來代替執行步驟S516和S518。在步驟S520中,該網路設備200可更新許可權設置,並連接該移動設備100至該互聯網300,以回應用以該移動設備100接入該互聯網300的條件被滿足的驗證。In an embodiment of the present invention, in step S508, the mobile device 100 sends a service request for accessing a service in a server 400 through the network device 200, and the service may be in the network device 200. Defined conditions for accessing the network. The network device 200 can receive a third request without authentication. If the condition is met, the network device 200 can then further perform steps S516 and S518 by receiving the service request from the mobile device 100 to the server 400 for verification. In step S520, the network device 200 may update the permission setting and connect the mobile device 100 to the Internet 300 in response to the verification that the condition for the mobile device 100 to access the Internet 300 is satisfied.

先前描述的方法可以包括多個步驟,所述多個步驟可以以特定順序出現,應當理解的是,這些方法可能包括多於或少於上述步驟,這些步驟之間的順序還可以變換,不同的步驟可以合併。例如,步驟S522中可省略。The previously described method may comprise a plurality of steps, which may occur in a particular order, it being understood that the methods may include more or less than the above steps, the order between the steps may also be varied, different The steps can be combined. For example, it can be omitted in step S522.

圖11是根據本發明某一實施例所描述的通過網路設備200允許移動設備100接入互聯網300的方法的流程圖。該方法可作為一組指令在該伺服器400內運行。該方法可包括如下步驟。在步驟S602中,該伺服器400從移動設備100接收一用以通過該網路設備200接入該互聯網300的第一請求。在步驟S604中,該伺服器400通過網路設備200發送至少一消息至該移動設備100。在本發明的一實施例中,該消息可使該移動設備100用以提示一要求該移動設備100的使用者來啟動一特定的電腦程式的使用者介面,該電腦程式指示該移動設備100通過該網路設備200接入互聯網300。在本發明的另一實施例中,該消息可包括一該電腦程式在該伺服器400內的下載連結。該移動設備100根據該消息被啟動以下載和安裝該電腦程式。在本發明的另一實施例中,該電腦程式可被應用商店500或互聯網300內的一網站代替伺服器400提供。11 is a flow diagram of a method for allowing mobile device 100 to access Internet 300 via network device 200, in accordance with an embodiment of the present invention. The method can operate within the server 400 as a set of instructions. The method can include the following steps. In step S602, the server 400 receives a first request from the mobile device 100 to access the Internet 300 through the network device 200. In step S604, the server 400 transmits at least one message to the mobile device 100 via the network device 200. In an embodiment of the present invention, the message may be used by the mobile device 100 to prompt a user of the mobile device 100 to initiate a user interface of a specific computer program, the computer program instructing the mobile device 100 to pass The network device 200 is connected to the Internet 300. In another embodiment of the invention, the message can include a download link of the computer program within the server 400. The mobile device 100 is launched according to the message to download and install the computer program. In another embodiment of the invention, the computer program can be provided by a website within the application store 500 or the Internet 300 in place of the server 400.

在步驟S606中,伺服器400判斷是否從該移動設備100接收到一服務請求或一網路接入請求及一驗證結果。在本發明的一實施例中,該電腦程式可包括用於該移動設備100接入互聯網300的條件。如果電腦程式中定義的條件被滿足,該伺服器400接收該網路接入請求及一驗證結果。然而,在本發明的另一實施例中,電腦程式可指示該移動裝置100請求一特定服務來切換式網路接入授權,來代替具備該條件。該伺服器400從移動設備100接收該服務請求。在步驟S612中,該伺服器400發送用以允許移動設備100通過網路設備200接入互聯網300的授權請求至該網路設備200。In step S606, the server 400 determines whether a service request or a network access request and a verification result are received from the mobile device 100. In an embodiment of the invention, the computer program can include conditions for the mobile device 100 to access the Internet 300. If the condition defined in the computer program is satisfied, the server 400 receives the network access request and a verification result. However, in another embodiment of the present invention, the computer program may instruct the mobile device 100 to request a particular service to switch network access authorization instead of having the condition. The server 400 receives the service request from the mobile device 100. In step S612, the server 400 transmits an authorization request to allow the mobile device 100 to access the Internet 300 through the network device 200 to the network device 200.

返回至步驟S606,如果該伺服器400沒有接收到上述請求,在步驟S608中,該伺服器400判斷是否接收到為了獲取該電腦程式的第二請求。當接收該第二請求時,在步驟S610中,該伺服器400可通過該網路設備200提供該電腦程式至該移動設備100。Returning to step S606, if the server 400 does not receive the request, in step S608, the server 400 determines whether a second request for acquiring the computer program is received. When receiving the second request, the server 400 can provide the computer program to the mobile device 100 through the network device 200 in step S610.

先前描述的方法可以包括多個步驟,所述多個步驟可以以特定順序出現,應當理解的是,這些方法可能包括多於或少於上述步驟,這些步驟之間的順序還可以變換,不同的步驟可以合併。例如,步驟S606可省略。The previously described method may comprise a plurality of steps, which may occur in a particular order, it being understood that the methods may include more or less than the above steps, the order between the steps may also be varied, different The steps can be combined. For example, step S606 can be omitted.

圖12是根據本發明某些實施例的運行在網路設備200的授權系統的功能架構的示意圖。12 is a schematic diagram of a functional architecture of an authorization system operating on network device 200, in accordance with some embodiments of the present invention.

請參閱圖12,一運行在網路設備200的系統700包括一用以判斷一移動設備接入網路的預定義的條件是否被滿足的驗證模組710、一用以為所述移動設備檢索並提供一定義了用以滿足所述條件的特定的動作的電腦程式來回應一從移動設備接收的電腦程式請求的電腦程式下載器720、一用以在滿足網路接入條件後授權所述移動設備接入網路的網路接入控制器730、以及一用以定義通過包括上述條件的該網路裝置200接入網路的條件的條件清單。該系統700可以軟體、固件或甚至只要具備上述功能的硬體的形成實現。Referring to FIG. 12, a system 700 running on the network device 200 includes a verification module 710 for determining whether a predefined condition of a mobile device accessing the network is satisfied, and a method for retrieving the mobile device. Providing a computer program downloader 720 that responds to a computer program request received from the mobile device by a computer program defining a specific action to satisfy the condition, and for authorizing the mobile after satisfying the network access condition A network access controller 730 for the device to access the network, and a list of conditions for defining conditions for accessing the network by the network device 200 including the above conditions. The system 700 can be implemented in software, firmware, or even as long as the hardware having the above functions is formed.

在本發明的一實施例中,該驗證模組710基於從移動設備接收的驗證結果判斷該移動設備是否滿足該條件,這可通過電腦程式執行動作被觸發。如果條件清單740內的一條件被滿足,該驗證模組710可進一步變更許可權設置並通知該網路接入模組730連接移動設備與互聯網。在本發明的另一實施例中,該驗證模組710可基於從伺服器接收到的授權請求判斷該移動設備是否滿足條件,這可為通過電腦程式執行動作被觸發的通過移動設備請求一特定的服務。在接收到來自移動設備的所述驗證結果或來自伺服器的授權請求時,該驗證模組710可確認移動設備(或移動設備的使用者)滿足了互聯網接入的條件。該驗證模組710可進一步比較上述請求和用以確定移動設備(或移動設備的使用者)是否已滿足接入網路的條件清單740內的至少一個條件,並在上述條件滿足時,通知網路接入模組730連接移動設備與互聯網。在本發明的另一實施例中,該驗證模組710可以攔截從移動設備發送至伺服器的服務請求,其中一用以移動設備接入網路的條件通過發送該服務請求至該伺服器被滿足。該驗證模組710可比較所截獲的服務請求和在條件清單740內的條件以驗證上述條件是否滿足,並在上述的條件滿足時,通知該網路接入模組730連接移動設備與互聯網。In an embodiment of the invention, the verification module 710 determines whether the mobile device satisfies the condition based on the verification result received from the mobile device, which can be triggered by a computer program execution action. If a condition in the condition list 740 is satisfied, the verification module 710 can further change the permission settings and notify the network access module 730 to connect the mobile device to the Internet. In another embodiment of the present invention, the verification module 710 can determine whether the mobile device satisfies a condition based on an authorization request received from the server, which can be requested by the mobile device to be triggered by performing an action by the computer program. Service. Upon receiving the verification result from the mobile device or an authorization request from the server, the verification module 710 can confirm that the mobile device (or the user of the mobile device) satisfies the conditions of Internet access. The verification module 710 can further compare the request and the at least one condition in the condition list 740 for determining whether the mobile device (or the user of the mobile device) has met the access network, and notify the network when the above conditions are met. The road access module 730 connects the mobile device to the Internet. In another embodiment of the present invention, the verification module 710 can intercept a service request sent from the mobile device to the server, wherein a condition for the mobile device to access the network is sent to the server by sending the service request. Satisfy. The verification module 710 can compare the intercepted service request with the conditions in the condition list 740 to verify whether the above conditions are met, and notify the network access module 730 to connect the mobile device to the Internet when the above conditions are met.

在本發明的一個實施例中,該電腦程式下載器720生成一下載連結並提供給移動設備來下載程式,來代替提供該電腦程式給該移動設備。此外,該下載連結也可由一下載的電腦程式的用戶提示替換。該電腦程式下載器720可進一步通知該網路接入控制器730給出一有限的網路接入許可權給該移動設備如果電腦程式存儲在互聯網。該接入網路許可權的限制可為一有限的接入網路時間或提供給移動設備的專用網路位址。In one embodiment of the invention, the computer program downloader 720 generates a download link and provides the mobile device with a download program instead of providing the computer program to the mobile device. In addition, the download link can also be replaced by a user prompt of a downloaded computer program. The computer program downloader 720 can further notify the network access controller 730 to give a limited network access permission to the mobile device if the computer program is stored on the Internet. The access network permissions may be limited to a limited access time or a dedicated network address provided to the mobile device.

圖13和14是根據本發明某些實施例的用以通過監視電腦程式來驗證由上述網路設備200接入網路的授權的授權管理器610的功能架構的示意圖。該授權管理器610可被集成到電腦程式600或獨立於電腦程式600。在本發明的一個實施例中,授權管理器610可進一步為電腦程式600的一可下載的擴展。13 and 14 are diagrams showing the functional architecture of an authorization manager 610 for authenticating an access to a network by the network device 200 by monitoring a computer program, in accordance with some embodiments of the present invention. The authorization manager 610 can be integrated into the computer program 600 or independent of the computer program 600. In one embodiment of the invention, the authorization manager 610 can be further a downloadable extension of the computer program 600.

請參閱圖13,該電腦程式600可包括動作模組630,其為該移動設備定義了一組可被執行的動作及一用以更新上述動作的軟體更新模組620。在本發明的一實施例中,該授權管理器610獨立於電腦程式600,且在本發明的另一實施例中,該授權管理器610可為電腦程式600的一可下載的擴展。執行該請求網路接入的該移動設備100可能被要求下載的不僅僅是電腦程式600還有該授權管理器610。該授權管理器610包括一定義至少一用以通過該網路設備200接入網路的條件的條件清單650、一用以驗證該條件是否滿足的驗證模組640及一用以發送網路接入授權請求的授權模組660。Referring to FIG. 13, the computer program 600 can include an action module 630 that defines a set of actions that can be performed for the mobile device and a software update module 620 for updating the actions. In an embodiment of the invention, the authorization manager 610 is independent of the computer program 600, and in another embodiment of the invention, the authorization manager 610 can be a downloadable extension of the computer program 600. The mobile device 100 performing the requesting network access may be required to download not only the computer program 600 but also the authorization manager 610. The authorization manager 610 includes a condition list 650 defining at least one condition for accessing the network through the network device 200, a verification module 640 for verifying whether the condition is satisfied, and a transmission network connection. The authorization module 660 of the authorization request is entered.

在本發明的一個實施例中,在條件清單650裡的條件可被映射到該電腦程式的動作模組630所定義的動作。當動作模組630裡的一對應的動作被運行或執行時,在條件清單650裡的條件被滿足。在本發明的一實施例中,在條件清單650裡的條件可在上述伺服器400的管理下被更新。In one embodiment of the invention, the conditions in the condition list 650 can be mapped to the actions defined by the action module 630 of the computer program. When a corresponding action in action module 630 is run or executed, the conditions in condition list 650 are satisfied. In an embodiment of the invention, the conditions in the condition list 650 may be updated under the management of the server 400 described above.

在本發明的一實施例中,上述動作可包括啟動電腦程式600或來自用戶的特定輸入的接收例如點擊一圖示、一通過觸控式螢幕所檢測到的觸摸訊號以及一包括在觸控式螢幕上沿至少一個方向移動一個或多個手指的特定手勢。在本發明的一實施例中,該預定義的動作可包括從使用者接收資訊或者檢索來自該移動設備100的資訊,例如使用者的姓名、性別、年齡。使用者可被要求輸入特定的資訊和/或授權運行該電腦程式600和授權管理器610的該移動設備100執行上述動作。在本發明的一實施例中,上述移動設備可從該網路設備200接收到一用以用戶輸入或許可該動作的請求。該移動設備可進一步通知使用者該請求。如果請求被拒絕,該授權過程可被終止或中斷直至使用者輸入或許可該網路設備200。在本發明的一實施例中,上述要求或通知可由該電腦程式600或該授權管理器610生成。該驗證模組640可監控該動作模組630來檢測是否一對應該條件的動作被執行,如果上述動作被執行,這意味著相應的條件被滿足,該驗證模組640通知該授權模組660及一驗證結果。In an embodiment of the invention, the actions may include initiating the computer program 600 or receiving a specific input from the user, such as clicking an icon, a touch signal detected by the touch screen, and a touch-sensitive type. A particular gesture of moving one or more fingers in at least one direction on the screen. In an embodiment of the invention, the predefined action may include receiving information from the user or retrieving information from the mobile device 100, such as the user's name, gender, age. The user may be required to enter specific information and/or authorize the mobile device 100 running the computer program 600 and the authorization manager 610 to perform the actions described above. In an embodiment of the invention, the mobile device can receive a request from the network device 200 for the user to input or permit the action. The mobile device can further notify the user of the request. If the request is denied, the authorization process can be terminated or interrupted until the user enters or licenses the network device 200. In an embodiment of the invention, the above requirements or notifications may be generated by the computer program 600 or the authorization manager 610. The verification module 640 can monitor the action module 630 to detect whether a pair of conditional actions are performed. If the action is performed, which means that the corresponding condition is met, the verification module 640 notifies the authorization module 660. And a verification result.

在本發明的另一實施例中,該條件可為伺服器400提供一服務的的完成。運行該電腦程式的該移動設備100可根據電腦程式的啟動請求一特定服務。上述服務可為一廣告如網頁廣告或視頻廣告、一用以下載的優惠券、一具有“喜歡”或“推薦”圖示的社交網路服務或用以支付通過網路設備200接入網路的支付服務。該條件的狀態可以通過伺服器400確定。因此,授權管理器610可啟動動作模組630內的至少一動作對應的條件清單650內的條件,來代替監視動作模組630及請求接入網路。此外,由於該條件的驗證和網路接入的授權可通過伺服器400執行,來代替驗證模組640和授權模組660,該驗證模組640和該授權模組660可省略。In another embodiment of the invention, the condition may provide completion of a service for the server 400. The mobile device 100 running the computer program can request a specific service according to the startup of the computer program. The above service may be an advertisement such as a web advertisement or a video advertisement, a coupon for downloading, a social network service having a "like" or "recommended" icon, or used to pay for access to the network through the network device 200. Payment service. The status of this condition can be determined by the server 400. Therefore, the authorization manager 610 can activate the conditions in the condition list 650 corresponding to at least one action in the action module 630 instead of the monitoring action module 630 and request access to the network. In addition, since the verification of the condition and the authorization of the network access can be performed by the server 400 instead of the verification module 640 and the authorization module 660, the verification module 640 and the authorization module 660 can be omitted.

請參閱圖14,相較於圖13,該驗證模組640、該條件清單650和該授權模組660可被整合到電腦程式600,來代替作為授權管理器610的一部分。Referring to FIG. 14, the verification module 640, the condition list 650, and the authorization module 660 can be integrated into the computer program 600 instead of being part of the authorization manager 610.

圖15是根據本發明某一實施例的一移動設備100通過伺服器400內的一預定義的服務請求一通過該網路設備200接入網路的授權的方法的流程圖。本發明的該方法執行如下步驟。15 is a flow diagram of a method for a mobile device 100 to request authorization to access a network through the network device 200 via a predefined service within the server 400, in accordance with an embodiment of the present invention. The method of the present invention performs the following steps.

在步驟S702中,該移動設備100通過該網路設備200發送一用以接入互聯網300的第一請求。在步驟S704中,該網路設備200可攔截該第一請求,並發送至少一消息至該移動設備100。在本發明的一實施例中,該消息可使該移動設備100用以提示一要求該移動設備100的使用者來啟動一特定的電腦程式的使用者介面,該電腦程式指示該移動設備100通過該網路設備200接入互聯網300的。在本發明的另一實施例中,該消息可包括一該電腦程式在該伺服器400內的下載連結。該移動設備100根據該消息被啟動以下載和安裝該電腦程式。在本發明的另一實施例中,該電腦程式可被應用商店500或互聯網300內的一網站代替伺服器400提供。In step S702, the mobile device 100 sends a first request for accessing the Internet 300 through the network device 200. In step S704, the network device 200 can intercept the first request and send at least one message to the mobile device 100. In an embodiment of the present invention, the message may be used by the mobile device 100 to prompt a user of the mobile device 100 to initiate a user interface of a specific computer program, the computer program instructing the mobile device 100 to pass The network device 200 is connected to the Internet 300. In another embodiment of the invention, the message can include a download link of the computer program within the server 400. The mobile device 100 is launched according to the message to download and install the computer program. In another embodiment of the invention, the computer program can be provided by a website within the application store 500 or the Internet 300 in place of the server 400.

如果該移動設備100不具有該電腦程式,在步驟S706中,該移動設備100根據上述消息通過該網路設備200發送一用以下載該電腦程式的第二請求。在步驟S708中,該網路設備200發送(或檢索)該電腦程式並發送該電腦程式至該移動設備100。然而,在本發明的一實施例中,如果該電腦程式已經存在於該移動設備100,該移動設備100可啟動該電腦程式,以代替執行步驟S706和S708來下載該電腦程式。If the mobile device 100 does not have the computer program, in step S706, the mobile device 100 transmits a second request for downloading the computer program through the network device 200 according to the message. In step S708, the network device 200 sends (or retrieves) the computer program and transmits the computer program to the mobile device 100. However, in an embodiment of the present invention, if the computer program already exists in the mobile device 100, the mobile device 100 can start the computer program instead of performing steps S706 and S708 to download the computer program.

在步驟S710中,該移動設備100啟動該電腦程式,並發送一為了一定義在該電腦程式中的伺服器內的服務的第三請求到伺服器400。在步驟S712中,網路設備200轉發該第三請求至該伺服器400。在步驟S714中,該伺服器400發送服務資料到該移動設備100,以回應該第三請求。該網路設備200,在步驟716中,轉發該服務資料至該移動設備100。在步驟S718中,該網路設備200可進一步驗證是否至少一用於該移動設備100接入該互聯網300的條件被滿足。如果上述條件被滿足,該網路設備200可更新許可權設置,並進一步連接該移動設備100與互聯網300。在步驟S720中,網路設備200可進一步通知該移動設備100該授權。In step S710, the mobile device 100 starts the computer program and sends a third request to the server 400 for a service defined in the server in the computer program. In step S712, the network device 200 forwards the third request to the server 400. In step S714, the server 400 sends the service data to the mobile device 100 to respond to the third request. The network device 200 forwards the service data to the mobile device 100 in step 716. In step S718, the network device 200 can further verify whether at least one condition for the mobile device 100 to access the Internet 300 is satisfied. If the above conditions are met, the network device 200 can update the permission settings and further connect the mobile device 100 with the Internet 300. In step S720, the network device 200 can further notify the mobile device 100 of the authorization.

在本發明的一實施例中,上述條件可能是伺服器400提供的一服務的完成。該移動設備100可根據電腦程式的啟動請求一特定服務。例如,該伺服器400可提供廣告,如網頁廣告或視頻廣告,給該移動設備100,該移動裝置100可能在播放一段時間廣告後滿足條件。另一個例子,該伺服器400可提供下載優惠券至移動裝置100。移動設備100可能在下載優惠券後滿足條件。在本發明的一實施例中,當啟動電腦程式600時,該移動裝置100可指示到一社交網路服務提供的伺服器。該移動裝置100在其使用者點擊社交網路服務的網頁的“喜歡”或“推薦”圖示後滿足條件。此外,在點擊社交網路服務的網頁的“喜歡”或“推薦”圖示前,使用者可能需要登錄社交網路服務。在本發明的另一實施例中,一計費系統可以在該伺服器400實現。當啟動該電腦程式600,該移動裝置100可被指示到該計費系統。該計費系統提供支付服務給移動設備100的使用者來支付網路接入。例如,一要求信用卡資訊的使用者介面可能會根據支付服務產生。在接收信用卡資訊後,該計費系統可能會產生一帳單到相應的銀行系統以支付通過網路設備200接入網路的費用。上述信用卡支付機制也可以通過該伺服器400內的計費系統實現的預先支付機制代替。In an embodiment of the invention, the above condition may be the completion of a service provided by the server 400. The mobile device 100 can request a specific service according to the startup of the computer program. For example, the server 400 can provide an advertisement, such as a web page advertisement or a video advertisement, to the mobile device 100 that the mobile device 100 may satisfy the condition after playing an advertisement for a period of time. As another example, the server 400 can provide a download coupon to the mobile device 100. The mobile device 100 may satisfy the condition after downloading the coupon. In an embodiment of the invention, when the computer program 600 is launched, the mobile device 100 can indicate to a server provided by a social networking service. The mobile device 100 satisfies the condition after the user clicks on the "like" or "recommendation" icon of the web page of the social networking service. In addition, the user may need to log in to the social networking service before clicking on the "like" or "recommended" icon on the web page of the social networking service. In another embodiment of the invention, a billing system can be implemented at the server 400. When the computer program 600 is launched, the mobile device 100 can be instructed to the billing system. The billing system provides payment services to users of the mobile device 100 to pay for network access. For example, a user interface that requires credit card information may be generated based on a payment service. After receiving the credit card information, the billing system may generate a bill to the corresponding banking system to pay for access to the network via the network device 200. The credit card payment mechanism described above can also be replaced by a pre-payment mechanism implemented by the billing system in the server 400.

先前描述的方法可以包括多個步驟,所述多個步驟可以以特定順序出現,應當理解的是,這些方法可能包括多於或少於上述步驟,這些步驟之間的順序還可以變換,不同的步驟可以合併。例如,步驟S522可省略。The previously described method may comprise a plurality of steps, which may occur in a particular order, it being understood that the methods may include more or less than the above steps, the order between the steps may also be varied, different The steps can be combined. For example, step S522 can be omitted.

最後所應說明的是,以上實施例僅用以說明本發明的技術方案而非限制,儘管參照以上較佳實施例對本發明進行了詳細說明,本領域的普通技術人員應當理解,可以對本發明的技術方案進行修改或等同替換,而不脫離本發明技術方案的精神和範圍。此外,單個實施例及權利要求並不一定實現本發明所有的技術效果。另外,摘要及標題僅是方便專利檔檢索,並沒有在任何方面對本發明進行限制。It should be noted that the above embodiments are only intended to illustrate the technical solutions of the present invention and are not intended to be limiting, and the present invention will be described in detail with reference to the preferred embodiments thereof The technical solutions are modified or equivalently substituted without departing from the spirit and scope of the technical solutions of the present invention. Moreover, individual embodiments and claims do not necessarily achieve all of the technical effects of the invention. In addition, the Abstract and the headings are merely for facilitating the retrieval of patent documents and do not limit the invention in any way.

100‧‧‧第一移動設備、第二移動設備100‧‧‧first mobile device, second mobile device

200‧‧‧網路設備200‧‧‧Network equipment

300‧‧‧互聯網300‧‧‧Internet

400‧‧‧伺服器400‧‧‧Server

500‧‧‧應用商店500‧‧‧App Store

210‧‧‧處理器210‧‧‧ processor

220‧‧‧記憶體220‧‧‧ memory

230‧‧‧存儲模組230‧‧‧ Storage Module

240‧‧‧第一通訊模組240‧‧‧First Communication Module

250‧‧‧第二通訊模組250‧‧‧Second communication module

430‧‧‧網路接入控制器430‧‧‧Network Access Controller

620‧‧‧軟體更新模組620‧‧‧Software update module

630‧‧‧動作模組630‧‧‧Action Module

650‧‧‧條件清單650‧‧‧ condition list

660‧‧‧授權模組660‧‧‧Authorization module

640、710‧‧‧驗證模組640, 710‧‧‧ verification module

720‧‧‧電腦程式下載器720‧‧‧Computer Program Downloader

740‧‧‧條件清單740‧‧‧condition list

no

100‧‧‧移動設備 100‧‧‧Mobile devices

200‧‧‧網路設備 200‧‧‧Network equipment

Claims (31)

一種通過監視電腦實現的授權網路接入的系統,用於驗證及授權所述移動設備通過一網路設備接入一網路,其中,所述移動設備具有一通訊模組用於傳送資料至所述網路設備以及自所述網路設備接收資料,其改良在於,所述移動設備自所述網路設備接收並安裝所述授權網路接入的系統,且所述授權網路接入的系統包括:
一驗證模組,用於監視所述移動設備是否滿足可通過所述網路設備接入所述網路的授權條件;以及
一授權模組,用於基於所述驗證模組驗證結果,發送一網路接入授權請求至所述網路設備;
其中,所述網路設備基於所述授權請求將所述移動設備接入所述網路。
A system for authorizing network access by monitoring a computer for verifying and authorizing the mobile device to access a network through a network device, wherein the mobile device has a communication module for transmitting data to The network device and receiving data from the network device are improved in that the mobile device receives and installs the system authorized by the network access from the network device, and the authorized network access The system includes:
a verification module, configured to monitor whether the mobile device meets an authorization condition for accessing the network through the network device, and an authorization module, configured to send, according to the verification result of the verification module, a a network access authorization request to the network device;
The network device accesses the mobile device to the network based on the authorization request.
如申請專利範圍第1項所述的授權網路接入的系統,其中,所述授權條件為安裝所述授權網路接入的系統授權網路接入的系統於所述電腦。The system for authorizing network access according to claim 1, wherein the authorization condition is that a system for authorizing network access by the system for installing the authorized network access is in the computer. 如申請專利範圍第1項所述的授權網路接入的系統,其中,所述移動設備存儲至少一計算器程式,所述計算器程式包括一動作模組,用於定義至少一動作並可使所述電腦執行所述動作,且所述授權網路接入的系統還包括一條件清單,用於定義所述授權條件,其中所述授權條件包括所述動作。The system for authorizing network access according to claim 1, wherein the mobile device stores at least one calculator program, the calculator program including an action module for defining at least one action and Causing the computer to perform the action, and the system for authorizing network access further includes a condition list for defining the authorization condition, wherein the authorization condition includes the action. 如申請專利範圍第1項所述的授權網路接入的系統,其中,所述授權網路接入的系統還包括:
一動作模組,用於定義至少一動作並可使所述移動設備執行所述動作;以及
一條件清單,用於定義所述授權條件,其中所述授權條件包括所述動作。
The system for authorizing network access, as described in claim 1, wherein the system for authorizing network access further includes:
An action module for defining at least one action and causing the mobile device to perform the action; and a condition list for defining the authorization condition, wherein the authorization condition includes the action.
如申請專利範圍第3或4項所述的授權網路接入的系統,其中,所述動作包括於所述移動設備啟動所述授權網路接入的系統。A system for authorizing network access as described in claim 3 or 4, wherein the action comprises the system in which the mobile device initiates the authorized network access. 如申請專利範圍第3或4項所述的授權網路接入的系統,其中,所述動作包括通過所述移動設備接收來自使用者的特定輸入。A system for authorizing network access as described in claim 3, wherein the action comprises receiving, by the mobile device, a particular input from a user. 如申請專利範圍第3或4項所述的授權網路接入的系統,其中,所述動作包括接收並顯示來自一伺服器的一網頁或視頻廣告。A system for authorizing network access as described in claim 3, wherein the action comprises receiving and displaying a web page or video advertisement from a server. 如申請專利範圍第3或4項所述的授權網路接入的系統,其中,所述動作包括一伺服器所提供的一服務的完成。A system for authorizing network access as described in claim 3 or 4, wherein the action comprises completion of a service provided by a server. 一種授權移動設備接入一網路的授權網路接入的系統,建置於一網路設備,其中,所述移動設備與所述網路設備分別具有一通訊模組用於傳送資料至對方及自對方接收資料,其改良在於,所述授權網路接入的系統包括:
一條件清單,用於定義至少一可通過所述網路設備接入所述網路的授權條件;
一電腦程式下載模組,用於使一電腦程式發送至所述移動設備,所述電腦程式可使所述移動設備發送一資料至所述網路設備;
一驗證模組,用於根據所述網路設備接收的所述資料判斷所述移動設備是否滿足所述授權條件;以及
一網路接入模組,用於基於所述驗證模組驗證結果,當所述移動設備滿足所述授權條件時,將所述移動設備接入所述網路。
A system for authorizing a mobile device to access an authorized network access of a network is built in a network device, wherein the mobile device and the network device respectively have a communication module for transmitting data to each other And receiving the data from the other party, the improvement is that the system for authorizing network access includes:
a condition list for defining at least one authorization condition for accessing the network through the network device;
a computer program downloading module for transmitting a computer program to the mobile device, the computer program enabling the mobile device to send a data to the network device;
a verification module, configured to determine, according to the data received by the network device, whether the mobile device meets the authorization condition; and a network access module, configured to verify a result based on the verification module, The mobile device is access to the network when the mobile device satisfies the authorization condition.
如申請專利範圍第9項所述的授權網路接入的系統,其中,所述電腦程式下載模組取得所述計算程式後發送至所述移動設備。The system for authorizing network access according to claim 9, wherein the computer program download module obtains the calculation program and sends the calculation program to the mobile device. 如申請專利範圍第9項所述的授權網路接入的系統,其中,所述電腦程式下載模組提供一伺服器位址給所述移動設備,由所述伺服器發送所述電腦程式至所述移動設備。The system for authorizing network access according to claim 9, wherein the computer program download module provides a server address to the mobile device, and the computer program is sent by the server to The mobile device. 如申請專利範圍第11項所述的授權網路接入的系統,其中,所述電腦程式下載模組還通知所述網路接入模組在一特定時間段內將所述移動設備接入所述網路,以讓所述移動設備可透過所述網路向所述伺服器請求所述電腦程式。The system for authorizing network access according to claim 11, wherein the computer program download module further notifies the network access module to access the mobile device within a specific time period. The network to enable the mobile device to request the computer program from the server through the network. 如申請專利範圍第9項所述的授權網路接入的系統,其中,所述資料為對一網路位址的服務請求。The system for authorizing network access according to claim 9, wherein the data is a service request for a network address. 如申請專利範圍第9項所述的授權網路接入的系統,其中,所述電腦程式使所述移動設備顯示一廣告資訊後,發送所述資料至所述網路設備。The system for authorizing network access according to claim 9, wherein the computer program causes the mobile device to display an advertisement information, and then send the data to the network device. 一種驗證及授權移動設備接入一網路的網路設備,其改良在於,所述網路設備包括:
一用於和所述移動設備通訊的第一通訊模組;
一用於連接所述網路的第二通訊模組;
一存儲模組,存儲一條件清單,其中所述條件清單定義至少一可通過所述網路設備接入所述網路的授權條件;
一記憶體,與所述存儲模組電性連接;
一處理器,連接所述記憶體、存儲模組及第一、第二通訊模組電性連接;
其中,所述第一通訊模組接收來自所述移動設備的網路接入請求;
其中,所述處理器控制所述第一通訊模組發送一消息至所述移動設備,其中所述消息包括下載所述電腦程式;
其中,所述第一通訊模組接收來自所述移動設備的電腦程式下載請求;
其中,所述處理器控制所述網路設備取得所述電腦程式,並控制所述第一通訊模組發送所述電腦程式至所述移動設備;
其中,第一通訊模組或所述第二通訊模組進一步接收針對所述移動設備接入網路之授權請求;以及
其中,所述處理器進一步比對所述授權請求與所述條件清單的授權條件,當所述授權請求與所述授權條件匹配時:
控制第一通訊模組、第二通訊模組將所述移動設備接入所述網路。
A network device for verifying and authorizing a mobile device to access a network is improved in that the network device includes:
a first communication module for communicating with the mobile device;
a second communication module for connecting to the network;
a storage module, storing a condition list, wherein the condition list defines at least one authorization condition that can access the network through the network device;
a memory electrically connected to the storage module;
a processor, connected to the memory, the storage module, and the first and second communication modules are electrically connected;
The first communication module receives a network access request from the mobile device;
The processor controls the first communication module to send a message to the mobile device, where the message includes downloading the computer program;
The first communication module receives a computer program download request from the mobile device;
The processor controls the network device to obtain the computer program, and controls the first communication module to send the computer program to the mobile device;
The first communication module or the second communication module further receives an authorization request for the mobile device to access the network; and wherein the processor further compares the authorization request with the condition list Authorization condition, when the authorization request matches the authorization condition:
Controlling the first communication module and the second communication module to access the mobile device to the network.
如申請專利範圍第15項所述的網路設備,其中,所述存儲模組進一步存儲所述移動設備程式。The network device of claim 15, wherein the storage module further stores the mobile device program. 如申請專利範圍第15項所述的網路設備,其中,
所述網路設備與位於所述網路的一伺服器相連接;
所述處理器進一步控制所述第二通訊模組將所述移動設備的IP位址及所述移動設備程式請求發送至所述伺服器,接收來自所述伺服器的所述移動設備程式;以及
所述處理器進一步控制所述第一通訊模組發送所述移動設備程式至所述移動設備。
The network device of claim 15, wherein
The network device is connected to a server located in the network;
The processor further controls the second communication module to send an IP address of the mobile device and the mobile device program request to the server to receive the mobile device program from the server; The processor further controls the first communication module to send the mobile device program to the mobile device.
如申請專利範圍第15項所述的網路設備,其中,所述授權請求由所述第一通訊模組接收自所述移動設備,且包括所述移動設備安裝所述移動設備程式的通知資訊。The network device of claim 15, wherein the authorization request is received by the first communication module from the mobile device, and includes notification information that the mobile device installs the mobile device program . 如申請專利範圍第15項所述的網路設備,其中,所述授權請求由所述第一通訊模組接收自所述移動設備,且包括所述移動設備通過所述移動設備程式執行至少一動作的通知資訊。The network device of claim 15, wherein the authorization request is received by the first communication module from the mobile device, and the mobile device includes at least one of the mobile device programs Notification information for actions. 如申請專利範圍第15項所述的網路設備,其中,所述授權請求由所述第一通訊模組接收自所述移動設備,且包括所述移動設備向位於一所述網路的伺服器接入請求。The network device of claim 15, wherein the authorization request is received by the first communication module from the mobile device, and includes the mobile device to a server located in a network Access request. 如申請專利範圍第15項所述的網路設備,其中,所述授權請求由所述第二通訊模組接收自所述網路,且包括所述移動設備啟動一服務的通知資訊。The network device of claim 15, wherein the authorization request is received by the second communication module from the network, and includes notification information that the mobile device initiates a service. 如申請專利範圍第19項所述的網路設備,其中,所述移動設備程式使所述移動設備顯示一廣告資訊後,發送所述授權請求至所述網路設備;以及
所述授權請求包括所述移動設備顯示所述廣告資訊的通知資訊。
The network device of claim 19, wherein the mobile device program causes the mobile device to display an advertisement information, and send the authorization request to the network device; and the authorization request includes The mobile device displays notification information of the advertisement information.
如申請專利範圍第15項所述的網路設備,其中,所述網路設備為一無線區域網路接取設備,所述第一通訊模組為無線區域網路通訊模組,所述第二通訊模組為移動通訊模組或有線通訊模組連接至所述網路,且所述網路為互聯網。The network device of claim 15, wherein the network device is a wireless area network access device, and the first communication module is a wireless area network communication module, The two communication modules are connected to the network by a mobile communication module or a wired communication module, and the network is the Internet. 如申請專利範圍第15項所述的網路設備,其中,所述網路設備為一基站,所述第一通訊模組為第一移動通訊模組,所述第二通訊模組為第二移動通訊模組或有線通訊模組連接至所述網路,且所述網路為移動通訊網路。The network device of claim 15, wherein the network device is a base station, the first communication module is a first mobile communication module, and the second communication module is a second A mobile communication module or a wired communication module is connected to the network, and the network is a mobile communication network. 如申請專利範圍第15或24項所述的網路設備,其中,當所述授權請求與所述授權條件匹配時:
所述處理器進一步配置一額外頻寬,並控制第一通訊模組、第二通訊模組以該額外頻寬將所述移動設備接入所述網路。
The network device of claim 15 or claim 24, wherein when the authorization request matches the authorization condition:
The processor further configures an additional bandwidth and controls the first communication module and the second communication module to access the mobile device to the network with the additional bandwidth.
一種驗證及授權移動設備接入一網路的方法,建置於一網路設備,其中所述移動設備與所述網路設備分別具有一通訊模組用於傳送資料至對方及自對方接收資料,其特徵在於,所述方法包括:
接收來自所述移動設備的網路接入請求;
發送一消息至所述移動設備,其中所述消息包括下載一電腦程式;
接收來自所述移動設備的電腦程式下載請求;
取得所述電腦程式並發送至所述移動設備;
接收針對所述移動設備接入網路之授權請求;以及
判斷所述移動設備是否滿足至少一存儲於所述網路設備的授權條件,當所述授權條件被滿足時:
控制第一通訊模組、第二通訊模組將所述移動設備接入所述網路。
A method for verifying and authorizing a mobile device to access a network is built in a network device, wherein the mobile device and the network device respectively have a communication module for transmitting data to and receiving data from the other party. , characterized in that the method comprises:
Receiving a network access request from the mobile device;
Sending a message to the mobile device, wherein the message includes downloading a computer program;
Receiving a computer program download request from the mobile device;
Obtaining the computer program and transmitting to the mobile device;
Receiving an authorization request for the mobile device to access the network; and determining whether the mobile device satisfies at least one authorization condition stored in the network device, when the authorization condition is met:
Controlling the first communication module and the second communication module to access the mobile device to the network.
一種驗證及授權移動設備接入一網路的方法,建置於一伺服器,其中所述伺服器與所述網路設備相連接,且所述移動設備與所述網路設備分別具有一通訊模組用於傳送資料至對方及自對方接收資料,其特徵在於,所述方法包括:
接收來自所述網路設備網路接入請求,其中所述網路接入請求是由所述移動設備發送至所述網路設備;
發送一資訊至所述移動設備,其中所述資訊包括下載一電腦程式的資訊;
接收來自所述移動設備的電腦程式下載請求;
取得所述電腦程式並發送至所述移動設備;
接收針對所述移動設備接入網路之授權請求;
判斷所述移動設備是否滿足至少一存儲於所述伺服器的授權條件,當所述授權條件被滿足時時,發送一授權請求至所述網路設備;以及
其中,所述網路設備被設置為依據所述授權請求將所述移動設備接入所述網路。
A method for verifying and authorizing a mobile device to access a network is built into a server, wherein the server is connected to the network device, and the mobile device has a communication with the network device The module is configured to transmit data to and receive data from the other party, and the method includes:
Receiving a network access request from the network device, wherein the network access request is sent by the mobile device to the network device;
Sending a message to the mobile device, wherein the information includes downloading information of a computer program;
Receiving a computer program download request from the mobile device;
Obtaining the computer program and transmitting to the mobile device;
Receiving an authorization request for accessing the network by the mobile device;
Determining whether the mobile device satisfies at least one authorization condition stored in the server, and when the authorization condition is met, sending an authorization request to the network device; and wherein the network device is set The mobile device is accessed to the network in accordance with the authorization request.
如申請專利範圍第27項所述的方法,其中,所述授權條件為所述移動設備通過所述電腦程式向所述伺服器請求指定的服務,所述伺服器進一步於完成所述服務後,發送所述授權請求至所述網路設備。The method of claim 27, wherein the authorization condition is that the mobile device requests a specified service from the server through the computer program, and the server further completes the service, Sending the authorization request to the network device. 如申請專利範圍第27項所述的方法,其中,所述授權條件為所述移動設備通過所述電腦程式向所述伺服器下載指定的優惠券或廣告,所述伺服器進一步於發送所述優惠券或廣告後,發送所述授權請求至所述網路設備。The method of claim 27, wherein the authorization condition is that the mobile device downloads a specified coupon or advertisement to the server through the computer program, and the server further transmits the After the coupon or advertisement, the authorization request is sent to the network device. 如申請專利範圍第27項所述的方法,其中,所述授權條件為所述移動設備通過所述電腦程式顯示指定的廣告內容,所述電腦程式進一步於顯示所述廣告內容後使所述移動設備發送所述授權請求至所述伺服器,其中所述授權請求包括所述移動設備顯示所述廣告內容的通知資訊。The method of claim 27, wherein the authorization condition is that the mobile device displays the specified advertisement content through the computer program, and the computer program further causes the movement after displaying the advertisement content The device sends the authorization request to the server, wherein the authorization request includes notification information that the mobile device displays the advertisement content. 如申請專利範圍第27項所述的方法,其中,所述授權條件為所述移動設備通過所述電腦程式向一第二伺服器請求指定的服務,所述第二伺服器進一步於完成所述服務後,發送所述移動設備完成所述服務的通知資訊至所述伺服器。
The method of claim 27, wherein the authorization condition is that the mobile device requests a specified service from a second server by using the computer program, and the second server further completes the After the service, the mobile device is sent to complete the notification information of the service to the server.
TW104124019A 2014-07-24 2015-07-24 System and method for authorizing network access and network device implemented with the method therein TW201611628A (en)

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
US201462028364P 2014-07-24 2014-07-24

Publications (1)

Publication Number Publication Date
TW201611628A true TW201611628A (en) 2016-03-16

Family

ID=56085338

Family Applications (1)

Application Number Title Priority Date Filing Date
TW104124019A TW201611628A (en) 2014-07-24 2015-07-24 System and method for authorizing network access and network device implemented with the method therein

Country Status (1)

Country Link
TW (1) TW201611628A (en)

Similar Documents

Publication Publication Date Title
US10824700B2 (en) Device, system, and method of selective activation, deactivation, and configuration of components
WO2019165941A1 (en) Profile generation method, profile acquisition method, and related device and storage medium
US9900774B2 (en) Shared network connection credentials on check-in at a user's home location
JP6599341B2 (en) Method, device and system for dynamic network access management
US9154955B1 (en) Authenticated delivery of premium communication services to trusted devices over an untrusted network
CN105393490B (en) Method, system and the medium of the certification and authorization based on medium for security service
US20090227274A1 (en) Secure device configuration profiles
US10419900B2 (en) Method and apparatus for managing application terminal remotely in wireless communication system
CN106211359B (en) Method and device for enabling device to obtain service
CN111742531B (en) Profile information sharing
US11075895B2 (en) Cloud operation interface sharing method, related device, and system
US10757089B1 (en) Mobile phone client application authentication through media access gateway (MAG)
CN104871203A (en) Network access based on social-networking information
KR102269417B1 (en) A method and apparatus for registering a device based on an application supporting a home networking by multi users
US10694381B1 (en) System and method for authentication and sharing of subscriber data
US9591434B1 (en) Virtual private network (VPN) tunneling in a user equipment (UE) brokered by a radio frequency identity (RFID) chip communicatively coupled to the user equipment
US12088700B2 (en) Method by which device shares digital key
US11570620B2 (en) Network profile anti-spoofing on wireless gateways
CA3073190C (en) Mobile number verification for mobile network-based authentication
CN112514323A (en) Electronic device for processing digital key and operation method thereof
US11178145B2 (en) Network apparatus and control method thereof
US20230171257A1 (en) System and method for system access credential delegation
CN115499821A (en) eSIM signing method and device
TW201611628A (en) System and method for authorizing network access and network device implemented with the method therein
US20230209338A1 (en) Cloud Profile