WO2009155818A1 - Procédé de vérification d'emplacement de dispositif d'accès et dispositif d'accès, équipement de réseau et système associé - Google Patents

Procédé de vérification d'emplacement de dispositif d'accès et dispositif d'accès, équipement de réseau et système associé Download PDF

Info

Publication number
WO2009155818A1
WO2009155818A1 PCT/CN2009/071995 CN2009071995W WO2009155818A1 WO 2009155818 A1 WO2009155818 A1 WO 2009155818A1 CN 2009071995 W CN2009071995 W CN 2009071995W WO 2009155818 A1 WO2009155818 A1 WO 2009155818A1
Authority
WO
WIPO (PCT)
Prior art keywords
location information
access device
location
module
information
Prior art date
Application number
PCT/CN2009/071995
Other languages
English (en)
Chinese (zh)
Inventor
王绍斌
张宁
位继伟
尹瀚
Original Assignee
华为技术有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 华为技术有限公司 filed Critical 华为技术有限公司
Publication of WO2009155818A1 publication Critical patent/WO2009155818A1/fr

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources
    • H04L63/102Entity profiles
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources
    • H04L63/107Network architectures or network communication protocols for network security for controlling access to devices or network resources wherein the security policies are location-dependent, e.g. entities privileges depend on current location or allowing specific operations only from locally connected terminals
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/08Access security

Definitions

  • the embodiment of the invention provides an access device location verification method, an access device and a network system. According to the embodiment of the present invention, the authenticity and legality of the location of the access device can be verified according to the manner trusted by the operator.
  • An obtaining module configured to obtain location information of a location where the access device is located
  • the embodiment of the invention further provides a network system, including an access device and a home location register, and the towel:
  • the Trusted Platform Module is a microcontroller based on the Trustworthy Computing Group (TCG) industry standard specification.
  • the microcontroller is used to store passwords, digital certificates, and encryption keys, and provides secure authentication, encryption, and network access services for a variety of computing platforms.
  • the TPM contains cryptographic components and storage components embedded in the computing platform, similar to smart card chips. As a component of the Trusted Platform, the components of the TPM are trusted to work properly. Platform identity key
  • FIG. 2 is a first flowchart of a method for verifying a location of a home base station according to an embodiment of the present invention.
  • the HNB is required to verify whether the location information is consistent with the stored registration location information, and the operator provides a service service for the HNB after the location verification succeeds.
  • the TPM compares the acquired location information of the home base station location with the information stored in the HNB registration location, and if it is consistent, the location 3 is successfully verified.
  • the HNB can initiate a service request to the core network.
  • Step S204 An error is reported, and the access network service is limited.
  • the HNB prompts the information error, and the access network service is limited, such as providing only the emergency call function.
  • the TPM that the operator can trust can be installed in the home base station to verify the use position of the home base station, thereby realizing the local verification to verify the authenticity and legality of the location of the home base station.
  • Step S301 Acquire location information of a home base station location
  • the location collection of the HNB's own location can be obtained by:
  • Step S304 Reporting an error, the access network service is limited
  • Step S305 Send the signature information to the HLR.
  • Step S306 The HLR verifies the signature information by using the stored public key.
  • Step S308 Take the use address corresponding to HNB_E1;
  • Step S311 The error is reported, and the service is limited.
  • the reported location information is not encrypted in the VPN tunnel protection; if there is no such level of protection, the TPM can be used to generate the data encryption key and the integrity key for confidentiality and integrity protection.
  • the home location register 53 receives the registered location information that the user changes through the operator service platform, and transmits the changed registration location information to the home base station 52, triggering the registration stored by the home base station 52. Location information has changed.

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Hardware Design (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Mobile Radio Communication Systems (AREA)

Abstract

Un mode de réalisation de la présente invention concerne un procédé de vérification d'emplacement de dispositif d'accès. Le procédé comprend les étapes suivantes : les informations d'emplacement d'un endroit où  se trouve le dispositif d'accès sont acquises; on vérifie si les informations d'emplacement sont identiques aux informations d'enregistrement stockées selon les informations d'emplacement acquises de l'endroit où se trouve le dispositif d'accès; si les informations d'emplacement acquises de l'endroit où se trouve le dispositif d'accès sont identiques aux informations d'enregistrement stockées, l'accès de service du dispositif d'accès est complété selon les informations d'emplacement d'enregistrement stockées. De la même façon, les modes de réalisation de la présente invention concernent également un dispositif d'accès et un système. Avec le procédé et le dispositif dans les modes de réalisation de la présente invention, la validité et l'authenticité de l'emplacement d'un dispositif d'accès sont vérifiées.
PCT/CN2009/071995 2008-06-23 2009-05-26 Procédé de vérification d'emplacement de dispositif d'accès et dispositif d'accès, équipement de réseau et système associé WO2009155818A1 (fr)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN200810029120.9 2008-06-23
CN200810029120 2008-06-23

Publications (1)

Publication Number Publication Date
WO2009155818A1 true WO2009155818A1 (fr) 2009-12-30

Family

ID=41444008

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2009/071995 WO2009155818A1 (fr) 2008-06-23 2009-05-26 Procédé de vérification d'emplacement de dispositif d'accès et dispositif d'accès, équipement de réseau et système associé

Country Status (1)

Country Link
WO (1) WO2009155818A1 (fr)

Cited By (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN111866852A (zh) * 2019-04-24 2020-10-30 北京嘀嘀无限科技发展有限公司 一种热点识别方法、装置、电子设备和计算机存储介质
CN112272376A (zh) * 2020-10-22 2021-01-26 中国联合网络通信集团有限公司 一种奖励方法及装置
CN112291785A (zh) * 2020-10-22 2021-01-29 中国联合网络通信集团有限公司 一种奖励方法及装置
EP3823320A4 (fr) * 2018-09-18 2021-07-14 Huawei Technologies Co., Ltd. Procédé, dispositif et système d'authentification

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20050239453A1 (en) * 2000-11-22 2005-10-27 Vikberg Jari T Mobile communication network
CN101166133A (zh) * 2007-09-26 2008-04-23 中兴通讯股份有限公司 家庭基站的位置限制方法及系统
CN101335984A (zh) * 2007-06-25 2008-12-31 华为技术有限公司 家用微型基站接入控制方法及系统

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20050239453A1 (en) * 2000-11-22 2005-10-27 Vikberg Jari T Mobile communication network
CN101335984A (zh) * 2007-06-25 2008-12-31 华为技术有限公司 家用微型基站接入控制方法及系统
CN101166133A (zh) * 2007-09-26 2008-04-23 中兴通讯股份有限公司 家庭基站的位置限制方法及系统

Cited By (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
EP3823320A4 (fr) * 2018-09-18 2021-07-14 Huawei Technologies Co., Ltd. Procédé, dispositif et système d'authentification
US11503467B2 (en) 2018-09-18 2022-11-15 Huawei Technologies Co., Ltd. Authentication method, device, and system
CN111866852A (zh) * 2019-04-24 2020-10-30 北京嘀嘀无限科技发展有限公司 一种热点识别方法、装置、电子设备和计算机存储介质
CN112272376A (zh) * 2020-10-22 2021-01-26 中国联合网络通信集团有限公司 一种奖励方法及装置
CN112291785A (zh) * 2020-10-22 2021-01-29 中国联合网络通信集团有限公司 一种奖励方法及装置
CN112291785B (zh) * 2020-10-22 2022-07-22 中国联合网络通信集团有限公司 一种奖励方法及装置

Similar Documents

Publication Publication Date Title
US9854497B2 (en) Method and apparatus for self configuration of LTE e-Node Bs
KR100494558B1 (ko) 공중 무선랜 서비스 시스템의 사용자 인증방법 및 시스템
CN105027529B (zh) 用于验证对网络资源的用户接入的方法和设备
US20200177393A1 (en) Positioning Information Verification
WO2009000206A1 (fr) Procédé et système de commande d'accès de nœud initial b
KR20070007373A (ko) 비승인 모바일 액세스 시그널링에 대한 개선된 가입자 인증
JP2001508607A (ja) 専用データ通信網にアクセスする確実なアクセス方法と関連装置
JP2005528851A5 (fr)
WO2009152749A1 (fr) Procédé, système et appareil d'authentification d'association
CN114268943A (zh) 授权方法及装置
CN104837136B (zh) 无线接入认证方法和装置
JP2008042862A (ja) 無線lan通信システム及びその方法並びにプログラム
JP2012531822A (ja) ネットワーク信用証明書を取得するためのシステム及び方法
CN104581875A (zh) 微型基站接入方法和系统
WO2013117131A1 (fr) Dispositif et procédé d'authentification d'accès sans fil
WO2019056971A1 (fr) Procédé et dispositif d'authentification
JP2012531111A (ja) ネットワークを介して位置を特定するためのシステム及び方法
CN105530612A (zh) 一种使用智能移动终端接入室外设备WiFi的认证方法及系统
WO2009155818A1 (fr) Procédé de vérification d'emplacement de dispositif d'accès et dispositif d'accès, équipement de réseau et système associé
JP2011528203A (ja) 通信ネットワークを管理するための方法および関連装置
US9473934B2 (en) Wireless telecommunications network, and a method of authenticating a message
WO2015100874A1 (fr) Procédé et système de gestion d'accès par passerelle locale
KR101434750B1 (ko) 이동통신망에서 지리 정보를 이용한 무선랜 선인증 방법 및 장치
CN101742507B (zh) 一种WAPI终端访问Web应用站点的系统及方法
CN104602235A (zh) 微型基站接入方法和系统

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 09768743

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

122 Ep: pct application non-entry in european phase

Ref document number: 09768743

Country of ref document: EP

Kind code of ref document: A1