WO2010031269A1 - 一种实现用户侧终端获取密码的方法、系统和设备 - Google Patents

一种实现用户侧终端获取密码的方法、系统和设备 Download PDF

Info

Publication number
WO2010031269A1
WO2010031269A1 PCT/CN2009/072647 CN2009072647W WO2010031269A1 WO 2010031269 A1 WO2010031269 A1 WO 2010031269A1 CN 2009072647 W CN2009072647 W CN 2009072647W WO 2010031269 A1 WO2010031269 A1 WO 2010031269A1
Authority
WO
WIPO (PCT)
Prior art keywords
olt
password
user
side terminal
password information
Prior art date
Application number
PCT/CN2009/072647
Other languages
English (en)
French (fr)
Inventor
吴炜
Original Assignee
华为技术有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 华为技术有限公司 filed Critical 华为技术有限公司
Priority to EP09813990A priority Critical patent/EP2339813A4/en
Publication of WO2010031269A1 publication Critical patent/WO2010031269A1/zh
Priority to US13/048,610 priority patent/US20110167487A1/en

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/083Network architectures or network communication protocols for network security for authentication of entities using passwords
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04QSELECTING
    • H04Q11/00Selecting arrangements for multiplex systems
    • H04Q11/0001Selecting arrangements for multiplex systems using optical switching
    • H04Q11/0062Network aspects
    • H04Q11/0067Provisions for optical access or distribution networks, e.g. Gigabit Ethernet Passive Optical Network (GE-PON), ATM-based Passive Optical Network (A-PON), PON-Ring
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04QSELECTING
    • H04Q11/00Selecting arrangements for multiplex systems
    • H04Q11/0001Selecting arrangements for multiplex systems using optical switching
    • H04Q11/0062Network aspects
    • H04Q2011/0088Signalling aspects

Definitions

  • the present invention relates to the field of communications, and in particular, to a method, system, and device for implementing a password for a user-side terminal.
  • the P0N system can be further divided into GPON (Gigabie Passive Optical Network), EPON (Ethernet Passive Optical Network), etc., depending on the Layer 2 access technology used.
  • the P0N system mainly uses a tree topology, as shown in Figure 1, the P0N system is from the central office side.
  • LT Optical Line Terminal
  • ONU Optical Network Unit
  • ONT Optical Network
  • Terminal optical network terminal
  • ODN optical network terminal
  • 0LT first sends a request for reporting SN to all ONU/0NTs accessed under its P0N port. 2. After receiving the OLT request, the ONU/ONT reports its SN to the OLT.
  • the OLT allocates ONU-ID (ONU) according to the SN reported by the ONU/ONT.
  • the ONU-ID assigned to the ONU/ONT by the OLT under the same PON port is unique.
  • the OLT completes the ranging data acquisition of the ONU/ONT.
  • the OLT sends a request for reporting the Password to the ONU/ONT.
  • the ONU/ONT reports its own password to the OLT.
  • the OLT completes the ONU/ONT authentication according to the Password.
  • the entire ONU/ONT registration process ends, and 0 NU/ONT is activated.
  • the password used in the above authentication process is manually input by the ONU/ONT user when the ONU/ONT device is powered on for the first time.
  • the ONU/ONT device locally inputs the user's P assword. Save, you don't have to re-enter Password in the future.
  • the inventors have found that the above prior art has at least the following disadvantages: Since the password of the ONU/ONT device is registered on the first power-on, it is manually input by the user and then locally saved. If the operator believes that there is a security problem in the password assigned to the ONU/ONT after the power-on registration, and the change is required, or because the password allocation scheme of each ONU/ONT device connected to the OLT is re-planned, it is required to When the password of each ONU/ONT is changed, the maintenance personnel must be arranged to change the password of the ONU/ONT device, which greatly increases the maintenance labor cost and affects the transmitted service.
  • the present invention provides a method, system, and device for implementing a password for a user-side terminal, in order to improve the efficiency of the change work and reduce the workload of the change.
  • the plan is as follows:
  • a method for obtaining a password by a user-side terminal includes: receiving, by a user-side terminal, a notification message sent by an optical line terminal OLT, where the notification message carries password information sent by the OLT;
  • the user side terminal acquires the password information carried in the notification message, and returns a response message to the OLT; [23] The user side terminal completes the authentication and registration process with the OLT according to the password information.
  • a system for implementing a password for a user-side terminal including: an optical line terminal OLT and at least one user-side terminal, where
  • the OLT is configured to send a notification message, where the notification message carries the password information sent by the OLT, and is further configured to receive a response message returned by the user-side terminal, and is further configured to complete the user side.
  • the terminal according to the authentication and registration process of the password information;
  • the user-side terminal is configured to receive a notification message that is sent by the OLT, obtain the password information carried in the notification message, and return a response message to the OLT, and is further configured to complete according to the password information. And the authentication and registration process of the OLT.
  • a user side terminal including:
  • a receiving module configured to receive a notification message sent by the optical line terminal OLT
  • an obtaining module configured to obtain password information carried in the notification message
  • a sending module configured to return a response message to the OLT
  • an authentication module configured to complete the authentication and registration process with the OLT according to the password information acquired by the acquiring module.
  • an optical line terminal comprising:
  • a sending module configured to send a notification message to the user-side terminal, where the notification message carries the password information sent by the OLT;
  • a receiving module configured to receive a response message returned by the user side terminal
  • the authentication module is configured to complete, according to the response message received by the receiving module, the authentication and registration process of the user-side terminal according to the password.
  • the password of the ONU/ONT when the password of the ONU/ONT needs to be changed, the password of the ONU/ONT can be modified only by the issuing operation on the OLT side, thereby improving the efficiency of the change work and reducing the efficiency.
  • the workload of the change has reduced the maintenance cost of the operator.
  • FIG. 1 is a schematic diagram of a tree topology structure of a PON system provided by the prior art
  • FIG. 2 is a schematic diagram of a specific process of ONU/ONT authentication registration provided by the prior art
  • FIG. 3 is a flow chart of changing the password of the ONU/ONT on the OLT side according to the first embodiment of the present invention.
  • FIG. 4 is a schematic flowchart of changing a password of an ONU/ONT on an OLT side according to Embodiment 2 of the present invention
  • FIG. 5 is a schematic diagram of a system for implementing a terminal to obtain a password according to Embodiment 3 of the present invention.
  • FIG. 6 is a schematic diagram of a user-side terminal according to Embodiment 4 of the present invention.
  • FIG. 7 is a schematic diagram of an optical line terminal according to Embodiment 5 of the present invention.
  • the present invention proposes a method for realizing the password of the ONU/ONT at the user side, and proposes a method for realizing the terminal to obtain a password.
  • the user side terminal receives the notification message sent by the optical line terminal OLT, and the notification message carries the password information sent by the OLT; the user side terminal acquires the password information carried in the notification message, and returns a response message to the 0 LT; the user side terminal according to the password Information, completion and OLT certification and registration process.
  • the method provided by the present invention can implement the modification of the ON word of the ONU/ONT only by the issuing operation on the OLT side, thereby improving the efficiency of the change work and reducing the workload of the change, thereby reducing the operator. Maintenance costs.
  • the technical solutions provided by the embodiments of the present invention are described in detail below in conjunction with the following embodiments.
  • the embodiment of the present invention provides a method for implementing a password for a terminal, where the present embodiment is described by using an ONU/ONT in the PON system as an example, which is implemented by the method provided by the embodiment of the present invention.
  • the OLT side of the PON system sends a password to the ONU/ONT side, so that the ONU/ONT side acquires the corresponding password.
  • the embodiment of the present invention is specifically described in the GPON system as a scenario in which the change of the Pa ssword of the ONU/ONT device is required.
  • the specific implementation process is as follows:
  • [52] 101 The central office side OLT sends a message to change the password, and informs the user side that the ONU/ONT modifies the original password saved locally.
  • the message of changing the password sent by the OLT in the embodiment of the present invention may be added by adding a PLAA.
  • M Physical Layer Operation Administration
  • the message is implemented.
  • the OLT sends a message to the OLT to change the password of the ONU/ONT by adding a PLOAM message in the direction of the downstream (message sent by the central office to the user side).
  • the specific definition of the new downlink PLOAM message is shown in Table 1.
  • ONU-ID ONU/ONT cable I, Yes
  • the OLT is assigned to the corresponding ONU based on the SN reported by the ONU/ONT.
  • the identifier of the ONT, the ONU-ID assigned to the ONU/ONT by the OLT under the same PON port is unique; [58] Message ID: The message identifier is used to indicate the message number of each delivery.
  • pppppppp A new password after the change, where each Password can take up to 10 bytes.
  • the OLT Since the OLT will normally hang multiple ONUs/ONTs and change the password for multiple ONUs/ONTs under one PON port, it will carry multiple ONU-ID identifiers in the PLOAM message (each ONU-ID). The identifiers correspond to their respective ONUs/ONTs. According to the ONU-ID identifier of each ONU/ONT, a new password is changed correspondingly, and each password occupies 10 bytes. See Table 2 for a message listing of the PLOAM sent by the OLT to multiple 0 NU/ONTs.
  • the embodiment of the present invention is an example of a scenario in which a change to the password of the ONU/ONT device is required. Therefore, before the OLT described in the step 101 sends a PLOA M message that changes the password, The ONU/ONT has completed the authentication registration process using the password input entered and saved by the existing power-on, which is the same as the detection and authentication process of the ONU/ONT device described in the prior art.
  • [64] 102 After receiving the PLOAM message of the password changed by the OLT, the ONU/ONT changes the locally saved password to the new password specified in the PLOAM message.
  • the user-side ONU/ONT searches for a corresponding new password from the PLOAM message according to its own 0 NU-ID.
  • the ONU/ONT reports the response message to the OLT.
  • the ONU/ONT can report the processing result to the OLT by adding a PLOAM message in the direction of the uplink (message sent by the user to the central office).
  • the processing result can be: the change is successful, the change fails (such as ONU/ONT refuses to change), and so on. See Table 3 for the definition of this upstream PLOAM message.
  • ONU-ID The ONU/ONT identifier is the identifier that the OLT assigns to the corresponding ONU/ONT according to the SN reported by the ONU/ONT.
  • the ONU-ID assigned to the ONU/ONT by the OLT is unique under the same PON port. of;
  • Message ID The message identifier is used to indicate the message number of each delivery.
  • [74] 104 The OLT receives the response message reported by the ONU/ONT, and extracts the processing result in the response message.
  • the ONU/ONT implements the response message by adding a PLOAM message carrying the processing result information.
  • the present embodiment uses the ONU/ONT to modify the password successfully as an example. That is, the ONU/ONT successfully implements the modification of the original password by using the new password delivered by the OLT.
  • the new password is re-registered with the modified new one.
  • the registration process is the same as the detection and authentication process of the ONU/ONT device in the prior art, and is no longer praised. .
  • the central office side OLT can re-deliver the PLOAM message for changing the password according to the received response message.
  • the central office side OLT can re-deliver the PLOAM message for changing the password according to the received response message.
  • the embodiment of the present invention is required to change the password of the ONU/ONT device.
  • the scenario is described as an example.
  • the method provided by the embodiment of the present invention is also applicable to the initial allocation of a password to an ONU/ONT device connected to the OLT, that is, in the authentication registration activation process, the OLT first
  • the ONU-ID is assigned to the ONU/ONT and the ONU-ID is sent to the ONU/ONT.
  • the new password is sent to the ONU-ID of the ONU/ONT as the PLOAM message.
  • the form is sent to the ONU/ONT that requires authentication registration.
  • the method is similar and will not be praised.
  • the embodiment of the present invention is described by taking a GPON system as an example. Similarly, those skilled in the art know that in a similar EPON system, the EPON is based on a key Key authentication mode, where the application of the Key is similar.
  • the GPON password therefore, the method provided by the embodiment of the present invention can be applied to an EPON system, and the message carrying the key can be specifically sent, and the EPON Ethernet OAM message can be extended, thereby implementing the OLT to the ONU in the EPON system.
  • the modification of the Key of the ONT is similar and will not be mentioned.
  • the embodiment of the present invention provides a method for implementing a password acquisition by a terminal.
  • the password is changed by the OLT to the ONU/ONT device, and the password of the ONU/ONT is changed, and the change is improved.
  • the efficiency of the work reduces the workload of the change, thus reducing the maintenance cost of the operator
  • the GPON system is taken as an example, and the password change of the ONU/ONT is implemented on the OLT side, and the password change process of the ONU/ONT is performed on the OLT side.
  • the PLOAM message is sent as an example. Since the PLOAM message is an unencrypted message, there is a certain security risk in the transmission process. To further ensure the security of the password sent by the OLT to the ONU/ONT, the following methods can be used. See the description of Example 2 below for details:
  • An embodiment of the present invention provides a method for implementing a password for a terminal, which can implement a password change of an ONU/ONT on an OLT side, thereby reducing maintenance workload and greatly reducing maintenance labor costs.
  • the embodiment of the present invention is still described by taking the scenario of the need to change the Passwo rd of the ONU/ONT device in the GPON system.
  • the central office side OLT is to the user side ON U. /ONT's Password is changed, and the original Password is changed to a new Password.
  • the specific implementation process is as follows:
  • the central office side OLT delivers the encrypted OMCI that changes the password (ONU Management and Control
  • the message informs the user side that the ONU/ONT modifies the locally saved original Pas swordo.
  • the message for changing the password sent by the OLT is specifically an OMCr message
  • the OL T implements the OLT to the 0 NU/ by adding an OMCT message in the direction of the downlink (the central office sends the message to the user side).
  • the message that the ONT changes the password is delivered.
  • the OMCT message is an ONU management control interface message, which is applied to the ONT in the existing
  • the password attribute field is added to the OMCr message extension, and the field is used to carry the password of the ONU/ONT, and is readable and writable.
  • the definition of the Passw ord attribute field is shown in the table. 4,
  • Password This attribute is used to indicate the ONU/ONT password (unit: byte) and supports read and writable.
  • the message of changing the password is sent to the ONU/ONT, and the OMCr message is sent, and the message carries the password that needs to be changed.
  • the 0 MCr message can be encrypted. Before the OMCr message is sent, the message is encrypted first, and the encryption method is used, for example, AES (Advanced Encryption Standard).
  • the method of the present invention is not limited to the specific encryption method.
  • the actual password to be delivered is: 123456. If the password is encrypted in reverse order, the 654321 is transmitted. The example shows that in actual transmission, you can use a better density encryption method.
  • the embodiment of the present invention is an example of a scenario in which a change to the password of the ONU/ONT device is required. Therefore, before the OLT described in step 201 sends an OMCI message that changes the password, the ONU /ONT has completed the authentication registration process by using the password input entered and saved by the existing power-on. This process is the same as the detection and authentication process of the ONU/ONT device described in the prior art, and will not be praised.
  • [94] 202 The user-side ONU/ONT receives the OMCr message sent by the OLT to change the password, decrypts the OMCI message, and obtains the new password carried in the OMCT message, and then locally saves the Passwor. d is modified to the new password specified in the OMCr message.
  • the user-side ONU/ONT after receiving the OMCT message, the user-side ONU/ONT first decrypts the OMCT message according to the encryption method agreed in advance with the OLT, and searches for the corresponding new password from the decrypted OMCT message according to its own ONU-ID.
  • the ONU/ONT can report the processing result to the OLT by adding a 0 MCr message in the direction of the uplink (message sent by the user to the central office).
  • the method of encrypting the OMCr message can be based on the actual situation. For flexible use, embodiments of the present invention do not limit the manner of specific encryption.
  • the Pass word processing result in the OMCr message is the same as the PLOAM message, that is, the processing result: 0 means the change is successful, 1 means the change fails.
  • [98] 204 The OLT receives the OMCr message reported by the ONU/ONT, decrypts the OMCr message, and extracts the processing result in the OM cr message.
  • the OLT first decrypts the OMCr message according to the encryption method agreed in advance with the ONU/ONT, and finds the corresponding ONU/ON according to the ONU-ID from the decrypted OMCr message.
  • [100] 205 The ONU/ONT completes the authentication and registration with the OLT using the new Password.
  • the embodiment of the present invention provides a method for implementing a password acquisition by a terminal.
  • the password is changed by the ONU/ONT by the OLT to provide the password to the ONU/ONT device, thereby improving the password.
  • Changing the efficiency of the work reduces the workload of the change, which reduces the operator's maintenance costs.
  • an embodiment of the present invention provides a system for implementing a password for a user-side terminal, where the system includes: an optical line terminal OLT 500 and a user-side terminal 510, where
  • the OLT 500 is configured to send a notification message, where the notification message carries the password information sent by the OLT 500, and is further configured to receive the response message returned by the user-side terminal 510, and is also used to complete the authentication and registration of the user-side terminal 510 according to the password information.
  • the user side terminal 510 is configured to receive the notification message sent by the OLT 500, obtain the password information carried in the notification message, and return a response message to the OLT 500.
  • the user terminal is further configured to complete the authentication and registration process with the OLT 500 according to the password information.
  • the user-side terminal 510 modifies the original password information of the user-side terminal 510 according to the password information carried in the obtained notification message, and returns a modification success response message to the OLT 500 after the modification succeeds, and according to the successfully modified password information, Complete the certification and registration process with OLT500.
  • the 00 is further configured to send a notification message to the at least one user-side terminal 510, where the notification message carries the identifier and password information of each user-side terminal 510.
  • the OLT side provides the password information Password or Key to the ONU/ONT device to obtain the password information on the ONU/ONT side, thereby changing the password information of the ONU/ONT side, improving the efficiency of the change work and reducing the workload of the change, thereby reducing the workload. Maintenance costs for operators.
  • an embodiment of the present invention provides a user-side terminal, where the terminal includes:
  • the receiving module 600 is configured to receive a notification message sent by the optical line terminal OLT.
  • the obtaining module 610 is configured to obtain the password information carried in the notification message according to the notification message received by the receiving module 600.
  • sending module 620 configured to return a response message to the OLT
  • the authentication module 630 is configured to complete the authentication and registration process with the OLT according to the password information acquired by the obtaining module 610.
  • the terminal further includes:
  • a processing module configured to modify, according to the password information carried in the notification message acquired by the obtaining module 610, The original password information of the user terminal;
  • the sending module 620 is configured to: when the processing result of the processing module is a modification success, the shell I" returns a modification success response message to the OLT, and when the processing result of the processing module is a modification failure, return a modification failure response message to the OLT;
  • the authentication module 630 is configured to complete the authentication and registration process with the OLT according to the successfully modified password information after the processing module is successfully modified.
  • the user side device obtained by the embodiment of the present invention obtains the password information Password or Key from the OLT side to the user side device (0 NU/ONT device), so that the ONU/ONT obtains the password information, thereby Changing the password information of the user improves the efficiency of the change work and reduces the workload of the change, thereby reducing the maintenance cost of the operator.
  • an embodiment of the present invention provides an optical line terminal, where the terminal includes:
  • the sending module 700 is configured to send a notification message to the user-side terminal, where the notification message carries the password information sent by the OLT.
  • the receiving module 710 is configured to: after the sending module sends the notification message, receive a response message returned by the user-side terminal;
  • the authentication module 720 is configured to complete, according to the response message received by the receiving module 710, a process of authenticating and registering the user-side terminal according to the password.
  • the sending module 700 is specifically:
  • the sending unit is configured to send a notification message to the at least one user-side terminal, where the notification message carries the identifier and password information of each user-side terminal.
  • the optical line terminal provided by the embodiment of the present invention provides the password information Password or Key to the ONU/ONT device by the OLT, so that the ONU/ONT obtains the password information, thereby performing its own password information. Changes, improve the efficiency of the change work, reduce the workload of the change, thereby reducing the maintenance costs of the operator.
  • Embodiments of the present invention may be implemented in software, and the corresponding software program may be stored in a readable storage medium, such as a hard disk, a cache, or an optical disk of a router.
  • a readable storage medium such as a hard disk, a cache, or an optical disk of a router.

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Computer Hardware Design (AREA)
  • Computer Security & Cryptography (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Signal Processing (AREA)
  • Small-Scale Networks (AREA)

Abstract

本发明涉及通信领域,特别涉及一种实现用户侧终端获取密码的方法、系统和设备。所述方法包括:用户侧终端接收光线路终端OLT下发的通知消息,所述通知消息携带所述OLT下发的密码信息;获取所述通知消息中携带的密码信息,向所述OLT返回响应消息;根据所述密码信息,完成和所述OLT的认证和注册过程。所述系统包括:光线路终端OLT和用户侧终端。所述设备包括:用户侧终端和光线路终端。本发明在当需要对ONU/ONT的Password进行更改时,只需通过OLT侧的下发操作,就可以实现对ONU/ONT的Password的修改,提高更改工作的效率,降低了更改的工作量,节省了维护人员的上门处理的人力开销,极大降低了运营商的维护成本。

Description

说明书 一种实现用户侧终端获取密码的方法、 系统和设备
[1] 本申请要求于 2008年 9月 18日提交中国专利局、 申请号为 200810149040.7、 发明 名称为 "一种实现用户侧终端获取密码的方法、 系统和设备"的中国专利申请的优 先权, 其全部内容通过引用结合在本申请中。
[2] 技术领域
[3] 本发明涉及通信领域, 特别涉及一种实现用户侧终端获取密码的方法、 系统和 设备。
[4] 发明背景
[5] PON (Passive Optical
Network, 无源光网络) 技术是一种点到多点的光纤接入技术, 所谓无源, 是指
PON系统的 ODN (Optical Distribution
Network, 光分配网络) 中不含有任何有源电子器件以及电子电源, 全部由光分 路器 (Splitter) 等无源器件组成, 因此其管理维护的成本较低。 根据所釆用的二 层接入技术的不同, P0N系统又可进一步的划分为 GPON (Gigabie Passive Optical Network, 吉比特无源光网络) 、 EPON (Ethernet Passive Optical Network, 以太无源光网络) 等几种。
[6] 通常, P0N系统主要釆用树型拓扑结构, 如图 1所示, P0N系统由中心局侧的 0
LT (Optical Line Terminal, 光线路终端) 、 用户侧的 ONU (Optical Network Unit, 光网络单元) 或者 ONT (Optical Network
Terminal, 光网络终端) 以及 ODN组成。 由于 OLT—个 PON端口下可以接入多个 0NU/0NT, 所以需要提供一套检测和认证 0NU/0NT的机制。
[7] 在 GP0N标准 G.984.3中, 定义了 SN (Serial
Number, 序列号) 和 Password (密码) , 用于 0NU/0NT设备的检测和认证。 其 中, 0NU/0NT设备的检测和认证在注册激活过程中完成, 如图 2所示, 给出了 在注册激活具体过程中实现对 0NU/0NT设备的检测和认证的交互示意图:
[8] 1、 0LT首先向其 P0N端口下接入的所有的 0NU/0NT发送上报 SN的请求。 2、 ONU/ONT接收到 OLT请求后, 向 OLT上报自己的 SN。
3、 OLT根据 ONU/ONT上报的 SN分配 ONU-ID (ONU
Identifier, ONU标识) , 并将该 ONU-ID发送给对应的 ONU/ONT; 其中, 同一个 PON端口下 OLT分配给 ONU/ONT的 ONU-ID是唯一的。
4、 OLT完成 ONU/ONT的测距数据获取。
5、 OLT向 ONU/ONT发送上报 Password的请求。
6、 ONU/ONT向 OLT上报自己的 Password。
7、 OLT根据 Password完成 ONU/ONT的认证, 整个 ONU/ONT注册过程结束, 0 NU/ONT处于激活状态。
其中, 对于上述认证过程中使用到的 Password, 是在 ONU/ONT设备第一次上 电注册的吋候, 由 ONU/ONT侧的用户手工输入, ONU/ONT设备将用户输入的 P assword进行本地保存, 以后可以不用再重新输入 Password。
在实现本发明的过程中, 发明人发现上述现有技术至少具有以下缺点: 由于上述 ONU/ONT设备的 Password, 是在其第一次上电注册吋, 由用户手工 输入后再进行本地保存的, 如果运营商认为在该上电注册吋为该 ONU/ONT分配 的 Password存在安全性问题而希望进行更改, 或者是因为重新规划 OLT下挂的各 ONU/ONT设备的 Password的分配方案而要求对各 ONU/ONT的 Password进行更改 , 就必须安排维护人员上门对 ONU/ONT设备的 Password进行更改, 极大地增加 了维护人力成本, 并且会对传输的业务造成影响。
发明内容
当出现更改 ONU/ONT设备侧的密码需求吋, 为了提高更改工作的效率, 降低 更改的工作量, 本发明实施例提供了一种实现用户侧终端获取密码的方法、 系 统和设备, 所述技术方案如下:
一方面, 提供了一种实现用户侧终端获取密码的方法, 所述方法包括: 用户侧终端接收光线路终端 OLT下发的通知消息, 所述通知消息携带所述 OLT 下发的密码信息;
所述用户侧终端获取所述通知消息中携带的密码信息, 向所述 OLT返回响应消 息; [23] 所述用户侧终端根据所述密码信息, 完成和所述 OLT的认证和注册过程。
[24] 一方面, 提供了一种实现用户侧终端获取密码的系统, 包括: 光线路终端 OLT 和至少一个用户侧终端, 其中,
[25] 所述 OLT, 用于下发通知消息, 所述通知消息携带所述 OLT下发的密码信息; 还用于接收所述用户侧终端返回的响应消息; 还用于完成所述用户侧终端根据 所述密码信息的认证和注册过程;
[26] 所述用户侧终端, 用于接收所述 OLT下发的通知消息, 获取所述通知消息中携 带的密码信息, 向所述 OLT返回响应消息; 还用于根据所述密码信息, 完成和所 述 OLT的认证和注册过程。
[27] 另一方面, 提供了一种用户侧终端, 包括:
[28] 接收模块, 用于接收光线路终端 OLT下发的通知消息;
[29] 获取模块, 用于获取所述通知消息中携带的密码信息;
[30] 发送模块, 用于向所述 OLT返回响应消息;
[31] 认证模块, 用于根据所述获取模块获取的密码信息, 完成和所述 OLT的认证和 注册过程。
[32] 另一方面, 提供了一种光线路终端, 包括:
[33] 发送模块, 用于向用户侧终端下发通知消息, 所述通知消息携带所述 OLT下发 的密码信息;
[34] 接收模块, 用于接收所述用户侧终端返回的响应消息;
[35] 认证模块, 用于根据所述接收模块接收的响应消息, 完成所述用户侧终端根据 所述密码信的认证和注册过程。
从上述技术方案的描述可知, 当需要对 ONU/ONT的 Password进行更改吋, 只 需通过 OLT侧的下发操作, 就可以实现对 ONU/ONT的 Password的修改, 提高了 更改工作的效率, 降低了更改的工作量, 从而降低了运营商的维护成本。
[37] 附图简要说明
[38] 图 1是现有技术提供的 PON系统的树型拓扑结构示意图;
[39] 图 2是现有技术提供的 ONU/ONT认证注册具体流程示意图;
[40] 图 3是本发明实施例 1提供的在 OLT侧对 ONU/ONT的 Password进行更改的流程 示意图;
[41] 图 4是本发明实施例 2提供的在 OLT侧对 ONU/ONT的 Password进行更改的流程 示意图;
[42] 图 5是本发明实施例 3提供的一种实现终端获取密码的系统的示意图;
[43] 图 6是本发明实施例 4提供的一种用户侧终端的示意图;
[44] 图 7是本发明实施例 5提供的一种光线路终端的示意图。
[45] 实施本发明的方式
[46] 为使本发明的目的、 技术方案和优点更加清楚, 下面将结合附图对本发明实施 方式作进一步地详细描述。
[47] 当出现对 ONU/ONT的 Password进行更改的需求吋, 本发明针对目前只能在用 户侧对 ONU/ONT的 Password进行更改的问题, 提出一种实现终端获取密码的方 法, 该方法内容如下: 用户侧终端接收光线路终端 OLT下发的通知消息, 通知消 息携带 OLT下发的密码信息; 用户侧终端获取通知消息中携带的密码信息, 向 0 LT返回响应消息; 用户侧终端根据密码信息, 完成和 OLT的认证和注册过程。
[48] 本发明提供的方法只需通过 OLT侧的下发操作, 就可以实现对 ONU/ONT的 Pass word的修改, 提高了更改工作的效率, 降低了更改的工作量, 从而降低了运营 商的维护成本。 下面将结合以下各实施例对本发明实施例提供的技术方案进行 详细的描述。
[49] 实施例 1
[50] 本发明实施例提供了一种实现终端获取密码的方法, 其中, 本实施例以该终端 具体为 PON系统中的 ONU/ONT为例进行说明, 通过本发明实施例提供的方法实 现了通过 PON系统的 OLT侧向 ONU/ONT侧下发 Password, 从而 ONU/ONT侧获取 相应的 Password的目的。
[51] 为了便于说明, 本发明实施例具体以 GPON系统中, 出现对 ONU/ONT设备的 Pa ssword进行更改的需求的场景为例进行说明, 参见图 3, 具体实现流程如下:
[52] 101: 中心局侧 OLT下发更改 Password的消息, 通知用户侧 ONU/ONT修改本地 保存的原 Password。
[53] 其中, 本发明实施例中 OLT下发的更改 Password的消息, 可以通过新增 PLOA M (Physical Layer Operation Administration and
Maintenance, 物理层运营管理维护) 消息实现, OLT通过新增下行 (由中心局 向用户侧发送消息) 方向的 PLOAM消息来实现 OLT对 ONU/ONT更改 Password的 消息下发。 其中, 该新增的下行 PLOAM消息具体定义参见表 1。
表 1
[55]
Figure imgf000007_0001
[56] 如表 1所示, 其中,
[57] ONU-ID: ONU/ONT索弓 I, 是 OLT根据 ONU/ONT上报的 SN分配给对应的 ONU/
ONT的标识, 在同一个 PON端口下 OLT分配给 ONU/ONT的 ONU-ID是唯一的; [58] Message ID: 消息标识, 用于指示具体每条下发的消息编号;
[59] pppppppp: 为更改后的新 Password, 其中每个 Password可以占用 10个字节。
[60] 由于 OLT—般会下挂多个 ONU/ONT, 对其一个 PON端口下的多个 ONU/ONT更 改 Password, 则会在 PLOAM消息中携带多个 ONU-ID标识 (每个 ONU-ID标识对 应着各自的 ONU/ONT) , 根据每个 ONU/ONT的 ONU-ID标识对应分配各自更改 的新 Password, 其中每个 Password占用 10个字节。 参见表 2, 提供了 OLT向多个 0 NU/ONT下发 PLOAM的消息示意表。
[61] 表 2
[62]
Figure imgf000008_0001
[63] 由于本发明实施例是以出现对 ONU/ONT设备的 Password进行更改的需求的场 景为例进行的说明, 因此, 在本步骤 101所述的 OLT在下发更改 Password的 PLOA M消息前, ONU/ONT已经利用已有的上电吋输入并保存的密码 Password完成了 认证注册过程, 该过程与现有技术所述的 ONU/ONT设备的检测和认证过程相同
, 不再赞述。
[64] 102: 用户侧 ONU/ONT接收到 OLT下发的更改 Password的 PLOAM消息后, 将 本地保存的 Password修改为 PLOAM消息中指定的新 Password。
[65] 其中, 用户侧 ONU/ONT接收到 PLOAM消息后, 从 PLOAM消息中根据自己的 0 NU-ID査找到对应的新 Password
, 并将本地保存的原 Password修改为 PLOAM消息中指定的新 Password。
[66] 103: ONU/ONT将本地保存的原 Password修改为新 Password后, 向 OLT上报响 应消息通知其处理结果。
[67] 其中, ONU/ONT在向 OLT上报响应消息吋, 具体可以为: ONU/ONT可以通过 新增上行 (由用户侧向中心局发送的消息) 方向的 PLOAM消息实现向 OLT上报 其处理结果, 其中, 该处理结果可以为: 更改成功、 更改失败 (如 ONU/ONT拒 绝进行更改) 等。 该上行 PLOAM消息具体定义参见表 3。
[68] 表 3
[69] 更改 Password结果上报消息
字节 内容 描述
1 ONU-ID ONU/ONT标识索弓 1
2 Message ID 消息 ID
3 Result 处理结果: 0: 更改成功 1 : 更改失败 保留
12 保留
[70] 如表 3所示, 其中,
[71] ONU-ID: ONU/ONT标识索引, 是 OLT根据 ONU/ONT上报的 SN分配给对应的 ONU/ONT的标识, 在同一个 PON端口下 OLT分配给 ONU/ONT的 ONU-ID是唯一 的;
[72] Message ID: 消息标识, 用于指示具体每条下发的消息编号;
[73] Result: 处理结果, 其中, 0表示更改成功, 1表示更改失败。
[74] 104: OLT接收 ONU/ONT上报的响应消息, 提取该响应消息中的处理结果。
[75] 其中, 如前所述, 本实施例以 ONU/ONT通过新增携带处理结果信息的 PLOAM 消息, 实现该响应消息为例。
[76] 为了便于说明, 本实施例以 ONU/ONT修改 Password成功为例进行说明, 即至 此, ONU/ONT成功实现利用 OLT下发的新 Password修改原有 Password。
[77] 105: ONU/ONT利用新 Password, 完成和 OLT的认证、 注册。
[78] 其中, 对于修改 Password成功的 ONU/ONT, 釆用其修改后的新 Password进行重 新注册, 其注册过程与现有技术中的 ONU/ONT设备的检测和认证过程相同, 不 再赞述。
[79] 另夕卜, 对于修改 Password不成功 (Result: 1) 的 ONU/ONT, 中心局侧 OLT根 据收到的响应消息, 可以重新下发更改 Password的 PLOAM消息, 其过程参见上 述 101 - 103所述步骤, 方法类似, 不再赞述。
[80] 其中, 本发明实施例是以出现对 ONU/ONT设备的 Password进行更改的需求的 场景为例进行说明, 本领域技术人员可以获知, 本发明实施例提供的方法, 还 适用于, 对 OLT下挂的 ONU/ONT设备初始分配 Password的情况, 即在认证注册 激活过程中, OLT首先分配 ONU-ID给 ONU/ONT并将该 ONU-ID发给 ONU/ONT , 完成 ONU/ONT的测距数据获取后, 会根据已经发给 ONU/ONT的 ONU-ID将新 Password以 PLOAM消息的形式, 下发给需要进行认证注册的 ONU/ONT。 方法类 似, 不再赞述。
[81] 本发明实施例是以 GPON系统为例进行的说明, 同理, 本领域技术人员获知, 在类似的 EPON系统中, 该 EPON是基于密钥 Key认证方式, 其中, Key的应用类 似于 GPON的 Password, 因此, 本发明实施例提供的方法, 可以应用于 EPON系 统中, 具体下发携带 Key的消息, 可以通过扩展 EPON的以太网 OAM消息实现, 从而实现该 EPON系统中 OLT对 ONU/ONT的 Key的修改, 方法类似, 不再赞述。
[82] 综上所述, 本发明实施例提供了一种实现终端获取密码的方法, 利用该方法, 通过由 OLT侧向 ONU/ONT设备提供 Password, 实现 ONU/ONT的 Password更改, 提高了更改工作的效率, 降低了更改的工作量, 从而降低了运营商的维护成本
[83] 综上, 本实施例 1是以 GPON系统为例, 对在 OLT侧实现 ONU/ONT的 Password 更改进行说明, 且以在 OLT侧对 ONU/ONT的 Password更改过程中釆用新增下发 的 PLOAM消息为例进行的说明, 由于 PLOAM消息为未加密消息, 因此传输过 程中存在一定的安全隐患, 为了进一步保证 OLT向 ONU/ONT下发的 Password的 安全性, 可以釆用以下方法, 详见下文实施例 2的描述:
[84] 实施例 2
[85] 本发明实施例提供了一种实现终端获取密码的方法, 该方法可以在 OLT侧实现 ONU/ONT的 Password更改, 降低维护工作量, 极大地减少了维护人力成本。
[86] 为了便于说明, 本发明实施例仍以 GPON系统中出现对 ONU/ONT设备的 Passwo rd进行更改的需求的场景为例进行说明, 参见图 4, 中心局侧 OLT要对用户侧 ON U/ONT的 Password进行更改, 将原 Password更改为新 Password, 具体实现流程如 下:
201: 中心局侧 OLT下发更改 Password的加密 OMCI (ONU Management and Control
Interface, ONU管理控制接口) 消息通知用户侧 ONU/ONT修改本地保存的原 Pas swordo
[88] 其中, 本发明实施例中 OLT下发的更改 Password的消息具体为 OMCr消息, OL T通过新增下行 (由中心局向用户侧发送消息) 方向的 OMCT消息来实现 OLT对 0 NU/ONT更改 Password的消息下发。
[89] 其中, OMCT消息是 ONU管理控制接口消息, 在现有的应用于 ONT
GPON的管理实体的 OMCr消息中, 通过对该 OMCr消息扩展增加 Password属性字 段, 该字段用于携带 ONU/ONT的 Password, 支持可读、 可写, 其中, 对该 Passw ord属性字段的定义参见表 4,
[90] 表 4
[91]
Password 该属性用于表示 ONU/ONT的 Password (单位: 字节) , 支持可 读、 可写。
[92] 其中, 在 OLT下发更改 Password的消息给 ONU/ONT吋, 可以通过下发 OMCr消 息, 该消息中携带需要更改的 Password实现; 本领域技术人员可以获知, 由于 0 MCr消息可以进行加密, 在下发 OMCr消息前对该消息先进行加密, 至于加密釆 用的方式, 例如 AES (Advanced Encryption Standard, 高级加密标准)
128, 可以根据实际情况灵活使用, 本发明实施例不限制具体加密的方式, 例如 , 实际需要下发的 Password为: 123456, 釆用对该密码进行倒序的方式加密, 则 传输 654321, 本处只是示例说明, 在实际传输吋可以釆用保密度更好的加密方 式。
[93] 由于本发明实施例是以出现对 ONU/ONT设备的 Password进行更改的需求的场 景为例进行的说明, 因此, 在本步骤 201所述的 OLT在下发更改 Password的 OMCI 消息前, ONU/ONT已经利用已有的上电吋输入并保存的密码 Password完成了认 证注册过程, 该过程与现有技术所述的 ONU/ONT设备的检测和认证过程相同, 不再赞述。
[94] 202: 用户侧 ONU/ONT接收 OLT下发的更改 Password的 OMCr消息, 对该 OMCI 消息进行解密, 获取该 OMCT消息中携带的新 Password后, 将本地保存的 Passwor d修改为 OMCr消息中指定的新 Password。
[95] 其中, 用户侧 ONU/ONT接收到 OMCT消息后, 首先按照预先与 OLT约定的加密 方式对 OMCT消息进行解密, 从解密的 OMCT消息中根据自己的 ONU-ID査找到对 应的新 Password
, 并将本地保存的原 Password修改为 OMCr消息中指定的新 Password。
[96] 203: ONU/ONT将本地保存的原 Password修改为新 Password后, 将携带处理结 果的 OMCr消息加密, 并将该加密 OMCr消息向 OLT上报。
[97] 其中, ONU/ONT可以通过新增上行 (由用户侧向中心局发送的消息) 方向的 0 MCr消息实现向 OLT上报其处理结果; 至于对 OMCr消息加密釆用的方式可以根 据实际情况灵活使用, 本发明实施例不限制具体加密的方式。 OMCr消息中 Pass word处理结果与 PLOAM消息相同, 即处理结果: 0表示更改成功, 1表示更改失 败。
[98] 204: OLT接收 ONU/ONT上报的 OMCr消息, 对 OMCr消息进行解密, 提取 OM cr消息中的处理结果。
[99] 其中, OLT接收到 OMCT消息后, 首先按照预先与 ONU/ONT约定的加密方式对 OMCr消息进行解密, 从解密的 OMCr消息中根据 ONU-ID査找到对应的 ONU/ON
T的处理结果。
[100] 205: ONU/ONT利用新 Password, 完成和 OLT的认证、 注册。
[101] 其中, 根据 OMCr消息中的处理结果, 对于修改 Password成功 (返 Result: 0) 的 ONU/ONT, 釆用其修改后的新 Password进行重新注册, 其注册过程与现有技 术中的 ONU/ONT设备的检测和认证过程相同, 不再赞述; 对于修改 Password不 成功 (Result: 1) 的 ONU/ONT, 中心局侧 OLT重新下发更改 Password的 OMCr消 息, 其过程参见上述各步骤。
[102] 综上所述, 本发明实施例提供了一种实现终端获取密码的方法, 利用该方法, 通过由 OLT侧向 ONU/ONT设备提供 Password, 实现 ONU/ONT进行 Password的更 改, 提高了更改工作的效率, 降低了更改的工作量, 从而降低了运营商的维护 成本。
[103] 实施例 3 [104] 参见图 5, 本发明实施例提供了一种实现用户侧终端获取密码的系统, 系统包 括: 光线路终端 OLT500和用户侧终端 510, 其中,
[105] OLT500, 用于下发通知消息, 通知消息携带 OLT500下发的密码信息; 还用于 接收用户侧终端 510返回的响应消息; 还用于完成用户侧终端 510根据密码信息 的认证和注册过程;
[106] 用户侧终端 510, 用于接收 OLT500下发的通知消息, 获取通知消息中携带的密 码信息, 向 OLT500返回响应消息; 还用于根据密码信息, 完成和 OLT500的认证 和注册过程。
[107] 用户侧终端 510根据获取的通知消息中携带的密码信息, 修改用户侧终端 510原 有的密码信息, 当修改成功后向 OLT500返回修改成功响应消息, 并根据成功修 改后的密码信息, 完成和 OLT500的认证和注册过程。
[108] 其中, 当系统存在多个用户侧终端 510吋, 本发明实施例提供的系统中的 OLT5
00还用于向至少一个用户侧终端 510下发通知消息, 所述通知消息中携带各用户 侧终端 510的标识和密码信息。
[109] 综上所述, 本发明实施例提供的一种实现用户侧终端获取密码的系统, 通过由
OLT侧向 ONU/ONT设备提供密码信息 Password, 或 Key, 实现 ONU/ONT侧获取 密码信息, 从而进行自身的密码信息的更改, 提高了更改工作的效率, 降低了 更改的工作量, 从而降低了运营商的维护成本。
[110] 实施例 4
[111] 参见图 6, 本发明实施例提供了一种用户侧终端, 所述终端包括:
[112] 接收模块 600, 用于接收光线路终端 OLT下发的通知消息;
[113] 获取模块 610, 用于根据接收模块 600接收的通知消息, 获取通知消息中携带的 密码信息;
[114] 发送模块 620, 用于向 OLT返回响应消息;
[115] 认证模块 630, 用于根据获取模块 610获取的密码信息, 完成和 OLT的认证和注 册过程。
[116] 进一步地, 终端还包括:
[117] 处理模块, 用于根据获取模块 610获取的通知消息中携带的密码信息, 修改用 户侧终端原有的密码信息;
[118] 相应地, 发送模块 620用于当处理模块的处理结果为修改成功, 贝 I」向 OLT返回 修改成功响应消息, 当处理模块的处理结果为修改失败, 向 OLT返回修改失败响 应消息;
[119] 相应地, 认证模块 630用于当处理模块修改成功后, 根据成功修改后的密码信 息, 完成和 OLT的认证和注册过程。
[120] 综上所述, 本发明实施例提供的用户侧设备, 通过由 OLT侧向用户侧设备 (0 NU/ONT设备) 提供密码信息 Password, 或 Key, 实现 ONU/ONT获取密码信息, 从而进行自身的密码信息的更改, 提高了更改工作的效率, 降低了更改的工作 量, 从而降低了运营商的维护成本。
[121] 实施例 5
[122] 参见图 7, 本发明实施例提供了一种光线路终端, 所述终端包括:
[123] 发送模块 700, 用于向用户侧终端下发通知消息, 通知消息携带 OLT下发的密 码信息;
[124] 接收模块 710, 用于当发送模块发送了通知消息后, 接收用户侧终端返回的响 应消息;
[125] 认证模块 720, 用于根据接收模块 710接收的响应消息, 完成用户侧终端根据密 码信的认证和注册过程。
[126] 其中, 发送模块 700具体为:
[127] 发送单元, 用于向至少一个用户侧终端下发通知消息, 通知消息中携带各用户 侧终端的标识和密码信息。
[128] 综上所述, 本发明实施例提供的光线路终端, 通过由该 OLT向 ONU/ONT设备 提供密码信息 Password, 或 Key, 实现 ONU/ONT获取密码信息, 从而进行自身 的密码信息的更改, 提高了更改工作的效率, 降低了更改的工作量, 从而降低 了运营商的维护成本。
[129] 本发明实施例可以利用软件实现, 相应的软件程序可以存储在可读取的存储介 质中, 例如, 路由器的硬盘、 缓存或光盘中。
[130] 以上所述仅为本发明的较佳实施例, 并不用以限制本发明, 凡在本发明的精神 和原则之内, 所作的任何修改、 等同替换、 改进等, 均应包含在本发明的保护 范围之内。

Claims

权利要求书
[1] 一种在无源光网络中实现用户侧终端获取密码的方法, 其特征在于, 所述 方法包括:
用户侧终端接收光线路终端 OLT下发的通知消息, 所述通知消息携带所述 OLT下发的密码信息;
所述用户侧终端获取所述通知消息中携带的密码信息, 向所述 OLT返回响 应消息;
所述用户侧终端根据所述密码信息, 完成和所述 OLT的认证和注册过程。
[2] 如权利要求 1所述的方法, 其特征在于, 所述获取所述通知消息中携带的密 码信息的步骤之后, 还包括:
所述用户侧终端根据所述获取的密码信息, 修改所述用户侧终端原有的密 码信息;
相应地, 所述向所述 OLT返回响应消息的步骤, 具体包括:
所述用户侧终端向所述 OLT返回响应消息, 所述响应消息中携带修改是否 成功的信息;
相应地, 所述根据所述密码信息, 完成和所述 OLT的认证和注册过程的步 骤, 具体包括:
所述用户侧终端根据成功修改后的密码信息, 完成和所述 OLT的认证和注 册过程。
[3] 如权利要求 1所述的方法, 其特征在于,
当所述无源光网络为吉比特无源光网络吋, 所述通知消息具体包括: 下行 P LOAM消息, 或, 下行 OMCr消息; 相应地, 所述返回响应消息具体包括: 上行 PLOAM消息, 或, 上行 OMCr消息;
当所述无源光网络为以太无源光网络吋, 所述通知消息具体包括; 下行 OA M消息; 相应地, 所述返回响应消息具体包括: 上行 OAM消息。
[4] 如权利要求 1所述的方法, 其特征在于,
当所述无源光网络为吉比特无源光网络吋, 所述密码信息具体为密码 Passw ord; 当所述无源光网络为以太无源光网络吋, 所述密码信息具体为密钥 Key。
[5] 如权利要求 1所述的方法, 其特征在于, 所述通知消息中携带有至少一个用 户侧终端的标识和密码信息, 且所述用户侧终端获取所述通知消息中携带 的密码信息具体包括;
用户侧终端根据自身的标识从所述通知消息中査找对应的密码信息。
[6] 一种实现用户侧终端获取密码的系统, 其特征在于, 所述系统包括: 光线 路终端 OLT和至少一个用户侧终端, 其中,
所述 OLT, 用于下发通知消息, 所述通知消息携带所述 OLT下发的密码信 息; 还用于接收所述用户侧终端返回的响应消息; 还用于完成所述用户侧 终端根据所述密码信息的认证和注册过程;
所述用户侧终端, 用于接收所述 OLT下发的通知消息, 获取所述通知消息 中携带的密码信息, 向所述 OLT返回响应消息; 还用于根据所述密码信息 , 完成和所述 OLT的认证和注册过程。
[7] 如权利要求 6所述系统, 其特征在于, 所述用户侧终端还用于根据获取的所 述通知消息中携带的密码信息, 修改所述用户侧终端原有的密码信息, 当 修改成功后向所述 OLT返回修改成功响应消息, 并根据成功修改后的密码 信息, 完成和所述 OLT的认证和注册过程。
[8] —种用户侧终端, 其特征在于, 所述终端包括:
接收模块, 用于接收光线路终端 OLT下发的通知消息;
获取模块, 用于获取所述通知消息中携带的密码信息;
发送模块, 用于向所述 OLT返回响应消息;
认证模块, 用于根据所述获取模块获取的密码信息, 完成和所述 OLT的认 证和注册过程。
[9] 如权利要求 8所述的终端, 其特征在于, 所述终端还包括:
处理模块, 用于根据所述获取模块获取的所述通知消息中携带的密码信息 , 修改所述用户侧终端原有的密码信息;
相应地, 所述发送模块用于当所述处理模块的处理结果为修改成功, 则向 所述 OLT返回修改成功响应消息, 当所述处理模块的处理结果为修改失败 , 向所述 OLT返回修改失败响应消息;
相应地, 所述认证模块用于当所述处理模块修改成功后, 根据成功修改后 的密码信息, 完成和所述 OLT的认证和注册过程。
[10] 一种光线路终端, 其特征在于, 所述终端包括:
发送模块, 用于向用户侧终端下发通知消息, 所述通知消息携带所述 OLT 下发的密码信息;
接收模块, 用于接收所述用户侧终端返回的响应消息;
认证模块, 用于根据所述接收模块接收的响应消息, 完成所述用户侧终端 根据所述密码信的认证和注册过程。
[11] 如权利要求 10所述的终端, 其特征在于, 所述发送模块具体为:
发送单元, 用于向至少一个用户侧终端下发通知消息, 所述通知消息中携 带各用户侧终端的标识和密码信息。
PCT/CN2009/072647 2008-09-18 2009-07-06 一种实现用户侧终端获取密码的方法、系统和设备 WO2010031269A1 (zh)

Priority Applications (2)

Application Number Priority Date Filing Date Title
EP09813990A EP2339813A4 (en) 2008-09-18 2009-07-06 METHOD, SYSTEM AND DEVICE FOR OBTAINING A PASSWORD FOR A USER-TERMINAL DEVICE
US13/048,610 US20110167487A1 (en) 2008-09-18 2011-03-15 Method, system and device for enabling user side terminal to obtain password

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN200810149040A CN101677414A (zh) 2008-09-18 2008-09-18 一种实现用户侧终端获取密码的方法、系统和设备
CN200810149040.7 2008-09-18

Related Child Applications (1)

Application Number Title Priority Date Filing Date
US13/048,610 Continuation US20110167487A1 (en) 2008-09-18 2011-03-15 Method, system and device for enabling user side terminal to obtain password

Publications (1)

Publication Number Publication Date
WO2010031269A1 true WO2010031269A1 (zh) 2010-03-25

Family

ID=42029789

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2009/072647 WO2010031269A1 (zh) 2008-09-18 2009-07-06 一种实现用户侧终端获取密码的方法、系统和设备

Country Status (4)

Country Link
US (1) US20110167487A1 (zh)
EP (1) EP2339813A4 (zh)
CN (1) CN101677414A (zh)
WO (1) WO2010031269A1 (zh)

Families Citing this family (10)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102223586B (zh) * 2010-04-13 2015-06-03 中兴通讯股份有限公司 光网络单元的注册激活方法及系统
US20110302283A1 (en) * 2010-06-03 2011-12-08 Niclas Nors Methods And Arrangements In A Passive Optical Network
EP2840742B1 (en) * 2012-04-20 2019-06-26 Mitsubishi Electric Corporation Communication system, master station apparatus, slave station apparatus, control apparatus, and communication control method
CN103229453A (zh) * 2012-12-28 2013-07-31 华为技术有限公司 一种认证方法、设备和系统
US9535680B2 (en) * 2013-03-12 2017-01-03 Broadcom Corporation Flashless optical network unit
CN105634790B (zh) * 2014-11-28 2019-04-12 华为软件技术有限公司 被管理对象的修改方法、网管系统和设备
CN109246119B (zh) * 2018-09-28 2021-09-14 四川天邑康和通信股份有限公司 一种具有认证信息自动修改功能的pon系统
CN109088885B (zh) * 2018-09-28 2021-02-26 四川天邑康和通信股份有限公司 一种无源光网络olt局端节点自动修改认证信息的方法
US11269751B2 (en) * 2020-06-11 2022-03-08 International Business Machines Corporation Hierarchical evaluation of multivariate anomaly level
CN113014324B (zh) * 2021-05-25 2021-08-03 武汉长光科技有限公司 一种组网方法、装置、设备、系统和存储介质

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1897505A (zh) * 2006-06-05 2007-01-17 中国电信股份有限公司 以太网无源光网络中光网络单元的基于询问的注册方法
CN1968089A (zh) * 2006-09-29 2007-05-23 华为技术有限公司 一种无源光网络的用户认证方法
CN101047494A (zh) * 2006-05-14 2007-10-03 华为技术有限公司 一种pon系统中密钥协商的方法和系统
JP2008028922A (ja) * 2006-07-25 2008-02-07 Nippon Telegr & Teleph Corp <Ntt> ネットワークシステムにおける認証方法、並びに認証装置、被認証装置

Family Cites Families (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP2000330943A (ja) * 1999-05-24 2000-11-30 Nec Corp セキュリティシステム
JP2001312470A (ja) * 2000-05-02 2001-11-09 Noritsu Koki Co Ltd 暗証ワード発行方法、データ配信方法、暗証ワードの発行装置、暗証ワード発行方法を実行するプログラムを記録した記録媒体およびデータ配信方法を実行するプログラムを記録した記録媒体
JP3693932B2 (ja) * 2001-05-16 2005-09-14 三菱電機株式会社 光通信システム
US20080232819A1 (en) * 2003-11-05 2008-09-25 Hiroaki Mukai Pon System and Optical Network Unit Connecting Method
KR100675836B1 (ko) * 2004-12-10 2007-01-29 한국전자통신연구원 Epon 구간내에서의 링크 보안을 위한 인증 방법
US8086872B2 (en) * 2005-12-08 2011-12-27 Electronics And Telecommunications Research Institute Method for setting security channel based on MPCP between OLT and ONUs in EPON, and MPCP message structure for controlling frame transmission
US20070174901A1 (en) * 2006-01-20 2007-07-26 Chang David Y System and method for automatic wireless network password update
US20080104411A1 (en) * 2006-09-29 2008-05-01 Agrawal Pankaj O Methods and apparatus for changing passwords in a distributed communication system

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101047494A (zh) * 2006-05-14 2007-10-03 华为技术有限公司 一种pon系统中密钥协商的方法和系统
CN1897505A (zh) * 2006-06-05 2007-01-17 中国电信股份有限公司 以太网无源光网络中光网络单元的基于询问的注册方法
JP2008028922A (ja) * 2006-07-25 2008-02-07 Nippon Telegr & Teleph Corp <Ntt> ネットワークシステムにおける認証方法、並びに認証装置、被認証装置
CN1968089A (zh) * 2006-09-29 2007-05-23 华为技术有限公司 一种无源光网络的用户认证方法

Also Published As

Publication number Publication date
US20110167487A1 (en) 2011-07-07
EP2339813A4 (en) 2011-10-12
CN101677414A (zh) 2010-03-24
EP2339813A1 (en) 2011-06-29

Similar Documents

Publication Publication Date Title
WO2010031269A1 (zh) 一种实现用户侧终端获取密码的方法、系统和设备
EP2449718B1 (en) Optical network terminal management control interface-based passive optical network security enhancement
EP2073444B1 (en) Terminal detection authentication method, device and operational management system in passive optical network
EP2351311B1 (en) Method for increasing security in a passive optical network
WO2011017986A1 (zh) 一种无源光网络中ploam消息的传输方法及组装方法
WO2011127731A1 (zh) 光网络单元的注册激活方法及系统
EP3007384B1 (en) Method, apparatus and system for terminal authentication in passive optical network
WO2016188196A1 (zh) 一种异常pon终端的检测方法及装置
US8942378B2 (en) Method and device for encrypting multicast service in passive optical network system
CN111526107A (zh) 一种网络设备认证方法、装置和存储介质
CN101998180B (zh) 一种支持光线路终端和光网络单元版本兼容的方法及系统
WO2012163022A1 (zh) 光网络系统的认证方法、光网络终端及光网络系统
JP2013175835A (ja) 光通信ネットワークシステム、子局通信装置、親局通信装置、及び制御方法

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 09813990

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

WWE Wipo information: entry into national phase

Ref document number: 2009813990

Country of ref document: EP