WO2010130129A1 - 会聚式wlan中由访问控制器完成wpi时的站点切换方法及其系统 - Google Patents

会聚式wlan中由访问控制器完成wpi时的站点切换方法及其系统 Download PDF

Info

Publication number
WO2010130129A1
WO2010130129A1 PCT/CN2009/075354 CN2009075354W WO2010130129A1 WO 2010130129 A1 WO2010130129 A1 WO 2010130129A1 CN 2009075354 W CN2009075354 W CN 2009075354W WO 2010130129 A1 WO2010130129 A1 WO 2010130129A1
Authority
WO
WIPO (PCT)
Prior art keywords
site
access controller
wireless terminal
station
destination wireless
Prior art date
Application number
PCT/CN2009/075354
Other languages
English (en)
French (fr)
Inventor
杜志强
曹军
铁满霞
赖晓龙
黄振海
Original Assignee
西安西电捷通无线网络通信有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 西安西电捷通无线网络通信有限公司 filed Critical 西安西电捷通无线网络通信有限公司
Priority to KR1020117029791A priority Critical patent/KR101324056B1/ko
Priority to US13/320,469 priority patent/US8819778B2/en
Priority to EP09844540.6A priority patent/EP2432262B1/en
Publication of WO2010130129A1 publication Critical patent/WO2010130129A1/zh

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W76/00Connection management
    • H04W76/10Connection setup
    • H04W76/19Connection re-establishment
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W36/00Hand-off or reselection arrangements
    • H04W36/0005Control or signalling for completing the hand-off
    • H04W36/0011Control or signalling for completing the hand-off for data sessions of end-to-end connection
    • H04W36/0033Control or signalling for completing the hand-off for data sessions of end-to-end connection with transfer of context information
    • H04W36/0038Control or signalling for completing the hand-off for data sessions of end-to-end connection with transfer of context information of security context information
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/20Network architectures or network communication protocols for network security for managing network security; network security policies in general
    • H04L63/205Network architectures or network communication protocols for network security for managing network security; network security policies in general involving negotiation or determination of the one or more network security mechanisms to be used, e.g. by negotiation between the client and the server or between peers or by selection according to the capabilities of the entities involved
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/04Key management, e.g. using generic bootstrapping architecture [GBA]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/06Authentication
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W36/00Hand-off or reselection arrangements
    • H04W36/34Reselection control
    • H04W36/38Reselection control by fixed network equipment
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W76/00Connection management
    • H04W76/30Connection release
    • H04W76/34Selective release of ongoing connections
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W84/00Network topologies
    • H04W84/02Hierarchically pre-organised networks, e.g. paging networks, cellular networks, WLAN [Wireless Local Area Network] or WLL [Wireless Local Loop]
    • H04W84/10Small scale networks; Flat hierarchical networks
    • H04W84/12WLAN [Wireless Local Area Networks]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L41/00Arrangements for maintenance, administration or management of data switching networks, e.g. of packet switching networks
    • H04L41/08Configuration management of networks or network elements
    • H04L41/0803Configuration setting
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W92/00Interfaces specially adapted for wireless communication networks
    • H04W92/04Interfaces between hierarchically different network devices
    • H04W92/12Interfaces between hierarchically different network devices between access points and access point controllers

Definitions

  • the present invention relates to a site switching method and system therefor in a convergence WLAN when a WPI is completed by an access controller. Background technique
  • WLAN Wireless Local Area Network
  • the WAP protocol WLAN station (STA) handover method is proposed under the autonomous WLAN architecture and cannot be directly applied to the WAPI-based converged WLAN architecture.
  • access control devices such as an Access Controller (AC), a wireless switch, or a wireless router centrally manage WLAN authentication and policy enforcement functions. These devices can also provide centralized bridging, forwarding, and Add and decrypt user data and other functions. Summary of the invention
  • the present invention provides a WLAN privacy infrastructure (WLAN Privacy Infrastructure) by the AC in the convergence WLAN architecture.
  • WPI WLAN Privacy Infrastructure
  • the AC can also be replaced by a device such as a wireless switch or a wireless router.
  • the present invention provides a site switching method when a WPI is completed by an access controller in a convergence WLAN, and the method includes the following steps:
  • Step 1 The station re-associates with the access controller through the destination wireless terminal point;
  • Step 2 The access controller notifies the associated wireless terminal point to select the station;
  • Step 3 The access controller notifies the The destination wireless terminal points join the site; the foregoing step 1 specifically includes the following steps:
  • Step l la the site passively listening to the beacon frame of the destination wireless terminal point to obtain a parameter of the destination wireless terminal point including a WAPI information element, where the WAPI information element includes WAI authentication supported by the destination wireless terminal point And key management suite, cipher suite;
  • Step 12a In the local MAC mode, the station sends a link verification request frame to the destination wireless terminal, requesting link verification with the destination wireless terminal, and the destination wireless terminal according to the The link verification request frame of the station, sending a link 3 full certificate response frame to the station;
  • Step 13a After the link verification is successful, the station sends a re-association request frame to the access controller, requesting re-association with the access controller, where the station includes the current content in the re-association request frame.
  • the identifier of the associated wireless terminal point, the identifier of the access controller, and the WAPI information element determine the WAI authentication and key management suite, cipher suite selected by the site, wherein the site selects the selected a WAI authentication and key management suite, a cipher suite, and a key management suite, cipher suite selected when initially associated with the access controller; the access controller parsing the reassociation request frame of the site, A reassociation response frame is sent to the site.
  • step 1 specifically includes the following steps:
  • Step llb the site passively listening to the beacon frame of the destination wireless terminal point, including obtaining
  • Step 12b In the split MAC mode, the station sends a link verification request frame to the access controller, requesting the access controller Between the link verification, the access controller sends a link verification response frame to the station according to the link verification request frame of the site; Step 13b, after the link verification is successful, the site is The access controller sends a re-association request frame, and the request is re-associated with the access controller, where the station includes an identifier of the currently associated wireless terminal point, and the access controller in the re-association request frame.
  • the identifier and the WAPI information element determine the WAI authentication and key management suite, cipher suite selected by the site, wherein the WAI authentication and key management suite, cipher suite and its initial selection selected by the site.
  • step 1 specifically includes the following steps:
  • Step 1 lc the site actively sends a query request frame to the destination wireless terminal, and after receiving the query request frame of the site, the destination wireless terminal sends an inquiry response frame to the station, where Receiving, by the site, the query response frame, the related parameter of the destination wireless terminal point including the WAPI information element, where the WAPI information element includes a WAI authentication and key management suite and a cipher suite supported by the destination wireless terminal point;
  • Step 12c In the local MAC mode, the station sends a link verification request frame to the destination wireless terminal, requesting link verification with the destination wireless terminal, and the destination wireless terminal according to the The link verification request frame of the station, and sending a link full certificate response frame to the station;
  • Step 13c After the link verification is successful, the site sends a re-association request frame to the access controller, requesting re-association with the access controller, where the site includes the current re-association request frame.
  • the identifier of the associated wireless terminal point, the identifier of the access controller, and the WAPI information element determine the WAI authentication and key management selected by the site a suite, a cipher suite, wherein the WAI authentication and key management suite, cipher suite selected by the site is the same as a key management suite and cipher suite selected when initially associated with the access controller;
  • the access controller parses the reassociation request frame of the site and sends a reassociation response frame to the station.
  • step 1 specifically includes the following steps:
  • Step 11d The station actively sends a query request frame to the destination wireless terminal, and after receiving the query request frame of the site, the destination wireless terminal sends an inquiry response frame to the site, where the site Receiving the query response frame, that is, obtaining a related parameter of the destination wireless terminal point including a WAPI information element, where the WAPI information element includes a WAI authentication and key management suite and a cipher suite supported by the destination wireless terminal point;
  • Step 12d In the split MAC mode, the station sends a link verification request frame to the access controller, requesting link verification with the access controller, where the access controller is configured according to the site. a link verification request frame, sending a link verification response frame to the station; Step 13d, after the link verification is successful, the station sends a re-association request frame to the access controller, requesting to perform with the access controller Re-association, the station including, in the re-association request frame, an identifier of the currently associated wireless terminal point, an identifier of the access controller, and the WAPI information element determining the WAI authentication selected by the station and a key management suite, a cipher suite, wherein the WAI authentication and key management suite, cipher suite selected by the site is the same as a key management suite and a cipher suite selected when initially associated with the access controller
  • the access controller parses the reassociation request frame of the site, and sends a reassociation response frame to the station.
  • step 2 The specific steps of step 2 above are as follows:
  • Step 21 The access controller sends a first CAPWAP site configuration request message to the associated wireless terminal, where the first CAPWAP site configuration request message includes a message element such as a deletion site;
  • Step 22 The associated wireless terminal point sends a first CAPWAP to the access controller.
  • the site configuration response message includes a result code message element in the first CAPWAP site configuration response message, and is used to identify a processing result of the first CAPWAP site configuration request message.
  • step 3 The specific steps of step 3 above are as follows:
  • Step 31 The access controller sends a second CAPWAP site configuration request message to the destination wireless terminal, where the second CAPWAP site configuration request message includes a joining site, a GB15629.il joining site, and a GB15629. il site session secret. a message element such as a key; wherein, C in the GB15629.il site session key message element is set to 1 for informing the destination wireless terminal to open the controlled port, forwarding all data from the corresponding site, and Describe the purpose of the access controller to implement WPI;
  • Step 32 The destination wireless terminal sends a second CAPWAP site configuration response message to the access controller, where the second CAPWAP site configuration response message includes a result code message element, and is used to identify the second CAPWAP site. Configure the processing result of the request message.
  • the present invention also provides a site switching system when a WPI is completed by an access controller in a convergence WLAN, where the handover system includes an access controller, a destination wireless terminal point, an associated wireless terminal point, and a site;
  • the terminal point re-associates with the access controller; the access controller notifies the associated wireless terminal to delete the station; and the access controller notifies the destination wireless terminal to join the station.
  • the WAPI-based convergence WLAN architecture provided by the present invention performs the site handover process when the WPI is completed by the access controller, and implements the site join between the access controller and the wireless termination point based on the CAPWAP control message during the site handover process.
  • the site deletion operation enables the method to quickly and securely switch between the wireless terminal points of the site under the same access controller.
  • FIG. 1 is a schematic diagram of switching between WTPs of STAs of the present invention under the same AC.
  • Step 1 The STA re-associates with the AC through the destination WTP.
  • Step 11 The STA passively listens to the beacon frame of the destination WTP to obtain a related parameter of the destination WTP including the WAPI information element, where the WAPI information element includes a WLAN Authentication Infrastructure (WAI) for authentication and confidentiality supported by the destination WTP.
  • WAI WLAN Authentication Infrastructure
  • the destination WTP After receiving the inquiry request frame of the STA, the destination WTP sends a query response frame to the STA, and the STA obtains the query response frame to obtain the WAPI information element.
  • the relevant parameters of the destination WTP, the WAPI information element includes a WAI authentication and key management suite, a cipher suite, etc. supported by the destination WTP;
  • Step 12 In the Medium Access Control (MAC) mode, the STA sends a link verification request frame to the destination WTP, requesting link verification with the destination WTP, and the destination WTP is based on the link verification request of the STA.
  • the frame sends a link verification response frame to the STA.
  • the STA In the split MAC mode, the STA sends a link verification request frame to the AC, requesting link verification with the AC, and the AC sends the link verification request frame to the STA according to the STA.
  • Link horse full response frame In the Medium Access Control (MAC) mode, the STA sends a link verification request frame to the destination WTP, requesting link verification with the destination WTP, and the destination WTP is based on the link verification request of the STA.
  • the frame sends a link verification response frame to the STA.
  • the split MAC mode the STA sends a link verification request frame to the AC, requesting link verification with the AC, and the AC sends the link verification request frame to the STA according to
  • Step 13 After the link verification is successful, the STA sends a re-association request frame to the AC, and the request is re-associated with the AC.
  • the STA includes the identifier of the currently associated WTP, the identifier of the AC, and the WAPI information element in the re-association request frame to determine
  • the WAI authentication and key management suite, cipher suite, and the like selected by the STA wherein the WAI authentication and key management suite and cipher suite selected by the STA are preferably the same as the suite selected when initially associated with the AC;
  • the reassociation request frame sends a reassociation response frame to the STA.
  • Step 2 The AC notification is associated with the WTP to delete the STA.
  • Step 21 The AC sends a Control and Provisioning of Wireless Access Points protocol (CAP WAP) Site Configuration Request message to the associated WTP.
  • the CAPWAP site configuration request message includes a message element such as a delete station (Delete Station).
  • Step 22 The associated WTP sends a first CAPWAP Site Configuration Response (Station Configuration Response) message to the AC, where the result code (Result Code) message element is included. Used to identify the processing result of the first CAPWAP Site Configuration Request message.
  • Step 3 The AC notifies the destination that the WTP joins the STA.
  • Step 31 The AC sends a second CAPWAP Site Configuration Request message to the destination WTP.
  • the second CAPWAP site configuration request message includes an add station, and the GB15629.il joins the site (GB15629.il Add Station). , GB15629.il site session key (GB15629. il Station Session Key) and other message elements; wherein, GB15629.il site session key (GB15629.il Station Session Key) message element C is set to 1 for notification purposes WTP forwards all data from the STA by opening a controlled port with the STA, and implements WPI by the destination AC;
  • Step 2 2 The destination WTP sends a second CAPWAP Site Configuration Response (Station Configuration Response) message to the AC, where the second CAPWAP site configuration response type includes a Result Code message element, which is used to identify the configuration of the second CAPWAP site.
  • Request Station Configuration Request
  • the present invention also provides a STA switching system when a WPI is completed by an AC in a convergence WLAN, where the switching system includes an AC, a destination WTP, an associated WTP, and a STA; wherein the STA re-associates with the AC through the destination WTP; The WTP is associated with the STA.
  • the AC notifies the destination WTP to join the STA.

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Hardware Design (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Mobile Radio Communication Systems (AREA)
  • Small-Scale Networks (AREA)

Description

会聚式 WLAN中由访问控制器完成 WPI时的站点切换方法及其系统 本申请要求于 2009 年 5 月 14 日提交中国专利局, 申请号为 200910022522.0 ,发明名称为 "会聚式 WLAN中由 AC完成 WPI时的 STA 切换方法及其系统" 的中国专利申请的优先权, 其全部内容通过引用结合 在本申请中。 技术领域
本发明涉及一种会聚式 WLAN中由访问控制器完成 WPI时的站点切 换方法及其系统。 背景技术
目前基于无线局域网 ( Wireless Local Area Network , 简称 WLAN )鉴
WAPI ) 协议的 WLAN中站点 ( Station, 简称 STA ) 切换方法均是在自治 式 WLAN体系架构下提出的,无法直接适用于基于 WAPI的会聚式 WLAN 体系架构。在会聚式 WLAN体系架构中,由访问控制器( Access Controller, 简称 AC )、 无线交换机或者无线路由器等访问控制设备集中管理 WLAN 的鉴别和策略执行功能, 这些设备还可以提供集中的桥接、 转发、 加解密 用户数据等功能。 发明内容
为了解决背景技术存在的目前基于 WAPI的 WLAN中 STA切换方法 仅适用于自治式架构的缺陷, 本发明提供了一种会聚式 WLAN体系架构 下当由 AC实现 WLAN保密基础设施 ( WLAN Privacy Infrastructure, 简 称 WPI ) 时 STA在同一 AC下的无线终端点 ( Wireless Terminal Point, 简 称 WTP )之间的切换方法及其系统。 这里 AC也可由无线交换机或者无线 路由器等设备代替。
本发明提供一种会聚式 WLAN中由访问控制器完成 WPI时的站点切 换方法, 该方法包括以下步骤:
步骤 1、 站点通过目的无线终端点与访问控制器进行重新关联连接; 步骤 2、 所述访问控制器通知已关联无线终端点 'J除所述站点; 步骤 3、 所述访问控制器通知所述目的无线终端点加入所述站点; 上述步骤 1具体包括以下步骤:
步骤 l la、 所述站点被动侦听所述目的无线终端点的信标帧获得包括 WAPI信息元素的所述目的无线终端点的参数, 该 WAPI信息元素包括所 述目的无线终端点支持的 WAI鉴别及密钥管理套件、 密码套件;
步骤 12a、 在本地 MAC模式中, 所述站点向所述目的无线终端点发 送链路验证请求帧, 请求与所述目的无线终端点之间的链路验证, 所述目 的无线终端点根据所述站点的所述链路验证请求帧, 向所述站点发送链路 3全证响应帧;
步骤 13a、 链路验证成功后, 所述站点向所述访问控制器发送重新关 联请求帧, 请求与所述访问控制器进行重新关联, 所述站点在所述重新关 联请求帧中包含当前所述已关联无线终端点的标识、 所述访问控制器的标 识以及所述 WAPI信息元素确定所述站点选择的所述 WAI鉴别及密钥管理 套件、 密码套件, 其中, 所述站点所选择的所述 WAI 鉴别及密钥管理套 件、 密码套件和其初次与所述访问控制器关联时所选择的密钥管理套件、 密码套件相同; 所述访问控制器解析所述站点的所述重新关联请求帧, 向 所述站点发送重新关联响应帧。
上述步骤 1具体包括以下步骤:
步骤 llb、 所述站点被动侦听所述目的无线终端点的信标帧获得包括
WAPI信息元素的所述目的无线终端点的参数, 该 WAPI信息元素包括所 述目的无线终端点支持的 WAI鉴别及密钥管理套件、 密码套件; 步骤 12b、 在分离 MAC模式中, 所述站点向所述访问控制器发送链 路验证请求帧, 请求与所述访问控制器之间的链路验证, 所述访问控制器 根据所述站点的所述链路验证请求帧, 向所述站点发送链路验证响应帧; 步骤 13b、 链路验证成功后, 所述站点向所述访问控制器发送重新关 联请求帧, 请求与所述访问控制器进行重新关联, 所述站点在所述重新关 联请求帧中包含当前所述已关联无线终端点的标识、 所述访问控制器的标 识以及所述 WAPI信息元素确定所述站点选择的所述 WAI鉴别及密钥管理 套件、 密码套件, 其中, 所述站点所选择的所述 WAI 鉴别及密钥管理套 件、 密码套件和其初次与所述访问控制器关联时所选择的密钥管理套件、 密码套件相同; 所述访问控制器解析所述站点的所述重新关联请求帧, 向 所述站点发送重新关联响应帧。
上述步骤 1具体包括以下步骤:
步骤 l lc、 所述站点主动向所述目的无线终端点发送探询请求帧, 所 述目的无线终端点收到所述站点的所述探询请求帧后, 向所述站点发送探 询响应帧, 所述站点收到所述探询响应帧即获得包括 WAPI信息元素的所 述目的无线终端点的相关参数, 该 WAPI信息元素包括所述目的无线终端 点支持的 WAI鉴别及密钥管理套件、 密码套件;
步骤 12c、 在本地 MAC模式中, 所述站点向所述目的无线终端点发 送链路验证请求帧, 请求与所述目的无线终端点之间的链路验证, 所述目 的无线终端点根据所述站点的所述链路验证请求帧, 向所述站点发送链路 马全证响应帧;
步骤 13c、 链路验证成功后, 所述站点向所述访问控制器发送重新关 联请求帧, 请求与所述访问控制器进行重新关联, 所述站点在所述重新关 联请求帧中包含当前所述已关联无线终端点的标识、 所述访问控制器的标 识以及所述 WAPI信息元素确定所述站点选择的所述 WAI鉴别及密钥管理 套件、 密码套件, 其中, 所述站点所选择的所述 WAI 鉴别及密钥管理套 件、 密码套件和其初次与所述访问控制器关联时所选择的密钥管理套件、 密码套件相同; 所述访问控制器解析所述站点的所述重新关联请求帧, 向 所述站点发送重新关联响应帧。
上述步骤 1具体包括以下步骤:
步骤 lld、 所述站点主动向所述目的无线终端点发送探询请求帧, 所 述目的无线终端点收到所述站点的所述探询请求帧后, 向所述站点发送探 询响应帧, 所述站点收到所述探询响应帧即获得包括 WAPI信息元素的所 述目的无线终端点的相关参数, 该 WAPI信息元素包括所述目的无线终端 点支持的 WAI鉴别及密钥管理套件、 密码套件;
步骤 12d、 在分离 MAC模式中, 所述站点向所述访问控制器发送链 路验证请求帧, 请求与所述访问控制器之间的链路验证, 所述访问控制器 根据所述站点的所述链路验证请求帧, 向所述站点发送链路验证响应帧; 步骤 13d、 链路验证成功后, 所述站点向所述访问控制器发送重新关 联请求帧, 请求与所述访问控制器进行重新关联, 所述站点在所述重新关 联请求帧中包含当前所述已关联无线终端点的标识、 所述访问控制器的标 识以及所述 WAPI信息元素确定所述站点选择的所述 WAI鉴别及密钥管理 套件、 密码套件, 其中, 所述站点所选择的所述 WAI 鉴别及密钥管理套 件、 密码套件和其初次与所述访问控制器关联时所选择的密钥管理套件、 密码套件相同; 所述访问控制器解析所述站点的所述重新关联请求帧, 向 所述站点发送重新关联响应帧。
上述步骤 2的具体步骤如下:
步骤 21、所述访问控制器向所述已关联无线终端点发送第一 CAPWAP 站点配置请求消息, 所述第一 CAPWAP站点配置请求消息中包含删除站 点等消息元素;
步骤 22、所述已关联无线终端点向所述访问控制器发送第一 CAPWAP 站点配置响应消息, 所述第一 CAPWAP站点配置响应消息中包含结果码 消息元素, 用于标识对所述第一 CAPWAP站点配置请求消息的处理结果。
上述步骤 3的具体步骤如下:
步骤 31、 所述访问控制器向所述目的无线终端点发送第二 CAPWAP 站点配置请求消息, 所述第二 CAPWAP站点配置请求消息中包含加入站 点、 GB15629.i l加入站点、 GB15629. i l站点会话密钥等消息元素; 其中, 所述 GB15629.i l站点会话密钥消息元素中的 C被置为 1用于告知所述目 的无线终端点打开受控端口, 转发来自对应站点的所有数据, 且由所述目 的访问控制器实现 WPI;
步骤 32、 所述目的无线终端点向所述访问控制器发送第二 CAPWAP 站点配置响应消息, 所述第二 CAPWAP站点配置响应消息中包含结果码 消息元素, 用于标识对所述第二 CAPWAP站点配置请求消息的处理结果。
本发明还提供一种会聚式 WLAN中由访问控制器完成 WPI时的站点 切换系统, 所述切换系统包括访问控制器、 目的无线终端点、 已关联无线 终端点以及站点; 站点通过所述目的无线终端点与所述访问控制器进行重 新关联连接; 访问控制器通知所述已关联无线终端点删除所述站点; 访问 控制器通知所述目的无线终端点加入所述站点。
本发明提供的基于 WAPI协议的会聚式 WLAN体系架构下当由访问 控制器完成 WPI时的站点切换流程, 在站点切换过程中, 基于 CAPWAP 控制消息实现访问控制器与无线终端点之间的站点加入、 站点删除操作, 该方法能够快速安全地实现站点在同一访问控制器下的无线终端点之间 的切换。 附图说明
图 1为本发明 STA在同一 AC下的 WTP之间切换示意图。
图 2为本发明 STA在同一 AC下的 WTP之间切换流程图。 具体实施方式
参见图 1、 2 , 根据本发明的优选实施例, 其具体方法如下:
步骤 1、 STA通过目的 WTP与 AC进行重新关联连接;
步骤 11、 STA被动侦听目的 WTP的信标帧获得包括 WAPI信息元素的 目的 WTP的相关参数,该 WAPI信息元素包括目的 WTP支持的无线局域网 鉴别基础设施( WLAN Authentication Infrastructure, 简称 WAI )鉴别及密钥 管理套件、 密码套件等; 或者 STA主动向目的 WTP发送探询请求帧, 目的 WTP收到 STA的探询请求帧后, 向 STA发送探询响应帧, STA收到探询响 应帧即获得包括 WAPI信息元素的目的 WTP的相关参数, 该 WAPI信息元 素包括目的 WTP支持的 WAI鉴别及密钥管理套件、 密码套件等;
步骤 12、 在本地媒体访问控制 (Medium Access Control, 简称 MAC ) 模式下, STA向目的 WTP发送链路验证请求帧, 请求与目的 WTP之间的 链路验证, 目的 WTP根据 STA的链路验证请求帧, 向 STA发送链路验证 响应帧; 在分离 MAC模式下, STA向 AC发送链路验证请求帧, 请求与 AC之间的链路验证, AC根据 STA的链路验证请求帧, 向 STA发送链路 马全证响应帧;
步骤 13、 链路验证成功后, STA向 AC发送重新关联请求帧, 请求与 AC进行重新关联, STA在重新关联请求帧中包含当前已关联 WTP的标识、 AC的标识,以及 WAPI信息元素以确定 STA选择的 WAI鉴别及密钥管理 套件、 密码套件等, 其中, STA所选择的 WAI鉴别及密钥管理套件、 密 码套件等最好和其初次与 AC关联时所选择的套件相同; AC解析 STA的 重新关联请求帧, 向 STA发送重新关联响应帧。
步骤 2、 AC通知已关联 WTP删除 STA;
步骤 21、 AC 向已关联 WTP 发送第一无线终端点控制与配置协议 ( Control And Provisioning of Wireless Access Points protocol , 简称 CAP WAP ) 站点配置请求 (Station Configuration Request ) 消息, 该第一 CAPWAP站点配置请求消息中包含删除站点( Delete Station )等消息元素; 步骤 22、已关联 WTP向 AC发送第一 CAPWAP站点配置响应( Station Configuration Response )消息, 其中包含结果码 ( Result Code )消息元素, 用于标识对第一 CAPWAP站点配置请求 ( Station Configuration Request ) 消息的处理结果。
步骤 3、 AC通知目的 WTP加入 STA;
步骤 31、 AC向目的 WTP发送第二 CAPWAP站点配置请求 ( Station Configuration Request ) 消息, 该第二 CAPWAP站点配置请求消息中包含 加入站点(Add Station), GB15629.i l加入站点(GB15629.il Add Station), GB15629.il站点会话密钥(GB15629. il Station Session Key)等消息元素; 其中, GB15629.i l站点会话密钥(GB15629.il Station Session Key)消息元 素中的 C被置为 1用于告知目的 WTP由打开与 STA之间的受控端口, 转 发来自 STA的所有数据, 且由目的 AC实现 WPI;
步骤 32、 目的 WTP向 AC发送第二 CAPWAP站点配置响应(Station Configuration Response)消息, 其中该第二 CAPWAP站点配置响应种包含 结果码 (Result Code ) 消息元素, 用于标识对第二 CAPWAP站点配置请 求 ( Station Configuration Request ) 消息的处理结果。
本发明还提供了一种会聚式 WLAN中由 AC完成 WPI时的 STA切换 系统, 该切换系统包括 AC、 目的 WTP、 已关联 WTP以及 STA; 其中 STA 通过目的 WTP与 AC进行重新关联连接; AC通知已关联 WTP删除 STA; AC通知目的 WTP加入 STA。
最后应说明的是: 以上实施例仅用以说明本发明的技术方案, 而非对 其限制; 尽管参照前述实施例对本发明进行了详细的说明, 本领域的普通 技术人员应当理解: 其依然可以对前述各实施例所记载的技术方案进行修 改, 或者对其中部分技术特征进行等同替换; 而这些修改或者替换, 并不 使相应技术方案的本质脱离本发明各实施例技术方案的精神和范围。

Claims

权 利 要 求 书
1、一种会聚式 WLAN中由访问控制器完成 WPI时的站点切换方法, 其 特征在于: 该方法包括以下步骤:
步骤 1、 站点通过目的无线终端点与访问控制器进行重新关联连接; 步骤 2、 所述访问控制器通知已关联无线终端点删除所述站点; 步骤 3、 所述访问控制器通知所述目的无线终端点加入所述站点。
2、 根据权利要求 1所述的会聚式 WLAN中由访问控制器完成 WPI时的 站点切换方法, 其特征在于: 所述步骤 1具体包括以下步骤:
步骤 l la、 所述站点被动侦听所述目的无线终端点的信标帧获得包括 WAPI信息元素的所述目的无线终端点的参数, 该 WAPI信息元素包括所述 目的无线终端点支持的 WAI鉴别及密钥管理套件、 密码套件;
步骤 12a、 在本地 MAC模式中, 所述站点向所述目的无线终端点发送 链路验证请求帧, 请求与所述目的无线终端点之间的链路验证, 所述目的 无线终端点根据所述站点的所述链路验证请求帧, 向所述站点发送链路验 证响应帧;
步骤 13a、 链路验证成功后, 所述站点向所述访问控制器发送重新关 联请求帧, 请求与所述访问控制器进行重新关联, 所述站点在所述重新关 联请求帧中包含当前所述已关联无线终端点的标识、 所述访问控制器的标 识以及所述 WAPI信息元素确定所述站点选择的所述 WAI鉴别及密钥管理 套件、 密码套件, 其中, 所述站点所选择的所述 WAI鉴别及密钥管理套件、 密码套件和其初次与所述访问控制器关联时所选择的密钥管理套件、 密码 套件相同; 所述访问控制器解析所述站点的所述重新关联请求帧, 向所述 站点发送重新关联响应帧。
3、 根据权利要求 1所述的会聚式 WLAN中由访问控制器完成 WPI时的 站点切换方法, 其特征在于: 所述步骤 1具体包括以下步骤:
步骤 l lb、 所述站点被动侦听所述目的无线终端点的信标帧获得包括 WAPI信息元素的所述目的无线终端点的参数, 该 WAPI信息元素包括所述 目的无线终端点支持的 WAI鉴别及密钥管理套件、 密码套件;
步骤 12b、 在分离 MAC模式中, 所述站点向所述访问控制器发送链路 验证请求帧, 请求与所述访问控制器之间的链路验证, 所述访问控制器根 据所述站点的所述链路验证请求帧, 向所述站点发送链路验证响应帧; 步骤 13b、 链路验证成功后, 所述站点向所述访问控制器发送重新关 联请求帧, 请求与所述访问控制器进行重新关联, 所述站点在所述重新关 联请求帧中包含当前所述已关联无线终端点的标识、 所述访问控制器的标 识以及所述 WAPI信息元素确定所述站点选择的所述 WAI鉴别及密钥管理 套件、 密码套件, 其中, 所述站点所选择的所述 WAI鉴别及密钥管理套件、 密码套件和其初次与所述访问控制器关联时所选择的密钥管理套件、 密码 套件相同; 所述访问控制器解析所述站点的所述重新关联请求帧, 向所述 站点发送重新关联响应帧。
4、 根据权利要求 1所述的会聚式 WLAN中由访问控制器完成 WPI时的 站点切换方法, 其特征在于: 所述步骤 1具体包括以下步骤:
步骤 l lc、 所述站点主动向所述目的无线终端点发送探询请求帧, 所 述目的无线终端点收到所述站点的所述探询请求帧后, 向所述站点发送探 询响应帧, 所述站点收到所述探询响应帧即获得包括 WAPI信息元素的所 述目的无线终端点的相关参数, 该 WAPI信息元素包括所述目的无线终端 点支持的 WAI鉴别及密钥管理套件、 密码套件;
步骤 12c、 在本地 MAC模式中, 所述站点向所述目的无线终端点发送 链路验证请求帧, 请求与所述目的无线终端点之间的链路验证, 所述目的 无线终端点根据所述站点的所述链路验证请求帧, 向所述站点发送链路验 证响应帧;
步骤 13c、 链路验证成功后, 所述站点向所述访问控制器发送重新关 联请求帧, 请求与所述访问控制器进行重新关联, 所述站点在所述重新关 联请求帧中包含当前所述已关联无线终端点的标识、 所述访问控制器的标 识以及所述 WAPI信息元素确定所述站点选择的所述 WAI鉴别及密钥管理 套件、 密码套件, 其中, 所述站点所选择的所述 WAI鉴别及密钥管理套件、 密码套件和其初次与所述访问控制器关联时所选择的密钥管理套件、 密码 套件相同; 所述访问控制器解析所述站点的所述重新关联请求帧, 向所述 站点发送重新关联响应帧。
5、 根据权利要求 1所述的会聚式 WLAN中由访问控制器完成 WPI时的 站点切换方法, 其特征在于: 所述步骤 1具体包括以下步骤:
步骤 l ld、 所述站点主动向所述目的无线终端点发送探询请求帧, 所 述目的无线终端点收到所述站点的所述探询请求帧后, 向所述站点发送探 询响应帧, 所述站点收到所述探询响应帧即获得包括 WAPI信息元素的所 述目的无线终端点的相关参数, 该 WAPI信息元素包括所述目的无线终端 点支持的 WAI鉴别及密钥管理套件、 密码套件;
步骤 12d、 在分离 MAC模式中, 所述站点向所述访问控制器发送链路 验证请求帧, 请求与所述访问控制器之间的链路验证, 所述访问控制器根 据所述站点的所述链路验证请求帧, 向所述站点发送链路验证响应帧; 步骤 13d、 链路验证成功后, 所述站点向所述访问控制器发送重新关 联请求帧, 请求与所述访问控制器进行重新关联, 所述站点在所述重新关 联请求帧中包含当前所述已关联无线终端点的标识、 所述访问控制器的标 识以及所述 WAPI信息元素确定所述站点选择的所述 WAI鉴别及密钥管理 套件、 密码套件, 其中, 所述站点所选择的所述 WAI鉴别及密钥管理套件、 密码套件和其初次与所述访问控制器关联时所选择的密钥管理套件、 密码 套件相同; 所述访问控制器解析所述站点的所述重新关联请求帧, 向所述 站点发送重新关联响应帧。
6、 根据权利要求 2至 5中任一权利要求所述的会聚式 WLAN中由访问 控制器完成 WPI时的站点切换方法, 其特征在于: 所述步骤 2具体包括以下 步骤:
步骤 21、所述访问控制器向所述已关联无线终端点发送第一 CAPWAP 站点配置请求消息,所述第一 CAPWAP站点配置请求消息中包含删除站点 消息元素;
步骤 22、所述已关联无线终端点向所述访问控制器发送第一 CAPWAP 站点配置响应消息,所述第一 CAPWAP站点配置响应消息中包含结果码消 息元素, 用于标识对所述第一 CAPWAP站点配置响应消息的处理结果。
7、 根据权利要求 6所述的会聚式 WLAN中由访问控制器完成 WPI时的 站点切换方法, 其特征在于: 所述步骤 3具体包括以下步骤:
步骤 31、所述访问控制器向所述目的无线终端点发送第二 CAPWAP站 点配置请求消息, 所述第二 CAPWAP站点配置请求消息中包含加入站点、 GB15629.i l加入站点、 GB15629.i l站点会话密钥消息; 其中, 所述 GB15629.i l站点会话密钥消息中的 C被置为 1用于告知所述目的无线终端 点打开受控端口, 转发来自对应站点的所有数据, 且由所述目的访问控制 器实现 WPI;
步骤 32、所述目的无线终端点向所述访问控制器发送第二 CAPWAP站 点配置响应消息,所述第二 CAPWAP站点配置响应消息中包含结果码消息 元素, 用于标识对所述第二 CAPWAP站点配置响应消息的处理结果。
8、一种会聚式 WLAN中由访问控制器完成 WPI时的站点切换系统, 其 特征在于: 所述切换系统包括访问控制器、 目的无线终端点、 已关联无线 终端点以及站点; 所述站点通过所述目的无线终端点与所述访问控制器进 行重新关联连接; 所述访问控制器通知所述已关联无线终端点删除所述站 点; 所述访问控制器通知所述目的无线终端点加入所述站点。
PCT/CN2009/075354 2009-05-14 2009-12-07 会聚式wlan中由访问控制器完成wpi时的站点切换方法及其系统 WO2010130129A1 (zh)

Priority Applications (3)

Application Number Priority Date Filing Date Title
KR1020117029791A KR101324056B1 (ko) 2009-05-14 2009-12-07 중앙 집중형 wlan에서 액세스 컨트롤러에 의한 wpi 완성 시의 스테이션 스위칭 방법 및 그 시스템
US13/320,469 US8819778B2 (en) 2009-05-14 2009-12-07 Method and system for switching station in centralized WLAN when WPI is performed by access controller
EP09844540.6A EP2432262B1 (en) 2009-05-14 2009-12-07 Method and system for switching station in centralized wlan when wpi is performed by access controller

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN2009100225220A CN101562812B (zh) 2009-05-14 2009-05-14 会聚式wlan中由ac完成wpi时的sta切换方法及其系统
CN200910022522.0 2009-05-14

Publications (1)

Publication Number Publication Date
WO2010130129A1 true WO2010130129A1 (zh) 2010-11-18

Family

ID=41221389

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2009/075354 WO2010130129A1 (zh) 2009-05-14 2009-12-07 会聚式wlan中由访问控制器完成wpi时的站点切换方法及其系统

Country Status (5)

Country Link
US (1) US8819778B2 (zh)
EP (1) EP2432262B1 (zh)
KR (1) KR101324056B1 (zh)
CN (1) CN101562812B (zh)
WO (1) WO2010130129A1 (zh)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN116528225A (zh) * 2023-07-03 2023-08-01 广东电网有限责任公司珠海供电局 一种wapi终端接入网络的数据安全管理方法、系统及装置

Families Citing this family (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101562812B (zh) * 2009-05-14 2011-06-01 西安西电捷通无线网络通信股份有限公司 会聚式wlan中由ac完成wpi时的sta切换方法及其系统
CN101562811B (zh) 2009-05-14 2011-04-06 西安西电捷通无线网络通信股份有限公司 一种会聚式wlan中由wtp完成wpi时的sta漫游切换方法及其系统
CN101557591B (zh) * 2009-05-14 2011-01-26 西安西电捷通无线网络通信股份有限公司 会聚式wlan中由wtp完成wpi时的sta切换方法及其系统
CN102143604B (zh) * 2010-02-02 2014-02-05 杭州华三通信技术有限公司 实现无线接入点控制和配置隧道恢复的方法、系统及装置
CN104125568B (zh) * 2014-08-11 2018-09-07 湖南恒茂高科股份有限公司 无线接入点安全认证方法和系统
US10893418B2 (en) 2018-03-08 2021-01-12 Hewlett Packard Enterprise Development Lp AP deployment in a network comprising a centralized system and a distributed system

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
GB1562911A (en) 1976-09-17 1980-03-19 Girling Ltd Hydraulically operated disc brakes for vehicles
CN101079891A (zh) * 2007-06-15 2007-11-28 清华大学 基于无线局域网安全标准wapi的无线交换网络重认证方法
CN101272308A (zh) * 2008-05-06 2008-09-24 杭州华三通信技术有限公司 一种漫游切换触发方法、接入控制器和接入点
CN101335666A (zh) * 2007-06-29 2008-12-31 杭州华三通信技术有限公司 一种配置发送的方法、接入控制设备和接入点
CN101562812A (zh) * 2009-05-14 2009-10-21 西安西电捷通无线网络通信有限公司 会聚式wlan中由ac完成wpi时的sta切换方法及其系统

Family Cites Families (23)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7146636B2 (en) 2000-07-24 2006-12-05 Bluesocket, Inc. Method and system for enabling centralized control of wireless local area networks
CN1202609C (zh) 2000-07-26 2005-05-18 郝中兴 制造抽头式电动机变速线路的方法
US6965674B2 (en) 2002-05-21 2005-11-15 Wavelink Corporation System and method for providing WLAN security through synchronized update and rotation of WEP keys
KR100503470B1 (ko) 2003-08-13 2005-07-27 삼성전자주식회사 디스트리뷰션시스템에서 빠른 dad 수행을 위해 정보를관리하는 빠른 dad 관리자 및 이를 이용한 빠른 dad수행방법
CN1298194C (zh) 2004-03-22 2007-01-31 西安电子科技大学 基于漫游密钥交换认证协议的无线局域网安全接入方法
CN1753359B (zh) 2004-09-24 2011-01-19 华为技术有限公司 实现传输SyncML同步数据的方法
CN100426918C (zh) 2004-09-30 2008-10-15 中兴通讯股份有限公司 一种无线局域网内站点切换的方法
US7596376B2 (en) 2005-02-18 2009-09-29 Cisco Technology, Inc. Methods, apparatuses and systems facilitating client handoffs in wireless network systems
US8660099B2 (en) 2005-09-30 2014-02-25 Aruba Networks, Inc. Call admission control within a wireless network
US7602746B2 (en) * 2005-11-04 2009-10-13 Cisco Technology, Inc. Method for optimized layer 2 roaming and policy enforcement in a wireless environment
US7483409B2 (en) 2005-12-30 2009-01-27 Motorola, Inc. Wireless router assisted security handoff (WRASH) in a multi-hop wireless network
CN100369446C (zh) * 2006-02-28 2008-02-13 西安西电捷通无线网络通信有限公司 接入点的安全接入协议符合性测试方法及其系统
JP4719601B2 (ja) 2006-03-27 2011-07-06 富士通株式会社 連携方法、中継装置及び通信管理装置
CN100463391C (zh) 2006-09-23 2009-02-18 西安西电捷通无线网络通信有限公司 一种网络密钥管理及会话密钥更新方法
CN101155396B (zh) 2006-09-25 2012-03-28 联想(北京)有限公司 一种终端结点切换方法
CN100448196C (zh) 2006-12-29 2008-12-31 西安西电捷通无线网络通信有限公司 一种基于wapi的无线局域网运营方法
DE102008006840A1 (de) 2008-01-30 2009-08-13 Continental Automotive Gmbh Datenübertragungsverfahren und Tachographensystem
CN100593936C (zh) 2008-05-09 2010-03-10 西安西电捷通无线网络通信有限公司 一种基于wapi的漫游认证方法
CN101527908B (zh) 2009-04-08 2011-04-20 中兴通讯股份有限公司 一种无线局域网终端的预鉴别方法及无线局域网系统
CN101562811B (zh) 2009-05-14 2011-04-06 西安西电捷通无线网络通信股份有限公司 一种会聚式wlan中由wtp完成wpi时的sta漫游切换方法及其系统
CN101557592B (zh) 2009-05-14 2011-06-01 西安西电捷通无线网络通信股份有限公司 一种会聚式wlan中由ac完成wpi时的sta漫游切换方法及其系统
CN101583083B (zh) 2009-06-01 2011-11-30 中兴通讯股份有限公司 一种实时数据业务的实现方法和实时数据业务系统
US8441983B2 (en) 2010-05-04 2013-05-14 Cisco Technology, Inc. Maintaining point of presence at tunneling endpoint for roaming clients in distributed wireless controller system

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
GB1562911A (en) 1976-09-17 1980-03-19 Girling Ltd Hydraulically operated disc brakes for vehicles
CN101079891A (zh) * 2007-06-15 2007-11-28 清华大学 基于无线局域网安全标准wapi的无线交换网络重认证方法
CN101335666A (zh) * 2007-06-29 2008-12-31 杭州华三通信技术有限公司 一种配置发送的方法、接入控制设备和接入点
CN101272308A (zh) * 2008-05-06 2008-09-24 杭州华三通信技术有限公司 一种漫游切换触发方法、接入控制器和接入点
CN101562812A (zh) * 2009-05-14 2009-10-21 西安西电捷通无线网络通信有限公司 会聚式wlan中由ac完成wpi时的sta切换方法及其系统

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
See also references of EP2432262A4

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN116528225A (zh) * 2023-07-03 2023-08-01 广东电网有限责任公司珠海供电局 一种wapi终端接入网络的数据安全管理方法、系统及装置
CN116528225B (zh) * 2023-07-03 2023-09-08 广东电网有限责任公司珠海供电局 一种wapi终端接入网络的数据安全管理方法、系统及装置

Also Published As

Publication number Publication date
EP2432262B1 (en) 2018-02-07
CN101562812A (zh) 2009-10-21
EP2432262A4 (en) 2017-05-24
KR20120024764A (ko) 2012-03-14
EP2432262A1 (en) 2012-03-21
KR101324056B1 (ko) 2013-11-01
US8819778B2 (en) 2014-08-26
US20120054831A1 (en) 2012-03-01
CN101562812B (zh) 2011-06-01

Similar Documents

Publication Publication Date Title
WO2010130133A1 (zh) 一种会聚式wlan中由访问控制器完成wpi时站点切换方法及系统
CN107690138B (zh) 一种快速漫游方法、装置、系统、接入点和移动站
EP1561331B1 (en) A method for fast, secure 802.11 re-association without additional authentication, accounting, and authorization infrastructure
JP5771603B2 (ja) メディア独立ハンドオーバプロトコルセキュリティ
US8549293B2 (en) Method of establishing fast security association for handover between heterogeneous radio access networks
JP4950322B2 (ja) 複数の異種アクセスネットワークを含む通信ネットワークにおけるコンテキストの転送
US20080072047A1 (en) Method and system for capwap intra-domain authentication using 802.11r
US20050166043A1 (en) Authentication and authorization in heterogeneous networks
WO2010130129A1 (zh) 会聚式wlan中由访问控制器完成wpi时的站点切换方法及其系统
US20110078442A1 (en) Method, device, system and server for network authentication
WO2010096997A1 (zh) 一种以本地mac模式实现会聚式wapi网络架构的方法
WO2011137823A1 (zh) 密钥隔离方法和装置
WO2010130191A1 (zh) 一种切换接入网的认证方法、系统和装置
US8750521B2 (en) Method and system for station switching when wireless terminal point completes WPI in convergent WLAN
WO2010096995A1 (zh) 一种以分离mac模式实现会聚式wapi网络架构的方法
KR20230008697A (ko) 비-3gpp 핸드오버 준비
WO2010096996A1 (zh) 以本地mac模式实现wapi与capwap融合方法
WO2006074591A1 (en) A wireless local area network and a method for implementing a mobile terminal’s fast handover
WO2010097003A1 (zh) 以分离mac模式实现wapi与capwap融合方法
WO2010130138A1 (zh) 会聚式wlan中由wtp完成wpi时的sta切换方法及其系统
WO2010097004A1 (zh) 一种以分离mac模式实现wapi与capwap融合的方法

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 09844540

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

WWE Wipo information: entry into national phase

Ref document number: 13320469

Country of ref document: US

ENP Entry into the national phase

Ref document number: 20117029791

Country of ref document: KR

Kind code of ref document: A

WWE Wipo information: entry into national phase

Ref document number: 2009844540

Country of ref document: EP