WO2011022979A1 - Mobile terminal software upgrade method, system, mobile terminal and server thereof - Google Patents

Mobile terminal software upgrade method, system, mobile terminal and server thereof Download PDF

Info

Publication number
WO2011022979A1
WO2011022979A1 PCT/CN2010/072146 CN2010072146W WO2011022979A1 WO 2011022979 A1 WO2011022979 A1 WO 2011022979A1 CN 2010072146 W CN2010072146 W CN 2010072146W WO 2011022979 A1 WO2011022979 A1 WO 2011022979A1
Authority
WO
WIPO (PCT)
Prior art keywords
system software
mobile terminal
lock network
version
module
Prior art date
Application number
PCT/CN2010/072146
Other languages
French (fr)
Chinese (zh)
Inventor
李夏忠
郭军平
Original Assignee
中兴通讯股份有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 中兴通讯股份有限公司 filed Critical 中兴通讯股份有限公司
Publication of WO2011022979A1 publication Critical patent/WO2011022979A1/en

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W8/00Network data management
    • H04W8/22Processing or transfer of terminal data, e.g. status or physical capabilities
    • H04W8/24Transfer of terminal data
    • H04W8/245Transfer of terminal data from a network towards a terminal
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/01Protocols
    • H04L67/04Protocols specially adapted for terminals or networks with limited capabilities; specially adapted for terminal portability
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/34Network arrangements or protocols for supporting network services or applications involving the movement of software or configuration parameters 

Definitions

  • the present invention relates to wireless communication technologies, and in particular, to a method, system, and mobile terminal and server for upgrading mobile terminal software. Background technique
  • WiMAX Worldwide Interoperability for Microwave Access
  • WMAN Wireless Metropolitan Area Network
  • WiMAX WiMAX
  • WiMAX technology is currently developing very rapidly, and it is receiving more and more attention from all countries. It has been commercialized on a large scale in the United States and South Korea.
  • the WiMAX terminal is generally customized by the operator and sent to the user through subsidies. Therefore, in order to ensure its own interests, the operator has a lock network requirement for the terminal product, so that the network parameter of the terminal can only be the parameter provided by the operator, and the mobile terminal will target This requirement is parameterized to meet the operator's requirements.
  • OTA Over the Air
  • the current popular use of OTA is to upgrade the mobile terminal software.
  • the upgrade server is vulnerable to attack by an attacker, and the software version is replaced. That is, the newly downloaded software version of the mobile terminal may be a non-locked network version replaced by the attacker, thereby failing to ensure the mobile terminal software upgrade. Security.
  • Embodiments of the present invention provide a method, a system, and a mobile terminal and a server for upgrading a mobile terminal software, so as to improve security of a software upgrade performed by the mobile terminal.
  • a method for upgrading a mobile terminal software including: a mobile terminal acquiring a new version of system software from an upgrade server, the new version system software including a lock network version identifier; Obtaining the lock network version identifier in the new version system software, and confirming the lock network version identifier of the currently applied system software and the lock network version of the new version system software The identity is consistent; the mobile terminal upgrades the current system software to the new version of the system software.
  • the acquiring, by the mobile terminal, the new version of the system software from the upgrade server includes: upgrading the server to obtain the lock version identifier from the new version system software; and upgrading the server to determine the lock version of the new version of the system software
  • the identifier is consistent with the preset standard lock network version identifier; the upgrade server sends the new version system software to the mobile terminal.
  • the upgrading method further includes: setting redundant data in the new version system software, and mixing the lock net version identifier with the redundant data.
  • the method further includes: setting a location and a size of the lock network version identifier of the new version system software in the new version system software, so that The lock network version identifier of the system software currently applied by the mobile terminal corresponds to the location and size of the currently applied system software.
  • a mobile terminal including: a receiving module, configured to receive a new version of system software sent by an upgrade server, and send the new version system software to a first backup module and a second The backup module stores; wherein, the new version of the system software includes lock network information, the lock network information includes a lock network version identifier; the first application module is configured to store the non-lock network information portion of the current application system software; An application module, configured to store lock network information of the current application system software; a first backup module, configured to store a non-lock network information part of the new version of the system software received from the upgrade server; and a second backup module, configured to store The lock network information of the new version of the system software; the upgrade control module is configured to obtain the lock network version identifier of the new version system software and the lock network version identifier of the currently applied system software according to the location information of the pre-stored lock network version identifier, and confirm The lock network version identifier of the currently applied system software and the lock network
  • the size of the second backup module is the same as the storage space of the lock network information in the upgrade server.
  • the second backup module is a storage space for setting a location and a size in the first backup module;
  • the second application module is a storage space for setting a location and a size in the first application module of the first application module.
  • the location and size of the second backup module in the first backup module corresponds to the location and size of the second application module in the first application module.
  • the mobile terminal further includes: a request sending module, configured to receive a system software update notification sent by the upgrade server, and send the upgrade server to the upgrade server after the user determines the upgrade Send a download request.
  • an upgrade server including: a first storage module, configured to store a non-lock network information part in a new version of the system software of the mobile terminal; and a second storage module, configured to store a new a lock network information of the version system software, the lock network information includes a lock network version identifier and redundant data, wherein the lock network version identifier and the redundant data are mixed; and a sending module, configured to send a new version to the mobile terminal System software, the new version of the system software including the lock network information.
  • the upgrade server further includes: an obtaining module, where the location information of the home lock network version identifier is obtained by acquiring the lock network version identifier from the second storage module, and determining the lock network version identifier The new version of the system software is transmitted to the mobile terminal when it coincides with a preset standard lock network version identifier.
  • the sending module is further configured to: send a software update notification to the mobile terminal, and send the new version system software to the mobile terminal after receiving the download request returned by the mobile terminal.
  • an upgrade system for a mobile terminal comprising the above mobile terminal and an upgrade server.
  • the embodiment of the present invention provides a method and system for upgrading a mobile terminal software, and a mobile terminal and an upgrade server.
  • FIG. 1 is a schematic diagram of memory partitioning in an upgrade server and a mobile terminal according to an embodiment of the present invention
  • FIG. 2 is a schematic flowchart of a mobile terminal performing upgrade according to an embodiment of the present invention
  • FIG. 3 is a schematic structural diagram of a mobile terminal according to an embodiment of the present invention
  • the mobile terminal is often only allowed to use the operator's network, and the operator usually ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇ ⁇
  • Embodiments of the present invention provide a method and system for upgrading a mobile terminal system software, and a mobile terminal and an upgrade server.
  • a backup is additionally set in the mobile terminal.
  • the module, the application module and the backup module may be two memories, or may be two partitions of one memory.
  • the mobile terminal downloads the new version of the system software and stores it in the backup module, and then uses the lock network version after the danger certificate.
  • the new version of the system software replaces the system software of the current application.
  • the application module and the backup module in the mobile terminal are respectively divided into two modules, wherein: the application module The first application module is configured to store the non-lock network information part of the system software currently applied by the mobile terminal, and the second application module is configured to store the lock network of the system software currently applied by the mobile terminal.
  • the lock network information part of the version identifier; the backup module includes a first backup module and a second backup module, the first backup module is configured to store the non-lock network information part of the newly downloaded system software, and the second backup module is configured to store the newly downloaded The part of the system software that contains the lock network information of the lock network version identifier.
  • the application module and the backup module in the mobile terminal are respectively divided into two modules, which ensures that the lock network version identifier is not rewritten when the system software is running.
  • the new version of the system software including the lock network version identifier is stored in the upgrade server, and the memory of the upgrade server is also divided into a first storage module and a second storage module, wherein the second storage module is configured to store the lock network information.
  • the lock network information includes a lock network version identifier, and the lock network information is stored by a separate storage module, so that part of the storage lock network information is not managed by the file system.
  • the storage space and format of the second storage module, the second backup module, and the second application module are completely the same.
  • the mobile terminal can directly mark the lock version of the new version of the system software.
  • the content stored in the second storage module can be completely copied to the second backup module.
  • the lock network version identifier is stored in a specific location in the second storage module.
  • the lock network version identifier is also stored in the same specific location in the second backup module, only The location information of the specific location is known only in the upgrade server and the legitimate mobile terminal.
  • the upgrade server and the legitimate mobile terminal obtain the lock network version identifier, only a certain length of data is read according to the location information, and the read data is the lock network version identifier.
  • the larger the part used to store the lock network version identifier the more redundant data is stored. The less likely it is that an illegal attacker finds the lock network version identifier through improper means, so the more the lock network version identifier is stored.
  • the space of the last 5K ⁇ 15K in the memory can be divided into a storage space for storing the lock network information including the lock network version identifier.
  • the last 8K is divided into the second storage module, and the second storage module can be divided into 800 segments, each segment is 100 bytes, and the lock network version is stored in the kth segment.
  • Identification other segments can store some data arbitrarily, and the second application module and the second backup module in the mobile terminal also perform the same division and storage, so that the parameter k can be used as the location information by the upgrade server and the legal mobile device.
  • the terminal saves, and reads the content of the kth segment as the lock network version identifier by the parameter k and the length of each segment, and the attacker cannot know the parameter k, so it is difficult to find the lock network version identifier in a large number of data, Replacing the lock version, and thus the new version of the software cannot be replaced, thus ensuring the security of the mobile terminal software upgrade.
  • the mobile terminal downloads the new version of the system software
  • the non-locked network information part of the new version of the system software downloaded from the first storage module of the upgrade server is stored in the divided first backup module, and the second storage is downloaded from the upgrade server.
  • the lock network information stored in the module is stored in the second backup module, and the lock network information includes the lock network version identifier and the redundant data.
  • the mobile terminal After the download is completed, the mobile terminal reads the lock network version at a specific position of the second backup module. The identifier is compared with the lock version identifier in a specific location of the second application module. When the two are consistent, it is proved that the downloaded new version of the system software has not been tampered with, and the newly downloaded system software is allowed to be replaced. System software. In the software replacement process, the lock network information part may or may not be replaced.
  • the memory in the upgrade server in the embodiment of the present invention is divided into a first storage module 101 and a second storage module 102, and the first storage module 101 is configured to store a new version to be downloaded.
  • the non-locking network information part of the system software the second storage module 102 is configured to store the lock network information, wherein the specific location is the lock network version identifier; likewise, in the mobile terminal, the application module of the mobile terminal is divided into the first application module 111 and The second application module 112 is divided into two parts: the backup storage module of the mobile terminal is divided into a first backup module 121 and a second backup module 122.
  • the mobile terminal stores the content in the first storage module 101 in the first backup module 121.
  • the content in the second storage module 102 is stored in the second backup module 122, and the mobile terminal acquires the lock network version identifier from the specific location in the second backup module 122 according to the set location information, and the second application.
  • the lock network version identifiers obtained in the specific location of the module 112 are compared. When the two are consistent, the system software portion of the first application module 111 is replaced by the new version of the system software in the first backup module 121, and the system software is completed.
  • the upgrade may also replace the lock network in the second application module 122 by using the lock network information in the second backup module 122. Interest rates, the new version of the system software that is used to download the entire software system to replace the currently applied.
  • the method for upgrading the mobile terminal software includes the following steps: Step 4: S4, the upgrade server sends the mobile terminal system software to the mobile terminal, where the system software includes the first storage.
  • Step S202 the mobile terminal upgrades the new version of the system software in the first storage module sent by the server
  • the non-lock network information part is stored in the first backup module
  • the lock network information in the second storage module sent by the upgrade server is stored in the second backup module.
  • Step S203 The mobile terminal acquires the second backup module according to the set location information. In the step S204, it is determined that the lock network version identifier in the second backup module is consistent with the lock network version identifier of the system software being applied, and when the two lock network version identifiers are consistent, step S205 is performed.
  • step S206 is performed; step S205, immediately or restarting in the mobile terminal Non-network locking information of the system software, network locking information of a non-partial replacement of the new version of the system software using the first backup module is stored in the application; step S206, immediately exit the upgrade, but you can delete data backup module. That is, when the lock network version identifier in the second backup module is inconsistent with the lock network version identifier of the system software being applied, it proves that the downloaded system software may have been tampered with, so the upgrade is exited, and the first backup module is no longer used.
  • the non-lock network information part of the new version of the system software stored in the system replaces the non-lock network information part of the system software being applied, only when the lock network version identifier in the second backup module is consistent with the lock network version identifier of the system software being applied.
  • the newly downloaded system software can be used to replace the system software being applied, and the guaranteed lock version of the mobile terminal is not replaced during the upgrade.
  • the system software lock network version is further prevented from being tampered with, and the upgrade server stores the unlocked network information part of the new version of the system software in the first storage module and the lock stored in the second storage module.
  • the method further includes: upgrading the server to perform the proofreading of the lock network version: the upgrade server obtains the lock network version identifier from the set location of the second storage module according to the set location information, and determines the lock network version identifier. Whether it is consistent with the preset standard lock network version identifier, if it is determined to be consistent, the non-lock network information portion of the new version system software in the first storage module and the lock network information stored in the second storage module are sent to the mobile terminal.
  • the mobile terminal software upgrade method in the embodiment of the present invention stores the non-lock network information part and the second storage module of the new version of the system software in the first storage module.
  • the method further includes: the upgrade server sends a system software update notification to the mobile terminal, and after the user determines the upgrade, the mobile terminal sends a download request to the upgrade server.
  • the upgrade server sends a system software update notification to the mobile terminal
  • the mobile terminal sends a download request to the upgrade server.
  • an embodiment of the present invention provides a mobile terminal software upgrade system, including an upgrade server and a mobile terminal, where: an upgrade server is configured to send a non-lock network information part of the new version system software in the first storage module and The lock network information of the new version of the system software stored in the second storage module, the lock network information stored in the second storage module includes a lock network version identifier and redundant data for protecting the lock network version identifier; the mobile terminal is configured to receive Upgrade the new version of the system in the first storage module sent by the server The non-locking network information part of the piece and the lock net information stored in the second storage module, and storing the software in the first backup module, storing the content stored in the second storage module in the second backup module, and according to the setting The location information of the lock network version identifier in the second backup module reads the lock network version identifier in the second backup module, and compares with the lock network version identifier of the system software being applied, when the two lock network version identifiers are consistent.
  • the non-locking network information part of the new version of the system software stored in the first backup module is allowed to replace the non-locked network information part of the system software being applied.
  • the upgrade server may not include the lock network version identifier in the lock network information and send it to the mobile terminal, or may directly send or retrieve other protection means to send.
  • the embodiment of the present invention further provides a mobile terminal, as shown in FIG. 3, including a receiving module 302, an upgrade control module 301, a first application module 311, a second application module 312, a first backup module 321, and a second backup module.
  • the receiving module 302 is configured to receive a new version of the system software sent by the upgrade server, and send the new version of the system software to the first backup module and the second backup module for storage; wherein, the new version of the system software includes the lock network information,
  • the lock network information includes a lock network version identifier;
  • the first application module 311 is configured to store the non-lock network information part of the current application system software;
  • the second application module 312 is configured to store the lock network information of the current application system software;
  • a backup module 321 is configured to store the non-lock network information part of the new version of the system software in the first storage module of the upgrade server received by the receiving module 302.
  • the second backup module 322 is configured to receive the new version by the storage receiving module 302.
  • Locking network information of the system software an upgrade control module 301, for identifying location information according to a pre-stored lock network version
  • the data of the corresponding location in the second backup module 322 is taken and compared with the data of the location in the second application module 312.
  • the network information part replaces the non-lock network information part of the system software in the first application module 311, and once it is determined that the state of the mobile terminal satisfies the replacement condition, the system software is replaced, for example, the system software can be performed when the mobile terminal is restarted.
  • the lock network information in the second application module may be replaced by the lock network information in the second backup module 322, thereby further ensuring the security of the lock network version identifier.
  • the size of the second backup module and the size of the second application module are both related to the upgrade server.
  • the storage space of the lock network information is the same.
  • the location and size of the second backup module in the first backup module corresponds to the location and size of the second application module in the first application module.
  • the mobile terminal may further include a request sending module, configured to receive a system software update notification sent by the upgrade server, and send a download request to the upgrade server after the user determines the upgrade.
  • the embodiment of the present invention further provides an upgrade server, as shown in FIG. 4, including a first storage module 401, a second storage module 402, and a sending module 403, where: the first storage module 401 is configured to store a new version of system software.
  • the second storage module 402 is configured to store lock network information including a lock version identifier of the new version system software; wherein, the lock network information includes a lock network version identifier and redundant data, and a lock network version identifier and
  • the redundant data mixing and sending module 403 is configured to send, to the mobile terminal, the non-lock network information part of the new version system software in the first storage module 401 and the lock network information of the new version system software stored in the second storage module 402.
  • the upgrade server further includes an obtaining module, where the location information is determined according to the set lock network version from the set location of the second storage module 402. Obtaining a lock network version identifier, and sending the non-lock network information part of the new version system software in the first storage module 401 to the sending module 403, when determining that the lock network version identifier is consistent with the preset standard lock network lock network identifier
  • the sending module 403 is further configured to: when the non-lock network information part of the system software in the first storage module 401 is updated, send a system software update notification to the mobile terminal. After receiving the download request returned by the mobile terminal, the non-lock network information part of the new version system software in the first storage module 401 and the lock network information stored in the second storage module 402 are sent to the mobile terminal.
  • An embodiment of the present invention provides a method for upgrading a mobile terminal software, and a mobile terminal and a server. When the mobile terminal performs a software upgrade, the downloaded new version of the system software is stored in the backup module, and the mobile terminal only records the stored storage location.

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Databases & Information Systems (AREA)
  • Mobile Radio Communication Systems (AREA)
  • Stored Programmes (AREA)

Abstract

The present invention provides a mobile terminal software upgrade method, system, mobile terminal and server thereof which relates to wireless communication technology. The mobile terminal software upgrade method includes: the mobile terminal obtains a new version of system software which includes a lock network version identifier from the upgrade server; the mobile terminal obtains the lock network version identifier from said new version of system software, and confirms that the lock network version identifier of the system software applied currently is consistent with the lock network version identifier of said new version of system software, the mobile terminal upgrades the system software applied currently to said new version of system software. Thus the improvement of the security of the software upgrade performed by the mobile terminal is achieved, and the mobile terminal software version being replaced by a non-lock network version during upgrade is prevented.

Description

一种移动终端 4欠件的升级方法、 系统及移动终端和月良务器 技术领域 本发明涉及无线通信技术, 尤其涉及一种移动终端软件的升级方法、 系 统及移动终端和艮务器。 背景技术  The present invention relates to wireless communication technologies, and in particular, to a method, system, and mobile terminal and server for upgrading mobile terminal software. Background technique
WiMAX ( Worldwide Interoperability for Microwave Access, 微波存耳又全 球互通) 是一项 WMAN ( Wireless Metropolitan Area Network, 无线城 i或网) 技术, 是针对微波和毫米波频段提出的一种新的空中接口标准。 可用于将 802.11a无线接入热点连接到互联网,也可连结公司与家庭等环境至有线骨千 线路, 还可以作为线缆和 DSL 的无线扩展技术, 从而实现无线宽带接入。 WiMAX技术目前发展非常迅速, 越来越受到各国的高度重视, 在美国、 韩 国已经大规模商用。 WiMAX ( Worldwide Interoperability for Microwave Access) is a WMAN (Wireless Metropolitan Area Network) technology, a new air interface standard for microwave and millimeter wave bands. It can be used to connect 802.11a wireless access hotspots to the Internet, to connect corporate and home environments to wired bones, and as a wireless extension technology for cable and DSL for wireless broadband access. WiMAX technology is currently developing very rapidly, and it is receiving more and more attention from all countries. It has been commercialized on a large scale in the United States and South Korea.
WiMAX终端一般由运营商定制, 通过补贴发给用户, 所以运营商为确 保自身利益, 对终端产品有锁网要求, 使该终端的网络参数只能是本运营商 提供的参数,移动终端会针对这个要求进行参数判断, 以符合运营商的要求。 为更加方便地为用户提供移动终端软件升级月艮务, 目前普遍釆用的是 OTA(Over the Air,空中接口)的方式对移动终端软件进行升级。而在使用 OTA 方式时, 升级服务器容易被攻击者攻击, 进而被替换软件版本, 即可能导致 移动终端新下载的软件版本是被攻击者替换后的非锁网版本, 从而无法保证 移动终端软件升级的安全性。 发明内容 本发明实施例提供一种移动终端软件的升级方法、系统及移动终端和服 务器, 以提高移动终端进行软件升级的安全性。 才艮据本发明的一个方面, 提供了一种移动终端软件的升级方法, 包括: 移动终端从升级服务器获取新版本系统软件, 所述新版本系统软件包括锁网 版本标识; 移动终端从所述新版本系统软件中获取所述锁网版本标识, 并确 认当前所应用的系统软件的锁网版本标识和所述新版本系统软件的锁网版本 标识一致; 移动终端将当前系统软件升级为所述新版本系统软件。 进一步地, 所述移动终端从升级月艮务器获取新版本系统软件包括: 升级 月艮务器从新版本系统软件中获取锁网版本标识; 升级月艮务器确定新版本系统 软件的锁网版本标识与预先设置的标准锁网版本标识一致; 升级月艮务器将新 版本系统软件发送给移动终端。 进一步地, 所述升级方法还包括: 在所述新版本系统软件中设置冗余数 据, 并将所述锁网版本标识与所述冗余数据混合。 进一步地, 在所述移动终端从升级月艮务器获取新版本系统软件之前, 还 包括: 设置所述新版本系统软件的锁网版本标识在所述新版本系统软件中的 位置和大小, 使得与所述移动终端当前所应用的系统软件的锁网版本标识在 所述当前所应用的系统软件中的位置和大小相对应。 根据本发明的另一方面, 还提供了一种移动终端, 包括: 接收模块, 用 于接收升级服务器发送的新版本系统软件, 并将所述新版本系统软件发送给 第一备份模块和第二备份模块存储; 其中, 所述新版本系统软件包括锁网信 息, 所述锁网信息包括锁网版本标识; 第一应用模块, 用于存储当前应用的 系统软件的非锁网信息部分; 第二应用模块, 用于存储当前应用的系统软件 的锁网信息; 第一备份模块, 用于存储从升级服务器中接收到的新版本系统 软件的非锁网信息部分; 第二备份模块, 用于存储新版本系统软件的锁网信 息; 升级控制模块, 用于根据预先存储的锁网版本标识的位置信息获取新版 本系统软件的锁网版本标识和当前所应用的系统软件的锁网版本标识, 确认 当前所应用的系统软件的锁网版本标识和所述新版本系统软件的锁网版本标 识一致时, 将当前系统软件升级为所述新版本系统软件。 进一步地,第二备份模块的大小与所述升级服务器中锁网信息的存储空 间的大小相同。 进一步地,所述第二备份模块为所述第一备份模块中设定位置和大小的 存储空间; 第二应用模块为所述第一应用模块第一应用模块中设定位置和大 小的存储空间; 所述第二备份模块在所述第一备份模块中的位置和大小, 与 所述第二应用模块在所述第一应用模块中的位置和大小相对应。 进一步地, 所述移动终端还包括: 请求发送模块, 用于接收所述升级月艮 务器发送的系统软件更新通知, 并在用户确定升级后, 向所述升级月艮务器发 送下载请求。 根据本发明的另一方面, 还提供了一种升级服务器, 包括: 第一存储模 块, 用于存储移动终端的新版本系统软件中的非锁网信息部分; 第二存储模 块, 用于存储新版本系统软件的锁网信息, 所述锁网信息包括锁网版本标识 和冗余数据,, 所述锁网版本标识和所述冗余数据相混合; 发送模块, 用于向 移动终端发送新版本系统软件, 所述新版本系统软件包括所述锁网信息。 进一步地, 所述升级月艮务器还包括: 获取模块, 用于 居锁网版本标识 的位置信息从所述第二存储模块获取所述锁网版本标识, 并在确定所述锁网 版本标识与预先设置的标准锁网版本标识一致时, 向所述移动终端发送所述 新版本系统软件。 进一步地, 所述发送模块还用于, 向所述移动终端发送软件更新通知, 并在接收到所述移动终端返回的下载请求后, 向所述移动终端发送所述新版 本系统软件。 根据本发明的另一方面, 还提供了一种移动终端的升级系统, 包括上述 的移动终端和升级艮务器。 本发明实施例提供一种移动终端软件的升级方法、系统及移动终端和升 级服务器,在移动终端进行软件升级时,将下载的系统软件存储在备份模块, 当移动终端才艮据设定的存储位置读取锁网版本标识, 并进行锁网版本标识的 校验无误后, 再将所应用的系统软件替换为新下载的系统软件, 以提高移动 终端进行软件升级的安全性, 防止移动终端的软件版本在升级时被替换为非 锁网版本。 附图说明 图 1为本发明实施例中升级服务器和移动终端中存储器划分示意图; 图 2为本发明实施例中移动终端进行升级的流程示意图; 图 3为本发明实施例提供的移动终端的结构示意图; 图 4为本发明实施例提供的升级服务器的结构示意图。 具体实施方式 用户所使用的一些移动终端是由运营商免费或者仅收取部分费用下发 的, 这样为保护运营商的利益, 该移动终端往往仅被允许使用该运营商的网 络, 运营商通常釆用对该移动终端进行锁网的方式来实现这样的限制, 在移 动终端使用运营商的网络时, 需要根据锁网版本对网络参数进行判断, 当网 络参数符合运营商的锁网要求时, 才能够接入该网络, 因此在进行终端系统 软件升级时, 需要保护该系统软件的锁网版本标识, 防止其被非法攻击者篡 改。 本发明实施例提供一种移动终端系统软件的升级方法、系统及移动终端 和升级月艮务器, 除了移动终端中存储当前应用的系统软件的应用模块, 在移 动终端中,还另外设置了备份模块,应用模块和备份模块可以为两个存储器, 也可以是一个存储器的两个分区, 移动终端下载新版本系统软件后存储在备 份模块中, 在经过锁网版本的 -险证后再使用该新版本系统软件来替换当前应 用的系统软件。 进一步, 为了保证所存储的锁网版本标识不影响系统软件的运行, 可以 将锁网版本标识单独存储, 因此, 移动终端中的应用模块和备份模块分别被 分为两个模块, 其中: 应用模块包括第一应用模块和第二应用模块,第一应用模块用来存储移 动终端当前应用的系统软件的非锁网信息部分, 第二应用模块用来存储移动 终端当前应用的系统软件的包含锁网版本标识的锁网信息部分; 备份模块包括第一备份模块和第二备份模块,第一备份模块用来存储新 下载的系统软件的非锁网信息部分, 第二备份模块用来存储新下载的系统软 件的包含锁网版本标识的锁网信息部分。 这样, 移动终端中的应用模块和备份模块分别被分为两个模块, 保证了 在系统软件运行时, 不会使得锁网版本标识被改写。 同样, 包含锁网版本标识的新版本系统软件存储于升级月艮务器中,升级 服务器的存储器也划分为第一存储模块和第二存储模块, 其中, 第二存储模 块用于存储锁网信息, 该锁网信息包括锁网版本标识, 将锁网信息釆用单独 的存储模块存储, 使得存储锁网信息的部分不受文件系统的管理。 设定第二存储模块、第二备份模块和第二应用模块的存储空间和格式完 全一致, 在进行新版本系统软件下载时, 对于新版本系统软件的锁网版本标 识, 移动终端可以直接将第二存储模块中存储的内容完全复制到第二备份模 块中即可。 设定锁网版本标识存储在第二存储模块中的特定位置, 复制后, 因为完 全复制了第二存储模块的内容, 所以锁网版本标识同样存储在第二备份模块 中相同的特定位置, 只有升级服务器和合法的移动终端中才知道该特定位置 的位置信息。 升级艮务器和合法的移动终端获取锁网版本标识时, 只需才艮据 该位置信息读取一定长度的数据, 所读取的数据即为锁网版本标识。 用于存储锁网版本标识的部分越大, 所存储的冗余数据就越多, 越不容 易被非法攻击者通过非正当的手段找到锁网版本标识, 因此所存储的锁网版 本标识就越安全, 可以将存储器中最后 5K〜15K大小的空间划分为存储包含 锁网版本标识的锁网信息的存储空间。 例如若使用 Flash存储器作为升级服务器的存储器, 将其最后 8K划分 为第二存储模块, 可以将该第二存储模块分成 800段, 每段 100字节, 在其 中的第 k段中存储锁网版本标识, 其他段随意存储一些数据即可, 移动终端 中的第二应用模块和第二备份模块也进行同样的划分和存储, 这样将参数 k 作为位置信息可以由升级月艮务器和合法的移动终端保存, 并通过参数 k和每 段长度读取第 k段的内容作为锁网版本标识, 而攻击者无法得知参数 k, 所 以 4艮难在众多的数据中找出锁网版本标识, 无法替换锁网版本, 进而无法替 换新版本软件, 从而保证了移动终端软件升级的安全性。 当移动终端下载新版本系统软件时 ,将从升级服务器的第一存储模块下 载的新版本系统软件的非锁网信息部分存储在所划分的第一备份模块中, 同 时从升级服务器下载第二存储模块中存储的锁网信息, 并存储在第二备份模 块中, 锁网信息中包括锁网版本标识和冗余数据, 下载完毕后, 移动终端在 第二备份模块的特定位置读取锁网版本标识, 并和第二应用模块的特定位置 中的锁网版本标识进行比较, 当二者一致时, 则证明所下载的新版本系统软 件是未经过篡改的, 允许新下载的系统软件替换正在应用的系统软件。 在软 件替换过程中, 锁网信息部分可以替换也可以不作替换。 如图 1所示,本发明实施例中的升级服务器中的存储器分成了第一存储 模块 101和第二存储模块 102 , 第一存储模块 101用于存储待下载的新版本 系统软件的非锁网信息部分, 第二存储模块 102用于存储锁网信息, 其中的 特定位置为锁网版本标识; 同样, 在移动终端中, 移动终端的应用模块分成 第一应用模块 111和第二应用模块 112两部分, 移动终端的备份存储模块分 成第一备份模块 121和第二备份模块 122两部分, 下载时, 移动终端将第一 存储模块 101中的内容存储在第一备份模块 121中, 将第二存储模块 102中 的内容存储在第二备份模块 122中, 移动终端再根据设定的位置信息从第二 备份模块 122中的特定位置获取锁网版本标识, 并与第二应用模块 112特定 位置中获取的锁网版本标识比较, 当二者一致时, 使用第一备份模块 121中 的新版本系统软件部分替换第一应用模块 111 中正在应用的系统软件部分, 完成系统软件的升级, 也可以同时使用第二备份模块 122中的锁网信息替换 第二应用模块 122中的锁网信息, 即用下载的新版本系统软件整体替换当前 所应用的系统软件。 如图 2所示,本发明实施例提供的移动终端软件的升级方法包括如下步 骤: 步 4聚 S201、 升级月艮务器向移动终端发送移动终端系统软件, 该系统软 件包括存储于第一存储模块的新版本软件的非锁网信息部分, 和存储于第二 存储模块的包括锁网版本标识的锁网信息; 步骤 S202、 移动终端将升级服务器发送的第一存储模块中的新版本系 统软件的非锁网信息部分存储在第一备份模块, 将升级服务器发送的第二存 储模块中的锁网信息存储在第二备份模块; 步骤 S203、 移动终端根据设定的位置信息获取第二备份模块中的锁网 版本标识; 步骤 S204、 判断第二备份模块中的锁网版本标识是否与正在应用的系 统软件的锁网版本标识一致, 当两个锁网版本标识一致时, 执行步骤 S205 , 当两个锁网版本标识不一致时, 执行步骤 S206; 步骤 S205、 立即或者在移动终端重启后, 使用第一备份模块中存储的 新版本系统软件的非锁网信息部分替换正在应用的系统软件的非锁网信息部 分; 步骤 S206、 立即退出升级, 同时可以删除备份模块中的数据。 即,当第二备份模块中的锁网版本标识与正在应用的系统软件的锁网版 本标识不一致时 ,就证明所下载的系统软件可能已经被篡改, 所以退出升级, 不再使用第一备份模块中存储的新版本系统软件的非锁网信息部分替换正在 应用的系统软件的非锁网信息部分, 只有当第二备份模块中的锁网版本标识 与正在应用的系统软件的锁网版本标识一致时, 说明所下载的新版本系统软 件的锁网版本正确,可以使用新下载的系统软件来替换正在应用的系统软件, 进而移动终端的保证锁网版本不在升级时被替换。 进一步, 为减少移动终端不必要的下载, 进一步防止系统软件锁网版本 被篡改, 在升级服务器将第一存储模块中的新版本系统软件的非锁网信息部 分以及第二存储模块中存储的锁网信息发送给移动终端前, 还包括升级服务 器进行锁网版本校对的步骤: 升级服务器根据设定的位置信息从第二存储模 块的设定位置中获取锁网版本标识, 并确定锁网版本标识是否与预先设置的 标准锁网版本标识一致, 如果确定一致, 再将第一存储模块中的新版本系统 软件的非锁网信息部分以及第二存储模块中存储的锁网信息发送给移动终 端。 为进一步使得用户对是否升级系统软件有选择权,本发明实施例的移动 终端软件升级方法中, 在将第一存储模块中的新版本系统软件的非锁网信息 部分以及第二存储模块中存储的锁网信息发送给移动终端前, 还包括: 升级 月艮务器向移动终端发送系统软件更新通知, 移动终端在用户确定升级后, 向 升级服务器发送下载请求。 对于 WiMAX、 CDMA, GSM、 PHS、 WCDMA、 TD-SCDMA、 LTE、 单模 /多模无线接入终端产品均可以使用上述方法进行升级,从而保持锁网版 本。 相应的, 本发明实施例提供了一种移动终端软件升级系统, 包括升级服 务器和移动终端, 其中: 升级服务器,用于发送第一存储模块中的新版本系统软件的非锁网信息 部分以及第二存储模块中存储的新版本系统软件的锁网信息, 第二存储模块 中存储的锁网信息中包括锁网版本标识和用于保护锁网版本标识的冗余数 据; 移动终端 ,用于接收升级月艮务器发送的第一存储模块中的新版本系统软 件的非锁网信息部分以及第二存储模块中存储的锁网信息, 并将软件存储在 第一备份模块, 将第二存储模块中存储的内容存储在第二备份模块, 以及根 据设定的锁网版本标识在第二备份模块中的位置信息读取第二备份模块中的 锁网版本标识, 并与正在应用的系统软件的锁网版本标识进行比较, 在两个 锁网版本标识一致时, 允许第一备份模块中存储的新版本系统软件的非锁网 信息部分替换正在应用的系统软件的非锁网信息部分。 当然,升级服务器也可以不将锁网版本标识包含在锁网信息中发送给移 动终端, 也可以直接发送或者釆取其它保护手段来发送。 本发明实施例还相应提供一种移动终端, 如图 3 所示, 包括接收模块 302 , 升级控制模块 301、 第一应用模块 311、 第二应用模块 312、 第一备份 模块 321和第二备份模块 322 , 其中: 接收模块 302 , 用于接收升级服务器发送的新版本系统软件, 并将新版 本系统软件发送给第一备份模块和第二备份模块存储; 其中, 新版本系统软 件包括锁网信息, 锁网信息包括锁网版本标识; 第一应用模块 311 , 用于存储当前应用的系统软件的非锁网信息部分; 第二应用模块 312 , 用于存储当前应用的系统软件的锁网信息; 第一备份模块 321 , 用于存储接收模块 302接收到的升级服务器的第一 存储模块中的新版本系统软件的非锁网信息部分; 第二备份模块 322 , 用于存储接收模块 302接收到新版本系统软件的锁 网信息; 升级控制模块 301 , 用于根据预先存储的锁网版本标识的位置信息读取 第二备份模块 322中对应位置的数据, 并与第二应用模块 312中该位置的数 据进行比对, 当二者一致时, 准备使用第一备份模块 321中的新版本系统软 件的非锁网信息部分替换第一应用模块 311 中的系统软件的非锁网信息部 分, 一旦判断移动终端的状态满足替换条件, 即进行系统软件的替换, 例如, 可以在移动终端重新启动时进行系统软件的替换, 在替换系统软件的同时, 还可以使用第二备份模块 322 中的锁网信息替换第二应用模块中的锁网信 息, 从而进一步保证锁网版本标识的安全。 其中,第二备份模块的大小和第二应用模块的大小均与所述升级服务器 中所述锁网信息的存储空间大小相同。 第二备份模块在第一备份模块中的位 置和大小, 与第二应用模块在第一应用模块中的位置和大小相对应。 进一步, 为使得用户对是否升级系统软件有选择权, 移动终端中还可以 包括请求发送模块, 用于接收升级服务器发送的系统软件更新通知, 并在用 户确定升级后, 向升级服务器发送下载请求。 本发明实施例还提供一种升级服务器, 如图 4所示, 包括第一存储模块 401、 第二存储模块 402和发送模块 403 , 其中: 第一存储模块 401 , 用于存储新版本系统软件的非锁网信息部分; 第二存储模块 402 , 用于存储新版本系统软件的包括锁网版本标识的锁 网信息; 其中, 锁网信息包括锁网版本标识和冗余数据, 锁网版本标识和冗 余数据相混合 发送模块 403 , 用于向移动终端发送第一存储模块 401中的新版本系统 软件的非锁网信息部分以及第二存储模块 402中存储的新版本系统软件的锁 网信息。 进一步, 为减少移动终端不必要的下载, 进一步防止系统软件被篡改, 升级服务器中还包括获取模块, 用于根据设定的锁网版本标识的位置信息从 第二存储模块 402的设定位置中获取锁网版本标识, 并在确定锁网版本标识 与预先设置的标准锁网锁网版本标识一致时, 向发送模块 403发送第一存储 模块 401中的新版本系统软件的非锁网信息部分以及第二存储模块 402中存 储的锁网信息。 更进一步, 为使得用户对是否升级系统软件具有选择权, 发送模块 403 还用于, 在第一存储模块 401中的系统软件的非锁网信息部分有更新时, 向 移动终端发送系统软件更新通知, 并在接收到移动终端返回的下载请求后, 向移动终端发送第一存储模块 401中的新版本系统软件的非锁网信息部分以 及第二存储模块 402中存储的锁网信息。 本发明实施例提供一种移动终端软件的升级方法以及移动终端和服务 器,在移动终端进行软件升级时,将下载的新版本系统软件存储在备份模块, 当移动终端才艮据设定的存储位置读取锁网版本标识, 并进行锁网版本标识的 校验无误后, 再将所应用的系统软件替换为新下载的系统软件, 以提高移动 终端进行软件升级的安全性, 防止移动终端的软件版本在升级时被替换为非 锁网版本。 显然,本领域的技术人员可以对本发明实施例进行各种改动和变型而不 脱离本发明的精神和范围。 这样, 倘若本发明的这些修改和变型属于本发明 权利要求及其等同技术的范围之内, 则本发明也意图包含这些改动和变型在 内。 The WiMAX terminal is generally customized by the operator and sent to the user through subsidies. Therefore, in order to ensure its own interests, the operator has a lock network requirement for the terminal product, so that the network parameter of the terminal can only be the parameter provided by the operator, and the mobile terminal will target This requirement is parameterized to meet the operator's requirements. In order to provide users with more convenient mobile terminal software upgrades, the current popular use of OTA (Over the Air) is to upgrade the mobile terminal software. When the OTA mode is used, the upgrade server is vulnerable to attack by an attacker, and the software version is replaced. That is, the newly downloaded software version of the mobile terminal may be a non-locked network version replaced by the attacker, thereby failing to ensure the mobile terminal software upgrade. Security. SUMMARY OF THE INVENTION Embodiments of the present invention provide a method, a system, and a mobile terminal and a server for upgrading a mobile terminal software, so as to improve security of a software upgrade performed by the mobile terminal. According to an aspect of the present invention, a method for upgrading a mobile terminal software is provided, including: a mobile terminal acquiring a new version of system software from an upgrade server, the new version system software including a lock network version identifier; Obtaining the lock network version identifier in the new version system software, and confirming the lock network version identifier of the currently applied system software and the lock network version of the new version system software The identity is consistent; the mobile terminal upgrades the current system software to the new version of the system software. Further, the acquiring, by the mobile terminal, the new version of the system software from the upgrade server includes: upgrading the server to obtain the lock version identifier from the new version system software; and upgrading the server to determine the lock version of the new version of the system software The identifier is consistent with the preset standard lock network version identifier; the upgrade server sends the new version system software to the mobile terminal. Further, the upgrading method further includes: setting redundant data in the new version system software, and mixing the lock net version identifier with the redundant data. Further, before the mobile terminal acquires the new version of the system software from the upgrade server, the method further includes: setting a location and a size of the lock network version identifier of the new version system software in the new version system software, so that The lock network version identifier of the system software currently applied by the mobile terminal corresponds to the location and size of the currently applied system software. According to another aspect of the present invention, a mobile terminal is provided, including: a receiving module, configured to receive a new version of system software sent by an upgrade server, and send the new version system software to a first backup module and a second The backup module stores; wherein, the new version of the system software includes lock network information, the lock network information includes a lock network version identifier; the first application module is configured to store the non-lock network information portion of the current application system software; An application module, configured to store lock network information of the current application system software; a first backup module, configured to store a non-lock network information part of the new version of the system software received from the upgrade server; and a second backup module, configured to store The lock network information of the new version of the system software; the upgrade control module is configured to obtain the lock network version identifier of the new version system software and the lock network version identifier of the currently applied system software according to the location information of the pre-stored lock network version identifier, and confirm The lock network version identifier of the currently applied system software and the lock network version of the new version system software When the identifiers are consistent, the current system software is upgraded to the new version of the system software. Further, the size of the second backup module is the same as the storage space of the lock network information in the upgrade server. Further, the second backup module is a storage space for setting a location and a size in the first backup module; the second application module is a storage space for setting a location and a size in the first application module of the first application module. The location and size of the second backup module in the first backup module corresponds to the location and size of the second application module in the first application module. Further, the mobile terminal further includes: a request sending module, configured to receive a system software update notification sent by the upgrade server, and send the upgrade server to the upgrade server after the user determines the upgrade Send a download request. According to another aspect of the present invention, an upgrade server is further provided, including: a first storage module, configured to store a non-lock network information part in a new version of the system software of the mobile terminal; and a second storage module, configured to store a new a lock network information of the version system software, the lock network information includes a lock network version identifier and redundant data, wherein the lock network version identifier and the redundant data are mixed; and a sending module, configured to send a new version to the mobile terminal System software, the new version of the system software including the lock network information. Further, the upgrade server further includes: an obtaining module, where the location information of the home lock network version identifier is obtained by acquiring the lock network version identifier from the second storage module, and determining the lock network version identifier The new version of the system software is transmitted to the mobile terminal when it coincides with a preset standard lock network version identifier. Further, the sending module is further configured to: send a software update notification to the mobile terminal, and send the new version system software to the mobile terminal after receiving the download request returned by the mobile terminal. According to another aspect of the present invention, there is also provided an upgrade system for a mobile terminal, comprising the above mobile terminal and an upgrade server. The embodiment of the present invention provides a method and system for upgrading a mobile terminal software, and a mobile terminal and an upgrade server. When the mobile terminal performs software upgrade, the downloaded system software is stored in the backup module, and the mobile terminal performs the storage according to the setting. After the location lock is read, and the verification of the lock version identifier is correct, the applied system software is replaced with the newly downloaded system software, so as to improve the security of the mobile terminal for software upgrade and prevent the mobile terminal from being The software version was replaced with a non-locked network version when it was upgraded. 1 is a schematic diagram of memory partitioning in an upgrade server and a mobile terminal according to an embodiment of the present invention; FIG. 2 is a schematic flowchart of a mobile terminal performing upgrade according to an embodiment of the present invention; FIG. 3 is a schematic structural diagram of a mobile terminal according to an embodiment of the present invention; FIG. 4 is a schematic structural diagram of an upgrade server according to an embodiment of the present invention. The mobile terminal is often only allowed to use the operator's network, and the operator usually 釆 为 一些 用户 用户 用户 用户 用户 用户 用户 用户 用户 用户 用户 用户 用户 用户 用户 用户 用户 用户 用户 用户 用户 用户 用户 用户 用户The limitation is achieved by locking the mobile terminal to the network. When the mobile terminal uses the network of the operator, the network parameter needs to be determined according to the version of the lock network. When the network parameter meets the lock requirement of the operator, The network can be connected to the network. Therefore, when upgrading the software of the terminal system, it is necessary to protect the lock version of the system software to prevent it from being tampered with by an illegal attacker. Embodiments of the present invention provide a method and system for upgrading a mobile terminal system software, and a mobile terminal and an upgrade server. In addition to an application module for storing a system software of a current application in a mobile terminal, a backup is additionally set in the mobile terminal. The module, the application module and the backup module may be two memories, or may be two partitions of one memory. The mobile terminal downloads the new version of the system software and stores it in the backup module, and then uses the lock network version after the danger certificate. The new version of the system software replaces the system software of the current application. Further, in order to ensure that the stored lock network version identifier does not affect the operation of the system software, the lock network version identifier may be separately stored. Therefore, the application module and the backup module in the mobile terminal are respectively divided into two modules, wherein: the application module The first application module is configured to store the non-lock network information part of the system software currently applied by the mobile terminal, and the second application module is configured to store the lock network of the system software currently applied by the mobile terminal. The lock network information part of the version identifier; the backup module includes a first backup module and a second backup module, the first backup module is configured to store the non-lock network information part of the newly downloaded system software, and the second backup module is configured to store the newly downloaded The part of the system software that contains the lock network information of the lock network version identifier. In this way, the application module and the backup module in the mobile terminal are respectively divided into two modules, which ensures that the lock network version identifier is not rewritten when the system software is running. Similarly, the new version of the system software including the lock network version identifier is stored in the upgrade server, and the memory of the upgrade server is also divided into a first storage module and a second storage module, wherein the second storage module is configured to store the lock network information. The lock network information includes a lock network version identifier, and the lock network information is stored by a separate storage module, so that part of the storage lock network information is not managed by the file system. The storage space and format of the second storage module, the second backup module, and the second application module are completely the same. When the new version of the system software is downloaded, the mobile terminal can directly mark the lock version of the new version of the system software. The content stored in the second storage module can be completely copied to the second backup module. The lock network version identifier is stored in a specific location in the second storage module. After copying, because the content of the second storage module is completely copied, the lock network version identifier is also stored in the same specific location in the second backup module, only The location information of the specific location is known only in the upgrade server and the legitimate mobile terminal. When the upgrade server and the legitimate mobile terminal obtain the lock network version identifier, only a certain length of data is read according to the location information, and the read data is the lock network version identifier. The larger the part used to store the lock network version identifier, the more redundant data is stored. The less likely it is that an illegal attacker finds the lock network version identifier through improper means, so the more the lock network version identifier is stored. Security, the space of the last 5K~15K in the memory can be divided into a storage space for storing the lock network information including the lock network version identifier. For example, if the flash memory is used as the memory of the upgrade server, the last 8K is divided into the second storage module, and the second storage module can be divided into 800 segments, each segment is 100 bytes, and the lock network version is stored in the kth segment. Identification, other segments can store some data arbitrarily, and the second application module and the second backup module in the mobile terminal also perform the same division and storage, so that the parameter k can be used as the location information by the upgrade server and the legal mobile device. The terminal saves, and reads the content of the kth segment as the lock network version identifier by the parameter k and the length of each segment, and the attacker cannot know the parameter k, so it is difficult to find the lock network version identifier in a large number of data, Replacing the lock version, and thus the new version of the software cannot be replaced, thus ensuring the security of the mobile terminal software upgrade. When the mobile terminal downloads the new version of the system software, the non-locked network information part of the new version of the system software downloaded from the first storage module of the upgrade server is stored in the divided first backup module, and the second storage is downloaded from the upgrade server. The lock network information stored in the module is stored in the second backup module, and the lock network information includes the lock network version identifier and the redundant data. After the download is completed, the mobile terminal reads the lock network version at a specific position of the second backup module. The identifier is compared with the lock version identifier in a specific location of the second application module. When the two are consistent, it is proved that the downloaded new version of the system software has not been tampered with, and the newly downloaded system software is allowed to be replaced. System software. In the software replacement process, the lock network information part may or may not be replaced. As shown in FIG. 1, the memory in the upgrade server in the embodiment of the present invention is divided into a first storage module 101 and a second storage module 102, and the first storage module 101 is configured to store a new version to be downloaded. The non-locking network information part of the system software, the second storage module 102 is configured to store the lock network information, wherein the specific location is the lock network version identifier; likewise, in the mobile terminal, the application module of the mobile terminal is divided into the first application module 111 and The second application module 112 is divided into two parts: the backup storage module of the mobile terminal is divided into a first backup module 121 and a second backup module 122. When downloading, the mobile terminal stores the content in the first storage module 101 in the first backup module 121. The content in the second storage module 102 is stored in the second backup module 122, and the mobile terminal acquires the lock network version identifier from the specific location in the second backup module 122 according to the set location information, and the second application. The lock network version identifiers obtained in the specific location of the module 112 are compared. When the two are consistent, the system software portion of the first application module 111 is replaced by the new version of the system software in the first backup module 121, and the system software is completed. The upgrade may also replace the lock network in the second application module 122 by using the lock network information in the second backup module 122. Interest rates, the new version of the system software that is used to download the entire software system to replace the currently applied. As shown in FIG. 2, the method for upgrading the mobile terminal software according to the embodiment of the present invention includes the following steps: Step 4: S4, the upgrade server sends the mobile terminal system software to the mobile terminal, where the system software includes the first storage. The non-lock network information part of the new version of the software of the module, and the lock network information including the lock network version identifier stored in the second storage module; Step S202, the mobile terminal upgrades the new version of the system software in the first storage module sent by the server The non-lock network information part is stored in the first backup module, and the lock network information in the second storage module sent by the upgrade server is stored in the second backup module. Step S203: The mobile terminal acquires the second backup module according to the set location information. In the step S204, it is determined that the lock network version identifier in the second backup module is consistent with the lock network version identifier of the system software being applied, and when the two lock network version identifiers are consistent, step S205 is performed. When the two lock network version identifiers are inconsistent, step S206 is performed; step S205, immediately or restarting in the mobile terminal Non-network locking information of the system software, network locking information of a non-partial replacement of the new version of the system software using the first backup module is stored in the application; step S206, immediately exit the upgrade, but you can delete data backup module. That is, when the lock network version identifier in the second backup module is inconsistent with the lock network version identifier of the system software being applied, it proves that the downloaded system software may have been tampered with, so the upgrade is exited, and the first backup module is no longer used. The non-lock network information part of the new version of the system software stored in the system replaces the non-lock network information part of the system software being applied, only when the lock network version identifier in the second backup module is consistent with the lock network version identifier of the system software being applied. When the downloaded version of the new version of the system software is correct, the newly downloaded system software can be used to replace the system software being applied, and the guaranteed lock version of the mobile terminal is not replaced during the upgrade. Further, in order to reduce unnecessary downloading of the mobile terminal, the system software lock network version is further prevented from being tampered with, and the upgrade server stores the unlocked network information part of the new version of the system software in the first storage module and the lock stored in the second storage module. Before the network information is sent to the mobile terminal, the method further includes: upgrading the server to perform the proofreading of the lock network version: the upgrade server obtains the lock network version identifier from the set location of the second storage module according to the set location information, and determines the lock network version identifier. Whether it is consistent with the preset standard lock network version identifier, if it is determined to be consistent, the non-lock network information portion of the new version system software in the first storage module and the lock network information stored in the second storage module are sent to the mobile terminal. In order to further enable the user to have the option to upgrade the system software, the mobile terminal software upgrade method in the embodiment of the present invention stores the non-lock network information part and the second storage module of the new version of the system software in the first storage module. Before the lock network information is sent to the mobile terminal, the method further includes: the upgrade server sends a system software update notification to the mobile terminal, and after the user determines the upgrade, the mobile terminal sends a download request to the upgrade server. For WiMAX, CDMA, GSM, PHS, WCDMA, TD-SCDMA, LTE, single-mode/multi-mode wireless access terminal products, the above methods can be used to upgrade to maintain the lock version. Correspondingly, an embodiment of the present invention provides a mobile terminal software upgrade system, including an upgrade server and a mobile terminal, where: an upgrade server is configured to send a non-lock network information part of the new version system software in the first storage module and The lock network information of the new version of the system software stored in the second storage module, the lock network information stored in the second storage module includes a lock network version identifier and redundant data for protecting the lock network version identifier; the mobile terminal is configured to receive Upgrade the new version of the system in the first storage module sent by the server The non-locking network information part of the piece and the lock net information stored in the second storage module, and storing the software in the first backup module, storing the content stored in the second storage module in the second backup module, and according to the setting The location information of the lock network version identifier in the second backup module reads the lock network version identifier in the second backup module, and compares with the lock network version identifier of the system software being applied, when the two lock network version identifiers are consistent. , the non-locking network information part of the new version of the system software stored in the first backup module is allowed to replace the non-locked network information part of the system software being applied. Of course, the upgrade server may not include the lock network version identifier in the lock network information and send it to the mobile terminal, or may directly send or retrieve other protection means to send. The embodiment of the present invention further provides a mobile terminal, as shown in FIG. 3, including a receiving module 302, an upgrade control module 301, a first application module 311, a second application module 312, a first backup module 321, and a second backup module. 322, wherein: the receiving module 302 is configured to receive a new version of the system software sent by the upgrade server, and send the new version of the system software to the first backup module and the second backup module for storage; wherein, the new version of the system software includes the lock network information, The lock network information includes a lock network version identifier; the first application module 311 is configured to store the non-lock network information part of the current application system software; the second application module 312 is configured to store the lock network information of the current application system software; A backup module 321 is configured to store the non-lock network information part of the new version of the system software in the first storage module of the upgrade server received by the receiving module 302. The second backup module 322 is configured to receive the new version by the storage receiving module 302. Locking network information of the system software; an upgrade control module 301, for identifying location information according to a pre-stored lock network version The data of the corresponding location in the second backup module 322 is taken and compared with the data of the location in the second application module 312. When the two are consistent, the non-locking of the new version of the system software in the first backup module 321 is prepared. The network information part replaces the non-lock network information part of the system software in the first application module 311, and once it is determined that the state of the mobile terminal satisfies the replacement condition, the system software is replaced, for example, the system software can be performed when the mobile terminal is restarted. Alternatively, while the system software is replaced, the lock network information in the second application module may be replaced by the lock network information in the second backup module 322, thereby further ensuring the security of the lock network version identifier. The size of the second backup module and the size of the second application module are both related to the upgrade server. The storage space of the lock network information is the same. The location and size of the second backup module in the first backup module corresponds to the location and size of the second application module in the first application module. Further, in order to enable the user to have the option of upgrading the system software, the mobile terminal may further include a request sending module, configured to receive a system software update notification sent by the upgrade server, and send a download request to the upgrade server after the user determines the upgrade. The embodiment of the present invention further provides an upgrade server, as shown in FIG. 4, including a first storage module 401, a second storage module 402, and a sending module 403, where: the first storage module 401 is configured to store a new version of system software. The second storage module 402 is configured to store lock network information including a lock version identifier of the new version system software; wherein, the lock network information includes a lock network version identifier and redundant data, and a lock network version identifier and The redundant data mixing and sending module 403 is configured to send, to the mobile terminal, the non-lock network information part of the new version system software in the first storage module 401 and the lock network information of the new version system software stored in the second storage module 402. Further, in order to reduce unnecessary downloading of the mobile terminal, the system software is further prevented from being tampered with. The upgrade server further includes an obtaining module, where the location information is determined according to the set lock network version from the set location of the second storage module 402. Obtaining a lock network version identifier, and sending the non-lock network information part of the new version system software in the first storage module 401 to the sending module 403, when determining that the lock network version identifier is consistent with the preset standard lock network lock network identifier The lock network information stored in the second storage module 402. Further, in order to enable the user to have the option to upgrade the system software, the sending module 403 is further configured to: when the non-lock network information part of the system software in the first storage module 401 is updated, send a system software update notification to the mobile terminal. After receiving the download request returned by the mobile terminal, the non-lock network information part of the new version system software in the first storage module 401 and the lock network information stored in the second storage module 402 are sent to the mobile terminal. An embodiment of the present invention provides a method for upgrading a mobile terminal software, and a mobile terminal and a server. When the mobile terminal performs a software upgrade, the downloaded new version of the system software is stored in the backup module, and the mobile terminal only records the stored storage location. After reading the lock network version identifier and verifying the lock network version identifier, replace the applied system software with the newly downloaded system software to improve the mobile. The security of the software upgrade of the terminal prevents the software version of the mobile terminal from being replaced with the non-locked network version during the upgrade. It is apparent that those skilled in the art can make various modifications and variations to the embodiments of the invention without departing from the spirit and scope of the invention. Thus, it is intended that the present invention cover the modifications and the modifications of the invention

Claims

权 利 要 求 书 Claim
1. 一种移动终端软件的升级方法, 其特征在于, 包括: A method for upgrading a mobile terminal software, comprising:
移动终端从升级月艮务器获取新版本系统软件, 所述新版本系统软 件包括锁网版本标识;  The mobile terminal obtains a new version of the system software from the upgrade server, and the new version system software includes a lock network version identifier;
移动终端从所述新版本系统软件中获取所述锁网版本标识, 并确 认当前所应用的系统软件的锁网版本标识和所述新版本系统软件的锁 网版本标识一致;  The mobile terminal obtains the lock network version identifier from the new version system software, and confirms that the lock network version identifier of the currently applied system software is consistent with the lock network version identifier of the new version system software;
移动终端将当前系统软件升级为所述新版本系统软件。  The mobile terminal upgrades the current system software to the new version of the system software.
2. 如权利要求 1 所述的方法, 其特征在于, 所述移动终端从升级艮务器 获取新版本系统软件包括: 2. The method according to claim 1, wherein the acquiring, by the mobile terminal, the new version of the system software from the server comprises:
升级服务器从所述新版本系统软件中获取锁网版本标识; 升级月艮务器确定所述新版本系统软件的锁网版本标识与预先设 置的标准锁网版本标识一致; 升级服务器将所述新版本系统软件发送给所述移动终端。  The upgrade server obtains the lock network version identifier from the new version system software; the upgrade server determines that the lock network version identifier of the new version system software is consistent with the preset standard lock network version identifier; the upgrade server will The version system software is sent to the mobile terminal.
3. 如权利要求 1 所述的方法, 其特征在于, 还包括: 在所述新版本系统 软件中设置冗余数据, 并将所述锁网版本标识与所述冗余数据混合。 3. The method of claim 1, further comprising: setting redundant data in the new version system software, and mixing the lock net version identifier with the redundant data.
4. 根据权利要求 1所述的方法, 其特征在于, 在所述移动终端从升级服 务器获取新版本系统软件之前 , 还包括: The method according to claim 1, wherein before the mobile terminal acquires the new version of the system software from the upgrade server, the method further includes:
设置所述新版本系统软件的锁网版本标识在所述新版本系统软 件中的位置和大小, 使得与所述移动终端当前所应用的系统软件的锁 网版本标识在所述当前所应用的系统软件中的位置和大小相对应。  Setting a lock network version of the new version system software to identify a location and a size in the new version of the system software, so that a lock network version of the system software currently applied by the mobile terminal is identified in the currently applied system The location and size in the software correspond.
5. —种移动终端, 其特征在于, 包括: 5. A mobile terminal, comprising:
接收模块, 用于接收升级服务器发送的新版本系统软件, 并将所 述新版本系统软件发送给第一备份模块和第二备份模块存储; 其中, 所述新版本系统软件包括锁网信息 ,所述锁网信息包括锁网版本标识; 第一应用模块, 用于存储当前应用的系统软件的非锁网信息部 分; 第二应用模块, 用于存储所述当前应用的系统软件的锁网信息; 所述第一备份模块, 用于存储所述新版本系统软件的非锁网信息 部分; a receiving module, configured to receive a new version of the system software sent by the upgrade server, and send the new version of the system software to the first backup module and the second backup module, where the new version of the system software includes the lock network information. The lock network information includes a lock network version identifier; the first application module is configured to store the non-lock network information part of the current application system software; a second application module, configured to store lock network information of the system software of the current application; the first backup module is configured to store an unlocked network information part of the new version of the system software;
所述第二备份模块, 用于存储所述新版本系统软件的锁网信息; 升级控制模块, 用于根据预先存储的锁网版本标识的位置信息获 取所述新版本系统软件的锁网版本标识和当前所应用的系统软件的锁 网版本标识, 确认所述当前所应用的系统软件的锁网版本标识和所述 新版本系统软件的锁网版本标识一致时, 将当前系统软件升级为所述 新版本系统软件。  The second backup module is configured to store the lock network information of the new version of the system software; and the upgrade control module is configured to acquire the lock network version identifier of the new version system software according to the location information of the pre-stored lock network version identifier And confirming the lock network version identifier of the currently applied system software, and confirming that the lock network version identifier of the currently applied system software is consistent with the lock network version identifier of the new version system software, upgrading the current system software to the New version of the system software.
6. 如权利要求 5所述的移动终端, 其特征在于, 所述第二备份模块的大 小与所述升级服务器中所述锁网信息的存储空间大小相同。 The mobile terminal according to claim 5, wherein the size of the second backup module is the same as the storage space of the lock network information in the upgrade server.
7. 如权利要求 5所述的移动终端, 其特征在于, 所述第二备份模块为所 述第一备份模块中设定位置和大小的存储空间; 所述第二应用模块为 所述第一应用模块中设定位置和大小的存储空间; 所述第二备份模块 在所述第一备份模块中的位置和大小, 与所述第二应用模块在所述第 一应用模块中的位置和大小相对应。 The mobile terminal according to claim 5, wherein the second backup module is a storage space for setting a location and a size in the first backup module; the second application module is the first a storage space for setting a location and a size in the application module; a position and a size of the second backup module in the first backup module, and a position and a size of the second application module in the first application module Corresponding.
8. 如权利要求 5所述的移动终端, 其特征在于, 还包括: 请求发送模块, 用于接收所述升级月艮务器发送的系统软件更新通知, 并在用户确定升 级后, 向所述升级服务器发送下载请求。 The mobile terminal according to claim 5, further comprising: a request sending module, configured to receive a system software update notification sent by the upgrade server, and after the user determines the upgrade, to the The upgrade server sends a download request.
9. 一种升级服务器, 其特征在于, 包括: 9. An upgrade server, comprising:
第一存储模块, 用于存储新版本系统软件中的非锁网信息部分; 第二存储模块, 用于存储所述新版本系统软件中的锁网信息, 所 述锁网信息包括锁网版本标识和冗余数据, 所述锁网版本标识和所述 冗余数据相混合;  a first storage module, configured to store a non-lock network information part in the new version of the system software; a second storage module, configured to store lock network information in the new version system software, where the lock network information includes a lock network version identifier And redundant data, the lock net version identifier and the redundant data are mixed;
发送模块, 用于向移动终端发送所述新版本系统软件, 所述新版 本系统软件包括所述锁网信息。  And a sending module, configured to send the new version of the system software to the mobile terminal, where the new version of the system software includes the lock network information.
10. 如权利要求 9所述的升级服务器, 其特征在于, 还包括: 10. The upgrade server of claim 9, further comprising:
获取模块, 用于根据锁网版本标识的位置信息从所述第二存储模 块获取所述锁网版本标识, 并在确定所述锁网版本标识与预先设置的 标准锁网版本标识一致时, 将所述新版本系统软件发送给所述发送模 块。 An obtaining module, configured to acquire the lock network version identifier from the second storage module according to the location information of the lock network version identifier, and determine the lock network version identifier and the preset When the standard lock network version identifiers are consistent, the new version system software is sent to the sending module.
11. 如权利要求 9或 10所述的升级艮务器, 其特征在于, 所述发送模块还 用于, 向所述移动终端发送软件更新通知, 并在接收到所述移动终端 返回的下载请求后, 向所述移动终端发送所述新版本系统软件。 The upgrade server according to claim 9 or 10, wherein the sending module is further configured to: send a software update notification to the mobile terminal, and receive a download request returned by the mobile terminal Thereafter, the new version of the system software is sent to the mobile terminal.
12. 一种移动终端软件的升级系统, 其特征在于, 包括: An upgrade system for a mobile terminal software, comprising:
根据权利要求 5-8任一项所述的移动终端;  A mobile terminal according to any of claims 5-8;
根据权利要求 9-11任一项所述的升级服务器。  An upgrade server according to any one of claims 9-11.
PCT/CN2010/072146 2009-08-24 2010-04-23 Mobile terminal software upgrade method, system, mobile terminal and server thereof WO2011022979A1 (en)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN 200910167133 CN101635917A (en) 2009-08-24 2009-08-24 Method and system for upgrading software of mobile terminal as well as mobile terminal and server
CN200910167133.7 2009-08-24

Publications (1)

Publication Number Publication Date
WO2011022979A1 true WO2011022979A1 (en) 2011-03-03

Family

ID=41594932

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2010/072146 WO2011022979A1 (en) 2009-08-24 2010-04-23 Mobile terminal software upgrade method, system, mobile terminal and server thereof

Country Status (2)

Country Link
CN (1) CN101635917A (en)
WO (1) WO2011022979A1 (en)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2022165711A1 (en) * 2021-02-04 2022-08-11 华为技术有限公司 Upgrading method and apparatus based on over-the-air (ota) technology

Families Citing this family (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101635917A (en) * 2009-08-24 2010-01-27 中兴通讯股份有限公司 Method and system for upgrading software of mobile terminal as well as mobile terminal and server
CN101977374A (en) * 2010-10-25 2011-02-16 中兴通讯股份有限公司 Method and device for upgrading terminal network locking
CN107277271A (en) * 2017-07-20 2017-10-20 青岛海信移动通信技术股份有限公司 Upgrade method and device based on customization software version in mobile terminal
CN112486733B (en) * 2020-12-11 2023-08-18 Oppo广东移动通信有限公司 System restoration method, device, terminal and storage medium

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101193364A (en) * 2006-11-21 2008-06-04 中兴通讯股份有限公司 A software download method for wireless access fixing station
CN101193368A (en) * 2006-11-22 2008-06-04 中兴通讯股份有限公司 Method for wireless access fixing station software to validate identifier setup
CN101635917A (en) * 2009-08-24 2010-01-27 中兴通讯股份有限公司 Method and system for upgrading software of mobile terminal as well as mobile terminal and server
CN101646162A (en) * 2009-08-24 2010-02-10 中兴通讯股份有限公司 Mobile terminal software upgrading method and system based on OTA

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101193364A (en) * 2006-11-21 2008-06-04 中兴通讯股份有限公司 A software download method for wireless access fixing station
CN101193368A (en) * 2006-11-22 2008-06-04 中兴通讯股份有限公司 Method for wireless access fixing station software to validate identifier setup
CN101635917A (en) * 2009-08-24 2010-01-27 中兴通讯股份有限公司 Method and system for upgrading software of mobile terminal as well as mobile terminal and server
CN101646162A (en) * 2009-08-24 2010-02-10 中兴通讯股份有限公司 Mobile terminal software upgrading method and system based on OTA

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2022165711A1 (en) * 2021-02-04 2022-08-11 华为技术有限公司 Upgrading method and apparatus based on over-the-air (ota) technology

Also Published As

Publication number Publication date
CN101635917A (en) 2010-01-27

Similar Documents

Publication Publication Date Title
US11606677B2 (en) Method for sharing application between terminals, and terminal
US10437680B2 (en) Relay apparatus, relay method, and computer program product
CN107391143B (en) T-Box remote upgrading method
US8028167B2 (en) Method and apparatus for certificate roll-over
EP2863303A1 (en) Method for confirming correction program, confirming program for confirming correction program, and information processing apparatus
US11234131B2 (en) Information verification method and related device
CN109716805B (en) Installation method of subscription data set, terminal and server
CN104703170A (en) Methods and equipment for downloading file of operator
EP2530964B1 (en) Method and device for terminal network locking
WO2005050441A1 (en) Updating data in a mobile terminal
WO2011022979A1 (en) Mobile terminal software upgrade method, system, mobile terminal and server thereof
CN105468393B (en) Module release upgrade method and terminal installation
CN107122212A (en) Firmware encrypting method
CN105637521B (en) Data processing method and intelligent terminal
US20110019826A1 (en) Method of installing a wireless network
CN109729535B (en) Base station opening method and device, computer storage medium and equipment
CN107239299B (en) Plug-in upgrading method and device
WO2016179866A1 (en) Method and system for updating smart card of mobile terminal
US20200120484A1 (en) Combined migration and remigration of a network subscription
US20120231763A1 (en) Method and system for antivirus on a mobile device by sim card
WO2012034327A1 (en) Method and terminal for version update
EP3487121A1 (en) Method for updating a firmware of an iot-device over the air
CN112748937A (en) Method and device for updating eUICC operating system
CN113747419B (en) Over-the-air downloading method and related equipment
CN113242276B (en) On-line upgrading method, device, equipment and storage medium for vehicle-mounted system

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 10811144

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

122 Ep: pct application non-entry in european phase

Ref document number: 10811144

Country of ref document: EP

Kind code of ref document: A1