WO2016169502A1 - 无线连接认证方法和装置 - Google Patents

无线连接认证方法和装置 Download PDF

Info

Publication number
WO2016169502A1
WO2016169502A1 PCT/CN2016/079953 CN2016079953W WO2016169502A1 WO 2016169502 A1 WO2016169502 A1 WO 2016169502A1 CN 2016079953 W CN2016079953 W CN 2016079953W WO 2016169502 A1 WO2016169502 A1 WO 2016169502A1
Authority
WO
WIPO (PCT)
Prior art keywords
login
terminal
authority
wireless connection
temporary
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Ceased
Application number
PCT/CN2016/079953
Other languages
English (en)
French (fr)
Inventor
齐好鑫
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Vivo Mobile Communication Co Ltd
Original Assignee
Vivo Mobile Communication Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Vivo Mobile Communication Co Ltd filed Critical Vivo Mobile Communication Co Ltd
Publication of WO2016169502A1 publication Critical patent/WO2016169502A1/zh
Anticipated expiration legal-status Critical
Ceased legal-status Critical Current

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W74/00Wireless channel access

Definitions

  • the embodiments of the present disclosure relate to the field of computer technologies, and in particular, to a wireless connection authentication method and apparatus.
  • the mobile terminal can connect to a wireless connection device for networking and other operations through a wireless connection.
  • the mobile terminal passes wifi (Wireless Fidelity, also known as 802.11b standard, which is a kind of A technology such as a personal computer or a handheld device that is wirelessly connected to each other is connected to a wireless connection device such as a router to connect to the Internet.
  • wifi Wireless Fidelity
  • 802.11b standard which is a kind of A technology such as a personal computer or a handheld device that is wirelessly connected to each other is connected to a wireless connection device such as a router to connect to the Internet.
  • many terminal devices can also access other wireless connection devices through other wireless connections, such as mobile phones accessing other terminals through wireless means such as Bluetooth to transmit files and other operations.
  • a login password is generally set on the wireless connection device side.
  • a router with wifi function needs to set a login password after the user first logs in to the router. Thereafter, for a terminal that has not logged in to the router, if you want to use the router to connect to the network, you need to enter the login password in the terminal to connect to the router before you can connect to the router through the router.
  • the mobile phone's Bluetooth function is set to the login password. When other terminals connect to the mobile phone via Bluetooth, they need to enter the login password to connect.
  • the password management method of the conventional wireless connection device has the following disadvantages:
  • the use is not flexible enough. For example, if a user A wants to temporarily use the wireless connection device (such as wifi, Bluetooth, etc.), after the owner B of the wireless connection device provides the login password of the wireless connection device, user A can connect the terminal to the wireless connection. device.
  • the user A's terminal When the user A's terminal is used up, if the owner B does not actively change the original login password in the wireless connection device, the user A's terminal has the possibility of continuing to connect to the owner B's wireless connection device. But often owner B is very Less will actively change the login password of its wireless connection device, because changing the login password means that all the terminals of the owner B connected to the wireless connection device need to reset the login password to connect to the wireless connection device. Therefore, for owner B, the password management of the wireless connection device is not flexible and convenient.
  • a wireless connection authentication method including:
  • the authority information sent by the terminal is determined according to the login password and the authority verification code used by the wireless connection device in the current time period;
  • the received permission information includes a login password and does not include a permission verification code, permitting the terminal to log in, and giving the terminal temporary login permission;
  • the received permission information includes a login password and a permission verification code, permitting the terminal to log in, and granting the terminal permanent login permission;
  • the terminal having the temporary login authority is removed from the login state, and the login state of the terminal having the resident login authority is maintained.
  • the step of determining the authority information sent by the terminal according to the login password and the authority verification code used by the wireless connection device in the current time period in the current time period further includes:
  • the login password and the authority verification code are obtained for display.
  • the step of obtaining the login password and the authorization verification code for displaying according to the received triggering instruction includes:
  • Receiving the first trigger instruction acquiring the login password for display
  • the rights verification code is obtained for display.
  • the authorization verification code used in the current time period is a login password to be used by the wireless connection device in the next time period.
  • the step of giving the terminal temporary login permission includes:
  • step of removing the terminal having the temporary login permission from the login state includes:
  • the step of granting the terminal permanent login permission includes:
  • the identity information of the terminal is written to a resident user table preset in the wireless connection device.
  • the step of giving the terminal temporary login permission includes:
  • step of removing the terminal having the temporary login permission from the login state includes:
  • the identity information corresponding to the temporary user tag in the user table is removed from the user table.
  • the step of granting the terminal permanent login permission includes:
  • the identity information of the terminal is written into a user table preset in the wireless connection device, and the resident user tag is written in the permission field corresponding to the identity information in the user table.
  • the method before the step of removing the terminal having the temporary login permission from the login state, the method includes:
  • the terminal having the temporary login authority determines, by the terminal having the temporary login authority, whether the length of the login time of the terminal is greater than or equal to a threshold; the length of the login time is a length of time between the time when the terminal ends from the login time point to the end of the current time period;
  • the terminal having the temporary login permission is removed from the login state
  • the terminal having the temporary login authority is not removed from the login state.
  • a wireless connection authentication apparatus including:
  • connection determining module is adapted to determine, according to the login password and the authority verification code used by the wireless connection device in the current time period, the authority information sent by the terminal during the current time period;
  • the temporary login authority assigning module is adapted to allow the terminal to log in when the received permission information includes a login password and does not include the authority verification code, and give the terminal temporary login authority;
  • the resident login authority assigning module is adapted to allow the terminal to log in when the obtained permission information includes a login password and a right verification code, and give the terminal permanent login authority;
  • An update module adapted to generate a new login password and a new authorization verification code for use in the next time period
  • the rights management module is adapted to remove the terminal having the temporary login authority from the login state after the wireless connection device uses the new login password, and maintain the login state of the terminal having the resident login authority.
  • it also includes:
  • the display module is adapted to obtain the login password and the authorization verification code for display according to the received trigger instruction.
  • the display module includes:
  • a first display submodule configured to obtain the login password for display if the first trigger instruction is received
  • the second display submodule is adapted to obtain the permission verification code for display if the second trigger instruction is received within a predetermined time interval.
  • the authorization verification code used in the current time period is a login password to be used by the wireless connection device in the next time period.
  • the temporary login authority granting module includes:
  • the first temporary login authority is given to the sub-module, and is adapted to write the identity information of the terminal into the temporary user table preset in the wireless connection device;
  • the rights management module includes:
  • the temporary user table clearing submodule is adapted to clear the identity information of each terminal recorded by the temporary user table.
  • the resident login authority granting module includes:
  • the first resident login authority is assigned to the sub-module, and is adapted to write the identity information of the terminal to the resident user table preset in the wireless connection device.
  • the temporary login authority granting module includes:
  • a temporary user adding a sub-module configured to write the identity information of the terminal into a user table preset in the wireless connection device, and write the temporary permission field corresponding to the identity information in the user table User tag
  • the rights management module includes:
  • the user table temporarily removes the submodule, and is adapted to remove the identity information corresponding to the temporary user tag in the user table from the user table.
  • the resident login authority granting module includes:
  • the resident user adds a submodule, and is adapted to write the identity information of the terminal into a user table preset in the wireless connection device, and write the resident user tag in the permission field corresponding to the identity information in the user table. .
  • the rights management module further includes:
  • the temporary user time judging sub-module is adapted to determine, for each terminal having the temporary login authority, whether the length of the login time of the terminal is greater than or equal to a threshold value before the terminal having the temporary login authority is removed from the login state;
  • the length is the length of time between the time point from the login time point and the end of the current time period;
  • the temporary user removal sub-module is adapted to remove the terminal having the temporary login authority from the login state if the login time length of the terminal is greater than or equal to the threshold;
  • the temporary user maintenance submodule is adapted to remove the terminal having the temporary login authority from the login state if the login time length of the terminal is less than the threshold.
  • the login password of the wireless connection device is automatically updated according to the time period, so that the password changes with time, each password is changed to a new password only after a period of time, and the wireless connection device is used.
  • the difficulty of being hacked by violent is increased, and the wireless signal is not easily embarrassed.
  • the embodiment of the present disclosure assigns a login password and a rights verification code to the terminal that is recognized by the owner of the wireless connection device, and if the user wants to crack the two verification methods, The terminal is given the resident login authority. Because there are two kinds of verification methods, the wireless connection device is more difficult to be brute force.
  • the owner B of the wireless connection device can have his terminal send a login password and a rights verification code to the wireless connection device to obtain the resident login authority; and temporarily use the wireless connection device.
  • User A owner B can let user A's terminal only send Login password to get temporary login privileges. Since the wireless connection device can automatically update the login password according to the time period, after the login password is updated, the wireless connection device automatically disconnects the login state of the temporary login authority, so that the terminal cannot continue to log in to the wireless connection device. Therefore, the owner B is not required to actively modify the login password of the wireless connection device, and further, the owner does not need to modify the login password of each terminal after the login password is automatically modified, thereby ensuring the terminal of the owner B.
  • FIG. 1 is a schematic flowchart diagram of a wireless connection authentication method according to an embodiment of the present disclosure
  • FIG. 2 is a schematic flowchart diagram of another wireless connection authentication method according to an embodiment of the present disclosure
  • FIG. 3 is a schematic flowchart diagram of another wireless connection authentication method according to an embodiment of the present disclosure.
  • FIG. 4 is a schematic flowchart diagram of another wireless connection authentication method according to an embodiment of the present disclosure.
  • FIG. 5 is a schematic flowchart diagram of another wireless connection authentication method according to an embodiment of the present disclosure.
  • FIG. 6 is a schematic structural diagram of a wireless connection authentication apparatus according to an embodiment of the present disclosure.
  • FIG. 7 is a schematic structural diagram of another wireless connection authentication apparatus according to an embodiment of the present disclosure.
  • FIG. 8 is a schematic structural diagram of another wireless connection authentication apparatus according to an embodiment of the present disclosure.
  • FIG. 9 is a schematic structural diagram of another wireless connection authentication apparatus according to an embodiment of the present disclosure.
  • FIG. 10 is a schematic structural diagram of another wireless connection authentication apparatus according to an embodiment of the present disclosure.
  • FIG. 11 is a block diagram showing another wireless router according to an embodiment of the present disclosure.
  • the wireless connection device of the embodiment of the present disclosure provides a login password and a rights verification code in each time period. Then, the temporary login authority is given to the terminal that has only transmitted the above login password, and the resident login authority is given to the terminal that has entered the login password and the authority verification code at the same time. After each login password is updated, the terminal with the temporary login permission is removed from the login state of the wireless connection device, and the terminal with the resident login authority can continue to maintain its connection to the wirelessly connected device regardless of the password modification. Login status.
  • the login password of the wireless connection device can be automatically and periodically modified, and the wireless connection device is violently cracked due to the double verification mode of the login password and the authority verification code, and the wireless signal is not easily smashed.
  • the login state can be maintained after the login password is modified, and the user of the terminal is not required to input the password again, so that the wireless connection device is more flexible to use.
  • the wireless connection device includes a device with a wifi function, a Bluetooth, an infrared, and the like, such as a router, a mobile phone, a tablet, a smart bracelet, a notebook computer, a desktop computer with a wireless network card, and the like.
  • the terminal may be any terminal that can initiate a wireless connection. Such as mobile phones, tablets, smart bracelets, etc.
  • an application environment thereof may be as follows:
  • a router (which can be understood as a wireless connection device of the embodiment of the present disclosure) can set a login password of its wifi, and the user wants to connect his mobile phone or other terminal to the wifi of the router.
  • User A sets the mobile phone that he has connected to the network (which can be understood as the wireless connection device of the embodiment of the present disclosure) as a wifi hotspot, and sets the login password of wifi, and user B wants to connect his mobile phone or other terminal.
  • the phone corresponds to the wifi.
  • FIG. 1 it is a schematic flowchart of a wireless connection authentication method according to an embodiment of the present disclosure, which may specifically include:
  • Step 110 In the current time period, determine the authority information sent by any terminal according to the login password and the authority verification code used by the wireless connection device in the current time period.
  • the wireless connection device obtains a login password for logging in to the wireless connection device during the current time period, and a rights verification code for confirming the resident user authority.
  • the user can send the permission information to the wireless connection device in any time period, and then the wireless connection device determines the received permission information according to the login password and the authorization verification code.
  • the foregoing determining process is to match the authority information sent by the terminal with the login password 000000 and the authority verification code 111111 of the wireless connection device.
  • the initialization embodiment generates a login password and a rights verification code used in the first time period. Then, in each time period or at the end, the login password and the rights verification code used in the next time period are generated. For example, at the end of the first time period, the login password and the rights verification code used in the second time period are generated. By analogy, the login password and the rights verification code change over time.
  • the time period of the time can be understood as the current time period.
  • the terminal sends a login password to the wireless connection device at 12:30, and the current time period is 12:00-14:00, correspondingly, The next time period is 14:00-16:00; when the terminal sends the login password to the wireless connection device at 14:30, the current time period is 14:00-16:00, and correspondingly, the next time period is 16 :00-18:00; The terminal sends a login password to the wireless connection device at 17:00, the current time period is 16:00-18:00, and correspondingly, the next time period is 18:00-20:00.
  • the current time period may be a time period after the handover time.
  • the current time period may be 14:00-16:00.
  • the rights information sent by the user may be divided into two fields, the first field is a login password input by the user, corresponding to the matching login password, and the second field is a permission verification code input by the user. Corresponding to the matching authority verification code. Among them, the second field can be empty. Of course, the matching objects of the first field and the second field can be changed as needed.
  • the rights information sent by a terminal may include the foregoing correct login password, and may also include other incorrect passwords.
  • the rights information sent by the terminal may also include the foregoing correct authority verification code, or may Including other verification codes that are incorrect.
  • the embodiment of the present disclosure matches the rights information sent by any terminal according to the login password and the authority verification code in the current time period.
  • the terminal sends the permission information, including the login password 123456, and does not have the authority verification code; after receiving the 123456, the wireless connection device matches the login password 000000 and the authority verification code 111111 of the wireless connection device, and finds that the matching cannot be matched. Ignore the connection of the terminal.
  • the terminal sends the permission information, including the login password 000000, and does not have the authorization verification code; after receiving the 000000, the wireless connection device matches the login password 000000 and the authorization verification code 111111 of the wireless connection device, and finds the matching login password. 000000, then determine terminal A The correct login password was sent and the authorization verification code was not sent.
  • the terminal sends the permission information, which includes the login password 000000 and the authority verification code 121212.
  • the wireless connection device After receiving the 000000 and 121212, the wireless connection device respectively matches the login password 000000 and the authority verification code 111111 of the wireless connection device, and finds a match. If the login password 000000 is not matched and the upper authentication code is not matched, it is determined that the terminal A sends the correct login password and sends the wrong authorization verification code.
  • the terminal sends the permission information, which includes the login password 000000 and the authority verification code 111111.
  • the wireless connection device After receiving the 000000 and 111111, the wireless connection device respectively matches the login password 000000 and the authority verification code 111111 of the wireless connection device, and finds a match.
  • the login password 000000 is also matched with the authority verification code 111111, and it is determined that the terminal A sends the correct login password and the authority verification code.
  • the terminal sends the permission information, which includes the login password 222222 and the authority verification code 333333.
  • the wireless connection device After receiving the 222222, the wireless connection device matches the login password 000000 and the authority verification code 111111 of the wireless connection device, and finds that the login password is not matched. 000000, the verification code is no longer verified.
  • the wireless connection device does not match the login password used in the current time period, the wireless connection device does not match the authorization verification code.
  • the embodiment of the present disclosure further includes:
  • Step 105 Acquire the login password and the authority verification code to perform display according to the received trigger instruction.
  • the user may perform a trigger operation on the wireless connection device to enable the wireless connection device to display the login password and the authority verification code in the current time period.
  • the wireless connection device receives the trigger command according to the trigger operation of the user, and acquires the login password and the authority verification code in the current time period, and displays it on the display screen.
  • the temporary user In order to avoid exposing the login password and the authorization verification code to the temporary users of the wireless connection device at one time, the temporary user is prevented from obtaining the login password and the authority verification code used in the current time period at one time, thereby causing the temporary user to pass through the terminal. Send login password and permission verification code to none Wire the device to get resident login privileges.
  • the foregoing step 105 includes:
  • Sub-step 1051 if the first trigger instruction is received, the login password is obtained for display.
  • the wireless connection device when the operator performs the triggering operation of the wireless connection on the wireless connection device for the first time, receives the trigger instruction according to the triggering operation, and then acquires the login password in the current time period according to the triggering instruction.
  • the login password is then sent to the display of the wireless connected device for display.
  • Temporary users can enter directly in their terminal based on the displayed login password and then send it to the wireless connection device.
  • Sub-step 1052 if a second triggering instruction is received within a predetermined time interval, the rights verification code is obtained for display.
  • the wireless connection device For a resident user who needs to log in for a long time, when the operator performs a re-trigger operation on the wireless connection device within a predetermined time interval, the wireless connection device receives the second trigger instruction according to the trigger operation, and then according to the second time.
  • the triggering instruction acquires the authority verification code in the current time period, and sends the authority verification code to the display screen of the wireless connection device for display.
  • the resident user can then obtain the privilege verification code again from the display and then send it to the wireless connection device along with the aforementioned login password.
  • the user may send the permission information including only the login password, and may also send the permission information including the login password and the authority verification code.
  • the predetermined time interval may be set to 30 seconds, or may be set from the current time to the end of the current time period.
  • the embodiment of the present disclosure may consider that the first triggering instruction is received, then triggering the display of the login password in the current time period.
  • the embodiment of the present disclosure provides a connection authentication page for a terminal that is not logged in, that is, when the user connects to the wireless connection device, the unlogged terminal jumps to the connection authentication page, and the connection authentication page can display two inputs.
  • one of the input fields prompts for a login password
  • the other input field prompts for a permission verification code.
  • the user can make correspondings in the connection authentication page Enter and then click the Login button to send the information you entered to the wireless connection device.
  • the user can only enter the login password, or enter the login password and the authorization verification code at the same time.
  • any unauthenticated terminal can be directly connected to the wireless connection device of the embodiment of the present disclosure, but when the user wants to operate the terminal for networking or other operations, since the terminal is not given any login permission, Will be transferred to the above connection authentication page for the user to enter the login password and permission verification code. If only the login password is verified, the unregistered terminal can be connected or otherwise operated, and given temporary login permission; if the login password and the authorization verification code are simultaneously verified, the unregistered terminal can perform networking or other operations, and Permanent login permission is granted.
  • the authorization verification code used in the current time period is a login password to be used by the wireless connection device in the next time period.
  • the authority verification code used in each time period is the login password used in the next time period.
  • the login password 000000 and the authority verification code 111111 of the wireless connection device is 14:00-16:00.
  • the login password 111111 and the authority verification code 222222 of the wireless connection device are used, and the authorization verification code 222222 is the login password used in 16:00-18:00. Other cases and so on.
  • Step 120 If the received permission information includes a login password and does not include a permission verification code, permit the terminal to log in, and give the terminal temporary login permission.
  • the embodiments of the present disclosure may consider that the received permission information of the terminal includes a login password and does not include the authority verification code, because the situation (2) wireless connection The device side does not receive the authority verification code at all, and the received authority verification code of case (3) is wrong, and the wireless connection device side can actually understand that the authority verification code is not received. Then, in the above case, the terminal is allowed to log in, and the terminal is temporarily given the login authority.
  • Step 130 If the received permission information includes a login password and a rights verification code, permit the terminal to log in, and give the terminal resident login authority.
  • the embodiment of the present disclosure considers that the terminal is received.
  • the permission information includes a login password and a permission verification code.
  • the terminal is allowed to log in, and the terminal is permanently registered.
  • step 140 a new login password and a new authorization verification code are generated for use in the next time period.
  • a new login password and a new authorization verification code may be generated, and the new login password and the new authorization verification code are connected to the wireless connection device when the next time period is transferred. use.
  • the password for the first time period of the embodiment of the present disclosure is derived from initialization, ie, at the beginning of the first time period.
  • initialization ie, at the beginning of the first time period.
  • a new login password and a new authorization code are generated.
  • the wireless connection device uses the new login password and the new authorization code to assume that The logged in terminal gives temporary login permission or resident login permission.
  • a new login password and a new authorization verification code are generated, and when the third time period is entered, the wireless connection device uses the new login password generated at the end of the second period and A new permission verification code to give temporary login or resident login rights to terminals that are not logged in.
  • the wireless connection device login password and the authorization verification code change with time.
  • generating a new login password and a new authorization verification code for use in the next time period may also be performed at other times, and embodiments of the present disclosure are not limited to the end of each time period.
  • step 110 may be entered to perform subsequent operations.
  • the time period is 2 hours
  • the login password of the wireless connection device in the time period is 000000
  • the authority verification code in the time period is 111111.
  • a new login password 222222, and a new authorization verification code 333333 can be generated.
  • the login password 222222 is used, and the authority verification code 333333 is used.
  • the authorization verification code used in the current time period is a login password to be used by the wireless connection device in the next time period.
  • the wireless connection device acquires the login password of the first time period when initializing, and acquires the login password of the second time period as the authority verification code in the first time period. For example, in the foregoing time period 12:00-14:00, the wireless connection device generates a login password 000000 in the time period, and generates a login password 111111 to be used from 14:00 to 16:00, and 111111 as 12:00. - The verification code used in 14:00.
  • the authorization verification code used by the current time period is the login password to be used by the wireless connection device in the next time period.
  • the privilege verification code used in each time period is the login password in the corresponding next time period.
  • the login password used in the aforementioned 12:00-14:00 time period is 000000
  • the authority verification code used is 111111
  • 111111 is the login password to be used in 14:00-16:00.
  • the login password 000000 of 12:00-14:00 is modified to the authority verification code 111111 used in 12:00-14:00, and the generation will be at 16:00.
  • the login password used by the wireless connection device is 111111
  • the authorization verification code used is 222222.
  • the above process can reduce the amount of calculation of the wireless connection device, and can quickly switch the login password.
  • the dynamic password and the rights verification code may also be generated in other forms or may not be associated with a time period, and the embodiment of the present disclosure does not limit the same.
  • the new login password when the login password is updated, the new login password can be automatically calculated and generated according to the dynamic password algorithm.
  • Which dynamic code algorithm is specifically used in the embodiment of the present disclosure is not limited thereto.
  • Step 150 After the wireless connection device uses the new login password, the terminal having the temporary login authority is removed from the login state, and the login state of the terminal having the resident login authority is maintained.
  • a new login password and a new authorization verification code are generated during or at the end of the current time period for use in the next time period. Then, when entering the next cycle, the login password of the wireless connection device will be updated, that is, the wireless connection device will adopt the new login. Record the password. After the login password is updated, the embodiment of the present disclosure removes the terminal having the temporary login authority from the login state, so that it cannot log in to the wireless connection device again in the next time period. The login status of the terminal with the resident login authority is maintained, so that the wireless connection device can continue to be logged in in the next time period.
  • the wireless connection device of the embodiment of the present disclosure provides a login password and a rights verification code in each time period. Then, the temporary login authority is given to the terminal that has only sent the login password, and the resident login authority is given to the terminal that has entered the login password and the authority verification code at the same time. After each login password is updated, the terminal with the temporary login permission is removed from the login state of the wireless connection device, and the terminal with the resident login authority can continue to maintain its connection to the wirelessly connected device regardless of the password modification. Login status.
  • the embodiment of the present disclosure has at least one of the following advantages:
  • the password of the wireless connection device is automatically updated according to the time period, so that the password changes with time, each password is changed to a new password only after a period of time, and the login password is used.
  • the double verification method of the authority verification code makes the difficulty of violently cracking the wireless connection device, and the wireless signal is not easily smashed.
  • the embodiment of the present disclosure adopts two dynamic password verification methods, and the login password and the authority verification code change with time, and the security is higher.
  • a terminal cracks the login password, but the terminal will be identified as a temporary login authority. After a period of time, after the login password is automatically updated, the login status of the terminal will be automatically rejected.
  • the owner B of the wireless connected device can have his terminal send the login password and the authority verification code to the wireless connection device to obtain the resident login authority; and the user A who temporarily uses the wireless connection device In other words, owner B can let user A's terminal only send the login password to obtain temporary login permission. Since the wireless connection device can automatically update the login password according to the time period, after the login password is updated, the wireless connection device automatically disconnects the login state of the temporary login authority, so that the terminal cannot continue to log in to the wireless connection device. Therefore, the owner B does not need to actively modify the login password of the wireless connection device, and further, the owner does not need to modify the login password of each terminal after the login password is automatically modified, so that the owner B of the owner B can be guaranteed. Directly in the login state of the wireless connected device. It greatly facilitates the owner B of the wireless connection device, and does not need to perform unnecessary operations, thereby improving the flexibility of using the wireless connection device.
  • the temporary connection table is used in the wireless connection device to grant the temporary login permission to the terminal of the temporary user
  • the resident user table is used to assign the login permission of the resident user to the terminal of the resident user.
  • FIG. 2 it is a schematic flowchart of a wireless connection authentication method according to an embodiment of the present disclosure, which may specifically include:
  • Step 210 In the current time period, determine the authority information sent by any terminal according to the login password and the authority verification code used by the wireless connection device in the current time period.
  • Step 220 If the received permission information includes a login password and does not include a permission verification code, permit the terminal to log in, and write the identity information of the terminal into a temporary user table preset in the wireless connection device. .
  • the temporary user table is preset in the wireless connection device, and the method for writing the identity information of the terminal to the temporary user table for the terminal that includes the login password and not including the authority verification code is given An optional way to temporarily log in to the terminal.
  • the identity information of the terminal may include information such as a physical address.
  • Step 230 If the received permission information includes a login password and a rights verification code, the terminal is allowed to log in, and the identity information of the terminal is written in a resident user table preset in the wireless connection device.
  • the resident user table is preset in the wireless connection device, and the method for writing the identity information of the terminal to the resident user table for the terminal that includes the login password and the authority verification code is An optional way for the terminal to permanently log in.
  • step 240 a new login password and a new authorization verification code are generated for use in the next time period.
  • Step 250 After the wireless connection device uses the new login password, clear the identity information of each terminal recorded in the temporary user table, and for the identity information of the terminal in the resident user table, Maintain the login status of the corresponding terminal.
  • two tables are set, one is a temporary user table, and one is a resident user table.
  • Both the temporary user table and the resident user table are used to receive data packets sent by the terminal for subsequent processing. For example, when the network is connected, the data packet sent by the terminal recorded in the user table is received, and then forwarded to the Internet, and when the file is transmitted, for example, the file sent by the terminal recorded in the user table is received.
  • the identity information of the terminal maintained in the temporary user table at the end of each time period, the wireless connection device side empties the identity information recorded in the temporary user table.
  • the identity information in the resident user table is retained after the password is changed, and the login status of the terminal with the resident login authority is maintained.
  • the password of the wireless connection device it is automatically updated according to the time period, so the password changes with time, each password is changed to a new password only after a period of time, and because of the login password and the authority verification code
  • the two-factor authentication method makes it more difficult for the wireless connection device to be violently cracked, and the wireless signal is not easily smashed.
  • the temporary user table is used to maintain the temporary login permission
  • the resident user table is used to maintain the resident login authority.
  • the embodiment of the present disclosure adopts a user table in which the permission field is preset, and the user table gives the temporary user permission to the terminal of the temporary user in the form of a temporary mark, and the terminal of the resident user is often The form of the resident token gives the resident user login privileges.
  • FIG. 3 it is a schematic flowchart of a wireless connection authentication method according to an embodiment of the present disclosure, which may specifically include:
  • Step 310 In the current time period, determine the authority information sent by any terminal according to the login password and the authority verification code used by the wireless connection device in the current time period.
  • Step 320 If the received permission information includes a login password and does not include the authority verification And the terminal is allowed to log in, and the identity information of the terminal is written in a user table preset in the wireless connection device, and the temporary user tag is written in the permission field corresponding to the identity information in the user table. .
  • a user table is preset in a wireless connection device, and a rights field is preset in the user table.
  • the identity information of the terminal is written into the user table, and the temporary user identifier is written in the permission field corresponding to the identity information in the user table, which is An optional way to temporarily log in to the terminal.
  • the identity information of the terminal may include information such as a physical address.
  • a permission field is added to the normal user table, and the identity information of the terminal is temporarily marked in the field. For example, 0 is set as a temporary tag, indicating that the corresponding terminal identity information is temporary login authority.
  • Step 330 If the received permission information includes a login password and a rights verification code, permit the terminal to log in, and write the identity information of the terminal in a preset user table in the wireless connection device, and A permission field corresponding to the identity information in the user table is written to the resident user tag.
  • a user table is preset in a wireless connection device, and a permission field is preset in the user table.
  • the identity information of the terminal is written into the user table, and the temporary user identifier is written in the permission field corresponding to the identity information in the user table, which is given to the terminal.
  • the terminal identity information that needs to be granted the resident login authority is marked with a resident flag, for example, setting 1 is a resident flag, indicating that the corresponding terminal identity information is resident. Login permission.
  • step 340 a new login password and a new authorization verification code are generated for use in the next time period.
  • Step 350 After the wireless connection device uses the new login password, remove the identity information corresponding to the temporary user identifier in the user table, and remove the information from the user table, and for the terminal in the resident user table. Identity information, maintaining the login status of the corresponding terminal.
  • the embodiment of the present disclosure presets a new permission field in a user table, and identifies the identity of the terminal.
  • Information, the temporary login permission and the resident login permission mark, and after the password is updated the user table is deleted according to the permission flag, the identity information corresponding to the temporary login permission mark is deleted, and the identity information of the resident login permission mark is retained. Then, because there is no identity information of the temporary login authority terminal in the user table, the login status is removed, and the login status of the corresponding terminal is maintained for the identity information corresponding to the resident user identifier in the user table.
  • the password of the wireless connection device it is automatically updated according to the time period, so the password changes with time, each password is changed to a new password only after a period of time, and because of the login password and the authority verification code
  • the two-factor authentication method makes it more difficult for the wireless connection device to be violently cracked, and the wireless signal is not easily smashed.
  • a user table is used to maintain different login rights through different values of the permission field.
  • only Maintenance can be performed by traversing a user table, which maintains fewer user tables and consumes less system resources. And the owner of the connected device does not need to perform unnecessary operations, which improves the flexibility of use of the wireless connection device.
  • FIG. 4 it is a schematic flowchart of a wireless connection authentication method according to an embodiment of the present disclosure, which may specifically include:
  • Step 410 Determine, in the current time period, the authority information sent by any terminal according to the login password and the authority verification code used by the wireless connection device in the current time period.
  • Step 420 If the received permission information includes a login password and does not include a permission verification code, permit the terminal to log in, and give the terminal temporary login permission.
  • Step 430 If the received permission information includes a login password and a rights verification code, permit the terminal to log in, and give the terminal resident login authority.
  • step 440 a new login password and a new authorization verification code are generated for use in the next time period.
  • Step 450 After the wireless connection device uses the new login password, determine whether the login time length of the terminal is greater than or equal to a threshold; if the login time length of the terminal is greater than or equal to a threshold, proceed to step 460; If the login time is less than the threshold, go to the step. 470.
  • the length of the login time is a length of time between the time when the terminal ends from the login time point to the end of the current time period.
  • step 460 the terminal having the temporary login authority is removed from the login state.
  • step 470 the terminal having the temporary login authority is not removed from the login state.
  • the time period is 2 hours
  • the login password of the wireless connection device in the time period is 000000
  • the authority verification code in the time period is 111111.
  • Set the threshold for the length of time to 1 hour.
  • the terminal that logs in to the wireless connection device record the length of the login time. Then, for a terminal with temporary login authority registered between 13:00 and 14:00, after the wireless connection device uses the new login password 111111 at 14:00, the login time is less than 1 hour, and the terminal can continue to retain.
  • Login status for a terminal with temporary login authority registered at 13:00, after the wireless connection device uses the new login password 111111 at 14:00, the login time is equal to 1 hour, and the terminal is removed from the login state; For a terminal with temporary login permission registered between 12:00 and 13:00, after the wireless connection device uses the new login password 111111 at 14:00, the login time is longer than 1 hour, and the terminal is moved. In addition to the login status.
  • the terminal A of the temporary login authority logs in at 12:15
  • the terminal B of the temporary login authority logs in at 13:15.
  • the wireless connection device uses the new login password 111111
  • the login time of the terminal A is 105 minutes, and if it is greater than 1 hour, the login status of the terminal A is removed
  • the login time of the terminal B is The length is 45 minutes, and if it is less than 1 hour, the login status of the terminal B remains.
  • the login time of the terminal B is 165 minutes, and if it is greater than 1 hour, the login status of the terminal B is removed.
  • the length of the time period may be set according to requirements.
  • the length of the login time is not greater than the length of the time period.
  • a time field may be added in the temporary user table, and the login time length is recorded under the identity information entry of each terminal. Then, in step 450, for determining the length of the login time of the terminal, the length of the login time in the time field of each terminal in the temporary user table can be directly read. If the login time reaches the threshold, then in step 460, the temporary user is used. The entry of the corresponding terminal identity information in the table is deleted; If the login time length does not reach the threshold, then in step 470, the entry of the corresponding terminal identity information in the temporary user table is retained.
  • a time field is further added, and the login time length is recorded under the identity information entry of each terminal. Then, in step 450, for the length of the login time of the terminal having the temporary login authority, the length of the login time in the time field of each terminal in the temporary user table is directly read. If the login time reaches the threshold, then in step 460 The entry of the corresponding terminal identity information in the user table is deleted; if the login time length does not reach the threshold, in step 470, the entry of the corresponding terminal identity information in the user table is retained.
  • Step 480 after the wireless connection device uses the new login password, maintain the login status of the terminal having the resident login authority.
  • the terminal having the temporary login authority performs the operation of moving out of the login state, it is determined whether to remove the login state of the terminal according to the length of the login time of the terminal, if the terminal If the login time is less than the threshold, the login status of the terminal is not removed. Then, the login time of the terminal that can avoid the temporary login authority is too short, and the use of the temporary temporary terminal is affected.
  • FIG. 5 it is a schematic flowchart of a method for authenticating a wireless connection according to an embodiment of the present disclosure, which may specifically include:
  • Step 510 If the first trigger instruction is received, the login password is obtained for display.
  • Step 512 If a second triggering instruction is received within a predetermined time interval, the permission verification code is obtained for display.
  • Step 514 After the unregistered terminal is connected to the wireless connection device, the terminal display interface is jumped to the connection authentication page.
  • the displayed interface jumps to the foregoing connection authentication page to send the login password and the authority verification code through the link authentication page.
  • Step 516 Determine, according to the login password and the authority verification code used by the wireless connection device in the current time period, the authority information sent by any terminal in the current time period; the authority verification code used in the current time period For the wireless connection that will be in the next time period The login password used by the device.
  • Step 518 If the received permission information includes a login password and does not include a permission verification code, permit the terminal to log in, and give the terminal temporary login permission;
  • Step 520 If the received permission information includes a login password and a rights verification code, permit the terminal to log in, and give the terminal resident login authority.
  • step 522 a new login password and a new authorization verification code are generated for use in the next time period.
  • Step 524 After the wireless connection device uses the new login password, determine, for each terminal having the temporary login authority, whether the login time length of the terminal is greater than or equal to a threshold; the login time length is the login time of the terminal. The length of time between the point in time at which the current time period ends; if the length of the login time of the terminal reaches the threshold, then proceeds to step 526; if the length of the login time of the terminal does not reach the threshold, then step 528 is entered.
  • step 526 the terminal having the temporary login authority is removed from the login state.
  • step 528 the terminal having the temporary login authority is not removed from the login state.
  • Step 530 After the wireless connection device uses the new login password, maintain the login status of the terminal with the resident login authority.
  • the login password is updated, and after the login password is updated, the embodiment of the present disclosure removes the terminal having the temporary login authority from the login state, so that it is next You cannot log in to the wireless connection device again during the time period.
  • the login status of the terminal with the resident login authority is maintained, so that the wireless connection device can continue to be logged in in the next time period.
  • the password of the wireless connection device is automatically updated according to the time period, so that the password changes with time, and each password is changed to a new password only after a period of time, and the difficulty of brute force cracking Increased, and the wireless signal is not easily smashed.
  • the wireless connection device can automatically kick the temporary user out of the login state according to the time period, and retain the login status of the resident user. It greatly facilitates the use of wireless connection devices by users with resident requirements, and also facilitates the management of wireless devices by the owner of the wireless connection device, without unnecessary operations, and improves the flexibility of use of the wireless connection device.
  • FIG. 6 is a schematic structural diagram of a wireless connection authentication apparatus according to an embodiment of the present disclosure, which may specifically include:
  • the connection judging module 610 is adapted to judge the authority information sent by any terminal according to the login password and the authority verification code used by the wireless connection device in the current time period in the current time period.
  • the temporary login authority assigning module 620 is adapted to allow the terminal to log in if the received permission information includes a login password and does not include the authority verification code, and give the terminal temporary login authority.
  • the resident login authority assigning module 630 is adapted to allow the terminal to log in when the received permission information includes a login password and a rights verification code, and give the terminal permanent login authority;
  • the update module 640 is adapted to generate a new login password and a new authorization verification code for use in the next time period.
  • the rights management module 650 is adapted to remove the terminal having the temporary login authority from the login state after the wireless connection device uses the new login password, and maintain the login state of the terminal having the resident login authority.
  • the wireless connection authentication device may be embedded in a wireless connection device.
  • the authorization verification code used in the current time period is a login password to be used by the wireless connection device in the next time period.
  • it also includes:
  • the display module is adapted to obtain the login password and the authorization verification code for display according to the received trigger instruction.
  • the display module includes:
  • the first display submodule is adapted to obtain the login password for display if the first trigger instruction is received.
  • the second display submodule is adapted to obtain the permission verification code for display if the second trigger instruction is received within a predetermined time interval.
  • the authorization verification code used in the current time period is a login password to be used by the wireless connection device in the next time period.
  • the password of the wireless connection device is automatically updated according to the time period, so that the password changes with time, each password is changed to a new password only after a period of time, and the login password is used.
  • the double verification method of the authority verification code makes the difficulty of violently cracking the wireless connection device, and the wireless signal is not easily smashed.
  • the owner B of the wireless connected device can have his terminal send the login password and the authority verification code to the wireless connection device to obtain the resident login authority; and the user A who temporarily uses the wireless connection device In other words, owner B can let user A's terminal only send the login password to obtain temporary login permission. Since the wireless connection device can automatically update the login password according to the time period, after the login password is updated, the wireless connection device automatically disconnects the login state of the temporary login authority, so that the terminal cannot continue to log in to the wireless connection device. Therefore, it is not necessary for the owner B to actively modify the login password of the wireless connection device, and further, the owner does not need to modify the login password of each terminal after the login password is automatically modified, so that the owner B's terminal is always guaranteed.
  • the login status of the wirelessly connected device It greatly facilitates the owner B of the wireless connection device, and does not need to perform unnecessary operations, thereby improving the flexibility of using the wireless connection device.
  • FIG. 7 is a schematic structural diagram of a wireless connection authentication apparatus according to an embodiment of the present disclosure, which may specifically include:
  • the connection judging module 710 is adapted to judge the authority information sent by any terminal according to the login password and the authority verification code used by the wireless connection device in the current time period in the current time period.
  • the temporary login authority is given to the module 720, which specifically includes:
  • the first temporary login permission is given to the sub-module 722, and is adapted to receive the package information in the permission information. Including the login password without including the authorization verification code, the terminal is allowed to log in, and the identity information of the terminal is written in the temporary user table preset in the wireless connection device.
  • the resident login authority is given to the module 730, and specifically includes:
  • the first resident login authority is given to the sub-module 732, and is adapted to allow the terminal to log in, and write the identity information of the terminal in the wireless connection, if the received permission information includes a login password and a rights verification code.
  • the update module 740 is adapted to generate a new login password and a new authorization verification code for use in the next time period.
  • the rights management module 750 specifically includes:
  • the temporary user table clearing sub-module 752 is adapted to clear the identity information of each terminal recorded by the temporary user table after the wireless connection device uses the new login password.
  • the resident subscriber list maintaining submodule 754 is adapted to maintain the login status of the corresponding terminal for the identity information of the terminal in the resident subscriber list after the wireless connection device uses the new login password.
  • the password of the wireless connection device it is automatically updated according to the time period, so the password changes with time, each password is changed to a new password only after a period of time, and because of the login password and the authority verification code
  • the two-factor authentication method makes it more difficult for the wireless connection device to be violently cracked, and the wireless signal is not easily smashed.
  • the temporary user table is used to maintain the temporary login permission
  • the resident user table is used to maintain the resident login authority.
  • FIG. 8 is a schematic structural diagram of a wireless connection authentication apparatus according to an embodiment of the present disclosure, which may specifically include:
  • connection determining module 810 is adapted to determine, according to the login password and the rights verification code used by the wireless connection device in the current time period, the rights information sent by any terminal in the current time period;
  • the temporary login authority is given to the module 820, which specifically includes:
  • the temporary user adding sub-module 822 is adapted to allow the terminal to log in if the received permission information includes a login password and does not include the authority verification code, and write the identity information of the terminal in the wireless connection device. a preset user table, and writing a temporary user mark in a permission field corresponding to the identity information in the user table;
  • the resident login authority is given to the module 830, and specifically includes:
  • the resident user adding sub-module 832 is adapted to allow the terminal to log in if the received permission information includes a login password and a rights verification code, and write the identity information of the terminal in the wireless connection device. a user table, and writing a resident user mark in a permission field corresponding to the identity information in the user table;
  • An update module 840 adapted to generate a new login password and a new authorization verification code for use in the next time period
  • the rights management module 850 specifically includes:
  • the user table temporary removal sub-module 852 is adapted to remove the identity information corresponding to the temporary user identifier in the user table from the user table after the wireless connection device uses the new login password;
  • the user table resident maintenance submodule 854 is adapted to maintain the login status of the corresponding terminal for the identity information corresponding to the resident user tag in the user table after the wireless connection device uses the new login password.
  • the password of the wireless connection device it is automatically updated according to the time period, so the password changes with time, each password is changed to a new password only after a period of time, and because of the login password and the authority verification code
  • the two-factor authentication method makes it more difficult for the wireless connection device to be violently cracked, and the wireless signal is not easily smashed.
  • a user table is used to maintain different login rights through different values of the permission field.
  • only Maintenance can be performed by traversing a user table, which maintains fewer user tables and consumes less system resources. And the owner of the connected device does not need to perform unnecessary operations, which improves the flexibility of use of the wireless connection device.
  • FIG. 9 is a schematic structural diagram of a wireless connection authentication apparatus according to an embodiment of the present disclosure, which may specifically include:
  • the connection judging module 910 is adapted to judge the authority information sent by any terminal according to the login password and the authority verification code used by the wireless connection device in the current time period in the current time period.
  • the temporary login authority assigning module 920 is adapted to allow the terminal to log in if the received permission information includes a login password and does not include the authority verification code, and give the terminal temporary login authority.
  • the resident login authority assigning module 930 is adapted to allow the terminal to log in when the received permission information includes a login password and a rights verification code, and give the terminal permanent login authority;
  • the update module 940 is adapted to generate a new login password and a new authorization verification code for use in the next time period.
  • the rights management module 950 specifically includes:
  • the temporary user time judging sub-module 952 is configured to determine, for each terminal having the temporary login authority, whether the length of the login time of the terminal is greater than or equal to a threshold value before the terminal having the temporary login authority is removed from the login state;
  • the length of time is the length of time between the point in time when the terminal ends from the login time point to the end of the current time period.
  • the temporary user removal sub-module 954 is adapted to remove the terminal having the temporary login authority from the login state if the login time length of the terminal is greater than or equal to the threshold.
  • the temporary user maintenance sub-module 956 is adapted to remove the terminal having the temporary login authority from the login state if the login time length of the terminal is less than the threshold.
  • the resident user maintenance sub-module 958 is adapted to maintain the login status of the terminal having the resident login authority after the wireless connection device uses the new login password.
  • the terminal having the temporary login authority before the terminal having the temporary login authority is removed from the login state operation, it is determined whether the login state of the terminal is removed according to the login login length of the terminal, if the terminal If the login time is less than the threshold, the login status of the terminal is not removed. Then, the login time of the terminal that can avoid the temporary login authority is too short, and the use of the temporary temporary terminal is affected.
  • FIG. 10 is a schematic structural diagram of a wireless connection authentication system according to an embodiment of the present disclosure, which may specifically include:
  • the display module 1010 specifically includes:
  • the first display sub-module 1011 is adapted to obtain the login password for display if the first trigger instruction is received;
  • the second display sub-module 1012 is adapted to obtain the permission verification code for display if a second triggering instruction is received within a predetermined time interval.
  • the page jump module 1020 is adapted to jump to the connection authentication page after the terminal that is not logged in is connected to the wireless connection device;
  • the connection determining module 1030 is configured to determine, according to the login password and the rights verification code used by the wireless connection device in the current time period, the rights information sent by any terminal during the current time period;
  • the authorization verification code is the login password to be used by the wireless connection device in the next time period;
  • the temporary login authority assigning module 1040 is adapted to allow the terminal to log in when the received permission information includes a login password and does not include the authority verification code, and give the terminal temporary login authority;
  • the resident login authority assigning module 1050 is adapted to allow the terminal to log in when the received permission information includes a login password and a rights verification code, and give the terminal permanent login authority;
  • the update module 1060 is adapted to generate a new login password and a new authorization verification code for use in the next time period;
  • the rights management module 1070 further includes:
  • the temporary user time judging sub-module 1071 is adapted to determine, for each terminal having the temporary login authority, whether the length of the login time of the terminal is greater than or equal to a threshold value before the terminal having the temporary login authority is removed from the login state;
  • the length of time is the length of time between the time point from the login time point and the end of the current time period;
  • the temporary user removal sub-module 1072 is adapted to remove the terminal having the temporary login authority from the login state if the login time length of the terminal is greater than or equal to the threshold;
  • the temporary user maintenance sub-module 1073 is adapted to remove the terminal having the temporary login authority from the login state if the login time length of the terminal is less than the threshold.
  • the resident user maintenance sub-module 1074 is adapted to maintain the login status of the terminal having the resident login authority after the wireless connection device uses the new login password.
  • the password of the wireless connection device is automatically updated according to the time period, so that the password changes with time, and each password is changed to a new password only after a period of time, and the difficulty of brute force cracking Increased, and the wireless signal is not easily smashed.
  • the wireless connection device can automatically kick the temporary user out of the login state according to the time period, and retain the login status of the resident user. It greatly facilitates the use of wireless connection devices by users with resident requirements, and also facilitates the management of wireless devices by the owner of the wireless connection device, without unnecessary operations, and improves the flexibility of use of the wireless connection device.
  • a wireless router includes:
  • the first display sub-module (not shown in the figure) is adapted to obtain the login password for display if the first trigger instruction is received;
  • the second display sub-module (not shown in the figure) is adapted to obtain the permission verification code for display if a second trigger instruction is received within a predetermined time interval.
  • 1110 is the antenna of the wireless router
  • 1120 is a physical button for receiving a user trigger operation
  • 1130 is a display screen for displaying a login password and a rights verification code.
  • the embodiments of the present disclosure are also applicable to a mobile terminal (such as a mobile phone) including a wireless connection authentication device.
  • a mobile terminal such as a mobile phone
  • a wireless connection authentication device such as setting the mobile terminal as a wifi hotspot, turning on the Bluetooth of the mobile terminal, etc.
  • the disclosure can be applied.
  • the display of the login password and the authority verification code can be directly displayed on the display screen of the mobile terminal.
  • the triggering operation of the foregoing user may be implemented by triggering a touch screen of the mobile terminal, or by triggering a fixed button (such as a volume button) of the mobile terminal.
  • modules in the devices of the embodiments can be adaptively changed and placed in one or more devices different from the embodiment.
  • the modules or units or components of the embodiments may be combined into one module or unit or component, and further they may be divided into a plurality of sub-modules or sub-units or sub-components.
  • any combination of the features disclosed in the specification, including the accompanying claims, the abstract and the drawings, and any methods so disclosed, or All processes or units of the device are combined.
  • Each feature disclosed in this specification (including the accompanying claims, the abstract and the drawings) may be replaced by alternative features that provide the same, equivalent or similar purpose.
  • Embodiments of embodiments of the present disclosure may be implemented in hardware, or in a software module running on one or more processors, or in a combination thereof.
  • a microprocessor or digital signal processor may be used in practice to implement some or all of the functionality of some or all of the components of the wireless connection authentication device in accordance with embodiments of the present disclosure.
  • Embodiments of the present disclosure may also be implemented as a device or device program (e.g., a computer program and a computer program product) for performing some or all of the methods described herein.
  • a program implementing an embodiment of the present disclosure may be stored on a computer readable medium or may have the form of one or more signals. Such signals may be downloaded from an Internet website, provided on a carrier signal, or provided in any other form.

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Mobile Radio Communication Systems (AREA)
  • Telephone Function (AREA)
  • Telephonic Communication Services (AREA)

Abstract

本公开文本公开了一种无线连接认证方法和装置。所述无线连接认证方法包括在当前时间周期内,若接收到终端的权限信息中包括登录密码而不包括权限验证码,则允许所述终端登录,并赋予所述终端临时登录权限;若接收到终端的权限信息中包括登录密码以及权限验证码,则允许所述终端登录,并赋予所述终端常驻登录权限;生成新的登录密码和新的权限验证码,以供在下一个时间周期使用;在无线连接设备使用所述新的登录密码后,将具备临时登录权限的终端从登录状态移除,并维持具备常驻登录权限的终端的登录状态。

Description

无线连接认证方法和装置
相关申请的交叉引用
本申请主张在2015年4月24日在中国提交的中国专利申请号No.201510202082.2的优先权,其全部内容通过引用包含于此。
技术领域
本公开实施例涉及计算机技术领域,具体涉及一种无线连接认证方法和装置。
背景技术
随着技术的发展,很多终端设备可以通过无线连接以接入某个无线连接设备进行联网等操作,如移动终端通过wifi(Wireless Fidelity,无线保真,又称802.11b标准,是一种可以将个人电脑、手持设备等终端以无线方式互相连接的技术)接入到路由器等无线连接设备,从而联入互联网。当然,很多终端设备也可以通过其他无线连接的方式接入其它无线连接设备,比如手机通过蓝牙等无线方式接入到其他终端,以传输文件等操作。
而且,为了无线网络或者说无线连接设备的安全,一般均会在无线连接设备侧设置登录密码。比如具备wifi功能的路由器,需要用户首先登录路由器后设置登录密码。此后对于未登录过该路由器的终端,如果要使用该路由器联网,则需要在终端中输入登录密码以连接到路由器,然后才能通过该路由器联网。又比如将手机的蓝牙功能设置登录密码,其他终端通过蓝牙连接该手机时则需要输入登录密码以连接。
但是传统的无线连接设备的密码管理方式,存在如下缺点:
1、密码设定后是固定的,暴利破解难度小,安全系数过低,无线信号容易被蹭。
2、使用不够灵活。比如某个用户A想暂时使用无线连接设备的无线(如wifi、蓝牙等),在无线连接设备的拥有者B提供该无线连接设备的登录密码后,用户A可将其终端联入上述无线连接设备。而当用户A的终端在使用完后,如果拥有者B不主动更改其无线连接设备中原来的登录密码,用户A的终端存在后续继续连接拥有者B的无线连接设备的可能性。但往往拥有者B很 少会主动更改其无线连接设备的登录密码,因为更改登录密码意味着拥有者B所有的连接该无线连接设备的终端都需要重新设置登录密码,才能连接到该无线连接设备。因而,对拥有者B来说,其无线连接设备的密码管理不够灵活、方便。
发明内容
鉴于上述问题,提出了本公开实施例以便提供一种克服上述问题的无线连接认证装置和相应的无线连接认证方法。
依据本公开实施例的一个方面,提供了一种无线连接认证方法,包括:
在当前时间周期内,根据无线连接设备在当前时间周期内使用的登录密码和权限验证码,对终端发送的权限信息进行判断;
若接收到的所述权限信息中包括登录密码而不包括权限验证码,则允许所述终端登录,并赋予所述终端临时登录权限;
若接收到的所述权限信息中包括登录密码以及权限验证码,则允许所述终端登录,并赋予所述终端常驻登录权限;
生成新的登录密码和新的权限验证码,以供在下一个时间周期使用;
在无线连接设备使用所述新的登录密码后,将具备临时登录权限的终端从登录状态移除,并维持具备常驻登录权限的终端的登录状态。
可选的,所述在当前时间周期内,根据无线连接设备在当前时间周期内使用的登录密码和权限验证码,对终端发送的权限信息进行判断之前的步骤,还包括:
根据收到的触发指令,获取所述登录密码以及权限验证码进行展示。
可选的,所述根据收到的触发指令,获取所述登录密码以及权限验证码进行展示的步骤,包括:
接收到第一次触发指令,获取所述登录密码进行展示;
如果在预定时间间隔内接收到第二次触发指令,则获取所述权限验证码进行展示。
可选的,所述当前时间周期内使用的权限验证码为将要在下一个时间周期内由无线连接设备使用的登录密码。
可选的,所述赋予所述终端临时登录权限的步骤,包括:
将所述终端的身份信息写入在无线连接设备中预置的临时用户表;
进一步的,所述将具备临时登录权限的终端从登录状态移除的步骤,包括:
清空所述临时用户表所记录的各终端的身份信息。
可选的,所述赋予所述终端常驻登录权限的步骤,包括:
将所述终端的身份信息写入在无线连接设备中预置的常驻用户表。
可选的,所述赋予所述终端临时登录权限的步骤,包括:
将所述终端的身份信息写入在无线连接设备中预置的用户表,并在所述用户表中对应所述身份信息的权限字段写入临时用户标记;
进一步的,所述将具备临时登录权限的终端从登录状态移除的步骤,包括:
将所述用户表中临时用户标记对应的身份信息,从所述用户表中移除。
可选的,所述赋予所述终端常驻登录权限的步骤,包括:
将所述终端的身份信息写入在无线连接设备中预置的用户表,并在所述用户表中对应所述身份信息的权限字段写入常驻用户标记。
可选的,所述将具备临时登录权限的终端从登录状态移除的步骤之前,包括:
对于各具备临时登录权限的终端,判断所述终端的登录时间长度是否大于等于阈值;所述登录时间长度为所述终端从登录时间点到当前时间周期结束的时间点之间的时间长度;
如果所述终端的登录时间长度大于等于阈值,则将具备临时登录权限的终端从登录状态移除;
如果所述终端的登录时间长度小于阈值,则不将具备临时登录权限的终端从登录状态移除。
依据本公开的另外一个方面,提供了一种无线连接认证装置,包括:
连接判断模块,适于在当前时间周期内,根据无线连接设备在当前时间周期内使用的登录密码和权限验证码,对终端发送的权限信息进行判断;
临时登录权限赋予模块,适于若接收到的所述权限信息中包括登录密码而不包括权限验证码,则允许所述终端登录,并赋予所述终端临时登录权限;
常驻登录权限赋予模块,适于若接收到的所述权限信息中包括登录密码以及权限验证码,则允许所述终端登录,并赋予所述终端常驻登录权限;
更新模块,适于生成新的登录密码和新的权限验证码,以供在下一个时间周期使用;
权限管理模块,适于在无线连接设备使用所述新的登录密码后,将具备临时登录权限的终端从登录状态移除,并维持具备常驻登录权限的终端的登录状态。
可选的,还包括:
展示模块,适于根据收到的触发指令,获取所述登录密码以及权限验证码进行展示。
可选的,所述展示模块包括:
第一展示子模块,适于如果接收到第一次触发指令,则获取所述登录密码进行展示;
第二展示子模块,适于如果在预定时间间隔内接收到第二次触发指令,则获取所述权限验证码进行展示。
可选的,所述当前时间周期内使用的权限验证码为将要在下一个时间周期内由无线连接设备使用的登录密码。
可选的,所述临时登录权限赋予模块包括:
第一临时登录权限赋予子模块,适于将所述终端的身份信息写入在无线连接设备中预置的临时用户表;
进一步的,所述权限管理模块包括:
临时用户表清空子模块,适于清空所述临时用户表所记录的各终端的身份信息。
可选的,所述常驻登录权限赋予模块包括:
第一常驻登录权限赋予子模块,适于将所述终端的身份信息写入在无线连接设备中预置的常驻用户表。
可选的,所述临时登录权限赋予模块包括:
临时用户添加子模块,适于将所述终端的身份信息写入在无线连接设备中预置的用户表,并在所述用户表中对应所述身份信息的权限字段写入临时 用户标记;
进一步的,所述权限管理模块包括:
用户表临时移除子模块,适于将所述用户表中临时用户标记对应的身份信息,从所述用户表中移除。
可选的,所述常驻登录权限赋予模块包括:
常驻用户添加子模块,适于将所述终端的身份信息写入在无线连接设备中预置的用户表,并在所述用户表中对应所述身份信息的权限字段写入常驻用户标记。
可选的,所述权限管理模块还包括:
临时用户时间判断子模块,适于在将具备临时登录权限的终端从登录状态移除之前,对于各具备临时登录权限的终端,判断所述终端的登录时间长度是否大于等于阈值;所述登录时间长度为所述终端从登录时间点到当前时间周期结束的时间点之间的时间长度;
临时用户移除子模块,适于如果所述终端的登录时间长度大于等于阈值,则将具备临时登录权限的终端从登录状态移除;
临时用户维持子模块,适于如果所述终端的登录时间长度小于阈值,则不将具备临时登录权限的终端从登录状态移除。
相对背景技术,本公开实施例存在以下优点:
1、本公开实施例对于无线连接设备的登录密码,根据时间周期进行自动更新,如此密码是随着时间的变化而变化的,每个密码只使用一段时间即变更为新的密码,无线连接设备被暴力破解的难度增大,并且无线信号也不容易被蹭。
另一方面,本公开实施例通过设置登录密码和权限验证码两种验证方式,将无线连接设备拥有者所认可的终端赋予常驻登录权限,如果某个用户想破解上述两种验证方式,以使其终端被赋予常驻登录权限,由于存在两个两种验证方式,无线连接设备被暴力破解难度更大。
2、对于无线连接设备的拥有者B来说,拥有者B可使其终端发送登录密码以及权限验证码到所述无线连接设备,以获得常驻登录权限;而对临时使用所述无线连接设备的用户A来说,拥有者B可以让用户A的终端只发送 登录密码以获得临时登录权限。由于无线连接设备可根据时间周期自动更新登录密码,在登录密码更新后,无线连接设备则自动断开该临时登录权限的终端的登录状态,使该终端不能继续登录无线连接设备。因此,无需拥有者B主动修改无线连接设备的登录密码,进一步的也无需所述拥有者在该登录密码自动修改后,再去修改自己的各个终端的登录密码,即可保证拥有者B的终端一直处于无线连接设备的登录状态。大大方便了无线连接设备的拥有者B,无需其进行多余的操作,提高了无线连接设备的使用灵活性。无论登录密码如何更新,都不会影响常驻登录权限的终端的上网体验。
上述说明仅是本公开实施例技术方案的概述,为了能够更清楚了解本公开实施例的技术手段,而可依照说明书的内容予以实施,并且为了让本公开实施例的上述和其它目的、特征和优点能够更明显易懂,以下特举本公开实施例的具体实施方式。
附图说明
通过阅读下文可选实施方式的详细描述,各种其他的优点和益处对于本领域普通技术人员将变得清楚明了。附图仅用于示出可选实施方式的目的,而并不认为是对本公开实施例的限制。而且在整个附图中,用相同的参考符号表示相同的部件。在附图中:
图1示出了根据本公开实施例一个实施例的一种无线连接认证方法的流程示意图;
图2示出了根据本公开实施例一个实施例的另一种无线连接认证方法的流程示意图;
图3示出了根据本公开实施例一个实施例的另一种无线连接认证方法的流程示意图;
图4示出了根据本公开实施例一个实施例的另一种无线连接认证方法的流程示意图;
图5示出了根据本公开实施例一个实施例的另一种无线连接认证方法的流程示意图;
图6示出了根据本公开实施例一个实施例的一种无线连接认证装置的结构示意图;
图7示出了根据本公开实施例一个实施例的另一种无线连接认证装置的结构示意图;
图8示出了根据本公开实施例一个实施例的另一种无线连接认证装置的结构示意图;
图9示出了根据本公开实施例一个实施例的另一种无线连接认证装置的结构示意图;
图10示出了根据本公开实施例一个实施例的另一种无线连接认证装置的结构示意图;
图11示出了根据本公开实施例一个实施例的另一种无线路由器的结构示意图。
具体实施方式
下面将参照附图更详细地描述本公开的示例性实施例。虽然附图中显示了本公开的示例性实施例,然而应当理解,可以以各种形式实现本公开而不应被这里阐述的实施例所限制。相反,提供这些实施例是为了能够更透彻地理解本公开,并且能够将本公开的范围完整的传达给本领域的技术人员。
本公开实施例的核心思想之一在于:本公开实施例的无线连接设备在每个时间周期中提供了登录密码和权限验证码。那么针对只发送了上述登录密码的终端,赋予临时登录权限;而针对同时输入了上述登录密码和权限验证码的终端,赋予常驻登录权限。在每次登录密码更新后,将具备临时登录权限的终端从无线连接设备的登录状态移除,而无论密码如何修改,可将具备常驻登录权限的终端,继续保持其对从无线连接设备的登录状态。如此,可以自动定期修改无线连接设备的登录密码,并且由于登录密码和权限验证码的两重验证方式,使无线连接设备被暴力破解的难度增大,并且无线信号也不容易被蹭。并且,对于需要长期的连接无线连接设备的终端,在登录密码修改后也可继续维持登录状态,无需该终端的使用者再次输入密码的操作,使无线连接设备使用更灵活。
在本公开实施例的实施例中,所述无线连接设备包括具备wifi功能、蓝牙、红外等的设备,比如路由器、手机、平板电脑、智能手环、笔记本电脑、带无线网卡的台式电脑等设备。所述终端可以是任意可发起无线连接的终端, 如手机、平板电脑、智能手环等。
在本公开实施例的实施例中,其应用环境可以如:
(1)路由器(可以理解为本公开实施例的无线连接设备)可以设置其wifi的登录密码,用户想要将其手机或者其他终端联入该路由器的wifi中。
(2)用户A将其已经联入网络的手机(可以理解为本公开实施例的无线连接设备)设置为wifi热点,并设置wifi的登录密码,用户B想要将其手机或者其他终端联入该手机对应的wifi中。
(3)用户A将其手机(可以理解为本公开实施例的无线连接设备)的蓝牙打开,并设置针对蓝牙的登录密码,用户B想要将其手机或者其他终端联入该手机的蓝牙中。
实施例一
参照图1,其示出了本公开实施例的一种无线连接认证方法的流程示意图,具体可以包括:
步骤110,在当前时间周期内,根据由无线连接设备在当前时间周期内使用的登录密码和权限验证码,对由任意终端发送的权限信息进行判断。
在本公开实施例中,对于每个时间周期,无线连接设备都会获得用于在当前时间周期内登录无线连接设备的登录密码,以及用于确认常驻用户权限的权限验证码。
而用户在任意一个时间周期内都可以发送权限信息到上述无线连接设备中,那么无线连接设备则根据上述登录密码和权限验证码,对接收到的上述权限信息进行判断。
在实际应用中,上述判断过程是将上述终端发送的权限信息与无线连接设备的登录密码000000和权限验证码111111进行匹配。
在本公开实施例的一个具体实现中,初始化时,本公开实施例生成在第一个时间周期中使用的登录密码和权限验证码。然后在每个时间周期中或者结束时,生成下一个时间周期中使用的登录密码和权限验证码。比如在第一个时间周期结束时生成第二个时间周期使用的登录密码和权限验证码。如此类推,登录密码和权限验证码随着时间周期的变化而变更。
在本公开实施例中,可以理解,对于任意终端发送在任意时刻向无线连 接设备发送权限信息时,该时刻所在时间周期,均可以理解为前述的当前时间周期。
比如,无线连接设备初始化时刻为12:00,时间周期为2个小时,那么终端在12:30向无线连接设备发送登录密码,则当前时间周期为12:00-14:00,相应的,其下一个时间周期为14:00-16:00;当终端在14:30向无线连接设备发送登录密码,则当前时间周期为14:00-16:00,相应的,其下一个时间周期为16:00-18:00;终端在17:00向无线连接设备发送登录密码,则当前时间周期为16:00-18:00,相应的,其下一个时间周期为18:00-20:00。
当然,如果在两个时间周期的交接时刻接收到由终端发送的权限信息,那么当前时间周期可以为交接时刻之后的一个时间周期。比如在14:00接收到上述权限信息,那么当前时间周期可以为14:00-16:00。
可以理解,在本公开实施例中,用户发送的权限信息可分为两个字段,第一个字段为用户输入的登录密码,对应匹配登录密码,第二个字段为用户输入的权限验证码,对应匹配权限验证码。其中,第二个字段可以为空。当然,第一个字段和第二个字段的匹配对象可以根据需要调换。
可以理解,在本公开实施例中,某个终端发送的权限信息可能包括前述正确登录密码,也可能包括不正确其他密码,该终端发送的权限信息还可能包括前述正确的权限验证码,也可能包括不正确的其他验证码。本公开实施例在当前时间周期内,根据当前时间周期内的登录密码和权限验证码,对由任意终端发送的权限信息进行匹配。
对于匹配的情况,以前述时间周期12:00-14:00为例,无线连接设备在该时间周期内的登录密码为000000,在该时间周期内的权限验证码为111111,那么存在至少如下几种情况:
(1)、终端发送权限信息,其中包括登录密码123456,没有权限验证码;无线连接设备接收到该123456之后,与无线连接设备的登录密码000000和权限验证码111111进行匹配,发现均匹配不上,不予理会终端的连接。
(2)、终端发送权限信息,其中包括登录密码000000,没有权限验证码;无线连接设备接收到该000000之后,与无线连接设备的登录密码000000和权限验证码111111进行匹配,发现匹配上登录密码000000,则确定终端A 发送了正确的登录密码而未发送权限验证码。
(3)、终端发送权限信息,其中包括登录密码000000和权限验证码121212;无线连接设备接收到该000000和121212之后,分别与无线连接设备的登录密码000000和权限验证码111111进行匹配,发现匹配上登录密码000000而不能匹配上权限验证码,则确定终端A发送了正确的登录密码而发送了错误的权限验证码。
(4)、终端发送权限信息,其中包括登录密码000000和权限验证码111111,无线连接设备接收到该000000和111111之后,分别与无线连接设备的登录密码000000和权限验证码111111进行匹配,发现匹配上登录密码000000,也匹配上权限验证码111111,则确定终端A发送了正确的登录密码以及权限验证码。
(5)终端发送权限信息,其中包括登录密码222222和权限验证码333333,无线连接设备接收到该222222之后,与无线连接设备的登录密码000000和权限验证码111111进行匹配,发现匹配不上登录密码000000,则不再验证权限验证码。
可以理解,在本公开实施例中,无线连接设备对接收到的登录密码若匹配不上其在当前时间段内使用的登录密码,则不会再匹配权限验证码。
可选的,为了方便用户输入登录密码以及权限验证码,不用用户对其进行记忆,减轻用户的记忆负担,本公开实施例在步骤110之前还包括:
步骤105,根据收到的触发指令,获取所述登录密码以及权限验证码进行展示。
在本公开实施例中,用户可以对无线连接设备进行触发操作,以使无线连接设备对当前时间周期内的登录密码以及权限验证码进行展示。而无线连接设备根据用户的触发操作接收到触发指令,则获取当前时间周期内的登录密码和权限验证码,在显示屏上进行展示。
当然,在展示了一定时间后,比如30秒之后,可停止该次展示。
而为了避免一次性就将登录密码和权限验证码都暴露给无线连接设备的临时用户,避免临时用户一次性的就获得了当前时间周期内使用的登录密码和权限验证码,导致临时用户通过终端把登录密码和权限验证码都发送到无 线连接设备而获得常驻登录权限。可选的,上述步骤105包括:
子步骤1051,如果接收到第一次触发指令,则获取所述登录密码进行展示。
在本公开实施例中,操作者第一次在无线连接设备上进行无线连接的触发操作时,无线连接设备根据该触发操作接收到触发指令,然后根据触发指令获取当前时间段内的登录密码,再将该登录密码发送到无线连接设备的显示屏中进行展示。临时用户则可直接根据显示的登录密码,在其终端中进行输入,然后发送到无线连接设备中。
可以理解,对于临时用户来说,由于其已经根据该登录密码使其终端登录了无线连接设备,操作者可以不再进行触发操作,因而可不用再向临时用户展示权限验证码。
子步骤1052,如果在预定时间间隔内接收到第二次触发指令,则获取所述权限验证码进行展示。
而对于需要长期登录的常驻用户来说,当操作者在预定时间间隔内在无线连接设备上进行再次触发操作时,无线连接设备根据该触发操作接收到第二次触发指令,然后根据第二次触发指令获取当前时间段内的权限验证码,将该权限验证码发送到无线连接设备的显示屏中进行展示。那么常驻用户即可从显示屏中再次获得权限验证码,然后与前述登录密码一起其发送到无线连接设备。
可以理解,本公开实施例中,用户可以发送只包括登录密码的权限信息,也可以发送包括了登录密码和权限验证码的权限信息。
其中,上述预定时间间隔可以设置为30秒,也可以设置为从当前时刻到当前时间段结束之前。
当然,对于超过预定时间间隔的触发操作,本公开实施例可以认为接收到第一次触发指令,那么则触发对当前时间周期内的登录密码的显示。
在实际应用中,本公开实施例为未登录的终端提供连接认证页面,即当用户连接到无线连接设备后,未登录的终端会跳转到连接认证页面,该连接认证页面可以显示两个输入栏,其中一个输入栏提示输入登录密码,另外一个输入栏提示输入权限验证码。那么用户可以在该连接认证页面中进行相应 输入,然后点击登录按钮,将其输入的信息发送至无线连接设备。当然,用户可以只输入登录密码,也可以同时输入登录密码和权限验证码。
进一步的,可以理解,任意未认证的终端均可以直接连接到本公开实施例的无线连接设备,但是当用户想要操作该终端进行联网或者其他操作时,由于终端未被赋予任何登录权限,则会转入上述连接认证页面,以供用户输入登录密码和权限验证码。若只有登录密码验证通过,则未登录的终端可进行联网或者其他操作,并被赋予临时登录权限;若登录密码和权限验证码同时验证通过,则未登录的终端可进行联网或者其他操作,并被赋予常驻登录权限。
可选的,所述当前时间周期内使用的权限验证码为将要在下一个时间周期内由无线连接设备使用的登录密码。
可以理解,在本公开实施例中,每个时间周期中,其使用的权限验证码均为下一个时间周期使用的登录密码。
以前述时间周期12:00-14:00为例,12:00-14:00中,无线连接设备的登录密码000000和权限验证码111111,而该权限验证码111111为14:00-16:00中使用的登录密码。14:00-16:00中,无线连接设备的登录密码111111和权限验证码222222,而该权限验证码222222为16:00-18:00中使用的登录密码。其他情况以此类推。
步骤120,若接收到的所述权限信息中包括登录密码而不包括权限验证码,则允许所述终端登录,并赋予所述终端临时登录权限。
在本公开实施例中,对于前述(2)和(3)情况,本公开实施例均可认为接收到的终端的权限信息中包括登录密码而不包括权限验证码,因为情况(2)无线连接设备侧根本就没有接收到权限验证码,而情况(3)的接收的权限验证码是错误的,无线连接设备侧实际上也可以理解为没有接收到权限验证码。那么,在上述情况下,允许前述终端登录,并赋予前述终端临时登录权限。
步骤130,若接收到的所述权限信息中包括登录密码以及权限验证码,则允许所述终端登录,并赋予所述终端常驻登录权限。
在本公开实施例中,对于前述(4)情况,本公开实施例认为接收到终端 的权限信息中包括登录密码以及权限验证码,在上述情况下,允许前述终端登录,并赋予前述终端常驻登录权限。
步骤140,生成新的登录密码和新的权限验证码,以供在下一个时间周期使用。
在本公开实施例的每个时间周期中,均可生成新的登录密码和新的权限验证码,上述新的登录密码和新的权限验证码在转入下一个时间周期时,由无线连接设备使用。
在具体实现中,本公开实施例的第一个时间周期的密码由初始化而来,即第一个时间周期开始时获得。在第一个时间周期结束时,生成新的登录密码和新的权限验证码,那么转入第二个时间周期之时,无线连接设备使用该新的登录密码和新的权限验证码,以为未登录的终端赋予临时登录权限或者常驻登录权限。在第二时间周期结束时,再生成新的登录密码和新的权限验证码,那么转入第三个时间周期之时,则无线连接设备使用上述第二周期结束时生成的新的登录密码和新的权限验证码,以为未登录的终端赋予临时登录权限或者常驻登录权限。依次类推,无线连接设备登录密码和权限验证码随时间周期的变化而变化。
当然,在每个时间周期中,生成供在下一个时间周期使用的新的登录密码和新的权限验证码也可在其他时刻进行,本公开实施例不限定于每个时间周期结束。
本公开实施例在生成了以供在下一个时间周期使用的新的登录密码和新的权限验证码后,那么在进入下一个时间周期时,则在下一个时间周期内使用新的登录密码和权限验证码,那么如果在下一个时间周期中再次接收到其他终端发送的登录密码、或者登录密码和权限验证码,则可进入步骤110以进行后续操作。
以前述时间周期12:00-14:00为例,时间周期为2小时,无线连接设备在该时间周期内的登录密码为000000,在该时间周期内的权限验证码为111111。那么在该时间周期结束时,可以生成新的登录密码222222,和新的权限验证码333333。那么进入14:00-16:00这个时间周期时,采用登录密码222222,和权限验证码333333。
可选的,所述当前时间周期内使用的权限验证码为将要在下一个时间周期内由无线连接设备使用的登录密码。
在本公开实施例中,无线连接设备在初始化时,获取第一时间周期的登录密码,并获取第二时间周期的登陆密码作为第一时间周期中的权限验证码。比如以前述时间周期12:00-14:00为例,无线连接设备生成该时间周期内的登录密码000000,同时生成14:00-16:00要使用的登录密码111111,将111111作为12:00-14:00中使用的权限验证码。
可以理解,由于当前时间周期使用的权限验证码为将要在下一个时间周期内由无线连接设备使用的登录密码。那么每个时间周期中使用的权限验证码均为相应的下一个时间周期内的登录密码。
比如,前述12:00-14:00时间周期内使用的登录密码为000000,使用的权限验证码为111111,其中111111是将要在14:00-16:00中使用的登录密码。那么在12:00-14:00时间周期结束时,将12:00-14:00的登录密码000000修改为12:00-14:00中使用的权限验证码111111,同时生成将要在16:00-18:00中使用的登录密码222222。那么在进入14:00-16:00之后,无线连接设备使用的登录密码为111111,使用的权限验证码为222222。如此,每个时间周期结束时,循环执行上述操作过程。
上述过程可以降低无线连接设备的计算量,并且可快速对登录密码进行切换。
当然,动态密码和权限验证码也可以采用其他形式生成,也可以不与时间周期关联,本公开实施例不对其加以限制。
在本公开实施例中,将登录密码进行更新时,对于新的登录密码,可以自动按照动态密码算法计算生成。而具体采用哪一种动态密码算法本公开实施例不对其加以限制。
步骤150,在无线连接设备使用所述新的登录密码后,将具备临时登录权限的终端从登录状态移除,并维持具备常驻登录权限的终端的登录状态。
在本公开实施例中,由于当前时间周期内或者结束时,会生成新的登录密码和新的权限验证码,以供在下一个时间周期使用。那么在进入下一个周期之时,无线连接设备的登录密码会被更新,即无线连接设备会采用新的登 录密码。而在登录密码被更新后,本公开实施例将具备临时登录权限的终端从登录状态移除,使其在下一个时间周期再不能登录无线连接设备。而维持具备常驻登录权限的终端的登录状态,使其在下一个时间周期可以继续登录无线连接设备。
本公开实施例的无线连接设备在每个时间周期中提供了登录密码和权限验证码。那么针对只发送了登录密码的终端,赋予临时登录权限;而针对同时输入了登录密码和权限验证码的终端,赋予常驻登录权限。在每次登录密码更新后,将具备临时登录权限的终端从无线连接设备的登录状态移除,而无论密码如何修改,可将具备常驻登录权限的终端,继续保持其对从无线连接设备的登录状态。本公开实施例至少具备如下优点之一:
1、本公开实施例对于无线连接设备的密码,根据时间周期进行自动更新,如此密码是随着时间的变化而变化的,每个密码只使用一段时间即变更为新的密码,并且由于登录密码和权限验证码的两重验证方式,使无线连接设备被暴力破解的难度增大,并且无线信号也不容易被蹭。
例如,以6位的登录密码和权限验证码来说,每一位上26个字母加上10个数字有36种可能,那么对于6位数的密码就有36的6次方种可能,那么两个6位数密码就有36的12次方(4.7×1018)种可能,破解难度大大提高。另外,本公开实施例采用动态的两个密码验证方式,登录密码和权限验证码会随着时间进行变化,安全性更高。假设某个终端破解了登录密码,但该终端会被认定为临时登录权限的终端,而过一段时间之后,登录密码自动更新后,该终端的登录状态将被自动剔除。
2、对于无线连接设备的拥有者B来说,拥有者B可使其终端发送登录密码以及权限验证码到无线连接设备,以获得常驻登录权限;而对临时使用该无线连接设备的用户A来说,拥有者B可以让用户A的终端只发送登录密码以获得临时登录权限。由于无线连接设备可根据时间周期自动更新登录密码,在登录密码更新后,无线连接设备则自动断开该临时登录权限的终端的登录状态,使该终端不能继续登录无线连接设备。因此,无需拥有者B主动修改无线连接设备的登录密码,进一步的也无需该拥有者在该登录密码自动修改后,再去修改自己的各个终端的登录密码,即可保证拥有者B的终端一 直处于无线连接设备的登录状态。大大方便了无线连接设备的拥有者B,无需其进行多余的操作,提高了无线连接设备的使用灵活性。
3、对登录密码和权限验证码进行显示,可以方便用户进行输入,降低用户记忆负担。
实施例二
本公开实施例在实施例一的基础之上,在无线连接设备中采用临时用户表对临时用户的终端赋予临时登录权限,采用常驻用户表对常驻用户的终端赋予常驻用户的登录权限。
参照图2,其示出了本公开实施例的一种无线连接认证方法的流程示意图,具体可以包括:
步骤210,在当前时间周期内,根据由无线连接设备在当前时间周期内使用的登录密码和权限验证码,对由任意终端发送的权限信息进行判断。
步骤220,若接收到的所述权限信息中包括登录密码而不包括权限验证码,则允许所述终端登录,并将所述终端的身份信息写入在无线连接设备中预置的临时用户表。
在本公开实施例中,在无线连接设备中预置临时用户表,对于发送了包括登录密码而不包括权限验证码的终端,将该终端的身份信息写入上述临时用户表的方式,是赋予上述终端临时登录权限的一种可选方式。
其中,终端的身份信息可以包括物理地址等信息。
步骤230,若接收到的所述权限信息中包括登录密码以及权限验证码,则允许所述终端登录,并将所述终端的身份信息写入在无线连接设备中预置的常驻用户表。
在本公开实施例中,在无线连接设备中预置常驻用户表,对于发送了包括登录密码以及权限验证码的终端,将该终端的身份信息写入上述常驻用户表的方式,是赋予上述终端常驻登录权限的一种可选方式。
步骤240,生成新的登录密码和新的权限验证码,以供在下一个时间周期使用。
步骤250,在无线连接设备使用所述新的登录密码后,清空所述临时用户表所记录的各终端的身份信息,并对于常驻用户表中的终端的身份信息, 维持相应终端的登录状态。
在本公开实施例中,设置了两张表,一张是临时用户表,一张是常驻用户表,临时用户表和常驻用户表均用于接收终端发送的数据包进行后续处理。比如联网时,接收在上述用户表中记录的终端所发送的数据包,然后向互联网转发,又比如传输文件时,接收在上述用户表中记录的终端所发送的文件等。
其中,临时用户表中维护的终端的身份信息,在每个时间周期结束时,无线连接设备侧就将临时用户表中记录的身份信息清空。而常驻用户表中的身份信息,在密码变更后,还予以保留,继续维持具备常驻登录权限的终端的登录状态。
本公开实施例至少具备如下优点之一:
1、对于无线连接设备的密码,根据时间周期进行自动更新,如此密码是随着时间的变化而变化的,每个密码只使用一段时间即变更为新的密码,并且由于登录密码和权限验证码的两重验证方式,使无线连接设备被暴力破解的难度增大,并且无线信号也不容易被蹭。
2、对于无线连接设备的拥有者B来说,采用临时用户表维护临时登录权限,采用常驻用户表维护常驻登录权限,那么在无线连接设备在登录密码变更后,进行登录权限维护时,不用遍历每个终端的身份信息,可以直接根据表的性质进行维护,维护简单,计算量低。并且无需连接设备的拥有者进行多余的操作,提高了无线连接设备的使用灵活性。
实施例三
本公开实施例在实施例一的基础之上,采用预置了权限字段的用户表,在用户表对临时用户的终端以临时标记的形式赋予其临时登录权限,对常驻用户的终端以常驻标记的形式赋予其常驻用户的登录权限。
参照图3,其示出了本公开实施例的一种无线连接认证方法的流程示意图,具体可以包括:
步骤310,在当前时间周期内,根据由无线连接设备在当前时间周期内使用的登录密码和权限验证码,对由任意终端发送的权限信息进行判断。
步骤320,若接收到的所述权限信息中包括登录密码而不包括权限验证 码,则允许所述终端登录,并将所述终端的身份信息写入在无线连接设备中预置的用户表,并在所述用户表中对应所述身份信息的权限字段写入临时用户标记。
在本公开实施例中,在无线连接设备中预置用户表,并在该用户表中预置权限字段。对于发送了包括登录密码而不包括权限验证码的终端,将该终端的身份信息写入上述用户表,并在上述用户表中对应该身份信息的权限字段写入临时用户标记的方式,是赋予上述终端临时登录权限的一种可选方式。
其中,终端的身份信息可以包括物理地址等信息。在本公开实施例中,在通常的用户表中添加了一个权限字段,在该字段下对终端的身份信息进行临时标记,比如设置0为临时标记,表示对应的终端身份信息为临时登录权限。
步骤330,若接收到的所述权限信息中包括登录密码以及权限验证码,则允许所述终端登录,并将所述终端的身份信息写入在无线连接设备中预置的用户表,并在所述用户表中对应所述身份信息的权限字段写入常驻用户标记。
在本公开实施例中,在本公开实施例中,在无线连接设备中预置用户表,并在该用户表中预置权限字段。对于发送了包括登录密码以及权限验证码的终端,将该终端的身份信息写入上述用户表,并在上述用户表中对应该身份信息的权限字段写入临时用户标记的方式,是赋予上述终端常驻登录权限的一种可选方式。
如前所述,在上述用户表的权限字段下,对需要赋予常驻登录权限的终端身份信息,对其进行常驻标记,比如设置1为常驻标记,表示对应的终端身份信息为常驻登录权限。
步骤340,生成新的登录密码和新的权限验证码,以供在下一个时间周期使用。
步骤350,在无线连接设备使用所述新的登录密码后,将所述用户表中临时用户标记对应的身份信息,从所述用户表中移除息,并对于常驻用户表中的终端的身份信息,维持相应终端的登录状态。
本公开实施例在一张用户表中预置一个新的权限字段,对于终端的身份 信息,进行临时登录权限和常驻登陆权限的标记,然后在密码更新之后,将该用户表根据权限标记,将临时登录权限的标记对应的身份信息删除,保留常驻登录权限标记的身份信息,那么由于用户表中没有临时登录权限终端的身份信息,其登录状态就被移出,而对于所述用户表中常驻用户标记对应的身份信息,维持相应终端的登录状态。
本公开实施例至少具备如下优点之一:
1、对于无线连接设备的密码,根据时间周期进行自动更新,如此密码是随着时间的变化而变化的,每个密码只使用一段时间即变更为新的密码,并且由于登录密码和权限验证码的两重验证方式,使无线连接设备被暴力破解的难度增大,并且无线信号也不容易被蹭。
2、对于无线连接设备的拥有者B来说,采用一张用户表,通过权限字段的不同值维护不同的登录权限,那么在无线连接设备在登录密码变更后,进行登录权限维护时,可以只遍历一张用户表即可进行维护,其维护的用户表少,占用系统资源少。并且无需连接设备的拥有者进行多余的操作,提高了无线连接设备的使用灵活性。
实施例四
参照图4,其示出了本公开实施例的一种无线连接认证方法的流程示意图,具体可以包括:
步骤410,在当前时间周期内,根据由无线连接设备在当前时间周期内使用的登录密码和权限验证码,对由任意终端发送的权限信息进行判断。
步骤420,若接收到的所述权限信息中包括登录密码而不包括权限验证码,则允许所述终端登录,并赋予所述终端临时登录权限。
步骤430,若接收到的所述权限信息中包括登录密码以及权限验证码,则允许所述终端登录,并赋予所述终端常驻登录权限。
步骤440,生成新的登录密码和新的权限验证码,以供在下一个时间周期使用。
步骤450,在无线连接设备使用所述新的登录密码后,判断所述终端的登录时间长度是否大于等于阈值;如果所述终端的登录时间长度大于等于阈值,则进入步骤460;如果所述终端的登录时间长度小于阈值,则进入步骤 470。
其中,上述登录时间长度为所述终端从登录时间点到当前时间周期结束的时间点之间的时间长度。
步骤460,将具备临时登录权限的终端从登录状态移除。
步骤470,不将具备临时登录权限的终端从登录状态移除。
以前述时间周期12:00-14:00为例,时间周期为2小时,无线连接设备在该时间周期内的登录密码为000000,在该时间周期内的权限验证码为111111。设针对时间长度的阈值为1个小时。对于登录无线连接设备的终端,记录其登录时间长度。那么对在13:00-14:00之间登录的具有临时登录权限的终端,在14:00时无线连接设备使用新的登录密码111111后,其登录时间长度小于1小时,上述终端可以继续保留登录状态;对于13:00登录的具有临时登录权限的终端,在14:00时无线连接设备使用新的登录密码111111后,其登录时间长度等于1小时,上述终端则会被移除登录状态;而对于12:00-13:00之间登录的具有临时登录权限的终端,在14:00时无线连接设备使用新的登录密码111111后,其登录时间长度大于1小时,上述终端则会被移除登录状态。
更进一步,比如临时登录权限的终端A在12:15登录,临时登录权限的终端B在13:15登录。那么在14:00时,无线连接设备使用新的登录密码111111后,终端A的登录时间长度为105分钟,其大于1小时,则终端A的登录状态则被移除;而终端B的登录时间长度为45分钟,其小于1小时,则终端B的登录状态保留。而在16:00时,无线连接设备使用新的登录密码222222后,终端B的登录时间长度为165分钟,其大于1小时,则终端B的登录状态则被移除。
在本公开实施例中,时间周期长度可以根据需求设置,可选的,上述登录时间长度不大于时间周期的长度。
当然,对于实施例二中的临时用户表和常驻用户表的情况,则可在临时用户表中添加一个时间字段,在各终端的身份信息条目下记录其登录时间长度。那么在步骤450中,对于判断终端的登录时间长度,可直接读取上述临时用户表中各个终端的时间字段下的登录时间长度,如果登录时间长度达到阈值,则在步骤460中,将临时用户表中相应终端身份信息的条目删除;如 果登录时间长度未达到阈值,则在步骤470中,将临时用户表中相应终端身份信息的条目保留。
也可以理解,对于实施例三中的一张用户表,还会进一步添加一个时间字段,在各终端的身份信息条目下记录其登录时间长度。那么在步骤450中,对于判断具备临时登录权限的终端的登录时间长度,直接读取所述临时用户表中各个终端的时间字段下的登录时间长度,如果登录时间长度达到阈值,则在步骤460中,将用户表中相应终端身份信息的条目删除;如果登录时间长度未达到阈值,则在步骤470中,将用户表中相应终端身份信息的条目保留。
步骤480,在无线连接设备使用所述新的登录密码后,维持具备常驻登录权限的终端的登录状态。
本公开实施例在实施例一的基础之上,在对具备临时登录权限的终端进行移出其登录状态操作之前,根据终端的登录时间长度,确定是否将所述终端的登录状态移出,如果终端的登录时间长度小于阈值,则不将终端的登录状态移出。那么可以避免临时登录权限的终端的登录时间长度过短,而影响正常的临时终端的使用。
实施例五
参照图5,其示出了本公开实施例最优的一种无线连接认证方法的流程示意图,具体可以包括:
步骤510,如果接收到第一次触发指令,获取所述登录密码进行展示。
步骤512,如果在预定时间间隔内接收到第二次触发指令,获取所述权限验证码进行展示。
步骤514,在未登录的终端连接到无线连接设备后,将所述终端展示界面跳转到连接认证页面。
那么未登录终端连接到无线连接设备之后,其展示的界面则会跳转到前述连接认证页面,以通过链接认证页面发送登录密码和权限验证码。
步骤516,在当前时间周期内,根据由无线连接设备在当前时间周期内使用的登录密码和权限验证码,对由任意终端发送的权限信息进行判断;所述当前时间周期内使用的权限验证码为将要在下一个时间周期内由无线连接 设备使用的登录密码。
步骤518,若接收到的所述权限信息中包括登录密码而不包括权限验证码,则允许所述终端登录,并赋予所述终端临时登录权限;
步骤520,若接收到的所述权限信息中包括登录密码以及权限验证码,则允许所述终端登录,并赋予所述终端常驻登录权限。
步骤522,生成新的登录密码和新的权限验证码,以供在下一个时间周期使用。
步骤524,在无线连接设备使用所述新的登录密码后,对于各具备临时登录权限的终端,判断所述终端的登录时间长度是否大于等于阈值;所述登录时间长度为所述终端从登录时间点到当前时间周期结束的时间点之间的时间长度;如果所述终端的登录时间长度达到阈值,则进入步骤526;如果所述终端的登录时间长度未达到阈值,则进入步骤528。
步骤526,将具备临时登录权限的终端从登录状态移除。
步骤528,不将具备临时登录权限的终端从登录状态移除。
步骤530,在无线连接设备使用所述新的登录密码后,维持具备常驻登录权限的终端的登录状态。
在本公开实施例中,在每个时间周期结束时,登录密码会被更新,而在登录密码被更新后,本公开实施例将具备临时登录权限的终端从登录状态移除,使其在下一个时间周期再不能登录无线连接设备。而维持具备常驻登录权限的终端的登录状态,使其在下一个时间周期可以继续登录无线连接设备。
本公开实施例在实施例一的基础之上至少具备如下优点之一:
1、本公开实施例对于无线连接设备的密码,根据时间周期进行自动更新,如此密码是随着时间的变化而变化的,每个密码只使用一段时间即变更为新的密码,暴力破解的难度增大,并且无线信号也不容易被蹭。
2、无线连接设备可自动根据时间周期将临时用户踢出登录状态,保留常驻用户的登录状态。大大方便了有常驻需求的用户对无线连接设备的使用,也方便了无线连接设备的拥有者对无线设备的管理,无需其进行多余的操作,提高了无线连接设备的使用灵活性。
3、对登录密码和权限验证码进行显示,可以方便用户进行输入,降低用 户记忆负担。
4、在对具备临时登录权限的终端进行移出其登录状态操作之前,根据终端的登录时间长度,确定是否将所述终端的登录状态关闭。那么可以避免临时登录权限的终端的登录时间长度过短,而影响正常的临时终端的使用。
实施例六
参照图6,其示出了本公开实施例最优的一种无线连接认证装置的结构示意图,具体可以包括:
连接判断模块610,适于在当前时间周期内,根据由无线连接设备在当前时间周期内使用的登录密码和权限验证码,对由任意终端发送的权限信息进行判断。
临时登录权限赋予模块620,适于若接收到的所述权限信息中包括登录密码而不包括权限验证码,则允许所述终端登录,并赋予所述终端临时登录权限。
常驻登录权限赋予模块630,适于若接收到的所述权限信息中包括登录密码以及权限验证码,则允许所述终端登录,并赋予所述终端常驻登录权限;
更新模块640,适于生成新的登录密码和新的权限验证码,以供在下一个时间周期使用。
权限管理模块650,适于在无线连接设备使用所述新的登录密码后,将具备临时登录权限的终端从登录状态移除,并维持具备常驻登录权限的终端的登录状态。
在本公开实施例中,所述无线连接认证装置可嵌入无线连接设备之中。
可选的,所述当前时间周期内使用的权限验证码为将要在下一个时间周期内由无线连接设备使用的登录密码。
可选的,还包括:
展示模块,适于根据收到的触发指令,获取所述登录密码以及权限验证码进行展示。
可选的,所述展示模块包括:
第一展示子模块,适于如果接收到第一次触发指令,则获取所述登录密码进行展示。
第二展示子模块,适于如果在预定时间间隔内接收到第二次触发指令,则获取所述权限验证码进行展示。
可选的,所述当前时间周期内使用的权限验证码为将要在下一个时间周期内由无线连接设备使用的登录密码。
本公开实施例至少具备如下优点之一:
1、本公开实施例对于无线连接设备的密码,根据时间周期进行自动更新,如此密码是随着时间的变化而变化的,每个密码只使用一段时间即变更为新的密码,并且由于登录密码和权限验证码的两重验证方式,使无线连接设备被暴力破解的难度增大,并且无线信号也不容易被蹭。
2、对于无线连接设备的拥有者B来说,拥有者B可使其终端发送登录密码以及权限验证码到无线连接设备,以获得常驻登录权限;而对临时使用该无线连接设备的用户A来说,拥有者B可以让用户A的终端只发送登录密码以获得临时登录权限。由于无线连接设备可根据时间周期自动更新登录密码,在登录密码更新后,无线连接设备则自动断开该临时登录权限的终端的登录状态,使该终端不能继续登录无线连接设备。因此,无需拥有者B主动修改无线连接设备的登录密码,进一步的也无需该拥有者在该登录密码自动修改后,再去修改自己的各个终端的登录密码,即可保证拥有者B的终端一直处于无线连接设备的登录状态。大大方便了无线连接设备的拥有者B,无需其进行多余的操作,提高了无线连接设备的使用灵活性。
3、对登录密码和权限验证码进行显示,可以方便用户进行输入,降低用户记忆负担。
实施例七
参照图7,其示出了本公开实施例最优的一种无线连接认证装置的结构示意图,具体可以包括:
连接判断模块710,适于在当前时间周期内,根据由无线连接设备在当前时间周期内使用的登录密码和权限验证码,对由任意终端发送的权限信息进行判断。
临时登录权限赋予模块720,具体包括:
第一临时登录权限赋予子模块722,适于若接收到的所述权限信息中包 括登录密码而不包括权限验证码,则允许所述终端登录,并将所述终端的身份信息写入在无线连接设备中预置的临时用户表。
常驻登录权限赋予模块730,具体包括:
第一常驻登录权限赋予子模块732,适于若接收到的所述权限信息中包括登录密码以及权限验证码,则允许所述终端登录,并将所述终端的身份信息写入在无线连接设备中预置的常驻用户表。
更新模块740,适于生成新的登录密码和新的权限验证码,以供在下一个时间周期使用。
权限管理模块750,具体包括:
临时用户表清空子模块752,适于在无线连接设备使用所述新的登录密码后,清空所述临时用户表所记录的各终端的身份信息适。
常驻用户表维持子模块754,适于在无线连接设备使用所述新的登录密码后,对于常驻用户表中的终端的身份信息,维持相应终端的登录状态。
本公开实施例至少具备如下优点之一:
1、对于无线连接设备的密码,根据时间周期进行自动更新,如此密码是随着时间的变化而变化的,每个密码只使用一段时间即变更为新的密码,并且由于登录密码和权限验证码的两重验证方式,使无线连接设备被暴力破解的难度增大,并且无线信号也不容易被蹭。
2、对于无线连接设备的拥有者B来说,采用临时用户表维护临时登录权限,采用常驻用户表维护常驻登录权限,那么在无线连接设备在登录密码变更后,进行登录权限维护时,不用遍历每个终端的身份信息,可以直接根据表的性质进行维护,维护简单,计算量低。并且无需连接设备的拥有者进行多余的操作,提高了无线连接设备的使用灵活性。
实施例八
参照图8,其示出了本公开实施例最优的一种无线连接认证装置的结构示意图,具体可以包括:
连接判断模块810,适于在当前时间周期内,根据由无线连接设备在当前时间周期内使用的登录密码和权限验证码,对由任意终端发送的权限信息进行判断;
临时登录权限赋予模块820,具体包括:
临时用户添加子模块822,适于若接收到的所述权限信息中包括登录密码而不包括权限验证码,则允许所述终端登录,并将所述终端的身份信息写入在无线连接设备中预置的用户表,并在所述用户表中对应所述身份信息的权限字段写入临时用户标记;
常驻登录权限赋予模块830,具体包括:
常驻用户添加子模块832,适于若接收到的所述权限信息中包括登录密码以及权限验证码,则允许所述终端登录,并将所述终端的身份信息写入在无线连接设备中预置的用户表,并在所述用户表中对应所述身份信息的权限字段写入常驻用户标记;
更新模块840,适于生成新的登录密码和新的权限验证码,以供在下一个时间周期使用;
权限管理模块850,具体包括:
用户表临时移除子模块852,适于在无线连接设备使用所述新的登录密码后,将所述用户表中临时用户标记对应的身份信息,从所述用户表中移除;
用户表常驻维持子模块854,适于在无线连接设备使用所述新的登录密码后,对于所述用户表中常驻用户标记对应的身份信息,维持相应终端的登录状态。
本公开实施例至少具备如下优点之一:
1、对于无线连接设备的密码,根据时间周期进行自动更新,如此密码是随着时间的变化而变化的,每个密码只使用一段时间即变更为新的密码,并且由于登录密码和权限验证码的两重验证方式,使无线连接设备被暴力破解的难度增大,并且无线信号也不容易被蹭。
2、对于无线连接设备的拥有者B来说,采用一张用户表,通过权限字段的不同值维护不同的登录权限,那么在无线连接设备在登录密码变更后,进行登录权限维护时,可以只遍历一张用户表即可进行维护,其维护的用户表少,占用系统资源少。并且无需连接设备的拥有者进行多余的操作,提高了无线连接设备的使用灵活性。
实施例九
参照图9,其示出了本公开实施例最优的一种无线连接认证装置的结构示意图,具体可以包括:
连接判断模块910,适于在当前时间周期内,根据由无线连接设备在当前时间周期内使用的登录密码和权限验证码,对由任意终端发送的权限信息进行判断。
临时登录权限赋予模块920,适于若接收到的所述权限信息中包括登录密码而不包括权限验证码,则允许所述终端登录,并赋予所述终端临时登录权限。
常驻登录权限赋予模块930,适于若接收到的所述权限信息中包括登录密码以及权限验证码,则允许所述终端登录,并赋予所述终端常驻登录权限;
更新模块940,适于生成新的登录密码和新的权限验证码,以供在下一个时间周期使用。
权限管理模块950,具体包括:
临时用户时间判断子模块952,适于在将具备临时登录权限的终端从登录状态移除之前,对于各具备临时登录权限的终端,判断所述终端的登录时间长度是否大于等于阈值;所述登录时间长度为所述终端从登录时间点到当前时间周期结束的时间点之间的时间长度。
临时用户移除子模块954,适于如果所述终端的登录时间长度大于等于阈值,则将具备临时登录权限的终端从登录状态移除。
临时用户维持子模块956,适于如果所述终端的登录时间长度小于阈值,则不将具备临时登录权限的终端从登录状态移除。
常驻用户维持子模块958,适于在无线连接设备使用所述新的登录密码后,维持具备常驻登录权限的终端的登录状态。
本公开实施例在实施例六的基础之上,在对具备临时登录权限的终端进行移出其登录状态操作之前,根据终端的登录时间长度,确定是否将所述终端的登录状态移出,如果终端的登录时间长度小于阈值,则不将终端的登录状态移出。那么可以避免临时登录权限的终端的登录时间长度过短,而影响正常的临时终端的使用。
实施例十
参照图10,其示出了本公开实施例最优的一种无线连接认证系统的结构示意图,具体可以包括:
展示模块1010,具体包括:
第一展示子模块1011,适于如果接收到第一次触发指令,获取所述登录密码进行展示;
第二展示子模块1012,适于如果在预定时间间隔内接收到第二次触发指令,获取所述权限验证码进行展示。
页面跳转模块1020,适于在未登录的终端连接到无线连接设备后,将所述终端展示界面跳转到连接认证页面;
连接判断模块1030,适于在当前时间周期内,根据由无线连接设备在当前时间周期内使用的登录密码和权限验证码,对由任意终端发送的权限信息进行判断;所述当前时间周期内使用的权限验证码为将要在下一个时间周期内由无线连接设备使用的登录密码;
临时登录权限赋予模块1040,适于若接收到的所述权限信息中包括登录密码而不包括权限验证码,则允许所述终端登录,并赋予所述终端临时登录权限;
常驻登录权限赋予模块1050,适于若接收到的所述权限信息中包括登录密码以及权限验证码,则允许所述终端登录,并赋予所述终端常驻登录权限;
更新模块1060,适于生成新的登录密码和新的权限验证码,以供在下一个时间周期使用;
权限管理模块1070,还包括:
临时用户时间判断子模块1071,适于在将具备临时登录权限的终端从登录状态移除之前,对于各具备临时登录权限的终端,判断所述终端的登录时间长度是否大于等于阈值;所述登录时间长度为所述终端从登录时间点到当前时间周期结束的时间点之间的时间长度;
临时用户移除子模块1072,适于如果所述终端的登录时间长度大于等于阈值,则将具备临时登录权限的终端从登录状态移除;
临时用户维持子模块1073,适于如果所述终端的登录时间长度小于阈值,则不将具备临时登录权限的终端从登录状态移除。
常驻用户维持子模块1074,适于在无线连接设备使用所述新的登录密码后,维持具备常驻登录权限的终端的登录状态。
本公开实施例在实施例六的基础之上,至少具备如下优点之一:
1、本公开实施例对于无线连接设备的密码,根据时间周期进行自动更新,如此密码是随着时间的变化而变化的,每个密码只使用一段时间即变更为新的密码,暴力破解的难度增大,并且无线信号也不容易被蹭。
2、无线连接设备可自动根据时间周期将临时用户踢出登录状态,保留常驻用户的登录状态。大大方便了有常驻需求的用户对无线连接设备的使用,也方便了无线连接设备的拥有者对无线设备的管理,无需其进行多余的操作,提高了无线连接设备的使用灵活性。
3、对登录密码和权限验证码进行显示,可以方便用户进行输入,降低用户记忆负担。
4、在对具备临时登录权限的终端进行移出其登录状态操作之前,根据终端的登录时间长度,确定是否将所述终端的登录状态关闭。那么可以避免临时登录权限的终端的登录时间长度过短,而影响正常的临时终端的使用。
实施例十一
参照图11,其为本公开实施例提供的一种无线路由器,其中包括:
第一展示子模块(在图中未显示),适于如果接收到第一次触发指令,则获取所述登录密码进行展示;
第二展示子模块(在图中未显示),适于如果在预定时间间隔内接收到第二次触发指令,则获取所述权限验证码进行展示。
其他模块(在图中未显示)与前述实施例所述类似。其中1110为无线路由器的天线,1120为接收用户触发操作的实体按钮,1130为显示登录密码和权限验证码的显示屏。当用户点击一次实体按钮1120后,显示屏中显示当前时间周期内使用的登录密码123456,而当用户再次点击一次实体按钮后1120显示屏中显示当前时间周期内使用的权限验证码。
当然,如前所述,本公开实施例也可应用于移动终端(比如手机),该移动终端包括无线连接认证装置。在用户将移动终端设置为无线连接设备之后,比如将移动终端设置为wifi热点、打开移动终端的蓝牙等,即可应用本公开 实施例的技术方案。当然,对于登录密码和权限验证码的显示可以直接显示在移动终端的显示屏中。对于前述用户的触发操作,可以通过触发移动终端的触摸屏实现,也可以通过触发移动终端的固定按钮(比如音量按钮)实现。
在此提供的算法和显示不与任何特定计算机、虚拟系统或者其它设备固有相关。各种通用系统也可以与基于在此的示教一起使用。根据上面的描述,构造这类系统所要求的结构是显而易见的。此外,本公开实施例也不针对任何特定编程语言。应当明白,可以利用各种编程语言实现在此描述的本公开实施例的内容,并且上面对特定语言所做的描述是为了披露本公开实施例的最佳实施方式。
在此处所提供的说明书中,说明了大量具体细节。然而,能够理解,本公开实施例的实施例可以在没有这些具体细节的情况下实践。在一些实例中,并未详细示出公知的方法、结构和技术,以便不模糊对本说明书的理解。
类似地,应当理解,为了精简本公开并帮助理解各个发明方面中的一个或多个,在上面对本公开实施例的示例性实施例的描述中,本公开实施例的各个特征有时被一起分组到单个实施例、图、或者对其的描述中。然而,并不应将该公开的方法解释成反映如下意图:即所要求保护的本公开实施例要求比在每个权利要求中所明确记载的特征更多的特征。更确切地说,如下面的权利要求书所反映的那样,发明方面在于少于前面公开的单个实施例的所有特征。因此,遵循具体实施方式的权利要求书由此明确地并入该具体实施方式,其中每个权利要求本身都作为本公开实施例的单独实施例。
本领域那些技术人员可以理解,可以对实施例中的设备中的模块进行自适应性地改变并且把它们设置在与该实施例不同的一个或多个设备中。可以把实施例中的模块或单元或组件组合成一个模块或单元或组件,以及此外可以把它们分成多个子模块或子单元或子组件。除了这样的特征和/或过程或者单元中的至少一些是相互排斥之外,可以采用任何组合对本说明书(包括伴随的权利要求、摘要和附图)中公开的所有特征以及如此公开的任何方法或者设备的所有过程或单元进行组合。除非另外明确陈述,本说明书(包括伴随的权利要求、摘要和附图)中公开的每个特征可以由提供相同、等同或相似目的的替代特征来代替。
此外,本领域的技术人员能够理解,尽管在此所述的一些实施例包括其它实施例中所包括的某些特征而不是其它特征,但是不同实施例的特征的组合意味着处于本公开实施例的范围之内并且形成不同的实施例。例如,在下面的权利要求书中,所要求保护的实施例的任意之一都可以以任意的组合方式来使用。
本公开实施例的各个部件实施例可以以硬件实现,或者以在一个或者多个处理器上运行的软件模块实现,或者以它们的组合实现。本领域的技术人员应当理解,可以在实践中使用微处理器或者数字信号处理器(DSP)来实现根据本公开实施例的无线连接认证设备中的一些或者全部部件的一些或者全部功能。本公开实施例还可以实现为用于执行这里所描述的方法的一部分或者全部的设备或者装置程序(例如,计算机程序和计算机程序产品)。这样的实现本公开实施例的程序可以存储在计算机可读介质上,或者可以具有一个或者多个信号的形式。这样的信号可以从因特网网站上下载得到,或者在载体信号上提供,或者以任何其他形式提供。
应该注意的是上述实施例对本公开实施例进行说明而不是对本公开实施例进行限制,并且本领域技术人员在不脱离所附权利要求的范围的情况下可设计出替换实施例。在权利要求中,不应将位于括号之间的任何参考符号构造成对权利要求的限制。单词“包含”不排除存在未列在权利要求中的元件或步骤。位于元件之前的单词“一”或“一个”不排除存在多个这样的元件。本公开实施例可以借助于包括有若干不同元件的硬件以及借助于适当编程的计算机来实现。在列举了若干装置的单元权利要求中,这些装置中的若干个可以是通过同一个硬件项来具体体现。单词第一、第二、以及第三等的使用不表示任何顺序。可将这些单词解释为名称。

Claims (18)

  1. 一种无线连接认证方法,包括:
    在当前时间周期内,根据无线连接设备在当前时间周期内使用的登录密码和权限验证码,对终端发送的权限信息进行判断;
    若接收到的所述权限信息中包括登录密码而不包括权限验证码,则允许所述终端登录,并赋予所述终端临时登录权限;
    若接收到的所述权限信息中包括登录密码以及权限验证码,则允许所述终端登录,并赋予所述终端常驻登录权限;
    生成新的登录密码和新的权限验证码,以供在下一个时间周期使用;
    在无线连接设备使用所述新的登录密码后,将具备临时登录权限的终端从登录状态移除,并维持具备常驻登录权限的终端的登录状态。
  2. 如权利要求1所述的方法,其中,所述在当前时间周期内,根据无线连接设备在当前时间周期内使用的登录密码和权限验证码,对终端发送的权限信息进行判断之前的步骤,还包括:
    根据收到的触发指令,获取所述登录密码以及权限验证码进行展示。
  3. 如权利要求2所述的方法,其中,所述根据收到的触发指令,获取所述登录密码以及权限验证码进行展示的步骤,包括:
    接收到第一次触发指令,获取所述登录密码进行展示;
    如果在预定时间间隔内接收到第二次触发指令,则获取所述权限验证码进行展示。
  4. 如权利要求1所述的方法,其中,所述当前时间周期内使用的权限验证码为将要在下一个时间周期内由无线连接设备使用的登录密码。
  5. 如权利要求1所述的方法,其中,所述赋予所述终端临时登录权限的步骤,包括:
    将所述终端的身份信息写入在无线连接设备中预置的临时用户表;
    进一步的,所述将具备临时登录权限的终端从登录状态移除的步骤,包括:
    清空所述临时用户表所记录的各终端的身份信息。
  6. 如权利要求1或5所述的方法,其中,所述赋予所述终端常驻登录权限的步骤,包括:
    将所述终端的身份信息写入在无线连接设备中预置的常驻用户表。
  7. 如权利要求1所述的方法,其中,所述赋予所述终端临时登录权限的步骤,包括:
    将所述终端的身份信息写入在无线连接设备中预置的用户表,并在所述用户表中对应所述身份信息的权限字段写入临时用户标记;
    进一步的,所述将具备临时登录权限的终端从登录状态移除的步骤,包括:
    将所述用户表中临时用户标记对应的身份信息,从所述用户表中移除。
  8. 如权利要求1或7所述的方法,其中,所述赋予所述终端常驻登录权限的步骤,包括:
    将所述终端的身份信息写入在无线连接设备中预置的用户表,并在所述用户表中对应所述身份信息的权限字段写入常驻用户标记。
  9. 如权利要求1所述的方法,其中,所述将具备临时登录权限的终端从登录状态移除的步骤之前,包括:
    对于各具备临时登录权限的终端,判断所述终端的登录时间长度是否大于等于阈值;所述登录时间长度为所述终端从登录时间点到当前时间周期结束的时间点之间的时间长度;
    如果所述终端的登录时间长度大于等于阈值,则将具备临时登录权限的终端从登录状态移除;
    如果所述终端的登录时间长度小于阈值,则不将具备临时登录权限的终端从登录状态移除。
  10. 一种无线连接认证装置,包括:
    连接判断模块,适于在当前时间周期内,根据无线连接设备在当前时间周期内使用的登录密码和权限验证码,对终端发送的权限信息进行判断;
    临时登录权限赋予模块,适于若接收到的所述权限信息中包括登录密码而不包括权限验证码,则允许所述终端登录,并赋予所述终端临时登录权限;
    常驻登录权限赋予模块,适于若接收到的所述权限信息中包括登录密码 以及权限验证码,则允许所述终端登录,并赋予所述终端常驻登录权限;
    更新模块,适于生成新的登录密码和新的权限验证码,以供在下一个时间周期使用;
    权限管理模块,适于在无线连接设备使用所述新的登录密码后,将具备临时登录权限的终端从登录状态移除,并维持具备常驻登录权限的终端的登录状态。
  11. 如权利要求10所述的装置,还包括:
    展示模块,适于根据收到的触发指令,获取所述登录密码以及权限验证码进行展示。
  12. 如权利要求11所述的装置,其中,所述展示模块包括:
    第一展示子模块,适于如果接收到第一次触发指令,则获取所述登录密码进行展示;
    第二展示子模块,适于如果在预定时间间隔内接收到第二次触发指令,则获取所述权限验证码进行展示。
  13. 如权利要求10所述的装置,其中,所述当前时间周期内使用的权限验证码为将要在下一个时间周期内由无线连接设备使用的登录密码。
  14. 如权利要求10所述的装置,其中,所述临时登录权限赋予模块包括:
    第一临时登录权限赋予子模块,适于将所述终端的身份信息写入在无线连接设备中预置的临时用户表;
    进一步的,所述权限管理模块包括:
    临时用户表清空子模块,适于清空所述临时用户表所记录的各终端的身份信息。
  15. 如权利要求10或14所述的装置,其中,所述常驻登录权限赋予模块包括:
    第一常驻登录权限赋予子模块,适于将所述终端的身份信息写入在无线连接设备中预置的常驻用户表。
  16. 如权利要求10所述的装置,其中,所述临时登录权限赋予模块包括:
    临时用户添加子模块,适于将所述终端的身份信息写入在无线连接设备中预置的用户表,并在所述用户表中对应所述身份信息的权限字段写入临时 用户标记;
    进一步的,所述权限管理模块包括:
    用户表临时移除子模块,适于将所述用户表中临时用户标记对应的身份信息,从所述用户表中移除。
  17. 如权利要求10或16所述的装置,其中,所述常驻登录权限赋予模块包括:
    常驻用户添加子模块,适于将所述终端的身份信息写入在无线连接设备中预置的用户表,并在所述用户表中对应所述身份信息的权限字段写入常驻用户标记。
  18. 如权利要求10所述的装置,其中,所述权限管理模块还包括:
    临时用户时间判断子模块,适于在将具备临时登录权限的终端从登录状态移除之前,对于各具备临时登录权限的终端,判断所述终端的登录时间长度是否大于等于阈值;所述登录时间长度为所述终端从登录时间点到当前时间周期结束的时间点之间的时间长度;
    临时用户移除子模块,适于如果所述终端的登录时间长度大于等于阈值,则将具备临时登录权限的终端从登录状态移除;
    临时用户维持子模块,适于如果所述终端的登录时间长度小于阈值,则不将具备临时登录权限的终端从登录状态移除。
PCT/CN2016/079953 2015-04-24 2016-04-22 无线连接认证方法和装置 Ceased WO2016169502A1 (zh)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN201510202082.2A CN105744518B (zh) 2015-04-24 2015-04-24 一种无线连接认证方法和装置
CN201510202082.2 2015-04-24

Publications (1)

Publication Number Publication Date
WO2016169502A1 true WO2016169502A1 (zh) 2016-10-27

Family

ID=56295934

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2016/079953 Ceased WO2016169502A1 (zh) 2015-04-24 2016-04-22 无线连接认证方法和装置

Country Status (2)

Country Link
CN (1) CN105744518B (zh)
WO (1) WO2016169502A1 (zh)

Families Citing this family (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106453396A (zh) * 2016-11-18 2017-02-22 传线网络科技(上海)有限公司 双令牌账户登录方法及登录验证装置

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101185308A (zh) * 2005-05-26 2008-05-21 法国电信公司 用于控制外围设备连接到接入点的方法
CN102185838A (zh) * 2011-04-21 2011-09-14 杭州驭强科技有限公司 基于时间因子的主动式动态密码生成和认证系统及方法
WO2014075056A2 (en) * 2012-11-09 2014-05-15 Assa Abloy Ab Using temporary access codes
CN104363213A (zh) * 2014-11-03 2015-02-18 九阳股份有限公司 一种网络家电的注册登录控制方法
CN104378758A (zh) * 2014-05-12 2015-02-25 腾讯科技(深圳)有限公司 接入点连接方法、终端及服务器

Family Cites Families (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
EP1811412A1 (en) * 2005-08-04 2007-07-25 Intelligent Wave Inc. Computer control method using externally connected device and computer control system
CN101753293B (zh) * 2008-10-30 2013-06-05 华为终端有限公司 一种网络设备及配置网络设备的方法
CN103400067B (zh) * 2013-03-29 2016-08-10 青岛海信电器股份有限公司 权限管理方法、系统及服务器
CN103259785B (zh) * 2013-04-11 2015-11-18 深圳市深信服电子科技有限公司 虚拟令牌的认证方法及系统

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101185308A (zh) * 2005-05-26 2008-05-21 法国电信公司 用于控制外围设备连接到接入点的方法
CN102185838A (zh) * 2011-04-21 2011-09-14 杭州驭强科技有限公司 基于时间因子的主动式动态密码生成和认证系统及方法
WO2014075056A2 (en) * 2012-11-09 2014-05-15 Assa Abloy Ab Using temporary access codes
CN104378758A (zh) * 2014-05-12 2015-02-25 腾讯科技(深圳)有限公司 接入点连接方法、终端及服务器
CN104363213A (zh) * 2014-11-03 2015-02-18 九阳股份有限公司 一种网络家电的注册登录控制方法

Also Published As

Publication number Publication date
CN105744518A (zh) 2016-07-06
CN105744518B (zh) 2019-01-29

Similar Documents

Publication Publication Date Title
US10313881B2 (en) System and method of authentication by leveraging mobile devices for expediting user login and registration processes online
KR101726348B1 (ko) 로그인 인증 방법 및 시스템
EP3075099B1 (en) Secure proxy to protect private data
CN105045085B (zh) 一种智能手表的控制方法及智能手表
CN104364794B (zh) 用于便携式电子装置的基于位置的访问控制
US9742767B1 (en) Systems, methods, and media for authenticating multiple devices
WO2017114444A1 (zh) 资源数据的共享方法、装置及系统
CN103310142A (zh) 基于可穿戴设备的人机融合安全认证方法
CN104967997A (zh) 一种无线网路接入方法、Wi-Fi设备、终端设备及系统
CN104917727A (zh) 一种帐户鉴权的方法、系统及装置
JP2015201203A (ja) 入力パスワードを検証する方法およびパスワード検証装置、並びにパスワード検証装置を含むコンピュータ・システム
CN109561059B (zh) 一种账号登录方法及其系统、终端、存储介质
US12452663B2 (en) Providing network access via communal device
WO2014187143A1 (en) Verification method, apparatus, server and system
CN105207985A (zh) 一种应用程序的登录方法及移动终端
US9697346B2 (en) Method and apparatus for identifying and associating devices using visual recognition
CN104318186A (zh) 一种密码切换方法、设备和终端
KR102649375B1 (ko) 생체 서명을 사용하여 사용자를 인증하는 방법, 시스템 및 매체
TWI499933B (zh) 電子裝置及其登入方法
CN105791268A (zh) 服务器、健身设备用户登录方法及用户登录方法
KR20210022532A (ko) 정보 처리 장치, 정보 처리 방법 및 프로그램
WO2016169502A1 (zh) 无线连接认证方法和装置
KR101980828B1 (ko) 공유계정 인증방법 및 그 장치
CN113162920B (zh) 网络权限控制方法、装置、设备、存储介质和程序产品
CN105376274A (zh) 登录处理方法、装置及系统

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 16782649

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

122 Ep: pct application non-entry in european phase

Ref document number: 16782649

Country of ref document: EP

Kind code of ref document: A1