WO2018000844A1 - 接入网络的方法及装置 - Google Patents

接入网络的方法及装置 Download PDF

Info

Publication number
WO2018000844A1
WO2018000844A1 PCT/CN2017/075210 CN2017075210W WO2018000844A1 WO 2018000844 A1 WO2018000844 A1 WO 2018000844A1 CN 2017075210 W CN2017075210 W CN 2017075210W WO 2018000844 A1 WO2018000844 A1 WO 2018000844A1
Authority
WO
WIPO (PCT)
Prior art keywords
identifier
user equipment
network
group
information
Prior art date
Application number
PCT/CN2017/075210
Other languages
English (en)
French (fr)
Inventor
孟苑
Original Assignee
中兴通讯股份有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 中兴通讯股份有限公司 filed Critical 中兴通讯股份有限公司
Publication of WO2018000844A1 publication Critical patent/WO2018000844A1/zh

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/40Network security protocols
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L12/00Data switching networks
    • H04L12/02Details
    • H04L12/06Answer-back mechanisms or circuits

Definitions

  • the present invention relates to the field of communications, and in particular to a method and apparatus for accessing a network.
  • a wireless router creates a packet sharing wireless fidelity (WIreless-Fidelity) network, and adopts a service set identifier (SSID).
  • WIreless-Fidelity wireless fidelity
  • SSID service set identifier
  • Multi-SSID mode administrators need to set different SSIDs and passwords, and share the set information to the users who want to access the wireless network group.
  • the administrator provides the set WiFi information to the access users other than the packet, as long as the administrator does not perform the function of the SSID of the router on the WiFi of the router, and does not reset the new one.
  • the SSID, password, or no additional WiFi blacklist operation allows the access user to share the wireless network with previous information.
  • the embodiments of the present invention provide a method and an apparatus for accessing a network, so as to at least solve the problem in the related art that a user in a packet can access the network through information shared by users in the packet.
  • a method for accessing a network includes: setting packet information grouped by a plurality of user equipments, where the group information includes: a group identifier for identifying a packet, And identifying a user equipment identifier of the user equipment in the group; sending the group information and the group identifier to a user equipment in the group corresponding to the user equipment identifier; allowing identification according to the group identifier and the The user equipment identifying the user equipment accessing the network accesses the network.
  • the grouping information further includes: indicating the number of user equipments in the grouping
  • the quantity information, the sending the packet information and the packet identifier to the user equipment in the packet comprises: generating a combination of the group information and the group identifier to generate a quantity corresponding to the quantity information An identifier, wherein each of the first identifiers has a one-to-one correspondence identifier corresponding to the user equipment identifier; and the first identifier corresponding to the quantity information is separately sent to the group corresponding to the user equipment identifier User equipment in .
  • the user equipment that is allowed to send the packet information and the packet identifier to access the network includes: receiving a second identifier sent by the user equipment; determining whether the second identifier has a quantity corresponding to the quantity information And determining, by the number of the first identifiers, that the identifiers of the first identifiers are consistent; and if the identifiers of the second identifiers are present, determining whether the identifiers of the second identifiers are consistent with the identifiers of the user equipments; In the case where the user equipment identifier is present in the second identifier, the second identifier is one of the first identifiers, and the user equipment that sends the second identifier is allowed to access the network; or If the user equipment identifier exists in the second identifier, and the second identifier is one of the first identifiers, continue to determine whether the user equipment in the access network has the same difference.
  • the first identifier of the identifier is accessed to the network; if the user identifier of the access network does not have the first identifier that uses the same differential identifier to access the network, the sending station is allowed.
  • a second user equipment identifier to access the network is allowed.
  • the user equipment that sends the second identifier is prohibited from accessing the network; or the packet exists in the second identifier. If the identifier of the user equipment does not exist in the second identifier, the user equipment that sends the second identifier is prohibited from accessing the network; or the group identifier exists in the second identifier. And the user equipment identifier, and in a case that the user equipment accessing the network has the first identifier using the same differential identifier to access the network, generating an alert signal and clearing the locally set packet information and the packet identifier .
  • the grouping information further includes: a first time point for indicating that the group information is valid and a second time point for indicating that the group information is invalid; allowing the group identifier and the user according to the group
  • the user equipment of the device identifier accessing the network accessing the network includes: when the first time point is reached, the user equipment that is allowed to receive the group identifier and the user equipment identifier Accessing the network until the second time point is reached, disconnecting the user equipment from the network.
  • the grouping information further includes an access password for accessing the network.
  • the user equipment accesses the network through the gateway device.
  • the gateway device is a router.
  • an apparatus for accessing a network includes: a setting module configured to set packet information grouped by a plurality of user equipments, wherein the group information includes: a packet identifier, configured to identify a user equipment identifier of the user equipment in the packet; and a sending module, configured to send the packet information and the packet identifier to a user equipment in the packet corresponding to the user equipment identifier; And an access module, configured to allow the user equipment accessing the network according to the packet identifier and the user equipment identifier to access the network.
  • the grouping information further includes: quantity information for indicating the number of user equipments in the group
  • the sending module includes: a generating unit, configured to generate a combination of the group information and the group identifier a first identifier corresponding to the quantity information, where each first identifier has a different identifier corresponding to the user equipment identifier; the sending unit is configured to set a first number corresponding to the quantity information
  • the identifiers are respectively sent to the user equipment in the group corresponding to the user equipment identity.
  • the sending module further includes: a receiving unit, configured to receive a second identifier sent by the user equipment, where the first determining unit is configured to determine whether the number corresponding to the quantity information exists in the second identifier The identifier of the identifier in the identifier is consistent; the second determining unit is configured to determine, if the packet identifier exists in the second identifier, whether the second identifier is consistent with the identifier of the user equipment And a first sending unit, configured to allow the second to be sent if the user equipment identifier exists in the second identifier, and the second identifier is one of the first identifiers The identified user equipment is connected to the network; or the third determining unit is configured to have the user equipment identifier in the second identifier, and the second identifier is one of the first identifiers In the case of one, continue to judge the access network Whether the user equipment of the network has the first identifier that uses the same differentiated identifier to access the network; the second sending unit is configured to
  • the sending module further includes: a first forbidding unit, configured to prohibit, when the second identifier is not in the second identifier, the user equipment that sends the second identifier to access the network
  • the second forbidden unit is configured to prohibit the user who sends the second identifier if the packet identifier exists in the second identifier, and the user equipment identifier does not exist in the second identifier
  • the device accesses the network; or, the generating unit is configured to have the group identifier and the user equipment identifier in the second identifier, and have a first identifier that uses the same difference identifier in the user equipment of the access network In the case of identifying access to the network, an alert signal is generated and the locally set packet information and the packet identifier are cleared.
  • the group information further includes: a first time point for indicating that the group information is valid and a second time point for indicating that the group information is invalid; the access module is further configured to be in When the first time point is reached, the user equipment that receives the packet identifier and the user equipment identifier is allowed to access the network, and when the second time point is reached, the user equipment and the network are disconnected. connection.
  • the grouping information further includes an access password for accessing the network.
  • the user equipment accesses the network through the gateway device.
  • the gateway device is a router.
  • a storage medium is also provided.
  • the storage medium is arranged to store program code for performing the following steps:
  • Setting grouping information grouped by a plurality of user equipments where the grouping information includes: a group identifier for identifying a packet, a user equipment identifier for identifying a user equipment in the group; and the grouping information and the Transmitting a packet identifier to a user equipment in the packet corresponding to the user equipment identifier; allowing access to the network according to the packet identifier and the user equipment identity The user equipment of the network accesses the network.
  • the user equipment accessing the network according to the group identifier and the user equipment identifier accesses the network, that is, the gateway device ensures that only the user equipment of the group identifier and the device identifier can access the network, thereby solving the related art.
  • the problem that the users in the group can access the network through the information shared by the users in the group achieves the effect of improving network security.
  • FIG. 1 is a flow chart of a method of accessing a network according to an embodiment of the present invention
  • FIG. 2 is a structural block diagram of an apparatus for accessing a network according to an embodiment of the present invention
  • FIG. 3 is a flow chart of a method for quickly creating a packet information sharing wireless network according to an embodiment of the present invention.
  • FIG. 1 is a flowchart of a method for accessing a network according to an embodiment of the present invention. As shown in FIG. 1 , the process includes the following steps:
  • Step S102 Set grouping information that is grouped by a plurality of user equipments, where the grouping information includes: a group identifier for identifying a packet, and is used to identify a user equipment identifier of the user equipment in the group;
  • Step S104 Send the packet information and the packet identifier to the user equipment in the packet corresponding to the user equipment identifier;
  • Step S106 Allow the user equipment accessing the network according to the group identifier and the user equipment identifier to access the network.
  • the user equipment accessing the network according to the group identifier and the user equipment identifier accesses the network, that is, the gateway device ensures that only the user equipment with the group identifier and the device identifier can access the network. Therefore, the problem that the users in the group can access the network through the information shared by the users in the group is solved, and the effect of improving network security is achieved.
  • the group information involved in the embodiment further includes: a first time point for indicating that the group information is valid and a second time point for indicating that the group information is invalid.
  • the user equipment that is allowed to access the network according to the group identifier and the user equipment identifier accessing the network in step S106 of the embodiment includes: allowing the receiving to be received when the first time point is reached.
  • the user equipment of the group identifier and the user equipment identity accesses the network until the second time point is reached, and the connection of the user equipment to the network is disconnected.
  • step S106 in a specific application scenario, for example, starting from 16:00 (that is, the time point is the first time point mentioned above), ending at 19:00 (that is, the time point is also the second time mentioned above) Point), it can be seen that the validity period is 3 hours.
  • the gateway device shares the network to the set group device at 16:00, and the wireless network can continue to use for 3 hours after 16:00, and the gateway device automatically disconnects the wireless network after 3 hours.
  • the above is only an example, other time periods are also possible, and the corresponding time period can be set according to actual conditions.
  • the validity period of the group information can be effectively controlled, and then the time limit of the effective time period can be eliminated without resetting a new SSID, a password, or performing an additional WiFi blacklist operation. Turn off the ability to share the network.
  • the gateway device when the packet information fails, the gateway device discards the packet information created by the administrator, and thereafter, the access password in the identifier can no longer access the gateway device.
  • Line network In this way, the network is shared to the designated user without increasing the workload of the gateway device.
  • the gateway device does not need to modify any SSID and password of the access wireless network after using the wireless network to simultaneously share the network information. It improves the network security of the gateway device and the accessor obtains a better and more convenient free bandwidth service.
  • the grouping information may further include: quantity information used to indicate the number of user equipments in the group.
  • the manner of sending the packet information and the packet identifier to the user equipment in the packet involved in step S104 in this embodiment may be:
  • S104-1 The combination of the group information and the group identifier generates a first identifier corresponding to the quantity information, where each first identifier has a different identifier corresponding to the user equipment identifier;
  • S104-2 Send the first identifier corresponding to the quantity information to the user equipment in the packet corresponding to the user equipment identifier.
  • the step S104 of the embodiment may further include:
  • Step S104-3 Receive a second identifier sent by the user equipment.
  • Step S104-4 determining whether there is an identifier in the second identifier that is consistent with the group identifier in the first identifier corresponding to the quantity information;
  • Step S104-5 If there is a group identifier in the second identifier, determine whether the identifier corresponding to the user equipment identifier exists in the second identifier;
  • Step S104-6 If the user equipment identifier exists in the second identifier, and the second identifier is one of the first identifiers, the user equipment that sends the second identifier is allowed to access the network; or, in the second If the user equipment identifier exists in the identifier, and the second identifier is one of the first identifiers, it is determined whether the user equipment of the access network has the first identifier that uses the same differentiated identifier to access the network.
  • Step S104-7 If the user equipment of the access network does not have the first identifier that uses the same differentiated identifier to access the network, the user equipment that sends the second identifier is allowed to access the network.
  • Step S104-8 In the case that the packet identifier does not exist in the second identifier, the user equipment that sends the second identifier is prohibited from accessing the network; or
  • Step S104-9 If there is a packet identifier in the second identifier, and the user identifier is not in the second identifier, the user equipment that sends the second identifier is prohibited from accessing the network; or
  • Step S104-10 The group identifier and the user equipment identifier are present in the second identifier, and in the case that the user equipment accessing the network has the first identifier using the same differential identifier to access the network, generating a warning signal and clearing the local Set group information and group ID.
  • identification information corresponding to the quantity (for example, a two-dimensional code) is generated, that is, each user equipment receives the identifier, but After other users share their own identification information to other user devices, when the other device accesses the gateway device through the access password in the identifier, the gateway device determines whether the identifier of the other device is the device identifier in the group information and/or If the result of the determination is YES, the device is allowed to access the network. However, in this embodiment, the user equipment in the packet is not allowed to use the same identifier to access the network.
  • the packet information further includes an access code for accessing the network.
  • the user equipment accesses the network through the gateway device, and the gateway device is preferably a router.
  • the gateway device is preferably a router.
  • other gateway devices capable of routing the network are also within the scope of protection in this embodiment. The same is true.
  • the method according to the above embodiment can be implemented by means of software plus a necessary general hardware platform, and of course, by hardware, but in many cases, the former is A better implementation.
  • the technical solution of the present invention which is essential or contributes to the prior art, may be embodied in the form of a software product stored in a storage medium (eg, ROM/RAM, disk, and optical disk include instructions for causing a terminal device (which may be a mobile phone, a computer, a server, or a network device, etc.) to perform the methods of various embodiments of the present invention.
  • a device for accessing a network is provided, which is used to implement the foregoing embodiments and preferred embodiments, and details are not described herein.
  • the term "module” may implement a combination of software and/or hardware of a predetermined function.
  • the apparatus described in the following embodiments is preferably implemented in software, hardware, or a combination of software and hardware, is also possible and contemplated.
  • FIG. 2 is a structural block diagram of an apparatus for accessing a network, which is applied to a gateway device side, as shown in FIG. 2, and includes: a setting module 22 configured to set a grouping grouped by multiple user equipments.
  • the information includes: a packet identifier for identifying the packet, and a user equipment identifier for identifying the user equipment in the packet;
  • the sending module 24 is coupled to the setting module 22, and configured to send the group information and the group identifier to and The user equipment in the group corresponding to the user equipment identifier;
  • the access module 26 is coupled to the sending module 24, and is configured to allow the user equipment accessing the network according to the group identifier and the user equipment identifier to access the network.
  • the group information further includes: quantity information for indicating the number of user equipments in the packet
  • the sending module 24 includes: a generating unit, configured to generate and combine the combination of the group information and the group identifier a first identifier corresponding to the number of the information, wherein each of the first identifiers has a different identifier corresponding to the user equipment identifier; the sending unit is configured to send the first identifier corresponding to the quantity information to the user equipment identifier User equipment in the corresponding group.
  • the receiving unit is configured to receive the second identifier that is sent by the user equipment, where the first determining unit is configured to determine whether the second identifier has an identifier that is consistent with the group identifier in the first identifier corresponding to the quantity information; a unit, configured to determine, in the second identifier, that the identifier is consistent with the identifier of the user equipment in the second identifier, where the first sending unit is configured to have the user equipment identifier in the second identifier, and The second identifier is in the first identifier
  • the user equipment that is allowed to send the second identifier is allowed to access the network; or the third determining unit is configured to have the user equipment identifier in the second identifier, and the second identifier is in the first identifier.
  • the second sending unit is configured to have the same use in the user equipment of the access network.
  • the user equipment that sends the second identifier is allowed to access the network.
  • the sending module further includes: a first forbidden unit, configured to prevent the user equipment that sends the second identifier from accessing the network when the group identifier does not exist in the second identifier; or the second prohibiting unit is set to be in the first If the user identifier is not included in the second identifier, the user equipment that sends the second identifier is prohibited from accessing the network; or the generating unit is configured to have the group identifier and the user in the second identifier.
  • the device identifiers, and in the case that the user equipment accessing the network has the first identifier using the same differential identifier to access the network, generating an alert signal and clearing the locally set packet information and the packet identifier.
  • the group information further includes: a first time point for indicating that the group information is valid and a second time point for indicating that the group information is invalid; the access module is further configured to When the first time point is reached, the user equipment that receives the packet identifier and the user equipment identifier is allowed to access the network, and when the second time point is reached, the connection of the user equipment to the network is disconnected.
  • each of the above modules may be implemented by software or hardware.
  • the foregoing may be implemented by, but not limited to, the foregoing modules are all located in the same processor; or, the above modules are in any combination.
  • the forms are located in different processors.
  • the first embodiment and the second embodiment are described from the method and the device side.
  • the method of the present invention will be exemplified by taking an infinite router as an example.
  • the embodiment provides a method for rapidly creating a packet information sharing wireless network, and the method relates to a WiFi module of a wireless router, a time control module, and a smart terminal APP of a supporting wireless router.
  • the smart terminal APP completes the group creation function, and the wireless network in the group
  • the connection information generates a two-dimensional code; at the same time, the time information of the packets is sent to the time module of the router, and the time module notifies the WiFi module to dynamically create the SSID of the deleted packet;
  • the corresponding functions are completed by means of intelligent terminals other than routers, and the manner in which some technical solutions in the present invention are completed by means of other terminals facilitates the separation of functions by means of intelligent terminals.
  • the APP is also more convenient to implement; of course, this is only an optional embodiment in this embodiment, and the APP function on the smart terminal can also be integrated on the gateway device, and the technical solution of the present invention is not required to be completed by using other smart terminals.
  • FIG. 3 is a flowchart of a method for quickly creating a packet information sharing wireless network according to an embodiment of the present invention. As shown in FIG. 3, the method steps of the third embodiment may include:
  • Step S302 Set the Main SSID and password of the WiFi through the function of the multiple SSID of the wireless router, where the Main SSID is used by the smart terminal to connect to the wireless router.
  • Step S304 The smart APP that is associated with the wireless router establishes a connection with the wireless router through the Main SSID.
  • Step S306 setting group information on the smart APP
  • the group information may include: a packet name, an access password, an encryption mode, a number of user equipments of the packet, an expiration date of the packet, and an indication of whether to prohibit access by the group. ;
  • Step S308 Generate the two-dimensional code picture on the smart APP by using the above grouping information
  • Step S310 Send the two-dimensional code picture to the user to be accessed through the smart terminal;
  • the sending method may be sent by using a multimedia message or a chat tool.
  • Step S312 After the start time in the group information arrives, the wireless router dynamically creates the SSID information in the group information, and the access user accesses the wireless router through the received two-dimensional code to share the network.
  • Step S314 after the end time in the group information arrives, the wireless router will be dynamic The SSID information corresponding to the group information is deleted, and the group member will not be able to access the network before using the two-dimensional code.
  • the WiFi module of the router is an administrator who needs the router to open the multi-SSID function, and set the SSID and password accessed by the smart terminal, that is, the Main SSID information.
  • the information of the set of WiFi is used by the administrator.
  • the intelligent terminal of the administrator mentioned in this embodiment accesses the group information, which is different from the Guest SSID used by the set packet sharing access network.
  • the group information is a smart APP software that requires an administrator to use a matching router on the smart terminal.
  • the group information is set on the smart APP software, and the group information may include: a group name, an access password, an encryption method, a number of people in the group, a validity period of the group, and whether to prohibit access by the group.
  • the packet name is used by the router's WiFi module to dynamically create the SSID of the packet access network, which we call the Guest SSID.
  • the access password is the password for the packet to access the wireless network.
  • the encryption method can use the encryption methods commonly used by the wireless router WiFi: WEP, WPA-PSK, WPA2-PSK, and the like.
  • the number of people grouped refers to the number of people the administrator wants to create a packet sharing network.
  • the validity period of the group is the time when the administrator plans to share the wireless network to the grouper. The specific start time, the validity period can be selected to be long-term effective or any hour in 1-12, for example, starting from 16:00, the validity period 3 hours. Refers to the group of people who the administrator wants to share the network to at 16:00.
  • the wireless network can continue to use for 3 hours after 16:00.
  • the wireless network is automatically disconnected after 3 hours.
  • the WiFi module of the infinite router automatically deletes the Guest SSID of the packet information that is accessed this time, and the access information before the use cannot successfully connect to the wireless network.
  • the information about the time in the packet information is a time module that is fed back to the wireless router through the APP of the smart terminal.
  • the time module accepts the creation time and end time of the group, and sets flag information such as Starttime and Endtime respectively. If it is a long-term grouping, you can set Endtime to null. Whether the detection of the timer loop of the time module reaches the threshold of the flag information. If the threshold is not reached, the sleep is continued for a period of time; if the Starttime threshold is reached, a message is sent to notify the wireless router's WiFi module to create a parameter for the packet access wireless network. If the Endtime threshold is reached, the WiFi module that sends a message to the wireless router deletes the packet access. The parameters of the wireless network.
  • the APP of the intelligent terminal quickly creates a packet, and the group of people is required to receive the information of the access network.
  • the article mentions that the access to the two-dimensional code information is generated through the APP software. Because of the two-dimensional code, the security is high and the access is convenient.
  • the administrator can use the function of the phone book on the smart terminal APP to transmit the method of sending the MMS message to the grouping person, or send it by using popular software such as WeChat.
  • the grouping personnel receive the QR code information of the access network on their own intelligent terminals, and only need to carry the intelligent terminal to the administrator to share the network within a certain time to enjoy the wireless network service.
  • the specific two-dimensional code information may be set according to the number of people in the group.
  • the number of people to be set is N, and the setting of the off-group personnel is prohibited on the smart terminal APP.
  • the two-dimensional code information to be generated at this time is based on the number of people in the group. If the number of people in the group is N, N two-dimensional code information is required to be generated.
  • the two-dimensional code information does not require one-to-one correspondence with the grouping personnel, and the administrator only needs to randomly transmit the two-dimensional code information to the grouping personnel.
  • the wireless router's WiFi module will detect that Two or more sets of the same two-dimensional code information are accessed, and an alarm signal is sent to notify the administrator of the smart terminal APP.
  • the administrator can take the network or other measures when receiving the alarm message.
  • the information for quickly creating packets mentioned in this method is performed on the smart APP of the wireless router, and can also be completed on the wireless router.
  • the smart APP method mentioned in this article is convenient for administrators to operate. It does not require an administrator to connect the wireless router to the computer and complete grouping on the computer. The only way to create a fast packet is to have a different terminal. The specific implementation method is the same.
  • Embodiments of the present invention also provide a storage medium.
  • the storage medium can be configured to store program code for performing the following steps:
  • Step S1 setting grouping information, which is grouped by a plurality of user equipments, where the grouping information includes: a group identifier for identifying the group, and a user equipment identifier for identifying the user equipment in the group;
  • Step S2 transmitting the group information and the packet identifier to the user equipment in the packet corresponding to the user equipment identifier;
  • Step S3 Allow the user equipment accessing the network according to the group identifier and the user equipment identifier to access the network.
  • the foregoing storage medium may include, but not limited to, a USB flash drive, a Read-Only Memory (ROM), a Random Access Memory (RAM), a mobile hard disk, and a magnetic memory.
  • ROM Read-Only Memory
  • RAM Random Access Memory
  • a mobile hard disk e.g., a hard disk
  • magnetic memory e.g., a hard disk
  • modules or steps of the present invention described above can be implemented by a general-purpose computing device that can be centralized on a single computing device or distributed across a network of multiple computing devices. Alternatively, they may be implemented by program code executable by the computing device such that they may be stored in the storage device by the computing device and, in some cases, may be different from the order herein.
  • the steps shown or described are performed, or they are separately fabricated into individual integrated circuit modules, or a plurality of modules or steps thereof are fabricated as a single integrated circuit module.
  • the invention is not limited to any specific combination of hardware and software.
  • the user equipment accessing the network according to the group identifier and the user equipment identifier accesses the network, that is, the gateway device ensures that only the user equipment of the group identifier and the device identifier can access the network, thereby solving the related art.
  • the problem that the users in the group can access the network through the information shared by the users in the group achieves the effect of improving network security.

Abstract

本发明提供了一种接入网络的方法及装置,其中,该方法包括:设置以多个用户设备为分组的分组信息,其中,分组信息包括:用于标识分组的分组标识,用于标识分组内用户设备的用户设备标识;将分组信息和分组标识发送到与用户设备标识对应的分组中的用户设备;允许根据分组标识和用户设备标识接入网络的用户设备接入到网络。通过本发明,解决了相关技术中不是分组中的用户可以通过分组中的用户分享的信息接入到网络的问题,达到了提高网络安全性的效果。

Description

接入网络的方法及装置 技术领域
本发明涉及通信领域,具体而言,涉及一种接入网络的方法及装置。
背景技术
目前无线路由器创建分组分享无线保真(WIreless-Fidelity,简称为WiFi)网络的方法,采用多服务集标识(Service Set Identifier,简称为SSID)的方式。多SSID的方式管理员需要设置不同的SSID和密码,同时要将设置的这些信息共享给要接入无线网络分组用户。
然而对于上述目前分组分享网络的方式中,管理者将设置的WiFi信息提供给分组之外的接入用户,只要管理员对路由器的WiFi不进行这组SSID的功能关闭、不重新的设置新的SSID、密码或者不进行额外的WiFi黑名单操作,该接入用户就可以凭借之前的信息分享无线网络。
针对相关技术中不是分组中的用户可以通过分组中的用户分享的信息接入到网络的问题,目前尚未存在有效的解决方案。
发明内容
本发明实施例提供了一种接入网络的方法及装置,以至少解决相关技术中不是分组中的用户可以通过分组中的用户分享的信息接入到网络的问题。
根据本发明实施例的一个方面,提供了一种接入网络的方法,包括:设置以多个用户设备为分组的分组信息,其中,所述分组信息包括:用于标识分组的分组标识,用于标识所述分组内用户设备的用户设备标识;将所述分组信息和所述分组标识发送到与所述用户设备标识对应的所述分组中的用户设备;允许根据所述分组标识和所述用户设备标识接入网络的用户设备接入到所述网络。
可选地,所述分组信息中还包括:用于指示所述分组中用户设备数量 的数量信息,所述将所述分组信息和所述分组标识发送到所述分组中的用户设备包括:将所述分组信息和所述分组标识的组合生成与所述数量信息对应数量的第一标识,其中,每个第一标识都具有与所述用户设备标识一一对应的区别标识;将与所述数量信息对应数量的第一标识分别发送到与所述用户设备标识对应的所述分组中的用户设备。
可选地,所述允许发送所述分组信息和所述分组标识的用户设备接入到网络包括:接收用户设备发送的第二标识;判断所述第二标识中是否存在与所述数量信息对应数量的第一标识中的分组标识一致的标识;在所述第二标识中存在所述分组标识的情况下,判断所述第二标识中是否存在与所述用户设备标识一致的标识;在所述第二标识中存在所述用户设备标识的情况下,所述第二标识为所述第一标识中的其中之一,允许发送所述第二标识的用户设备接入到所述网络;或,在所述第二标识中存在所述用户设备标识,且所述第二标识为所述第一标识中的其中之一的情况下,继续判断接入网络的用户设备中是否具有使用相同区别标识的第一标识接入到所述网络;在接入网络的用户设备中不具有使用相同区别标识的第一标识接入到网络的情况下,允许发送所述第二标识的用户设备接入到所述网络。
可选地,在所述第二标识中不存在所述分组标识的情况下,禁止发送所述第二标识的用户设备接入所述网络;或,在所述第二标识中存在所述分组标识,且所述第二标识中不存在所述用户设备标识的情况下,禁止发送所述第二标识的用户设备接入所述网络;或,在所述第二标识中存在所述分组标识和所述用户设备标识,且在接入网络的用户设备中具有使用相同区别标识的第一标识接入到网络的情况下,产生警示信号并清除本地设置的所述分组信息和所述分组标识。
可选地,所述分组信息中还包括:用于指示所述分组信息生效的第一时间点和用于指示所述分组信息失效的第二时间点;允许根据所述分组标识和所述用户设备标识接入网络的用户设备接入到网络包括:在到达所述第一时间点时,允许接收到所述分组标识和所述用户设备标识的用户设备 接入所述网络,直到到达所述第二时间点时,断开用户设备与所述网络的连接。
可选地,所述分组信息还包括用于接入网络的接入密码。
可选地,所述用户设备通过网关设备接入网络。
可选地,所述网关设备为路由器。
根据本发明的另一个方面,提供了一种接入网络的装置,包括:设置模块,设置为设置以多个用户设备为分组的分组信息,其中,所述分组信息包括:用于标识分组的分组标识,用于标识所述分组内用户设备的用户设备标识;发送模块,设置为将所述分组信息和所述分组标识发送到与所述用户设备标识对应的所述分组中的用户设备;接入模块,设置为允许根据所述分组标识和所述用户设备标识接入网络的用户设备接入到所述网络。
可选地,所述分组信息中还包括:用于指示所述分组中用户设备数量的数量信息,所述发送模块包括:生成单元,设置为将所述分组信息和所述分组标识的组合生成与所述数量信息对应数量的第一标识,其中,每个第一标识都具有与所述用户设备标识一一对应的区别标识;发送单元,设置为将与所述数量信息对应数量的第一标识分别发送到与所述用户设备标识对应的所述分组中的用户设备。
可选地,所述发送模块还包括:接收单元,设置为接收用户设备发送的第二标识;第一判断单元,设置为判断所述第二标识中是否存在与所述数量信息对应数量的第一标识中的分组标识一致的标识;第二判断单元,设置为在所述第二标识中存在所述分组标识的情况下,判断所述第二标识中是否存在与所述用户设备标识一致的标识;第一发送单元,设置为在所述第二标识中存在所述用户设备标识,且所述第二标识为所述第一标识中的其中之一的情况下,允许发送所述第二标识的用户设备接入到所述网络;或,第三判断单元,设置为在所述第二标识中存在所述用户设备标识,且所述第二标识为所述第一标识中的其中之一的情况下,继续判断接入网 络的用户设备中是否具有使用相同区别标识的第一标识接入到所述网络;第二发送单元,设置为在接入网络的用户设备中不具有使用相同区别标识的第一标识接入到网络的情况下,允许发送所述第二标识的用户设备接入到所述网络。
可选地,所述发送模块还包括:第一禁止单元,设置为在所述第二标识中不存在所述分组标识的情况下,禁止发送所述第二标识的用户设备接入所述网络;或,第二禁止单元,设置为在所述第二标识中存在所述分组标识,且所述第二标识中不存在所述用户设备标识的情况下,禁止发送所述第二标识的用户设备接入所述网络;或,产生单元,设置为在所述第二标识中存在所述分组标识和所述用户设备标识,且在接入网络的用户设备中具有使用相同区别标识的第一标识接入到网络的情况下,产生警示信号并清除本地设置的所述分组信息和所述分组标识。
可选地,所述分组信息中还包括:用于指示所述分组信息生效的第一时间点和用于指示所述分组信息失效的第二时间点;所述接入模块,还设置为在到达所述第一时间点时,允许接收到所述分组标识和所述用户设备标识的用户设备接入所述网络,直到到达所述第二时间点时,断开用户设备与所述网络的连接。
可选地,所述分组信息还包括用于接入网络的接入密码。
可选地,所述用户设备通过网关设备接入网络。
可选地,所述网关设备为路由器。
根据本发明的又一个实施例,还提供了一种存储介质。该存储介质设置为存储用于执行以下步骤的程序代码:
设置以多个用户设备为分组的分组信息,其中,所述分组信息包括:用于标识分组的分组标识,用于标识所述分组内用户设备的用户设备标识;将所述分组信息和所述分组标识发送到与所述用户设备标识对应的所述分组中的用户设备;允许根据所述分组标识和所述用户设备标识接入网 络的用户设备接入到所述网络。
通过本发明实施例,根据分组标识和用户设备标识接入网络的用户设备接入到网络,即网关设备确保只有分组标识和设备标识的用户设备能够接入到网络中,从而解决了相关技术中不是分组中的用户可以通过分组中的用户分享的信息接入到网络的问题,达到了提高网络安全性的效果。
附图说明
此处所说明的附图用来提供对本发明的进一步理解,构成本申请的一部分,本发明的示意性实施例及其说明用于解释本发明,并不构成对本发明的不当限定。在附图中:
图1是根据本发明实施例的接入网络的方法的流程图;
图2是根据本发明实施例的接入网络的装置的结构框图;
图3是根据本发明实施例的快速创建分组信息共享无线网络的方法流程图。
具体实施方式
下文中将参考附图并结合实施例来详细说明本发明。需要说明的是,在不冲突的情况下,本申请中的实施例及实施例中的特征可以相互组合。
需要说明的是,本发明的说明书和权利要求书及上述附图中的术语“第一”、“第二”等是用于区别类似的对象,而不必用于描述特定的顺序或先后次序。
实施例1
在本实施例中提供了一种接入网络的方法,图1是根据本发明实施例的接入网络的方法的流程图,如图1所示,该流程包括如下步骤:
步骤S102:设置以多个用户设备为分组的分组信息,其中,分组信息包括:用于标识分组的分组标识,用于标识分组内用户设备的用户设备标识;
步骤S104:将分组信息和分组标识发送到与用户设备标识对应的分组中的用户设备;
步骤S106:允许根据分组标识和用户设备标识接入网络的用户设备接入到网络。
通过本实施例的上述步骤S102至步骤S106,根据分组标识和用户设备标识接入网络的用户设备接入到网络,即网关设备确保只有分组标识和设备标识的用户设备能够接入到网络中,从而解决了相关技术中不是分组中的用户可以通过分组中的用户分享的信息接入到网络的问题,达到了提高网络安全性的效果。
在本实施例的可选实施方式中,本实施例中涉及到的分组信息中还包括:用于指示分组信息生效的第一时间点和用于指示分组信息失效的第二时间点。
基于该第一时间点和第二时间点,本实施例步骤S106中的允许根据分组标识和用户设备标识接入网络的用户设备接入到网络包括:在到达第一时间点时,允许接收到分组标识和用户设备标识的用户设备接入网络,直到到达第二时间点时,断开用户设备与网络的连接。
对于上述步骤S106,在具体应用场景中可以是,比如:从16:00开始(即该时间点就是上述的第一时间点),19:00结束(即该时间点也就是上述的第二时间点),可见该有效期为3小时。在该有效期件网关设备在16:00分享网络给设置的群组设备,无线网络可以在16:00后持续使用3个小时,3个小时后网关设备自动断开无线网络。当然上述仅仅是举例说明,其他的时间段也是可以的,可以根据实际情况设置相应的时间段。
可见,通过设置该第一时间点和第二时间点可以有效控制分组信息的有效期,进而可以不用重新设置新的SSID、密码或者进行额外的WiFi黑名单操作,就可以该有效时间段的时间限制关闭分享网络的功能。
也就是说,在本实施例中当分组信息失效时,则网关设备将抛弃管理者创建的分组信息,此后凭借标识中接入密码再也接入不了网关设备的无 线网络。通过该方式,在不增加网关设备工作量的同时共享网络给指定用户,用户共享网络后完全不影响网关设备使用无线网络同时共享网络信息解除后无需修改任何接入无线网络的SSID及密码等信息,提高了网关设备网络安全性和接入者获得更优更方便的免费带宽服务。
在本实施例的另一个可选实施方式中,该分组信息还可以包括:用于指示分组中用户设备数量的数量信息。
基于上述涉及到的数量信息,本实施例步骤S104中涉及到的将分组信息和分组标识发送到分组中的用户设备的方式可以是:
S104-1:将分组信息和分组标识的组合生成与数量信息对应数量的第一标识,其中,每个第一标识都具有与用户设备标识一一对应的区别标识;
S104-2:将与数量信息对应数量的第一标识分别发送到与用户设备标识对应的分组中的用户设备。
基于上述S104-1和S104-2,在将将生成的与数量信息对应数量的标识分别发送到用户设备之后,本实施例步骤S104的还可以包括:
步骤S104-3:接收用户设备发送的第二标识;
步骤S104-4:判断第二标识中是否存在与数量信息对应数量的第一标识中的分组标识一致的标识;
步骤S104-5:在第二标识中存在分组标识的情况下,判断第二标识中是否存在与用户设备标识一致的标识;
步骤S104-6:在第二标识中存在用户设备标识,且第二标识为第一标识中的其中之一的情况下,允许发送第二标识的用户设备接入到网络;或,在第二标识中存在用户设备标识,且第二标识为第一标识中的其中之一的情况下,继续判断接入网络的用户设备中是否具有使用相同区别标识的第一标识接入到网络;
步骤S104-7:在接入网络的用户设备中不具有使用相同区别标识的第一标识接入到网络的情况下,允许发送第二标识的用户设备接入到网络;
步骤S104-8:在第二标识中不存在分组标识的情况下,禁止发送第二标识的用户设备接入网络;或,
步骤S104-9:在第二标识中存在分组标识,且第二标识中不存在用户设备标识的情况下,禁止发送第二标识的用户设备接入网络;或,
步骤S104-10:在第二标识中存在分组标识和用户设备标识,且在接入网络的用户设备中具有使用相同区别标识的第一标识接入到网络的情况下,产生警示信号并清除本地设置的分组信息和分组标识。
由上述步骤可知,在本实施例中当设置了分组中用户设备数量后,会生成与该数量对应的标识信息(例如二维码),也就是说每个用户设备都会收到该标识,但有其他用户将自己的标识信息分享给其他用户设备后,其他设备通过该标识中的接入密码来接入网关设备时,网关设备判断其他设备的标识是否为分组信息中的设备标识和/或分组标识,在判断结果为是的情况下,允许该设备接入网络,但是在本实施例中对于分组中的用户设备也不允许不同的两个设备使用相同的标识接入网络,所以需要进一步判断是否存在分组中的用户设备使用相同的标识接入网络,如果是会产生警示信号,进而可以将该分组信息的所有设备的无线网络都关掉以防止不是分组中的其他设备接入到网关设备,或者是删除该分组信息。
此外,在本实施例的可选实施方式中该分组信息还包括用于接入网络的接入密码。
需要说明的是,本实施例中用户设备通过网关设备接入网络,该网关设备优选为路由器,当然其他能够路由网络的网关设备也是在本实施例中的保护范围之内,下述实施例2也是同样的。
通过以上的实施方式的描述,本领域的技术人员可以清楚地了解到根据上述实施例的方法可借助软件加必需的通用硬件平台的方式来实现,当然也可以通过硬件,但很多情况下前者是更佳的实施方式。基于这样的理解,本发明的技术方案本质上或者说对现有技术做出贡献的部分可以以软件产品的形式体现出来,该计算机软件产品存储在一个存储介质(如 ROM/RAM、磁碟、光盘)中,包括若干指令用以使得一台终端设备(可以是手机,计算机,服务器,或者网络设备等)执行本发明各个实施例的方法。
实施例2
在本实施例中还提供了一种接入网络的装置,该装置用于实现上述实施例及优选实施方式,已经进行过说明的不再赘述。如以下所使用的,术语“模块”可以实现预定功能的软件和/或硬件的组合。尽管以下实施例所描述的装置较佳地以软件来实现,但是硬件,或者软件和硬件的组合的实现也是可能并被构想的。
图2是根据本发明实施例的接入网络的装置的结构框图,该装置应用于网关设备侧,如图2所示,包括:设置模块22,设置为设置以多个用户设备为分组的分组信息,其中,分组信息包括:用于标识分组的分组标识,用于标识分组内用户设备的用户设备标识;发送模块24,与设置模块22耦合连接,设置为将分组信息和分组标识发送到与用户设备标识对应的分组中的用户设备;接入模块26,与发送模块24耦合连接,设置为允许根据分组标识和用户设备标识接入网络的用户设备接入到网络。
在本实施例的可选实施方式中,分组信息中还包括:用于指示分组中用户设备数量的数量信息,发送模块24包括:生成单元,设置为将分组信息和分组标识的组合生成与数量信息对应数量的第一标识,其中,每个第一标识都具有与用户设备标识一一对应的区别标识;发送单元,设置为将与数量信息对应数量的第一标识分别发送到与用户设备标识对应的分组中的用户设备。
以及,接收单元,用于接收用户设备发送的第二标识;第一判断单元,设置为判断第二标识中是否存在与数量信息对应数量的第一标识中的分组标识一致的标识;第二判断单元,设置为在第二标识中存在分组标识的情况下,判断第二标识中是否存在与用户设备标识一致的标识;第一发送单元,设置为在第二标识中存在用户设备标识,且第二标识为第一标识中 的其中之一的情况下,允许发送第二标识的用户设备接入到网络;或,第三判断单元,设置为在第二标识中存在用户设备标识,且第二标识为第一标识中的其中之一的情况下,继续判断接入网络的用户设备中是否具有使用相同区别标识的第一标识接入到网络;第二发送单元,设置为在接入网络的用户设备中不具有使用相同区别标识的第一标识接入到网络的情况下,允许发送第二标识的用户设备接入到网络。
以及,发送模块还包括:第一禁止单元,设置为在第二标识中不存在分组标识的情况下,禁止发送第二标识的用户设备接入网络;或,第二禁止单元,设置为在第二标识中存在分组标识,且第二标识中不存在用户设备标识的情况下,禁止发送第二标识的用户设备接入网络;或,产生单元,设置为在第二标识中存在分组标识和用户设备标识,且在接入网络的用户设备中具有使用相同区别标识的第一标识接入到网络的情况下,产生警示信号并清除本地设置的分组信息和分组标识。
在本实施例再一个可选实施方式中,该分组信息中还包括:用于指示分组信息生效的第一时间点和用于指示分组信息失效的第二时间点;接入模块,还设置为在到达第一时间点时,允许接收到分组标识和用户设备标识的用户设备接入网络,直到到达第二时间点时,断开用户设备与网络的连接。
需要说明的是,上述各个模块是可以通过软件或硬件来实现的,对于后者,可以通过以下方式实现,但不限于此:上述模块均位于同一处理器中;或者,上述各个模块以任意组合的形式分别位于不同的处理器中。
上述实施例1和实施例2是从方法和装置侧对本实施例进行说明,下面将通过以无限路由器为例对本发明的方法进行举例说明。
实施例3
本实施例提供了一种快速创建分组信息共享无线网络的方法,该方法涉及无线路由器的WiFi模块、时间控制模块、配套无线路由器的智能终端APP。其中,智能终端APP完成分组的创建功能,将分组中无线网络 连接信息生成二维码;同时还要将这些分组的时间信息发送给路由器的时间模块,时间模块通知WiFi模块动态的创建删除分组的SSID;
可见,在该实施例中将借助于路由器以外的智能终端来完成相应的功能,通过这种借助于其他终端来完成本发明中部分技术方案的方式,有利于功能的分离,借助于智能终端的APP也更加方便的实现;当然这只是本实施例中的可选实施例,该智能终端上的APP功能也可以集成在网关设备上,不需要借助其他智能终端来完成本发明的技术方案。
图3是根据本发明实施例的快速创建分组信息共享无线网络的方法流程图,如图3所示,本实施例3的方法步骤可以包括:
步骤S302:通过无线路由器的多SSID的功能设置WiFi的Main SSID及密码,其中,该Main SSID是智能终端用于连接无线路由器的。
步骤S304:与无线路由器配套的智能APP通过该Main SSID与无线路由器建立连接;
其中,其他用户使用智能APP是无法获取该无线路由器上的WiFi信息;
步骤S306:在该智能APP上设置分组信息;
其中,在本实施例中的优选实施方式中,该分组信息可以包括:分组名称、接入密码、加密方式、分组的用户设备数量信息、分组的有效期、是否禁止组外人员接入的指示信息;
步骤S308:将上述的分组信息在智能APP上生成二维码图片;
步骤S310:通过智能终端将二维码图片发送给要接入的用户;
其中,发送的方式可以是通过彩信或聊天工具发送。
步骤S312:在该分组信息中的开始时间到了以后,无线路由器将动态的创建分组信息中的SSID信息,接入用户通过收到的二维码接入到无线路由器中以分享网络。
步骤S314:在分组信息中的结束时间到了后,该无线路由器将动态 的删除与分组信息对应的SSID信息,分组成员将无法在使用之前的二维码接入网络。
对于上述步骤S302至S304,路由器的WiFi模块是需要路由器的管理员打开多SSID功能,设置自己智能终端接入的SSID和密码,即Main SSID信息。这组WiFi的信息用于管理员自己使用,本实施例中提到的管理员的智能终端接入的就是此组信息,与设置的分组分享接入网络使用的Guest SSID不同。
设置分组信息是需要管理员在智能终端上使用匹配路由器的智能APP软件。在智能APP软件上设置分组信息,分组的信息可以包括:分组名称、接入密码、加密方式、分组的人数、分组的有效期、是否禁止组外人员接入。分组名称用于路由器的WiFi模块动态的创建分组接入网络的SSID,此处我们称为Guest SSID。接入密码就是分组接入无线网络的密码。加密方式可以使用无线路由器WiFi常用的加密方式:WEP、WPA-PSK、WPA2-PSK等。分组的人数指的是管理员要创建分组分享网络的人数。分组的有效期是管理员计划要在什么时间段分享无线网络给分组人员,可以包括:具体的开始时间、有效期可选择长期有效或1-12中的任意小时,比如:从16:00开始,有效期3小时。指的是管理员要在16:00分享网络给设置的分组人员,无线网络可以在16:00后持续使用3个小时。3个小时后无线网络自动断开。无限路由器的WiFi模块自动将此次接入的分组信息的Guest SSID删除,再使用之前的接入信息是不能成功连接无线网络的。
分组信息中关于时间的信息,是通过智能终端的APP反馈给无线路由器的时间模块。时间模块接受分组的创建时间和结束时间,分别设置标志信息,如Starttime和Endtime。如果是长期有效的分组,可以将Endtime设置为空。时间模块的定时器循环的检测是否达到标志信息的阈值。没有达到阈值则休眠一段时间继续检测;如果达到的是Starttime阈值,立马发消息通知无线路由器的WiFi模块创建分组接入无线网络的参数。如果达到的是Endtime阈值,是发消息通知无线路由器的WiFi模块删除分组接入 无线网络的参数。
智能终端的APP快速的创建了分组,要让分组的人接收到接入网络的信息,本文提到的是通过APP软件上生成接入二维码信息。因为采用二维码的方式,安全性高,接入方便。管理员可以采用智能终端APP上的电话本等功能将二维码信息发送彩信的方式传递给分组人员,也可以使用更受欢迎的微信等热门软件发送。
分组人员在自己的智能终端上接收到接入网络的二维码信息,只需要在特定的时间携带智能终端到管理员分享网络的范围内即可享受到无线网络服务。
管理员再给分组用户分享接入网络的二维码信息的时候,如果要防止分组内的用户转发二维码信息,可以根据分组人数设置特定的二维码信息。要设置的分组人数为N,在智能终端APP上设置禁止组外人员接入。此时要生成的二维码信息是根据分组人数觉得的,如果分组人数为N,则要求产生N个二维码信息。二维码信息不要求与分组人员一一对应,管理员只需要将二维码信息随机的发送给分组人员。分组人员如果有人转发自己收到的二维码信息,那么如果后续出现有分组人员和其他非法用户同时使用相同的二维码信息接入无线分享网络的时候,无线路由器的WiFi模块会检测到有两组或以上的相同的二维码信息接入,发出报警信号通知管理员的智能终端APP。管理员接到报警信息可以采取断开网络或其他的措施。
此外,需要说明的是,此方法提到的快速创建分组的信息是在无线路由器的智能APP上完成的,也可以在无线路由器上完成。本文提到的智能APP完成的方法是方便管理员操作,不需要管理员将无线路由器连接到电脑,在电脑上完成分组设定。仅仅只是快速分组的创建完成的终端不同,具体实现的方法是一样的。
本发明的实施例还提供了一种存储介质。可选地,在本实施例中,上 述存储介质可以被设置为存储用于执行以下步骤的程序代码:
步骤S1:设置以多个用户设备为分组的分组信息,其中,分组信息包括:用于标识分组的分组标识,用于标识分组内用户设备的用户设备标识;
步骤S2:将分组信息和分组标识发送到与用户设备标识对应的分组中的用户设备;
步骤S3:允许根据分组标识和用户设备标识接入网络的用户设备接入到网络。
可选地,在本实施例中,上述存储介质可以包括但不限于:U盘、只读存储器(ROM,Read-Only Memory)、随机存取存储器(RAM,Random Access Memory)、移动硬盘、磁碟或者光盘等各种可以存储程序代码的介质。
可选地,本实施例中的具体示例可以参考上述实施例及可选实施方式中所描述的示例,本实施例在此不再赘述。
显然,本领域的技术人员应该明白,上述的本发明的各模块或各步骤可以用通用的计算装置来实现,它们可以集中在单个的计算装置上,或者分布在多个计算装置所组成的网络上,可选地,它们可以用计算装置可执行的程序代码来实现,从而,可以将它们存储在存储装置中由计算装置来执行,并且在某些情况下,可以以不同于此处的顺序执行所示出或描述的步骤,或者将它们分别制作成各个集成电路模块,或者将它们中的多个模块或步骤制作成单个集成电路模块来实现。这样,本发明不限制于任何特定的硬件和软件结合。
以上所述仅为本发明的优选实施例而已,并不用于限制本发明,对于本领域的技术人员来说,本发明可以有各种更改和变化。凡在本发明的精神和原则之内,所作的任何修改、等同替换、改进等,均应包含在本发明的保护范围之内。
工业实用性
通过本发明实施例,根据分组标识和用户设备标识接入网络的用户设备接入到网络,即网关设备确保只有分组标识和设备标识的用户设备能够接入到网络中,从而解决了相关技术中不是分组中的用户可以通过分组中的用户分享的信息接入到网络的问题,达到了提高网络安全性的效果。

Claims (16)

  1. 一种接入网络的方法,包括:
    设置以多个用户设备为分组的分组信息,其中,所述分组信息包括:用于标识分组的分组标识,用于标识所述分组内用户设备的用户设备标识;
    将所述分组信息和所述分组标识发送到与所述用户设备标识对应的所述分组中的用户设备;
    允许根据所述分组标识和所述用户设备标识接入网络的用户设备接入到所述网络。
  2. 根据权利要求1所述的方法,其中,所述分组信息中还包括:用于指示所述分组中用户设备数量的数量信息,所述将所述分组信息和所述分组标识发送到所述分组中的用户设备包括:
    将所述分组信息和所述分组标识的组合生成与所述数量信息对应数量的第一标识,其中,每个第一标识都具有与所述用户设备标识一一对应的区别标识;
    将与所述数量信息对应数量的第一标识分别发送到与所述用户设备标识对应的所述分组中的用户设备。
  3. 根据权利要求2所述的方法,其中,所述允许发送所述分组信息和所述分组标识的用户设备接入到网络包括:
    接收用户设备发送的第二标识;
    判断所述第二标识中是否存在与所述数量信息对应数量的第一标识中的分组标识一致的标识;
    在所述第二标识中存在所述分组标识的情况下,判断所述第二标识中是否存在与所述用户设备标识一致的标识;
    在所述第二标识中存在所述用户设备标识,且所述第二标识为所述第一标识中的其中之一的情况下,允许发送所述第二标识的用户设 备接入到所述网络;或,
    在所述第二标识中存在所述用户设备标识,且所述第二标识为所述第一标识中的其中之一的情况下,继续判断接入网络的用户设备中是否具有使用相同区别标识的第一标识接入到所述网络;
    在接入网络的用户设备中不具有使用相同区别标识的第一标识接入到网络的情况下,允许发送所述第二标识的用户设备接入到所述网络。
  4. 根据权利要求3所述的方法,其中,
    在所述第二标识中不存在所述分组标识的情况下,禁止发送所述第二标识的用户设备接入所述网络;或,
    在所述第二标识中存在所述分组标识,且所述第二标识中不存在所述用户设备标识的情况下,禁止发送所述第二标识的用户设备接入所述网络;或,
    在所述第二标识中存在所述分组标识和所述用户设备标识,且在接入网络的用户设备中具有使用相同区别标识的第一标识接入到网络的情况下,产生警示信号并清除本地设置的所述分组信息和所述分组标识。
  5. 根据权利要求1所述的方法,其中,所述分组信息中还包括:用于指示所述分组信息生效的第一时间点和用于指示所述分组信息失效的第二时间点;
    允许根据所述分组标识和所述用户设备标识接入网络的用户设备接入到网络包括:在到达所述第一时间点时,允许接收到所述分组标识和所述用户设备标识的用户设备接入所述网络,直到到达所述第二时间点时,断开用户设备与所述网络的连接。
  6. 根据权利要求1所述的方法,其中,所述分组信息还包括用于接入网络的接入密码。
  7. 根据权利要求1至6任一项所述的方法,其中,所述用户设备通过网关设备接入网络。
  8. 根据权利要求7所述的方法,其中,所述网关设备为路由器。
  9. 一种接入网络的装置,包括:
    设置模块,设置为设置以多个用户设备为分组的分组信息,其中,所述分组信息包括:用于标识分组的分组标识,用于标识所述分组内用户设备的用户设备标识;
    发送模块,设置为将所述分组信息和所述分组标识发送到与所述用户设备标识对应的所述分组中的用户设备;
    接入模块,设置为允许根据所述分组标识和所述用户设备标识接入网络的用户设备接入到所述网络。
  10. 根据权利要求9所述的装置,其中,所述分组信息中还包括:用于指示所述分组中用户设备数量的数量信息,所述发送模块包括:
    生成单元,设置为将所述分组信息和所述分组标识的组合生成与所述数量信息对应数量的第一标识,其中,每个第一标识都具有与所述用户设备标识一一对应的区别标识;
    发送单元,设置为将与所述数量信息对应数量的第一标识分别发送到与所述用户设备标识对应的所述分组中的用户设备。
  11. 根据权利要求10所述的装置,其中,所述发送模块还包括:
    接收单元,设置为接收用户设备发送的第二标识;
    第一判断单元,设置为判断所述第二标识中是否存在与所述数量信息对应数量的第一标识中的分组标识一致的标识;
    第二判断单元,设置为在所述第二标识中存在所述分组标识的情况下,判断所述第二标识中是否存在与所述用户设备标识一致的标识;
    第一发送单元,设置为在所述第二标识中存在所述用户设备标识, 且所述第二标识为所述第一标识中的其中之一的情况下,允许发送所述第二标识的用户设备接入到所述网络;或,
    第三判断单元,设置为在所述第二标识中存在所述用户设备标识,且所述第二标识为所述第一标识中的其中之一的情况下,继续判断接入网络的用户设备中是否具有使用相同区别标识的第一标识接入到所述网络;
    第二发送单元,设置为在接入网络的用户设备中不具有使用相同区别标识的第一标识接入到网络的情况下,允许发送所述第二标识的用户设备接入到所述网络。
  12. 根据权利要求11所述的装置,其中,所述发送模块还包括:
    第一禁止单元,设置为在所述第二标识中不存在所述分组标识的情况下,禁止发送所述第二标识的用户设备接入所述网络;或,
    第二禁止单元,设置为在所述第二标识中存在所述分组标识,且所述第二标识中不存在所述用户设备标识的情况下,禁止发送所述第二标识的用户设备接入所述网络;或,
    产生单元,设置为在所述第二标识中存在所述分组标识和所述用户设备标识,且在接入网络的用户设备中具有使用相同区别标识的第一标识接入到网络的情况下,产生警示信号并清除本地设置的所述分组信息和所述分组标识。
  13. 根据权利要求9所述的装置,其中,所述分组信息中还包括:用于指示所述分组信息生效的第一时间点和用于指示所述分组信息失效的第二时间点;
    所述接入模块,还设置为在到达所述第一时间点时,允许接收到所述分组标识和所述用户设备标识的用户设备接入所述网络,直到到达所述第二时间点时,断开用户设备与所述网络的连接。
  14. 根据权利要求9所述的装置,其中,所述分组信息还包括用 于接入网络的接入密码。
  15. 根据权利要求9至14任一项所述的装置,其中,所述用户设备通过网关设备接入网络。
  16. 根据权利要求15所述的装置,其中,所述网关设备为路由器。
PCT/CN2017/075210 2016-07-01 2017-02-28 接入网络的方法及装置 WO2018000844A1 (zh)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN201610518263.0A CN107566325A (zh) 2016-07-01 2016-07-01 接入网络的方法及装置
CN201610518263.0 2016-07-01

Publications (1)

Publication Number Publication Date
WO2018000844A1 true WO2018000844A1 (zh) 2018-01-04

Family

ID=60785068

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2017/075210 WO2018000844A1 (zh) 2016-07-01 2017-02-28 接入网络的方法及装置

Country Status (2)

Country Link
CN (1) CN107566325A (zh)
WO (1) WO2018000844A1 (zh)

Families Citing this family (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN109257192B (zh) * 2018-11-07 2020-09-29 北京小米移动软件有限公司 群组信息分享方法及装置
CN109548025B (zh) * 2018-12-29 2022-12-30 上海掌门科技有限公司 管理路由设备所提供无线接入点的使用权限的方法与设备
CN110611696B (zh) * 2019-07-09 2022-05-31 上海联课智能科技有限公司 独立id的生成方式及其应用
CN110768972B (zh) * 2019-10-17 2022-02-18 中国联合网络通信集团有限公司 一种安全验证方法和路由器

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20030135755A1 (en) * 2002-01-11 2003-07-17 Hahn Timothy James System and method for granting access to resources
CN101742614A (zh) * 2008-11-27 2010-06-16 华为技术有限公司 一种控制用户接入的方法和网络设备
CN102469458A (zh) * 2010-11-19 2012-05-23 中兴通讯股份有限公司 一种m2m通信中的组认证方法和系统

Family Cites Families (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103929792B (zh) * 2009-01-19 2019-05-28 华为技术有限公司 识别接入网络的方法、装置和系统
CN102469547B (zh) * 2010-11-04 2014-07-02 中兴通讯股份有限公司 终端接入的控制方法、终端和系统
WO2014092441A1 (en) * 2012-12-13 2014-06-19 Samsung Electronics Co., Ltd. Device control method for registering device information of peripheral device, and device and system thereof
CN103619018A (zh) * 2013-11-21 2014-03-05 北京奇虎科技有限公司 一种无线网络访问权限的检测方法,装置及路由器
CN105636031A (zh) * 2014-11-05 2016-06-01 中兴通讯股份有限公司 分组通信管理方法、装置和系统

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20030135755A1 (en) * 2002-01-11 2003-07-17 Hahn Timothy James System and method for granting access to resources
CN101742614A (zh) * 2008-11-27 2010-06-16 华为技术有限公司 一种控制用户接入的方法和网络设备
CN102469458A (zh) * 2010-11-19 2012-05-23 中兴通讯股份有限公司 一种m2m通信中的组认证方法和系统

Non-Patent Citations (2)

* Cited by examiner, † Cited by third party
Title
LEE, DAEWON: "STA Group Management for MU-MIMO", IEEE 802. 11-10/0581R0, 17 May 2010 (2010-05-17) *
LEE, DAEWON: "STA MU-MIMO Group Management Signaling Design", IEEE 802. 11-10/0782R0, 13 July 2010 (2010-07-13) *

Also Published As

Publication number Publication date
CN107566325A (zh) 2018-01-09

Similar Documents

Publication Publication Date Title
US8594632B1 (en) Device to-device (D2D) discovery without authenticating through cloud
US10691788B2 (en) Systems and methods for provisioning a camera with a dynamic QR code and a BLE connection
US10516988B2 (en) Profile processing method, profile processing apparatus, user terminal, and eUICC
WO2018090830A1 (zh) 一种智能终端设备接入互联网的方法及装置
US9450750B2 (en) Communication apparatus and secret information sharing method
KR101879916B1 (ko) 3gpp lte에서 모바일 통신 디바이스 간의 근접성 발견, 인증 및 링크 설정
WO2018000844A1 (zh) 接入网络的方法及装置
KR20200138409A (ko) 컴퓨팅 디바이스들이 서로 근접해 있을 때를 식별할 수 있게 하기 위한 기법들
CN104883217B (zh) 一种传输卫星报文的方法、系统和设备
US20200187003A1 (en) Methods and apparatus for end device discovering another end device
CN105340212A (zh) 用于生成在设备至设备通信中的密钥的方法和装置
CN106304264B (zh) 一种无线网络接入方法及装置
US20190274039A1 (en) Communication system, network apparatus, authentication method, communication terminal, and security apparatus
WO2016062075A1 (zh) 一种管理设备间d2d通信分组的方法及设备
CN102740297B (zh) 一种寻呼方法及寻呼装置、寻呼系统
CN108293259A (zh) 一种nas消息处理、小区列表更新方法及设备
JP2017516373A (ja) データ伝送
JP2020501440A (ja) 緊急番号設定方法、取得方法および装置
WO2018196463A1 (zh) 网络接入方法、装置、存储介质及处理器
CN109246657B (zh) 数据分享方法、第一终端、第二终端及系统
JP2017539132A (ja) 端末、サーバ、及びユーザ識別システム及び方法
WO2017157255A1 (zh) 基于本地卸载的数据侦听方法和装置
WO2016058377A1 (zh) 一种实现监控的方法、系统及无线终端
CN106357511B (zh) 一种信息同步方法及装置
EP3284235A1 (en) Code encryption

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 17818843

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

122 Ep: pct application non-entry in european phase

Ref document number: 17818843

Country of ref document: EP

Kind code of ref document: A1