CN104486362A - Obtaining method and system for WiFi access point description information - Google Patents

Obtaining method and system for WiFi access point description information Download PDF

Info

Publication number
CN104486362A
CN104486362A CN201410857612.2A CN201410857612A CN104486362A CN 104486362 A CN104486362 A CN 104486362A CN 201410857612 A CN201410857612 A CN 201410857612A CN 104486362 A CN104486362 A CN 104486362A
Authority
CN
China
Prior art keywords
server
focus
terminal
user
descriptor
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201410857612.2A
Other languages
Chinese (zh)
Inventor
劳斌
吴裔
农革
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Sun Yat Sen University
SYSU CMU Shunde International Joint Research Institute
National Sun Yat Sen University
Original Assignee
SYSU CMU Shunde International Joint Research Institute
National Sun Yat Sen University
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by SYSU CMU Shunde International Joint Research Institute, National Sun Yat Sen University filed Critical SYSU CMU Shunde International Joint Research Institute
Priority to CN201410857612.2A priority Critical patent/CN104486362A/en
Publication of CN104486362A publication Critical patent/CN104486362A/en
Pending legal-status Critical Current

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/04Key management, e.g. using generic bootstrapping architecture [GBA]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/08Access security
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W48/00Access restriction; Network selection; Access point selection
    • H04W48/16Discovering, processing access restriction or access information

Abstract

The invention discloses an obtaining method and system for WiFi access point description information. The obtaining method and system have the advantages that the detailed information is obtained, and credibility and system safety are high. The method is characterized in that firstly, any information, such as position information and manager account number information, for describing an access point can be provided for a user, and a server located in the Internet uniformly manages and maintains the information for describing the access point; secondarily, replay attacks from the Internet can be prevented at the server end based on timestamps and dialogues of tokens.

Description

A kind of acquisition methods of Wi-Fi hotspot descriptor and system
Technical field
The present invention relates to wireless communication field, particularly relate to and a kind ofly realize user obtains Wi-Fi hotspot descriptor method and system by terminal.
Background technology
WiFi is a kind of wireless network communication technique following IEEE 802.11 series standard, and this technology has become a Main Means of the terminal accessing Internets such as mobile phone, flat board and notebook computer.At present conventional WiFi security protocol WPA2 provides individual and enterprise's two kinds of login mode, and wherein individual login mode requirement user inputs password and enterprise login mode requirement user inputs account and password.Under the Wi-Fi hotspot related to when introducing below is operated in enterprise's login mode.
The canonical process that user accesses a Wi-Fi hotspot (access point) by terminal is: SSID (the service set identifier of terminal searching periphery Wi-Fi hotspot broadcast, service set) signal generates a hot spot table, and user selects a focus in hot spot table according to SSID and inputs account and password logs in this focus.In the process, SSID is the main path that user obtains focus descriptor, but it is difficult to provide full and accurate, believable focus descriptor to user, and main cause is as follows:
The name of SSID synonym: SSID has arbitrariness, and different Wi-Fi hotspot may have identical SSID.
The length of SSID limit for length's problem: SSID can not more than 32 characters.
Prior art proposes multiple solution for SSID synonym, is now exemplified below:
Scheme 1: a kind of method of recognition network in a wireless local area network, the MAC Address that the method uses overall situation unique distinguishes extended service set ESS as mark.
Scheme 2: a kind of mobile terminal is from the method for the WLAN that is dynamically connected, terminal positional information and focus identifying information are also sent to server by the identifying information that mobile terminal to search periphery Wi-Fi hotspot is launched, and the identifying information of the Wi-Fi hotspot that server comparison this locality stores obtains the log-on message of the Wi-Fi hotspot being positioned at mobile terminal periphery and this log-on message is returned to mobile terminal with note form.Mobile terminal logs in the Wi-Fi hotspot of periphery according to the log-on message received.
In above technical scheme, scheme 1 uses the unified name administrative mechanism of the overall situation to solve SSID synonym; Scheme 2 uses special equipment to realize the function that terminal logs in focus.
Summary of the invention
For overcoming above-mentioned at least one defect (deficiency), the present invention proposes a kind of acquisition methods of new Wi-Fi hotspot descriptor and system provides full and accurate, believable focus descriptor to user.Described method and system can directly be deployed in general terminal and hotspot device, helps user to identify the Wi-Fi hotspot with different descriptor.
In order to achieve the above object, technical scheme of the present invention is as follows:
An acquisition methods for Wi-Fi hotspot descriptor, described method relates to server S VR, the focus AP that is positioned at the Internet, and a terminal M being positioned at focus AP signal cover.User Bob carries out with server SVR the service using system to provide that communicates with focus AP with mobile network's interface (such as: 3G, 4G etc.) respectively by the WiFi network interface of terminal M.Bob also communicates with server S VR via the focus of the current login of Bob by the WiFi network interface of terminal M, other focuses of the focus of described current login can be focus AP also can be non-AP.In the method, user Bob is as follows by the concrete steps of the descriptor of terminal M acquisition focus AP:
If terminal M cannot carry out accessing Internet by mobile network's interface, then user Bob obtains the descriptor of focus AP as follows.
(11) Bob sends the request obtaining this focus descriptor to focus AP by terminal M, comprises the timestamp of the local zone time that terminal M generates in request;
(12) focus AP forwards the request of self terminal M to server S VR;
(13) server S VR and Bob verifies the true and false of identity each other mutually, and authentication is by then jumping to step (14);
(14) server S VR generates the timestamp of local zone time and this timestamp and the timestamp in the request received in step (12) is compared the validity verifying the latter, then jumps to step (15) when verifying effective;
(15) server S VR sends the descriptor of this focus to focus AP;
(16) focus AP forwards from the descriptor of server S VR to terminal M.
In step (13) and (14), if identity or timestamp authentication failed, then the request of the descriptor of the acquisition focus AP of server termination Bob.
Server S VR carrys out the validity of proving time stamp according to a default threshold values; If the time difference of the timestamp of server S VR and user terminal M is less than the threshold values of setting, then judge that the timestamp of terminal M is effective.
If terminal M can carry out accessing Internet by mobile network's interface, then user Bob obtains the descriptor of focus AP as follows.
(21) terminal M asks a token to server S VR;
(22) server S VR generates a token and sends this token to terminal M;
(23) Bob sends the request of the descriptor obtaining this focus to focus AP by terminal M, is included in the token that step (22) receives in request;
(24) focus AP forwards the request of self terminal M to server S VR;
(25) server S VR and Bob verifies the true and false of identity each other mutually, and authentication is by then jumping to step (26);
(26) server S VR verifies the validity of the token in the request received in step (24), then jumps to step (27) when verifying effective;
(27) server S VR sends the descriptor of focus AP to terminal M.
In step (25) and (26), if identity or token authentication failure, then the request of the descriptor of the acquisition focus AP of server termination Bob.
In step (21) and (22), terminal M and server SVR can be asked by mobile network's interface of terminal M and be returned token, also can be asked by the focus of the WiFi network interface of terminal M via the current login of user Bob and be returned token.
In step (27), server S VR can receive and send the descriptor of focus AP to mobile network's interface direct of terminal M, also the descriptor of focus AP first can be sent to AP, then via the WiFi network interface forwarding descriptor of AP to terminal M.
The user account that each use has an overall situation unique per family, user initiates the request of registered user account by terminal to server, server registration user terminal to the current use of user returns registering result.In the process, user submits the essential informations such as the account of user and password to by terminal to server, also can submit other information such as the pet name of user and contact method as required to.
The focus account that each focus all has an overall situation unique, user initiates the request of registration focus account by terminal to server, server registration focus terminal to the current use of user returns registering result.In the process, user submits the essential informations such as the account of focus and password to by terminal to server, also can submit other information such as the manufacturer of focus and position as required to.User can at the multiple focus of server registration, claims this user to be the custodian of these focuses.
User, focus and service have a high regard for meaning to carry out information exchange by session between the two.At the session initial stage, communicating pair mutually identity relative to each other carries out certification and generates voucher for session, and this voucher is used to sign to the message of both sides' exchange during whole session.A user can use multiple terminal to initiate multiple session to server simultaneously, and multiple user also can use a terminal to initiate a session respectively to server simultaneously.
An acquisition system for Wi-Fi hotspot descriptor, described system comprises the terminal that a server, a focus and a user use.
The terminal that described user uses comprises:
End-user registration unit: initiate user's registration request;
Terminal hotspot registration unit: initiate hotspot registration request;
Terminal session processing unit, sets up, maintains and session between logging off users and focus or server;
Terminal identity authentication unit, authentication server or focus identity true and false;
Terminal data processing unit, processes the content of terminal data table, comprise search, additions and deletions and renewal;
Terminal message Transmit-Receive Unit, transmitting-receiving user and the message between server or focus;
Terminal time lock unit, according to the adopted time between time synchronization protocol synchronous terminal, server and focus;
Terminal time stabs administrative unit, and the current local time rise time according to terminal stabs;
Terminal token request unit, initiates the token assignment request of user;
Described focus comprises:
Focus Dialog processing unit, sets up, maintains and nullify the session between focus and user or server;
Focus identity authenticating unit, authentication server or user identity true and false;
Hot spot data processing unit, processes the content of hot spot data table, comprise search, additions and deletions and renewal;
Focus messaging unit, transmitting-receiving focus and the message between server or user;
Focus time synchronized unit, according to the adopted time between time synchronization protocol synchronous terminal, server and focus;
Described server comprises:
Server user's registering unit, response user registration request;
Server hotspot registration unit, the request of response hotspot registration;
Server session processing unit, sets up, maintains and session between log-on server and focus or user;
Server authentication unit, authentication of users or focus identity true and false;
Server data processing unit, processes the content of server data table, comprise search, additions and deletions and renewal;
Server message Transmit-Receive Unit, the message between transmitting/receiving server and focus or user;
Server time lock unit, according to the adopted time between time synchronization protocol synchronous terminal, server and focus;
Server time stamp administrative unit, the current local time rise time according to server stabs, and the validity of verification terminal timestamp;
Server token administrative unit, the token assignment request of response user, and the validity of checking token.
Described focus descriptor can comprise manufacturer and any information describing focus such as position, the supervisory account of focus and contact method of focus.
Compared with prior art, the beneficial effect of technical solution of the present invention is:
1) information is full and accurate, credible, the information of any description focus of the manufacturer that comprises focus and position, the supervisory account of focus and contact method can be provided to user, be positioned at the server unified management of the Internet and safeguard that these describe the information of focus.
2) security of system is high, the Replay Attack that the session based on timestamp and token can prevent from the Internet at server end.
Accompanying drawing explanation
Fig. 1 is Organization Chart of the present invention.
Fig. 2 is the schematic diagram of server in the specific embodiment of the invention, focus and user terminal data table.
Fig. 3 is the schematic flow sheet of stamp acquisition service time focus descriptor in the specific embodiment of the invention.
Fig. 4 is the sequential chart of stamp acquisition service time focus descriptor in the specific embodiment of the invention.
Fig. 5 is the schematic flow sheet using token to obtain focus descriptor in the specific embodiment of the invention.
Fig. 6 is the sequential chart using token to obtain focus descriptor in the specific embodiment of the invention.
Fig. 7 is the schematic diagram of system module in the specific embodiment of the invention.
Embodiment
Accompanying drawing, only for exemplary illustration, can not be interpreted as the restriction to this patent;
In order to better the present embodiment is described, some parts of accompanying drawing have omission, zoom in or out, and do not represent the size of actual product;
To those skilled in the art, in accompanying drawing, some known features and explanation thereof may be omitted is understandable.
Below in conjunction with drawings and Examples, technical scheme of the present invention is described further.
In said embodiment, user and terminal meet one-to-one relationship, that is: each user only uses a terminal, and each terminal only belongs to a user.Hereinafter, " user terminal " and " terminal use " is used to represent the terminal and user that meet above-mentioned corresponding relation respectively.
In said embodiment, as shown in Figure 2, particular content is as follows for the tables of data that server, focus and user terminal store:
The tables of data 10 of described user terminal comprises:
Subscriber's meter 101: the information of record terminal use, comprises fields such as { user account, user cipher, user's pet name, other information of user }, the user account overall situation is unique.
Hot spot table 102: the information of recording user terminal, peripheral focus, comprise fields such as { focus are numbered, focus SSID, focus MAC Address, hotspot location, focus custodian account, other information of focus }, focus numbering is local unique.
Hot information required list 103: the request of the acquisition focus descriptor that record terminal use initiates, comprise fields such as { information request are numbered, and focus is numbered }, information request numbering is local unique.
Focus conversational list 104: the information of the session of setting up between record terminal use and focus, comprises fields such as { session number, session status, session start time, conversation end time, session voucher, focus numberings }.
Server session table 105: the information of the session of setting up between record terminal use and server, comprises fields such as { session number, session status, session start time, conversation end time, session vouchers }.
The tables of data 20 of described focus comprises:
Hot spot table 201: the information of record focus, comprises fields such as { focus account, focus password, focus SSID, focus MAC Address, other information of focus }, the focus account overall situation is unique.
User conversation table 202: the information of the session of setting up between record focus and user, comprises fields such as { session number, session status, session start time, conversation end time, session voucher, user accounts }.
Server session table 203: the information of the session of setting up between record focus and server, comprises fields such as { session number, session status, session start time, conversation end time, session vouchers }.
The tables of data 30 of described server comprises:
Subscriber's meter 301: the information recording all users, comprises fields such as { user account, user cipher, user's pet name, other information of user }.
Hot spot table 302: the information recording all focuses, comprises fields such as { focus account, focus password, hotspot location, focus custodian account, other information of focus }.
Token table 303: the information of all tokens of user distributed in record, comprise fields such as { token are numbered, user account, rise time, valid period, using state }, the token numbering overall situation is unique.
User conversation table 304: the information of the session of setting up between record server and terminal use, comprises fields such as { session number, session status, session start time, conversation end time, session voucher, user accounts }, the session number overall situation is unique.
Focus conversational list 305: the information of the session of setting up between record server and focus, comprises fields such as { session number, session status, session start time, conversation end time, session voucher, focus accounts }, the session number overall situation is unique.
The user terminal M of the server S VR shown in Given Graph 1, focus AP and terminal use Bob, wherein SVR, AP and M carry out synchronous local zone time by NTP (network time protocol, NTP (Network Time Protocol)) time synchronization protocol.
In said embodiment, user terminal M comes to set up with server S VR to communicate if cannot pass through mobile network's interface (such as: 3G, 4G etc.) accessing Internet, then terminal use Bob obtains the process S40 of the descriptor of focus AP as shown in Figure 3-4 by user terminal M, during wherein Bob and AP, AP and SVR are in session:
Step S401: user terminal M generates the timestamp of local zone time and sends the request obtaining its descriptor to focus AP, and the content of request comprises { information request is numbered, the account of Bob, the timestamp of M }.
In this step, user terminal M sends the request obtaining focus descriptor to focus AP by WiFi network interface.
Step S402: focus AP to server S VR forwarding carrys out the request of user terminal M.
Step S403: server S VR and terminal use Bob use the password of Bob mutually to verify the true and false of identity each other; If authentication failed, then jump to step S408.
In this step, Bob comes to carry out authentication with server S VR via focus AP by the WiFi network interface of user terminal M.According to adopted authentication algorithm, such as may need between CHAP v2, server S VR and user terminal M to carry out repeatedly information exchange to complete authentication through focus AP.
The validity of the timestamp of the M in the request that step S404: server S VR checking receives in step S402; If authentication failed, then jump to step S408.
In this step, server S VR generates the timestamp of local zone time and this timestamp and the timestamp received in step S402 is compared the validity verifying the latter.Server S VR carrys out the validity of proving time stamp according to a default threshold values, if time difference of timestamp that server S VR and user terminal M generates does not exceed this preset value, then judges that the timestamp of M is effective.
Step S405: server S VR to focus AP sends the message comprising the descriptor of this focus, and the content of message comprises { information request is numbered, the account of Bob, hotspot location, focus custodian account, other information of focus }.
Step S406: focus AP to user terminal M forwards the message from server S VR.
In this step, focus AP forwards focus descriptor to the WiFi network interface of user terminal M.
Step S407: user terminal M upgrades local hot spot table.
Step S408: terminate.
In said embodiment, if user terminal M can come to set up with server S VR to communicate by mobile network's interface accessing Internet, then terminal use Bob obtains the process S50 of the descriptor of focus AP as seen in figs. 5-6 by user terminal M, during wherein Bob, AP and SVR are in session between two:
Step S501: user terminal M to server S VR sends token assignment request.
In this step, Bob uses mobile network's interface accessing Internets such as 3G, 4G of user terminal M to come to send token assignment request to server S VR, and Bob also can use the WiFi network interface of terminal M to send token assignment request via the focus of the current login of Bob to server S VR.Here, Bob uses mobile network's interface of terminal M to send token assignment request to server.
Step S502: server S VR generates a token and sends the message comprising this token information to user terminal M, and the content of message comprises { token numbering }.
In this step, server S VR can send token information directly to mobile network's interface of user terminal M, also can come to forward token information to the WiFi network interface of terminal M via the focus of the current login of Bob.Here, server sends token information directly to mobile network's interface of user terminal M.
Step S503: user terminal M to focus AP transmission obtains the request of the descriptor of this focus, and the content of request comprises { information request is numbered, the account of Bob, and token is numbered }.
In this step, user terminal M sends the request obtaining focus descriptor to focus AP by WiFi network interface.
Step S504: focus AP to server S VR forwarding carrys out the request of user terminal M.
Step S505: server S VR and terminal use Bob use the password of Bob mutually to verify the true and false of identity each other; If authentication failed, then jump to step S509.
In this step, Bob carries out authentication by the WiFi network interface of user terminal M via focus AP and server S VR, and the mobile network's interface accessing Internet also by terminal M carries out authentication with server S VR.Here, Bob uses mobile network's interface of terminal M to come to carry out authentication with server S VR.According to adopted authentication algorithm, such as CHAP v2, may need between server S VR and terminal M repeatedly to have communicated checking.
Step S506: server S VR verifies that whether the token in the request received in step S504 is effective; If authentication failed, then jump to step S509.
Step S507: server S VR to user terminal M sends the message comprising the descriptor of focus AP, and the content of message comprises { information request is numbered, hotspot location, focus custodian account, other information of focus }.
In this step, server S VR can send the descriptor of focus AP directly to mobile network's interface of user terminal M, also can via the WiFi network interface forwarding focus descriptor of AP to terminal M.Here, server S VR receives and sends the descriptor of AP to mobile network's interface direct of terminal M.
Step S508: user terminal M upgrades local hot spot table.
Step S509: terminate.
In said embodiment, system 60 comprises a user terminal 61, focus 62, and a station server 63.
User terminal 61 comprises user register unit 611, hotspot registration unit 612, Dialog processing unit 613, identity authenticating unit 614, data processing unit 615, messaging unit 616, time synchronized unit 617, timestamp administrative unit 618, and token request unit 619.
Focus 62 comprises Dialog processing unit 621, identity authenticating unit 622, data processing unit 623, messaging unit 624, and time synchronized unit 625.
Server 63 comprises user register unit 631, hotspot registration unit 632, Dialog processing unit 633, identity authenticating unit 634, data processing unit 635, messaging unit 636, time synchronized unit 637, timestamp administrative unit 638, and token management unit 639.
The user register unit 611 and 631 of user terminal 61 and server 63 is carried out information exchange by messaging unit 616 and 636 and is performed user's registration.
The hotspot registration unit 612 and 632 of user terminal 61 and server 63 carries out information exchange by messaging unit 616 and 636 and performs hotspot registration.
The Dialog processing unit 613,621 and 633 of user terminal 61, focus 62 and server 63 carries out information exchange by messaging unit 616,624,636 and sets up between two, maintain and nullify session.
The identity authenticating unit 614,622 and 634 of user terminal 61, focus 62 and server 63 is carried out information exchange by messaging unit 616,624 and 636 and is carried out between two checking identity each other mutually.
Data processing unit 615,623 and 635 pairs of data table related of user terminal 61, focus 62 and server 63 perform inquiry, additions and deletions and renewal, and data can store by the form such as database or file.Present embodiment adopts database to manage all tables of data.
The time synchronized unit 617,625 and 637 of user terminal 61, focus 62 and server 63 is according to the synchronous local zone time of Network Time Protocol.
The timestamp administrative unit 618 of user terminal 61 generates the timestamp of current local time and sends to server 63 by messaging unit 616.The timestamp administrative unit 638 of server 63 generates the timestamp of current local time and itself and the timestamp of the user terminal 61 received is compared the validity verifying the latter.
Token request and the administrative unit 619 and 639 of user terminal 61 and server 63 are asked respectively and generate token, and carry out information exchange by messaging unit 616 and 636 and transmit token.The token management unit 639 of server 63 verifies the validity of the token received.
In the present embodiment, user terminal 61, communication between focus 62 and server 63 use with lower network:
Focus 62 is connected to server 63 by the mobile network such as wired internet or 3G/4G and goes forward side by side Serial Communication.
User terminal 61 is connected to focus 62 by WiFi WLAN (wireless local area network) and goes forward side by side Serial Communication.
User terminal 61 is connected to server 63 by mobile networks such as WiFi WLAN (wireless local area network) or 3G/4G and goes forward side by side Serial Communication.
The corresponding same or analogous parts of same or analogous label;
Describe in accompanying drawing position relationship for and only for exemplary illustration, the restriction to this patent can not be interpreted as;
Obviously, the above embodiment of the present invention is only for example of the present invention is clearly described, and is not the restriction to embodiments of the present invention.For those of ordinary skill in the field, can also make other changes in different forms on the basis of the above description.Here exhaustive without the need to also giving all execution modes.All any amendments done within the spirit and principles in the present invention, equivalent to replace and improvement etc., within the protection range that all should be included in the claims in the present invention.

Claims (10)

1. an acquisition methods for Wi-Fi hotspot descriptor, is characterized in that, user Bob obtains the descriptor of focus AP concrete steps by terminal M are as follows:
When terminal M cannot carry out accessing Internet by mobile network's interface, then user Bob obtains the descriptor of focus AP as follows;
(11) Bob sends the request obtaining this focus descriptor to focus AP by terminal M, comprises the timestamp of the local zone time that terminal M generates in request;
(12) focus AP forwards the request of self terminal M to server S VR;
(13) server S VR and Bob verifies the true and false of identity each other mutually, and authentication is by then jumping to step (14);
(14) server S VR generates the timestamp of local zone time and this timestamp and the timestamp in the request received in step (12) is compared the validity verifying the latter, then jumps to step (15) when verifying effective;
(15) server S VR sends the descriptor of this focus to focus AP;
(16) focus AP forwards from the descriptor of server S VR to terminal M;
When terminal M can carry out accessing Internet by mobile network's interface, then user Bob obtains the descriptor of focus AP as follows;
(21) terminal M asks a token to server S VR;
(22) server S VR generates a token and sends this token to terminal M;
(23) Bob sends the request of the descriptor obtaining this focus to focus AP by terminal M, is included in the token that step (22) receives in request;
(24) focus AP forwards the request of self terminal M to server S VR;
(25) server S VR and Bob verifies the true and false of identity each other mutually, and authentication is by then jumping to step (26);
(26) server S VR verifies the validity of the token in the request received in step (24), then jumps to step (27) when verifying effective;
(27) server S VR sends the descriptor of focus AP to terminal M.
2. the acquisition methods of Wi-Fi hotspot descriptor according to claim 1, it is characterized in that, described step (13), (14) if in the timestamp of authentication failure or terminal M invalid, then the request of the descriptor of the acquisition focus AP of server S VR termination user Bob.
3. the acquisition methods of Wi-Fi hotspot descriptor according to claim 2, is characterized in that, described server S VR carrys out the validity of proving time stamp according to a default threshold values; If the time difference of the timestamp of server S VR and user terminal M is less than the threshold values of setting, then judge that the timestamp of terminal M is effective.
4. the acquisition methods of Wi-Fi hotspot descriptor according to claim 1, it is characterized in that, described step (25), (26) if in identity or token authentication failure, then the request of the descriptor of the acquisition focus AP of server S VR termination user Bob.
5. the acquisition methods of the Wi-Fi hotspot descriptor according to claim 1 or 4, it is characterized in that, in described step (27), server S VR receives and sends the descriptor of focus AP to terminal M by mobile network's interface direct of terminal M, or the descriptor of focus AP is first sent to AP, then be forwarded to terminal M via focus AP by the WiFi network interface of terminal M.
6. the acquisition methods of Wi-Fi hotspot descriptor according to claim 1, it is characterized in that, the user account that each use has an overall situation unique per family, user initiates the request of registered user account by terminal to server, server registration user terminal to the current use of user returns registering result.
7. the acquisition methods of Wi-Fi hotspot descriptor according to claim 6, it is characterized in that, the focus account that each focus all has an overall situation unique, user initiates the request of registration focus account by terminal to server, server registration focus terminal to the current use of user returns registering result; In the process, user sends account and the password of focus by terminal to server.
8. the acquisition methods of Wi-Fi hotspot descriptor according to claim 1, is characterized in that, user, focus and service have a high regard for meaning to carry out information exchange by session between the two; At the session initial stage, communicating pair mutually identity relative to each other carries out certification and generates voucher for session, and this voucher is used to sign to the message of both sides' exchange during whole session; A user can use multiple terminal to initiate multiple session to server simultaneously, and multiple user also can use a terminal to initiate a session respectively to server simultaneously.
9. an acquisition system for Wi-Fi hotspot descriptor, is characterized in that, comprises the terminal that server, focus and user use;
The terminal that described user uses comprises:
End-user registration unit: initiate user's registration request;
Terminal hotspot registration unit: initiate hotspot registration request;
Terminal session processing unit, sets up, maintains and session between logging off users and focus or server;
Terminal identity authentication unit, authentication server or focus identity true and false;
Terminal data processing unit, processes the content of terminal data table, comprise search, additions and deletions and renewal;
Terminal message Transmit-Receive Unit, transmitting-receiving user and the message between server or focus;
Terminal time lock unit, according to the adopted time between time synchronization protocol synchronous terminal, server and focus;
Terminal time stabs administrative unit, and the current local time rise time according to terminal stabs;
Terminal token request unit, initiates the token assignment request of user;
Described focus comprises:
Focus Dialog processing unit, sets up, maintains and nullify the session between focus and user or server;
Focus identity authenticating unit, authentication server or user identity true and false;
Hot spot data processing unit, processes the content of hot spot data table, comprise search, additions and deletions and renewal;
Focus messaging unit, transmitting-receiving focus and the message between server or user;
Focus time synchronized unit, according to the adopted time between time synchronization protocol synchronous terminal, server and focus;
Described server comprises:
Server user's registering unit, response user registration request;
Server hotspot registration unit, the request of response hotspot registration;
Server session processing unit, sets up, maintains and session between log-on server and focus or user;
Server authentication unit, authentication of users or focus identity true and false;
Server data processing unit, processes the content of server data table, comprise search, additions and deletions and renewal;
Server message Transmit-Receive Unit, the message between transmitting/receiving server and focus or user;
Server time lock unit, according to the adopted time between time synchronization protocol synchronous terminal, server and focus;
Server time stamp administrative unit, the current local time rise time according to server stabs, and the validity of verification terminal timestamp;
Server token administrative unit, the token assignment request of response user, and the validity of checking token.
10. the acquisition system of Wi-Fi hotspot descriptor according to claim 9, is characterized in that, described focus descriptor comprises position, custodian's account of focus.
CN201410857612.2A 2014-12-31 2014-12-31 Obtaining method and system for WiFi access point description information Pending CN104486362A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201410857612.2A CN104486362A (en) 2014-12-31 2014-12-31 Obtaining method and system for WiFi access point description information

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201410857612.2A CN104486362A (en) 2014-12-31 2014-12-31 Obtaining method and system for WiFi access point description information

Publications (1)

Publication Number Publication Date
CN104486362A true CN104486362A (en) 2015-04-01

Family

ID=52760866

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201410857612.2A Pending CN104486362A (en) 2014-12-31 2014-12-31 Obtaining method and system for WiFi access point description information

Country Status (1)

Country Link
CN (1) CN104486362A (en)

Cited By (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN105050086A (en) * 2015-07-23 2015-11-11 广东顺德中山大学卡内基梅隆大学国际联合研究院 Method for terminal to log in Wifi hotspot
CN105472612A (en) * 2015-12-09 2016-04-06 广东顺德中山大学卡内基梅隆大学国际联合研究院 Method and system for broadcasting and receiving keyword and obtaining information thereof by using WI-Fi hotspot
CN106211353A (en) * 2015-05-05 2016-12-07 阿里巴巴集团控股有限公司 Data capture method, device and system
CN106604266A (en) * 2016-12-06 2017-04-26 深圳市晟天维科技有限公司 Intelligent equipment system connection method, intelligent equipment and intelligent equipment access system
WO2017113770A1 (en) * 2015-12-29 2017-07-06 中兴通讯股份有限公司 Information processing method, server and hotspot device

Citations (10)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1588878A (en) * 2004-08-05 2005-03-02 Ut斯达康通讯有限公司 Method for detecting illegally cut-in point in radio cocal network
US20060217131A1 (en) * 2004-10-29 2006-09-28 Skyhook Wireless, Inc. Location-based services that choose location algorithms based on number of detected access points within range of user device
CN101030859A (en) * 2007-02-06 2007-09-05 上海交通大学 Method and system for verifying distributed network
CN101784092A (en) * 2009-01-16 2010-07-21 中兴通讯股份有限公司 Method and terminal for realizing wireless network access based on geographic information system
CN101369893B (en) * 2008-10-06 2010-08-18 中国移动通信集团设计院有限公司 Method for local area network access authentication of casual user
CN101977380A (en) * 2010-11-15 2011-02-16 天津工业大学 Wireless Mesh network identification method
CN102291799A (en) * 2011-08-12 2011-12-21 盛乐信息技术(上海)有限公司 Method and system for acquiring wireless access points
CN103109568A (en) * 2011-09-14 2013-05-15 华为技术有限公司 Method and device for acquiring wifi access point information
CN103458404A (en) * 2012-05-29 2013-12-18 盛乐信息技术(上海)有限公司 Wi-Fi hotspot connection method and system
EP2779754A1 (en) * 2011-11-21 2014-09-17 Huawei Technologies Co., Ltd. Method, device and system for finding wireless access point

Patent Citations (10)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1588878A (en) * 2004-08-05 2005-03-02 Ut斯达康通讯有限公司 Method for detecting illegally cut-in point in radio cocal network
US20060217131A1 (en) * 2004-10-29 2006-09-28 Skyhook Wireless, Inc. Location-based services that choose location algorithms based on number of detected access points within range of user device
CN101030859A (en) * 2007-02-06 2007-09-05 上海交通大学 Method and system for verifying distributed network
CN101369893B (en) * 2008-10-06 2010-08-18 中国移动通信集团设计院有限公司 Method for local area network access authentication of casual user
CN101784092A (en) * 2009-01-16 2010-07-21 中兴通讯股份有限公司 Method and terminal for realizing wireless network access based on geographic information system
CN101977380A (en) * 2010-11-15 2011-02-16 天津工业大学 Wireless Mesh network identification method
CN102291799A (en) * 2011-08-12 2011-12-21 盛乐信息技术(上海)有限公司 Method and system for acquiring wireless access points
CN103109568A (en) * 2011-09-14 2013-05-15 华为技术有限公司 Method and device for acquiring wifi access point information
EP2779754A1 (en) * 2011-11-21 2014-09-17 Huawei Technologies Co., Ltd. Method, device and system for finding wireless access point
CN103458404A (en) * 2012-05-29 2013-12-18 盛乐信息技术(上海)有限公司 Wi-Fi hotspot connection method and system

Cited By (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106211353A (en) * 2015-05-05 2016-12-07 阿里巴巴集团控股有限公司 Data capture method, device and system
CN105050086A (en) * 2015-07-23 2015-11-11 广东顺德中山大学卡内基梅隆大学国际联合研究院 Method for terminal to log in Wifi hotspot
CN105050086B (en) * 2015-07-23 2019-02-05 广东顺德中山大学卡内基梅隆大学国际联合研究院 A kind of method that terminal logs in Wifi hot spot
CN105472612A (en) * 2015-12-09 2016-04-06 广东顺德中山大学卡内基梅隆大学国际联合研究院 Method and system for broadcasting and receiving keyword and obtaining information thereof by using WI-Fi hotspot
WO2017113770A1 (en) * 2015-12-29 2017-07-06 中兴通讯股份有限公司 Information processing method, server and hotspot device
CN106604266A (en) * 2016-12-06 2017-04-26 深圳市晟天维科技有限公司 Intelligent equipment system connection method, intelligent equipment and intelligent equipment access system

Similar Documents

Publication Publication Date Title
CN106851632B (en) A kind of method and device of smart machine access WLAN
EP2982084B1 (en) Method and apparatus for routing proximity-based service message in wireless communication system
US9154950B2 (en) Network access method, apparatus and system
US9253638B2 (en) Single card multi-mode multi-operator authentication method and device
US10477397B2 (en) Method and apparatus for passpoint EAP session tracking
US20110055409A1 (en) Method For Network Connection
CN104486362A (en) Obtaining method and system for WiFi access point description information
US8984590B2 (en) Enabling access to key lifetimes for wireless link setup
US8655729B2 (en) Using a first network to control access to a second network
CN105357242A (en) Method and system for accessing wireless local area network, short message push platform and portal system
CN104104516A (en) Portal authentication method and device
KR20160099396A (en) Using method for communication service and electronic device supporting the same
CN101662768B (en) Authenticating method and equipment based on user identification module of personal handy phone system
KR20120056460A (en) System and method for authentication in wireless lan
CN102857517B (en) Authentication method, Broadband Remote Access Server and certificate server
US9930048B2 (en) Customer identification for seamless wireless-network access
CN107659935A (en) A kind of authentication method, certificate server, network management system and Verification System
CN104754689B (en) home gateway access management method and system
US10187796B2 (en) Authentication and association method and system
CN105163335B (en) A kind of network access management method, server, mobile terminal and system
WO2016090578A1 (en) Authentication processing method, apparatus and terminal
CN104333854B (en) WiFi charging methods and system
CN108540493B (en) Authentication method, user equipment, network entity and service side server
WO2016061981A1 (en) Wlan sharing method and system, and wlan sharing registration server
CN110784447A (en) Method for realizing non-perception authentication across protocols

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
WD01 Invention patent application deemed withdrawn after publication

Application publication date: 20150401

WD01 Invention patent application deemed withdrawn after publication