CN107659935A - A kind of authentication method, certificate server, network management system and Verification System - Google Patents
A kind of authentication method, certificate server, network management system and Verification System Download PDFInfo
- Publication number
- CN107659935A CN107659935A CN201711071818.2A CN201711071818A CN107659935A CN 107659935 A CN107659935 A CN 107659935A CN 201711071818 A CN201711071818 A CN 201711071818A CN 107659935 A CN107659935 A CN 107659935A
- Authority
- CN
- China
- Prior art keywords
- phone number
- sent
- dynamic password
- network management
- management system
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Granted
Links
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/06—Authentication
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/06—Network architectures or network communication protocols for network security for supporting key management in a packet data network
- H04L63/068—Network architectures or network communication protocols for network security for supporting key management in a packet data network using time-dependent keys, e.g. periodically changing keys
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/083—Network architectures or network communication protocols for network security for authentication of entities using passwords
- H04L63/0846—Network architectures or network communication protocols for network security for authentication of entities using passwords using time-dependent-passwords, e.g. periodically changing passwords
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/08—Access security
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W4/00—Services specially adapted for wireless communication networks; Facilities therefor
- H04W4/12—Messaging; Mailboxes; Announcements
- H04W4/14—Short messaging services, e.g. short message services [SMS] or unstructured supplementary service data [USSD]
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Computer Hardware Design (AREA)
- Computing Systems (AREA)
- General Engineering & Computer Science (AREA)
- Mobile Radio Communication Systems (AREA)
- Telephonic Communication Services (AREA)
Abstract
The present invention relates to data communication technology.The present invention solves the problems, such as usage scenario present in existing WIFI WPA/WAP2 802.1X certifications not enough extensively and security deficiency, there is provided a kind of authentication method, certificate server, network management system and Verification System, its technical scheme can be summarized as:Mobile terminal sends EAP Request/Identity message identifyings to access point, when authentication initiator is communication terminal, and after the phone number in the message identifying is the user that can be serviced, generate dynamic password, the entitled phone number of establishment user and password are the account of the dynamic password, and expired time is set, and it is connected WIFI further according to phone number to mobile terminal, mobile terminal by short message sending with the dynamic password received.The beneficial effects of the invention are as follows:The dynamic management of password is realized, suitable for WPA/WAP2 802.1X Verification Systems.
Description
Technical field
The present invention relates to data communication technology, authentication method and Verification System more particularly to based on 802.1X.
Background technology
WIFI authentication method have OPEN (open, not certification do not encrypt), WEP (Wired Equivalent Privacy,
Wired equivalent privacy), WPA (Wi-Fi Protected Access)/WPA2PSK and WPA/WPA2 802.1X are (based on port
Link authentication), wherein WPA/WPA2 802.1X are widely adopted due to safe in commercial kitchen area.
But WPA/WAP2 802.1X need to safeguard fixed username and password in certification end, maintenance cost height be present
The problem of, meanwhile, the shortcomings that leakage be present in fixed username and password.
The shortcomings that for WPA/WPA2 802.1X, industry develop following solution method:
1st, the short message identity identifying method of the wireless network of facing moving terminal.Principle is to pass through short message by Verification System
Secure connection is pushed, terminal is authenticated using mobile data channel access secure connection, and certification can access WIFI after
Network.
2nd, the method being authenticated by the wechat or QQ of mobile terminal.
In the above method, first, mobile terminal data passage is needed to use, it is bad in no data channel and data channel
When, it can not use;Second, AP (Access Point, access point) certification mode is usually open, terminal is in certification
It is preceding to have connected WIFI network, security deficiency;Third, terminal has to additionally install the softwares such as wechat or QQ.
It can be seen that although existing method can solve the problem that the maintainability of username and password management, but exist and use field
Scape is not enough extensively and the problem of security deficiency.
The content of the invention
The purpose of the present invention is exactly to solve the usage scenario present in current WIFI WPA/WAP2 802.1X certifications
The problem of not extensive enough and security deficiency, there is provided a kind of authentication method, certificate server, network management system and Verification System.
In a first aspect, the embodiment of the present invention provides a kind of authentication method, it is characterised in that comprises the following steps:
Step 1, mobile terminal send EAP-Request/Identity message identifyings to access point, are carried in message identifying
The phone number and terminal type of the mobile terminal;
Step 2, access point receive message identifying, are pass-through to certificate server;
The terminal type of step 3, certificate server in the message identifying received judges that authentication initiator is mobile
During communicating terminal, the phone number in message identifying is sent to network management system;
Step 4, network management system judge that the phone number is generation dynamic password after the user that can be serviced, and are sent to
Certificate server;
Step 5, certificate server create the entitled phone number of user and password is the account of the dynamic password, and set
Expired time, and expired time is sent to network management system;
Dynamic password and expired time are sent to mobile terminal by step 6, network management system by short message;
Step 7, mobile terminal carry out 802.1X verification process by phone number and dynamic password and certificate server, close
Method accesses WIFI network.
Specifically, in step 1, the mobile terminal is communication terminal and/or notebook computer.
Further, in step 3, the communication terminal is mobile phone and/or supports SMS and have cell-phone number
The tablet personal computer of code.
Specifically, in step 5, the expired time is that current time adds default effective time;Described default have
The effect time is according to circumstances configured by WIFI provider.
Authentication method provided in an embodiment of the present invention, due to the phone number using communication terminal, it is ensured that user
The legitimacy and uniqueness of name, are combined by the short message with communication terminal, realize the dynamic management of password, reduce fortune
The cost safeguarded is sought, and solves the security breaches of fixed password, due to sending certification using EAP-Request/ network management systems
Message, it is applied widely, it can also be used under the bad scene of no mobile data service or service.
Second aspect, the embodiment of the present invention provide a kind of certificate server, it is characterised in that including user management module and
User authentication module,
The user management module, for receiving the EAP-Request/ from mobile terminal of WAP transmission
After Identity message identifyings, the terminal type in the message identifying received judges that authentication initiator is mobile communication end
Behind end, the identification of user type and the identification of subscriber phone number are completed, is additionally operable to the movement that will be carried in the message identifying
After the phone number of terminal is sent to network management system, the dynamic password that the network management system returns is received;Create the entitled hand of user
Machine number and password are the account of the dynamic password, and set expired time;The expired time is sent to network management system,
So that the dynamic password and the expired time are sent to the mobile terminal by network management system;
The user authentication module, for the phone number using mobile terminal and the dynamic password to described mobile whole
End carries out 802.1X certifications.
The third aspect, the embodiment of the present invention provide a kind of network management system, it is characterised in that including message control module and short
Believe module;
The message control module, the phone number sent for receiving certificate server, when the phone number is can
During with the user of service, generate dynamic password, and be sent to certificate server, receive that certificate server sends it is expired when
Between, and phone number, dynamic password and expired time are sent jointly into SMS module;
The SMS module, for concurrent according to phone number, dynamic password and expired time the generation short message received
Give corresponding phone number.
Fourth aspect, the embodiment of the present invention provide a kind of Verification System, it is characterised in that including certificate server, access
Point and network management system,
Described access point, the EAP-Request/Identity certifications that the mobile terminal for receiving WIFI to be connected is sent
Message, and passed through certificate server;The phone number and terminal type of the mobile terminal are carried in the message identifying;
The certificate server, for when receive WAP transmission the message identifying from mobile terminal when,
When judging the terminal type in message identifying for communication terminal, the phone number in message identifying is sent to webmaster system
System, the dynamic password that network management system is sent being received, the entitled phone number of establishment user and password are the account of dynamic password, and
Expired time is set, and expired time is sent to network management system, receives phone number and dynamic password that mobile terminal is sent,
802.1X certifications are carried out to it;
The network management system, the phone number sent for receiving certificate server, when phone number is to service
User when, generate dynamic password, and be sent to certificate server, receive the expired time that certificate server is sent, pass through
Dynamic password and expired time are sent to corresponding mobile terminal by short message.
Specifically, the certificate server includes user management module and user authentication module,
The user management module, for receiving the EAP-Request/ from mobile terminal of WAP transmission
After Identity message identifyings, the terminal type in the message identifying received judges that authentication initiator is mobile communication end
Behind end, the identification of user type and the identification of subscriber phone number are completed, is additionally operable to the movement that will be carried in the message identifying
After the phone number of terminal is sent to network management system, the dynamic password that the network management system returns is received;Create the entitled hand of user
Machine number and password are the account of the dynamic password, and set expired time;The expired time is sent to network management system,
So that the dynamic password and the expired time are sent to the mobile terminal by network management system;
The user authentication module, for the phone number using mobile terminal and the dynamic password to described mobile whole
End carries out 802.1X certifications.
Further, the network management system includes message control module and SMS module,
The message control module, the phone number sent for receiving certificate server, when the phone number is can
During with the user of service, generate dynamic password, and be sent to certificate server, receive that certificate server sends it is expired when
Between, and phone number, dynamic password and expired time are sent jointly into SMS module;
The SMS module, for concurrent according to phone number, dynamic password and expired time the generation short message received
Give corresponding phone number.
Specifically, the communication terminal is mobile phone and/or supports SMS and the flat board electricity with phone number
Brain.
Further, judge whether the phone number is that the method for the user that can be serviced is:It is pre- in network management system
If business game, determine whether that the phone number provides service according to business game.
Specifically, the business game is to preset multiple phone numbers, when received phone number can be with presetting
Multiple phone numbers matching when, provide service for it.
The invention has the advantages that above-mentioned a kind of authentication method, certificate server, network management system and Verification System, by
In using communication terminal phone number, it is ensured that the legitimacy and uniqueness of user name, by with communication terminal
Short message combine, realize the dynamic management of password, reduce the cost of operation maintenance, and solve fixed password safety leakage
Hole, it is applied widely due to sending message identifying using EAP-Request/ network management systems, in no mobile data service or
Servicing can also use under bad scene.
Brief description of the drawings
Fig. 1 is the flow chart of authentication method provided in an embodiment of the present invention;
Fig. 2 is the structured flowchart of certificate server provided in an embodiment of the present invention;
Fig. 3 is the structured flowchart of network management system provided in an embodiment of the present invention;
Fig. 4 is the structured flowchart of Verification System provided in an embodiment of the present invention.
Embodiment
With reference to embodiment and accompanying drawing, technical scheme is described in detail.
A kind of authentication method of the present invention is:Mobile terminal sends EAP-Request/ to access point first
Identity message identifyings, the phone number and terminal type of the mobile terminal are carried in message identifying, when access point receives
Message identifying, is pass-through to certificate server, and certificate server is sentenced further according to the terminal type in the message identifying received
When disconnected authentication initiator is communication terminal, the phone number in message identifying is sent to network management system, network management system is again
It is generation dynamic password after the user that can be serviced to judge the phone number, and is sent to certificate server, and certificate server is right
Create the entitled phone number of user and password again afterwards and be the account of the dynamic password, and expired time is set, and will be expired when
Between be sent to network management system, then dynamic password and expired time are sent to mobile terminal by network management system by short message again, most
Mobile terminal carries out 802.1X verification process, legal access WIFI nets by phone number and dynamic password with certificate server afterwards
Network.
A kind of certificate server of the present invention, including user management module and user authentication module, wherein, Yong Huguan
Reason module is used for after receiving the EAP-Request/Identity message identifyings from mobile terminal that WAP is sent, root
After judging that authentication initiator is communication terminal according to the terminal type in the message identifying received, the knowledge of user type is completed
Other and subscriber phone number identification, is additionally operable to the phone number of the mobile terminal carried in the message identifying being sent to net
After guard system, the dynamic password that the network management system returns is received;It is the dynamic to create the entitled phone number of user and password
The account of password, and expired time is set;The expired time is sent to network management system, so that network management system is by the dynamic
Password and the expired time are sent to the mobile terminal;User authentication module be used for using mobile terminal phone number and
The dynamic password carries out 802.1X certifications to the mobile terminal.
A kind of network management system of the present invention, including message control module and SMS module, wherein, message control module
The phone number sent for receiving certificate server, when the phone number is the user that can be serviced, generation dynamic is close
Code, and is sent to certificate server, receives the expired time that certificate server is sent, and by phone number, dynamic password and
Expired time sends jointly to SMS module;SMS module be used for according to receive phone number, dynamic password and it is expired when
Between generate short message and be sent to corresponding phone number.
A kind of Verification System of the present invention, including certificate server, access point and network management system, wherein, access point
The EAP-Request/Identity message identifyings that mobile terminal for receiving WIFI to be connected is sent, and passed through and recognized
Demonstrate,prove server;The phone number and terminal type of the mobile terminal are carried in the message identifying;Certificate server, which is used to work as, to be connect
When receiving the message identifying from mobile terminal of WAP transmission, judge the terminal type in message identifying to be mobile logical
When interrogating terminal, the phone number in message identifying is sent to network management system, receives the dynamic password that network management system is sent, wound
Build the entitled phone number of user and password is the account of dynamic password, and expired time is set, and expired time is sent to net
Guard system, phone number and dynamic password that mobile terminal is sent are received, 802.1X certifications are carried out to it;Network management system is used to connect
The phone number that certificate server is sent is received, when phone number is the user that can be serviced, generates dynamic password, and send
To certificate server, the expired time that certificate server is sent is received, is sent dynamic password and expired time by short message
To corresponding mobile terminal.
Embodiment
A kind of authentication method provided in the embodiment of the present invention, its flow chart is referring to Fig. 1, including step in detail below:
Step 1, mobile terminal send EAP-Request/Identity message identifyings to access point, are carried in message identifying
The phone number and terminal type of the mobile terminal.
In this step, mobile terminal can be communication terminal and/or notebook computer etc..
Step 2, access point receive message identifying, are pass-through to certificate server.
The terminal type of step 3, certificate server in the message identifying received judges that authentication initiator is mobile
During communicating terminal, the phone number in message identifying is sent to network management system.
In this step, communication terminal is mobile phone and/or supports SMS and the tablet personal computer with phone number
Short message, existing some flat boards electricity can be received Deng communication terminal, while its object is to ensure with phone number
Brain is inserted into SIM card, i.e., with phone number, but it does not possess phone and SMS, can be according to the end in terminal type
End model etc. is judged.
Step 4, network management system judge that the phone number is generation dynamic password after the user that can be serviced, and are sent to
Certificate server.
Step 5, certificate server create the entitled phone number of user and password is the account of the dynamic password, and set
Expired time, and expired time is sent to network management system.
In this step, expired time is that current time adds default effective time;Here, default effective time by
WIFI provider is according to circumstances configured, as that can will be preset as 5-30 minutes in public arena effective time.
Dynamic password and expired time are sent to mobile terminal by step 6, network management system by short message.
Step 7, mobile terminal carry out 802.1X verification process by phone number and dynamic password and certificate server, close
Method accesses WIFI network.
According to the above-mentioned WIFI authentication methods based on mobile terminal short message, can draw accordingly based on mobile terminal short message
WIFI Verification Systems, its system block diagram is referring to Fig. 4, including certificate server, access point and network management system, certificate server and net
Guard system connects.
Here, access point is used to receive the EAP-Request/Identity certifications that WIFI to be connected mobile terminal is sent
Message, and passed through certificate server;The phone number and terminal type of the mobile terminal are carried in message identifying.
Certificate server is used to, when receiving the message identifying from mobile terminal of WAP transmission, judge to recognize
When the terminal type demonstrate,proved in message is communication terminal, the phone number in message identifying is sent to network management system, received
The dynamic password that network management system is sent, creates the entitled phone number of user and password is the account of dynamic password, and sets
Time phase, and expired time is sent to network management system, phone number and dynamic password that mobile terminal is sent are received, it is entered
Row 802.1X certifications.
A kind of certificate server is also provided simultaneously in the embodiment of the present invention, can be applied in above-mentioned Verification System, it is tied
Structure block diagram is referring to Fig. 2, including user management module and user authentication module.
Wherein, user management module is used for the EAP-Request/ from mobile terminal for receiving WAP transmission
After Identity message identifyings, the terminal type in the message identifying received judges that authentication initiator is mobile communication end
Behind end, the identification of user type and the identification of subscriber phone number are completed, is additionally operable to the movement that will be carried in the message identifying
After the phone number of terminal is sent to network management system, the dynamic password that the network management system returns is received;Create the entitled hand of user
Machine number and password are the account of the dynamic password, and set expired time;The expired time is sent to network management system,
So that the dynamic password and the expired time are sent to the mobile terminal by network management system.
User authentication module is used to enter the mobile terminal using the phone number and the dynamic password of mobile terminal
Row 802.1X certifications.
Network management system is used to receive the phone number that certificate server is sent, when phone number is the user that can service
When, dynamic password is generated, and certificate server is sent to, the expired time that certificate server is sent is received, will by short message
Dynamic password and expired time are sent to corresponding mobile terminal.
A kind of network management system is also provided simultaneously in the embodiment of the present invention, can be applied in above-mentioned Verification System, its structure
Block diagram is referring to Fig. 3, including message control module and SMS module.
Wherein, message control module is used to receive the phone number that certificate server is sent, when the phone number is can
During with the user of service, generate dynamic password, and be sent to certificate server, receive that certificate server sends it is expired when
Between, and phone number, dynamic password and expired time are sent jointly into SMS module.Here, whether the phone number is judged
The method of user for that can service can be:The pre-set business strategy in network management system, determines whether according to business game
The phone number provide service, such as preset multiple phone numbers, when received phone number can with it is default multiple
When phone number matches, service is provided for it.
SMS module is used for according to phone number, dynamic password and expired time the generation short message received and is sent to pair
Answer phone number.
Claims (10)
1. a kind of authentication method, it is characterised in that comprise the following steps:
Step 1, mobile terminal send EAP-Request/Identity message identifyings to access point, and the shifting is carried in message identifying
The phone number and terminal type of dynamic terminal;
Step 2, access point receive message identifying, are pass-through to certificate server;
The terminal type of step 3, certificate server in the message identifying received judges that authentication initiator is mobile communication
During terminal, the phone number in message identifying is sent to network management system;
Step 4, network management system judge that the phone number is generation dynamic password after the user that can be serviced, and are sent to certification
Server;
Step 5, certificate server create the entitled phone number of user and password is the account of the dynamic password, and set expired
Time, and expired time is sent to network management system;
Dynamic password and expired time are sent to mobile terminal by step 6, network management system by short message;
Step 7, mobile terminal carry out 802.1X verification process by phone number and dynamic password and certificate server, legal to connect
Enter WIFI network.
2. authentication method as claimed in claim 1, it is characterised in that in step 5, the expired time adds for current time
Default effective time;The default effective time is according to circumstances configured by WIFI provider.
A kind of 3. certificate server, it is characterised in that including user management module and user authentication module,
The user management module, for receiving the EAP-Request/ from mobile terminal of WAP transmission
After Identity message identifyings, the terminal type in the message identifying received judges that authentication initiator is mobile communication end
Behind end, the identification of user type and the identification of subscriber phone number are completed, is additionally operable to the movement that will be carried in the message identifying
After the phone number of terminal is sent to network management system, the dynamic password that the network management system returns is received;Create the entitled hand of user
Machine number and password are the account of the dynamic password, and set expired time;The expired time is sent to network management system,
So that the dynamic password and the expired time are sent to the mobile terminal by network management system;
The user authentication module, the mobile terminal is entered for the phone number using mobile terminal and the dynamic password
Row 802.1X certifications.
4. a kind of network management system, it is characterised in that including message control module and SMS module;
The message control module, the phone number sent for receiving certificate server, when the phone number is to take
During the user of business, dynamic password is generated, and is sent to certificate server, receives the expired time that certificate server is sent, and
Phone number, dynamic password and expired time are sent jointly into SMS module;
The SMS module, for generating short message according to the phone number, dynamic password and expired time that receive and being sent to
Corresponding phone number.
A kind of 5. Verification System, it is characterised in that including certificate server, access point and network management system,
Described access point, the EAP-Request/Identity certification reports that the mobile terminal for receiving WIFI to be connected is sent
Text, and passed through certificate server;The phone number and terminal type of the mobile terminal are carried in the message identifying;
The certificate server, for when receiving the message identifying from mobile terminal of WAP transmission, judging
When terminal type in message identifying is communication terminal, the phone number in message identifying is sent to network management system, connect
The dynamic password that network management system is sent is received, the entitled phone number of user is created and password is the account of dynamic password, and set
Expired time, and expired time is sent to network management system, phone number and dynamic password that mobile terminal is sent are received, to it
Carry out 802.1X certifications;
The network management system, the phone number sent for receiving certificate server, when phone number is the use that can service
During family, dynamic password is generated, and is sent to certificate server, the expired time that certificate server is sent is received, passes through short message
Dynamic password and expired time are sent to corresponding mobile terminal.
6. Verification System as claimed in claim 5, it is characterised in that the certificate server includes user management module and use
Family authentication module,
User management module, the EAP-Request/Identity from mobile terminal for receiving WAP transmission recognize
After demonstrate,proving message, the terminal type in the message identifying received judges that authentication initiator is completion after communication terminal
The identification of user type and the identification of subscriber phone number, it is additionally operable to the mobile phone of the mobile terminal carried in the message identifying
After number is sent to network management system, the dynamic password that the network management system returns is received;Create the entitled phone number of user and close
Code is the account of the dynamic password, and sets expired time;The expired time is sent to network management system, so that webmaster system
The dynamic password and the expired time are sent to the mobile terminal by system;
User authentication module, the mobile terminal is carried out for the phone number using mobile terminal and the dynamic password
802.1X certification.
7. Verification System as claimed in claim 5, it is characterised in that the network management system includes message control module and short message
Module,
The message control module, the phone number sent for receiving certificate server, when the phone number is to take
During the user of business, dynamic password is generated, and is sent to certificate server, receives the expired time that certificate server is sent, and
Phone number, dynamic password and expired time are sent jointly into SMS module;
The SMS module, for generating short message according to the phone number, dynamic password and expired time that receive and being sent to
Corresponding phone number.
8. Verification System as claimed in claim 5, it is characterised in that the communication terminal is mobile phone and/or supported short
Telecommunication function and the tablet personal computer with phone number.
9. the Verification System as described in claim any one of 5-8, it is characterised in that judge whether the phone number is to take
The method of the user of business is:The pre-set business strategy in network management system, determine whether that the phone number carries according to business game
For service.
10. Verification System as claimed in claim 9, it is characterised in that the business game is to preset multiple phone numbers, when
When received phone number can match with default multiple phone numbers, service is provided for it.
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201711071818.2A CN107659935B (en) | 2017-11-03 | 2017-11-03 | Authentication method, authentication server, network management system and authentication system |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201711071818.2A CN107659935B (en) | 2017-11-03 | 2017-11-03 | Authentication method, authentication server, network management system and authentication system |
Publications (2)
Publication Number | Publication Date |
---|---|
CN107659935A true CN107659935A (en) | 2018-02-02 |
CN107659935B CN107659935B (en) | 2020-11-10 |
Family
ID=61096339
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN201711071818.2A Active CN107659935B (en) | 2017-11-03 | 2017-11-03 | Authentication method, authentication server, network management system and authentication system |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN107659935B (en) |
Cited By (4)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN109787982A (en) * | 2019-01-24 | 2019-05-21 | 郑州云海信息技术有限公司 | An OpenStack-based Security Authentication Policy Configuration Method |
CN110060057A (en) * | 2019-04-18 | 2019-07-26 | 南京德通信息科技有限公司 | A kind of health care product based on big data chooses integration platform, method and apparatus |
WO2022033316A1 (en) * | 2020-08-12 | 2022-02-17 | 中兴通讯股份有限公司 | Wifi access method and system, device, and medium |
US11729141B2 (en) | 2019-09-16 | 2023-08-15 | Zhejiang Dahua Technology Co., Ltd. | Network connection systems and methods and network access devices |
Citations (7)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN1595894A (en) * | 2003-09-10 | 2005-03-16 | 华为技术有限公司 | A method for implementing access authentication of wireless local area network |
CN102457514A (en) * | 2011-05-31 | 2012-05-16 | 高儒振 | Short message identity authentication method for wireless network of mobile terminal |
CN102598730A (en) * | 2009-10-27 | 2012-07-18 | 诺基亚公司 | Method and apparatus for activating services |
CN103501495A (en) * | 2013-10-16 | 2014-01-08 | 苏州汉明科技有限公司 | Perception-free WLAN (Wireless Local Area Network) authentication method fusing Portal/Web authentication and MAC (Media Access Control) authentication |
US8862888B2 (en) * | 2012-01-11 | 2014-10-14 | King Saud University | Systems and methods for three-factor authentication |
CN104967997A (en) * | 2015-05-28 | 2015-10-07 | 广东欧珀移动通信有限公司 | A wireless network access method, Wi-Fi equipment, terminal equipment and system |
CN106304043A (en) * | 2015-05-20 | 2017-01-04 | 阿里巴巴集团控股有限公司 | A kind of distribution method, device, system, wireless terminal and wireless router |
-
2017
- 2017-11-03 CN CN201711071818.2A patent/CN107659935B/en active Active
Patent Citations (7)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN1595894A (en) * | 2003-09-10 | 2005-03-16 | 华为技术有限公司 | A method for implementing access authentication of wireless local area network |
CN102598730A (en) * | 2009-10-27 | 2012-07-18 | 诺基亚公司 | Method and apparatus for activating services |
CN102457514A (en) * | 2011-05-31 | 2012-05-16 | 高儒振 | Short message identity authentication method for wireless network of mobile terminal |
US8862888B2 (en) * | 2012-01-11 | 2014-10-14 | King Saud University | Systems and methods for three-factor authentication |
CN103501495A (en) * | 2013-10-16 | 2014-01-08 | 苏州汉明科技有限公司 | Perception-free WLAN (Wireless Local Area Network) authentication method fusing Portal/Web authentication and MAC (Media Access Control) authentication |
CN106304043A (en) * | 2015-05-20 | 2017-01-04 | 阿里巴巴集团控股有限公司 | A kind of distribution method, device, system, wireless terminal and wireless router |
CN104967997A (en) * | 2015-05-28 | 2015-10-07 | 广东欧珀移动通信有限公司 | A wireless network access method, Wi-Fi equipment, terminal equipment and system |
Cited By (4)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN109787982A (en) * | 2019-01-24 | 2019-05-21 | 郑州云海信息技术有限公司 | An OpenStack-based Security Authentication Policy Configuration Method |
CN110060057A (en) * | 2019-04-18 | 2019-07-26 | 南京德通信息科技有限公司 | A kind of health care product based on big data chooses integration platform, method and apparatus |
US11729141B2 (en) | 2019-09-16 | 2023-08-15 | Zhejiang Dahua Technology Co., Ltd. | Network connection systems and methods and network access devices |
WO2022033316A1 (en) * | 2020-08-12 | 2022-02-17 | 中兴通讯股份有限公司 | Wifi access method and system, device, and medium |
Also Published As
Publication number | Publication date |
---|---|
CN107659935B (en) | 2020-11-10 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
KR101485230B1 (en) | Secure multi-uim authentication and key exchange | |
CN111783068B (en) | Device authentication method, system, electronic device and storage medium | |
EP2651097B1 (en) | Method of authenticating a user at a service on a service server, application and system | |
CN103929748B (en) | A kind of Internet of Things wireless terminal and its collocation method and wireless network access point | |
CN103597799B (en) | service access authentication method and system | |
EP2215747B1 (en) | Method and devices for enhanced manageability in wireless data communication systems | |
US9654284B2 (en) | Group based bootstrapping in machine type communication | |
CN102318386A (en) | Service-based authentication to a network | |
CN103596173A (en) | Wireless network authentication method, client wireless network authentication device, and server wireless network authentication device | |
CN103249045A (en) | Identification method, device and system | |
WO2017185450A1 (en) | Method and system for authenticating terminal | |
CN106162641B (en) | A kind of safe public WiFi authentication method and system | |
CN107659935A (en) | A kind of authentication method, certificate server, network management system and Verification System | |
CN103905194A (en) | Identity traceability authentication method and system | |
Matos et al. | Secure hotspot authentication through a near field communication side-channel | |
CN107786978B (en) | NFC authentication system based on quantum encryption | |
CN105409259B (en) | Telephone service is provided by WIFI for non-cellular | |
CN105873059A (en) | Joint identity authentication method and system for power distribution communication wireless private network | |
CN102958202B (en) | wireless router, access device and system | |
KR101431214B1 (en) | Mutual authentication method and system with network in machine type communication, key distribution method and system, and uicc and device pair authentication method and system in machine type communication | |
CN106453400B (en) | A kind of authentication method and system | |
CN106912049A (en) | The method for improving user authentication experience | |
CN103731425B (en) | Network wireless terminal connection control method and system | |
CN102104872A (en) | Method, device and system for securely accessing WAPI network | |
CN101742507B (en) | System and method for accessing Web application site for WAPI terminal |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
PB01 | Publication | ||
PB01 | Publication | ||
SE01 | Entry into force of request for substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
GR01 | Patent grant | ||
GR01 | Patent grant | ||
CP02 | Change in the address of a patent holder | ||
CP02 | Change in the address of a patent holder |
Address after: 610041 nine Xing Xing Road 16, hi tech Zone, Sichuan, Chengdu Patentee after: MAIPU COMMUNICATION TECHNOLOGY Co.,Ltd. Address before: 610041, 17 floor, maple building, 1 building, 288 Tianfu street, Chengdu, Sichuan. Patentee before: MAIPU COMMUNICATION TECHNOLOGY Co.,Ltd. |