CN1320841C - Special net terminal and method for carrying out special net communication by network - Google Patents
Special net terminal and method for carrying out special net communication by network Download PDFInfo
- Publication number
- CN1320841C CN1320841C CNB2005100865708A CN200510086570A CN1320841C CN 1320841 C CN1320841 C CN 1320841C CN B2005100865708 A CNB2005100865708 A CN B2005100865708A CN 200510086570 A CN200510086570 A CN 200510086570A CN 1320841 C CN1320841 C CN 1320841C
- Authority
- CN
- China
- Prior art keywords
- file
- card
- private network
- identification
- special
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Active
Links
- 238000004891 communication Methods 0.000 title claims abstract description 19
- 238000000034 method Methods 0.000 title claims abstract description 14
- 238000010276 construction Methods 0.000 abstract description 2
- 230000003993 interaction Effects 0.000 description 4
- 238000010295 mobile communication Methods 0.000 description 2
- 238000010586 diagram Methods 0.000 description 1
Images
Landscapes
- Telephone Function (AREA)
- Mobile Radio Communication Systems (AREA)
Abstract
本发明涉及一种专网终端及专网终端通过网络实行通信的方法,该专网终端包括CPU单元、发送模块及接收模块,其中,还包括:一专用文件的文件标识识别模块,用于读取写入到卡的专用文件的文件标识并判断所述卡的类型,并通过与所述卡数据交互读取用户信息;加密算法模块,当所述卡为专网卡时,用于利用加密算法对发送的文件信息进行加密;解密算法模块,当所述卡为专网卡时,用于利用解密算法对接收到的加密信息进行解密操作后输出。本发明的专网终端及专网终端通过网络实现通信的方法,通过读取判断专用文件的文件标识来识别专网卡,并对专网用户发送的信息执行加密,接收的信息执行解密,不用重新建设网络的情况,实现了移动专网用户的通讯保密。
The present invention relates to a private network terminal and a method for the private network terminal to communicate through the network. The private network terminal includes a CPU unit, a sending module and a receiving module. Get the file identification of the special file written to the card and judge the type of the card, and read the user information by interacting with the card data; the encryption algorithm module is used to use the encryption algorithm when the card is a dedicated network card Encrypt the sent file information; the decryption algorithm module, when the card is a dedicated network card, is used to use the decryption algorithm to decrypt the received encrypted information and then output it. The private network terminal and the method for the private network terminal to realize communication through the network of the present invention identify the private network card by reading and judging the file identification of the special file, and perform encryption on the information sent by the private network user, and perform decryption on the received information without re- In the case of network construction, the communication security of mobile private network users has been realized.
Description
技术领域technical field
本发明涉及移动通讯领域,特别是移动通讯领域中的专网的保密通讯。The invention relates to the field of mobile communication, in particular to the secure communication of private network in the field of mobile communication.
背景技术Background technique
为了实现移动专网用户的通讯保密,而提供服务的移动网络不做大规模调整,必然需要提供专网移动终端(以下简称专网终端)和专网卡。In order to realize the confidentiality of communication of mobile private network users without large-scale adjustment of the mobile network providing services, it is necessary to provide private network mobile terminals (hereinafter referred to as private network terminals) and private network cards.
根据TIA/EIA/IS-820规范及GSM11.11规范中R-UIM(Removable UserIdentity Module,可分离的用户识别模块)DF(专用文件)与EF(基本文件)文件结构的定义,文件号用于寻址或者标识一个特定的文件,用两个字节的一个十六进制码表示。其中7F25为CDMA专用文件的文件标识,7F20为GSM专用文件的文件标识,7F26-7F2F为保留文件标识。According to the definition of the file structure of R-UIM (Removable User Identity Module) DF (dedicated file) and EF (basic file) in the TIA/EIA/IS-820 specification and the GSM11.11 specification, the file number is used for Addresses or identifies a specific file, represented by a hexadecimal code of two bytes. Among them, 7F25 is the file identifier of the CDMA special file, 7F20 is the file identifier of the GSM special file, and 7F26-7F2F are reserved file identifiers.
目前为了实现专网的保密通讯,主要通过以下几种方式:At present, in order to realize the confidential communication of the private network, the following methods are mainly used:
软件指令握手:通过专网终端和卡互发握手信号,实现专网用户的区分;Software command handshake: through the private network terminal and the card to send handshake signals to each other, to realize the distinction of private network users;
硬件特定字段读取:在普通卡上设定特定字段为专网用户使用。Hardware-specific field reading: set specific fields on ordinary cards for use by private network users.
然而现有方案存在以下问题:However, the existing solutions have the following problems:
软件指令握手,设计专网终端和专网卡握手指令,需要较长时间的开发周期,对目前的终端和卡改动相当大,并且可能会出现泄密的危险;Software command handshake, design of private network terminal and private network card handshake command requires a long development cycle, considerable changes to the current terminal and card, and there may be a risk of leaks;
而通过硬件特定字段读取,目前在GSM SIM卡和CDMA UIM卡上都没有非常合适的预留字段用于专网用户的区分。However, by reading hardware-specific fields, there is currently no very suitable reserved field on the GSM SIM card and CDMA UIM card for the distinction of private network users.
发明内容Contents of the invention
本发明的目的在于提供一种专网终端及专网终端通过网络实现通信的方法,在不用重新建设网络的情况下,实现移动专网用户的通讯保密。The purpose of the present invention is to provide a private network terminal and a method for the private network terminal to realize communication through the network, so as to realize the communication confidentiality of the mobile private network users without rebuilding the network.
为了实现上述目的,本发明提供了一种专网终端,包括CPU单元、发送模块及接收模块,其中,还包括:In order to achieve the above object, the present invention provides a private network terminal, including a CPU unit, a sending module and a receiving module, which also includes:
一专用文件的文件标识识别模块,用于读取写入到卡的专用文件的文件标识并判断所述卡的类型,并通过与所述卡数据交互读取用户信息;A file identification identification module of a special file, used to read the file identification of the special file written to the card and determine the type of the card, and read user information by interacting with the card data;
加密算法模块,当所述卡为专网卡时,用于利用加密算法对发送的文件信息进行加密;An encryption algorithm module, when the card is a special network card, is used to encrypt the sent file information by using an encryption algorithm;
解密算法模块,当所述卡为专网卡时,用于利用解密算法对接收到的加密信息进行解密操作后输出。The decryption algorithm module, when the card is a dedicated network card, is used to use the decryption algorithm to decrypt the received encrypted information and then output it.
上述的专网终端,其中,所述专用文件的文件标识识别模块,具体用于读取写入到所述卡的所述专用文件的文件标识,当所述专用文件的文件标识为7F26到7F2F中的任何一个时,判断所述卡为专网卡,同时通过与所述专网卡数据交互读取用户信息。The above-mentioned private network terminal, wherein, the file identifier identification module of the special file is specifically used to read the file identifier of the special file written to the card, when the file identifier of the special file is 7F26 to 7F2F When any one of them is used, it is judged that the card is a private network card, and at the same time, user information is read through data interaction with the private network card.
上述的专网终端,其中,当所述专用文件的文件标识为7F20或7F25时,所述专用文件的文件标识识别模块还用于屏蔽所述加密算法模块和解密算法模块。In the private network terminal above, when the file identifier of the dedicated file is 7F20 or 7F25, the file identifier identification module of the dedicated file is also used to shield the encryption algorithm module and the decryption algorithm module.
为了更好的实现上述目的,本发明还提供了一种专网终端通过网络实现通信的方法,其中,包括以下步骤:In order to better achieve the above object, the present invention also provides a method for a private network terminal to realize communication through a network, which includes the following steps:
专用文件的文件标识识别步骤,专用文件的文件标识识别模块读取写入到卡的专用文件的文件标识并判断所述卡的类型,同时通过与所述卡数据交互读取用户信息;The file identification identification step of the special file, the file identification identification module of the special file reads the file identification written in the special file of the card and judges the type of the card, and simultaneously reads the user information by interacting with the card data;
文件信息加密步骤,当所述卡为专网卡,专网终端之间通讯时,加密算法模块利用加密算法对发送的文件信息进行加密;The file information encryption step, when the card is a private network card, and when the private network terminals communicate, the encryption algorithm module encrypts the sent file information using an encryption algorithm;
发送步骤,发送模块将所述加密后的文件信息利用网络传送给被叫专网终端;In the sending step, the sending module transmits the encrypted file information to the called private network terminal through the network;
接收步骤,所述被叫专网终端用接收模块接收主叫专网终端通过网络发送的加密后的信息;In the receiving step, the called private network terminal uses the receiving module to receive the encrypted information sent by the calling private network terminal through the network;
文件信息解密步骤,当所述卡为专网卡,专网终端之间通讯时,解密算法模块利用解密算法对接收到的加密信息进行解密操作后输出。In the file information decryption step, when the card is a private network card and the private network terminals communicate, the decryption algorithm module uses the decryption algorithm to decrypt the received encrypted information and then outputs it.
上述的专网终端通过网络实现通信的方法,其中,所述专用文件的文件标识识别步骤具体执行以下操作:The above-mentioned method for a private network terminal to realize communication through a network, wherein, the step of identifying the file identifier of the special file specifically performs the following operations:
读取写入到所述卡的所述专用文件的文件标识,当所述专用文件的文件标识为7F26到7F2F中的任何一个时,判断所述卡为专网卡,同时通过与所述专网卡数据交互读取用户信息。Read the file identification of the special-purpose file written into the card, when the file identification of the special-purpose file is any one of 7F26 to 7F2F, judge that the card is a dedicated network card, and simultaneously pass the connection with the special network card Data interaction reads user information.
上述的专网终端通过网络实现通信的方法,其中,当所述专用文件的文件标识为7F20或7F25时,仅执行专用文件的文件标识识别步骤、发送步骤及接收步骤,接收步骤后直接输出接收到的信息。The method for the above-mentioned private network terminal to realize communication through the network, wherein, when the file identifier of the special file is 7F20 or 7F25, only the file identifier identification step, the sending step and the receiving step of the special file are executed, and the receiving step is directly output and received received information.
本发明的专网终端及专网终端通过网络实现通信的方法,通过读取判断专用文件的文件标识来识别专网卡,并对专网用户发送的信息执行加密,接收的信息执行解密,不用重新建设网络的情况,实现了移动专网用户的通讯保密。The private network terminal and the method for the private network terminal to realize communication through the network of the present invention identify the private network card by reading and judging the file identification of the special file, and perform encryption on the information sent by the private network user, and perform decryption on the received information without re- The construction of the network has realized the communication confidentiality of the mobile private network users.
附图说明Description of drawings
图1为本发明的专网卡的文件系统示意图。FIG. 1 is a schematic diagram of the file system of the private network card of the present invention.
具体实施方式Detailed ways
本发明的专网终端包括现有手机的CPU模块、发送及接收模块等常规模块外,另外还包括以下的部分:The private network terminal of the present invention includes conventional modules such as the CPU module of the existing mobile phone, sending and receiving modules, and also includes the following parts in addition:
专用文件的文件标识识别模块,用于读取并判断写入到专网卡的专用文件的文件标识,当专用文件的文件标识为7F26到7F2F中的任何一个时,专用文件的文件标识识别模块判断该卡为专网卡,并通过与专网卡的数据交互读取用户信息,在本发明的实施例中选用7F2D,如图1所示;The file identification identification module of the special file is used to read and judge the file identification of the special file written into the special network card. When the file identification of the special file is any one of 7F26 to 7F2F, the file identification identification module of the special file judges The card is a dedicated network card, and reads user information through data interaction with the dedicated network card. In the embodiment of the present invention, 7F2D is selected, as shown in Figure 1;
加密算法模块,当卡为专网卡时,在专网终端进行通讯时利用加密算法对发送的文件信息进行加密;Encryption algorithm module, when the card is a private network card, use the encryption algorithm to encrypt the sent file information when the private network terminal communicates;
解密算法模块,当卡为专网卡时,利用解密算法对接收到的加密文件信息进行解密操作后输出;Decryption algorithm module, when the card is a dedicated network card, use the decryption algorithm to decrypt the received encrypted file information and output it;
发送及接收模块将加密后的信息利用网络传送给被叫专网终端,同时接收主叫专网通过网络发送的加密后的信息。The sending and receiving module transmits the encrypted information to the called private network terminal through the network, and at the same time receives the encrypted information sent by the calling private network through the network.
上述模块均与CPU模块连接。The above modules are all connected with the CPU module.
本发明的专网终端通过网络实现通信的方法包括如下步骤:The method for the private network terminal of the present invention to realize communication through the network comprises the following steps:
专用文件的文件标识识别步骤,专用文件的文件标识识别模块读取写入到专网卡的专用文件的文件标识并判断,当专用文件的文件标识为7F26到7F2F中的任何一个时,专用文件的文件标识识别模块判断该卡为专网卡,并通过与专网卡的数据交互读取用户信息,在本发明的实施例中选用7F2D;The file identification identification step of special file, the file identification identification module of special file reads and writes the file identification of the special file of dedicated network card and judges, when the file identification of special file is any one in 7F26 to 7F2F, the special file's The file identification identification module judges that the card is a special network card, and reads user information through data interaction with the special network card, and selects 7F2D in the embodiment of the present invention;
文件信息加密步骤,当卡为专网卡,实现专网终端之间的通讯时,加密算法模块利用加密算法对文件信息进行加密;In the file information encryption step, when the card is a private network card to realize communication between private network terminals, the encryption algorithm module encrypts the file information using an encryption algorithm;
发送步骤,发送模块将加密后的信息利用网络传送给被叫专网终端;In the sending step, the sending module transmits the encrypted information to the called private network terminal through the network;
接收步骤,接收模块接收主叫专网终端通过网络发送的加密后的信息;In the receiving step, the receiving module receives the encrypted information sent by the calling private network terminal through the network;
文件信息解密步骤,解密算法模块利用解密算法对接收到的加密信息进行解密操作后输出。In the file information decryption step, the decryption algorithm module uses the decryption algorithm to decrypt the received encrypted information and then outputs it.
当被叫用户为普通用户时,专网加密通信就无法成功呼叫,因为被叫用户的终端无法对加密信息进行解密。When the called user is an ordinary user, the private network encrypted communication cannot make a successful call, because the terminal of the called user cannot decrypt the encrypted information.
本发明的专网终端在使用普通卡时,专用文件的文件标识识别模块判断卡不是专网卡,屏蔽加密算法模块和解密算法模块,等同于普通终端。When the private network terminal of the present invention uses a common card, the file identification module of the special file judges that the card is not a private network card, shields the encryption algorithm module and the decryption algorithm module, and is equivalent to a common terminal.
当然,本发明还可有其它多种实施例,在不背离本发明精神及其实质的情况下,熟悉本领域的技术人员当可根据本发明作出各种相应的改变和变形,但这些相应的改变和变形都应属于本发明所附的权利要求的保护范围。Certainly, the present invention also can have other multiple embodiments, without departing from the spirit and essence of the present invention, those skilled in the art can make various corresponding changes and deformations according to the present invention, but these corresponding Changes and deformations should belong to the scope of protection of the appended claims of the present invention.
Claims (6)
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CNB2005100865708A CN1320841C (en) | 2005-10-08 | 2005-10-08 | Special net terminal and method for carrying out special net communication by network |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CNB2005100865708A CN1320841C (en) | 2005-10-08 | 2005-10-08 | Special net terminal and method for carrying out special net communication by network |
Publications (2)
Publication Number | Publication Date |
---|---|
CN1750696A CN1750696A (en) | 2006-03-22 |
CN1320841C true CN1320841C (en) | 2007-06-06 |
Family
ID=36605917
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CNB2005100865708A Active CN1320841C (en) | 2005-10-08 | 2005-10-08 | Special net terminal and method for carrying out special net communication by network |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN1320841C (en) |
Families Citing this family (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101667240B (en) * | 2009-08-20 | 2013-03-13 | 北京握奇数据系统有限公司 | Intelligent card and card writing method, equipment and system thereof |
CN103037364A (en) * | 2012-12-12 | 2013-04-10 | 青岛天信通软件技术有限公司 | Secret communication method |
Citations (6)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
WO1998035515A2 (en) * | 1997-02-10 | 1998-08-13 | Kunze, Inge | Mobile radio telephone for multi-mode operation and the use of a relay station for such mobile radio telephones |
CN1225224A (en) * | 1996-07-10 | 1999-08-04 | 奥林吉个人通讯服务公司 | Mobile communications network |
US6175743B1 (en) * | 1998-05-01 | 2001-01-16 | Ericsson Inc. | System and method for delivery of short message service messages to a restricted group of subscribers |
CN1286767A (en) * | 1997-11-19 | 2001-03-07 | 艾利森电话股份有限公司 | Method, and associated apparatus, for selectively permitting access by mobile terminal to packet data network |
WO2003039108A2 (en) * | 2001-11-01 | 2003-05-08 | Interwave Communications, Inc. | Method and apparatus for providing communication between a pbx terminal and a public wireless network via a private wireless network |
CN2657301Y (en) * | 2003-10-09 | 2004-11-17 | 北京汉王科技有限公司 | Fixed telephone with SIM card read-write function |
-
2005
- 2005-10-08 CN CNB2005100865708A patent/CN1320841C/en active Active
Patent Citations (6)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN1225224A (en) * | 1996-07-10 | 1999-08-04 | 奥林吉个人通讯服务公司 | Mobile communications network |
WO1998035515A2 (en) * | 1997-02-10 | 1998-08-13 | Kunze, Inge | Mobile radio telephone for multi-mode operation and the use of a relay station for such mobile radio telephones |
CN1286767A (en) * | 1997-11-19 | 2001-03-07 | 艾利森电话股份有限公司 | Method, and associated apparatus, for selectively permitting access by mobile terminal to packet data network |
US6175743B1 (en) * | 1998-05-01 | 2001-01-16 | Ericsson Inc. | System and method for delivery of short message service messages to a restricted group of subscribers |
WO2003039108A2 (en) * | 2001-11-01 | 2003-05-08 | Interwave Communications, Inc. | Method and apparatus for providing communication between a pbx terminal and a public wireless network via a private wireless network |
CN2657301Y (en) * | 2003-10-09 | 2004-11-17 | 北京汉王科技有限公司 | Fixed telephone with SIM card read-write function |
Non-Patent Citations (3)
Title |
---|
1,24-28 ETSI,DIGITAL CELLULAR TELECOMMUNICATIONS SYSTEM(PHASE 2+);SPECIFICATION OF THE SUBSCRIBER IDENTITY MODULE-MOBILE EQUIPMENT(SIM-ME)INTERFACE,Vol.11,11 No.8,8,0 2000 * |
1,24-28 ETSI,DIGITAL CELLULAR TELECOMMUNICATIONS SYSTEM(PHASE 2+);SPECIFICATION OF THE SUBSCRIBER IDENTITY MODULE-MOBILE EQUIPMENT(SIM-ME)INTERFACE,Vol.11,11 No.8,8,0 2000;1,3-1,3-2,3-3,3-4 3GPP2,REMOVABLE USER IDENTITY MODULE FOR SPREAD SPECTRUM SYSTEMS,Vol.C。S0023-A,1。0 2000 * |
1,3-1,3-2,3-3,3-4 3GPP2,REMOVABLE USER IDENTITY MODULE FOR SPREAD SPECTRUM SYSTEMS,Vol.C。S0023-A,1。0 2000 * |
Also Published As
Publication number | Publication date |
---|---|
CN1750696A (en) | 2006-03-22 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
CN1906560A (en) | Method and apparatus for implementing subscriber identity module (SIM) capabilities in an open platform | |
EP2076056A1 (en) | Management method for intelligent terminal system and intelligent terminal | |
CN106850209A (en) | A kind of identity identifying method and device | |
CN103561006B (en) | Application authentication method and device and application authentication server based on Android | |
US11395129B2 (en) | Virtual sim card acquisition method, subscriber terminal and server | |
CN1901450A (en) | Mobile communication device with virtual user identifying card and its realizing method | |
RU2015114703A (en) | TELECOMMUNICATION CHIP CARD | |
CN1601958A (en) | HRPD network access authentication method based on CAVE algorithm | |
US9426647B2 (en) | Method and device for protecting privacy data of mobile terminal user | |
CN1320841C (en) | Special net terminal and method for carrying out special net communication by network | |
CN107111707A (en) | Smart card, mobile terminal and the method that network ID authentication is carried out using smart card | |
CN1317903C (en) | Method for sharing mobile terminal by multi-user | |
CN107220570B (en) | SIM card-based STK card writing system and method | |
CN111221803B (en) | Feature library management method and coprocessor | |
CN103873245B (en) | Dummy machine system data ciphering method and equipment | |
CN104732166A (en) | Data storing and reading method and device and equipment | |
CN1299526C (en) | A method of wireless local area network terminal user authentication based on user identifying module | |
WO2012062192A1 (en) | Method and device for identifying user card | |
CN1172509C (en) | A New Subscriber Identification Module Using USB Interface | |
CN103023642B (en) | A kind of mobile terminal and digital certificate functionality implementation method thereof | |
CN1946229A (en) | Indentifying method for telecommunication smart card and terminal | |
CN104243151B (en) | A kind of authentication method and authentication device based on mobile device | |
CN102404711B (en) | Locking net device of mobile terminal and identifying method between modules | |
CN113536285A (en) | Special password encryption method and device for terminal equipment | |
CN113127838B (en) | Multi-certificate storage method, system and storage medium based on embedded chip card |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
C06 | Publication | ||
PB01 | Publication | ||
C10 | Entry into substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
C14 | Grant of patent or utility model | ||
GR01 | Patent grant | ||
EE01 | Entry into force of recordation of patent licensing contract |
Assignee: China Telecom Co., Ltd. Assignor: China United Communication Co., Ltd. Contract fulfillment period: 2008.7.27 to 2028.5.21 contract change Contract record no.: 2008990000845 Denomination of invention: Special net terminal and method for carrying out special net communication by network Granted publication date: 20070606 License type: General permission Record date: 20081020 |
|
LIC | Patent licence contract for exploitation submitted for record |
Free format text: COMMON LICENSE; TIME LIMIT OF IMPLEMENTING CONTACT: 2008.7.27 TO 2028.5.21; CHANGE OF CONTRACT Name of requester: CHINA TELECOMMUNICATIONS GROUP CO.,LTD. Effective date: 20081020 |
|
C56 | Change in the name or address of the patentee |
Owner name: CHINA LINKED NETWORK COMMUNICATION GROUP CO.,LTD. Free format text: FORMER NAME: CHINA UNITED COMMUNICATION CO., LTD. |
|
CP03 | Change of name, title or address |
Address after: No. 21, Finance Street, Beijing, Xicheng District Patentee after: China United Network Telecommunication Group Co., Ltd. Address before: Number 133, North Main Street, Xicheng District, Beijing, Xidan Patentee before: China United Communication Co., Ltd. |