CN1863113A - System and method for implementing multi-user access in LAN terminal - Google Patents
System and method for implementing multi-user access in LAN terminal Download PDFInfo
- Publication number
- CN1863113A CN1863113A CN 200510093055 CN200510093055A CN1863113A CN 1863113 A CN1863113 A CN 1863113A CN 200510093055 CN200510093055 CN 200510093055 CN 200510093055 A CN200510093055 A CN 200510093055A CN 1863113 A CN1863113 A CN 1863113A
- Authority
- CN
- China
- Prior art keywords
- virtual
- sta
- local area
- area network
- mac address
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Granted
Links
- 238000000034 method Methods 0.000 title claims abstract description 51
- 230000008569 process Effects 0.000 claims abstract description 18
- 230000005540 biological transmission Effects 0.000 claims description 9
- 230000027455 binding Effects 0.000 claims description 4
- 238000009739 binding Methods 0.000 claims description 4
- 238000006243 chemical reaction Methods 0.000 claims description 4
- 230000000875 corresponding effect Effects 0.000 description 39
- 238000005516 engineering process Methods 0.000 description 6
- 238000004891 communication Methods 0.000 description 4
- 238000012545 processing Methods 0.000 description 4
- 241000209094 Oryza Species 0.000 description 3
- 235000007164 Oryza sativa Nutrition 0.000 description 3
- 238000010586 diagram Methods 0.000 description 3
- 235000021186 dishes Nutrition 0.000 description 3
- 230000003993 interaction Effects 0.000 description 3
- 238000013507 mapping Methods 0.000 description 3
- 230000007246 mechanism Effects 0.000 description 3
- 230000004044 response Effects 0.000 description 3
- 235000009566 rice Nutrition 0.000 description 3
- 230000009471 action Effects 0.000 description 2
- 230000000977 initiatory effect Effects 0.000 description 2
- 238000012546 transfer Methods 0.000 description 2
- 230000000007 visual effect Effects 0.000 description 2
- 101100161473 Arabidopsis thaliana ABCB25 gene Proteins 0.000 description 1
- 235000007926 Craterellus fallax Nutrition 0.000 description 1
- 240000007175 Datura inoxia Species 0.000 description 1
- 101100096893 Mus musculus Sult2a1 gene Proteins 0.000 description 1
- 101150081243 STA1 gene Proteins 0.000 description 1
- 238000004458 analytical method Methods 0.000 description 1
- 230000008901 benefit Effects 0.000 description 1
- 230000008859 change Effects 0.000 description 1
- 230000002596 correlated effect Effects 0.000 description 1
- 230000004069 differentiation Effects 0.000 description 1
- 238000009434 installation Methods 0.000 description 1
- 238000002955 isolation Methods 0.000 description 1
- 230000035515 penetration Effects 0.000 description 1
- 230000007704 transition Effects 0.000 description 1
Images
Landscapes
- Small-Scale Networks (AREA)
Abstract
The invention relates to a system and method for local network terminal realizing multi user accessing. It mainly includes the following steps: local network terminal creating at lest virtual STA in local network, distributing temporary MAC address, and taking corresponding operation access based on the temporary MAC address. Thus, one STA needs start accessing identification process to multi operation providing end and form multi branch operation flow to start corresponding operation, plural virtual STA would be created to build up interconnection to system. Different operation flow based on different virtual STA, the operation would be ensured. The invention satisfies running several operation on the same local network terminal.
Description
Technical field
The present invention relates to network communications technology field, relate in particular to the system and method that a kind of local area network terminal realizes that the multi-user inserts.
Background technology
WLAN (WLAN (wireless local area network)) technology because of its in the wireless penetration advantage, can compare two-forty wired and insert, and characteristics with low cost and be subjected to the welcome in market deeply.At present, the WLAN technology has begun to replace wired occasions such as family, campus, hotel, enterprise's office that are widely used in, and begins to be widely deployed in public's focus as a kind of WiMAX access technology, and the access service of public wireless broadband data is provided.
At present, the basic structure of the wlan system of IEEE 802.11 definition comprises as shown in Figure 1:
STA (Station, website) is meant the terminal equipment that comprises IEEE 802.11 wireless lan interfaces, and many in the market mobile phones are all supported wireless lan interfaces, the also built-in wireless lan interfaces of portable machine.Not with the equipment of wireless lan interfaces, can provide wireless lan interfaces for some by the mode of WLAN wireless network card.
AP (Access Point, access point), it is equivalent to mobile network's base station, its major function is to make STA to communicate with other the STA or the relevant device of cable network, for example: a plurality of STA are linked into WLAN (wireless local area network) of an AP composition and communicate, the STA that is linked into different AP forms a local area network (LAN) and communicates, and the relevant device of STA and cable LAN communicates.Be associated with a STA under the AP and constitute a BSS (Basic Service Set).
DS (Distribution System, dissemination system) is used to make between the different BSS and between BSS and the cable LAN and can forms a big local area network (LAN).Wherein the logical point that provides MSDUs between DS and the cable LAN (MAC service data unit) to transmit is provided portal.
In wlan system, adopt SSID (Service Set Identifier, service is provided with sign) to distinguish different WLAN (wireless local area network).When different BSS (identifying with BSSID) formed a big local area network (LAN) by DS, then they had same SSID.
In WLAN, when STA determines to join BSS (base station sub-system) among the WLAN, can carry out an authentication process between STA and the AP.After finishing 802.11 authentication processes, just begin to set up the association of STA to AP.At first, STA sends related request, comprises associated safety parameter (as RSN IE) in the related request.AP responds associated response, and is related ID of this associated allocation (Association ID, association identification).For 802.11i RSN (Robust SecurityNetwork, robust secure network), related 802.1X control port of being answered surely will be closed, and just open with installation up to finishing the 802.1X key agreement.
Access authentication procedure after related is exactly the 802.1X/EAP access authentication procedure concerning RSN.UAM (the Universal Access Method that Wi-Fi Alliance recommends, general cut-in method) is based on the another kind of access authentication mode of Browser Hijack, be that system forces STA to be connected to a page is inputed user name and encrypted message as the user window, the AS of this page and rear end carries out information interaction, and UAM does not support 802.11i at present.
In actual application, as shown in Figure 2, a STA may wish the access authentication procedure of initiation simultaneously and AS1 and AS2, and form two independent Business Stream STA-TOE1 and STA-TOE2 respectively, obtain voice service and provide data, services from a service provider from another service provider.Simultaneously, STA also wish can external a plurality of other types stand-alone terminal, share this STA and obtain the WLAN access service.
Yet, the present above-mentioned various demands that also can't satisfy STA.
Summary of the invention
In view of above-mentioned existing in prior technology problem, the purpose of this invention is to provide the system and method that a kind of local area network terminal realizes that the multi-user inserts, thereby can satisfy the demand that a certain local area network terminal support inserts a plurality of users simultaneously, the flexibility that has effectively improved network operation.
The objective of the invention is to be achieved through the following technical solutions:
The invention provides the system that a kind of local area network terminal realizes that the multi-user inserts, comprising:
Virtual STA service module: be arranged at respectively in local area network terminal and the network side MAC layer function entity, be used to help the MAC layer that the Business Stream of different user is mapped to different virtual STA;
One group of virtual STA: created by virtual STA service module, each virtual STA has each self-corresponding interim MAC Address.Different virtual STA can carry out access service according to its different access strategy and system independently of one another.
Described system also comprises:
Be respectively each virtual STA in network side and local area network terminal the state machine of a correspondence is set, it is that authentication is related, authentication is related or authentication is related that described state machine is used to write down the current state of this virtual STA.
Described system also comprises:
Information storage module: be arranged at respectively in local area network terminal and the network equipment, be used to preserve the virtual STA contextual information related, comprise the binding relationship between virtual STA and the business with corresponding service, and access strategy information.
The present invention also provides the method for a plurality of virtual terminals of a kind of local area network terminal emulation, comprising:
A, STA create virtual STA according to the requirement of local terminal client business;
B, be that described virtual STA distributes corresponding interim MAC Address;
C, described virtual STA carry out the mutual of information based on interim MAC Address and network side separately.
Described steps A also comprises:
For each virtual STA distributes corresponding virtual STA identification information, and access strategy when setting up each virtual STA connecting system according to business need.
Described step B comprises:
Unified by the network side entity in the local area network (LAN) is that each virtual STA distributes corresponding interim MAC Address respectively.
Described step B comprises:
B1, local area network terminal send interim MAC Address allocation request message to network side;
B2, network side receive described request message, for it distributes corresponding interim mac address information, and return to local area network terminal.
Described step B1 comprises:
In described interim MAC Address allocation request message, carrying the identification information of the virtual STA that needs the interim MAC Address of distribution.
Described step B2 also comprises:
After network side determines to distribute the interim mac address information of predetermined quantity for local area network terminal, then no longer distribute new interim mac address information for it.
Described method also comprises:
Preserve the identification information of virtual STA and the correspondence relationship information of interim MAC Address respectively at local area network terminal and network side.
Described step C comprises:
Virtual STA is according to its access strategy institute requirement, utilize and finish authentication between described interim MAC Address and the network side and initiate authentication process, and it is related with network side to set up virtual STA by the back based on the access strategy of described interim MAC Address and this virtual STA in authentication to network side.
The present invention also provides a kind of multiple-user access method, comprising:
D, local area network terminal emulation are a plurality of virtual terminals, support different access strategies respectively;
E, the Business Stream with different access strategy requirements communicate based on different virtual terminals.
Described step e comprises:
Business Stream with different access strategy requirements directly uses the interim MAC Address of virtual terminal to communicate.
Described step e comprises:
E1, the Business Stream on the MAC layer use the MAC Address request MAC layer of former local area network terminal to carry out data passes;
The MAC layer of E2, local area network terminal and network side MAC layer to the opposite end Data transmission time, replace with the interim MAC Address of corresponding virtual STA with the real MAC address of local area network terminal, to the opposite end Data transmission;
The MAC layer of E3, local area network terminal and network side MAC layer when receiving the opposite end based on the data of the interim MAC Address of virtual terminal, revert to the real MAC address of former local area network terminal with the interim MAC Address of virtual STA, transmit on local terminal MAC layer.
Described step e comprises:
The conversion of the interim MAC Address that described MAC layer can be finished virtual STA by the mode and/or the professional perceptive mode of virtual port and the real MAC address of former local area network terminal.
As seen from the above technical solution provided by the invention, among the present invention, when a STA wishes to initiate simultaneously to provide with a plurality of business the access authentication procedure of end, and when forming multichannel respectively independently Business Stream being carried out corresponding business respectively, for example, obtain voice service and provide data, services from a service provider from another service provider, on behalf of client foundation, can set up a plurality of virtual STA provide the related of end with corresponding service respectively, to guarantee professional carrying out, therefore, the present invention can satisfy the user well and utilizes same terminal to carry out multiple services demand.
And realization of the present invention also makes the flexibility of network operation improve greatly, also makes the function horn of plenty more of local area network terminal simultaneously.
Description of drawings
Fig. 1 is the wlan system structural representation;
The wlan system structural representation that Fig. 2 uses for the present invention;
Fig. 3 is for comprising the wlan system structural representation of virtual STA among the present invention;
Fig. 4 sets up virtual STA and the process schematic diagram related with AP thereof among the present invention;
Fig. 5 is the structural representation of system of the present invention;
Fig. 6 is for being sent the process schematic diagram of data to AP by STA among the present invention;
Fig. 7 is for being sent the process schematic diagram of data to STA by AP among the present invention.
Embodiment
Core of the present invention provides the realization mechanism of multi-user's access of local area network terminal in a kind of local area network (LAN), thereby can be supported in a physics STA and go up independently access authentication flow process of a plurality of identity of initiation, and can distinguish separately independently Business Stream, promptly independently commence business separately, to satisfy local area network terminal, promptly the STA of physics supports the specific demand that the multi-user inserts simultaneously.
For the present invention there being further understanding, at first the basic thought to implementation provided by the invention is described.
Operation principle according to 802.11, if AP is imagined as an Ethernet switch, then the incidence relation between STA and the AP is equivalent to a virtual port, STA and data communication between the AP be based upon related on.When having adopted the 802.1X authentication, this virtual fracture directly is mapped as the 802.1X port.
And, when the last requirement of a STA is carried out a plurality of authentication simultaneously, association 802.11 is also to need to do further differentiation on the virtual port, simultaneously, different identity inserts its corresponding service stream may be also different to the requirement of fail safe, and therefore, the present invention need allow different Business Streams is consulted different encryption key and cryptographic algorithm, this not only relies on the MAC Address of STA to carry out encryption with regard to requiring corresponding encrypting module, also needs further to distinguish different Business Streams.
System of the present invention is provided with corresponding virtual STA service module and one group of virtual STA on STA, described virtual STA service module can be assigned to an interim MAC Address (T-MAC-ADDR) so that same STA goes up corresponding different identity system (being virtual STA), like this, a STA physically just is equivalent to a plurality of virtual STA, be that described virtual STA service module can be created a plurality of virtual STA, different virtual STA can serve different clients or application respectively, each virtual STA can be according to the access strategy demand such as the safety of different clients or application, QoS, network interworking etc., set up different relatedly with AP respectively, realize different access strategies.Different virtual STA when eating dishes without rice or wine to carry out the transmission of different business stream respectively the T-MAC-ADDR with correspondence replace the real MAC Address of STA, thereby realize the isolation of different business.As shown in Figure 3, the last emulation of STA1 is two virtual STA:V-STA1 (virtual STA1) and V-STA2 (virtual STA2), becomes independently member of Basic Service Set BSS.
From foregoing description as can be seen, the present invention is by setting up a plurality of Visual STA (virtual STA) to realize that same physics STA supports independently to carry out corresponding business with different identity on STA, supporting the independently realization of access strategy separately.Below at first in conjunction with the foundation of Fig. 4 to virtual STA, and client by virtual STA set up with AP between related processing procedure describe.
As shown in Figure 4, specifically comprise:
Step 41: after STA finishes scanner uni and selected the target AP that inserts, STA can create corresponding virtual STA according to demands of applications, STA specifies an instance number that is used to identify this virtual STA for each virtual STA during initial creation, as the identification information of this virtual STA;
STA can once create a plurality of virtual STA entities according to application demand, the access strategy requirement that each virtual STA is corresponding different respectively, as safety requirements, qos requirement, network interworking requirement etc., to control each virtual STA process such as authentication, association independently separately.System can limit the quantity that same STA goes up virtual STA.
After step 42:STA creates virtual STA, just need distribute interim MAC Address for the STA request.At this moment, STA sends the temporary address allocation request message to AP, has wherein carried the instance number of the corresponding virtual STA that requires the distribution temporary address;
The interim MAC Address of described virtual STA is by system assignment, and with the conflict that prevents that the temporary address from using, the identification information of described virtual STA is corresponding one by one with described interim MAC Address.
After step 43:AP receives the temporary address request for allocation of STA, for the interim MAC Address (T-MAC-ADDR) that this STA distributes respective numbers, return to STA by the temporary address assignment response message according to the virtual STA that is asked;
Simultaneously, on AP, corresponding state variable is set and is set to initial condition 1 at each interim MAC Address: authentication, related not, can determine the current state situation of each virtual STA by this state;
System can set the upper limit of the supported virtual STA of each STA, and the quantity of the interim MAC Address that AP distributes can not surpass the higher limit of default.
Step 44: when STA has obtained corresponding T-MAC-ADDR from system after, this address is passed to the virtual STA of its establishment.The state machine of the last corresponding virtual STA of STA enters its initial condition: not authentication, association.
Step 45, step 46, step 47: virtual STA just can begin follow-up authentication process, association process, access authentication and business datum transmission etc. with system; The state machine of the virtual STA in authentication success back is authentication, association status not; After being successfully associated foundation, the state machine of virtual STA is authentication, association status.
Compare with other common STA, the mac frame between virtual STA and the system, fundamental difference is a 802.11MAC layer when communicating by letter with the opposite end, the part of the corresponding STA MAC Address of frame head is alternative with the interim MAC Address T-MAC-ADDR of virtual STA.
In handling process shown in Figure 4, temporary address request for allocation and temporary address assignment response can be used as new MAC layer-management frame or are carried by the Action management frames.
Connect the description of front, will the concrete working method of each Visual STA among the present invention be described in detail again.
As shown in Figure 5, local area network terminal provided by the invention realizes that the system that the multi-user inserts comprises virtual STA service module, lay respectively at the MAC layer of local network terminal and AP, be used for realizing multi-user's access service according to each interim media access control MAC address information of distributing respectively and carry out information interaction between the network side.Virtual STA service is a function of local area network terminal MAC layer, comprises the establishment of virtual STA and different clients or professionally is mapped to different virtual STA services.
The terminal and the network side MAC layer entity of virtual STA service are provided, can create one or more virtual STA examples at each local area network terminal, system can set maximum admissible virtual STA number on each local area network terminal.
Each virtual STA is provided with the state machine of a correspondence in network side and local area network terminal, and described state machine is used to write down the current state of this virtual STA and is: authentication is not related, authentication is not related or authentication is related.
With Fig. 5 is example, in Fig. 5, based on operation on the physics STA two different clients: client #1 and client #2 is arranged.Described client can with STA at the same equipment or the different equipment that is placed in, different clients has different user identity, require to authenticate, and communicate with different opposite end (other end #1 and other end #2) equipment with different certificate servers.
As shown in Figure 5, the processing procedure of two clients comprises respectively:
(1) Business Stream between authentication process, client #1 and the other end #1 between client #1 and the AS#1 is based on 802.11 related #1;
(2) Business Stream between authentication process, client #2 and the other end #2 between client #2 and the AS#2 is based on 802.11 related #2.
That is to say, same STA can with AP set up a plurality of related, be specially each virtual STA and AP set up one related.
As shown in Figure 5, the different associations at same STA have different interim MAC Address T-MAC-ADDR respectively.When STA sent data to AP, MAC layer TA (Transmitter Address, transfer address) was corresponding T-MAC-ADDR.When AP sent datagram STA, MAC layer RA (Receiver Address, receiver address) was corresponding T-MAC-ADDR.The negotiation of access strategy parameter such as safety etc. owing to can be correlated with during association, the different related whiles mean that also different virtual STA has separately the independently access strategy of 802.11MAC layer.
As shown in Figure 5, the sphere of action of interim MAC Address T-MAC-ADDR only in wlan network, is distributed in wlan network.Business on the MAC layer can directly be communicated by letter based on the interim MAC Address T-MAC-ADDR of virtual STA when the service of request MAC layer, also can be unknowable to T-MAC-ADDR, and direct former MAC Address communication based on local area network terminal.
When the business on the MAC layer is unknowable to the interim MAC Address of virtual STA, the mode that described MAC layer can be by virtual port and (or) professional perceptive mode provides virtual STA service.Described virtual port mode is meant that different clients inserts STA MAC layer from different virtual ports, and STA MAC will finish the mapping (both selected corresponding T-MAC-ADDR as transfer address (TA)) of different virtual port to different virtual STA.From the other end of different clients correspondence and the data message of AS, insert AP from different virtual ports, AP will finish the mapping (both selected corresponding T-MAC-ADDR as receiver address (RA)) of different virtual port to different virtual STA.Described professional perceptive mode is meant that the MAC layer will analyse in depth its data packets transmitted, as upper strata respective protocol layer information, as source IP address, purpose IP address, the exterior gateway address, VLAN TAG (virtual lan label) etc., the service that virtual STA provided and above-mentioned these information bindings.
Below in conjunction with accompanying drawing the process of carrying out data interaction between virtual STA provided by the invention and the AP is described.
At first, to describing to the processing procedure that AP sends data, as shown in Figure 6, specifically comprise from virtual STA:
Step 61: the client in the local area network terminal is initiated request of data, and promptly STA side MAC layer user initiates MAC layer service primitives MA-UNITDATA.request (request of data);
Usually, described MA-UNITDATA.request primitive has comprised the data of request transmission and the DA (destinationaddress, destination address) that packet sends SA (source address, source address) and this data message of reception.In 802.11 standards, its TA of packet that STA sends to AP is SA.
Step 62: after having adopted virtual STA mechanism, the SA that STA MAC layer need be selected corresponding T-MAC-ADDR to replace to carry in the primitive is as the TA value of the MAC packet of eating dishes without rice or wine;
Step 63: the data message that will carry out after the address replacement is handled sends to AP.
After step 64:AP receives 802.11 data messages, described T-MAC-ADDR is replaced with the MAC Address of local area network terminal reality;
Be specially AP and will transmit MA-UNITDATA.indication (data indication) primitive to the upper strata, SA will revert to actual STA MAC Address in the primitive.
Afterwards, to describing to the process that virtual STA sends data, as shown in Figure 7, specifically comprise again by AP:
Step 71:AP side determines and need send data request information to local area network terminal that then AP side MAC layer user initiates MAC layer service primitives MA-UNITDATA.request.
Usually, described MA-UNITDATA.request primitive has comprised data and packet transmission SA and the DA that receives this data message that request transmits.In 802.11 standards, its RA of packet that AP sends to STA is DA.
Step 72: after having adopted virtual STA mechanism, the DA that STA MAC layer need be selected corresponding T-MAC-ADDR to replace to carry in the primitive is as the RA value of the MAC packet of eating dishes without rice or wine;
The message that step 73:AP will carry out after the replacement processing of address sends to STA.
After step 74:STA receives 802.11 data messages, described T-MAC-ADDR is replaced with the MAC Address of local area network terminal reality;
Be specially to the upper strata and transmit MA-UNITDATA.indication primitive, DA will revert to actual STA MAC Address in the primitive.
When the only corresponding virtual STA of a STA, the MAC layer of STA or AP only need carry out the mapping of a STA real mac address and T-MAC-ADDR simply, and 802.11MAC layer service primitives interface is not changed, above-mentioned flow process energy operate as normal.
Introduce the method for two kinds of possible above-mentioned address transition of realization below, go up the operate as normal of a plurality of virtual STA to support same STA:
One, virtual port mode:
Be that different business inserts from different virtual ports, at this moment, can do a little expansions and can correctly change the interim MAC Address T-MAC-ADDR of real mac address and virtual STA to help 802.11MAC on MAC service primitive interface, promptly primitive has directly comprised and virtual STA corresponding virtual port-mark.The virtual port identification number is corresponding one by one with corresponding virtual STA, or the value of virtual port number is exactly identification number or the instance number of corresponding virtual STA.
For this reason, need be amended as follows the 802.11MAC service primitive:
(1)MA-UNITDATA.request(
Source Address ,/source address;
Destination Address ,/destination address;
Routing information ,/routing iinformation;
Data ,/data;
Priority ,/priority;
Service class ,/service class;
Visual-port/* be the virtual port number * that increases newly/
)
(2)MA-UNITDATA.indication(
Source?Address,
Destination?Address.
Routing?information,
Data,
Reception?status,
Priority,
Service?class,
Visual-port/* be the virtual port number * that increases newly /)
3)MA-UNITDATA-STATUS.indication(
Source?Address,
Destination?Address,
Transmission?status,
Provided?Priority,
Provided?Service?class,
Visual-port/* be the virtual port number * that increases newly/
)
Two, professional perceptive mode:
This mode does not make an amendment to the MAC layer service primitives.The MAC layer will be analysed in depth its data packets transmitted, as upper strata respective protocol layer information, and as source IP address, purpose IP address, exterior gateway address, VLAN TAG (virtual lan label) etc., the service that virtual STA provided and above-mentioned these information bindings.Below be two examples:
(1) the different virtual STA of supposition needs to communicate by different gateways and outside, and at the MAC layer, the object of virtual STA direct communication can only be a gateway.Like this, for by the packet of STA to AP, DA (destination address) is the address of corresponding gateway; For the packet from AP to STA, SA (source address) is the address of corresponding gateway.Therefore, by when creating virtual STA, the MAC Address and the virtual STA of gateway associated, the 802.11MAC layer just can be finished conversion between STA real MAC address and the corresponding T-MAC-ADDR by this related information;
(2) the different virtual STA of supposition has different VLAN TAG (VLAN ID), promptly when creating virtual STA, distributes different VLAN TAG.802.11MAC the VLAN TAG according in the data message to be passed just can determine corresponding virtual STA, thereby finishes the conversion between STA real MAC address and the corresponding T-MAC-ADDR;
In sum, realization of the present invention, make that working as a STA wishes to initiate simultaneously to provide with a plurality of business the access authentication procedure of end, and when forming multichannel respectively independently Business Stream being carried out corresponding business respectively, for example, obtain voice service and provide data, services from a service provider from another service provider, on behalf of client foundation, can set up a plurality of virtual STA provide the related of end with corresponding service respectively, to guarantee professional carrying out, therefore, the present invention can satisfy the user well and utilizes same terminal to carry out multiple services demand.
The above; only for the preferable embodiment of the present invention, but protection scope of the present invention is not limited thereto, and anyly is familiar with those skilled in the art in the technical scope that the present invention discloses; the variation that can expect easily or replacement all should be encompassed within protection scope of the present invention.Therefore, protection scope of the present invention should be as the criterion with the protection range of claim.
Claims (15)
1, a kind of local area network terminal is realized the system that the multi-user inserts, and it is characterized in that, comprising:
Virtual site STA service module: be arranged at respectively in local area network terminal and the network side MAC layer function entity, be used to help the MAC layer that the Business Stream of different user is mapped to different virtual STA;
One group of virtual STA: created by virtual STA service module, each virtual STA has each self-corresponding interim MAC Address.Different virtual STA can carry out access service according to its different access strategy and system independently of one another.
2, local area network terminal according to claim 1 is realized the system that the multi-user inserts, and it is characterized in that described system also comprises:
Be respectively each virtual STA in network side and local area network terminal the state machine of a correspondence is set, it is that authentication is related, authentication is related or authentication is related that described state machine is used to write down the current state of this virtual STA.
3, local area network terminal according to claim 1 and 2 is realized the system that the multi-user inserts, and it is characterized in that described system also comprises:
Information storage module: be arranged at respectively in local area network terminal and the network equipment, be used to preserve the virtual STA contextual information related, comprise the binding relationship between virtual STA and the business with corresponding service, and access strategy information.
4, the method for a plurality of virtual terminals of a kind of local area network terminal emulation is characterized in that, comprising:
A, STA create virtual STA according to the requirement of local terminal client business;
B, be that described virtual STA distributes corresponding interim MAC Address;
C, described virtual STA carry out the mutual of information based on interim MAC Address and network side separately.
5, the method for a plurality of virtual terminals in local area network terminal address according to claim 4 is characterized in that described steps A also comprises:
For each virtual STA distributes corresponding virtual STA identification information, and access strategy when setting up each virtual STA connecting system according to business need.
6, the method for a plurality of virtual terminals of local area network terminal emulation according to claim 4 is characterized in that described step B comprises:
Unified by the network side entity in the local area network (LAN) is that each virtual STA distributes corresponding interim MAC Address respectively.
7, the method for a plurality of virtual terminals of local area network terminal emulation according to claim 4 is characterized in that described step B comprises:
B1, local area network terminal send interim MAC Address allocation request message to network side;
B2, network side receive described request message, for it distributes corresponding interim mac address information, and return to local area network terminal.
8, the method for a plurality of virtual terminals of local area network terminal emulation according to claim 7 is characterized in that described step B1 comprises:
In described interim MAC Address allocation request message, carrying the identification information of the virtual STA that needs the interim MAC Address of distribution.
9, the method for a plurality of virtual terminals of local area network terminal emulation according to claim 7 is characterized in that described step B2 also comprises:
After network side determines to distribute the interim mac address information of predetermined quantity for local area network terminal, then no longer distribute new interim mac address information for it.
10, the method for a plurality of virtual terminals of local area network terminal emulation according to claim 7 is characterized in that this method also comprises:
Preserve the identification information of virtual STA and the correspondence relationship information of interim MAC Address respectively at local area network terminal and network side.
11, according to the method for a plurality of virtual terminals of each described local area network terminal emulation of claim 4 to 10, it is characterized in that described step C comprises:
Virtual STA is according to its access strategy institute requirement, utilize and finish authentication between described interim MAC Address and the network side and initiate authentication process, and it is related with network side to set up virtual STA by the back based on the access strategy of described interim MAC Address and this virtual STA in authentication to network side.
12, a kind of multiple-user access method is characterized in that, comprising:
D, local area network terminal emulation are a plurality of virtual terminals, support different access strategies respectively;
E, the Business Stream with different access strategy requirements communicate based on different virtual terminals.
13, multiple-user access method according to claim 12 is characterized in that, described step e comprises:
Business Stream with different access strategy requirements directly uses the interim MAC Address of virtual terminal to communicate.
14, according to claim 12 or 13 described multiple-user access methods, it is characterized in that described step e comprises:
E1, the Business Stream on the MAC layer use the MAC Address request MAC layer of former local area network terminal to carry out data passes;
The MAC layer of E2, local area network terminal and network side MAC layer to the opposite end Data transmission time, replace with the interim MAC Address of corresponding virtual STA with the real MAC address of local area network terminal, to the opposite end Data transmission;
The MAC layer of E3, local area network terminal and network side MAC layer when receiving the opposite end based on the data of the interim MAC Address of virtual terminal, revert to the real MAC address of former local area network terminal with the interim MAC Address of virtual STA, transmit on local terminal MAC layer.
15, a kind of multiple-user access method according to claim 14 is characterized in that, described step e comprises:
The conversion of the interim MAC Address that described MAC layer can be finished virtual STA by the mode and/or the professional perceptive mode of virtual port and the real MAC address of former local area network terminal.
Priority Applications (2)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CNB2005100930552A CN100370776C (en) | 2005-08-25 | 2005-08-25 | System and method for implementing multi-user access in LAN terminal |
PCT/CN2006/002187 WO2007022733A1 (en) | 2005-08-25 | 2006-08-25 | A wireless local area network communication method, a local area network access method for a terminal and a local area network system and the apparatus thereof |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CNB2005100930552A CN100370776C (en) | 2005-08-25 | 2005-08-25 | System and method for implementing multi-user access in LAN terminal |
Publications (2)
Publication Number | Publication Date |
---|---|
CN1863113A true CN1863113A (en) | 2006-11-15 |
CN100370776C CN100370776C (en) | 2008-02-20 |
Family
ID=37390445
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CNB2005100930552A Active CN100370776C (en) | 2005-08-25 | 2005-08-25 | System and method for implementing multi-user access in LAN terminal |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN100370776C (en) |
Cited By (9)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101119305B (en) * | 2007-09-04 | 2010-12-08 | 中兴通讯股份有限公司 | System and method for implementing multi-user concurrent data traffic |
CN101931936A (en) * | 2009-06-22 | 2010-12-29 | 中兴通讯股份有限公司 | Service data transmission method and system, terminal, user data processing entity |
CN102711183A (en) * | 2012-05-15 | 2012-10-03 | 华为技术有限公司 | Method and device for controlling packet sending rate of user |
CN103354636A (en) * | 2013-08-12 | 2013-10-16 | 北京傲天动联技术股份有限公司 | CPE multi-user access method and equipment thereof |
CN107995320A (en) * | 2016-10-27 | 2018-05-04 | 中兴通讯股份有限公司 | A kind of method and apparatus of WIFI equipment communication |
CN109274175A (en) * | 2018-10-11 | 2019-01-25 | 珠海许继芝电网自动化有限公司 | Distribution terminal expansion method and device based on distribution automation system |
CN111432044A (en) * | 2020-03-17 | 2020-07-17 | 腾讯科技(深圳)有限公司 | Multi-link equipment MAC address management method and device and multi-link equipment |
CN112954752A (en) * | 2021-01-26 | 2021-06-11 | 上海商米科技集团股份有限公司 | WiFi roaming method and system based on multiple connections |
CN113079510A (en) * | 2019-12-17 | 2021-07-06 | 天津蠃鱼企业管理咨询合伙企业(有限合伙) | Signal processing method, communication device and storage medium |
Family Cites Families (4)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US6856591B1 (en) * | 2000-12-15 | 2005-02-15 | Cisco Technology, Inc. | Method and system for high reliability cluster management |
US20030093526A1 (en) * | 2001-11-13 | 2003-05-15 | Koninklijke Philips Electronics N. V. | Apparatus and method for providing quality of service signaling for wireless mac layer |
US7239844B2 (en) * | 2002-11-11 | 2007-07-03 | Broadcom Corporation | Wireless local area network supporting multiple slot times |
US8208449B2 (en) * | 2004-01-05 | 2012-06-26 | Broadcom Corporation | Multi-mode WLAN/PAN MAC |
-
2005
- 2005-08-25 CN CNB2005100930552A patent/CN100370776C/en active Active
Cited By (10)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101119305B (en) * | 2007-09-04 | 2010-12-08 | 中兴通讯股份有限公司 | System and method for implementing multi-user concurrent data traffic |
CN101931936A (en) * | 2009-06-22 | 2010-12-29 | 中兴通讯股份有限公司 | Service data transmission method and system, terminal, user data processing entity |
CN102711183A (en) * | 2012-05-15 | 2012-10-03 | 华为技术有限公司 | Method and device for controlling packet sending rate of user |
CN102711183B (en) * | 2012-05-15 | 2015-04-08 | 华为技术有限公司 | Method and device for controlling packet sending rate of user |
CN103354636A (en) * | 2013-08-12 | 2013-10-16 | 北京傲天动联技术股份有限公司 | CPE multi-user access method and equipment thereof |
CN107995320A (en) * | 2016-10-27 | 2018-05-04 | 中兴通讯股份有限公司 | A kind of method and apparatus of WIFI equipment communication |
CN109274175A (en) * | 2018-10-11 | 2019-01-25 | 珠海许继芝电网自动化有限公司 | Distribution terminal expansion method and device based on distribution automation system |
CN113079510A (en) * | 2019-12-17 | 2021-07-06 | 天津蠃鱼企业管理咨询合伙企业(有限合伙) | Signal processing method, communication device and storage medium |
CN111432044A (en) * | 2020-03-17 | 2020-07-17 | 腾讯科技(深圳)有限公司 | Multi-link equipment MAC address management method and device and multi-link equipment |
CN112954752A (en) * | 2021-01-26 | 2021-06-11 | 上海商米科技集团股份有限公司 | WiFi roaming method and system based on multiple connections |
Also Published As
Publication number | Publication date |
---|---|
CN100370776C (en) | 2008-02-20 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
CN1852203A (en) | Virtual-link set-up method and apparatus | |
CN1186906C (en) | Wireless LAN safety connecting-in control method | |
CN1185835C (en) | Network system and network constituting method | |
CN1645960A (en) | Interactive method for re-selecting operating network to wireless local network | |
CN101056456A (en) | Method and secure system for authenticating the radio evolution network | |
CN1280729A (en) | GPRS-subscriber selection of multiple internet service providers | |
CN1750508A (en) | Packet forwarding device and access network system | |
CN1901449A (en) | Method for connecting network | |
CN1783773A (en) | A method for automatic setting and automatic sorting of wireless security network | |
CN101068196A (en) | Bluetooth mobile telephone switch-in bluetooth gateway service insertion controlling method | |
CN1157911C (en) | Simultaneous establishment of point-to-point protocols on Um and Rm interfaces | |
CN1874217A (en) | Method for determining route | |
CN1848994A (en) | Method for realizing right discrimination of microwave cut-in global interoperating system | |
CN1976309A (en) | Method for wireless user inserting network service, inserting controller and server | |
CN1863113A (en) | System and method for implementing multi-user access in LAN terminal | |
CN1960565A (en) | Evolution mobile communication network, and method for registering on evolution 3G access network from terminal | |
CN1784072A (en) | Broad band mobile cut-in net system and its method | |
CN1852330A (en) | Virtual terminal temporary media access control address dynamic altering method | |
CN1859248A (en) | Service cut-in method for radio local network and radio local network system | |
CN1753510A (en) | Wireless network architecture and method for implementing data transmission by applying wireless network architecture | |
CN1852273A (en) | Method and system for communication between gateway device | |
CN101051921A (en) | Control method for realizing multicase and broadcast service in radio communication system | |
CN1306762C (en) | Method of keeping IP address of CDMA2000 incorporated WLAN user on cross-network switchover | |
CN1650545A (en) | Mobile communication network system and mobile communication method | |
CN1893716A (en) | Method and corresponding device for realizing network service providing trader's discover |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
C06 | Publication | ||
PB01 | Publication | ||
C10 | Entry into substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
C14 | Grant of patent or utility model | ||
GR01 | Patent grant |