Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

Certificate and SIM based WLAN access authentication method and system

A technology for access authentication and certificates, applied in user identity/authority verification, data exchange through path configuration, etc., can solve problems such as inability to directly apply mobile WLAN networks, unspecified user billing mechanism, etc.

Inactive Publication Date: 2008-07-02
CHINA MOBILE COMM GRP CO LTD
View PDF0 Cites 35 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0005] Although this method can realize the establishment of a secure channel based on the data link layer between the WLAN and the AP, and ensure the legitimacy of the WLAN terminal and the AP and the confidentiality of the transmitted data, however, because WAPI does not specify the user's billing mechanism, Therefore, it cannot be directly applied to mobile WLAN networks
Although billing can be performed based on the user's public key certificate to identify the user's identity, due to the large difference from the existing WLAN billing mode, a large network transformation is required

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Certificate and SIM based WLAN access authentication method and system
  • Certificate and SIM based WLAN access authentication method and system
  • Certificate and SIM based WLAN access authentication method and system

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0017] Such as figure 1 As shown, it is a schematic structural diagram of the certificate-based and SIM-based WLAN authentication system of the present invention, including a WLAN terminal, a user authentication point, a certificate authentication server, a SIM authentication server, and a user database.

[0018] The WLAN terminal is equipped with a wireless network card and a SIM card; the user authentication point can be an AP or an access control point (Access Controller, referred to as AC), which is used to check whether the user has passed the user authentication, and cooperates with the SIM authentication server to complete the authentication of the WLAN. The user authentication of the terminal; the SIM authentication server is used for user authentication based on the SIM; the user database can be HLR, which stores the user's subscription data and authentication data.

[0019] Throughout the system, the certificate authentication server and the SIM authentication server...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention relates to a WLAN access authentication method base on a certificate and SIM, in which the certificate of a WLAN terminal and the certificate of an access point are verified; the WLAN terminal and the access point negotiates on a secret key; a user authentication is carried out on the WLAN terminal based on the SIM. The invention also relates to the WLAN access authentication system base on the certificate and the SIM, which includes a WLAN terminal on which a wireless network card and a SIM card are arranged, a certificate authentication server used for authentication the certificates of the WLAN terminal and the access point; a user database used for storing the user data; a SIM authentication server used for authenticating based on the SIM according to the user data; a user authentication point used for checking whether the WLAN terminal passes the authentication or not. The user authentication point can either be the access point or an access control point. On the premise that the current network is slightly transformed, the invention realizes mutual authentication, confidential transmission of the data as well as a judge right of user service data belonged to the WLAN terminal and the WLAN access point based on a digital certificate.

Description

technical field [0001] The invention relates to WLAN technology, in particular to a certificate-based and SIM-based WLAN access authentication method and system. Background technique [0002] Wireless Local Area Network (WLAN for short) has mobility, simple installation, high flexibility and expansion capability. As an extension of traditional wired network, it has been widely used in many special environments. With the continuous introduction of wireless data network solutions, wireless local area network users can easily access the Internet no matter at any time and any place. However, since the wireless LAN uses public electromagnetic waves as the carrier, anyone has the conditions to eavesdrop or interfere with information. If the WLAN lacks security guarantees, it will lead to illegal operation of the network and then affect the security of upper-layer communication content. The security of WLAN is mainly reflected in two aspects of access control and data encryption. ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): H04L9/32H04L12/28
Inventor 周文辉刘利军邵春菊
Owner CHINA MOBILE COMM GRP CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products