Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

Wireless metropolitan area network (MAN) safe access method

A wireless metropolitan area network and security access technology, applied in the field of wireless communication systems, can solve the problems of security restrictions on promotion and development, failure to provide SS certification, and failure to fully explain the specific methods of WMAN-SA.

Inactive Publication Date: 2012-11-21
GCI SCI & TECH
View PDF1 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

However, safety issues have always restricted its further promotion and development.
The main disadvantage of IEEE 802.16d is that it only provides one-way authentication of base station BS to user station SS, but does not provide authentication of SS to BS. It is very easy for fake BS to deceive SS
[0004] When WMAN-SA is deployed on a large scale in the future, in addition to authenticating and communicating with SS, the BS also needs a gateway (GW) to configure and manage the WMAN-SA module of the BS itself. At this time, it must be introduced in the network for base station management. However, the existing solutions only define functions such as identity authentication, key management, data encryption, data authentication, and replay protection, and do not fully explain the specific method of applying WMAN-SA after the introduction of gateway devices, and cannot realize WMAN - SA large-scale deployment

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Wireless metropolitan area network (MAN) safe access method

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0019] The current typical wireless metropolitan area network technology is based on the IEEE802.16 standard. The present invention takes IEEE802.16 as an example to illustrate the present invention. The modules involved in the present invention include: SS (Subscriber Station, subscriber station), BS (Base Station, base station), GW (Gateway, gateway), AS (Authentication Server, authentication server), and the present invention relates to security capability negotiation, BS configuration, authentication Steps such as authentication, key negotiation, and confidential transmission of business data, the above steps are classified into two processes: management control process and confidential transmission process;

[0020] For convenience, refer to figure 1 , the management control process includes steps 101 to 105; details are as follows:

[0021] 101. Negotiate security capabilities;

[0022] GW and SS perform security capability negotiation; first, the SS forwards a securi...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses a wireless metropolitan area network (MAN) safe access method, comprising the steps of: completing security capability negotiation between a GW (Gateway) and an SS (Subscriber Station); performing first configuration on a BS (Base Station) by the GW, and closing a controlled port corresponding to the SS by the BS; completing an identity authentication based on WMAN-SA (Wireless Metropolitan Area Network-Security Access) by the GW, the SS and an AS (Authentication Server); negotiating to obtain a session key TEK (Traffic Encryption Key) by the GW and the SS; performing second configuration on the BS by the GW, and opening the controlled port corresponding to the SS by the BS; and encrypting and deciphering business data by using the TEK by the GW. In the invention, the access GW is used for controlling and managing the WMAN-SA of the BS, which can meet the requirement on large-scale deployment of the WMAN-SA.

Description

technical field [0001] The invention relates to the field of wireless communication systems, in particular to a secure access method for a wireless metropolitan area network. Background technique [0002] As an important development direction of future wireless access technology, IEEE 802.16 wireless metropolitan area network has attracted widespread attention from all walks of life. However, safety issues have always restricted its further promotion and development. IEEE 802.16d defines an authentication protocol based on public key encryption algorithm (RSA) and digital certificates, which can realize the authentication of the base station BS to the user station SS. The main disadvantage of IEEE 802.16d is: it only provides one-way authentication of base station BS to user station SS, but does not provide authentication of SS to BS, so it is very easy for counterfeit BS to deceive SS. In addition, both the authorization key (AK) and the session key (TEK) are generated by...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Patents(China)
IPC IPC(8): H04W12/00H04W28/18H04W12/0431H04W12/069H04W12/08
Inventor 王胜男林凡张永强
Owner GCI SCI & TECH
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products