+

CN1925391A - Communication method using agent equipment and its communication system - Google Patents

Communication method using agent equipment and its communication system Download PDF

Info

Publication number
CN1925391A
CN1925391A CNA2005100936084A CN200510093608A CN1925391A CN 1925391 A CN1925391 A CN 1925391A CN A2005100936084 A CNA2005100936084 A CN A2005100936084A CN 200510093608 A CN200510093608 A CN 200510093608A CN 1925391 A CN1925391 A CN 1925391A
Authority
CN
China
Prior art keywords
mentioned
mediation device
communication
network
terminal equipment
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CNA2005100936084A
Other languages
Chinese (zh)
Inventor
汉顿·克里斯蒂安
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Siemens Ltd China
Original Assignee
Siemens Ltd China
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Siemens Ltd China filed Critical Siemens Ltd China
Priority to CNA2005100936084A priority Critical patent/CN1925391A/en
Priority to PCT/EP2006/065737 priority patent/WO2007025952A1/en
Publication of CN1925391A publication Critical patent/CN1925391A/en
Pending legal-status Critical Current

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/06Authentication
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L12/00Data switching networks
    • H04L12/02Details
    • H04L12/12Arrangements for remote connection or disconnection of substations or of equipment thereof
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/03Protecting confidentiality, e.g. by encryption
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/16Implementing security features at a particular protocol layer
    • H04L63/166Implementing security features at a particular protocol layer at the transport layer
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/14Session management
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W52/00Power management, e.g. Transmission Power Control [TPC] or power classes
    • H04W52/02Power saving arrangements
    • H04W52/0209Power saving arrangements in terminal devices
    • H04W52/0212Power saving arrangements in terminal devices managed by the network, e.g. network or access point is leader and terminal is follower
    • H04W52/0219Power saving arrangements in terminal devices managed by the network, e.g. network or access point is leader and terminal is follower where the power saving management affects multiple terminals
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W76/00Connection management
    • H04W76/10Connection setup
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W84/00Network topologies
    • H04W84/02Hierarchically pre-organised networks, e.g. paging networks, cellular networks, WLAN [Wireless Local Area Network] or WLL [Wireless Local Loop]
    • H04W84/10Small scale networks; Flat hierarchical networks
    • H04W84/12WLAN [Wireless Local Area Networks]
    • YGENERAL TAGGING OF NEW TECHNOLOGICAL DEVELOPMENTS; GENERAL TAGGING OF CROSS-SECTIONAL TECHNOLOGIES SPANNING OVER SEVERAL SECTIONS OF THE IPC; TECHNICAL SUBJECTS COVERED BY FORMER USPC CROSS-REFERENCE ART COLLECTIONS [XRACs] AND DIGESTS
    • Y02TECHNOLOGIES OR APPLICATIONS FOR MITIGATION OR ADAPTATION AGAINST CLIMATE CHANGE
    • Y02DCLIMATE CHANGE MITIGATION TECHNOLOGIES IN INFORMATION AND COMMUNICATION TECHNOLOGIES [ICT], I.E. INFORMATION AND COMMUNICATION TECHNOLOGIES AIMING AT THE REDUCTION OF THEIR OWN ENERGY USE
    • Y02D30/00Reducing energy consumption in communication networks
    • Y02D30/70Reducing energy consumption in communication networks in wireless communication networks

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Hardware Design (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Small-Scale Networks (AREA)
  • Mobile Radio Communication Systems (AREA)

Abstract

This invention provides one communication network medium method, wherein, the system comprises at least two terminals devices, at least one medium device together with one terminal to form one network. The communication method comprises the following steps: other terminal device is to send communication requirement to medium device for authorization; medium device awakes above network terminal device for communication. This invention also provides one communication system applied in above communication method.

Description

A kind of communication means and communication system thereof of using mediation device
(1) technical field
The present invention relates to a kind of communication means, especially a kind of communication system of using the communication means of mediation device and adopting this communication means.
(2) background technology
Along with computer network (Computer Network; Net) and the fast development of mobile phone technology, the exchange of the business datum between computer network and the terminal use is also more and more frequent.In order to guarantee the communication security between computer network and the terminal use, avoiding the disabled user to invade with data eavesdrops, carry out above-mentioned exchanges data and must consider the problem of authentication, access control and information privacy, these problems usually need to solve by authentication and ciphering process.
Authentication adopts usually and inquires about-reply (Challenge-response) mode, in connection procedure, may need an authentication or twice authentication.Can prevent to usurp and misapply by authentication.Encryption technology has then increased security of system, and key length can be 0,40 or 64, and key is generally managed by high layer software.If the user needs the security requirements of higher level, can use special security mechanism in transport layer and application layer.
Fig. 1 for example understands the said circumstances when a terminal use A and a computer C communicate.A is a portable terminal (Mobile Terminal among Fig. 1; MT), C is people's computer (Personal Computer one by one; PC).If thereby A wants to be connected with C and C communicates, then at first C will carry out authentication to A, promptly discerns the identity of A, and C also will encrypt the data that send A to, and the data that A is sent are decrypted.Equally, A also needs C is carried out authentication, the data that send C to is encrypted, and the data that C sends are decrypted.
Though use the aforesaid communication system can proper communication, have following several respects problem:
The first, if the terminal use wants to communicate with personal computer at any time, personal computer will be connected in the network constantly so.If there is certain moment this personal computer not to be connected in the network, this just can't communicate with above-mentioned terminal use constantly so.
Second, because the network between terminal use and the personal computer is safety always, personal computer should carry out authentication to the terminal use, again the terminal use is carried out transfer of data, and this has increased the danger that obtains the data in the personal computer without the user of authentication.
The 3rd, if a terminal use has carried out once visit by mistake to this personal computer, for example dialed the wrong number connection number or reference address, then personal computer at first will carry out authentication to this terminal use, and above-mentioned authentication process need continue for some time.Concerning the terminal use of this mistake visit, just be apprised of failed authentication after need waiting for a period of time; Concerning personal computer, then carry out authentication one time because of the visit of terminal use's mistake, waste its energy.
(3) summary of the invention
Therefore, main purpose of the present invention is to provide a kind of communication means, make a terminal use just need not to be connected constantly on the network can with other communicating with terminal user, and can reduce the possibility that this terminal use is subjected to network attack, increase the safety of communication network.
For achieving the above object, the present invention proposes a kind of communication means that uses mediation device in communication network, comprise at least two terminal equipments, at least one mediation device in this communication network, a mediation device and an above-mentioned terminal equipment are formed a network, and the method includes the steps of:
(1) above-mentioned another terminal equipment sends communication request to above-mentioned mediation device;
(2) above-mentioned mediation device carries out authentication to the above-mentioned terminal equipment that sends request;
(3) above-mentioned mediation device wakes the terminal equipment in the above-mentioned network up;
(4) above-mentioned two terminal equipments communicate.
Wherein, in step (3), after mediation device passed through the terminal equipment authentication of request communication, this mediation device can wake the terminal equipment in the above-mentioned network up.Wake mode up and both can adopt wired mode, for example adopt WOL technology (Wake onLan; WoL); Wake mode up and also can adopt wireless mode, for example adopt Bluetooth technology (Blue Tooth).
In addition, in step (4), above-mentioned two terminal equipments generally adopt cipher mode to communicate, and for example can adopt SSL (Secure Sockets Layer; SSL) agreement is encrypted, and perhaps adopts the follow-up agreement of ssl protocol, i.e. Transport Layer Security (Transport Layer Security; TLS) encrypt.
The invention allows for a kind of communication system of using above-mentioned communication means, this system comprises at least two terminal equipments, and above-mentioned communication system also comprises a mediation device, and this mediation device and an above-mentioned terminal equipment are formed a network.
Wherein, above-mentioned mediation device has a receiving system, and this receiving system receives the signal of above-mentioned another one terminal equipment; Above-mentioned mediation device has an authentication device, and this authentication device carries out authentication to this terminal equipment behind the signal that receives above-mentioned terminal equipment; Above-mentioned mediation device has an emitter, and after to above-mentioned terminal equipment authentication success, this emitter transmits to the terminal equipment in the above-mentioned network.Usually comprise during this transmits and wake frame up, can start after this wakes frame up so that the terminal equipment in the above-mentioned network receives.
As seen, the communication means that uses mediation device in communication network provided by the present invention has following advantage and characteristics:
(1) adopt method of the present invention to communicate, mediation device is connected on two networks simultaneously, this makes the network equipment that wakes up with mediation device need not to be connected constantly on the network, has therefore saved energy.
(2) the authentication business that former cause terminal equipment is carried out changes by mediation device and is undertaken, authentication is professional to be finished by different equipment respectively with business datum, and the further like this safety that guarantees data has reduced the possibility that this terminal use is subjected to network attack.
(3) under the situation of terminal use's mistake visit, mediation device can carry out authentication at once, notifies this subscription authentication failure, and this user need not to wait for the long time; For the terminal use in the network, then need not because once by mistake visit and start and waste its energy successively.
(4) description of drawings
Fig. 1 is a communication means step schematic diagram in the prior art.
Fig. 2 is communication means of the present invention and communication system schematic diagram thereof.
Fig. 3 is the embodiments of the invention schematic diagrames.
(5) embodiment
The present invention is described in detail below in conjunction with accompanying drawing, by specific embodiment, and these embodiment are illustrative, do not have restricted.
Fig. 2 is communication means of the present invention and communication system schematic diagram thereof.Communication equipment in Fig. 2 comprises a terminal use A, mediation device B, a terminal use C.A and B are arranged in a communication network 1 simultaneously, and B and C are arranged in a communication network 2 simultaneously.Mediation device B has carry out the function of authentication from the signal of A.
If A wants to communicate with C, then the communication steps of process is as follows: at first, whether A can communicate by letter with C to above-mentioned mediation device B inquiry; Then, mediation device B carries out authentication to A, and promptly the legal identity to A authenticates; Again, if B passes through the authentication of A, then B wakes C up, makes C carry out the preparation that communicates with A; At last, A and C communicate by encryption method.
Fig. 3 is one embodiment of the present of invention.Have two terminal uses and a mediation device in the communication network shown in Figure 3, one of them terminal use is a cell phone apparatus (Mobile Terminal; MT), another terminal use is people's computer (Personal Computer one by one; PC), mediation device then can be a housed device server (EasyHome Server).On this home server, have a receiving system, can receive the signal of above-mentioned cell phone apparatus; Also have an authentication device on this home server, can behind the signal that receives cell phone apparatus, carry out authentication this cell phone apparatus; Also have an emitter in addition on this home server, after to the success of cell phone apparatus authentication, this emitter emission wakes frame signal up and gives above-mentioned personal computer.
On the one hand, this housed device server is supported the Internet agreement, it with cell phone apparatus between communicate by letter and be based on that the Internet agreement carries out, shown in the oval frame among Fig. 3; On the other hand, this housed device server is supported based on the ieee standard 802.11b WLAN (wireless local area network) of (having another name called Wi-Fi) (Wireless Local Area Network; WLAN) agreement, it and personal computer are formed a local area network (LAN) (Local Area Network; LAN) and by the WLAN agreement communicate, shown in the square frame among Fig. 2.
Above-mentioned housed device server can communicate with cell phone apparatus at any time, and personal computer then need not to be connected constantly on the above-mentioned local area network (LAN).If this cell phone apparatus wants to visit the data of the personal computer that is arranged in family, then cell phone apparatus will propose communication request to the housed device server earlier, receiving system on the housed device server receives after the above-mentioned signal, the housed device server can send query statement and give cell phone apparatus, after cell phone apparatus receives query statement, send a series of information to the housed device server, be used for proving its identity.After the housed device server is received this information, just can verify the identity of above-mentioned cell phone apparatus by authentication device.
If above-mentioned authentication is passed through, then the housed device server sends and wakes frame up, by WOL (Wake on LAN; WoL) mode is waken personal computer up.Remote Management of Network software is housed on the home server, and the network interface card that network enabled wakes up, the mainboard that network enabled is waken up are housed on personal computer.Whether the network interface card that network enabled is waken up is constantly monitoring whole network, see to exist in the network and wake frame up, and judgment mode has multiple, for example can be set in to wake medium access control (Media AccessControl in the frame up; MAC) the continual repetition in address is 16 times; Network interface card has continual power supply can start computer.Generally speaking, the mainboard of personal computer also comprises one for using the custom-designed CMOS of WOL technology.
Receive that when the network interface card on the personal computer when waking frame up, computer will be opened, can begin communication between cell phone apparatus and the personal computer.
General employing coded communication for example can adopt secure socket layer protocol SSL to encrypt between cell phone apparatus and the personal computer, perhaps adopts the follow-up agreement of ssl protocol, and promptly Transport Layer Security TLS encrypts.SSL/TLS is a kind of industry standard security protocol, can generate one when using SSL/TLS and send and digital cipher that the recipient shares, has only the transmit leg of message transmission and recipient to compile or decode by this cipher key pair information.Any other side all can't decode the SSL/TLS transmission even transmit the server of these information.
When the communication between cell phone apparatus and the personal computer was finished, personal computer sent information notice housed device server, and the Remote Management of Network software on the housed device server is notified computer shutdown or entered resting state.
As can be seen from the above-described embodiment, adopt method of the present invention, the network equipment of wake-up waiting need not to be connected constantly on the network, has therefore saved energy.And owing to realize authentication functions, further guaranteed the safety of data, reduced the possibility that network interior terminal use is subjected to network attack with independent mediation device.

Claims (10)

1. communication means that in communication network, uses mediation device, comprise at least two terminal equipments, at least one mediation device in the above-mentioned communication network, an above-mentioned mediation device and an above-mentioned terminal equipment are formed a network, it is characterized in that the method includes the steps of:
(1) above-mentioned another terminal equipment sends communication request to above-mentioned mediation device;
(2) above-mentioned mediation device carries out authentication to the above-mentioned terminal equipment that sends request;
(3) above-mentioned mediation device wakes the terminal equipment in the above-mentioned network up;
(4) above-mentioned two terminal equipments communicate.
2. the communication means that uses mediation device in communication network as claimed in claim 1 is characterized in that: in the above-mentioned steps (3), above-mentioned mediation device wakes terminal equipment in the above-mentioned network up by wired mode.
3. the communication means that uses mediation device in communication network as claimed in claim 1 is characterized in that: in the above-mentioned steps (3), above-mentioned mediation device wakes terminal equipment in the above-mentioned network up by wireless mode.
4. the communication means that uses mediation device in communication network as claimed in claim 2, it is characterized in that: above-mentioned wired mode is the WOL mode.
5. the communication means that uses mediation device in communication network as claimed in claim 3, it is characterized in that: above-mentioned wireless mode is a bluetooth approach.
6. the communication means that uses mediation device in communication network as claimed in claim 1, it is characterized in that: in the above-mentioned steps (4), above-mentioned two terminal equipments communicate with cipher mode.
7. the communication means that uses mediation device in communication network as claimed in claim 6 is characterized in that: secure socket layer protocol or Transport Layer Security are adopted in above-mentioned coded communication.
8. use the communication system of above-mentioned communication means, this system comprises at least two terminal equipments, it is characterized in that: above-mentioned communication system also comprises a mediation device, and this mediation device and an above-mentioned terminal equipment are formed a network.
9. communication system as claimed in claim 8 is characterized in that: above-mentioned mediation device has a receiving system, and this receiving system receives the signal of above-mentioned another one terminal equipment; Above-mentioned mediation device has an authentication device, and this authentication device carries out authentication to this terminal equipment behind the signal that receives above-mentioned terminal equipment; Above-mentioned mediation device has an emitter, and after to above-mentioned terminal equipment authentication success, this emitter transmits to the terminal equipment in the above-mentioned network.
10. communication system as claimed in claim 9 is characterized in that: the signal of the emitter of above-mentioned mediation device emission comprises and wakes frame up.
CNA2005100936084A 2005-08-31 2005-08-31 Communication method using agent equipment and its communication system Pending CN1925391A (en)

Priority Applications (2)

Application Number Priority Date Filing Date Title
CNA2005100936084A CN1925391A (en) 2005-08-31 2005-08-31 Communication method using agent equipment and its communication system
PCT/EP2006/065737 WO2007025952A1 (en) 2005-08-31 2006-08-28 Communication method using intermediate unit and communication system thereof

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CNA2005100936084A CN1925391A (en) 2005-08-31 2005-08-31 Communication method using agent equipment and its communication system

Publications (1)

Publication Number Publication Date
CN1925391A true CN1925391A (en) 2007-03-07

Family

ID=37400828

Family Applications (1)

Application Number Title Priority Date Filing Date
CNA2005100936084A Pending CN1925391A (en) 2005-08-31 2005-08-31 Communication method using agent equipment and its communication system

Country Status (2)

Country Link
CN (1) CN1925391A (en)
WO (1) WO2007025952A1 (en)

Family Cites Families (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7269629B2 (en) * 2002-12-30 2007-09-11 Intel Corporation Method and apparatus for distributing notification among cooperating devices and device channels
JP2005051473A (en) * 2003-07-28 2005-02-24 Sony Corp Network interconnection apparatus, network interconnection method, name resolution apparatus, and computer program
US7107442B2 (en) * 2003-08-20 2006-09-12 Apple Computer, Inc. Method and apparatus for implementing a sleep proxy for services on a network

Also Published As

Publication number Publication date
WO2007025952A1 (en) 2007-03-08

Similar Documents

Publication Publication Date Title
CN100592739C (en) Method and apparatus for providing secure communications
KR101438243B1 (en) SIM based authentication method
US7039021B1 (en) Authentication method and apparatus for a wireless LAN system
WO2012016473A1 (en) Wireless fidelity access method, access point and wireless fidelity access system
CN104303455B (en) Social media client device and method and medium thereof
JP2020527914A (en) Network security management methods and equipment
US20080175449A1 (en) Fingerprint-based network authentication method and system thereof
WO2014094300A1 (en) Server and method for remotely controlling working of communication terminal, and communication terminal
US20190296911A1 (en) Secure network communication method
CN101112039A (en) Wireless network system and communication method for external device temporarily accessing wireless network
US20210329119A1 (en) System and method for controlling devices using short message service
WO2013134927A1 (en) Transport layer security-based key delivery method, smart meter reading terminal and server
CN104025512A (en) System and method for securely waking a computer system over a network
JP2003202978A5 (en)
WO2007112692A1 (en) A communication method in the user network and a system thereof
JP2004056762A (en) Wireless communication method and equipment, communication control program and controller, key management program, wireless lan system, and recording medium
CN100527894C (en) Secure roaming between wireless access points
CN112436936A (en) Cloud storage method and system with quantum encryption function
CN103152328B (en) A kind of conferencing information control system based on wireless network and control method thereof
US20100131762A1 (en) Secured communication method for wireless mesh network
CN1501656A (en) A Method of Selecting 802.1X Authentication Method
CN115442030A (en) An encryption and decryption network transmission method and device
CN1863048B (en) Internet key exchange negotiation method between user and access equipment
WO2020140929A1 (en) Key generation method, ue, and network device
CN1925391A (en) Communication method using agent equipment and its communication system

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C02 Deemed withdrawal of patent application after publication (patent law 2001)
WD01 Invention patent application deemed withdrawn after publication
点击 这是indexloc提供的php浏览器服务,不要输入任何密码和下载