CN1852330A - Virtual terminal temporary media access control address dynamic altering method - Google Patents
Virtual terminal temporary media access control address dynamic altering method Download PDFInfo
- Publication number
- CN1852330A CN1852330A CN 200510100694 CN200510100694A CN1852330A CN 1852330 A CN1852330 A CN 1852330A CN 200510100694 CN200510100694 CN 200510100694 CN 200510100694 A CN200510100694 A CN 200510100694A CN 1852330 A CN1852330 A CN 1852330A
- Authority
- CN
- China
- Prior art keywords
- access control
- media access
- control address
- temporary media
- temporary
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Granted
Links
Images
Landscapes
- Mobile Radio Communication Systems (AREA)
Abstract
本发明公开了一种虚拟终端临时媒体访问控制地址动态变更的方法,在所述无线局域网的网络侧的接入点上设置有一临时媒体访问控制地址管理器,其包括步骤:在临时媒体访问控制地址的生存时间到达之前,由所述临时媒体访问控制地址管理器分配一新的临时媒体访问控制地址,并发送给所述虚拟终端设备,其中至少携带有该终端设备的真实媒体访问控制地址、相应的虚拟终端设备实例号以及所述新的临时媒体访问控制地址;所述虚拟终端设备收到该新的临时媒体访问控制地址后,启动新的临时媒体访问控制地址的生存时间计时,并向所述临时媒体访问控制地址管理器发送确认信息。本发明方法通过进行临时MAC地址的更新过程,实现了无线局域网的安全传递信息。
The invention discloses a method for dynamically changing the temporary media access control address of a virtual terminal. A temporary media access control address manager is arranged on the network side access point of the wireless local area network, which includes the steps of: Before the time-to-live of the address arrives, the temporary media access control address manager allocates a new temporary media access control address and sends it to the virtual terminal device, which contains at least the real media access control address of the terminal device, corresponding virtual terminal device instance number and the new temporary media access control address; after the virtual terminal device receives the new temporary media access control address, it starts the time-to-live of the new temporary media access control address, and sends The temporary MAC address manager sends an acknowledgment message. The method of the invention realizes the safe transmission of information of the wireless local area network through the update process of the temporary MAC address.
Description
技术领域technical field
本发明涉及一种无线局域网技术,尤其涉及的是一种无线局域网中虚拟终端临时MAC地址动态变更的方法。The invention relates to a wireless local area network technology, in particular to a method for dynamically changing the temporary MAC address of a virtual terminal in the wireless local area network.
背景技术Background technique
现有技术的WLAN(无线局域网)技术因其在无线化特点、可比拟有线的高速率接入以及价格低廉等优势而深受市场的欢迎,目前已开始取代有线局域网广泛应用于家庭、校园、酒店、企业办公等场合,并开始作为一种无线宽带接入技术广泛部署于公众热点场合,提供给公众无线宽带数据的接入服务。The WLAN (Wireless Local Area Network) technology of the prior art is popular in the market because of its wireless characteristics, high-speed access comparable to wired, and low price. It has begun to replace wired LANs and is widely used in homes, campuses, Hotels, corporate offices and other occasions have begun to be widely deployed in public hotspots as a wireless broadband access technology, providing the public with wireless broadband data access services.
现有的ISO/IEC 8802-11:1999“信息技术系统间远程通信和信息交换局域网和城域网特定要求第11部分:无线LAN媒体访问控制(MAC,MediaAccess Control地址是识别局域网节点的标识)和物理层(PHY)规范”是WLAN的国际标准,其内容对应了IEEE 802.11。Existing ISO/IEC 8802-11: 1999 "Specific requirements for telecommunication and information exchange between information technology systems Local area network and metropolitan area network Part 11: Wireless LAN Media Access Control (MAC, MediaAccess Control address is the identification of a local area network node) and Physical Layer (PHY) Specification" is an international standard for WLAN, and its content corresponds to IEEE 802.11.
中国也发布了WLAN国家标准GB/T 15629.11-2003,其与国际标准的主要差别在于在接入控制的安全机制上有差别。事实上,目前市场广泛应用的WLAN产品主要是IEEE 802.11标准项目组发布的针对IEEE 802.11的补充规范,包括IEEE 802.11b、IEEE 802.11g、IEEE 802.11a等。其中,802.11b、802.11g工作于2.4Hz频段,802.11a工作在5GHz频段。802.11b支持的物理层速率可达到11Mb/s,802.11g、802.11a支持的物理层速率可达到54Mb/s。目前IEEE 802.11正在制订支持更高吞吐量的标准802.11n以更好地支持各种实时业务及多媒体应用,增大系统容量。China has also issued the WLAN national standard GB/T 15629.11-2003, the main difference between which and the international standard lies in the security mechanism of access control. In fact, the WLAN products widely used in the market are mainly supplementary specifications for IEEE 802.11 issued by the IEEE 802.11 standard project group, including IEEE 802.11b, IEEE 802.11g, IEEE 802.11a, etc. Among them, 802.11b and 802.11g work in the 2.4Hz frequency band, and 802.11a work in the 5GHz frequency band. The physical layer rate supported by 802.11b can reach 11Mb/s, and the physical layer rate supported by 802.11g and 802.11a can reach 54Mb/s. At present, IEEE 802.11 is formulating a standard 802.11n that supports higher throughput to better support various real-time services and multimedia applications and increase system capacity.
现有的IEEE 802.11定义的WLAN系统,其基本结构如图1所示,其中,STA(Station)指包含IEEE 802.11无线局域网接口的终端设备,目前市场上许多手机都支持无线局域网接口,便携机也已内置无线局域网接口。对于一些不带无线局域网接口的设备,可以通过安装WLAN无线网卡的方式,提供无线局域网接口。The basic structure of the existing WLAN system defined by IEEE 802.11 is shown in Figure 1. Among them, STA (Station) refers to a terminal device that includes an IEEE 802.11 wireless LAN interface. Currently, many mobile phones on the market support wireless LAN interfaces. A wireless LAN interface is built in. For some devices without a wireless LAN interface, a WLAN wireless network card can be installed to provide a wireless LAN interface.
如图1所示的AP(Access Point)即接入点,相当于移动网络的基站,其主要功能是使得STA能与其它的STA或有线网络的相关设备进行通信,例如:多个STA接入到一个AP组成一个无线局域网进行通信,接入到不同的AP的STA组成一个局域网进行通信,以及STA与有线局域网的相关设备进行通信等等。关联到一个AP下的STA构成一个基本服务集(BSS)。The AP (Access Point) shown in Figure 1 is the access point, which is equivalent to the base station of the mobile network. Its main function is to enable the STA to communicate with other STAs or related devices of the wired network, for example: multiple STAs access An AP forms a wireless local area network for communication, STAs connected to different APs form a local area network for communication, and STAs communicate with related devices of a wired LAN, etc. STAs associated to an AP constitute a Basic Service Set (BSS).
DS(Distribution System)即分发系统,其使得不同的BSS之间、以及BSS与有线局域网之间能够组成一个大的局域网。其中portal是指提供DS与有线局域网之间MAC服务数据单元(MSDUs)转发的逻辑点。DS (Distribution System) is a distribution system, which enables a large LAN to be formed between different BSSs, and between BSSs and wired LANs. The portal refers to a logical point that provides forwarding of MAC Service Data Units (MSDUs) between the DS and the wired LAN.
在WLAN系统中,SSID(Service Set Identifier)被用来区分不同的无线局域网。当不同的BSS(用BSSID标识)通过DS组成一个大的局域网时,它们拥有同样的SSID。In the WLAN system, SSID (Service Set Identifier) is used to distinguish different wireless local area networks. When different BSSs (identified by BSSID) form a large LAN through DS, they have the same SSID.
现有技术的802.11的工作原理如图2所示,图示为被动扫描过程,AP在其工作信道上周期性地发送广播帧(Beacon帧或称信标帧)。当STA处于被动扫描方式时,首先收听广播帧,并根据其携带的管理信息以选择候选接入的AP。STA也可以采用一种主动扫描的方式取代被动扫描,即STA在对应信道上发送Probe Request(探询请求),工作于该信道的AP回Probe Response(探询响应),携带与Beacon等同的或更多的信息。The working principle of 802.11 in the prior art is shown in FIG. 2 , which is a passive scanning process, and the AP periodically sends broadcast frames (Beacon frames or beacon frames) on its working channel. When the STA is in the passive scanning mode, it first listens to the broadcast frame, and selects a candidate AP for access according to the management information it carries. The STA can also use an active scanning method instead of passive scanning, that is, the STA sends a Probe Request (probe request) on the corresponding channel, and the AP working on the channel returns a Probe Response (probe response), carrying the same or more than the Beacon Information.
通过扫描,STA可获得相关系统的信息,包括物理层与媒体接入控制层(MAC)层相关参数及能力支持等,如安全参数RSN IE(Robust SecurityNetwork Information Element)。Through scanning, STA can obtain relevant system information, including physical layer and media access control (MAC) layer related parameters and capability support, such as security parameters RSN IE (Robust Security Network Information Element).
当STA确定加入到对应的BSS时,STA与AP之间会进行一个802.11鉴权过程。目前支持两类鉴权:共享密钥鉴权(Shared Key Authentication)和开放系统鉴权(Open System authentication)。共享密钥鉴权假定STA和AP之间拥有共同的密钥,加密算法采用WEP(Wireless Equivalent Privacy)。开放系统鉴权则不包含任何加密算法,相当于系统是开放的。802.11i是针对802.11在安全性上的一个增强,它直接采用了802.1X的端口控制机制,对于802.11来说,STA到AP的一个关联对应802.1X的端口。在802.11鉴权阶段,802.11i使用开放系统鉴权。从原理上,中国的WAPI安全标准也类似于802.11i,只是要求的鉴权方法与加密算法不同。When the STA determines to join the corresponding BSS, an 802.11 authentication process will be performed between the STA and the AP. Currently supports two types of authentication: shared key authentication (Shared Key Authentication) and open system authentication (Open System authentication). Shared key authentication assumes that the STA and AP have a common key, and the encryption algorithm uses WEP (Wireless Equivalent Privacy). Open system authentication does not contain any encryption algorithm, which means the system is open. 802.11i is a security enhancement for 802.11. It directly adopts the port control mechanism of 802.1X. For 802.11, an association between STA and AP corresponds to the port of 802.1X. In the 802.11 authentication phase, 802.11i uses open system authentication. In principle, China's WAPI security standard is also similar to 802.11i, but the required authentication method and encryption algorithm are different.
在完成802.11鉴权过程后,就开始建立STA到AP的关联。首先,STA发送关联请求,关联请求中包含相关安全参数(如RSN IE)。AP回应关联响应,并为该关联分配一个关联ID(Association ID)。对于RSN来说,关联所对应的802.1X控制端口将是关闭的,直到完成802.1X密钥协商与安装才打开。After the 802.11 authentication process is completed, the association between the STA and the AP is established. First, the STA sends an association request, which contains relevant security parameters (such as RSN IE). The AP responds with an association response and assigns an association ID (Association ID) to the association. For the RSN, the 802.1X control port corresponding to the association will be closed until the 802.1X key negotiation and installation are completed.
关联之后的接入认证过程对RSN来说就是802.1X/EAP接入认证过程。Wi-Fi Alliance推荐的UAM(Universal Access Method)是基于浏览器劫持的另一种接入认证方式,即系统强制STA连接到一个页面作为用户输入用户名及密码信息的窗口,该页面与后端的AS进行信息交互,但目前UAM不支持802.11i。The access authentication process after association is the 802.1X/EAP access authentication process for the RSN. The UAM (Universal Access Method) recommended by Wi-Fi Alliance is another access authentication method based on browser hijacking, that is, the system forces STAs to connect to a page as a window for users to enter user name and password information. The AS performs information exchange, but currently the UAM does not support 802.11i.
终端设备的临时MAC地址动态更新需求举例如下:例如当一个STA上拥有多个服务提供商的身份标识(如有的手机可以支持多个SIM卡)时,可从一个服务提供商获得语音服务而从另一个服务提供商获得数据服务。如果一个STA可以外接多个其他类型的独立终端,通过共享该STA也可以获得WLAN接入服务。那么需要提供一种虚拟STA实现机制,以支持在一个物理STA上可以发起多个身份独立的接入认证流程并能区分各自独立的业务流,如图3所示的虚拟STA模型,一个STA可以根据业务需要创建虚拟出一个或者多个虚拟STA,如图3中所示的V-STA1和V-STA2,这样能够支持一路或者多路独立的业务流。每个物理STA上的各个虚拟STA都分别对应一个独立的临时MAC地址(T-MAC-ADDR)。虚拟STA的建立流程如图4所示的,已为申请人的另案专利申请中申请保护。上述技术内容的描述是为方便理解本发明技术方案的,其中与本发明可能同期申请专利的内容,与本发明技术方案是相关联的。An example of the dynamic update requirement of the temporary MAC address of the terminal device is as follows: For example, when a STA has multiple service provider identities (for example, some mobile phones can support multiple SIM cards), voice services can be obtained from one service provider and Obtain data services from another service provider. If a STA can be externally connected to multiple independent terminals of other types, WLAN access services can also be obtained by sharing the STA. Then it is necessary to provide a virtual STA implementation mechanism to support the initiation of multiple identity-independent access authentication processes on a physical STA and to distinguish their independent service flows. In the virtual STA model shown in Figure 3, a STA can Create one or more virtual STAs according to business needs, such as V-STA1 and V-STA2 shown in Figure 3, so as to support one or more independent service flows. Each virtual STA on each physical STA corresponds to an independent temporary MAC address (T-MAC-ADDR). The establishment process of the virtual STA is shown in Figure 4, which has been applied for protection in the applicant's separate patent application. The description of the above technical content is for the convenience of understanding the technical solution of the present invention, and the content of patent applications that may be filed at the same time as the present invention is related to the technical solution of the present invention.
在建立虚拟终端之后,现有技术的临时MAC地址不能动态刷新,而由于无线局域网网络的特点是在一定范围内都有覆盖信号,容易被攻击,因此虚拟终端设备的临时MAC地址会被从空口中进行MAC地址跟踪和仿冒,并在仿冒后依此进行对无线局域网网络系统的攻击,造成安全性损害。因此现有技术还有待于改进和发展。After the virtual terminal is established, the temporary MAC address of the prior art cannot be dynamically refreshed, and because the wireless LAN network is characterized by coverage signals within a certain range, it is easy to be attacked, so the temporary MAC address of the virtual terminal device will be changed from empty MAC address tracking and spoofing are carried out in the mouth, and attacks on the wireless LAN network system are carried out accordingly after the spoofing, causing security damage. Therefore prior art still needs to improve and develop.
发明内容Contents of the invention
本发明的目的在于提供一种无线局域网中临时MAC地址(T-MAC-ADDR)的更新方法,以实现进行受保护的临时MAC地址动态更新的方法,提高安全性。The purpose of the present invention is to provide a method for updating a temporary MAC address (T-MAC-ADDR) in a wireless local area network, so as to realize a method for dynamically updating a protected temporary MAC address and improve security.
为实现上述目的,本发明的技术方案包括:To achieve the above object, technical solutions of the present invention include:
一种无线局域网中虚拟终端临时媒体访问控制地址动态变更的方法,在所述无线局域网的网络侧的接入点上设置有一临时媒体访问控制地址管理器,其包括以下步骤:A method for dynamically changing the temporary media access control address of a virtual terminal in a wireless local area network, wherein a temporary media access control address manager is provided on an access point on the network side of the wireless local area network, which includes the following steps:
A、在临时媒体访问控制地址的生存时间到达之前,由所述临时媒体访问控制地址管理器分配一新的临时媒体访问控制地址,并发送给所述虚拟终端设备,其中至少携带有该终端设备的真实媒体访问控制地址、相应的虚拟终端设备实例号以及所述新的临时媒体访问控制地址;A. Before the lifetime of the temporary media access control address arrives, the temporary media access control address manager allocates a new temporary media access control address and sends it to the virtual terminal device, which at least carries the terminal device The real media access control address, the corresponding virtual terminal device instance number and the new temporary media access control address;
B、所述虚拟终端设备收到该新的临时媒体访问控制地址后,启动新的临时媒体访问控制地址的生存时间计时,并向所述临时媒体访问控制地址管理器发送确认信息。B. After receiving the new temporary media access control address, the virtual terminal device starts the time-to-live of the new temporary media access control address, and sends confirmation information to the temporary media access control address manager.
所述的方法,其中,所述方法在由虚拟终端设备发起时,还包括以下步骤:The method, wherein, when the method is initiated by the virtual terminal device, it also includes the following steps:
A1、由所述虚拟终端设备向临时媒体访问控制地址管理器发出临时媒体访问控制地址更新请求,并携带请求更新临时地址的相应虚拟终端设备的实例号,启用定时器,等待临时媒体访问控制地址更新响应;A1. The virtual terminal device sends a temporary media access control address update request to the temporary media access control address manager, and carries the instance number of the corresponding virtual terminal device requesting to update the temporary address, starts a timer, and waits for the temporary media access control address update response;
B1、所述临时媒体访问控制地址管理器以该虚拟终端设备的正在使用的媒体访问控制地址和虚拟终端设备的实例号来识别该更新操作,如果所述定时器超时仍收不到对应的临时媒体访问控制地址更新响应,则重发临时媒体访问控制地址更新请求预定次数,如仍不能收到所述新的临时媒体访问控制地址,则所述虚拟终端设备继续使用旧的临时媒体访问控制地址。B1. The temporary media access control address manager identifies the update operation with the media access control address in use of the virtual terminal device and the instance number of the virtual terminal device. If the timer expires, the corresponding temporary Media access control address update response, then resend the temporary media access control address update request for a predetermined number of times, if still unable to receive the new temporary media access control address, then the virtual terminal device continues to use the old temporary media access control address .
所述的方法,其中,所述步骤A还包括:The method, wherein, the step A also includes:
A11、所述接入点收到该虚拟终端设备发送的临时媒体访问控制地址更新请求,即封装转发给所述临时媒体访问控制地址管理器;A11. The access point receives the temporary media access control address update request sent by the virtual terminal device, that is, encapsulates and forwards it to the temporary media access control address manager;
A12、所述临时媒体访问控制地址管理器将产生的新的临时媒体访问控制地址封装响应给所述接入点,并启动生存时间计时;A12. The temporary media access control address manager encapsulates and responds the generated new temporary media access control address to the access point, and starts the time-to-live;
A13、所述接入点封装转发给所述虚拟终端设备,其中携带更新成功、新的临时媒体访问控制地址、生存时间参数。A13. The access point encapsulates and forwards to the virtual terminal device, which carries parameters of successful update, new temporary media access control address, and time-to-live.
所述的方法,其中,所述步骤B还包括:The method, wherein, the step B also includes:
B11、所述虚拟终端设备在将新的临时媒体访问控制地址更新成功后给所述接入点发送一个临时媒体访问控制地址更新确认信息,其中携带旧的临时媒体访问控制地址作为参数;B11. After the virtual terminal device successfully updates the new temporary media access control address, it sends a temporary media access control address update confirmation message to the access point, which carries the old temporary media access control address as a parameter;
B12、所述接入点收到该虚拟终端设备发过来的临时媒体访问控制地址更新确认信息,将与该虚拟终端设备对应的新的临时媒体访问控制地址更新下去,即以后发到该终端设备的802.11帧的目标地址填上该新的临时媒体访问控制地址,直至其生存时间结束前又发起新的一次临时媒体访问控制地址更新流程。B12. The access point receives the temporary media access control address update confirmation information sent by the virtual terminal device, updates the new temporary media access control address corresponding to the virtual terminal device, and sends it to the terminal device in the future The target address of the 802.11 frame is filled with the new temporary media access control address, and a new temporary media access control address update process is initiated until the lifetime ends.
所述的方法,其中,所述接入点在未收到所述虚拟终端设备的临时媒体访问控制地址更新确认信息时,重复所述步骤A13预定次数,并用旧的临时媒体访问控制地址作为目标地址发送802.11帧给该虚拟终端设备,如仍不能收到对应的临时媒体访问控制地址更新确认信息,则继续使用旧的临时媒体访问控制地址,并在所述虚拟终端和网络侧都重新启动对旧的临时媒体访问控制地址的生存时间计时。The method described above, wherein, when the access point does not receive the temporary media access control address update confirmation information of the virtual terminal device, it repeats the step A13 for a predetermined number of times, and uses the old temporary media access control address as the target The address sends an 802.11 frame to the virtual terminal device. If the corresponding temporary media access control address update confirmation message still cannot be received, then continue to use the old temporary media access control address, and restart the connection between the virtual terminal and the network side. Time-to-live timer for old ephemeral media access control addresses.
所述的方法,其中,所述步骤B中还包括该终端设备保留一预定时间的新、旧临时媒体访问控制地址和虚拟终端设备实例号的对应关系,并在收到所述接入点发送过来的802.11帧的源地址填的是新的临时媒体访问控制地址时,清除旧的临时媒体访问控制地址和虚拟终端设备的实例号的对应关系。Said method, wherein, said step B also includes that the terminal device retains the corresponding relationship between the new and old temporary media access control addresses and the virtual terminal device instance number for a predetermined period of time, and receives said access point sending When the source address of the incoming 802.11 frame is filled with a new temporary media access control address, clear the correspondence between the old temporary media access control address and the instance number of the virtual terminal device.
所述的方法,其中,所述网络侧可主动分配新的临时媒体访问控制地址。The method, wherein, the network side can actively allocate a new temporary media access control address.
所述的方法,其中,还包括:在所述终端设备侧发起临时媒体访问控制地址更新操作请求后,如果收到所述网络侧发送过来的主动更新信息,则主动停止本侧主动发起的临时媒体访问控制地址更新流程,且响应所述网络侧发起的临时媒体访问控制地址更新流程。The method further includes: after the terminal device side initiates a temporary media access control address update operation request, if the active update information sent by the network side is received, actively stop the temporary media access control address update operation request initiated by this side. A media access control address update process, and respond to the temporary media access control address update process initiated by the network side.
所述的方法,其中,还包括:在所述网络侧发起临时媒体访问控制地址更新操作请求后,如果收到终端设备侧发送过来的临时媒体访问控制地址更新操作请求信息,则不响应所述终端设备侧主动发起的临时媒体访问控制地址更新操作请求。The method further includes: after the network side initiates a temporary media access control address update operation request, if receiving the temporary media access control address update operation request information sent from the terminal device side, not responding to the A temporary media access control address update operation request initiated by the terminal device side.
本发明所提供的一种虚拟终端临时MAC地址动态变更的方法,在无线局域网中,通过进行临时MAC地址的更新过程,实现了无线局域网的安全传递信息。The method for dynamically changing the temporary MAC address of a virtual terminal provided by the present invention implements the safe transmission of information in the wireless local area network through the updating process of the temporary MAC address in the wireless local area network.
附图说明Description of drawings
图1为现有技术的IEEE 802.11定义的WLAN系统示意图;FIG. 1 is a schematic diagram of a WLAN system defined by IEEE 802.11 in the prior art;
图2为现有技术的802.11网络系统的工作原理,其示出了被动扫描的流程图;Fig. 2 is the operating principle of the 802.11 network system of the prior art, which shows the flowchart of passive scanning;
图3为现有技术的虚拟终端设备接入无线局域网的系统示意图;FIG. 3 is a schematic diagram of a system in which a virtual terminal device in the prior art is connected to a wireless local area network;
图4为现有技术的虚拟终端设备的建立流程示意图;FIG. 4 is a schematic flow diagram of establishing a virtual terminal device in the prior art;
图5为本发明的临时MAC地址管理器的网络结构示意图;Fig. 5 is a schematic diagram of the network structure of the temporary MAC address manager of the present invention;
图6为本发明方法的由虚拟STA发起的临时MAC地址更新流程示意图;6 is a schematic diagram of a temporary MAC address update process initiated by a virtual STA according to the method of the present invention;
图7为本发明方法的由网络侧发起的临时MAC地址更新流程示意图;7 is a schematic diagram of a temporary MAC address update process initiated by the network side of the method of the present invention;
图8为本发明方法的由虚拟STA一侧发起的临时MAC地址更新失败的流程示意图;Fig. 8 is a schematic flow diagram of the temporary MAC address update failure initiated by the virtual STA side of the method of the present invention;
图9为本发明方法的由网络侧发起的临时MAC地址更新失败的流程示意图。FIG. 9 is a schematic flow diagram of a failure to update a temporary MAC address initiated by the network side in the method of the present invention.
具体实施方式Detailed ways
以下结合附图,将对本发明的各较佳实施例进行较为详细的说明。Various preferred embodiments of the present invention will be described in detail below in conjunction with the accompanying drawings.
本发明涉及的是一种无线局域网中虚拟终端临时MAC地址动态变更的方法,如图5所示的,其系统结构包括:首先在系统中设置一个临时MAC地址管理器,通过分发系统DS接入无线局域网,用于统一管理一个WLAN中虚拟终端所使用的临时MAC地址。临时MAC地址管理器逻辑上是相对于AP功能实体的一个独立功能实体,帮助DS实现临时MAC地址管理功能。The present invention relates to a method for dynamically changing the temporary MAC address of a virtual terminal in a wireless local area network. As shown in FIG. WLAN, used to uniformly manage temporary MAC addresses used by virtual terminals in a WLAN. Logically, the temporary MAC address manager is an independent functional entity relative to the AP functional entity, and helps the DS realize the temporary MAC address management function.
来源于STA的数据包经AP发送到DS的数据包或来源于DS经AP发送到STA的数据包在DS中使用STA真实地址,STA临时地址仅作为在空口上标识受保护的STA用,在AP与STA之间用于替换真实MAC地址,其作用范围只在WLAN网络内,在WLAN网络内使用,不会传递到外部网络及客户端。The data packets from the STA are sent to the DS via the AP or the data packets from the DS to the STA via the AP use the real address of the STA in the DS, and the temporary address of the STA is only used to identify the protected STA on the air interface. It is used between AP and STA to replace the real MAC address. Its scope of action is only within the WLAN network. It is used within the WLAN network and will not be transmitted to external networks and clients.
本发明的所述临时MAC地址(T-MAC-ADDR)更新方法,如图6-图9所示的,每隔预定时间就需要由临时MAC地址管理器更新虚拟STA所使用的旧临时MAC地址,即动态更新。临时MAC地址更新流程如图6和图7所示的,更新策略分为由虚拟STA一侧或网络侧发起两种情况:The temporary MAC address (T-MAC-ADDR) updating method of the present invention, as shown in Fig. 6-Fig. , which is a dynamic update. The temporary MAC address update process is shown in Figure 6 and Figure 7. The update strategy is divided into two cases initiated by the virtual STA side or the network side:
I.虚拟STA一侧发起的更新,如图6所示,包括以下步骤:1. The update that virtual STA side initiates, as shown in Figure 6, comprises the following steps:
a)在临时MAC地址的生存时间到达之前的某一个时间,比如生存时间过了50%的时候,所述虚拟STA向临时MAC地址管理器发出临时MAC地址更新请求(TMA-UPDATE.request),其中携带了请求更新临时地址的相应虚拟STA实例号,并启用定时器TR,等待临时MAC地址更新响应(TMA-UPDATE.response)。网络侧以该虚拟STA的正在使用的MAC地址和虚拟STA实例号来识别这次更新操作。如果定时器TR超时仍收不到临时MAC地址更新响应,就会重发临时MAC地址更新请求,如果在一共发送了多次MAC地址更新请求之后,比如三次,仍收不到临时MAC地址更新响应,则更新操作不成功,该虚拟STA继续使用原临时MAC地址,如图8所示的。a) at a certain time before the lifetime of the temporary MAC address arrives, for example, when the lifetime exceeds 50%, the virtual STA sends a temporary MAC address update request (TMA-UPDATE.request) to the temporary MAC address manager, It carries the corresponding virtual STA instance number requesting to update the temporary address, and starts the timer TR to wait for the temporary MAC address update response (TMA-UPDATE.response). The network side identifies this update operation by the MAC address in use of the virtual STA and the instance number of the virtual STA. If the timer T R expires and still does not receive the temporary MAC address update response, it will resend the temporary MAC address update request. response, the update operation is unsuccessful, and the virtual STA continues to use the original temporary MAC address, as shown in FIG. 8 .
b)AP收到虚拟STA发出的临时MAC地址更新请求后,封装一个“临时MAC地址更新操作请求”传给所述临时MAC地址管理器,其中携带有STA的真实MAC地址和相应的虚拟STA实例号。b) After the AP receives the temporary MAC address update request sent by the virtual STA, it encapsulates a "temporary MAC address update operation request" and sends it to the temporary MAC address manager, which contains the real MAC address of the STA and the corresponding virtual STA instance Number.
c)所述临时MAC地址管理器分配一个新的临时MAC地址,然后将更新成功、该临时MAC地址和生存时间封装在“临时MAC地址更新操作响应”里传给AP,并启动生存时间计时。c) The temporary MAC address manager allocates a new temporary MAC address, then encapsulates the success of the update, the temporary MAC address and the lifetime in the "temporary MAC address update operation response" to the AP, and starts the lifetime timing.
d)AP将封装一个“临时MAC地址更新响应”返回给对应的STA,其中携带了更新成功、新的临时MAC地址、生存时间等参数。d) The AP will encapsulate a "temporary MAC address update response" and return it to the corresponding STA, which carries parameters such as update success, new temporary MAC address, and lifetime.
e)所述虚拟STA将新的临时MAC地址更新下去,即以后发到AP的802.11帧的源地址填上这个新的临时MAC地址,然后给AP发送一个“临时MAC地址更新确认”(TMA-UPDATE.confirm),其中携带上旧的临时MAC地址作为参数。同时,该STA还保留一段时间的新、旧临时MAC地址和虚拟实例号的对应关系,当收到AP发送过来的802.11帧的源地址填的是新临时MAC地址时,才会清除旧临时MAC地址和虚拟实例号的对应关系,这样保证了与AP之间通信在新旧临时MAC地址更替时的顺畅性。e) The virtual STA updates the new temporary MAC address, that is, the source address of the 802.11 frame sent to the AP in the future fills in the new temporary MAC address, and then sends a "temporary MAC address update confirmation" (TMA- UPDATE.confirm), which carries the old temporary MAC address as a parameter. At the same time, the STA also retains the corresponding relationship between the new and old temporary MAC addresses and virtual instance numbers for a period of time. When the source address of the 802.11 frame sent by the AP is filled with the new temporary MAC address, the old temporary MAC address will be cleared. The corresponding relationship between the address and the virtual instance number ensures the smoothness of the communication with the AP when the new and old temporary MAC addresses are replaced.
f)AP收到该虚拟STA发过来的“临时MAC地址更新确认”,就将与这个虚拟STA对应的新临时MAC地址也更新下去,即以后发到STA的802.11帧的目标地址填上这个新的临时MAC地址,直至生存时间结束前又会发起新的一次地址更新。f) After receiving the "Temporary MAC Address Update Confirmation" sent by the virtual STA, the AP will also update the new temporary MAC address corresponding to the virtual STA, that is, fill in the new destination address of the 802.11 frames sent to the STA in the future The temporary MAC address will initiate a new address update until the time-to-live expires.
g)如果AP没有收到该虚拟STA发过来的“临时MAC地址更新确认”,会重发“临时MAC地址更新响应”,比如重发三次,仍然会用旧的临时MAC地址作为目标地址发送802.11帧给该虚拟STA,直到预定次数的重发都没有收到虚拟STA发过来的“临时MAC地址更新确认”,就会继续使用旧的临时MAC地址。此时虚拟STA会再次发送“临时MAC地址更新确认”,如果三次都收到AP发送过来的用旧临时MAC地址作为目标地址的802.11帧,也会继续使用旧的临时MAC地址。这种情况下,AP会通知临时MAC地址管理器回收原先更新的临时MAC地址,虚拟STA和网络侧都重新启动对旧临时MAC地址的生存时间计时。g) If the AP does not receive the "Temporary MAC Address Update Confirmation" sent by the virtual STA, it will resend the "Temporary MAC Address Update Response". frame to the virtual STA, until the predetermined number of retransmissions does not receive the "temporary MAC address update confirmation" from the virtual STA, the old temporary MAC address will continue to be used. At this time, the virtual STA will send the "Temporary MAC Address Update Confirmation" again. If it receives the 802.11 frame with the old temporary MAC address as the target address sent by the AP three times, it will continue to use the old temporary MAC address. In this case, the AP will notify the temporary MAC address manager to reclaim the previously updated temporary MAC address, and both the virtual STA and the network side will restart the time-to-live of the old temporary MAC address.
h)如果临时MAC地址管理器不能分配新的临时MAC地址,比如地址用尽或者到达可用地址数目最大值,那么临时MAC地址管理器会找到该虚拟序列号所对应的临时MAC地址,将重新开始它的生存时间计时,然后封装一个“临时MAC地址更新操作响应”,其中携带有STA的真实MAC地址和相应的虚拟STA实例号以及更新操作失败的参数传给AP。在这种情况下,AP在返回给虚拟STA的“临时MAC地址更新响应(TMA-UPDATE.response)”里带上更新失败、虚拟实例号等参数。虚拟STA在收到带有更新失败参数的临时MAC地址更新响应时,会重新开始生存时间计时,并继续使用原来的临时MAC地址。h) If the temporary MAC address manager cannot allocate a new temporary MAC address, such as the address is exhausted or the maximum number of available addresses is reached, then the temporary MAC address manager will find the temporary MAC address corresponding to the virtual serial number and start over Its survival time is counted, and then a "temporary MAC address update operation response" is encapsulated, which carries the STA's real MAC address, the corresponding virtual STA instance number and the parameters of the update operation failure to the AP. In this case, the AP returns parameters such as update failure and virtual instance number in the "temporary MAC address update response (TMA-UPDATE.response)" returned to the virtual STA. When the virtual STA receives a temporary MAC address update response with an update failure parameter, it will restart the time-to-live and continue to use the original temporary MAC address.
II.网络一侧发起的更新:II. Updates initiated by the network side:
A、在临时MAC地址的生存时间到达之前的某一个时间,网络一侧主动分配一个新的临时MAC地址,并封装一个“临时MAC地址更新操作请求”传给虚拟STA,其中直接携带有STA的真实MAC地址、相应的虚拟STA实例号和已经由临时MAC地址管理器新分配的临时MAC地址,如图7所示。A. At a certain time before the lifetime of the temporary MAC address arrives, the network side actively allocates a new temporary MAC address, and encapsulates a "temporary MAC address update operation request" to the virtual STA, which directly carries the STA's The real MAC address, the corresponding virtual STA instance number and the temporary MAC address that has been newly allocated by the temporary MAC address manager are shown in Figure 7.
B、收到“临时MAC地址更新操作请求”后,虚拟STA将新的临时MAC地址更新下去,即以后发到AP的802.11帧的源地址填上这个新的临时MAC地址,然后给AP发送一个“临时MAC地址更新确认”(TMA-UPDATE.confirm),其中携带上旧的临时MAC地址作为参数。同时该STA还保留一段时间的新、旧临时MAC地址和虚拟实例号的对应关系。当收到AP发送过来的802.11帧的源地址填的是新临时MAC地址时,才会清除旧临时MAC地址和虚拟实例号的对应关系,如此保证在新旧临时MAC地址更替时的通信流畅。B. After receiving the "temporary MAC address update operation request", the virtual STA will update the new temporary MAC address, that is, fill in the new temporary MAC address in the source address of the 802.11 frame sent to the AP in the future, and then send a message to the AP "Temporary MAC address update confirmation" (TMA-UPDATE.confirm), which carries the old temporary MAC address as a parameter. At the same time, the STA also retains the corresponding relationship between the new and old temporary MAC addresses and virtual instance numbers for a period of time. When the source address of the 802.11 frame sent by the AP is filled with the new temporary MAC address, the correspondence between the old temporary MAC address and the virtual instance number will be cleared, so as to ensure smooth communication when the new and old temporary MAC addresses are replaced.
C、AP收到该虚拟STA发过来的“临时MAC地址更新确认”,就将与这个虚拟STA对应的新临时MAC地址也更新下去,即以后发到STA的802.11帧的目标地址填上这个新的临时MAC地址,直至生存时间结束前又会由网络侧发起新的一次地址更新。C. The AP receives the "Temporary MAC Address Update Confirmation" sent by the virtual STA, and then updates the new temporary MAC address corresponding to the virtual STA, that is, fills in the new destination address of the 802.11 frames sent to the STA in the future. The temporary MAC address will be updated by the network side until the time-to-live expires.
D、如果AP没有收到该虚拟STA发过来的“临时MAC地址更新确认”,会重发“临时MAC地址更新操作请求”预定次数,比如重发三次,仍然用旧的临时MAC地址作为目标地址发送802.11帧给该虚拟,同时携带有STA的真实MAC地址、相应的虚拟STA实例号和已经由临时MAC地址管理器新分配的临时MAC地址。如果三次都没有收到虚拟STA发过来的“临时MAC地址更新确认”,则会继续使用旧的临时MAC地址,如图9所示的。此时虚拟STA会再次发送“临时MAC地址更新确认”,如果三次都收到AP发送过来的用旧临时MAC地址作为目标地址的802.11帧,也会继续使用旧的临时MAC地址。这种情况下,AP会通知临时MAC地址管理器回收新的临时MAC地址,STA和管理器都重新启动对旧临时MAC地址的生存时间计时。D. If the AP does not receive the "Temporary MAC Address Update Confirmation" sent by the virtual STA, it will resend the "Temporary MAC Address Update Operation Request" for a predetermined number of times, for example, three times, and still use the old temporary MAC address as the target address Send the 802.11 frame to the virtual, carrying the real MAC address of the STA, the corresponding virtual STA instance number and the temporary MAC address newly allocated by the temporary MAC address manager. If the "Temporary MAC Address Update Confirmation" sent by the virtual STA is not received three times, the old temporary MAC address will continue to be used, as shown in Figure 9. At this time, the virtual STA will send the "Temporary MAC Address Update Confirmation" again. If it receives the 802.11 frame with the old temporary MAC address as the target address sent by the AP three times, it will continue to use the old temporary MAC address. In this case, the AP will notify the temporary MAC address manager to reclaim a new temporary MAC address, and both the STA and the manager restart the time-to-live of the old temporary MAC address.
须注意的是,本发明方法中存在STA和AP侧同时互发“临时MAC地址更新操作请求”的可能,所以规定:STA侧在发出“临时MAC地址更新操作请求”后,如果此时收到AP侧发送过来的“临时MAC地址更新操作请求”,则主动停止自己(STA侧)主动发起的临时MAC地址更新流程,而仅响应AP侧发起的临时MAC地址更新流程。AP侧在发出“临时MAC地址更新操作请求”后,如果收到STA侧发送过来的“临时MAC地址更新操作请求”,不响应STA侧主动发起的临时MAC地址更新操作请求。由此,来保证由STA侧和AP侧发起的请求不会冲突。It should be noted that in the method of the present invention, there is a possibility that the STA and the AP side send "temporary MAC address update operation request" to each other at the same time, so it is stipulated that after the STA side sends out the "temporary MAC address update operation request", if it receives The "temporary MAC address update operation request" sent from the AP side actively stops the temporary MAC address update process initiated by itself (STA side), and only responds to the temporary MAC address update process initiated by the AP side. After the AP side sends out the "temporary MAC address update operation request", if it receives the "temporary MAC address update operation request" sent by the STA side, it will not respond to the temporary MAC address update operation request initiated by the STA side. In this way, it is ensured that the requests initiated by the STA side and the AP side will not conflict.
现有技术的RSNA安全机制(包括预认证)和QoS机制都是以STA的MAC地址作为服务识别符,所以虚拟STA进行越区切换的过程中仍然使用切换之前的临时MAC地址,不进行临时MAC地址的更新,切换之后的更新则走前面按照生存时间描述的流程。The RSNA security mechanism (including pre-authentication) and QoS mechanism of the prior art both use the MAC address of the STA as the service identifier, so the temporary MAC address before the handover is still used during the handover process of the virtual STA, and no temporary MAC address is performed. The update of the address and the update after switching follow the process described above according to the survival time.
本发明方法中的临时MAC地址的更新仅发生在已关联之后,更新请求和更新响应等Action管理帧的保护可以采用802.11w管理帧保护机制,目前的标准还不提供管理帧保护。The update of the temporary MAC address in the method of the present invention only occurs after association, and the protection of Action management frames such as update request and update response can adopt the 802.11w management frame protection mechanism, and the current standard does not provide management frame protection.
本发明方法中的临时MAC地址的更新原语,新定义了三个802.11MAC服务原语:TMA-UPDATE.request,用于临时地址更新请求;TMA-UPDATE.response,用于临时MAC地址更新操作的响应结果;TMA-UPDATE.confirm,用于临时MAC地址更新操作的确认;它们的格式定义可以为但不限于:The update primitive of the temporary MAC address in the method of the present invention newly defines three 802.11MAC service primitives: TMA-UPDATE.request, for temporary address update request; TMA-UPDATE.response, for temporary MAC address update operation The response result of TMA-UPDATE.confirm, which is used to confirm the temporary MAC address update operation; their format definition can be but not limited to:
TMA-UPDATE.request(TMA-UPDATE. request(
Real Source Address,/*STA的真实MAC地址*/Real Source Address, /*STA's real MAC address*/
Visual-STA identifier/*为虚拟STA实例号*/Visual-STA identifier/* is the virtual STA instance number*/
Visual-STA T-Mac-Address,/*新分配的临时MAC地址,仅网络侧发过来时有该参数*/Visual-STAT-Mac-Address, /*Newly assigned temporary MAC address, this parameter is only available when sent from the network side*/
Lifetime/*此临时MAC地址的生存时间,仅网络侧发过来时有该参数*/)Lifetime/*The lifetime of this temporary MAC address, only when sent from the network side */)
TMA-UPDATE.response(TMA-UPDATE. response(
Real Source Address,/*STA的真实MAC地址*/Real Source Address, /*STA's real MAC address*/
Visual-STA identifier,/*为虚拟STA实例号*/Visual-STA identifier, /* is the virtual STA instance number*/
Result,/*更新操作的结果,成功或者失败*/Result, /*The result of the update operation, success or failure*/
Visual-STA T-Mac-Address,/*新分配的临时MAC地址*/Visual-STAT-Mac-Address, /*Newly assigned temporary MAC address*/
Lifetime/*此临时MAC地址的生存时间*/)Lifetime/*The lifetime of this temporary MAC address*/)
TMA-UPDATE.confirm(TMA-UPDATE.confirm(
Old Visual-STA T-Mac-Address,*/旧的临时MAC地址*/)Old Visual-STA T-Mac-Address, */old temporary MAC address*/)
本发明方法在定义上述服务原语的同时,还定义三种Action管理帧类型来标识对临时MAC地址的动作操作,请参考表1和表2:When the method of the present invention defines the above-mentioned service primitives, it also defines three types of Action management frames to identify the action operations on the temporary MAC address, please refer to Table 1 and Table 2:
表1Category Values,表示临时MAC地址的操作:
表2T-Mac-Address Action Field Values,表示Action管理帧的类型:
本发明实现了虚拟STA所使用的临时MAC地址的一种更新方法,即使用Action管理帧进行临时MAC地址的更新,但同时包括使用其他管理帧比如Probe帧、Authentication帧进行类似的更新。本发明方法实现了一种进行受保护的临时MAC地址动态更新的方法,提高了安全性。The present invention realizes a method for updating the temporary MAC address used by the virtual STA, that is, using the Action management frame to update the temporary MAC address, but at the same time including using other management frames such as Probe frame and Authentication frame to perform similar updates. The method of the invention realizes a method for dynamically updating the protected temporary MAC address, thereby improving security.
应当理解的是,上述针对具体实施例的描述较为具体,并不能因此而认为是对本发明专利保护范围的限制,本发明的专利保护范围应以所附权利要求为准。It should be understood that the above descriptions for specific embodiments are relatively specific, and should not therefore be considered as limiting the scope of the patent protection of the present invention, and the scope of protection of the patent protection of the present invention should be determined by the appended claims.
Claims (9)
Priority Applications (2)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| CNB2005101006947A CN100499673C (en) | 2005-10-21 | 2005-10-21 | Virtual terminal temporary media access control address dynamic altering method |
| PCT/CN2006/002187 WO2007022733A1 (en) | 2005-08-25 | 2006-08-25 | A wireless local area network communication method, a local area network access method for a terminal and a local area network system and the apparatus thereof |
Applications Claiming Priority (1)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| CNB2005101006947A CN100499673C (en) | 2005-10-21 | 2005-10-21 | Virtual terminal temporary media access control address dynamic altering method |
Publications (2)
| Publication Number | Publication Date |
|---|---|
| CN1852330A true CN1852330A (en) | 2006-10-25 |
| CN100499673C CN100499673C (en) | 2009-06-10 |
Family
ID=37133797
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| CNB2005101006947A Expired - Fee Related CN100499673C (en) | 2005-08-25 | 2005-10-21 | Virtual terminal temporary media access control address dynamic altering method |
Country Status (1)
| Country | Link |
|---|---|
| CN (1) | CN100499673C (en) |
Cited By (10)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN101123612B (en) * | 2007-08-02 | 2010-04-21 | 华为技术有限公司 | Method and communication device for virtual media capability negotiation |
| CN102067568A (en) * | 2008-06-02 | 2011-05-18 | 萨热姆通讯简易股份有限公司 | Method and device for allocating MAC addresses in a carrier-current communication network |
| CN102891902A (en) * | 2012-09-28 | 2013-01-23 | 北京星网锐捷网络技术有限公司 | Media access control address updating method and network equipment |
| WO2015192665A1 (en) * | 2014-06-16 | 2015-12-23 | 华为技术有限公司 | Access method, apparatus and system based on temporary mac address |
| US9397942B2 (en) | 2012-08-31 | 2016-07-19 | Hangzhou H3C Technologies Co., Ltd. | Packet forwarding |
| CN107852598A (en) * | 2015-06-30 | 2018-03-27 | 微软技术许可有限责任公司 | Wireless Device Spatial Tracking Evasion Based on Wireless Device Identifiers |
| CN107995320A (en) * | 2016-10-27 | 2018-05-04 | 中兴通讯股份有限公司 | Method and device for WIFI device communication |
| CN110247992A (en) * | 2018-03-08 | 2019-09-17 | 阿里巴巴集团控股有限公司 | Address renewing method, device, terminal and server |
| WO2020224524A1 (en) * | 2019-05-03 | 2020-11-12 | Zte Corporation | Dynamic mac address change mechanism for wireless communications |
| CN112104759A (en) * | 2014-03-31 | 2020-12-18 | 谷歌有限责任公司 | Specifying MAC addresses based on location |
Families Citing this family (2)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN102571511A (en) * | 2010-12-29 | 2012-07-11 | 中国移动通信集团山东有限公司 | Local area network access control system and method, and server |
| GB2615576B (en) * | 2022-02-11 | 2024-04-24 | Canon Kk | Method for seamlessly changing a value of an extended unique identifier of a non-AP station associated with an AP station |
-
2005
- 2005-10-21 CN CNB2005101006947A patent/CN100499673C/en not_active Expired - Fee Related
Cited By (19)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN101123612B (en) * | 2007-08-02 | 2010-04-21 | 华为技术有限公司 | Method and communication device for virtual media capability negotiation |
| CN102067568A (en) * | 2008-06-02 | 2011-05-18 | 萨热姆通讯简易股份有限公司 | Method and device for allocating MAC addresses in a carrier-current communication network |
| US9397942B2 (en) | 2012-08-31 | 2016-07-19 | Hangzhou H3C Technologies Co., Ltd. | Packet forwarding |
| US9397943B2 (en) | 2012-08-31 | 2016-07-19 | Hangzhou H3C Technologies Co., Ltd. | Configuring virtual media access control addresses for virtual machines |
| US9667541B2 (en) | 2012-08-31 | 2017-05-30 | Hewlett Packard Enterprise Development Lp | Virtual MAC address, mask-based, packet forwarding |
| CN102891902A (en) * | 2012-09-28 | 2013-01-23 | 北京星网锐捷网络技术有限公司 | Media access control address updating method and network equipment |
| CN102891902B (en) * | 2012-09-28 | 2015-05-20 | 北京星网锐捷网络技术有限公司 | Media access control address updating method and network equipment |
| CN112104759A (en) * | 2014-03-31 | 2020-12-18 | 谷歌有限责任公司 | Specifying MAC addresses based on location |
| CN112104759B (en) * | 2014-03-31 | 2024-01-05 | 谷歌有限责任公司 | Specifying a MAC address based on location |
| WO2015192665A1 (en) * | 2014-06-16 | 2015-12-23 | 华为技术有限公司 | Access method, apparatus and system based on temporary mac address |
| CN105228144B (en) * | 2014-06-16 | 2019-04-19 | 华为技术有限公司 | Access method, device and system based on temporary MAC address |
| CN107852598A (en) * | 2015-06-30 | 2018-03-27 | 微软技术许可有限责任公司 | Wireless Device Spatial Tracking Evasion Based on Wireless Device Identifiers |
| CN107852598B (en) * | 2015-06-30 | 2020-11-03 | 微软技术许可有限责任公司 | Circumventing wireless device spatial tracking based on wireless device identifiers |
| CN107995320A (en) * | 2016-10-27 | 2018-05-04 | 中兴通讯股份有限公司 | Method and device for WIFI device communication |
| CN110247992A (en) * | 2018-03-08 | 2019-09-17 | 阿里巴巴集团控股有限公司 | Address renewing method, device, terminal and server |
| WO2020224524A1 (en) * | 2019-05-03 | 2020-11-12 | Zte Corporation | Dynamic mac address change mechanism for wireless communications |
| US11582230B2 (en) | 2019-05-03 | 2023-02-14 | Zte Corporation | Dynamic MAC address change mechanism for wireless communications |
| US11962588B2 (en) | 2019-05-03 | 2024-04-16 | Zte Corporation | Dynamic mac address change mechanism for wireless communications |
| US12368693B2 (en) | 2019-05-03 | 2025-07-22 | Zte Corporation | Dynamic MAC address change mechanism for wireless communications |
Also Published As
| Publication number | Publication date |
|---|---|
| CN100499673C (en) | 2009-06-10 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| CN1288880C (en) | Wireless local area network system capable of supporting host mobility and an operation method therefor | |
| CN1613268A (en) | Method, system and device for providing WWAN service to mobile station served by WLAN | |
| CN1630263A (en) | System and method for coupling between mobile communication system and wireless local area network | |
| CN110493767B (en) | Communication method, user equipment, access network equipment and application server | |
| CN1852203A (en) | Virtual-link set-up method and apparatus | |
| JP2008529443A (en) | Method and apparatus for tight coupling between cellular network and wireless local area network | |
| CN1860737A (en) | Access to CDMA/UMTS service over a WLAN access point, using a gateway node between WLAN access point and service providing network | |
| CN1625868A (en) | Methods of Roaming Between Wi-Fi and Cellular Networks | |
| CN102724666B (en) | Terminal data relay method, device thereof and system thereof | |
| CN101645814B (en) | A method, device and system for accessing a mobile core network by an access point | |
| CN1839587A (en) | Radio communication device, ad hoc system, and communication system | |
| CN1859614A (en) | Method, device and system for radio transmission | |
| CN101053268A (en) | Handover system and method in heterogeneous network | |
| KR20080067252A (en) | Communication method and wireless network system in wireless network | |
| WO2013013543A1 (en) | Identifier allocation method and system | |
| CN1794870A (en) | Method of establishing interface link | |
| CN100499673C (en) | Virtual terminal temporary media access control address dynamic altering method | |
| CN101990279A (en) | Network selecting method and terminal | |
| CN1802012A (en) | Method for realizing network service provider selection | |
| CN100493101C (en) | Wireless LAN temporary media access control address dynamic allocation and recovery method | |
| CN1852192A (en) | Network identifying method in wireless local network | |
| CN1863113A (en) | System and method for implementing multi-user access in LAN terminal | |
| CN1241424C (en) | Method for building transmission load supporting in general mobile communication system | |
| CN1992637A (en) | Wimax network control and management system and method | |
| CN100403717C (en) | A method of network sharing in wireless local area network |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| C06 | Publication | ||
| PB01 | Publication | ||
| C10 | Entry into substantive examination | ||
| SE01 | Entry into force of request for substantive examination | ||
| C14 | Grant of patent or utility model | ||
| GR01 | Patent grant | ||
| CF01 | Termination of patent right due to non-payment of annual fee | ||
| CF01 | Termination of patent right due to non-payment of annual fee |
Granted publication date: 20090610 |