Distributed MESH network key management method and wireless access point device

A wireless access point and network key technology, which is applied in the field of distributed MESH network link encryption and wireless access point equipment, can solve the problem of increasing MPTK-Anonce monitoring and acquisition, increasing the possibility of key cracking, Reduce the security of MESH links and other issues to achieve the effect of increasing security and reliability and reducing the probability of being cracked

Inactive Publication Date: 2011-05-11
NEW H3C TECH CO LTD
View PDF5 Cites 11 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0008] However, using the above key management method, since the MPTK-Anonce of the same MP joining the same network is fixed, and in the process of negotiating PTK in the above four handshakes, the MPTK-Anonce carried in the first message is not encrypted, so The same value appears repeatedly in the 4-way handshake message, which increases the possibility of MPTK-Anonce being monitored and obtained, thus increasing the possibility of the key being cracked, thereby reducing the security of the MESH link

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Distributed MESH network key management method and wireless access point device
  • Distributed MESH network key management method and wireless access point device
  • Distributed MESH network key management method and wireless access point device

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0045] In order to make the object, technical solution and advantages of the present invention clearer, the present invention will be further described in detail below with reference to the accompanying drawings and examples.

[0046] The current MESH standard does not limit that there can only be one MKD domain in the same MESH network. In the embodiment of the present invention, the MESH network is divided into multiple MKD domains according to the authenticator, and each MKD domain independently calculates each MKD domain of the MESH link. layer key.

[0047] Using the method for dividing multiple MKD domains proposed by the embodiment of the present invention, the flow of the management method for the distributed MESH network link key is as follows Figure 4 As shown, it specifically includes the following steps:

[0048] Step 401: Divide the MESH network into multiple MKD domains according to the authenticator.

[0049] In this step, the specific method of dividing the ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention provides a distributed MESH network key management method which comprises the following steps: dividing a MESH network into a plurality of MKD areas by taking an authentication party as a center, taking an MP (mesh access point) as the authentication party as an MKD (MESHKey Distributor), forming an MKD area by the MP and all authenticated parties MP taking the MP as the authentication party, distributing MPTK-Anonce for the authenticated parties in the MKD area through the MKD in each MKD area and enabling the authenticated parties to negotiate a key on each layer according to the MPTK-Anonce distributed by the MKD in the MKD area. The invention also provides an MP. With the adoption of the distributed MESH network key management method and the MP, when any MP is added intodifferent MKD areas as the authenticated parties, a password is negotiated in the different MKD areas according to different MPTK-Anonce, so that the safety of the key management is increased.

Description

technical field [0001] The invention relates to mobile communication technology, in particular to a distributed MESH network link encryption method and wireless access point equipment. Background technique [0002] The wireless local area network conforming to the IEEE802.11s standard is called a mesh (MESH) network. At present, according to different configuration management methods and security policy application methods, MESH networks are divided into two types: centralized control and distributed. In a distributed MESH network, there is no management and configuration center in the network, and each MESH network wireless access point (Mesh Access Point, MP) operates independently, that is: each MP independently configures, independently applies security policies, and independently forwards data message. A specific example of a distributed MESH network structure is figure 1 As shown, the five MPs shown in the figure are marked as MP1, MP2, MP3, MP4 and MP5 respectively...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04W12/04H04W84/12H04W12/0431H04W12/0433
Inventor 吴蔷
Owner NEW H3C TECH CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products