Method and system for realizing mixed authentication

A technology of mixed authentication and implementation method, which is applied in the field of network communication, can solve problems such as the inability to fundamentally guarantee the legal authentication of ONU, the inability to effectively guarantee the normal access of EPON network, etc., achieve the effect of reliable authentication process and solve hidden dangers in safety

Inactive Publication Date: 2011-08-31
ZTE CORP
View PDF3 Cites 9 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0006] Therefore, authenticating the ONU through a separate physical identifier or authenticating the ONU through a separate logical identifier cannot fundamentally guarantee the legal authentication of the ONU, so that the normal access to the EPON network cannot be effectively guaranteed.

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method and system for realizing mixed authentication
  • Method and system for realizing mixed authentication
  • Method and system for realizing mixed authentication

Examples

Experimental program
Comparison scheme
Effect test

Embodiment 1

[0035] As the authenticator, the OLT performs mixed authentication on the ONU, such as figure 2 shown, including:

[0036] S201: Configure on the OLT or issue the physical identification of the ONU through the NMS server, that is, the MAC address and the logical identification (Logical Identification, abbreviated as LOID or LOID+Password, abbreviated as LOID+PW), that is, LOID / (LOID+PW) binding The specified valid authentication list is sent to the OLT. Each item in the authentication list consists of MAC address and LOID, or consists of MAC address and LOID+PW;

[0037] S202: The MPCP DISCOVERY interaction process defined in IEEE802.3ah or IEEE802.3av is completed between the OLT and the ONU, and the OLT obtains the physical identifier of the ONU from the interaction process, that is, the local MAC address of the ONU;

[0038] S203: complete the OAM DISCOVERY delivery process defined in IEEE802.3ah or IEEE802.3av between the OLT and the ONU;

[0039] S204: The OLT initiat...

Embodiment 2

[0045] As the authenticator, the NMS server performs mixed authentication on the ONU, such as image 3 shown, including:

[0046] S301: The MPCP DISCOVERY interaction process defined in IEEE802.3ah or IEEE802.3av is completed between the OLT and the ONU, and the OLT obtains the physical identifier of the ONU from this interaction process, that is, the local MAC address of the ONU;

[0047] S302: complete the OAM DISCOVERY delivery process defined in IEEE802.3ah or IEEE802.3av between the OLT and the ONU;

[0048] S303: The OLT initiates an authentication request message (Auth-Request) through the management channel between the OLT and the ONU, requesting to obtain the logical identification (LOID / LOID+PW) of the ONU;

[0049] S304: the ONU responds to the request message of the OLT through the management channel between the OLT and the ONU, and returns the logical identification (LOID / LOID+PW) of the ONU;

[0050] S305: After the OLT obtains the physical identifier and logic...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention provides a method for realizing mixed authentication. The method comprises the steps of obtaining a logic identifier and a physical identifier of an optical network unit; authenticating according to the logic identifier and the physical identifier; enabling the optical network unit to pass the authentication while the logic identifier and the physical identifier are legal; and otherwise, obtaining that the optical network unit fails to pass the authentication. The invention also provides a system for realizing the mixed authentication. By using the method and the system disclosed by the invention, the reliability and security of the ONU (Optical Network Unit) authentication process are improved.

Description

technical field [0001] The invention relates to an optical network system in the field of network communication, in particular to a method and system for realizing hybrid authentication of an Ethernet-based passive optical network (EPON) system. Background technique [0002] In order to ensure the reliability and security of the EPON system, it is very necessary to authenticate the ONU during the ONU initialization process before the ONU (Optical Network Unit) works normally. Only the ONU that has passed the authentication can complete the initialization process, and then enter the normal working state. Authenticating the ONU can effectively control the EPON network and prevent illegal ONUs from accessing the network. [0003] Among the authentication methods of the current EPON system, there is a method for performing authentication solely based on the physical identifier of the ONU, that is, the MAC (Media Access Control) address. The MAC address is determined by the ONU...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/06H04L12/56H04L12/24H04L9/00H04Q11/00
CPCH04L63/083H04L63/0876H04Q11/0067
Inventor 臧美燕
Owner ZTE CORP
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products