Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

Method, system and terminal device for processing WLAN authentication and privacy infrastructure (WAPI) certificate

A technology for terminal equipment and certificates, applied in electrical components, wireless communication, security devices, etc., can solve the problems of high security, inability to implement WAPI certificates, etc., and achieve the effect of improving security and ensuring security.

Inactive Publication Date: 2012-09-19
CHINA MOBILE COMM CO LTD
View PDF3 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0010] Embodiments of the present invention provide a method, system and terminal device for processing WAPI certificates, which are used to solve the problem that WAPI certificates cannot be stored easily and with high security in the prior art

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method, system and terminal device for processing WLAN authentication and privacy infrastructure (WAPI) certificate
  • Method, system and terminal device for processing WLAN authentication and privacy infrastructure (WAPI) certificate
  • Method, system and terminal device for processing WLAN authentication and privacy infrastructure (WAPI) certificate

Examples

Experimental program
Comparison scheme
Effect test

Embodiment 1

[0035] Embodiment 1 of the present invention provides a method for processing WAPI certificates, the step flow chart of the method is as follows figure 1 As shown, it specifically includes the following steps:

[0036] Step 101, the terminal device generates a first security parameter.

[0037] The first security parameter is generated randomly or according to a set rule each time the terminal device needs to encrypt the WAPI certificate.

[0038] Specifically, in order to facilitate the subsequent user identification module to generate the second security parameter according to the first security parameter, the format of the first security parameter may be an array of 128*N bits, where N is an integer greater than or equal to 1.

[0039] In this step, the generated first security parameter needs to be saved for subsequent decryption of the WAPI certificate.

[0040] Described user identification module can be SIM card, UIM (User Identity Module) card or USIM (Universal Subs...

Embodiment 2

[0073] Embodiment 2 of the present invention provides a system for processing WAPI certificates. The structural diagram of the system is as follows figure 2 As shown, the system includes a terminal device 11 and a subscriber identification module 12, wherein:

[0074] The terminal device 11 is used to generate the first security parameter, and send the first security parameter to its own user identification module, and use the second security parameter returned by the user identification module to encrypt the stored WAPI certificate; user identification The module 12 is configured to use the first security parameter to generate the second security parameter and return it to the terminal device.

[0075] The terminal device 11 is further configured to send the first security parameter to the subscriber identification module again when it is necessary to use the WAPI certificate to authenticate the WLAN service, and use the second security parameter returned by the subscriber i...

Embodiment 3

[0080] Embodiment 3 of the present invention provides a terminal device. The schematic structural diagram of the terminal device is as follows image 3 As shown, the terminal device includes a parameter generation module 21, a sending module 22, a receiving module 23 and an encryption module 24, wherein:

[0081] The parameter generating module 21 is used to generate a first security parameter; the sending module 22 is used to send the first security parameter to the subscriber identification module of the terminal device; the receiving module 23 is used to receive the second security parameter returned by the subscriber identification module ; The encryption module 24 is used to encrypt the stored WAPI certificate by using the second security parameter.

[0082] The terminal device also includes a decryption module 25 and an authentication module 26:

[0083] The sending module 22 is further configured to send the first security parameter to the subscriber identification mod...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention provides a method, a system and a terminal device for processing a WAPI certificate. The terminal device generates a first security parameter, a user identification module of the terminal device is used for switching the first security parameter into a second security parameter, and the terminal device encrypts the WAPI certificate by utilizing the second security parameter. Because the terminal device doesn't locally store the second security parameter, even though the local WAPI certificate and the first security parameter of the terminal device are stolen, illegal users are unable to decrypt and use the WAPI certificate. Because the second security parameter is generated according to original functions of the user identification module, change of the user identification module is not required, the encryption process of the WAPI certificate are automatically achieved by the terminal device and the user identification module, and operation of users is not needed. Therefore, the storage security of the WAPI certificate is guaranteed, and simplicity and convenience of the storage of the WAPI certificate are achieved simultaneously.

Description

technical field [0001] The invention relates to the technical field of terminals, in particular to a method, system and terminal equipment for processing WAPI certificates. Background technique [0002] Wireless LAN Authentication and Privacy Infrastructure (WAPI, Wireless LAN Authentication and Privacy Infrastructure) is a security protocol, and it is also a mandatory security standard for wireless local area network (WLAN, Wireless LAN). Therefore, all terminals that support the WLAN function must support the WAPI security protocol, which also leads to the problem of safe storage of the WAPI certificate. [0003] At present, the WAPI certificate is directly stored on the terminal, but this method of storing the WAPI certificate has great security risks. The WAPI certificate is easily copied or stolen by others illegally, which threatens the security of the WLAN network. [0004] In view of the problem that WAPI certificates are easily copied or stolen by others, there are...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): H04W12/02H04W12/04H04W12/03H04W12/069H04W12/40
Inventor 陈健捷王小旭郑巍
Owner CHINA MOBILE COMM CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products