A WAPI-based wireless LAN encrypted transmission system
By using a WAPI-based wireless LAN encrypted transmission system, the system processes data by character count and time value, merges and replaces misclassified data, and solves the problem of user data leakage during transmission, thus achieving secure data transmission and complex data restoration.
Patent Information
- Application Number
- CN202310467646.X
- Authority / Receiving Office
- CN · China
- Patent Type
- Patents(China)
- Current Assignee / Owner
- Filing Date
- 2023-04-27
- Publication Date
- 2025-11-14
- Estimated Expiration
- 2043-04-27
AI Technical Summary
In existing technologies, user data is easily intercepted or obtained through spoofed addresses during transmission, leading to the leakage of real information, and there is a lack of effective protection measures.
A wireless LAN encrypted transmission system based on WAPI is adopted. Data is acquired and analyzed by the data acquisition unit. The data analysis unit processes the data by character count and time value, performs misclassification, combination and replacement, generates transmission data and replacement data, and transmits them through different transmission channels. Finally, the data is restored at the receiving end.
It achieves effective encrypted data transmission, prevents single data from being read, and the restoration process is complex, ensuring information security and the concealment of transmission.
Smart Images

Figure CN116347434B_ABST
Abstract
Description
Technical Field
[0001] This invention belongs to the field of encrypted transmission technology, specifically a wireless local area network encrypted transmission system based on WAPI. Background Technology
[0002] Patent CN112492586A discloses a method and apparatus for optimizing an encrypted transmission scheme. The method includes: receiving an encrypted transmission request from a terminal; determining preset index parameters for each encrypted transmission scheme, including confidentiality rate, response latency rate, and coverage rate; determining the scheme with the optimal matching degree based on each index parameter; responding to a situation where the current iteration count is less than or equal to a preset threshold and the index parameters corresponding to the scheme with the optimal matching degree do not meet a first preset condition, adjusting each scheme iteratively and determining the index parameters corresponding to each adjusted scheme; determining the scheme with the optimal matching degree based on the adjusted index parameters; responding to a situation where the current iteration count is less than or equal to a preset threshold and the index parameters corresponding to the currently determined scheme with the optimal matching degree meet the first preset condition, determining the current scheme with the optimal matching degree as the scheme; and sending the scheme to the terminal so that the terminal encrypts and transmits the information according to the encrypted transmission scheme.
[0003] However, while the aforementioned patent provides a solution for encrypted transmission, it lacks specific measures to prevent the leakage of real information when users intercept user content during transmission or obtain user-transmitted data through other means such as spoofing addresses. Therefore, this paper proposes a solution. Summary of the Invention
[0004] This invention aims to solve at least one of the technical problems existing in the prior art;
[0005] Therefore, this invention proposes a WAPI-based wireless local area network encrypted transmission system, comprising:
[0006] The data acquisition unit is used to acquire the data to be transmitted, mark it as target data, and transmit the target data to the data analysis unit;
[0007] The data analysis unit receives the target data transmitted by the data acquisition unit and analyzes the target data. The specific analysis method is as follows:
[0008] Step 1: Obtain the value of the units digit corresponding to the number of characters. If it is odd, automatically generate a reverse signal; otherwise, do not perform any processing.
[0009] Step 2: Then, the corresponding time value Ti is automatically obtained, the mean of all Ti values is automatically obtained, and the units digit of the mean value is automatically obtained and marked as the interval value.
[0010] Step 4: Next, perform content analysis on the key data. After segmenting the key data into words, obtain several word segments. Remove common words to obtain key words. Obtain important words based on the frequency of occurrence of key words. Retrieve related data based on important words and obtain replacement data based on the attributes of related data.
[0011] Step 5: Then, based on the reverse sequence signal, interval value, and replacement data, the target data is mis-divided and combined. Depending on whether the reverse sequence signal is generated, the filling part in the replacement data is determined. Based on the interval value, the filling position in the target data is determined. After filling the filling part into the filling position, the transmitted data and replacement data are obtained.
[0012] The data analysis unit is used to transmit the sent data to the data receiving unit via the data transmission unit, and the data analysis unit is used to transmit the replacement data to the data receiving unit via the data transmission unit.
[0013] When the data receiving unit receives the transmitted data and the replacement data, it is used to restore the data and recover the original target data from the transmitted data.
[0014] Furthermore, the character count refers to the number of characters in the corresponding key data, and the time value refers to the time value at which the corresponding key data was obtained. It is obtained in the format of month, day, hour, and minute, and is marked as the time value Ti, i = 1, ..., 8, which represent the corresponding eight numbers.
[0015] Furthermore, the specific method for content analysis in step four is as follows:
[0016] First, the key data is segmented into words using existing technology, resulting in several preliminary word segments.
[0017] Remove the regular word segments from the initial word segmentation. The regular word segments are preset by the administrator. Mark the initial word segments after removing the regular word segments as key word segments.
[0018] The occurrence count of each key word is obtained, and the key words are sorted according to the occurrence count. Those with the same occurrence count are randomly arranged to obtain a sequence of key analysis. The first 30% of the sequence is marked as key words.
[0019] Then, data retrieval was carried out according to the key analysis, and all other data containing all the key words were obtained from the Internet and marked as related data;
[0020] The download count and view count of all related data are obtained. The download count refers to the number of times the related data is downloaded or referenced, and the view count refers to the number of times the corresponding related data is viewed.
[0021] The importance value is calculated based on the number of downloads and views. The specific calculation formula is as follows:
[0022] Importance value = 0.61 * downloads + 0.39 * views;
[0023] Obtain the significance values of all related data, and mark the related data with the largest value as replacement data;
[0024] Get the replacement data.
[0025] Furthermore, the specific method for misclassification and combination in step five is as follows:
[0026] Once the target data is obtained, it is divided into several identification segments according to the distinguishing symbols, which are the punctuation marks and other content that separates the target data. Then, following the original order of the target data, starting from the first identification segment, when the number of corresponding interval values is reached, a padding part is left after the identification segment.
[0027] Then the counting starts again, counting back to the next recognition segment corresponding to the number of interval values, leaving the filler part, repeating until the target data is processed and several filler parts are obtained;
[0028] When a reversed signal is generated, the padding method for the filler portion is as follows:
[0029] First, obtain the number of filler parts and mark them as the required number;
[0030] Then, based on the distinguishing symbols of the replacement data, it is divided into several replacement segments;
[0031] Starting from the last replacement segment of the data, proceed backwards, selecting the replacement segments corresponding to the desired number of values;
[0032] The replacement segments are filled in sequentially according to the order in which the filling parts appear in the target data to obtain the combined transmission data;
[0033] In the absence of a reverse sequence signal, the filling method for the fill portion is as follows:
[0034] First, obtain the number of filler parts and mark them as the required number;
[0035] Then, based on the distinguishing symbols of the replacement data, it is divided into several replacement segments;
[0036] Starting from the first replacement segment of the data, select the replacement segments corresponding to the desired number of values in sequence;
[0037] The replacement segments are filled in sequentially according to the order in which the filling parts appear in the target data, resulting in the combined transmission data.
[0038] Furthermore, the specific method for data restoration is as follows:
[0039] The replacement data and the transmitted data are first divided into several segments based on the distinguishing symbol. The segments in the transmitted data that are consistent with the replacement data are selected and marked as similar segments.
[0040] When all similar segments are unique, delete all similar segments and mark the remaining content as restored data;
[0041] When there are two or more similar segments, the similar segments at different positions are retained in order according to their order in the transmitted data. Each time one is retained, all the rest are deleted. The retained similar segments are combined with the remaining similar segments to restore the data and obtain a restored data. Several restored data are obtained.
[0042] The restored data will be given to the user to choose between browsing or deleting.
[0043] Compared with the prior art, the beneficial effects of the present invention are:
[0044] This invention obtains target data through a data acquisition unit, and then analyzes the target data with the help of a data analysis unit. The analysis is based on the data attributes of the target data itself, and the data interval is selected and the replacement data is automatically searched. After masking the target data, the sending data and replacement data are obtained.
[0045] Then, the transmitted data and the replacement data are transmitted to the data receiving unit via the data transmission unit and the data transmission unit respectively, and the data is restored. The original target data is restored from the transmitted data. Different content is transmitted through two channels to avoid reading a single data. Moreover, the restoration method is relatively complex and can achieve good encrypted transmission. This invention is simple, effective and easy to use. Attached Figure Description
[0046] Figure 1 This is a system block diagram of the present invention. Detailed Implementation
[0047] The technical solution of the present invention will be clearly and completely described below with reference to the embodiments. Obviously, the described embodiments are only some embodiments of the present invention, and not all embodiments. Based on the embodiments of the present invention, all other embodiments obtained by those skilled in the art without creative effort are within the scope of protection of the present invention.
[0048] Please see Figure 1 This application provides a WAPI-based wireless local area network encrypted transmission system, comprising:
[0049] The system comprises a data acquisition unit, a data analysis unit, a data primary transmission unit, a data secondary transmission unit, and a data receiving unit.
[0050] The data acquisition unit acquires the data to be transmitted, marks it as target data, and transmits the target data to the data analysis unit. The data analysis unit receives the target data transmitted by the data acquisition unit and analyzes the target data. The specific analysis method is as follows:
[0051] Step 1: Obtain the key data of the target data. The key data includes the number of characters and the time value. The number of characters refers to the number of characters in the corresponding key data, and the time value refers to the time value when the corresponding key data was obtained. It is obtained in the format of month, day, hour and minute, and is marked as the time value Ti, i = 1, ..., 8, which represent the corresponding eight numbers. For example, if the time of obtaining the key data is 15:29 on December 22, then T1-T8 are 1, 2, 2, 2, 1, 5, 2, 9 respectively.
[0052] Step 2: Next, obtain the value of the units digit corresponding to the number of characters. If it is odd, automatically generate a reverse signal; otherwise, do not perform any processing.
[0053] Step 3: Then, the corresponding time value Ti is automatically obtained, the mean of all Ti values is automatically obtained, and the units digit of the mean value is automatically obtained and marked as the interval value.
[0054] Step 4: Next, conduct content analysis on the key data. The specific method of content analysis is as follows:
[0055] First, the key data is segmented into words using existing technology, resulting in several preliminary word segments.
[0056] Remove the regular word segments from the initial word segmentation. Regular word segments are preset by the administrator and are generally common words such as "for example" and "we". Mark the initial word segments after removing regular word segments as key word segments.
[0057] The occurrence count of each key word is obtained, and the key words are sorted according to the occurrence count. Those with the same occurrence count are randomly arranged to obtain a sequence of key analysis. The first 30% of the sequence is marked as key words.
[0058] Then, data retrieval was carried out according to the key analysis, and all other data containing all the key words were obtained from the Internet and marked as related data;
[0059] The download count and view count of all related data are obtained. The download count refers to the number of times the related data is downloaded or referenced, and the view count refers to the number of times the corresponding related data is viewed.
[0060] The importance value is calculated based on the number of downloads and views. The specific calculation formula is as follows:
[0061] Importance value = 0.61 * downloads + 0.39 * views;
[0062] Obtain the significance values of all related data, and mark the related data with the largest value as replacement data;
[0063] Get the replacement data;
[0064] Step 5: Next, based on the reversed signal, interval value, and replacement data, perform misclassification and combination on the target data. The specific method for misclassification and combination is as follows:
[0065] Once the target data is obtained, it is divided into several identification segments according to the distinguishing symbols, which are the punctuation marks and other content that separates the target data. Then, following the original order of the target data, starting from the first identification segment, when the number of corresponding interval values is reached, a padding part is left after the identification segment.
[0066] Then the counting starts again, counting back to the next recognition segment corresponding to the number of interval values, leaving the filler part, repeating until the target data is processed and several filler parts are obtained;
[0067] When a reversed signal is generated, the padding method for the filler portion is as follows:
[0068] First, obtain the number of filler parts and mark them as the required number;
[0069] Then, based on the distinguishing symbols of the replacement data, it is divided into several replacement segments;
[0070] Starting from the last replacement segment of the data, proceed backwards, selecting the replacement segments corresponding to the desired number of values;
[0071] The replacement segments are filled in sequentially according to the order in which the filling parts appear in the target data to obtain the combined transmission data;
[0072] In the absence of a reverse sequence signal, the filling method for the fill portion is as follows:
[0073] First, obtain the number of filler parts and mark them as the required number;
[0074] Then, based on the distinguishing symbols of the replacement data, it is divided into several replacement segments;
[0075] Starting from the first replacement segment of the data, select the replacement segments corresponding to the desired number of values in sequence.
[0076] The replacement segments are filled in sequentially according to the order in which the filling parts appear in the target data to obtain the combined transmission data;
[0077] Step Six: Obtain the sent data and replacement data;
[0078] The data analysis unit is used to transmit the sent data to the data receiving unit via the data transmission unit, and the data analysis unit is used to transmit the replacement data to the data receiving unit via the data transmission unit.
[0079] When the data receiving unit receives the transmitted data and the replacement data, it performs data restoration. The specific method for data restoration is as follows:
[0080] The replacement data and the transmitted data are first divided into several segments based on the distinguishing symbol. The segments in the transmitted data that are consistent with the replacement data are selected and marked as similar segments.
[0081] When all similar segments are unique, meaning that all similar segments are different from each other, delete all similar segments and mark the remaining content as restored data;
[0082] When there are two or more similar segments, that is, there are similar segments that are the same, the similar segments at different positions are retained in order according to their order in the transmitted data. Each time one is retained, all the rest are deleted. The retained similar segments are combined with the remaining similar segments to restore the data and obtain a restored data. Several restored data are obtained.
[0083] The restored data will be given to the user to choose between browsing or deleting.
[0084] Here, because the user certainly knows the correct way to restore the corresponding data, the user can restore the data correctly respectively, and the above situation has a low probability of occurring and is generally not exactly the same;
[0085] As a second embodiment of the present invention, its difference from the first embodiment is that, while transmitting the data to the data receiving unit via the data transmission unit, the data analysis unit also sends the timestamp and interval value to the data receiving unit.
[0086] Only the data receiving unit recognized by the administrator has a decoding algorithm. The decoding algorithm is the opposite of the way the target data is processed into sent data, and automatically restores the sent data to the target data.
[0087] As a third embodiment of the present invention, the technical solution is to integrate the solutions in the first and second embodiments, specifically by randomly selecting either the solution in the first or the second embodiment.
[0088] In all embodiments of this application, the data acquisition unit, data analysis unit, data transmission unit, data transmission unit, and data receiving unit are all based on WAPI wireless local area network for data interaction.
[0089] The data in the above formula are all calculated by removing the dimensions and taking the numerical values. The formula is the closest to the real situation obtained by software simulation of a large amount of collected data. The preset parameters and preset thresholds in the formula are set by those skilled in the art according to the actual situation or obtained through simulation of a large amount of data.
[0090] The above embodiments are only used to illustrate the technical methods of the present invention and are not intended to limit it. Although the present invention has been described in detail with reference to preferred embodiments, those skilled in the art should understand that modifications or equivalent substitutions can be made to the technical methods of the present invention without departing from the spirit and scope of the technical methods of the present invention.
Claims
1. A wireless local area network encrypted transmission system based on WAPI, characterized in that, include: The data acquisition unit is used to acquire the data to be transmitted, mark it as target data, and then transmit it to the data analysis unit; The data analysis unit receives the target data transmitted by the data acquisition unit and analyzes the target data. The specific analysis method is as follows: Step 1: Obtain the value of the units digit corresponding to the number of characters. If it is odd, automatically generate a reverse signal; otherwise, do not perform any processing. The number of characters refers to the number of characters in the corresponding key data. Step 2: Then, the corresponding time value Ti is automatically obtained, the mean of all Ti values is automatically obtained, and the units digit of the mean value is automatically obtained and marked as the interval value. The time value refers to the time value when the corresponding key data is obtained; the key data includes the number of characters and the time value. Step 4: Next, perform content analysis on the key data. After segmenting the key data into words, obtain several word segments. Remove common words to obtain key words. Obtain important words based on the frequency of occurrence of key words. Retrieve related data based on important words and obtain replacement data based on the attributes of related data. Step 5: Then, based on the reverse sequence signal, interval value, and replacement data, the target data is mis-divided and combined. Depending on whether the reverse sequence signal is generated, the filling part in the replacement data is determined. Based on the interval value, the filling position in the target data is determined. After filling the filling part into the filling position, the transmitted data and replacement data are obtained. The data analysis unit is used to transmit the sent data to the data receiving unit via the data transmission unit, and the data analysis unit is used to transmit the replacement data to the data receiving unit via the data transmission unit. When the data receiving unit receives the transmitted data and the replacement data, it is used to perform data restoration, restoring the original target data from the transmitted data; The specific method of misclassification combination is as follows: Once the target data is obtained, it is divided into several identification segments according to the distinguishing symbols, which are the punctuation marks and other content that separates the target data. Then, following the original order of the target data, starting from the first identification segment, when the number of corresponding interval values is reached, a padding part is left after the identification segment. Then the counting starts again, counting back to the next recognition segment corresponding to the number of interval values, leaving the filler part, repeating until the target data is processed and several filler parts are obtained; When a reversed signal is generated, the padding method for the filler portion is as follows: First, obtain the number of filler parts and mark them as the required number; Then, based on the distinguishing symbols of the replacement data, it is divided into several replacement segments; Starting from the last replacement segment of the data, proceed backwards, selecting the replacement segments corresponding to the desired number of values; The replacement segments are filled in sequentially according to the order in which the filling parts appear in the target data to obtain the combined transmission data; In the absence of a reverse sequence signal, the filling method for the fill portion is as follows: First, obtain the number of filler parts and mark them as the required number; Then, based on the distinguishing symbols of the replacement data, it is divided into several replacement segments; Starting from the first replacement segment of the data, select the replacement segments corresponding to the desired number of values in sequence. The replacement segments are filled in sequentially according to the order in which the filling parts appear in the target data, resulting in the combined transmission data.
2. The wireless local area network encrypted transmission system based on WAPI according to claim 1, characterized in that, The time value refers to the time value at which the corresponding key data was obtained. It is obtained in the format of month, day, hour, and minute, and is marked as the time value Ti, i=1, ..., 8, which represent the corresponding eight numbers.
3. The wireless local area network encrypted transmission system based on WAPI according to claim 1, characterized in that, The specific method for content analysis in step four is as follows: First, the key data is segmented into words using existing technology, resulting in several preliminary word segments. Remove the regular word segments from the initial word segmentation. The regular word segments are preset by the administrator. Mark the initial word segments after removing the regular word segments as key word segments. The occurrence count of each key word is obtained, and the key words are sorted according to the occurrence count. Those with the same occurrence count are randomly arranged to obtain a sequence of key analysis. The first 30% of the sequence is marked as key words. Then, data retrieval was carried out according to the key analysis, and all other data containing all the key words were obtained from the Internet and marked as related data; The download count and view count of all related data are obtained. The download count refers to the number of times the related data is downloaded or referenced, and the view count refers to the number of times the corresponding related data is viewed. The importance value is calculated based on the number of downloads and views. The specific calculation formula is as follows: Importance value = 0.61 * number of downloads + 0.39 * number of views; Obtain the significance values of all related data, and mark the related data with the largest value as replacement data; Get the replacement data.
4. The wireless local area network encrypted transmission system based on WAPI according to claim 1, characterized in that, The specific method for data restoration is as follows: The replacement data and the transmitted data are first divided into several segments based on the distinguishing symbol. The segments in the transmitted data that are consistent with the replacement data are selected and marked as similar segments. When all similar segments are unique, delete all similar segments and mark the remaining content as restored data; When there are two or more similar segments, the similar segments at different positions are retained in the order of their transmission data. Each time one is retained, the rest are deleted. The retained similar segments are combined with the remaining similar segments to restore the data and obtain a restored data. Several restored data are obtained. The restored data will be given to the user to choose between browsing or deleting.
Citation Information
Patent Citations
Encryption transmission scheme optimization method and device
CN112492586A