Authentication method and related equipment

By identifying a valid mobile phone number and token on the WIFI terminal, verifying the connection between the router and the operator, and automatically returning the network password, the cumbersome process of WIFI internet access is solved, achieving secure and efficient network access.

CN121056866APending Publication Date: 2025-12-02CHINA TELECOM CORP LTD
View PDF 0 Cites 0 Cited by

Patent Information

Application Number
CN202511240496.4
Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
Filing Date
2025-09-01
Publication Date
2025-12-02

AI Technical Summary

Technical Problem

Existing methods of accessing the internet via Wi-Fi are cumbersome and prone to errors, increasing the burden on users.

Method used

By determining whether the user terminal includes a valid mobile phone number and token, a non-first-time connection request is generated, which is then verified using the router's authentication interface with the operator. The whitelist pool is queried, and the network password is automatically returned.

Benefits of technology

It improves the security and efficiency of network access, reduces manual operations, and enhances the user experience.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN121056866A_ABST
    Figure CN121056866A_ABST
Patent Text Reader

Abstract

The embodiment of the invention provides an authentication method and related equipment, and belongs to the technical field of networks. The method comprises the following steps: judging whether a user terminal comprises an effective mobile phone number and an effective token; if the user terminal comprises the effective mobile phone number and the effective token, generating a non-first connection request through the user terminal according to the effective mobile phone number, the effective token and the name of the target wireless network; a non-first connection request is received through the router, and the valid mobile phone number, the valid token and the operator information value are sent to a router authentication interface; if the authentication result includes that the mobile phone number is successfully authenticated, whether an effective mobile phone number exists in a mobile phone number white list pool of the router is inquired; and if the valid mobile phone number exists, the password of the target wireless network is returned to the user terminal through the router. According to the embodiment of the invention, automatic password return and network connection can be realized, the security and efficiency of network access are improved, the user experience is improved, and a user can quickly connect to the network.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] This application relates to the field of network technology, and in particular to an authentication method and related equipment. Background Technology

[0002] While Wi-Fi technology has advanced rapidly, offering internet speeds far exceeding those of 5G phones, common Wi-Fi connection methods are still more cumbersome compared to 5G. Connecting to Wi-Fi typically requires entering an account, password, or a phone number and SMS verification code, a process that is both tedious and error-prone, increasing the user's workload.

[0003] In summary, the technical problems existing in the relevant technologies need to be improved. Summary of the Invention

[0004] The main objective of this application is to propose an authentication method and related equipment to achieve automated password return and network connection, thereby improving the security and efficiency of network access.

[0005] To achieve the above objectives, one aspect of this application provides an authentication method, the method comprising: Determine whether the user terminal includes a valid mobile phone number and a valid token; If the user terminal includes a valid mobile phone number and a valid token, then a non-first-time connection request is generated by the user terminal based on the valid mobile phone number, the valid token, and the name of the target wireless network. The router receives the non-first connection request and sends the valid mobile phone number, the valid token, and the operator information value to the router's authentication interface. The router corresponds to the target wireless network. The authentication result of the router's authentication interface is obtained through the router. If the authentication result includes successful mobile phone number authentication, the valid mobile phone number is queried in the router's mobile phone number whitelist pool. If the valid mobile phone number exists, the password for the target wireless network is returned to the user terminal via the router.

[0006] In some embodiments, the method further includes: Obtain the address information of the router's authentication interface, the address information of the terminal authentication interface, and the router's identification number through the router.

[0007] In some embodiments, the method further includes: If the user terminal does not include a valid mobile phone number and a valid token, then the user terminal generates an initial connection request based on the initial request identifier and the name of the target wireless network. The router receives the initial connection request and returns the address information of the terminal authentication interface and the router's identification number to the user terminal. The user terminal sends the router's identity number and current operator information to the terminal authentication interface, where the current operator information is the mobile phone number operator information of the user terminal. The user terminal obtains the valid mobile phone number and valid token returned by the terminal authentication interface, and returns the steps of generating a non-first-time connection request by the user terminal based on the valid mobile phone number, the valid token and the name of the target wireless network.

[0008] In some embodiments, the method further includes: If the authentication result includes a failed mobile phone number authentication, the authentication result is sent to the user terminal via the router. The authentication result is displayed on the user terminal, prompting the user to re-authenticate or use password authentication.

[0009] In some embodiments, determining whether the user terminal includes a valid mobile phone number and a valid token includes: In response to the first instruction, all wireless networks and mobile phone number authentication controls received by the user terminal are displayed on the wireless network page of the user terminal, and the mobile phone number authentication controls correspond one-to-one with the wireless networks; In response to the selection of the target mobile number authentication control, it is determined whether the user terminal includes a valid mobile number and a valid token, wherein the target mobile number authentication control corresponds to the target wireless network.

[0010] In some embodiments, determining whether the user terminal includes a valid mobile phone number and a valid token includes: Obtain the valid mobile phone number and current token of the user terminal. If the acquisition fails, it is determined that the user terminal does not include the valid mobile phone number and valid token. Obtain the expiration time of the current token; Determine whether the current time exceeds the specified expiration time; If the current time exceeds the expiration time, it is determined that the user terminal does not include the valid mobile phone number and valid token; If the current time has not exceeded the expiration time, the current token is determined to be a valid token, and the user terminal is determined to include the valid mobile phone number and the valid token.

[0011] To achieve the above objectives, another aspect of this application provides an authentication device, the device comprising: The terminal determination module is used to determine whether the user terminal includes a valid mobile phone number and a valid token; The subsequent request module is used to generate a non-first connection request through the user terminal based on the valid mobile phone number, the valid token and the name of the target wireless network if the user terminal includes a valid mobile phone number and a valid token. The interface authentication module is used to receive the non-first connection request through the router and send the valid mobile phone number, the valid token and the operator information value to the router authentication interface. The router corresponds to the target wireless network. The whitelist verification module is used to obtain the authentication result of the router's authentication interface through the router. If the authentication result includes successful mobile phone number authentication, it queries whether the valid mobile phone number exists in the router's mobile phone number whitelist pool. The password return module is used to return the password of the target wireless network to the user terminal through the router if the valid mobile phone number exists.

[0012] To achieve the above objectives, another aspect of this application provides an electronic device, which includes a memory and a processor. The memory stores a computer program, and the processor executes the computer program to implement the method described above.

[0013] To achieve the above objectives, another aspect of the embodiments of this application proposes a computer-readable storage medium storing a computer program that, when executed by a processor, implements the methods described above.

[0014] To achieve the above objectives, another aspect of the embodiments of this application proposes a computer program product, including a computer program that, when executed by a processor, implements the aforementioned method.

[0015] The embodiments of this application include at least the following beneficial effects: This application provides an authentication method, apparatus, electronic device, storage medium, and program product. This solution determines whether the user terminal includes a valid mobile phone number and a valid token. If the user terminal includes a valid mobile phone number and a valid token, a non-first-time connection request is generated by the user terminal based on the valid mobile phone number, the valid token, and the name of the target wireless network. The router receives the non-first-time connection request and sends the valid mobile phone number, the valid token, and the operator information value to the router's authentication interface. The router corresponds to the target wireless network. The router obtains the authentication result from the router's authentication interface. If the authentication result includes successful mobile phone number authentication, the router queries whether a valid mobile phone number exists in the router's mobile phone number whitelist pool. This improves the security and efficiency of network access, reduces unnecessary manual operations, and improves the system's automation level. If a valid mobile phone number exists, the router returns the password of the target wireless network to the user terminal, achieving automated password return and network connection, improving user experience, and facilitating users to quickly connect to the network. Attached Figure Description

[0016] Figure 1 This is a flowchart of the authentication method provided in the embodiments of this application; Figure 2 This is a flowchart of the initial connection step of the authentication method provided in the embodiments of this application; Figure 3 yes Figure 1 A flowchart of step S101; Figure 4 yes Figure 1 Another flowchart for step S101; Figure 5 This is a functional block diagram of the mobile phone number-based seamless Wi-Fi authentication system provided in this application embodiment; Figure 6 This is a timing diagram of a specific implementation of the authentication method provided in this application embodiment when applied to a mobile phone number-invisible WIFI authentication system; Figure 7 This is a schematic diagram of the Wi-Fi connection page (i.e., wireless network page) provided in an embodiment of this application; Figure 8 This is a schematic diagram of the WIFI connection settings page provided in an embodiment of this application; Figure 9 This is a schematic diagram illustrating the connection completion provided in an embodiment of this application; Figure 10 This is a schematic diagram of the authentication device provided in the embodiments of this application; Figure 11 This is a schematic diagram of the hardware structure of the electronic device provided in the embodiments of this application. Detailed Implementation

[0017] To make the objectives, technical solutions, and advantages of this application clearer, the following detailed description is provided in conjunction with the accompanying drawings and embodiments. It should be understood that the specific embodiments described herein are merely illustrative of this application and are not intended to limit it. In the following description, when referring to the accompanying drawings, unless otherwise indicated, the same numbers in different drawings represent the same or similar elements. The embodiments described in the following exemplary embodiments do not represent all embodiments consistent with those of this application; they are merely examples of apparatuses and methods consistent with some aspects of the embodiments of this application as detailed in the appended claims.

[0018] It is understood that the terms “first,” “second,” etc., used in this application may be used herein to describe various concepts, but unless otherwise stated, these concepts are not limited by these terms. These terms are only used to distinguish one concept from another. For example, without departing from the scope of the embodiments of this application, first information may also be referred to as second information, and similarly, second information may also be referred to as first information. Depending on the context, the words “if,” “when,” or “in response to a determination” as used herein may be interpreted as “when…” or “when…” or “in response to a determination.”

[0019] As used in this application, the terms "at least one", "multiple", "each", "any", etc., "at least one" includes one, two or more, "multiple" includes two or more, "each" refers to each of the corresponding multiples, and "any" refers to any one of the multiples.

[0020] Unless otherwise defined, all technical and scientific terms used herein have the same meaning as commonly understood by one of ordinary skill in the art to which this application belongs. The terminology used herein is for the purpose of describing embodiments of this application only and is not intended to limit this application.

[0021] Before providing a detailed description of the embodiments of this application, some of the nouns and terms involved in the embodiments of this application will be explained first. The nouns and terms involved in the embodiments of this application are subject to the following interpretations.

[0022] 1) Mobile phone number WIFI terminal refers to a communication terminal with WIFI and mobile phone number, such as mobile phone, PAD, computer, smartwatch, Internet of Things device, etc., which can be referred to as user terminal.

[0023] 2) A WIFI router, a WIFI access device, is a hardware device that provides network authentication and Internet access services, and can be abbreviated as AP.

[0024] 3) Mobile operator one-click authentication interface, which is used to return the terminal's real mobile phone number and issue the authentication token. Every mobile operator provides this interface when providing the one-click mobile phone number authentication function, and it is used for third-party application authentication.

[0025] 4) Mobile Number Authentication Management Platform: A unified management platform specifically for AP mobile number authentication. Its northbound interface connects to the "Mobile Operator One-Click Authentication Interface," and its southbound interface connects to the AP's "WIFI Access Authentication Module." The mobile number authentication management platform primarily serves to aggregate and unify input and output interfaces for convenient management.

[0026] 5) J1 interface, the interface used by the mobile number authentication management platform for AP interaction.

[0027] 6) J2 interface, the user terminal interaction interface used by the mobile number authentication management platform.

[0028] 7) The WIFI access authentication module is a functional module of the wireless WIFI router that authenticates the terminals to be connected.

[0029] 8) Mobile phone whitelist pool: A functional module embedded in the wireless WIFI router that stores the mobile phone numbers that are allowed to access the wireless WIFI router network in a pool.

[0030] While Wi-Fi technology has advanced rapidly, offering internet speeds far exceeding those of 5G phones, common Wi-Fi connection methods are still more cumbersome compared to 5G. Connecting to Wi-Fi typically requires entering an account, password, or a phone number and SMS verification code, a process that is both tedious and error-prone, increasing the user's workload.

[0031] In summary, the technical problems existing in the relevant technologies need to be improved.

[0032] In view of this, this application provides an authentication method and related equipment. This method determines whether the user terminal includes a valid mobile phone number and a valid token. If the user terminal includes a valid mobile phone number and a valid token, a non-first-time connection request is generated by the user terminal based on the valid mobile phone number, valid token, and the name of the target wireless network. The router receives the non-first-time connection request and sends the valid mobile phone number, valid token, and operator information value to the router's authentication interface, thus corresponding to the target wireless network. The router obtains the authentication result from the router's authentication interface. If the authentication result includes successful mobile phone number authentication, the router queries its mobile phone number whitelist pool to check for a valid mobile phone number. This improves network access security and efficiency, reduces unnecessary manual operations, and enhances system automation. If a valid mobile phone number exists, the router returns the password of the target wireless network to the user terminal, achieving automated password return and network connection, improving user experience and facilitating quick network connection.

[0033] The authentication method provided in this application relates to the field of network technology. The authentication method provided in this application can be applied to a terminal, a server, or software running on a terminal or server. In some embodiments, the terminal can be a smartphone, tablet, laptop, desktop computer, smart speaker, smartwatch, or in-vehicle terminal, but is not limited to these. The server can be configured as an independent physical server, a server cluster or distributed system composed of multiple physical servers, or a cloud server providing basic cloud computing services such as cloud services, cloud databases, cloud computing, cloud functions, cloud storage, network services, cloud communication, middleware services, domain name services, security services, CDN, and big data and artificial intelligence platforms. The server can also be a node server in a blockchain network. The software can be an application implementing the authentication method, but is not limited to the above forms.

[0034] This application can be used in a wide variety of general-purpose or special-purpose computer system environments or configurations. Examples include: personal computers, server computers, handheld or portable devices, tablet devices, multiprocessor systems, microprocessor-based systems, set-top boxes, programmable consumer electronics, network PCs, minicomputers, mainframe computers, and distributed computing environments including any of the above systems or devices. This application can be described in the general context of computer-executable instructions executed by a computer, such as program modules. Generally, program modules include routines, programs, objects, components, data structures, etc., that perform specific tasks or implement specific abstract data types. This application can also be practiced in distributed computing environments where tasks are performed by remote processing devices connected via a communication network. In distributed computing environments, program modules can reside in local and remote computer storage media, including storage devices.

[0035] It should be noted that in all specific embodiments of this application, when processing data related to user identity or characteristics, such as user information, user behavior data, user historical data, and user location information, user permission or consent is obtained first. Furthermore, the collection, use, and processing of this data comply with relevant laws, regulations, and standards. In addition, when embodiments of this application require access to sensitive personal information of users, separate permission or consent from the user is obtained through pop-ups or redirection to confirmation pages. Only after obtaining the user's separate permission or consent is the necessary user-related data required for the proper functioning of these embodiments acquired.

[0036] Figure 1 This is an optional flowchart of the authentication method provided in the embodiments of this application. Figure 1The method may include, but is not limited to, steps S101 to S105.

[0037] Step S101: Determine whether the user terminal includes a valid mobile phone number and a valid token.

[0038] Specifically, a valid token includes an expiration time.

[0039] In some embodiments, the router obtains the address information of the router authentication interface, the address information of the terminal authentication interface, and the router identification number.

[0040] Optionally, in response to the first instruction, all wireless networks and mobile phone number authentication controls received by the user terminal are displayed on the wireless network page of the user terminal, with each mobile phone number authentication control corresponding to a wireless network; in response to the selection of the target mobile phone number authentication control, it is determined whether the user terminal includes a valid mobile phone number and a valid token, with each target mobile phone number authentication control corresponding to a target wireless network.

[0041] It should be noted that the process involves obtaining the user terminal's valid mobile phone number and current token. If obtaining these fails, it is determined that the user terminal does not include a valid mobile phone number and valid token. The process also involves obtaining the expiration time of the current token, determining whether the current time has exceeded the expiration time, and if so, determining that the user terminal does not include a valid mobile phone number and valid token. If the current time has not exceeded the expiration time, the current token is determined to be a valid token, and the user terminal is determined to include a valid mobile phone number and valid token.

[0042] In this embodiment, it is determined whether the user terminal includes a valid mobile phone number and a valid token, enabling legitimate and valid user terminals to connect to the wireless network with one click, thereby enhancing network security.

[0043] Step S102: If the user terminal includes a valid mobile phone number and a valid token, a non-first-time connection request is generated by the user terminal based on the valid mobile phone number, the valid token and the name of the target wireless network.

[0044] In some embodiments, a non-first-time connection request is generated by the user terminal based on a valid mobile phone number, a valid token, and the name of the target wireless network, and the non-first-time connection request is sent to the router's WIFI access authentication module.

[0045] In some embodiments, if the user terminal does not include a valid mobile phone number and a valid token, the user terminal generates an initial connection request based on the initial request identifier and the name of the target wireless network; the router receives the initial connection request and returns the address information of the terminal authentication interface and the router identification number to the user terminal; the user terminal sends the router identification number and the current operator information, which is the mobile phone card operator information of the user terminal, to the terminal authentication interface; the user terminal obtains the valid mobile phone number and valid token returned by the terminal authentication interface, and returns to the step of generating a non-initial connection request based on the valid mobile phone number, valid token and the name of the target wireless network.

[0046] In this embodiment, if the user terminal includes a valid mobile phone number and a valid token, a non-first-time connection request is generated by the user terminal based on the valid mobile phone number, the valid token, and the name of the target wireless network. The non-first-time connection request can shorten the authentication process and improve the flexibility and efficiency of the authentication process.

[0047] Step S103: Receive non-first-time connection requests through the router and send the valid mobile phone number, valid token, and carrier information value to the router authentication interface.

[0048] Specifically, the router corresponds to the target wireless network, and the router includes a WIFI access authentication module. The router authentication interface is a one-click authentication interface for mobile operators.

[0049] In some embodiments, when the WIFI access authentication module receives authentication information from a user terminal containing a valid mobile phone number and a valid token, it determines that it is the nth mobile phone number authentication and sends the request to the mobile phone number authentication management platform for authentication.

[0050] The router authentication interface can connect with the information databases of multiple operators to provide authentication services for multiple operators.

[0051] In this embodiment, the router receives non-first connection requests and sends a valid mobile phone number, a valid token, and carrier information values ​​to the router's authentication interface to achieve carrier authentication. This effectively verifies user identity and improves the flexibility and security of network management.

[0052] Step S104: Obtain the authentication result of the router's authentication interface through the router. If the authentication result includes successful mobile phone number authentication, then query whether there is a valid mobile phone number in the router's mobile phone number whitelist pool.

[0053] Specifically, the mobile phone whitelist pool is a functional module embedded in the wireless WIFI router. It stores the mobile phone numbers that are allowed to access the wireless WIFI router network in the pool. The router includes the mobile phone whitelist pool and the password of the target wireless network.

[0054] In some embodiments, the router obtains the authentication result from the authentication interface, and if the authentication is successful, it performs whitelist authentication.

[0055] Optionally, the mobile number whitelist pool supports the synchronization, addition, and deletion of mobile numbers.

[0056] Specifically, the database can be synchronized to the mobile number whitelist pool, or authorized valid mobile numbers can be added to the mobile number whitelist pool.

[0057] Among them, the mobile phone number whitelist pool can effectively verify user identity and shorten the authentication process.

[0058] In some embodiments, the system queries the router's mobile number whitelist pool to see if a valid mobile number exists. If it does, the whitelist authentication is successful; otherwise, it sends a message to the user terminal that the mobile number is not allowed to access.

[0059] Optionally, if the authentication result includes a failed mobile phone number authentication, the authentication result is sent to the user terminal via the router; the user terminal displays the authentication result and prompts the user to re-authenticate, use password authentication, or use mobile phone number verification code authentication, or other authentication methods.

[0060] In this embodiment, the authentication result of the router's authentication interface is obtained through the router. If the authentication result includes successful mobile phone number authentication, the router's mobile phone number whitelist pool is queried to see if there is a valid mobile phone number. This ensures that only authorized users can connect to the wireless network, which can improve the security and efficiency of network access, reduce unnecessary manual operations, and improve the system's automation level.

[0061] In step S105, if a valid mobile phone number exists, the password for the target wireless network is returned to the user terminal via the router.

[0062] In some embodiments, the router returns the password of the target wireless network to the user terminal, and the user terminal automatically connects to the target wireless network.

[0063] The password is transmitted to the user terminal through a secure communication channel (such as an encryption protocol) to prevent leakage or man-in-the-middle attacks.

[0064] Optionally, the network password can be dynamically generated or set by the user.

[0065] It should be noted that the router returns the password of the target wireless network. Therefore, after the Wi-Fi password is changed, the router can dynamically update and push the new password to the user's terminal, eliminating the need for the user to verify or manually enter the password again, reducing user operations and improving the user experience.

[0066] In this embodiment, if a valid mobile phone number exists, the password of the target wireless network is returned to the user terminal through the router, realizing automated password return and network connection, improving user experience and helping users to quickly connect to the network.

[0067] Steps S101 to S105 as illustrated in this embodiment determine whether the user terminal includes a valid mobile phone number and a valid token. If the user terminal includes a valid mobile phone number and a valid token, a non-first-time connection request is generated by the user terminal based on the valid mobile phone number, valid token, and the name of the target wireless network. The router receives the non-first-time connection request and sends the valid mobile phone number, valid token, and operator information value to the router's authentication interface, thus corresponding with the target wireless network. The router obtains the authentication result from the router's authentication interface. If the authentication result includes successful mobile phone number authentication, the router queries its mobile phone number whitelist pool to check if a valid mobile phone number exists. This improves network access security and efficiency, reduces unnecessary manual operations, and enhances system automation. If a valid mobile phone number exists, the router returns the password of the target wireless network to the user terminal, achieving automated password return and network connection, improving user experience, and facilitating quick network connection for users.

[0068] Please see Figure 2 In some embodiments, the authentication method provided in this application further includes an initial connection step, which may include, but is not limited to, steps S201 to S205: Step S201: Obtain the address information of the router authentication interface, the address information of the terminal authentication interface, and the router identity number through the router.

[0069] In some embodiments, the router initiates registration based on the default configured mobile number authentication management platform to obtain the address information of the router authentication interface, the address information of the terminal authentication interface, and the router identity number.

[0070] In step S202, if the user terminal does not include a valid mobile phone number and a valid token, the user terminal generates an initial connection request based on the initial request identifier and the name of the target wireless network.

[0071] In some embodiments, the user terminal generates an initial connection request based on the initial request identifier and the name of the target wireless network.

[0072] Step S203: Receive the initial connection request through the router and return the address information of the terminal authentication interface and the router identification number to the user terminal.

[0073] In some embodiments, the WIFI access authentication module detects that it is a first connection request based on the first request identifier and returns the address information of the terminal authentication interface and the router identification number to the terminal.

[0074] Step S204: The user terminal sends the router's identification number and the current operator information to the terminal authentication interface.

[0075] Specifically, the current operator information refers to the operator information of the user's mobile phone SIM card.

[0076] In some embodiments, the user terminal sends the router's identity number and current carrier information to the terminal authentication interface to initiate mobile phone number authentication.

[0077] Step S205: Obtain the valid mobile phone number and valid token returned by the terminal authentication interface through the user terminal, and return the step of generating a non-first-time connection request through the user terminal based on the valid mobile phone number, valid token and the name of the target wireless network.

[0078] In step S205 of some embodiments, based on the mobile phone number authentication request initiated by the user terminal and the operator information, a mobile phone number acquisition is initiated to the corresponding terminal authentication interface to obtain the valid mobile phone number and valid token of the user terminal.

[0079] Further, return to the step of generating a non-first-time connection request through the user terminal based on a valid mobile phone number, a valid token, and the name of the target wireless network.

[0080] It is understandable that after obtaining a valid mobile phone number and a valid token from the user's terminal, a non-first connection request is automatically initiated, without requiring the user to initiate a non-first connection request.

[0081] Please see Figure 3 In some embodiments, step S101 may include, but is not limited to, steps S301 to S302: In step S301, in response to the first instruction, all wireless networks and mobile number authentication controls received by the user terminal are displayed on the wireless network page of the user terminal.

[0082] Specifically, each mobile phone number authentication control corresponds to a wireless network, and the first instruction is triggered when the wireless network page is opened.

[0083] In step S301 of some embodiments, all wireless networks and mobile number authentication controls received by the user terminal are displayed on the wireless network page of the user terminal.

[0084] Step S302: In response to the selection operation of the target mobile number authentication control, determine whether the user terminal includes a valid mobile number and a valid token.

[0085] Specifically, the target mobile number authentication control corresponds to the target wireless network.

[0086] In step S302 of some embodiments, the user selects the target mobile number authentication control, thereby determining the target wireless network.

[0087] Furthermore, it determines whether the user terminal includes a valid mobile phone number and a valid token, and then generates an initial connection request or a non-initial connection request for the target wireless network.

[0088] Please see Figure 4 In some embodiments, step S101 may include, but is not limited to, steps S401 to S405: Step S401: Obtain the valid mobile phone number and current token of the user terminal. If the acquisition fails, it is determined that the user terminal does not include a valid mobile phone number and a valid token.

[0089] In step S401 of some embodiments, the valid mobile phone number and current token of the user terminal are obtained.

[0090] Understandably, if the acquisition fails, it indicates that the user terminal does not include a valid mobile phone number and a valid token.

[0091] Step S402: Obtain the expiration time of the current token.

[0092] Specifically, the token includes an expiration time.

[0093] In step S402 of some embodiments, the expiration time of the current token is obtained.

[0094] Step S403: Determine whether the current time has exceeded the expiration time.

[0095] In step S403 of some embodiments, it is determined whether the current real time exceeds the expiration time.

[0096] Step S404: If the current time exceeds the expiration time, it is determined that the user terminal does not include a valid mobile phone number and a valid token.

[0097] In step S404 of some embodiments, if the current time exceeds the expiration time, the current token is invalid, and the user terminal does not include a valid mobile phone number and a valid token.

[0098] Step S405: If the current time has not exceeded the expiration time, the current token is determined to be a valid token, and the user terminal is determined to include a valid mobile phone number and a valid token.

[0099] In step S405 of some embodiments, if the current time has not exceeded the expiration time, the current token is determined to be a valid token, and the user terminal is determined to include a valid mobile phone number and a valid token.

[0100] Figure 5 This is a functional module diagram of the mobile phone number-based seamless Wi-Fi authentication system. Figure 6 The authentication method provided in this application embodiment is applied to Figure 5 A sequence diagram illustrating a specific implementation of a mobile phone number-based seamless Wi-Fi authentication system. Figure 6 The methods may include, but are not limited to, the following steps: S1. After the AP is powered on, it initiates registration according to the default configuration of the "Mobile Number Authentication Management Platform" to obtain the J2 address information of the user terminal authentication interface and the assigned AP identity ID number.

[0101] Specifically, an AP (i.e., a router) includes a Wi-Fi access authentication module and a mobile phone number whitelist pool.

[0102] S2, the user terminal initiates an SSID request to connect to the AP, along with an identifier indicating the first access request for mobile number authentication. The "WIFI Access Authentication Module" detects that this is the first mobile number authentication request and returns the J2 address information of the "Mobile Number Authentication Management Platform" and the identity ID number of this AP to the terminal.

[0103] Specifically, SSID refers to the target wireless network, and J2 is the terminal authentication interface.

[0104] Optionally, the user terminal can be pre-configured with a mobile phone number authentication function to enable mobile phone number authentication to be initiated by default when connecting to the SSID.

[0105] Specifically, in the user terminal's WIFI connection settings page, enable "Use mobile phone number authentication first when connecting to WIFI".

[0106] In some embodiments, when a user terminal connects to a WIFI SSID, there is a "Mobile Number Authentication" button; clicking it will authenticate the user's internet access.

[0107] For example, a diagram of the Wi-Fi connection page (i.e., the wireless network page) is shown below. Figure 7 As shown in the diagram, the WIFI connection settings page is illustrated below. Figure 8 As shown.

[0108] S3, the user terminal initiates mobile phone number authentication to the "Mobile Phone Authentication Management Platform" based on the J2 address and AP identity ID number returned by the "WIFI Access Authentication Module", and at the same time reports the operator information of the user terminal's mobile phone card.

[0109] S4, the "Mobile Authentication Management Platform" acts as an agent, based on the mobile number authentication request and operator information initiated by the user terminal, and initiates the mobile number acquisition to the corresponding "Mobile Operator One-Click Authentication Interface" to obtain the user terminal's mobile number and TOKEN.

[0110] S5, the "Mobile Number Authentication Management Platform" returns the user's mobile number and token to the user terminal.

[0111] S6. The user terminal initiates authentication again with the "WIFI Access Authentication Module" based on the mobile phone number, token, and the operator information of the mobile phone card. If the user terminal already has a mobile phone number and an expired token, the above steps can be skipped, and the user can directly initiate mobile phone number authentication with the AP from this step.

[0112] In some embodiments, during later use, users only need to open the user terminal's WIFI SSID list, click on the SSID name, and the user terminal will initiate mobile phone number authentication first. If authentication fails or the AP itself does not support mobile phone number authentication, the traditional method of entering the password of the SSID in the pop-up password box will be used to access the Internet.

[0113] S7. When the "WIFI Access Authentication Module" receives the user terminal authentication information containing the mobile phone number and TOKEN value, it determines that it is a second mobile phone number authentication and sends the request to the "Mobile Phone Number Authentication Management Platform" for authentication.

[0114] S8, the "Mobile Number Authentication Management Platform" forwards the mobile number, TOKEN, and mobile phone card operator information to the corresponding "Mobile Operator One-Click Authentication Interface" for authentication, and returns a message to the "Mobile Number Authentication Management Platform" to verify whether the mobile number is genuine and consistent.

[0115] S9, the "Mobile Number Authentication Management Platform" will send the authentication results back to the "WIFI Access Authentication Module".

[0116] S10: If the mobile phone number authentication result received by the "WIFI Access Authentication Module" is false, the user terminal is notified that the mobile phone number authentication has failed and should use traditional authentication or re-initiate authentication. If the received mobile phone number authentication result is true, the module checks the "Mobile Phone Number Whitelist Pool" to see if the user terminal's mobile phone number exists.

[0117] S11. If the whitelist of mobile numbers received by the "WIFI Access Authentication Module" is true, the WIFI password containing the AP's SSID will be sent to the user terminal. If the whitelist of mobile numbers received by the "WIFI Access Authentication Module" is false, the mobile number will be denied access to the user terminal. If the authentication result of the mobile number received by the "WIFI Access Authentication Module" is false, the mobile number will be rejected and access will not be allowed to the user terminal.

[0118] S12, the user terminal initiates WIFI access based on the SSID password sent by the "WIFI Access Authentication Module". If the SSID password is correct, access to the network is allowed, enabling the user terminal to access the Internet.

[0119] It should be noted that by using a regular WiFi router as a proxy through a mobile phone number authentication management platform to interact with the mobile operator's one-click authentication interface, the one-click mobile phone number authentication function of the WiFi router can be realized.

[0120] For example, a schematic diagram of the connection completion is shown below. Figure 9 As shown.

[0121] In this embodiment, the user turns on WIFI on the terminal, views the WIFI SSID list, and after confirming that the SSID needs to be logged in, clicks the mobile phone number authentication button on the right to complete the mobile phone number authentication. After being judged as a legitimate user, the user can access the Internet. By using the user's mobile phone number, when connecting to WIFI, connecting to the SSID completes the Internet access authentication, saving time from complicated login operations.

[0122] Please see Figure 10 This application also provides an authentication device that can implement the above-described method. The device includes: The terminal determination module 1001 is used to determine whether the user terminal includes a valid mobile phone number and a valid token. The subsequent request module 1002 is used to generate a non-first connection request through the user terminal based on the valid mobile phone number, the valid token and the name of the target wireless network if the user terminal includes a valid mobile phone number and a valid token. Interface authentication module 1003 is used to receive the non-first connection request through the router and send the valid mobile phone number, the valid token and the operator information value to the router authentication interface, wherein the router corresponds to the target wireless network; The whitelist verification module 1004 is used to obtain the authentication result of the router's authentication interface through the router. If the authentication result includes successful mobile phone number authentication, it queries whether the valid mobile phone number exists in the router's mobile phone number whitelist pool. The password return module 1005 is used to return the password of the target wireless network to the user terminal through the router if the valid mobile phone number exists.

[0123] It is understood that the content of the above method embodiments is applicable to the present device embodiments. The specific functions implemented by the present device embodiments are the same as those of the above method embodiments, and the beneficial effects achieved are also the same as those achieved by the above method embodiments.

[0124] This application also provides an electronic device, which includes a memory and a processor. The memory stores a computer program, and the processor executes the computer program to implement the above-described method. This electronic device can be any smart terminal, including tablet computers, in-vehicle computers, etc.

[0125] It is understood that the content of the above method embodiments is applicable to this device embodiment. The specific functions implemented by this device embodiment are the same as those of the above method embodiments, and the beneficial effects achieved are also the same as those achieved by the above method embodiments.

[0126] Please see Figure 11 , Figure 11 The hardware structure of an electronic device according to another embodiment is illustrated. The electronic device includes: The processor 1101 can be implemented using a general-purpose CPU (Central Processing Unit), microprocessor, application-specific integrated circuit (ASIC), or one or more integrated circuits, and is used to execute relevant programs to implement the technical solutions provided in the embodiments of this application. The memory 1102 can be implemented as a read-only memory (ROM), static storage device, dynamic storage device, or random access memory (RAM). The memory 1102 can store the operating system and other applications. When the technical solutions provided in the embodiments of this specification are implemented through software or firmware, the relevant program code is stored in the memory 1102 and is called and executed by the processor 1101 using the methods described in the embodiments of this application. Input / output interface 1103 is used to implement information input and output; The communication interface 1104 is used to enable communication and interaction between this device and other devices. Communication can be achieved through wired means (such as USB, network cable, etc.) or wireless means (such as mobile network, WIFI, Bluetooth, etc.). Bus 1105 transmits information between various components of the device (e.g., processor 1101, memory 1102, input / output interface 1103, and communication interface 1104); The processor 1101, memory 1102, input / output interface 1103 and communication interface 1104 are connected to each other within the device via bus 1105.

[0127] This application also provides a computer-readable storage medium storing a computer program that, when executed by a processor, implements the above-described method.

[0128] It is understood that the content of the above method embodiments is applicable to this storage medium embodiment. The specific functions implemented in this storage medium embodiment are the same as those in the above method embodiments, and the beneficial effects achieved are also the same as those achieved in the above method embodiments.

[0129] This application also provides a computer program product, including a computer program that, when executed by a processor, implements the above-described method.

[0130] It is understood that the content of the above method embodiments is applicable to the embodiments of this program product. The specific functions implemented by the embodiments of this program product are the same as those of the above method embodiments, and the beneficial effects achieved are also the same as those achieved by the above method embodiments.

[0131] Memory, as a non-transitory computer-readable storage medium, can be used to store non-transitory software programs and non-transitory computer-executable programs. Furthermore, memory may include high-speed random access memory, and may also include non-transitory memory, such as at least one disk storage device, flash memory device, or other non-transitory solid-state storage device. In some embodiments, memory may optionally include memory remotely located relative to the processor, and these remote memories can be connected to the processor via a network. Examples of such networks include, but are not limited to, the Internet, intranets, local area networks, mobile communication networks, and combinations thereof.

[0132] The embodiments described in this application are for the purpose of more clearly illustrating the technical solutions of the embodiments of this application, and do not constitute a limitation on the technical solutions provided by the embodiments of this application. As those skilled in the art will know, with the evolution of technology and the emergence of new application scenarios, the technical solutions provided by the embodiments of this application are also applicable to similar technical problems.

[0133] Those skilled in the art will understand that the technical solutions shown in the figures do not constitute a limitation on the embodiments of this application, and may include more or fewer steps than shown, or combine certain steps, or different steps.

[0134] The device embodiments described above are merely illustrative. The units described as separate components may or may not be physically separate; that is, they may be located in one place or distributed across multiple network units. Some or all of the modules can be selected to achieve the purpose of this embodiment according to actual needs.

[0135] Those skilled in the art will understand that all or some of the steps in the methods disclosed above, as well as the functional modules / units in the systems and devices, can be implemented as software, firmware, hardware, or suitable combinations thereof.

[0136] The terms “first,” “second,” “third,” “fourth,” etc. (if present) in the specification and accompanying drawings of this application are used to distinguish similar objects and are not necessarily used to describe a specific order or sequence. It should be understood that such data can be interchanged where appropriate so that the embodiments of this application described herein can be implemented in orders other than those illustrated or described herein. Furthermore, the terms “comprising” and “having,” and any variations thereof, are intended to cover non-exclusive inclusion; for example, a process, method, system, product, or apparatus that comprises a series of steps or units is not necessarily limited to those steps or units explicitly listed, but may include other steps or units not explicitly listed or inherent to such processes, methods, products, or apparatus.

[0137] It should be understood that in this application, "at least one (item)" means one or more, and "more than" means two or more. "And / or" is used to describe the relationship between related objects, indicating that three relationships can exist. For example, "A and / or B" can represent three cases: only A exists, only B exists, and both A and B exist simultaneously, where A and B can be singular or plural. The character " / " generally indicates that the preceding and following related objects are in an "or" relationship. "At least one (item) of the following" or similar expressions refer to any combination of these items, including any combination of single or plural items. For example, at least one (item) of a, b, or c can represent: a, b, c, "a and b", "a and c", "b and c", or "a and b and c", where a, b, and c can be single or multiple.

[0138] In the several embodiments provided in this application, it should be understood that the disclosed apparatus and methods can be implemented in other ways. For example, the apparatus embodiments described above are merely illustrative; for instance, the division of the units described above is only a logical functional division, and in actual implementation, there may be other division methods. For example, multiple units or components may be combined or integrated into another system, or some features may be ignored or not executed. Furthermore, the coupling or direct coupling or communication connection shown or discussed may be through some interfaces; the indirect coupling or communication connection between apparatuses or units may be electrical, mechanical, or other forms.

[0139] The units described above as separate components may or may not be physically separate. The components shown as units may or may not be physical units; that is, they may be located in one place or distributed across multiple network units. Some or all of the units can be selected to achieve the purpose of this embodiment according to actual needs.

[0140] Furthermore, the functional units in the various embodiments of this application can be integrated into one processing unit, or each unit can exist physically separately, or two or more units can be integrated into one unit. The integrated unit can be implemented in hardware or as a software functional unit.

[0141] If the integrated unit is implemented as a software functional unit and sold or used as an independent product, it can be stored in a computer-readable storage medium. Based on this understanding, the technical solution of this application, in essence, or the part that contributes to the prior art, or all or part of the technical solution, can be embodied in the form of a software product. This computer software product is stored in a storage medium and includes multiple instructions to cause a computer device (which may be a personal computer, server, or network device, etc.) to execute all or part of the steps of the methods of the various embodiments of this application. The aforementioned storage medium includes various media capable of storing programs, such as USB flash drives, portable hard drives, read-only memory (ROM), random access memory (RAM), magnetic disks, or optical disks.

[0142] The preferred embodiments of the present application have been described above with reference to the accompanying drawings, but this does not limit the scope of the claims of the present application. Any modifications, equivalent substitutions, and improvements made by those skilled in the art without departing from the scope and substance of the embodiments of the present application shall be within the scope of the claims of the present application.

Claims

1. An authentication method, characterized in that, The method includes the following steps: Determine whether the user terminal includes a valid mobile phone number and a valid token; If the user terminal includes a valid mobile phone number and a valid token, then a non-first-time connection request is generated by the user terminal based on the valid mobile phone number, the valid token, and the name of the target wireless network. The router receives the non-first connection request and sends the valid mobile phone number, the valid token, and the operator information value to the router's authentication interface. The router corresponds to the target wireless network. The authentication result of the router's authentication interface is obtained through the router. If the authentication result includes successful mobile phone number authentication, the valid mobile phone number is queried in the router's mobile phone number whitelist pool. If the valid mobile phone number exists, the password for the target wireless network is returned to the user terminal via the router.

2. The method according to claim 1, characterized in that, The method further includes: Obtain the address information of the router's authentication interface, the address information of the terminal authentication interface, and the router's identification number through the router.

3. The method according to claim 2, characterized in that, The method further includes: If the user terminal does not include a valid mobile phone number and a valid token, then the user terminal generates an initial connection request based on the initial request identifier and the name of the target wireless network. The router receives the initial connection request and returns the address information of the terminal authentication interface and the router's identification number to the user terminal. The user terminal sends the router's identity number and current operator information to the terminal authentication interface, where the current operator information is the mobile phone number operator information of the user terminal. The user terminal obtains the valid mobile phone number and valid token returned by the terminal authentication interface, and returns the steps of generating a non-first-time connection request by the user terminal based on the valid mobile phone number, the valid token and the name of the target wireless network.

4. The method according to claim 1, characterized in that, The method further includes: If the authentication result includes a failed mobile phone number authentication, the authentication result is sent to the user terminal via the router. The authentication result is displayed on the user terminal, prompting the user to re-authenticate or use password authentication.

5. The method according to claim 1, characterized in that, The determination of whether the user terminal includes a valid mobile phone number and a valid token includes: In response to the first instruction, all wireless networks and mobile phone number authentication controls received by the user terminal are displayed on the wireless network page of the user terminal, and the mobile phone number authentication controls correspond one-to-one with the wireless networks; In response to the selection of the target mobile number authentication control, it is determined whether the user terminal includes a valid mobile number and a valid token, wherein the target mobile number authentication control corresponds to the target wireless network.

6. The method according to claim 1, characterized in that, The determination of whether the user terminal includes a valid mobile phone number and a valid token includes: Obtain the valid mobile phone number and current token of the user terminal. If the acquisition fails, it is determined that the user terminal does not include the valid mobile phone number and valid token. Obtain the expiration time of the current token; Determine whether the current time exceeds the specified expiration time; If the current time exceeds the expiration time, it is determined that the user terminal does not include the valid mobile phone number and valid token; If the current time has not exceeded the expiration time, the current token is determined to be a valid token, and the user terminal is determined to include the valid mobile phone number and the valid token.

7. An authentication device, characterized in that, The device includes: The terminal determination module is used to determine whether the user terminal includes a valid mobile phone number and a valid token; The subsequent request module is used to generate a non-first connection request through the user terminal based on the valid mobile phone number, the valid token and the name of the target wireless network if the user terminal includes a valid mobile phone number and a valid token. The interface authentication module is used to receive the non-first connection request through the router and send the valid mobile phone number, the valid token and the operator information value to the router authentication interface. The router corresponds to the target wireless network. The whitelist verification module is used to obtain the authentication result of the router's authentication interface through the router. If the authentication result includes successful mobile phone number authentication, it queries whether the valid mobile phone number exists in the router's mobile phone number whitelist pool. The password return module is used to return the password of the target wireless network to the user terminal through the router if the valid mobile phone number exists.

8. An electronic device, characterized in that, The electronic device includes a memory and a processor, the memory storing a computer program, and the processor executing the computer program to implement the method according to any one of claims 1 to 6.

9. A computer-readable storage medium storing a computer program, characterized in that, When the computer program is executed by a processor, it implements the method of any one of claims 1 to 6.

10. A computer program product, comprising a computer program, characterized in that, When the computer program is executed by a processor, it implements the method of any one of claims 1 to 6.