Terminal access method, electronic device and storage medium
The NFC-based method for configuring CPE parameters addresses the inefficiencies of manual setup, ensuring rapid and secure network access by automating the acquisition and verification of management settings.
Patent Information
- Application Number
- JP2024501244
- Authority / Receiving Office
- JP · JP
- Patent Type
- Patents
- Current Assignee / Owner
- Priority Date
- 2021-07-19
- Filing Date
- 2022-04-13
- Publication Date
- 2025-09-25
- Estimated Expiration
- 2042-04-13
AI Technical Summary
Current methods for configuring customer premises equipment (CPE) parameters are time-consuming, inaccurate, and cumbersome, especially when frequently switching users, and do not guarantee the security and legitimacy of network access.
Implementing a near field communication (NFC) method to automatically acquire and verify management setting information between administrator and visitor terminals, ensuring accurate and secure network access by comparing management and verification information.
Facilitates quick, accurate, and secure network access by eliminating manual configuration, ensuring legitimacy and improving data security through multi-dimensional verification of visitor terminals.
Smart Images

Figure 0007744499000003 
Figure 0007744499000004 
Figure 0007744499000005
Abstract
Description
[Technical Field]
[0001] This disclosure claims priority to Chinese patent application CN202110812469.5, entitled "Terminal Access Method, Device and Terminal," filed on July 19, 2021, the entire contents of which are incorporated by reference.
[0002] The present disclosure relates to the field of communication technology, and Electronic devices and storage media It is related to. [Background technology]
[0003] Customer Premise Equipment (CPE) is connected to not only access network devices but also terminals, and converts mobile communication signals into short-range communication signals (such as mobile hotspot (Wi-Fi) signals) so that terminals can obtain better signals and access the network.
[0004] Currently, users usually manually configure Wi-Fi parameters in a CPE using a terminal connected to the CPE, but this operation method does not guarantee the accuracy of the configuration information and is time-consuming. Summary of the Invention [Problem to be solved by the invention]
[0005] The present disclosure provides a terminal access method, a device, and a terminal. [Means for solving the problem]
[0006] The present disclosure provides a terminal access method including the steps of: when it is determined that the administrator terminal is within a preset range, acquiring management setting information of the administrator terminal for managing the visitor terminal by a near field communication (NFC) method; and determining whether to allow access of the visitor terminal based on the management setting information and verification awaiting information of the visitor terminal.
[0007] The present disclosure provides a terminal access method, including: obtaining management setting information used to manage a visitor terminal; and, when it is determined that the current terminal is within a preset range of a customer premises equipment (CPE), transmitting the management setting information to the CPE by a near field communication (NFC) manner, so that the CPE determines whether to allow access of the visitor terminal based on the management setting information and the verification waiting information of the visitor terminal.
[0008] The present disclosure provides a customer premises equipment including: a first acquisition module arranged to acquire management setting information of the administrator terminal by a near field communication (NFC) method, used for managing the visitor terminal when it is determined that the administrator terminal is within a predetermined range; and an access module arranged to determine whether to allow access of the visitor terminal based on the management setting information and verification waiting information of the visitor terminal.
[0009] The present disclosure provides a routing apparatus that includes at least customer premises equipment.
[0010] The present disclosure provides a terminal including: a second acquiring module arranged to acquire management setting information used for managing a visitor terminal; and a transmitting module arranged to, when it is determined that the current terminal is within a preset range of a customer premises equipment (CPE), transmit the management setting information to the CPE by way of near field communication (NFC), so that the CPE determines whether to allow access of the visitor terminal based on the management setting information and the verification waiting information of the visitor terminal.
[0011] The present disclosure provides an electronic device including one or more processors and a memory having one or more programs stored therein, the one or more programs being executed by the one or more processors, and causing the one or more processors to implement any one of the terminal access methods of the present disclosure.
[0012] The present disclosure provides a readable storage medium having a computer program stored thereon, the computer program implementing any one of the terminal access methods of the present disclosure when executed by a processor. [Brief explanation of the drawings]
[0013] [Figure 1] 1 illustrates a flow diagram of a terminal access method provided by an embodiment of the present disclosure; [Figure 2] 1 illustrates a flow diagram of a terminal access method provided by another embodiment of the present disclosure; [Figure 3] 10 shows a flow diagram of a terminal access method provided by a further embodiment of the present disclosure; [Figure 4] 1 illustrates a schematic diagram of a customer premises equipment configuration provided by an embodiment of the present disclosure. [Figure 5] 1 illustrates a schematic configuration diagram of a routing device provided by an embodiment of the present disclosure; [Figure 6] 1 illustrates a schematic configuration diagram of a terminal provided by an embodiment of the present disclosure. [Figure 7] 1 illustrates a compositional block diagram of a terminal access system provided by one embodiment of the present disclosure. [Figure 8] 1 illustrates a schematic configuration diagram of a wireless routing device in a terminal access system provided by an embodiment of the present disclosure; [Figure 9] 1 illustrates a schematic configuration diagram of a terminal in a terminal access system provided by an embodiment of the present disclosure; [Figure 10] 1 illustrates a compositional block diagram of a terminal access system provided by another embodiment of the present disclosure. [Figure 11] 1 illustrates a flow diagram of a method for deploying a wireless routing device using an administrator terminal provided by an embodiment of the present disclosure; [Figure 12] 2 illustrates a flow diagram of a method for accessing a wireless routing device using a visitor terminal provided by an embodiment of the present disclosure; [Figure 13]1 illustrates a structural diagram of an exemplary hardware architecture of a computing device capable of implementing a terminal access method and apparatus according to an embodiment of the present disclosure. DETAILED DESCRIPTION OF THE INVENTION
[0014] In order to make the objectives, technical solutions and advantages of the present disclosure clearer and easier to understand, the embodiments of the present disclosure are described in detail below in conjunction with the drawings. It should be noted that the embodiments and features of the embodiments in the present disclosure can be arbitrarily combined with each other unless they are inconsistent.
[0015] CPEs are connected not only to access network devices but also to terminals. CPEs convert mobile communication signals into short-range communication signals (such as mobile hotspot (Wi-Fi) signals) to enable terminals to obtain better signals and access the network.
[0016] When setting parameters in a CPE, a user typically sets the CPE using a terminal (e.g., a computer or smartphone) connected to the CPE, and an application compatible with the CPE is installed on the computer or smartphone. To set the CPE parameters, the user must log in to the application, which takes a long time. Furthermore, manually setting the CPE parameters cannot guarantee the accuracy of the setting information and is a cumbersome operation.
[0017] Although a CPE may have a Near Field Communication (NFC) function, the configuration information for typical NFC can only store one username and password. If it is determined that the device connected to the CPE needs to be frequently switched, the user must manually log in to the application on the device and configure the CPE every time they change users, which is cumbersome and reduces the user experience.
[0018] 1 shows a flow diagram of a terminal access method provided by an embodiment of the present disclosure. The terminal access method can be applied to customer premises equipment (CPE), which may be installed in a routing device. As shown in FIG. 1, the terminal access method according to the present disclosure may include the following steps:
[0019] Step S101: If it is determined that the administrator terminal is within a preset range, the management setting information of the administrator terminal is acquired by the near field communication (NFC) method.
[0020] Here, the management setting information is used to manage the visitor terminal.
[0021] For example, when it is determined that the administrator terminal is within a predetermined range (for example, the distance between the administrator terminal and the customer premises equipment is 5 m), the customer premises equipment can use the built-in NFC module to read the management setting information in the built-in NFC module of the administrator terminal, so that the customer premises equipment can authenticate different visitor terminals based on the management setting information, eliminating the need for users to manually set the configuration information in the customer premises equipment and ensuring the accuracy of the configuration information in the customer premises equipment.
[0022] Step S102: Based on the management setting information and the verification waiting information of the visitor terminal, it is determined whether to permit access from the visitor terminal.
[0023] Here, the verification awaiting information of the visitor terminal is used to characterize the ID information of the visitor terminal, and when the customer premises equipment obtains this verification awaiting information of the visitor terminal, it compares this verification awaiting information with the management setting information to determine whether the visitor terminal is a legitimate terminal, and if it is determined that the visitor terminal is a legitimate terminal, it allows the visitor terminal to access the customer premises equipment, thereby ensuring the legitimacy of the visitor terminal accessing the customer premises equipment and preventing other terminals that do not pass authentication from using the network resources provided by the customer premises equipment, thereby improving data security in the network.
[0024] In this embodiment, when it is determined that the administrator terminal is within a predetermined range, the management setting information of the administrator terminal is quickly obtained using the near field communication (NFC) method without the user having to manually configure it, thereby ensuring the accuracy of the management setting information and allowing the visitor terminal to quickly access the network, which is very convenient for the user. Whether to allow the visitor terminal to access is determined based on the management setting information and the visitor terminal's verification awaiting information, thereby ensuring the legitimacy of the visitor terminal.
[0025] In some examples, in step S101 of the present disclosure, before the step of obtaining management setting information of the administrator terminal by a near field communication (NFC) method when it is determined that the administrator terminal is within a predetermined range, the method further includes the step of reading verification awaiting information of the visitor terminal by a NFC method when it is determined that the visitor terminal is within a predetermined range.
[0026] Here, the visitor terminal is also a terminal equipped with an NFC function, and when it is determined that the visitor terminal is within a preset range, the customer premises equipment can use the built-in NFC module to read the information waiting for verification in the built-in NFC module of the administrator terminal, thereby facilitating the verification of the ID of the visitor terminal.
[0027] For example, the information to be verified may include one or more of a visitor terminal identifier, a visitor service set identifier, a visitor password, a visitor encryption method, and a visitor authentication method.
[0028] By verifying the visitor terminal using multi-dimensional configuration information, the authenticity of the visitor terminal's ID can be guaranteed, and other terminals that do not pass authentication can be prevented from using network resources provided by the customer premises equipment, thereby improving data security in the network.
[0029] 2 shows a flow diagram of a terminal access method provided by another embodiment of the present disclosure. The terminal access method can be applied to customer premises equipment (CPE) that may be installed in a routing device. The difference between this embodiment and the previous embodiment is that the method obtains Wi-Fi status information of the current device and determines whether to read the management setting information of the administrator terminal based on whether the administrator terminal is within a preset range.
[0030] As shown in FIG. 2, the terminal access method in the present disclosure may include the following steps.
[0031] Step S201: Obtain Wi-Fi status information of the current device.
[0032] Here, the Wi-Fi state information includes an on state or an off state.
[0033] Step S202: If it is determined that the administrator terminal is within a preset range and the Wi-Fi state of the current device is in an off state, turn the Wi-Fi state on.
[0034] By setting the Wi-Fi status, the Wi-Fi function in the customer premises equipment is activated, and the administrator terminal can set parameters related to the Wi-Fi function, so that the visitor terminal can connect to the customer premises equipment, speed up the visitor terminal's access to the network, and improve the user experience.
[0035] Step S203: The management setting information of the administrator terminal is read by the NFC method.
[0036] Here, the management setting information may include one or more of an administrator terminal identifier, a pre-defined service set identifier, a pre-defined password, a pre-defined encryption method, and a pre-defined authentication method.
[0037] The management setting information can be stored in a storage unit of the administrator terminal (e.g., a storage module corresponding to an NFC module built into the administrator terminal) based on a predetermined data format. When it is determined that the administrator terminal is within a predetermined range, the NFC module reads the management setting information stored in the storage unit of the administrator terminal and uses the management setting information to update the configuration information in the customer premises equipment, facilitating the verification of various visitor terminals that require access.
[0038] Step S204: Based on the management setting information and the verification waiting information of the visitor terminal, it is determined whether to permit access of the visitor terminal.
[0039] If it is determined that the management setting information and the verification waiting information of the visitor terminal are the same, it is determined to allow the visitor terminal to access, otherwise it is determined to deny the access request of the visitor terminal.
[0040] In some examples, after the step of determining whether to allow access to the visitor terminal based on the management setting information and the visitor terminal's verification pending information, if it is determined that the Wi-Fi state of the current device is on and the visitor terminal is not within a preset range, the method further includes the step of turning the Wi-Fi state off and updating the management setting information using the preset information.
[0041] Here, the pre-set information may include conventional user setting information that is initially set by the administrator terminal.
[0042] For example, the setting information of the terminals used by family members, the default setting information of the device, etc. The above is only an example of the pre-set information, which can be set according to actual needs, and other pre-set information not described is also within the scope of protection of the present disclosure and will not be repeated here.
[0043] In some instances, the pre-configured information may be maintained consistent with the data format of the administrative settings information to facilitate updating of the administrative settings information.
[0044] In this embodiment, when the administrator terminal is within a predetermined range and the Wi-Fi status of the current device is determined to be off, the Wi-Fi status can be turned on to quickly activate the Wi-Fi function of the customer premises equipment. In addition, by reading the management setting information of the administrator terminal using NFC, the parameters related to the Wi-Fi function of the administrator terminal can be quickly set, which can facilitate the subsequent verification of the visitor terminal and ensure the authenticity of the visitor terminal's ID.
[0045] In step S204 of the present disclosure, the step of determining whether to allow access from the visitor terminal based on the management setting information and the verification waiting information of the visitor terminal can further be realized by comparing a pre-defined service set indicator with a visitor service set indicator to obtain an indicator comparison result, comparing a pre-defined password with a visitor password to obtain a password comparison result, and determining whether to allow access from the visitor terminal based on the indicator comparison result and the password comparison result.
[0046] Here, the management setting information includes a pre-defined service set indicator and a pre-defined password, and the verification waiting information includes a visitor service set indicator and a visitor password.
[0047] The visitor service set identifier and visitor password of the visitor terminal are verified respectively, and only when it is determined that the identifier comparison result and the password comparison result are the same, it is determined that the visitor terminal is permitted to access the customer premises equipment, thereby ensuring the legitimacy of the visitor terminal that has accessed the customer premises equipment and improving the security of the network connection.
[0048] In some examples, the step of determining whether to allow access to the visitor terminal based on the indicator comparison result and the password comparison result includes the step of obtaining a confirmation indicator fed back at the visitor terminal when it is determined that the indicator comparison result is the same and the password comparison result is the same, and the step of determining to allow access to the visitor terminal based on the confirmation indicator.
[0049] Here, the confirmation indicator fed back by the visitor terminal is characterized by using the confirmation information of the user of the visitor terminal, which can further confirm the visitor terminal's access to the customer premises equipment, ensuring that this access is in line with the user's needs and is consented to by the user, thereby preventing the visitor terminal from randomly accessing a network with insufficient security and improving the data security of the visitor terminal.
[0050] In some examples, the management setting information further includes a pre-defined encryption method, and the information to be verified further includes a visitor encryption method, and before the step of comparing the pre-defined service set indicator with the visitor service set indicator and obtaining an indicator comparison result, the method further includes the step of comparing the pre-defined encryption method with the visitor encryption method and obtaining an encryption method matching result, and if the encryption method matching result determines that the encryption methods are the same, the method further includes the step of decrypting the encryption information in the information to be verified and obtaining a visitor service set indicator and a visitor password.
[0051] Here, the encryption method may include one or more of a symmetric encryption method, an asymmetric encryption method, and a hash algorithm encryption method.
[0052] Only when the preset encryption method and the visitor encryption method are consistent can the encrypted information in the information to be verified be decrypted to obtain the visitor service set identifier and visitor password. The accuracy of the obtained visitor service set identifier and visitor password can be guaranteed, and the encryption method can also be used to ensure the security of the visitor service set identifier and visitor password during data transmission.
[0053] For example, since the pre-defined encryption method and the visitor encryption method are both symmetric encryption methods, a decryption method corresponding to the symmetric encryption method can be used to decrypt the encrypted information in the information to be verified, and the visitor service set identifier and visitor password can be obtained and used to further verify the visitor terminal, thereby improving the accuracy of the verification.
[0054] In some examples, the management setting information further includes a pre-defined authentication method, and the information to be verified further includes a visitor authentication method, and before the step of comparing the pre-defined encryption method with the visitor encryption method and obtaining an encryption method matching result, the method further includes the step of comparing the pre-defined authentication method with the visitor authentication method and obtaining an authentication matching result, and if the authentication matching result determines that the authentication methods are the same, the method further includes the step of comparing the pre-defined encryption method with the visitor encryption method and obtaining an encryption method matching result.
[0055] Here, a pre-established authentication scheme is used to verify whether the terminal waiting for access has the right to access the data.
[0056] For example, the administrator terminal has the greatest data access authority, and the administrator terminal can set relevant parameters in the customer premises equipment and facilitate the verification of the visitor terminal. However, the visitor terminal has less data access authority than the administrator terminal. By accessing the customer premises equipment, the visitor terminal can only use network resources and cannot set relevant parameters in the customer premises equipment. This prevents unauthorized visitor terminals from arbitrarily changing relevant parameters in the customer premises equipment and ensures the security of the customer premises equipment.
[0057] In addition, to ensure the accuracy of the authentication, the visitor terminal can be further verified only if the authentication method is determined to be the same as the authentication verification result.
[0058] 3 shows a flow diagram of a terminal access method provided by a further embodiment of the present disclosure, which can be applied to a terminal. As shown in FIG. 3, the terminal access method according to the present disclosure may include the following steps:
[0059] Step 301: Obtain management setting information.
[0060] Here, the management setting information is used to manage the visitor terminal.
[0061] In some examples, the management setting information includes one or more of an administrator identifier, a pre-configured service set identifier, a pre-configured password, a pre-configured authentication method, and a pre-configured encryption method.
[0062] Here, the administrator indicator is used to characterize that the current terminal has a higher usage authority than the visitor terminal.
[0063] The configuration and management of customer premises equipment through multi-dimensional configuration information can ensure multi-dimensional verification of visitor terminals, prevent unauthorized visitors from accessing the network, and improve data security in the network.
[0064] Step 302: If it is determined that the current terminal is within a preset range of the customer premises equipment, transmit management setting information to the CPE through the near field communication (NFC) method.
[0065] Here, when it is determined that the current terminal is within a predetermined range (for example, the distance between the current terminal and the customer premises equipment is 6 m), the front terminal transmits the management setting information to the CPE via the built-in NFC module, allowing the CPE to quickly and accurately obtain the management setting information, eliminating the need for manual configuration and ensuring the accuracy of the management setting information.
[0066] When the CPE acquires the management setting information, the CPE determines whether to permit access of the visitor terminal based on the management setting information and the information awaiting verification of the visitor terminal.
[0067] Here, the verification waiting information includes one or more of a visitor service set identifier, a visitor password, a visitor authentication method, and a visitor encryption method. The verification waiting information of the visitor terminal is set using information collated with the management setting information, thereby ensuring the accuracy of the verification of the visitor terminal.
[0068] In this embodiment, after obtaining the management setting information, if it is determined that the current terminal is within a preset range of the customer premises equipment (CPE), the obtained management setting information is transmitted to the CPE via near field communication (NFC), eliminating the need for manual configuration and ensuring the accuracy of the management setting information. The CPE then determines whether to allow the visitor terminal to access based on the management setting information and the visitor terminal's verification waiting information, thereby enabling the legitimate visitor terminal to quickly and accurately access the network and obtain the required network resources.
[0069] The customer premises equipment according to the present disclosure will be described in detail below with reference to the accompanying drawings. Figure 4 shows a schematic diagram of the configuration of the customer premises equipment according to the present disclosure. As shown in Figure 4, the customer premises equipment 400 includes a first acquisition module 401 and an access module 402.
[0070] The first acquisition module 401 is configured to acquire management setting information of the administrator terminal, which is used to manage the visitor terminal, through the near field communication (NFC) method when it is determined that the administrator terminal is within a predetermined range.
[0071] The access module 402 is configured to determine whether to allow access for the visitor terminal based on the management setting information and the verification pending information of the visitor terminal.
[0072] In this embodiment, when the first acquisition module determines that the administrator terminal is within a predetermined range, the management setting information of the administrator terminal is quickly acquired using near-field communication (NFC) without the user having to manually configure it, thereby ensuring the accuracy of the management setting information and allowing the visitor terminal to quickly access the network, which is very convenient for the user.The access module uses the management setting information and the visitor terminal's verification awaiting information to determine whether to allow access, thereby ensuring the legitimacy of the visitor terminal.
[0073] 5 is a structural schematic diagram of a routing device provided by the present disclosure. As shown in FIG. 5, the routing device 500 includes at least the customer premises equipment 400 shown in FIG.
[0074] For example, the customer premises equipment 400 may include a first acquisition module 401 and an access module 402. Here, the first acquisition module 401 is configured to acquire management setting information of the administrator terminal through near field communication (NFC) when it is determined that the administrator terminal is within a predetermined range, which is used to manage the visitor terminal; and the access module 402 is configured to determine whether to allow access of the visitor terminal based on the management setting information and the verification waiting information of the visitor terminal.
[0075] In some examples, the first acquisition module 401 may further be used to acquire the Wi-Fi status of the current device, and if it is determined that the administrator terminal is within a preset range and the Wi-Fi status of the current device is off, to turn on the Wi-Fi status and read the management setting information of the administrator terminal via NFC.
[0076] In some instances, the customer premises equipment 400 further includes an update module configured to, if the Wi-Fi state of the current device is on and it is determined that the visitor terminal is not within a preset range, turn the Wi-Fi state off and update the management configuration information with the preset information.
[0077] In this embodiment, when the first acquisition module determines that the administrator terminal is within a predetermined range, the management setting information of the administrator terminal is quickly acquired using near-field communication (NFC) without the user having to manually configure it, thereby ensuring the accuracy of the management setting information and allowing the visitor terminal to quickly access the network, which is very convenient for the user.The access module uses the management setting information and the visitor terminal's verification awaiting information to determine whether to allow access, thereby ensuring the legitimacy of the visitor terminal.
[0078] 6 shows a schematic diagram of the configuration of a terminal provided by the present disclosure. As shown in FIG. 6, the terminal 600 includes a second acquiring module 601 and a transmitting module 602.
[0079] Here, the second obtaining module 601 is configured to obtain management setting information used for managing the visitor terminal, and the transmitting module 602 is configured to, when it is determined that the current terminal is within a preset range of a customer premises equipment (CPE), transmit the management setting information to the CPE through a near field communication (NFC) manner, so that the CPE determines whether to allow the visitor terminal to access based on the management setting information and the verification waiting information of the visitor terminal.
[0080] In this embodiment, the second acquisition module acquires the management setting information, and when the transmission module determines that the current terminal is within a predetermined range of the customer premises equipment (CPE), the acquired management setting information is transmitted to the CPE via near field communication (NFC), eliminating the need for manual configuration and ensuring the accuracy of the management setting information. The CPE then determines whether to allow the visitor terminal to access based on the management setting information and the visitor terminal's verification waiting information, thereby enabling the legitimate visitor terminal to quickly and accurately access the network and obtain the required network resources.
[0081] 7 shows a block diagram of a terminal access system provided by an embodiment of the present disclosure. As shown in FIG. 7, the terminal access system includes a wireless routing device 710 and a terminal 720.
[0082] Here, the wireless routing device 710 includes a short-range wireless communication module 711. At the same time, in order for the terminal 720 to be able to perform short-range communication with the wireless routing device 710, the terminal 720 also needs to have a short-range communication module.
[0083] The short-range wireless communication module 711 can perform short-range communication with the terminal 720, so that the configuration of the wireless routing device 710 is realized by the terminal 720, and / or the terminal 720 can connect to the wireless routing device 710 via the terminal 720, so that the terminal 720 can connect to the Internet to obtain network information.
[0084] In some instances, Figure 8 illustrates a schematic diagram of a wireless routing device in a terminal access system provided by the present disclosure. As shown in Figure 8, the wireless routing device 710 includes a first short-range wireless communication module 711, a Wi-Fi module 712, and a tag module 713.
[0085] Here, the tag module 713 has an NFC tag function. For example, the first short-range wireless communication module 711 may be an NFC card reader.
[0086] In some instances, Figure 9 illustrates a schematic diagram of a terminal in the terminal access system provided by the present disclosure. As shown in Figure 9, the terminal 720 includes a second short-range wireless communication module 721.
[0087] Here, the second short-range wireless communication module 721 can also be an NFC card reader, and the terminal 720 must also have an NFC tag function.
[0088] In the process of using the terminal 720 to communicate with the wireless routing device 710, an antenna induction area corresponding to the first short-range wireless communication module 711 of the terminal 720 approaching the wireless routing device 710 may be used to enable the second short-range wireless communication module 721 in the terminal 720 to interact with the first short-range wireless communication module 711 and read related setting information and / or checking information in the terminal 720.
[0089] In this embodiment, the second long-distance wireless communication module in the terminal interacts with the first long-distance wireless communication module to realize the configuration of the wireless routing device through a short-distance communication method, or to enable the terminal to connect to the Internet through the wireless routing device, thereby quickly realizing network interconnection between different devices and improving the convenience of device operation, while at the same time speeding up the network access speed of visitor terminals and improving user experience.
[0090] 10 shows a configuration diagram of a terminal access system provided by another embodiment of the present disclosure. As shown in FIG. 10, the terminal access system includes an administrator terminal 1001, a visitor terminal 1002, and a wireless routing device 1003.
[0091] Here, the administrator terminal 1001 is used to set the wireless routing device 1003 using pre-established management setting information so that the wireless routing device 1003 will allow the visitor terminal 1002 to access.
[0092] For example, the management setting information may include one or more of a terminal type indicator, a predefined service set indicator, a predefined password, a predefined encryption method, and a predefined authentication method, and the management setting information may be represented using the NFC Data Exchange Format (NDEF).
[0093] Here, the terminal type indicator includes an administrator terminal or a visitor terminal. When the administrator terminal 1001 is within a preset range of the wireless routing device 1003, the wireless routing device 1003 can read the management setting information of the administrator terminal 1001 through the first short-range wireless communication module 711. If it is determined that the terminal type indicator is an administrator terminal, it queries the status of the Wi-Fi module 712. If it is determined that the Wi-Fi module 712 is off, it starts up the Wi-Fi module 712 and configures it to record the management setting information in the tag module 713.
[0094] When the visitor terminal 1002 is within a preset range of the wireless routing device 1003, the wireless routing device 1003 can read the information to be verified in the visitor terminal 1002 through the first short-range wireless communication module 711, and the information to be verified may include one or more of a visitor service set identifier, a visitor password, a visitor encryption method, and a visitor authentication method. The information to be verified is compared with the management setting information to determine whether to allow the visitor terminal 1002 to access the wireless routing device 1003.
[0095] If the Wi-Fi module 712 is in an ON state and it is determined that the visitor terminal 1002 is not within a predetermined range, the Wi-Fi module 712 is turned OFF, and the management setting information is updated using the preset information, or the management setting information is directly cleared.
[0096] Here, the pre-set information may include, for example, conventional user setting information initially set by the administrator terminal 1001, such as setting information for terminals used by family members. The data format of the pre-set information and the data format of the management setting information are the same. This can ensure the legitimacy of visitor terminals and ensure the security of network resources by preventing anonymous users from connecting to the wireless routing device 1003.
[0097] 11 is a flow diagram illustrating a method for configuring a wireless routing device using an administrator terminal provided by the present disclosure. As shown in FIG. 11, the method for configuring a wireless routing device 1003 using an administrator terminal includes steps S1101 to S1105.
[0098] Step S1101: The administrator terminal 1001 approaches the wireless routing device 1003, and if the wireless routing device 1003 determines that the administrator terminal 1001 is within a predetermined range, it acquires the management setting information of the administrator terminal 1001 using the near field communication (NFC) method.
[0099] For example, the wireless routing device 1003 reads Wi-Fi pairing information from the NFC tag of the administrator terminal 1001 and sets the Wi-Fi pairing information as management setting information. Here, the data structure in which data is stored in the NFC tag of the wireless routing device 1001 (i.e., the data structure corresponding to the management setting information) is as shown in Table 1.
[0100] [Table 1]
[0101] Here, the management setting information includes one or more of a terminal type, a preset service set identifier, a preset password, a preset authentication method, and a preset encryption method.
[0102] The terminal type may be an administrator terminal or a visitor terminal. For example, if the terminal type is determined to be 0, it means that the data stored in the NFC tag is the visitor terminal data, and if the terminal type is determined to be 1, it means that the data stored in the NFC tag is the administrator terminal data.
[0103] The predefined service set identifier may be a service set identifier (SSID) pre-stored in the administrator terminal, and the predefined password is a password corresponding to the predefined SSID. The predefined authentication method (AuthType) is used to verify whether the terminal waiting for access has the right to access data, and the predefined encryption method (EncryType) indicates a method for encrypting data, and for example, the predefined encryption method may include one or more of a symmetric encryption method, an asymmetric encryption method, and a hash algorithm encryption method.
[0104] Step S1102: The wireless routing device 1003 determines whether the terminal within the preset range is an administrator terminal based on the management setting information.
[0105] The data structure corresponding to the verification-awaiting information stored in the NFC tag of the visitor terminal 1002 is the same as the data structure shown in Table 1. Here, the verification-awaiting information includes one or more of the terminal type, visitor service set identifier, visitor password, visitor authentication method, and visitor encryption method. However, the terminal type in the verification-awaiting information is a visitor terminal. This allows the wireless routing device 1003 to distinguish between terminals of different types.
[0106] Here, the data structure in which data is stored in the NFC tag of the wireless routing device 1003 is as shown in Table 2.
[0107] [Table 2]
[0108] If it is determined that the terminal within the preset range is an administrator terminal, execute step S1103. Otherwise, if it is determined that the terminal within the preset range is not an administrator terminal, end the flow.
[0109] Step S1103: The wireless routing device 1003 determines whether the Wi-Fi module 712 therein is in an on state.
[0110] If it is determined that the Wi-Fi module 712 is in an on state, execute step S1105; otherwise, if it is determined that the terminal within the preset range is not an administrator terminal, execute step S1104.
[0111] Step S1104: The Wi-Fi module 712 is turned on, and the management setting information of the administrator terminal 1001 is written to the NFC tag of the wireless routing device 1003.
[0112] When step S1104 has been executed, the flow ends.
[0113] Step S1105: Turn off the Wi-Fi module 712, and update the management setting information in the NFC tag of the wireless routing device 1003 using pre-set information, or directly clear the information in the NFC tag of the wireless routing device 1003.
[0114] Here, the pre-set information may be, for example, conventional user setting information initially set by the wireless routing device 1003, such as setting information of a terminal used by a family member.
[0115] In this embodiment, the wireless routing device is configured using the administrator terminal via NFC, so that the wireless routing device can accurately and quickly obtain management setting information and set the operating status of the Wi-Fi module accordingly, without the need for manual configuration by the user. This ensures the accuracy of the management setting information and allows visitor terminals to quickly access the network, which is very convenient for users.
[0116] 12 is a flow diagram illustrating a method for accessing a wireless routing device using a visitor terminal provided by the present disclosure. As shown in FIG. 12, the method for accessing a wireless routing device using a visitor terminal includes the following steps S1201 to S1205.
[0117] Step S1201: When the visitor terminal 1002 approaches the wireless routing device 1003 and the wireless routing device 1003 determines that the visitor terminal 1002 is within a preset range, it reads the check waiting information in the visitor terminal 1002 by the NFC method.
[0118] For example, the visitor terminal 1002 enters the NFC induction area of the wireless routing device 1003, and the wireless routing device 1003 reads the check waiting information in the NFC tag module of the visitor terminal 1002 via its own NFC reader.
[0119] Step S1202: The wireless routing device 1003 determines whether the terminal within the preset range is an administrator terminal based on the check waiting information.
[0120] If it is determined that the terminal within the preset range is not an administrator terminal, i.e., that the terminal is a visitor terminal, step S1203 is executed. Otherwise, if it is determined that the terminal within the preset range is not an administrator terminal, the flow ends.
[0121] Step S1203: The visitor terminal 1002 reads the management setting information in the wireless routing device 1003 by using the NFC method.
[0122] For example, the visitor terminal 1002 reads the management setting information in the NFC tag module of the wireless routing device 1003 via its own NFC reader.
[0123] Step S1204: The visitor terminal 1002 compares the management setting information in the wireless routing device 1003 with its own verification waiting information to obtain the confirmation indicator fed back by the user, and displays a connection prompt to the user.
[0124] Here, the management setting information includes a pre-defined service set indicator and a pre-defined password, and the verification waiting information includes a visitor service set indicator and a visitor password.
[0125] In addition to comparing the management setting information with its own awaiting verification information, if the visitor terminal 1002 determines that the visitor password is the same as the pre-established password and that the visitor service set indicator is the same as the pre-established service set indicator, it generates a connection prompt based on the pre-established service set indicator to obtain a confirmation indicator for the user to feedback, and displays the pre-established service set indicator to the user.
[0126] Step S1205: The visitor terminal 1002 transmits the acquired confirmation indicator to the wireless routing device 1003 so that the wireless routing device 1003 can permit the visitor terminal 1002 to access.
[0127] Here, the confirmation indicator is used to characterize the visitor terminal 1002 determining that it needs to make a network connection.
[0128] If it is determined that the wireless routing device 1003 acquires the confirmation indicator and that the check waiting information matches the management setting information, it is determined that the wireless routing device 1003 will allow the visitor terminal 1002 to access the network so that the visitor terminal 1002 can access the network and acquire the necessary network information.
[0129] In this embodiment, when it is determined that the visitor terminal is within the predetermined range, the verification waiting information of the visitor terminal is authenticated using the management setting information acquired during interaction with the administrator terminal to obtain a confirmation indicator for user feedback, and a connection prompt is displayed to the user. The confirmation indicator can further reconfirm that the visitor terminal is accessing the wireless routing device, ensuring that the access is in line with the user's needs and is consented to by the user, thereby improving data security of the visitor terminal. Furthermore, the visitor terminal can be verified quickly and accurately without manually reconfiguring the relevant setting information of the wireless routing device, thereby improving the convenience of operating the wireless routing device.
[0130] It should be apparent that the present disclosure is not limited to the specific settings and processes described in the above embodiments and illustrated in the drawings. Detailed descriptions of known methods are omitted here for convenience and brevity, and the specific operation processes of the above-mentioned systems, modules, and units can refer to the corresponding processes in the above-mentioned method embodiments, and will not be repeated here.
[0131] FIG. 13 illustrates a structural diagram of an exemplary hardware architecture of a computing device capable of implementing the terminal access method and apparatus according to the present disclosure.
[0132] 13, the computing device 1300 includes an input device 1301, an input interface 1302, a central processor 1303, a memory 1304, an output interface 1305, and an output device 1306. Here, the input interface 1302, the central processor 1303, the memory 1304, and the output interface 1305 are connected to each other via a bus 1307, and the input device 1301 and the output device 1306 are connected to the bus 1307 via the input interface 1302 and the output interface 1305, respectively, and are further connected to other components of the computing device 1300.
[0133] In one exemplary embodiment, the input device 1301 receives input information from the outside and transmits the input information to the central processor 1303 via the input interface 1302, which processes the input information based on computer-executable instructions stored in the memory 1304 to generate output information, stores the output information temporarily or permanently in the memory 1304, and transmits the output information via the output interface 1305 to the output device 1306, which outputs the output information outside the computing device 1300 for user use.
[0134] In one embodiment, the computing device shown in FIG. 13 may be implemented as an electronic device, which may include a memory arranged to store a program, and a processor arranged to execute the program stored in the memory to perform the terminal access method described in the above embodiment.
[0135] In one embodiment, the computing device shown in FIG. 13 may be implemented as a terminal access system, which may include a memory arranged to store a program, and a processor arranged to execute the program stored in the memory to perform the terminal access method described in the above embodiment.
[0136] The above are merely exemplary embodiments of the present disclosure and do not limit the scope of protection of the present disclosure. Generally, various embodiments of the present disclosure can be realized in hardware or dedicated circuits, software, logic, or any combination thereof. For example, some aspects can be realized in hardware, while other aspects can be realized in firmware or software that can be executed by a controller, microprocessor, or other computing device, but the present disclosure is not limited thereto.
[0137] Embodiments of the present disclosure may be implemented by executing computer program instructions on a data processor of a mobile device, for example, in a processor entity, or by hardware, or by a combination of software and hardware. The computer program instructions may be assembly instructions, Instruction Set Architecture (ISA) instructions, machine instructions, machine-related instructions, microcode, firmware instructions, state setting data, or source or object code written in any combination of one or more programming languages.
[0138] Any logic flow block diagrams in the figures of this disclosure may represent program steps, interconnectable logic circuits, modules, and functions, or combinations of program steps and logic circuits, modules, and functions. Computer programs may be stored on memory. The memory may be of any type suitable for the local technology environment and may be implemented using any suitable data storage technology, such as, but not limited to, read-only memory (ROM), random access memory (RAM), optical memory devices and systems (digital versatile disks, DVDs, or CD-ROMs). Computer-readable media may include non-transitory storage media. Data processors may be of any type suitable for the local technology environment, such as, but not limited to, general-purpose computers, special-purpose computers, microprocessors, digital signal processors (DSPs), application-specific integrated circuits (ASICs), programmable logic devices (FPGAs), and processors based on multi-core processor architectures.
[0139] A detailed description of exemplary embodiments of the present disclosure has been provided above by way of illustrative and non-limiting examples. However, various modifications and adjustments to the above embodiments will be apparent to those skilled in the art when considered in conjunction with the drawings and claims, without departing from the scope of the present disclosure. Accordingly, the appropriate scope of the present disclosure is determined according to the claims.
Claims
1. A terminal access method applied to customer premises equipment, comprising: When it is determined that the administrator terminal is within a predetermined range, acquiring management setting information of the administrator terminal for managing the visitor terminal by a near field communication (NFC) method; determining whether to permit access of the visitor terminal based on the management setting information and the verification waiting information of the visitor terminal; The management setting information includes a preset service set indicator and a preset password, and the verification waiting information includes a visitor service set indicator and a visitor password; The step of determining whether to permit access of the visitor terminal based on the management setting information and the verification waiting information of the visitor terminal includes: comparing the predetermined service set indicator with the visitor service set indicator to obtain an indicator comparison result; comparing the predetermined password with the visitor password and obtaining a password comparison result; and determining whether to permit access to the visitor terminal based on the result of the comparison between the signature and the password.
2. When it is determined that the administrator terminal is within a predetermined range, the step of acquiring management setting information of the administrator terminal by a near field communication (NFC) method includes: obtaining customer premises equipment Wi-Fi status information; If it is determined that the administrator terminal is within the preset range and a Wi-Fi status of the customer premises equipment is in an off state, turning the Wi-Fi status into an on state; The terminal access method according to claim 1 , further comprising: reading management setting information of the administrator terminal by the NFC method.
3. After the step of determining whether to allow access to the visitor terminal based on the management setting information and the verification waiting information of the visitor terminal, If a Wi-Fi state of a current device is in an on state and it is determined that the visitor terminal is not within the preset range, turning the Wi-Fi state off; 2. The terminal access method of claim 1, further comprising the step of: updating the management configuration information with pre-configured information.
4. The step of determining whether to permit access to the visitor terminal based on the signature comparison result and the password comparison result includes: If the indicator comparison result is determined to be the same and the password comparison result is determined to be the same, obtaining a confirmation indicator fed back at the visitor terminal; and determining whether to allow access to the visitor terminal based on the confirmation indicator.
5. The management setting information further includes a preset encryption method, and the verification waiting information further includes a visitor encryption method; Before the step of comparing the predetermined service set indicator with the visitor service set indicator and obtaining an indicator comparison result, comparing the preset encryption method with the visitor encryption method to obtain an encryption method matching result; 2. The terminal access method according to claim 1, further comprising the step of: when it is determined that the encryption methods are the same as a result of the encryption method comparison, decrypting the encrypted information in the information to be verified and obtaining the visitor service set indicator and the visitor password.
6. the management setting information further includes a preset authentication method, and the verification waiting information further includes a visitor authentication method; before the step of comparing the preset encryption scheme with the visitor encryption scheme and obtaining an encryption scheme matching result, comparing the predetermined authentication method with the visitor authentication method to obtain an authentication comparison result; 6. The terminal access method according to claim 5, further comprising the step of, when it is determined as the authentication comparison result that the authentication methods are the same, comparing the preset encryption method with the visitor encryption method and obtaining an encryption method comparison result.
7. If it is determined that the administrator terminal is within a predetermined range, before the step of acquiring management setting information of the administrator terminal by a near field communication (NFC) method, The terminal access method according to claim 1 or 2, further comprising the step of reading the verification-awaiting information of the visitor terminal by the NFC method when it is determined that the visitor terminal is within the preset range.
8. A terminal access method applied to an administrator terminal, comprising: obtaining management setting information used to manage the visitor terminal; When it is determined that the administrator terminal is within a preset range of a customer premises equipment (CPE), transmitting the management setting information to the CPE through a near field communication (NFC) manner, so that the CPE determines whether to allow the visitor terminal to access based on the management setting information and the verification waiting information of the visitor terminal; the management setting information includes one or more of an administrator identifier, a preset service set identifier, a preset password, a preset authentication method, and a preset encryption method; The terminal access method, wherein the administrator indicator is used to indicate the use authority of the administrator terminal, and the administrator terminal has higher use authority than the visitor terminal.
9. The terminal access method according to claim 8, wherein the verification-awaiting information includes one or more of a visitor service set indicator, a visitor password, a visitor authentication method, and a visitor encryption method.
10. one or more processors; and a memory having one or more programs stored therein, the one or more programs being executed by the one or more processors to cause the one or more processors to implement the terminal access method of claim 1.
11. A readable storage medium having a computer program stored thereon, the computer program implementing the terminal access method of claim 1 when executed by a processor.
Citation Information
Patent Citations
Method, device and system for managing home gateway based on near field communication
CN105577488A
Enabling Access to a Secured Wireless Local Network without User Input of a Network Password
US20130111554A1