CN101383836B - Implementing method simultaneously supporting simple IP and mobile IP session - Google Patents

Implementing method simultaneously supporting simple IP and mobile IP session Download PDF

Info

Publication number
CN101383836B
CN101383836B CN2007101289339A CN200710128933A CN101383836B CN 101383836 B CN101383836 B CN 101383836B CN 2007101289339 A CN2007101289339 A CN 2007101289339A CN 200710128933 A CN200710128933 A CN 200710128933A CN 101383836 B CN101383836 B CN 101383836B
Authority
CN
China
Prior art keywords
terminal
pdsn
packet data
mobile
serving node
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN2007101289339A
Other languages
Chinese (zh)
Other versions
CN101383836A (en
Inventor
蒋志红
顾希
李长明
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
ZTE Corp
Original Assignee
ZTE Corp
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by ZTE Corp filed Critical ZTE Corp
Priority to CN2007101289339A priority Critical patent/CN101383836B/en
Publication of CN101383836A publication Critical patent/CN101383836A/en
Application granted granted Critical
Publication of CN101383836B publication Critical patent/CN101383836B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Abstract

The invention provides a realization method which supports the conservation of a simple IP and a mobile IP synchronously, and is applied to the communication field. The invention comprises the following steps: step one, the simple IP accesses a flow to establish PPP, namely, point-to-point protocol conservation between a terminal and a PDSN, namely, a packet data service node; step two, an agent request message is sent to the PDSN; step three, the PDSN sends an agent broadcast message to the terminal; step four, a register request message is sent to the PDSN; step five, the PDSN sends the register request message to an HA, namely, a home agent; step six, the HA sends a result to the PDSN, and the PDSN notifies the terminal; and step seven, the conservation is successfully established. The invention ensures that the terminal can also visit an enterprise VPN while carrying out some unidirectional business when visiting the Internet, so the requirements for mobile office are well satisfied and the business application mode in CDMA2000 network is widened.

Description

A kind of implementation method of supporting simple IP and mobile IP session simultaneously
Technical field
The invention belongs to the communications field, relate in particular to a kind of implementation method of supporting simple IP and mobile IP session simultaneously.
Background technology
Along with the progress of science and technology, the communication technology has become the key factor that promotes social development, and wherein the technological development of mobile communication technology and IP is particularly noticeable.The developing direction of 3G mobile communication hopes these two kinds of technology are ideally combined just, and people are implemented in any time, any place thereby make, with any medium and dream that anyone communicates.At CDMA (Code Division Multiple Access as one of 3G system; Code division multiple access; Be a kind of multiple access modulation technique that is the basis with the wide-band spread spectrum technology commonly used) also demonstrated fully such developing direction in 2000 systems; It not only can provide the data access based on traditional so-called simple IP to the terminal, has more introduced mobile IP technology.
The simple IP technology is to be similar to a kind of technology that dials up on the telephone, and give the IP address of terminal distribution is dynamically changeable at every turn.Can realize the packet data call of terminal as caller, agreement is simple, realizes easily.It can offer the terminal at same PDSN (Packet Data Service Node; Packet data serving node; A functional node of end packet data, services is provided) under the seamless roam ability; But when terminal roaming goes out institute's serving PDSN, need rebulid new PPP (Point to PointProtocol, peer-peer protocol are the link layer protocols for the so simple link design of transmits data packets between equal unit) connects and change IP address; Need to interrupt ongoing data communication, can not guarantee professional continuity.The network structure of simple IP is as shown in Figure 1.
Mobile IP technology then is at global Internet a kind of IP routing mechanism to be provided on the net; Make MS (Mobile Station; Travelling carriage) can be connected in any subnet with a permanent IP address, can realize MS, and can guarantee that MS still keeps ongoing communication when switching PPP (point-to-point protocol) link as caller or called block data communication; Can allow the terminal to roam, can keep the continuous of business in any network coverage area.The network structure that moves IP is as shown in Figure 2.
In the application of reality, people are except realizing the browsing page with portable terminal, also need visit enterprises VPN (Virtual Private Network, Virtual Private Network are set up the technology of dedicated network on common network) and carry out mobile office.What simple IP visit VPN used is L2TP (Layer 2 Tunneling Protocol); It can be PDSN as LAC (L2TP Access Control; The Layer 2 Tunneling Protocol access control); And set up two layer tunnel between the LNS (L2TP Network Server L2TP Network Server), thereby reach the purpose of visit private network.Moving IP then is to realize the three-layer VPN function through the corresponding tunnel technology, and it is through (Foreign Agent, Foreign Agent are the routers on the foreign link of mobile node as FA PDSN; In the CDMA2000 network; Realize the function of Foreign Agent by PDSN); (Home Agent, home agent are the routers that is linked to each other with link in the mobile node home network by a port with HA; It can safeguard the positional information of mobile node) between set up the tunnel, thereby realize the purpose of visit private network.
In the terminal of simple IP access process figure (Fig. 3), the equipment that comprises has: portable terminal, packet control unit, packet data exchanged node, authentication, mandate, accounting server, internet.The step of carrying out is following: step 301, and terminal MS makes a call, and sets up air traffic channels between the base station, PCF (packet control unit), realizes the application and the distribution of air resource; Step 302, PCF sends A11-Registration Request message and gives PDSN, and the A10 passage is set up in request; Step 303, PDSN accepts the A10 passage and sets up request, responds the A11-RRP registration reply, sets up the A10 passage; Step 304, PDSN begin and the terminal between carry out LCP and consult, set up PPP and connect; Step 305; MS and PDSN get into the authentication negotiation phase, and optional authentication is PAP (clear-text way authentication) and CHAP (implication authentication), the authentication message that PDSN sends according to MS; Structure mails to the authentication request bag of aaa server, carries out the authentication of terminal identity to aaa server; After step 306, aaa server are received the authentication request bag, the identity at terminal is carried out authentication and authorization, return the authentication responses message; Step 307, packet data serving node sends A11 session updates message to packet control unit; Step 308, packet control unit sends A11 session response message to packet data serving node; Step 309, MS and PDSN get into the ipcp phase of PPP, consult the attribute of IP layer, and like the VJ compression etc., PDSN is a dynamic IP of terminal distribution address simultaneously; Step 310, after the simple IP session was set up successfully, Access Network can be passed through in the terminal, accomplished the visit to INTERNET by PDSN; PDSN sends the beginning message that charges to aaa server simultaneously, and the notice aaa server begins the charging to the terminal.Hence one can see that; The terminal is to PDSN request IP address at IPCP (network layer protocol, control protocol) negotiation phase; PDSN distributes an IP address according to current configuration by AAA (Authentication Authorization server) or PDSN then; In the VPN of simple IP access process, give IP address of terminal distribution by LNS; As shown in Figure 4, the equipment that comprises has: portable terminal, packet data control unit, packet data exchanged node, nonlocal aaa server, home agent, ownership aaa server.The access process that moves IP may further comprise the steps: step 401, and terminal MS makes a call, and sets up air traffic channels between the base station, PCF (packet control unit), realizes the application and the distribution of air resource; Step 402, PCF sends A11-Registration Request message and gives PDSN, and the A10 passage is set up in request; Step 403, PDSN accepts the A10 passage and sets up request, responds the A11-RRP registration reply, sets up the A10 passage; Step 404, PDSN begin and the terminal between carry out LCP and consult, set up PPP and connect; Step 405, MS and PDSN get into the ipcp phase of PPP, consult the attribute of IP layer, compress like VJ etc.; Step 406, PDSN sends agent broadcast message to MS, the address of the relevant FA of notice MS; Step 407, MS sends MIP register requirement message to PDSN, begins to set up the MIP session; Step 408, PDSN outwards AAA sends the authentication request message; Step 409, FA uses this message of the preceding commentaries on classics of NAI (network insertion sign) to proper A AA server to carry out authentication; Step 410, AAA authentication success is sent access grant message to PDSN, if the IP address of dynamically then in the authentication responses message, carrying HA during HA; Step 411, the packet data exchanged node sends A11 session updates message to the packet data control unit; Step 412, the packet data control unit sends A11 session response message to the packet data exchanged node; Step 413, alternatively, PDSN sets up the IP secure communication of using IKE (netkey expansion) to be associated with HA; After the step 414, authentication success, PDSN sends to HA, and waits for the response message of HA after MS is sent MIP RRQ and encapsulates again; Step 415, HA sends terminal authentication and expands to ownership AAA authentication; Step 416, AAA sends to HA with the authentication responses result; Step 417, receive the authentication responses result after, HA sends Mobile IP RRP message to PDSN, is dynamic or static IP address of terminal distribution; Step 418, PDSN sends Mobile IP RRP response to MS; Step 419, after MIP set up in the tunnel successfully, this moment, enterprise VPN can be visited in the terminal, and PDSN can send the RADIUS account request message to AAA simultaneously, and notice begins to charge.Hence one can see that, and in MIP (MOBILE IP moves IP) access process figure (Fig. 4), authentication is not generally carried out at the terminal when ppp negotiation, do not ask the IP address to PDSN at ipcp phase yet.At mobile IP negotiation phase, the terminal obtains an IP address from HA, and this IP address can be the static ip address of non-zero, also can be the IP address of dynamic assignment.Can find out that in the conversation procedure of simple simple IP or MIP, the terminal has only obtained an IP address all the time, so a kind of business at a time can only be carried out in the terminal, like browsing page or visit VPN.
Though technology of the L2TP through simple IP and mobile IP technology can both be realized the function of VPN separately; But an IP address can only be applied in the terminal in conversation procedure; Can't satisfy people when realizing browsing page, also need visit the requirement of enterprises VPN with portable terminal.
Summary of the invention
The invention provides a kind of implementation method of supporting simple IP and mobile IP session simultaneously, realized that the terminal in browsing page and access internet, can visit enterprise's private network.
In the present invention, in order to support two kinds of business simultaneously, need carry out following steps:
Step 1, the simple IP access process is carried out at the terminal, sets up PPP (point-to-point protocol) session between terminal and the PDSN (packet data serving node);
Step 2, the terminal is sent the mobile IP agent request message and is given PDSN (packet data serving node);
Step 3, PDSN (packet data serving node) sends agent broadcast message to the terminal, and the address of notice terminal FA (Foreign Agent);
Step 4, the terminal is sent the mobile IP login request message and is given PDSN (packet data serving node);
Step 5, PDSN (packet data serving node) delivers to HA (home agent) with the mobile IP login request message and carries out corresponding operating;
Step 6, HA (home agent) sends to PDSN (packet data serving node) with the result, and PDSN (packet data serving node) reinforms the terminal;
Step 7 moves the IP session and sets up successfully.
Further; Said method also can have following characteristics: in the step 1, carry out in the simple IP access process, the terminal is to packet data service node requests IP address; Distribute an IP address by packet data serving node or AAA (Authentication Authorization server), public network is visited with it in the terminal.
Further, said method also can have following characteristics: in the step 1, after the simple IP session was set up, packet data serving node sent the beginning message that charges to the Authentication Authorization server, begins to be chargeed in the terminal.
Further, said method also can have following characteristics: in the step 2, it is to carry out through the GRE between packet control unit and the packet data serving node (generic route encapsulation) passage to packet data serving node that the mobile IP agent request message is sent at the terminal.
Further, said method also can have following characteristics: in the step 3, it is to deliver to the terminal through GRE (generic route encapsulation) with the form of PPP (point-to-point protocol) message that packet data serving node sends agent broadcast message to the terminal.
Further, said method also can have following characteristics: in the step 4, it is to carry out through the GRE between packet control unit and the packet data serving node (generic route encapsulation) passage to packet data serving node that the mobile IP login request message is sent at the terminal.
Further, said method also can have following characteristics: in the step 5, home agent carries out corresponding operating, comprises that foundation, the registration of moving the IP session refresh, cancel.
Further; Said method also can have following characteristics: in the step 6; Home agent sends to packet data serving node with the result, and packet data serving node reinforms the terminal and is meant the result is delivered to the terminal through GRE (generic route encapsulation) with the form of PPP (point-to-point protocol) message.
Further, said method also can have following characteristics: in the step 7, after mobile IP session was set up successfully, the terminal obtained a dynamic or static ip address, and private network is visited with it in the terminal.
Further, said method also can have following characteristics: in the step 7, after mobile IP session was set up successfully, packet data serving node sent the charging request message to the Authentication Authorization server, and notice begins to charge.
Compare with the mobile IP service flow process with existing simple IP; Because the present invention proposes simple IP session and mobile IP session are combined the method for carrying out simultaneously; Make the terminal in access procedure, can obtain a plurality of dynamically or static ip address, guarantee that the terminal also can visit enterprise VPN in visit when Internet carries out some one way traffics.If what when visit VPN, use is static IP address, can also guarantee that business is not interrupted when striding the PDSN roaming, satisfied the requirement of mobile office well, widened the business utilization form in the CDMA2000 network, the good actual application scene is arranged.
Description of drawings
Fig. 1 is the network structure of simple IP;
Fig. 2 is the network structure that moves IP;
Fig. 3 is the terminal access process figure when only supporting a simple IP session;
Fig. 4 is the terminal access process figure when only supporting a mobile IP session;
Fig. 5 is the access process figure that when supporting a simple IP session, moves the IP session.
Embodiment
Below in conjunction with accompanying drawing the present invention is carried out detailed introduction:
Fig. 5 has described a terminal access process of supporting that a mobile IP session is carried out in the simple IP session simultaneously, and step is following:
Step 501: terminal MS makes a call, and sets up air traffic channels between the base station, PCF (packet control unit), realizes the application and the distribution of air resource;
Step 502:PCF sends A11-Registration Request message and gives PDSN, and the A10 passage is set up in request;
Step 503:PDSN accepts the A10 passage and sets up request, responds the A11-RRP registration reply, sets up the A10 passage;
Step 504:PDSN begin and the terminal between carry out LCP and consult, set up PPP and connect;
Step 505:MS and PDSN get into the authentication negotiation phase; Optional authentication is PAP (clear-text way authentication) and CHAP (implication authentication); The authentication message that PDSN sends according to MS, structure mails to the authentication request bag of aaa server, carries out the authentication of terminal identity to aaa server;
After step 506 aaa server is received the authentication request bag, the identity at terminal is carried out authentication and authorization, return the authentication responses message;
Step 507:MS and PDSN get into the ipcp phase of PPP, consult the attribute of IP layer, and like the VJ compression etc., PDSN is a dynamic IP of terminal distribution address simultaneously;
Step 508: after the simple IP session was set up successfully, Access Network can be passed through in the terminal, accomplished the visit to INTERNET by PDSN; PDSN sends the beginning message that charges to aaa server simultaneously, and the notice aaa server begins the charging to the terminal;
Step 509: when the terminal was wanted to visit enterprise VPN, MS sent MIP proxy requests message to PDSN;
Step 510:PDSN sends agent broadcast message to MS, the address of the relevant FA of notice MS;
Step 511:MS sends MIP register requirement message to PDSN, begins to set up the MIP session;
Step 512:PDSN outwards AAA sends the authentication request message;
Step 513:FA uses this message of the preceding commentaries on classics of NAI (network insertion sign) to proper A AA server to carry out authentication;
Step 514:AAA authentication success is sent access grant message to PDSN, if the IP address of dynamically then in the authentication responses message, carrying HA during HA;
Step 515: alternatively, PDSN sets up the IP secure communication of using IKE (netkey expansion) to be associated with HA;
Step 516: after the authentication success, PDSN sends to HA, and waits for the response message of HA after MS is sent MIP RRQ and encapsulates again;
Step 517:HA sends terminal authentication and expands to ownership AAA authentication;
Step 518:AAA sends to HA with the authentication responses result;
Step 519: after receiving the authentication responses result, HA sends Mobile IP RRP message to PDSN, is dynamic or static IP address of terminal distribution;
Step 520:PDSN sends Mobile IP RRP response to MS;
After step 521:MIP set up in the tunnel successfully, this moment, enterprise VPN can be visited in the terminal, and PDSN can send the RADIUS account request message to AAA simultaneously, and notice begins to charge.
Visit enterprise VPN when the terminal just can be implemented in visit INTERNET like this if other VPN is also wanted to visit in the terminal, back, can repeat the step of 522-534, and a terminal can be supported a simple IP session and a plurality of mobile IP session simultaneously.

Claims (8)

1. an implementation method of supporting simple IP and mobile IP session simultaneously is characterized in that, may further comprise the steps:
Step 1; The simple IP access process is carried out at the terminal, and the PPP that sets up terminal and PDSN and be between the packet data serving node is a point to point protocol session, wherein; In carrying out the simple IP access process; The terminal is IP address of Authentication Authorization server-assignment to packet data service node requests IP address by packet data serving node or AAA, and public network is visited with it in the terminal;
Step 2, the terminal is sent the mobile IP agent request message and is given PDSN;
Step 3, PDSN sends agent broadcast message to the terminal, and notice terminal FA is the address of Foreign Agent;
Step 4, the terminal is sent the mobile IP login request message and is given PDSN;
Step 5, it is that home agent carries out corresponding operating that PDSN delivers to HA with the mobile IP login request message;
Step 6, HA sends to PDSN with the result, and PDSN reinforms the terminal;
Step 7 moves the IP session and sets up successfully, and after mobile IP session was set up successfully, the terminal obtained a dynamic or static ip address, and private network is visited with it in the terminal.
2. method according to claim 1 is characterized in that, in the step 1, after the simple IP session was set up, packet data serving node sent the beginning message that charges to the Authentication Authorization server, begins to be chargeed in the terminal.
3. method according to claim 1; It is characterized in that; In the step 2, it is to be that the generic route encapsulation passage carries out through the GRE between packet control unit and the packet data serving node to packet data serving node that the mobile IP agent request message is sent at the terminal.
4. method according to claim 1 is characterized in that, in the step 3, it is to deliver to the terminal through generic route encapsulation GRE with the form of PPP message that packet data serving node sends agent broadcast message to the terminal.
5. method according to claim 1 is characterized in that, in the step 4, it is to carry out through the generic route encapsulation gre tunnel between packet control unit and the packet data serving node to packet data serving node that the mobile IP login request message is sent at the terminal.
6. method according to claim 1 is characterized in that, in the step 5, home agent carries out corresponding operating, comprises that foundation, the registration of moving the IP session refresh or cancel.
7. method according to claim 1; It is characterized in that; In the step 6, home agent sends to packet data serving node with the result, and packet data serving node reinforms the terminal and is meant the result is delivered to the terminal through generic route encapsulation GRE with the form of PPP message.
8. method according to claim 1 is characterized in that, in the step 7, after mobile IP session was set up successfully, packet data serving node sent the charging request message to the Authentication Authorization server, and notice begins to charge.
CN2007101289339A 2007-07-26 2007-07-26 Implementing method simultaneously supporting simple IP and mobile IP session Active CN101383836B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN2007101289339A CN101383836B (en) 2007-07-26 2007-07-26 Implementing method simultaneously supporting simple IP and mobile IP session

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN2007101289339A CN101383836B (en) 2007-07-26 2007-07-26 Implementing method simultaneously supporting simple IP and mobile IP session

Publications (2)

Publication Number Publication Date
CN101383836A CN101383836A (en) 2009-03-11
CN101383836B true CN101383836B (en) 2012-01-11

Family

ID=40463458

Family Applications (1)

Application Number Title Priority Date Filing Date
CN2007101289339A Active CN101383836B (en) 2007-07-26 2007-07-26 Implementing method simultaneously supporting simple IP and mobile IP session

Country Status (1)

Country Link
CN (1) CN101383836B (en)

Families Citing this family (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US8514864B2 (en) * 2009-03-31 2013-08-20 Verizon Patent And Licensing Inc. System and method for providing network mobility
CN109511115B (en) 2017-09-14 2020-09-29 华为技术有限公司 Authorization method and network element

Citations (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1595901A (en) * 2004-06-18 2005-03-16 北京航空航天大学 Method for implementing mobile route in mobile IP network

Patent Citations (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1595901A (en) * 2004-06-18 2005-03-16 北京航空航天大学 Method for implementing mobile route in mobile IP network

Also Published As

Publication number Publication date
CN101383836A (en) 2009-03-11

Similar Documents

Publication Publication Date Title
US9686809B2 (en) Combining IP and cellular mobility
US7239632B2 (en) Method and apparatus for converging local area and wide area wireless data networks
CN101150782B (en) A selection method for policy billing control server
KR100678151B1 (en) Method and system for servicing roaming in mobile communication system
JP2003060653A (en) Wireless network and authentication method therein
CN101365228A (en) Method for mobile terminal access network and anchor point management apparatus
US20080205357A1 (en) Wireless wide area broadband coverage in a vehicular area network (van)
CN101072231A (en) Method and device for negotiating mobile IP capability for communication network
CN101534496A (en) Method for obtaining home link information by user
Pang et al. Mobility and session management: UMTS vs. cdma2000
EP1224819A1 (en) Packet data service in a mobile communications system
CN101383836B (en) Implementing method simultaneously supporting simple IP and mobile IP session
Chen et al. A gateway approach to mobility integration of GPRS and wireless LANs
Imadali et al. A review of network mobility protocols for fully electrical vehicles services
CN101193117A (en) Intercommunication method, access network and wireless network between terminals
CN101072229B (en) Client based mobile IPv4 configuration information obtaining method
CN101009611A (en) A method for terminal access to different service networks
CN1988492A (en) Method for intercommunication between network nodes, for access service network and WiMAX network frame
US8144672B2 (en) Wireless wide area broadband coverage in a vehicular area network (VAN)
CN101350939B (en) System and method for implementing mobile IP concurrence data service
Onah Mobile IP Framework for Seamless Global Roaming Across Heterogeneous Networks.
Jong et al. QoS considerations on the third generation (3G) wireless systems
Chen et al. Design and Analysis of a Mobility Gateway for GPRS–WLAN Integration
CN101599876B (en) Method and system for transferring service of universal service interface system
CN101119305B (en) System and method for implementing multi-user concurrent data traffic

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant