IP Library › Granted Patent US 12,526,628
Granted Patent B2
US 12,526,628 · App. 17/602,818 · Granted Jan 13, 2026

Router, network connection method and mobile terminal

Inventor: Yunhua Zhao (Guangdong, CN)
Assignee: HuiZhou TCL Mobile Communication Co., Ltd.
H04W12/069H04L9/3226H04L63/083H04W12/041H04W76/10
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,526,628
App. No.
17/602,818
Granted
Jan 13, 2026
Kind
B2
Abstract

Provided are a router, a network connection method and a mobile terminal. The network connection method comprises: a router receiving a first dynamic password from a server; the router receiving a second dynamic password from a mobile terminal, and performing matching on the basis of the second dynamic password and the first dynamic password; if the matching is successful, establishing a connection, and sending a first result signal to the mobile terminal; and the router purging connection information associated with the connection after the connection has been established. The invention can prevent an unauthenticated terminal from connecting to a router, thereby enhancing the security of a connection established by means of a router.

Claims (32)

1 . A network connection method applicable to a router, wherein the method comprises following steps:

the router receiving a first dynamic password from a server;

the router receiving a second dynamic password from a mobile terminal and comparing the second dynamic password with the first dynamic password;

when the comparison is matched, establishing a connection, and sending a first result signal to the mobile terminal; and

the router clearing connection information generated by the connection after the connection is established;

wherein the second dynamic password is same as the first dynamic password, and the connection information generated by the connection comprises a model and an identification code of the mobile terminal;

wherein after receiving the first dynamic password from the server, the router performs following steps:

generating a first master key according to the first dynamic password;

generating a first random number and sending the first random number to the mobile terminal, wherein the mobile terminal is capable of generating a second random number;

receiving a third random number and a first temporary key from the mobile terminal and generating a fourth random number;

generating a second temporary key according to the third random number, the fourth random number, and the first master key;

comparing the second temporary key with the first temporary key; and

when the comparison is matched, establishing the connection, and sending a second result signal to the mobile terminal;

wherein the first random number and the second random number are respectively identical to the fourth random number and the third random number, the first random number and the fourth random number are random numbers generated by the router, the second random number and the third random number are random numbers generated by the mobile terminal, and all the random numbers are only used once in a process for calculating and generating the first temporary key and the second temporary key;

wherein the second dynamic password is the same as the first dynamic password, both randomly assigned by the server, and used to identity verification between the router and the mobile terminal; the second temporary key is generated by applying a pseudo-random function to the first master key, identification addresses of the router and the mobile terminal, and exchanged one-time random numbers from the router and the mobile terminal; the first master key is derived using a hash function based on the first dynamic password and a service set identifier (SSID) of the router; upon receiving a connection request from the mobile terminal, triggered by the mobile terminal recognizing an image identifier associated with the router, the router transmits a first random number to the mobile terminal and receives the third random number and the first temporary key in response; the router then generates the second temporary key based on exchanged random numbers and a previously generated master key; if the second temporary key matches the first temporary key received from the mobile terminal, the router transmits the second temporary key back to the mobile terminal for confirmation; upon receiving an authentication confirmation message from the mobile terminal, the router establishes the connection, thereby completing a dual-handshake process; after the connection is successfully established, the router actively clears all credentials and identification data generated during a session including passwords, the random numbers, addresses, and keys, to prevent the mobile terminal from automatically reconnecting when re-entering a WiFi area.

2 . The network connection method according to claim 1 , wherein the first dynamic password is a digital password or a combination of numbers and letters.

3 . A router, comprising a memory and a processor interconnected with each other, wherein the memory stores program data loadable and executable by the processor to carry out following steps:

the router receiving a first dynamic password from a server;

the router receiving a second dynamic password from a mobile terminal and comparing the second dynamic password with the first dynamic password, wherein the second dynamic password is assigned to the mobile terminal by the server;

when the comparison is matched, establishing a connection, and sending a first result signal to the mobile terminal; and

the router clearing connection information generated by the connection after the connection is established;

wherein the second dynamic password is same as the first dynamic password, and the connection information generated by the connection comprises a model and an identification code of the mobile terminal;

wherein after receiving the first dynamic password from the server, the router performs following steps:

generating a first master key according to the first dynamic password;

generating a first random number and sending the first random number to the mobile terminal, wherein the mobile terminal is capable of generating a second random number;

receiving a third random number and a first temporary key from the mobile terminal and generating a fourth random number;

generating a second temporary key according to the third random number, the fourth random number, and the first master key;

comparing the second temporary key with the first temporary key; and

when the comparison is matched, establishing the connection, and sending a second result signal to the mobile terminal;

wherein the first random number and the second random number are respectively identical to the fourth random number and the third random number, the first random number and the fourth random number are random numbers generated by the router, the second random number and the third random number are random numbers generated by the mobile terminal, and all the random numbers are only used once in a process for calculating and generating the first temporary key and the second temporary key;

wherein the second dynamic password is the same as the first dynamic password, both randomly assigned by the server, and used to identity verification between the router and the mobile terminal; the second temporary key is generated by applying a pseudo-random function to the first master key, identification addresses of the router and the mobile terminal, and exchanged one-time random numbers from the router and the mobile terminal; the first master key is derived using a hash function based on the first dynamic password and a service set identifier (SSID) of the router; upon receiving a connection request from the mobile terminal, triggered by the mobile terminal recognizing an image identifier associated with the router, the router transmits a first random number to the mobile terminal and receives the third random number and the first temporary key in response; the router then generates the second temporary key based on exchanged random numbers and a previously generated master key; if the second temporary key matches the first temporary key received from the mobile terminal, the router transmits the second temporary key back to the mobile terminal for confirmation; upon receiving an authentication confirmation message from the mobile terminal, the router establishes the connection, thereby completing a dual-handshake process; after the connection is successfully established, the router actively clears all credentials and identification data generated during a session including passwords, the random numbers, addresses, and keys, to prevent the mobile terminal from automatically reconnecting when re-entering a WiFi area.

4 . The router according to claim 3 , wherein the first dynamic password is a digital password or a combination of numbers and letters.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 7, 2021
From: ZHAO, YUNHUA
To: HUIZHOU TCL MOBILE COMMUNICATION CO., LTD.
Reel/Frame 058038/0942 →
Priority Claims (1)
CN 201910355810.1 · Apr 29, 2019 · national
Continuity (1)
Related Publication 20220159462A1 · May 19, 2022
References Cited (59)
US 10057813B1 · Likar · 2018 [cited by examiner]
US 10299126B2 · Bryksa · 2019 [cited by examiner]
US 10341939B2 · Peng et al. · 2019 [cited by applicant]
US 10516570B1 · Lu · 2019 [cited by examiner]
US 11368994B1 · Robinson · 2022 [cited by examiner]
US 11405789B1 · Wei · 2022 [cited by examiner]
US 12101225B2 · Panje · 2024 [cited by examiner]
US 12124748B2 · Tsuji · 2024 [cited by examiner]
US 12177207B2 · Coggin · 2024 [cited by examiner]
US 12250539B2 · Nam · 2025 [cited by examiner]
US 20070264973A1 · Dowek · 2007 [cited by examiner]
US 20090059874A1 · Carter · 2009 [cited by examiner]
US 20090138643A1 · Charles · 2009 [cited by examiner]
US 20100115278A1 · Shen · 2010 [cited by examiner]
US 20100246818A1 · Yao · 2010 [cited by examiner]
US 20110055928A1 · Brindza · 2011 [cited by examiner]
US 20120072976A1 · Patil · 2012 [cited by examiner]
US 20120284785A1 · Salkintzis · 2012 [cited by examiner]
US 20130347073A1 · Bryksa · 2013 [cited by examiner]
US 20140068261A1 · Malek · 2014 [cited by examiner]
US 20140355592A1 · Camps · 2014 [cited by examiner]
US 20150026774A1 · Yang · 2015 [cited by examiner]
US 20150143473A1 · Jung · 2015 [cited by examiner]
US 20150229475A1 · Benoit et al. · 2015 [cited by applicant]
US 20150296554A1 · Okazaki · 2015 [cited by examiner]
US 20160087967A1 · Pang · 2016 [cited by examiner]
US 20160219050A1 · Zou · 2016 [cited by examiner]
US 20170034215A1 · Sigel · 2017 [cited by examiner]
US 20170048696A1 · Kurihara · 2017 [cited by examiner]
US 20170054711A1 · Shen · 2017 [cited by examiner]
US 20170230905A1 · Pularikkal · 2017 [cited by examiner]
US 20170242874A1 · Finnegan · 2017 [cited by applicant]
US 20170366971A1 · Iyer · 2017 [cited by examiner]
US 20180035291A1 · Dowlatkhah · 2018 [cited by examiner]
US 20180199205A1 · Zhu · 2018 [cited by examiner]
US 20180332471A1 · Zhu · 2018 [cited by examiner]
US 20200067943A1 · Falk · 2020 [cited by examiner]
US 20210036929A1 · Kesavan · 2021 [cited by examiner]
US 20210243603A1 · Yin · 2021 [cited by examiner]
US 20230362292A1 · Liu · 2023 [cited by examiner]
US 20240048985A1 · Sanciangco · 2024 [cited by examiner]
US 20240276214A1 · Nix · 2024 [cited by examiner]
US 20250036334A1 · Tsuji · 2025 [cited by examiner]
CN 104394533 · 2015 [cited by applicant]
CN 104967997 · 2015 [cited by applicant]
CN 106375999 · 2017 [cited by applicant]
CN 106412897 · 2017 [cited by applicant]
CN 107864475 · 2018 [cited by applicant]
CN 108111522 · 2018 [cited by applicant]
CN 108990062 · 2018 [cited by applicant]
CN 110213760 · 2019 [cited by applicant]
WO WO2015089324 · 2015 [cited by applicant]
WO WO2017054483 · 2017 [cited by applicant]
No stated author; 802.11i Part 11: Wireless Lan Medium Access Control (MAC) and Physical Layer (PHY) specifications; 2004; retrieved from the Internet https://paginas.fe.up.pt/˜jaime/0506/SSR/802.11i-2004.pdf; pp. 1-190… [cited by examiner]
McMuffin, Swaglord; “Strange device in routers client list:”; 2014; retrieved from the internet https://security.stackexchange.com/questions/76141/strange-device-in-routers-client-list; pp. 1-4, as printed. (Year: 2014). [cited by examiner]
International Search Report and the Written Opinon Dated Mar. 12, 2020 From the International Searching Authority Re. Application No. PCT/CN2019/125051 and Its Translation of Search Report Into English. (11 Pages). [cited by applicant]
Notification of Office Action Dated Feb. 1, 2021 From the State Intellectual Property Office of the People's Republic of China Re. Application No. 201910355810.1 and Its Translation Into English. (12 Pages). [cited by applicant]
Zheng et al., “Mutual Authentication Key Agreement Scheme Based on WAP”, Computer Engineering, 36(4): 112-114, Feb. 20, 2010. [cited by applicant]
Supplementary European Search Report and the European Search Opinion Dated Jan. 4, 2023 From the European Patent Office Re. Application No. 19927153.7. (8 Pages). [cited by applicant]