文档介绍:
基于 SDN 的 WLAN 组网方案及接入认证研
究
温浩,胡怡红,寿国础
**
5
10
15
20
25
30
35
40
(北京邮电大学信息与通信工程学院,北京 100876)
摘要: 随着移动智能终端的不断普及,人们对无线接入需求与日俱增。WLAN 在运营商网络中得到了大规
模部署。但是当前的 WLAN 组网方案存在一些问题,例如设备的统一管理、无线接入控制器(AC)设备压力、
网络可扩展性等问题。本文提出了 SDN 架构下的 WLAN 组网方案,通过软件编程实现设备统一管理,网络功
能扩展灵活,同时能够充分发挥网络节点设备的转发能力,解决关键节点的压力问题。SDN 控制器全面掌
握用户信息,以全局视图完成用户的接入认证功能;也可以根据用户类型,将用户接入认证信息转发给相
应的认证服务器,协调支持多接入认证服务器,提升接入认证效率。
关键词:软件定义网络;WLAN;接入认证;RADIUS
中图分类号:
Design of Access Authentication for WLAN Based on SDN
WEN Hao, HU Yihong, SHOU Guochu
(School of Information munication Engineering, Beijing University of Posts and
munications, Beijing, 100876)
Abstract: With the continuous development of intelligent terminals, the demands for wireless
resources are significantly increasing. Operators are also actively deploying work, yet there
are still some issues in the conventional WLAN, such as the access points' centralized management, the
burden on access controllers, and work scalability. This paper propose a solution of WLAN base
on Software-work to solve these problems. In SDN, network control is decoupled from
forwarding and is directly programmable, which could be extended easily only by a couple of lines
code. The only work the SDN switch needs to deal with is forwarding the data packages following the
instructions from the SDN controllers. Before user access , the SDN controller can get user
information, which can be used to plish the access authentication. Also, according to the
classification base on user information, the access request will be transmit to the coordinate access
authentication server. With muti access authentication server support, the access authentication
efficiency can be optimized.
Key words: SDN; WLAN; Access Authentication; RADIUS
0 引言
随着移动智能终端的不断普及,人们对无线接入需求与日俱增。上网、视频等业务对网
络带宽要求比较大,WLAN 网络能够很好解决用户对无线网络带宽的需求,WLAN 在运营
商网络中得到了大规模部署。但是随着 WLAN 技术的应用和发展,传统的 WLAN 组网结构
存在一定的问题。早期的胖 AP 分布式组网,随着网络规模的扩大,不便于管理的问题尤为
突出。之后提出的集中式组网,将胖 AP 的功能分离开来,由瘦