GB/T 31491-2015 in English
VALIDWireless network access control technical specification
- Issued on:2015-05-15
- Implemented on:2016-01-01
- File Format:PDF
- Delivery:Via email within 5 business days
$534.00
| Standard No: | GB/T 31491-2015 |
| Document status: | VALID |
| Title in English: | Wireless network access control technical specification |
| Title in Chinese: | 无线网络访问控制技术规范 |
| Language: | English |
| File Format: | Electronic (PDF) |
| Delivery: | Via email within 5 business days |
| Issued on: | 2015-05-15 |
| Implemented on: | 2016-01-01 |
| ICS Classification: | 35.110-Networking |
| Chinese Classification: | L78-Data information |
| Professional Classification: | GB-National Standard |
| Related Keywords: | wireless network access control
technical specification network access technical specification introduction standard overview gb/t 31491-2015 national information technology standardization technical committee |
| Related Topics: | wire mesh
din is accessed Access control Access control wireless network Access Control Test GBT31491 GB/T 31491-2015 wireless Network crimping pliers |
《GB/T 31491-2015无线网络访问控制技术规范》由TC28(全国信息技术标准化技术委员会)归口,主管部门为国家标准化管理委员会。
本标准规定了网络访问过程中安全访问控制的一般方法。
本标准适用于 WLAN、WPAN、WSN、RFID等各种无线网络访问控制领域,也适用于 LAN、PLC、PON 等各种有线网络访问控制领域。
Introduction
Standard Overview
GB/T 31491-2015 is a wireless network access control technical specification proposed by the National Information Technology Standardization Technical Committee (SAC/TC 28), which was released in May 2015 and implemented in January 2016. The standard defines the general method of security control during network access and is applicable to wireless networks such as WLAN, WPAN, RFID and wired network scenarios.
Core Architecture
| Module | Function | Key Technology |
|---|---|---|
| Shared Information Management | Key Lifecycle Management | ISO/IEC 11770-1 |
| Authentication Protocol | Entity Identity Authentication | Two/Three Entity Authentication Mechanism |
| Key Agreement | Secure Session Establishment | DH Exchange, Hash Algorithm |
Key Technology Analysis
1. Authentication Protocol
Typical scenario: Adopt the certificate-based three-entity authentication mechanism of 8.3.2, and verify the legitimacy of the terminal and the AP through the AS (authentication server). The process includes 6 message interactions and supports anonymous authentication.
Security enhancement: Introduce random numbers to resist replay attacks, and the signature algorithm supports domestic ciphers such as SM2.
2. Key Negotiation
Unicast negotiation supports two modes:
- Based on shared base key:Session key is derived by presetting BK (9.1.1)
- Based on DH exchange:Forward security is achieved through temporary key pair (9.1.2)
Application Areas
| Scenario | Standard Reference | Security Service |
|---|---|---|
| WAPI | GB 15629.11 | Bidirectional Authentication + CCMP Encryption |
| RFID | GB/T 28925 | Lightweight XOR Authentication |
Implementation Recommendations
- Protocol Selection:Three-Entity Certificate Authentication is recommended for high-security scenarios (8.3.2)
- Key Update:Multicast keys should be distributed in layers through GKEK (9.2.2)
- Algorithm Adaptation:National encryption algorithms such as SM4/SM3 are preferred

Loading PDF document...
Error loading PDF. Please make sure the file is valid and try again.
We also recommend
-

GB/T 45278.1-2025 in English
Information technology—Time aware network—Part 1: Protocol
2025-02-28 -

GB/T 30269.802-2017 in English
Information technology—Sensor network—Part 802:Testing:Media access control and physical layer of low-rate wireless sensor network
2017-05-31 -

GB/T 18236.1-2000 in English
Information technology-Telecommunications and information exchange between systems-Local and metropolitan area networks-Common specifications-Part 1:Medium Access Control(MAC)service definition
2000-10-17 -

GB/T 15629.1103-2006 in English
Information technology - Telecommunications and information exchange between systems - Local and metropolitan area networks - Specific requirements - Part 11: Wireless LAN Medium
2006-01-27