CA2795358C - Appareil et procede pour la signalisation d'un contexte de securite ameliore pour cles de chiffrement et d'integrite de session - Google Patents

Appareil et procede pour la signalisation d'un contexte de securite ameliore pour cles de chiffrement et d'integrite de session Download PDF

Info

Publication number
CA2795358C
CA2795358C CA2795358A CA2795358A CA2795358C CA 2795358 C CA2795358 C CA 2795358C CA 2795358 A CA2795358 A CA 2795358A CA 2795358 A CA2795358 A CA 2795358A CA 2795358 C CA2795358 C CA 2795358C
Authority
CA
Canada
Prior art keywords
security context
remote station
serving network
message
information element
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CA2795358A
Other languages
English (en)
Other versions
CA2795358A1 (fr
Inventor
Adrian Edward Escott
Anand Palanigounder
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Qualcomm Inc
Original Assignee
Qualcomm Inc
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Priority claimed from US13/084,378 external-priority patent/US9197669B2/en
Application filed by Qualcomm Inc filed Critical Qualcomm Inc
Publication of CA2795358A1 publication Critical patent/CA2795358A1/fr
Application granted granted Critical
Publication of CA2795358C publication Critical patent/CA2795358C/fr
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/04Key management, e.g. using generic bootstrapping architecture [GBA]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/06Network architectures or network communication protocols for network security for supporting key management in a packet data network
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/04Key management, e.g. using generic bootstrapping architecture [GBA]
    • H04W12/041Key generation or derivation
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L2463/00Additional details relating to network architectures or network communication protocols for network security covered by H04L63/00
    • H04L2463/061Additional details relating to network architectures or network communication protocols for network security covered by H04L63/00 applying further key derivation, e.g. deriving traffic keys from a pair-wise master key
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W88/00Devices specially adapted for wireless communication networks, e.g. terminals, base stations or access point devices
    • H04W88/02Terminal devices
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W88/00Devices specially adapted for wireless communication networks, e.g. terminals, base stations or access point devices
    • H04W88/14Backbone network devices

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Hardware Design (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Mobile Radio Communication Systems (AREA)
  • Telephonic Communication Services (AREA)

Abstract

L'invention porte sur un procédé pour l'établissement d'un contexte de sécurité amélioré entre une station distante et un réseau de service. Dans le procédé, la station distante envoie un premier message au réseau de service, le premier message comprenant une information signalant que la station distante supporte un contexte de sécurité amélioré. La station distante génère au moins une clé de session, conformément au contexte de sécurité amélioré, à l'aide de l'information. La station distante reçoit, en réponse au premier message, un second message ayant une indication selon laquelle le réseau de service supporte le contexte de sécurité amélioré. La station distante, en réponse au second message, a des communications sans fil protégées par la ou les clés de session.
CA2795358A 2010-04-15 2011-04-15 Appareil et procede pour la signalisation d'un contexte de securite ameliore pour cles de chiffrement et d'integrite de session Active CA2795358C (fr)

Applications Claiming Priority (5)

Application Number Priority Date Filing Date Title
US32464610P 2010-04-15 2010-04-15
US61/324,646 2010-04-15
US13/084,378 2011-04-11
US13/084,378 US9197669B2 (en) 2010-04-15 2011-04-11 Apparatus and method for signaling enhanced security context for session encryption and integrity keys
PCT/US2011/032755 WO2011130682A2 (fr) 2010-04-15 2011-04-15 Appareil et procédé pour la signalisation d'un contexte de sécurité amélioré pour clés de chiffrement et d'intégrité de session

Publications (2)

Publication Number Publication Date
CA2795358A1 CA2795358A1 (fr) 2011-10-20
CA2795358C true CA2795358C (fr) 2017-12-19

Family

ID=44584594

Family Applications (1)

Application Number Title Priority Date Filing Date
CA2795358A Active CA2795358C (fr) 2010-04-15 2011-04-15 Appareil et procede pour la signalisation d'un contexte de securite ameliore pour cles de chiffrement et d'integrite de session

Country Status (16)

Country Link
EP (1) EP2559276A2 (fr)
JP (2) JP5795055B2 (fr)
KR (1) KR101474093B1 (fr)
CN (1) CN102835136B (fr)
AU (1) AU2011239422B2 (fr)
BR (1) BR112012026136B1 (fr)
CA (1) CA2795358C (fr)
HK (1) HK1177861A1 (fr)
IL (1) IL222384A (fr)
MX (1) MX2012011985A (fr)
MY (1) MY171059A (fr)
RU (1) RU2555227C2 (fr)
SG (1) SG184442A1 (fr)
TW (1) TWI450557B (fr)
UA (1) UA108099C2 (fr)
WO (1) WO2011130682A2 (fr)

Families Citing this family (12)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
EP3800828A1 (fr) 2015-07-02 2021-04-07 GN Hearing A/S Dispositif client avec certificat et procédé associé
US10555177B2 (en) 2015-10-05 2020-02-04 Telefonaktiebolaget Lm Ericsson (Publ) Method of operation of a terminal device in a cellular communications network
BR112018012417A2 (pt) * 2015-12-21 2018-12-18 Koninklijke Philips N.V. dispositivo de registrando, método de registrando, método de configurador, dispositivo de configurador, e produto de programa de computador
SG10201605752PA (en) 2016-07-13 2018-02-27 Huawei Int Pte Ltd A unified authentication work for heterogeneous network
CN109479194B (zh) * 2016-07-18 2023-04-07 瑞典爱立信有限公司 加密安全性以及完整性保护
EP3937513A1 (fr) 2016-12-08 2022-01-12 GN Hearing A/S Système auditif, dispositifs et procédé de sécurisation de communication pour une application d'utilisateur
RU2734873C1 (ru) * 2017-01-30 2020-10-23 Телефонактиеболагет Лм Эрикссон (Пабл) Функция привязки безопасности в 5g-системах
US10893568B2 (en) 2017-08-18 2021-01-12 Huawei Technologies Co., Ltd. Location and context management in a RAN INACTIVE mode
US10939288B2 (en) * 2018-01-14 2021-03-02 Qualcomm Incorporated Cellular unicast link establishment for vehicle-to-vehicle (V2V) communication
WO2019191974A1 (fr) * 2018-04-04 2019-10-10 Zte Corporation Techniques de gestion de protection d'intégrité
CN114071466A (zh) * 2018-08-10 2022-02-18 华为技术有限公司 用户面完整性保护方法、装置及设备
WO2020207401A1 (fr) * 2019-04-08 2020-10-15 Mediatek Singapore Pte. Ltd. Récupération de nas 5g depuis un échec de nasc

Family Cites Families (18)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6986040B1 (en) * 2000-11-03 2006-01-10 Citrix Systems, Inc. System and method of exploiting the security of a secure communication channel to secure a non-secure communication channel
US7873163B2 (en) * 2001-11-05 2011-01-18 Qualcomm Incorporated Method and apparatus for message integrity in a CDMA communication system
MY142227A (en) * 2005-02-04 2010-11-15 Qualcomm Inc Secure bootstrapping for wireless communications
CA2567416C (fr) * 2005-11-07 2018-10-09 Harsch Khandelwal Verification d'un temoignage
US7752441B2 (en) * 2006-02-13 2010-07-06 Alcatel-Lucent Usa Inc. Method of cryptographic synchronization
CN101406024A (zh) * 2006-03-22 2009-04-08 Lg电子株式会社 Umts的lte的安全考量
US9106409B2 (en) 2006-03-28 2015-08-11 Telefonaktiebolaget L M Ericsson (Publ) Method and apparatus for handling keys used for encryption and integrity
CN101411115B (zh) * 2006-03-31 2012-06-06 三星电子株式会社 用于在接入系统间切换期间优化验证过程的系统和方法
WO2007120024A1 (fr) * 2006-04-19 2007-10-25 Electronics And Telecommunications Research Institute Procédé de génération efficace d'une clé d'autorisation pour une communication mobile
US8302273B2 (en) * 2006-07-18 2012-11-06 Kistler Holding Ag Joining unit
US8094817B2 (en) * 2006-10-18 2012-01-10 Telefonaktiebolaget Lm Ericsson (Publ) Cryptographic key management in communication networks
FI20070094A0 (fi) * 2007-02-02 2007-02-02 Nokia Corp Radiopäällysverkon turvallisuusalgoritmin vaihtaminen handoverin aikana
EP1973265A1 (fr) * 2007-03-21 2008-09-24 Nokia Siemens Networks Gmbh & Co. Kg Mise à jour de clé dans un système SAE/LTE
CN101304600B (zh) * 2007-05-08 2011-12-07 华为技术有限公司 安全能力协商的方法及系统
CN101309500B (zh) * 2007-05-15 2011-07-20 华为技术有限公司 不同无线接入技术间切换时安全协商的方法和装置
KR100924168B1 (ko) * 2007-08-07 2009-10-28 한국전자통신연구원 주파수 오버레이 기반의 통신 시스템의 인증키 생성 방법및 인증 방식 협상 방법
CN101384079A (zh) * 2007-09-03 2009-03-11 华为技术有限公司 一种终端移动时防止降质攻击的方法、系统及装置
CN101232736B (zh) * 2008-02-22 2012-02-29 中兴通讯股份有限公司 用于不同接入系统之间密钥生存计数器的初始化设置方法

Also Published As

Publication number Publication date
BR112012026136B1 (pt) 2021-09-21
SG184442A1 (en) 2012-11-29
CA2795358A1 (fr) 2011-10-20
WO2011130682A2 (fr) 2011-10-20
WO2011130682A3 (fr) 2012-03-01
TW201206139A (en) 2012-02-01
TWI450557B (zh) 2014-08-21
JP6069407B2 (ja) 2017-02-01
IL222384A (en) 2017-02-28
CN102835136B (zh) 2016-04-06
RU2012148506A (ru) 2014-05-20
JP2013524741A (ja) 2013-06-17
EP2559276A2 (fr) 2013-02-20
AU2011239422A1 (en) 2012-11-08
BR112012026136A2 (pt) 2016-06-28
JP2015180095A (ja) 2015-10-08
RU2555227C2 (ru) 2015-07-10
CN102835136A (zh) 2012-12-19
MY171059A (en) 2019-09-23
HK1177861A1 (zh) 2013-08-30
JP5795055B2 (ja) 2015-10-14
IL222384A0 (en) 2012-12-31
UA108099C2 (uk) 2015-03-25
KR20130018299A (ko) 2013-02-20
KR101474093B1 (ko) 2014-12-17
MX2012011985A (es) 2012-12-17
AU2011239422B2 (en) 2014-05-08

Similar Documents

Publication Publication Date Title
CA2802488C (fr) Appareil et procede pour faire passer contexte de securite optimisee d'un reseau de service a base utran/geran a un reseau de service a base e-utran
CA2795358C (fr) Appareil et procede pour la signalisation d'un contexte de securite ameliore pour cles de chiffrement et d'integrite de session
US9197669B2 (en) Apparatus and method for signaling enhanced security context for session encryption and integrity keys
US9191812B2 (en) Apparatus and method for transitioning from a serving network node that supports an enhanced security context to a legacy serving network node
JP5398934B2 (ja) 拡張セキュリティコンテキストをutranベースのサービングネットワークからgeranベースのサービングネットワークへ移行するための装置および方法

Legal Events

Date Code Title Description
EEER Examination request