CN102308608B - 用于在网络中保护自举消息的设备和方法 - Google Patents
用于在网络中保护自举消息的设备和方法 Download PDFInfo
- Publication number
- CN102308608B CN102308608B CN200980156375.4A CN200980156375A CN102308608B CN 102308608 B CN102308608 B CN 102308608B CN 200980156375 A CN200980156375 A CN 200980156375A CN 102308608 B CN102308608 B CN 102308608B
- Authority
- CN
- China
- Prior art keywords
- message
- bootstrap
- network unit
- bootstrapping
- key
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Active
Links
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/08—Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
- H04L9/0861—Generation of secret information including derivation or calculation of cryptographic keys or passwords
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/06—Network architectures or network communication protocols for network security for supporting key management in a packet data network
- H04L63/061—Network architectures or network communication protocols for network security for supporting key management in a packet data network for key exchange, e.g. in peer-to-peer networks
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L41/00—Arrangements for maintenance, administration or management of data switching networks, e.g. of packet switching networks
- H04L41/08—Configuration management of networks or network elements
- H04L41/0803—Configuration setting
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/083—Network architectures or network communication protocols for network security for authentication of entities using passwords
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/14—Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
- H04L63/1441—Countermeasures against malicious traffic
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/08—Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
- H04L9/0816—Key establishment, i.e. cryptographic processes or cryptographic protocols whereby a shared secret becomes available to two or more parties, for subsequent use
- H04L9/0838—Key agreement, i.e. key establishment technique in which a shared key is derived by parties as a function of information contributed by, or associated with, each of these
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/04—Key management, e.g. using generic bootstrapping architecture [GBA]
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/04—Key management, e.g. using generic bootstrapping architecture [GBA]
- H04W12/043—Key management, e.g. using generic bootstrapping architecture [GBA] using a trusted network node as an anchor
- H04W12/0431—Key distribution or pre-distribution; Key agreement
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/12—Detection or prevention of fraud
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L2209/00—Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
- H04L2209/80—Wireless
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Computer Hardware Design (AREA)
- Computing Systems (AREA)
- General Engineering & Computer Science (AREA)
- Mobile Radio Communication Systems (AREA)
- Data Exchanges In Wide-Area Networks (AREA)
Priority Applications (1)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| CN201510158970.9A CN104735656B (zh) | 2009-02-05 | 2009-10-01 | 用于在网络中保护自举消息的设备和方法 |
Applications Claiming Priority (3)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| US15011809P | 2009-02-05 | 2009-02-05 | |
| US61/150118 | 2009-02-05 | ||
| PCT/SE2009/051092 WO2010090569A1 (en) | 2009-02-05 | 2009-10-01 | Apparatuses and a method for protecting a bootstrap message in a network |
Related Child Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| CN201510158970.9A Division CN104735656B (zh) | 2009-02-05 | 2009-10-01 | 用于在网络中保护自举消息的设备和方法 |
Publications (2)
| Publication Number | Publication Date |
|---|---|
| CN102308608A CN102308608A (zh) | 2012-01-04 |
| CN102308608B true CN102308608B (zh) | 2015-05-06 |
Family
ID=42542282
Family Applications (2)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| CN200980156375.4A Active CN102308608B (zh) | 2009-02-05 | 2009-10-01 | 用于在网络中保护自举消息的设备和方法 |
| CN201510158970.9A Ceased CN104735656B (zh) | 2009-02-05 | 2009-10-01 | 用于在网络中保护自举消息的设备和方法 |
Family Applications After (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| CN201510158970.9A Ceased CN104735656B (zh) | 2009-02-05 | 2009-10-01 | 用于在网络中保护自举消息的设备和方法 |
Country Status (7)
| Country | Link |
|---|---|
| US (2) | US8826016B2 (enExample) |
| EP (1) | EP2394452B1 (enExample) |
| JP (1) | JP5468623B2 (enExample) |
| CN (2) | CN102308608B (enExample) |
| ES (1) | ES2661043T3 (enExample) |
| PL (1) | PL2394452T3 (enExample) |
| WO (1) | WO2010090569A1 (enExample) |
Families Citing this family (14)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN101951595A (zh) * | 2010-08-23 | 2011-01-19 | 中兴通讯股份有限公司 | 空口引导设置处理方法及系统 |
| US9223583B2 (en) * | 2010-12-17 | 2015-12-29 | Oracle International Corporation | Proactive token renewal and management in secure conversations |
| CN107484163A (zh) | 2011-04-01 | 2017-12-15 | 瑞典爱立信有限公司 | 用于避免网络攻击的危害的方法和装置 |
| CN102869015B (zh) | 2011-07-04 | 2017-12-15 | 中兴通讯股份有限公司 | 一种mtc设备触发的方法和系统 |
| KR101800659B1 (ko) * | 2011-07-08 | 2017-11-23 | 삼성전자 주식회사 | 이동 통신 시스템에서 단말 설정 방법 |
| US9894511B2 (en) * | 2012-09-03 | 2018-02-13 | Telefonaktiebolaget Lm Ericsson (Publ) | Methods and apparatuses for automatic provisioning of external identifiers used for machine type devices in a 3GPP network |
| WO2014070085A1 (en) * | 2012-10-29 | 2014-05-08 | Telefonaktiebolaget L M Ericsson (Publ) | Protecting a payload sent in a communications network |
| EP2929710B1 (en) * | 2012-12-06 | 2022-02-02 | NEC Corporation | Mtc key management for sending key from network to ue |
| EP2790420B1 (en) * | 2013-04-09 | 2018-12-19 | Sony Corporation | Flexible device management bootstrap |
| WO2015176235A1 (zh) * | 2014-05-20 | 2015-11-26 | 华为技术有限公司 | 网络功能的运行方法及装置 |
| WO2016116191A1 (en) * | 2015-01-19 | 2016-07-28 | Telefonaktiebolaget Lm Ericsson (Publ) | Methods and apparatus for direct communication key establishment |
| WO2016116190A1 (en) * | 2015-01-19 | 2016-07-28 | Telefonaktiebolaget Lm Ericsson (Publ) | Methods and apparatus for direct communication key establishment |
| US10833926B2 (en) * | 2017-11-17 | 2020-11-10 | T-Mobile Usa, Inc. | Touchless secure bootstrapping of IoT devices |
| US11751050B2 (en) * | 2020-12-17 | 2023-09-05 | Texas Instruments Incorporated | Provisioning a network device for secure communications |
Citations (2)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20080016230A1 (en) * | 2006-07-06 | 2008-01-17 | Nokia Corporation | User equipment credential system |
| WO2008006312A1 (fr) * | 2006-07-04 | 2008-01-17 | Huawei Technologies Co., Ltd. | Procédé de fourniture de service push de gaa et dispositif associé |
Family Cites Families (21)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US7889869B2 (en) * | 2004-08-20 | 2011-02-15 | Nokia Corporation | Methods and apparatus to integrate mobile communications device management with web browsing |
| US7715822B2 (en) * | 2005-02-04 | 2010-05-11 | Qualcomm Incorporated | Secure bootstrapping for wireless communications |
| US7628322B2 (en) * | 2005-03-07 | 2009-12-08 | Nokia Corporation | Methods, system and mobile device capable of enabling credit card personalization using a wireless network |
| KR100925732B1 (ko) | 2005-05-27 | 2009-11-11 | 엘지전자 주식회사 | 장치관리에서의 부트스트랩 메시지 보안 전송 방법 및 장치 |
| BRPI0611696B1 (pt) | 2005-06-13 | 2019-05-07 | Nokia Technologies Oy | Método, dispositivo e sistema para fornecer identidades de nós móveis em conjunto com preferências de autenticação em uma arquitetura de inicialização genérica |
| US8087069B2 (en) * | 2005-06-13 | 2011-12-27 | Nokia Corporation | Method, apparatus and computer program product providing bootstrapping mechanism selection in generic bootstrapping architecture (GBA) |
| US20070101122A1 (en) * | 2005-09-23 | 2007-05-03 | Yile Guo | Method and apparatus for securely generating application session keys |
| US7835528B2 (en) * | 2005-09-26 | 2010-11-16 | Nokia Corporation | Method and apparatus for refreshing keys within a bootstrapping architecture |
| US8122240B2 (en) * | 2005-10-13 | 2012-02-21 | Telefonaktiebolaget Lm Ericsson (Publ) | Method and apparatus for establishing a security association |
| WO2007063420A2 (en) * | 2005-12-01 | 2007-06-07 | Nokia Corporation | Authentication in communications networks |
| US8522025B2 (en) * | 2006-03-28 | 2013-08-27 | Nokia Corporation | Authenticating an application |
| DE102006038037A1 (de) * | 2006-08-14 | 2008-02-21 | Siemens Ag | Verfahren und System zum Bereitstellen eines zugangsspezifischen Schlüssels |
| CN101141792A (zh) * | 2006-09-09 | 2008-03-12 | 华为技术有限公司 | 一种通用引导架构推送的方法 |
| US8875236B2 (en) * | 2007-06-11 | 2014-10-28 | Nokia Corporation | Security in communication networks |
| WO2009004590A2 (en) | 2007-07-03 | 2009-01-08 | Nokia Siemens Networks Oy | Method, apparatus, system and computer program for key parameter provisioning |
| US7984486B2 (en) * | 2007-11-28 | 2011-07-19 | Nokia Corporation | Using GAA to derive and distribute proxy mobile node home agent keys |
| WO2009070075A1 (en) * | 2007-11-30 | 2009-06-04 | Telefonaktiebolaget Lm Ericsson (Publ) | Key management for secure communication |
| US8156318B2 (en) * | 2008-06-04 | 2012-04-10 | Intel Corporation | Storing a device management encryption key in a network interface controller |
| US8750506B2 (en) * | 2008-07-31 | 2014-06-10 | Telefonaktiebolaget Lm Ericsson (Publ) | Methods, nodes, system, computer programs and computer program products for secure user subscription or registration |
| US9590961B2 (en) * | 2009-07-14 | 2017-03-07 | Alcatel Lucent | Automated security provisioning protocol for wide area network communication devices in open device environment |
| WO2011128183A2 (en) * | 2010-04-13 | 2011-10-20 | Telefonaktiebolaget L M Ericsson (Publ) | Method and apparatus for interworking with single sign-on authentication architecture |
-
2009
- 2009-10-01 EP EP09839778.9A patent/EP2394452B1/en active Active
- 2009-10-01 ES ES09839778.9T patent/ES2661043T3/es active Active
- 2009-10-01 WO PCT/SE2009/051092 patent/WO2010090569A1/en not_active Ceased
- 2009-10-01 JP JP2011549117A patent/JP5468623B2/ja active Active
- 2009-10-01 CN CN200980156375.4A patent/CN102308608B/zh active Active
- 2009-10-01 US US13/147,892 patent/US8826016B2/en active Active
- 2009-10-01 PL PL09839778T patent/PL2394452T3/pl unknown
- 2009-10-01 CN CN201510158970.9A patent/CN104735656B/zh not_active Ceased
-
2014
- 2014-08-08 US US14/454,853 patent/US10313116B2/en active Active
Patent Citations (2)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| WO2008006312A1 (fr) * | 2006-07-04 | 2008-01-17 | Huawei Technologies Co., Ltd. | Procédé de fourniture de service push de gaa et dispositif associé |
| US20080016230A1 (en) * | 2006-07-06 | 2008-01-17 | Nokia Corporation | User equipment credential system |
Also Published As
| Publication number | Publication date |
|---|---|
| ES2661043T3 (es) | 2018-03-27 |
| EP2394452B1 (en) | 2017-12-06 |
| US10313116B2 (en) | 2019-06-04 |
| JP5468623B2 (ja) | 2014-04-09 |
| WO2010090569A1 (en) | 2010-08-12 |
| US8826016B2 (en) | 2014-09-02 |
| CN102308608A (zh) | 2012-01-04 |
| PL2394452T3 (pl) | 2018-05-30 |
| JP2012517185A (ja) | 2012-07-26 |
| CN104735656A (zh) | 2015-06-24 |
| US20110296181A1 (en) | 2011-12-01 |
| CN104735656B (zh) | 2018-11-27 |
| EP2394452A1 (en) | 2011-12-14 |
| US20140351575A1 (en) | 2014-11-27 |
| EP2394452A4 (en) | 2012-08-29 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| CN102308608B (zh) | 用于在网络中保护自举消息的设备和方法 | |
| US8578153B2 (en) | Method and arrangement for provisioning and managing a device | |
| EP2630816B1 (en) | Authentication of access terminal identities in roaming networks | |
| US20090253409A1 (en) | Method of Authenticating Home Operator for Over-the-Air Provisioning of a Wireless Device | |
| EP2932676B1 (en) | Authenticating public land mobile networks to mobile stations | |
| EP2037620B1 (en) | A realizing method for push service of gaa and a device | |
| JP6757845B2 (ja) | 秘密識別子を使用するユーザ機器に関連した動作 | |
| US20120260095A1 (en) | Apparatus and methods for controlling distribution of electronic access clients | |
| KR102173534B1 (ko) | 이동통신사업자 정보 제공 방법 및 이를 수행하는 장치 | |
| EP2343916B1 (en) | Secure coupling of hardware components | |
| JP2012034381A (ja) | Gaaのための汎用鍵の決定メカニズム | |
| US9622083B2 (en) | Communication devices and cellular wide area radio base station | |
| CN109565441B (zh) | 一种用于通过使用第二通信设备来配置第一通信设备的方法 | |
| KR101482938B1 (ko) | 인증 메시지 보안 방법, 이를 수행하는 인증 메시지 보안 서버 및 사용자 단말 | |
| CN108616861B (zh) | 一种空中写卡方法及装置 | |
| CN108432201B (zh) | 包含支持订户配置文件配置的本地管理模式的安全模块的电子设备 | |
| KR20140095050A (ko) | 이동 통신 시스템에서 단일 사용자 승인을 지원하는 관리 방법 및 장치 | |
| CN112616148B (zh) | 认证方法、认证平台和认证系统 | |
| WO2025156599A1 (en) | Method, device and computer program product for wireless communication | |
| CN114731512B (zh) | 管理安全元件 | |
| CN119790623A (zh) | 双因素认证 |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| C06 | Publication | ||
| PB01 | Publication | ||
| C10 | Entry into substantive examination | ||
| SE01 | Entry into force of request for substantive examination | ||
| C14 | Grant of patent or utility model | ||
| GR01 | Patent grant |