CN102308608B - 用于在网络中保护自举消息的设备和方法 - Google Patents

用于在网络中保护自举消息的设备和方法 Download PDF

Info

Publication number
CN102308608B
CN102308608B CN200980156375.4A CN200980156375A CN102308608B CN 102308608 B CN102308608 B CN 102308608B CN 200980156375 A CN200980156375 A CN 200980156375A CN 102308608 B CN102308608 B CN 102308608B
Authority
CN
China
Prior art keywords
message
bootstrap
network unit
bootstrapping
key
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN200980156375.4A
Other languages
English (en)
Chinese (zh)
Other versions
CN102308608A (zh
Inventor
L·巴里加
P-A·戴塞纽斯
M·林德斯特伦
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Telefonaktiebolaget LM Ericsson AB
Original Assignee
Telefonaktiebolaget LM Ericsson AB
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Family has litigation
First worldwide family litigation filed litigation Critical https://patents.darts-ip.com/?family=42542282&utm_source=google_patent&utm_medium=platform_link&utm_campaign=public_patent_search&patent=CN102308608(B) "Global patent litigation dataset” by Darts-ip is licensed under a Creative Commons Attribution 4.0 International License.
Application filed by Telefonaktiebolaget LM Ericsson AB filed Critical Telefonaktiebolaget LM Ericsson AB
Priority to CN201510158970.9A priority Critical patent/CN104735656B/zh
Publication of CN102308608A publication Critical patent/CN102308608A/zh
Application granted granted Critical
Publication of CN102308608B publication Critical patent/CN102308608B/zh
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/08Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
    • H04L9/0861Generation of secret information including derivation or calculation of cryptographic keys or passwords
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/06Network architectures or network communication protocols for network security for supporting key management in a packet data network
    • H04L63/061Network architectures or network communication protocols for network security for supporting key management in a packet data network for key exchange, e.g. in peer-to-peer networks
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L41/00Arrangements for maintenance, administration or management of data switching networks, e.g. of packet switching networks
    • H04L41/08Configuration management of networks or network elements
    • H04L41/0803Configuration setting
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/083Network architectures or network communication protocols for network security for authentication of entities using passwords
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/14Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
    • H04L63/1441Countermeasures against malicious traffic
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/08Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
    • H04L9/0816Key establishment, i.e. cryptographic processes or cryptographic protocols whereby a shared secret becomes available to two or more parties, for subsequent use
    • H04L9/0838Key agreement, i.e. key establishment technique in which a shared key is derived by parties as a function of information contributed by, or associated with, each of these
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/04Key management, e.g. using generic bootstrapping architecture [GBA]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/04Key management, e.g. using generic bootstrapping architecture [GBA]
    • H04W12/043Key management, e.g. using generic bootstrapping architecture [GBA] using a trusted network node as an anchor
    • H04W12/0431Key distribution or pre-distribution; Key agreement
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/12Detection or prevention of fraud
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L2209/00Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
    • H04L2209/80Wireless

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Hardware Design (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Mobile Radio Communication Systems (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)
CN200980156375.4A 2009-02-05 2009-10-01 用于在网络中保护自举消息的设备和方法 Active CN102308608B (zh)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201510158970.9A CN104735656B (zh) 2009-02-05 2009-10-01 用于在网络中保护自举消息的设备和方法

Applications Claiming Priority (3)

Application Number Priority Date Filing Date Title
US15011809P 2009-02-05 2009-02-05
US61/150118 2009-02-05
PCT/SE2009/051092 WO2010090569A1 (en) 2009-02-05 2009-10-01 Apparatuses and a method for protecting a bootstrap message in a network

Related Child Applications (1)

Application Number Title Priority Date Filing Date
CN201510158970.9A Division CN104735656B (zh) 2009-02-05 2009-10-01 用于在网络中保护自举消息的设备和方法

Publications (2)

Publication Number Publication Date
CN102308608A CN102308608A (zh) 2012-01-04
CN102308608B true CN102308608B (zh) 2015-05-06

Family

ID=42542282

Family Applications (2)

Application Number Title Priority Date Filing Date
CN200980156375.4A Active CN102308608B (zh) 2009-02-05 2009-10-01 用于在网络中保护自举消息的设备和方法
CN201510158970.9A Ceased CN104735656B (zh) 2009-02-05 2009-10-01 用于在网络中保护自举消息的设备和方法

Family Applications After (1)

Application Number Title Priority Date Filing Date
CN201510158970.9A Ceased CN104735656B (zh) 2009-02-05 2009-10-01 用于在网络中保护自举消息的设备和方法

Country Status (7)

Country Link
US (2) US8826016B2 (enExample)
EP (1) EP2394452B1 (enExample)
JP (1) JP5468623B2 (enExample)
CN (2) CN102308608B (enExample)
ES (1) ES2661043T3 (enExample)
PL (1) PL2394452T3 (enExample)
WO (1) WO2010090569A1 (enExample)

Families Citing this family (14)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101951595A (zh) * 2010-08-23 2011-01-19 中兴通讯股份有限公司 空口引导设置处理方法及系统
US9223583B2 (en) * 2010-12-17 2015-12-29 Oracle International Corporation Proactive token renewal and management in secure conversations
CN107484163A (zh) 2011-04-01 2017-12-15 瑞典爱立信有限公司 用于避免网络攻击的危害的方法和装置
CN102869015B (zh) 2011-07-04 2017-12-15 中兴通讯股份有限公司 一种mtc设备触发的方法和系统
KR101800659B1 (ko) * 2011-07-08 2017-11-23 삼성전자 주식회사 이동 통신 시스템에서 단말 설정 방법
US9894511B2 (en) * 2012-09-03 2018-02-13 Telefonaktiebolaget Lm Ericsson (Publ) Methods and apparatuses for automatic provisioning of external identifiers used for machine type devices in a 3GPP network
WO2014070085A1 (en) * 2012-10-29 2014-05-08 Telefonaktiebolaget L M Ericsson (Publ) Protecting a payload sent in a communications network
EP2929710B1 (en) * 2012-12-06 2022-02-02 NEC Corporation Mtc key management for sending key from network to ue
EP2790420B1 (en) * 2013-04-09 2018-12-19 Sony Corporation Flexible device management bootstrap
WO2015176235A1 (zh) * 2014-05-20 2015-11-26 华为技术有限公司 网络功能的运行方法及装置
WO2016116191A1 (en) * 2015-01-19 2016-07-28 Telefonaktiebolaget Lm Ericsson (Publ) Methods and apparatus for direct communication key establishment
WO2016116190A1 (en) * 2015-01-19 2016-07-28 Telefonaktiebolaget Lm Ericsson (Publ) Methods and apparatus for direct communication key establishment
US10833926B2 (en) * 2017-11-17 2020-11-10 T-Mobile Usa, Inc. Touchless secure bootstrapping of IoT devices
US11751050B2 (en) * 2020-12-17 2023-09-05 Texas Instruments Incorporated Provisioning a network device for secure communications

Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20080016230A1 (en) * 2006-07-06 2008-01-17 Nokia Corporation User equipment credential system
WO2008006312A1 (fr) * 2006-07-04 2008-01-17 Huawei Technologies Co., Ltd. Procédé de fourniture de service push de gaa et dispositif associé

Family Cites Families (21)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7889869B2 (en) * 2004-08-20 2011-02-15 Nokia Corporation Methods and apparatus to integrate mobile communications device management with web browsing
US7715822B2 (en) * 2005-02-04 2010-05-11 Qualcomm Incorporated Secure bootstrapping for wireless communications
US7628322B2 (en) * 2005-03-07 2009-12-08 Nokia Corporation Methods, system and mobile device capable of enabling credit card personalization using a wireless network
KR100925732B1 (ko) 2005-05-27 2009-11-11 엘지전자 주식회사 장치관리에서의 부트스트랩 메시지 보안 전송 방법 및 장치
BRPI0611696B1 (pt) 2005-06-13 2019-05-07 Nokia Technologies Oy Método, dispositivo e sistema para fornecer identidades de nós móveis em conjunto com preferências de autenticação em uma arquitetura de inicialização genérica
US8087069B2 (en) * 2005-06-13 2011-12-27 Nokia Corporation Method, apparatus and computer program product providing bootstrapping mechanism selection in generic bootstrapping architecture (GBA)
US20070101122A1 (en) * 2005-09-23 2007-05-03 Yile Guo Method and apparatus for securely generating application session keys
US7835528B2 (en) * 2005-09-26 2010-11-16 Nokia Corporation Method and apparatus for refreshing keys within a bootstrapping architecture
US8122240B2 (en) * 2005-10-13 2012-02-21 Telefonaktiebolaget Lm Ericsson (Publ) Method and apparatus for establishing a security association
WO2007063420A2 (en) * 2005-12-01 2007-06-07 Nokia Corporation Authentication in communications networks
US8522025B2 (en) * 2006-03-28 2013-08-27 Nokia Corporation Authenticating an application
DE102006038037A1 (de) * 2006-08-14 2008-02-21 Siemens Ag Verfahren und System zum Bereitstellen eines zugangsspezifischen Schlüssels
CN101141792A (zh) * 2006-09-09 2008-03-12 华为技术有限公司 一种通用引导架构推送的方法
US8875236B2 (en) * 2007-06-11 2014-10-28 Nokia Corporation Security in communication networks
WO2009004590A2 (en) 2007-07-03 2009-01-08 Nokia Siemens Networks Oy Method, apparatus, system and computer program for key parameter provisioning
US7984486B2 (en) * 2007-11-28 2011-07-19 Nokia Corporation Using GAA to derive and distribute proxy mobile node home agent keys
WO2009070075A1 (en) * 2007-11-30 2009-06-04 Telefonaktiebolaget Lm Ericsson (Publ) Key management for secure communication
US8156318B2 (en) * 2008-06-04 2012-04-10 Intel Corporation Storing a device management encryption key in a network interface controller
US8750506B2 (en) * 2008-07-31 2014-06-10 Telefonaktiebolaget Lm Ericsson (Publ) Methods, nodes, system, computer programs and computer program products for secure user subscription or registration
US9590961B2 (en) * 2009-07-14 2017-03-07 Alcatel Lucent Automated security provisioning protocol for wide area network communication devices in open device environment
WO2011128183A2 (en) * 2010-04-13 2011-10-20 Telefonaktiebolaget L M Ericsson (Publ) Method and apparatus for interworking with single sign-on authentication architecture

Patent Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2008006312A1 (fr) * 2006-07-04 2008-01-17 Huawei Technologies Co., Ltd. Procédé de fourniture de service push de gaa et dispositif associé
US20080016230A1 (en) * 2006-07-06 2008-01-17 Nokia Corporation User equipment credential system

Also Published As

Publication number Publication date
ES2661043T3 (es) 2018-03-27
EP2394452B1 (en) 2017-12-06
US10313116B2 (en) 2019-06-04
JP5468623B2 (ja) 2014-04-09
WO2010090569A1 (en) 2010-08-12
US8826016B2 (en) 2014-09-02
CN102308608A (zh) 2012-01-04
PL2394452T3 (pl) 2018-05-30
JP2012517185A (ja) 2012-07-26
CN104735656A (zh) 2015-06-24
US20110296181A1 (en) 2011-12-01
CN104735656B (zh) 2018-11-27
EP2394452A1 (en) 2011-12-14
US20140351575A1 (en) 2014-11-27
EP2394452A4 (en) 2012-08-29

Similar Documents

Publication Publication Date Title
CN102308608B (zh) 用于在网络中保护自举消息的设备和方法
US8578153B2 (en) Method and arrangement for provisioning and managing a device
EP2630816B1 (en) Authentication of access terminal identities in roaming networks
US20090253409A1 (en) Method of Authenticating Home Operator for Over-the-Air Provisioning of a Wireless Device
EP2932676B1 (en) Authenticating public land mobile networks to mobile stations
EP2037620B1 (en) A realizing method for push service of gaa and a device
JP6757845B2 (ja) 秘密識別子を使用するユーザ機器に関連した動作
US20120260095A1 (en) Apparatus and methods for controlling distribution of electronic access clients
KR102173534B1 (ko) 이동통신사업자 정보 제공 방법 및 이를 수행하는 장치
EP2343916B1 (en) Secure coupling of hardware components
JP2012034381A (ja) Gaaのための汎用鍵の決定メカニズム
US9622083B2 (en) Communication devices and cellular wide area radio base station
CN109565441B (zh) 一种用于通过使用第二通信设备来配置第一通信设备的方法
KR101482938B1 (ko) 인증 메시지 보안 방법, 이를 수행하는 인증 메시지 보안 서버 및 사용자 단말
CN108616861B (zh) 一种空中写卡方法及装置
CN108432201B (zh) 包含支持订户配置文件配置的本地管理模式的安全模块的电子设备
KR20140095050A (ko) 이동 통신 시스템에서 단일 사용자 승인을 지원하는 관리 방법 및 장치
CN112616148B (zh) 认证方法、认证平台和认证系统
WO2025156599A1 (en) Method, device and computer program product for wireless communication
CN114731512B (zh) 管理安全元件
CN119790623A (zh) 双因素认证

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant