CO6251350A2 - Metodo y disposiciones para establecer una clave de seguridad - Google Patents

Metodo y disposiciones para establecer una clave de seguridad

Info

Publication number
CO6251350A2
CO6251350A2 CO10012466A CO10012466A CO6251350A2 CO 6251350 A2 CO6251350 A2 CO 6251350A2 CO 10012466 A CO10012466 A CO 10012466A CO 10012466 A CO10012466 A CO 10012466A CO 6251350 A2 CO6251350 A2 CO 6251350A2
Authority
CO
Colombia
Prior art keywords
nas
seq
enb
received
mme according
Prior art date
Application number
CO10012466A
Other languages
English (en)
Inventor
Rolf Blom
Original Assignee
Ericsson Telefon Ab L M
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Family has litigation
First worldwide family litigation filed litigation Critical https://patents.darts-ip.com/?family=40468151&utm_source=google_patent&utm_medium=platform_link&utm_campaign=public_patent_search&patent=CO6251350(A2) "Global patent litigation dataset” by Darts-ip is licensed under a Creative Commons Attribution 4.0 International License.
Application filed by Ericsson Telefon Ab L M filed Critical Ericsson Telefon Ab L M
Publication of CO6251350A2 publication Critical patent/CO6251350A2/es

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/08Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
    • H04L9/0816Key establishment, i.e. cryptographic processes or cryptographic protocols whereby a shared secret becomes available to two or more parties, for subsequent use
    • H04L9/0819Key transport or distribution, i.e. key establishment techniques where one party creates or otherwise obtains a secret value, and securely transfers it to the other(s)
    • H04L9/083Key transport or distribution, i.e. key establishment techniques where one party creates or otherwise obtains a secret value, and securely transfers it to the other(s) involving central third party, e.g. key distribution center [KDC] or trusted third party [TTP]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/06Network architectures or network communication protocols for network security for supporting key management in a packet data network
    • H04L63/062Network architectures or network communication protocols for network security for supporting key management in a packet data network for key distribution, e.g. centrally by trusted party
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/08Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
    • H04L9/0816Key establishment, i.e. cryptographic processes or cryptographic protocols whereby a shared secret becomes available to two or more parties, for subsequent use
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/08Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
    • H04L9/0861Generation of secret information including derivation or calculation of cryptographic keys or passwords
    • H04L9/0869Generation of secret information including derivation or calculation of cryptographic keys or passwords involving random numbers or seeds
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/04Key management, e.g. using generic bootstrapping architecture [GBA]
    • H04W12/041Key generation or derivation
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/04Key management, e.g. using generic bootstrapping architecture [GBA]
    • H04W12/047Key management, e.g. using generic bootstrapping architecture [GBA] without using a trusted network node as an anchor
    • H04W12/0471Key exchange
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W8/00Network data management
    • H04W8/18Processing of user or subscriber data, e.g. subscribed services, user preferences or user profiles; Transfer of user or subscriber data
    • H04W8/20Transfer of user or subscriber data
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L2209/00Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
    • H04L2209/24Key scheduling, i.e. generating round keys or sub-keys for block encryption
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L2209/00Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
    • H04L2209/80Wireless
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L2463/00Additional details relating to network architectures or network communication protocols for network security covered by H04L63/00
    • H04L2463/061Additional details relating to network architectures or network communication protocols for network security covered by H04L63/00 applying further key derivation, e.g. deriving traffic keys from a pair-wise master key
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W92/00Interfaces specially adapted for wireless communication networks
    • H04W92/04Interfaces between hierarchically different network devices
    • H04W92/10Interfaces between hierarchically different network devices between terminal device and access point, i.e. wireless air interface

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Hardware Design (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Databases & Information Systems (AREA)
  • Mobile Radio Communication Systems (AREA)
  • Telephonic Communication Services (AREA)

Abstract

1.- Un método en una Entidad de Administración de Movilidad (13), MME, de un Sistema Evolucionado de Paquetes, EPS, de establecer una clave de seguridad, K_eNB, para proteger el tráfico RRC/UP entre un Equipo de Usuario (11), UE, y un eNodeB (12) que presta servicio al UE, método que comprende los siguientes pasos: - Recibir (32, 52) una SOLICITUD DE SERVICIO NAS del UE, solicitud que indica un número de secuencia NAS de enlace ascendente, NAS_U_SEQ; - Derivar (33, 53) la clave de seguridad, K_eNB, de al menos dicho NAS_U_SEQ recibido y de una clave almacenada de Entidad de Administración de Acceso de Seguridad, K_ASME, compartida con dicho UE; - Reenviar (34) dicho K_eNB derivado al eNodeB (12) que presta servicio al UE. 2.- Un método en una MME de acuerdo con la reivindicación 1 en donde el K_eNB se deriva del NAS_U_SEQ y el K_ASME usando una Función Seudo-Aleatoria, PRF. 3.- Un método en una MME de acuerdo con la reivindicación 1 o 2, que comprende el paso adicional de reconstruir el número de secuencia completo NAS de enlace ascendente NAS_U_SEQ de los bits de bajo orden recibidos. 4.- Un método en una MME de acuerdo con cualquiera de las reivindicaciones previas, que comprende el paso adicional de comprobar la integridad de la Solicitud de Servicio NAS recibida del UE (11). 5.- Un método en una MME de acuerdo con cualquiera de las reivindicaciones previas, que comprende el paso adicional de regresar (54, 55) una indicación del NAS_U_SEQ recibido del UE (11).
CO10012466A 2007-09-17 2010-02-05 Metodo y disposiciones para establecer una clave de seguridad CO6251350A2 (es)

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
US97295507P 2007-09-17 2007-09-17

Publications (1)

Publication Number Publication Date
CO6251350A2 true CO6251350A2 (es) 2011-02-21

Family

ID=40468151

Family Applications (1)

Application Number Title Priority Date Filing Date
CO10012466A CO6251350A2 (es) 2007-09-17 2010-02-05 Metodo y disposiciones para establecer una clave de seguridad

Country Status (17)

Country Link
US (7) US8660270B2 (es)
EP (4) EP2403180A1 (es)
JP (2) JP2010539786A (es)
CN (2) CN102916808B (es)
AR (1) AR068031A1 (es)
AT (1) ATE523980T1 (es)
AU (1) AU2008301284B2 (es)
CA (1) CA2699846C (es)
CO (1) CO6251350A2 (es)
DE (1) DE202008018538U1 (es)
DK (3) DK2629451T3 (es)
ES (3) ES2750051T3 (es)
HU (1) HUE058067T2 (es)
PL (3) PL2629451T3 (es)
PT (3) PT3598690T (es)
RU (1) RU2466503C9 (es)
WO (1) WO2009038522A1 (es)

Families Citing this family (25)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
HUE058067T2 (hu) 2007-09-17 2022-06-28 Ericsson Telefon Ab L M Eljárás és elrendezés távközlési rendszerben
CN101400059B (zh) * 2007-09-28 2010-12-08 华为技术有限公司 一种active状态下的密钥更新方法和设备
CN101925059B (zh) * 2009-06-12 2014-06-11 中兴通讯股份有限公司 一种切换的过程中密钥的生成方法及系统
CN102045677A (zh) * 2009-10-15 2011-05-04 中兴通讯股份有限公司 紧急业务实现方法、MSC/VLR、MME和eNodeB
CN102045803B (zh) * 2009-10-17 2013-06-12 中兴通讯股份有限公司 演进的分组域系统网络电路交换回落的实现系统及方法
US9385862B2 (en) * 2010-06-16 2016-07-05 Qualcomm Incorporated Method and apparatus for binding subscriber authentication and device authentication in communication systems
US8839373B2 (en) 2010-06-18 2014-09-16 Qualcomm Incorporated Method and apparatus for relay node management and authorization
US9215220B2 (en) 2010-06-21 2015-12-15 Nokia Solutions And Networks Oy Remote verification of attributes in a communication network
US20130242932A1 (en) * 2010-11-24 2013-09-19 Nokia Siemens Networks Oy Secondary Spectrum Use
EP2737731B1 (en) * 2011-07-29 2016-05-18 SCA IPLA Holdings Inc. Reduced context or context-less short message transmission for machine-type-communication
RU2628489C2 (ru) 2012-05-10 2017-08-17 Самсунг Электроникс Ко., Лтд. Способ и система для передачи без подключения во время передачи пакетов данных по восходящей линии связи и нисходящей линии связи
US9306743B2 (en) * 2012-08-30 2016-04-05 Texas Instruments Incorporated One-way key fob and vehicle pairing verification, retention, and revocation
US20140068098A1 (en) * 2012-09-04 2014-03-06 Qualcomm Incorporated Reducing network latency resulting from non-access stratum (nas) authentication for high performance content applications
US8873757B2 (en) * 2012-10-19 2014-10-28 Qualcom Incorporated Methods and apparatus for providing network-assisted key agreement for D2D communications
US9119062B2 (en) * 2012-10-19 2015-08-25 Qualcomm Incorporated Methods and apparatus for providing additional security for communication of sensitive information
GB2509937A (en) 2013-01-17 2014-07-23 Nec Corp Providing security information to a mobile device in which user plane data and control plane signalling are communicated via different base stations
EP3087769A1 (en) 2013-12-24 2016-11-02 Nec Corporation Apparatus, system and method for sce
US10142840B2 (en) * 2015-01-29 2018-11-27 Motorola Mobility Llc Method and apparatus for operating a user client wireless communication device on a wireless wide area network
US10021559B2 (en) * 2015-08-04 2018-07-10 Qualcomm Incorporated Supporting multiple concurrent service contexts with a single connectivity context
CN107005927B (zh) * 2015-09-22 2022-05-31 华为技术有限公司 用户设备ue的接入方法、设备及系统
US11234126B2 (en) * 2015-11-17 2022-01-25 Qualcomm Incorporated Methods and apparatus for wireless communication using a security model to support multiple connectivity and service contexts
US10298549B2 (en) * 2015-12-23 2019-05-21 Qualcomm Incorporated Stateless access stratum security for cellular internet of things
WO2017133021A1 (zh) * 2016-02-06 2017-08-10 华为技术有限公司 一种安全处理方法及相关设备
CN111328457B (zh) 2017-09-15 2022-01-28 瑞典爱立信有限公司 无线通信系统中的安全性上下文
RU2735089C1 (ru) 2017-10-02 2020-10-28 Телефонактиеболагет Лм Эрикссон (Пабл) Защита информации направления в сеть

Family Cites Families (36)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US5799087A (en) 1994-04-28 1998-08-25 Citibank, N.A. Electronic-monetary system
SE506619C2 (sv) 1995-09-27 1998-01-19 Ericsson Telefon Ab L M Metod för kryptering av information
WO2000062507A1 (en) 1999-04-09 2000-10-19 General Instrument Corporation Key management between a cable telephony adapter and associated signaling controller
GB9922847D0 (en) 1999-09-27 1999-11-24 Simoco Int Ltd Radio communications
JP4291946B2 (ja) * 1999-10-21 2009-07-08 ユーティースターコム コリア リミテッド 非同期移動通信システム
GB0004178D0 (en) 2000-02-22 2000-04-12 Nokia Networks Oy Integrity check in a communication system
WO2002061525A2 (en) * 2000-11-02 2002-08-08 Pirus Networks Tcp/udp acceleration
FI111423B (fi) * 2000-11-28 2003-07-15 Nokia Corp Järjestelmä kanavanvaihdon jälkeen tapahtuvan tietoliikenteen salauksen varmistamiseksi
US7152238B1 (en) * 2000-12-29 2006-12-19 Cisco Technology, Inc. Enabling mobility for point to point protocol (PPP) users using a node that does not support mobility
WO2005034551A1 (en) * 2003-10-01 2005-04-14 Actix Limited Call tracking systems
EP1878285B1 (en) * 2005-04-26 2011-08-10 Vodafone Group PLC Fast user plane establishment in a telecommunications network
US8228917B2 (en) * 2005-04-26 2012-07-24 Qualcomm Incorporated Method and apparatus for ciphering and re-ordering packets in a wireless communication system
US8842693B2 (en) 2005-05-31 2014-09-23 Qualcomm Incorporated Rank step-down for MIMO SCW design employing HARQ
DE202005021930U1 (de) * 2005-08-01 2011-08-08 Corning Cable Systems Llc Faseroptische Auskoppelkabel und vorverbundene Baugruppen mit Toning-Teilen
US9420612B2 (en) * 2005-08-19 2016-08-16 Core Wireless Licensing S.A.R.L. Apparatus, method and computer program product providing simultaneous radio resource and service requests
CN1921682B (zh) * 2005-08-26 2010-04-21 华为技术有限公司 增强通用鉴权框架中的密钥协商方法
CN103199971B (zh) * 2005-12-22 2017-03-15 美商内数位科技公司 由wtru实施的数据安全以及自动重复请求的方法和wtru
JP2007184938A (ja) * 2006-01-04 2007-07-19 Asustek Computer Inc 無線通信システムにおけるユーザー端の完全性保護設定方法及び装置
GB0600401D0 (en) * 2006-01-10 2006-02-15 Vodafone Plc Telecommunications networks
WO2007108651A1 (en) * 2006-03-22 2007-09-27 Lg Electronics Inc. Security considerations for the lte of umts
US8627092B2 (en) * 2006-03-22 2014-01-07 Lg Electronics Inc. Asymmetric cryptography for wireless systems
JP5059096B2 (ja) * 2006-03-31 2012-10-24 サムスン エレクトロニクス カンパニー リミテッド アクセスシステム間のハンドオーバー時の認証手順を最適化するシステム及び方法
GB0606692D0 (en) * 2006-04-03 2006-05-10 Vodafone Plc Telecommunications networks
JP4960446B2 (ja) * 2006-06-19 2012-06-27 インターデイジタル テクノロジー コーポレーション 初期の信号メッセージにおいて初期のユーザ識別情報のセキュリティを保護する方法および装置
US8570956B2 (en) 2006-06-21 2013-10-29 Lg Electronics Inc. Method of communicating data in a wireless mobile communications system using message separation and mobile terminal for use with the same
WO2008001187A2 (en) 2006-06-26 2008-01-03 Nokia Corporation Method for providing improved sequence number handling in networks
US7852817B2 (en) * 2006-07-14 2010-12-14 Kineto Wireless, Inc. Generic access to the Iu interface
US7912004B2 (en) * 2006-07-14 2011-03-22 Kineto Wireless, Inc. Generic access to the Iu interface
US20080039086A1 (en) * 2006-07-14 2008-02-14 Gallagher Michael D Generic Access to the Iu Interface
US8948395B2 (en) 2006-08-24 2015-02-03 Qualcomm Incorporated Systems and methods for key management for wireless communications systems
WO2008038949A1 (en) 2006-09-28 2008-04-03 Samsung Electronics Co., Ltd. A system and method of providing user equipment initiated and assisted backward handover in heterogeneous wireless networks
GB0619499D0 (en) * 2006-10-03 2006-11-08 Lucent Technologies Inc Encrypted data in a wireless telecommunications system
JP2008104040A (ja) 2006-10-20 2008-05-01 Fujitsu Ltd 共通鍵生成装置および共通鍵生成方法
EP1973265A1 (en) 2007-03-21 2008-09-24 Nokia Siemens Networks Gmbh & Co. Kg Key refresh in SAE/LTE system
US8699711B2 (en) 2007-07-18 2014-04-15 Interdigital Technology Corporation Method and apparatus to implement security in a long term evolution wireless device
HUE058067T2 (hu) 2007-09-17 2022-06-28 Ericsson Telefon Ab L M Eljárás és elrendezés távközlési rendszerben

Also Published As

Publication number Publication date
JP2010539786A (ja) 2010-12-16
CN101803271B (zh) 2012-12-12
HUE058067T2 (hu) 2022-06-28
CN102916808A (zh) 2013-02-06
US20170170954A1 (en) 2017-06-15
WO2009038522A1 (en) 2009-03-26
US20140185809A1 (en) 2014-07-03
RU2466503C2 (ru) 2012-11-10
US8938076B2 (en) 2015-01-20
DK3598690T3 (da) 2022-01-10
EP2403180A1 (en) 2012-01-04
EP2191608A1 (en) 2010-06-02
AU2008301284A1 (en) 2009-03-26
EP2191608B1 (en) 2011-09-07
CA2699846C (en) 2016-07-05
EP2191608A4 (en) 2011-03-16
US20150146870A1 (en) 2015-05-28
PL3598690T3 (pl) 2022-04-19
US11075749B2 (en) 2021-07-27
DE202008018538U1 (de) 2015-06-30
ES2906127T3 (es) 2022-04-13
AR068031A1 (es) 2009-10-28
DK2191608T3 (da) 2012-01-02
ES2368875T3 (es) 2011-11-23
CA2699846A1 (en) 2009-03-26
ES2750051T3 (es) 2020-03-24
US20200008053A1 (en) 2020-01-02
US20210328775A1 (en) 2021-10-21
JP2013013125A (ja) 2013-01-17
EP2629451A1 (en) 2013-08-21
US11917055B2 (en) 2024-02-27
AU2008301284B2 (en) 2013-05-09
PT2191608E (pt) 2011-12-07
CN101803271A (zh) 2010-08-11
US20180332470A1 (en) 2018-11-15
US10455417B2 (en) 2019-10-22
EP3598690B1 (en) 2021-12-08
US10057055B2 (en) 2018-08-21
RU2466503C9 (ru) 2019-01-09
ATE523980T1 (de) 2011-09-15
PT2629451T (pt) 2019-08-01
EP3598690A1 (en) 2020-01-22
US8660270B2 (en) 2014-02-25
PL2191608T3 (pl) 2012-01-31
US20100316223A1 (en) 2010-12-16
RU2010115362A (ru) 2011-10-27
PL2629451T3 (pl) 2019-12-31
EP2629451B1 (en) 2019-07-10
JP5425281B2 (ja) 2014-02-26
CN102916808B (zh) 2015-11-18
PT3598690T (pt) 2021-12-24
DK2629451T3 (da) 2019-08-19
US9615249B2 (en) 2017-04-04

Similar Documents

Publication Publication Date Title
CO6251350A2 (es) Metodo y disposiciones para establecer una clave de seguridad
CO2021005229A2 (es) Sistemas y método de protección de seguridad de mensajes de estrato sin acceso
BR112018074084A2 (pt) sistema e método para comutação de feixe e relatório
CL2017000865A1 (es) Métodos, aparatos y sistemas para análisis de redes
BR112017017341A2 (pt) métodos e sistemas para proteção iniciada por receptor de uma troca de comunicação sem fio
BR112019001727A2 (pt) refino de feixe para feixes ativos e candidatos
BR112017017165A2 (pt) atualização do sistema de informação
CO2020006796A2 (es) Terminal de usuario y procedimiento de comunicación por radio
CL2019002026A1 (es) Direccionamiento de un entorno de ejecución confiable utilizando clave de firma.
CL2009001359A1 (es) Método para generar una clave criptográfica para la protección de la comunicación entre dos entidades, realizada por la primera entidad como parte de una operación distribuida de seguridad iniciada por la segunda entidad; dispositivo; equipo; sistema.
BR112018071652A2 (pt) regras de geração e seleção de confirmação de bloco
AR066248A1 (es) Conexion radial y manipulacion de falla de recepcion
MY201177A (en) Access method, device and system for user equipment (ue)
AR069060A1 (es) Mejoras en la arquitectura y protocolo para el estrato sin acceso en unidades moviles de evolucion a largo plazo
CL2020001354A1 (es) Determinación de los candidatos del haz para transmitir la señal de recuperación de fallas del haz
ES2447215R1 (es) Identificación de vacíos de cobertura usando medidas de traspaso inter-RAT
CL2018001154A1 (es) Dispositivo de usuario, estación base y método de establecimiento de conexión
BR112016017476A8 (pt) método e dispositivo para processamento de falha de enlace de rádio
BR112018011883A2 (pt) técnicas para indicar um tipo de subquadro dinâmico
CO2018009316A2 (es) Protección de los dispositivos de red por un cortafuegos
CO2021003434A2 (es) Técnicas para la gestión del espacio de búsqueda
AR077291A1 (es) Sistemas, procedimientos y aparatos para la deteccion y recuperacion de errores de cifrado
BR112019008708A2 (pt) método de acesso aleatório, dispositivo de rede, equipamento de usuário, aparelho, mídia de armazenamento legível por computador, e sistema de comunicações
BR112018007080A2 (pt) primeiro nó de acesso de rádio para uso em uma rede de comunicação, dispositivo de comunicação e métodos de operação dos mesmos
AR081175A1 (es) Aparato y metodo para senalizar el contexto de seguridad aumentado para encriptacion de sesion y claves de integridad

Legal Events

Date Code Title Description
FG Application granted