CU24586B1 - Método para la autenticación de una red de servicio por un equipo de usuario (ue) utilizando credenciales de una red doméstica - Google Patents
Método para la autenticación de una red de servicio por un equipo de usuario (ue) utilizando credenciales de una red domésticaInfo
- Publication number
- CU24586B1 CU24586B1 CU2017000033A CU20170033A CU24586B1 CU 24586 B1 CU24586 B1 CU 24586B1 CU 2017000033 A CU2017000033 A CU 2017000033A CU 20170033 A CU20170033 A CU 20170033A CU 24586 B1 CU24586 B1 CU 24586B1
- Authority
- CU
- Cuba
- Prior art keywords
- service network
- credentials
- authentication
- network
- user equipment
- Prior art date
Links
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/04—Key management, e.g. using generic bootstrapping architecture [GBA]
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/0892—Network architectures or network communication protocols for network security for authentication of entities by using authentication-authorization-accounting [AAA] servers or protocols
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/08—Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
- H04L9/0816—Key establishment, i.e. cryptographic processes or cryptographic protocols whereby a shared secret becomes available to two or more parties, for subsequent use
- H04L9/0819—Key transport or distribution, i.e. key establishment techniques where one party creates or otherwise obtains a secret value, and securely transfers it to the other(s)
- H04L9/0822—Key transport or distribution, i.e. key establishment techniques where one party creates or otherwise obtains a secret value, and securely transfers it to the other(s) using key encryption key
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/08—Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
- H04L9/0816—Key establishment, i.e. cryptographic processes or cryptographic protocols whereby a shared secret becomes available to two or more parties, for subsequent use
- H04L9/0819—Key transport or distribution, i.e. key establishment techniques where one party creates or otherwise obtains a secret value, and securely transfers it to the other(s)
- H04L9/0825—Key transport or distribution, i.e. key establishment techniques where one party creates or otherwise obtains a secret value, and securely transfers it to the other(s) using asymmetric-key encryption or public key infrastructure [PKI], e.g. key signature or public key certificates
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3247—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving digital signatures
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3271—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials using challenge-response
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/04—Key management, e.g. using generic bootstrapping architecture [GBA]
- H04W12/041—Key generation or derivation
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/04—Key management, e.g. using generic bootstrapping architecture [GBA]
- H04W12/043—Key management, e.g. using generic bootstrapping architecture [GBA] using a trusted network node as an anchor
- H04W12/0431—Key distribution or pre-distribution; Key agreement
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/04—Key management, e.g. using generic bootstrapping architecture [GBA]
- H04W12/043—Key management, e.g. using generic bootstrapping architecture [GBA] using a trusted network node as an anchor
- H04W12/0433—Key management protocols
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/04—Key management, e.g. using generic bootstrapping architecture [GBA]
- H04W12/047—Key management, e.g. using generic bootstrapping architecture [GBA] without using a trusted network node as an anchor
- H04W12/0471—Key exchange
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/06—Authentication
- H04W12/068—Authentication using credential vaults, e.g. password manager applications or one time password [OTP] applications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L2209/00—Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
- H04L2209/24—Key scheduling, i.e. generating round keys or sub-keys for block encryption
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L2209/00—Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
- H04L2209/80—Wireless
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L2463/00—Additional details relating to network architectures or network communication protocols for network security covered by H04L63/00
- H04L2463/062—Additional details relating to network architectures or network communication protocols for network security covered by H04L63/00 applying encryption of the keys
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Business, Economics & Management (AREA)
- Accounting & Taxation (AREA)
- Computer Hardware Design (AREA)
- Computing Systems (AREA)
- General Engineering & Computer Science (AREA)
- Mobile Radio Communication Systems (AREA)
- Telephonic Communication Services (AREA)
- Management, Administration, Business Operations System, And Electronic Commerce (AREA)
Abstract
<p>La presente invención se refiere a un método para Ia comunicación inalámbrica. El método puede incluir establecer una conexión con una red de servicio, transmitir una credencial de autenticación encriptada que incluye una clave de encriptación de clave seleccionada aleatoriamente (KEK) y un identificador de Ia red de servicio a Ia red de servicio, recibir información de autenticación y una firma de Ia red de servicio, y autenticar Ia red de servicio mediante Ia verificación de Ia firma sobre Ia base de Ia KEK. La credencial de autenticación encriptada puede ser operativa para identificar Ia red de servicio. La firma se puede generar usando Ia KEK.</p>
Applications Claiming Priority (3)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| US201462056371P | 2014-09-26 | 2014-09-26 | |
| US14/674,763 US9491618B2 (en) | 2014-09-26 | 2015-03-31 | Serving network authentication |
| PCT/US2015/047295 WO2016048574A1 (en) | 2014-09-26 | 2015-08-27 | Serving network authentication |
Publications (2)
| Publication Number | Publication Date |
|---|---|
| CU20170033A7 CU20170033A7 (es) | 2017-07-04 |
| CU24586B1 true CU24586B1 (es) | 2022-04-07 |
Family
ID=54064611
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| CU2017000033A CU24586B1 (es) | 2014-09-26 | 2015-08-27 | Método para la autenticación de una red de servicio por un equipo de usuario (ue) utilizando credenciales de una red doméstica |
Country Status (10)
| Country | Link |
|---|---|
| US (1) | US9491618B2 (es) |
| EP (1) | EP3198906B1 (es) |
| JP (1) | JP6235761B2 (es) |
| KR (1) | KR101785249B1 (es) |
| CN (1) | CN106717044B (es) |
| AU (1) | AU2015321927B2 (es) |
| CU (1) | CU24586B1 (es) |
| PE (1) | PE20170656A1 (es) |
| TW (1) | TWI695611B (es) |
| WO (1) | WO2016048574A1 (es) |
Families Citing this family (35)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US9680816B2 (en) * | 2014-10-14 | 2017-06-13 | Cisco Technology, Inc. | Attesting authenticity of infrastructure modules |
| JP6765373B2 (ja) | 2014-12-24 | 2020-10-07 | コニンクリーケ・ケイピーエヌ・ナムローゼ・フェンノートシャップ | オン・デマンドのサービス・プロビジョニングを制御するための方法 |
| US9705752B2 (en) * | 2015-01-29 | 2017-07-11 | Blackrock Financial Management, Inc. | Reliably updating a messaging system |
| WO2017114757A1 (en) * | 2015-12-28 | 2017-07-06 | Koninklijke Kpn N.V. | Method for providing a service to a user equipment connected to a first operator network via a second operator network |
| US10771453B2 (en) * | 2017-01-04 | 2020-09-08 | Cisco Technology, Inc. | User-to-user information (UUI) carrying security token in pre-call authentication |
| US10433307B2 (en) * | 2017-04-20 | 2019-10-01 | Facebook Technologies, Llc | Diversity based relay for wireless communications between a head-mounted display and a console |
| WO2018231125A1 (en) * | 2017-06-16 | 2018-12-20 | Telefonaktiebolaget Lm Ericsson (Publ) | Network, network nodes, wireless communication devices and method therein for handling network slices in a wireless communication network |
| ES3015684T3 (en) * | 2017-07-25 | 2025-05-07 | Ericsson Telefon Ab L M | Subscription concealed identifier |
| WO2019068654A1 (en) | 2017-10-02 | 2019-04-11 | Telefonaktiebolaget Lm Ericsson (Publ) | METHODS AND APPARATUS FOR SECURING NETWORK DRIVING INFORMATION |
| US11445376B2 (en) * | 2017-10-10 | 2022-09-13 | Ntt Docomo, Inc. | Security establishment method, terminal device, and network device |
| CN109688586B (zh) * | 2017-10-19 | 2021-12-07 | 中兴通讯股份有限公司 | 一种网络功能认证的方法、装置及计算机可读存储介质 |
| US10306578B2 (en) * | 2017-10-24 | 2019-05-28 | Verizon Patent And Licensing Inc. | Easy connectivity provisioning for cellular network |
| WO2019088599A1 (ko) * | 2017-10-31 | 2019-05-09 | 엘지전자 주식회사 | 무선 통신 시스템에서 홈 네트워크 키로 암호화된 데이터를 보호하기 위한 방법 및 이를 위한 장치 |
| CN111183663B (zh) * | 2017-11-08 | 2025-10-10 | Oppo广东移动通信有限公司 | 完整性保护的控制方法、网络设备及计算机存储介质 |
| EP3738270B1 (en) * | 2018-01-12 | 2024-03-06 | Telefonaktiebolaget LM Ericsson (publ) | Managing identifier privacy |
| KR102348078B1 (ko) | 2018-01-12 | 2022-01-10 | 삼성전자주식회사 | 사용자 단말 장치, 전자 장치, 이를 포함하는 시스템 및 제어 방법 |
| FR3077175A1 (fr) * | 2018-01-19 | 2019-07-26 | Orange | Technique de determination d'une cle destinee a securiser une communication entre un equipement utilisateur et un serveur applicatif |
| EP3782394B1 (en) * | 2018-04-06 | 2026-03-04 | Telefonaktiebolaget LM Ericsson (Publ) | Ue controlled handling of the security policy for user plane protection in 5g systems |
| TWI717717B (zh) | 2018-04-10 | 2021-02-01 | 新加坡商 聯發科技(新加坡)私人有限公司 | 行動通訊中錯誤ksi處理的改進方法 |
| CN112119651B (zh) * | 2018-05-22 | 2022-05-17 | 华为技术有限公司 | 接入技术不可知的服务网络认证方法和装置 |
| US10499357B1 (en) * | 2018-08-09 | 2019-12-03 | Nec Corporation | Method and system for transmission of SUSI in the NAS procedure |
| CN112703754B (zh) * | 2018-09-19 | 2025-03-11 | 苹果公司 | Ue、ue的装置和方法、amf的装置和方法、以及存储介质 |
| US20210400475A1 (en) * | 2018-11-12 | 2021-12-23 | Telefonaktiebolaget Lm Ericsson (Publ) | Authentication of a Communications Device |
| CN111669276B (zh) * | 2019-03-07 | 2022-04-22 | 华为技术有限公司 | 一种网络验证方法、装置及系统 |
| WO2020254302A1 (en) | 2019-06-17 | 2020-12-24 | Telefonaktiebolaget Lm Ericsson (Publ) | Home controlled network slice privacy |
| US12132732B2 (en) | 2019-06-24 | 2024-10-29 | Nokia Technologies Oy | Dynamic allocation of network slice-specific credentials |
| US11310661B2 (en) * | 2020-02-14 | 2022-04-19 | Mediatek Inc. | Security key synchronization method and associated communications apparatus |
| US11706619B2 (en) * | 2020-03-31 | 2023-07-18 | Cisco Technology, Inc. | Techniques to facilitate fast roaming between a mobile network operator public wireless wide area access network and an enterprise private wireless wide area access network |
| US11778463B2 (en) | 2020-03-31 | 2023-10-03 | Cisco Technology, Inc. | Techniques to generate wireless local area access network fast transition key material based on authentication to a private wireless wide area access network |
| US11012857B1 (en) | 2020-04-13 | 2021-05-18 | Sprint Communications Company L.P. | Fifth generation core (5GC) authentication for long term evolution (LTE) data service |
| CN111614496B (zh) * | 2020-05-13 | 2021-12-21 | 北京紫光展锐通信技术有限公司 | 路由访问方法、装置、电子设备及存储介质 |
| EP4189916A1 (en) * | 2020-07-31 | 2023-06-07 | Telefonaktiebolaget LM ERICSSON (PUBL) | Authentication of a wireless device in a wireless communication network |
| CN114915966A (zh) * | 2021-02-10 | 2022-08-16 | 华为技术有限公司 | 配置演进分组系统非接入层安全算法的方法及相关装置 |
| US20230163974A1 (en) * | 2021-11-19 | 2023-05-25 | Packetfabric, Inc. | Systems and methods for message authentication using efficient signatures and secret sharing |
| US20250365316A1 (en) * | 2024-05-21 | 2025-11-27 | Honeywell International Inc. | Network transaction management |
Family Cites Families (12)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US8347090B2 (en) | 2006-10-16 | 2013-01-01 | Nokia Corporation | Encryption of identifiers in a communication system |
| US8149770B2 (en) * | 2007-07-05 | 2012-04-03 | Motorola Mobility, Inc. | Method and apparatus for determining capability of a serving system for anchoring a call using an intelligent network protocol |
| US8676251B2 (en) * | 2009-03-04 | 2014-03-18 | Lg Electronics Inc. | Dual modem device |
| JP5694296B2 (ja) * | 2009-05-03 | 2015-04-01 | 株式会社東芝 | プロアクティブ認証 |
| KR101683883B1 (ko) | 2009-12-31 | 2016-12-08 | 삼성전자주식회사 | 이동 통신 시스템에서 보안을 지원하는 방법 및 시스템 |
| US8296836B2 (en) * | 2010-01-06 | 2012-10-23 | Alcatel Lucent | Secure multi-user identity module key exchange |
| CN102196436B (zh) | 2010-03-11 | 2014-12-17 | 华为技术有限公司 | 安全认证方法、装置及系统 |
| US8839373B2 (en) * | 2010-06-18 | 2014-09-16 | Qualcomm Incorporated | Method and apparatus for relay node management and authorization |
| CN102131188B (zh) * | 2010-09-01 | 2013-12-04 | 华为技术有限公司 | 用户身份信息传输的方法、用户设备、网络侧设备及系统 |
| US20120159151A1 (en) * | 2010-12-21 | 2012-06-21 | Tektronix, Inc. | Evolved Packet System Non Access Stratum Deciphering Using Real-Time LTE Monitoring |
| WO2012129503A1 (en) * | 2011-03-23 | 2012-09-27 | Interdigital Patent Holdings, Inc. | Systems and methods for securing network communications |
| US8699709B2 (en) * | 2011-07-08 | 2014-04-15 | Motorola Solutions, Inc. | Methods for obtaining authentication credentials for attaching a wireless device to a foreign 3GPP wireless domain |
-
2015
- 2015-03-31 US US14/674,763 patent/US9491618B2/en active Active
- 2015-08-26 TW TW104127970A patent/TWI695611B/zh active
- 2015-08-27 PE PE2017000494A patent/PE20170656A1/es unknown
- 2015-08-27 KR KR1020177008224A patent/KR101785249B1/ko active Active
- 2015-08-27 JP JP2017515949A patent/JP6235761B2/ja active Active
- 2015-08-27 WO PCT/US2015/047295 patent/WO2016048574A1/en not_active Ceased
- 2015-08-27 EP EP15760028.9A patent/EP3198906B1/en active Active
- 2015-08-27 AU AU2015321927A patent/AU2015321927B2/en not_active Ceased
- 2015-08-27 CN CN201580051157.XA patent/CN106717044B/zh active Active
- 2015-08-27 CU CU2017000033A patent/CU24586B1/es unknown
Also Published As
| Publication number | Publication date |
|---|---|
| CN106717044A (zh) | 2017-05-24 |
| JP6235761B2 (ja) | 2017-11-22 |
| US20160094988A1 (en) | 2016-03-31 |
| US9491618B2 (en) | 2016-11-08 |
| PE20170656A1 (es) | 2017-05-17 |
| WO2016048574A1 (en) | 2016-03-31 |
| TWI695611B (zh) | 2020-06-01 |
| JP2017529799A (ja) | 2017-10-05 |
| EP3198906B1 (en) | 2020-07-15 |
| AU2015321927A1 (en) | 2017-03-16 |
| CU20170033A7 (es) | 2017-07-04 |
| EP3198906A1 (en) | 2017-08-02 |
| KR20170038096A (ko) | 2017-04-05 |
| CN106717044B (zh) | 2018-04-20 |
| TW201626751A (zh) | 2016-07-16 |
| BR112017006156A2 (pt) | 2018-02-06 |
| AU2015321927B2 (en) | 2018-11-08 |
| KR101785249B1 (ko) | 2017-10-12 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| CU24586B1 (es) | Método para la autenticación de una red de servicio por un equipo de usuario (ue) utilizando credenciales de una red doméstica | |
| CU20170034A7 (es) | Métodos y aparato para la re-autenticación a demanda de una red de sevicio por un equipo de usuario (ue) | |
| MX366390B (es) | Gestion de claves inalambrica para autenticacion. | |
| WO2015008158A8 (en) | Securing method for lawful interception | |
| WO2016144257A3 (en) | Method and system for facilitating authentication | |
| MX346828B (es) | Sistema de comunicacion inalambrico. | |
| MY190913A (en) | Device and method for secure connection | |
| WO2012141555A3 (en) | Method and apparatus for providing machine-to-machine service | |
| WO2015023341A3 (en) | Secure authorization systems and methods | |
| JP2018505620A5 (ja) | 通信システム及び認証方法 | |
| MX382004B (es) | Estableciendo comunicaciones tipo máquina utilizando parámetro sim compartido. | |
| BR112019004865A2 (pt) | técnicas de derivação de chaves de segurança para uma rede celular com base no desempenho de um procedimento do protocolo de autenticação extensível (eap) | |
| IN2014KN02750A (es) | ||
| CU24595B1 (es) | Método para la comunicación inalámbrica | |
| BR112017003018A2 (pt) | fornecimento seguro de uma credencial de autenticação | |
| GB2512249A (en) | Secure peer discovery and authentication using a shared secret | |
| UA115501C2 (uk) | Спосіб і система для захищеної передачі повідомлень послуги віддалених сповіщень в мобільні пристрої без захищених елементів | |
| AR083113A1 (es) | Procedimientos y aparatos para el aprovisionamiento de credenciales de acceso | |
| MX361152B (es) | Aprovisionamiento de licencias de gestión de derechos digitales (drm) en un dispositivo cliente que utiliza un servidor de actualizaciones. | |
| WO2018016713A3 (ko) | 무선 통신 시스템에서의 단말의 접속 식별자 보안 방법 및 이를 위한 장치 | |
| WO2013167043A3 (zh) | 数据安全验证方法和装置 | |
| WO2016114830A3 (en) | Methods and systems for authentication interoperability | |
| MY175039A (en) | Communication control apparatus, authentication device, central control apparatus and communication system | |
| MX386664B (es) | Método y sistema para mejorar la seguridad de una transacción. | |
| MX2019004705A (es) | Autenticacion para sistemas de proxima generacion. |