EP4173226A4 - Contrôle d'accès de cadre de gestion à base de service - Google Patents

Contrôle d'accès de cadre de gestion à base de service

Info

Publication number
EP4173226A4
EP4173226A4 EP20942683.2A EP20942683A EP4173226A4 EP 4173226 A4 EP4173226 A4 EP 4173226A4 EP 20942683 A EP20942683 A EP 20942683A EP 4173226 A4 EP4173226 A4 EP 4173226A4
Authority
EP
European Patent Office
Prior art keywords
access control
service based
management framework
based management
framework
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
EP20942683.2A
Other languages
German (de)
English (en)
Other versions
EP4173226A1 (fr
Inventor
Jing Ping
Iris Adam
Anatoly Andrianov
Uwe Rauschenbach
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Nokia Technologies Oy
Original Assignee
Nokia Technologies Oy
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Nokia Technologies Oy filed Critical Nokia Technologies Oy
Publication of EP4173226A1 publication Critical patent/EP4173226A1/fr
Publication of EP4173226A4 publication Critical patent/EP4173226A4/fr
Pending legal-status Critical Current

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/32Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
    • H04L9/3271Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials using challenge-response
    • H04L9/3273Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials using challenge-response for mutual authentication
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0807Network architectures or network communication protocols for network security for authentication of entities using tickets, e.g. Kerberos
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0815Network architectures or network communication protocols for network security for authentication of entities providing single-sign-on or federations
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0876Network architectures or network communication protocols for network security for authentication of entities based on the identity of the terminal or configuration, e.g. MAC address, hardware or software configuration or device fingerprint
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0884Network architectures or network communication protocols for network security for authentication of entities by delegation of authentication, e.g. a proxy authenticates an entity to be authenticated on behalf of this entity vis-à-vis an authentication entity
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0892Network architectures or network communication protocols for network security for authentication of entities by using authentication-authorization-accounting [AAA] servers or protocols
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources
    • H04L63/101Access control lists [ACL]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources
    • H04L63/102Entity profiles
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources
    • H04L63/105Multiple levels of security
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources
    • H04L63/107Network architectures or network communication protocols for network security for controlling access to devices or network resources wherein the security policies are location-dependent, e.g. entities privileges depend on current location or allowing specific operations only from locally connected terminals
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/20Network architectures or network communication protocols for network security for managing network security; network security policies in general
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/08Access security
    • H04W12/084Access security using delegated authorisation, e.g. open authorisation [OAuth] protocol
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/08Access security
    • H04W12/086Access security using security domains
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/60Context-dependent security
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/60Context-dependent security
    • H04W12/69Identity-dependent

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Hardware Design (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Power Engineering (AREA)
  • Business, Economics & Management (AREA)
  • Accounting & Taxation (AREA)
  • Mobile Radio Communication Systems (AREA)
  • Storage Device Security (AREA)
EP20942683.2A 2020-06-29 2020-06-29 Contrôle d'accès de cadre de gestion à base de service Pending EP4173226A4 (fr)

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
PCT/CN2020/098706 WO2022000155A1 (fr) 2020-06-29 2020-06-29 Contrôle d'accès de cadre de gestion à base de service

Publications (2)

Publication Number Publication Date
EP4173226A1 EP4173226A1 (fr) 2023-05-03
EP4173226A4 true EP4173226A4 (fr) 2024-03-06

Family

ID=79317771

Family Applications (1)

Application Number Title Priority Date Filing Date
EP20942683.2A Pending EP4173226A4 (fr) 2020-06-29 2020-06-29 Contrôle d'accès de cadre de gestion à base de service

Country Status (3)

Country Link
EP (1) EP4173226A4 (fr)
CN (1) CN116134857A (fr)
WO (1) WO2022000155A1 (fr)

Families Citing this family (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2023167571A1 (fr) * 2022-03-04 2023-09-07 Samsung Electronics Co., Ltd. Procédé et système d'autorisation de services de gestion
CN117278329B (zh) * 2023-11-21 2024-01-16 大连凌一科技发展有限公司 一种基于零信任网关的应用资源动态控制访问方法

Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
EP3047626B1 (fr) * 2013-09-20 2017-10-25 Oracle International Corporation Multiples serveurs de ressources à serveur oauth unique, flexible, enfichable et service de gestion de consentement oauth reposant protégé par oauth, et service oauth de signature unique d'application mobile
US20190253894A1 (en) * 2018-02-15 2019-08-15 Nokia Technologies Oy Security management for roaming service authorization in communication systems with service-based architecture

Family Cites Families (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US8831568B2 (en) * 2011-09-27 2014-09-09 Qualcomm Incorporated Automatic configuration of a wireless device
US9912704B2 (en) * 2015-06-09 2018-03-06 Intel Corporation System, apparatus and method for access control list processing in a constrained environment
CN105721412A (zh) * 2015-06-24 2016-06-29 乐视云计算有限公司 多系统间的身份认证方法及装置
CN105187426B (zh) * 2015-09-06 2018-05-04 北京京东尚科信息技术有限公司 用于基于认证信息实现跨域访问的方法和系统
CN109936547A (zh) * 2017-12-18 2019-06-25 阿里巴巴集团控股有限公司 身份认证方法、系统及计算设备

Patent Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
EP3047626B1 (fr) * 2013-09-20 2017-10-25 Oracle International Corporation Multiples serveurs de ressources à serveur oauth unique, flexible, enfichable et service de gestion de consentement oauth reposant protégé par oauth, et service oauth de signature unique d'application mobile
US20190253894A1 (en) * 2018-02-15 2019-08-15 Nokia Technologies Oy Security management for roaming service authorization in communication systems with service-based architecture

Non-Patent Citations (2)

* Cited by examiner, † Cited by third party
Title
"3rd Generation Partnership Project; Technical Specification Group Services and System Aspects; Security Aspects; Study on security aspects of the 5G Service Based Architecture (SBA) (Release 16)", no. V1.7.0, 22 September 2019 (2019-09-22), pages 1 - 101, XP051784633, Retrieved from the Internet <URL:ftp://ftp.3gpp.org/Specs/archive/33_series/33.855/33855-170.zip 33855-170.doc> [retrieved on 20190922] *
See also references of WO2022000155A1 *

Also Published As

Publication number Publication date
WO2022000155A1 (fr) 2022-01-06
EP4173226A1 (fr) 2023-05-03
CN116134857A (zh) 2023-05-16

Similar Documents

Publication Publication Date Title
EP4173226A4 (fr) Contrôle d&#39;accès de cadre de gestion à base de service
EP4031995A4 (fr) Système de gestion de consentement
SG11202101088XA (en) Reuse of control channel resource associated with initial access
EP4116644A4 (fr) Système de gestion d&#39;équipement
EP4038839A4 (fr) Procédés et systèmes de gestion et de commande de réseau de communication
GB201919009D0 (en) Power management of computing system
SG11202109749QA (en) Access right management
EP3893972A4 (fr) Système de circulation de gaz chirurgical multimodal pour commander un réseau de dispositifs d&#39;accès étanches au gaz
EP3729840A4 (fr) Contrôle d&#39;accès à un service de réseau
GB202301412D0 (en) Management of computing secrets
EP4066336A4 (fr) Partie inférieure d&#39;enceinte pour installations électriques
GB202005974D0 (en) Resource management
EP3925331A4 (fr) Gestion d&#39;architecture basée sur un service
GB2600098B (en) QoS management framework
TWM640665U (zh) 設備管理系統
EP4266733A4 (fr) Système de réseau d&#39;accès
GB202219089D0 (en) Network voltage management
GB2601814B (en) An access system
EP4094448A4 (fr) Gestion d&#39;installation de réseau
GB202304585D0 (en) Resource management
GB202301030D0 (en) Shared resource access control
ZA202007301B (en) Gland service regulator
GB202309697D0 (en) QOS management framework
GB202309694D0 (en) QOS management framework
GB202404677D0 (en) Email management system

Legal Events

Date Code Title Description
STAA Information on the status of an ep patent application or granted ep patent

Free format text: STATUS: THE INTERNATIONAL PUBLICATION HAS BEEN MADE

PUAI Public reference made under article 153(3) epc to a published international application that has entered the european phase

Free format text: ORIGINAL CODE: 0009012

STAA Information on the status of an ep patent application or granted ep patent

Free format text: STATUS: REQUEST FOR EXAMINATION WAS MADE

17P Request for examination filed

Effective date: 20230130

AK Designated contracting states

Kind code of ref document: A1

Designated state(s): AL AT BE BG CH CY CZ DE DK EE ES FI FR GB GR HR HU IE IS IT LI LT LU LV MC MK MT NL NO PL PT RO RS SE SI SK SM TR

DAV Request for validation of the european patent (deleted)
DAX Request for extension of the european patent (deleted)
A4 Supplementary search report drawn up and despatched

Effective date: 20240202

RIC1 Information provided on ipc code assigned before grant

Ipc: H04W 12/086 20210101ALI20240129BHEP

Ipc: H04W 12/084 20210101ALI20240129BHEP

Ipc: H04W 48/02 20090101ALI20240129BHEP

Ipc: H04W 12/69 20210101ALI20240129BHEP

Ipc: H04W 12/60 20210101ALI20240129BHEP

Ipc: H04L 9/40 20220101ALI20240129BHEP

Ipc: H04L 9/32 20060101AFI20240129BHEP