JP4652754B2 - セルラ・システムに関連付けられたセキュリティ値に基づく無線lanアクセス認証方法 - Google Patents
セルラ・システムに関連付けられたセキュリティ値に基づく無線lanアクセス認証方法 Download PDFInfo
- Publication number
- JP4652754B2 JP4652754B2 JP2004263155A JP2004263155A JP4652754B2 JP 4652754 B2 JP4652754 B2 JP 4652754B2 JP 2004263155 A JP2004263155 A JP 2004263155A JP 2004263155 A JP2004263155 A JP 2004263155A JP 4652754 B2 JP4652754 B2 JP 4652754B2
- Authority
- JP
- Japan
- Prior art keywords
- network
- key
- mobile terminal
- server
- determining
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Expired - Fee Related
Links
Images
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/06—Network architectures or network communication protocols for network security for supporting key management in a packet data network
- H04L63/062—Network architectures or network communication protocols for network security for supporting key management in a packet data network for key distribution, e.g. centrally by trusted party
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/04—Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks
- H04L63/0428—Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload
- H04L63/0442—Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload wherein the sending and receiving network entities apply asymmetric encryption, i.e. different keys for encryption and decryption
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/04—Key management, e.g. using generic bootstrapping architecture [GBA]
- H04W12/041—Key generation or derivation
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/04—Key management, e.g. using generic bootstrapping architecture [GBA]
- H04W12/043—Key management, e.g. using generic bootstrapping architecture [GBA] using a trusted network node as an anchor
- H04W12/0431—Key distribution or pre-distribution; Key agreement
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/04—Key management, e.g. using generic bootstrapping architecture [GBA]
- H04W12/043—Key management, e.g. using generic bootstrapping architecture [GBA] using a trusted network node as an anchor
- H04W12/0433—Key management protocols
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/06—Authentication
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W84/00—Network topologies
- H04W84/02—Hierarchically pre-organised networks, e.g. paging networks, cellular networks, WLAN [Wireless Local Area Network] or WLL [Wireless Local Loop]
- H04W84/10—Small scale networks; Flat hierarchical networks
- H04W84/12—WLAN [Wireless Local Area Networks]
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/06—Authentication
- H04W12/065—Continuous authentication
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/06—Authentication
- H04W12/068—Authentication using credential vaults, e.g. password manager applications or one time password [OTP] applications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W88/00—Devices specially adapted for wireless communication networks, e.g. terminals, base stations or access point devices
- H04W88/02—Terminal devices
Landscapes
- Engineering & Computer Science (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Computer Security & Cryptography (AREA)
- Computer Hardware Design (AREA)
- Computing Systems (AREA)
- General Engineering & Computer Science (AREA)
- Mobile Radio Communication Systems (AREA)
- Small-Scale Networks (AREA)
Description
本発明は、前述の1つ以上の問題に対処することを目的とする。
Claims (10)
- 第1のネットワークに対する秘密キーを、第2のネットワーク(105)に関連付けられた他方のサーバ(120)によって提供された少なくとも1つのセキュリティ値に基づいて、該第1のネットワーク(110)と関連付けられたサーバ(130)において決定するステップと、
該秘密キーに基づいてモバイル端末(102)と該第1のネットワーク(110)との間で複数のセッションを確立するステップとを含み、
該秘密キーは、一旦計算されると、該サーバ(130)と該他方のサーバ(120)との間、及び該モバイル端末(102)と該他方のサーバ(120)との間では共有されない方法。
- 該第2のネットワークがセルラ・ネットワークであり、該第1のネットワークが無線LANであり、該秘密キーを決定するステップが、該セルラ・ネットワークに関連付けられた共有秘密データ・キーに基づいて該秘密キーを決定するステップを含む請求項1に記載の方法。
- 該共有秘密データ・キーに基づいて該秘密キーを決定するステップが、ルート・キー、モバイル端末に関連付けられた電子的シリアル番号、及びネットワークが提供するランダムな値をセルラ認証および音声暗号化(CAVE)アルゴリズムに適用して該秘密キーを生成するステップを含む請求項2に記載の方法。
- 該第2のネットワークが関連する認証センターを有するセルラ・ネットワークであり、該第1のネットワークが無線LANであり、該秘密キーを決定するステップが、該セルラ・ネットワークに関連付けられた該認証センターによって生成された1つ又は複数のランダム・チャレンジに基づいて該秘密キーを決定するステップを含む請求項1に記載の方法。
- 該セルラ・ネットワークが符号分割多重アクセス(CDMA)ネットワークであり、該秘密キーを決定するステップが、CDMAネットワークに関連付けられた該共有秘密データ・キーに基づいて1つ又は複数のチャレンジに関連付けられた1つ又は複数の応答を決定するステップと、決定された1つ又は複数の応答を組み合わせて該秘密キーを形成するステップとを含む請求項4に記載の方法。
- さらに、該決定した秘密キーに基づいて少なくとも1つのセッション・キーを決定するステップを含む請求項1に記載の方法。
- 該複数のセッションを確立するステップが、該第1のネットワークに対し、該複数のセッションのそれぞれについて該モバイル端末を認証するステップを含む請求項1に記載の方法。
- 該モバイル端末を該第1のネットワークに対して認証するステップが、
該第1のネットワークからチャレンジを受信するステップと、
該受信したチャレンジに関連付けられた応答を送信するステップとを含み、該秘密キーに基づいて該応答が計算される請求項7に記載の方法。
- 該複数のセッションを確立するステップが、該秘密キーに基づいて前期複数のセッションのそれぞれについてセッション・キーを決定するステップを含む請求項1に記載の方法。
- セルラ・ネットワーク(105)に関連付けられた他方のサーバ(120)から受信した少なくとも1つのセキュリティ値を、無線LANと関連付けられたサーバ(130)において受信するステップと、
該少なくとも1つのセキュリティ値に基づいて、該サーバ(130)において、秘密キーを決定するステップと、
該セルラ・ネットワーク(105)に関連付けられた該少なくとも1つのセキュリティ値に基づいて秘密キーをモバイル端末(102)において決定するステップと、
該モバイル端末(102)で決定された該秘密キーに基づいて、該モバイル端末(102)と無線LAN(110)との間の複数セッションの確立を可能にするステップとを含み、
該秘密キーは、一旦計算されると、該サーバ(130)と該他方のサーバ(120)との間、及び該モバイル端末(102)と該他方のサーバ(120)との間では共有されない方法。
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
US10/661,715 US7593717B2 (en) | 2003-09-12 | 2003-09-12 | Authenticating access to a wireless local area network based on security value(s) associated with a cellular system |
Publications (2)
Publication Number | Publication Date |
---|---|
JP2005094758A JP2005094758A (ja) | 2005-04-07 |
JP4652754B2 true JP4652754B2 (ja) | 2011-03-16 |
Family
ID=34136797
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
JP2004263155A Expired - Fee Related JP4652754B2 (ja) | 2003-09-12 | 2004-09-10 | セルラ・システムに関連付けられたセキュリティ値に基づく無線lanアクセス認証方法 |
Country Status (6)
Country | Link |
---|---|
US (1) | US7593717B2 (ja) |
EP (1) | EP1515516B1 (ja) |
JP (1) | JP4652754B2 (ja) |
KR (1) | KR101097709B1 (ja) |
CN (1) | CN1596028A (ja) |
DE (1) | DE602004004844T2 (ja) |
Families Citing this family (34)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US8140845B2 (en) * | 2001-09-13 | 2012-03-20 | Alcatel Lucent | Scheme for authentication and dynamic key exchange |
US8630414B2 (en) | 2002-06-20 | 2014-01-14 | Qualcomm Incorporated | Inter-working function for a communication system |
US20030236980A1 (en) * | 2002-06-20 | 2003-12-25 | Hsu Raymond T. | Authentication in a communication system |
US20050096048A1 (en) * | 2003-10-30 | 2005-05-05 | Cellco Partnership | Optimized network employing seamless and single sign on capabilities for users accessing data applications on different networks |
WO2005052742A2 (en) * | 2003-11-20 | 2005-06-09 | Tekelec | Signal transfer point with wireless signaling link interface |
US20050138355A1 (en) * | 2003-12-19 | 2005-06-23 | Lidong Chen | System, method and devices for authentication in a wireless local area network (WLAN) |
US20050149740A1 (en) * | 2003-12-31 | 2005-07-07 | Kotzin Michael D. | Method and apparatus for device authentication |
US7546459B2 (en) * | 2004-03-10 | 2009-06-09 | Telefonaktiebolaget L M Ericsson (Publ) | GSM-like and UMTS-like authentication in a CDMA2000 network environment |
US20060019635A1 (en) * | 2004-06-29 | 2006-01-26 | Nokia Corporation | Enhanced use of a network access identifier in wlan |
US7706343B2 (en) * | 2004-09-10 | 2010-04-27 | Tekelec | Methods and systems for wireless local area network (WLAN)-based signaling network monitoring |
US20060143132A1 (en) | 2004-11-30 | 2006-06-29 | Valenti William L | Method and apparatus to enable a market in used digital content |
WO2006103536A1 (en) * | 2005-03-31 | 2006-10-05 | Nokia Corporation | Authentication mechanism for unlicensed mobile access |
US20070043947A1 (en) * | 2005-08-19 | 2007-02-22 | Mizikovsky Semyon B | Providing multimedia system security to removable user identity modules |
KR100750153B1 (ko) * | 2006-01-03 | 2007-08-21 | 삼성전자주식회사 | Wusb 보안을 위한 세션 키를 제공하는 방법 및 장치,이 세션 키를 획득하는 방법 및 장치 |
US8189544B2 (en) * | 2006-06-26 | 2012-05-29 | Alcatel Lucent | Method of creating security associations in mobile IP networks |
EP1965595B1 (en) * | 2007-02-27 | 2009-10-28 | Lucent Technologies Inc. | Wireless communication techniques for controlling access granted by a security device |
KR100936530B1 (ko) * | 2007-11-13 | 2010-01-13 | 주식회사 케이티 | 네트워크 장치 및 네트워크 장치의 인증 정보 공유 방법 |
JP4694586B2 (ja) * | 2008-02-28 | 2011-06-08 | 京セラ株式会社 | 携帯端末装置および通信システム |
KR101069442B1 (ko) * | 2009-08-14 | 2011-09-30 | 주식회사 케이티 | 이종 통신 네트워크에 통신 서비스를 제공하는 방법 및 장치, 통신 서비스 제공에 따른 과금 방법. |
US8280351B1 (en) | 2010-02-04 | 2012-10-02 | Cellco Partnership | Automatic device authentication and account identification without user input when application is started on mobile station |
US20110228752A1 (en) * | 2010-03-22 | 2011-09-22 | Shiquan Wu | System and method to pack cellular systems and WiFi within a TV channel |
US8677451B1 (en) | 2010-06-22 | 2014-03-18 | Cellco Partnership | Enabling seamless access to a domain of an enterprise |
US8955154B2 (en) * | 2011-07-08 | 2015-02-10 | Credibility Corp. | Single system for authenticating entities across different third party platforms |
CN103139768B (zh) * | 2011-11-28 | 2017-03-01 | 上海贝尔股份有限公司 | 融合无线网络中的认证方法以及认证装置 |
CN103428690B (zh) * | 2012-05-23 | 2016-09-07 | 华为技术有限公司 | 无线局域网络的安全建立方法及系统、设备 |
US9258704B2 (en) | 2012-06-27 | 2016-02-09 | Advanced Messaging Technologies, Inc. | Facilitating network login |
GB2512082A (en) * | 2013-03-19 | 2014-09-24 | Vodafone Ip Licensing Ltd | WLAN application access control |
US10034168B1 (en) * | 2013-04-25 | 2018-07-24 | Sprint Spectrum L.P. | Authentication over a first communication link to authorize communications over a second communication link |
US9913137B2 (en) | 2015-09-02 | 2018-03-06 | Huawei Technologies Co., Ltd. | System and method for channel security |
US10620855B2 (en) * | 2016-09-06 | 2020-04-14 | Samsung Electronics Co., Ltd. | System and method for authenticating critical operations on solid-state drives |
US10433163B2 (en) | 2016-09-19 | 2019-10-01 | Qualcomm Incorporated | Techniques for deriving security keys for a cellular network based on performance of an extensible authentication protocol (EAP) procedure |
ES2947942T3 (es) * | 2017-01-27 | 2023-08-24 | Ericsson Telefon Ab L M | Autenticación secundaria de un equipo de usuario |
KR102515902B1 (ko) * | 2020-10-30 | 2023-03-31 | 이화여자대학교 산학협력단 | 물리적 복제 방지 기술을 이용한 인증 장치 |
US11825389B2 (en) | 2021-07-02 | 2023-11-21 | Cisco Technology, Inc. | Mechanism to deliver SMS meant for user's public or private 5G identity over WLAN network |
Citations (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US20020012433A1 (en) * | 2000-03-31 | 2002-01-31 | Nokia Corporation | Authentication in a packet data network |
JP2002152190A (ja) * | 2000-09-15 | 2002-05-24 | Lucent Technol Inc | オーバレイデータネットワークで暗号化キーを配布する方法 |
Family Cites Families (9)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
FI20000761A0 (fi) * | 2000-03-31 | 2000-03-31 | Nokia Mobile Phones Ltd | Laskutus pakettidataverkossa |
US7804961B2 (en) * | 2000-12-19 | 2010-09-28 | Qualcomm Incorporated | Method and apparatus for fast crytographic key generation |
FI115098B (fi) | 2000-12-27 | 2005-02-28 | Nokia Corp | Todentaminen dataviestinnässä |
US7039027B2 (en) * | 2000-12-28 | 2006-05-02 | Symbol Technologies, Inc. | Automatic and seamless vertical roaming between wireless local area network (WLAN) and wireless wide area network (WWAN) while maintaining an active voice or streaming data connection: systems, methods and program products |
US20020174335A1 (en) * | 2001-03-30 | 2002-11-21 | Junbiao Zhang | IP-based AAA scheme for wireless LAN virtual operators |
US7426393B2 (en) * | 2001-11-19 | 2008-09-16 | Nokia Corporation | Method and system of identifying network services |
US7721106B2 (en) * | 2002-04-26 | 2010-05-18 | Thomson Licensing | Transitive authentication authorization accounting in the interworking between access networks |
CN1215386C (zh) * | 2002-04-26 | 2005-08-17 | St微电子公司 | 根据量子软计算控制过程或处理数据的方法和硬件体系结构 |
US20040203800A1 (en) * | 2002-10-24 | 2004-10-14 | John Myhre | System and method for content delivery using alternate data paths in a wireless network |
-
2003
- 2003-09-12 US US10/661,715 patent/US7593717B2/en not_active Expired - Fee Related
-
2004
- 2004-08-27 EP EP04255196A patent/EP1515516B1/en not_active Expired - Lifetime
- 2004-08-27 DE DE602004004844T patent/DE602004004844T2/de not_active Expired - Lifetime
- 2004-09-03 KR KR1020040070417A patent/KR101097709B1/ko active IP Right Grant
- 2004-09-09 CN CNA2004100770027A patent/CN1596028A/zh active Pending
- 2004-09-10 JP JP2004263155A patent/JP4652754B2/ja not_active Expired - Fee Related
Patent Citations (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US20020012433A1 (en) * | 2000-03-31 | 2002-01-31 | Nokia Corporation | Authentication in a packet data network |
JP2002152190A (ja) * | 2000-09-15 | 2002-05-24 | Lucent Technol Inc | オーバレイデータネットワークで暗号化キーを配布する方法 |
Also Published As
Publication number | Publication date |
---|---|
CN1596028A (zh) | 2005-03-16 |
DE602004004844T2 (de) | 2007-10-25 |
US7593717B2 (en) | 2009-09-22 |
KR20050027015A (ko) | 2005-03-17 |
KR101097709B1 (ko) | 2011-12-23 |
DE602004004844D1 (de) | 2007-04-05 |
EP1515516A1 (en) | 2005-03-16 |
EP1515516B1 (en) | 2007-02-21 |
JP2005094758A (ja) | 2005-04-07 |
US20050113067A1 (en) | 2005-05-26 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
JP4652754B2 (ja) | セルラ・システムに関連付けられたセキュリティ値に基づく無線lanアクセス認証方法 | |
US8838972B2 (en) | Exchange of key material | |
US8923813B2 (en) | System and method for securing a base station using SIM cards | |
US7356145B2 (en) | Arranging data ciphering in a wireless telecommunication system | |
EP1422875B1 (en) | Wireless network handoff key | |
ES2268064T5 (es) | Procedimiento y sistema para la autenticación de GSM durante una itinerancia WLAN | |
JP3581810B2 (ja) | 通信チャネルを開設するための方法および移動機 | |
CN101406021B (zh) | 基于sim的认证 | |
JP4160049B2 (ja) | 第1のネットワークを通じた第2のネットワークのサービスへのアクセスを提供する方法及びシステム | |
US8397071B2 (en) | Generation method and update method of authorization key for mobile communication | |
US20030120920A1 (en) | Remote device authentication | |
KR20000012072A (ko) | 두 당사자 인증 및 키 일치 방법 | |
KR20000017575A (ko) | 세션 키이 설정 방법 | |
EP1121822B1 (en) | Authentication in a mobile communications system | |
Kuroda et al. | A radio-independent authentication protocol (EAP-CRP) for networks of cognitive radios | |
CN1996838A (zh) | 一种多主机WiMAX系统中的AAA认证优化方法 | |
JP2006191429A (ja) | 集合型宅内ネットワークにおける認証方法及びシステム | |
Kumar et al. | Seamless and Secure Communication for 5G Subscribers in 5G-WLAN Heterogeneous Networks | |
JP2006041641A (ja) | 無線通信システム |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
A621 | Written request for application examination |
Free format text: JAPANESE INTERMEDIATE CODE: A621 Effective date: 20070910 |
|
A977 | Report on retrieval |
Free format text: JAPANESE INTERMEDIATE CODE: A971007 Effective date: 20091125 |
|
A131 | Notification of reasons for refusal |
Free format text: JAPANESE INTERMEDIATE CODE: A131 Effective date: 20100419 |
|
A601 | Written request for extension of time |
Free format text: JAPANESE INTERMEDIATE CODE: A601 Effective date: 20100716 |
|
A602 | Written permission of extension of time |
Free format text: JAPANESE INTERMEDIATE CODE: A602 Effective date: 20100722 |
|
A601 | Written request for extension of time |
Free format text: JAPANESE INTERMEDIATE CODE: A601 Effective date: 20100819 |
|
A602 | Written permission of extension of time |
Free format text: JAPANESE INTERMEDIATE CODE: A602 Effective date: 20100824 |
|
A601 | Written request for extension of time |
Free format text: JAPANESE INTERMEDIATE CODE: A601 Effective date: 20100917 |
|
A602 | Written permission of extension of time |
Free format text: JAPANESE INTERMEDIATE CODE: A602 Effective date: 20100924 |
|
A521 | Written amendment |
Free format text: JAPANESE INTERMEDIATE CODE: A523 Effective date: 20101019 |
|
RD02 | Notification of acceptance of power of attorney |
Free format text: JAPANESE INTERMEDIATE CODE: A7422 Effective date: 20101019 |
|
TRDD | Decision of grant or rejection written | ||
A01 | Written decision to grant a patent or to grant a registration (utility model) |
Free format text: JAPANESE INTERMEDIATE CODE: A01 Effective date: 20101122 |
|
A01 | Written decision to grant a patent or to grant a registration (utility model) |
Free format text: JAPANESE INTERMEDIATE CODE: A01 |
|
A61 | First payment of annual fees (during grant procedure) |
Free format text: JAPANESE INTERMEDIATE CODE: A61 Effective date: 20101216 |
|
R150 | Certificate of patent or registration of utility model |
Ref document number: 4652754 Country of ref document: JP Free format text: JAPANESE INTERMEDIATE CODE: R150 Free format text: JAPANESE INTERMEDIATE CODE: R150 |
|
FPAY | Renewal fee payment (event date is renewal date of database) |
Free format text: PAYMENT UNTIL: 20131224 Year of fee payment: 3 |
|
R250 | Receipt of annual fees |
Free format text: JAPANESE INTERMEDIATE CODE: R250 |
|
R250 | Receipt of annual fees |
Free format text: JAPANESE INTERMEDIATE CODE: R250 |
|
R250 | Receipt of annual fees |
Free format text: JAPANESE INTERMEDIATE CODE: R250 |
|
R250 | Receipt of annual fees |
Free format text: JAPANESE INTERMEDIATE CODE: R250 |
|
R250 | Receipt of annual fees |
Free format text: JAPANESE INTERMEDIATE CODE: R250 |
|
R250 | Receipt of annual fees |
Free format text: JAPANESE INTERMEDIATE CODE: R250 |
|
LAPS | Cancellation because of no payment of annual fees |