RU2006116515A - Способ защиты трафика данных между сетью мобильной связи и сетью ims - Google Patents
Способ защиты трафика данных между сетью мобильной связи и сетью imsInfo
- Publication number
- RU2006116515A RU2006116515A RU2006116515/09A RU2006116515A RU2006116515A RU 2006116515 A RU2006116515 A RU 2006116515A RU 2006116515/09 A RU2006116515/09 A RU 2006116515/09A RU 2006116515 A RU2006116515 A RU 2006116515A RU 2006116515 A RU2006116515 A RU 2006116515A
- Authority
- RU
- Russia
- Prior art keywords
- network
- mobile
- ims
- mobile user
- protocol
- Prior art date
Links
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/04—Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks
- H04L63/0428—Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload
- H04L63/0435—Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload wherein the sending and receiving network entities apply symmetric encryption, i.e. same key used for encryption and decryption
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/06—Network architectures or network communication protocols for network security for supporting key management in a packet data network
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/0807—Network architectures or network communication protocols for network security for authentication of entities using tickets, e.g. Kerberos
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/04—Key management, e.g. using generic bootstrapping architecture [GBA]
- H04W12/041—Key generation or derivation
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/06—Authentication
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/083—Network architectures or network communication protocols for network security for authentication of entities using passwords
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L65/00—Network arrangements, protocols or services for supporting real-time applications in data packet communication
- H04L65/10—Architectures or entities
- H04L65/1016—IP multimedia subsystem [IMS]
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W8/00—Network data management
- H04W8/26—Network addressing or numbering for mobility support
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W80/00—Wireless network protocols or protocol adaptations to wireless operation
- H04W80/08—Upper layer protocols
- H04W80/10—Upper layer protocols adapted for application session management, e.g. SIP [Session Initiation Protocol]
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W92/00—Interfaces specially adapted for wireless communication networks
- H04W92/02—Inter-networking arrangements
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Computer Hardware Design (AREA)
- Computing Systems (AREA)
- General Engineering & Computer Science (AREA)
- Mobile Radio Communication Systems (AREA)
- Data Exchanges In Wide-Area Networks (AREA)
Claims (9)
1. Способ аутентификации пользователя и защиты трафика данных между сетью (3) мобильной связи и сетью IMS (4), при котором
мобильный пользователь (UE) аутентифицирует себя в сети (3) мобильной связи,
мобильный пользователь (UE) аутентифицирует себя в сети IMS (4),
осуществляется проверка, согласуется ли идентификация аутентифицированного в сети IMS (4) мобильного пользователя (UE) с идентификацией пользователя (UE), аутентифицированного в сети (3) мобильной связи,
если идентификации совпадают, то мобильному пользователю (UE) посылается сообщение подтверждения из сети IMS (4),
при этом обмен данными между мобильным пользователем (UE) и сетью IMS (4) осуществляется по протоколу защиты, защищенному общим ключом, причем ключ для протокола защиты выводится из сообщения подтверждения.
2. Способ по п.1, в котором ключ является сообщением подтверждения.
3. Способ по п.1 или 2, в котором ключ является общим секретом между сетью IMS (4) и мобильным пользователем (UE).
4. Способ по п.1 или 2, в котором ключ представляет собой вводимый мобильным пользователем (UE) пароль.
5. Способ по п.1, в котором сообщение подтверждения представляет собой случайное значение.
6. Способ по п.1, в котором мобильный пользователь (UE) аутентифицирует себя в сети IMS (4) посредством протокола SIP (протокола инициирования сеанса) и/или протокола HTTP (протокола передачи гипертекста).
7. Способ по п.1, в котором в качестве протокола защиты применяется протокол HTTP-Digest.
8. Сеть передачи данных, включающая в себя сеть мобильной связи и сеть IMS, причем сеть передачи данных выполнена таким образом, что трафик данных между мобильным пользователем сети (3) мобильной связи и сетью IMS (4) защищен согласно способу по любому из предыдущих пунктов.
9. Сеть передачи данных по п.8, в которой сеть (3) мобильной связи выполнена как сеть GPRS (Общие услуги пакетной радиосвязи) и/или сеть UMTS (Универсальная телекоммуникационная система).
Applications Claiming Priority (4)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
DE10347772.1 | 2003-10-14 | ||
DE10347772 | 2003-10-14 | ||
DE10356091A DE10356091A1 (de) | 2003-10-14 | 2003-12-01 | Verfahren zur Sicherung des Datenverkehrs zwischen einem Mobilfunknetz und einem IMS-Netz |
DE10356091.2 | 2003-12-01 |
Publications (2)
Publication Number | Publication Date |
---|---|
RU2006116515A true RU2006116515A (ru) | 2007-11-27 |
RU2328082C2 RU2328082C2 (ru) | 2008-06-27 |
Family
ID=34466017
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
RU2006116515/09A RU2328082C2 (ru) | 2003-10-14 | 2004-10-13 | Способ защиты трафика данных между сетью мобильной связи и сетью ims |
Country Status (5)
Country | Link |
---|---|
US (1) | US7466976B2 (ru) |
EP (1) | EP1673921B1 (ru) |
JP (1) | JP4384177B2 (ru) |
RU (1) | RU2328082C2 (ru) |
WO (1) | WO2005039141A1 (ru) |
Families Citing this family (15)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN100369430C (zh) * | 2005-06-21 | 2008-02-13 | 中兴通讯股份有限公司 | 一种ip多媒体子系统接入安全的保护方法 |
BRPI0612687B1 (pt) | 2005-07-05 | 2019-05-14 | Huawei Technologies Co., Ltd. | Método de autenticação em subsistema multimídia ip |
US8285983B2 (en) | 2006-05-15 | 2012-10-09 | Telefonaktiebolaget Lm Ericsson (Publ) | Method and apparatuses for establishing a secure channel between a user terminal and a SIP server |
DE102006046017B4 (de) * | 2006-09-28 | 2010-01-14 | Siemens Ag | Verfahren zum Bereitstellen eines symmetrischen Schlüssels zum Sichern eines Schlüssel-Management-Protokolls |
US8307094B2 (en) * | 2007-07-20 | 2012-11-06 | Alcatel Lucent | Method for processing register request, network element, and communication system |
JP5034918B2 (ja) | 2007-12-11 | 2012-09-26 | 日本電気株式会社 | Imsネットワークにおけるガイダンス確認装置および方法 |
US20100199341A1 (en) * | 2009-02-02 | 2010-08-05 | Telefonaktiebolaget Lm Ericsson (Publ) | Methods, Subscriber Server, and User Equipment for Facilitating Service Provision |
US8078870B2 (en) * | 2009-05-14 | 2011-12-13 | Microsoft Corporation | HTTP-based authentication |
CN101729528B (zh) * | 2009-05-21 | 2012-11-28 | 中兴通讯股份有限公司 | Ims会议电话的媒体安全实现方法和系统 |
JP5693575B2 (ja) * | 2009-07-14 | 2015-04-01 | テレフオンアクチーボラゲット エル エム エリクソン(パブル) | 電話番号の検証のための方法および装置 |
US8468343B2 (en) * | 2010-01-13 | 2013-06-18 | Futurewei Technologies, Inc. | System and method for securing wireless transmissions |
US8631090B2 (en) * | 2011-08-04 | 2014-01-14 | International Business Machines Corporation | Resource-conserving technique for as-available data delivery to a mobile device |
CN102726079B (zh) * | 2011-12-06 | 2014-07-30 | 华为技术有限公司 | 移动终端的防盗方法及装置 |
KR101891639B1 (ko) * | 2014-01-13 | 2018-08-24 | 노키아 솔루션스 앤드 네트웍스 오와이 | 웹 실시간 통신(WebRTC)에 있어 IP 멀티미디어 서브시스템(IMS)으로의 액세스에 대한 보안 |
KR102172468B1 (ko) * | 2014-03-14 | 2020-10-30 | 삼성전자 주식회사 | WebRTC서비스를 위해 단말이 브라우저를 통해 IMS망에 접속하기 위한 방법 |
Family Cites Families (11)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US20020007411A1 (en) * | 1998-08-10 | 2002-01-17 | Shvat Shaked | Automatic network user identification |
US6608832B2 (en) * | 1997-09-25 | 2003-08-19 | Telefonaktiebolaget Lm Ericsson | Common access between a mobile communications network and an external network with selectable packet-switched and circuit-switched and circuit-switched services |
FI980291A (fi) * | 1998-02-09 | 1999-08-10 | Nokia Mobile Phones Ltd | Liikkuva internetpääsy |
JP2001224070A (ja) * | 2000-02-09 | 2001-08-17 | Fujitsu Ltd | モバイル通信システム及びその方法 |
US6925297B2 (en) * | 2000-09-19 | 2005-08-02 | Nortel Networks, Limited | Use of AAA protocols for authentication of physical devices in IP networks |
JP2003006168A (ja) * | 2001-06-25 | 2003-01-10 | Ntt Docomo Inc | 移動端末認証方法及び移動端末 |
FI114276B (fi) * | 2002-01-11 | 2004-09-15 | Nokia Corp | Verkkovierailun järjestäminen |
US20030159067A1 (en) | 2002-02-21 | 2003-08-21 | Nokia Corporation | Method and apparatus for granting access by a portable phone to multimedia services |
US8195940B2 (en) * | 2002-04-05 | 2012-06-05 | Qualcomm Incorporated | Key updates in a mobile wireless system |
DE10223248A1 (de) | 2002-05-22 | 2003-12-04 | Siemens Ag | Verfahren zum Registrieren eines Kommunikationsendgeräts |
US7930412B2 (en) * | 2003-09-30 | 2011-04-19 | Bce Inc. | System and method for secure access |
-
2004
- 2004-10-13 EP EP04791217.5A patent/EP1673921B1/de not_active Expired - Lifetime
- 2004-10-13 RU RU2006116515/09A patent/RU2328082C2/ru not_active IP Right Cessation
- 2004-10-13 WO PCT/EP2004/052527 patent/WO2005039141A1/de active Application Filing
- 2004-10-13 US US10/575,884 patent/US7466976B2/en active Active
- 2004-10-13 JP JP2006534758A patent/JP4384177B2/ja not_active Expired - Fee Related
Also Published As
Publication number | Publication date |
---|---|
US20070140493A1 (en) | 2007-06-21 |
WO2005039141A1 (de) | 2005-04-28 |
RU2328082C2 (ru) | 2008-06-27 |
JP2007515854A (ja) | 2007-06-14 |
EP1673921B1 (de) | 2018-11-28 |
JP4384177B2 (ja) | 2009-12-16 |
EP1673921A1 (de) | 2006-06-28 |
US7466976B2 (en) | 2008-12-16 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
AU2010201991B2 (en) | Method and apparatus for security protection of an original user identity in an initial signaling message | |
KR100564674B1 (ko) | 무선 시스템에서 공중을 통한 통신을 안전하게 하는 방법 | |
EP2347613B1 (en) | Authentication in a communication network | |
EP2383931B1 (en) | Network security hypertext transfer protocol negotiation method and correlated devices | |
RU2006116515A (ru) | Способ защиты трафика данных между сетью мобильной связи и сетью ims | |
CA2403521A1 (en) | Authentication in a packet data network | |
RU2008146960A (ru) | Способ и система предоставления защищенной связи с использованием сотовой сети для множества устройств специализированной связи | |
CA2541817A1 (en) | System and method for protecting network management frames | |
KR100920409B1 (ko) | 만료 마커를 이용한 무선 통신의 인증 | |
CN1894996A (zh) | 用于无线通信中的认证的方法和装置 | |
CN101483870A (zh) | 跨平台的移动通信安全体系的实现方法 | |
Hall | Detection of rogue devices in wireless networks | |
US7343489B2 (en) | Low cost packet originator verification for intermediate nodes | |
Huang et al. | One-pass authentication and key agreement procedure in IP multimedia subsystem for UMTS | |
CN205693897U (zh) | Lte电力无线专网的二次身份认证系统 | |
Caragata et al. | Security of mobile Internet access with UMTS/HSDPA/LTE | |
Bouška et al. | Communication security in GSM networks | |
Sher et al. | Network access security management (NASM) model for next generation mobile telecommunication networks | |
Gu et al. | Improved one-pass IP Multimedia Subsystem authentication for UMTS | |
Singh et al. | Cell phone cloning: a perspective on gsm security | |
Lee | Bluetooth security protocol analysis and improvements | |
Pervaiz et al. | Security in wireless local area networks | |
Seo et al. | SMS (Short Message Service) based Secure Authentication and Accounting Mechanism in Wireless Network | |
Peter et al. | A secure dynamic cryptographic and encryption protocol for wireless networks | |
Maccari et al. | Re-breaking wireless protected setup |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
MM4A | The patent is invalid due to non-payment of fees |
Effective date: 20201014 |