RU2582863C2 - Механизм обеспечения безопасности для внешнего кода - Google Patents
Механизм обеспечения безопасности для внешнего кода Download PDFInfo
- Publication number
- RU2582863C2 RU2582863C2 RU2014118918/08A RU2014118918A RU2582863C2 RU 2582863 C2 RU2582863 C2 RU 2582863C2 RU 2014118918/08 A RU2014118918/08 A RU 2014118918/08A RU 2014118918 A RU2014118918 A RU 2014118918A RU 2582863 C2 RU2582863 C2 RU 2582863C2
- Authority
- RU
- Russia
- Prior art keywords
- naf
- server
- key
- specific
- external code
- Prior art date
Links
Images
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/04—Key management, e.g. using generic bootstrapping architecture [GBA]
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/30—Authentication, i.e. establishing the identity or authorisation of security principals
- G06F21/31—User authentication
- G06F21/33—User authentication using certificates
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/30—Authentication, i.e. establishing the identity or authorisation of security principals
- G06F21/31—User authentication
- G06F21/34—User authentication involving the use of external additional devices, e.g. dongles or smart cards
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/06—Network architectures or network communication protocols for network security for supporting key management in a packet data network
- H04L63/061—Network architectures or network communication protocols for network security for supporting key management in a packet data network for key exchange, e.g. in peer-to-peer networks
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/0823—Network architectures or network communication protocols for network security for authentication of entities using certificates
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/16—Implementing security features at a particular protocol layer
- H04L63/166—Implementing security features at a particular protocol layer at the transport layer
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/16—Implementing security features at a particular protocol layer
- H04L63/168—Implementing security features at a particular protocol layer above the transport layer
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/08—Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
- H04L9/0861—Generation of secret information including derivation or calculation of cryptographic keys or passwords
- H04L9/0869—Generation of secret information including derivation or calculation of cryptographic keys or passwords involving random numbers or seeds
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3234—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving additional secure or trusted devices, e.g. TPM, smartcard, USB or software token
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/04—Key management, e.g. using generic bootstrapping architecture [GBA]
- H04W12/043—Key management, e.g. using generic bootstrapping architecture [GBA] using a trusted network node as an anchor
- H04W12/0431—Key distribution or pre-distribution; Key agreement
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/06—Authentication
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L2463/00—Additional details relating to network architectures or network communication protocols for network security covered by H04L63/00
- H04L2463/061—Additional details relating to network architectures or network communication protocols for network security covered by H04L63/00 applying further key derivation, e.g. deriving traffic keys from a pair-wise master key
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Computer Hardware Design (AREA)
- General Engineering & Computer Science (AREA)
- Theoretical Computer Science (AREA)
- Computing Systems (AREA)
- General Physics & Mathematics (AREA)
- Physics & Mathematics (AREA)
- Software Systems (AREA)
- Storage Device Security (AREA)
- Stored Programmes (AREA)
- Mobile Radio Communication Systems (AREA)
- Information Transfer Between Computers (AREA)
- Telephonic Communication Services (AREA)
- Financial Or Insurance-Related Operations Such As Payment And Settlement (AREA)
Applications Claiming Priority (1)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| PCT/FI2011/050953 WO2013064716A1 (en) | 2011-10-31 | 2011-10-31 | Security mechanism for external code |
Publications (2)
| Publication Number | Publication Date |
|---|---|
| RU2014118918A RU2014118918A (ru) | 2015-12-10 |
| RU2582863C2 true RU2582863C2 (ru) | 2016-04-27 |
Family
ID=48191420
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| RU2014118918/08A RU2582863C2 (ru) | 2011-10-31 | 2011-10-31 | Механизм обеспечения безопасности для внешнего кода |
Country Status (18)
| Country | Link |
|---|---|
| US (1) | US20150163669A1 (https=) |
| EP (1) | EP2774068A4 (https=) |
| JP (1) | JP2015501613A (https=) |
| KR (1) | KR20140095523A (https=) |
| CN (1) | CN104011730A (https=) |
| AP (1) | AP3955A (https=) |
| AU (1) | AU2011380272A1 (https=) |
| BR (1) | BR112014010472A2 (https=) |
| CA (1) | CA2853867A1 (https=) |
| IL (1) | IL232374A0 (https=) |
| IN (1) | IN2014CN03915A (https=) |
| MX (1) | MX2014005223A (https=) |
| PH (1) | PH12014500964A1 (https=) |
| RU (1) | RU2582863C2 (https=) |
| SG (1) | SG11201401950PA (https=) |
| UA (1) | UA108957C2 (https=) |
| WO (1) | WO2013064716A1 (https=) |
| ZA (1) | ZA201403900B (https=) |
Families Citing this family (15)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| WO2014067543A1 (en) * | 2012-10-29 | 2014-05-08 | Telefonaktiebolaget L M Ericsson (Publ) | Method and apparatus for securing a connection in a communications network |
| US9253185B2 (en) * | 2012-12-12 | 2016-02-02 | Nokia Technologies Oy | Cloud centric application trust validation |
| CN104348801B (zh) * | 2013-07-31 | 2018-05-04 | 华为技术有限公司 | 认证方法、生成信任状的方法及相关装置 |
| WO2015057116A1 (en) * | 2013-10-15 | 2015-04-23 | Telefonaktiebolaget L M Ericsson (Publ) | Establishing a secure connection between a master device and a slave device |
| CN105814834B (zh) | 2013-12-20 | 2019-12-20 | 诺基亚技术有限公司 | 用于公共云应用的基于推送的信任模型 |
| US9736686B2 (en) * | 2015-01-19 | 2017-08-15 | Telefonaktiebolaget Lm Ericsson (Publ) | Methods and apparatus for direct communication key establishment |
| CN106487501B (zh) * | 2015-08-27 | 2020-12-08 | 华为技术有限公司 | 密钥分发和接收方法、密钥管理中心、第一和第二网元 |
| US10129235B2 (en) | 2015-10-16 | 2018-11-13 | Qualcomm Incorporated | Key hierarchy for network slicing |
| CN108702615B (zh) * | 2016-02-12 | 2022-08-05 | 瑞典爱立信有限公司 | 保护接口以及用于建立安全通信链路的过程 |
| EP3718330B1 (en) * | 2017-11-29 | 2024-09-25 | Telefonaktiebolaget LM Ericsson (publ) | Session key establishment |
| FR3077175A1 (fr) * | 2018-01-19 | 2019-07-26 | Orange | Technique de determination d'une cle destinee a securiser une communication entre un equipement utilisateur et un serveur applicatif |
| CN110831002B (zh) * | 2018-08-10 | 2021-12-03 | 华为技术有限公司 | 一种密钥推演的方法、装置及计算存储介质 |
| US20220086632A1 (en) * | 2019-01-14 | 2022-03-17 | Telefonaktiebolaget Lm Ericsson (Publ) | Method and apparatus for security |
| CN113015159B (zh) * | 2019-12-03 | 2023-05-09 | 中国移动通信有限公司研究院 | 初始安全配置方法、安全模块及终端 |
| US12500744B2 (en) * | 2021-09-17 | 2025-12-16 | Qualcomm Incorporated | Securing application communication |
Citations (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| RU101231U1 (ru) * | 2010-03-02 | 2011-01-10 | Закрытое акционерное общество "Лаборатория Касперского" | Система управления безопасностью мобильного вычислительного устройства |
Family Cites Families (11)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US7558957B2 (en) * | 2005-04-18 | 2009-07-07 | Alcatel-Lucent Usa Inc. | Providing fresh session keys |
| CN100379315C (zh) * | 2005-06-21 | 2008-04-02 | 华为技术有限公司 | 对用户终端进行鉴权的方法 |
| CN1929370A (zh) * | 2005-09-05 | 2007-03-14 | 华为技术有限公司 | 用户接入认证代理时确定认证使用的密钥的方法及系统 |
| US20070101122A1 (en) * | 2005-09-23 | 2007-05-03 | Yile Guo | Method and apparatus for securely generating application session keys |
| US20070086590A1 (en) * | 2005-10-13 | 2007-04-19 | Rolf Blom | Method and apparatus for establishing a security association |
| US8522025B2 (en) * | 2006-03-28 | 2013-08-27 | Nokia Corporation | Authenticating an application |
| CN103001940A (zh) * | 2007-10-05 | 2013-03-27 | 交互数字技术公司 | 由wtru使用的用于建立安全本地密钥的方法 |
| WO2009070075A1 (en) * | 2007-11-30 | 2009-06-04 | Telefonaktiebolaget Lm Ericsson (Publ) | Key management for secure communication |
| EP2399376A1 (en) * | 2009-02-18 | 2011-12-28 | Telefonaktiebolaget L M Ericsson (publ) | User authentication |
| CN102379114B (zh) * | 2009-04-01 | 2015-10-07 | 瑞典爱立信有限公司 | 基于ims的多媒体广播和多播服务(mbms)中的安全密钥管理 |
| EP2695410B1 (en) * | 2011-04-01 | 2017-04-19 | Telefonaktiebolaget LM Ericsson (publ) | Methods and apparatuses for avoiding damage in network attacks |
-
2011
- 2011-10-31 MX MX2014005223A patent/MX2014005223A/es not_active Application Discontinuation
- 2011-10-31 PH PH1/2014/500964A patent/PH12014500964A1/en unknown
- 2011-10-31 IN IN3915CHN2014 patent/IN2014CN03915A/en unknown
- 2011-10-31 SG SG11201401950PA patent/SG11201401950PA/en unknown
- 2011-10-31 EP EP11875098.3A patent/EP2774068A4/en not_active Withdrawn
- 2011-10-31 CN CN201180076059.3A patent/CN104011730A/zh active Pending
- 2011-10-31 AP AP2014007624A patent/AP3955A/en active
- 2011-10-31 UA UAA201405037A patent/UA108957C2/ru unknown
- 2011-10-31 KR KR1020147014546A patent/KR20140095523A/ko not_active Ceased
- 2011-10-31 RU RU2014118918/08A patent/RU2582863C2/ru not_active IP Right Cessation
- 2011-10-31 AU AU2011380272A patent/AU2011380272A1/en not_active Abandoned
- 2011-10-31 WO PCT/FI2011/050953 patent/WO2013064716A1/en not_active Ceased
- 2011-10-31 CA CA2853867A patent/CA2853867A1/en not_active Abandoned
- 2011-10-31 JP JP2014539369A patent/JP2015501613A/ja active Pending
- 2011-10-31 BR BR112014010472A patent/BR112014010472A2/pt not_active IP Right Cessation
- 2011-10-31 US US14/354,904 patent/US20150163669A1/en not_active Abandoned
-
2014
- 2014-04-30 IL IL232374A patent/IL232374A0/en unknown
- 2014-05-28 ZA ZA2014/03900A patent/ZA201403900B/en unknown
Patent Citations (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| RU101231U1 (ru) * | 2010-03-02 | 2011-01-10 | Закрытое акционерное общество "Лаборатория Касперского" | Система управления безопасностью мобильного вычислительного устройства |
Also Published As
| Publication number | Publication date |
|---|---|
| AU2011380272A1 (en) | 2014-05-22 |
| MX2014005223A (es) | 2014-09-01 |
| EP2774068A4 (en) | 2015-08-05 |
| US20150163669A1 (en) | 2015-06-11 |
| WO2013064716A1 (en) | 2013-05-10 |
| BR112014010472A2 (pt) | 2017-04-18 |
| AP2014007624A0 (en) | 2014-05-31 |
| EP2774068A1 (en) | 2014-09-10 |
| SG11201401950PA (en) | 2014-09-26 |
| IL232374A0 (en) | 2014-06-30 |
| RU2014118918A (ru) | 2015-12-10 |
| JP2015501613A (ja) | 2015-01-15 |
| KR20140095523A (ko) | 2014-08-01 |
| IN2014CN03915A (https=) | 2015-10-16 |
| CN104011730A (zh) | 2014-08-27 |
| AP3955A (en) | 2016-12-22 |
| UA108957C2 (uk) | 2015-06-25 |
| CA2853867A1 (en) | 2013-05-10 |
| PH12014500964A1 (en) | 2014-06-30 |
| ZA201403900B (en) | 2017-05-31 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| RU2582863C2 (ru) | Механизм обеспечения безопасности для внешнего кода | |
| US11323260B2 (en) | Method and device for identity verification | |
| US10223520B2 (en) | System and method for integrating two-factor authentication in a device | |
| US8606234B2 (en) | Methods and apparatus for provisioning devices with secrets | |
| US8533803B2 (en) | Method and apparatus for trusted federated identity | |
| US9270758B2 (en) | System for mobile application notary service | |
| US11910194B2 (en) | Secondary device authentication proxied from authenticated primary device | |
| EP2416540A1 (en) | Using a trusted-platform-based shared-secret derivation and WWAN infrastructure-based enrollment to establish a secure local channel | |
| US20090271847A1 (en) | Methods, Apparatuses, and Computer Program Products for Providing a Single Service Sign-On | |
| CN111343170B (zh) | 电子签约方法及系统 | |
| CN103004244A (zh) | 结合Web应用和网页的通用引导架构使用 | |
| US20170244692A1 (en) | Authentication of a user using a security device | |
| US11570620B2 (en) | Network profile anti-spoofing on wireless gateways | |
| CN105873239B (zh) | 用于为用户设备的应用建立无线连接的方法 | |
| CN103733591B (zh) | 将可移除模块绑定到接入终端 | |
| US20190080079A1 (en) | Method and device for verifying security of application | |
| US8091122B2 (en) | Computer program product, apparatus and method for secure HTTP digest response verification and integrity protection in a mobile terminal | |
| US20170351866A1 (en) | Authentication method | |
| Rath et al. | Encryption-based second authentication factor solutions for qualified server-side signature creation | |
| CN111431873A (zh) | 一种信息上报的方法、系统、设备以及介质 | |
| US20210073365A1 (en) | Securing user inputs in mobile device | |
| CN117098121B (zh) | 鉴权认证方法、装置、计算机设备、存储介质和程序产品 | |
| KR101046102B1 (ko) | 악성 코드 처리 방법 및 이를 위한 장치 및 시스템 |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| HZ9A | Changing address for correspondence with an applicant | ||
| MM4A | The patent is invalid due to non-payment of fees |
Effective date: 20171101 |