WO2000025475A1 - Subscription portability for wireless systems - Google Patents

Subscription portability for wireless systems Download PDF

Info

Publication number
WO2000025475A1
WO2000025475A1 PCT/US1999/024522 US9924522W WO0025475A1 WO 2000025475 A1 WO2000025475 A1 WO 2000025475A1 US 9924522 W US9924522 W US 9924522W WO 0025475 A1 WO0025475 A1 WO 0025475A1
Authority
WO
WIPO (PCT)
Prior art keywords
key
wireless terminal
password
ske
public
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Ceased
Application number
PCT/US1999/024522
Other languages
English (en)
French (fr)
Inventor
Roy Franklin Quick, Jr.
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Qualcomm Inc
Original Assignee
Qualcomm Inc
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Qualcomm Inc filed Critical Qualcomm Inc
Priority to AU12133/00A priority Critical patent/AU1213300A/en
Priority to JP2000578954A priority patent/JP4689830B2/ja
Priority to EP99971175A priority patent/EP1123603B1/en
Priority to HK02102209.1A priority patent/HK1040854A1/zh
Priority to DE69930318T priority patent/DE69930318T2/de
Publication of WO2000025475A1 publication Critical patent/WO2000025475A1/en
Anticipated expiration legal-status Critical
Ceased legal-status Critical Current

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W8/00Network data management
    • H04W8/26Network addressing or numbering for mobility support
    • H04W8/265Network addressing or numbering for mobility support for initial activation of new user
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/08Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
    • H04L9/0816Key establishment, i.e. cryptographic processes or cryptographic protocols whereby a shared secret becomes available to two or more parties, for subsequent use
    • H04L9/0838Key agreement, i.e. key establishment technique in which a shared key is derived by parties as a function of information contributed by, or associated with, each of these
    • H04L9/0841Key agreement, i.e. key establishment technique in which a shared key is derived by parties as a function of information contributed by, or associated with, each of these involving Diffie-Hellman or related key agreement protocols
    • H04L9/0844Key agreement, i.e. key establishment technique in which a shared key is derived by parties as a function of information contributed by, or associated with, each of these involving Diffie-Hellman or related key agreement protocols with user authentication or key authentication, e.g. ElGamal, MTI, MQV-Menezes-Qu-Vanstone protocol or Diffie-Hellman protocols using implicitly-certified keys
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/04Key management, e.g. using generic bootstrapping architecture [GBA]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/30Security of mobile devices; Security of mobile applications
    • H04W12/35Protecting application or service provisioning, e.g. securing SIM application provisioning
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L2209/00Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
    • H04L2209/80Wireless
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/04Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks
    • H04L63/0428Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload
    • H04L63/0478Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload applying multiple layers of encryption, e.g. nested tunnels or encrypting the content with a first key and then with at least a second key
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/02Protecting privacy or anonymity, e.g. protecting personally identifiable information [PII]

Definitions

  • This invention relates to wireless voice and data systems, and has particular relation to allowing a subscriber to move his subscription from one wireless terminal to another.
  • the invention thus provides subscription portability, sometimes also called personal mobility.
  • a wireless terminal (portable telephone, laptop computer, etc.) cannot be used as such unless its user has subscribed to a wireless communications service, so that the terminal may use that service to communicate with other terminals, both wireless and wireline. This in turn requires the service provider to register and provision that terminal, that is, to recognize that terminal as being entitled to service and to program the terminal with identification and security information that allows it to access the wireless service.
  • registration In the wireless service industry the term “registration” has several meanings.
  • registration will be used to mean an exchange of the information needed to establish the identity of the user of a terminal and to permit access to wireless services.
  • This registration may be required in two situations. First, when the terminal is originally purchased, it is not registered to anyone. This situation is referred to as initial provisioning. Second, a subscriber may choose to re-register, that is, to transfer his subscription from one wireless terminal to another. This re-registration might be, for example, from his portable telephone to his laptop computer, or from his regular portable telephone to the portable telephone which he has just rented on a trip to a distant city. This re-registration is referred to as subscription portability.
  • provisioning is performed manually by trained personnel at a terminal distribution site.
  • One of these employees manually registers the terminal with the service provider, typically over the landline telephone.
  • the employee enters information into the terminal through the keypad, using secret information which the service provider has made available to him/her, and storing the subscription information permanently in the terminal.
  • This arrangement is expensive because the seller must have extensively trained employees at every retail outlet.
  • the process is not secure, since the secret information is readily available to these employees.
  • UIM user identification module
  • GSM Global System for Mobiles
  • This first alternative means is still not entirely satisfactory. It requires an electronic interface between the module and the wireless terminal and this interface adds cost to the terminal. Further, the interface is open to contamination when the UIM is removed and inserted, and consequently may become unreliable with repeated use.
  • a second alternative means deals with the initial provisioning but not with subscription portability. This second means requires that, when the subscriber first buys a new telephone, the user dials a special number to reach a customer service representative who can determine the credit of the user and can then program the necessary subscription information into the terminal using over the air messages.
  • This second alternative means is an improvement over the UIM means in that it requires no special interface in the terminal.
  • This second means is also not entirely satisfactory, because the service provider must still have highly skilled personnel in the customer service center to operate the over-the-air programming equipment. The expensive nature of the customer service process prohibits the subscriber from reregistering a telephone which a friend has loaned to him for a day or two.
  • the purpose of this invention is to provide a method for initial provisioning and subscription portability that does not require skilled personnel to complete the provisioning and registration process, nor a removable item that the user must physically insert into the terminal.
  • the procedure described herein requires only that the subscriber enter his/her portable wireless subscription identifier, or user identifier (conventionally, his International Mobile User Identifier, or IMUI) and a password (conventionally, his Personal Identification Number, or PIN) into a wireless terminal.
  • the password may be entered into the terminal in any convenient manner, such as keying a number into a keypad, speaking a phrase (with suitable voice recognition technology) into the microphone, or any other convenient manner.
  • the wireless terminal is then able to contact the service provider using over-the-air signals, obtain necessary subscription information, and automatically reprogram itself - and reprogram the service provider - so that the service provider thereafter recognizes this wireless terminal as being registered to this subscriber.
  • the password must be fairly short - typically four to six digits, as in bank card PINs - because the average subscriber cannot memorize a security code that is sufficiently long (twenty digits or more) to impede a brute-force attack.
  • Applicant has developed a subscription which is truly portable from one wireless terminal to another, and which uses passwords which are both short and secure.
  • IMUI International Mobile User Identifier
  • PIN Personal Identification Number
  • the terminal Whenever a subscriber wishes to register a terminal to his subscription, he enters his user identifier (conventionally, his International Mobile User Identifier, or IMUI) and his password (conventionally, his Personal Identification Number, or PIN) into the terminal.
  • the terminal generates a public/private key pair and stores it.
  • This key pair is preferably a Diffie-Hellman (D-H) key pair. It optionally concatenates the public key with a random number, and encrypts the (optionally concatenated) number with the password.
  • Any convenient Secure Key Exchange (SKE) method may be used.
  • SKE Secure Key Exchange
  • DH-EKE Diffie-Hellman Encrypted Key Exchange
  • the terminal then makes wireless contact with a local serving system and requests registration.
  • This serving system may be the subscriber's home system, but often it is not.
  • the terminal and the home system must be assured of each other's identities, whether there is no intermediate serving system, one system, or even several.
  • the remainder of this description assumes one intermediate system, but is readily modified to handle none or several. That is, the terminal and the home system will always be the source and destination (or vice versa) of messages, regardless of how many intermediate systems (if any) they have to pass through.
  • the terminal tells the serving system what the subscriber's home system is, by stating either the full user identifier or enough of the user identifier as is necessary to identify the home system. It also states the DH- EKE message.
  • the serving system first provides its D-H public key to the terminal, so that the specifics of who is requesting registration are not sent in the clear.
  • the serving system opens a channel with the terminal to facilitate the registration process.
  • the serving system sends the DH-EKE message to the home system, which decrypts it with the password.
  • the password is known only to the home system and the subscriber.
  • the home system thereby recovers the subscriber's public key.
  • the home system generates its own D-H public /private key pair and stores it.
  • VUIM virtual User Identification Module
  • Registration may now continue in the conventional fashion, as though a PUIM had been used. Alternatively, registration may be included within the downloading process. This is possible since a terminal with a VUIM already has something which a terminal with a PUIM does not acquire until later, namely, a communications link to (and a shared secret session key with) the home system.
  • a strength of this method is that the public keys are temporary, and can be replaced on each subsequent registration. Further, each public key is essentially a random number, providing no indication whether an attempted decryption was or was not successful.
  • An off-line dictionary attack therefore fails. The only thing that a dictionary attacker recovers is a collection of possible public keys, none of which has anything to distinguish it from any of the others. There is thus nothing to distinguish a correct guess of the password from an incorrect guess. The follow-on on-line attack must therefore still use the entire dictionary of passwords, and will therefore fail.
  • This strength may also be viewed as the password being used as a private key in a key exchange procedure, rather than as an encryption key per se. It is for this reason that the process is called Secure Key Exchange rather than Encrypted Key Exchange. It is not necessary that the terminal and home system exchange passwords nor session keys in encrypted form. What is important is that the home system be assured that the terminal knows the password and has the common session key. It is also important that the password not be discoverable by eavesdroppers while the terminal is demonstrating its identity to the home system. If the password is not included in the message, even in encrypted form, then it is more difficult to be compromised.
  • FIG. 1 shows an exchange of DH-EKE messages.
  • FIG. 2 shows an authentication procedure.
  • FIG. 1 shows an exchange 100 of DH-EKE messages.
  • the user 102 enters the user identifier and password into the wireless terminal 104.
  • the terminal 104 generates a pair of Diffie-Hellman (D-H) private and public keys, and stores them.
  • D-H Diffie-Hellman
  • the terminal 104 and the base station of the serving system 106 carry out a separate procedure to establish a local session encryption key SESS 108 to protect the user identifier from interception.
  • the terminal 104 uses the password to encrypt the D-H public key, optionally concatenated with a random number before encryption, then transmits the user identifier (optionally encrypted under the local session key) and the encrypted public key, that is, a first DH-EKE message 110, to the base station of the serving system 106 in a registration request.
  • This request should result in a dedicated channel assignment in order to complete the download procedure efficiently.
  • the serving system 106 contacts the home system 112 requesting a subscription registration.
  • the home system 112 decrypts the wireless terminal's public key using the password in the subscription record.
  • the home system then creates a private and public D-H key, from which a tentative session key is obtained using the terminal's public key and the home system's private key.
  • the home system then encrypts its own public key, optionally concatenating a random number before encryption, using the password stored in the subscription record and returns it in the form of a second DH-EKE message 114 to the wireless terminal 104 via the serving system 106.
  • the wireless terminal 104 decrypts the home system's public key and creates (hopefully) the same tentative session key, using the home system's public key and its own private key.
  • the wireless terminal 104 and home system 112 carry out this procedure to prove that each have the same key.
  • This authentication could be either unilateral (for example, only allowing the home system 112 to authenticate the wireless terminal 104) or bilateral.
  • the bilateral technique has three steps. First, the wireless terminal 104 encrypts a random number C w and sends the encrypted number E(C W ) 202 to the home system 112. Second, the home system 112 generates its own random number C H , encrypts (C w , C H ) and sends the encrypted number E(C W , C H ) 204 to the wireless terminal 104.
  • the wireless terminal 104 encrypts C H and sends the encrypted number E(C H ) 206 to the home system 112.
  • a unilateral procedure could, for example, omit the first step, and replace C w in the second step by a second random number.
  • the public keys were encrypted by the password, and the authentication consists of three different things being sent in an interlocked manner. Therefore, a man-in-the-middle attacker cannot cause a false acceptance of keys, and cannot know the mutual key without breaking the discrete logarithm or elliptic-curve group. Such breakage is currently considered infeasible if the group size is sufficiently large.
  • the home system 112 verifies the session key of the wireless terminal 104, it will transfer the subscription information - that is, all or part of a virtual UIM (VUIM) — to the serving system 106, in both encrypted form for over-the-air transmission and in unencrypted form for use by the serving system.
  • VUIM virtual UIM
  • the session key - or, at least, a first portion of it - can also serve as an authentication key AUTH 116 for subsequent authentications of the terminal 104 in the serving system 106.
  • This has advantages over the current cellular authentication procedures in that the authentication key is created at each registration, and therefore will change randomly from registration to registration.
  • the D-H exchange produces 512 bits of output, which is more than are needed for authentication.
  • the remainder of the session key that is, a second portion of it, can serve as a conventional encryption key for subsequent control signal transmissions.
  • the serving system 106 downloads the encrypted subscription data - the VUIM - to the terminal and makes a registration entry in the Visitor Location Register (VLR). The user is now ready to make calls.
  • VLR Visitor Location Register
  • the user can be assigned a Temporary Mobile User Identifier (TMUI) as described in existing cellular standards.
  • TMUI Temporary Mobile User Identifier
  • the generation of per-call encryption keys can be carried out using the authentication key using procedures described in existing cellular standards.
  • the airlink security procedures in existing cellular standards can be used without modification after the generation of the authentication key using the methods described here.
  • My invention is capable of exploitation in industry, and can be made and used, whenever is it desired to register a wireless subscription in a new wireless terminal.
  • the individual components of the apparatus and method shown herein, taken separate and apart from one another, may be entirely conventional, it being their combination which I claim as my invention.

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Databases & Information Systems (AREA)
  • Mobile Radio Communication Systems (AREA)
PCT/US1999/024522 1998-10-23 1999-10-19 Subscription portability for wireless systems Ceased WO2000025475A1 (en)

Priority Applications (5)

Application Number Priority Date Filing Date Title
AU12133/00A AU1213300A (en) 1998-10-23 1999-10-19 Subscription portability for wireless systems
JP2000578954A JP4689830B2 (ja) 1998-10-23 1999-10-19 無線システムのための申し込み登録方法、装置、無線装置及びホームシステム
EP99971175A EP1123603B1 (en) 1998-10-23 1999-10-19 Subscription portability for wireless systems
HK02102209.1A HK1040854A1 (zh) 1998-10-23 1999-10-19 對於無線系統的預訂可移植性
DE69930318T DE69930318T2 (de) 1998-10-23 1999-10-19 Vertragsportabilität für drahtlose systeme

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
US09/178,192 1998-10-23
US09/178,192 US6178506B1 (en) 1998-10-23 1998-10-23 Wireless subscription portability

Publications (1)

Publication Number Publication Date
WO2000025475A1 true WO2000025475A1 (en) 2000-05-04

Family

ID=22651590

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/US1999/024522 Ceased WO2000025475A1 (en) 1998-10-23 1999-10-19 Subscription portability for wireless systems

Country Status (9)

Country Link
US (2) US6178506B1 (enExample)
EP (1) EP1123603B1 (enExample)
JP (1) JP4689830B2 (enExample)
KR (1) KR100655665B1 (enExample)
CN (1) CN100525180C (enExample)
AU (1) AU1213300A (enExample)
DE (1) DE69930318T2 (enExample)
HK (1) HK1040854A1 (enExample)
WO (1) WO2000025475A1 (enExample)

Cited By (14)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
GB2371184A (en) * 2000-11-17 2002-07-17 Ipwireless Inc Wireless internet access
EP1187419A3 (en) * 2000-09-08 2003-10-15 Pioneer Corporation User authentication system and method
US6782103B1 (en) 1999-12-17 2004-08-24 Fujitsu Services Limited Cryptographic key management
WO2004112385A1 (en) 2003-06-13 2004-12-23 Television And Wireless Applications Europe Ab Adapter arrangement, method, system and user terminal for conditional access
JP2005530277A (ja) * 2002-06-20 2005-10-06 クゥアルコム・インコーポレイテッド 通信システムにおけるキー発生方法及び装置
EP1729499A3 (en) * 2005-06-01 2007-11-14 Canon Information Systems Research Australia Pty Ltd. Management of physical security credentials at a multifunction device
WO2008014958A1 (en) 2006-08-01 2008-02-07 Nec Europe Ltd. Method for establishing a secret key between two nodes in a communication network
WO2008157126A2 (en) 2007-06-15 2008-12-24 Intel Corporation Field programing of a mobile station with subscriber identification and related information
US8005215B2 (en) 2005-04-20 2011-08-23 Nds Limited Table shuffle cipher system
US8094821B2 (en) 2004-08-06 2012-01-10 Qualcomm Incorporated Key generation in a communication system
US8117291B1 (en) 1999-11-02 2012-02-14 Wireless Technology Solutions Llc Use of internet web technology to register wireless access customers
US8463231B1 (en) 1999-11-02 2013-06-11 Nvidia Corporation Use of radius in UMTS to perform accounting functions
US8630414B2 (en) 2002-06-20 2014-01-14 Qualcomm Incorporated Inter-working function for a communication system
USRE45757E1 (en) 1999-11-02 2015-10-13 Nvidia Corporation Cellular wireless internet access system using spread spectrum and internet protocol

Families Citing this family (123)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US8352400B2 (en) 1991-12-23 2013-01-08 Hoffberg Steven M Adaptive pattern recognition based controller apparatus and method and human-factored interface therefore
US10361802B1 (en) 1999-02-01 2019-07-23 Blanding Hovenweep, Llc Adaptive pattern recognition based control system and method
CA2255285C (en) * 1998-12-04 2009-10-13 Certicom Corp. Enhanced subscriber authentication protocol
US7966078B2 (en) 1999-02-01 2011-06-21 Steven Hoffberg Network media appliance system and method
FI107487B (fi) * 1999-03-08 2001-08-15 Nokia Mobile Phones Ltd Datalähetyksen salausmenetelmä radiojärjestelmässä
US6820203B1 (en) * 1999-04-07 2004-11-16 Sony Corporation Security unit for use in memory card
JP2001186121A (ja) * 1999-12-27 2001-07-06 Nec Corp 通信装置、通信装置セット、認証方法および端末間ワイヤレス接続方法
NL1014274C2 (nl) * 2000-02-03 2001-08-16 Tele Atlas Bv Stelsel voor het beveiligen van op een datadrager aanwezige data.
GB0004178D0 (en) 2000-02-22 2000-04-12 Nokia Networks Oy Integrity check in a communication system
US20030070074A1 (en) * 2000-03-17 2003-04-10 Avner Geller Method and system for authentication
US7596223B1 (en) * 2000-09-12 2009-09-29 Apple Inc. User control of a secure wireless computer network
US20020091931A1 (en) * 2001-01-05 2002-07-11 Quick Roy Franklin Local authentication in a communication system
US7668315B2 (en) * 2001-01-05 2010-02-23 Qualcomm Incorporated Local authentication of mobile subscribers outside their home systems
US20020131592A1 (en) * 2001-03-16 2002-09-19 Harris Hinnant Entropy sources for encryption key generation
US20030084287A1 (en) * 2001-10-25 2003-05-01 Wang Huayan A. System and method for upper layer roaming authentication
US7194621B1 (en) * 2002-02-28 2007-03-20 Cisco Technology, Inc. Method and apparatus for encrypting data communicated between a client and a server that use an unencrypted data transfer protocol
US20030186699A1 (en) * 2002-03-28 2003-10-02 Arlene Havlark Wireless telecommunications location based services scheme selection
US8918073B2 (en) * 2002-03-28 2014-12-23 Telecommunication Systems, Inc. Wireless telecommunications location based services scheme selection
US8027697B2 (en) * 2007-09-28 2011-09-27 Telecommunication Systems, Inc. Public safety access point (PSAP) selection for E911 wireless callers in a GSM type system
US8290505B2 (en) 2006-08-29 2012-10-16 Telecommunications Systems, Inc. Consequential location derived information
US7426380B2 (en) 2002-03-28 2008-09-16 Telecommunication Systems, Inc. Location derived presence information
US20040203597A1 (en) * 2002-03-28 2004-10-14 Pitt Lance Douglas Mobile subscriber privacy evaluation using solicited vs. unsolicited differentiation
US8126889B2 (en) * 2002-03-28 2012-02-28 Telecommunication Systems, Inc. Location fidelity adjustment based on mobile subscriber privacy profile
US9154906B2 (en) * 2002-03-28 2015-10-06 Telecommunication Systems, Inc. Area watcher for wireless network
KR100458254B1 (ko) * 2002-07-26 2004-11-26 학교법인 성균관대학 패스워드 강화 프로토콜을 이용한 패스워드 기반 키 분배방법
KR100458255B1 (ko) * 2002-07-26 2004-11-26 학교법인 성균관대학 프록시서버를 이용한 키 분배 방법
US7437752B2 (en) * 2002-09-23 2008-10-14 Credant Technologies, Inc. Client architecture for portable device with security policies
US7665118B2 (en) * 2002-09-23 2010-02-16 Credant Technologies, Inc. Server, computer memory, and method to support security policy maintenance and distribution
US7665125B2 (en) * 2002-09-23 2010-02-16 Heard Robert W System and method for distribution of security policies for mobile devices
US20060190984A1 (en) * 2002-09-23 2006-08-24 Credant Technologies, Inc. Gatekeeper architecture/features to support security policy maintenance and distribution
EP1547303A4 (en) * 2002-09-23 2009-09-02 Credant Technologies Inc SERVER, COMPUTER MEMORY AND METHOD FOR SUPPORTING THE MAINTENANCE AND DISTRIBUTION OF A SECURITY POLICE
US20040073795A1 (en) * 2002-10-10 2004-04-15 Jablon David P. Systems and methods for password-based connection
US7594113B2 (en) * 2002-10-11 2009-09-22 Panasonic Corporation Identification information protection method in WLAN inter-working
US20070238455A1 (en) * 2006-04-07 2007-10-11 Yinjun Zhu Mobile based area event handling when currently visited network doe not cover area
US8666397B2 (en) 2002-12-13 2014-03-04 Telecommunication Systems, Inc. Area event handling when current network does not cover target area
EP1592174B1 (en) 2003-02-03 2014-12-24 Sony Corporation Radio communication system, radio communication device, radio communication method, and computer program
KR100520116B1 (ko) * 2003-05-16 2005-10-10 삼성전자주식회사 모바일 애드 혹 상의 암호화를 위한 노드간 키 분배 방법및 이를 이용한 네트워크 장치
US7424293B2 (en) * 2003-12-02 2008-09-09 Telecommunication Systems, Inc. User plane location based service using message tunneling to support roaming
US7260186B2 (en) 2004-03-23 2007-08-21 Telecommunication Systems, Inc. Solutions for voice over internet protocol (VoIP) 911 location services
US20080090546A1 (en) 2006-10-17 2008-04-17 Richard Dickinson Enhanced E911 network access for a call center using session initiation protocol (SIP) messaging
US20080126535A1 (en) 2006-11-28 2008-05-29 Yinjun Zhu User plane location services over session initiation protocol (SIP)
JP4841120B2 (ja) 2004-06-30 2011-12-21 マニー株式会社 光ファイバーの加工方法及びレーザ光照射装置
US7286834B2 (en) * 2004-07-13 2007-10-23 Sbc Knowledge Ventures, Lp System and method for location based policy management
US7730485B2 (en) * 2004-08-10 2010-06-01 At&T Intellectual Property I, L.P. System and method for advertising to a Wi-Fi device
JP4923283B2 (ja) * 2004-08-20 2012-04-25 富士ゼロックス株式会社 無線通信システムおよび通信装置および通信制御プログラム
US7629926B2 (en) 2004-10-15 2009-12-08 Telecommunication Systems, Inc. Culled satellite ephemeris information for quick, accurate assisted locating satellite location determination for cell site antennas
US7411546B2 (en) 2004-10-15 2008-08-12 Telecommunication Systems, Inc. Other cell sites used as reference point to cull satellite ephemeris information for quick, accurate assisted locating satellite location determination
US7113128B1 (en) * 2004-10-15 2006-09-26 Telecommunication Systems, Inc. Culled satellite ephemeris information for quick, accurate assisted locating satellite location determination for cell site antennas
US6985105B1 (en) * 2004-10-15 2006-01-10 Telecommunication Systems, Inc. Culled satellite ephemeris information based on limiting a span of an inverted cone for locating satellite in-range determinations
EP1653697B1 (en) * 2004-10-29 2016-08-17 BlackBerry Limited Secure Peer-to-Peer Messaging Invitation Architecture
JP2009510808A (ja) 2005-02-18 2009-03-12 クレダント テクノロジーズ、インク. インテリジェンスベースのセキュリティのシステムおよび方法
US8363837B2 (en) * 2005-02-28 2013-01-29 HGST Netherlands B.V. Data storage device with data transformation capability
US7353034B2 (en) 2005-04-04 2008-04-01 X One, Inc. Location sharing and tracking using mobile phones or other wireless devices
US8175277B2 (en) * 2005-04-28 2012-05-08 Cisco Technology, Inc. Intercepting a communication session in a telecommunication network
US8660573B2 (en) 2005-07-19 2014-02-25 Telecommunications Systems, Inc. Location service requests throttling
US20070049288A1 (en) * 2005-08-24 2007-03-01 Lamprecht Leslie J Creating optimum temporal location trigger for multiple requests
US9282451B2 (en) 2005-09-26 2016-03-08 Telecommunication Systems, Inc. Automatic location identification (ALI) service requests steering, connection sharing and protocol translation
US7825780B2 (en) * 2005-10-05 2010-11-02 Telecommunication Systems, Inc. Cellular augmented vehicle alarm notification together with location services for position of an alarming vehicle
US20070075848A1 (en) * 2005-10-05 2007-04-05 Pitt Lance D Cellular augmented vehicle alarm
US7907551B2 (en) * 2005-10-06 2011-03-15 Telecommunication Systems, Inc. Voice over internet protocol (VoIP) location based 911 conferencing
US7626951B2 (en) 2005-10-06 2009-12-01 Telecommunication Systems, Inc. Voice Over Internet Protocol (VoIP) location based conferencing
US8467320B2 (en) 2005-10-06 2013-06-18 Telecommunication Systems, Inc. Voice over internet protocol (VoIP) multi-user conferencing
US7747647B2 (en) * 2005-12-30 2010-06-29 Microsoft Corporation Distributing permission information via a metadirectory
US8150363B2 (en) * 2006-02-16 2012-04-03 Telecommunication Systems, Inc. Enhanced E911 network access for call centers
US8059789B2 (en) * 2006-02-24 2011-11-15 Telecommunication Systems, Inc. Automatic location identification (ALI) emergency services pseudo key (ESPK)
US7471236B1 (en) * 2006-03-01 2008-12-30 Telecommunication Systems, Inc. Cellular augmented radar/laser detector
US9167553B2 (en) 2006-03-01 2015-10-20 Telecommunication Systems, Inc. GeoNexus proximity detector network
US7899450B2 (en) 2006-03-01 2011-03-01 Telecommunication Systems, Inc. Cellular augmented radar/laser detection using local mobile network within cellular network
US8208605B2 (en) * 2006-05-04 2012-06-26 Telecommunication Systems, Inc. Extended efficient usage of emergency services keys
US20080051069A1 (en) * 2006-08-25 2008-02-28 Research In Motion Limited Method and system for managing trial service subscriptions for a mobile communications device
WO2008039469A2 (en) * 2006-09-26 2008-04-03 Telecommunication Systems, Inc. Location object proxy
US7966013B2 (en) * 2006-11-03 2011-06-21 Telecommunication Systems, Inc. Roaming gateway enabling location based services (LBS) roaming for user plane in CDMA networks without requiring use of a mobile positioning center (MPC)
US20080167018A1 (en) * 2007-01-10 2008-07-10 Arlene Havlark Wireless telecommunications location based services scheme selection
US8050386B2 (en) 2007-02-12 2011-11-01 Telecommunication Systems, Inc. Mobile automatic location identification (ALI) for first responders
CN101170554B (zh) * 2007-09-04 2012-07-04 萨摩亚商·繁星科技有限公司 资讯安全传递系统
WO2009038726A1 (en) 2007-09-17 2009-03-26 Telecommunication Systems, Inc. Emergency 911 data messaging
US7929530B2 (en) * 2007-11-30 2011-04-19 Telecommunication Systems, Inc. Ancillary data support in session initiation protocol (SIP) messaging
US9130963B2 (en) 2011-04-06 2015-09-08 Telecommunication Systems, Inc. Ancillary data support in session initiation protocol (SIP) messaging
US8068587B2 (en) 2008-08-22 2011-11-29 Telecommunication Systems, Inc. Nationwide table routing of voice over internet protocol (VOIP) emergency calls
US8892128B2 (en) 2008-10-14 2014-11-18 Telecommunication Systems, Inc. Location based geo-reminders
EP2347395A4 (en) 2008-10-14 2016-11-02 Telecomm Systems Inc Location Based Approach Alert
US8904177B2 (en) * 2009-01-27 2014-12-02 Sony Corporation Authentication for a multi-tier wireless home mesh network
US7961674B2 (en) 2009-01-27 2011-06-14 Sony Corporation Multi-tier wireless home mesh network with a secure network discovery protocol
US9301191B2 (en) 2013-09-20 2016-03-29 Telecommunication Systems, Inc. Quality of service to over the top applications used with VPN
US8867485B2 (en) * 2009-05-05 2014-10-21 Telecommunication Systems, Inc. Multiple location retrieval function (LRF) network having location continuity
US20110009086A1 (en) * 2009-07-10 2011-01-13 Todd Poremba Text to 9-1-1 emergency communication
US20110064046A1 (en) * 2009-09-11 2011-03-17 Yinjun Zhu User plane emergency location continuity for voice over internet protocol (VoIP)/IMS emergency services
US20110149953A1 (en) * 2009-12-23 2011-06-23 William Helgeson Tracking results of a v2 query in voice over internet (VoIP) emergency call systems
US8315599B2 (en) 2010-07-09 2012-11-20 Telecommunication Systems, Inc. Location privacy selector
US8336664B2 (en) 2010-07-09 2012-12-25 Telecommunication Systems, Inc. Telematics basic mobile device safety interlock
US8942743B2 (en) 2010-12-17 2015-01-27 Telecommunication Systems, Inc. iALERT enhanced alert manager
US8688087B2 (en) 2010-12-17 2014-04-01 Telecommunication Systems, Inc. N-dimensional affinity confluencer
WO2012141762A1 (en) 2011-02-25 2012-10-18 Telecommunication Systems, Inc. Mobile internet protocol (ip) location
US9471772B2 (en) 2011-06-01 2016-10-18 Paypal, Inc. Password check by decomposing password
US8719568B1 (en) * 2011-06-30 2014-05-06 Cellco Partnership Secure delivery of sensitive information from a non-communicative actor
EP3206330B1 (en) * 2011-08-16 2018-12-26 ICTK Holdings Co., Ltd. Apparatus and method for authentication between devices based on puf over machine-to-machine communications
US8649806B2 (en) 2011-09-02 2014-02-11 Telecommunication Systems, Inc. Aggregate location dynometer (ALD)
US9479344B2 (en) 2011-09-16 2016-10-25 Telecommunication Systems, Inc. Anonymous voice conversation
WO2013048551A1 (en) 2011-09-30 2013-04-04 Telecommunication Systems, Inc. Unique global identifier for minimizing prank 911 calls
US9313637B2 (en) 2011-12-05 2016-04-12 Telecommunication Systems, Inc. Wireless emergency caller profile data delivery over a legacy interface
US9264537B2 (en) 2011-12-05 2016-02-16 Telecommunication Systems, Inc. Special emergency call treatment based on the caller
US8984591B2 (en) 2011-12-16 2015-03-17 Telecommunications Systems, Inc. Authentication via motion of wireless device movement
US9384339B2 (en) 2012-01-13 2016-07-05 Telecommunication Systems, Inc. Authenticating cloud computing enabling secure services
US8688174B2 (en) 2012-03-13 2014-04-01 Telecommunication Systems, Inc. Integrated, detachable ear bud device for a wireless phone
US9307372B2 (en) 2012-03-26 2016-04-05 Telecommunication Systems, Inc. No responders online
US9544260B2 (en) 2012-03-26 2017-01-10 Telecommunication Systems, Inc. Rapid assignment dynamic ownership queue
US9338153B2 (en) 2012-04-11 2016-05-10 Telecommunication Systems, Inc. Secure distribution of non-privileged authentication credentials
KR101297936B1 (ko) * 2012-06-08 2013-08-19 가톨릭대학교 산학협력단 단말기 간의 보안 통신 방법 및 그 장치
WO2014028712A1 (en) 2012-08-15 2014-02-20 Telecommunication Systems, Inc. Device independent caller data access for emergency calls
US20140064488A1 (en) * 2012-08-30 2014-03-06 Texas Instruments Incorporated One-Way Key Fob and Vehicle Pairing
US9208346B2 (en) 2012-09-05 2015-12-08 Telecommunication Systems, Inc. Persona-notitia intellection codifier
US20140082358A1 (en) * 2012-09-17 2014-03-20 General Instrument Corporation Efficient key generator for distribution of sensitive material from mulitple application service providers to a secure element such as a universal integrated circuit card (uicc)
CN102917339B (zh) * 2012-10-11 2014-06-11 华为技术有限公司 虚拟用户识别模块的实现与通信方法、装置及系统
US9456301B2 (en) 2012-12-11 2016-09-27 Telecommunication Systems, Inc. Efficient prisoner tracking
US8983047B2 (en) 2013-03-20 2015-03-17 Telecommunication Systems, Inc. Index of suspicion determination for communications request
KR101459237B1 (ko) * 2013-07-05 2014-11-12 가톨릭대학교 산학협력단 단말기 간의 보안 통신 방법 및 그 장치
US9408034B2 (en) 2013-09-09 2016-08-02 Telecommunication Systems, Inc. Extended area event for network based proximity discovery
US9516104B2 (en) 2013-09-11 2016-12-06 Telecommunication Systems, Inc. Intelligent load balancer enhanced routing
US9479897B2 (en) 2013-10-03 2016-10-25 Telecommunication Systems, Inc. SUPL-WiFi access point controller location based services for WiFi enabled mobile devices
GB2526619A (en) * 2014-05-30 2015-12-02 Vodafone Ip Licensing Ltd Service provisioning
CN205050141U (zh) * 2014-09-30 2016-02-24 苹果公司 电子设备
CN105553951B (zh) * 2015-12-08 2019-11-08 腾讯科技(深圳)有限公司 数据传输方法和装置
EP3618475A1 (en) * 2018-08-27 2020-03-04 Koninklijke Philips N.V. Method and device to establish a wireless secure link while maintaining privacy against tracking

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
EP0535863A2 (en) * 1991-10-02 1993-04-07 AT&T Corp. A cryptographic protocol for secure communications
EP0562890A1 (en) * 1992-03-27 1993-09-29 Orange Personal Communications Services Limited Mobile communication network with remote updating of subscriber identity modules in mobile terminals
EP0651533A2 (en) * 1993-11-02 1995-05-03 Sun Microsystems, Inc. Method and apparatus for privacy and authentication in a mobile wireless network

Family Cites Families (20)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
DE3035965A1 (de) * 1980-09-24 1982-05-13 Licentia Patent-Verwaltungs-Gmbh, 6000 Frankfurt Datenuebertragungssystem
JPS59154837A (ja) * 1983-02-23 1984-09-03 Nippon Telegr & Teleph Corp <Ntt> パスワ−ド認証方式
JPS60223248A (ja) * 1984-04-17 1985-11-07 Fujitsu Ltd 公開鍵配送方式
CA2045801C (en) * 1990-09-28 1995-04-11 Irwin Gerszberg Method and apparatus for remotely programming a mobile data telephone set
JP3308561B2 (ja) * 1990-11-14 2002-07-29 株式会社東芝 電子メール通信方法および送信側端末
US5479479A (en) * 1991-10-19 1995-12-26 Cell Port Labs, Inc. Method and apparatus for transmission of and receiving signals having digital information using an air link
US5222140A (en) 1991-11-08 1993-06-22 Bell Communications Research, Inc. Cryptographic method for key agreement and user authentication
US5402490A (en) * 1992-09-01 1995-03-28 Motorola, Inc. Process for improving public key authentication
US5299263A (en) 1993-03-04 1994-03-29 Bell Communications Research, Inc. Two-way public key authentication and key agreement for low-cost terminals
US5771352A (en) * 1994-04-14 1998-06-23 Kabushiki Kaisha Toshiba Communication control apparatus and method
US5682325A (en) * 1994-09-12 1997-10-28 Bell Atlantic Network Services, Inc. Level 1 gateway for video tone networks
US5619562A (en) * 1995-02-06 1997-04-08 Bell Atlantic Network Services, Inc. Method and system for remotely activating/changing subscriber services in a public switched telephone network
US5603084C1 (en) * 1995-03-02 2001-06-05 Ericsson Inc Method and apparatus for remotely programming a cellular radiotelephone
JPH08274769A (ja) * 1995-03-28 1996-10-18 Toppan Printing Co Ltd 対称暗号鍵の配送システムおよび通信端末
JPH08320847A (ja) * 1995-05-26 1996-12-03 Hitachi Ltd パスワード管理システム
US5862325A (en) * 1996-02-29 1999-01-19 Intermind Corporation Computer-based communication system and method using metadata defining a control structure
US5915226A (en) * 1996-04-19 1999-06-22 Gemplus Card International Prepaid smart card in a GSM based wireless telephone network and method for operating prepaid cards
US6175922B1 (en) * 1996-12-04 2001-01-16 Esign, Inc. Electronic transaction systems and methods therefor
US5901352A (en) * 1997-02-20 1999-05-04 St-Pierre; Sylvain System for controlling multiple networks and associated services
US6175743B1 (en) * 1998-05-01 2001-01-16 Ericsson Inc. System and method for delivery of short message service messages to a restricted group of subscribers

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
EP0535863A2 (en) * 1991-10-02 1993-04-07 AT&T Corp. A cryptographic protocol for secure communications
EP0562890A1 (en) * 1992-03-27 1993-09-29 Orange Personal Communications Services Limited Mobile communication network with remote updating of subscriber identity modules in mobile terminals
EP0651533A2 (en) * 1993-11-02 1995-05-03 Sun Microsystems, Inc. Method and apparatus for privacy and authentication in a mobile wireless network

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
TAYLOR A: "OVER-THE-AIR SERVICE PROVISIONING", ANNUAL REVIEW OF COMMUNICATIONS, 1 January 1998 (1998-01-01), XP000793196 *

Cited By (21)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US8117291B1 (en) 1999-11-02 2012-02-14 Wireless Technology Solutions Llc Use of internet web technology to register wireless access customers
USRE45757E1 (en) 1999-11-02 2015-10-13 Nvidia Corporation Cellular wireless internet access system using spread spectrum and internet protocol
US8463231B1 (en) 1999-11-02 2013-06-11 Nvidia Corporation Use of radius in UMTS to perform accounting functions
US6782103B1 (en) 1999-12-17 2004-08-24 Fujitsu Services Limited Cryptographic key management
EP1187419A3 (en) * 2000-09-08 2003-10-15 Pioneer Corporation User authentication system and method
US6817519B2 (en) 2000-09-08 2004-11-16 Pioneer Corporation User authentication system and user authentication method
GB2371184B (en) * 2000-11-17 2005-05-18 Ipwireless Inc Use of internet web technology for wireless internet access
GB2371184A (en) * 2000-11-17 2002-07-17 Ipwireless Inc Wireless internet access
JP2012134990A (ja) * 2002-06-20 2012-07-12 Qualcomm Inc 通信システムにおけるキー発生方法及び装置
JP4897215B2 (ja) * 2002-06-20 2012-03-14 クゥアルコム・インコーポレイテッド 通信システムにおけるキー発生方法及び装置
JP2005530277A (ja) * 2002-06-20 2005-10-06 クゥアルコム・インコーポレイテッド 通信システムにおけるキー発生方法及び装置
US8630414B2 (en) 2002-06-20 2014-01-14 Qualcomm Incorporated Inter-working function for a communication system
WO2004112385A1 (en) 2003-06-13 2004-12-23 Television And Wireless Applications Europe Ab Adapter arrangement, method, system and user terminal for conditional access
US8094821B2 (en) 2004-08-06 2012-01-10 Qualcomm Incorporated Key generation in a communication system
US8005215B2 (en) 2005-04-20 2011-08-23 Nds Limited Table shuffle cipher system
US7730526B2 (en) 2005-06-01 2010-06-01 Canon Information Systems Research Australia Pty Ltd. Management of physical security credentials at a multi-function device
EP1729499A3 (en) * 2005-06-01 2007-11-14 Canon Information Systems Research Australia Pty Ltd. Management of physical security credentials at a multifunction device
WO2008014958A1 (en) 2006-08-01 2008-02-07 Nec Europe Ltd. Method for establishing a secret key between two nodes in a communication network
US8340301B2 (en) 2006-08-01 2012-12-25 Nec Europe, Ltd. Method for establishing a secret key between two nodes in a communication network
WO2008157126A2 (en) 2007-06-15 2008-12-24 Intel Corporation Field programing of a mobile station with subscriber identification and related information
EP2158722A4 (en) * 2007-06-15 2014-10-08 Intel Corp PROGRAMMING A MOBILE STATION AT THE SITE WITH PARTICIPANT IDENTIFICATION AND RELATED INFORMATION

Also Published As

Publication number Publication date
JP4689830B2 (ja) 2011-05-25
DE69930318T2 (de) 2006-12-07
EP1123603A1 (en) 2001-08-16
US6260147B1 (en) 2001-07-10
KR100655665B1 (ko) 2006-12-08
US6178506B1 (en) 2001-01-23
AU1213300A (en) 2000-05-15
CN100525180C (zh) 2009-08-05
EP1123603B1 (en) 2006-03-08
KR20010090797A (ko) 2001-10-19
CN1331874A (zh) 2002-01-16
HK1040854A1 (zh) 2002-06-21
JP2002529013A (ja) 2002-09-03
DE69930318D1 (de) 2006-05-04

Similar Documents

Publication Publication Date Title
EP1123603B1 (en) Subscription portability for wireless systems
KR0181566B1 (ko) 통신 시스템의 효율적인 실시간 사용자 확인 및 암호화 방법 및 그 장치
US8332644B2 (en) Cryptographic techniques for a communications network
US6075860A (en) Apparatus and method for authentication and encryption of a remote terminal over a wireless link
US5915021A (en) Method for secure communications in a telecommunications system
JP4634612B2 (ja) 改良された加入者認証プロトコル
EP1787486B1 (en) Bootstrapping authentication using distinguished random challenges
EP1001570A2 (en) Efficient authentication with key update
EP1025675A2 (en) Security of data connections
EP1401141A2 (en) Method for establishing a key using over-the-air communication
JP2003005641A (ja) 無線lanシステムにおける認証方法と認証装置
KR100920409B1 (ko) 만료 마커를 이용한 무선 통신의 인증
TW200537959A (en) Method and apparatus for authentication in wireless communications
CN117240486A (zh) 一种认证方法和通信装置
US7200750B1 (en) Method for distributing encryption keys for an overlay data network
KR100330418B1 (ko) 이동통신 환경에서의 가입자 인증 방법
EP1517475A1 (en) Smart card based encryption in Wi-Fi communication
WO2001037477A1 (en) Cryptographic techniques for a communications network
EP3836589A1 (en) Method for authenticating a secure element at the level of an authentication server, corresponding secure element and authentication server
Patel Over the air service provisioning
MXPA06004980A (en) Method and apparatus for authentication in wireless communications

Legal Events

Date Code Title Description
WWE Wipo information: entry into national phase

Ref document number: 99815025.8

Country of ref document: CN

ENP Entry into the national phase

Ref document number: 2000 12133

Country of ref document: AU

Kind code of ref document: A

AK Designated states

Kind code of ref document: A1

Designated state(s): AE AL AM AT AU AZ BA BB BG BR BY CA CH CN CR CU CZ DE DK DM EE ES FI GB GD GE GH GM HR HU ID IL IN IS JP KE KG KP KR KZ LC LK LR LS LT LU LV MA MD MG MK MN MW MX NO NZ PL PT RO RU SD SE SG SI SK SL TJ TM TR TT TZ UA UG UZ VN YU ZA ZW

AL Designated countries for regional patents

Kind code of ref document: A1

Designated state(s): GH GM KE LS MW SD SL SZ TZ UG ZW AM AZ BY KG KZ MD RU TJ TM AT BE CH CY DE DK ES FI FR GB GR IE IT LU MC NL PT SE BF BJ CF CG CI CM GA GN GW ML MR NE SN TD TG

121 Ep: the epo has been informed by wipo that ep was designated in this application
DFPE Request for preliminary examination filed prior to expiration of 19th month from priority date (pct application filed before 20040101)
WWE Wipo information: entry into national phase

Ref document number: 1020017004952

Country of ref document: KR

ENP Entry into the national phase

Ref document number: 2000 578954

Country of ref document: JP

Kind code of ref document: A

WWE Wipo information: entry into national phase

Ref document number: 1999971175

Country of ref document: EP

WWP Wipo information: published in national office

Ref document number: 1999971175

Country of ref document: EP

REG Reference to national code

Ref country code: DE

Ref legal event code: 8642

WWG Wipo information: grant in national office

Ref document number: 1999971175

Country of ref document: EP