WO2013185735A3 - 一种加密实现方法及系统 - Google Patents
一种加密实现方法及系统 Download PDFInfo
- Publication number
- WO2013185735A3 WO2013185735A3 PCT/CN2013/081541 CN2013081541W WO2013185735A3 WO 2013185735 A3 WO2013185735 A3 WO 2013185735A3 CN 2013081541 W CN2013081541 W CN 2013081541W WO 2013185735 A3 WO2013185735 A3 WO 2013185735A3
- Authority
- WO
- WIPO (PCT)
- Prior art keywords
- authentication
- trunking
- key
- encryption
- network
- Prior art date
Links
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/08—Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
- H04L9/0816—Key establishment, i.e. cryptographic processes or cryptographic protocols whereby a shared secret becomes available to two or more parties, for subsequent use
- H04L9/0819—Key transport or distribution, i.e. key establishment techniques where one party creates or otherwise obtains a secret value, and securely transfers it to the other(s)
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/12—Transmitting and receiving encryption devices synchronised or initially set up in a particular manner
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/14—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols using a plurality of keys or algorithms
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3234—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving additional secure or trusted devices, e.g. TPM, smartcard, USB or software token
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/03—Protecting confidentiality, e.g. by encryption
- H04W12/033—Protecting confidentiality, e.g. by encryption of the user plane, e.g. user's traffic
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/04—Key management, e.g. using generic bootstrapping architecture [GBA]
- H04W12/041—Key generation or derivation
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/04—Key management, e.g. using generic bootstrapping architecture [GBA]
- H04W12/043—Key management, e.g. using generic bootstrapping architecture [GBA] using a trusted network node as an anchor
- H04W12/0431—Key distribution or pre-distribution; Key agreement
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/06—Authentication
- H04W12/069—Authentication using certificates or pre-shared keys
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W4/00—Services specially adapted for wireless communication networks; Facilities therefor
- H04W4/06—Selective distribution of broadcast services, e.g. multimedia broadcast multicast service [MBMS]; Services to user groups; One-way selective calling services
- H04W4/10—Push-to-Talk [PTT] or Push-On-Call services
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L2209/00—Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
- H04L2209/24—Key scheduling, i.e. generating round keys or sub-keys for block encryption
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L2209/00—Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
- H04L2209/80—Wireless
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W84/00—Network topologies
- H04W84/02—Hierarchically pre-organised networks, e.g. paging networks, cellular networks, WLAN [Wireless Local Area Network] or WLL [Wireless Local Loop]
- H04W84/04—Large scale networks; Deep hierarchical networks
- H04W84/08—Trunked mobile radio systems
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Multimedia (AREA)
- Mobile Radio Communication Systems (AREA)
- Data Exchanges In Wide-Area Networks (AREA)
- Small-Scale Networks (AREA)
- Telephonic Communication Services (AREA)
Abstract
一种加密实现方法及系统。所述方法包括:网络侧设备以及组呼终端分别维护一相同的集群鉴权密钥K值列表;每次组呼过程中,网络侧设备根据生成的随机数(RAND)、鉴权序列号(SQN)、从所述集群鉴权密钥K值列表中选取的集群鉴权密钥K值以及公网鉴权函数计算得到鉴权向量(AV);以及组呼终端依据从所述网络侧设备获取的RAND和AV中的鉴权令牌(AUTN)执行鉴权以生成加密密钥(CK)。采用本发明实施例的方法及系统,可以实现基于公网安全机制的集群系统加密,解决了相关技术中集群系统加密依赖算法强度不高的私有加密算法、通过空口传递密钥、以及密钥替换不及时等弊端,从而大大提高了集群系统的安全性。
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
US14/429,833 US9667413B2 (en) | 2012-09-20 | 2013-08-15 | Encryption realization method and system |
Applications Claiming Priority (2)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201210351671.3A CN103179558B (zh) | 2012-09-20 | 2012-09-20 | 集群系统组呼加密实现方法及系统 |
CN201210351671.3 | 2012-09-20 |
Publications (2)
Publication Number | Publication Date |
---|---|
WO2013185735A2 WO2013185735A2 (zh) | 2013-12-19 |
WO2013185735A3 true WO2013185735A3 (zh) | 2014-02-13 |
Family
ID=48639120
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
PCT/CN2013/081541 WO2013185735A2 (zh) | 2012-09-20 | 2013-08-15 | 一种加密实现方法及系统 |
Country Status (3)
Country | Link |
---|---|
US (1) | US9667413B2 (zh) |
CN (1) | CN103179558B (zh) |
WO (1) | WO2013185735A2 (zh) |
Families Citing this family (20)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN103179558B (zh) * | 2012-09-20 | 2016-06-22 | 中兴通讯股份有限公司 | 集群系统组呼加密实现方法及系统 |
CN104735626A (zh) * | 2013-12-20 | 2015-06-24 | 中兴通讯股份有限公司 | 集群通信公共安全的实现方法及装置 |
EP2922326B1 (en) * | 2014-03-21 | 2018-12-19 | Sun Patent Trust | Security key derivation in dual connectivity |
CN105050054A (zh) * | 2014-04-14 | 2015-11-11 | 财团法人资讯工业策进会 | 长期演进网络系统及其群组通讯方法 |
CN105451195B (zh) * | 2014-07-25 | 2018-11-30 | 成都鼎桥通信技术有限公司 | 端到端集群密钥分发方法和核心网设备 |
CN104853388B (zh) * | 2015-04-02 | 2019-02-12 | 四川大学 | 一种集群通信系统中群组数据包序列号的生成方法和基站 |
CN104768136A (zh) * | 2015-04-21 | 2015-07-08 | 四川西结微波科技发展有限责任公司 | 集群业务迟后接入rlc的sn处理方法 |
US9992810B2 (en) * | 2015-08-26 | 2018-06-05 | Samsung Electronics Co., Ltd | Method for providing integrity protection in a dual SIM dual standby device |
CN110536254B (zh) * | 2016-01-25 | 2022-02-22 | 展讯通信(上海)有限公司 | 小区切换方法及装置、存储介质、基站 |
CN107135543B (zh) * | 2016-02-29 | 2022-12-02 | 中兴通讯股份有限公司 | 无线资源管理rrm的控制方法及装置 |
CN107529159B (zh) * | 2016-06-22 | 2020-10-02 | 南京中兴软件有限责任公司 | 宽带集群下行共享信道的接入层加密、解密、完整性保护方法和装置、安全实现方法 |
EP3471365A4 (en) * | 2016-07-15 | 2019-06-19 | Huawei Technologies Co., Ltd. | METHOD AND APPARATUS FOR ACQUIRING KEY |
WO2018129652A1 (zh) * | 2017-01-10 | 2018-07-19 | 海能达通信股份有限公司 | 集群组呼解密方法及用户设备 |
CN108156604B (zh) * | 2017-12-01 | 2021-09-28 | 海能达通信股份有限公司 | 集群系统的组呼加密传输方法及装置、集群终端和系统 |
EP3700158A1 (en) * | 2019-02-19 | 2020-08-26 | Stichting IMEC Nederland | Secure ranging |
CN112585549B (zh) * | 2020-02-29 | 2022-05-31 | 华为技术有限公司 | 一种故障诊断方法、装置及车辆 |
CN113411758B (zh) * | 2020-03-16 | 2022-08-09 | 成都鼎桥通信技术有限公司 | 一种确定专网集群终端的组呼按键事件的方法和装置 |
CN116114367A (zh) * | 2020-09-04 | 2023-05-12 | 联想(新加坡)私人有限公司 | 从装置群组接收所收集的数据 |
CN112787820B (zh) * | 2021-01-02 | 2022-02-11 | 浙江大学 | 一种适用于硬件实现的轻量级认证加密解密实现方法 |
CN112910654B (zh) * | 2021-01-19 | 2023-04-28 | 深圳市星际大陆科技有限公司 | 一种私钥管理方法、系统、设备及存储介质 |
Citations (3)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101132649A (zh) * | 2007-09-29 | 2008-02-27 | 大唐微电子技术有限公司 | 一种网络接入鉴权方法及其usim卡 |
CN101511084A (zh) * | 2008-02-15 | 2009-08-19 | 中国移动通信集团公司 | 一种移动通信系统的鉴权和密钥协商方法 |
CN103179558A (zh) * | 2012-09-20 | 2013-06-26 | 中兴通讯股份有限公司 | 集群系统组呼加密实现方法及系统 |
Family Cites Families (1)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101030854B (zh) * | 2006-03-02 | 2010-05-12 | 华为技术有限公司 | 多媒体子系统中网络实体的互认证方法及装置 |
-
2012
- 2012-09-20 CN CN201210351671.3A patent/CN103179558B/zh active Active
-
2013
- 2013-08-15 WO PCT/CN2013/081541 patent/WO2013185735A2/zh active Application Filing
- 2013-08-15 US US14/429,833 patent/US9667413B2/en active Active
Patent Citations (3)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101132649A (zh) * | 2007-09-29 | 2008-02-27 | 大唐微电子技术有限公司 | 一种网络接入鉴权方法及其usim卡 |
CN101511084A (zh) * | 2008-02-15 | 2009-08-19 | 中国移动通信集团公司 | 一种移动通信系统的鉴权和密钥协商方法 |
CN103179558A (zh) * | 2012-09-20 | 2013-06-26 | 中兴通讯股份有限公司 | 集群系统组呼加密实现方法及系统 |
Also Published As
Publication number | Publication date |
---|---|
US20150256335A1 (en) | 2015-09-10 |
CN103179558B (zh) | 2016-06-22 |
US9667413B2 (en) | 2017-05-30 |
WO2013185735A2 (zh) | 2013-12-19 |
CN103179558A (zh) | 2013-06-26 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
WO2013185735A3 (zh) | 一种加密实现方法及系统 | |
CN102395130B (zh) | 一种lte中鉴权的方法 | |
MX346828B (es) | Sistema de comunicacion inalambrico. | |
WO2015023341A3 (en) | Secure authorization systems and methods | |
JP2011254512A5 (zh) | ||
PE20170656A1 (es) | Autenticacion de la red de servicio | |
WO2015023332A3 (en) | Incorruptible public key using quantum cryptography for secure wired and wireless communications | |
WO2014138430A3 (en) | Secure simple enrollment | |
JP2018505620A5 (ja) | 通信システム及び認証方法 | |
PE20170739A1 (es) | Autenticacion de la red de servicio a demanda | |
CN104754581A (zh) | 一种基于公钥密码体制的lte无线网络的安全认证方法 | |
EP4247034A3 (en) | Method and system for providing security from a radio access network | |
WO2016144257A3 (en) | Method and system for facilitating authentication | |
GB2524198A (en) | Method and device for secure network access | |
CN106031120B (zh) | 密钥管理 | |
WO2012141555A3 (en) | Method and apparatus for providing machine-to-machine service | |
CN108141355A (zh) | 使用Diffie-Hellman过程生成会话密钥的方法和系统 | |
AR082019A1 (es) | Metodo y aparato para la administracion y autorizacion de un nodo repetidor | |
WO2016114830A3 (en) | Methods and systems for authentication interoperability | |
JP2016515369A5 (zh) | ||
WO2010115913A3 (en) | Authenticating a node in a communication network | |
CN104010305A (zh) | 基于物理层密钥的终端和接入网的双向认证增强方法 | |
GB2512249A (en) | Secure peer discovery and authentication using a shared secret | |
CN103002442A (zh) | 无线局域网密钥安全分发方法 | |
EP3000216B1 (en) | Secured data channel authentication implying a shared secret |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
121 | Ep: the epo has been informed by wipo that ep was designated in this application |
Ref document number: 13804488 Country of ref document: EP Kind code of ref document: A2 |
|
WWE | Wipo information: entry into national phase |
Ref document number: 14429833 Country of ref document: US |
|
122 | Ep: pct application non-entry in european phase |
Ref document number: 13804488 Country of ref document: EP Kind code of ref document: A2 |