WO2013185735A3 - 一种加密实现方法及系统 - Google Patents

一种加密实现方法及系统 Download PDF

Info

Publication number
WO2013185735A3
WO2013185735A3 PCT/CN2013/081541 CN2013081541W WO2013185735A3 WO 2013185735 A3 WO2013185735 A3 WO 2013185735A3 CN 2013081541 W CN2013081541 W CN 2013081541W WO 2013185735 A3 WO2013185735 A3 WO 2013185735A3
Authority
WO
WIPO (PCT)
Prior art keywords
authentication
trunking
key
encryption
network
Prior art date
Application number
PCT/CN2013/081541
Other languages
English (en)
French (fr)
Other versions
WO2013185735A2 (zh
Inventor
林艳
Original Assignee
中兴通讯股份有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 中兴通讯股份有限公司 filed Critical 中兴通讯股份有限公司
Priority to US14/429,833 priority Critical patent/US9667413B2/en
Publication of WO2013185735A2 publication Critical patent/WO2013185735A2/zh
Publication of WO2013185735A3 publication Critical patent/WO2013185735A3/zh

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/08Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
    • H04L9/0816Key establishment, i.e. cryptographic processes or cryptographic protocols whereby a shared secret becomes available to two or more parties, for subsequent use
    • H04L9/0819Key transport or distribution, i.e. key establishment techniques where one party creates or otherwise obtains a secret value, and securely transfers it to the other(s)
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/12Transmitting and receiving encryption devices synchronised or initially set up in a particular manner
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/14Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols using a plurality of keys or algorithms
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/32Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
    • H04L9/3234Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving additional secure or trusted devices, e.g. TPM, smartcard, USB or software token
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/03Protecting confidentiality, e.g. by encryption
    • H04W12/033Protecting confidentiality, e.g. by encryption of the user plane, e.g. user's traffic
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/04Key management, e.g. using generic bootstrapping architecture [GBA]
    • H04W12/041Key generation or derivation
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/04Key management, e.g. using generic bootstrapping architecture [GBA]
    • H04W12/043Key management, e.g. using generic bootstrapping architecture [GBA] using a trusted network node as an anchor
    • H04W12/0431Key distribution or pre-distribution; Key agreement
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/06Authentication
    • H04W12/069Authentication using certificates or pre-shared keys
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W4/00Services specially adapted for wireless communication networks; Facilities therefor
    • H04W4/06Selective distribution of broadcast services, e.g. multimedia broadcast multicast service [MBMS]; Services to user groups; One-way selective calling services
    • H04W4/10Push-to-Talk [PTT] or Push-On-Call services
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L2209/00Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
    • H04L2209/24Key scheduling, i.e. generating round keys or sub-keys for block encryption
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L2209/00Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
    • H04L2209/80Wireless
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W84/00Network topologies
    • H04W84/02Hierarchically pre-organised networks, e.g. paging networks, cellular networks, WLAN [Wireless Local Area Network] or WLL [Wireless Local Loop]
    • H04W84/04Large scale networks; Deep hierarchical networks
    • H04W84/08Trunked mobile radio systems

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Multimedia (AREA)
  • Mobile Radio Communication Systems (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)
  • Small-Scale Networks (AREA)
  • Telephonic Communication Services (AREA)

Abstract

一种加密实现方法及系统。所述方法包括:网络侧设备以及组呼终端分别维护一相同的集群鉴权密钥K值列表;每次组呼过程中,网络侧设备根据生成的随机数(RAND)、鉴权序列号(SQN)、从所述集群鉴权密钥K值列表中选取的集群鉴权密钥K值以及公网鉴权函数计算得到鉴权向量(AV);以及组呼终端依据从所述网络侧设备获取的RAND和AV中的鉴权令牌(AUTN)执行鉴权以生成加密密钥(CK)。采用本发明实施例的方法及系统,可以实现基于公网安全机制的集群系统加密,解决了相关技术中集群系统加密依赖算法强度不高的私有加密算法、通过空口传递密钥、以及密钥替换不及时等弊端,从而大大提高了集群系统的安全性。
PCT/CN2013/081541 2012-09-20 2013-08-15 一种加密实现方法及系统 WO2013185735A2 (zh)

Priority Applications (1)

Application Number Priority Date Filing Date Title
US14/429,833 US9667413B2 (en) 2012-09-20 2013-08-15 Encryption realization method and system

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN201210351671.3A CN103179558B (zh) 2012-09-20 2012-09-20 集群系统组呼加密实现方法及系统
CN201210351671.3 2012-09-20

Publications (2)

Publication Number Publication Date
WO2013185735A2 WO2013185735A2 (zh) 2013-12-19
WO2013185735A3 true WO2013185735A3 (zh) 2014-02-13

Family

ID=48639120

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2013/081541 WO2013185735A2 (zh) 2012-09-20 2013-08-15 一种加密实现方法及系统

Country Status (3)

Country Link
US (1) US9667413B2 (zh)
CN (1) CN103179558B (zh)
WO (1) WO2013185735A2 (zh)

Families Citing this family (20)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103179558B (zh) * 2012-09-20 2016-06-22 中兴通讯股份有限公司 集群系统组呼加密实现方法及系统
CN104735626A (zh) * 2013-12-20 2015-06-24 中兴通讯股份有限公司 集群通信公共安全的实现方法及装置
EP2922326B1 (en) * 2014-03-21 2018-12-19 Sun Patent Trust Security key derivation in dual connectivity
CN105050054A (zh) * 2014-04-14 2015-11-11 财团法人资讯工业策进会 长期演进网络系统及其群组通讯方法
CN105451195B (zh) * 2014-07-25 2018-11-30 成都鼎桥通信技术有限公司 端到端集群密钥分发方法和核心网设备
CN104853388B (zh) * 2015-04-02 2019-02-12 四川大学 一种集群通信系统中群组数据包序列号的生成方法和基站
CN104768136A (zh) * 2015-04-21 2015-07-08 四川西结微波科技发展有限责任公司 集群业务迟后接入rlc的sn处理方法
US9992810B2 (en) * 2015-08-26 2018-06-05 Samsung Electronics Co., Ltd Method for providing integrity protection in a dual SIM dual standby device
CN110536254B (zh) * 2016-01-25 2022-02-22 展讯通信(上海)有限公司 小区切换方法及装置、存储介质、基站
CN107135543B (zh) * 2016-02-29 2022-12-02 中兴通讯股份有限公司 无线资源管理rrm的控制方法及装置
CN107529159B (zh) * 2016-06-22 2020-10-02 南京中兴软件有限责任公司 宽带集群下行共享信道的接入层加密、解密、完整性保护方法和装置、安全实现方法
EP3471365A4 (en) * 2016-07-15 2019-06-19 Huawei Technologies Co., Ltd. METHOD AND APPARATUS FOR ACQUIRING KEY
WO2018129652A1 (zh) * 2017-01-10 2018-07-19 海能达通信股份有限公司 集群组呼解密方法及用户设备
CN108156604B (zh) * 2017-12-01 2021-09-28 海能达通信股份有限公司 集群系统的组呼加密传输方法及装置、集群终端和系统
EP3700158A1 (en) * 2019-02-19 2020-08-26 Stichting IMEC Nederland Secure ranging
CN112585549B (zh) * 2020-02-29 2022-05-31 华为技术有限公司 一种故障诊断方法、装置及车辆
CN113411758B (zh) * 2020-03-16 2022-08-09 成都鼎桥通信技术有限公司 一种确定专网集群终端的组呼按键事件的方法和装置
CN116114367A (zh) * 2020-09-04 2023-05-12 联想(新加坡)私人有限公司 从装置群组接收所收集的数据
CN112787820B (zh) * 2021-01-02 2022-02-11 浙江大学 一种适用于硬件实现的轻量级认证加密解密实现方法
CN112910654B (zh) * 2021-01-19 2023-04-28 深圳市星际大陆科技有限公司 一种私钥管理方法、系统、设备及存储介质

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101132649A (zh) * 2007-09-29 2008-02-27 大唐微电子技术有限公司 一种网络接入鉴权方法及其usim卡
CN101511084A (zh) * 2008-02-15 2009-08-19 中国移动通信集团公司 一种移动通信系统的鉴权和密钥协商方法
CN103179558A (zh) * 2012-09-20 2013-06-26 中兴通讯股份有限公司 集群系统组呼加密实现方法及系统

Family Cites Families (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101030854B (zh) * 2006-03-02 2010-05-12 华为技术有限公司 多媒体子系统中网络实体的互认证方法及装置

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101132649A (zh) * 2007-09-29 2008-02-27 大唐微电子技术有限公司 一种网络接入鉴权方法及其usim卡
CN101511084A (zh) * 2008-02-15 2009-08-19 中国移动通信集团公司 一种移动通信系统的鉴权和密钥协商方法
CN103179558A (zh) * 2012-09-20 2013-06-26 中兴通讯股份有限公司 集群系统组呼加密实现方法及系统

Also Published As

Publication number Publication date
US20150256335A1 (en) 2015-09-10
CN103179558B (zh) 2016-06-22
US9667413B2 (en) 2017-05-30
WO2013185735A2 (zh) 2013-12-19
CN103179558A (zh) 2013-06-26

Similar Documents

Publication Publication Date Title
WO2013185735A3 (zh) 一种加密实现方法及系统
CN102395130B (zh) 一种lte中鉴权的方法
MX346828B (es) Sistema de comunicacion inalambrico.
WO2015023341A3 (en) Secure authorization systems and methods
JP2011254512A5 (zh)
PE20170656A1 (es) Autenticacion de la red de servicio
WO2015023332A3 (en) Incorruptible public key using quantum cryptography for secure wired and wireless communications
WO2014138430A3 (en) Secure simple enrollment
JP2018505620A5 (ja) 通信システム及び認証方法
PE20170739A1 (es) Autenticacion de la red de servicio a demanda
CN104754581A (zh) 一种基于公钥密码体制的lte无线网络的安全认证方法
EP4247034A3 (en) Method and system for providing security from a radio access network
WO2016144257A3 (en) Method and system for facilitating authentication
GB2524198A (en) Method and device for secure network access
CN106031120B (zh) 密钥管理
WO2012141555A3 (en) Method and apparatus for providing machine-to-machine service
CN108141355A (zh) 使用Diffie-Hellman过程生成会话密钥的方法和系统
AR082019A1 (es) Metodo y aparato para la administracion y autorizacion de un nodo repetidor
WO2016114830A3 (en) Methods and systems for authentication interoperability
JP2016515369A5 (zh)
WO2010115913A3 (en) Authenticating a node in a communication network
CN104010305A (zh) 基于物理层密钥的终端和接入网的双向认证增强方法
GB2512249A (en) Secure peer discovery and authentication using a shared secret
CN103002442A (zh) 无线局域网密钥安全分发方法
EP3000216B1 (en) Secured data channel authentication implying a shared secret

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 13804488

Country of ref document: EP

Kind code of ref document: A2

WWE Wipo information: entry into national phase

Ref document number: 14429833

Country of ref document: US

122 Ep: pct application non-entry in european phase

Ref document number: 13804488

Country of ref document: EP

Kind code of ref document: A2