Invention Grant
- Patent Title: Kerberized handover keying improvements
- Patent Title (中): Kerberized切换密钥改进
-
Application No.: US11972457Application Date: 2008-01-10
-
Publication No.: US08817990B2Publication Date: 2014-08-26
- Inventor: Yoshihiro Oba
- Applicant: Yoshihiro Oba
- Applicant Address: US DC Washington US NJ Piscataway
- Assignee: Toshiba America Research, Inc.,Telecordia Technologies, Inc.
- Current Assignee: Toshiba America Research, Inc.,Telecordia Technologies, Inc.
- Current Assignee Address: US DC Washington US NJ Piscataway
- Agency: Westerman, Hattori, Daniels & Adrian, LLP
- Main IPC: H04L9/08
- IPC: H04L9/08 ; H04L29/06 ; H04L9/32 ; G06F7/04 ; G06F15/16 ; G06F17/30 ; G06F21/33

Abstract:
A media-independent handover key management architecture is disclosed that uses Kerberos for secure key distribution among a server, an authenticator, and a mobile node. In the preferred embodiments, signaling for key distribution is based on re-keying and is decoupled from re-authentication that requires EAP (Extensible Authentication Protocol) and AAA (Authentication, Authorization and Accounting) signaling similar to initial network access authentication. In this framework, the mobile node is able to obtain master session keys required for dynamically establishing the security associations with a set of authenticators without communicating with them before handover. By separating re-key operation from re-authentication, the proposed architecture is more optimized for a proactive mode of operation. It can also be optimized for reactive mode of operation by reversing the key distribution roles between the mobile node and the target access node.
Public/Granted literature
- US20080212783A1 KERBERIZED HANDOVER KEYING IMPROVEMENTS Public/Granted day:2008-09-04
Information query