Security key derivation for handover

    公开(公告)号:AU2018307214A1

    公开(公告)日:2020-01-16

    申请号:AU2018307214

    申请日:2018-07-16

    Applicant: QUALCOMM INC

    Abstract: Methods, systems, and devices for wireless communication are described that support security key derivation for handover. A network entity (e.g., an access and mobility function (AMF)) may establish an access stratum (AS) key to ensure secure communications between a user equipment (UE) and a base station. If the UE relocates to a new network entity (e.g., target network entity), the initial network entity (e.g., source network entity) may perform a handover procedure to the target network entity. In some aspects, the network entities may derive a unified AS key for the handover procedure. Additionally, the network entities may utilize one or more intermediate keys (e.g., refreshed intermediate keys) derived from, in part, respective freshness parameters for the handover procedure. The target network entity may then utilize the derived intermediate keys to derive the AS key for the handover procedure and establish communications with the UE.

    Access stratum security for efficient packet processing

    公开(公告)号:AU2017332769A1

    公开(公告)日:2019-02-28

    申请号:AU2017332769

    申请日:2017-09-22

    Applicant: QUALCOMM INC

    Abstract: Certain aspects of the present disclosure provide techniques for managing security keys for enciphering and deciphering packets transmitted in a wireless communications system. According to certain aspects, a method of wireless communication by a user equipment (UE) is provided. The method generally includes obtaining an indication of a key area identifier (ID) of a first cell node, wherein the key area ID identifies a set of cell nodes that are associated with a network node that uses a first key for enciphering or deciphering messages and communicating a first set of messages with the first cell node using the first key for enciphering or deciphering the first set of messages.

    Techniques for deriving security keys for a cellular network based on performance of an extensible authentication protocol (EAP) procedure

    公开(公告)号:AU2017328040A1

    公开(公告)日:2019-02-21

    申请号:AU2017328040

    申请日:2017-08-17

    Applicant: QUALCOMM INC

    Abstract: Techniques are described for wireless communication. A method for wireless communication at a user equipment (UE) includes performing an extensible authentication protocol (EAP) procedure with an authentication server via an authenticator. The EAP procedure is based at least in part on a set of authentication credentials exchanged between the UE and the authentication server. The method also includes deriving, as part of performing the EAP procedure, a master session key (MSK) and an extended master session key (EMSK) that are based at least in part on the authentication credentials and a first set of parameters; determining a network type associated with the authenticator; and performing, based at least in part on the determined network type, at least one authentication procedure with the authenticator. The at least one authentication procedure is based on an association of the MSK or the EMSK with the determined network type.

    MÉTODOS Y APARATOS PARA PROVISIÓN DE CREDENCIALES EN DESPLIEGUE DE REDES

    公开(公告)号:GT201600121A

    公开(公告)日:2018-11-27

    申请号:GT201600121

    申请日:2016-06-16

    Applicant: QUALCOMM INC

    Abstract: LA PRESENTE INVENCIÓN DESCRIBE UN MÉTODO, UN APARATO Y UN PRODUCTO DE PROGRAMA DE COMPUTADORA PARA LA COMUNICACIÓN INALÁMBRICA DONDE SE PROPORCIONA PROVISIÓN DE CREDENCIALES PARA EL DESPLIEGUE DE REDES. COMO TAL, EL MÉTODO, APARATO Y PRODUCTO DE PROGRAMA DE COMPUTADORA PUEDE PROVEER A UN EQUIPO DE USUARIO (UE) A PESAR DE QUE EL UE NO TIENE NINGUNA CREDENCIAL DE SEGURIDAD VÁLIDA, A FIN DE PROPORCIONAR ACCESO A UNA RED (POR EJEMPLO, UNA RED QUE UTILIZA UNA BANCA DE FRECUENCIA BASADA EN CONTENCIÓN, TAL COMO RED AVANZADA DE EVOLUCIÓN A LARGO PLAZO (LTE) EN LA BANDA DE FRECUENCIA DE RADIO BASA EN CONTENCIÓN). EN CONSECUENCIA, EN ALGUNOS ASPECTOS, EL MÉTODO, APARATO Y PRODUCTO DE PROGRAMA DE COMPUTADORA DE LA PRESENTE PUEDEN PERMITIR AL UE REALIZAR UN PROCEDIMIENTO DE PROVISIÓN CON UNA O MÁS ENTIDADES DE RED PARA OBTENER UNO O MÁS PARÁMETROS DE CREDENCIALES DE SEGURIDAD.

    METHOD AND APPARATUS FOR REESTABLISHING RADIO COMMUNICATION LINKS DUE TO RADIO LINK FAILURE

    公开(公告)号:CA3038129A1

    公开(公告)日:2018-05-11

    申请号:CA3038129

    申请日:2017-10-30

    Applicant: QUALCOMM INC

    Abstract: One feature pertains to a method that includes establishing a radio communication connection with a first radio access node (RAN) that uses control plane signaling connections to carry user plane data. The method also includes determining that the wireless communication device is experiencing radio link failure (RLF) with the first RAN and that the radio communication connection should be reestablished with a second RAN. A reestablishment request message is transmitted to the second RAN that includes parameters that enable a core network node communicatively coupled to the second RAN to authenticate the wireless communication device and allow or reject reestablishment of the radio communication connection. The parameters include at least a message authentication code (MAC) based in part on one or more bits of a non-access stratum (NAS) COUNT value maintained at the wireless communication device.

    Authentication and key agreement with perfect forward secrecy

    公开(公告)号:AU2016243284A1

    公开(公告)日:2017-09-07

    申请号:AU2016243284

    申请日:2016-03-03

    Applicant: QUALCOMM INC

    Abstract: Systems and methods for providing authentication key agreement (AKA) with perfect forward secrecy (PFS) are disclosed. In one embodiment, a network according to the disclosure may receive an attach request from a UE, provide an authentication request including a network support indicator to a network resource, receive an authentication token from the network resource, such that the authentication token includes an indication that a network supports PFS, provide the authentication token to the UE, receive an authentication response including a UE public key value, obtain a network public key value and a network private key value, determine a shared key value based on the network private key value and the UE public key value, bind the shared key value with a session key value to create a bound shared key value, and use the bound shared key value to protect subsequent network traffic.

    MÉTODOS Y APARATO PARA LA RE-AUTENTICACIÓN A DEMANDA DE UNA RED DE SEVICIO POR UN EQUIPO DE USUARIO (UE)

    公开(公告)号:CU20170034A7

    公开(公告)日:2017-07-04

    申请号:CU20170034

    申请日:2015-08-27

    Applicant: QUALCOMM INC

    Abstract: Se proporcionan un método, un aparato, y un producto de programa de computadora para Ia comunicación inalámbrica. Un método incluye transmitir una solicitud a una red de servicio con un valor nonce y una solicitud de firma dirigida a una función de red de Ia red de servicio, recibir una respuesta a Ia solicitud de Ia red de servicio, y autenticar Ia red de servicio sabre Ia base de Ia firma de Ia función de red. El valor nonce puede proporcionar una protección de reproducción. La respuesta puede incluir una firma de Ia función de red. La solicitud enviada a Ia red de servicio puede incluir un mensaje de control de recursos de radio (RRC) o una solicitud de actualización del área de seguimiento (TAU). La red de servicio se puede autenticar usando a terceros de confianza para verificar un certificado asociado con Ia red de servicio.

    UE-based network subscription management

    公开(公告)号:AU2015290087A1

    公开(公告)日:2017-01-05

    申请号:AU2015290087

    申请日:2015-07-06

    Applicant: QUALCOMM INC

    Abstract: Methods, systems, and devices for wireless communication are described. A user equipment (UE) may obtain identification information for a device and may assist in establishing credentials by which the device accesses a wireless network. The UE may establish a connection with the wireless network using its own credentials, and register the device to access the wireless network by associating the identification information for the device with the credentials of the UE. The UE may receive or establish credentials by which the device accesses the wireless network and may communicate these credentials to the device over a local connection. In some cases, the UE may authenticate the device's identification information to determine whether the device is allowed to be registered with the wireless network.

Patent Agency Ranking