CONTEXT LIMITED SHARED SECRET
    51.
    发明专利

    公开(公告)号:CA2597763A1

    公开(公告)日:2006-08-17

    申请号:CA2597763

    申请日:2006-02-10

    Applicant: QUALCOMM INC

    Abstract: In a communication system in which two communication entities seek to have a private or confidential communication session, a trust relationship needs first be established. The trust relationship is based on the determination of a shared secret which in turn is generated from contextual information. The contextual information can be derived from the circumstances surrounding the communication session. For example, the contextual information can include topological information, time-based information, and transactional information. The shared secret may be self-generated or received from a third party. In either event, the shared secret may be used as key material for any cryptographic protocol used between the communication entities.

    METODO Y APARATO PARA PROPORCIONAR INTERROGACIONES AUTENTICADAS PARA COMUNICACIONES DE EMISION-MULTIEMISION EN UN SISTEMA DE COMUNICACIONES.

    公开(公告)号:MXPA06002401A

    公开(公告)日:2006-06-20

    申请号:MXPA06002401

    申请日:2004-09-02

    Applicant: QUALCOMM INC

    Inventor: SEMPLE JAMES

    Abstract: Se describen un metodo y aparato para la generacion segura de una clave de corto plazo (SK) para visualizar el contenido de informacion en un sistema de Multiemision-emision-multimedios. Una clave de corto plazo es generada por un modulo de memoria que reside en el equipo de usuario (UE) solamente cuando puede validarse la fuente de la informacion utilizada para generar la clave de corto plazo. Puede generarse una clave de corto plazo por una Clave de Acceso de Emision (BAK) o un derivado de una BAK y un valor cambiante con un Codigo de Autenticacion de Mensajes (MAC) anexo al valor cambiante. Tambien puede generarse una clave de corto plazo (SK) utilizando una clave privada y un administrador de claves de corto plazo (SK) con una clave publica correspondiente distribuida en el modulo de memoria que reside en el equipo de usuario (UE), utilizando una firma digital.

    SECURE REGISTRATION FOR A MULTICAST-BROADCAST-MULTIMEDIA SYSTEM (MBMS)

    公开(公告)号:CA2531215A1

    公开(公告)日:2005-01-27

    申请号:CA2531215

    申请日:2004-07-01

    Applicant: QUALCOMM INC

    Abstract: A method and an apparatus for secure registration for a multicast-broadcast- multimedia system (MBMS) are disclosed. A random number is generated by a broadcast-multicast-service center (BM-SC) and broadcast to user equipment i n the coverage area of a radio access network (RAN). A memory module or smart card (UICC) in the user equipment generates a radio access network key (RAK) which is a function of the random number and a key selected from the group consisting of a public land mobile network key (PK) and a broadcast access k ey (BAK), and then generates a temporary registration key (RGK) as a function o f the RAK, a service identification number and a user identification number, f or example, P-TMSI, which may be extracted by the RAN to authenticate the registration as legitimate.

    METHOD, APPARATUS AND SYSTEM FOR MUTUAL AUTHENTICATION WITH MODIFIED MESSAGE AUTHENTICATION CODE
    55.
    发明申请
    METHOD, APPARATUS AND SYSTEM FOR MUTUAL AUTHENTICATION WITH MODIFIED MESSAGE AUTHENTICATION CODE 审中-公开
    使用修改后的信息验证码进行互相认证的方法,装置和系统

    公开(公告)号:WO2006029384A3

    公开(公告)日:2006-04-27

    申请号:PCT/US2005032349

    申请日:2005-09-08

    CPC classification number: H04W12/06 H04L63/0869 H04L63/123 H04W12/10

    Abstract: Methods and devices for instructing a subscriber identity module in a cellular communications network to process non-standard authentication information in a standard manner are disclosed. One embodiment of a method comprises receiving a first message authentication code (MAC) and an authentication management field (AMF) at a subscriber identity module as part of an authentication protocol, calculating a second MAC and determining whether the second MAC is equivalent to the first MAC. If the first and second MAC are not equivalent, the SIM calculates a third MAC and determines whether the first MAC is equivalent to the third MAC, and if so, the subscriber identity module processes the AMF in a predefined or standard manner.

    Abstract translation: 公开了用于指示蜂窝通信网络中的订户身份模块以标准方式处理非标准认证信息的方法和设备。 方法的一个实施例包括在用户身份模块处接收第一消息认证码(MAC)和认证管理字段(AMF),作为认证协议的一部分,计算第二MAC并确定第二MAC是否等同于第一MAC 苹果电脑。 如果第一和第二MAC不相等,则SIM计算第三MAC并确定第一MAC是否等于第三MAC,如果是,则订户身份模块以预定义或标准方式处理AMF。

    SECURE REGISTRATION FOR A MULTICAST-BROADCAST-MULTIMEDIA SYSTEM (MBMS)
    57.
    发明申请
    SECURE REGISTRATION FOR A MULTICAST-BROADCAST-MULTIMEDIA SYSTEM (MBMS) 审中-公开
    多媒体广播多媒体系统(MBMS)的安全注册

    公开(公告)号:WO2005009001A8

    公开(公告)日:2005-03-10

    申请号:PCT/US2004021530

    申请日:2004-07-01

    Abstract: A method and an apparatus for secure registration for a multicast-broadcast-multimedia system (MBMS) are disclosed. A random number is generated by a broadcast-multicast-service center (BM-SC) and broadcast to user equipment in the coverage area of a radio access network (RAN). A memory module or smart card (UICC) in the user equipment generates a radio access network key (RAK) which is a function of the random number and a key selected from the group consisting of a public land mobile network key (PK) and a broadcast access key (BAK), and then generates a temporary registration key (RGK) as a function of the RAK, a service identification number and a user identification number, for example, P-TMSI, which may be extracted by the RAN to authenticate the registration as legitimate.

    Abstract translation: 公开了用于多播广播多媒体系统(MBMS)的安全注册的方法和设备。 随机数由广播 - 多播 - 服务中心(BM-SC)生成并广播给无线电接入网络(RAN)的覆盖区域中的用户设备。 用户设备中的存储器模块或智能卡(UICC)生成作为随机数和从由公共陆地移动网络密钥(PK)和公共陆地移动网络密钥(PK)组成的组中选择的密钥的函数的无线电接入网络密钥 广播接入密钥(BAK),然后根据RAK,服务标识号码和用户标识号码(例如P-TMSI)生成临时注册密钥(RGK),其可由RAN提取以进行认证 注册为合法。

    PRIVACY PROTECTION IN COMMUNICATION SYSTEMS
    60.
    发明申请
    PRIVACY PROTECTION IN COMMUNICATION SYSTEMS 审中-公开
    通信系统中的隐私保护

    公开(公告)号:WO2007084863A3

    公开(公告)日:2007-09-20

    申请号:PCT/US2007060519

    申请日:2007-01-12

    Abstract: Methods and apparatus for protecting user privacy in a shared key system (100). According to one aspect, a user (114) generates a derived identity (108) based on a key (102) and a session variable, and sends the derived identity to an application (116). In one embondiment, a key server (126) may be used to receive the derived identity from the application, and return a sub-key (138) to the application to use for encrypting communications with the user.

    Abstract translation: 用于在共享密钥系统(100)中保护用户隐私的方法和装置。 根据一个方面,用户(114)基于密钥(102)和会话变量生成导出的身份(108),并将所导出的身份发送到应用(116)。 在一个装置中,密钥服务器(126)可以用于从应用程序接收导出的身份,并将子密钥(138)返回到应用程序以用于加密与用户的通信。

Patent Agency Ranking