Abstract:
PURPOSE: In a communications network, an authentication method and system efficiently offer the call forwarding service by implementing the selection operation of the received target terminal followed into the location of the terminal at the receiving end and the receiving action of following into the state or the location of the terminal at the receiving end. CONSTITUTION: An access server(200) transmits the authentication information of the authentication information of the user terminal(100) and privacy information and access server and privacy information with the certificate server(300). The user terminal and access server are certified respectively since the certificate server uses the authentication information of the access server and user terminal. The authentication information of the certificate server and the security key lock in which the certificate server becomes is transmitted in the access server and user terminal. The access server and user terminal certify the certificate server through the authentication information of the certificate server. The access server and user terminal hold in common the security key lock with the certificate server.
Abstract:
A system and a method for supporting a multimedia service for no stop of a voice call based on media independent handover are provided to support an IMS(IP Multimedia Subsystem) VCC(Voice Call Continuity) service based on MIH(Media Independent Handover), thereby providing an IMS VCC service support solution. Handover is prepared by confirming each acceptable capacity of a candidate network(308). Resources for the handover are reserved by determining one target network from candidate networks(310). Domain transfer is performed by generating a handover command event(314,316).
Abstract:
A method and an apparatus for a fast re-authentication in a broadband wireless communication system are provided to reduce a roaming time between a wireless LAN and a broadband wireless communication network by performing a re-authentication using a PMKID(Pairwise Master Key IDentifier). A method for a fast re-authentication in a broadband wireless communication system includes the steps of: generating a PMK(Pairwise Master Key) necessary for the security in an initial authentication process, converting and storing the PMK into a size for a PMKID calculation(202); transmitting a message having the stored PMKID list information to a base station in a re-authentication process, and receiving a response message(214); receiving an authentication success message from the base station(216); performing an exchange of a 3way handshake authentication key with the base station(230); and performing an exchange of 2way handshake security key with the base station(240).
Abstract:
A method and apparatus for performing fast authentication for a vertical handover are provided. The method includes requesting a handover from a serving network to a target network and generating a derivative Master Session Key (MSK) for key generation, and transmitting the derivative MSK to the target network. Accordingly, a key negotiation process can start by skipping an access authentication process. Therefore, there is an advantage in that a fast authentication process can be achieved.
Abstract:
A method and an apparatus for performing a key negotiation procedure without an access authentication procedure in a vertical handover are provided to perform a fast authentication procedure without an access authentication procedure by using a derived MSK(Master Session Key). A terminal requests a handover to a serving network(502), generates a derived MSK for authentication in the handover(503), receives a handover response message from the serving network(504), performs a network entry into a target network(506), confirms a derived MSK matched with the derived MSK generated by a corresponding target authenticator(508), generates a new authentication key in existence of a matched derived MSK(510), performs a full authentication procedure in non-existence of the derived MSK(516), performs a key negotiation with the target network(512), and completes the handover(514).