-
公开(公告)号:WO2022087979A1
公开(公告)日:2022-05-05
申请号:PCT/CN2020/124922
申请日:2020-10-29
Applicant: APPLE INC.
Inventor: GUO, Shu , ZHANG, Dawei , XU, Fangli , HU, Haijing , LIANG, Huarui , VAMANAN, Sudeep Manithara , CHEN, Yuqin
IPC: H04W4/06
Abstract: MBS key distribution includes processing group information associated with an MB session context received from an AF. At least a portion of the group information comprises a TMGI. A plurality of session join requests received from a plurality of UEs are processed. Each of the plurality of session join requests include the TMGI and are associated with the MB session context. A request associated with the MB session context for transmission to an MB-SMF is encoded. A response associated with the MB session context received from the MB-SMF is processed. The response includes a key derived for each of a portion of the plurality of UEs using a UE ID and the TMGI. A DL NAS message and an N2 message are encoded for the plurality of UEs and a base station, respectively. The DL NAS message and the N2 message include the derived key.
-
公开(公告)号:WO2022087969A1
公开(公告)日:2022-05-05
申请号:PCT/CN2020/124865
申请日:2020-10-29
Applicant: APPLE INC.
Inventor: GUO, Shu , ZHANG, Dawei , XU, Fangli , HU, Haijing , LIANG, Huarui , CHEN, Yuqin
IPC: H04W12/106 , H04W36/00
Abstract: Systems and methods provide packet data convergence protocol (PDCP) user plane (UP) integrity protection (IP) for a user equipments (UE) and radio access network (RAN) nodes operating in Evolved Universal Terrestrial Radio Access -New Radio dual connectivity (EN-DC). In an attach procedure, a UE may indicate a UE security capability for support of relay node (RN) PDCP UP IP used in LTE. Based on the UE security capability, a master e Node B (MeNB) security capability, and a secondary g Node B (SgNB) security capability, the MeNB may determine whether to use UP IP between the UE and the MeNB, the UE and the SgNB, and/or in a split bearer between the MeNB and the SgNB.
-
公开(公告)号:WO2022020033A1
公开(公告)日:2022-01-27
申请号:PCT/US2021/037399
申请日:2021-06-15
Applicant: APPLE INC.
Inventor: GUO, Shu , XU, Fangli , CHEN, Yuqin , YANG, Xiangying , LIANG, Huarui , HU, Haijing , YAO, Chunhai , ZHANG, Dawei , ZHANG, Yushu , WU, Zhibin
Abstract: The present application relates to devices and components including apparatus, systems, and methods for secured user equipment communications over a user equipment relay. In some embodiments, symmetric or asymmetric encryption may be used for the secured user equipment communications.
-
公开(公告)号:WO2023065226A1
公开(公告)日:2023-04-27
申请号:PCT/CN2021/125350
申请日:2021-10-21
Applicant: APPLE INC.
Inventor: WU, Zhibin , GUO, Shu , YE, Chunxuan , HU, Haijing , SUN, Haitong , FAKOORIAN, Seyed Ali Akbar , MANITHARA VAMANAN, Sudeep , CHEN, Yuqin
IPC: H04W8/00
Abstract: The present application relates to devices and components including apparatus, systems, and methods for managing relay identifiers for sidelink relays in wireless networks.
-
公开(公告)号:WO2023010576A1
公开(公告)日:2023-02-09
申请号:PCT/CN2021/111339
申请日:2021-08-06
Applicant: APPLE INC.
Inventor: GUO, Shu , ZHANG, Dawei , HU, Haijing , SUN, Haitong , LIANG, Huarui , CHEN, Lanpeng , AGNEL, Mona , ZAUS, Robert , ZENG, Wei , YANG, Weidong , QIAO, Xiaoyu
Abstract: An edge enabler server of an edge data network is configured to receive a verification request comprising an edge enabler client identification (EEC ID), wherein the EEC ID uniquely identifies an edge enabler client (EEC), determine whether the EEC ID is an authorized EEC ID and provide a verification response based on whether the EEC ID is authorized.
-
6.
公开(公告)号:WO2020010515A1
公开(公告)日:2020-01-16
申请号:PCT/CN2018/095137
申请日:2018-07-10
Applicant: APPLE INC. , GUO, Shu
Inventor: GUO, Shu , YANG, Xiangying , ZHANG, Lijia , SUN, Qian , LIANG, Huarui , XU, Fangli , CHEN, Yuqin , HU, Haijing , ZHANG, Dawei
IPC: H04L29/06
Abstract: Techniques for identity-based message integrity protection and verification between a user equipment (UE) and a wireless network entity, include use of signatures derived from identity-based keys. To protect against attacks from rogue network entities before activation of a security context with a network entity, the UE verifies integrity of messages by checking a signature using an identity-based public key PK ID derived by the UE based on (i) an identity value (ID) of the network entity and (ii) a separate public key PK PKG of a private key generator (PKG) server. The network entity generates signatures for messages using an identity-based private key SK ID obtained from the PKG server, which generates the identity-based private key SK ID using (i) the ID value of the network entity and (ii) a private key SK PKG that is known only by the PKG server and corresponds to the public key PK PKG .
-
公开(公告)号:WO2019241999A1
公开(公告)日:2019-12-26
申请号:PCT/CN2018/092396
申请日:2018-06-22
Applicant: APPLE INC. , XU, Fangli
Inventor: XU, Fangli , YANG, Xiangying , BRIGGS, Elliot S. , POST, Samuel D. , SIERRA, Yannick L. , ZHANG, Dawei , HU, Haijing , LIANG, Huarui , LI, Li , ZHANG, Lijia , GUO, Shu , CHEN, Yuqin
IPC: H04W12/06
Abstract: This disclosure relates to techniques, base stations, and user equipment devices (UEs) for performing base station authentication through access stratum signaling transmissions. The UE may operate in idle mode and may receive an authentication message from a base station through the wireless interface while operating in idle mode. The UE may determine whether a signature comprised within the authentication message is valid, and the UE may continue a connection procedure with the base station based on a determination that the signature is valid. If it is determined that the signature is invalid, the UE may designate the base station as a barred base station and may perform cell re-selection. The authentication message may be one of a radio resource control (RRC) connection setup message, a special RRC message, a media access control (MAC) message, or a random access channel (RACH) message comprising a random access response (RAR) message.
-
公开(公告)号:WO2023044785A1
公开(公告)日:2023-03-30
申请号:PCT/CN2021/120409
申请日:2021-09-24
Applicant: APPLE INC.
Inventor: XU, Fangli , JOSE, Bobby , ZHANG, Dawei , HU, Haijing , SHIKARI, Murtaza, A. , PALLE VENKATA, Naveen Kumar R. , NUGGEHALLI, Pavan , ROSSBACH, Ralf , VANGALA, Sarma, V. , GUO, Shu , YANG, Weidong
IPC: H04W76/20
Abstract: Provided is a method of a transmitter in a wireless communication system, that includes: generating protocol data units (PDU) in layer 2 (L2); performing security protection on a control PDU of the PDUs in L2 to obtain a protected control PDU for the control PDU, wherein the control PDU in a sublayer lower than service data adaptation protocol (SDAP); and transmitting the protected control PDU.
-
9.
公开(公告)号:WO2022236606A1
公开(公告)日:2022-11-17
申请号:PCT/CN2021/092848
申请日:2021-05-10
Applicant: APPLE INC.
Inventor: GUO, Shu , ZHANG, Dawei , HU, Haijing , LIANG, Huarui
IPC: H04W12/06 , H04W12/0433
Abstract: Disclosed are embodiments of a user equipment (UE) configured to communicate in a 5G network and to perform authentication between an edge enabler client (EEC) of the UE and an edge configuration server (ECS) or an edge enabler server (EES) based on an architecture for authentication and key management for applications (AKMA). The techniques include performing primary authentication with the 5G network to obtain a K AUSF; generating a K AKMA and an A-KID; providing to the EEC the K AKMA and an EEC identifier (ID) for the EEC to generate a K edge, the K AKMA and the EEC ID being used by the EEC to compute a MAC EEC; and sending to the ECS or the EES an application registration request, the application registration request including the EEC ID, the MAC EEC, and the A-KID.
-
公开(公告)号:WO2022174398A1
公开(公告)日:2022-08-25
申请号:PCT/CN2021/076952
申请日:2021-02-19
Applicant: APPLE INC.
Inventor: GUO, Shu , ZHANG, Dawei , HU, Haijing , LIANG, Huarui , AGNEL, Mona , ROSSBACH, Ralf , ZAUS, Robert , MANITHARA VAMANAN, Sudeep
IPC: H04L12/24
Abstract: A user equipment (UE) configured to connect to an edge data network. The UE connects to a first edge application server (EAS) of an edge data network (EDN), the connecting comprising performing a first authorization/authentication procedure, receives a message indicating the UE is to connect to a second EAS of the EDN, the message including an indication as to whether the UE is to perform a second authorization/authentication procedure to connect to the second EAS and performs a discovery procedure to locate the second EAS based on at least the indication in the message.
-
-
-
-
-
-
-
-
-