로밍의 스티어링을 가능하게 하는 시스템 및 방법

    公开(公告)号:KR20200140313A

    公开(公告)日:2020-12-15

    申请号:KR20207031439

    申请日:2019-04-05

    Applicant: QUALCOMM INC

    Abstract: SoR(steering of roaming)에관한양상들이개시된다. 일예에서, PLMN(public land mobile network)으로부터통신이사용자장비(UE)에의해수신되며, 통신은 PLMN에의 UE 등록의수락을표시한다. 이러한예는통신내에 HPLMN(home PLMN)과연관된 SoR 표시자가임베딩되는지여부의결정을수행하는것을더 포함한다. 그런다음, UE는결정에따라 PLMN 선택을관리한다. 다른예에서, UE는, UE가 PLMN으로부터의통신내에 SoR 표시자가임베딩되는지여부를확인하도록구성된 SoR 구성에따라동작하도록구성된다. 그런다음, HPLMN과연관된 SoR 표시자가생성되고, 후속적으로 PLMN을통해 HPLMN으로부터 UE에송신된다.

    이동성 관리 엔티티 재배치를 수반하는 이동성 절차를 위한 장치 및 방법

    公开(公告)号:KR20180053373A

    公开(公告)日:2018-05-21

    申请号:KR20187010590

    申请日:2016-08-15

    Applicant: QUALCOMM INC

    CPC classification number: H04W12/04 H04W36/0038 H04W36/0055

    Abstract: 새로운서비스영역으로의진입을식별하고, 네트워크와연관된네트워크디바이스로서비스영역업데이트요청을송신하며, 서비스영역업데이트요청을송신하는것에응답하여서비스영역변경에기인하여제어평면디바이스재배치또는키 리프레시 (key refresh) 를나타내는제어평면메시지를네트워크로부터수신하고, 제어평면메시지에포함된데이터및 디바이스와키 관리디바이스사이에공유된제 2 키에부분적으로기초하여제 1 키를도출하는디바이스. 네트워크와연관된네트워크디바이스로부터핸드오버커맨드를수신하는것으로서, 그핸드오버커맨드는새로운서비스영역을표시하는, 상기핸드오버커맨드를수신하고; 핸드오버커맨드에포함된데이터및 디바이스와키 관리디바이스사이에공유된제 2 키에기초하여제 1 키를도출하며; 제 1 키에기초하여보안되는핸드오버확인메시지를전송하는다른디바이스.

    암호화된 클라이언트 디바이스 컨텍스트들에 의한 네트워크 아키텍처 및 보안
    3.
    发明公开
    암호화된 클라이언트 디바이스 컨텍스트들에 의한 네트워크 아키텍처 및 보안 审中-公开
    网络体系结构与加密客户端设备的安全背景

    公开(公告)号:KR20180030034A

    公开(公告)日:2018-03-21

    申请号:KR20187000931

    申请日:2016-06-13

    Applicant: QUALCOMM INC

    Abstract: 일양태에서, 네트워크는다수의클라이언트디바이스들을지원할수도있다. 이러한네트워크에서, 클라이언트디바이스는네트워크와통신하기위한요청을송신하고, 보안컨텍스트를확립하고, 그리고, 네트워크로부터하나이상의암호화된클라이언트디바이스컨텍스트들을수신한다. 암호화된클라이언트디바이스컨텍스트는클라이언트디바이스와의통신을위해네트워크에서컨텍스트의재구성을가능하게하며, 여기서, 컨텍스트는클라이언트디바이스와연관된네트워크상태정보를포함한다. 클라이언트디바이스는 (예컨대, 업링크데이터패킷을포함하는) 메시지를적어도하나의암호화된클라이언트디바이스컨텍스트를포함하는네트워크로송신한다. 네트워크디바이스가암호화된클라이언트디바이스컨텍스트에기초하여클라이언트디바이스에대한컨텍스트를재구성할수 있기때문에, 네트워크디바이스는더 많은개수의클라이언트디바이스들을지원하기위해네트워크디바이스에서유지관리되는컨텍스트의양을감소시킬수 있다.

    Abstract translation: 在一个方面,网络可以支持多个客户端设备。 在这样的网络中,客户端设备传输与网络通信的请求,建立安全上下文,并且从网络接收一个或多个加密的客户端设备上下文。 经加密的客户端设备上下文使得能够重建网络上的用于与客户端设备通信的上下文,其中上下文包括与客户端设备相关联的网络状态信息。 客户端设备向网络发送包括至少一个加密的客户端设备上下文的消息(例如,包括上行链路数据分组)。 由于网络设备可以基于加密的客户端设备上下文重建客户端设备的上下文,因此网络设备可以减少在网络设备处维护的上下文的量,以支持更多数量的客户端设备。

    STATELESS ACCESS STRATUM SECURITY FOR CELLULAR INTERNET OF THINGS
    4.
    发明申请
    STATELESS ACCESS STRATUM SECURITY FOR CELLULAR INTERNET OF THINGS 审中-公开
    用于无线蜂窝互联网的无状态接入层安全

    公开(公告)号:WO2017112491A3

    公开(公告)日:2017-08-03

    申请号:PCT/US2016066702

    申请日:2016-12-14

    Applicant: QUALCOMM INC

    Abstract: Aspects of security schemes (e.g., integrity protection, encryption, or both) are described. A measure of access stratum security can be realized without overhead associated with establishing and/or maintaining the per-cellular-device access stratum security context at a Cellular Internet of Things (CIoT) base station (C-BS). A gateway (e.g., a CIoT Serving Gateway Node (C-SGN)) may derive a first key. The first key may be only known to the C-SGN. The C-SGN may derive a second key from the first key and a parameter unique to the C-BS. The C-SGN may also derive a third key from the second key and an identity of a cellular device. The C-SGN may send the second and third keys to the C-BS and cellular device, respectively. Small data messages encrypted and/or integrity protected by the cellular device may be decrypted and/or verified by the C-BS.

    Abstract translation: 描述了安全方案的各个方面(例如,完整性保护,加密或二者)。 可以在无蜂窝物联网(C-BS)基站(C-BS)上建立和/或维护每个蜂窝设备接入层安全上下文的开销的情况下实现接入层安全性的度量。 网关(例如,CIoT服务网关节点(C-SGN))可以导出第一密钥。 第一把钥匙可能只有C-SGN才知道。 C-SGN可以从第一密钥和C-BS特有的参数中导出第二密钥。 C-SGN还可以从第二密钥和蜂窝设备的身份导出第三密钥。 C-SGN可以分别将第二和第三密钥发送到C-BS和蜂窝设备。 由蜂窝设备加密和/或完整性保护的小数据消息可以由C-BS解密和/或验证。

    NETWORK ARCHITECTURE AND SECURITY WITH ENCRYPTED CLIENT DEVICE CONTEXTS
    5.
    发明申请
    NETWORK ARCHITECTURE AND SECURITY WITH ENCRYPTED CLIENT DEVICE CONTEXTS 审中-公开
    网络体系结构与加密客户端设备的安全背景

    公开(公告)号:WO2017039777A3

    公开(公告)日:2017-06-15

    申请号:PCT/US2016037279

    申请日:2016-06-13

    Applicant: QUALCOMM INC

    Abstract: In an aspect, a network may support a number of client devices. In such a network, a client device transmits a request to communicate with a network, establishes a security context, and receives one or more encrypted client device contexts from the network. An encrypted client device context enables reconstruction of a context at the network for communication with the client device, where the context includes network state information associated with the client device. The client device transmits a message (e.g., including an uplink data packet) to the network that includes at least one encrypted client device context. Since the network device can reconstruct the context for the client device based on an encrypted client device context, the network device can reduce an amount of the context maintained at the network device in order to support a greater number of client devices.

    Abstract translation: 在一个方面,网络可以支持多个客户端设备。 在这样的网络中,客户端设备传输与网络通信的请求,建立安全上下文,并且从网络接收一个或多个加密的客户端设备上下文。 经加密的客户端设备上下文使得能够重建网络上的用于与客户端设备通信的上下文,其中上下文包括与客户端设备相关联的网络状态信息。 客户端设备向网络发送包括至少一个加密的客户端设备上下文的消息(例如,包括上行链路数据分组)。 由于网络设备可以基于加密的客户端设备上下文重建客户端设备的上下文,因此网络设备可以减少在网络设备处维护的上下文的量,以支持更多数量的客户端设备。

    SECURITY KEY DERIVATION FOR HANDOVER

    公开(公告)号:ZA202000536B

    公开(公告)日:2022-07-27

    申请号:ZA202000536

    申请日:2020-01-27

    Applicant: QUALCOMM INC

    Abstract: Methods, systems, and devices for wireless communication are described that support security key derivation for handover. A network entity (e.g., an access and mobility function (AMF)) may establish an access stratum (AS) key to ensure secure communications between a user equipment (UE) and a base station. If the UE relocates to a new network entity (e.g., target network entity), the initial network entity (e.g., source network entity) may perform a handover procedure to the target network entity. In some aspects, the network entities may derive a unified AS key for the handover procedure. Additionally, the network entities may utilize one or more intermediate keys (e.g., refreshed intermediate keys) derived from, in part, respective freshness parameters for the handover procedure. The target network entity may then utilize the derived intermediate keys to derive the AS key for the handover procedure and establish communications with the UE.

    Señalización de capacidad de protección de integridad de plano de usuario (up ip) en sistemas 5g/4g

    公开(公告)号:CO2022004053A2

    公开(公告)日:2022-04-19

    申请号:CO2022004053

    申请日:2022-03-31

    Applicant: QUALCOMM INC

    Abstract: Se proporcionan métodos, sistemas y dispositivos para admitir la protección de la integridad del plano del usuario (UP IP) para las comunicaciones con una red de acceso por radio (RAN). Diversas formas de realización pueden incluir indicando si un dispositivo inalámbrico admite o no UP IP a través del acceso por radio terrestre al sistema de telecomunicaciones móviles universal (UMTS) evolucionado (eUTRA) mediante la inclusión de indicaciones de soporte de UP IP en los elementos de información (IE) de capacidad de seguridad del equipo de usuario (UE).

    prevenção de ataque repetido na descoberta, dispositivo para dispositivo, de evolução de longo termo

    公开(公告)号:BR112016021482A8

    公开(公告)日:2021-07-06

    申请号:BR112016021482

    申请日:2015-01-30

    Applicant: QUALCOMM INC

    Abstract: prevenção de ataque repetido na descoberta, dispositivo para dispositivo, de evolução de longo termo. métodos, sistemas e dispositivos são descritos para a comunicação sem fio dispositivo para dispositivo (d2d). um dispositivo pode receber uma variável de temporização de uma rede enquanto o dispositivo está em um modo conectado. o dispositivo pode então utilizar a variável de temporização para a autenticação de mensagem de descoberta d2d. o dispositivo pode comparar a variável de temporização com uma variável de temporização local para determinar se uma diferença entre as duas variáveis está dentro de um desvio máximo permitido. o dispositivo pode anunciar a mensagem de descoberta d2d para outro dispositivo quando a diferença estiver dentro do desvio máximo permitido.

    Arquitectura y seguridad de red con contextos de dispositivo cliente cifrado

    公开(公告)号:ES2837845T3

    公开(公告)日:2021-07-01

    申请号:ES18193144

    申请日:2016-06-13

    Applicant: QUALCOMM INC

    Abstract: Un procedimiento (2200) para un dispositivo de red, que comprende: recibir (2202), desde un dispositivo cliente, una petición para comunicarse con una red; establecer (2207) al menos un contexto con el dispositivo cliente, incluyendo el al menos un contexto información de estado de la red asociada con una conexión entre el dispositivo cliente y la red, en el que la información de estado de la red incluye al menos un contexto de seguridad e información asociada con uno o más portadores para el dispositivo cliente, y en el que el contexto de seguridad incluye al menos un algoritmo de cifrado, una clave de cifrado, un algoritmo de protección de integridad, una clave de protección de integridad o combinaciones de los mismos; generar (2210) uno o más contextos de dispositivo cliente cifrado, en el que uno o más contextos de dispositivo cliente cifrado incluyen la información del estado de la red y permiten la reconstrucción de al menos un contexto en la red para la comunicación con el dispositivo cliente; y transmitir (2212) el uno o más contextos de dispositivo cliente cifrado al dispositivo cliente.

Patent Agency Ranking