白丝美女被狂躁免费视频网站,500av导航大全精品,yw.193.cnc爆乳尤物未满,97se亚洲综合色区,аⅴ天堂中文在线网官网

Secured authenticated communication between an initiator and a responder

專利號(hào)
US11997078B2
公開日期
2024-05-28
申請人
Telefonaktiebolaget LM Ericsson (publ)(SE Stockholm)
發(fā)明人
Vesa Lehtovirta; Mohit Sethi
IPC分類
H04L9/40
技術(shù)領(lǐng)域
responder,initiator,n3iwf,party,ue,ike_auth,eap,in,message,secure
地域: Stockholm

摘要

Secure, authenticated communication is enabled between an initiator (12) (e.g., a user equipment) and a responder (14) (e.g., an authentication server function, AUSF, or a subscription de-concealing function, SIDF). The initiator (12) transmits a message (20) to the responder (14) over a secure communication channel (16). The message (20) may include information indicating a third party (18) whose signing of data (e.g., bound to the secure communication channel (16)) will authenticate the responder (14) to the initiator (12). The responder (14) correspondingly retrieves from the third party (18) data that is signed by the third party (18) and transmits a response (24) to the initiator (12) that includes the retrieved data. The initiator (12) receives this response (24) and determines whether or not the responder (14) is authenticated by determining whether or not the response (24) includes data that is signed by the third party (18).

說明書

FIG. 9A is a block diagram of third party equipment of a third party according to some embodiments.

FIG. 9B is a block diagram of third party equipment of a third party according to other embodiments.

DETAILED DESCRIPTION

FIG. 1 shows a communication system 10 that according to some embodiments enables secure, authenticated communication between an initiator 12 and a responder 14. In one context, the initiator 12 is a wireless device (e.g., a user equipment) and the responder 14 is a network node that implements a non-3GPP interworking function (N3IWF) or an enhanced packet data gateway (ePDG) which the wireless device uses to access a 3GPP core network via a non-3GPP access network. In this context, some embodiments enable secure, authenticated communication between the wireless device and the N3IWF (or ePDG) via an untrusted non-3GPP access network.

No matter the particular context, though, the initiator 12 initiates negotiation of security parameters (e.g., a cryptographic suite) with the responder 14 in order to establish a secure communication channel 16 between the initiator 12 and the responder 14. In embodiments where the negotiation is performed via the Internet Key Exchange, IKE, protocol, for example, the secure communication channel 16 may constitute an IKE security association (SA) between the initiator 12 in the form of an IKE initiator and the responder 14 in the form of an IKE responder. Regardless, the initiator 12 and the responder 14 then authenticate one another in a way bound to the already negotiated secure communication channel 16.

權(quán)利要求

1
微信群二維碼
意見反饋