白丝美女被狂躁免费视频网站,500av导航大全精品,yw.193.cnc爆乳尤物未满,97se亚洲综合色区,аⅴ天堂中文在线网官网

Secured authenticated communication between an initiator and a responder

專利號
US11997078B2
公開日期
2024-05-28
申請人
Telefonaktiebolaget LM Ericsson (publ)(SE Stockholm)
發(fā)明人
Vesa Lehtovirta; Mohit Sethi
IPC分類
H04L9/40
技術(shù)領(lǐng)域
responder,initiator,n3iwf,party,ue,ike_auth,eap,in,message,secure
地域: Stockholm

摘要

Secure, authenticated communication is enabled between an initiator (12) (e.g., a user equipment) and a responder (14) (e.g., an authentication server function, AUSF, or a subscription de-concealing function, SIDF). The initiator (12) transmits a message (20) to the responder (14) over a secure communication channel (16). The message (20) may include information indicating a third party (18) whose signing of data (e.g., bound to the secure communication channel (16)) will authenticate the responder (14) to the initiator (12). The responder (14) correspondingly retrieves from the third party (18) data that is signed by the third party (18) and transmits a response (24) to the initiator (12) that includes the retrieved data. The initiator (12) receives this response (24) and determines whether or not the responder (14) is authenticated by determining whether or not the response (24) includes data that is signed by the third party (18).

說明書

No matter the particular form or substance of the data 22S to be signed by the third party 18, successful authentication of the responder 14 to the initiator 12 based on the third party's signature may trigger or otherwise precede setup of a secure traffic channel (not shown) between the initiator 12 and the responder. In some embodiments, for instance, after the responder 14 is authenticated to the initiator 12, the initiator 12 and responder 14 may negotiate, on behalf of a security service, one or more security associations for a secure traffic channel between the initiator 12 and the responder 14. Where the security service is an IPSec service, for instance, such may facilitate the setup of an IPSec tunnel between the initiator 12 and the responder 14.

Consider an example context in which security for non-3GPP access by a user equipment (UE) to a 5G core network is achieved by a procedure using IKEv2 (e.g., as defined in RFC 7296) to set up one or more IPSec encapsulating security payload (ESP) security associations. In this context, the role of the initiator 12 (or client) is taken by the UE, and the role of the responder 14 (or server) is taken by a non-3GPP interworking function (N3IWF).

權(quán)利要求

1
微信群二維碼
意見反饋