Generic Bootstrapping Architecture (GBA) Signaling To Indicate Need For Key Renegotiation

    公开(公告)号:US20230137082A1

    公开(公告)日:2023-05-04

    申请号:US18050028

    申请日:2022-10-26

    Abstract: In embodiment methods for supporting pre-shared key (PSK) renegotiation, a user equipment (UE) may generate a request message including a first bootstrapping transaction identifier (B-TID), a first PSK namespace identifying a first bootstrapping procedure supported by the UE, and a first correlated PSK namespace indicating PSK renegotiation is supported by the UE for the first bootstrapping procedure, and send the request message to a network device. The network device may determine an indication of a PSK renegotiation for the first correlated PSK namespace in response to determining PSK renegotiation is required for the UE, generate a response message including the indication of the PSK renegotiation for the first correlated PSK namespace, and send the response message to the UE. In response, the UE may perform a bootstrapping procedure to obtain a second B-TID and second (i.e., new) session key (Ks).

    PC5 LINK SECURITY SETUP USING NON-ACCESS STRATUM SECURITY CONTEXT

    公开(公告)号:US20220272532A1

    公开(公告)日:2022-08-25

    申请号:US17648349

    申请日:2022-01-19

    Abstract: Various aspects of the present disclosure generally relate to wireless communication. In some aspects, a user equipment (UE) may transmit, to a relay UE, a first message comprising a first freshness parameter, an identity of the UE, and authentication information, where the authentication information is used by a network node to authenticate the UE with security context information of the UE. The UE may derive a relay key for security establishment between the UE and the relay UE based on the first freshness parameter, a set of key generation parameters, and a shared key with the network node. The UE may derive a relay session key for security establishment between the UE and the relay UE based on the relay key, a first nonce of the UE, and a second nonce of the relay UE. Numerous other aspects are described.

    STATELESS ACCESS STRATUM SECURITY FOR CELLULAR INTERNET OF THINGS

    公开(公告)号:US20190260717A1

    公开(公告)日:2019-08-22

    申请号:US16398063

    申请日:2019-04-29

    Abstract: Aspects of security schemes (e.g., integrity protection, encryption, or both) are described. A measure of access stratum security can be realized without overhead associated with establishing and/or maintaining the per-cellular-device access stratum security context at a Cellular Internet of Things (CIoT) base station (C-BS). A gateway (e.g., a CIoT Serving Gateway Node (C-SGN)) may derive a first key. The first key may be only known to the C-SGN. The C-SGN may derive a second key from the first key and a parameter unique to the C-BS. The C-SGN may also derive a third key from the second key and an identity of a cellular device. The C-SGN may send the second and third keys to the C-BS and cellular device, respectively. Small data messages encrypted and/or integrity protected by the cellular device may be decrypted and/or verified by the C-BS.

    USER EQUIPMENT (UE) PARAMETERS UPDATE HEADER INTEGRITY PROTECTION IN WIRELESS SYSTEMS

    公开(公告)号:US20240171978A1

    公开(公告)日:2024-05-23

    申请号:US18498971

    申请日:2023-10-31

    CPC classification number: H04W12/106 H04W8/08 H04W12/06

    Abstract: Disclosed are systems and techniques for wireless communications. For example, a network entity (e.g., a Unified Data Management (UDM) network entity) can generate a user equipment (UE) parameters update (UPU) container. The UPU container includes a UE parameters update header information element (IE) and a UE parameters update list IE. The UE parameters update header IE includes UE parameters update header information. The UE parameters update list IE includes the UE parameters update header information of the UE parameters update header IE. The network entity can transmit the UPU container to a network device (e.g., a UE). The network device can generate, based on the UE parameters update list IE, a UPU message authentication code (MAC) for verifying integrity of the UPU container.

Patent Agency Ranking