-
公开(公告)号:US11870765B2
公开(公告)日:2024-01-09
申请号:US18086967
申请日:2022-12-22
Applicant: Telefonaktiebolaget LM Ericsson (publ)
Inventor: Prajwol Kumar Nakarmi , Noamen Ben Henda , Christine Jost , Vesa Torvinen
IPC: H04M1/66 , H04M1/68 , H04M3/16 , H04L9/40 , H04W8/08 , H04W84/04 , H04W12/02 , H04M3/22 , H04W12/06 , H04W12/03 , H04W12/037 , H04W12/062 , H04W12/069 , H04W12/72
CPC classification number: H04L63/08 , H04L63/30 , H04M3/2281 , H04W8/08 , H04W12/02 , H04W12/03 , H04W12/037 , H04W12/06 , H04W12/062 , H04W12/069 , H04W12/72 , H04W84/042
Abstract: A method performed by a network node of a serving public land mobile network, PLMN, associated with a user equipment, UE, comprising: obtaining a secret identifier that uniquely identifies the UE, wherein the secret identifier is a secret that is shared between the UE and at least a home PLMN of the UE and that is shared by the home PLMN with the network node; and performing an operation related to the UE using the secret identifier. Other methods, computer programs, computer program products, network nodes and a serving PLMN are also disclosed.
-
公开(公告)号:US11659382B2
公开(公告)日:2023-05-23
申请号:US16494660
申请日:2018-03-16
Applicant: Telefonaktiebolaget LM Ericsson (publ)
Inventor: Vesa Torvinen , Noamen Ben Henda , Monica Wifvesson
IPC: H04W40/36 , H04W36/02 , H04W12/00 , H04L9/40 , H04W12/033 , H04W12/106
CPC classification number: H04W12/009 , H04L63/205 , H04W12/033 , H04W12/106
Abstract: Methods for operating a UE, a network node, a Session Management Function (SMF) and a Unified Data Management (UDM) are disclosed. The methods include transmitting, by a UE, a Protocol Data Unit (PDU) Session Establishment Request message toward an SMF in the communication network (902A), and receiving at the UE a policy decision on security protection of User Plane (UP) data terminating in a RAN for the PDU Session (904A). The policy decision received at the UE may be in accordance with a UP security policy provided by the SMF to the RAN during PDU Session Establishment. Also disclosed are a UE, network node, SMF and UDM.
-
公开(公告)号:US11558745B2
公开(公告)日:2023-01-17
申请号:US16481351
申请日:2018-01-30
Applicant: Telefonaktiebolaget LM Ericsson (publ)
Inventor: Monica Wifvesson , Prajwol Kumar Nakarmi , Karl Norrman , Vesa Torvinen
IPC: G06F7/04 , H04W12/106 , H04W8/24 , H04W28/18 , H04W60/00 , H04W12/033 , H04W12/041
Abstract: A method (200) for operating a User Equipment (UE) is disclosed, the UE configured to connect to a communication network. The method comprises: indicating to the communication network an Integrity Protection for User Plane (IPUP) mode supported by the UE when requesting registration with the communication network (202). The IPUP mode comprises one of: use of Integrity Protection for User Plane data exchanged with the UE (202a), non-use of Integrity Protection for User Plane data exchanged with the UE (202b), or use of Integrity Protection for User Plane data, and non-use of Confidentiality Protection for User Plane data (202c). Also disclosed are an apparatus for operating a UE, methods and apparatus for operating a radio access node and a core node of a communication network, and a computer program operable to carry out methods for operating a UE, a radio access node and/or a core node of a communication network.
-
公开(公告)号:US11233817B2
公开(公告)日:2022-01-25
申请号:US16794767
申请日:2020-02-19
Applicant: Telefonaktiebolaget LM Ericsson (publ)
Inventor: Vesa Lehtovirta , Katharina Pfeffer , Vesa Torvinen , Monica Wifvesson
IPC: H04L29/06 , H04W8/00 , H04W48/16 , H04W12/06 , H04W12/069
Abstract: A method performed by a proximity service server. The method comprises generating a ProSe query code and a ProSe response code, sending at least the ProSe response code together with a first and a second discovery key to a first end device, and sending at least the first discovery key and the ProSe query code to a second end device, so that the second end device can securely discover the first end device over an air interface.
-
公开(公告)号:US10750361B2
公开(公告)日:2020-08-18
申请号:US16072483
申请日:2016-11-25
Applicant: Telefonaktiebolaget LM Ericsson (publ)
Inventor: Vesa Lehtovirta , Noamen Ben Henda , Lars-Bertil Olsson , Paul Schliwa-Bertling , Magnus Stattin , Vesa Torvinen , Monica Wifvesson
Abstract: A basestation in a cellular communications network is operable to send a message to a Mobility Management Entity, relating to a suspension or resumption of a connection of a UE, wherein the message contains key renewal information. The Mobility Management Entity receives the message, and determines whether a key renewal condition is met. If the key renewal condition is met, the MME forwards a new NH, NCC pair to the base station. If a message received from the MME includes a NH, NCC pair, the basestation derives keying information using the NH, NCC pair for future use in deriving keys.
-
公开(公告)号:US10382967B2
公开(公告)日:2019-08-13
申请号:US16306062
申请日:2016-11-24
Applicant: Telefonaktiebolaget LM Ericsson (publ)
Inventor: Noamen Ben Henda , Vesa Lehtovirta , Prajwol Kumar Nakarmi , Vesa Torvinen , Monica Wifvesson
Abstract: A terminal device obtains location information relating to its location, wherein the location information comprises first location information and second location information, wherein the first location information relates to a location of the terminal device within a region, and wherein the second location information identifies the region in which the terminal device is located. The terminal device forms content for a proximity service discovery message, wherein the content for the discovery message includes the first location information; calculates a message integrity code based on the content for the discovery message and the second location information; and transmits the proximity service discovery message, comprising the content for the discovery message and the computed message integrity code.
-
公开(公告)号:US20180317086A1
公开(公告)日:2018-11-01
申请号:US15761835
申请日:2017-12-22
Applicant: Telefonaktiebolaget LM Ericsson (publ)
Inventor: Noamen Ben Henda , David Castellanos Zamora , Vesa Torvinen
CPC classification number: H04W12/06 , H04L9/0816 , H04L9/3271 , H04L63/061 , H04L63/08 , H04L63/0892 , H04L63/16 , H04W12/04
Abstract: A user equipment (18) is configured to receive an extensible authentication protocol, EAP, request (28) from a session management function, SMF, (14) that serves as an EAP authenticator for secondary authentication of the user equipment (18). The secondary authentication is authentication of the user equipment (18) in addition to primary authentication of the user equipment (18). The user equipment (18) is also configured to, responsive to the EAP request (28), transmit an EAP response (30) to the SMF (14).
-
公开(公告)号:US09973925B2
公开(公告)日:2018-05-15
申请号:US14892461
申请日:2015-08-17
Applicant: Telefonaktiebolaget LM Ericsson (publ)
Inventor: Vesa Lehtovirta , Katharina Pfeffer , Vesa Torvinen , Monica Wifvesson
CPC classification number: H04W12/04 , H04W4/50 , H04W8/005 , H04W76/14 , H04W84/047
Abstract: A method, performed by a User Equipment device (UE), for obtaining a key for direct communication with a device over an air interface, wherein the UE has previously acquired a transaction identifier received from a Bootstrapping Server Function (BSF), in a Generic Bootstrapping Architecture (GBA), procedure, is provided. The method comprises storing the transaction identifier, sending the transaction identifier to the device and requesting key generation for direct communication with the device. If the transaction identifier is invalid, the method further comprises receiving from the device a device identifier and key generation information, deriving a session shared key from at least the key generation information, and deriving a direct communication key from at least the session shared key and the device identifier.
-
公开(公告)号:US12177662B2
公开(公告)日:2024-12-24
申请号:US17737675
申请日:2022-05-05
Applicant: Telefonaktiebolaget LM Ericsson (publ)
Inventor: Vesa Torvinen , Noamen Ben Henda , David Castellanos Zamora , Prajwol Kumar Nakarmi , Pasi Saarinen , Monica Wifvesson
IPC: H04L29/06 , H04L9/08 , H04L9/30 , H04L9/32 , H04L9/40 , H04W8/18 , H04W12/02 , H04W12/033 , H04W12/04 , H04W12/0433 , H04W12/06 , H04W12/72 , H04W60/00 , H04W12/10 , H04W12/75
Abstract: A method performed by a UE. The method incudes generating a SUCI comprising: i) an encrypted part in which a Mobile Subscription Identification Number of a SUPI is encrypted and ii) a clear-text part comprising: a) a Mobile Country Code of the SUPI, b) a Mobile Network Code of the SUPI, c) a public key identifier for a public key of a home network of the user equipment, and d) an encryption scheme identifier that identifies an encryption scheme used by the UE to encrypt the Mobile Subscription Identification Number in the SUCI. The method also includes transmitting the SUCI to an authentication server in the home network for forwarding of the SUCI to a de-concealing server capable of decrypting the Mobile Subscription Identification Number.
-
10.
公开(公告)号:US12160413B2
公开(公告)日:2024-12-03
申请号:US18150297
申请日:2023-01-05
Applicant: Telefonaktiebolaget LM Ericsson (publ)
Inventor: Christine Jost , Vesa Lehtovirta , Ivo Sedlacek , Vesa Torvinen
IPC: H04L9/40 , H04W12/0433 , H04W12/069 , H04W12/71 , H04W12/72 , H04W48/16 , H04W84/12
Abstract: Enabling the exchange of connection parameters where a user equipment (UE) lacks a secret shared with the network (e.g. a server), such as key materials, and lacks a valid certificate. In some embodiments, the connection parameters may be exchanged via EAP messages. In certain aspects, and particularly with respect to emergency attach, a simplified protocol is used with limited overhead because the UE does not attempt to authenticate the network, and the network does not attempt to authenticate the UE.
-
-
-
-
-
-
-
-
-