-
1.
公开(公告)号:US20240196205A1
公开(公告)日:2024-06-13
申请号:US18411225
申请日:2024-01-12
Applicant: NEC Corporation
Inventor: Sheeba Backia Mary BASKARAN , Sander DE KIEVIT , Sivabalan ARUMUGAM , Anand Raghawa PRASAD
Abstract: The present disclosure provides a User Equipment (UE) comprising a transceiver circuit; and a controller configured to control the transceiver circuit to send, to an Access and mobility Management Function (AMF) of a communication node, an identifier, wherein upon successful authentication of a network access function of the UE in the communication node, the controller is configured to maintain a secure connection with the communication node.
-
公开(公告)号:US20210204133A1
公开(公告)日:2021-07-01
申请号:US17201280
申请日:2021-03-15
Applicant: NEC Corporation
Inventor: Hironori ITO , Anand Raghawa PRASAD , Andreas KUNZ , Sivabalan ARUMUGAM , Sivakamy LAKSHMINARAYANAN , Sheeba Backia Mary BASKARAN
IPC: H04W12/106 , H04W12/037 , H04W12/041 , H04W12/08 , H04W36/14 , H04W48/18
Abstract: A communication terminal (10) according to the present disclosure includes: a control unit (12) configured to, in a case of a movement from a communication area formed by the 5GS to a communication area formed by the EPS or a movement from a communication area formed by the EPS to a communication area formed by the 5GS, determine whether or not a communication system forming a communication area at a movement destination can satisfy requirements of services; and a communication unit (11) configured to, when it is determined that the communication system forming the communication area at the movement destination can satisfy the requirements of the services, send a connection request message to the communication system forming the communication area at the movement destination.
-
公开(公告)号:US20210051468A1
公开(公告)日:2021-02-18
申请号:US16968624
申请日:2019-02-15
Applicant: NEC Corporation
Inventor: Sheeba Backia Mary BASKARAN , Anand Raghawa PRASAD , Sivakamy LAKSHMINARAYANAN , Sivabalan ARUMUGAM , Hironori ITO , Takihito YOSHIZAWA
Abstract: Methods for (i) finding/discovering the right UDM instances and (ii) ensuring the UDM instance security are provided. The method for (i), includes the steps of: (i-1) pre-provisioning of UDM instance discovery information/parameters to the UE/USIM, (i-2) sending the UDM instance discovery related parameters to a core network element, and (i-3) discovering the right UDM instance at the core network element based on the discovery parameters and related routing information either at the UDM consumer/NRF. The method for (ii) includes the steps of: (ii-1) Secured choice of parameter for UDM instance discovery (e.g. UDM instance identifier) to the core network element and (ii-2) the secured UDM instance identifier generation and management at the UDM to prevent attack on UDM instances. Also a method to identify the cleartext IMSI/SUPI is provided for the re-authentication scenario along with the relevant procedures.
-
4.
公开(公告)号:US20240244425A1
公开(公告)日:2024-07-18
申请号:US18435148
申请日:2024-02-07
Applicant: NEC Corporation
Inventor: Hironori ITO , Sivakamy LAKSHMINARAYANAN , Anand Raghawa PRASAD , Sivabalan ARUMUGAM , Sheeba Backia Mary BASKARAN
IPC: H04W12/041 , H04L9/40 , H04W12/06
CPC classification number: H04W12/041 , H04L63/18 , H04W12/06
Abstract: A communication terminal capable of preventing a reduction in security level that is caused at the time of establishing multiple connections via 3GPP Access and Non-3GPP Access. A communication terminal according to the present disclosure includes: a communication unit configured to communicate with gateway devices disposed in a preceding stage of a core network device via an Untrusted Non-3GPP Access; and a key derivation unit configured to derive a second security key used for security processing of a message transmitted using a defined protocol with the gateway device, from a first security key used for security processing of a message transmitted using a defined protocol with the core network device.
-
公开(公告)号:US20210051482A1
公开(公告)日:2021-02-18
申请号:US16969363
申请日:2019-02-06
Applicant: NEC Corporation
Inventor: Hironori ITO , Anand Raghawa PRASAD , Sivabalan ARUMUGAM , Takahito YOSHIZAWA , Sivakamy LAKSHMINARAYANAN , Sheeba Backia Mary BASKARAN
IPC: H04W12/10
Abstract: A method for integrity protection scheme by a mobile communication device or a core network entity according to a first exemplary aspect of the present disclosure includes configuring settings and parameters for integrity protection for user data with another party; receiving user plane data from the other party, calculating Message Authentication Code for Integrity (MAC-I) for a part of the data and checking integrity of the part of the data.
-
6.
公开(公告)号:US20200344601A1
公开(公告)日:2020-10-29
申请号:US16961548
申请日:2019-01-09
Applicant: NEC CORPORATION
Inventor: Sheeba Backia Mary BASKARAN , Sivakamy LAKSHMINARAYANAN , Anand Raghawa PRASAD , Sivabalan ARUMUGAM , Hironori ITO , Takahito YOSHIZAWA
Abstract: A communication terminal (10) includes control means for generating a subscription concealed identifier (SUCI) including a subscription permanent identifier (SUPI) concealed using a predetermined protection scheme, and a protection scheme identifier identifying the protection scheme, and transmission means for sending the SUCI to a first network apparatus during a registration procedure, the SUCI being sent for a second network apparatus to de-conceal the SUPI from the SUCI based on the protection scheme used to generate the SUCI.
-
公开(公告)号:US20200014535A1
公开(公告)日:2020-01-09
申请号:US16494524
申请日:2018-03-16
Applicant: NEC CORPORATION
Inventor: Sheeba Backia Mary BASKARAN , Anand Raghawa PRASAD , Sivabalan ARUMUGAM , Sivakamy LAKSHMINARAYANAN , Hironori ITO , Andreas KUNZ
Abstract: Provided is an authentication device capable of generating a master key suited to a UE in a 5GS. The authentication device (10) includes a communication unit (11) configured to, in registration processing of user equipment (UE), acquire UE key derivation function (KDF) capabilities indicating a pseudo random function supported by the UE, a selection unit (12) configured to select a pseudo random function used for generation of a master key related to the UE by use of the UE KDF capabilities, and a key generation unit (13) configured to generate a master key related to the UE by use of the selected pseudo random function.
-
公开(公告)号:US20230328527A1
公开(公告)日:2023-10-12
申请号:US18208759
申请日:2023-06-12
Applicant: NEC Corporation
Inventor: Hironori ITO , Anand Raghawa PRASAD , Sivabalan ARUMUGAM , Takahito YOSHIZAWA , Sivakamy LAKSHMINARAYANAN , Sheeba Backia Mary BASKARAN
IPC: H04W12/106
CPC classification number: H04W12/106
Abstract: A method for integrity protection scheme by a mobile communication device or a core network entity according to a first exemplary aspect of the present disclosure includes configuring settings and parameters for integrity protection for user data with another party; receiving user plane data from the other party, calculating Message Authentication Code for Integrity (MAC-I) for a part of the data and checking integrity of the part of the data.
-
公开(公告)号:US20220060901A1
公开(公告)日:2022-02-24
申请号:US17421240
申请日:2019-12-10
Applicant: NEC Corporation
Inventor: Rohini Rajendran , Pradheep Kumar SINGARAVELU , Nivedya Parambath SASI , Takahito YOSHIZAWA , Sivabalan ARUMUGAM , Anand Raghawa PRASAD
IPC: H04W12/122 , H04W24/10
Abstract: Accordingly, embodiments herein disclose a method and base station for preventing a User Equipment (UE) from attaching to a false base station. The method includes: generating, by a source base station, a UE specific Anonymity Challenge Parameter to the UE based on sensitive information from the UE, cell information, source base station information and initial Anonymity Challenge Parameter assigned to the particular base station; and sending, by the source base station, a measurement command message including the UE specific Anonymity Challenge Parameter to the UE. Further, the method includes receiving, by the source base station, an Anonymity Challenge Parameter acknowledgement as a response from the UE; and negotiating, by the source base station, the UE specific Anonymity Challenge Parameter with the UE to prevent the UE from attaching to the false base station.
-
10.
公开(公告)号:US20190274072A1
公开(公告)日:2019-09-05
申请号:US16344980
申请日:2017-10-26
Applicant: NEC Corporation
Inventor: Anand Raghawa PRASAD , Sivakamy LAKSHMINARAYANAN , Sivabalan ARUMUGAM , Sheeba Backia Mary BASKARAN , Hironori ITO , Andreas KUNZ
Abstract: To provide a communication system capable of conducting necessary security procedures when handover is made in NextGen System, a communication system according to the present invention includes a base station (10) configured to form a communication area where a communication terminal (20) is located, and a base station (12) configured to form a communication area to which the communication terminal (20) makes handover, wherein the base station (10) receives a first message containing UE Security Capabilities and related to the handover from the communication terminal (20), and the base station (12) receives a second message containing the UE Security Capabilities, performs handover check of the communication terminal (20) based on the UE Security Capabilities, and sends a third message corresponding to the second message based on a result of the handover check.
-
-
-
-
-
-
-
-
-