摘要:
Various methods and apparatus for encrypting signals in a wireless access system are disclosed. A method for selectively encrypting a management message in an MS includes steps of generating a Medium Access Control Protocol Data Unit (MAC PDU) including the selectively encrypted management message and an Fragmentation Extended Header (FEH) and transmitting the MAC PDU to the BS. The FEH includes indication information indicating whether the management message was encrypted.
摘要:
A method of enabling a mobile station to perform initialization to a base station in a wireless communication system is provided. The method includes synchronizing with the base station, obtaining an uplink parameter based on the synchronization, performing initial ranging by using the uplink parameter and establishing security association between the mobile station and the base station while performing the initial ranging. During the initial ranging, a mobile station's unique identifier or control signaling can securely be transmitted.
摘要:
A method of performing initial ranging in a wireless communication system includes transmitting a ranging request message and receiving a ranging response message including a temporary identifier for a mobile station which transmits the ranging request message. By using the temporary identifier which identifies the mobile station before establishing authentication, it is possible to prevent the MAC address from being exposed to a malicious attacker through a wireless interface and to secure location privacy.
摘要:
A method for efficiently deriving a traffic encryption key for data encryption is disclosed. A method of generating a traffic encryption key (TEK) comprises the steps of receiving, by a mobile station from base station, a first nonce and first security materials for deriving the traffic encryption key (TEK) and deriving the traffic encryption key (TEK) using one or more of the first nonce, the authentication key (AK), and the first security materials.
摘要:
A method of supporting location privacy of a mobile station includes receiving, from a base station, a message including a temporary station identifier (TSTID) during an initial ranging procedure, wherein the TSTID is temporarily used to protect the location privacy of the mobile station; performing, with the base station, a basic capabilities negotiation procedure after the initial ranging procedure; performing, with the base station, an authentication procedure after the basic capabilities negotiation procedure; performing, with the base station, a registration procedure after the authentication procedure; and releasing the TSTID after receiving a station identifier (STID) which is assigned during the registration procedure, wherein the STID uniquely identifies the mobile station in the base station.
摘要:
A method of establishing security association between heterogeneous networks is disclosed. The method comprises a first step of receiving information of heterogeneous networks near a mobile station; a second step of transmitting a request message requesting authentication related information transfer to a target heterogeneous network where the mobile station intends to perform handover, among the heterogeneous networks near the mobile station; and a third step of receiving authentication related information and key related information of the target heterogeneous network. At this time, the first step, the second step, and the third step are preferable performed before handover is performed between heterogeneous networks.
摘要:
A method of establishing security association between heterogeneous networks is disclosed. The method comprises a first step of receiving information of heterogeneous networks near a mobile station; a second step of transmitting a request message requesting authentication related information transfer to a target heterogeneous network where the mobile station intends to perform handover, among the heterogeneous networks near the mobile station; and a third step of receiving authentication related information and key related information of the target heterogeneous network. At this time, the first step, the second step, and the third step are preferable performed before handover is performed between heterogeneous networks.
摘要:
Various methods and apparatus for encrypting signals in a wireless access system are disclosed. A method for selectively encrypting a management message in an MS includes steps of generating a Medium Access Control Protocol Data Unit (MAC PDU) including the selectively encrypted management message and an Fragmentation Extended Header (FEH) and transmitting the MAC PDU to the BS. The FEH includes indication information indicating whether the management message was encrypted.
摘要:
A method for performing a handover between MBS zones of a mobile station receiving multicast and broadcast service (MBS) data in a wireless access system is disclosed. The method for performing the handover between first and second MBS zones of the mobile station in a wireless access system includes receiving the MBS from a first base station belonging to the first MBS zone which uses a first MBS zone identifier (ID), requesting the handover between the first and second MBS zones, receiving parameter information including a second MBS zone identifier (ID), from the first base station, and receiving the MBS from a second base station belonging to the second MBS zone, using the parameter information, wherein the second MBS zone uses the second MBS zone identifier (ID) which is needed to receive the MBS.
摘要:
A method of protecting location privacy of a mobile station when the mobile station enters a network is disclosed. A method of supporting location privacy comprises the steps of transmitting a ranging code for performing initial ranging; and receiving a message including temporary station identifier after transmitting a ranging request message including MAC address of a mobile station. In this case, the temporary station identifier is used to provide security of a media access control (MAC) address or mapping information of the MAC address and station identifier, wherein the MAC address is to identify a mobile station within a base station.