-
公开(公告)号:US20220095113A1
公开(公告)日:2022-03-24
申请号:US17540455
申请日:2021-12-02
Applicant: NEC Corporation
Inventor: Hironori ITO , Anand Raghawa PRASAD , Sivabalan ARUMUGAM , Takahito YOSHIZAWA , Sivakamy LAKSHMINARAYANAN , Sheeba Backia Mary BASKARAN
IPC: H04W12/106
Abstract: A method for integrity protection scheme by a mobile communication device or a core network entity according to a first exemplary aspect of the present disclosure includes configuring settings and parameters for integrity protection for user data with another party; receiving user plane data from the other party, calculating Message Authentication Code for Integrity (MAC-I) for a part of the data and checking integrity of the part of the data.
-
公开(公告)号:US20210409939A1
公开(公告)日:2021-12-30
申请号:US17288968
申请日:2019-10-30
Applicant: NEC Corporation
Inventor: Sheeba Backia Mary BASKARAN , Sivabalan ARUMUGAM , Anand Raghawa PRASAD , Sander DE KIEVIT , Takahito YOSHIZAWA , Hironori ITO
IPC: H04W12/041 , H04W12/0431 , H04W12/06 , H04W60/04
Abstract: A method for providing a key derivation function (KDF) negotiation in a 5G network is provided. The method which includes: selecting a specific KDF at a UE and at the network for at least one security related key derivation; and transmitting, said selected KDF to the UE and to other network functions to indicate said selected KDF for generating specific security key at a receiver side.
-
公开(公告)号:US20210144550A1
公开(公告)日:2021-05-13
申请号:US17044383
申请日:2019-04-03
Applicant: NEC CORPORATION
Inventor: Hironori ITO , Anand Raghawa PRASAD , Takahito YOSHIZAWA , Sheeba Backia Mary BASKARAN , Sivabalan ARUMUGAM , Sivakamy LAKSHMINARAYANAN
IPC: H04W12/06 , H04W12/069 , H04W84/18 , H04W28/02
Abstract: The present document proposes security procedures for 3GPP Common API Framework (CAPIF) to solve various security issues that can occur during various phases such as, (i) API invoker Onboarding, (ii) API invoker Offboarding, (iii) Service API publishing, (iv) Service API unpublishing, (v) Update service APIs, (vi) Service API discovery, (vii) API invoker obtaining authorization from CAPIF core function (CCF) to access service API, (viii) Authentication between API invoker and API exposing function (AEF) upon the service invocation, (ix) Retrieve service APIs, (x) CAPIF event subscription, (xi) CAPIF event unsubscription, and (xii) API invoker authorization to access service APIs.
-
公开(公告)号:US20210144135A1
公开(公告)日:2021-05-13
申请号:US17044065
申请日:2019-04-02
Applicant: NEC CORPORATION
Inventor: Anand Raghawa PRASAD , Sivakamy LAKSHMINARAYANAN , Sheeba Backia Mary BASKARAN , Sivabalan ARUMUGAM , Hironori ITO , Takahito YOSHIZAWA
Abstract: The present disclosure relates to authentication methods supported by the User Equipment (UE) to the core network and authentication method (selected by the core network) to the UE. These can be used for negotiating any primary or secondary (or any) authentication method and are applicable when multiple authentication methods are supported at the UE and the network (authentication server). Further, the present disclosure also offers security solution to prevent modification or tampering of the parameters in the mechanisms in order to prevent attacks such as bidding-down, Denial of Service (DoS) and Man-In-The-Middle (MITM).
-
25.
公开(公告)号:US20200280849A1
公开(公告)日:2020-09-03
申请号:US16650997
申请日:2018-09-27
Applicant: NEC Corporation
Inventor: Hironori ITO , Sivakamy LAKSHMINARAYANAN , Anand Raghawa PRASAD , Sivabalan ARUMUGAM , Sheeba Backia Mary BASKARAN
Abstract: A communication terminal capable of preventing a reduction in security level that is caused at the time of establishing multiple connections via 3GPP Access and Non-3GPP Access. A communication terminal according to the present disclosure includes: a communication unit configured to communicate with gateway devices disposed in a preceding stage of a core network device via an Untrusted Non-3GPP Access; and a key derivation unit configured to derive a second security key used for security processing of a message transmitted using a defined protocol with the gateway device, from a first security key used for security processing of a message transmitted using a defined protocol with the core network device.
-
-
-
-