Authentication using GAA functionality for unidirectional network connections
    31.
    发明申请
    Authentication using GAA functionality for unidirectional network connections 有权
    使用GAA功能进行身份验证,用于单向网络连接

    公开(公告)号:US20060174117A1

    公开(公告)日:2006-08-03

    申请号:US11108848

    申请日:2005-04-19

    申请人: Pekka Laitinen

    发明人: Pekka Laitinen

    IPC分类号: H04L9/00

    摘要: Methods, a client entity, network entities, a system, and a computer program product perform authentication between a client entity and a network. The network includes at least a bootstrapping server function entity and a network application function entity. The client entity is not able to communicate with both of the network entities in a bidirectional manner. The 3GPP standard Ub reference point between the client entity and the bootstrapping server function entity is not utilized for authentication purposes, such as authentication using GAA functionality for unidirectional network connections.

    摘要翻译: 方法,客户实体,网络实体,系统和计算机程序产品在客户端实体和网络之间执行认证。 该网络至少包括自举服务器功能实体和网络应用功能实体。 客户机实体不能以双向方式与两个网络实体进行通信。 客户实体和引导服务器功能实体之间的3GPP标准Ub参考点不用于认证目的,例如使用GAA功能进行单向网络连接的认证。

    Method and system for data transfer
    32.
    发明申请
    Method and system for data transfer 审中-公开
    数据传输方法和系统

    公开(公告)号:US20050002382A1

    公开(公告)日:2005-01-06

    申请号:US10880283

    申请日:2004-06-29

    摘要: A communication system comprising a data communication network, a service provider and a communication terminal is described. The communication terminal includes a user interaction device, a processor, a memory and a character stored in the memory and capable of running on the processor and of providing a presence on the user interaction device. The communication system also comprises an agent residing in the data communication network being configurable to collect data from the service provider, of providing a continuous follow-up of occurrences in the network and of providing the data to the character. The character is configurable to approach the agent and to receive the data from the agent over a wireless link supported by the communication terminal and to present the data to the user by means of the user interaction device. Furthermore, a method for data transfer from a service provider to a communication terminal over a data communication network is described.

    摘要翻译: 描述包括数据通信网络,服务提供商和通信终端的通信系统。 通信终端包括用户交互设备,处理器,存储器和存储在存储器中的字符,并且能够在处理器上运行并且在用户交互设备上提供存在。 通信系统还包括驻留在数据通信网络中的代理,可配置为从服务提供商收集数据,在网络中提供持续的事件跟踪并向字符提供数据。 字符可配置为接近代理并通过通信终端支持的无线链路从代理接收数据,并通过用户交互设备将数据呈现给用户。 此外,描述了一种通过数据通信网络从服务提供商到通信终端的数据传输的方法。

    Devices and Methods for Key Attestation with Multiple Device Certificates

    公开(公告)号:US20200186357A1

    公开(公告)日:2020-06-11

    申请号:US16638291

    申请日:2017-08-11

    摘要: A device with key attestation features comprises an operating system stored in its memory, the operating system comprising a secure environment including a trusted application, and two or more device certificates, each associated with a device key pair, stored in the memory of the device. The trusted application is configured to handle key pair generation requests and key pair attestation requests to read an indication of a preferred device certificate. An attestation certificate that is generated in response to the key pair attestation request is then signed using one of the two or more device certificates with its associated device key pair based on the indication of a preferred device certificate.

    Generic key-decision mechanism for GAA
    34.
    发明授权
    Generic key-decision mechanism for GAA 有权
    GAA的一般关键决策机制

    公开(公告)号:US08990897B2

    公开(公告)日:2015-03-24

    申请号:US13239246

    申请日:2011-09-21

    IPC分类号: H04L29/06 H04W12/04

    CPC分类号: H04L63/062 H04W12/04

    摘要: A method and apparatus provide generic mechanism for a network application server. A receiver receives a request from a user equipment to provide authentication information to a network application function. A determining unit determines a key of a generic authentication architecture to integrate additional network application servers by extending an existing standard for user security settings. A providing unit provides the authentication information to the network application function.

    摘要翻译: 一种方法和装置为网络应用服务器提供通用机制。 接收器从用户设备接收请求以向网络应用功能提供认证信息。 确定单元通过扩展用于用户安全设置的现有标准来确定通用认证架构的密钥以集成附加网络应用服务器。 提供单元向网络应用功能提供认证信息。

    Authentication using GAA functionality for unidirectional network connections
    35.
    发明授权
    Authentication using GAA functionality for unidirectional network connections 有权
    使用GAA功能进行身份验证,用于单向网络连接

    公开(公告)号:US08726023B2

    公开(公告)日:2014-05-13

    申请号:US11108848

    申请日:2005-04-19

    申请人: Pekka Laitinen

    发明人: Pekka Laitinen

    摘要: Methods, a client entity, network entities, a system, and a computer program product perform authentication between a client entity and a network. The network includes at least a bootstrapping server function entity and a network application function entity. The client entity is not able to communicate with both of the network entities in a bidirectional manner. The 3GPP standard Ub reference point between the client entity and the bootstrapping server function entity is not utilized for authentication purposes, such as authentication using GAA functionality for unidirectional network connections.

    摘要翻译: 方法,客户实体,网络实体,系统和计算机程序产品在客户端实体和网络之间执行认证。 该网络至少包括自举服务器功能实体和网络应用功能实体。 客户机实体不能以双向方式与两个网络实体进行通信。 客户实体和引导服务器功能实体之间的3GPP标准Ub参考点不用于认证目的,例如使用GAA功能进行单向网络连接的认证。

    Method and apparatus for using generic authentication architecture procedures in personal computers
    37.
    发明授权
    Method and apparatus for using generic authentication architecture procedures in personal computers 有权
    在个人计算机中使用通用认证体系结构程序的方法和装置

    公开(公告)号:US08543814B2

    公开(公告)日:2013-09-24

    申请号:US11328155

    申请日:2006-01-10

    IPC分类号: H04L29/06

    摘要: A method and apparatus for authenticating to a third party service provider from a personal computer. The method includes authenticating, with a mobile terminal, to the service provider with a universal subscriber identity module associated with the mobile terminal to obtain credentials specific to the service provider, transferring the credentials specific to the service provider from the mobile terminal to the personal computer, and accessing the service provider with the personal computer using the credentials transferred from the mobile terminal. The apparatus includes a mobile terminal, a computing device, a bootstrapping security module, and a network application function that cooperatively work to allow the computing device to access the network application function using a security credential from the mobile terminal.

    摘要翻译: 一种用于从个人计算机向第三方服务提供商认证的方法和装置。 该方法包括使用与移动终端相关联的通用用户识别模块向移动终端验证服务提供商以获得特定于服务提供商的凭证,将特定于服务提供商的凭证从移动终端传送到个人计算机 ,以及使用从移动终端传送的凭证与个人计算机访问服务提供商。 该装置包括移动终端,计算设备,自举安全模块和协作地工作以允许计算设备使用来自移动终端的安全凭证来访问网络应用功能的网络应用功能。

    Authenticating an application
    38.
    发明授权
    Authenticating an application 有权
    验证应用程序

    公开(公告)号:US08522025B2

    公开(公告)日:2013-08-27

    申请号:US11582380

    申请日:2006-10-18

    IPC分类号: H04L9/32

    摘要: One aspect of the invention discloses a method of authenticating an application. The method comprising performing, with a server application, bootstrapping procedures between the server application and a bootstrapping server function; deriving a shared key based on at least a key received from the bootstrapping server function server during the bootstrapping procedures and a network application function identifier; providing an application with a bootstrapping transaction identifier, the bootstrapping transaction identifier being received from the bootstrapping server function server during the bootstrapping procedures; receiving a response from the application; and authenticating the application by validating the response with the shared key.

    摘要翻译: 本发明的一个方面公开了一种认证应用的方法。 该方法包括与服务器应用程序一起执行服务器应用程序和自举服务器功能之间的引导过程; 在所述引导过程期间至少基于从所述引导服务器功能服务器接收的密钥和网络应用功能标识符导出共享密钥; 向应用程序提供引导事务标识符,在引导过程期间从引导服务器功能服务器接收引导事务标识符; 从应用程序接收响应; 并通过使用共享密钥验证响应来认证应用程序。

    Method for verifying a first identity and a second identity of an entity
    39.
    发明授权
    Method for verifying a first identity and a second identity of an entity 有权
    用于验证实体的第一身份和第二身份的方法

    公开(公告)号:US08107623B2

    公开(公告)日:2012-01-31

    申请号:US10871701

    申请日:2004-06-21

    申请人: Pekka Laitinen

    发明人: Pekka Laitinen

    IPC分类号: H04L9/00 H04L9/30 H04K1/00

    摘要: A method for verifying a first identity and a second identity of an entity, said method comprising: receiving first identity information at a checking entity; sending second identity information from the entity to said checking entity; verifying that the first and second identities both belong to said entity; and generating a key using one of said first and second identity information.

    摘要翻译: 一种用于验证实体的第一身份和第二身份的方法,所述方法包括:在检查实体处接收第一身份信息; 从所述实体向所述检查实体发送第二身份信息; 验证第一和第二身份都属于所述实体; 以及使用所述第一和第二身份信息之一来生成密钥。

    GENERIC KEY-DECISION MECHANISM FOR GAA
    40.
    发明申请
    GENERIC KEY-DECISION MECHANISM FOR GAA 有权
    GAA的一般关键决策机制

    公开(公告)号:US20120011574A1

    公开(公告)日:2012-01-12

    申请号:US13239246

    申请日:2011-09-21

    IPC分类号: G06F7/04 G06F15/16

    CPC分类号: H04L63/062 H04W12/04

    摘要: A method and apparatus provide generic mechanism for a network application server. A receiver receives a request from a user equipment to provide authentication information to a network application function. A determining unit determines a key of a generic authentication architecture to integrate additional network application servers by extending an existing standard for user security settings. A providing unit provides the authentication information to the network application function.

    摘要翻译: 一种方法和装置为网络应用服务器提供通用机制。 接收器从用户设备接收请求以向网络应用功能提供认证信息。 确定单元通过扩展用于用户安全设置的现有标准来确定通用认证架构的密钥以集成附加网络应用服务器。 提供单元向网络应用功能提供认证信息。