-
公开(公告)号:US11496891B2
公开(公告)日:2022-11-08
申请号:US16287308
申请日:2019-02-27
Applicant: QUALCOMM Incorporated
Inventor: Soo Bum Lee , Anand Palanigounder , Adrian Edward Escott , Gavin Bernard Horn
IPC: H04W12/02 , H04W8/04 , H04W8/18 , H04W12/033 , H04W12/72 , H04L101/654 , H04W12/04 , H04W12/06
Abstract: Systems and techniques are disclosed to protect a user equipment's international mobile subscriber identity by providing a privacy mobile subscriber identity instead. In an attach attempt to a serving network, the UE provides the PMSI instead of IMSI, protecting the IMSI from exposure. The PMSI is determined between a home network server and the UE so that intermediate node elements in the serving network do not have knowledge of the relationship between the PMSI and the IMSI. Upon receipt of the PMSI in the attach request, the server generates a next PMSI to be used in a subsequent attach request and sends the next PMSI to the UE for confirmation. The UE confirms the next PMSI to synchronize between the UE and server and sends an acknowledgment token to the server. The UE and the server then each update local copies of the current and next PMSI values.
-
公开(公告)号:US11470474B2
公开(公告)日:2022-10-11
申请号:US17014830
申请日:2020-09-08
Applicant: QUALCOMM Incorporated
Inventor: Anand Palanigounder , Lenaig Genevieve Chaponniere , Sebastian Speicher , Haris Zisimopoulos , Rajat Prakash
Abstract: Certain aspects provide a method for wireless communication. The method generally includes deriving a network specific identifier (NSI) in a network access identifier (NAI) format, the NSI including a network identifier (NID) stored at the UE, generating a subscription concealed identifier (SUCI) based on the NSI for authentication of the UE with a non-public network (NPN), and sending the SUCI to a network entity for the authentication of the UE with the NPN.
-
33.
公开(公告)号:US11457003B2
公开(公告)日:2022-09-27
申请号:US16826832
申请日:2020-03-23
Applicant: QUALCOMM INCORPORATED
Inventor: Soo Bum Lee , Gavin Bernard Horn , Anand Palanigounder
IPC: H04W12/04 , H04W12/06 , H04L9/40 , H04W88/04 , H04W40/22 , H04W52/46 , H04W12/10 , H04W12/03 , H04W12/047 , H04W12/106 , H04W12/0431 , H04W12/0433 , H04W12/0471 , H04W12/02 , H04W76/14
Abstract: Techniques are described for wireless communication. A method of wireless communication at a transmitting wireless device includes generating a first Message Authentication Code for a data packet based at least in part on a first security key used to communicate with a receiving wireless device; generating a second message authentication code for the data packet based at least in part on a second security key used to communicate with a relay user equipment (UE), in which the relay UE is included in a data routing path between the transmitting wireless device and the receiving wireless device; and transmitting the data packet to the relay UE with at least the first message authentication code and the second message authentication code.
-
公开(公告)号:US11172426B2
公开(公告)日:2021-11-09
申请号:US16592518
申请日:2019-10-03
Applicant: QUALCOMM Incorporated
IPC: H04W8/26 , H04W40/24 , H04W8/24 , H04L5/00 , H04W4/60 , H04W60/04 , H04W88/02 , H04W84/04 , H04W72/04
Abstract: Certain aspects of the present disclosure relate to methods and apparatus for updating a routing ID associated with a user equipment in a wireless network. An exemplary method generally includes receiving a downlink control plane message including updated configuration information for a Unified Data Management (UDM) entity in the network; determining whether a universal subscriber identification module (USIM) of the UE supports one or more parameters stored in the USIM to be updated; based on the determination, storing the received configuration information in at least one of: the USIM if the USIM supports the one or more parameters to be updated; or memory of the UE if the USIM does not support the one or more parameters to be updated; generating an identifier for the UE based on the stored updated configuration information; and transmitting at least one message using the generated identifier.
-
公开(公告)号:US11172360B2
公开(公告)日:2021-11-09
申请号:US15892067
申请日:2018-02-08
Applicant: QUALCOMM Incorporated
Inventor: Amer Catovic , Lenaig Genevieve Chaponniere , Anand Palanigounder
IPC: H04W12/06 , H04L29/06 , H04W8/20 , H04W12/02 , H04L9/06 , H04W12/106 , H04L9/32 , H04W8/02 , H04W84/04
Abstract: Protected configuration data may be sent to user equipment subscribed to a first wireless communication network by a second wireless communication network with which the user equipment is registered. The first wireless communication network may protect the configuration data based on at least one first key when sending the data to the second wireless communication network. The second wireless communication network may send the configuration data to user equipment in messages protected by at least one second key. User equipment receives the message from the second wireless communication network, extracts the configuration data using the at least one second key, determines whether the configuration data has been altered at least in part based on the at least one first key, and applies the configuration data if the configuration data has not been altered. The protected configuration data may be sent in an information element of a control plane message.
-
公开(公告)号:US11070981B2
公开(公告)日:2021-07-20
申请号:US16743927
申请日:2020-01-15
Applicant: QUALCOMM Incorporated
Inventor: Soo Bum Lee , Ozcan Ozturk , Gavin Bernard Horn , Adrian Edward Escott , Anand Palanigounder
Abstract: Methods, systems, and devices for wireless communications are described. In some systems, devices may use information protection to detect fake base stations. A base station verified by a network may transmit first information to a user equipment (UE) in an unprotected message. If a fake base station intercepts and modifies the message before relaying the message to the UE, the UE may receive different information than the transmitted first information. The UE may then transmit an indication of the received information to the verified base station in a protected message. In some cases, based on the indication, the verified base station may re-transmit the first information to the UE in a message protected against modification by the fake base station. If the UE determines that the initially received information is different from the information received in the protected retransmission, the UE identifies message modification by the fake base station.
-
37.
公开(公告)号:US20200344605A1
公开(公告)日:2020-10-29
申请号:US16856467
申请日:2020-04-23
Applicant: QUALCOMM Incorporated
Inventor: Soo Bum Lee , Adrian Edward Escott , Anand Palanigounder , Gavin Bernard Horn
Abstract: A user equipment (UE) may receive system information from a base station and may calculate a hash value using the system information as input to a hashing function. Similarly, prior to transmitting the system information, a valid base station may calculate a hash value using the system information as input to a hashing function. The base station may transmit the calculated hash value (e.g., which represent or be included in a set of hash values) to the UE in an access stratum (AS) security mode command (SMC) message. The UE may determine whether the received system information was modified based on the hash value (e.g., by comparing the UE calculated hash value and the set of hash values received from the base station in the AS SMC). If the UE indicates a mismatch of hash information, the base station may re-transmit the system information (e.g., in an integrity protected message).
-
公开(公告)号:US10588019B2
公开(公告)日:2020-03-10
申请号:US15345077
申请日:2016-11-07
Applicant: QUALCOMM Incorporated
Inventor: Soo Bum Lee , Lenaig Genevieve Chaponniere , Anand Palanigounder , Adrian Edward Escott , Gavin Bernard Horn
Abstract: Techniques are described for wireless communication. A wireless device may generate a secured query message based at least in part on a security credential of the wireless device. The secured query message may be generated prior to performing an authentication and key agreement (AKA) with a network. The wireless device may transmit the secured query message to the network, and receive a response to the secured query message. The wireless device may then determine whether or not to perform the AKA with the network based on the received response (e.g., the wireless device may determine whether or not the response is associated with the security credential of the wireless communication device and a network security credential of the network). The wireless device may establish a secure connection with the network or refrain from considering the response based on the determination.
-
39.
公开(公告)号:US20200037155A1
公开(公告)日:2020-01-30
申请号:US16591419
申请日:2019-10-02
Applicant: QUALCOMM Incorporated
Inventor: Soo Bum Lee , Adrian Edward Escott , Gavin Bernard Horn , Anand Palanigounder
Abstract: A device that identifies entry into a new service area, transmits a service area update request to a network device associated with a network, receives a control plane message from the network indicating control plane device relocation or a key refresh due to a service area change in response to transmitting the service area update request, and derives a first key based in part on data included in the control plane message and a second key shared between the device and a key management device. Another device that receives a handover command from a network device associated with a network, the handover command indicating a new service area, derives a first key based on data included in the handover command and on a second key shared between the device and a key management device, and sends a handover confirmation message that is secured based on the first key.
-
40.
公开(公告)号:US10462837B2
公开(公告)日:2019-10-29
申请号:US15443981
申请日:2017-02-27
Applicant: QUALCOMM Incorporated
Inventor: Adrian Edward Escott , Mungal Singh Dhanda , Anand Palanigounder , Soo Bum Lee
Abstract: One feature pertains to a method that includes establishing a radio communication connection with a first radio access node (RAN) that uses control plane signaling connections to carry user plane data. The method also includes determining that the wireless communication device is experiencing radio link failure (RLF) with the first RAN and that the radio communication connection should be reestablished with a second RAN. A reestablishment request message is transmitted to the second RAN that includes parameters that enable a core network node communicatively coupled to the second RAN to authenticate the wireless communication device and allow or reject reestablishment of the radio communication connection. The parameters include at least a message authentication code (MAC) based in part on one or more bits of a non-access stratum (NAS) COUNT value maintained at the wireless communication device.
-
-
-
-
-
-
-
-
-