Method, system, and apparatus for determining user plane security algorithm

    公开(公告)号:US12273706B2

    公开(公告)日:2025-04-08

    申请号:US18164697

    申请日:2023-02-06

    Abstract: A method for determining a user plane security algorithm, a system, and an apparatus. The method may include: a second device selects a non-null user plane confidentiality protection algorithm based on a security capability of a first device and a security capability of the second device in a case in which user plane confidentiality protection between the second device and the first device is enabled and control plane confidentiality protection between the second device and the first device is not enabled. The second device sends a first message to the first device. The first message includes first algorithm indication information indicating the user plane confidentiality protection algorithm. Therefore, the first device can obtain the non-null user plane confidentiality protection algorithm. Embodiments can be adopted to determine an effective user plane confidentiality protection algorithm, for confidentiality protecting user plane data.

    Key management method, device, and system

    公开(公告)号:US12273445B2

    公开(公告)日:2025-04-08

    申请号:US18050977

    申请日:2022-10-28

    Abstract: This application provides a key management method, a device, and a system. The method includes: A terminal device sends a first application session establishment request message to a first application function network element, where the establishment request message carries identification information of a first key, and the first key is an authentication and key management for applications AKMA key. The terminal device receives a first authentication request message in a procedure of the re-authentication. The terminal device sends a response message for the first authentication request message in the procedure of the re-authentication. The terminal device receives a response message for the establishment request message. The terminal device derives a communication key between the terminal device and the first application function network element by using the first key.

    AUTHENTICATION METHOD, COMMUNICATION APPARATUS, AND COMPUTER-READABLE STORAGE MEDIUM

    公开(公告)号:US20250063357A1

    公开(公告)日:2025-02-20

    申请号:US18938104

    申请日:2024-11-05

    Inventor: He Li Rong Wu

    Abstract: An authentication method, a communication apparatus, and a storage medium are provided. The method includes: a first function network element in a home network determines whether a terminal needs to be authenticated; the first function network element obtains an authentication material when the terminal needs to be authenticated; the first function network element obtains a first authentication vector based on the authentication material; and the first function network element sends a first authentication request message to an AMF to trigger authentication on the terminal, wherein the first authentication request message includes the first authentication vector. According to this application, the first function network element in the home network determines to trigger authentication on the terminal.

    Communication method and apparatus
    55.
    发明授权

    公开(公告)号:US12231900B2

    公开(公告)日:2025-02-18

    申请号:US17675784

    申请日:2022-02-18

    Inventor: Longhua Guo He Li

    Abstract: Embodiments of this application provide example communication methods and apparatuses. One example communication method is applied to a communications device, where a subscriber identification module (SIM) card is installed in the communications device, and where the example communication method includes determining, by the communications device, that the SIM card is removed. The communications device can then send alarm information to a network device, where the alarm information indicates that the SIM card in the communications device is removed, and where security protection is performed on the alarm information based on security context stored in the communications device. The communications device can then delete the security context.

    Information sending method, key generation method, and apparatus

    公开(公告)号:US12225119B2

    公开(公告)日:2025-02-11

    申请号:US17011698

    申请日:2020-09-03

    Inventor: He Li Jing Chen

    Abstract: An information sending method, a key generation method, and an apparatus, where a core network element first determines whether a terminal device needs to perform a key activation procedure, and then sends a first message to an access network element, where the first message indicates whether the access network element needs to send, to the terminal device, a second message to trigger the terminal device to perform the key activation procedure. After receiving the first message, the access network element determines, based on the first message, whether the second message needs to be sent to the terminal device, and sends the second message to the terminal device when the second message needs to be sent to the terminal device.

    User Plane Security Enforcement Information Determining Method, Apparatus, and System

    公开(公告)号:US20230090543A1

    公开(公告)日:2023-03-23

    申请号:US18071314

    申请日:2022-11-29

    Inventor: Yizhuang Wu He Li Li Hu

    Abstract: A user plane security enforcement information determining method and an apparatus are provided, to ensure a security requirement of transmitted data of a remote device. In this application, a session management network element may receive a first request for creating a relay-type session of a first terminal device. Then, the session management network element determines first user plane security enforcement information of the session based on first information, and sends the first user plane security enforcement information of the session to an access network device, where the first user plane security enforcement information of the session is for determining a first user plane security activation status of the session between the first terminal device and the access network device.

    KEY MANAGEMENT METHOD, DEVICE, AND SYSTEM

    公开(公告)号:US20230086032A1

    公开(公告)日:2023-03-23

    申请号:US18050977

    申请日:2022-10-28

    Abstract: This application provides a key management method, a device, and a system. The method includes: A terminal device sends a first application session establishment request message to a first application function network element, where the establishment request message carries identification information of a first key, and the first key is an authentication and key management for applications AKMA key. The terminal device receives a first authentication request message in a procedure of the re-authentication. The terminal device sends a response message for the first authentication request message in the procedure of the re-authentication. The terminal device receives a response message for the establishment request message. The terminal device derives a communication key between the terminal device and the first application function network element by using the first key.

Patent Agency Ranking