-
公开(公告)号:US20230031581A1
公开(公告)日:2023-02-02
申请号:US17958923
申请日:2022-10-03
Applicant: QUALCOMM Incorporated
Inventor: Soo Bum Lee , Anand Palanigounder , Adrian Edward Escott
IPC: H04W12/0433 , H04W12/069
Abstract: Techniques are described for wireless communication. A method for wireless communication at a user equipment (UE) includes performing an extensible authentication protocol (EAP) procedure with an authentication server via an authenticator. The EAP procedure is based at least in part on a set of authentication credentials exchanged between the UE and the authentication server. The method also includes deriving, as part of performing the EAP procedure, a master session key (MSK) and an extended master session key (EMSK) that are based at least in part on the authentication credentials and a first set of parameters; determining a network type associated with the authenticator; and performing, based at least in part on the determined network type, at least one authentication procedure with the authenticator. The at least one authentication procedure is based on an association of the MSK or the EMSK with the determined network type.
-
公开(公告)号:US11463871B2
公开(公告)日:2022-10-04
申请号:US16586464
申请日:2019-09-27
Applicant: QUALCOMM Incorporated
Inventor: Soo Bum Lee , Anand Palanigounder , Adrian Edward Escott
Abstract: Techniques are described for wireless communication. A method for wireless communication at a user equipment (UE) includes performing an extensible authentication protocol (EAP) procedure with an authentication server via an authenticator. The EAP procedure is based at least in part on a set of authentication credentials exchanged between the UE and the authentication server. The method also includes deriving, as part of performing the EAP procedure, a master session key (MSK) and an extended master session key (EMSK) that are based at least in part on the authentication credentials and a first set of parameters; determining a network type associated with the authenticator; and performing, based at least in part on the determined network type, at least one authentication procedure with the authenticator. The at least one authentication procedure is based on an association of the MSK or the EMSK with the determined network type.
-
公开(公告)号:US11350272B2
公开(公告)日:2022-05-31
申请号:US16669372
申请日:2019-10-30
Applicant: QUALCOMM Incorporated
Inventor: Soo Bum Lee , Adrian Edward Escott , Gavin Bernard Horn , Anand Palanigounder
IPC: H04W12/037 , H04W60/00 , H04L9/08
Abstract: Methods, systems, and devices for wireless communications are described. A user equipment (UE) may participate in a registration procedure with an access and mobility management function (AMF). The UE may transmit to the AMF, as part of the registration procedure, an indication of one or more single network slice selection assistance information (S-NSSAI) or a network slice selection assistance information (NSSAI). Following, the UE may receive a control message from the AMF, wherein the control message includes one or more encrypted S-NSSAI values or an encrypted NSSAI value based on the indication. The UE may then transmit the encrypted S-NSSAI or the encrypted NSSAI to a base station as part of a message.
-
公开(公告)号:US11172357B2
公开(公告)日:2021-11-09
申请号:US16031923
申请日:2018-07-10
Applicant: QUALCOMM Incorporated
Inventor: Soo Bum Lee , Gavin Bernard Horn , Anand Palanigounder , Adrian Edward Escott , Stefano Faccin
IPC: H04W12/04 , H04W12/00 , H04W12/033 , H04W40/02 , H04W12/02 , H04W12/037 , H04W12/041 , H04W12/0431 , H04W68/00 , H04L29/06 , H04W4/70
Abstract: In an aspect, a network may support a number of client devices. In such a network, a client device transmits a request to communicate with a network, establishes a security context, and receives one or more encrypted client device contexts from the network. An encrypted client device context enables reconstruction of a context at the network for communication with the client device, where the context includes network state information associated with the client device. The client device transmits a message (e.g., including an uplink data packet) to the network that includes at least one encrypted client device context. Since the network device can reconstruct the context for the client device based on an encrypted client device context, the network device can reduce an amount of the context maintained at the network device in order to support a greater number of client devices.
-
公开(公告)号:US20210345104A1
公开(公告)日:2021-11-04
申请号:US17244434
申请日:2021-04-29
Applicant: QUALCOMM Incorporated
Inventor: Hong Cheng , Karthika Paladugu , Adrian Edward Escott , Soo Bum Lee , Gavin Bernard Horn
IPC: H04W12/0433 , H04W12/037 , H04W12/041 , H04W12/72
Abstract: Methods, systems, and devices for wireless communications are described that enable establishment of secure communications and security keys for a remote user equipment (UE) and a relay UE to perform relayed sidelink communications in which the remote UE communicates with a network via the relay UE. To establish secure communications for the direct communications between the relay UE and the remote UE, one or more security keys may be established encryption and decryption of communications. To establish the security keys, the relay UE may forward a request for direct communications to a key management function (e.g., a ProSe key management function (PKMF)) in a control plane of a core network (e.g., in a control plane message to the PKMF via an access and mobility function (AMF)). The PKMF may derive relay keys and return information related to the relay keys to the relay UE the remote UE.
-
公开(公告)号:US20210105837A1
公开(公告)日:2021-04-08
申请号:US16948506
申请日:2020-09-21
Applicant: QUALCOMM INCORPORATED
Inventor: Soo Bum Lee , Adrian Edward Escott , Mahmoud Watfa , Anand Palanigounder , Luis Fernando Brisson Lopes
Abstract: Wireless communications systems and methods related to globally unique temporary identity (GUTI) reallocation for cellular-Internet of thing (CIoT) are provided. A user equipment (UE) receives, from a network, a paging associated with a mobile-terminated early data transmission (MT-EDT). The UE transmits, by the UE to the network, a data request in response to the paging. The UE receives, from the network in response to the data request, a message including a global unique temporary identifier (GUTI) and at least one of data associated with the paging or a connection release indication.
-
公开(公告)号:US10728756B2
公开(公告)日:2020-07-28
申请号:US15710991
申请日:2017-09-21
Applicant: QUALCOMM Incorporated
Inventor: Soo Bum Lee , Keiichi Kubota , Adrian Edward Escott , Gavin Bernard Horn , Anand Palanigounder
IPC: H04W12/04 , H04L29/06 , H04W12/00 , H04W36/00 , H04W48/16 , H04W24/02 , H04W48/18 , H04L9/08 , H04W12/06
Abstract: Certain aspects of the present disclosure provide techniques for managing security keys for enciphering and deciphering packets transmitted in a wireless communications system. According to certain aspects, a method of wireless communication by a user equipment (UE) is provided. The method generally includes obtaining an indication of a key area identifier (ID) of a first cell node, wherein the key area ID identifies a set of cell nodes that are associated with a network node that uses a first key for enciphering or deciphering messages and communicating a first set of messages with the first cell node using the first key for enciphering or deciphering the first set of messages.
-
公开(公告)号:US20200236554A1
公开(公告)日:2020-07-23
申请号:US16743927
申请日:2020-01-15
Applicant: QUALCOMM Incorporated
Inventor: Soo Bum Lee , Ozcan Ozturk , Gavin Bernard Horn , Adrian Edward Escott , Anand Palanigounder
Abstract: Methods, systems, and devices for wireless communications are described. In some systems, devices may use information protection to detect fake base stations. A base station verified by a network may transmit first information to a user equipment (UE) in an unprotected message. If a fake base station intercepts and modifies the message before relaying the message to the UE, the UE may receive different information than the transmitted first information. The UE may then transmit an indication of the received information to the verified base station in a protected message. In some cases, based on the indication, the verified base station may re-transmit the first information to the UE in a message protected against modification by the fake base station. If the UE determines that the initially received information is different from the information received in the protected retransmission, the UE identifies message modification by the fake base station.
-
公开(公告)号:US10708773B2
公开(公告)日:2020-07-07
申请号:US16366335
申请日:2019-03-27
Applicant: QUALCOMM Incorporated
Inventor: Soo Bum Lee , Adrian Edward Escott , Lenaig Genevieve Chaponniere
IPC: H04W12/04 , H04L9/08 , H04L29/06 , H04W76/25 , H04W8/26 , H04W12/06 , H04W12/10 , H04W60/04 , H04W12/00
Abstract: Methods, systems, and devices for wireless communication are described. A user equipment (UE) may determine that a security context with a network node has been established for more than a threshold time period. The UE may identify, based on a key hierarchy, a parent network node associated with the network node. The UE may transmit a key refresh request message to the parent network node to trigger a key refresh procedure between the parent network node and the network node. The UE may perform a procedure with the network node to establish a new security context based on the key refresh procedure.
-
60.
公开(公告)号:US20200015310A1
公开(公告)日:2020-01-09
申请号:US16575200
申请日:2019-09-18
Applicant: QUALCOMM Incorporated
Inventor: Adrian Edward Escott , Mungal Singh Dhanda , Anand Palanigounder , Soo Bum Lee
Abstract: One feature pertains to a method that includes establishing a radio communication connection with a first radio access node (RAN) that uses control plane signaling connections to carry user plane data. The method also includes determining that the wireless communication device is experiencing radio link failure (RLF) with the first RAN and that the radio communication connection should be reestablished with a second RAN. A reestablishment request message is transmitted to the second RAN that includes parameters that enable a core network node communicatively coupled to the second RAN to authenticate the wireless communication device and allow or reject reestablishment of the radio communication connection. The parameters include at least a message authentication code (MAC) based in part on one or more bits of a non-access stratum (NAS) COUNT value maintained at the wireless communication device.
-
-
-
-
-
-
-
-
-