System and Method for Providing Secure Mobility and Internet Protocol Security Related Services to a Mobile Node Roaming in a Foreign Network
    61.
    发明申请
    System and Method for Providing Secure Mobility and Internet Protocol Security Related Services to a Mobile Node Roaming in a Foreign Network 有权
    为外部网络中的移动节点漫游提供安全移动性和互联网协议安全相关服务的系统和方法

    公开(公告)号:US20080219224A1

    公开(公告)日:2008-09-11

    申请号:US11794436

    申请日:2005-12-27

    IPC分类号: H04Q7/24

    摘要: A method for connection roaming a Mobile Node (MN) to a Network GateWay (NGW) for providing secure data path using Internet Protocol (IP) security procedure. Also Mobile IP (MIP) is required for providing mobility to the user, when the MN moves from one sub-network to another. However, when the Home Address of the network is not known, a cyclic interdependency is observed between the IP Security (Ipsec) procedures and MIP procedures. If the home address of the MN is not known initially during the procedure, IPsec Security Associations (SA's) are formed between the MN and NGW such that only MIP packets are passed through. After the MIP Registration is completed, the Home Address of the MN is known from the MIP registration Reply. MN now forms a data path tunnel with the NGW by exchanging Create_Child_SA messages.

    摘要翻译: 一种用于将移动节点(MN)漫游到使用因特网协议(IP)安全过程提供安全数据路径的网络网关(NGW)的方法。 当MN从一个子网移动到另一个子网时,还需要移动IP(MIP)来为用户提供移动性。 然而,当网络的归属地址不知道时,在IP安全(Ipsec)过程和MIP过程之间观察到循环相互依赖。 如果最初在该过程中最初没有知道MN的归属地址,则在MN和NGW之间形成IPsec安全关联(SA),使得仅传递MIP分组。 在MIP注册完成后,MN的归属地址从MIP注册回复中已知。 MN现在通过交换Create_Child_SA消息与NGW形成数据路径隧道。

    System and method for providing secure mobility and internet protocol security related services to a mobile node roaming in a foreign network
    62.
    发明授权
    System and method for providing secure mobility and internet protocol security related services to a mobile node roaming in a foreign network 有权
    用于向外部网络漫游的移动节点提供安全移动性和互联网协议安全相关服务的系统和方法

    公开(公告)号:US08031672B2

    公开(公告)日:2011-10-04

    申请号:US11794436

    申请日:2005-12-27

    IPC分类号: H04W4/00

    摘要: A method for connection roaming a Mobile Node (MN) to a Network GateWay (NGW) for providing secure data path using Internet Protocol (IP) security procedure. Also Mobile IP (MIP) is required for providing mobility to the user, when the MN moves from one sub-network to another. However, when the Home Address of the network is not known, a cyclic interdependency is observed between the IP Security (Ipsec) procedures and IP procedures. If the home address of the MN is not known initially during the procedure, IPsec Security Associations (SA's) are formed between the MN and NGW such that only IP packets are passed through. After the IP Registration is completed, the Home Address of the MN is known from the MIP registration Reply. MN now forms a data path tunnel with the NGW by exchanging Create_Child_SA messages.

    摘要翻译: 一种用于将移动节点(MN)漫游到使用因特网协议(IP)安全过程提供安全数据路径的网络网关(NGW)的方法。 当MN从一个子网移动到另一个子网时,还需要移动IP(MIP)来为用户提供移动性。 然而,当网络的归属地址不知道时,在IP安全(Ipsec)过程和IP过程之间观察到循环相互依赖。 如果最初在该过程中最初没有知道MN的归属地址,则在MN和NGW之间形成IPsec安全关联(SA),使得只有IP分组被通过。 IP注册完成后,MN的归属地址从MIP注册回复中知道。 MN现在通过交换Create_Child_SA消息与NGW形成数据路径隧道。

    System and method for optimizing authentication procedure during inter access system handovers
    64.
    发明申请
    System and method for optimizing authentication procedure during inter access system handovers 有权
    在互访系统切换期间优化认证过程的系统和方法

    公开(公告)号:US20070249352A1

    公开(公告)日:2007-10-25

    申请号:US11732202

    申请日:2007-04-02

    IPC分类号: H04Q7/20

    摘要: Disclosed is a method and system of deriving new keys for accessing a new system. The method enables an optimized authentication procedure during handover form an existing system to a new system by using the existing system access keys. The user equipment that is accessing the new system receives a temporary ID during handover preparation which enables the user equipment to perform a fast re-authentication. The method uses existing system access keys to derive system access keys for the new network.

    摘要翻译: 公开了一种导出用于访问新系统的新密钥的方法和系统。 该方法通过使用现有的系统访问密钥使得在切换期间的优化认证过程成为现有系统到新系统。 正在接入新系统的用户设备在切换准备期间接收临时ID,使得用户设备能够进行快速重新认证。 该方法使用现有的系统访问密钥来导出新网络的系统访问密钥。