Method and apparatus for providing bootstrapping procedures in a communication network
    1.
    发明申请
    Method and apparatus for providing bootstrapping procedures in a communication network 有权
    在通信网络中提供自举程序的方法和装置

    公开(公告)号:US20060182280A1

    公开(公告)日:2006-08-17

    申请号:US11352058

    申请日:2006-02-10

    IPC分类号: H04K1/00

    摘要: An approach is provided for performing authentication in a communication system. In one embodiment, a key is established with a terminal in a communication network according to a key agreement protocol. The agreed key is tied to an authentication procedure to provide a security association that supports reuse of the key. A master key is generated based on the agreed key. In another embodiment, digest authentication is combined with key exchange parameters (e.g., Diffie-Hellman parameters) in the payload of the digest message, in which a key (e.g., SMEKEY or MN-AAA) is utilized as a password. In yet another embodiment, an authentication algorithm (e.g., Cellular Authentication and Voice Encryption (CAVE)) is employed with a key agreement protocol with conversion functions to support bootstrapping.

    摘要翻译: 提供了一种用于在通信系统中执行认证的方法。 在一个实施例中,根据密钥协议协议在通信网络中与终端建立密钥。 约定的密钥与认证过程相关联,以提供支持密钥重用的安全关联。 基于约定的密钥生成主密钥。 在另一个实施例中,摘要认证与摘要消息的有效载荷中的密钥交换参数(例如,Diffie-Hellman参数)组合,其中密钥(例如,SMEKEY或MN-AAA)被用作密码。 在另一个实施例中,使用具有转换功能的密钥协商协议的认证算法(例如,蜂窝认证和语音加密(CAVE))来支持自举。