-
公开(公告)号:US20240179004A1
公开(公告)日:2024-05-30
申请号:US18430879
申请日:2024-02-02
Applicant: HUAWEI TECHNOLOGIES CO., LTD.
Inventor: Yong WANG , Jing CHEN , Huazhang LIU
CPC classification number: H04L9/3226 , H04L9/0825 , H04L9/0863 , H04L9/0869
Abstract: This application provides information processing methods, apparatuses, and devices. One method includes: obtaining a first password and a first random number, generating a first acknowledgment code of a first node based on the first password and the first random number, and sending the first acknowledgment code and the first random number to a second node. The foregoing method facilitates password authentication and improves authentication efficiency.
-
公开(公告)号:US20220311625A1
公开(公告)日:2022-09-29
申请号:US17841369
申请日:2022-06-15
Applicant: HUAWEI TECHNOLOGIES CO., LTD.
Abstract: An example terminal device includes at least one processor and at least one memory coupled to the at least one processor and storing programming instructions for execution by the at least one processor to send a certificate application parameter to an interface adaptation function entity; and receive a certificate from the interface adaptation function entity, wherein the certificate is configured by a target certificate management function entity for the terminal device.
-
公开(公告)号:US20210194920A1
公开(公告)日:2021-06-24
申请号:US17138498
申请日:2020-12-30
Applicant: HUAWEI TECHNOLOGIES CO., LTD.
IPC: H04L29/06 , H04W12/08 , H04W12/106 , H04W12/125 , H04L9/32 , H04W8/24 , H04W12/04 , H04W12/06
Abstract: The present disclosure relates to mobile communications technologies, and in particular, to a mobile communication method, apparatus, and device. The method includes: receiving, by user equipment UE, a non-access stratum NAS security mode command message from a mobility management entity MME, where the NAS security mode command message carries first verification matching information used to verify UE capability information received by the MME; determining, by the UE based on the first verification matching information, whether the UE capability information received by the MME is consistent with UE capability information sent by the UE to the MME; and if the UE capability information received by the MME is consistent with the UE capability information sent by the UE to the MME, sending, by the UE, a NAS security mode complete message to the MME.
-
公开(公告)号:US20210136070A1
公开(公告)日:2021-05-06
申请号:US17148234
申请日:2021-01-13
Applicant: HUAWEI TECHNOLOGIES CO., LTD.
Inventor: Li HU , Weisheng JIN , Jing CHEN , He LI
Abstract: Example subscription information configuration methods and a communications device are described. One example method includes receiving a first device identifier by a network device from a first terminal device in a first access mode and receiving a second device identifier from a second terminal device in a second access mode. The network device determines whether the first device identifier matches the second device identifier to identify legality of the first terminal device. If the first device identifier matches the second device identifier, it indicates that the first terminal device is a legal terminal device. The network device sends subscription information of the first terminal device to the first terminal device in the first access mode, so that the first terminal device successfully accesses a network by using the subscription information.
-
公开(公告)号:US20210099923A1
公开(公告)日:2021-04-01
申请号:US17119633
申请日:2020-12-11
Applicant: Huawei Technologies Co., Ltd.
Inventor: Xiaoying XU , Jing CHEN
Abstract: A solution for security negotiation during handover of a user equipment (UE) between different radio access technologies is provided. In the solution, the UE receives non-access stratum (NAS) security information and access stratum (AS) security information which are selected by the target system and then performs security negotiation with the target system according to the received NAS security information and AS security information. As such, the UE may obtain the key parameter information of the NAS and AS selected by a Long Term Evolution (LTE) system and perform security negotiation with the LTE system when the UE hands over from a different system, such as a Universal Terrestrial Radio Access Network (UTRAN), to the LTE system.
-
公开(公告)号:US20210076214A1
公开(公告)日:2021-03-11
申请号:US17030926
申请日:2020-09-24
Applicant: HUAWEI TECHNOLOGIES CO., LTD.
Inventor: Dongmei ZHANG , Jing CHEN
Abstract: Embodiments of the present invention disclose a method, an apparatus, and a system for establishing a security context and relates to the communications field, so as to comprehensively protect UE data. The method includes: acquiring an encryption algorithm of an access node; acquiring a root key and deriving, according to the root key and the encryption algorithm, an encryption key of the access node; sending the encryption key and the encryption algorithm to the access node, so that the access node starts downlink encryption and uplink decryption; sending the encryption algorithm of the access node to the UE so as to negotiate the encryption algorithm with the UE; and instructing the access node to start downlink encryption and uplink decryption and instructing, during algorithm negotiation, the UE to start downlink decryption and uplink encryption.
-
公开(公告)号:US20200228975A1
公开(公告)日:2020-07-16
申请号:US16834858
申请日:2020-03-30
Applicant: HUAWEI TECHNOLOGIES CO., LTD.
Inventor: He LI , Yizhuang WU , Jing CHEN
Abstract: A communication method includes receiving, by an access network (AN) node, indication information from a mobility management device. The indication information is indicative of a security policy of a quality of service (QoS) flow. The method also includes obtaining, by the access network node based on the indication information, security information of a radio bearer corresponding to the QoS flow. The security information is indicative of a security policy of the radio bearer. The method further includes sending, by the access network node, an identifier of the radio bearer and the security information of the radio bearer to a terminal.
-
公开(公告)号:US20190320320A1
公开(公告)日:2019-10-17
申请号:US16453833
申请日:2019-06-26
Applicant: HUAWEI TECHNOLOGIES CO., LTD.
Abstract: A method and device for verifying a key requester are described. The method may include a security function entity receiving a request message sent by a user management function (UMF) entity. The method may also include decrypting information in the request message by using a private key of the security function entity, and obtaining the information carried in the request message after signature verification on decrypted information using a public key in a certificate of the UMF entity succeeds. Furthermore, the method may include determining to provide a key of a user equipment (UE) for the UMF entity, when determining that a first verification parameter carried in the request message is valid and determining that an identifier which is of the UMF entity and which is carried in the request message is the same as an identifier of a UMF entity to which the UE attaches.
-
公开(公告)号:US20180167807A1
公开(公告)日:2018-06-14
申请号:US15892488
申请日:2018-02-09
Applicant: HUAWEI TECHNOLOGIES CO., LTD.
Inventor: Jiangwei YING , Lijia ZHANG , Jing CHEN
CPC classification number: H04W12/02 , G09C1/00 , H04L9/0838 , H04L9/14 , H04L63/06 , H04L2209/80 , H04W12/04 , H04W12/06 , H04W12/10
Abstract: The present application discloses, among others, a message protection method performed by user equipment (UE). In one method an authentication and key agreement request message sent by an SGSN is received using a GMM/SM protocol layer of the UE. A first algorithm identifier on the GMM/SM protocol layer of the UE is obtained according to the authentication and key agreement request message, and a first key is generated. A first message authentication code on the GMM/SM protocol layer is verified according to the first key and a first algorithm. If the UE determines that the verification of the first message authentication code succeeds, an authentication and key agreement response message is generated on the GMM/SM protocol layer of the UE according to the first key and the first algorithm. The authentication and key agreement response message is sent to the SGSN by using the GMM/SM protocol layer of the UE.
-
公开(公告)号:US20170250803A1
公开(公告)日:2017-08-31
申请号:US15594975
申请日:2017-05-15
Applicant: HUAWEI TECHNOLOGIES CO., LTD.
Inventor: Dongmei ZHANG , Jing CHEN
CPC classification number: H04L9/0816 , H04L9/083 , H04L9/0861 , H04L63/06 , H04L63/205 , H04L2209/24 , H04L2463/061 , H04W12/02 , H04W12/04 , H04W12/06 , H04W12/08 , H04W36/0038
Abstract: Embodiment of the present invention discloses a method, an apparatus, and a system for establishing a security context and relates to the communications field, so as to comprehensively protect UE data. The method includes: acquiring an encryption algorithm of an access node; acquiring a root key and deriving, according to the root key and the encryption algorithm, an encryption key of the access node; sending the encryption key and the encryption algorithm to the access node, so that the access node starts downlink encryption and uplink decryption; sending the encryption algorithm of the access node to the UE so as to negotiate the encryption algorithm with the UE; and instructing the access node to start downlink encryption and uplink decryption and instructing, during algorithm negotiation, the UE to start downlink decryption and uplink encryption. The present invention mainly applies to SCC security protection.
-
-
-
-
-
-
-
-
-