-
公开(公告)号:US10827351B2
公开(公告)日:2020-11-03
申请号:US16239409
申请日:2019-01-03
Applicant: Huawei Technologies Co., Ltd.
Inventor: Xin Kang , Haiguang Wang , Yanjiang Yang
Abstract: Embodiments of the present disclosure disclose a network authentication method, a relay node, and a related system. The system includes user equipment, a relay node, and a cellular network authentication network element. The user equipment is configured to send a first authentication message to the relay node; the relay node is configured to receive first authentication messages, and generate first encrypted information by using an aggregation algorithm based on first encrypted identifiers in the first authentication; the cellular network authentication network element is configured to receive a first aggregation message, and when verifying, by using the first encrypted information, that information in the first aggregation message is correct, send a first response message to the relay node; and the user equipment is configured to generate a session key between the user equipment and the cellular network authentication network element when verifying that information in the first response message is correct.
-
公开(公告)号:US20190141524A1
公开(公告)日:2019-05-09
申请号:US16237902
申请日:2019-01-02
Applicant: Huawei Technologies Co., Ltd.
Inventor: Haiguang Wang , Fei Liu , Xin Kang
Abstract: A system for transmission data protection includes user equipment (UE) and an access point. The access point sends a broadcast message that carries a public key for encryption. The UE receives and stores the public key for encryption. The UE obtains a global public key or a private key corresponding to the UE, and protects transmission data using the public key for encryption and the global public key or the private key corresponding to the UE.
-
公开(公告)号:US11431479B2
公开(公告)日:2022-08-30
申请号:US16517645
申请日:2019-07-21
Applicant: HUAWEI TECHNOLOGIES CO., LTD.
Inventor: Zhongding Lei , Lichun Li , Bo Zhang , Fei Liu , Haiguang Wang , Xin Kang
Abstract: Embodiments of this application disclose a network key processing system, including user equipment, a security anchor network element, and an access and mobility management network element, where the security anchor network element is configured to: obtain a first key parameter from a slice selection network element, where the first key parameter includes identifier information of N network slices; generate N slice-dedicated keys based on the first key parameter; and send the N slice-dedicated keys to the corresponding N network slices respectively; the access and mobility management network element is configured to: obtain the first key parameter, and send the first key parameter to the user equipment; and the user equipment is configured to: generate the N slice-dedicated keys for the N network slices based on the first key parameter, and access the N network slices based on the generated N slice-dedicated keys.
-
公开(公告)号:US11272365B2
公开(公告)日:2022-03-08
申请号:US17090757
申请日:2020-11-05
Applicant: HUAWEI TECHNOLOGIES CO., LTD.
Inventor: Zhongding Lei , Haiguang Wang , Xin Kang
Abstract: This application discloses a network authentication method, and a related device and system. The method includes: receiving, by a network authentication network element, an access request sent by user equipment, where the access request includes identification information of the user equipment; verifying, by the network authentication network element, whether the identification information is valid, and if the identification information is valid, determining, based on the identification information, a slice authentication network element corresponding to the user equipment; and sending, by the network authentication network element, the identification information to the slice authentication network element corresponding to the user equipment, where the identification information is used by the slice authentication network element corresponding to the user equipment to generate authentication data for the user equipment and initiate a user authentication request to the user equipment by using the authentication data.
-
公开(公告)号:US11863977B2
公开(公告)日:2024-01-02
申请号:US17243011
申请日:2021-04-28
Applicant: HUAWEI TECHNOLOGIES CO., LTD.
Inventor: Zhongding Lei , Haiguang Wang , Xin Kang
IPC: H04W12/041 , H04W12/033
CPC classification number: H04W12/041 , H04W12/033
Abstract: A key generation method includes a user plane network function and a terminal device obtain key update information sent by each other. The user plane network function updates, by using the obtained key update information, a sub-key derived from a permanent key, to obtain a new protection key. The terminal device updates, by using the obtained key update information, a sub-key derived from the permanent key, to obtain a new protection key. The terminal device and the user plane network function perform, by using the new protection key, security protection on user plane data transmitted between the terminal device and the user plane network function.
-
公开(公告)号:US11212088B2
公开(公告)日:2021-12-28
申请号:US16564140
申请日:2019-09-09
Applicant: Huawei Technologies Co., Ltd.
Inventor: Xin Kang , Xuwu Zhang , Yanjiang Yang , Haiguang Wang , Zhongding Lei
IPC: H04L9/08
Abstract: Embodiments of this application provide a private key generation method and system, and a device. The method includes: receiving, by a terminal device, a first response message sent by a first network device, where the first response message includes at least a first sub-private key, and the first sub-private key is generated based on a first parameter set sent by a second network device; receiving, by the terminal device, a second response message sent by the second network device, where the second response message includes at least a second sub-private key, and the second sub-private key is generated based on a second parameter set sent by the first network device; and synthesizing, by the terminal device, a joint private key based on at least the first sub-private key and the second sub-private key.
-
公开(公告)号:US11122428B2
公开(公告)日:2021-09-14
申请号:US16237902
申请日:2019-01-02
Applicant: Huawei Technologies Co., Ltd.
Inventor: Haiguang Wang , Fei Liu , Xin Kang
IPC: H04W12/041 , H04L29/06 , H04L9/08 , H04L9/30 , H04W12/0433 , H04L29/08 , H04W8/04 , H04W12/02 , H04W12/06
Abstract: A system for transmission data protection includes user equipment (UE) and an access point. The access point sends a broadcast message that carries a public key for encryption. The UE receives and stores the public key for encryption. The UE obtains a global public key or a private key corresponding to the UE, and protects transmission data using the public key for encryption and the global public key or the private key corresponding to the UE.
-
8.
公开(公告)号:US11026084B2
公开(公告)日:2021-06-01
申请号:US16297231
申请日:2019-03-08
Applicant: Huawei Technologies Co., Ltd.
Inventor: Xin Kang , Haiguang Wang , Yanjiang Yang , Zhongding Lei
IPC: H04W12/0433 , H04L29/06 , H04W12/03 , H04W12/30 , H04W12/069 , H04W12/0431 , H04W80/02
Abstract: This application discloses a mobile network authentication method, a terminal device, a server, and a network authentication entity. The method includes: receiving, by a first terminal device, a DH public key and a first ID that are sent by at least one second terminal device; sending a first message to a server, where the first message includes a DH public key of each second terminal device of the at least one second terminal device and a first ID of the second terminal device; receiving a second message sent by the server, where the second message includes a DH public key of the server and a second ID of the second terminal device that is generated by the server; and sending, by the first terminal device, the second ID of the second terminal device and the DH public key of the server to the second terminal device.
-
公开(公告)号:US11871223B2
公开(公告)日:2024-01-09
申请号:US17498175
申请日:2021-10-11
Applicant: Huawei Technologies Co., Ltd.
Inventor: Zhongding Lei , Xin Kang , Haiguang Wang
Abstract: An authentication method, apparatus, and device. The method includes sending, by a core network device, an authentication request message of a user to a data network device, where the authentication request message requests that the data network device perform identity authentication on the user, and receiving, by the core network device, an authentication response message sent by the data network device, where the authentication response message comprises first information, and the first information indicates user identity information of the user.
-
公开(公告)号:US20210058783A1
公开(公告)日:2021-02-25
申请号:US17090757
申请日:2020-11-05
Applicant: HUAWEI TECHNOLOGIES CO., LTD.
Inventor: Zhongding Lei , Haiguang Wang , Xin Kang
Abstract: This application discloses a network authentication method, and a related device and system. The method includes: receiving, by a network authentication network element, an access request sent by user equipment, where the access request includes identification information of the user equipment; verifying, by the network authentication network element, whether the identification information is valid, and if the identification information is valid, determining, based on the identification information, a slice authentication network element corresponding to the user equipment; and sending, by the network authentication network element, the identification information to the slice authentication network element corresponding to the user equipment, where the identification information is used by the slice authentication network element corresponding to the user equipment to generate authentication data for the user equipment and initiate a user authentication request to the user equipment by using the authentication data.
-
-
-
-
-
-
-
-
-