METHOD AND SYSTEM FOR DISTRIBUTING KEY OF MEDIA STREAM
    1.
    发明申请
    METHOD AND SYSTEM FOR DISTRIBUTING KEY OF MEDIA STREAM 有权
    用于分发媒体关键的方法和系统

    公开(公告)号:US20090279705A1

    公开(公告)日:2009-11-12

    申请号:US12508025

    申请日:2009-07-23

    IPC分类号: H04L9/08 H04L9/06

    CPC分类号: H04L9/083 H04L63/06

    摘要: A method and a system for distributing key of media stream are provided. The method comprises: determining, by a security management server, whether a domain to which the calling terminal belongs and a domain to which a called terminal belongs subscribe a key distribution protocol; generating a key based on encryption capability information obtained in a calling process, and distributing the generated key to the calling terminal and the called terminal, if the protocol has been subscribed; generating a key based on encryption capability information obtained in a calling process, and distributing the generated key to the terminal at the same side as the security management server, if the protocol has not been subscribed. By applying the disclosure, the key is generated by the security management server, so that complexity may be reduced for media stream key negotiation to facilitate promotion of media stream encryption service.

    摘要翻译: 提供了一种用于分发媒体流密钥的方法和系统。 该方法包括:由安全管理服务器确定主叫终端所属的域和被叫终端所属的域是否签发密钥分发协议; 基于在呼叫处理中获得的加密能力信息生成密钥,并且如果协议已被订阅,则将生成的密钥分发给主叫终端和被叫终端; 基于在呼叫处理中获得的加密能力信息生成密钥,并且如果协议没有被订阅,则将生成的密钥分发到与安全管理服务器相同的一侧的终端。 通过应用本公开,密钥由安全管理服务器生成,从而可以减少媒体流密钥协商的复杂性,以促进媒体流加密服务的推广。

    Method and system for distributing key of media stream
    2.
    发明授权
    Method and system for distributing key of media stream 有权
    分发媒体流密钥的方法和系统

    公开(公告)号:US08204229B2

    公开(公告)日:2012-06-19

    申请号:US12508025

    申请日:2009-07-23

    IPC分类号: H04L9/00

    CPC分类号: H04L9/083 H04L63/06

    摘要: A method and a system for distributing key of media stream are provided. The method comprises: determining, by a security management server, whether a domain to which the calling terminal belongs and a domain to which a called terminal belongs subscribe a key distribution protocol; generating a key based on encryption capability information obtained in a calling process, and distributing the generated key to the calling terminal and the called terminal, if the protocol has been subscribed; generating a key based on encryption capability information obtained in a calling process, and distributing the generated key to the terminal at the same side as the security management server, if the protocol has not been subscribed. By applying the disclosure, the key is generated by the security management server, so that complexity may be reduced for media stream key negotiation to facilitate promotion of media stream encryption service.

    摘要翻译: 提供了一种用于分发媒体流密钥的方法和系统。 该方法包括:由安全管理服务器确定主叫终端所属的域和被叫终端所属的域是否签发密钥分发协议; 基于在呼叫处理中获得的加密能力信息生成密钥,并且如果协议已被订阅,则将生成的密钥分发给主叫终端和被叫终端; 基于在呼叫处理中获得的加密能力信息生成密钥,并且如果协议没有被订阅,则将生成的密钥分发到与安全管理服务器相同的一侧的终端。 通过应用本公开,密钥由安全管理服务器生成,从而可以减少媒体流密钥协商的复杂性,以促进媒体流加密服务的推广。

    Method of implementing authentication of high-rate packet data services
    4.
    发明授权
    Method of implementing authentication of high-rate packet data services 有权
    实现高速率分组数据业务认证的方法

    公开(公告)号:US07515906B2

    公开(公告)日:2009-04-07

    申请号:US11273886

    申请日:2005-11-15

    IPC分类号: H04Q7/20 H04M3/16

    摘要: Disclosed is a method for implementing authentication of high rate packet data (HRPD) services, applicable to multi-mode networks including IS95/CDMA2000 1x and CDMA2000 HRPD networks. The method includes an Access Terminal (AT) using the user information in the User Identity Module (UIM) as the user identifier and starting an authentication in accordance with the Extended Authentication Protocol (EAP). A Mobile Switching Center (MSC)/Visiting Location Register (VLR) obtains a random number and a first authentication number based on the user identifier, and the AT calculates a second authentication number based on said random number. The MSC/VLR compares the first authentication number with the second authentication number to determine whether they are consistent. If consistent, the authentication is successful. Otherwise, the authentication is aborted. With the disclosed method, authentication can be made by using the original MSC and HLR/AC in the CDMA IS95 or CDMA2000 1x network. The method allows low cost and easy operation for the user as well as convenient maintenance for the operator.

    摘要翻译: 公开了一种实现高速率分组数据(HRPD)业务认证的方法,适用于包括IS95 / CDMA2000 1x和CDMA2000 HRPD网络在内的多模式网络。 该方法包括使用用户身份模块(UIM)中的用户信息作为用户标识符的接入终端(AT),并根据扩展认证协议(EAP)开始认证。 移动交换中心(MSC)/访问位置寄存器(VLR)基于用户标识获得随机数和第一认证号,AT根据所述随机数计算第二认证号。 MSC / VLR将第一认证号码与第二认证号码进行比较,以确定它们是否一致。 如果一致,认证成功。 否则,认证将中止。 利用所公开的方法,可以通过使用CDMA IS95或CDMA2000 1x网络中的原始MSC和HLR / AC来进行认证。 该方法为用户提供低成本且易于操作以及操作者的便利维护。

    Method of implementing authentication of high-rate packet data services

    公开(公告)号:US20060121895A1

    公开(公告)日:2006-06-08

    申请号:US11273886

    申请日:2005-11-15

    IPC分类号: H04Q7/20 H04M3/16

    摘要: Disclosed is a method for implementing authentication of high rate packet data (HRPD) services, applicable to multi-mode networks including IS95/CDMA2000 1x and CDMA2000 HRPD networks. The method includes an Access Terminal (AT) using the user information in the User Identity Module (UIM) as the user identifier and starting an authentication in accordance with the Extended Authentication Protocol (EAP). A Mobile Switching Center (MSC)/Visiting Location Register (VLR) obtains a random number and a first authentication number based on the user identifier, and the AT calculates a second authentication number based on said random number. The MSC/VLR compares the first authentication number with the second authentication number to determine whether they are consistent. If consistent, the authentication is successful. Otherwise, the authentication is aborted. With the disclosed method, authentication can be made by using the original MSC and HLR/AC in the CDMA IS95 or CDMA2000 1x network. The method allows low cost and easy operation for the user as well as convenient maintenance for the operator.