Access authentication method applying to IBSS network
    1.
    发明授权
    Access authentication method applying to IBSS network 有权
    访问IBSS网络的认证方法

    公开(公告)号:US08312278B2

    公开(公告)日:2012-11-13

    申请号:US12740082

    申请日:2008-10-30

    IPC分类号: H04L9/32

    摘要: An access authentication method applying to IBSS network involves the following steps of: 1) performing authentication role configuration for network entities; 2) authenticating an authentication entity and a request entity that have been performed the authentication role configuration via an authentication protocol; and 3) after finishing the authentication, the authentication entity and the request entity perform the key negotiation, wherein, the message integrity check field and protocol synchronization lock-in field are added in a key negotiation message. The access authentication method applying to IBSS network provided by the invention has the advantages of the better safeness and the higher execution efficiency.

    摘要翻译: 适用于IBSS网络的接入认证方法包括以下步骤:1)对网络实体进行认证角色配置; 2)通过认证协议认证已经执行认证角色配置的认证实体和请求实体; 和3)认证完成后,认证实体和请求实体进行密钥协商,其中消息完整性检查字段和协议同步锁定字段被添加到密钥协商消息中。 适用于本发明提供的IBSS网络的接入认证方法具有安全性更高,执行效率更高的优点。

    SECURE TRANSMISSION METHOD FOR BROADBAND WIRELESS MULTIMEDIA NETWORK BROADCASTING COMMUNICATION
    2.
    发明申请
    SECURE TRANSMISSION METHOD FOR BROADBAND WIRELESS MULTIMEDIA NETWORK BROADCASTING COMMUNICATION 审中-公开
    宽带无线多媒体网络广播通信的安全传输方法

    公开(公告)号:US20100316221A1

    公开(公告)日:2010-12-16

    申请号:US12863304

    申请日:2009-01-14

    IPC分类号: H04L9/08 H04L9/00

    摘要: A secure transmission method for broadband wireless multimedia network broadcasting communication includes the following steps: a secure channel between big base station and small base station is established by utilizing security protocols; the big base station distributes a Broadcast Traffic Encryption Key to each small base station through the secure channel; the small base station transmits the Broadcast Traffic Encryption Key to the user passing the authentication and authorization. The above solution solves the problem of broadcast secure communication of the big base station working in the mixed covering mode of large and small cells, realizes the identification of not only the user but also the base station, and ensures that only the authorized user can receive broadcast service.

    摘要翻译: 一种用于宽带无线多媒体网络广播通信的安全传输方法包括以下步骤:利用安全协议建立大基站与小型基站之间的安全通道; 大基站通过安全通道向每个小型基站分配广播业务加密密钥; 小基站向通过认证授权的用户发送广播业务加密密钥。 以上解决方案解决了以大小小区混合覆盖模式工作的大型基站的广播安全通信问题,不仅可以对用户进行识别,而且可以实现基站识别,确保只有授权用户可以接收 广播服务。

    KEY MANAGEMENT METHOD
    3.
    发明申请
    KEY MANAGEMENT METHOD 审中-公开
    关键管理方法

    公开(公告)号:US20100257361A1

    公开(公告)日:2010-10-07

    申请号:US12743168

    申请日:2008-11-14

    IPC分类号: H04L9/32

    摘要: A key management method, is an enhanced RSNA four-way Handshake protocol. Its preceding two way Handshake processes comprise: 1), an authenticator sending a new message 1 which is added a Key Negotiation IDentifier (KNID) and a Message Integrity Code (MIC) based on the intrinsic definition content of the message 1 to an supplicant; (2), after the supplicant receives the new message 1, checking whether the MIC therein is correct; if no, the supplicant discarding the received new message 1; if yes, checking the new message 2, if the checking is successful, sending a message 2 to the authenticator, the process of checking the new message is the same as checking process for the message 1 defined in the IEEE 802.11i-2004 standard document. The method solves the DoS attack problem of the key management protocol in the existing RSNA security mechanism.

    摘要翻译: 一种密钥管理方法,是增强型RSNA四路握手协议。 其前两种握手过程包括:1)认证者发送新消息1,该新消息1基于消息1的内在定义内容向请求方添加了密钥协商标识符(KNID)和消息完整性代码(MIC); (2),在请求者收到新消息1后,检查其中的MIC是否正确; 如果不是,请求者丢弃接收到的新消息1; 如果是,检查新消息2,如果检查成功,则向认证者发送消息2,检查新消息的过程与IEEE 802.11i-2004标准文档中定义的消息1的检查过程相同 。 该方法解决了现有RSNA安全机制中密钥管理协议的DoS攻击问题。

    ACCESS AUTHENTICATION METHOD APPLYING TO IBSS NETWORK
    4.
    发明申请
    ACCESS AUTHENTICATION METHOD APPLYING TO IBSS NETWORK 有权
    应用于IBSS网络的访问认证方法

    公开(公告)号:US20110314286A1

    公开(公告)日:2011-12-22

    申请号:US12740082

    申请日:2008-10-30

    IPC分类号: H04L9/08 G06F15/16

    摘要: An access authentication method applying to IBSS network involves the following steps of: 1) performing authentication role configuration for network entities; 2) authenticating an authentication entity and a request entity that have been performed the authentication role configuration via an authentication protocol; and 3) after finishing the authentication, the authentication entity and the request entity perform the key negotiation, wherein, the message integrity check field and protocol synchronization lock-in field are added in a key negotiation message. The access authentication method applying to IBSS network provided by the invention has the advantages of the better safeness and the higher execution efficiency.

    摘要翻译: 适用于IBSS网络的接入认证方法包括以下步骤:1)对网络实体进行认证角色配置; 2)通过认证协议认证已经执行认证角色配置的认证实体和请求实体; 和3)认证完成后,认证实体和请求实体进行密钥协商,其中消息完整性检查字段和协议同步锁定字段被添加到密钥协商消息中。 适用于本发明提供的IBSS网络的接入认证方法具有安全性更高,执行效率更高的优点。

    WAPI UNICAST SECRET KEY NEGOTIATION METHOD
    5.
    发明申请
    WAPI UNICAST SECRET KEY NEGOTIATION METHOD 审中-公开
    WAPI UNICAST秘密钥匙协商方法

    公开(公告)号:US20100250941A1

    公开(公告)日:2010-09-30

    申请号:US12743032

    申请日:2008-11-14

    IPC分类号: H04L9/32

    摘要: A WAPI unicast secret key negotiation method includes the following steps: 1 a authenticator entity adds a message integrity code onto a unicast secret key negotiation request packet, and transmits it to a authentication supplicant entity; 2 after the authentication supplicant entity receives the unicast secret key negotiation request packet, it performs validation, and it discards the packet directly if it is not correct; the authentication supplicant entity performs other validation if it is correct; when the validation is successful, it responds a unicast secret key negotiation response packet to the authenticator entity; 3 after the authenticator entity receives the unicast secret key negotiation response packet, it performs validation, if the validation is successful, it responds the unicast secret key negotiation acknowledge packet to the authentication supplicant entity; 4 after the authentication supplicant entity receives the unicast secret key negotiation acknowledge packet, it performs validation, if the validation is successful it negotiates and obtains a consistent unicast session secret key. The present invention resolves the DoS attacking problem which exists in the unicast secret key management protocol in the present WAPI security mechanism.

    摘要翻译: WAPI单播密钥协商方法包括以下步骤:1,认证方实体将消息完整性代码添加到单播密钥协商请求报文中,并发送给认证请求方; 2,认证请求方实体收到单播密钥协商请求报文后,执行验证,如果不正确丢弃报文; 验证请求者实体执行其他验证,如果它是正确的; 当验证成功时,它向认证者实体响应单播密钥协商响应包; 3,认证实体收到单播密钥协商响应报文后,执行验证,验证成功后,向认证请求方实体回应单播密钥协商确认报文; 如图4所示,认证请求方实体接收到单播密钥协商确认报文后,执行验证,验证成功后,协商并获得一致的单播会话密钥。 本发明解决了目前的WAPI安全机制中的单播密钥管理协议中存在的DoS攻击问题。

    Electronic label authenticating method and system
    6.
    发明授权
    Electronic label authenticating method and system 有权
    电子标签认证方法和系统

    公开(公告)号:US08466775B2

    公开(公告)日:2013-06-18

    申请号:US13055092

    申请日:2009-07-24

    摘要: An electronic label authenticating method is provided, the method includes: the electronic label receives an accessing authenticating request group sent by a reader-writer, the group carries a first parameter selected by the reader-writer; the electronic label sends a response group of the accessing authenticating to the reader-writer, the response group of the accessing authenticating includes the first parameter and a second parameter selected by the electronic label; the electronic label receives an acknowledgement group of the accessing authenticating feed back by the reader-writer; the electronic label validates the acknowledgement group of the accessing authenticating. An electronic label authenticating system is also provided, the system includes a reader-writer and an electronic label.

    摘要翻译: 提供电子标签认证方法,该方法包括:电子标签接收读写器发送的访问认证请求组,该组携带由读写器选择的第一参数; 电子标签将访问认证的响应组发送给读写器,访问认证的响应组包括由电子标签选择的第一参数和第二参数; 电子标签接收由读写器访问认证反馈的确认组; 电子标签验证访问认证的确认组。 还提供电子标签认证系统,该系统包括读写器和电子标签。

    ELECTRONIC LABEL AUTHENTICATING METHOD AND SYSTEM
    7.
    发明申请
    ELECTRONIC LABEL AUTHENTICATING METHOD AND SYSTEM 有权
    电子标签认证方法与系统

    公开(公告)号:US20110133902A1

    公开(公告)日:2011-06-09

    申请号:US13055092

    申请日:2009-07-24

    IPC分类号: G06K7/01

    摘要: An electronic label authenticating method is provided, the method includes: the electronic label receives an accessing authenticating request group sent by a reader-writer, the group carries a first parameter selected by the reader-writer; the electronic label sends a response group of the accessing authenticating to the reader-writer, the response group of the accessing authenticating includes the first parameter and a second parameter selected by the electronic label; the electronic label receives an acknowledgement group of the accessing authenticating feed back by the reader-writer; the electronic label validates the acknowledgement group of the accessing authenticating. An electronic label authenticating system is also provided, the system includes a reader-writer and an electronic label.

    摘要翻译: 提供电子标签认证方法,该方法包括:电子标签接收读写器发送的访问认证请求组,该组携带由读写器选择的第一参数; 电子标签将访问认证的响应组发送给读写器,访问认证的响应组包括由电子标签选择的第一参数和第二参数; 电子标签接收由读写器访问认证反馈的确认组; 电子标签验证访问认证的确认组。 还提供电子标签认证系统,该系统包括读写器和电子标签。

    Anonymous authentication method based on pre-shared cipher key, reader-writer, electronic tag and system thereof
    8.
    发明授权
    Anonymous authentication method based on pre-shared cipher key, reader-writer, electronic tag and system thereof 有权
    基于预共享密钥,读写器,电子标签及其系统的匿名认证方法

    公开(公告)号:US08547205B2

    公开(公告)日:2013-10-01

    申请号:US13056856

    申请日:2009-07-28

    IPC分类号: G05B19/00 H04Q5/22

    摘要: An anonymous authentication method based on a pre-shared key, a reader-writer, an electronic tag and an anonymous bidirectional authentication system are disclosed. The method comprises the following steps: 1) a reader-writer sends an accessing authentication requirement group to the electronic tag; 2) after the electronic tag receives the accessing authentication requirement group, an accessing authentication response group is constructed and sent to the reader-writer; 3) after the reader-writer receives the accessing authentication response group, an accessing authentication confirmation group is constructed and sent to the electronic tag; 4) the electronic tag carries out confirmation according to the accessing authentication confirmation group.

    摘要翻译: 公开了一种基于预共享密钥,读写器,电子标签和匿名双向认证系统的匿名认证方法。 该方法包括以下步骤:1)读写器向电子标签发送访问认证要求组; 2)电子标签收到接入认证要求组后,构建接入认证响应组并发送给读写器; 3)在读写器接收到访问认证响应组之后,建立访问认证确认组并发送给电子标签; 4)电子标签根据访问认证确认组进行确认。

    Entity bi-directional identificator method and system based on trustable third party
    9.
    发明授权
    Entity bi-directional identificator method and system based on trustable third party 有权
    基于可信第三方的实体双向识别方法和系统

    公开(公告)号:US08356179B2

    公开(公告)日:2013-01-15

    申请号:US12739678

    申请日:2008-10-23

    摘要: An entity bi-directional identification method and system based on a trustable third party thereof are provided. The system comprises a first entity, which is for sending a first message to a second entity, sending a third message to a third entity after receiving a second message sent by the second entity, verifying the fourth message after receiving a fourth message sent by the third entity, sending a fifth message to the second entity after the verification is finished; the second entity, which is for receiving the first message sent by the first entity, sending the second message to the first entity, verifying the fifth message after receiving the fifth message sent by the first entity; the third entity, which is for receiving the third message sent by the first entity, checking if the first entity and the second entity are legal, implementing the pretreatment according to the checking result, sending the first entity the fourth message after the treatment is finished.

    摘要翻译: 提供了一种基于可信任第三方的实体双向识别方法和系统。 该系统包括用于向第二实体发送第一消息的第一实体,在接收到由第二实体发送的第二消息之后向第三实体发送第三消息,在接收到由第二实体发送的第四消息之后验证第四消息 第三实体,在验证完成之后向第二实体发送第五消息; 所述第二实体用于接收由所述第一实体发送的所述第一消息,向所述第一实体发送所述第二消息,在接收到由所述第一实体发送的所述第五消息之后验证所述第五消息; 用于接收第一实体发送的第三消息的第三实体,检查第一实体和第二实体是否合法,根据检查结果实现预处理,在处理完成之后发送第一实体第四消息 。

    ANONYMOUS AUTHENTICATION METHOD BASED ON PRE-SHARED CIPHER KEY, READER-WRITER, ELECTRONIC TAG AND SYSTEM THEREOF
    10.
    发明申请
    ANONYMOUS AUTHENTICATION METHOD BASED ON PRE-SHARED CIPHER KEY, READER-WRITER, ELECTRONIC TAG AND SYSTEM THEREOF 有权
    基于预共享密钥,读写器,电子标签及其系统的匿名认证方法

    公开(公告)号:US20110133883A1

    公开(公告)日:2011-06-09

    申请号:US13056856

    申请日:2009-07-28

    IPC分类号: G05B19/00 H04L9/00

    摘要: An anonymous authentication method based on a pre-shared key, a reader-writer, an electronic tag and an anonymous bidirectional authentication system are disclosed. The method comprises the following steps: 1) a reader-writer sends an accessing authentication requirement group to the electronic tag; 2) after the electronic tag receives the accessing authentication requirement group, an accessing authentication response group is constructed and sent to the reader-writer; 3) after the reader-writer receives the accessing authentication response group, an accessing authentication confirmation group is constructed and sent to the electronic tag; 4) the electronic tag carries out confirmation according to the accessing authentication confirmation group.

    摘要翻译: 公开了一种基于预共享密钥,读写器,电子标签和匿名双向认证系统的匿名认证方法。 该方法包括以下步骤:1)读写器向电子标签发送访问认证要求组; 2)电子标签收到接入认证要求组后,构建接入认证响应组并发送给读写器; 3)在读写器接收到访问认证响应组之后,建立访问认证确认组并发送给电子标签; 4)电子标签根据访问认证确认组进行确认。