Method, network element, user equipment and system for securing device-to-device communication in a wireless network

    公开(公告)号:US10462660B2

    公开(公告)日:2019-10-29

    申请号:US15306816

    申请日:2014-05-12

    Inventor: Dajiang Zhang

    Abstract: Method, network element, user equipment (UE) and system are disclosed for securing device-to-device (D2D) communication in a wireless network. The wireless network has a first UE in an idle mode, a second UE in a connected mode, and a network element. The method comprises: encrypting the second UE's identification (ID) by using a first key which is known to the network element and the first UE and which is unknown to the second UE; sending the encrypted second UE's ID from the network element to the first UE via the second UE; and verifying the second UE's ID by using the encrypted second UE's ID. According to some embodiments, the method further comprises: deriving a D2D key for D2D communication between the first and second UEs, based on a random number and a second key which is known to the network element and the first UE; encrypting the D2D key based at least in part on a third key which is shared between the network element and the second UE and which is unknown to any other UE in the wireless network; and sending the encrypted D2D key from the network element to the second UE.

    Method and Apparatus of Secure Charging for Device-to-Device Service
    2.
    发明申请
    Method and Apparatus of Secure Charging for Device-to-Device Service 审中-公开
    用于设备到设备服务的安全计费的方法和装置

    公开(公告)号:US20160150091A1

    公开(公告)日:2016-05-26

    申请号:US14904231

    申请日:2013-07-23

    Abstract: A method of secure charging for a device-to-device service may comprise: recording charging information of a device-to-device service between a first user equipment and a second user equipment, wherein the charging information is associated at least with the first user equipment; generating a first report comprising the charging information, wherein the first report is protected by a security key of the first user equipment; and sending the first report to a network node by the first user equipment, wherein the first report is used for charging for the device-to-device service together with a second report generated at the second user equipment, and wherein the second report comprises charging information associated at least with the device-to-device service of the second user equipment and is protected by a security key of the second user equipment.

    Abstract translation: 用于设备到设备服务的安全计费的方法可以包括:在第一用户设备和第二用户设备之间记录设备到设备服务的计费信息,其中所述计费信息至少与所述第一用户相关联 设备; 生成包括所述计费信息的第一报告,其中所述第一报告由所述第一用户设备的安全密钥保护; 以及由所述第一用户设备将所述第一报告发送到网络节点,其中所述第一报告与所述第二用户设备处生成的第二报告一起用于所述设备到设备服务的计费,并且其中所述第二报告包括计费 至少与第二用户设备的设备到设备服务相关联的信息并且被第二用户设备的安全密钥保护。

    Method and apparatus of secure charging for device-to-device service

    公开(公告)号:US10536583B2

    公开(公告)日:2020-01-14

    申请号:US14904231

    申请日:2013-07-23

    Abstract: A method of secure charging for a device-to-device service may comprise: recording charging information of a device-to-device service between a first user equipment and a second user equipment, wherein the charging information is associated at least with the first user equipment; generating a first report comprising the charging information, wherein the first report is protected by a security key of the first user equipment; and sending the first report to a network node by the first user equipment, wherein the first report is used for charging for the device-to-device service together with a second report generated at the second user equipment, and wherein the second report comprises charging information associated at least with the device-to-device service of the second user equipment and is protected by a security key of the second user equipment.

    Fast-accessing method and apparatus

    公开(公告)号:US10187370B2

    公开(公告)日:2019-01-22

    申请号:US15711499

    申请日:2017-09-21

    Abstract: A fast-accessing method may comprise: establishing a first security connection between a first network node and a user equipment; obtaining first information from a second network node, wherein the first information comprises at least one of system information of the second network node and an identifier of a security algorithm selected by the second network node for the user equipment; providing second information to the second network node, in response to an indication of the second network node from the user equipment, wherein the second information comprises security information related to the user equipment; and sending the first information to the user equipment for establishing a second security connection between the user equipment and the second network node.

    Methods, apparatuses and computer program products for fast handover

    公开(公告)号:US09924416B2

    公开(公告)日:2018-03-20

    申请号:US14907741

    申请日:2013-08-01

    Abstract: Provided are methods, corresponding apparatuses, and computer program products for a fast handover. A method comprises generating, at a source base station serving a user equipment, a first message and a second message including security information for security communication between a target base station and the user equipment after a fast handover. The method also comprises transmitting simultaneously, from the source base station, the first and second messages respectively to the target base station and the user equipment. With the claimed inventions, a fast X2 handover procedure is complemented and becomes more feasible with proposed security handlings, making it possible to decrease the service interruption during X2 handover for users and hence improve the user experiences.

    Method, Network Element, Mobile Terminal, System and Computer Program Product for Cryptographic Algorithm Negotiation

    公开(公告)号:US20170142162A1

    公开(公告)日:2017-05-18

    申请号:US15309555

    申请日:2014-05-20

    CPC classification number: H04L63/205 H04L63/0428 H04W12/0017 H04W12/02

    Abstract: Method, network element, mobile terminal, system and computer program product are disclosed for negotiating cryptographic algorithm. The method comprises: receiving a first candidate list from the mobile terminal by the network element, wherein the first candidate list includes at least one candidate cryptographic algorithm supported by the mobile terminal and excludes at least one undesirable cryptographic algorithm even though it is supported by the mobile terminal; and selecting, from the first candidate list, a cryptographic algorithm supported by both the network element and the mobile terminal. As the undesirable cryptographic algorithm(s) is excluded from the first candidate list, the network element will be forced to choose more secure algorithms for communications with the mobile terminal.

    METHODS, APPARATUSES AND COMPUTER PROGRAM PRODUCTS FOR FAST HANDOVER
    7.
    发明申请
    METHODS, APPARATUSES AND COMPUTER PROGRAM PRODUCTS FOR FAST HANDOVER 有权
    方法,装置和计算机程序产品快速切换

    公开(公告)号:US20160174112A1

    公开(公告)日:2016-06-16

    申请号:US14907741

    申请日:2013-08-01

    Abstract: Provided are methods, corresponding apparatuses, and computer program products for a fast handover. A method comprises generating, at a source base station serving a user equipment, a first message and a second message including security information for security communication between a target base station and the user equipment after a fast handover. The method also comprises transmitting simultaneously, from the source base station, the first and second messages respectively to the target base station and the user equipment. With the claimed inventions, a fast X2 handover procedure is complemented and becomes more feasible with proposed security handlings, making it possible to decrease the service interruption during X2 handover for users and hence improve the user experiences.

    Abstract translation: 提供了用于快速切换的方法,相应的装置和计算机程序产品。 一种方法包括:在服务于用户设备的源基站处,生成第一消息和第二消息,所述第一消息和第二消息包括用于在快速切换之后目标基站与用户设备之间的安全通信的安全信息。 该方法还包括从源基站同时发送第一和第二消息到目标基站和用户设备。 利用所要求保护的发明,通过提出的安全处理来补充快速X2切换过程并变得更可行,使得可以在用户的​​X2切换期间减少服务中断,从而改善用户体验。

    Reporting idle mode equipment data

    公开(公告)号:US10440692B2

    公开(公告)日:2019-10-08

    申请号:US14896718

    申请日:2013-06-13

    Abstract: In accordance with an example embodiment of the present invention, there is provided an apparatus such as for example a mobile or a base station, comprising at least one processing core configured to compile a message comprising information concerning resources used in a communication network, the at least one processing core being configured to perform a first determination, that a second user equipment is engaged in a device-to-device session with a first user equipment, the at least one processing core being configured to, responsive to the first determination, include in the message information concerning the second user equipment, and a transmitter configured to cause the message to be transmitted toward a network node. The message may comprise a resource usage report and/or charging report, for example.

    FAST-ACCESSING METHOD AND APPARATUS
    9.
    发明申请

    公开(公告)号:US20180026958A1

    公开(公告)日:2018-01-25

    申请号:US15711499

    申请日:2017-09-21

    Abstract: A fast-accessing method may comprise: establishing a first security connection between a first network node and a user equipment; obtaining first information from a second network node, wherein the first information comprises at least one of system information of the second network node and an identifier of a security algorithm selected by the second network node for the user equipment; providing second information to the second network node, in response to an indication of the second network node from the user equipment, wherein the second information comprises security information related to the user equipment; and sending the first information to the user equipment for establishing a second security connection between the user equipment and the second network node.

    Methods and Apparatus of Key Pairing for D2D Devices under Different D2D Areas
    10.
    发明申请
    Methods and Apparatus of Key Pairing for D2D Devices under Different D2D Areas 审中-公开
    不同D2D区域D2D设备密钥配对的方法与设备

    公开(公告)号:US20160226857A1

    公开(公告)日:2016-08-04

    申请号:US15022024

    申请日:2013-09-27

    CPC classification number: H04L63/083 H04L63/06 H04W12/04 H04W12/06 H04W76/14

    Abstract: Methods and apparatus are provided for key pairing between peer D2D UEs in different eNBs or D2D areas. A method may comprise: receiving at a first access network node serving a first D2D area from a first user equipment in the first D2D area, a request for keys for a D2D communication between the first user equipment and a second user equipment, wherein the request comprises an identification of a second D2D area where the second user equipment is located and being different from the first D2D area; identifying a second access network node serving the second D2D area based on the identification; sending to the second access network node, a request for a security context of the second user equipment; and receiving from the second access network node the security context for obtaining the keys for the D2D communication.

    Abstract translation: 提供了用于不同eNB或D2D区域中的对等D2D UE之间的密钥配对的方法和装置。 一种方法可以包括:从在第一D2D区域中的第一用户设备服务于第一D2D区域的第一接入网络节点处接收对第一用户设备和第二用户设备之间的D2D通信的密钥的请求,其中所述请求 包括第二用户设备所在的并且与第一D2D区域不同的第二D2D区域的标识; 基于所述识别识别服务于所述第二D2D区域的第二接入网络节点; 向所述第二接入网络节点发送对所述第二用户设备的安全上下文的请求; 以及从所述第二接入网络节点接收用于获得所述D2D通信的密钥的所述安全上下文。

Patent Agency Ranking