Method for processing register request, network element, and communication system
    1.
    发明授权
    Method for processing register request, network element, and communication system 有权
    处理注册请求,网元和通信系统的方法

    公开(公告)号:US08307094B2

    公开(公告)日:2012-11-06

    申请号:US12452641

    申请日:2007-07-20

    IPC分类号: G06F15/16

    摘要: The invention provides a method for processing register request, network element, and a communication system. The method for processing a register request of a terminal in a communication system that comprises a first network element (GSN) for providing IP networking service to said terminal, a second network element (P-CSCF) for providing SIP proxy service to said terminal, a third network element (S-CSCF) for providing SIP subscriber service to said terminal, and a fourth network element (HSS) for storing information about said terminal including said terminal's address; wherein the communication system further comprises a fifth network element (NAPT) for translating said terminal's address in between said first network element and said second network element; said method comprise: determining whether a message issued by said terminal for said register request has undergone Network Address Port Translation; indicating an address for address verification in said message based on the determination whether said message has undergone Network Address Port Translation; and verifying the address for address verification in said message against the information stored in said fourth network element.

    摘要翻译: 本发明提供了一种处理注册请求,网元和通信系统的方法。 一种用于处理通信系统中的终端的注册请求的方法,该通信系统包括用于向所述终端提供IP联网服务的第一网元(GSN),用于向所述终端提供SIP代理服务的第二网元(P-CSCF) 用于向所述终端提供SIP用户业务的第三网元(S-CSCF)和用于存储关于包括所述终端地址的所述终端的信息的第四网元(HSS) 其中所述通信系统还包括用于在所述第一网络元件和所述第二网络元件之间转换所述终端的地址的第五网络元件(NAPT) 所述方法包括:确定所述终端为所述注册请求发出的消息是否经历了网络地址端口转换; 基于所述消息是否已经经历了网络地址端口转换的确定,指示所述消息中的地址验证地址; 以及根据存储在所述第四网络元件中的信息来验证所述消息中的地址验证的地址。

    METHOD FOR PROCESSING REGISTER REQUEST, NETWORK ELEMENT, AND COMMUNICATION SYSTEM
    2.
    发明申请
    METHOD FOR PROCESSING REGISTER REQUEST, NETWORK ELEMENT, AND COMMUNICATION SYSTEM 有权
    处理注册请求,网络元素和通信系统的方法

    公开(公告)号:US20100174819A1

    公开(公告)日:2010-07-08

    申请号:US12452641

    申请日:2007-07-20

    IPC分类号: G06F15/16

    摘要: The invention provides a method for processing register request, network element, and a communication system. The method for processing a register request of a terminal in a communication system that comprises a first network element (GSN) for providing IP networking service to said terminal, a second network element (P-CSCF) for providing SIP proxy service to said terminal, a third network element (S-CSCF) for providing SIP subscriber service to said terminal, and a fourth network element (HSS) for storing information about said terminal including said terminal's address; wherein the communication system further comprises a fifth network element (NAPT) for translating said terminal's address in between said first network element and said second network element; said method comprise: determining whether a message issued by said terminal for said register request has undergone Network Address Port Translation; indicating an address for address verification in said message based on the determination whether said message has undergone Network Address Port Translation; and verifying the address for address verification in said message against the information stored in said fourth network element.

    摘要翻译: 本发明提供一种处理注册请求,网元和通信系统的方法。 一种用于处理通信系统中的终端的注册请求的方法,该通信系统包括用于向所述终端提供IP联网服务的第一网元(GSN),用于向所述终端提供SIP代理服务的第二网元(P-CSCF) 用于向所述终端提供SIP用户业务的第三网元(S-CSCF)和用于存储关于包括所述终端地址的所述终端的信息的第四网元(HSS) 其中所述通信系统还包括用于在所述第一网络元件和所述第二网络元件之间转换所述终端的地址的第五网络元件(NAPT) 所述方法包括:确定所述终端为所述注册请求发出的消息是否经历了网络地址端口转换; 基于所述消息是否已经经历了网络地址端口转换的确定,指示所述消息中的地址验证地址; 以及根据存储在所述第四网络元件中的信息来验证所述消息中的地址验证的地址。

    Methods and entities using IPSec ESP to support security functionality for UDP-based traffic
    3.
    发明授权
    Methods and entities using IPSec ESP to support security functionality for UDP-based traffic 有权
    使用IPSec ESP的方法和实体支持基于UDP流量的安全功能

    公开(公告)号:US08639936B2

    公开(公告)日:2014-01-28

    申请号:US12736251

    申请日:2008-03-25

    IPC分类号: H04L29/06

    摘要: Methods in OMA SEC_CF for providing security services to traffic over UDP between a client and a server and the relevant entities are provided. A pre-shared key is pre-shared between the client and the server. A pair of IPSec ESP SAs between the client and the server is established without shared key negotiation, wherein traffic data cryptographic algorithms are determined. Traffic data security keys are derived from the pre-shared key via the determined traffic data cryptographic algorithms. Then, data of the traffic can be provided with security services with the traffic data security keys through use of IPSec ESP.

    摘要翻译: 提供了OMA SEC_CF中用于​​向客户端和服务器以及相关实体之间通过UDP提供安全服务的方法。 预共享密钥在客户端和服务器之间预先共享。 建立客户端与服务器之间的一对IPSec ESP SA,无需共享密钥协商,确定流量数据加密算法。 业务数据安全密钥通过所确定的业务数据密码算法从预共享密钥导出。 然后,可以通过使用IPSec ESP为业务数据提供具有业务数据安全密钥的安全服务。

    METHODS AND ENTITIES USING IPSec ESP TO SUPPORT SECURITY FUNCTIONALITY FOR UDP-BASED OMA ENABLES
    4.
    发明申请
    METHODS AND ENTITIES USING IPSec ESP TO SUPPORT SECURITY FUNCTIONALITY FOR UDP-BASED OMA ENABLES 有权
    使用IPSec ESP支持基于UDP的OMA使用的安全功能的方法和实现

    公开(公告)号:US20110016314A1

    公开(公告)日:2011-01-20

    申请号:US12736251

    申请日:2008-03-25

    IPC分类号: H04L9/28 H04L9/32

    摘要: Methods in OMA SEC_CF for providing security services to traffic over UDP between a client and a server and the relevant entities are provided. A pre-shared key is pre-shared between the client and the server. A pair of IPSec ESP SAs between the client and the server is established without shared key negotiation, wherein traffic data cryptographic algorithms are determined. Traffic data security keys are derived from the pre-shared key via the determined traffic data cryptographic algorithms. Then, data of the traffic can be provided with security services with the traffic data security keys through use of IPSec ESP.

    摘要翻译: 提供了OMA SEC_CF中用于​​向客户端和服务器以及相关实体之间通过UDP提供安全服务的方法。 预共享密钥在客户端和服务器之间预先共享。 建立客户端与服务器之间的一对IPSec ESP SA,无需共享密钥协商,确定流量数据加密算法。 业务数据安全密钥通过所确定的业务数据密码算法从预共享密钥导出。 然后,可以通过使用IPSec ESP为业务数据提供具有业务数据安全密钥的安全服务。