Method and apparatus for installing profile

    公开(公告)号:US09923724B2

    公开(公告)日:2018-03-20

    申请号:US14894988

    申请日:2014-05-29

    摘要: The present invention relates to a method and apparatus for installing a profile, and more specifically, to a method for managing mobile communication subscriber information (profile), such as for remotely installing and uninstalling a profile onto a security module (Universal Integrated Circuit Card (UICC)) that is embedded inside a terminal and that is not attachable or detachable, thereby replacing UICC. Accordingly, the present invention relates to a method for a server installing a profile, wherein the method for the server installing the profile for a terminal having an embedded security module comprises the steps of: receiving from the terminal a profile installation request including an identifier of the terminal embedded security module; receiving an encrypted profile corresponding to the installation request; and transmitting to the terminal the encrypted profile.

    Apparatus and method for information security

    公开(公告)号:US11930355B2

    公开(公告)日:2024-03-12

    申请号:US17282888

    申请日:2019-10-04

    IPC分类号: H04L9/00 H04W12/04 H04W88/14

    CPC分类号: H04W12/04 H04W88/14

    摘要: The present disclosure relates to a 5th (5G) generation) or pre-5G communication system for supporting a higher data transmission rate beyond a 4th (4G) generation communication system such as long term evolution (LTE). According to various embodiments of the present disclosure, an apparatus of a user data management (UDM) for a first cellular network in a wireless communication system may include at least one transceiver, and at least one processor operatively coupled with the at least one transceiver, the at least one processor may be configured to receive a request message for security of a second cellular network from an access and mobility management function (AMF) for the first cellular network, and transmit to the AMF a response message for transmitting a security key for an eNB of the second cellular network to the eNB, and the security key may be obtained from the base security key of the second cellular network.

    Method and device for communicating in wireless communication system

    公开(公告)号:US11546759B2

    公开(公告)日:2023-01-03

    申请号:US17255713

    申请日:2019-06-27

    摘要: The present disclosure relates to a 5G or pre-5G communication system for supporting a higher data transfer rate beyond a 4G communication system such as LTE. A terminal according to an embodiment of the present disclosure performs the operations of: transmitting a registration request message to a network node; receiving an authentication request message containing information on a security related capability from the network node; verifying the security related capability by using the authentication request message; transmitting a first message as a response to the authentication request message; receiving a security mode command message from the network node; and transmitting, to the network node, a security mode completion message as a response to the security mode command message, wherein the information on the security related capability includes information on a capability related to security between the terminal and the network node.

    SECURITY METHOD AND SYSTEM FOR SUPPORTING DISCOVERY AND COMMUNICATION BETWEEN PROXIMITY BASED SERVICE TERMINALS IN MOBILE COMMUNICATION SYSTEM ENVIRONMENT
    8.
    发明申请
    SECURITY METHOD AND SYSTEM FOR SUPPORTING DISCOVERY AND COMMUNICATION BETWEEN PROXIMITY BASED SERVICE TERMINALS IN MOBILE COMMUNICATION SYSTEM ENVIRONMENT 审中-公开
    用于支持移动通信系统环境中基于接近服务终端的发现和通信的安全方法和系统

    公开(公告)号:US20160262019A1

    公开(公告)日:2016-09-08

    申请号:US15034537

    申请日:2014-11-04

    发明人: Kyungjoo Suh

    摘要: A device-to-device (hereinafter referred to as “D2D”) discovery for D2D communication and a related security method during the D2D communication are provided when a proximity based service (hereinafter referred to as “prose”), prose discovery, prose communication, and the D2D communication are performed in a mobile communication network, and thus a device for performing communication is capable of carrying out a security method for the prose discovery and the prose communication. User Equipment (UE) discovers different UE from each other, performs authentication when performing terminal-to-terminal communication, and is capable of performing safe communication by receiving and verifying security related information. It is possible to carry out the authentication and control by the UE or by the assistance of a base station (eNB). Accordingly, communication efficiency and security can be enhanced by enabling a terminal (device) to mutually provide or receive information between terminals or by the assistance of a network, to receive security key related information, or to perform a security procedure using the security key in an environment, such as an Evolved Universal Terrestrial Radio Access Network (hereinafter referred to as “EUTRAN”), or a Universal Terrestrial Radio Access Network (hereinafter referred to as “UTRAN”)/GSM/EDGE Radio Access Network (hereinafter referred to as “GERAN”).

    摘要翻译: 当基于邻近的服务(以下简称“散文”),散文发现,散文通信时,提供D2D通信中的设备到设备(以下称为“D2D”)发现和D2D通信中的相关安全方法 ,并且在移动通信网络中执行D2D通信,因此用于执行通信的设备能够执行散文发现和散文通信的安全方法。 用户设备(UE)发现不同的UE,执行终端到终端的通信时进行认证,能够通过接收和验证安全相关信息来进行安全通信。 可以由UE进行认证和控制,或者通过基站(eNB)的协助进行。 因此,通过使终端(设备)能够在终端之间相互提供或接收信息或通过网络的协助来接收安全密钥相关信息,或者使用安全密钥进行安全性处理,可以提高通信效率和安全性 诸如演进的通用陆地无线电接入网络(以下称为“EUTRAN”)或通用陆地无线电接入网络(以下称为“UTRAN”)/ GSM / EDGE无线电接入网络(以下称为“ “GERAN”)。

    METHOD FOR SUPPORTING SUBSCRIBER'S SERVICE PROVIDER CHANGE RESTRICTION POLICY IN MOBILE COMMUNICATIONS AND APPARATUS THEREFOR

    公开(公告)号:US20160149903A1

    公开(公告)日:2016-05-26

    申请号:US14784906

    申请日:2014-04-15

    发明人: Kyungjoo Suh

    IPC分类号: H04L29/06 G06F21/62

    摘要: The present invention relates to a method and an apparatus for employing an embedded subscriber identity module (hereinafter referred to as eSIM) to apply a policy such as a subsidy policy to, activate, deactivate, add to, update, and delete a user profile in a mobile communications network. The present invention enables a mobile device to determine whether to host the policy of a new service provider when it changes the present service provider or to perform a lock for prohibiting the policy change, and to change the profile related to the determination. The present invention also enables a mobile device to replace the policy related to the service provider by applying the policy, or to employ eSIM so as to activate, deactivate, revise, add, or delete the rules of the policy related to the service provider. The present invention provides various examples of hosting and applying the policy and various examples of activating, deactivating, revising, adding, deleting the policy rules so as to make eSIM identify the subscriber as the existing subscriber identity module. The invention also enables the device or eSIM to be reused when changing the service provider throughout the life cycle thereof without limiting the use of eSIM to a single service provider. The invention also provides a method for locking the policy applied per service provider, and the use of eSIM when changing to another service provider by the policy per service provider. The present invention also provides a method for checking the criteria of decision and verifying the power of decision when administering the policy rules and eSIM through deleting, adding, revising, activating, and deactivating the profile management plan and policy rules by applying the service provider's policy. Thus the present invention enables the device to host a new service provider's policy for communicating therewith when changing from the existing service provider to the new service provider, or when the government changes the service provider for an M2M device related to the electricity, infrastructure, etc. under an environment such as EUTRAN (Evolved Universal Terrestrial Radio Access Network) or UTRAN (Universal Terrestrial Radio Access Network)/GERAN(GSM/EDGE Radio Access Network). The present invention also is advantageous in that if the change of a service provider is not allowed according the policy of the existing service provider, the information related to communication and the security information are set revised safely by locking, thus enhancing the communication efficiency and security. The present invention also enables the device to verify the power of the user or to revise safely the information of eSIM for adding, revising, deleting, activating, and deactivating the policy rules for managing the operation profile for administration of the policy of the service provider under an environment such as EUTRAN(Evolved Universal Terrestrial Radio Access Network) or UTRAN(Universal Terrestrial Radio Access Network)/GERAN(GSM/EDGE Radio Access Network), thus enhancing the communication efficiency and security.

    Method and apparatus for authenticating terminal and network in 5G communication system

    公开(公告)号:US11659386B2

    公开(公告)日:2023-05-23

    申请号:US16644375

    申请日:2018-09-05

    发明人: Kyungjoo Suh

    摘要: The present disclosure relates to a communication method and system for converging a 5th-Generation (5G) communication system for supporting higher data rates beyond a 4th-Generation (4G) system with a technology for Internet of Things (IoT). The present disclosure may be applied to intelligent services based on the 5G communication technology and the IoT-related technology, such as smart home, smart building, smart city, smart car, connected car, health care, digital education, smart retail, security and safety services. The present invention relates to an authentication method applied to a next generation 5G communication system and an apparatus for performing same, network slices, a method for managing the network slices, and an apparatus for performing the same.