METHOD OF PROVIDING FRESH KEYS FOR MESSAGE AUTHENTICATION
    1.
    发明申请
    METHOD OF PROVIDING FRESH KEYS FOR MESSAGE AUTHENTICATION 有权
    提供消息认证的新鲜方法

    公开(公告)号:US20080137853A1

    公开(公告)日:2008-06-12

    申请号:US11682516

    申请日:2007-03-06

    IPC分类号: H04K1/00

    摘要: The present invention provides a method of operating a mobile unit in a wireless communication system. Embodiments of the method may include providing access request message(s) including information indicative of a first counter and a message authentication code formed using a first key. The first key is derived from a second key and the first counter. The second key is derived from a third key established for a security session between the mobile unit and an authenticator. The first counter is incremented in response to each access request provided by the mobile unit.

    摘要翻译: 本发明提供一种在无线通信系统中操作移动单元的方法。 该方法的实施例可以包括提供包括指示第一计数器的信息和使用第一密钥形成的消息认证码的访问请求消息。 第一个键是从第二个键和第一个计数器派生出来的。 第二个密钥是从为移动单元和认证者之间的安全会话建立的第三个密钥导出的。 响应于由移动单元提供的每个访问请求,第一个计数器递增。

    Method for refreshing a pairwise master key
    2.
    发明授权
    Method for refreshing a pairwise master key 有权
    刷新成对主密钥的方法

    公开(公告)号:US07596225B2

    公开(公告)日:2009-09-29

    申请号:US11173143

    申请日:2005-06-30

    IPC分类号: H04L9/00 H04K1/00

    摘要: The present invention provides a method for communication involving a supplicant, an authenticator, and an authentication server having an established security association based on a first key. The supplicant and the authenticator also have an established security association based on a second key. The method may include modifying the second key using the first key in response to determining that a challenge response from the supplicant is valid.

    摘要翻译: 本发明提供了一种涉及具有基于第一密钥的建立的安全关联的请求者,认证者和认证服务器的通信方法。 请求者和认证者也有一个基于第二个密钥的建立的安全关联。 响应于确定来自请求方的询问响应是有效的,该方法可以包括使用第一密钥修改第二密钥。

    Method of providing fresh keys for message authentication
    3.
    发明授权
    Method of providing fresh keys for message authentication 有权
    提供消息认证的新密钥的方法

    公开(公告)号:US09225518B2

    公开(公告)日:2015-12-29

    申请号:US11682516

    申请日:2007-03-06

    IPC分类号: H04K1/00 H04L9/08 H04L9/32

    摘要: The present invention provides a method of operating a mobile unit in a wireless communication system. Embodiments of the method may include providing access request message(s) including information indicative of a first counter and a message authentication code formed using a first key. The first key is derived from a second key and the first counter. The second key is derived from a third key established for a security session between the mobile unit and an authenticator. The first counter is incremented in response to each access request provided by the mobile unit.

    摘要翻译: 本发明提供一种在无线通信系统中操作移动单元的方法。 该方法的实施例可以包括提供包括指示第一计数器的信息和使用第一密钥形成的消息认证码的访问请求消息。 第一个键是从第二个键和第一个计数器派生出来的。 第二个密钥是从为移动单元和认证者之间的安全会话建立的第三个密钥导出的。 响应于由移动单元提供的每个访问请求,第一个计数器递增。

    Method for distributing security keys during hand-off in a wireless communication system
    4.
    发明授权
    Method for distributing security keys during hand-off in a wireless communication system 有权
    用于在无线通信系统中切换期间分发安全密钥的方法

    公开(公告)号:US07602918B2

    公开(公告)日:2009-10-13

    申请号:US11173144

    申请日:2005-06-30

    IPC分类号: H04K1/00 H04L9/00

    摘要: The present invention provides a method of wireless communication involving at least one first base station associated with a first access serving network and at least one second base station associated with a second access serving network is provided. The method may include generating a first key associated with the first access serving network and the second base station, receiving information indicating that the first key is temporary, and establishing a communication link with the second base station using the first key.

    摘要翻译: 本发明提供一种无线通信的方法,其涉及与第一接入服务网络相关联的至少一个第一基站,并且提供与第二接入服务网络相关联的至少一个第二基站。 该方法可以包括生成与第一接入服务网络和第二基站相关联的第一密钥,接收指示第一密钥是临时的信息,以及使用第一密钥建立与第二基站的通信链路。

    Encrypting method and apparatus enabling multiple access for multiple
services and multiple transmission modes over a broadband communication
network
    5.
    发明授权
    Encrypting method and apparatus enabling multiple access for multiple services and multiple transmission modes over a broadband communication network 失效
    通过宽带通信网络实现多业务和多种传输模式的多址接入的加密方法和装置

    公开(公告)号:US6028933A

    公开(公告)日:2000-02-22

    申请号:US837423

    申请日:1997-04-17

    IPC分类号: H04L29/06 H04L9/00

    摘要: The specification relates to the encryption of data transmitted over a broadband multiple access bi-directional hybrid fiber/coax (HFC) network. The method supports downstream broadcast encryption from headend to cable modem, and also provides for encryption of transmissions from cable modems back to the headend. Although the present invention is described in relation to an HFC network, it is also equally applicable to a cellular wireless communications environment or any other digital broadcast medium. The invention is implemented in two subdivisions, a slow but secure software encrypting algorithm, and a fast but less secure hardware encrypting algorithm. The combination produces the security of the software subdivision, with the encrypting speed of the hardware subdivision. The encryption method and apparatus supports the various access and transmission modes, such as STM, ATM, and VL. The present invention utilizes a virtual random number generator at the individual cable modems to reduce cable modem hardware. The authentication and key generation process between headend and cable modem produces a mutually authenticated and mutually generated permanent key. The present invention features a cryptosync clock at the headend which is transmitted to individual cable modems as a broadcast clock, thus eliminating a need for a clock at each cable modem.

    摘要翻译: 该规范涉及通过宽带多址双向混合光纤/同轴电缆(HFC)网络传输的数据的加密。 该方法支持从头端到电缆调制解调器的下游广播加密,并且还提供从电缆调制解调器到头端的传输的加密。 虽然关于HFC网络描述了本发明,但是也可以同样适用于蜂窝无线通信环境或任何其他数字广播媒体。 本发明实现在两个细分,一个缓慢但安全的软件加密算法,以及一种快速但较不安全的硬件加密算法。 该组合产生了软件细分的安全性,具有硬件细分的加密速度。 该加密方法和装置支持STM,ATM和VL等各种接入和传输模式。 本发明利用各个电缆调制解调器上的虚拟随机数发生器来减少电缆调制解调器硬件。 头端和电缆调制解调器之间的认证和密钥生成过程产生相互认证和相互产生的永久密钥。 本发明的特征在于在头端处的密码同步时钟作为广播时钟发送到各个电缆调制解调器,因此消除了对每个电缆调制解调器的时钟的需要。

    Method of cryptographic synchronization
    6.
    发明授权
    Method of cryptographic synchronization 有权
    密码同步方法

    公开(公告)号:US07752441B2

    公开(公告)日:2010-07-06

    申请号:US11352950

    申请日:2006-02-13

    IPC分类号: H04L9/32

    摘要: The present invention provides a method of cryptographic synchronization. The method may include providing information indicative of a first counter to a first one of a plurality of base stations. The first counter is incremented prior to each message transmitted to each of the plurality of base stations. The method may also include authenticating at least one first message received from the first one of the plurality of base stations in response to providing the information indicative of first counter.

    摘要翻译: 本发明提供一种加密同步的方法。 该方法可以包括向多个基站中的第一个提供指示第一计数器的信息。 在发送到多个基站中的每一个的每个消息之前,第一计数器递增。 响应于提供指示第一计数器的信息,该方法还可包括认证从多个基站中的第一基站接收的至少一个第一消息。

    Hybrid natural random number generator
    7.
    发明授权
    Hybrid natural random number generator 失效
    混合自然随机数发生器

    公开(公告)号:US4545024A

    公开(公告)日:1985-10-01

    申请号:US489265

    申请日:1983-04-27

    IPC分类号: H03K3/84

    CPC分类号: H03K3/84

    摘要: A digital processor (16) is disclosed for improving the statistical characteristics of nondeterministic random-like binary sequence. The basic elements of the digital processor are a feedback loop comprising a delay (17) and a signal combiner (18) and a subsampler (19). Maximum performance of the digital processor is achieved when a relatively prime relationship exists between number of cells in the delay (17) and ratio of the original signaling rate to the output signaling rate of the subsampler (19). Mathematical analysis is presented for showing that the digital processor improves both the equidistribution of the binary variable and autocorrelation statistic of output signal over the nondeterministic random-like binary signal. A further improvement in statistical properties is obtained by using two digital processors (116 and 121) in serial fashion.

    摘要翻译: 公开了一种用于改善非确定性随机二进制序列的统计特性的数字处理器(16)。 数字处理器的基本元件是包括延迟(17)和信号组合器(18)和二次采样器(19)的反馈回路。 当在延迟(17)中的单元数目与原始信令速率与二次采样器(19)的输出信号速率的比率之间存在相对主要的关系时,实现数字处理器的最大性能。 提出了数学分析,表明数字处理器改进了二进制变量的等分布和输出信号的自相关统计量与非确定性随机二进制信号的相关性。 通过以串行方式使用两个数字处理器(116和121)来获得统计特性的进一步改进。