Data transmission method, user equipment and GPRS/EDGE radio access network
    1.
    发明授权
    Data transmission method, user equipment and GPRS/EDGE radio access network 有权
    数据传输方式,用户设备和GPRS / EDGE无线接入网

    公开(公告)号:US07734049B2

    公开(公告)日:2010-06-08

    申请号:US09920057

    申请日:2001-08-01

    摘要: The invention relates to a method for transmitting data between a GRPS/EDGE radio access network and user equipment of a mobile system, and to user equipment using the method, and to GERAN. In the method, the data to be transmitted is encrypted using an encryption algorithm at the transmitting end, the encrypted data is transmitted from the transmitting end to the receiving end, and the transmitted data is decrypted using an encryption algorithm at the receiving end. The used encryption algorithm is an encryption algorithm of the radio access network UTRAN employing the wideband code division multiple access method of the universal mobile telecommunications system, in which case the input parameters of agreed format required by the encryption algorithm are created on the basis of the operating parameters of the GPRS/EDGE radio access network GERAN.

    摘要翻译: 本发明涉及用于在GRPS / EDGE无线电接入网络和移动系统的用户设备之间以及使用该方法的用户设备和GERAN上发送数据的方法。 在该方法中,使用发送端的加密算法对要发送的数据进行加密,将加密数据从发送端发送到接收端,并且在接收端使用加密算法解密所发送的数据。 所使用的加密算法是采用通用移动电信系统的宽带码分多址方式的无线接入网络UTRAN的加密算法,在这种情况下,加密算法所需的约定格式的输入参数是基于 GPRS / EDGE无线接入网GERAN的运行参数。

    Counter initialization, particularly for radio frames
    3.
    发明授权
    Counter initialization, particularly for radio frames 有权
    计数器初始化,特别是无线电帧

    公开(公告)号:US08155319B2

    公开(公告)日:2012-04-10

    申请号:US12500510

    申请日:2009-07-09

    IPC分类号: H04L29/06

    CPC分类号: H04W12/06 H04W12/02

    摘要: A method for protecting traffic in a radio access network connected to at least two core networks. The method comprises maintaining a corenetwork-specific authentication protocol and a radio-bearer-specific ciphering process, and generating, for each ciphering process, a count parameter comprising a cyclical sequence number and a hyperframe number (HFN) which is incremented each time the cyclical sequence number completes one cycle. For each core network or authentication protocol, a first radio bearer of a session is initialized with a HFN exceeding the highest HFN used during the previous session. When a new radio bearer is established, the mobile station selects the highest HFN used during the session for the core network in question, increments it and uses it for initializing the count parameter for the new radio bearer. At the end of a session, the mobile station stores at least part of the highest HFN used during the session.

    摘要翻译: 一种用于保护连接到至少两个核心网络的无线电接入网络中的业务的方法。 该方法包括维护核心网特定认证协议和无线电承载特定加密过程,并且为每个加密过程生成包括循环序列号和超帧号(HFN)的计数参数,每次循环 序列号完成一个周期。 对于每个核心网络或认证协议,会话的第一无线电承载以超过前一会话期间使用的最高HFN的HFN被初始化。 当建立新的无线电承载时,移动台选择用于所讨论的核心网的会话期间使用的最高HFN,将其增加并用于初始化新的无线承载的计数参数。 在会话结束时,移动台存储在会话期间使用的最高HFN的至少一部分。

    Counter initialization, particularly for radio frames
    4.
    发明授权
    Counter initialization, particularly for radio frames 有权
    计数器初始化,特别是无线电帧

    公开(公告)号:US07577256B2

    公开(公告)日:2009-08-18

    申请号:US11855208

    申请日:2007-09-14

    IPC分类号: H04K1/00

    CPC分类号: H04W12/06 H04W12/02

    摘要: A method for protecting traffic in a radio access network connected to at least two core networks. The method comprises maintaining a core-network-specific authentication protocol and a radio-bearer-specific ciphering process, and generating, for each ciphering process, a count parameter comprising a cyclical sequence number and a hyperframe number (HFN) which is incremented each time the cyclical sequence number completes one cycle. For each core network or authentication protocol, a first radio bearer of a session is initialized with a HFN exceeding the highest HFN used during the previous session. When a new radio bearer is established, the mobile station selects the highest HFN used during the session for the core network in question, increments it and uses it for initializing the count parameter for the new radio bearer. At the end of a session, the mobile station stores at least part of the highest HFN used during the session.

    摘要翻译: 一种用于保护连接到至少两个核心网络的无线电接入网络中的业务的方法。 该方法包括维护核心网特定认证协议和无线电承载特定加密过程,并为每个加密过程生成包括循环序列号和超帧号(HFN)的计数参数,每个时间间隔增加 循环序列号完成一个周期。 对于每个核心网络或认证协议,会话的第一无线电承载以超过前一会话期间使用的最高HFN的HFN被初始化。 当建立新的无线电承载时,移动台选择用于所讨论的核心网的会话期间使用的最高HFN,将其增加并用于初始化新的无线承载的计数参数。 在会话结束时,移动台存储在会话期间使用的最高HFN的至少一部分。

    Method for sharing the authorization to use specific resources
    6.
    发明授权
    Method for sharing the authorization to use specific resources 失效
    共享授权使用特定资源的方法

    公开(公告)号:US07343014B2

    公开(公告)日:2008-03-11

    申请号:US10621258

    申请日:2003-07-15

    IPC分类号: H04K9/00 H04L9/00

    摘要: The invention relates to a method for sharing the authorization to use specific resources among multiple devices, which resources are accessible via messages on which a secret key operation was applied with a predetermined secret master key d available at a master device 11. In order to provide an optimized sharing of authorization, it is proposed that the master device 11 splits the secret master key d into two parts d1, d2. A piece of information relating to the first part d1 of the secret master key d is forwarded to the slave device 13 for enabling this slave device to perform a partial secret key operation on a message m. The second part d2 of the secret master key d is forwarded to a server 12 for enabling the server 12 to perform partial secret key operations on a message m received from the slave device 13.

    摘要翻译: 本发明涉及一种用于共享在多个设备之间使用特定资源的授权的方法,所述资源可以通过使用在主设备11上可用的预定秘密主密钥d应用秘密密钥操作的消息来访问。 为了提供优化的授权共享,建议主设备11将秘密主密钥d分割成两部分d 2,d 2 2。 与秘密主密钥d的第一部分d 1相关的信息被转发到从设备13,以使该从设备能够对消息m执行部分秘密密钥操作。 秘密主密钥d的第二部分d 2 2被转发到服务器12,以使得服务器12能够对从设备13接收到的消息m执行部分秘密密钥操作。

    IDENTIFIERS IN A COMMUNICATION SYSTEM
    7.
    发明申请
    IDENTIFIERS IN A COMMUNICATION SYSTEM 审中-公开
    通信系统中的标识符

    公开(公告)号:US20080002829A1

    公开(公告)日:2008-01-03

    申请号:US11769621

    申请日:2007-06-27

    IPC分类号: H04Q7/38

    摘要: An identifier containing at least one encrypted part is received at a first network entity. A second network entity may then be determined based on the identifier. A request for assistance in decryption of the identifier from the second network entity may be sent from the first entity to the second network entity. The second network entity may then assist the first networks entity in an appropriate manner.

    摘要翻译: 在第一网络实体处接收包含至少一个加密部分的标识符。 然后可以基于标识符来确定第二网络实体。 从第二网络实体解密标识符的请求可以从第一实体发送到第二网络实体。 然后,第二网络实体可以以适当的方式辅助第一网络实体。

    Frame synchronization mechanism
    8.
    发明授权
    Frame synchronization mechanism 有权
    帧同步机制

    公开(公告)号:US07085294B2

    公开(公告)日:2006-08-01

    申请号:US09847580

    申请日:2001-05-03

    IPC分类号: H04J3/06

    摘要: A mechanism for synchronizing transmission of frames in a telecommunications network including a mobile station, a radio network controller, at least one base station. The mobile station and each base station have a corresponding timing reference. The mechanism includes or performs the steps of establishing a connection-specific timing reference which is common to all nodes involved in the connection; determining, for the base stations an offset between the timing reference of the base station in question and the CFN; and using the offset in the base stations, to compensate for the difference between the timing references.

    摘要翻译: 一种在包括移动台,无线电网络控制器,至少一个基站的电信网络中同步帧的传输的机制。 移动台和每个基站具有相应的定时参考。 该机制包括或执行建立连接专用定时参考的步骤,该定时参考对于连接中涉及的所有节点是共同的; 为所述基站确定所述基站的定时参考与所述CFN之间的偏移; 并使用基站中的偏移来补偿定时参考之间的差异。

    Integrity check in a communication system

    公开(公告)号:US07009940B2

    公开(公告)日:2006-03-07

    申请号:US09975410

    申请日:2001-10-10

    IPC分类号: H04J1/16

    摘要: A method of communication between a first node and a second node for a system where a plurality of different channels is provided between said first and second node. The method comprises the step of calculating an integrity output. The integrity output is calculated from a plurality of values, some of said values being the same for said different channels. At least one of said values is arranged to comprise information relating to the identity of said channel, each channel having a different identity. After the integrity output has been calculated, Information relating to the integrity output is transmitted from one of said nodes to the other.

    Method of preventing or limiting the number of simultaneous sessions in wireless local area network (WLAN)
    10.
    发明申请
    Method of preventing or limiting the number of simultaneous sessions in wireless local area network (WLAN) 有权
    在无线局域网(WLAN)中防止或限制同时会话数量的方法

    公开(公告)号:US20050243719A1

    公开(公告)日:2005-11-03

    申请号:US10838564

    申请日:2004-05-03

    CPC分类号: H04L12/40

    摘要: A method, program product and system of preventing or limiting the number of simultaneous sessions in a wireless local area network (WLAN). The method includes: determining whether subscriber terminal information has been changed between an old session and a new session, maintaining a connection with the old session if the subscriber terminal information has not changed, and establishing and authenticating the new session and disconnecting the old session if the subscriber terminal information has changed. A medium access control (MAC) address and a WLAN radio network identification can be compared between the old session and the new session to determine whether subscriber terminal information has been changed.

    摘要翻译: 一种在无线局域网(WLAN)中防止或限制同时会话数量的方法,程序产品和系统。 该方法包括:确定用户终端信息是否在旧会话和新会话之间已经改变,如果用户终端信息没有改变,则保持与旧会话的连接,并建立和认证新会话并断开旧会话,如果 用户终端信息已经改变。 可以在旧会话和新会话之间比较介质访问控制(MAC)地址和WLAN无线电网络标识,以确定用户终端信息是否已经改变。