Abstract:
Methods and instrumentalities are disclosed that enable one or more domains (101, 102, 106, 111, 112, 121, 122) on one or more devices (100, 110, 120) to be owned or controlled by one or more different local or remote owners, while providing a level of system- wide management of those domains. Each domain may have a different owner, and each owner may specify policies for operation of its domain and for operation of its domain in relation to the platform on which the domain resides, and other domains. A system-wide domain manager (107) may be resident on one of the domains (106). The system-wide domain manager may enforce the policies of the domain (106) on which it is resident, and it may coordinate the enforcement of the other domains (111, 112, 121, 122) by their respective policies in relation to the domain (106) in which the system- wide domain manager resides. Additionally, the system- wide domain manager (107) may coordinate interaction among the other domains (111, 112, 121, 122) in accordance with their respective policies.
Abstract:
Systems, methods, and apparatus are provided for generating verification data that may be used for validation of a wireless transmit-receive unit (WTRU). The verification data may be generated using a tree structure having protected registers, represented as root nodes, and component measurements, represented as leaf nodes. The verification data may be used to validate the WTRU. The validation may be performed using split-validation, which is a form of validation described that distributes validation tasks between two or more network entities. Subtree certification is also described, wherein a subtree of the tree structure may be certified by a third party.
Abstract:
An apparatus and method for providing home evolved node-B (H(e)NB) integrity verification and validation using autonomous validation and semi-autonomous validation is disclosed herein.
Abstract:
A method for notifying a broadcast/multicast control (BMC) (256) entity of service unavailability in a wireless transmit/receive unit (WTRU) (250) is disclosed. When a user activates broadcast/multicast services (BMS), the WTRU receives BMS messages in accordance with the BMS schedule. A radio resources control (RRC) entity constantly monitors whether BMS is available in a cell. If the RRC entity detects the BMS service is not available, the RRC entity sends a message to the BMC entity to inform the unavailability of the BMS.
Abstract:
Systems, methods, and instrumentalities are disclosed that provide for a gateway outside of a network domain to provide services to a plurality of devices. For example, the gateway may act as a management entity or as a proxy for the network domain. As a management entity, the gateway may perform a security function relating to each of the plurality of devices. The gateway may perform the security function without the network domain participating or having knowledge of the particular devices. As a proxy for the network, the gateway may receive a command from the network domain to perform a security function relating to each of a plurality of devices. The network may know the identity of each of the plurality of devices. The gateway may perform the security function for each of the plurality of devices and aggregate related information before sending the information to the network domain.
Abstract:
An apparatus and method for providing home evolved node-B (H(e)NB) integrity verification and validation using autonomous validation and semi-autonomous validation is disclosed herein.
Abstract:
Systems, methods, and apparatus are provided for generating verification data that may be used for validation of a wireless transmit-receive unit (WTRU). The verification data may be generated using a tree structure having protected registers, represented as root nodes, and component measurements, represented as leaf nodes. The verification data may be used to validate the WTRU. The validation may be performed using split-validation, which is a form of validation described that distributes validation tasks between two or more network entities. Subtree certification is also described, wherein a subtree of the tree structure may be certified by a third party.
Abstract:
Methods, components and apparatus for implementing platform validation and management (PVM) are disclosed. PVM provides the functionality and operations of a platform validation entity with remote management of devices by device management components and systems such as a home node-B management system or component. Example PVM operations bring devices into a secure target state before allowing connectivity and access to a core network.
Abstract:
Methods, components and apparatus for implementing platform validation and management (PVM) are disclosed. PVM provides the functionality and operations of a platform validation entity with remote management of devices by device management components and systems such as a home node-B management system or component. Example PVM operations bring devices into a secure target state before allowing connectivity and access to a core network.