Authentication device, network device, communication system, authentication method, and non-transitory computer readable medium

US11540125B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-11540125-B2
Application numberUS-201816494524-A
CountryUS
Kind codeB2
Filing dateMar 16, 2018
Priority dateMar 17, 2017
Publication dateDec 27, 2022
Grant dateDec 27, 2022

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Provided is an authentication device capable of generating a master key suited to a UE in a 5GS. The authentication device ( 10 ) includes a communication unit ( 11 ) configured to, in registration processing of user equipment (UE), acquire UE key derivation function (KDF) capabilities indicating a pseudo random function supported by the UE, a selection unit ( 12 ) configured to select a pseudo random function used for generation of a master key related to the UE by use of the UE KDF capabilities, and a key generation unit ( 13 ) configured to generate a master key related to the UE by use of the selected pseudo random function.

First claim

Opening claim text (preview).

The invention claimed is: 1. An authentication device comprising: at least one memory storing instructions, and at least one processor configured to execute the instructions to: receive a registration request message including UE key derivation function (KDF) capabilities indicating a pseudo random function supported by the UE transmitted from the UE; acquire the UE KDF capabilities; select a pseudo random function used for generation of a master key related to the UE by use of the UE KDF capabilities; and generate a master key related to the UE by use of the selected pseudo random function. 2. The authentication device according to claim 1 , wherein the at least one processor is further configured to execute the instructions to generate second authentication information by use of the master key, and send the second authentication information to a network device. 3. The authentication device according to claim 2 , wherein the second authentication information includes a session key used for communication with the UE connected to a non-3rd Generation Partnership Project (3GPP) access network or a 3GPP access network. 4. The authentication device according to claim 1 , wherein the at least one processor is further configured to execute the instructions to generate the master key by use of first authentication information generated in a subscriber information management device and the selected pseudo random function. 5. The authentication device according to claim 4 , wherein the at least one processor is further configured to execute the instructions to send a message requesting the first authentication information, the message being addressed to the subscriber information management device, and receives the first authentication information in response to the message. 6. A network device comprising: at least one memory storing instructions, and at least one processor configured to execute the instructions to: in registration processing of a UE, acquire authentication information generated based on a master key generated by use of a pseudo random function supported by a UE indicated in UE KDF capabilities included in a registration request message transmitted from the UE; store the authentication information; and in re-registration processing of the UE, send the stored authentication information in response to a message requesting authentication information. 7. The network device according to claim 6 , wherein the authentication information includes a session key used for communication with the UE connected to a non-3GPP access network or a 3GPP access network. 8. An authentication method comprising: receiving a registration request message including user equipment (UE) key derivation function (KDF) capabilities indicating a pseudo random function supported by the UE transmitted from the UE; acquiring the UE KDF capabilities; selecting a pseudo random function used for generation of a master key related to the UE by use of the UE KDF capabilities; and generating a master key related to the UE by use of the selected pseudo random function. 9. The authentication device according to claim 1 , wherein the at least one processor is further configured to execute the instructions to: acquire a Subscriber Parameter Identifier (SUPI) in the registration processing of the UE, and generate the master key related to the UE by use of the selected pseudo random function and the SUPI. 10. The authentication device according to claim 5 , wherein the at least one processor is further configured to execute the instructions to: generate second authentication information by use of the master key, and send the second authentication information to a network device.

Assignees

Inventors

Classifications

  • applying self-generating credentials, e.g. instead of receiving credentials from an authority or from another peer, the credentials are generated at the entity itself · CPC title

  • Key distribution or pre-distribution; Key agreement · CPC title

  • Switchboards · CPC title

  • H04L63/205Primary

    involving negotiation or determination of the one or more network security mechanisms to be used, e.g. by negotiation between the client and the server or between peers or by selection according to the capabilities of the entities involved (negotiation of communication capabilities H04L69/24) · CPC title

  • Pre-authentication · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US11540125B2 cover?
Provided is an authentication device capable of generating a master key suited to a UE in a 5GS. The authentication device ( 10 ) includes a communication unit ( 11 ) configured to, in registration processing of user equipment (UE), acquire UE key derivation function (KDF) capabilities indicating a pseudo random function supported by the UE, a selection unit ( 12 ) configured to select a pseudo…
Who is the assignee on this patent?
Nec Corp
What technology area does this patent fall under?
Primary CPC classification H04W12/0431. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Dec 27 2022 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 2 related publications on this page (citations in our corpus or others sharing the same primary CPC).