Authentication method and related apparatus

US12581291B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-12581291-B2
Application numberUS-202318331948-A
CountryUS
Kind codeB2
Filing dateJun 9, 2023
Priority dateDec 18, 2020
Publication dateMar 17, 2026
Grant dateMar 17, 2026

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

This disclosure provides an authentication method and a related apparatus. The method includes: A terminal device receives a first received encrypted reference signal corresponding to a first sent encrypted reference signal that is generated by an access network device using a pilot key and a first reference signal and transmitted through a channel; the terminal device performs channel estimation by using the first received encrypted reference signal and the first sent encrypted reference signal, to obtain downlink channel state information; and the terminal device sends first information to the access network device, where the first information includes the downlink channel state information, to effectively defend against man-in-the-middle attacks.

First claim

Opening claim text (preview).

What is claimed is: 1 . An authentication method, comprising: receiving, by a terminal device, a first received encrypted reference signal corresponding to a first sent encrypted reference signal that is generated by an access network device using a pilot key and a first reference signal and is transmitted through a channel; performing, by the terminal device, channel estimation by using the first received encrypted reference signal and the first sent encrypted reference signal, to obtain downlink channel state information; and sending, by the terminal device to the access network device, first information including the downlink channel state information. 2 . The method of claim 1 , wherein the first sent encrypted reference signal comprises at least two same first encrypted sequences each obtained by encrypting the first reference signal using the pilot key. 3 . The method of claim 1 , wherein the first sent encrypted reference signal comprises a hash chain having at least two binary sequences, the at least two binary sequences including an encrypted sequence obtained by encrypting the first reference signal using the pilot key. 4 . The method of claim 1 , wherein the pilot key is obtained by performing a one-way hash operation on a shared key, wherein the shared key is obtained by using a private key of the terminal device and a public key on a network device side, or the shared key is obtained by using a private key on the network device side and a public key of the terminal device. 5 . The method of claim 1 , wherein the first information further comprises a second sent encrypted reference signal obtained by using the pilot key and a second reference signal. 6 . The method of claim 1 , before the performing the channel estimation, the method further comprising: generating, by the terminal device, the first sent encrypted reference signal using the pilot key and the first reference signal. 7 . An apparatus, comprising: a processor, and a non-transitory memory storing program instructions that, when executed by the processor, cause the apparatus to perform the operations: receiving, from a terminal device, a second received encrypted reference signal corresponding to a second sent encrypted reference signal that is generated by the terminal device using a pilot key and a second reference signal and transmitted through a channel; performing channel estimation by using the second received encrypted reference signal and the second sent encrypted reference signal, to obtain uplink channel state information; generating channel authentication information by using the uplink channel state information, the channel authentication information for verifying whether a message received by the access network device from the terminal device is valid or invalid; and sending the channel authentication information to a first network device. 8 . The apparatus of claim 7 , wherein the second sent encrypted reference signal comprises at least two same third encrypted sequences each obtained by encrypting the second reference signal by using the pilot key. 9 . The apparatus of claim 7 , wherein the second sent encrypted reference signal comprises a hash chain having at least two binary sequences including an encrypted sequence obtained by encrypting the second reference signal using the pilot key. 10 . The apparatus of claim 7 , wherein the pilot key is obtained by performing a one-way hash operation on a shared key, wherein the shared key is obtained by using a private key on a network device side and a public key of the terminal device, or the shared key is obtained by using a public key on the network device side and a private key of the terminal device. 11 . The apparatus of claim 7 , wherein before the sending the channel authentication information, the program instructions further cause the apparatus to perform the operations: demodulating, based on the uplink channel state information, first information from the terminal device, to obtain downlink channel state information; and generating channel authentication information based on the uplink channel state information and the downlink channel state information. 12 . The apparatus of claim 7 , wherein the program instructions further cause the apparatus to perform the operations: sending, to the terminal device, a first sent encrypted reference signal obtained by using the pilot key and a first reference signal; receiving, from the terminal device, downlink channel state information that is generated by the terminal device in response to the first sent encrypted reference signal; and generating a channel authentication parameter in accordance with the downlink channel state information and the uplink channel state information, the channel authentication parameter corresponding to the channel authentication information. 13 . The apparatus of claim 12 , wherein the channel authentication information comprises the channel authentication parameter. 14 . The apparatus of claim 7 , wherein the program instructions further cause the apparatus to perform the operations: generating the second sent encrypted reference signal using the pilot key and the second reference signal. 15 . An apparatus, comprising: a processor, and a non-transitory memory storing program instructions that, when executed by the processor, cause the apparatus to perform the operations: receiving, from an access network device, a first received encrypted reference signal corresponding to a first sent encrypted reference signal that is generated by the access network device using a pilot key and a first reference signal and is transmitted through a channel; performing channel estimation by using the first received encrypted reference signal and the first sent encrypted reference signal, to obtain downlink channel state information; and sending, to the access network device, first information including the downlink channel state information. 16 . The apparatus of claim 15 , wherein the first sent encrypted reference signal comprises at least two same first encrypted sequences each obtained by encrypting the first reference signal using the pilot key. 17 . The apparatus of claim 15 , wherein the first sent encrypted reference signal comprises a hash chain having at least two binary sequences, the at least two binary sequences including an encrypted sequence obtained by encrypting the first reference signal using the pilot key. 18 . The apparatus of claim 15 , wherein the pilot key is obtained by performing a one-way hash operation on a shared key, wherein the shared key is obtained by using a private key of the terminal device and a public key on a network device side, or the shared key is obtained by using a private key on the network device side and a public key of the terminal device. 19 . The apparatus of claim 15 , wherein the first information further comprises a second sent encrypted reference signal obtained by using the pilot key and a second reference signal. 20 . The apparatus of claim 15 , wherein the program instructions further cause the apparatus to perform the operations: generating the first sent encrypted reference signal using the pilot key and the first reference signal.

Assignees

Inventors

Classifications

  • Allocation of pilot signals, i.e. of signals known to the receiver (allocation of control signalling H04L5/0053; use of control signalling H04L5/0091) · CPC title

  • of the control plane, e.g. signalling traffic · CPC title

  • H04W12/06Primary

    Authentication · CPC title

  • Protecting privacy or anonymity, e.g. protecting personally identifiable information [PII] · CPC title

  • Counter-measures against attacks; Protection against rogue devices · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US12581291B2 cover?
This disclosure provides an authentication method and a related apparatus. The method includes: A terminal device receives a first received encrypted reference signal corresponding to a first sent encrypted reference signal that is generated by an access network device using a pilot key and a first reference signal and transmitted through a channel; the terminal device performs channel estimati…
Who is the assignee on this patent?
Huawei Tech Co Ltd
What technology area does this patent fall under?
Primary CPC classification H04W12/06. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Mar 17 2026 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 12 related publications on this page (citations in our corpus or others sharing the same primary CPC).