Authentication of warning messages in a network

US9467433B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-9467433-B2
Application numberUS-201214130166-A
CountryUS
Kind codeB2
Filing dateJun 14, 2012
Priority dateJul 1, 2011
Publication dateOct 11, 2016
Grant dateOct 11, 2016

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

There is described herein a device ( 101 ) for communicating with a network. The device ( 101 ) comprises a communications unit for receiving data, a notification device for providing a notification to a user, and a control unit for controlling the operation of the communications unit and notification unit. The communications unit is configured to receive an information message ( 110, 112, 115 ), and to receive security authentication data ( 110, 112, 115 ) associated with the information message if such security authentication data is available. The control unit is configured to operate in a first or second configuration. In the first configuration it ignores the security authentication data, ( 111, 113 ), and instructs the notification unit to convey the notification to the user. In the second configuration, it verifies the information message ( 116 ) on the basis of the security authentication data and instructs the notification unit to convey the notification to the user if the verification is successful. The communications unit is configured to receive a configuration message ( 114 ) indicating the configuration in which the control unit should operate, and the control unit is configured to change configuration if the indicated configuration is different to the current configuration.

First claim

Opening claim text (preview).

The invention claimed is: 1. A device for communicating with a network, the device comprising: a communications circuit for receiving data; a notification circuit for conveying a notification to a user; and a control circuit for controlling operation of the communications circuit and the notification circuit; wherein: the communications circuit is configured to receive both an information message and security authentication data associated with the information message, wherein the information message includes the notification; the control circuit is configured to selectively operate in a first configuration in which the control circuit ignores the security authentication data, and instructs the notification circuit to convey the notification to the user without using the security authentication data to verify the information message, and a second configuration in which the control circuit verifies the information message based on the security authentication data and instructs the notification circuit to convey the notification to the user responsive to a determination that the verification is successful; and the communications circuit is configured to receive a configuration message comprising an indicated configuration that indicates whether the control circuit should operate in the first configuration or the second configuration; and the control circuit is configured to change configuration responsive to a determination that the indicated configuration is different than a current configuration. 2. The device of claim 1 , wherein the control circuit is configured to operate in the first configuration in one or more of the following situations: when the device is switched on for the first time; when the device roams to a new network; when the device has been configured via a second configuration message that indicates that the device should operate in the first configuration; and following an interruption to communication; and wherein the control circuit is further configured to switch to the second configuration upon reception of a third configuration message that indicates that the control circuit should operate in the second configuration. 3. The device of claim 1 , wherein the configuration of the control circuit is stored in a configuration storage circuit associated with the device. 4. The device of claim 3 , wherein the configuration storage circuit or a key storage circuit, or both, are included in a removable entity. 5. The device of claim 4 , wherein the removable entity is capable of performing processing of the parts of GSM-AKA, UMTS-AKA or EPS-AKA that is performed by a SIM or USIM module. 6. The device of claim 1 , wherein the communications circuit is configured to receive one or more keys, wherein a key storage circuit associated with the device is configured to store the one or more keys, and wherein the control circuit is configured to use at least one of the one or more keys to verify the information message. 7. The device of claim 6 , wherein the one or more keys are one or more public keys. 8. The device of claim 1 , wherein the notification circuit comprises a display device, configured in such a way that conveying the notification to the user comprises displaying information contained in the information message. 9. The device of claim 8 , wherein the configuration message further includes an indication of security information that should be displayed to the user, and wherein the control circuit is configured to, when the information message is received, instruct the display device to display the security information to the user along with the information in the information message dependent upon the indication in the configuration message. 10. The device of claim 1 , wherein the information message is a Public Warning System message. 11. The device of claim 1 , wherein the control circuit is configured to authenticate the configuration message. 12. A serving node for use in a telecommunications network, comprising: a communications circuit for sending data; a storage medium for storing data; and a control circuit for controlling the operation of the communications circuit and the storage medium; wherein: the communications circuit is configured to send a configuration message to a user device in the telecommunications network, the configuration message including an indication as to whether the user device should operate in a first configuration in which the user device receives a first information message and associated first security authentication data and, subsequently, conveys a first notification included in the first information message to a user without using the first security authentication data to verify the first information message, or a second configuration in which the user device receives a second information message and associated second security authentication data and, subsequently, verifies the second information message based upon the second security authentication data and, responsive to a successful verification, conveys a second notification included in the second information message to the user. 13. The serving node of claim 12 , wherein the configuration message further includes an indication of security information that should be displayed to the user. 14. The serving node of claim 12 , wherein the information message is a Public Warning System message. 15. A method for activating the use of security authentication data in a user device in a telecommunications network, the method comprising: receiving a configuration message comprising a configuration indication; selectively setting the user device to operate in a first configuration or a second configuration, on the basis of the configuration indication, such that the user device, when operating in the first configuration, receives a first information message and associated first security authentication data and processes the first information message without using the first security authentication data to verify the first information message and, when operating in the second configuration, receives a second information message and associated second security authentication data associated with the second information message and verifies the second information message based on the second security authentication data before processing the second information message. 16. A method for operating a user device in a telecommunications network, the method comprising: receiving both an information message and security authentication data associated with the information message, the information message including a notification; processing the information message dependent upon whether the user device is configured in a first configuration or a second configuration, such that, in the first configuration, the security authentication data is ignored and the notification is conveyed to a user without using the security authentication data to verify the information message, and, in the second configuration, the information message is verified based on the security authentication data and the notification is conveyed to the user responsive to a determination that the verification is successful; receiving a configuration message comprising an indicated configuration that indicates whether the user device should operate in the first configuration or the second configuration; and changing configuration responsive to a determination that the indicated configuration is different than a current configuration. 17. A method for operating a serving node in a teleco

Assignees

Inventors

Classifications

  • Services for handling of emergency or hazardous situations, e.g. earthquake and tsunami warning systems [ETWS] · CPC title

  • received data contents, e.g. message integrity · CPC title

  • H04L63/08Primary

    for authentication of entities (cryptographic mechanisms or cryptographic arrangements for entity authentication H04L9/32) · CPC title

  • Electricity · mapped topic

  • Integrity · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US9467433B2 cover?
There is described herein a device ( 101 ) for communicating with a network. The device ( 101 ) comprises a communications unit for receiving data, a notification device for providing a notification to a user, and a control unit for controlling the operation of the communications unit and notification unit. The communications unit is configured to receive an information message ( 110, 112, 115 …
Who is the assignee on this patent?
Wifvesson Monica, Liljenstam Michael, Mattsson John, and 2 more
What technology area does this patent fall under?
Primary CPC classification H04L63/08. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Oct 11 2016 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).