Method for generating a key in a network and user on a network and network

US9571277B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-9571277-B2
Application numberUS-201514711219-A
CountryUS
Kind codeB2
Filing dateMay 13, 2015
Priority dateMay 13, 2014
Publication dateFeb 14, 2017
Grant dateFeb 14, 2017

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

A method for generating a key in a network. The network includes at least one first user and one second user having a secured communication link to one another, and a third user, to which a secured communication link is to be established. The first user and the third user each generate a first partial value sequence from properties of the transmission channel between the first user and the third user. The second user and the third user each generate a second partial value sequence from properties of the transmission channel between the second user and the third user. In a secured part of the network, which includes at least the first and the second user, but not the third user, the key is ascertained from at least the first partial value sequence of the first user and the second partial value sequence of the second user. The key is also generated in the third user from at least the first partial value sequence and the second partial value sequence.

First claim

Opening claim text (preview).

What is claimed is: 1. A method for generating a key in a network, the network including, in a secured network part, at least one first user and one second user having a secured communication link to one another and including a third user, to which the secured communication link is to be one of established and renewed, the method comprising: causing the first user and the third user to each generate a first partial value sequence from a property of a transmission channel between the first user and the third user; causing the second user and the third user to each generate a second partial value sequence from a property of a transmission channel between the second user and the third user; ascertaining, in the secured network part of the network, the key on the basis of at least the first partial value sequence of the first user and the second partial value sequence of the second user; and generating the key in the third user from at least the first partial value sequence and the second partial value sequence, wherein the second user transmits the second partial value sequence to the first user, and wherein the first user generates the key from at least the first partial value sequence and the second partial value sequence, wherein the first user additionally transmits the first partial value sequence to the second user, and wherein the second user generates the key from at least the first partial value sequence and the second partial value sequence, and wherein the first and second partial value sequences are bit sequences determined by information calibration. 2. The method as recited in claim 1 , wherein the first user and the second user ascertain the properties of the particular transmission channel to the third user based on the same transmission signal of the third user. 3. The method as recited in claim 1 , wherein the first user and the second user ascertain the properties of the particular transmission channel to the third user from separate individual transmissions of the third user to the first user and to the second user, respectively. 4. The method as recited in claim 1 , wherein the first user conducts the first partial value sequence and the second user conducts the second partial value sequence to a central node of the network, and wherein the central node generates the key from at least the first partial value sequence and the second partial value sequence. 5. The method as recited in claim 4 , wherein the first user and the second user have a secure communication link to the central node. 6. The method as recited in claim 1 , wherein: the first user conducts the first partial value sequence and the second user conducts the second partial value sequence to a network-external node, and the network-external node generates the key from at least the first partial value sequence and the second partial value sequence and in turn provides the key to the network. 7. The method as recited in claim 6 , wherein the first user and the second user have a secure communication link to a network-external node. 8. The method as recited in claim 1 , wherein a property of the transmission channel includes one of a phase shift, a damping, and a variable derived from one of the phase shift and the damping. 9. The method as recited in one of claim 1 , wherein the first and second partial value sequences are ascertained channel parameters. 10. The method as recited in claim 1 , wherein the key is generated from the first and second partial value sequences by a logical linkage of the first and second partial value sequences. 11. The method as recited in claim 10 , wherein the logical linkage includes one of an XOR linkage, a concatenation of the first and second partial value sequences, and an application of a hash function. 12. A network, comprising: at least one first network device; at least one second network device; a secured communication link connecting the first network device and the second network device; a third network device, to which the secured communication link is to be established; an arrangement for causing the first network device and the third network device to each generate a first partial value sequence from a property of a transmission channel between the first network device and the third network device; an arrangement for causing the second network device and the third network device to each generate a second partial value sequence from a property of a transmission channel between the second network device user and the third network device; an arrangement for ascertaining, in a secured part of the network, a key on the basis of at least the first partial value sequence of the first network device and the second partial value sequence of the second network device; and generating the key in the third network device from at least the first partial value sequence and the second partial value sequence, wherein the second network device transmits the second partial value sequence to the first network device, and wherein the first network device generates the key from at least the first partial value sequence and the second partial value sequence, wherein the first network device additionally transmits the first partial value sequence to the second network device, and wherein the second network device generates the key from at least the first partial value sequence and the second partial value sequence, and wherein the first and second partial value sequences are bit sequences determined by information calibration. 13. The network as recited in claim 12 , wherein the first network device and the second network device are base stations of a wireless network. 14. A non-transitory machine-readable storage medium having a computer program that when executed by a computer is configured to carry out a method for generating a key in a network, the network including, in a secured network part, at least one first user and one second user having a secured communication link to one another and including a third user, to which the secured communication link is to be one of established and renewed, the method comprising: causing the first user and the third user to each generate a first partial value sequence from a property of a transmission channel between the first user and the third user; causing the second user and the third user to each generate a second partial value sequence from a property of a transmission channel between the second user and the third user; ascertaining, in the secured network part of the network, the key on the basis of at least the first partial value sequence of the first user and the second partial value sequence of the second user; and generating the key in the third user from at least the first partial value sequence and the second partial value sequence, wherein the second user transmits the second partial value sequence to the first user, and wherein the first user generates the key from at least the first partial value sequence and the second partial value sequence, wherein the first user additionally transmits the first partial value sequence to the second user, and wherein the second user generates the key from at least the first partial value sequence and the second partial value sequence, and wherein the first and second partial value sequences are bit sequences determined by information calibration. 15. A method for generating a key in a network, the network including, in a secured network part, at least one first user and one second user having a secured communication link to one another and including a third user, to which the secured communication lin

Assignees

Inventors

Classifications

  • H04L9/0875Primary

    based on channel impulse response [CIR] · CPC title

  • for key exchange, e.g. in peer-to-peer networks (cryptographic mechanisms or cryptographic arrangements for key agreement H04L9/0838) · CPC title

  • wherein the data content is protected, e.g. by encrypting or encapsulating the payload · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US9571277B2 cover?
A method for generating a key in a network. The network includes at least one first user and one second user having a secured communication link to one another, and a third user, to which a secured communication link is to be established. The first user and the third user each generate a first partial value sequence from properties of the transmission channel between the first user and the thir…
Who is the assignee on this patent?
Bosch Gmbh Robert
What technology area does this patent fall under?
Primary CPC classification H04L9/0875. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Feb 14 2017 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).