Method and system to authenticate multiple IMS identities

US9913236B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-9913236-B2
Application numberUS-201615247065-A
CountryUS
Kind codeB2
Filing dateAug 25, 2016
Priority dateJun 30, 2015
Publication dateMar 6, 2018
Grant dateMar 6, 2018

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

A method and UE for registering with a third network node using IMS, the method creating a tunnel; authenticating a first public identity associated with the UE to the first network node; receiving configuration information with a second private identifier and a second public user identifier, and registering with a third network node using the second private identifier and the second public user identifier. Further, a method and first network node configured for authentication between a UE and a third network node using IMS, the method establishing a tunnel; authenticating a first public identity of the UE; receiving a configuration information message from the UE including a network identifier for a network the UE is registered on; obtaining, from a second network node, a second private identifier and second public user identifier; and providing the second private identifier and second public user identifier to the UE.

First claim

Opening claim text (preview).

The invention claimed is: 1. A method at a user equipment for registering with a third network node using an internet protocol (IP) multimedia subsystem (IMS), the method comprising: creating a tunnel between the user equipment and a first network node; sending a first public identity associated with the user equipment to the first network node; receiving configuration information from the first network node with a second private user identifier and a second public user identifier, the second private user identifier and second public user identifier being associated with a second network node; registering with a third network node using the second private user identifier and the second public user identifier; wherein the configuration information is divided into validity areas, wherein the validity area is defined based on a Public Land Mobile Network (PLMN) identity or a geographic bounding area the user equipment falls within, and wherein the user equipment uses the second private user identifier and second public user identifier based on the location of the user equipment. 2. The method of claim 1 , wherein a certificate is provided in the tunnel. 3. The method of claim 2 , wherein the certificate is created based on an identifier at the user equipment. 4. The method of claim 3 , wherein the identifier is one of a device identifier or a private user identifier. 5. The method of claim 4 , wherein the identifier is stored on a universal integrated circuit card on the user equipment. 6. The method of claim 4 , wherein the identifier is stored in a mobile equipment (ME) of the user equipment. 7. The method of claim 1 , wherein the creating uses a certificate requested by the user equipment. 8. The method of claim 1 , wherein the authenticating provides from the user equipment to the first network node at least one of a device identifier or a network the UE is registered on. 9. The method of claim 1 , wherein the receiving configuration information is subsequent to providing a configuration request to the first network node, including a network identifier that the user equipment is registered on. 10. The method of claim 1 , wherein the registering includes receiving challenge vectors for the second private user identifier and second public user identifier. 11. A user equipment configured for registering with a third network node using an internet protocol (IP) multimedia subsystem (IMS), the user equipment comprising: a processor; and a communications subsystem, wherein the user equipment is configured to: create a tunnel between the user equipment and a first network node; send a first public identity associated with the user equipment to the first network node; receive configuration information from the first network node with a second private user identifier and a second public user identifier, the second private user identifier and second public user identifier being associated with a second network node; register with a third network node using the second private user identifier and the second public user identifier; wherein the configuration information is divided into validity areas, wherein the validity area is defined based on a Public Land Mobile Network (PLMN) identity or a geographic bounding area the user equipment falls within, and wherein the user equipment uses the second private user identifier and second public user identifier based on the location of the user equipment. 12. A method at first network node configured for authentication between a user equipment and a third network node using an internet protocol (IP) multimedia subsystem (IMS), the method comprising: establishing a tunnel with the user equipment; sending a first public identity of the user equipment at first network node; receiving a configuration information message from the user equipment, the configuration information message including a network identifier for a network the user equipment is registered on; obtaining, from a second network node, a second private user identifier and second public user identifier; providing configuration information with the second private user identifier and second public user identifier to the user equipment; wherein the configuration information is divided into validity areas, wherein the validity area is defined based on a Public Land Mobile Network (PLMN) identity or a geographic bounding area the user equipment falls within, and wherein the user equipment uses the second private user identifier and second public user identifier based on the location of the user equipment. 13. The method of claim 12 , wherein the establishing uses a certificate requested by the user equipment. 14. The method of claim 13 , wherein the certificate is created based on an identifier at the user equipment. 15. The method of claim 14 , wherein the identifier is one of a device identifier or a private user identifier from a universal integrated circuit card on the user equipment. 16. The method of claim 14 , wherein the identifier is stored in a mobile equipment (ME) of the user equipment. 17. The method of claim 12 , wherein the authenticating includes receiving from the user equipment at the first network node at least one of a device identifier or a network the UE is registered on. 18. A first network node configured for authentication between a user equipment and a third network node using an internet protocol (IP) multimedia subsystem (IMS) the first network node comprising: a processor; and a communications subsystem, wherein the first network node is configured to: establish a tunnel with the user equipment; send a first public identity of the user equipment at first network node; receive a configuration information message from the user equipment, the configuration information message including a network identifier for a network the user equipment is registered on; obtain, from a second network node, a second private user identifier and second public user identifier; provide configuration information with the second private user identifier and second public user identifier to the user equipment; wherein the configuration information is divided into validity areas, wherein the validity area is defined based on a Public Land Mobile Network (PLMN) identity or a geographic bounding area the user equipment falls within, and wherein the user equipment uses the second private user identifier and second public user identifier based on the location of the user equipment.

Assignees

Inventors

Classifications

  • for selective distribution or broadcast · CPC title

  • Push-to-Talk [PTT] or Push-On-Call services · CPC title

  • Setup of transport tunnels · CPC title

  • using SIMs (USIMs) or calling cards · CPC title

  • Connection setup · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US9913236B2 cover?
A method and UE for registering with a third network node using IMS, the method creating a tunnel; authenticating a first public identity associated with the UE to the first network node; receiving configuration information with a second private identifier and a second public user identifier, and registering with a third network node using the second private identifier and the second public use…
Who is the assignee on this patent?
Blackberry Ltd
What technology area does this patent fall under?
Primary CPC classification H04M15/57. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Mar 06 2018 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).