CN110800331A - 网络验证方法、相关设备及系统 - Google Patents
网络验证方法、相关设备及系统 Download PDFInfo
- Publication number
- CN110800331A CN110800331A CN201880040110.7A CN201880040110A CN110800331A CN 110800331 A CN110800331 A CN 110800331A CN 201880040110 A CN201880040110 A CN 201880040110A CN 110800331 A CN110800331 A CN 110800331A
- Authority
- CN
- China
- Prior art keywords
- authentication
- identifier
- smf
- binding information
- network
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Granted
Links
Images
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/321—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving a third party or a trusted authority
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/0892—Network architectures or network communication protocols for network security for authentication of entities by using authentication-authorization-accounting [AAA] servers or protocols
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/0853—Network architectures or network communication protocols for network security for authentication of entities using an additional device, e.g. smartcard, SIM or a different communication terminal
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3236—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials using cryptographic hash functions
- H04L9/3242—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials using cryptographic hash functions involving keyed hash functions, e.g. message authentication codes [MACs], CBC-MAC or HMAC
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/06—Authentication
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L2209/00—Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
- H04L2209/80—Wireless
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L2463/00—Additional details relating to network architectures or network communication protocols for network security covered by H04L63/00
- H04L2463/082—Additional details relating to network architectures or network communication protocols for network security covered by H04L63/00 applying multi-factor authentication
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Computer Hardware Design (AREA)
- Computing Systems (AREA)
- General Engineering & Computer Science (AREA)
- Business, Economics & Management (AREA)
- Accounting & Taxation (AREA)
- Power Engineering (AREA)
- Mobile Radio Communication Systems (AREA)
- Telephonic Communication Services (AREA)
Abstract
本申请公开了网络认证方法、装置和系统,该方法包括:认证网元接收的UE接入数据网络DN的请求;接收UE的第一认证标识以及UE的第二认证标识;根据第一绑定信息检验所述UE的第一认证标识与所述UE的第二认证标识是否符合所述第一绑定关系,获得认证结果;所述第一绑定信息包括一对或多对第一认证标识与第二认证标识之间的第一绑定关系,所述第一绑定信息的第一认证标识表示用于所述AUSF的认证的标识;所述第一绑定信息中的所述第二认证标识表示用于UE接入所述DN的认证的标识。实施本发明,能够实现降低次要认证过程中的通信负担,降低计算资源消耗,提高次要认证的效率。
Description
PCT国内申请,说明书已公开。
Claims (1)
- PCT国内申请,权利要求书已公开。
Applications Claiming Priority (3)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| SGPCT/SG2017/050366 | 2017-07-20 | ||
| PCT/SG2017/050366 WO2019017835A1 (zh) | 2017-07-20 | 2017-07-20 | 网络验证方法、相关设备及系统 |
| PCT/SG2018/050180 WO2019017840A1 (zh) | 2017-07-20 | 2018-04-09 | 网络验证方法、相关设备及系统 |
Publications (2)
| Publication Number | Publication Date |
|---|---|
| CN110800331A true CN110800331A (zh) | 2020-02-14 |
| CN110800331B CN110800331B (zh) | 2023-03-10 |
Family
ID=65015787
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| CN201880040110.7A Active CN110800331B (zh) | 2017-07-20 | 2018-04-09 | 网络验证方法、相关设备及系统 |
Country Status (4)
| Country | Link |
|---|---|
| US (1) | US20200153830A1 (zh) |
| EP (1) | EP3629613B1 (zh) |
| CN (1) | CN110800331B (zh) |
| WO (2) | WO2019017835A1 (zh) |
Cited By (9)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN113746649A (zh) * | 2020-05-14 | 2021-12-03 | 华为技术有限公司 | 一种网络切片控制方法及通信装置 |
| CN113904781A (zh) * | 2020-06-20 | 2022-01-07 | 华为技术有限公司 | 切片认证方法及系统 |
| CN114374942A (zh) * | 2021-12-29 | 2022-04-19 | 天翼物联科技有限公司 | 基于机卡绑定的业务处理方法、系统、装置和存储介质 |
| CN114731289A (zh) * | 2020-02-28 | 2022-07-08 | 华为技术有限公司 | 一种用户标识的验证方法及相关设备 |
| WO2022247812A1 (zh) * | 2021-05-28 | 2022-12-01 | 华为技术有限公司 | 一种鉴权方法、通信装置和系统 |
| CN115913584A (zh) * | 2021-08-10 | 2023-04-04 | 中国电信股份有限公司 | 鉴权方法、装置、电子设备和计算机可读存储介质 |
| WO2023082222A1 (en) * | 2021-11-15 | 2023-05-19 | Zte Corporation | Methods and systems for authentication in wireless networks |
| WO2023246942A1 (zh) * | 2022-06-25 | 2023-12-28 | 华为技术有限公司 | 通信方法及装置 |
| WO2024230806A1 (zh) * | 2023-05-11 | 2024-11-14 | 华为技术有限公司 | 通信方法和通信设备、存储介质、程序产品 |
Families Citing this family (17)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| ES2900513T3 (es) * | 2019-04-01 | 2022-03-17 | Ntt Docomo Inc | Métodos y componentes de red de comunicación para iniciar una autenticación y una autorización específicas de segmento |
| CN114125807B (zh) | 2019-04-25 | 2024-05-28 | 瑞典爱立信有限公司 | 用于跟踪用户设备的方法和网络节点 |
| CN111615219B (zh) * | 2019-04-30 | 2022-02-22 | 维沃移动通信有限公司 | 一种pc5链路建立方法、设备及系统 |
| US12114153B2 (en) * | 2019-08-19 | 2024-10-08 | Lg Electronics Inc. | Authentication for relay |
| EP3817418B1 (en) | 2019-11-02 | 2024-11-27 | Apple Inc. | Methods and apparatus to support access to services for multiple subscriber identity modules |
| EP4115309A4 (en) * | 2020-03-03 | 2024-03-20 | The Trustees of Princeton University | SYSTEM AND METHOD FOR PHONE PRIVACY |
| EP4162715B1 (en) * | 2020-06-03 | 2025-08-06 | Telefonaktiebolaget LM Ericsson (publ.) | Method and apparatus for authentication and authorization |
| CN113839909B (zh) * | 2020-06-23 | 2023-05-05 | 华为技术有限公司 | 数据报文处理的方法、装置和系统 |
| CN114024693B (zh) * | 2020-07-16 | 2024-11-08 | 中国移动通信有限公司研究院 | 一种认证方法、装置、会话管理功能实体、服务器及终端 |
| DE112021004175T5 (de) * | 2020-08-04 | 2023-08-24 | Intel Corporation | Datenebene für big data und daten als dienst in mobilfunknetzen der nächsten generation |
| CN116114282A (zh) * | 2020-08-07 | 2023-05-12 | 华为技术有限公司 | 一种注册方法及装置 |
| US12149517B2 (en) * | 2020-10-26 | 2024-11-19 | Micron Technology, Inc. | Management of identifications of an endpoint having a memory device secured for reliable identity validation |
| CN116889004A (zh) * | 2021-02-19 | 2023-10-13 | 苹果公司 | 用于边缘数据网络重定位的认证指示 |
| CN116868609A (zh) * | 2021-02-19 | 2023-10-10 | 苹果公司 | 用于边缘数据网络的用户装备认证和授权规程 |
| EP4525496A1 (en) * | 2022-05-09 | 2025-03-19 | Beijing Xiaomi Mobile Software Co., Ltd. | Authentication method and apparatus, and medium and chip |
| US12192759B2 (en) | 2022-07-22 | 2025-01-07 | Cisco Technology, Inc. | Fifth generation (5G) authentication and key agreement user equipment authentication |
| CN115866598B (zh) * | 2023-02-27 | 2023-05-23 | 北京派网科技有限公司 | 一种5g双域专网的零信任安全可信接入方法 |
Citations (7)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN102082775A (zh) * | 2009-11-27 | 2011-06-01 | 中国移动通信集团公司 | 一种用户身份管理方法、装置和系统 |
| CN102209012A (zh) * | 2010-03-29 | 2011-10-05 | 中兴通讯股份有限公司 | 一种终端实现连接建立的方法及系统 |
| CN103200150A (zh) * | 2012-01-04 | 2013-07-10 | 深圳市腾讯计算机系统有限公司 | 身份认证方法和系统 |
| WO2013127456A1 (en) * | 2012-03-01 | 2013-09-06 | Nec Europe Ltd. | Method for providing access of an user end device to a service provided by an application function within a network structure and a network structure |
| CN104936177A (zh) * | 2014-03-20 | 2015-09-23 | 中国移动通信集团广东有限公司 | 一种接入认证方法及接入认证系统 |
| US20160072823A1 (en) * | 2014-09-05 | 2016-03-10 | Qualcomm Incorporated | Using multiple credentials for access and traffic differentiation |
| CN106302345A (zh) * | 2015-05-27 | 2017-01-04 | 阿里巴巴集团控股有限公司 | 一种终端认证方法及装置 |
Family Cites Families (4)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| JP4701670B2 (ja) * | 2004-10-12 | 2011-06-15 | 株式会社日立製作所 | アクセス制御システム、認証サーバ、アプリケーションサーバ、およびパケット転送装置 |
| CN101827361B (zh) * | 2008-11-03 | 2012-10-17 | 华为技术有限公司 | 身份认证方法、可信任环境单元及家庭基站 |
| US9432363B2 (en) * | 2014-02-07 | 2016-08-30 | Apple Inc. | System and method for using credentials of a first client station to authenticate a second client station |
| US9906954B2 (en) * | 2014-10-20 | 2018-02-27 | Payfone, Inc. | Identity authentication |
-
2017
- 2017-07-20 WO PCT/SG2017/050366 patent/WO2019017835A1/zh not_active Ceased
-
2018
- 2018-04-09 EP EP18835557.2A patent/EP3629613B1/en active Active
- 2018-04-09 CN CN201880040110.7A patent/CN110800331B/zh active Active
- 2018-04-09 WO PCT/SG2018/050180 patent/WO2019017840A1/zh not_active Ceased
-
2020
- 2020-01-17 US US16/746,526 patent/US20200153830A1/en not_active Abandoned
Patent Citations (7)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN102082775A (zh) * | 2009-11-27 | 2011-06-01 | 中国移动通信集团公司 | 一种用户身份管理方法、装置和系统 |
| CN102209012A (zh) * | 2010-03-29 | 2011-10-05 | 中兴通讯股份有限公司 | 一种终端实现连接建立的方法及系统 |
| CN103200150A (zh) * | 2012-01-04 | 2013-07-10 | 深圳市腾讯计算机系统有限公司 | 身份认证方法和系统 |
| WO2013127456A1 (en) * | 2012-03-01 | 2013-09-06 | Nec Europe Ltd. | Method for providing access of an user end device to a service provided by an application function within a network structure and a network structure |
| CN104936177A (zh) * | 2014-03-20 | 2015-09-23 | 中国移动通信集团广东有限公司 | 一种接入认证方法及接入认证系统 |
| US20160072823A1 (en) * | 2014-09-05 | 2016-03-10 | Qualcomm Incorporated | Using multiple credentials for access and traffic differentiation |
| CN106302345A (zh) * | 2015-05-27 | 2017-01-04 | 阿里巴巴集团控股有限公司 | 一种终端认证方法及装置 |
Non-Patent Citations (2)
| Title |
|---|
| ""DRAFT 23799-120_rm"", 《3GPP INBOX\SA2》 * |
| 曾梦岐等: "5G通信安全进展研究", 《通信技术》 * |
Cited By (11)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN114731289A (zh) * | 2020-02-28 | 2022-07-08 | 华为技术有限公司 | 一种用户标识的验证方法及相关设备 |
| CN113746649A (zh) * | 2020-05-14 | 2021-12-03 | 华为技术有限公司 | 一种网络切片控制方法及通信装置 |
| CN113904781A (zh) * | 2020-06-20 | 2022-01-07 | 华为技术有限公司 | 切片认证方法及系统 |
| CN113904781B (zh) * | 2020-06-20 | 2023-04-07 | 华为技术有限公司 | 切片认证方法及系统 |
| WO2022247812A1 (zh) * | 2021-05-28 | 2022-12-01 | 华为技术有限公司 | 一种鉴权方法、通信装置和系统 |
| CN115913584A (zh) * | 2021-08-10 | 2023-04-04 | 中国电信股份有限公司 | 鉴权方法、装置、电子设备和计算机可读存储介质 |
| WO2023082222A1 (en) * | 2021-11-15 | 2023-05-19 | Zte Corporation | Methods and systems for authentication in wireless networks |
| CN114374942A (zh) * | 2021-12-29 | 2022-04-19 | 天翼物联科技有限公司 | 基于机卡绑定的业务处理方法、系统、装置和存储介质 |
| CN114374942B (zh) * | 2021-12-29 | 2024-05-28 | 天翼物联科技有限公司 | 基于机卡绑定的业务处理方法、系统、装置和存储介质 |
| WO2023246942A1 (zh) * | 2022-06-25 | 2023-12-28 | 华为技术有限公司 | 通信方法及装置 |
| WO2024230806A1 (zh) * | 2023-05-11 | 2024-11-14 | 华为技术有限公司 | 通信方法和通信设备、存储介质、程序产品 |
Also Published As
| Publication number | Publication date |
|---|---|
| US20200153830A1 (en) | 2020-05-14 |
| WO2019017835A1 (zh) | 2019-01-24 |
| CN110800331B (zh) | 2023-03-10 |
| EP3629613A1 (en) | 2020-04-01 |
| WO2019017840A1 (zh) | 2019-01-24 |
| EP3629613A4 (en) | 2020-04-01 |
| EP3629613B1 (en) | 2021-02-17 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| CN110800331B (zh) | 网络验证方法、相关设备及系统 | |
| US12057963B2 (en) | Connecting to a home area network via a mobile communication network | |
| US20200053165A1 (en) | Session processing method and device | |
| JP4965671B2 (ja) | 無線通信ネットワークにおけるユーザ・プロファイル、ポリシー及びpmipキーの配布 | |
| US9113332B2 (en) | Method and device for managing authentication of a user | |
| CN113796111A (zh) | 在无线通信系统中提供移动边缘计算服务的装置和方法 | |
| US11252572B2 (en) | Network application function registration | |
| CN105981345B (zh) | Wi-fi/分组核心网接入的合法侦听 | |
| CN102547701A (zh) | 认证方法、无线接入点和认证服务器 | |
| CN115843447B (zh) | 用户装备对边缘数据网络的接入的网络认证 | |
| US20250184731A1 (en) | Communication method and communication apparatus | |
| CN115996381B (zh) | 一种无线专网的网络安全管控方法、系统、装置及介质 | |
| WO2020224341A1 (zh) | 一种tls加密流量识别方法及装置 | |
| WO2021002180A1 (ja) | 中継方法、中継システム、及び中継用プログラム | |
| US12476950B2 (en) | Method, device, and system for authentication and authorization with edge data network | |
| WO2014201783A1 (zh) | 一种自组网的加密鉴权方法、系统及终端 | |
| WO2014047923A1 (zh) | 接入网络的方法和装置 | |
| CN108540493B (zh) | 认证方法、用户设备、网络实体以及业务侧服务器 | |
| CN102918878A (zh) | 报文发送方法和装置 | |
| US12323793B2 (en) | Edge enabler client identification authentication procedures | |
| CN102282800A (zh) | 一种终端认证方法及装置 | |
| Santos et al. | Cross-federation identities for IoT devices in cellular networks | |
| CN102378165B (zh) | 演进型节点b的身份认证方法及系统 | |
| CN116868609A (zh) | 用于边缘数据网络的用户装备认证和授权规程 | |
| US20250365573A1 (en) | Providing an authentication token for authentication of a user device for a third-party application using an authentication server |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| PB01 | Publication | ||
| PB01 | Publication | ||
| SE01 | Entry into force of request for substantive examination | ||
| SE01 | Entry into force of request for substantive examination | ||
| GR01 | Patent grant | ||
| GR01 | Patent grant |