首页> 外国专利> Communication with server during network device during extensible authentication protocol—authentication and key agreement prime procedure

Communication with server during network device during extensible authentication protocol—authentication and key agreement prime procedure

机译:在可扩展身份验证协议期间与服务器通信协议 - 身份验证和密钥协议PRIME过程

摘要

A communication device for communication with a network device during EAP-AKA′. The communication device is operative to receive a first Perfect Forward Secrecy, PFS, parameter value and at least one attribute value indicating a choice of a Diffie-Hellman group from the network device. The communication device is also operative to receive a cipher key, CK, and an integrity key, IK. Generate a modified cipher key, CK′, and a modified integrity key, IK′ based on CK, IK and an access network identity. Operations include calculating a second PFS parameter value. Send the second PFS parameter value to the network device. Calculate a third PFS parameter value. Derive, using a Pseudo-random function, a key based on the third PFS parameter value, CK′, IK′ and an identity associated with the communication device. A network device, methods, further communication devices, a server, computer programs and a computer program product are also disclosed.
机译:用于在EAP-AKA期间与网络设备通信的通信设备。 通信设备可操作以接收第一完美的前向保密,PFS,参数值和至少一个属性值,该属性值指示来自网络设备的Diffie-Hellman组的选择。 通信设备还可操作以接收密钥,CK和完整性密钥IK。 基于CK,IK和接入网络标识生成修改后的密钥,CK'和修改的完整性密钥IK'。 操作包括计算第二PFS参数值。 将第二个PFS参数值发送到网络设备。 计算第三个PFS参数值。 使用伪随机函数,基于第三PFS参数值,CK',IK'和与通信设备相关联的标识来源的键。 还公开了一种网络设备,方法,进一步的通信设备,服务器,计算机程序和计算机程序产品。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号