会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 3. 发明申请
    • PANA for Roaming Wi-Fi Access in Fixed Network Architectures
    • PANA在固定网络架构中漫游Wi-Fi访问
    • US20090055898A1
    • 2009-02-26
    • US12192486
    • 2008-08-15
    • John Kaippallimalil
    • John Kaippallimalil
    • H04L9/32
    • H04L63/162H04L63/164H04W12/06
    • A network component comprising at least one processor configured to implement a method comprising deriving a Master Session Key (MSK) using a secret key and at least one parameter obtained from an Extensible Authentication Protocol (EAP) sequence, deriving a first Pairwise Master Key (PMK) and a second PMK from the MSK, authenticating with a home gateway (HG) using the first PMK, and authenticating with an end point using the second PMK. Included is an apparatus comprising a node comprising an access controller (AC) and a protocol for carrying authentication for network access (PANA) Authentication Agent (PAA), wherein the AC is configured to manage authentication for a UE, and wherein the PAA is configured to implement a PANA to forward authentication information related to the UE.
    • 一种网络组件,包括至少一个处理器,其被配置为实现包括使用秘密密钥导出主会话密钥(MSK)和从可扩展认证协议(EAP)序列获得的至少一个参数,导出第一成对主密钥(PMK) )和来自MSK的第二PMK,使用第一PMK与家庭网关(HG)进行认证,并且使用第二PMK用终点进行认证。 包括一种装置,包括包括访问控制器(AC)和用于承载网络访问(PANA)认证代理(PAA)的认证的协议的节点,其中AC被配置为管理针对UE的认证,并且其中配置PAA 实现PANA转发与UE相关的认证信息。
    • 4. 发明申请
    • Roaming Wi-Fi Access in Fixed Network Architectures
    • 在固定网络架构中漫游Wi-Fi访问
    • US20090054037A1
    • 2009-02-26
    • US12192488
    • 2008-08-15
    • John Kaippallimalil
    • John Kaippallimalil
    • H04M1/66H04Q7/20
    • H04L63/08H04L63/162
    • An apparatus comprising a node comprising an access controller (AC) and an authentication, authorization and accounting (AAA) proxy (AAA-P), wherein the AC is configured to manage authentication for a user equipment (UE), and wherein the AAA-P is configured to exchange authentication information related to the UE with an AAA server. Included is a network component comprising at least one processor configured to implement a method comprising establishing a first tunnel with a home gateway (HG), wherein the HG communicates wirelessly with a UE, and establishing a second tunnel between the UE and a Network Access Server (NAS). Also included is a network component comprising at least one processor configured to implement a method comprising receiving a Pairwise Master Key (PMK) from an AAA mediator (AAA-M), and authenticating a UE using the PMK.
    • 一种装置,包括包括访问控制器(AC)和认证,授权和计费(AAA)代理(AAA-P)的节点,其中所述AC被配置为管理用户设备(UE)的认证,并且其中所述AAA- P被配置为与AAA服务器交换与UE相关的认证信息。 包括的网络组件包括至少一个处理器,其被配置为实现包括与家庭网关(HG)建立第一隧道的方法,其中HG与UE进行无线通信,并且在UE与网络接入服务器之间建立第二隧道 (NAS)。 还包括网络组件,其包括至少一个处理器,其被配置为实现包括从AAA中介器(AAA-M)接收成对主密钥(PMK)并且使用PMK认证UE的方法。
    • 7. 发明申请
    • Interworking 802.1 AF Devices with 802.1X Authenticator
    • 使用802.1X身份验证器互联802.1 AF设备
    • US20090150665A1
    • 2009-06-11
    • US12327598
    • 2008-12-03
    • John KaippallimalilYun PuRuobin Zheng
    • John KaippallimalilYun PuRuobin Zheng
    • G06F21/00H04W84/02H04L9/00H04L12/56
    • H04L63/062H04L9/0847H04L63/08H04L63/0884H04L2209/80
    • An apparatus comprising a supplicant proxy port authorization entity (PAE) configured to communicate with a user equipment (UE) and a network, wherein the supplicant proxy PAE causes a communication path to forward or block communications between the UE and the network. Included is a network component comprising at least one processor configured to implement a method comprising authenticating a UE with a network using an Institute of Electrical and Electronics Engineers (IEEE) 802.1X protocol, and exchanging a secure key with the UE using an IEEE 802.1 AF protocol. Also included is a method comprising authenticating a user UE configured for a first authentication protocol with a network configured for a second authentication protocol using a port entity configured for the first authentication protocol and the second authentication protocol, and securing the UE's access to the network by completing a security key agreement using the first authentication protocol.
    • 一种装置,包括被配置为与用户设备(UE)和网络通信的请求者代理端口授权实体(PAE),其中所述请求者代理PAE使通信路径转发或阻止所述UE与所述网络之间的通信。 包括的网络组件包括至少一个处理器,其被配置为实现包括使用电气和电子工程师协会(IEEE)802.1X协议使用网络来认证UE的方法,以及使用IEEE802.1FX与UE交换安全密钥 协议。 还包括一种方法,包括:使用为第一认证协议和第二认证协议配置的端口实体,认证配置为第一认证协议的用户UE与配置为第二认证协议的网络,以及通过以下方式保护UE对网络的访问: 使用第一认证协议完成安全密钥协议。
    • 8. 发明授权
    • PANA for roaming Wi-Fi access in fixed network architectures
    • PANA在固定网络架构中漫游Wi-Fi接入
    • US08509440B2
    • 2013-08-13
    • US12192486
    • 2008-08-15
    • John Kaippallimalil
    • John Kaippallimalil
    • H04K1/00
    • H04L63/162H04L63/164H04W12/06
    • A network component comprising at least one processor configured to implement a method comprising deriving a Master Session Key (MSK) using a secret key and at least one parameter obtained from an Extensible Authentication Protocol (EAP) sequence, deriving a first Pairwise Master Key (PMK) and a second PMK from the MSK, authenticating with a home gateway (HG) using the first PMK, and authenticating with an end point using the second PMK. Included is an apparatus comprising a node comprising an access controller (AC) and a protocol for carrying authentication for network access (PANA) Authentication Agent (PAA), wherein the AC is configured to manage authentication for a UE, and wherein the PAA is configured to implement a PANA to forward authentication information related to the UE.
    • 一种网络组件,包括至少一个处理器,其被配置为实现包括使用秘密密钥导出主会话密钥(MSK)和从可扩展认证协议(EAP)序列获得的至少一个参数,导出第一成对主密钥(PMK) )和来自MSK的第二PMK,使用第一PMK与家庭网关(HG)进行认证,并且使用第二PMK用终点进行认证。 包括一种装置,包括包括访问控制器(AC)和用于承载网络访问(PANA)认证代理(PAA)的认证的协议的节点,其中AC被配置为管理针对UE的认证,并且其中配置PAA 实现PANA转发与UE相关的认证信息。
    • 10. 发明申请
    • SIMPLIFIED PROTOCOL FOR CARRYING AUTHENTICATION FOR NETWORK ACCESS
    • 用于实现网络访问认证的简化协议
    • US20090210542A1
    • 2009-08-20
    • US12199985
    • 2008-08-28
    • Yangsong XiaJohn Kaippallimalil
    • Yangsong XiaJohn Kaippallimalil
    • G06F15/16
    • H04L63/08H04L29/1283H04L61/2015H04L61/6018H04L63/0892H04L63/162
    • Methods and system for simplified Protocol for Carrying Authentication for Network Access (sPANA) are disclosed. In the broadband architecture such as Broadband forum or WiMAX forum, a Network Access server (NAS) is one IP hop away from a user. Therefore, it is possible to relax the need in PANA to obtain an IP address prior to authentication. A PANA client (PaC) may use an unspecified IP address (e.g. 0.0.0.0 in TPv4) as a source address for authentication. A PANA Authentication Agent (PAA) may use an IP broadcast address as a network layer destination address (e.g. oxffffffff). The present invention defines PANA Attribute-Value Pairs (AVPs) and procedures that allow a Challenge-Handshake Authentication Protocol (CHAP) exchange to occur in PANA. The PANA CHAP support may facilitate smooth migration from Point-to-Point Protocol (PPP) sessions to IP sessions in a DSL Broadband network environment. The sPANA can be desirably compatible with the PANA.
    • 披露了用于进行网络访问认证的简化协议(sPANA)的方法和系统。 在诸如宽带论坛或WiMAX论坛的宽带架构中,网络接入服务器(NAS)是远离用户的一个IP跳。 因此,可以放松在PANA中的需要以在认证之前获得IP地址。 PANA客户端(PaC)可以使用未指定的IP地址(例如TPv4中的0.0.0.0)作为用于认证的源地址。 PANA认证代理(PAA)可以使用IP广播地址作为网络层目的地址(例如,oxffffffff)。 本发明定义了PANA属性值对(AVP)和允许在PANA中发生质询握手认证协议(CHAP)交换的过程。 PANA CHAP支持可以促进从点对点协议(PPP)会话到DSL宽带网络环境中的IP会话的平滑迁移。 sPANA可以理想地与PANA兼容。