会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 3. 发明申请
    • INTERWORKING 802.1 AF DEVICES WITH 802.1X AUTHENTICATOR
    • 使用802.1X认证机构实现802.11 AF设备
    • WO2009074108A1
    • 2009-06-18
    • PCT/CN2008/073373
    • 2008-12-08
    • HUAWEI TECHNOLOGIES CO., LTD.KAIPPALLIMALIL, JohnPU, YunZHENG, Ruobin
    • KAIPPALLIMALIL, JohnPU, YunZHENG, Ruobin
    • H04L29/06
    • H04L63/062H04L9/0847H04L63/08H04L63/0884H04L2209/80
    • An apparatus comprising a supplicant proxy port authorization entity (PAE) (212) configured to communicate with a user equipment (UE) (220) and a network, wherein the supplicant proxy PAE (212) causes a communication path to forward or block communications between the UE (220) and the network. Included is a network component comprising at least one processor configured to implement a method comprising authenticating a UE with a network using an Institute of Electrical and Electronics Engineers (IEEE) 802.1X protocol, and exchanging a secure key with the UE using an IEEE 802.1 AF protocol. Also included is a method comprising authenticating a user UE configured for a first authentication protocol with a network configured for a second authentication protocol using a port entity configured for the first authentication protocol and the second authentication protocol, and securing the UE's access to the network by completing a security key agreement using the first authentication protocol.
    • 一种装置,包括被配置为与用户设备(UE)(220)和网络通信的请求者代理端口授权实体(PAE)(212),其中所述请求者代理PAE(212)使通信路径转发或阻止 UE(220)和网络。 包括的网络组件包括至少一个处理器,其被配置为实现包括使用电气和电子工程师协会(IEEE)802.1X协议使用网络来认证UE的方法,以及使用IEEE802.1FX与UE交换安全密钥 协议。 还包括一种方法,包括:使用为第一认证协议和第二认证协议配置的端口实体,认证配置为第一认证协议的用户UE与配置为第二认证协议的网络,以及通过以下方式保护UE对网络的访问: 使用第一认证协议完成安全密钥协议。
    • 5. 发明申请
    • PANA FOR ROAMING WI-FI ACCESS IN FIXED NETWORK ARCHITECTURES
    • PANA在固定网络架构中进行无线访问
    • WO2009026839A1
    • 2009-03-05
    • PCT/CN2008/072098
    • 2008-08-22
    • HUAWEI TECHNOLOGIES CO., LTD.KAIPPALLIMALIL, John
    • KAIPPALLIMALIL, John
    • H04L12/56
    • H04L63/162H04L63/164H04W12/06
    • A network component comprising at least one processor configured to implement a method comprising deriving a Master Session Key (MSK) using a secret key and at least one parameter obtained from an Extensible Authentication Protocol (EAP) sequence, deriving a first Pairwise Master Key (PMK) and a second PMK from the MSK, authenticating with a home gateway (HG) using the first PMK, and authenticating with an end point using the second PMK. Included is an apparatus comprising a node comprising an access controller (AC) and a protocol for carrying authentication for network access (PANA) Authentication Agent (PAA), wherein the AC is configured to manage authentication for a UE, and wherein the PAA is configured to implement a PANA to forward authentication information related to the UE.
    • 一种网络组件,包括至少一个处理器,其被配置为实现包括使用秘密密钥导出主会话密钥(MSK)和从可扩展认证协议(EAP)序列获得的至少一个参数,导出第一成对主密钥(PMK) )和来自MSK的第二PMK,使用第一PMK与家庭网关(HG)进行认证,并且使用第二PMK用终点进行认证。 包括一种装置,包括包括访问控制器(AC)和用于承载网络访问(PANA)认证代理(PAA)的认证的协议的节点,其中AC被配置为管理针对UE的认证,并且其中配置PAA 实现PANA转发与UE相关的认证信息。
    • 7. 发明申请
    • SIMPLIFIED PROTOCOL FOR CARRYING AUTHENTICATION FOR NETWORK ACCESS
    • 用于实现网络访问认证的简化协议
    • WO2009103232A1
    • 2009-08-27
    • PCT/CN2009/070447
    • 2009-02-17
    • HUAWEI TECHNOLOGIES CO., LTD.XIA, YangsongKAIPPALLIMALIL, John
    • XIA, YangsongKAIPPALLIMALIL, John
    • H04L29/06
    • H04L63/08H04L29/1283H04L61/2015H04L61/6018H04L63/0892H04L63/162
    • Methods and system for simplified Protocol for Carrying Authentication for Network Access (sPANA) are disclosed. In the broadband architecture such as Broadband forum or WiMAX forum, a Network Access server (NAS) is one IP hop away from a user. Therefore, it is possible to relax the need in PANA to obtain an IP address prior to authentication. A PANA client (PaC) may use an unspecified IP address (e.g. 0.0.0.0 in IPv4) as a source address for authentication. A PANA Authentication Agent (PAA) may use an IP broadcast address as a network layer destination address (e.g. oxffffffff). The present invention defines PANA Attribute-Value Pairs (AVPs) and procedures that allow a Challenge-Handshake Authentication Protocol (CHAP) exchange to occur in PANA. The PANA CHAP support may facilitate smooth migration from Point-to-Point Protocol (PPP) sessions to IP sessions in a DSL Broadband network environment. The sPANA can be desirably compatible with the PANA.
    • 披露了用于网络访问(sPANA)认证的简化协议的方法和系统。 在诸如宽带论坛或WiMAX论坛的宽带架构中,网络接入服务器(NAS)是远离用户的一个IP跳。 因此,可以放松在PANA中的需要以在认证之前获得IP地址。 PANA客户端(PaC)可以使用未指定的IP地址(例如,在IPv4中为0.0.0.0)作为认证的源地址。 PANA认证代理(PAA)可以使用IP广播地址作为网络层目的地址(例如,oxffffffff)。 本发明定义了PANA属性值对(AVP)和允许在PANA中发生质询握手认证协议(CHAP)交换的过程。 PANA CHAP支持可以促进从点对点协议(PPP)会话到DSL宽带网络环境中的IP会话的平滑迁移。 sPANA可以理想地与PANA兼容。
    • 8. 发明申请
    • ROAMING WI-FI ACCESS IN FIXED NETWORK ARCHITECTURES
    • 固定网络架构中的漫游无线接入
    • WO2009026848A1
    • 2009-03-05
    • PCT/CN2008/072126
    • 2008-08-25
    • HUAWEI TECHNOLOGIES CO., LTD.KAIPPALLIMALIL, John
    • KAIPPALLIMALIL, John
    • H04Q7/20H04L12/66H04L9/32H04L29/06
    • H04L63/08H04L63/162
    • An apparatus comprising a node comprising an access controller (AC) and an authentication, authorization and accounting (AAA) proxy (AAA-P), wherein the AC is configured to manage authentication for a user equipment (UE), and wherein the AAA-P is configured to exchange authentication information related to the UE with an AAA server. Included is a network component comprising at least one processor configured to implement a method comprising establishing a first tunnel with a home gateway (HG), wherein the HG communicates wirelessly with a UE, and establishing a second tunnel between the UE and a Network Access Server (NAS). Also included is a network component comprising at least one processor configured to implement a method comprising receiving a Pairwise Master Key (PMK) from an AAA mediator (AAA-M), and authenticating a UE using the PMK.
    • 一种装置,包括包括访问控制器(AC)和认证,授权和计费(AAA)代理(AAA-P)的节点,其中所述AC被配置为管理用户设备(UE)的认证,并且其中所述AAA- P被配置为与AAA服务器交换与UE相关的认证信息。 包括的网络组件包括至少一个处理器,其被配置为实现包括与家庭网关(HG)建立第一隧道的方法,其中HG与UE进行无线通信,并且在UE与网络接入服务器之间建立第二隧道 (NAS)。 还包括网络组件,其包括至少一个处理器,其被配置为实现包括从AAA中介器(AAA-M)接收成对主密钥(PMK)并且使用PMK认证UE的方法。