EP1512260B1

Method and device for authenticating a subscriber for utilizing services in a wireless lan (wlan)

Abstract

An efficient authentication is made possible by a method for authenticating a subscriber MT (6) for utilizing services in a wireless LAN (WLAN) (10) while using an IP multimedia subsystem (IMS) (3). The inventive method is characterized in that a subscriber MT (6), who is to be authenticated and who is located at a location having WLAN coverage, receives an IP address from the WLAN (10) in an attributed manner, after which the subscriber authenticates himself with regard to the IP multimedia subsystem (3) while giving this IP address. In addition, an element ((WAGW (2)) of the WLAN (10) is informed of the result of the authentication of the subscriber MT (6) with regard to the IMS (3).

EP1512260B1, drawing sheet 1
Sheet 1 of 4

Term

Term ended

Expired 7 June 2022, 4.3 years ago.

  1. Priority and filed
  2. Granted
  3. Expired
  4. Today

26 claims: 26 independent, 0 dependent

  1. 1
    Method for authenticating a subscriber (MT,6) for utilising services in a wireless LAN (WLAN,10) while using an IP multimedia subsystem (IMS,3), characterised in that a subscriber (MT,6) who is to be authenticated and who is located at a location having WLAN coverage, receives an IP address from the (WLAN,10) in an attributed manner, after which the subscriber authenticates himself to the IP multimedia subsystem (IMS,3) while giving this IP address, whereby an element (WAGW,2) of the (WLAN,10) is informed of the result of the authentication of the subscriber (MT,6) with regard to the (IMS,3). Procédé pour l'authentification d'un abonné (MT, 6) pour l'utilisation de services dans un Wireless LAN (WLAN 10) avec l'emploi d'un sous-système IP multimedia (IMS, 3) d'un réseau de téléphonie mobile, caractérisé en ce que, un abonné (MT, 6) à authentifier, qui se trouve dans un endroit avec couverture Wireless LAN, reçoit une adresse IP attribuée du Wireless LAN (WLAN, 10), après quoi il s'identifie par rapport au sous-système IP multimedia (IMS, 3) en indiquant cette adresse IP au moyen de l'enregistrement SIP, un élément (WAGW, 2) du Wireless LAN (WLAN, 10) étant informé du résultat de l'authentification de l'abonné (MT, 6) par rapport au système multimédia (IMS, 3). Verfahren zur Authentifizierung eines Teilnehmers (MT,6) für die Inanspruchnahme von. Diensten in einem Wireless LAN (WLAN10) unter Verwendung eines IP Multimedia Subsystems (IMS,3) eines Mobilfunknetzes, dadurch gekennzeichnet,dass ein zu authentifizierender Teilnehmer (MT,6), der sich an einem Ort mit Wireless LAN-Abdeckung befindet, vom Wireless LAN (WLAN10) eine IP-Adresse zugewiesen bekommt, worauf er sich gegenüber dem IP Multimedia Subsystem (IMS,3) unter Angabe dieser IP-Adresse mittels SIP-Registrierung authentifiziert, wobei ein Element (WAGW,2) des Wireless LAN (WLAN,10) vom Ergebnis der Authentifizierung des Teilnehmers (MT, 6) gegenüber dem IP Multimedia System (IMS,3) informiert wird.
  2. 2
    Method according to claim 1, characterised in that a subscriber (MT,6) of a wireless LAN (WLAN,10) in an IP multimedia subsystem (IMS,3) is authenticated while using a home subscriber system (HSS,5). Procédé selon la revendication 1, caractérisé en ce que l'authentification d'un abonné (MT, 6) d'un Wireless LAN (WLAN, 10) s'effectue dans un sous-système IP multimedia (IMS, 3) avec l'utilisation d'un Home Subscriber System (HSS, 5). Verfahren nach Anspruch 1. dadurch gekennzeichnet,dass die Authentifizierung eines Teilnehmers (MT,6) eines Wireless LAN (WLAN,10) in einem IP Multimedia Subsystem (IMS, 3) unter Verwendung eines Home Subscriber System (HSS, 5) geschieht.
  3. 3
    Method according to one of the preceding claims, characterised in that a subscriber (MT,6) in a wireless LAN (WLAN,10) in an IP multimedia subsystem (IMS,3) is authenticated while using an authentication server (AAA server). Procédé selon l'une quelconque des revendications précédentes, caractérisé en ce que l'authentification d'un abonné (MT, 6) dans un Wireless LAN (WLAN, 10) s'effectue dans un sous-système IP multimedia (IMS, 3) avec l'utilisation d'un server d'authentification (server AAA). Verfahren nach einem der vorhergehenden Ansprüche dadurch gekennzeichnet,dass die Authentifizierung eines Teilnehmers (MT,6) in einem Wireless LAN (WLAN, 10) in einem IP Multimedia Subsystem (IMS,3) unter Verwendung eines Authentifizierungsservers (AAA Server) geschieht.
  4. 4
    Method according to one of the preceding claims, characterised in that the subscriber (MT,6) transmits, via the wireless LAN (WLAN, 10), an SIP register message to a device (CSCF,4) of the IP multimedia system (IMS,3), which transmits a request for authentication of this IP multimedia subsystem (IMS,3) subscriber, using the mechanisms provided for an IP multimedia subsystem authentication, to the home subscriber system (HSS,5), after which the home subscriber system (HSS,5) authenticates the subscriber (MT,6) using these mechanisms and communicates the result of the authentication to the wireless LAN access gateway (WAGW,2). Procédé selon l'une quelconque des revendications précédentes, caractérisé en ce que l'abonné (MT, 6) envoie par le Wireless LAN (WLAN, 10) un message de registre SIP à un appareil (CSCF, 4) du système SIP multimedia (IMS, 3) qui envoie une demande d'authentification de cet abonné du sous-système IP multimedia (IMS, 3) avec l'utilisation des mécanismes prévus pour une authentification du sous-système IP multimedia au Home Subscriber System (HSS, 5), après quoi le Home Subscriber System (HSS, 5) authentifie l'abonné (MT, 6) avec l'utilisation de ces mécanismes et communique le résultat de l'authentification à la Wireless LAN Access Gateway (WAGW, 2). Verfahren nach einem der vorhergehenden Ansprüche, dadurch gekennzeichnet,dass der Teilnehmer (MT,6) über das Wireless LAN (WLAN, 10) eine SIP Register Nachricht an eine Einrichtung (CSCF, 4) des IP Multimedia Systems (IMS,3) sendet, die eine Aufforderung zur Authentifizierung dieses IP Multimedia Subsystem (IMS,3) Teilnehmers unter Verwendung der für eine IP Multimedia Subsystem-Authentifizierung vorgesehenen Mechanismen an das Home Subscriber System (HSS,5) sendet, worauf das Home Subscriber System (HSS, 5) den Teilnehmer (MT,6) unter Verwendung dieser Mechanismen authentifiziert und das Ergebnis der Authentifizierung dem Wireless LAN Access Gateway (WAGW,2) mitteilt.
  5. 5
    Method according to one of the preceding claims, characterised in that an association is implemented between the subscriber terminal (MT,6) and the wireless LAN (WLAN, 10) for the purpose of transmitting and receiving via the radio interface between subscriber (MT,6) and wireless LAN (WLAN, 10). Procédé selon l'une quelconque des revendications précédentes, caractérisé en ce que, pour l'émission et la réception par l'interface radio entre l'abonné (MT, 6) et le Wireless LAN (WLAN, 10), on effectue une association entre le terminal d'abonné (MT, 6) et le Wireless LAN (WLAN , 10). Verfahren nach einem der vorhergehenden Ansprüche, dadurch gekennzeichnet,dass zum Senden und Empfangen über die Luftschnittstelle zwischen Teilnehmer (MT,6) und Wireless LAN (WLAN,10) eine Assoziation zwischen dem Teilnehmerendgerät (MT,6) und dem Wireless LAN (WLAN,10) durchgeführt wird.
  6. 6
    Method according to one of the preceding claims, characterised in that the subscriber terminal (MT,6) receives an IP address from the address area of the wireless LAN (WLAN,10), with which - together with all other IP transport-based data - it can transmit and receive SIP messages that transport authentication messages from and to the IP multimedia subsystem (IMS,3). Procédé selon l'une quelconque des revendications précédentes, caractérisé en ce que le terminal d'abonné (MT, 6) reçoit une adresse IP provenant de la zone d'adresse du Wireless LAN (WLAN, 10) avec laquelle il peut envoyer et recevoir des messages SIP en plus de toutes les autres données basées sur le transport IP, qui transportent des messages d'authentification venant du sous-système IP multimedia (IMS, 3) et allant à ce système. Verfahren nach einem der vorhergehenden Ansprüche, dadurch gekennzeichnet,dass das Teilnehmerendgerät (MT,6) eine IP Adresse aus dem Adressraum des Wireless LAN (WLAN,10) erhält, mit der es, neben allen anderen IP-Transport basierten Daten, SIP Nachrichten senden und empfangen kann, die Authentifizierungsnachrichten von und zum IP Multimedia Subsystem (IMS,3) transportieren.
  7. 7
    Method according to one of the preceding claims, characterised in that the access to services is controlled via a wireless LAN access gateway (WAGW,2), which monitors successful authentication in the IP multimedia subsystem (IMS,3). Procédé selon l'une quelconque des revendications précédentes, caractérisé en ce que l'accès aux services est contrôlé par une Wireless LAN Access Gateway (WAGW, 2), qui contrôle l'authentification réussie dans le sous-système IP multimedia (IMS, 3). Verfahren nach einem der vorhergehenden Ansprüche, dadurch gekennzeichnet,dass der Zugang zu Diensten über ein Wireless LAN Access Gateway (WAGW, 2) kontrolliert wird, das die erfolgreiche Authentifizierung im IP Multimedia Subsystem (IMS,3) überwacht.
  8. 8
    Method according to one of the preceding claims, characterised in that the wireless LAN (WLAN,10) is connected to the IP multimedia subsystem (IMS,3) via a Gi interface. Procédé selon l'une quelconque des revendications précédentes, caractérisé en ce que le Wireless LAN (WLAN, 10) est relié par une interface Gi au sous-système IP multimedia (IMS, 3). Verfahren nach einem der vorhergehenden Ansprüche, dadurch gekennzeichnet,dass das Wireless LAN (WLAN,10) über eine Gi Schnittstelle mit dem IP Multimedia Subsystem (IMS,3) verbunden wird.
  9. 9
    Method according to one of the preceding claims, characterised in that the wireless LAN (WLAN,10) is connected to the IP multimedia subsystem (IMS,3) via an Mm interface. Procédé selon l'une quelconque des revendications précédentes, caractérisé en ce que le Wireless LAN (WLAN, 10) est relié par une interface Mm au sous-système IP multimedia (IMS, 3). Verfahren nach einem der vorhergehenden Ansprüche, dadurch gekennzeichnet,dass das Wireless LAN (WLAN,10) über eine Mm Schnittstelle mit dem IP Multimedia Subsystem (IMS,3) verbunden wird.
  10. 10
    Method according to one of the preceding claims, characterised in that the result of the authentication (P-CSCF,1) is fed to the wireless LAN access gateway (WAGW,2) by a (proxy-call state control function)/policy control function (P-CSCF,1) at a location having wireless LAN coverage. Procédé selon l'une quelconque des revendications précédentes, caractérisé en ce que le résultat de l'authentification (P-CSCF, 1) est amené à la Wireless LAN Access Gateway (WAGW, 2) en un endroit avec couverture Wireless LAN par une fonction de contrôle Proxy-Call State/Fonction Policy Control (P-CSCF, 1). Verfahren nach einem der vorhergehenden Ansprüche, dadurch gekennzeichnet,dass das Ergebnis der Authentifizierung (P-CSCF, 1) dem Wireless LAN Access Gateway (WAGW,2) durch eine (Proxy-Call State Kontroll Funktion)/Policy Control Funktion (P-CSCF, 1) an einem Ort mit Wireless LAN-Abdeckung zugeführt wird.
  11. 11
    Method according to claim 7, characterised in that the wireless LAN (WLAN,10) has a proxy-call state control function node (P-CSCF, 1) which forwards the SIP messages to the corresponding entity in the IP multimedia subsystem (IMS,3) and controls the WLAN access gateway (WAGW,2) with regard to the authentication result of the IP multimedia subsystem (IMS, 3). Procédé selon la revendication 7, caractérisé en ce que le Wireless LAN (WALN, 10) présente un noeud Proxy-Call State Fonction (P-CSCF, 1), qui transmet les messages SIP à l'instance correspondante dans le sous-système IP multimedia (IMS, 3) et commande la WLAN Access Gateway (WAGW, 2) en ce qui concerne le résultat de l'authentification du sous-système IP multimédia (IMS, 3). Verfahren nach Anspruch 7, dadurch gekennzeichnet,dass das Wireless LAN (WLAN,10) einen Proxy-Call State Control Funktion Knoten (P-CSCF, 1) besitzt, der die SIP Nachrichten an die entsprechende Instanz im IP Multimedia Subsystem (IMS,3) weiterleitet und das WLAN Access Gateway (WAGW, 2) hinsichtlich des Authentifizierungsergebnisses des IP Multimedia Subsystem (IMS,3) steuert.
  12. 12
    Method according to claim 7, characterised in that instructions are provided to the WLAN access gateway (WAGW,2) on the basis of the result of the authentication in the IP multimedia subsystem (IMS,3), as to how the data traffic of a subscriber (MT,6) is to be handled by the wireless LAN access gateway (WAGW,2), in particular instructions regarding the blocking of data traffic. Procédé selon la revendication 7, caractérisé en ce que des instructions sont données à la WLAN Access Gateway (WAGW, 2) sur la base du résultat de l'authentification dans le sous-système IP multimedia (IMS, 3) sur la façon dont le trafic de données d'un abonné (MT, 6) doit être traité par la Wireless LAN Access Gateway (WAGW, 2), en particulier des instructions concernant le blocage du trafic de données. Verfahren nach Anspruch 7, dadurch gekennzeichnet,dass dem WLAN Access Gateway (WAGW,2) aufgrund des Ergebnisses der Authentifizierung im IP Multimedia Subsystems (IMS, 3) Anweisungen gegeben werden, wie der Datenverkehr eines Teilnehmers (MT,6) durch das Wireless LAN Access Gateway (WAGW,2) zu behandeln ist insbesondere Anweisungen betreffend das Blockieren des Datenverkehrs.
  13. 13
    Method according to one of the preceding claims, characterised in that the proxy-call state control function (P-CSCF,1), by means of a policy control function, controls the data traffic through the wireless LAN access gateway (WAGW,2) and grants, restricts, increases or declines the quantity and/or quality of the data flow of a subscriber (MT,6) through the wireless LAN access gateway (WAGW,2). Procédé selon l'une quelconque des revendications précédentes, caractérisé en ce que la fonction Proxy-Call State Control (P-CSCF, 1) contrôle au moyen d'une fonction Policy Control le trafic de données par la Wireless LAN Access Gateway (WAGW, 2) et garantit, diminue, augmente ou refuse la quantité et/ou la qualité du flux de données d'un abonné (MT, 6) par la Wireless LAN Access Gateway (WAGW, 2). Verfahren nach einem der vorhergehenden Ansprüche, dadurch gekennzeichnet,dass die Proxy-Call State Control Funktion (P-CSCF, 1) mittels einer Policy Kontroll Funktion den Datenverkehr durch das Wireless LAN Access Gateway (WAGW,2) kontrolliert und die Quantität und oder die Qualität des Datenflusses eines Teilnehmers (MT,6) durch das Wireless LAN Access Gateway (WAGW,2) gewährt, beschränkt, erhöht oder ablehnt.
  14. 14
    Method according to one of the preceding claims, characterised in that the policy control function is part of the proxy-call state control function node (P-CSCF,1) or is a separate unit. Procédé selon l'une quelconque des revendications précédentes, caractérisé en ce que la fonction Policy Control est un élément constituant du noeud Proxy-Call State Control Fonction (P-CSCF, 1) ou représente une unité propre. Verfahren nach einem der vorhergehenden Ansprüche, dadurch gekennzeichnet,dass die Policy Kontroll Funktion Bestandteil des Proxy-Call State Control Funktion Knoten (P-CSCF, 1) ist oder eine eigene Einheit darstellt.
  15. 15
    Method according to one of the preceding claims, characterised in that the result of the authentication is fed to the wireless LAN access gateway (WAGW,2) by the call state control function (CSCF,4) /policy control function in the IP multimedia subsystem (IMS,3). Procédé selon l'une quelconque des revendications précédentes, caractérisé en ce que le résultat de l'authentification est amené à la Wireless LAN Access Gateway (WAGW, 2) par la Call State Control Fonction (CSCF, 4)/Policy Control Fonction) dans le sous-système IP multimedia (IMS, 3). Verfahren nach einem der vorhergehenden Ansprüche, dadurch gekennzeichnet,dass das Ergebnis der Authentifizierung dem Wireless LAN Access Gateway (WAGW,2) durch die Call State Control Function (CSCF,4)/Policy Kontroll Funktion im IP Multimedia Subsystem (IMS, 3) zugeführt wird.
  16. 16
    Method according to claim 12, characterised in that the call state control function node (CSCF,4) of the IP multimedia subsystem (IMS,3) controls the wireless LAN access gateway (WAGW,2) with regard to the authentication result of the IP multimedia subsystem (IMS,3). Procédé selon la revendication 12, caractérisé en ce que le noeud Call State Control Fonction (CSCF, 4) du sous-système IP multimedia (IMS, 3) commande la Wireless LAN Access Gateway (WAGW, 2) en ce qui concerne le résultat de l'authentification du sous-système IP multimedia (IMS, 3). Verfahren nach Anspruch 12, dadurch gekennzeichnet,dass der Call State Control Funktion Knoten (CSCF,4) des IP Multimedia Subsystem (IMS,3) das Wireless LAN Access Gateway (WAGW,2) hinsichtlich des Authentifizierungsergebnisses des IP Multimedia Subsystems (IMS, 3) steuert.
  17. 17
    Method according to claim 13, characterised in that a Go interface is installed between the call state control function node (CSCF,4) of the IP multimedia subsystem (IMS,3) and the wireless LAN access gateway (WAGW,2), for protected data transfer. Procédé selon La revendication 13, caractérisé en ce que une interface Go est installée entre le noeud Call State Control Fonction (CSCF, 4) du sous-système IP multimedia (IMS, 3) et la Wireless LAN Access Gateway (WAGW, 2) pour une transmission de données sécurisée. Verfahren nach Anspruch 13, dadurch gekennzeichnet,dass eine Go Schnittstelle zwischen dem Call State Control Funktion Knoten (CSCF,4) des IP Multimedia Subsystems (IMS,3) und dem Wireless LAN Access Gateway (WAGW,2) installiert wird für eine gesicherte Datenübertragung.
  18. 18
    Method according to one of the preceding claims, characterised in that the authentication result is evaluated by expanded functionalities in the wireless LAN access gateway (WAGW, 2). Procédé selon l'une quelconque des revendications précédentes, caractérisé en ce que le résultat de l'authentification est analysé par des fonctionnalités élargies dans la Wireless LAN Access Gateway (WAGW, 2). Verfahren nach einem der vorhergehenden Ansprüche, dadurch gekennzeichnet,dass durch erweiterte Funktionalitäten im Wireless LAN Access Gateway (WAGW,2) das Authentifizierungsergebnis ausgewertet wird.
  19. 19
    Method according to claim 16, characterised in that the authentication result received from the IP multimedia subsystem (IMS,3) is converted by the wireless LAN access gateway (WAGW,2), whereby said WLAN access gateway (WAGW,2) allows subscriber data to pass through completely or with restrictions. Verfahren nach Anspruch 16, dadurch gekennzeichnet,dass das vom IP Multimedia Subsystem (IMS, 3) erhaltene Authentifizierungsergebnis vom Wireless LAN Access Gateway (WAGW, 2) umgesetzt wird, indem es (2) Teilnehmerdaten vollständig oder eingeschränkt passieren lässt. procédé selon la revendication 16, caractérisé en ce que le résultat de l'authentification reçu du sous-système IP multimedia (IMS, 3) est converti par la Wireless LAN Access Gateway (WAGW, 2) du fait qu'il (2)fait passer complètement ou de façon limitée des données d'abonnés.
  20. 20
    Method according to claim 13, characterised in that the evaluation of the authentication result is implemented using an "application layer gateway". Procédé selon la revendication 13, caractérisé en ce que l'analyse de résultat de l'authentification est réalisée avec une "Application Layer Gateway". Verfahren nach Anspruch 13, dadurch gekennzeichnet,dass die Auswertung des Authentifizierungsergebnisses mit einem "Application Layer Gateway" realisiert wird.
  21. 21
    Method according to one of the preceding claims, characterised in that the subscriber (MT,6) of the wireless LAN (WLAN,10) is also a subscriber of the mobile communication network. Procédé selon l'une quelconque des revendications précédentes, caractérisé en ce que l'abonné (MT, 6) du Wireless LAN (WLAN, 10) est également un abonné du réseau de communication mobile. Verfahren nach einem der vorhergehenden Ansprüche, dadurch gekennzeichnet,dass der Teilnehmer (MT,6) des Wireless LAN (WLAN,10) auch ein Teilnehmer des mobilen Kommunikationsnetzwerks ist.
  22. 22
    Method according to one of the preceding claims, characterised in that the wireless LAN network (WLAN,10) is integrated into mobile communication networks with the help of ETSI HiperLan and IEEE 802.11. Procédé selon l'une quelconque des revendications précédentes, caractérisé en ce que le Wireless LAN (WLAN, 10) est intégré dans des réseaux de communication mobiles à l'aide du ETSI HiperLan et IEEE 802.11. Verfahren nach einem der vorhergehenden Ansprüche, dadurch gekennzeichnet,dass das Wireless LAN (WLAN,10) in mobile Kommunikationsnetzwerke mit Hilfe von ETSI HiperLan und IEEE 802.11 integriert wird.
  23. 23
    Device for authenticating a subscriber (MT,6) for utilising services in a wireless LAN (WLAN,10) with the help of an IP multimedia subsystem (IMS,3) of a mobile radio network, characterised by- an IP multimedia system (IMS,3) for authenticating a subscriber (MT,6) who is to be authenticated by means of SIP registration, and who is located at a location having wireless LAN coverage, by giving an IP address allocated by the wireless LAN (WLAN,10), and- an IP multimedia subsystem (IMS,3) for informing an element (WAGW,2) of the wireless LAN (WLAN,10) of the result of the authentication of the subscriber (MT,6) with regard to the IP multimedia subsystem (IMS,3). Dispositif pour l'authentification d'un abonné (MT, 6) pour l'utilisation de services dans un Wireless LAN (WLAN, 10) à l'aide d'un sous-système IP multimedia (IMS, 3) d'un réseau de téléphonie mobile, caractérisé par- un sous-système IP multimedia (IMS, 3) pour l'authentification d'un abonné (MT, 6) à authentifier au moyen d'un enregistrement SIP, qui se trouve en un lieu avec une couverture Wireless LAN avec l'indication d'une adresse IP attribuée par le Wireless LAN (WLAN, 10),- un sous-système IP multimedia (IMS, 3) pour l'information d'un élément (WAGW, 2) du Wireless LAN (WLAN, 10) du résultat de l'authentification de l'abonné (MT, 6) par rapport au sous-système IP multimedia (IMS, 3). Vorrichtung zur Authentifizierung eines Teilnehmers (MT,6) für die Inanspruchnahme von Diensten in einem Wireless LAN (WLAN,10) mit Hilfe eines IP Multimedia Subsystems (IMS, 3) eines Mobilfunknetzes, gekennzeichnet durch- ein IP Multimedia Subsystem (IMS, 3) zum Authentifizieren eines zu authentifizierenden Teilnehmers (MT,6) mittels SIP-Registrierung, der sich an einem Ort mit Wireless LAN-Abdeckung befindet unter Angabe einer vom Wireless LAN (WLAN,10) zugewiesenen IP-Adresse,- ein IP Multimedia Subsystem (IMS,3) zum Informieren eines Elements (WAGW, 2) des Wireless LAN (WLAN, 10) vom Ergebnis der Authentifizierung des Teilnehmers (MT,6) gegenüber dem IP Multimedia Subsystem (IMS,3).
  24. 24
    Device according to claim 23, characterised in that a device constituting the proxy call state control function node (CSCF,1) is a node in the wireless LAN (WLAN,10). Dispositif selon la revendication 23, caractérisé en ce que un appareil noeud Proxy Call State Control Fonction (CSCF, 1) est un noeud dans le Wireless LAN (WLAN, 10). Vorrichtung nach Anspruch 23, dadurch gekennzeichnet,dass eine Einrichtung Proxy Call State Control Funktion Knoten (CSCF, 1) ein Knoten im Wireless LAN (WLAN10) ist.
  25. 25
    Device according to one of claims 23 to 24, characterised in that the device constituting the proxy call state control function node (CSCF, 1) of the IP multimedia subsystem (IMS,3) is provided for controlling authentication in the wireless LAN (WLAN,10). Dispositif selon l'une quelconque des revendications 23 à 24, caractérisé en ce que l'appareil noeud Proxy Call Control Fonction (CSCF, 1) du sous-système IP multimedia (IMS, 3) est prévu pour la commande de l'authentification dans le Wireless LAN (WLAN, 10). Vorrichtung nach einem der Ansprüche 23 bis 24, dadurch gekennzeichnet,dass die Einrichtung Proxy Call Control Funktion Knoten (CSCF, 1) des IP Multimedia Subsystems (IMS,3) für die Steuerung der Authentifizierung im Wireless LAN (WLAN10) vorgesehen ist.
  26. 26
    Device according to one of claims 23 to 25, characterised in that the wireless LAN access gateway (WAGW,2) has a device that is configured such that said device converts the authentication result which is received from the IP multimedia subsystem (IMS,3), by allowing subscriber data to pass through completely or with restrictions. Dispositif selon l'une quelconque des revendications 23 à 25, caractérisé en ce que le Wireless LAN Access Gateway (WAGW, 2) présente un appareil qui est conçu de telle sorte qu'il convertit le résultat d'authentification, qui est reçu du sous-système IP multimedia (IMS, 3) par le fait que cet appareil laisse passer complètement ou de façon limitée des données d'abonnés. Vorrichtung nach einem der Ansprüche 23 bis 25,    dadurch gekennzeichnet,dass das Wireless LAN Access Gateway (WAGW,2) eine Einrichtung besitzt, die so ausgebildet ist, dass sie das Authentifizierungsergebnis, welches vom IP Multimedia Subsystem (IMS,3) erhalten wird, umsetzt, indem diese Einrichtung Teilnehmerdaten vollständig oder eingeschränkt passieren lässt.
Independent claims26