EP1671511B1

Enhanced security design for cryptography in mobile communication systems

Abstract

This record has no abstract on file.

EP1671511B1, drawing sheet 1
Sheet 1 of 11

Term

Term ended

Expired 10 September 2024, 2 years ago.

  1. Priority
  2. Filed
  3. Granted
  4. Expired
  5. Today

41 claims: 5 independent, 36 dependent

  1. 1
    A method of enhancing security for protected communication based on a key agreement procedure (S 1) in a mobile communications network serving a mobile terminal (100) having at least one basic cryptographic security algorithm, said method comprising the steps of :- selecting an enhanced version of a basic cryptographic security algorithm for communication between the mobile terminal and the network side (S2);- modifying a basic security key resulting from the key agreement procedure in dependence on information representative of the selected algorithm to generate an algorithm-specific security key (S3);- applying the basic cryptographic security algorithm with the algorithm-specific security key as key input to enhance security for protected communication in said mobile communications network (S4).
  2. 16
    The method of claim I5, wherein said at least one information item includes replay protection information.
  3. 19
    An arrangement for enhancing security for protected communication based on a key agreement procedure in a mobile communications network serving a mobile terminal (100) having at least one basic security algorithm, said arrangement comprising:- means for selecting an enhanced version of a basic cryptographic security algorithm (24) for communication between the mobile terminal and the network side;- means for modifying a basic security key resulting from the key agreement procedure in dependence on information representative of the selected algorithm to generate an algorithm-specific security key;and - means for applying the basic cryptographic security algorithm (24) with the algorithm-specific security key as key input to enhance security for protected communication in said mobile communications network.
  4. 32
    A mobile terminal (100) for operation in a mobile communications network, said mobile terminal comprising:- authentication and key agreement, AKA, functionality (10);- an engine for a basic cryptographic security algorithm (24);- means for modifying a basic security key from said AKA functionality in response to information representative of a selected cryptographic security algorithm to generate an algorithm-specific security key for input to said basic cryptographic security algorithm engine to enhance security for protected communication in said mobile communications network.
  5. 36
    A network node (300) for operation in a mobile communications network serving a mobile terminal (100) that supports at least one basic cryptographic security algorithm (24), said network node comprising:- means for deriving from a basic security key resulting from a key agreement procedure an algorithm-specific security key corresponding to an enhanced version of the basic cryptographic security algorithm for input to the basic cryptographic security algorithm (24) to enhance security for protected communication in said mobile communications network.