EP1865656A1

Provision of secure communications connection using third party authentication

Abstract

The present invention relates to communications, and in particular though not exclusively to forming a secure connection between two untrusted devices. The present invention provides a method of securely connecting a first device (A) to a second device (B) using a third party authentication server (AS) coupled to the second device, the first device and the authentication server both having first device shared secret data (SSDa) and the second device and the authentication server both having second device shared secret data (SSDb). The method comprises receiving a request from the first device at the authentication server; the authentication server and the first device both generating a first device key (K_A) using the first device shared secret data in response to a first device random number (RANDa) sent from the authentication server to the first device; the authentication server and the second device both generating a second device key (K_B) using the second device shared secret data in response to a second device random number (RANDb) sent from the authentication server to the second device; and the authentication server securely forwarding to the second device (B) and the first device (A) a common key (K_AB) using the second and first device keys (K_B, K_A).

EP1865656A1, drawing sheet 1
Sheet 1 of 16

Term

Term ended

Projected expiry passed 8 June 2026, 0.3 years ago.

  1. Priority and filed
  2. Published
  3. Projected expiry
  4. Today

17 claims: 8 independent, 9 dependent

  1. 1
    A method of securely connecting a first device (A) to a second device (B) using a third party authentication server (AS) coupled to the second device, the first device and the authentication server both having first device shared secret data (SSDa) and the second device and the authentication server both having second device shared secret data (SSDb); the method comprising:receiving a request from the first device at the authentication server;the authentication server and the first device both generating a first device key (K_A) using the first device shared secret data in response to a first device random number (RANDa) sent from the authentication server to the first device;the authentication server and the second device both generating a second device key (K_B) using the second device shared secret data in response to a second device random number (RANDb) sent from the authentication server to the second device;the authentication server securely forwarding to the second device (B) and the first device (A) a common key (K_AB) using the second and first device keys (K_B, K_A).
  2. 3
    A method according to any one preceding claim, wherein the first device is a wireless client device and the second device is a wireless server wirelessly connected to the wireless client device.
  3. 5
    A method according to any one preceding claim, wherein forwarding of the first and/or second device keys (K_A, K_B) and mutual authentication is achieved using the EAP-SIM protocol between the authentication server and the first device and/or the authentication server and the second device.
  4. 6
    A method according to any one preceding claim, wherein the common key (K_AB) is encrypted using the first device key (K_A) and sent from the authentication server to the first device, and the common key (K_AB) is encrypted using the second device key (K_B) and sent from the authentication server to the second device.
  5. 7
    A method according to any one of claims 1 to 5, wherein the common key (K_AB) is derived from the first device key (K_A) and sent from the authentication server to the second device encrypted using the second device key (K_B), and wherein the common key (K_AB) is generated by the first device in response to receiving a validation parameter (HMAC-PNM(N_A)) dependent on the first device key (K_A) from the second device.
  6. 9
    A method according to any one preceding claim, wherein the first and second devices send respective random nonce values (N_A, N_B) to the authentication server and which are used to generate the respective first and second device keys (K_A, K_B) and/or the first and second device processed random numbers (SSDa[RANDa], SSDb[RANDb]).
  7. 11
    A method of operating an authentication server for securely connecting a first device (A) to a second device (B), the first device and the authentication server both having first device shared secret data (SSDa) and the second device and the authentication server both having second device shared secret data (SSDb); the method comprising:receiving a request from the first device;generating a first device random number (RANDa) and a first device key (K_A) using the first device random number (RANDa) and the first device shared secret data (SSDa), and forwarding the first device random number to the first device;generating a second device random number (RANDb) and a second device key (K_B) using the second device random number (RANDb) and the second device shared secret data (SSDb), and forwarding the second device random number (RANDb) to the second device;the authentication server securely forwarding to the second device (B) and the first device (A) a common key (K_AB) using the second and first device keys (K_B, K_A).
  8. 13
    A method of operating a second device (B) for securely connecting a first device (A) to the second device (B) using a third party authentication server (AS) coupled to the second device, the first device and the authentication server both having first device shared secret data (SSDa) and the second device and the authentication server both having second device shared secret data (SSDb); the method comprising:generating a second device key (K_B) using the second device shared secret data in response to receiving a second device random number (RANDb) from the authentication server, wherein the second device shared secret data (SSDb) is stored on a removable module associated with the second device;receiving a common key (K_AB) from the authentication server encrypted using the second device key (K_B or K_WS);communicating with the first device using the common shared key (K_AB).
  9. 15
    A method according to any one of claims 13 or 14, further comprising receiving a request from the first device and forwarding the request to the authentication server, and relaying subsequent communications between the authentication server and the first device.
  10. 16
    A method of operating a first device (A) for securely connecting to a second device (B) using a third party authentication server (AS) coupled to the second device, the first device and the authentication server both having first device shared secret data (SSDa) and the second device and the authentication server both having second device shared secret data (SSDb); the method comprising:sending a request to the authentication server;generating a first device key (K_A) using the first device shared secret data in response to a first device random number (RANDa) received from the authentication server;authenticating the second device in response to receiving a common shared secret key (K_AB) from the authentication server encrypted using the first device shared secret key (K_A);communicating with the second device using a secure connection between the first device and the second device which uses the common key (K_AB).