EP2468024B1

Method for handling ciphering keys in a mobile station

Abstract

This record has no abstract on file.

EP2468024B1, drawing sheet 1
Sheet 1 of 4

Term

3.9 yearsleft in the term

Expires 17 August 2030.

  1. Priority and filed
  2. Granted
  3. Today
  4. Expires

26 claims: 9 independent, 17 dependent

  1. 1
    A method for handling ciphering keys in a mobile station (100) comprising a mobile equipment (105), ME, and a Universal Subscriber Identity Module (150), USIM, the method comprising:obtaining (310) a UMTS cipher key (210, 240), CK, a UMTS integrity key (220, 250), IK, and a UMTS ciphering key sequence number (230, 260), CKSN, from the USIM;deriving (320) a 128-bit ciphering key, Kc-128, from the obtained UMTS CK and the obtained UMTS IK;storing (330) the derived Kc-128 and the obtained UMTS CKSN on the mobile equipment, separate from the USIM, wherein the stored UMTS CKSN is associated with the stored Kc-128;and applying the Kc-128 to either a global system for mobile communications, GSM, ciphering algorithm or a general packet radio service, GPRS, ciphering algorithm.
  2. 4
    The method of any of claims 1-3, further comprising determining (410) that a ciphering algorithm requiring a 128-bit ciphering key is to be taken into use, wherein said obtaining, deriving, and storing steps are performed in response to said determining.
  3. 5
    The method of any of claims 1-3, further comprising determining (510) that a new UMTS security context has been established, wherein said obtaining, deriving, and storing steps are performed in response to said determining.
  4. 6
    The method of any of claims 1-3, further comprising determining that the USIM has generated a 64-bit ciphering key, wherein said obtaining, deriving, and storing steps are performed in response to said determining.
  5. 7
    The method of any of claims 1-3, further comprising:determining (610) that a ciphering algorithm requiring a 128-bit ciphering key is to be taken into use;and applying (630) the stored Kc-128 to the ciphering algorithm.
  6. 9
    The method of any of claims 1-3, further comprising:determining (610) that a ciphering algorithm requiring a 128-bit ciphering key is to be taken into use;obtaining a most recent CKSN from the USIM and comparing the most recent CKSN to the stored CKSN;and, in response to determining (620) that the most recent CKSN does not match the stored CKSN: obtaining (640) a new UMTS cipher key, CK, new integrity key, IK, and new ciphering key sequence number, CKSN, from the USIM;deriving (640) a new Kc-128 from the new CK and the new IK;and storing (640) the new Kc-128 and the new CKSN on the mobile equipment.
  7. 10
    The method of any of claims 1-3, further comprising:obtaining a new CK, new IK, and new CKSN from the USIM;deriving a new Kc-128 from the new CK and the new IK;and storing the new Kc-128 and the new CKSN on the mobile equipment, in addition to the previously stored Kc-128 and CKSN.
  8. 12
    The method of any of claims 1-3, further comprising determining that the stored Kc-128 is invalid and, in response to said determining, deleting the stored Kc-128.
  9. 14
    A mobile station (100), comprising:a Universal Subscriber Identity Module (150), USIM;and a mobile equipment (105), ME, coupled to the USIM via a USIM interface, wherein the mobile equipment comprises one or more processing circuits (120) configured to: obtain (310) a UMTS cipher key (210, 240), CK, a UMTS integrity key (220, 250), IK, and a UMTS ciphering key sequence number (230, 260), CKSN, from the USIM;derive (320) a 128-bit ciphering key, Kc-128, from the obtained UMTS CK and the obtained UMTS IK;and store (330) the derived Kc-128 and the obtained UMTS CKSN on the mobile equipment, separate from the USIM, wherein the stored UMTS CKSN is associated with the stored Kc-128;and apply the Kc-128 to either a global system for mobile communications, GSM, ciphering algorithm or a general packet radio service, GPRS, ciphering algorithm.
  10. 17
    The mobile station of any of claims 14-16, wherein the one or more processing circuits are further configured to determine (410) that a ciphering algorithm requiring a 128-bit ciphering key is to be taken into use and to perform said obtaining, deriving, and storing in response to said determining.
  11. 18
    The mobile station of any of claims 14-16, wherein the one or more processing circuits are further configured to determine (510) that a new UMTS security context has been established, and to perform said obtaining, deriving, and storing in response to said determining.
  12. 19
    The mobile station of any of claims 14-16, wherein the one or more processing circuits are further configured to determine that the USIM has generated a 64-bit ciphering key, Kc-64, and to perform said obtaining, deriving, and storing in response to said determining.
  13. 20
    The mobile station of any of claims 14-16, wherein the one or more processing circuits are further configured to:determine (610) that a ciphering algorithm requiring a 128-bit ciphering key is to be taken into use;and apply (630) the stored Kc-128 to the ciphering algorithm.
  14. 22
    The mobile station of any of claims 14-16, wherein the one or more processing circuits are further configured to:determine (610) that a ciphering algorithm requiring a 128-bit ciphering key is to be taken into use;obtain a most recent CKSN from the USIM and compare the most recent CKSN to the stored CKSN;and, in response to determining (620) that the most recent CKSN does not match the stored CKSN, to: obtain (640) a new CK, new IK, and new CKSN from the USIM;derive (640) a new Kc-128 from the new CK and the new IK;and store (640) the new Kc-128 and the new CKSN on the mobile equipment.
  15. 23
    The mobile station of any of claims 14-16, wherein the one or more processing circuits are further configured to:obtain a new CK, new IK, and new CKSN from the USIM;derive a new Kc-128 from the new CK and the new IK;and store the new Kc-128 and the new CKSN on the mobile equipment, in addition to the previously stored Kc-128 and CKSN.
  16. 25
    The mobile station of any of claims 14-16, wherein the one or more processing circuits are further configured to determine that the stored Kc-128 is invalid and, in response to said determining, delete the stored Kc-128.