EP3354005B1

Enabling emergency access to secure wireless communications networks

Abstract

This record has no abstract on file.

EP3354005B1, drawing sheet 1
Sheet 1 of 12

Term

10 yearsleft in the term

Expires 26 September 2036.

  1. Priority and filed
  2. Granted
  3. Today
  4. Expires

15 claims: 3 independent, 12 dependent

  1. 1
    A system, comprising:a memory storing an encrypted key repository that stores a universal encryption key, UEK, and a public safety encryption key, PSkey, associated with the UEK that enables public safety personnel to access a secure private wireless communications, PWC, network, wherein the UEK is a key established by a certificate authority separate from the system;one or more processors configured to execute a PWC controller module, an authentication module, a PWC network gateway application module, and an alert module;the PWC controller module configured to control one or more wireless transceivers for accessing the secure PWC network and communicating with a wireless user device of the public safety personnel;the authentication module coupled to the PWC controller module and configured to determine whether a PSkey received from the wireless user device, via the one or more wireless transceivers, is to be authenticated by comparing the received PSKEY to the stored PSKey that is associated with the UEK stored in the encrypted key repository;the PWC network gateway application module coupled to the PWC controller module and the authentication module, and configured to communicatively connect the user device to the secure PWC network upon a determination that the received PSkey is associated with the stored UEK;and the alert module configured to activate a public safety mode of the system that initiates authentication procedures to enable the wireless user device to immediately access the secure PWC network upon receiving information indicating an emergency, wherein the authentication module is further configured to request additional information from a user operating the wireless user device to validate the identity of the user of the wireless user device requesting access to the secure PWC network, and wherein the additional information is received from a separate device, module, or application comprising a common access card, a personal identification card-reader verification system, a visual or biometric identification system, or a token verification system.
  2. 10
    A method, comprising:storing, by a communication device, a universal encryption key, UEK, and a public safety encryption key, PSkey, associated with the UEK in an encrypted key repository, wherein the association enables public safety personnel to access a secure private wireless communications, PWC, network, and the UEK is a key established by a certificate authority separate from the communication device;receiving, by the communication device, from one or more wireless transceivers, a PSKey from a wireless user device of the public safety personnel;determining, by the communication device, whether the received PSKey is the stored PSKey associated with the stored UEK;enabling, by the communication device, the wireless user device to access the secure PWC network through the one or more wireless transceivers upon a determination that the received PSKey is associated with the UEK;storing, by the communication device, policy rules including parameters that must be met by the wireless user device to enable access of the wireless user device to the secure PWC network;and upon receiving the PSKey, requesting, by the communication device, additional information from the wireless user device to validate the identity of the user of the wireless user device requesting access to the secure PWC network based on the stored policy rules, wherein the additional information is received from a separate device, module, or application comprising a common access card, a personal identification card-reader verification system, a visual or biometric identification system, or a token verification system, and wherein the additional information used to validate access comprise one or more of user name, badge number, or agency affiliation.
  3. 15
    A non-transitory computer-readable device having instructions stored thereon that, when executed by at least one computing device, causes the at least one computing device to perform operations comprising:storing, by a communication device, a universal encryption key, UEK, and a public safety encryption key, PSkey, associated with the UEK in an encrypted key repository, wherein the association enables public safety personnel to access a secure private wireless communications, PWC, network, and the UEK is a key established by a certificate authority separate from the communication device;receiving, by the communication device, from one or more wireless transceivers, a PSKey from a wireless user device of the public safety personnel;determining, by the communication device, whether the received PSKey is the stored PSKey associated with the stored UEK;enabling, by the communication device, the wireless user device to access the secure PWC network through the one or more wireless transceivers upon a determination that the received PSKey is associated with the UEK;storing, by the communication device, policy rules including parameters that must be met by the wireless user device to enable access of the wireless user device to the secure PWC network;and upon receiving the PSKey, requesting, by the communication device, additional information from the wireless user device to validate the identity of the user of the wireless user device requesting access to the secure PWC network based on the stored policy rules, wherein the additional information is received from a separate device, module, or application comprising a common access card, a personal identification card-reader verification system, a visual or biometric identification system, or a token verification system, and wherein the additional information used to validate access comprise one or more of user name, badge number, or agency affiliation.