IL157048A

Method and apparatus for providing authentication in a communication system

Abstract

This record has no abstract on file.

IL157048A, drawing sheet 1
Sheet 1 of 16

Term

No projected expiry on record.

  1. Priority
  2. Filed
  3. Published
  4. Today

16 claims: 3 independent, 13 dependent

  1. 1
    CLAIMS:1. A method comprising the steps of: generating a random number, an expected response, and a derived cipher key associated with securing air interface communications with a mobile station;forwarding the random number and a random seed to a base station that is located in a first pool of devices, wherein the first pool is associated with an intrakey used for encrypting key material that is distributed within the first pool;receiving, from the base station, a response to the random number and the random seed;comparing the response and the expected response;and when the response matches the expected response, encrypting the derived cipher key using the intrakey and forwarding the encrypted derived cipher key to the base station.
  2. 10
    A method performed by any of a base station that is located in a first pool of devices and comprising the steps of:receiving an authentication request from a mobile station;determining whether to forward the request to an authentication agent;when it is determined to forward the request, forwarding the request to the authentication agent;receiving a random number and a random seed from the authentication agent;forwarding the random number and the random seed to the mobile station;receiving a response to the random number and the random seed from the mobile station and forwarding the response to the authentication agent;when the authentication agent authenticates the mobile station, receiving from the authentication agent a derived cipher that is encrypted using an intrakey associated with the first pool and used for encrypting key material that is distributed within the first pool;and encrypting messages to the mobile station and decrypting messages from the mobile station with the derived cipher key.
  3. 15
    A method performed by a base station that is located in a first pool of devices and comprising the steps of:receiving a random number from a mobile station;forwarding the random number to an authentication agent;receiving a response to the random number and a random seed from the authentication agent;forwarding the response and the random seed to the mobile station;when the mobile station authenticates the infrastructure comprising the authentication agent and the base stations, forwarding an authenticated message to the authentication agent;receiving from the authentication agent a derived cipher key that is encrypted using an intrakey associated with the first pool and used for encrypting key material that is distributed within the first pool;encrypting messages to the mobile station and decrypting messages from the mobile station with a derived cipher key.