WO2012024903A1

Method for encrypting voice calls in mobile communication network, and system, terminal, and network side thereof

Abstract

Disclosed is a method for encrypting voice calls in a mobile communication network, which includes: a sender establishes a call with a receiver, and after encrypting voice frames using its own Cipher Key (CK), the sender sends the voice frames to a network side; after receiving the voice frames sent from the sender, the network side decrypts the voice frames using the sender CK, encrypts the decrypted voice frames using the receiver CK and sends them to the receiver; the receiver receives the voice frames from the network side and decrypts the voice frames using its own CK. Also disclosed is a system for encrypting voice calls in a mobile communication network. The present invention effectively improves the security and confidentiality in voice communications.

WO2012024903A1, drawing sheet 1
Sheet 1 of 3

Term

No projected expiry on record.

  1. Priority
  2. Filed
  3. Published
  4. Today

10 claims: 4 independent, 6 dependent

  1. 1
    权 利 要 求 书 1、 一种移动通讯网中加密语音通话的方法, 其包括: 发送方与接收方建立呼叫, 发送方使用自身的加密密钥(CK )对语音帧 进行加密后, 发送给网络侧; 网络侧接收到发送方发送的该语音帧后, 使用发送方的 CK对所述语音 帧进行解密, 使用接收方的 CK对解密后的语音帧进行加密, 发送给接收方; 以及 所述接收方从所述网络侧接收所述语音帧, 使用接收方自身的 CK对所 述语音帧进行解密。
  2. 2
    2、 如权利要求 1所述的方法, 其中, 所述接收方或发送方通过如下方式获取其自身的 CK:所述接收方或发送方在呼叫建立过程中, 与所述网络侧进行交互, 获取 随机数, 结合自身安全密钥 Ki, 生成自身的 CK。
  3. 3
    3、 如权利要求 1所述的方法, 其中, 所述网络侧通过如下方式获取发送 方或接收方的 CK:所述网络侧在呼叫建立过程中,归属位置寄存器或鉴权中心产生随机数, 根据所述发送方或接收方的根密钥, 结合产生的随机数, 生成发送方或接收 方的 CK, 并将所述随机数发送给发送方或接收方。
  4. 4
    4、 如权利要求 1、 2或 3所述的方法, 其中, 所述发送方、 接收方和网 络侧使用硬件加密模块实现所述加密和解密。
  5. 5
    5、 如权利要求 4所述的方法, 其中, 所述硬件加密模块由终端设备商和 运营商外的第三方提供。
  6. 6
    6、 一种终端, 所述终端包括加密模块、 发送模块和接收模块, 其中: 所述加密模块设置为: 使用加密密钥(CK )对语音帧进行加密后, 发送 给所述发送模块; 所述发送模块设置为: 将所述语音帧发送给网络侧; 和 /或, 所述接收模块设置为: 从网络侧接收语音帧, 发送给所述加密模块; 所述加密模块设置为: 使用其 CK对所述语音帧进行解密。
  7. 7
    7、 如权利要求 6所述的终端, 其中, 所述加密模块为硬件加密模块。
  8. 8
    8、一种网络侧, 所述网络侧包括接收模块、发送模块和加密模块,其中: 所述接收模块设置为: 接收发送方发送的语音帧, 发送给加密模块; 所述加密模块设置为: 使用发送方的 CK对所述语音帧进行解密, 使用 接收方的 CK对解密后的语音帧进行加密, 发送给发送模块; 发送模块设置为: 将所述语音帧发送给接收方。
  9. 9
    9、 如权利要求 8所述的网络侧, 其中, 所述加密模块为硬件加密模块。
  10. 10
    10、 一种移动通讯网中加密语音通话的系统, 其包括发送方、 接收方和 网络侧, 其中: 所述发送方设置为: 与所述接收方建立呼叫, 使用发送方自身的加密密 钥 (CK )对语音帧进行加密后, 发送给网络侧; 所述网络侧设置为: 接收到所述发送方发送的语音帧后, 使用发送方的 CK对所述语音帧进行解密, 使用接收方的 CK对解密后的语音帧进行加密, 发送给接收方; 所述接收方设置为: 从所述网络侧接收所述语音帧, 使用接收方自身的 CK对所述语音帧进行解密。
Independent claims10