Method of cryptographing wireless data and apparatus using the method
First Claim
1. A key descriptor structure exchanged between a wireless LAN terminal and an access point, the structure comprising:
- a key initial vector which is a random number generated in the access point;
a key descriptor type which indicates an encryption algorithm; and
a plurality of key materials encrypted according to the encryption algorithm of the key descriptor using the key initial vector and a master session key shared between the wireless LAN terminal and the access point as an encryption key.
1 Assignment
0 Petitions
Accused Products
Abstract
A key descriptor structure exchanged between a wireless LAN terminal and an access point, and a method and apparatus for cryptographing wireless data are provided. The key descriptor structure includes a key initial vector which is a random number generated in the access point, a key descriptor type which indicates an encryption algorithm, and a plurality of key materials encrypted according to the encryption algorithm of the key descriptor using the key initial vector and a master session key shared between the wireless LAN terminal and the access point as an encryption key.
56 Citations
16 Claims
-
1. A key descriptor structure exchanged between a wireless LAN terminal and an access point, the structure comprising:
-
a key initial vector which is a random number generated in the access point;
a key descriptor type which indicates an encryption algorithm; and
a plurality of key materials encrypted according to the encryption algorithm of the key descriptor using the key initial vector and a master session key shared between the wireless LAN terminal and the access point as an encryption key. - View Dependent Claims (2)
-
-
3. A method of exchanging a wireless section encryption key using a key descriptor between a wireless LAN terminal and an access point, the method comprising:
-
(a) receiving a master session key from an authentication server through the access point and sharing the wireless LAN terminal and the master session key;
(b) generating a plurality of key materials in the access point;
(c) transmitting the key descriptor including the key materials encrypted on the basis of the master session key and the key initial vector, to the wireless LAN terminal; and
(d) detecting a wireless section encryption key from the key descriptor received by the wireless LAN terminal. - View Dependent Claims (4, 5, 6, 15)
-
-
7. A method of exchanging wireless data between a wireless LAN terminal and an access point, the method comprising:
-
(a) generating a plurality of key materials in the access point;
(b) transmitting a key descriptor including the key materials to the wireless LAN terminal and detecting a wireless section encryption key from the key descriptor received by the wireless LAN terminal;
(c) encrypting data according to an algorithm designated in a tag field through the access point and transmitting encrypted data with the tag; and
(d) receiving the encrypted data through the wireless LAN terminal and decrypting the data on the basis of the algorithm and the wireless section encryption key. - View Dependent Claims (8, 9, 10, 11, 16)
-
-
12. An access point, which constitutes at least one wireless LAN terminal, an authentication server, and a network, the access point comprising:
-
an arithmetic processor which processes data communicated with the network and performs the control of the access point;
a master session key receiver which receives a master session key from the authentication server and stores the master session key;
a security processor which encrypts a key material according to an encryption algorithm indicated by a key descriptor type using the master session key and a key initial vector as an encryption key;
a transmitter which outputs a key descriptor including the encrypted key material; and
an interface which transmits and receives the key descriptor output by the transmitter and data to and from the wireless LAN terminal. - View Dependent Claims (13, 14)
-
Specification