METHOD AND DEVICE FOR VERIFYING KEY REQUESTER
First Claim
1. A method for verifying a key requester, comprising:
- receiving, by a security function entity, a request message sent by a first core-network network element, wherein the request message carries an identifier of the first core-network network element, identity information of a user equipment (UE), and a first token; and
determining, by the security function entity, to provide a key for the first core-network network element when determining, based on the identifier of the first core-network network element and the identity information of the UE, that the first token is valid.
1 Assignment
0 Petitions
Accused Products
Abstract
A method and device for verifying a key requester are described. The method may include a security function entity receiving a request message sent by a user management function (UMF) entity. The method may also include decrypting information in the request message by using a private key of the security function entity, and obtaining the information carried in the request message after signature verification on decrypted information using a public key in a certificate of the UMF entity succeeds. Furthermore, the method may include determining to provide a key of a user equipment (UE) for the UMF entity, when determining that a first verification parameter carried in the request message is valid and determining that an identifier which is of the UMF entity and which is carried in the request message is the same as an identifier of a UMF entity to which the UE attaches.
-
Citations
13 Claims
-
1. A method for verifying a key requester, comprising:
-
receiving, by a security function entity, a request message sent by a first core-network network element, wherein the request message carries an identifier of the first core-network network element, identity information of a user equipment (UE), and a first token; and determining, by the security function entity, to provide a key for the first core-network network element when determining, based on the identifier of the first core-network network element and the identity information of the UE, that the first token is valid. - View Dependent Claims (2, 3, 4, 5, 6)
-
-
7. A device for verifying a key requester, comprising:
-
a transceiver, configured to receive a request message sent by a first core-network network element, wherein the request message carries an identifier of the first core-network network element, identity information of a user equipment (UE), and a first token; and at least one processor in communication with a memory storing one or more instructions, wherein the processor executes the instructions to; determine to provide the key for the first core-network network element when determining, based on the identifier of the first core-network network element and the identity information of the UE, that the first token is valid. - View Dependent Claims (8, 9, 10, 11, 12)
-
-
13. A device for verifying a key requester, comprising:
-
a transceiver configured to obtain an identifier of a user management function (UMF) entity to which a user equipment (UE) attaches; at least one processor in communication with a memory storing one or more instructions, wherein the processor executes the instructions to;
generate a key of the UE and a verification parameter for the UMF entity;the transceiver further configured to; send configuration information to the UMF entity, wherein the configuration information is signed using a private key of the security function entity and encrypted by using a public key of the UMF entity, and the configuration information comprises the key, identity information of the UE, and the verification parameter; and receive verification information returned by the UMF entity, wherein the verification information is obtained by the UMF entity after the UMF entity encrypts the verification parameter by using the key; and the at least one processor further configured to determine, after determining that the verification information is valid, that the key is successfully delivered.
-
Specification