×

Authentication method

  • US 6,711,400 B1
  • Filed: 10/14/1999
  • Issued: 03/23/2004
  • Est. Priority Date: 04/16/1997
  • Status: Expired due to Fees
First Claim
Patent Images

1. A method for authenticating both a subscriber station and a communications network to establish a communication connection, the subscriber station having its own identity data, the method comprising:

  • generating a first random number in the subscriber station which is transferred along with the subscriber identity data to an authentication centre;

    generating a second random number in the authentication centre which is transferred to the subscriber station, calculating a first set of parameters in the authentication centre having first and second responses and calculating a second set of parameters in the subscriber station including first and second responses, wherein both sets of parameters are defined on the basis of the subscriber identity and at least one of said random numbers;

    sending the first responses of the first set of parameters to the subscriber station;

    comparing the first responses in the subscriber station, wherein if the first responses are equal then the communications network is authenticated by the subscriber station;

    sending the second responses of the second set of parameters to the communications network;

    comparing the second responses in the communications network, wherein if the second responses are equal then the subscriber station is authenticated by the communications network, in which the home network has been defined for at least some subscribers, wherein the identity data is divided into first and second parts in such a way that the first part contains the information for identifying the subscriber group and the second part identifies the subscriber within the subscriber group, a third random number is generated in the subscriber station, the second part of the subscriber identifier is ciphered by using a random input and a subscriber group specific key, a message containing a partially ciphered identifier, consisting of the first part and the ciphered second part, and the used random input is sent to a network element of the communications network, the message is routed from the communications network to the subscriber'"'"'s home network and the identity is deciphered in the subscriber'"'"'s home network.

View all claims
  • 3 Assignments
Timeline View
Assignment View
    ×
    ×