Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

Method and system for establishing ESP security alliance in communication system

A communication system and security technology, applied in transmission systems, digital transmission systems, and key distribution, can solve the problems of inability to guarantee, easy to be monitored, and reduce the efficiency of WiMax networks, and achieve the goal of ensuring privacy, improving efficiency, and increasing security. Effect

Inactive Publication Date: 2008-01-23
HUAWEI TECH CO LTD
View PDF0 Cites 30 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0006] In the PPR process, the two messages HoTI and HoT are transmitted in plain text, which cannot guarantee the privacy of the return routable process between the mobile node MN and the home agent HA, so it is easy to be monitored
After the malicious attacker obtains the H-Token and C-Token in the HoT and CoT messages, he can calculate the key information kbm of the subsequent BU process between the MN and the CN, so it cannot be guaranteed that the subsequent communication will occur in the mobile node as expected Between MN and related node CN
Eventually, wireless networks such as WiMax will not be able to support routing optimization R0 normally, reducing the efficiency of WiMax networks

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method and system for establishing ESP security alliance in communication system
  • Method and system for establishing ESP security alliance in communication system
  • Method and system for establishing ESP security alliance in communication system

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0061] The present invention will be described in detail below in conjunction with the accompanying drawings.

[0062] In order to ensure the security of services between the HA and the MN, it is necessary to establish a security association between the HA and the MN in advance. The core of the present invention is: the present invention provides three kinds of methods for establishing a security association between HA and MN, the first establishment scheme is: by directly generating the security key of ESP security association by the AAA server, mobile node MN from the AAA server Obtain the security key or independently calculate the same security key, pre-set encryption algorithm and pre-configured SPI; the second establishment scheme is: negotiate the encryption algorithm or the encryption algorithm and SPI between the home agent HA and the MN The ESP security association parameters, the mobile node MN obtains the security key from the AAA server or independently calculates...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

To create an ESP security association in a communication system, three methods are provided. I. A AAA server directly creates a security key and a mobile node MN for the ESP security association to obtain a security key from the AAA server or independently work out a safety security key, a preset a cryptographic algorithm and a SPI configured in advance. II. ESP security association parameters and MN are coordinated between a home agent HA and the mobile node MN to obtain a security key from the AAA server or independently calculate a same security key. III. The MN accesses to a shared key for bound updating of the current MN and the HA created during authentication as a preset key in the process of key interaction protocol, thus completing mutual authentication in the key protocol authentication and creating an ESP security association based on negotiation of the key interaction protocol. A security association is created between a HA and a MN with three methods above to ensure safety of service between consequent HA and MN.

Description

technical field [0001] The present invention relates to a method and a system for establishing a security association in a communication system in the field of communication, in particular to establishing an ESP (Encapsulating Security Payload, security load encapsulation) security between a mobile node (Mobile Node, MN) and a home agent (Home Agent, HA). Methods and systems for alliances. Background technique [0002] Among existing mobile IP technologies, Mobile IPv6 is one of the most effective mobile proposals today. As shown in FIG. 1 , it is a schematic diagram of a basic mobile IPv6 composition. Mobile IPv6 includes three entities: mobile node MN, home agent HA and communication node CN. An IPv6 mobile node is a node with multiple host addresses. It has a care-of address and a home address at the same time, where the care-of address is used to route IP packets, and its prefix is ​​the prefix of the visited link network. The care-of address is temporary, and it can...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Applications(China)
IPC IPC(8): H04L9/32H04L9/08H04L12/46H04L12/56H04L29/06
Inventor 梁文亮谢勇
Owner HUAWEI TECH CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products