发明名称 Network access authentication for user equipment communicating in multiple networks
摘要 The invention relates to a method, an element, and a system for providing access authentication for a user using user equipment (1-2) communicating (1) in a first communications network (1-30) accepting a first type of identification to a second communications network (1-16, 1-20) accepting a second type of identification. In the invention, an identifier comprising a first part and a second part is received (5); a corresponding second part is retrieved (7) from a database (BSF) by using the first part; the received second part is compared with the retrieved corresponding second part; and if they are the same, the user equipment (1-2) is provided with access authentication to the second communications network (1-16, 1-20).
申请公布号 US9241264(B2) 申请公布日期 2016.01.19
申请号 US200812734781 申请日期 2008.11.25
申请人 TeliaSonera AB 发明人 Korhonen Jouni
分类号 H04W12/08;H04L29/06;H04L9/32;H04W12/06;H04W88/02 主分类号 H04W12/08
代理机构 代理人 O'Connor Cozen
主权项 1. A method comprising: authenticating a user of a user equipment to a first communications network by a first network access user identifier of a first network domain type of identifications and a first network access authentication mechanism that controls network access to the first communications network; generating, after the authenticating and in response to success in the network access authentication of the user of the user equipment to the first communications network, a second network access user identifier of a second network domain type of identifications for use in network access authentication to a second communications network in accordance with a second network access authentication mechanism that is different from the first network access authentication mechanism and controls network access to the second communications network, wherein the second network access user identifier is different from the first network access user identifier and cannot be used in authentication to the first communications network, and the first network access user identifier cannot be used in authentication to the second communications network, and the second communications network is different from the first communications network; receiving the generated second network access user identifier of the second network domain type of identifications used in the second communications network for network access authentication, the received second network access user identifier comprising a first part and a second part; retrieving, using only the first part of the second network access user identifier, a corresponding second part of the second network access user identifier from a database; and comparing the received second part with the retrieved corresponding second part and, if they are the same, providing the user of the user equipment with network access authentication to the second communications network, wherein after a successful network access authentication a service authentication using a service access identifier, which is different from the first network access user identifier and different from the second network access user identifier and cannot be used in authentication to the first communications network and in authentication to the second communications network, is enabled.
地址 Stockholm SE