发明名称 Method and apparatus for providing authentication, authorization and accounting to roaming nodes
摘要 This invention proposes an integrated process for AAA (Authentication, Authorisation, and Accounting) with the order reversed whereby L2 follows L3. The L3 process treats the wireless link as any normal IP access link, and the L3 authorisation provides L3 processing, but also includes the L2 terminal authentication identifiers so that the L2 security parameters can also be returned. This means that the wireless link and the IP layer are not secured until after the L3 authorisation has completed and therefore the first IP messages that trigger authorisation are sent insecurely. This invention also provides methods to avoid these insecure messages presenting any opportunities to an attacker. Finally, the inventions include methods to enable L3 before L2 authorisation when a user is roaming in a foreign network.
申请公布号 US7882346(B2) 申请公布日期 2011.02.01
申请号 US20030435622 申请日期 2003.05.09
申请人 QUALCOMM INCORPORATED 发明人 O'NEILL ALAN;VANDERVEEN MICHAELA;TSIRTSIS GEORGE;PARK VINCENT
分类号 H04L9/32;H04K1/00;H04L9/00;H04L29/06;H04M1/66;H04W4/00 主分类号 H04L9/32
代理机构 代理人
主权项
地址