IP Library Granted Patent US 9,503,901
Granted Patent B2
US 9,503,901 · App. 14/706,012 · Granted Nov 22, 2016

Encryption in a wireless telecommunications

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,503,901
App. No.
14/706,012
Granted
Nov 22, 2016
Kind
B2
Abstract

An example of the present invention is a method of transmitting encrypted user data to a mobile terminal in a wireless telecommunications network. The method comprises sending to the mobile terminal a data packet. The data packet comprises both an identifier of encryption information to be used in recovering encrypted user data, and user data encrypted using the encryption information.

Claims (48)

1. A method in a wireless telecommunications network, the method comprising:

a mobile terminal receiving a data packet, the data packet comprising both an identifier of encryption information to be used in recovering encrypted user data, and user data encrypted using the encryption information;

in response to receipt of the data packet, the mobile terminal initializing its security context using the identified encryption information;

the mobile terminal using the identified encryption information to recover the user data; and

the mobile terminal storing the identified encryption information for use in recovering encrypted user data in a subsequently received data packet until receiving another identifier of encryption information.

2. The method of claim 1 , wherein the encryption information comprises an encryption algorithm.

3. The method of claim 2 , wherein the user data comprises user signalling data.

4. The method of claim 3 , wherein the user signalling data comprises an NAS message or RRC message.

5. The method of claim 1 , wherein the encryption information comprises an encryption key.

6. The method of claim 5 , wherein the user data comprises user signalling data.

7. The method of claim 6 , wherein the user signalling data comprises an NAS message or RRC message.

8. The method of claim 1 , wherein the user data comprises user signalling data.

9. The method of claim 8 , wherein the user signalling data comprises an NAS message or RRC message.

10. The method of claim 1 , wherein the user data comprises user traffic data.

11. The method of claim 1 , wherein the data packet comprising a Security Mode Command, the Security Mode Command comprising the identifier of the encryption information.

12. The method of claim 1 , wherein the network comprises a UMTS or LTE network.

13. The method of claim 1 , comprising:

the mobile terminal receiving a further encrypted packet which does not include an identifier of encryption information; and

the mobile terminal recovering the further encrypted packet using the previously transmitted identified encryption information.

14. A base station operative to transmit encrypted user data in a data packet, the data packet comprising both an identifier of encryption information transmitted for the first time, the encryption information being adapted to be used in a receiver to recover encrypted user data, and user data encrypted using the encryption information, wherein

the identified encryption information is used to recover the user data and is stored by the receiver for use in recovering encrypted user data in a subsequently received data packet, and

wherein the base station transmits another identifier of encryption information to the receiver to update the stored encryption information.

15. The base station of claim 14 , wherein the encryption information comprises an encryption algorithm.

16. The base station of claim 14 , wherein the user data comprises user signalling data.

17. The base station of claim 16 , wherein the user signalling data comprises an NAS message or RRC message.

18. The base station of claim 14 , wherein the encryption information comprises an encryption key.

19. The base station of claim 14 , wherein the user data comprises user traffic data.

20. The base station of claim 14 , wherein the data packet comprising a Security Mode Command, the Security Mode Command comprising the identifier of the encryption information.

21. The base station of claim 14 , wherein the base station is a UMTS or LTE wireless telecommunications base station.

22. The base station of claim 14 , wherein base station is operative to transmit a further encrypted packet which does not include an identifier of encryption information but is recoverable using the previously transmitted identified encryption information.

23. A mobile wireless telecommunications terminal comprising:

a receiver operative to receive a data packet, the data packet comprising both an identifier of encryption information to be used in recovering encrypted user data, and user data encrypted using the encryption information; and

a processor operative to use the encryption information to recover the user data encrypted using the encryption information, the mobile terminal being operative to store the encryption information for subsequent use until receiving another identifier of encryption information;

wherein in response to receipt of the data packet the mobile terminal initializes its security context using the identified encryption information.

24. The mobile wireless telecommunications terminal of claim 23 , wherein the mobile terminal is a UMTS or LTE wireless telecommunications terminal.

25. The mobile wireless telecommunications terminal of claim 23 :

wherein the receiver is operative to receive a further encrypted packet which does not include an identifier of encryption information; and

wherein the mobile terminal is operative to recover the further encrypted packet using the previously transmitted identified encryption information.

26. A method of a mobile terminal in a wireless telecommunications network receiving encrypted user data, the method comprising:

the mobile terminal receiving a first data packet, the first data packet comprising user data encrypted using first encryption information;

the mobile terminal recovering the user data in the mobile terminal using first encryption information stored in the mobile terminal;

the mobile terminal receiving a next data packet, the data packet comprising both an identifier of updated encryption information to be used in recovering encrypted user data, and user data encrypted using the updated encryption information;

in response to receipt of the data packet, the mobile terminal initializing its security context using the identified encryption information; and

the mobile terminal using the encryption information to recover the user data encrypted using the updated encryption information, and storing the updated encryption information for subsequent use in decrypting subsequent packets until receiving another identifier of encryption information.

27. The method of claim 26 , wherein the network comprises a UMTS or LTE network.

28. The method of claim 26 , comprising:

the mobile terminal receiving a further encrypted packet which does not include an identifier of encryption information; and

the mobile terminal recovering the further encrypted packet using the previously transmitted identified encryption information.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 19, 2018
From: ALCATEL LUCENT
To: NOKIA TECHNOLOGIES OY
Reel/Frame 047271/0246 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 1, 2015
From: ALCATEL-LUCENT USA INC.
To: ALCATEL LUCENT
Reel/Frame 036466/0728 →