IP Library Granted Patent US 11,190,510
Granted Patent B2
US 11,190,510 · App. 16/192,794 · Granted Nov 30, 2021

Two-factor authentication in a cellular radio access network

Inventors: Jitender Arora (Westford, MA); Yang Cao (Westford, MA); Steven Paul Papa (Windham, NH)
Assignee: Parallel Wireless, Inc.
H04L63/0884H04L9/0861H04L9/3271H04W12/06H04W48/02H04L2463/082H04W84/042
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,190,510
App. No.
16/192,794
Granted
Nov 30, 2021
Kind
B2
Abstract

A method for authenticating radio access network devices is disclosed, comprising: authenticating, at a coordination server, a base station in a radio access network using a first authentication factor; selecting, following successful authentication of the base station using the first authentication factor, a challenge question based on historical information of the base station stored within a database; sending, from the coordination server to the base station, a request containing the challenge question to further authenticate the base station based on the historical information of the base station; receiving, from the base station at the coordination server, a response to the challenge question; verifying, at the coordination server, the correctness of the response using a key derived from the historical information; and granting the base station access to a core network of a mobile operator, thereby addressing security issues unsolved by one-factor authentication.

Claims (19)

1. A method for authenticating radio access network devices, comprising:

authenticating, at a coordination server, a base station in a radio access network using a first authentication factor;

selecting, following successful authentication of the base station using the first authentication factor, a challenge question based on historical information of the base station including continuously developing events stored within a database;

sending, from the coordination server to the base station, a request containing the challenge question to further authenticate the base station based on the historical information of the base station, wherein the challenge question is based on a first key derived from the historical information;

receiving, from the base station at the coordination server, a response to the challenge question;

verifying, at the coordination server, the correctness of the response using a second key derived from the historical information; and

granting the base station access to a core network of a mobile operator, thereby addressing security issues unsolved by one-factor authentication.

2. The method of claim 1 , wherein the historical information further comprises a base station identifier, a timestamp, and an event type.

3. The method of claim 1 , wherein the historical information is based on a user equipment (UE) attach event.

4. The method of claim 1 , further comprising receiving an index of the historical information at the coordination server from a database server.

5. The method of claim 1 , further comprising forwarding, from the coordination server, the historical information to a database server.

6. The method of claim 1 , further comprising, at the base station, using an index of the historical information and a local copy of the historical information to derive a secret key at the base station.

7. A non-transitory computer-readable medium which, when executed by a processor at a server, causes the server to perform:

authenticating, at a coordination server, a base station in a radio access network using a first authentication factor;

selecting, following successful authentication of the base station using the first authentication factor, a challenge question based on historical information of the base station stored within a database;

sending, from the coordination server to the base station, a request containing the challenge question to further authenticate the base station based on the historical information of the base station, wherein the challenge question is based on a first key derived from the historical information including continuously developing events;

receiving, from the base station at the coordination server, a response to the challenge question;

verifying, at the coordination server, the correctness of the response using the first key derived from the historical information; and

granting the base station access to a core network of a mobile operator, thereby addressing security issues unsolved by one-factor authentication.

Assignments (5)
RELEASE OF SECURITY INTEREST Recorded Jul 12, 2022
From: VENTURE LENDING & LEASING IX, INC.; WTI FUND X, INC.
To: PARALLEL WIRELESS, INC.
Reel/Frame 060900/0022 →
RELEASE OF SECURITY INTEREST Recorded Jul 8, 2022
From: VENTURE LENDING & LEASING IX, INC.; VENTURE LENDING & LEASING VIII, INC.
To: PARALLEL WIRELESS, INC.
Reel/Frame 060828/0394 →
SECURITY INTEREST Recorded Mar 1, 2022
From: PARALLEL WIRELESS, INC.
To: VENTURE LENDING & LEASING IX, INC.; WTI FUND X, INC.
Reel/Frame 059279/0851 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 14, 2021
From: ARORA, JITENDER; CAO, YANG; PAPA, STEVEN PAUL
To: PARALLEL WIRELESS, INC.
Reel/Frame 057794/0991 →
SECURITY INTEREST Recorded Jan 2, 2020
From: PARALLEL WIRELESS, INC.
To: VENTURE LENDING & LEASING IX, INC.; VENTURE LENDING & LEASING VIII, INC.
Reel/Frame 051459/0959 →
Continuity (2)
Provisional Application 62586334 · Nov 15, 2017
Related Publication 20190149545A1 · May 16, 2019