IP Library › Granted Patent US 11,974,122
Granted Patent B2
US 11,974,122 · App. 17/267,825 · Granted Apr 30, 2024

Protection of non-access stratum communication in a wireless communication network

Inventors: Noamen Ben Henda (Vällingby, SE); Monica Wifvesson (Lund, SE)
Assignee: Telefonaktiebolaget LM Ericsson (publ)
H04W12/041H04W8/08H04W12/037H04W12/06H04W36/0038
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,974,122
App. No.
17/267,825
Granted
Apr 30, 2024
Kind
B2
Abstract

Network equipment ( 16 A) is configured for use in a wireless communication network. The network equipment ( 16 A) is configured to detect one or more conditions under which non-access stratum (NAS) keys ( 26 A) that protect NAS communication between the network equipment ( 16 A) and a wireless device ( 12 ) are to be refreshed. Responsive to detecting the one or more conditions, the network equipment ( 16 A) is configured to derive, from a base key ( 24 A) on which the NAS keys ( 26 A) were derived, a new base key ( 24 B) on which fresh NAS keys ( 26 B) are to be derived. The network equipment ( 16 A) is also configured to activate the new base key ( 24 B).

Claims (42)

1. A method performed by network equipment configured for use in a wireless communication network, wherein the network equipment implements an access and mobility function (AMF), the method comprising:

detecting one or more conditions under which non-access stratum (NAS) keys that protect NAS communication between the network equipment and a wireless device are to be refreshed, wherein the one or more conditions include one or more conditions that are detected before a value of a NAS COUNT for a NAS connection between the network equipment and the wireless device wraps around from a maximum value to an initial value, wherein the one or more conditions include a condition that the value of the NAS COUNT is within a certain threshold from the maximum value, wherein the NAS COUNT counts a number of NAS messages sent in a certain direction over the NAS connection;

responsive to detecting the one or more conditions, deriving, from a base key on which the NAS keys were derived and from the value of the NAS COUNT, a new base key on which fresh NAS keys are to be derived, wherein the new base key is derived using horizontal key derivation without running an authentication and key agreement (AKA)-based primary authentication procedure and without activating a native security context for the wireless device, wherein the base key is a K AMF key, and wherein the new base key is a new K AMF key;

activating the new base key;

deriving fresh NAS keys from the new base key; and

transmitting or receiving NAS communication that is protected with the fresh NAS keys.

2. The method of claim 1 , wherein said deriving comprises computing the new base key as an output of a key derivation function that takes a string and a key as inputs, wherein the base key is input to the key derivation function as said key, wherein a set of parameters concatenated together is input to the key derivation function as said string, wherein the set of parameters includes the value of the NAS COUNT.

3. The method of claim 2 , wherein the key derivation function is a hash-based message authentication code (HMAC) function that uses a Secure Hash Algorithm (SHA) to hash inputs to the HMAC function in the form of a string and a key.

4. The method of claim 1 , wherein said activating comprises performing a NAS security mode command (SMC) procedure between the network equipment and the wireless device to establish between the network equipment and the wireless device a new NAS security context that includes the new base key.

5. The method of claim 4 , wherein performing the NAS SMC procedure comprises transmitting a NAS SMC message to the wireless device indicating the value of the NAS COUNT.

6. The method of claim 1 , wherein deriving the new base key comprises deriving the new base key without running a primary authentication procedure and without activating a native security context.

7. Network equipment configured for use in a wireless communication network, wherein the network equipment implements an access and mobility function (AMF), the network equipment comprising:

communication circuitry;

and processing circuitry configured to:

detect one or more conditions under which non-access stratum (NAS) keys that protect NAS communication between the network equipment and a wireless device are to be refreshed,

wherein the one or more conditions include one or more conditions that are detected before a value of a NAS COUNT for a NAS connection between the network equipment and the wireless device wraps around from a maximum value to an initial value,

wherein the one or more conditions include a condition that the value of the NAS COUNT is within a certain threshold from the maximum value,

wherein the NAS COUNT counts a number of NAS messages sent in a certain direction over the NAS connection;

responsive to detecting the one or more conditions,

derive, from a base key on which the NAS keys were derived and from the value of the NAS COUNT, a new base key on which fresh NAS keys are to be derived,

wherein the new base key is derived using horizontal key derivation without running an authentication and key agreement (AKA)-based primary authentication procedure and without activating a native security context for the wireless device,

wherein the base key is a K AMF key, and wherein the new base key is a new KAMF key;

activate the new base key;

derive fresh NAS keys from the new base key; and

transmit or receive NAS communication that is protected with the fresh NAS keys.

8. The network equipment of claim 7 , wherein the processing circuitry is configured to derive the new base key by computing the new base key as an output of a key derivation function that takes a string and a key as inputs, wherein the base key is input to the key derivation function as said key, wherein a set of parameters concatenated together is input to the key derivation function as said string, wherein the set of parameters includes the value of the NAS COUNT.

9. The network equipment of claim 8 , wherein the key derivation function is a hash-based message authentication code (HMAC) function that uses a Secure Hash Algorithm (SHA) to hash inputs to the HMAC function in the form of a string and a key.

10. The network equipment of claim 7 , wherein the processing circuitry is configured to activate the new base key by performing a NAS security mode command (SMC) procedure between the network equipment and the wireless device to establish between the network equipment and the wireless device a new NAS security context that includes the new base key.

11. The network equipment of claim 10 , wherein the processing circuitry is configured to transmit a NAS SMC message to the wireless device indicating the value of the NAS COUNT.

12. The network equipment of claim 7 , wherein the processing circuitry is configured to derive the new base key by deriving the new base key without running a primary authentication procedure and without activating a native security context.

13. Anon-transitory computer readable medium on which is stored instructions that, when executed by at least one processor of network equipment, causes the network equipment to:

detect one or more conditions under which non-access stratum (NAS) keys that protect NAS communication between the network equipment and a wireless device are to be refreshed,

wherein the one or more conditions include one or more conditions that are detected before a value of a NAS COUNT for a NAS connection between the network equipment and the wireless device wraps around from a maximum value to an initial value,

wherein the one or more conditions include a condition that the value of the NAS COUNT is within a certain threshold from the maximum value,

wherein the NAS COUNT counts a number of NAS messages sent in a certain direction over the NAS connection;

responsive to detecting the one or more conditions,

derive, from a base key on which the NAS keys were derived and from the value of the NAS COUNT, a new base key on which fresh NAS keys are to be derived,

wherein the new base key is derived using horizontal key derivation without running an authentication and key agreement (AKA)-based primary authentication procedure and without activating a native security context for the wireless device,

wherein the base key is a K AMF key, and wherein the new base key is a new KAMF key;

activate the new base key;

derive fresh NAS keys from the new base key; and

transmit or receive NAS communication that is protected with the fresh NAS keys.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 11, 2021
From: BEN HENDA, NOAMEN; WIFVESSON, MONICA
To: TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)
Reel/Frame 055223/0972 →
Continuity (2)
Provisional Application 62718208 · Aug 13, 2018
Related Publication 20210168601A1 · Jun 3, 2021