IP Library Granted Patent US 12,155,756
Granted Patent B2
US 12,155,756 · App. 17/420,534 · Granted Nov 26, 2024

Key generation method, terminal device and network device

Inventor: Fuwen Liu (Beijing, CN)
Assignees: CHINA MOBILE COMMUNICATION CO., LTD RESEARCH INSTITUTE; CHINA MOBILE COMMUNICATIONS GROUP CO., LTD.
H04L9/0861H04W12/041H04L63/0869H04W12/06
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,155,756
App. No.
17/420,534
Granted
Nov 26, 2024
Kind
B2
Abstract

The embodiment of the present application provides a key generation method, which relates to a terminal device, a network device and a computer-readable storage medium, wherein the method includes: determining a first key based on the long-term key; generating the session key based on the first key and at least one additional key, communicating with the network side based on the session key; wherein, the at least one additional key includes: an initial session key generated when the terminal device is connected to the network for the first time, and/or a session key used in the last communication; the first key and the at least one additional key are both symmetric keys.

Claims (24)

1. A key generation method, applied to a terminal device, comprising:

determining a first key based on a long-term key; and

generating a current session key based on the first key and additional keys, and communicating with a network side based on the current session key;

wherein the additional keys comprise an initial session key generated when the terminal device is connected to a network for a first time and a session key used in a previous session with the terminal device, the previous session is a session immediately prior to a current session, and the first key and the additional keys are symmetric keys.

2. The method of claim 1 , wherein before determining the first key based on the long-term key, the method further comprises:

when the terminal device is connected to the network for the first time, completing mutual authentication with the network side and generating the initial session key.

3. A key generation method, applied to a network device, comprising:

determining a first key corresponding to a terminal device based on a long-term key corresponding to the terminal device; and

generating a current session key corresponding to the terminal device based on the first key and additional keys, and communicating with the terminal device based on the current session key;

wherein the additional keys comprise an initial session key generated when the terminal device is connected to a network for a first time and a session key used in a previous session with the terminal device, the previous session is a session immediately prior to a current session, and the first key and the additional keys are symmetric keys.

4. The method of claim 3 , wherein before determining the first key corresponding to the terminal device based on the long-term key corresponding to the terminal device, the method further comprises:

after the terminal device is connected to the network for the first time and has completed mutual authentication with the network, generating the initial session key corresponding to the terminal device.

5. A terminal device, comprising:

a first memory for storing a computer program;

a first processor, configured to execute the computer program to: determine a first key based on a long-term key, and generate a current session key based on the first key and additional keys; and

a first communication interface, configured to communicate with a network side based on the current session key;

wherein the additional keys comprise an initial session key generated when the terminal device is connected to a network for a first time and a session key used in a previous session with the terminal device, the previous session is a session immediately prior to a current session, and the first key and the additional keys are symmetric keys.

6. The terminal device of claim 5 , wherein the first processor is configured to execute the computer program to: complete, when connecting to the network for the first time, mutual authentication with the network, and generate the initial session key.

7. A network device, comprising:

a second memory for storing a computer program;

a second processor, configured to execute the computer program to determine a first key corresponding to a terminal device based on a long-term key corresponding to the terminal device, and generate a current session key corresponding to the terminal device based on the first key and additional keys; and

a second communication interface, configured to communicate with the terminal device based on the current session key;

wherein the additional keys comprise an initial session key generated when the terminal device is connected to a network for a first time and a session key used in a previous session with the terminal device, the previous session is a session immediately prior to a current session, and the first key and the additional keys are symmetric keys.

8. The network device of claim 7 , wherein the second processor is configured to execute the computer program to: generate the initial session key corresponding to the terminal device after the terminal device is connected to the network for the first time and has completed mutual authentication with the network.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 8, 2021
From: LIU, FUWEN
To: CHINA MOBILE COMMUNICATION CO., LTD RESEARCH INSTITUTE; CHINA MOBILE COMMUNICATIONS GROUP CO., LTD.
Reel/Frame 058415/0457 →
Priority Claims (1)
CN 201910000352.X · Jan 2, 2019 · national
Continuity (1)
Related Publication 20220085990A1 · Mar 17, 2022