IP Library › Granted Patent US 10,382,953
Granted Patent B2
US 10,382,953 · App. 15/306,852 · Granted Aug 13, 2019

Configuration method, ProSe key management functional entity, terminal, system, and storage medium

Inventors: Jin Peng (Shenzhen, CN); Shilin You (Shenzhen, CN); Zhaoji Lin (Shenzhen, CN); Zaifeng Zong (Shenzhen, CN); Li Zhu (Shenzhen, CN)
Assignee: ZTE Corporation
H04W12/04H04L63/205H04W76/14
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,382,953
App. No.
15/306,852
Granted
Aug 13, 2019
Kind
B2
Abstract

The disclosure discloses a security configuration method for Device to Device (D2D) communication, a Proximity-based Service (ProSe) key management function, User Equipment (UE) and a system. The method includes that: first information indicating security capability of a UE is acquired; and whether to feed back a security configuration response message or a content of the security configuration response message to the UE is determined according to the first information. The disclosure further discloses a computer storage medium.

Claims (43)

1. A security configuration method for Device to Device (D2D) communication, comprising:

receiving, by a Proximity-based Service (ProSe) key management function device, first information indicating security capability of a User Equipment (UE) from the UE; wherein the first information comprises a security algorithm set supported by the UE; and

judging, by the ProSe key management function device, whether the security algorithm set supported by the UE comprises a group security algorithm to be sent according to the security capability information of the UE;

When the security algorithm set supported by the UE does not comprise the group security algorithm, determining, by the ProSe key management function device, not to feed back a security configuration response message or to feed back a security configuration response message including a security configuration failure indication that does not include the group security key to the UE.

2. The method according to claim 1 , wherein

when the security algorithm set supported by the UE comprises the group security algorithm, determining that the security configuration response message fed back to the UE comprises the group security algorithm.

3. The method according to claim 1 , wherein:

when the security algorithm set supported by the UE comprises the group security algorithm, the security configuration response message fed back to the UE comprises the group security algorithm.

4. A security configuration method for Device to Device (D2D) communication, comprising:

sending first information indicating security capability of a User Equipment (UE) to a Proximity-based Service (ProSe) key management function device, the first information being configured to provide a basis for the ProSe key management function device to judge whether a security algorithm set supported by the UE comprises a group security algorithm to be sent and to determine not to feed back a security configuration response message or to feed back a security configuration response message including a security configuration failure indication that does not include the group security key to the UE when the security algorithm set supported by the UE does not comprise the group security algorithm; wherein the first information comprises the security algorithm set supported by the UE; and

receiving the security configuration response message fed back by the ProSe key management function device on the basis of the first information;

receiving the security configuration response message comprising the group security algorithm within a specified time; and if the security configuration response message is not received within the specified time, determining that security configuration fails.

5. The method according to claim 4 , wherein

when the security algorithm set supported by the UE comprises the group security algorithm to be sent by the ProSe key management function device, the security configuration response message comprises the group security algorithm; and

when the security algorithm set supported by the UE does not comprise the group security algorithm to be sent by the ProSe key management function device, the security configuration response message comprises the security configuration failure indication without sending the group security key.

6. The method according to claim 4 , wherein

sending the first information indicating the security capability of the UE to the ProSe key management function device is implemented by:

sending a security configuration request message to the ProSe key management function device, the security configuration request message containing the first information indicating the security capability of the UE.

7. A Proximity-based Service (ProSe) key management function device, comprising:

a processor; and

a memory for storing instructions executable by the processor;

wherein the processor is configured to: receive first information indicating security capability of a User Equipment (UE) from the UE; wherein the first information comprises a security algorithm set supported by the UE; and

judge whether the security algorithm set supported by the UE comprises a group security algorithm to be sent according to the security capability information of the UE;

When the security algorithm set supported by the UE does not comprise the group security algorithm, determine not to feed back a security configuration response message or to feed back a security configuration response message including a security configuration failure indication that does not include the group security key to the UE.

8. The ProSe key management function device according to claim 7 , wherein the processor is further configured to:

when the security algorithm set supported by the UE comprises the group security algorithm, determine that the security configuration response message fed back to the UE comprises the group security algorithm.

9. The ProSe key management function device according to claim 7 , wherein

the processor is further configured to:

when the security algorithm set supported by the UE comprises the group security algorithm, determine that the security configuration response message fed back to the UE comprises the group security algorithm.

10. The ProSe key management function device according to claim 7 , wherein

the processor is configured to receive a security configuration request message sent by the UE; and

the security configuration request message contains the first information indicating the security capability of the UE.

11. A User Equipment (UE), comprising:

a processor; and

a memory for storing instructions executable by the processor;

wherein the processor is configured to send first information indicating security capability of the UE to a Proximity-based Service (ProSe) key management function device, the first information being configured to provide a basis for the ProSe key management function device to judge whether a security algorithm set supported by the UE comprises a group security algorithm to be sent and to determine not to feed back a security configuration response message or to feed back a security configuration response message including a security configuration failure indication that does not include the group security key to the UE when the security algorithm set supported by the UE does not comprise the group security algorithm; wherein the first information comprises the security algorithm set supported by the UE; and

receive the security configuration response message fed back by the ProSe key management function device on the basis of the first information;

wherein the processor is further configured to receive the security configuration response message comprising the group security algorithm within a specified time; and if the security configuration response message is not received within the specified time, determine that security configuration fails.

12. The UE according to claim 11 , wherein

when the security algorithm set supported by the UE comprises the group security algorithm to be sent by the ProSe key management function device, the security configuration response message comprises the group security algorithm; and

when the security algorithm set supported by the UE does not comprise the group security algorithm to be sent by the ProSe key management function device, the security configuration response message comprises the security configuration failure indication without sending the group security key.

13. The UE according to claim 11 , wherein

the processor is configured to send a security configuration request message to the ProSe key management function device, the security configuration request message containing the first information indicating the security capability of the UE.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 19, 2016
From: PENG, JIN; YOU, SHILIN; LIN, ZHAOJI; ZONG, ZAIFENG; ZHU, LI
To: ZTE CORPORATION
Reel/Frame 040381/0908 →
Priority Claims (1)
CN 2014 1 0182882 · Apr 30, 2014 · national
Continuity (1)
Related Publication 20170118637A1 · Apr 27, 2017