IP Library › Granted Patent US 12,200,483
Granted Patent B2
US 12,200,483 · App. 17/436,216 · Granted Jan 14, 2025

Control apparatus, radio communication system, control method, and recording medium having recorded program

Inventors: Hideaki Tsuoka (Tokyo, JP); Tetsuo Yama (Tokyo, JP); Akihisa Kurashima (Tokyo, JP)
Assignee: NEC CORPORATION
H04W12/06H04W8/04H04W8/20H04W12/03H04W12/0431
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,200,483
App. No.
17/436,216
Granted
Jan 14, 2025
Kind
B2
Abstract

In order to provide a control apparatus that enhances security of a radio communication system run by a user, the control apparatus including an acquisition section and a registration section, the acquisition section being configured to acquire subscriber information in which at least authentication information is encrypted, and the registration section being configured to register the acquired subscriber information in a database included in a core network. The control apparatus may further include an authentication section configured to decrypt the encrypted authentication information, and use the decrypted authentication information and authentication information included in a connection request from a terminal apparatus to the core network to authenticate the terminal apparatus.

Claims (43)

1. A control apparatus comprising:

a memory storing instructions; and

one or more processors configured to execute the instructions to:

acquire subscriber information in which at least authentication information is encrypted;

decrypt the authentication information in ciphertext included in the subscriber information acquired by the control apparatus to extract the authentication information in plaintext;

encrypt the authentication information in plaintext based on individual information of an operator of the core network; and

register the encrypted authentication information in the database included in the core network,

wherein the one or more processors are further configured to use the individual information of the operator of the core network to generate a common key for encrypting the authentication information in plaintext, and

wherein said control apparatus controls mobility of a terminal apparatus.

2. The control apparatus according to claim 1 , wherein the one or more processors are further configured to:

decrypt the encrypted authentication information; and

use the decrypted authentication information and authentication information included in a connection request from the terminal apparatus to the core network to authenticate the terminal apparatus.

3. The control apparatus according to claim 2 , wherein

the authentication information is encrypted using a public key by an external apparatus, and

the one or more processors are further configured to decrypt the encrypted authentication information using a private key corresponding to the public key.

4. The control apparatus according to claim 1 , wherein

the one or more processors are further configured to, when the authentication information included in the subscriber information is not encrypted, encrypt the authentication information, and registers the subscriber information including the encrypted authentication information in the database thereafter.

5. The control apparatus according to claim 1 , wherein

the one or more processors are further configured to:

manage the database; and

control import and export of data stored in the database.

6. The control apparatus according to claim 5 , wherein

the one or more processors are configured to hide, when displaying information stored in the database, the encrypted authentication information.

7. The control apparatus according to claim 1 , wherein

the database is a Home Subscriber Server (HSS).

8. The control apparatus according to claim 1 , wherein

the subscriber information in which at least the authentication information is encrypted is generated by a Subscriber Identity Module (SIM) provider.

9. The control apparatus according to claim 1 , wherein

the one or more processors are further configured to acquire the subscriber information stored in a storage medium, acquires the subscriber information via a network, or acquires the subscriber information from a two-dimensional code including the subscriber information.

10. A radio communication system comprising one or more apparatuses each including a memory storing instructions and one or more processors configured to execute the instructions, the one or more apparatuses being configured to:

acquire subscriber information in which at least authentication information is encrypted;

decrypt the authentication information in ciphertext included in the subscriber information acquired by the control apparatus to extract the authentication information in plaintext;

encrypt the authentication information in plaintext based on individual information of an operator of the core network; and

register the encrypted authentication information in the database included in the core network,

wherein the one or more apparatuses are further configured to use the individual information of the operator of the core network to generate a common key for encrypting the authentication information in plaintext, and

wherein said one or more apparatuses control mobility of a terminal apparatus.

11. A control method comprising:

in a control apparatus controlling mobility of a terminal apparatus,

acquiring subscriber information in which at least authentication information is encrypted;

decrypting the authentication information in ciphertext included in the subscriber information acquired by the control apparatus to extract the authentication information in plaintext;

encrypting the authentication information in plaintext based on individual information of an operator of the core network; and

registering the encrypted authentication information in the database included in the core network,

wherein the control method further comprises using the individual information of the operator of the core network to generate a common key for encrypting the authentication information in plaintext.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 10, 2022
From: TSUOKA, HIDEAKI; YAMA, TETSUO; KURASHIMA, AKIHISA
To: NEC CORPORATION
Reel/Frame 061721/0355 →
Priority Claims (1)
JP 2019-053016 · Mar 20, 2019 · national
Continuity (1)
Related Publication 20220132310A1 · Apr 28, 2022
References Cited (16)
US 20060089123A1 · Frank · 2006 [cited by examiner]
US 20130205378A1 · Oba · 2013 [cited by examiner]
US 20160314304A1 · Hsiao · 2016 [cited by examiner]
US 20170264439A1 · Muhanna · 2017 [cited by examiner]
US 20180013568A1 · Muhanna · 2018 [cited by examiner]
US 20190319937A1 · Nix · 2019 [cited by examiner]
JP 2988442B · 1999 [cited by applicant]
JP 2010239381A · 2010 [cited by applicant]
JP 2013198061A · 2013 [cited by applicant]
JP 2014158194A · 2014 [cited by applicant]
WO 2017152871A1 · 2017 [cited by applicant]
WO 2020136857A1 · 2020 [cited by applicant]
Translation of JP2013198061(A) [JP2012-06557] (Year: 2013). [cited by examiner]
JP Office Action for JP Application No. 2021-506198, mailed on Aug. 2, 2022 with English Translation. [cited by applicant]
International Search Report for PCT Application No. PCT/JP2020/001710, mailed on Apr. 7, 2020. [cited by applicant]
English translation of Written opinion for PCT Application No. PCT/JP2020/001710, mailed on Apr. 7, 2020. [cited by applicant]