IP Library › Granted Patent US 12,273,712
Granted Patent B2
US 12,273,712 · App. 18/145,006 · Granted Apr 8, 2025

Mutual authentication for communications using multiple-input and multiple-output (MIMO) signals

Inventors: Danlu Zhang (San Diego, CA); Yavuz Yapici (Florham Park, NJ); Tao Luo (San Diego, CA); Junyi Li (Fairless Hills, PA); Giridhar Dhati Mandyam (San Diego, CA)
Assignee: QUALCOMM Incorporated
H04W12/06H04B7/0413
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,273,712
App. No.
18/145,006
Granted
Apr 8, 2025
Kind
B2
Abstract

Systems and techniques are described herein for mutual authentication in wireless communication. For example, a process may include: transmitting separate authentication requests using separate MIMO channels between network nodes; transmitting an authentication proof from one network node to another; receiving configuration requests based on successful authentication of one network node by the other over the respective MIMO paths; authenticating the configuration requests; and transmitting separate configuration responses via the separate MIMO paths based on the authentication.

Claims (100)

1. A method for mutual authentication in wireless communication, the method comprising:

transmitting a first authentication request from a first network node to a second network node via a first multiple-input and multiple-output (MIMO) path between the first network node and the second network node, the first authentication request comprising a first phase;

transmitting a second authentication request from the first network node to the second network node via a second MIMO path between the first network node and the second network node, the second authentication request comprising a second phase;

transmitting an authentication proof from the first network node to the second network node;

receiving, at the first network node from the second network node via the first MIMO path, a first configuration request corresponding to a first configuration request credential associated with the second network node, wherein the first configuration request credential is based at least in part on the first phase and an authentication of the authentication proof;

receiving, at the first network node from the second network node via the second MIMO path, a second configuration request corresponding to a second configuration request credential associated with the second network node, wherein the second configuration request credential is based at least in part on the second phase and the authentication of the authentication proof;

transmitting, based at least in part on authenticating the first configuration request credential, a first configuration response in response to the first configuration request; and

transmitting, based at least in part on authenticating the second configuration request credential, a second configuration response in response to the second configuration request.

2. The method of claim 1 , wherein the authentication proof comprises a first authentication request credential corresponding to the first MIMO path, and a second authentication request credential corresponding to the second MIMO path.

3. The method of claim 2 , wherein the authentication proof is configured to be authenticated by the second network node based on a relative difference between the first phase and the second phase.

4. The method of claim 1 , wherein the authentication proof comprises a first authentication proof portion corresponding to the first MIMO path and a second authentication proof portion corresponding to the second MIMO path.

5. The method of claim 1 , wherein the authentication proof is transmitted before receiving the first configuration request and the second configuration request.

6. The method of claim 5 , wherein receiving the first configuration request and the second configuration request is based at least in part on the first network node being authenticated based on the authentication proof.

7. The method of claim 1 , wherein the authentication proof is transmitted after receiving the first configuration request and the second configuration request.

8. The method of claim 7 , wherein the authentication proof is based at least in part on the first configuration request and the second configuration request.

9. The method of claim 1 , wherein:

the first configuration request comprises a first phase-modulated indication of the first configuration request credential associated with the second network node; and

the second configuration request comprises a second phase-modulated indication of the second configuration request credential associated with the second network node.

10. The method of claim 1 , wherein:

the first configuration response comprises a first configuration parameter; and

the second configuration response comprises a second configuration parameter.

11. The method of claim 1 , wherein:

the first phase is a first random phase; and

the second phase is a second random phase.

12. A method for mutual authentication in wireless communication, the method comprising:

receiving, at a second network node from a first network node via a first multiple-input and multiple-output (MIMO) path, a first authentication request comprising a first phase;

receiving, at the second network node from the first network node via a second MIMO path, a second authentication request comprising a second phase;

receiving an authentication proof at the second network node from the first network node;

transmitting, to the first network node from the second network node via the first MIMO path, a first configuration request corresponding to a first configuration request credential associated with the second network node, wherein the first configuration request credential is based at least in part on the first phase and an authentication of the authentication proof;

transmitting, to the first network node from the second network node via the second MIMO path, a second configuration request corresponding to a second configuration request credential associated with the second network node, wherein the second configuration request credential is based at least in part on the second phase and the authentication of the authentication proof;

receiving, based at least in part on authentication of the first configuration request credential, a first configuration response in response to the first configuration request; and

receiving, based at least in part on authentication of the second configuration request credential, a second configuration response in response to the second configuration request.

13. The method of claim 12 , wherein the authentication proof comprises a first authentication request credential corresponding to the first MIMO path, and a second authentication request credential corresponding to the second MIMO path.

14. The method of claim 13 , wherein the authentication proof is configured to be authenticated by the second network node based on a relative difference between the first phase and the second phase.

15. The method of claim 12 , wherein the authentication proof comprises a first authentication proof portion corresponding to the first MIMO path and a second authentication proof portion corresponding to the second MIMO path.

16. The method of claim 12 , wherein the authentication proof is transmitted before receiving the first configuration request and the second configuration request.

17. The method of claim 16 , wherein receiving the first configuration request and the second configuration request is based at least in part on the first network node being authenticated based on the authentication proof.

18. The method of claim 12 , wherein the authentication proof is transmitted after receiving the first configuration request and the second configuration request.

19. The method of claim 18 , wherein the authentication proof is based at least in part on the first configuration request and the second configuration request.

20. The method of claim 12 , wherein:

the first configuration request comprises a first phase-modulated indication of the first configuration request credential associated with the second network node; and

the second configuration request comprises a second phase-modulated indication of the second configuration request credential associated with the second network node.

21. The method of claim 12 , wherein:

the first configuration response comprises a first configuration parameter; and

the second configuration response comprises a second configuration parameter.

22. The method of claim 12 , wherein:

the first phase is a first random phase; and

the second phase is a second random phase.

23. An apparatus for mutual authentication in wireless communication, the apparatus comprising:

at least one memory; and

at least one processor coupled to the at least one memory and configured to:

transmit a first authentication request from a first network node to a second network node via a first multiple-input and multiple-output (MIMO) path between the first network node and the second network node, the first authentication request comprising a first phase;

transmit a second authentication request from the first network node to the second network node via a second MIMO path between the first network node and the second network node, the second authentication request comprising a second phase;

transmit an authentication proof from the first network node to the second network node;

receive, at the first network node from the second network node via the first MIMO path, a first configuration request corresponding to a first configuration request credential associated with the second network node, wherein the first configuration request credential is based at least in part on the first phase and an authentication of the authentication proof;

receive, at the first network node from the second network node via the second MIMO path, a second configuration request corresponding to a second configuration request credential associated with the second network node, wherein the second configuration request credential is based at least in part on the second phase and the authentication of the authentication proof;

transmit, based at least in part on authenticating the first configuration request credential, a first configuration response in response to the first configuration request; and

transmit, based at least in part on authenticating the second configuration request credential, a second configuration response in response to the second configuration request.

24. The apparatus of claim 23 , wherein the authentication proof comprises a first authentication request credential corresponding to the first MIMO path, and a second authentication request credential corresponding to the second MIMO path.

25. The apparatus of claim 24 , wherein the authentication proof is configured to be authenticated by the second network node based on a relative difference between the first phase and the second phase.

26. The apparatus of claim 23 , wherein the authentication proof comprises a first authentication proof portion corresponding to the first MIMO path and a second authentication proof portion corresponding to the second MIMO path.

27. The apparatus of claim 23 , wherein the authentication proof is transmitted before receiving the first configuration request and the second configuration request.

28. The apparatus of claim 27 , wherein receiving the first configuration request and the second configuration request is based at least in part on the first network node being authenticated based on the authentication proof.

29. The apparatus of claim 27 , wherein the authentication proof is transmitted after receiving the first configuration request and the second configuration request.

30. The apparatus of claim 29 , wherein the authentication proof is based at least in part on the first configuration request and the second configuration request.

31. The apparatus of claim 23 , wherein:

the first configuration request comprises a first phase-modulated indication of the first configuration request credential associated with the second network node; and

the second configuration request comprises a second phase-modulated indication of the second configuration request credential associated with the second network node.

32. The apparatus of claim 23 , wherein:

the first configuration response comprises a first configuration parameter; and

the second configuration response comprises a second configuration parameter.

33. The apparatus of claim 23 , wherein:

the first phase is a first random phase; and

the second phase is a second random phase.

34. An apparatus for mutual authentication in wireless communication, the apparatus comprising:

at least one memory; and

at least one processor coupled to the at least one memory and configured to:

receive, at a second network node from a first network node via a first multiple-input and multiple-output (MIMO) path, a first authentication request comprising a first phase;

receive, at the second network node from the first network node via a second MIMO path, a second authentication request comprising a second phase;

receive an authentication proof at the second network node from the first network node;

transmit, to the first network node from the second network node via the first MIMO path, a first configuration request corresponding to a first configuration request credential associated with the second network node, wherein the first configuration request credential is based at least in part on the first phase and an authentication of the authentication proof;

transmit, to the first network node from the second network node via the second MIMO path, a second configuration request corresponding to a second configuration request credential associated with the second network node, wherein the second configuration request credential is based at least in part on the second phase and the authentication of the authentication proof;

receive, based at least in part on authentication of the first configuration request credential, a first configuration response in response to the first configuration request; and

receive, based at least in part on authentication of the second configuration request credential, a second configuration response in response to the second configuration request.

35. The apparatus of claim 34 , wherein the authentication proof comprises a first authentication request credential corresponding to the first MIMO path, and a second authentication request credential corresponding to the second MIMO path.

36. The apparatus of claim 35 , wherein the authentication proof is configured to be authenticated by the second network node based on a relative difference between the first phase and the second phase.

37. The apparatus of claim 34 , wherein the authentication proof comprises a first authentication proof portion corresponding to the first MIMO path and a second authentication proof portion corresponding to the second MIMO path.

38. The apparatus of claim 34 , wherein the authentication proof is transmitted before receiving the first configuration request and the second configuration request.

39. The apparatus of claim 38 , wherein receiving the first configuration request and the second configuration request is based at least in part on the first network node being authenticated based on the authentication proof.

40. The apparatus of claim 34 , wherein the authentication proof is transmitted after receiving the first configuration request and the second configuration request.

41. The apparatus of claim 40 , wherein the authentication proof is based at least in part on the first configuration request and the second configuration request.

42. The apparatus of claim 34 , wherein:

the first configuration request comprises a first phase-modulated indication of the first configuration request credential associated with the second network node; and

the second configuration request comprises a second phase-modulated indication of the second configuration request credential associated with the second network node.

43. The apparatus of claim 34 , wherein:

the first configuration response comprises a first configuration parameter; and

the second configuration response comprises a second configuration parameter.

44. The apparatus of claim 34 , wherein:

the first phase is a first random phase; and

the second phase is a second random phase.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 27, 2023
From: ZHANG, DANLU; YAPICI, YAVUZ; LUO, TAO; LI, JUNYI; MANDYAM, GIRIDHAR DHATI
To: QUALCOMM INCORPORATED
Reel/Frame 062518/0593 →
Continuity (1)
Related Publication 20240214804A1 · Jun 27, 2024
References Cited (4)
US 20070206537A1 · Cam-Winget et al. · 2007 [cited by applicant]
CN 106452780A · 2017 [cited by applicant]
CN 107592632A · 2018 [cited by applicant]
International Search Report and Written Opinion—PCT/US2023/082375—ISA/EPO—Feb. 20, 2024. [cited by applicant]