Combination authentication method and system of internet protocol multimedia subsystem (IMS) single sign on

A single sign-on and authentication technology, applied in the field of network communication security, can solve the problems of increasing the complexity and inconvenience of IMSUE

Inactive Publication Date: 2013-05-08
ZTE CORP
View PDF4 Cites 2 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0006] On the one hand, in the SSO_APS architecture, the IMS UE interacts with the SSO server for authentication to obtain the shared key K 0 , can provide a secure session key for subsequent access to RP applications, and can easily complete the single-point authentication process, which enhances the security of authentication and message delivery, but increases the complexity and inconvenience of IMS UE operations

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Combination authentication method and system of internet protocol multimedia subsystem (IMS) single sign on
  • Combination authentication method and system of internet protocol multimedia subsystem (IMS) single sign on
  • Combination authentication method and system of internet protocol multimedia subsystem (IMS) single sign on

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0055] The basic idea of ​​the present invention is: SP sends a response message to IMS UE, which carries identity authentication request information AuthnRequest and address information of L_IdP / AS; IMS UE sends HTTP Service request message, which carries the AuthnRequest; L_IdP / AS sends a challenge response message to the IMS UE, and the IMS UE uses the authentication method based on the SSO architecture in SSO_ASP to perform its own authentication; after the IMS UE is successfully authenticated, the L_IdP / AS sends the IMS UE Identity authentication is performed, and if the authentication is successful, a security association is established between the L_IdP / AS and the IMS UE.

[0056] The present invention will be further described in detail below with reference to the accompanying drawings and specific embodiments.

[0057] The invention provides a combined authentication method for IMS single sign-on, figure 1 It is a schematic flow diagram of the combined authentication...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a combination authentication method of internet protocol multimedia subsystem (IMS) single sign on. The combination authentication method of IMS single sign on includes the following steps. A service provider (SP) sends a response message to IMS user equipment (UE), wherein the response message carries identification authentication request information AuthnRequest and address information of an L_identity provider/application server (IdP/AS). The IMS UE sends a hyper text transport protocol (HTTP) service request message to the L-IdP/AS based on the address information of the L_IdP/AS, wherein the HTTP service request message carries the AuthnRequest. The L_IdP/AS sends a challenge response message to the IMS UE. The IMS UE performs self authentication through an authentication method based on a single sign on (SSO) framework in a single sign on_ application packaging standard (SSO_APS). After authentication of the IMS UE succeeds, the L_IdP/AS performs authentication on identification of the IMS UE. If the authentication is successful, L_IdP/AS and the IMS UE set up a safety alliance. The invention further provides a combination authentication of IMS SSO. Fusion and intercommunication between the SSO framework and a free alliance framework in the SSO_APS can be achieved.

Description

technical field [0001] The invention relates to network communication security technology, in particular to a combined authentication method and system for IMS single sign-on. Background technique [0002] Now in the 3GPP organization, there is a research project for the Unified IP Multimedia Subsystem (IMS, IP Multimedia Subsystem) UE using SIP Digest (Session Initiation Protocol Digest) in a non-Universal Integrated Circuit Card (UICC, Universal Integrated Circuit Card) environment. ) authentication mechanism realizes the single sign-on (SSO, Single Sign On) function of its access application server (AS, Application Server), and one of the SSO architectures in SSO_APS can realize this function, and the architecture is usually provided by a unified IMS user (such as IMS UE or IP Multimedia Service Subsystem user), user home network server (HSS, Home Subscriber Server), AS, and identity authentication provider entity (IdP); wherein, the IMS UE is connected to the IdP through...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/06
CPCH04L29/06217H04L63/0815H04L65/1016H04L65/00G06F21/41H04L9/3271
Inventor 张孟旺田甜
Owner ZTE CORP
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products