Methods, devices, and computer programs for managing a group key
Patent Information
- Authority / Receiving Office
- GB · GB
- Patent Type
- Patents
- Current Assignee / Owner
- Filing Date
- 2024-07-03
- Publication Date
- 2026-08-07
Smart Images

Figure 00000001_0000 
Figure 00000002_0000 
Figure 00000003_0000
Abstract
Claims
1. A method in a communication network, the method comprising:transmitting, by an access point, AP, affiliated with an AP multi-link device, MLD, to a non-AP station, STA, affiliated with a non-AP MLD, a frame including a group key, wherein the group key is for use in communications between the AP MLD and a group of non-AP MLDs.
2. The method of claim 1, wherein the group key is transmitted according to a 4-way handshake mechanism.
3. The method of claim 1 or claim 2, wherein the group key is updated and transmitted during a group key handshake.
4. The method of claim 3, wherein the group key handshake is carried out upon determining sleep mode exit of the non-AP MLD.
5. The method of any one of claims 1 to 4, wherein the group key is for use in communications between APs affiliated with the AP MLD and non-AP STAs affiliated with at least one non-AP MLD.
6. The method of any one of claims 1 to 5, further com prising creating a privacy security association in a robust security network association, RSNA, between the AP MLD and the non-AP MLD, the group key being stored in the AP MLD, in the privacy security association.
7. The method of claim 6, wherein the privacy security association is created upon determining a successful group key handshake, successful 4-way handshake, successful fast basic service set transition, FT, 4-way handshake, reassociation response frame of a fast basic service set, BSS, transition protocol, or successful fast initial link setup, FILS, authentication.
8. The method of claim 6 or claim 7, further comprising anonymizing individually addressed frames as a function of the group key if the RSNA uses authentication and / or confidentiality.
9. The method of any one of claims6to8, further com prising deleting the privacy security association storing the group key upon determining that the AP MLD is in an independent basic service set, IBSS, or upon determining an association, reassociation ordissociation procedure of the non-AP MLD.
10. The method of any one of claims 1 to 9, wherein the group key is transmitted to the non-AP MLD as a wrapped key with a key identifier in a frame subelement.
11. The method of any one of claims 1 to 10, wherein the group key is a privacy group temporal key, PGTK, which value is a random number, the method further comprising determining a start time at which at least one privacy parameter is to be modified, the start time being determined as a function of the PGTK.
12. The method of any one of claims 1 to 11, further comprising deleting the group key upon determining dissociation of the AP MLD.
13. A method in a communication network, the method comprising:receiving, by a non-access point, AP, station, STA, affiliated with a non-AP multilink device, MLD, from an AP affiliated with an AP MLD, a frame including a group key, wherein the group key is for use in communications between the AP MLD and a group of non-AP MLDs.
14. The method of claim 13, further comprising determining a start time at which at least one privacy parameter is to be modified, the start time being determined as a function of the group key.
15. The method of claim 13 or claim 14, further comprising modifying the at least one privacy parameter as a function of the group key.
16. The method of any one of claims 13 to 15, wherein the group key is obtained according to a 4-way handshake mechanism.
17. The method of any one of claims 13 to 16, wherein the group key is updated during a group key handshake.
18. The method of any one of claims 13 to 17, further comprising creating a privacy security association in a robust security network association, RS NA, between the AP MLDand the non-AP MLD, the group key being stored in the non-AP MLD, in the privacy security association.
19. The method of claim 18, wherein the privacy security association is created upon determining a successful group key handshake, successful 4-way handshake, successful fast basic service set transition, FT, 4-way handshake, reassociation response frame of a fast basic service set, BSS, transition protocol, or successful fast initial link setup, FILS, authentication.
20. The method of claim 18 or claim 19, further comprising anonymizing addressed frames as a function of the group key if the RS NA uses authentication and / or confidentiality.
21. The method of any one of claims 18 to 20, further comprising deleting the privacy security association storing the group key upon determining an association, reassociation, or dissociation procedure of the non-AP MLD.
22. The method of any one of claims 13 to 21, wherein the group key is received as a wrapped key with a key identifier in a frame subelement.
23. The method of any one of claims 14 and 15 to 22, depending directly or indirectly on claim 14, wherein the at least one privacy parameter is an Association Identifier (AID).
24. A computer program product for a programmable apparatus, the computer program product comprising a sequence of instructions for implementing each of the steps of the method according to any one of claims 1 to 23 when loaded into and executed by the programmable apparatus.
25. A non-transitory computer-readable storage medium storing instructions of a computer program for implementing each of the steps of the method according to any one of claims 1 to 23.
26. A communication device comprising a processing unit configured for carrying out each of the steps of the method according to any one of claims 1 to 23.
Citation Information
Patent Citations
ViewUS20240138006A1onEspacenetopensinnewtab
ViewUS20240049084A1onEspacenetopensinnewtab
ViewUS20240007860A1onEspacenetopensinnewtab
ViewUS20230156840A1onEspacenetopensinnewtab