Handover Management Module Authentication via Preset Safety Parameters
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
In next-generation networks, the handover management module cannot obtain safety parameters related to the terminal, preventing authentication and the establishment of a safety mechanism between the terminal and the handover management module, leading to insecure communication.
Innovation Solution
Presetting initial safety parameters in the authentication server and terminal, allowing the handover management module to obtain and use generated safety parameters for authentication and ensuring communication safety through cryptographic key processes.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If the handover management module uses conventional communication without safety parameters, then the communication process is simple, but the communication safety and authentication cannot be ensured
Solution Approach 1:
The patent applies preliminary action by pre-configuring safety parameters in the terminal before handover occurs. The authentication server and terminal both possess safety parameters in advance, enabling the handover management module to perform authentication without complex real-time key distribution mechanisms.
Solution Approach 2:
The patent introduces an authentication server as an intermediary that provides safety parameters to both the terminal and handover management module. This mediator enables secure communication by facilitating the distribution of authentication credentials without requiring direct complex interactions between all components.
2Reliability
If the handover management module obtains safety parameters from the authentication server, then authentication safety is improved, but the parameter acquisition process becomes more complex
Solution Approach 1:
The patent segments the safety parameter management into distinct components: the authentication server stores and manages the master safety parameters, while the terminal and handover management module obtain derived parameters. This segmentation allows the handover management module to acquire parameters through a standardized interface without needing to implement complex key management itself.
Solution Approach 2:
The terminal performs self-service by maintaining its own safety parameters locally and using them to authenticate with the handover management module. This self-service capability reduces the burden on the handover management module to manage all security credentials centrally.
3Reliability
If safety parameters are used for authentication and data encryption, then communication integrity and confidentiality are improved, but the interaction process between terminal and handover management module becomes more complex
Solution Approach 1:
The patent applies parameter changes by using the safety parameters to transform plain communication into encrypted and authenticated communication. The safety parameters modify the communication parameters (adding encryption layers, authentication tags) without fundamentally changing the interaction protocol structure, thus maintaining relative simplicity while enhancing security.
Data Source
AI summary
The present invention provides a safe handover method and system which are applied in a handover process of a terminal in the next generation network, wherein the next generation network comprises a handover management module, an authentication server and a terminal. The safe handover method comprises: presetting initial safety parameters in the authentication server and the terminal, and generating safety parameters from the initial safety parameters; the handover management module obtaining the safety parameters; and the handover management module and the terminal interacting with each other by using the generated safety parameters to ensure a communication safety between the two communication parties. The present invention can ensure the communication safety between the terminal and the handover management module.


