Mobile Station Authentication for Legacy SIM Compatibility

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing authentication protocols in communication systems face interoperation issues when using older GSM SIM cards with newer authentication procedures, as these SIM cards cannot provide the required key material for 3GPP standards, potentially leading to compatibility problems with evolving technologies.

Innovation Solution

A method in mobile stations and network elements to determine if a security module can produce authentication information, and if not, generate key material and authentication information using supported methods, allowing compatibility with newer protocols without modifying existing SIM cards or network elements.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If older GSM SIM cards are used in newer communication systems, then device compatibility and user base retention are improved, but authentication capability and security protocol compliance deteriorate

Engineering Contradiction:
Improvecompatibility with newer systemsVSAvoidauthentication capability
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent introduces a network element that acts as an intermediary between the older SIM card and the newer authentication system. This intermediary generates the required authentication information on behalf of the SIM card using alternative key material, thereby mediating the authentication process without requiring modifications to the SIM card itself.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent changes the parameters of authentication by accepting alternative key material (such as IMSI-based keys) instead of the traditional shared secret stored in the SIM card. This parameter change allows the system to work with older SIM cards that cannot generate the required authentication information for newer protocols.

Inventive Principle:
Principle #35Parameter changes

2Reliability

If authentication procedures are updated to meet 3GPP standards, then security and authentication reliability are improved, but interoperability with existing SIM cards deteriorates

Engineering Contradiction:
Improveauthentication securityVSAvoidinteroperability with existing SIM cards
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent segments the authentication function into two parts: the SIM card retains its original authentication capability for legacy systems, while a new network-based authentication mechanism handles 3GPP protocol requirements. This segmentation allows both old and new authentication methods to coexist without interfering with each other.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent creates a universal authentication mechanism that can handle both legacy GSM authentication and newer 3GPP authentication procedures. The network element is designed to perform multiple authentication functions, making the system multi-functional and capable of supporting diverse SIM card types and authentication protocols.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Reliability

If SIM cards are updated to support newer authentication procedures, then authentication capability is improved, but device complexity and deployment cost increase

Engineering Contradiction:
Improveauthentication capabilityVSAvoidSIM card complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent extracts the complex authentication information generation function from the SIM card and relocates it to a network element. This extraction allows the SIM card to remain simple and unchanged, while the network infrastructure assumes the burden of generating complex authentication information using alternative key material.

Inventive Principle:
Principle #2Taking out (Extraction)

Data Source

PatentUS8170531B2Method for producing authentication information
Publication Date: 2012.05.01 NOKIA CORP
  • US8170531B2 patent drawing
  • US8170531B2 patent drawing
  • US8170531B2 patent drawing

AI summary

A method in a mobile station for a communication system includes determining if a security module installed in a mobile station is able to produce authentication information for use in a predetermined authentication procedure with a communication system. If not, the method includes generating key material using the security module, and generating the authentication information based on at least the key material for use in the predetermined authentication procedure with the communication system.