Mobile Station Authentication Resynchronization Token

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing communication security methods face challenges in securely transmitting information between a mobile station (MS) and a network before a valid connection is established, particularly when authentication keys are out of sync, leading to potential security breaches and increased signaling resource consumption.

Innovation Solution

The method generates an authentication resynchronization token (AUTS) by using an agreed value substituting for a sequence number, allowing the MS to send a resynchronization request to the network, and the network verifies the sequence number, ensuring secure authentication and information transmission without increasing existing communication protocols or signaling resources.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If the MS sends information to the network before a valid connection is established, then the communication flexibility is improved, but the security risk increases

Engineering Contradiction:
Improvecommunication flexibilityVSAvoidsecurity risk
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The patent applies preliminary action by performing authentication key synchronization before establishing a valid communication connection. The MS and network authenticate each other and synchronize authentication keys in advance, so that when information is transmitted before connection establishment, the security credentials are already aligned. This resolves the contradiction by enabling secure pre-connection communication through prior authentication setup.

Inventive Principle:
Principle #10Preliminary action

2Reliability

If traditional authentication methods are used when keys are out of sync, then security is maintained, but the communication efficiency decreases

Engineering Contradiction:
ImprovesecurityVSAvoidcommunication efficiency
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The patent implements self-service authentication where the MS autonomously detects when authentication keys are out of sync with the network and initiates resynchronization without requiring manual intervention or complex protocol negotiations. The MS generates a resynchronization request containing an AUTS token, and the network automatically verifies and updates the keys. This self-service mechanism maintains security while improving communication efficiency by eliminating authentication failures and reducing signaling overhead.

Inventive Principle:
Principle #25Self-service

3Reliability

If USSD or short message mode is used for key resynchronization, then security is improved, but the signaling resource consumption increases

Engineering Contradiction:
ImprovesecurityVSAvoidsignaling resources
Core Design Contradiction:
ReliabilityVSQuantity of substance

Solution Approach 1:

The patent merges the authentication resynchronization function with existing efficient communication channels between MS and network. Instead of using separate USSD or short message protocols that consume additional signaling resources, the invention integrates key synchronization into the existing authentication framework, utilizing the same signaling paths already allocated for authentication. This combining approach maintains security through authenticated exchanges while avoiding the extra signaling overhead of dedicated resynchronization channels.

Inventive Principle:
Principle #5Merging (Combining)

Data Source

PatentUS7773973B2Method for authentication between a mobile station and a network
Publication Date: 2010.08.10 HUAWEI TECH CO LTD
  • US7773973B2 patent drawing
  • US7773973B2 patent drawing
  • US7773973B2 patent drawing

AI summary

An authentication method and a method for transmitting authentication information, and the method for transmitting authentication information includes: an MS and a network agree in advance one or more agreed operations to be performed when the network determines that the SQNMS is an agreed value; the MS generating an authentication resynchronization token (AUTS) by using the agreed value, sending a resynchronization request containing the AUTS to the network; upon receiving the resynchronization request and determining that the SQNMS of the AUTS is the agreed value, the network performing the one or more agreed operations. The method of transmitting authentication information from the MS to the network conveniently implement the information transmitting between the MS and the network and guarantee the network security without increasing and changing the existing signaling resources and authentication parameters.