The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Nov. 24, 2015

Filed:

Sep. 27, 2007
Applicants:

Milind Madhav Buddhikot, Manalapan, NJ (US);

Charles Payette, Oceanport, NJ (US);

Inventors:

Milind Madhav Buddhikot, Manalapan, NJ (US);

Charles Payette, Oceanport, NJ (US);

Assignee:

Alcatel Lucent, Boulogne-Billancourt, FR;

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
H04L 29/00 (2006.01); H04W 12/04 (2009.01); H04L 9/08 (2006.01); H04L 9/32 (2006.01); H04L 29/06 (2006.01); H04W 12/06 (2009.01);
U.S. Cl.
CPC ...
H04W 12/04 (2013.01); H04L 9/0822 (2013.01); H04L 9/0833 (2013.01); H04L 9/321 (2013.01); H04L 9/3271 (2013.01); H04L 63/062 (2013.01); H04L 63/0823 (2013.01); H04L 2209/80 (2013.01); H04L 2463/062 (2013.01); H04W 12/06 (2013.01);
Abstract

The invention includes a method and apparatus for authenticating a wireless node requesting to join a network. A method includes receiving an authentication request from the wireless node, negotiating at least one authentication parameter with the wireless node, deriving a first encryption key using the at least one authentication parameter, encrypting a second encryption key using the first encryption key, and propagating the encrypted second encryption key toward the wireless node, wherein the wireless node independently derives the first encryption key for use in decrypting the encrypted second encryption key received from the authentication server node. The wireless node decrypts the encrypted second encryption key and stores the second encryption key for use to securely communicate with other wireless nodes of the network. In one embodiment, the present invention may be implemented using a modified version of the EAP-TLS protocol, in which rather than a Pairwise Master Key (PMK) being sent from the authentication server node to the wireless node, the authentication server node and the wireless node each derive the PMK and the authentication server node securely provides a group encryption key to the wireless node by encrypting the group encryption key using the PMK.


Find Patent Forward Citations

Loading…