Professional Documents
Culture Documents
US20050021875
US20050021875
US 20050021875A1
NETWORKS
Publication Classi?cation
US
(51)
Correspondence Address;
(52)
(57)
ABSTRACT
(21)
Appl, N()_j
10/821,180
(22)
Filed:
Apr. 9, 2004
500
5$0
Cdma2000 application
ISIM
505v- secuggfgrggqti?ves
UICC-algorithms
501
FIG. 1
US 2005/0021875 A1
US 2005/0021875 A1
FIG. 2
Ifl
I/If~
f/I1/dlf
I
l
US 2005/0021875 A1
#Long-term-Key
#Authentication()
1;
USHVI
-Security-Attributes
-Other-UMTS-specific-Attributes
_|S|M
Integrity-Key
103~ -Ciphering-Key
#Read-Attributeo
#Write-Attribute()
-Private-|D
-Pub|ic-|D
-Domain
#Read-Ciphering-Key()
101
#Write-Ciphering-Key()
#Read-lntegrity-Keyo
#Write-lntegrity-Key()
#Read-L0ng-Term-Key()
#Read-Domain()
#Read-Private-IDQ
#Read-Public-ID()
DF 7F10
Telecom
DF 7F20
GSM Evolution
Shared by |MT_2000
A" DFS
MF 3F00
Master File
l
DF 5F40
PCS 1900
DF 7F24
TDMA
DF 7F25
CDMA
225
.wEum@@m@53853891
US 2005/0021875 A1
icsx a ?gstC>8_-EQS.U%ceosicetaz?siczsicgseai
US 2005/0021875 A1
FIG. 7
Primitives 0n the UICC
500
520
Cdma2000 application
ISIM
Different
UICC-algorithms
501
US 2005/0021875 A1
[0007]
[0002]
[0008]
so on.
[0003]
user can also be stored on the smart card and isolated from
the terminal the terminal carries no data related to the user.
US 2005/0021875 A1
exchanges.
[0014] The present invention relates, in particular, to
modi?cations to the Removable User Identi?cation Module
(R-UIM) used in some 3G access netWorks. The R-IUM is
[0024]
[0027]
run in parallel.
[0016]
netWork applications.
[0029]
[0030]
encryption.
[0031]
at least one shared key betWeen the access netWork and the
access netWork application or the core netWork application,
[0032]
[0018]
[0033]
be run in parallel.
[0035]
netWork applications.
[0021]
use in encryption.
[0036]
at least one shared key betWeen the access netWork and the
[0022]
US 2005/0021875 A1
[0050]
appended claims.
[0039]
[0041]
UICC;
[0042]
embodiment;
[0044] FIG. 6 shows a schematic view of a data tree
structure within the enhanced UICC according to a preferred
embodiment;
[0045] FIG. 7 shows a schematic view of the relationships
between primitives on the within the enhanced UICC
according to a preferred embodiment; and
[0046]
DETAILED DESCRIPTION
[0054]
control entities.
[0055] With reference to FIG. 2, a schematic view of a
partially sectioned image of mobile user equipment 10 as
can be used in embodiments of the invention is shown. The
exemplifying user equipment 10 is shown to comprise an
antenna element 11, a display 12, a series of control buttons
on a keypad 13, a processor entity 14, a memory 15, and a
user identity module 16.
[0058]
keypad thereof.
US 2005/0021875 A1
[0059]
(DF 7f25).
UICC.
currently.
shoWn).
[0065] The ISIM functional entity 103 comprises ?les
containing ISIM applications and ?les containing ISIM
speci?c data. In FIG. 2 the ?rst division shoWs the title of
the entity, the second division the ISIM speci?c data (for
eXample the data Within the ?leIntegrity-key) and the
third division shoWs the ISIM applications (for eXample the
[0067]
(USIM).
[0071]
US 2005/0021875 A1
the card.
separable.
[0074] This embodiment allows the complete separation
between IP connectivity and security information. For
example, if in the embodiment shown in FIG. 5 the ISIM
application 301 uses the security mechanism to exchange the
generation of the authentication keys, and the exchange of
these keys between the terminal and the network known as
[0077]
[0076]
authentication methods.
[0081]
incorporated by reference).
[0083] In a ?rst embodiment of the present invention the
UICC comprises at least two application dedicated ?les
(ADFs). A?rst type of the at least two application dedicated
UICC (card).
[0079] In order to be capable of implementing embodi
ments of the present invention on the UICC new Elementary
Files are created to support the ISIM feature. In this embodi
US 2005/0021875 A1
[0092]
[0093]
[0086]
ciphering key CK, the integrity key IK and the key set
identi?er KSI for the IP multimedia subsystem. The EFIMPI
415 is the ?le containing the private user identity of the user.
The EFDomain 417 is the ?le containing the home operators
netWork domain name, in other Words the simple internet
ing the access rules for ?les located under the ISIM ADF in
the UICC.
Elementary File
[0091]
[0099]
US 2005/0021875 A1
[0101]
The user equipment (or terminal) and the UIM 601, the
access netWork 603 & 635, the visited netWork 637, and the
home netWork 639. As is knoWn in the art the R-UIM and
the user equipment are connected via a Wireless communi
cations link to the radio netWork Within the access netWork
link via a visited netWork 637 (such as the case Where the
(AAA) 619.
[0106]
accounting node
611.
authentication,
In such anauthorisation,
embodiment and
the accounting
actual authentication
node
is
[0110]
server).
[0104]
art.
[0103]
storage.
[0111] The demand for a solution Which supports both
multiple applications in the cdma2000 access netWork and
an IMS core netWork application, i.e. a SIM structure Which
equipment.
US 2005/0021875 A1
for the
IMS.
a CDMA2000 netWork;
a UMTS netWork;
a IEE802.11 netWork;
a GSM netWork;
a DAMPS netWork;
[0118]
and/or algorithms.
a AMPS netWork,
a WCDMA netWork.
service (IMS).
9. Auser identi?cation module as claimed in claim 1, said
& 3GPP2.
a user identi?cation module for use in said at least one
[0122]
facilitated.
parallel.
12. A communications system as claimed in claim 10,
Wherein said module is arranged to enable at least one core
applications.
13. A communications system as claimed in claim 12,
Wherein said user identi?cation module is arranged to gen
erate authentication data for said core netWork and said
access netWork, Wherein said authentication data for said
core netWork and for said access netWork is further arranged
parallel.
3. A user identi?cation module as claimed in claim 1,
Wherein said module is arranged to enable at least one core
encryption.
15. A communications system as claimed in claim 13,
Wherein said common data set is arranged to comprise at
least one shared key betWeen the access netWork and the
access netWork application or the core netWork application,
applications.
encryption.
6. A user identi?cation module as claimed in claim 4,
Wherein said common data set is arranged to comprise at
least one shared key betWeen the access netWork and the
access netWork application or the core netWork application,
a CDMA2000 netWork;
a UMTS netWork;
a IEE802.11 netWork;
a GSM netWork;
a DAMPS netWork;
a AMPS netWork,
a WCDMA netWork.
service (IMS).
US 2005/0021875 A1
1.
t.
.d t
b1.
Comprises.