SECURITY POLICY PROCESSING METHOD AND COMMUNICATION DEVICE

    公开(公告)号:US20230362632A1

    公开(公告)日:2023-11-09

    申请号:US18348946

    申请日:2023-07-07

    Inventor: Li HU Rong WU

    CPC classification number: H04W12/033 H04W36/0011

    Abstract: Embodiments of this application disclose a security policy processing method, to implement a best-effort on-demand user plane security activation mechanism in a network in which there is a core network element that does not support on-demand user plane security protection. The security policy processing method in embodiments of this application includes: A target 1 receives a message #50-2 from a core network device #30-1, where the message #50-2 includes container information from a source access network device. The target access network device determines a user plane security activation status between the target access network device and a terminal device based on the message #50-2, where the user plane security activation status indicates whether user plane ciphering protection is activated and/or whether user plane integrity protection is activated.

    SUBSCRIPTION INFORMATION PROCESSING METHOD AND APPARATUS, AND DEVICE

    公开(公告)号:US20220286855A1

    公开(公告)日:2022-09-08

    申请号:US17752337

    申请日:2022-05-24

    Abstract: A subscription information processing method and apparatus, and a device. The method includes: An access control device obtains authorization information from a target network device, where the authorization information includes an identifier of a first terminal and authorization operation indication information for subscription information of the first terminal; the access control device obtains a subscription information processing request from a second terminal, where the subscription information processing request includes an identifier of the second terminal; and the access control device processes subscription information corresponding to the identifier of the second terminal based on the authorization operation indication information in response to the identifier of the first terminal matching the identifier of the second terminal.

    COMMUNICATIONS METHOD AND APPARATUS

    公开(公告)号:US20220174761A1

    公开(公告)日:2022-06-02

    申请号:US17674590

    申请日:2022-02-17

    Inventor: Longhua GUO Li HU He LI

    Abstract: This application relates to the field of communications technologies, and provides a communications method and apparatus, to reduce a data transmission latency between an IAB node and an IAB donor. The method includes: An IAB node receives an uplink data packet from a terminal; the IAB node determines a PDCP layer security status of the uplink data packet; the IAB node determines a target secure tunnel from a plurality of secure tunnels between the IAB node and an IAB donor based on the PDCP layer security status of the uplink data packet; and the IAB node sends the uplink data packet to the IAB donor through the target secure tunnel. This application is applicable to a data transmission process.

    CONNECTION REESTABLISHMENT METHOD AND APPARATUS

    公开(公告)号:US20210250826A1

    公开(公告)日:2021-08-12

    申请号:US17245183

    申请日:2021-04-30

    Abstract: The present disclosure relates to connection reestablishment methods and apparatus, in one example method, when a handover fails, a terminal reverts back to a source configuration, and obtains a selected cell. The terminal sends a connection reestablishment request to a selected radio access network device. The terminal receives a first message from the selected radio access network device, where the first message includes indication information used to indicate to derive an access network key based on a core network key. The terminal obtains a first core network key based on the indication information, and derives a first access network key based on the first core network key. The terminal communicates with the selected radio access network device by using the first access network key.

    METHOD FOR CONTROLLING CONNECTION BETWEEN TERMINAL AND NETWORK, AND RELATED APPARATUS

    公开(公告)号:US20210250811A1

    公开(公告)日:2021-08-12

    申请号:US17245341

    申请日:2021-04-30

    Abstract: This application provides a method for controlling a connection between a terminal and a network, and an apparatus. The method includes: receiving, by a terminal, a packet filter; and discarding, by the terminal, an uplink data packet matching the packet filter. Based on this solution, a connection can be blocked near a source (that is, the connection is blocked from the terminal), to reduce traffic exchanged between the terminal and a user plane network element. Compared with an existing technical solution, the terminal implements traffic control to reduce a quantity of uplink data packets sent to the user plane network element, thereby reducing load of the user plane network element.

    COMMUNICATION METHOD, APPARATUS, AND SYSTEM
    16.
    发明申请

    公开(公告)号:US20200045536A1

    公开(公告)日:2020-02-06

    申请号:US16584889

    申请日:2019-09-26

    Inventor: Li HU Jing CHEN He LI

    Abstract: Embodiments of the present invention relate to the field of communications technologies, and provide a communication method, an apparatus, and a system. The method includes: receiving, by a first network side device, a first message sent by a terminal, where the first message carries ciphertext of context information of the terminal, and the ciphertext of the context information is information obtained by encrypting the context information of the terminal; obtaining, by the first network side device, a first key, and decrypting the ciphertext of the context information based on the first key, to obtain the context information; and establishing, by the first network side device, a communication connection for the terminal based on the context information. According to this application, more terminals can access a network.

    LINK RE-ESTABLISHMENT METHOD, APPARATUS, AND SYSTEM

    公开(公告)号:US20190320482A1

    公开(公告)日:2019-10-17

    申请号:US16455739

    申请日:2019-06-27

    Abstract: The present disclosure discloses a link re-establishment method, an apparatus, and a system. The method includes: obtaining, by user equipment UE, a MAC of the UE based on a NAS integrity key and a first MAC generation parameter, where the first MAC generation parameter includes an identifier of the UE; sending, by the UE, a re-establishment request message to a target RAN, where the re-establishment request message includes the MAC and the first MAC generation parameter; and receiving, by the UE, a re-establishment response message of the target RAN. The UE triggers, by sending the re-establishment request message, a CP functional entity to perform authentication on the UE. This resolves a prior-art problem that an excessively long time is consumed to re-establish a connection to a target RAN by using an RAU procedure, increases a speed of re-establishing a connection between UE and a network, and improves user experience.

    KEY MANAGEMENT METHOD AND COMMUNICATION APPARATUS

    公开(公告)号:US20250063348A1

    公开(公告)日:2025-02-20

    申请号:US18937338

    申请日:2024-11-05

    Abstract: This application provides example key management methods and example communication apparatuses. In an example method, a terminal device obtains identification information of a first decryption network element in a local network. The terminal device obtains, based on the identification information and a mapping relationship, a first encryption key corresponding to the first decryption network element, where the mapping relationship indicates at least one decryption network element and an encryption key corresponding to each of the at least one decryption network element, and the at least one decryption network element includes the first decryption network element. The terminal device encrypts the user identity information by using the first encryption key, to obtain a hidden user identity. The terminal device sends a registration request to the local network through an access network device, where the registration request includes the hidden user identity.

    COMMUNICATION METHOD, APPARATUS, AND SYSTEM
    19.
    发明公开

    公开(公告)号:US20240073762A1

    公开(公告)日:2024-02-29

    申请号:US18505495

    申请日:2023-11-09

    CPC classification number: H04W36/08 H04W12/0433

    Abstract: This application provides a communication method, apparatus, and system. The method includes: A first node communicates with a first donor node by using a first key, where the first key includes a key used for communication over an air interface and/or a key 1 used for communication over an F1 interface. After the first node receives first information from the first donor node, the first node maintains the first key and a second key in response to the first information, where the second key includes a key used for communication over an air interface between the first node and a second donor node and/or a key 2 used for communication over the F1 interface.

    SECURITY ACTIVATION METHOD AND COMMUNICATION APPARATUS

    公开(公告)号:US20240073681A1

    公开(公告)日:2024-02-29

    申请号:US18502410

    申请日:2023-11-06

    Inventor: Li HU He LI Rong WU

    CPC classification number: H04W12/033 H04W12/10

    Abstract: This application provides security activation methods and communication apparatuses. In an example method, a first access network device in a first communication standard requests a second access network device in a second communication standard to allocate a resource for dual connectivity of a terminal device, and sends, to the second access network device, a user plane security policy. The first access network device further receives identification information of a bearer and a security activation status from the second access network device and sends the identification information of the bearer and the security activation status to the terminal device.

Patent Agency Ranking