Check patentability & draft patents in minutes with Patsnap Eureka AI!

Safety protection method and device

A security protection and communication device technology, applied in the field of security protection methods and devices, can solve problems such as no solution provided

Active Publication Date: 2021-02-23
HUAWEI TECH CO LTD
View PDF5 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0004] However, in the scenario where the access network device is handed over, how to ensure the security of the session, the industry has not yet provided a corresponding solution

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Safety protection method and device
  • Safety protection method and device
  • Safety protection method and device

Examples

Experimental program
Comparison scheme
Effect test

Embodiment 1

[0078] Such as image 3 As shown, a security protection method provided by the embodiment of the present application is applied in a scenario where a handover occurs between a terminal and an access network device. The handover request can be transmitted through the interface between the two access network devices. An interface between two access network devices may be called an Xn interface. In the following, for the convenience of description, the image 3 The involved handover scenario is referred to as Xn handover (or Xn interface handover) for short. image 3 The shown method includes the following steps:

[0079] S101. The first access network device sends a handover request to the second access network device.

[0080] Wherein, the handover request is used to instruct handover of the terminal from the first access network device to the second access network device.

[0081] The switching request includes information of M sessions, where M is a positive integer. Wh...

Embodiment 2

[0127] Such as Figure 4 As shown, it is another security protection method provided by the embodiment of the present application, and the method is applied in a scenario where a handover occurs between a terminal and an access network device. The handover request can be transmitted through an interface (eg N2 interface) between two AMFs. In the following, for the convenience of description, the image 3 The involved handover scenario is referred to as N2 handover (or N2 interface handover) for short. Figure 4 The shown method includes the following steps:

[0128] S301. The first access network device sends a handover request to the first AMF, where the handover request includes information about M sessions.

[0129] S302. The first AMF sends information of M sessions to the second AMF.

[0130] As an implementation manner, the first AMF sends context establishment request information to the second AMF, where the context establishment request information includes informa...

Embodiment 3

[0159] exist Figure 4 , the N2 handover process is triggered by the first access network device. In an actual application scenario, the switching process may also be triggered by a terminal. optional, such as Figure 5 As shown, it is a security protection method provided by the embodiment of the present application, which is applied in the scenario where the terminal triggers the N2 handover process. The method includes the following steps:

[0160] S601. The terminal sends a registration request to the second AMF through the second access network device.

[0161] Wherein, the registration request is used for accessing the network. The registration request includes an identification of the terminal.

[0162] Optionally, step S601 includes the following steps: S601a and S601b.

[0163] S601a. ​​The terminal sends a registration request to the second access network device.

[0164] S601b. The second access network device sends a registration request to the second AMF. ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The present application provides a security protection method and device, which relate to the technical field of communications and are used to ensure session security in a handover scenario. The method includes: the second access network device receives a handover request, the handover request is used to instruct the terminal to be handed over from the first access network device to the second access network device, the handover request includes information on M sessions, and the information on the M sessions The information of each session in the information includes the first identifier of the session; the second access network device determines N target sessions from the M sessions; the N target sessions are a non-zero subset of the M sessions; the second access network The device determines the second identifier of each target session in the N target sessions; the second access network device sends N pieces of correspondence information to the terminal, and the N pieces of correspondence information are in one-to-one correspondence with the N target sessions, and the N pieces of correspondence information Each piece of correspondence information in is used to indicate the correspondence between the first identifier and the second identifier of the corresponding target session.

Description

technical field [0001] The present application relates to the technical field of communications, and in particular to a security protection method and device. Background technique [0002] In a wireless communication system, an end-to-end protection mechanism is used between a terminal and a core network to protect information in a session. However, the end-to-end protection mechanism does not encrypt the information used to identify the session in the data packet (for example, session ID, bearer ID, etc.), so the attacker can easily obtain the information during the air interface transmission stage and trace the information based on the information. to the session, thereby threatening the security of the session. [0003] In order to solve this technical problem, the industry proposes a technical solution: the access network device generates a short-term identifier corresponding to the session during the session establishment process, and sends the short-term identifier to...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Patents(China)
IPC IPC(8): H04W36/00H04W36/12H04W12/04
CPCH04W12/04H04W36/0033H04W36/0038H04W36/12H04W36/00
Inventor 张博
Owner HUAWEI TECH CO LTD
Features
  • R&D
  • Intellectual Property
  • Life Sciences
  • Materials
  • Tech Scout
Why Patsnap Eureka
  • Unparalleled Data Quality
  • Higher Quality Content
  • 60% Fewer Hallucinations
Social media
Patsnap Eureka Blog
Learn More