Relay communication method and apparatus, communication device, and storage medium

By sending capability and instruction information, the PCF on the network side selects an appropriate security establishment procedure, resolving the terminal's dilemma in choosing between the control plane and the user plane, and improving the reliability of relay communication.

CN115552941BActive Publication Date: 2026-01-23BEIJING XIAOMI MOBILE SOFTWARE CO LTD
View PDF 1 Cites 0 Cited by

Patent Information

Application Number
CN202280001775.3
Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
Filing Date
2022-05-16
Publication Date
2026-01-23
Estimated Expiration
2042-05-16

AI Technical Summary

Technical Problem

In proximity communication services of fifth-generation mobile communication technology, the problem of how terminals can choose between security establishment procedures based on the control plane and the user plane has not been effectively resolved.

Method used

By sending capability information indicating support for a security establishment process based on either the control plane (CP) or the user plane (UP), the network-side PCF can select an appropriate security establishment process and trigger the terminal to execute the corresponding security establishment process through the indication information.

Benefits of technology

It improves the reliability of relay communication, ensures that the terminal selects a consistent security establishment process, and avoids relay communication failures caused by process mismatch.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN115552941B_ABST
    Figure CN115552941B_ABST
Patent Text Reader

Abstract

The embodiment of the disclosure provides a relay communication method, wherein the method is executed by a first terminal, and the method comprises the following steps: sending capability information, wherein the capability information is used for indicating at least one of the following: a manner of supporting a control plane (CP) based security establishment process; and a manner of supporting a user plane (UP) based security establishment process, wherein the security establishment process comprises a relay discovery and / or a relay communication security establishment process.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] This disclosure relates to, but is not limited to, the field of wireless communication technology, and particularly to a relay communication method, apparatus, communication device, and storage medium. Background Technology

[0002] In the security applications of Proximity Services (ProSe) in 5G mobile communication technology, there are control plane (CP) and user plane (UP) based solutions for establishing security mechanisms for PC5 communication between remote terminals and relay terminals between terminals and the network. Prior to this, remote terminals and relay terminals need to discover each other. For relay discovery before relay communication, there are also two options: CP-based and UP-based security establishment procedures.

[0003] In related technologies, when a terminal initiates a discovery process or a relay communication establishment process, it is an issue that needs to be considered: how the terminal should choose between two methods—a CP-based secure establishment process and a UP-based secure establishment process. Summary of the Invention

[0004] This disclosure provides a relay communication method, apparatus, communication device, and storage medium.

[0005] According to a first aspect of the present disclosure, a relay communication method is provided, wherein the method is executed by a first terminal, the method comprising:

[0006] Send capability information, the capability information being used to indicate at least one of the following:

[0007] Supports a secure setup process based on the control plane (CP).

[0008] Supports a security establishment process based on the user plane UP, wherein the security establishment process includes a security establishment process for relay discovery and / or relay communication.

[0009] In one embodiment, the transmission capability information includes:

[0010] During the network registration process performed by the first terminal, the capability information is sent.

[0011] In one embodiment, the method further includes:

[0012] Receive instruction information, the instruction information being used to indicate the method of security establishment process selected by the first network element of the first terminal;

[0013] The security establishment process can be implemented in one of the following ways:

[0014] A security establishment process based on the control plane CP;

[0015] The security establishment process is based on the user plane UP.

[0016] In one embodiment, receiving the indication information includes:

[0017] During the service authorization and information configuration process, the instruction information is received.

[0018] In one embodiment, the method further includes:

[0019] Once the instruction information is received, the security establishment process is triggered.

[0020] In one embodiment, the method further includes:

[0021] Based on the comparison results between the security establishment process selected by the first network element of the first terminal and the security establishment process selected by the first network element of the second terminal, it is determined whether to execute the security establishment process.

[0022] The first terminal and the second terminal are terminals that execute the security establishment process.

[0023] In one embodiment, determining whether to execute the security establishment process based on a comparison between the security establishment process method selected by the first network element of the first terminal and the security establishment process method selected by the first network element of the second terminal includes:

[0024] The method of determining the security establishment process selected by the first network element of the first terminal is the same as the method of determining the security establishment process selected by the first network element of the second terminal, and the security establishment process between the first terminal and the second terminal is executed.

[0025] or,

[0026] If the method of security establishment process selected by the first network element of the first terminal is different from the method of security establishment process selected by the first network element of the second terminal, then it is determined that the security establishment process between the first terminal and the second terminal will not be executed.

[0027] In one embodiment, triggering the security establishment process includes:

[0028] The security establishment process between the first terminal and the second terminal is triggered, and the security establishment process selected by the first terminal is the same as the security establishment process selected by the first network element of the second terminal.

[0029] In one embodiment, the first network element is a policy control function (PCF).

[0030] According to a second aspect of the present disclosure, a relay communication method is provided, wherein the method is executed by a first network element, the method comprising:

[0031] Receive capability information, the capability information being used to indicate at least one of the following:

[0032] Supports a secure setup process based on the control plane (CP).

[0033] Supports a security establishment process based on the user plane UP, wherein the security establishment process includes a security establishment process for relay discovery and / or relay communication.

[0034] In one embodiment, the receiving capability information includes:

[0035] During the network registration process performed by the first terminal, the capability information is received.

[0036] In one embodiment, the method further includes:

[0037] Upon confirming receipt of the capability information, select a method for the security establishment process, wherein the security establishment process includes one of the following:

[0038] A security establishment process based on the control plane CP;

[0039] The security establishment process is based on the user plane UP.

[0040] In one embodiment, the method further includes:

[0041] Sending instruction information, the instruction information being used to indicate the method of security establishment process selected by the first network element of the first terminal.

[0042] In one embodiment, the sending of the indication information includes:

[0043] The instruction information is sent during the service authorization and information configuration process.

[0044] In one embodiment, the first network element is a PCF.

[0045] According to a third aspect of the present disclosure, a relay communication device is provided, wherein the device includes:

[0046] A transmitting module is configured to transmit capability information, the capability information indicating at least one of the following:

[0047] Supports a secure setup process based on the control plane (CP).

[0048] Supports a security establishment process based on the user plane (UP); the security establishment process includes a security establishment process for relay discovery and / or relay communication.

[0049] According to a fourth aspect of the present disclosure, a relay communication device is provided, wherein the device includes:

[0050] A receiving module is configured to receive capability information, the capability information indicating at least one of the following:

[0051] Supports a secure setup process based on the control plane (CP).

[0052] Supports a security establishment process based on the user plane (UP); the security establishment process includes a security establishment process for relay discovery and / or relay communication.

[0053] According to a fifth aspect of the present disclosure, a communication device is provided, the communication device comprising:

[0054] processor;

[0055] Memory used to store the processor's executable instructions;

[0056] The processor is configured to implement the method described in any embodiment of this disclosure when running the executable instructions.

[0057] According to a sixth aspect of the present disclosure, a computer storage medium is provided, the computer storage medium storing a computer executable program, which, when executed by a processor, implements the methods described in any embodiment of the present disclosure.

[0058] In this embodiment of the disclosure, capability information is sent, which indicates at least one of the following: support for a security establishment process based on the control plane (CP); support for a security establishment process based on the user plane (UP); the security establishment process includes a relay discovery and / or a relay communication security establishment process. Here, since the capability information indicates support for a security establishment process based on the control plane (CP) and / or support for a security establishment process based on the user plane (UP) by the first terminal, the network, upon receiving the capability information, can determine whether to select a security establishment process based on the control plane (CP) or the user plane (UP). Compared to situations where the network is unclear about the capabilities supported by the terminal, this improves the relay communication mechanism and makes the relay communication more reliable. Attached Figure Description

[0059] Figure 1 This is a schematic diagram illustrating the structure of a wireless communication system according to an exemplary embodiment.

[0060] Figure 2 This is a flowchart illustrating a relay communication method according to an exemplary embodiment.

[0061] Figure 3 This is a flowchart illustrating a relay communication method according to an exemplary embodiment.

[0062] Figure 4 This is a flowchart illustrating a relay communication method according to an exemplary embodiment.

[0063] Figure 5 This is a flowchart illustrating a relay communication method according to an exemplary embodiment.

[0064] Figure 6 This is a flowchart illustrating a relay communication method according to an exemplary embodiment.

[0065] Figure 7 This is a flowchart illustrating a relay communication method according to an exemplary embodiment.

[0066] Figure 8 This is a flowchart illustrating a relay communication method according to an exemplary embodiment.

[0067] Figure 9 This is a flowchart illustrating a relay communication method according to an exemplary embodiment.

[0068] Figure 10 This is a flowchart illustrating a relay communication method according to an exemplary embodiment.

[0069] Figure 11 This is a flowchart illustrating a relay communication method according to an exemplary embodiment.

[0070] Figure 12 This is a flowchart illustrating a relay communication method according to an exemplary embodiment.

[0071] Figure 13 This is a flowchart illustrating a relay communication method according to an exemplary embodiment.

[0072] Figure 14 This is a flowchart illustrating a relay communication method according to an exemplary embodiment.

[0073] Figure 15 This is a flowchart illustrating a relay communication method according to an exemplary embodiment.

[0074] Figure 16 This is a schematic diagram of a relay communication device according to an exemplary embodiment.

[0075] Figure 17 This is a schematic diagram of a relay communication device according to an exemplary embodiment.

[0076] Figure 18 This is a schematic diagram of the structure of a terminal according to an exemplary embodiment.

[0077] Figure 19 This is a block diagram illustrating a base station according to an exemplary embodiment. Detailed Implementation

[0078] Exemplary embodiments will now be described in detail, examples of which are illustrated in the accompanying drawings. When the following description relates to the drawings, unless otherwise indicated, the same numerals in different drawings denote the same or similar elements. The embodiments described in the following exemplary embodiments do not represent all embodiments consistent with those of this disclosure. Rather, they are merely examples of apparatuses and methods consistent with some aspects of the embodiments of this disclosure as detailed in the appended claims.

[0079] The terminology used in this disclosure is for the purpose of describing particular embodiments only and is not intended to be limiting of the present disclosure. The singular forms “a” and “the” as used in this disclosure and the appended claims are also intended to include the plural forms unless the context clearly indicates otherwise. It should also be understood that the term “and / or” as used herein refers to and includes any and all possible combinations of one or more of the associated listed items.

[0080] It should be understood that although the terms first, second, third, etc., may be used to describe various information in embodiments of this disclosure, such information should not be limited to these terms. These terms are only used to distinguish information of the same type from one another. For example, first information may also be referred to as second information without departing from the scope of embodiments of this disclosure, and similarly, second information may also be referred to as first information. Depending on the context, the word "if" as used herein may be interpreted as "when," "when," or "in response to a determination."

[0081] For the sake of brevity and ease of understanding, the terms “greater than” or “less than” are used in this document to characterize size relationships. However, it will be understood by those skilled in the art that the term “greater than” also includes the meaning of “greater than or equal to”, and “less than” also includes the meaning of “less than or equal to”.

[0082] Please refer to Figure 1 This illustration shows a schematic diagram of the structure of a wireless communication system provided in an embodiment of this disclosure. Figure 1 As shown, the wireless communication system is a communication system based on mobile communication technology. The wireless communication system may include: several user equipment 110 and several base stations 120.

[0083] User equipment 110 can be a device that provides voice and / or data connectivity to a user. User equipment 110 can communicate with one or more core networks via a Radio Access Network (RAN). User equipment 110 can be an Internet of Things (IoT) user equipment, such as sensor devices, mobile phones, and computers with IoT user equipment capabilities. For example, it can be a fixed, portable, pocket-sized, handheld, computer-embedded, or vehicle-mounted device. Examples include a station (STA), subscriber unit, subscriber station, mobile station, mobile station, remote station, access point, remote terminal, access terminal, user terminal, user agent, user device, or user equipment. Alternatively, user equipment 110 can also be a device from an unmanned aerial vehicle (UAV). Alternatively, user equipment 110 can also be a vehicle-mounted device, such as a vehicle computer with wireless communication capabilities, or a wireless user equipment connected to an external vehicle computer. Alternatively, user equipment 110 can also be a roadside device, such as a street light, traffic light, or other roadside device with wireless communication capabilities.

[0084] Base station 120 can be a network-side device in a wireless communication system. This wireless communication system can be a 5G system, also known as a New Radio (NR) system or a 5G NR system. Alternatively, it can be a next-generation system after 5G. In this case, the access network in the 5G system can be called NG-RAN (New Generation-Radio Access Network).

[0085] The base station 120 can also be a base station (gNB) in a 5G system that adopts a centralized-distributed architecture. When the base station 120 adopts a centralized-distributed architecture, it typically includes a central unit (CU) and at least two distributed units (DUs). The central unit is equipped with a protocol stack of the Packet Data Convergence Protocol (PDCP) layer, the Radio Link Control (RLC) layer, and the Media Access Control (MAC) layer; the distributed units are equipped with a physical (PHY) layer protocol stack. The specific implementation of the base station 120 is not limited in this embodiment.

[0086] Base station 120 and user equipment 110 can establish a wireless connection via a wireless air interface. In different implementations, this wireless air interface is a wireless air interface based on the fifth-generation mobile communication network technology (5G) standard, such as a new air interface; or, the wireless air interface can also be a wireless air interface based on a next-generation mobile communication network technology standard based on 5G.

[0087] In some embodiments, user equipment 110 can also establish E2E (End to End) connections. Examples include V2V (vehicle to vehicle), V2I (vehicle to Infrastructure), and V2P (vehicle to pedestrian) communication scenarios in vehicle-to-everything (V2X) communication.

[0088] Here, the user equipment mentioned above can be considered as the terminal equipment in the following embodiments.

[0089] In some embodiments, the wireless communication system described above may further include a network management device 130.

[0090] Several base stations 120 are connected to network management device 130. Network management device 130 can be a core network device in a wireless communication system, such as the Access and Mobility Management Function (AMF) in a 5G core network (5GC). Alternatively, it can be other core network devices, such as a Policy and Charging Rules Function (PCRF) or a User Data Management Server (UDM). The implementation of network management device 130 is not limited in this embodiment.

[0091] To facilitate understanding by those skilled in the art, this disclosure provides multiple embodiments to clearly illustrate the technical solutions of the embodiments of this disclosure. Of course, those skilled in the art will understand that the multiple embodiments provided in this disclosure can be executed individually, or in combination with the methods of other embodiments in this disclosure, or individually or in combination with some methods in other related technologies; this disclosure does not limit these aspects.

[0092] like Figure 2 As shown, this embodiment provides a relay communication method, wherein the method is executed by a first terminal, and the method includes:

[0093] Step 21: Send capability information, which indicates at least one of the following:

[0094] Supports a secure setup process based on the control plane (CP).

[0095] Supports a secure establishment process based on the user plane UP, which includes a secure establishment process for relay discovery and / or relay communication.

[0096] Here, the terminal involved in this disclosure may be, but is not limited to, a mobile phone, wearable device, vehicle terminal, roadside unit (RSU), smart home terminal, industrial sensing device and / or medical device, etc. In some embodiments, the terminal may be a Redcap terminal or a predetermined version of a New Radio (NR) terminal (e.g., an R17 NR terminal). The first terminal in this disclosure may be a relay terminal in relay communication, and the second terminal may be a remote terminal in relay communication. Alternatively, the first terminal in this disclosure may be a remote terminal in relay communication, and the second terminal may be a relay terminal in relay communication.

[0097] The network elements involved in this disclosure can be policy control functions (PCFs). It should be noted that network elements implementing the relevant technical solutions in this disclosure are not limited to the examples listed above. In some embodiments of this disclosure, a network element can be deployed as a standalone communication node or integrated within an existing network element network. In short, a network element can be understood as a logical node that can be flexibly deployed within a network, and no limitation is made herein.

[0098] In one embodiment, the first network element may be a PCF.

[0099] In one embodiment, the first terminal may send capability information to a first network element (e.g., PCF) via a base station.

[0100] The base stations mentioned in this disclosure can be of various types, such as base stations of fifth-generation mobile communication (5G) networks or other evolved base stations.

[0101] In one embodiment, the first terminal sends capability information to the PCF of the first terminal via a base station. The capability information is used to indicate at least one of the following: supporting a security establishment process based on the control plane (CP); supporting a security establishment process based on the user plane (UP); the security establishment process includes a security establishment process for relay discovery and / or relay communication.

[0102] In one embodiment, during the network registration process of the first terminal, the first terminal sends capability information to the PCF of the first terminal through the base station. The capability information is used to indicate at least one of the following: supporting a secure establishment process based on the control plane (CP); supporting a secure establishment process based on the user plane (UP); the secure establishment process includes a secure establishment process for relay discovery and / or relay communication.

[0103] In one embodiment, capability information is transmitted, which indicates at least one of the following: support for a security establishment process based on the control plane (CP); support for a security establishment process based on the user plane (UP); the security establishment process includes a security establishment process for relay discovery and / or relay communication. Indication information is received; wherein the indication information indicates the security establishment process selected by the first network element of the first terminal; the security establishment process includes one of the following: a security establishment process based on the control plane (CP); a security establishment process based on the user plane (UP).

[0104] For example, a first terminal sends capability information to a first network element, the capability information indicating at least one of the following: supporting a security establishment process based on the control plane (CP); supporting a security establishment process based on the user plane (UP); the security establishment process includes a relay discovery and / or relay communication security establishment process. The first network element determines that it has received the capability information and selects a security establishment process mode; the security establishment process mode includes one of the following: a security establishment process based on the control plane (CP); a security establishment process based on the user plane (UP). The first network element sends indication information to the first terminal; wherein the indication information indicates the security establishment process mode selected by the first network element of the first terminal. The first terminal receives the indication information.

[0105] In one embodiment, capability information is sent, which indicates at least one of the following: support for a security establishment process based on the control plane (CP); support for a security establishment process based on the user plane (UP); the security establishment process includes a security establishment process for relay discovery and / or relay communication. During service authorization and information configuration, indication information is received; wherein the indication information indicates the security establishment process selected by the first network element of the first terminal; the security establishment process includes one of the following: a security establishment process based on the control plane (CP); a security establishment process based on the user plane (UP).

[0106] In one embodiment, capability information is sent, indicating at least one of the following: support for a security establishment process based on the control plane (CP); support for a security establishment process based on the user plane (UP); the security establishment process includes a security establishment process for relay discovery and / or relay communication. Indication information is received; wherein the indication information indicates the security establishment process selected by the first network element of the first terminal; the security establishment process includes one of the following: a security establishment process based on the control plane (CP); a security establishment process based on the user plane (UP). Upon determining that the indication information has been received, a security establishment process is triggered.

[0107] In one embodiment, capability information is sent, which indicates at least one of the following: support for a security establishment process based on the control plane (CP); support for a security establishment process based on the user plane (UP); the security establishment process includes a security establishment process for relay discovery and / or relay communication. Indication information is received; wherein the indication information indicates the mode of the security establishment process selected by the first network element of the first terminal; the mode of the security establishment process includes one of the following: a security establishment process based on the control plane (CP); a security establishment process based on the user plane (UP). It is determined that the indication information has been received, and a security establishment process is triggered. Based on a comparison between the security establishment process selected by the first network element of the first terminal and the security establishment process selected by the first network element of the second terminal, it is determined whether to execute the security establishment process. For example, if it is determined that the security establishment process selected by the first network element of the first terminal is the same as that selected by the second terminal, it is determined to execute the security establishment process between the first terminal and the second terminal; or, if it is determined that the security establishment process selected by the first network element of the first terminal is different from that selected by the second terminal, it is determined not to execute the security establishment process between the first terminal and the second terminal.

[0108] In one embodiment, capability information is sent, indicating at least one of the following: support for a security establishment process based on the control plane (CP); support for a security establishment process based on the user plane (UP); the security establishment process includes a security establishment process for relay discovery and / or relay communication. Indication information is received; wherein the indication information indicates the security establishment process selected by the first network element of the first terminal; the security establishment process includes one of the following: a security establishment process based on the control plane (CP); a security establishment process based on the user plane (UP). Upon determining that the indication information has been received, a security establishment process between the first terminal and the second terminal is triggered; wherein the security establishment process selected by the first terminal is the same as the security establishment process selected by the first network element of the second terminal.

[0109] To better understand the embodiments of this disclosure, the following exemplary embodiment will be used to further illustrate the technical solution of this disclosure:

[0110] Example 1:

[0111] This embodiment provides a relay communication method, which includes:

[0112] Step a1: When a relay terminal registers with the network, it sends capability information to the PCF through the base station. The capability information indicates at least one of the following: the relay terminal supports a secure establishment process based on the control plane (CP); the relay terminal supports a secure establishment process based on the user plane (UP); the secure establishment process includes a secure establishment process for relay discovery and / or relay communication.

[0113] Step a2: The PCF of the relay terminal selects the security establishment process method according to the capability information. The security establishment process method includes one of the following: a security establishment process based on the control plane (CP); or a security establishment process based on the user plane (UP).

[0114] Step a3: When a remote terminal registers with the network, it sends capability information to the PCF via the base station. The capability information indicates at least one of the following: the remote terminal supports a security establishment process based on the control plane (CP); the remote terminal supports a security establishment process based on the user plane (UP); the security establishment process includes a relay discovery and / or relay communication security establishment process.

[0115] Step a4: The PCF of the remote terminal selects a security establishment process based on the capability information. The security establishment process includes one of the following: a security establishment process based on the control plane (CP); or a security establishment process based on the user plane (UP).

[0116] Step a5: During the service authorization and information configuration process of the relay terminal, the PCF of the relay terminal sends an instruction message to the relay terminal.

[0117] The indication information is used to indicate the method of security establishment process selected by the PCF of the relay terminal; the method of security establishment process includes one of the following: a security establishment process based on the control plane (CP); a security establishment process based on the user plane (UP).

[0118] Step a6: During the service authorization and information configuration process of the remote terminal, the PCF of the remote terminal sends instruction information to the remote terminal;

[0119] The indication information is used to indicate the method of security establishment process selected by the PCF of the remote terminal; the method of security establishment process includes one of the following: a security establishment process based on the control plane (CP); a security establishment process based on the user plane (UP).

[0120] Step a7: The relay terminal confirms that it has received the instruction information and triggers the security establishment process.

[0121] Step a8: The remote terminal confirms that it has received the instruction information and triggers the security establishment process.

[0122] Step a9: If the PCF of the relay terminal and the PCF of the remote terminal select the same security establishment procedure (both terminals use a CP-based security procedure or both terminals use a UP-based security procedure), the discovery process between the relay terminal and the remote terminal, as well as the subsequent relay communication process, can continue. If the PCF of the relay terminal and the PCF of the remote terminal select different security establishment procedures (one terminal uses a CP-based security establishment procedure, and the other terminal uses a UP-based security establishment procedure), the discovery process between the relay terminal and the remote terminal cannot continue. The remote terminal needs to further discover relay terminals using the same security establishment procedure.

[0123] In this embodiment of the disclosure, capability information is transmitted, which indicates at least one of the following: support for a security establishment process based on the control plane (CP); support for a security establishment process based on the user plane (UP); and the security establishment process includes a relay discovery and / or a relay communication security establishment process. Here, since the capability information indicates that the terminal supports a security establishment process based on the control plane (CP) and / or a security establishment process based on the user plane (UP), the network, upon receiving the capability information, can determine whether to select the security establishment process based on the control plane (CP) or the user plane (UP). Compared to situations where the network is unaware of the capabilities supported by the terminal, this improves the relay communication mechanism and makes the relay communication more reliable.

[0124] It should be noted that those skilled in the art will understand that the methods provided in the embodiments of this disclosure can be executed alone or together with some methods in the embodiments of this disclosure or some methods in related technologies.

[0125] like Figure 3 As shown, this embodiment provides a relay communication method, wherein the method is executed by a first terminal, and the method includes:

[0126] Step 31: During the network registration process performed by the first terminal, capability information is sent. The capability information indicates at least one of the following: support for a secure establishment process based on the control plane (CP); support for a secure establishment process based on the user plane (UP); the secure establishment process includes a secure establishment process for relay discovery and / or relay communication.

[0127] In one embodiment, during the network registration process of the first terminal, the first terminal sends capability information to the PCF of the first terminal through the base station. The capability information is used to indicate at least one of the following: supporting a secure establishment process based on the control plane (CP); supporting a secure establishment process based on the user plane (UP); the secure establishment process includes a secure establishment process for relay discovery and / or relay communication.

[0128] It should be noted that those skilled in the art will understand that the methods provided in the embodiments of this disclosure can be executed alone or together with some methods in the embodiments of this disclosure or some methods in related technologies.

[0129] like Figure 4 As shown, this embodiment provides a relay communication method, wherein the method is executed by a first terminal, and the method includes:

[0130] Step 41: Receive instruction information;

[0131] The indication information is used to indicate the method of security establishment process selected by the first network element of the first terminal; the method of security establishment process includes one of the following:

[0132] A security establishment process based on the control plane CP;

[0133] The security establishment process is based on the user plane UP.

[0134] In one embodiment, capability information is transmitted, which indicates at least one of the following: support for a security establishment process based on the control plane (CP); support for a security establishment process based on the user plane (UP); the security establishment process includes a security establishment process for relay discovery and / or relay communication. Indication information is received; wherein the indication information indicates the security establishment process selected by the first network element of the first terminal; the security establishment process includes one of the following: a security establishment process based on the control plane (CP); a security establishment process based on the user plane (UP).

[0135] It should be noted that those skilled in the art will understand that the methods provided in the embodiments of this disclosure can be executed alone or together with some methods in the embodiments of this disclosure or some methods in related technologies.

[0136] like Figure 5 As shown, this embodiment provides a relay communication method, wherein the method is executed by a first terminal, and the method includes:

[0137] Step 51: During the service authorization and information configuration process, receive instruction information, wherein the instruction information is used to indicate the method of security establishment process selected by the first network element of the first terminal; the method of security establishment process includes one of the following: a security establishment process based on the control plane CP; a security establishment process based on the user plane UP.

[0138] In one embodiment, capability information is sent, which indicates at least one of the following: support for a security establishment process based on the control plane (CP); support for a security establishment process based on the user plane (UP); the security establishment process includes a security establishment process for relay discovery and / or relay communication. During service authorization and information configuration, indication information is received; wherein the indication information indicates the security establishment process selected by the first network element of the first terminal; the security establishment process includes one of the following: a security establishment process based on the control plane (CP); a security establishment process based on the user plane (UP).

[0139] It should be noted that those skilled in the art will understand that the methods provided in the embodiments of this disclosure can be executed alone or together with some methods in the embodiments of this disclosure or some methods in related technologies.

[0140] like Figure 6 As shown, this embodiment provides a relay communication method, wherein the method is executed by a first terminal, and the method includes:

[0141] Step 61: Confirm receipt of the instruction information and trigger the security establishment process.

[0142] In one embodiment, capability information is sent, indicating at least one of the following: support for a security establishment process based on the control plane (CP); support for a security establishment process based on the user plane (UP); the security establishment process includes a security establishment process for relay discovery and / or relay communication. Indication information is received; wherein the indication information indicates the security establishment process selected by the first network element of the first terminal; the security establishment process includes one of the following: a security establishment process based on the control plane (CP); a security establishment process based on the user plane (UP). Upon determining that the indication information has been received, a security establishment process is triggered.

[0143] It should be noted that those skilled in the art will understand that the methods provided in the embodiments of this disclosure can be executed alone or together with some methods in the embodiments of this disclosure or some methods in related technologies.

[0144] like Figure 7As shown, this embodiment provides a relay communication method, wherein the method is executed by a first terminal, and the first terminal and the second terminal are terminals that execute a security establishment process; the method includes:

[0145] Step 71: Based on the comparison result between the security establishment process selected by the first network element of the first terminal and the security establishment process selected by the first network element of the second terminal, determine whether to execute the security establishment process.

[0146] In one embodiment, capability information is sent, which indicates at least one of the following: support for a security establishment process based on the control plane (CP); support for a security establishment process based on the user plane (UP); the security establishment process includes a relay discovery and / or relay communication security establishment process. Indication information is received; wherein the indication information indicates the mode of the security establishment process selected by the first network element of the first terminal; the mode of the security establishment process includes one of the following: a security establishment process based on the control plane (CP); a security establishment process based on the user plane (UP). It is determined that the indication information has been received, and a security establishment process is triggered. Based on a comparison between the mode of the security establishment process selected by the first network element of the first terminal and the mode of the security establishment process selected by the first network element of the second terminal, it is determined whether to execute the security establishment process. For example, if it is determined that the mode of the security establishment process selected by the first network element of the first terminal is the same as the mode of the security establishment process selected by the first network element of the second terminal, it is determined to execute the security establishment process between the first terminal and the second terminal; or, if it is determined that the mode of the security establishment process selected by the first network element of the first terminal is different from the mode of the security establishment process selected by the first network element of the second terminal, it is determined not to execute the security establishment process between the first terminal and the second terminal.

[0147] It should be noted that those skilled in the art will understand that the methods provided in the embodiments of this disclosure can be executed alone or together with some methods in the embodiments of this disclosure or some methods in related technologies.

[0148] like Figure 8 As shown, this embodiment provides a relay communication method, wherein the method is executed by a first terminal, and the method includes:

[0149] Step 81: Determine that the security establishment process selected by the first network element of the first terminal is the same as the security establishment process selected by the first network element of the second terminal, and determine to execute the security establishment process between the first terminal and the second terminal;

[0150] or,

[0151] If the method of security establishment process selected by the first network element of the first terminal is different from the method of security establishment process selected by the first network element of the second terminal, then it is determined that the security establishment process between the first terminal and the second terminal will not be executed.

[0152] For a detailed description of step 81, please refer to the explanation in step 71; it will not be repeated here.

[0153] It should be noted that those skilled in the art will understand that the methods provided in the embodiments of this disclosure can be executed alone or together with some methods in the embodiments of this disclosure or some methods in related technologies.

[0154] like Figure 9 As shown, this embodiment provides a relay communication method, wherein the method is executed by a first terminal, and the method includes:

[0155] Step 91: Trigger the security establishment process between the first terminal and the second terminal;

[0156] The security establishment process selected by the first terminal is the same as the security establishment process selected by the first network element of the second terminal.

[0157] In one embodiment, capability information is sent, indicating at least one of the following: support for a security establishment process based on the control plane (CP); support for a security establishment process based on the user plane (UP); the security establishment process includes a security establishment process for relay discovery and / or relay communication. Indication information is received; wherein the indication information indicates the security establishment process selected by the first network element of the first terminal; the security establishment process includes one of the following: a security establishment process based on the control plane (CP); a security establishment process based on the user plane (UP). Upon determining that the indication information has been received, a security establishment process is triggered. A security establishment process between the first terminal and the second terminal is triggered; wherein the security establishment process selected by the first terminal is the same as the security establishment process selected by the first network element of the second terminal.

[0158] It should be noted that those skilled in the art will understand that the methods provided in the embodiments of this disclosure can be executed alone or together with some methods in the embodiments of this disclosure or some methods in related technologies.

[0159] like Figure 10 As shown, this embodiment provides a relay communication method, wherein the method is executed by a first network element, and the method includes:

[0160] Step 101: Receive capability information, the capability information being used to indicate at least one of the following:

[0161] Supports a secure setup process based on the control plane (CP).

[0162] Supports a security establishment process based on the user plane UP, wherein the security establishment process includes a security establishment process for relay discovery and / or relay communication.

[0163] Here, the terminal involved in this disclosure may be, but is not limited to, a mobile phone, wearable device, vehicle terminal, roadside unit (RSU), smart home terminal, industrial sensing device and / or medical device, etc. In some embodiments, the terminal may be a Redcap terminal or a predetermined version of a New Radio (NR) terminal (e.g., an R17 NR terminal). The first terminal in this disclosure may be a relay terminal in relay communication, and the second terminal may be a remote terminal in relay communication. Alternatively, the first terminal in this disclosure may be a remote terminal in relay communication, and the second terminal may be a relay terminal in relay communication.

[0164] The network elements involved in this disclosure can be policy control functions (PCFs). It should be noted that network elements implementing the relevant technical solutions in this disclosure are not limited to the examples listed above. In some embodiments of this disclosure, a network element can be deployed as a standalone communication node or integrated within an existing network element network. In short, a network element can be understood as a logical node that can be flexibly deployed within a network, and no limitation is made herein.

[0165] In one embodiment, the first network element may be a PCF.

[0166] In one embodiment, the first network element (e.g., PCF) may be a capability information received by the first terminal through a base station.

[0167] The base stations mentioned in this disclosure can be of various types, such as base stations of fifth-generation mobile communication (5G) networks or other evolved base stations.

[0168] In one embodiment, the PCF of the first terminal receives capability information sent by the first terminal through a base station. The capability information is used to indicate at least one of the following: supporting a security establishment process based on the control plane (CP); supporting a security establishment process based on the user plane (UP); the security establishment process includes a security establishment process for relay discovery and / or relay communication.

[0169] In one embodiment, during the network registration process performed by the first terminal, the PCF of the first terminal receives capability information sent by the first terminal through the base station. The capability information is used to indicate at least one of the following: supporting a secure establishment process based on the control plane (CP); supporting a secure establishment process based on the user plane (UP); the secure establishment process includes a secure establishment process for relay discovery and / or relay communication.

[0170] In one embodiment, capability information is received, which indicates at least one of the following: support for a security establishment procedure based on the control plane (CP); support for a security establishment procedure based on the user plane (UP); the security establishment procedure includes a security establishment procedure for relay discovery and / or relay communication. Indication information is sent; wherein the indication information indicates the security establishment procedure selected by the first network element of the first terminal; the security establishment procedure includes one of the following: a security establishment procedure based on the control plane (CP); a security establishment procedure based on the user plane (UP).

[0171] For example, a first terminal sends capability information to a first network element, the capability information indicating at least one of the following: supporting a security establishment procedure based on the control plane (CP); supporting a security establishment procedure based on the user plane (UP); the security establishment procedure includes a security establishment procedure for relay discovery and / or relay communication. The first network element determines that it has received the capability information and selects a security establishment procedure method; the security establishment procedure method includes one of the following: a security establishment procedure based on the control plane (CP); a security establishment procedure based on the user plane (UP). The first network element sends indication information to the first terminal; wherein the indication information indicates the security establishment procedure method selected by the first network element of the first terminal. The first terminal receives the indication information.

[0172] In one embodiment, capability information is received, which indicates at least one of the following: support for a security establishment process based on the control plane (CP); support for a security establishment process based on the user plane (UP); the security establishment process includes a security establishment process for relay discovery and / or relay communication. During service authorization and information configuration, indication information is sent; wherein the indication information indicates the security establishment process selected by the first network element of the first terminal; the security establishment process includes one of the following: a security establishment process based on the control plane (CP); a security establishment process based on the user plane (UP).

[0173] In one embodiment, capability information is received, which indicates at least one of the following: support for a security establishment process based on the control plane (CP); support for a security establishment process based on the user plane (UP); the security establishment process includes a security establishment process for relay discovery and / or relay communication. Indication information is sent; wherein the indication information indicates the security establishment process selected by the first network element of the first terminal; the security establishment process includes one of the following: a security establishment process based on the control plane (CP); a security establishment process based on the user plane (UP). The first terminal determines that it has received the indication information and triggers the security establishment process.

[0174] In one embodiment, capability information is received, which indicates at least one of the following: support for a security establishment process based on the control plane (CP); support for a security establishment process based on the user plane (UP); the security establishment process includes a security establishment process for relay discovery and / or relay communication. It is determined that the capability information has been received, and a security establishment process mode is selected; the security establishment process mode includes one of the following: a security establishment process based on the control plane (CP); a security establishment process based on the user plane (UP). Instruction information is sent; wherein the instruction information indicates the security establishment process mode selected by the first network element of the first terminal. The first terminal determines that it has received the instruction information and triggers the security establishment process. The first terminal determines whether to execute the security establishment process based on a comparison between the security establishment process mode selected by the first network element of the first terminal and the security establishment process mode selected by the first network element of the second terminal. For example, if the first terminal determines that the security establishment process mode selected by the first network element of the first terminal is the same as that selected by the first network element of the second terminal, it determines to execute the security establishment process between the first terminal and the second terminal; or, if it determines that the security establishment process mode selected by the first network element of the first terminal is different from that selected by the first network element of the second terminal, it determines not to execute the security establishment process between the first terminal and the second terminal.

[0175] In one embodiment, capability information is received, which indicates at least one of the following: support for a security establishment procedure based on the control plane (CP); support for a security establishment procedure based on the user plane (UP); the security establishment procedure includes a security establishment procedure for relay discovery and / or relay communication. Instruction information is sent; wherein the instruction information indicates the security establishment procedure selected by the first network element of the first terminal; the security establishment procedure includes one of the following: a security establishment procedure based on the control plane (CP); a security establishment procedure based on the user plane (UP). The first terminal determines that it has received the instruction information and triggers a security establishment procedure between the first terminal and the second terminal; wherein the security establishment procedure selected by the first terminal is the same as the security establishment procedure selected by the first network element of the second terminal.

[0176] It should be noted that those skilled in the art will understand that the methods provided in the embodiments of this disclosure can be executed alone or together with some methods in the embodiments of this disclosure or some methods in related technologies.

[0177] like Figure 11 As shown, this embodiment provides a relay communication method, wherein the method is executed by a first network element, and the method includes:

[0178] Step 111: During the network registration process performed by the first terminal, the capability information is received. The capability information is used to indicate at least one of the following: supporting a secure establishment process based on the control plane (CP); supporting a secure establishment process based on the user plane (UP); the secure establishment process includes a secure establishment process for relay discovery and / or relay communication.

[0179] In one embodiment, during the network registration process of the first terminal, the PCF of the first terminal receives capability information sent by the first terminal through the base station. The capability information is used to indicate at least one of the following: supporting a secure establishment process based on the control plane (CP); supporting a secure establishment process based on the user plane (UP); the secure establishment process includes a secure establishment process for relay discovery and / or relay communication.

[0180] It should be noted that those skilled in the art will understand that the methods provided in the embodiments of this disclosure can be executed alone or together with some methods in the embodiments of this disclosure or some methods in related technologies.

[0181] like Figure 12 As shown, this embodiment provides a relay communication method, wherein the method is executed by a first network element, and the method includes:

[0182] Step 121: Confirm receipt of the capability information and select a method for establishing a security establishment process; the method for establishing a security establishment process includes one of the following:

[0183] A security establishment process based on the control plane CP;

[0184] The security establishment process is based on the user plane UP.

[0185] In one embodiment, capability information is received, which indicates at least one of the following: support for a security establishment process based on the control plane (CP); support for a security establishment process based on the user plane (UP); the security establishment process includes a security establishment process for relay discovery and / or relay communication. It is determined that the capability information has been received, and a security establishment process mode is selected; the security establishment process mode includes one of the following: a security establishment process based on the control plane (CP); a security establishment process based on the user plane (UP). Instruction information is sent; wherein the instruction information indicates the security establishment process selected by the first network element of the first terminal. The first terminal determines that it has received the instruction information and triggers the security establishment process. The first terminal determines whether to execute the security establishment process based on a comparison between the security establishment process mode selected by the first network element of the first terminal and the security establishment process mode selected by the first network element of the second terminal. For example, if the first terminal determines that the method of selecting the security establishment flow process by the first network element of the first terminal is the same as the method of selecting the security establishment flow process by the first network element of the second terminal, then the first terminal determines to execute the security establishment flow process between the first terminal and the second terminal; or, if the method of selecting the security establishment flow process by the first network element of the first terminal is different from the method of selecting the security establishment flow process by the first network element of the second terminal, then the first terminal determines not to execute the security establishment flow process between the first terminal and the second terminal.

[0186] It should be noted that those skilled in the art will understand that the methods provided in the embodiments of this disclosure can be executed alone or together with some methods in the embodiments of this disclosure or some methods in related technologies.

[0187] like Figure 13 As shown, this embodiment provides a relay communication method, wherein the method is executed by a first network element, and the method includes:

[0188] Step 131: Send instruction information;

[0189] Wherein, the indication information is used to indicate the method of security establishment process selected by the first network element of the first terminal.

[0190] In one embodiment, capability information is received, which indicates at least one of the following: support for a security establishment process based on the control plane (CP); support for a security establishment process based on the user plane (UP); the security establishment process includes a security establishment process for relay discovery and / or relay communication. During service authorization and information configuration, indication information is sent; wherein the indication information indicates the security establishment process selected by the first network element of the first terminal; the security establishment process includes one of the following: a security establishment process based on the control plane (CP); a security establishment process based on the user plane (UP). The first terminal determines that it has received the indication information and triggers a security establishment process between the first terminal and the second terminal; wherein the security establishment process selected by the first terminal is the same as the security establishment process selected by the first network element of the second terminal.

[0191] It should be noted that those skilled in the art will understand that the methods provided in the embodiments of this disclosure can be executed alone or together with some methods in the embodiments of this disclosure or some methods in related technologies.

[0192] like Figure 14 As shown, this embodiment provides a relay communication method, wherein the method is executed by a first network element, and the method includes:

[0193] Step 141: During the service authorization and information configuration process, send the instruction information.

[0194] For a detailed description of step 141, please refer to the explanation in step 13; it will not be repeated here.

[0195] It should be noted that those skilled in the art will understand that the methods provided in the embodiments of this disclosure can be executed alone or together with some methods in the embodiments of this disclosure or some methods in related technologies.

[0196] To better understand the embodiments of this disclosure, the following exemplary embodiment will be used to further illustrate the technical solution of this disclosure:

[0197] Example 2:

[0198] like Figure 15 As shown, this embodiment provides a relay communication method, which includes:

[0199] Step 151: The relay terminal initiates the registration process. During the registration process, capability information is sent, which indicates at least one of the following:

[0200] The relay terminal supports a secure establishment process based on the control plane (CP).

[0201] The relay terminal supports a secure establishment process based on the user plane (UP), which includes a secure establishment process for relay discovery and / or relay communication.

[0202] Step 152: The relay terminal's PCF confirms that it has received capability information and selects a method for establishing a security establishment procedure. The security establishment procedure may include one of the following:

[0203] A security establishment process based on the control plane CP;

[0204] The security establishment process is based on the user plane UP.

[0205] Step 153: The remote terminal initiates the registration process. During the registration process, capability information is sent, which indicates at least one of the following:

[0206] Remote terminals support a secure establishment process based on the control plane (CP).

[0207] The remote terminal supports a security establishment process based on the user plane (UP); the security establishment process includes a secure establishment process for relay discovery and / or relay communication.

[0208] Step 154: The PCF of the remote terminal confirms that it has received capability information and selects a method for establishing a security establishment procedure for the remote terminal. The method for establishing a security establishment procedure includes one of the following:

[0209] A security establishment process based on the control plane CP;

[0210] The security establishment process is based on the user plane UP.

[0211] Step 155: The PCF of the relay terminal initiates the authorization and information configuration process for the relay terminal. During the authorization and information configuration process, the PCF sends indication information, which indicates the method of security establishment procedure selected by the PCF of the relay terminal; the method of security establishment procedure includes one of the following:

[0212] A security establishment process based on the control plane CP;

[0213] The security establishment process is based on the user plane UP.

[0214] Step 156: The PCF of the remote terminal initiates the authorization and information configuration process for the remote terminal. During the authorization and information configuration process, the PCF sends indication information, which indicates the method of security establishment procedure selected by the PCF of the remote terminal; the method of security establishment procedure includes one of the following:

[0215] A security establishment process based on the control plane CP;

[0216] The security establishment process is based on the user plane UP.

[0217] Step 157: The relay terminal performs relay discovery and / or relay communication in accordance with the security establishment process indicated by the indication information.

[0218] Step 158: The remote terminal performs relay discovery and / or relay communication in accordance with the security establishment process indicated by the instruction information.

[0219] Step 159: If the relay terminal and the remote terminal select the same security establishment procedure, the remote terminal and the relay terminal can discover each other and communicate with each other. If the relay terminal and the remote terminal select different security establishment procedures, the remote terminal and the relay terminal cannot discover each other and communicate with each other.

[0220] like Figure 16 As shown, this embodiment provides a relay communication device, wherein the device includes:

[0221] Transmitting module 161 is configured to transmit capability information, the capability information indicating at least one of the following:

[0222] Supports a secure setup process based on the control plane (CP).

[0223] Supports a security establishment process based on the user plane UP, wherein the security establishment process includes a security establishment process for relay discovery and / or relay communication.

[0224] It should be noted that those skilled in the art will understand that the methods provided in the embodiments of this disclosure can be executed alone or together with some methods in the embodiments of this disclosure or some methods in related technologies.

[0225] like Figure 17 As shown, this embodiment provides a relay communication device, wherein the device includes:

[0226] Receiving module 171 is configured to receive capability information, the capability information being used to indicate at least one of the following:

[0227] Supports a secure setup process based on the control plane (CP).

[0228] Supports a security establishment process based on the user plane UP, wherein the security establishment process includes a security establishment process for relay discovery and / or relay communication.

[0229] It should be noted that those skilled in the art will understand that the methods provided in the embodiments of this disclosure can be executed alone or together with some methods in the embodiments of this disclosure or some methods in related technologies.

[0230] This disclosure provides a communication device, which includes:

[0231] processor;

[0232] Memory used to store processor-executable instructions;

[0233] The processor is configured to implement, when running executable instructions, the methods applicable to any embodiment of this disclosure.

[0234] The processor may include various types of storage media, which are non-transitory computer storage media that can continue to store information after the communication device loses power.

[0235] The processor can connect to the memory via a bus or other means to read executable programs stored in the memory.

[0236] This disclosure also provides a computer storage medium storing a computer executable program, which, when executed by a processor, implements the method of any embodiment of this disclosure.

[0237] Regarding the apparatus in the above embodiments, the specific manner in which each module performs its operation has been described in detail in the embodiments related to the method, and will not be elaborated upon here.

[0238] like Figure 18 As shown, one embodiment of this disclosure provides a terminal structure.

[0239] Reference Figure 18 The terminal 800 shown in this embodiment is a mobile phone, computer, digital broadcasting terminal, messaging device, game console, tablet device, medical device, fitness device, personal digital assistant, etc.

[0240] Reference Figure 18 Terminal 800 may include one or more of the following components: processing component 802, memory 804, power supply component 806, multimedia component 808, audio component 810, input / output (I / O) interface 812, sensor component 814, and communication component 816.

[0241] Processing component 802 typically controls the overall operation of terminal 800, such as operations associated with display, telephone calls, data communication, camera operation, and recording. Processing component 802 may include one or more processors 820 to execute instructions to complete all or part of the steps of the methods described above. Furthermore, processing component 802 may include one or more modules to facilitate interaction between processing component 802 and other components. For example, processing component 802 may include a multimedia module to facilitate interaction between multimedia component 808 and processing component 802.

[0242] Memory 804 is configured to store various types of data to support the operation of device 800. Examples of this data include instructions for any application or method operating on terminal 800, contact data, phonebook data, messages, pictures, videos, etc. Memory 804 can be implemented by any type of volatile or non-volatile storage device or a combination thereof, such as static random access memory (SRAM), electrically erasable programmable read-only memory (EEPROM), erasable programmable read-only memory (EPROM), programmable read-only memory (PROM), read-only memory (ROM), magnetic storage, flash memory, magnetic disk, or optical disk.

[0243] Power supply component 806 provides power to various components of terminal 800. Power supply component 806 may include a power management system, one or more power supplies, and other components associated with generating, managing, and distributing power to terminal 800.

[0244] Multimedia component 808 includes a screen that provides an output interface between terminal 800 and user. In some embodiments, the screen may include a liquid crystal display (LCD) and a touch panel (TP). If the screen includes a touch panel, the screen may be implemented as a touchscreen to receive input signals from the user. The touch panel includes one or more touch sensors to sense touches, swipes, and gestures on the touch panel. The touch sensors may sense not only the boundaries of touch or swipe actions but also the duration and pressure associated with the touch or swipe operation. In some embodiments, multimedia component 808 includes a front-facing camera and / or a rear-facing camera. When device 800 is in an operating mode, such as shooting mode or video mode, the front-facing camera and / or rear-facing camera may receive external multimedia data. Each front-facing camera and rear-facing camera may be a fixed optical lens system or have focal length and optical zoom capabilities.

[0245] Audio component 810 is configured to output and / or input audio signals. For example, audio component 810 includes a microphone (MIC) configured to receive external audio signals when terminal 800 is in an operating mode, such as call mode, recording mode, and voice recognition mode. The received audio signals may be further stored in memory 804 or transmitted via communication component 816. In some embodiments, audio component 810 also includes a speaker for outputting audio signals.

[0246] I / O interface 812 provides an interface between processing component 802 and peripheral interface modules, such as keyboards, click wheels, buttons, etc. These buttons may include, but are not limited to, home buttons, volume buttons, power buttons, and lock buttons.

[0247] Sensor assembly 814 includes one or more sensors for providing status assessments of various aspects of terminal 800. For example, sensor assembly 814 may detect the on / off state of device 800, the relative positioning of components such as the display and keypad of terminal 800, changes in the position of terminal 800 or a component of terminal 800, the presence or absence of user contact with terminal 800, the orientation or acceleration / deceleration of terminal 800, and temperature changes of terminal 800. Sensor assembly 814 may include a proximity sensor configured to detect the presence of nearby objects without any physical contact. Sensor assembly 814 may also include a light sensor, such as a CMOS or CCD image sensor, for use in imaging applications. In some embodiments, sensor assembly 814 may also include an accelerometer, a gyroscope, a magnetometer, a pressure sensor, or a temperature sensor.

[0248] Communication component 816 is configured to facilitate wired or wireless communication between terminal 800 and other devices. Terminal 800 can access wireless networks based on communication standards, such as Wi-Fi, 2G, or 3G, or combinations thereof. In one exemplary embodiment, communication component 816 receives broadcast signals or broadcast-related information from an external broadcast management system via a broadcast channel. In one exemplary embodiment, communication component 816 also includes a near-field communication (NFC) module to facilitate short-range communication. For example, the NFC module may be implemented based on radio frequency identification (RFID) technology, Infrared Data Association (IrDA) technology, ultra-wideband (UWB) technology, Bluetooth (BT) technology, and other technologies.

[0249] In an exemplary embodiment, terminal 800 may be implemented by one or more application-specific integrated circuits (ASICs), digital signal processors (DSPs), digital signal processing devices (DSPDs), programmable logic devices (PLDs), field-programmable gate arrays (FPGAs), controllers, microcontrollers, microprocessors, or other electronic components to perform the methods described above.

[0250] In an exemplary embodiment, a non-transitory computer-readable storage medium including instructions is also provided, such as a memory 804 including instructions, which can be executed by a processor 820 of a terminal 800 to perform the above-described method. For example, the non-transitory computer-readable storage medium may be a ROM, random access memory (RAM), CD-ROM, magnetic tape, floppy disk, and optical data storage device, etc.

[0251] like Figure 19 As shown, one embodiment of this disclosure illustrates the structure of a base station. For example, base station 900 can be provided as a network-side device. (Refer to...) Figure 19 The base station 900 includes a processing component 922, which further includes one or more processors, and memory resources represented by a memory 932 for storing instructions, such as application programs, that can be executed by the processing component 922. The application programs stored in the memory 932 may include one or more modules, each corresponding to a set of instructions. Furthermore, the processing component 922 is configured to execute instructions to perform any of the methods described above applied to the base station.

[0252] Base station 900 may also include a power supply component 926 configured to perform power management of base station 900, a wired or wireless network interface 950 configured to connect base station 900 to a network, and an input / output (I / O) interface 958. Base station 900 can operate on an operating system stored in memory 932, such as Windows Server™, Mac OS X™, Unix™, Linux™, FreeBSD™, or similar.

[0253] Other embodiments of the invention will readily occur to those skilled in the art upon consideration of the specification and practice of the invention disclosed herein. This disclosure is intended to cover any variations, uses, or adaptations of the invention that follow the general principles of the invention and include common knowledge or customary techniques in the art not disclosed herein. The specification and examples are to be considered exemplary only, and the true scope and spirit of the invention are indicated by the following claims.

[0254] It should be understood that the present invention is not limited to the precise structure described above and shown in the accompanying drawings, and various modifications and changes can be made without departing from its scope. The scope of the invention is limited only by the appended claims.

Claims

1. A relay communication method, wherein, The method is executed by a first terminal, and the method includes: Send capability information to the first network element of the first terminal, wherein the capability information is used to indicate at least one of the following: Supports a secure setup process based on the control plane (CP). Supports a security establishment process based on the user plane UP, wherein the security establishment process includes a security establishment process for relay discovery and / or relay communication; The method further includes: The system receives indication information sent by the first network element of the first terminal, the indication information being used to indicate the method of security establishment process selected by the first network element of the first terminal; Once the instruction information is received, the security establishment process is triggered.

2. The method according to claim 1, wherein, Sending capability information to the first network element of the first terminal includes: During the network registration process performed by the first terminal, the capability information is sent.

3. The method according to claim 1, wherein, The security establishment process can be implemented in one of the following ways: A security establishment process based on the control plane CP; The security establishment process is based on the user plane UP.

4. The method according to claim 3, wherein, The receipt of the indication information sent by the first network element of the first terminal includes: During the service authorization and information configuration process, the instruction information is received.

5. The method according to claim 1, further comprising: Based on the comparison results between the security establishment process selected by the first network element of the first terminal and the security establishment process selected by the first network element of the second terminal, it is determined whether to execute the security establishment process. The first terminal and the second terminal are terminals that execute the security establishment process.

6. The method according to claim 5, wherein, The step of determining whether to execute the security establishment process based on the comparison result between the security establishment process method selected by the first network element of the first terminal and the security establishment process method selected by the first network element of the second terminal includes: The method for determining the security establishment process selected by the first network element of the first terminal is the same as the method for determining the security establishment process selected by the first network element of the second terminal, and the method for executing the security establishment process between the first terminal and the second terminal is determined; or... If the method of security establishment process selected by the first network element of the first terminal is different from the method of security establishment process selected by the first network element of the second terminal, then it is determined that the security establishment process between the first terminal and the second terminal will not be executed.

7. The method according to claim 1, wherein, The triggering of the security establishment process includes: The security establishment process between the first terminal and the second terminal is triggered, and the security establishment process selected by the first terminal is the same as the security establishment process selected by the first network element of the second terminal.

8. A relay communication method, wherein, The method is executed by a first network element of the first terminal, and the method includes: Receive capability information sent by the first terminal, the capability information being used to indicate at least one of the following: Supports a secure setup process based on the control plane (CP). Supports a security establishment process based on the user plane UP, wherein the security establishment process includes a security establishment process for relay discovery and / or relay communication; The method further includes: Once the capability information has been received, select the method for establishing a security process. Send indication information to the first terminal, the indication information being used to indicate the method of security establishment process selected by the first network element; the indication information being used by the first terminal to trigger the security establishment process.

9. The method according to claim 8, wherein, The capability information received from the first terminal includes: During the network registration process at the first terminal, the capability information is received.

10. The method according to claim 8, wherein, The security establishment process can be implemented in one of the following ways: A security establishment process based on the control plane CP; The security establishment process is based on the user plane UP.

11. The method according to claim 8, wherein, Sending indication information to the first terminal includes: The instruction information is sent during the service authorization and information configuration process.

12. The method according to any one of claims 8 to 11, wherein, The first network element is the policy control function (PCF).

13. A relay communication device, wherein, The device includes: The transmitting module is configured to transmit capability information to a first network element of the first terminal, wherein the capability information indicates at least one of the following: Supports a secure setup process based on the control plane (CP). Supports a security establishment process based on the user plane UP, wherein the security establishment process includes a security establishment process for relay discovery and / or relay communication; The sending module is further configured to receive indication information sent by the first network element of the first terminal, the indication information being used to indicate the method of security establishment process selected by the first network element of the first terminal; and to determine that the indication information has been received, trigger the security establishment process.

14. A relay communication device, wherein, The device includes: A receiving module is configured to receive capability information sent by a first terminal, the capability information indicating at least one of the following: Supports a secure setup process based on the control plane (CP). Supports a security establishment process based on the user plane UP, wherein the security establishment process includes a security establishment process for relay discovery and / or relay communication; The receiving module is further configured to determine that the capability information has been received, select a method for the security establishment process, send indication information to the first terminal, the indication information being used to indicate the method for the security establishment process selected by the first network element, and the indication information being used by the first terminal to trigger the security establishment process.

15. A communication device, wherein, include: Memory; A processor, connected to the memory, is configured to execute computer-executable instructions stored in the memory and to implement the method of any one of claims 1 to 7 or 8 to 12.

16. A computer storage medium storing computer-executable instructions, which, when executed by a processor, enable the implementation of the method according to any one of claims 1 to 7 or 8 to 12.

Citation Information

Patent Citations

  • Network access method and device, network selection method and device and communication equipment

    CN114173333A