A method and apparatus for constructing a connection
By performing identity authentication and authorization before connecting H-ECS and V-ECS, the problem of information leakage caused by malicious ECS is solved, and the security of the connection and system performance are improved.
CN118160336BActive Publication Date: 2026-07-21BEIJING XIAOMI MOBILE SOFTWARE CO LTD
View PDF 3 Cites 0 Cited by
Patent Information
- Authority / Receiving Office
- CN · China
- Patent Type
- Patents(China)
- Current Assignee / Owner
- BEIJING XIAOMI MOBILE SOFTWARE CO LTD
- Filing Date
- 2022-09-30
- Publication Date
- 2026-07-21
AI Technical Summary
Technical Problem
In a roaming architecture, malicious connections between H-ECS and V-ECS can easily lead to the leakage of topology details and server information in the VPLMN domain, as well as the exposure of terminal device privacy.
Method used
Before establishing a connection between H-ECS and V-ECS, an identity authentication and authorization mechanism is used to ensure that only authenticated and authorized ECS instances can establish a connection.
Benefits of technology
It improves the security and reliability of connections between ECS instances, prevents information leakage, and enhances system performance in roaming scenarios.
✦ Generated by Eureka AI based on patent content.
Smart Images

Figure CN118160336B_ABST
Abstract
The method and device for constructing a connection are disclosed by the embodiments of the present disclosure, which can be applied to the field of communication technology. The method executed by the H-ECS includes: determining authorization information of a visited edge configuration server V-ECS and a target V-ECS (201); performing mutual identity authentication with the target V-ECS (202); in response to successful mutual identity authentication, determining whether the target V-ECS is allowed to establish a connection with the H-ECS based on the authenticated identity information and the authorization information of the V-ECS (203); and in response to the target V-ECS being allowed to establish a connection with the H-ECS, establishing a connection with the target V-ECS (204). Thus, identity authentication and authorization are performed before the connection between the H-ECS and the target V-ECS is established, information leakage through the connection is avoided, the security and reliability of the connection between ECSs are improved, and the performance of the system in a roaming scenario is improved.
Need to check novelty before this filing date? Find Prior Art