A method and apparatus for constructing a connection

By performing identity authentication and authorization before connecting H-ECS and V-ECS, the problem of information leakage caused by malicious ECS is solved, and the security of the connection and system performance are improved.

CN118160336BActive Publication Date: 2026-07-21BEIJING XIAOMI MOBILE SOFTWARE CO LTD
View PDF 3 Cites 0 Cited by

Patent Information

Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
BEIJING XIAOMI MOBILE SOFTWARE CO LTD
Filing Date
2022-09-30
Publication Date
2026-07-21

AI Technical Summary

Technical Problem

In a roaming architecture, malicious connections between H-ECS and V-ECS can easily lead to the leakage of topology details and server information in the VPLMN domain, as well as the exposure of terminal device privacy.

Method used

Before establishing a connection between H-ECS and V-ECS, an identity authentication and authorization mechanism is used to ensure that only authenticated and authorized ECS instances can establish a connection.

Benefits of technology

It improves the security and reliability of connections between ECS instances, prevents information leakage, and enhances system performance in roaming scenarios.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN118160336B_ABST
    Figure CN118160336B_ABST
Patent Text Reader

Abstract

The method and device for constructing a connection are disclosed by the embodiments of the present disclosure, which can be applied to the field of communication technology. The method executed by the H-ECS includes: determining authorization information of a visited edge configuration server V-ECS and a target V-ECS (201); performing mutual identity authentication with the target V-ECS (202); in response to successful mutual identity authentication, determining whether the target V-ECS is allowed to establish a connection with the H-ECS based on the authenticated identity information and the authorization information of the V-ECS (203); and in response to the target V-ECS being allowed to establish a connection with the H-ECS, establishing a connection with the target V-ECS (204). Thus, identity authentication and authorization are performed before the connection between the H-ECS and the target V-ECS is established, information leakage through the connection is avoided, the security and reliability of the connection between ECSs are improved, and the performance of the system in a roaming scenario is improved.
Need to check novelty before this filing date? Find Prior Art