Session establishment method and device, computer equipment, storage medium and product

After determining the user's location and permissions, the AMF network element establishes an N15 session only when the target user is in the session establishment area and has the necessary permissions. This solves the problem of wasted network resources caused by meaningless sessions for IoT users, and achieves differentiated experience and network optimization.

CN121586098APending Publication Date: 2026-02-27CHINA TELECOM CORP LTD TECHNOLOGY INNOVATION CENTER +1
View PDF 0 Cites 0 Cited by

Patent Information

Application Number
CN202511773921.6
Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
Filing Date
2025-11-28
Publication Date
2026-02-27

AI Technical Summary

Technical Problem

In existing technologies, the implementation logic of AMF establishing N15 sessions based on TA applies to all accessing users, resulting in the establishment of a large number of meaningless IoT user sessions and wasting network resources.

Method used

The AMF network element responds to the information authentication and UDM registration process to obtain the target user's location. When the user's location is within the session establishment area, the N15 session establishment permission is determined, and the N15 session is established only if the user has the necessary permissions.

Benefits of technology

This avoids unnecessary N15 session establishment, reduces network resource waste, achieves the goal of differentiated human-network experience, and reduces network operation and maintenance pressure.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN121586098A_ABST
    Figure CN121586098A_ABST
Patent Text Reader

Abstract

The invention relates to the technical field of wireless communication, in particular to a session establishment method and device, computer equipment, a storage medium and a product. The method comprises the following steps: in response to completion of information authentication and a unified data management entity UDM registration process for a target user, obtaining a user position of the target user; under the condition that the user position is located in the session establishment area, performing fifth-generation mobile communication technology standard N15 session establishment permission judgment on the target user; and under the condition that the target user has the N15 session establishment permission, establishing an N15 session for the target user. According to the invention, the establishment of a large number of meaningless N15 sessions is avoided, and the network operation and maintenance pressure is reduced on the basis of realizing the goal of human-network differentiated experience.
Need to check novelty before this filing date? Find Prior Art

Description

TECHNICAL FIELD

[0001] The present application relates to the technical field of wireless communication, and in particular to a session establishment method and device, a computer device, a storage medium and a product. BACKGROUND

[0002] With the rapid development of the communication industry, the terminal form and type are more diversified, and at present a large number of human network and Internet of Things users coexist in the network, and in the future there will be a large-scale user growth. Different attributes of users have different needs, and the required services are also different. From the perspective of operators, it is necessary to distinguish users with different attributes to realize differentiated strategy configuration.

[0003] However, the current implementation logic of AMF based on TA to establish N15 session is effective for all users accessing this AMF and entering this TA, which means that the corresponding session will also be established for the Internet of Things users who do not need to establish N15 session. With the development of a large number of Internet of Things terminals, there will be a large number of N15 sessions without actual meaning in the network, resulting in waste of network resources. SUMMARY

[0004] Therefore, it is necessary to provide a session establishment method, device, computer device, storage medium and product capable of avoiding waste of network resources in view of the above technical problems.

[0005] In a first aspect, the present application provides a session establishment method applied to an access and mobility management function (AMF) network element, and the method comprises:

[0006] In response to completing the information authentication and unified data management entity (UDM) registration process for a target user, obtaining the user location of the target user;

[0007] In the case that the user location is located in a session establishment area, judging the N15 session establishment permission of the target user according to the fifth generation mobile communication technology (5G) standard;

[0008] In the case that the target user has the N15 session establishment permission, establishing the N15 session for the target user.

[0009] In one of the embodiments, the judging the N15 session establishment permission of the target user comprises:

[0010] Obtaining the user attribute of the target user; wherein the user attribute comprises a human network user and an Internet of Things user;

[0011] According to the user attribute, judging the N15 session establishment permission of the target user.

[0012] In one of the embodiments, the N15 session establishment permission judgment on the target user according to the user attribute comprises:

[0013] In the case that the user attribute is the person network user, it is determined that the target user has the N15 session establishment permission;

[0014] In the case that the user attribute is the thing network user, it is determined that the target user does not have the N15 session establishment permission.

[0015] In one of the embodiments, the user attribute of the target user is obtained, comprising:

[0016] The feature identifier corresponding to the target user is obtained; wherein the feature identifier comprises at least one of an Instance ID and a terminal identifier;

[0017] The attribute of the feature identifier is identified to obtain the user attribute of the target user.

[0018] In one of the embodiments, the information authentication process of the target user comprises:

[0019] A service discovery request is sent to a network storage function (NRF) network element; the service discovery request is used to instruct the NRF network element to determine an authentication service function (AUSF) network element corresponding to the target user, and to perform information authentication on the target user through the AUSF network element;

[0020] A service discovery request response fed back by the NRF network element is received; wherein the service discovery request response carries an Instance ID of the AUSF network element.

[0021] In one of the embodiments, the UDM registration process of the target user comprises:

[0022] A service discovery request is sent to an NRF network element; wherein the service discovery request is used to instruct the NRF network element to determine a unified data management entity (UDM) network element corresponding to the target user;

[0023] A service discovery request response sent by the NRF network element is received; wherein the service discovery request response carries an Instance ID of the target UDM network element;

[0024] According to the Instance ID of the target UDM network element, the UDM registration of the target user is performed through the target UDM network element.

[0025] In a second aspect, the application further provides a session establishment device configured in an access and mobility management function (AMF) network element, comprising:

[0026] obtain a user location of the target user in response to completing information authentication and a unified data management entity (UDM) registration procedure for the target user;

[0027] determine whether the target user has a session establishment permission of a 5th generation mobile communication technology (5G) standard in a case that the user location is located in a session establishment area;

[0028] establish a 5G session for the target user in a case that the target user has the session establishment permission of the 5G standard.

[0029] In a third aspect, a computer device is provided. The computer device includes a memory and a processor. The memory stores a computer program. The processor implements the following steps when executing the computer program:

[0030] obtain a user location of the target user in response to completing information authentication and a unified data management entity (UDM) registration procedure for the target user;

[0031] determine whether the target user has a session establishment permission of a 5th generation mobile communication technology (5G) standard in a case that the user location is located in a session establishment area;

[0032] establish a 5G session for the target user in a case that the target user has the session establishment permission of the 5G standard.

[0033] In a fourth aspect, a computer readable storage medium is provided. The computer readable storage medium stores a computer program. The computer program is executed by a processor to implement the following steps:

[0034] obtain a user location of the target user in response to completing information authentication and a unified data management entity (UDM) registration procedure for the target user;

[0035] determine whether the target user has a session establishment permission of a 5th generation mobile communication technology (5G) standard in a case that the user location is located in a session establishment area;

[0036] establish a 5G session for the target user in a case that the target user has the session establishment permission of the 5G standard.

[0037] In a fifth aspect, a computer program product is provided. The computer program product includes a computer program. The computer program is executed by a processor to implement the following steps:

[0038] In response to completing the information authentication and unified data management entity (UDM) registration process for the target user, a user location of the target user is obtained;

[0039] In a case where the user location is located in a session establishment area, a fifth generation mobile communication technology (5G) session establishment permission of the target user is determined;

[0040] In a case where the target user has the 5G session establishment permission, a 5G session for the target user is established.

[0041] The session establishment method, device, computer device, storage medium and product provided by the embodiments of the present application, in response to completing the information authentication and unified data management entity (UDM) registration process for the target user, a user location of the target user is obtained, and then, in a case where the user location is located in a session establishment area, a fifth generation mobile communication technology (5G) session establishment permission of the target user is determined, and finally, in a case where the target user has the 5G session establishment permission, a 5G session for the target user is established. According to the above content, it can be known that in the process of establishing a session, the user location of the target user is obtained in advance, and then it is determined whether the user location is located in a session establishment area, so as to realize the preliminary determination of whether to establish a session. In a case where the user location is located in a session establishment area, a fifth generation mobile communication technology (5G) session establishment permission of the target user is determined, and then, by determining whether the target user has the 5G session establishment permission, a secondary determination of whether to establish a session is realized, so as to avoid a large number of meaningless 5G session establishments, reduce the network operation and maintenance pressure on the basis of realizing the goal of human-network differentiated experience. BRIEF DESCRIPTION OF DRAWINGS

[0042] Figure 1 An application environment diagram of a session establishment method provided by the embodiments of the present application;

[0043] Figure 2 A flowchart of a first session establishment method provided by the embodiments of the present application;

[0044] Figure 3 A flowchart of a second session establishment method provided by the embodiments of the present application;

[0045] Figure 4 A flowchart of a third session establishment method provided by the embodiments of the present application;

[0046] Figure 5 A flowchart of a fourth session establishment method provided by the embodiments of the present application;

[0047] Figure 6A flowchart of a fifth session establishment method provided for an embodiment of the present application

[0048] Figure 7 A signaling diagram of a session establishment method provided for an embodiment of the present application

[0049] Figure 8 A structural block diagram of a session establishment apparatus provided for an embodiment of the present application

[0050] Figure 9 An internal structural diagram of a computer device in an embodiment DETAILED DESCRIPTION

[0051] In order to make the purposes, technical solutions and advantages of the present application clearer, the present application is further described in detail below in combination with the drawings and embodiments. It should be understood that the specific embodiments described herein are only used to explain the present application and do not limit the present application.

[0052] With the rapid development of the communication industry, the terminal forms and types are more diversified, and at present a large number of people and things network users coexist in the network, and in the future there will be a large-scale user growth. Different attribute users have different needs, and the required services are also different. From the perspective of operators, it is necessary to distinguish different attribute users to realize differentiated policy configuration.

[0053] At present, for people network users, it is necessary to establish N15 session to realize differentiated experience operation, and the existing N15 establishment scheme is that AMF obtains special DNN signed in UDM or AMF configures regional TA, and when the user enters the region or signs a special DNN, the AMF triggers N15 session establishment, and this scheme has been piloted in many provinces, and has certain application market and prospect.

[0054] At present, the implementation logic of AMF based on TA to establish N15 session is effective for all users accessing this AMF and entering this TA, which means that the corresponding session will also be established for thing network users who do not need to establish N15 session. With the development of a large number of thing network terminals, there will be a large number of N15 sessions without actual meaning in the network, resulting in waste of network resources.

[0055] In view of the above technical problems, the session establishment method provided by the embodiments of the present application can be applied to, for example Figure 1The application environment shown. Among them, the AMF network element 102 communicates with the NRF network element 104 through the network. In response to completing the information authentication and unified data management entity UDM registration process for the target user, the AMF network element obtains the user location of the target user, and then, in the case that the user location is located in the session establishment area, judges the N15 session establishment authority of the target user according to the fifth generation mobile communication technology standard, and finally, in the case that the target user has the N15 session establishment authority, establishes the N15 session for the target user.

[0056] In one embodiment, as shown in Figure 2 , a session establishment method is provided, and the method is applied to the AMF network element 102 in Figure 1 for example, including the following steps:

[0057] S201, in response to completing the information authentication and unified data management entity UDM registration process for the target user, obtaining the user location of the target user.

[0058] In an embodiment of the present application, when it is necessary to obtain the user location of the target user, a location acquisition request can be sent to the user terminal of the target user, and a location acquisition response fed back by the terminal is received, and the location acquisition response carries the user location of the target user.

[0059] In another embodiment of the present application, if the information authentication and unified data management entity UDM registration process for the target user is completed, the user terminal of the target user will send the user location to the AMF network element at a fixed frequency, so when it is necessary to obtain the user location of the target user, the user location sent by the user terminal can also be received to realize the operation of obtaining the user location of the target user.

[0060] S202, in the case that the user location is located in the session establishment area, judging the N15 session establishment authority of the target user according to the fifth generation mobile communication technology standard.

[0061] It should be noted that before judging the N15 session establishment authority of the target user according to the fifth generation mobile communication technology standard, it can be verified whether the user location is located in the session establishment area, and then when it is determined that the user location is located in the session establishment area, the operation of judging the N15 session establishment authority of the target user according to the fifth generation mobile communication technology standard is executed; if it is determined that the user location is not located in the session establishment area, the operation of judging the N15 session establishment authority of the target user according to the fifth generation mobile communication technology standard is prohibited.

[0062] Further, when the target user needs to be judged for the N15 session establishment permission, the following operations can be included: obtaining the user attribute of the target user; and judging the target user for the N15 session establishment permission according to the user attribute.

[0063] The user attribute includes a human network user and a thing network user.

[0064] S203, in the case that the target user has the N15 session establishment permission, establishing the N15 session for the target user.

[0065] In an embodiment of the present application, in the case that the target user has the N15 session establishment permission, the AMF initiates the N15 session establishment request to the AM-PCF / PCF; the terminal identifier is carried in the N15 session establishment request; the AM-PCF initiates the N15 session establishment response to the AMF, and the terminal identifier and the session establishment result are included in the N15 session establishment response, so as to realize the operation of establishing the N15 session for the target user.

[0066] The above session establishment method, in response to completing the information authentication and the UDM registration process for the target user, obtains the user location of the target user, and then, in the case that the user location is located in the session establishment area, judges the target user for the N15 session establishment permission, and finally, in the case that the target user has the N15 session establishment permission, establishes the N15 session for the target user. According to the above content, it can be known that in the process of establishing the session, the user location of the target user is obtained in advance, and then, it is judged whether the user location is located in the session establishment area, so as to realize the preliminary judgment of whether to establish the session; and in the case that the user location is located in the session establishment area, the target user is judged for the N15 session establishment permission, and then, whether to establish the session is judged twice according to whether the target user has the N15 session establishment permission, so as to avoid a large number of meaningless N15 session establishments, reduce the network operation pressure on the basis of realizing the target of the human network differentiated experience.

[0067] In an embodiment, as shown in Figure 3 when the target user needs to be judged for the N15 session establishment permission, the following operations can be included:

[0068] S301, obtaining the user attribute of the target user.

[0069] The user attribute includes a human network user and a thing network user.

[0070] It should be noted that when the user attribute of the target user needs to be acquired, the following can be included: acquiring a feature identifier corresponding to the target user; wherein the feature identifier includes at least one of an Instance ID instance identifier and a terminal identifier; and performing attribute identification on the feature identifier to obtain the user attribute of the target user.

[0071] In an embodiment of the present application, a mapping relationship between at least one candidate identifier and a candidate attribute can be acquired in advance, and the mapping relationship records the candidate attribute corresponding to each candidate identifier respectively; therefore, after the feature identifier corresponding to the target user is determined, the feature identifier is compared with each candidate identifier to determine a reference identifier in the candidate identifiers that is the same as the feature identifier, and the candidate attribute corresponding to the reference identifier in the mapping relationship is taken as the user attribute.

[0072] In another embodiment of the present application, if the feature identifier includes attribute fields, different attribute fields correspond to different user attributes of the target user, and therefore, after the feature identifier corresponding to the target user is acquired, the attribute fields included in the feature identifier are extracted, and the user attribute of the target user is determined according to the extracted attribute fields.

[0073] S302, judging the N15 session establishment permission of the target user according to the user attribute.

[0074] It should be noted that when the N15 session establishment permission of the target user needs to be judged according to the user attribute, the following can be included: in the case that the user attribute is a human network user, it is determined that the target user has the N15 session establishment permission; and in the case that the user attribute is a thing network user, it is determined that the target user does not have the N15 session establishment permission.

[0075] The above session establishment method realizes the judgment of the N15 session establishment permission of the target user according to the user attribute by determining the user attribute, ensures that the N15 session for the target user can be successfully established in the case that the target user has the N15 session establishment permission, avoids a large number of meaningless N15 session establishments, and reduces the network operation and maintenance pressure on the basis of realizing the goal of human network differentiation experience.

[0076] In an embodiment, as shown in FIG. 6, the information authentication process of the target user can include the following contents: Figure 4

[0077] S401, sending a service discovery request to a network storage function (NRF) network element.

[0078] The service discovery request is used to instruct the NRF network element to determine an authentication service function (AUSF) network element corresponding to the target user, and perform information authentication on the target user through the AUSF network element. ​

[0079] In an embodiment of the present application, when it is required for the NRF network element to determine the user attribute of the target user according to the terminal identifier of the target user, and then, to call the AUSF network element corresponding to the human network user, or the AUSF network element corresponding to the thing network user, to perform information authentication on the target user.

[0080] S402, receiving the service discovery request response fed back by the NRF network element.

[0081] The service discovery request response carries the Instance ID of the AUSF network element.

[0082] Further, the service discovery request response can also carry the information authentication result sent by the AUSF network element to the NRF network element.

[0083] The above session establishment method realizes the information authentication operation on the target user by sending the service discovery request to the network storage function NRF network element, and ensures the smooth progress of the subsequent session establishment process.

[0084] In an embodiment, as shown in the following table, the UDM registration process of the target user can include the following contents: Figure 5

[0085] S501, sending a service discovery request to the NRF network element.

[0086] The service discovery request is used to instruct the NRF network element to determine the unified data management entity UDM network element corresponding to the target user.

[0087] S502, receiving the service discovery request response sent by the NRF network element.

[0088] The service discovery request response carries the Instance ID of the target UDM network element

[0089] In an embodiment of the present application, the NRF network element determines the user attribute of the target user according to the terminal identifier of the target user, and then, calls the Instance ID of the UDM network element corresponding to the human network user, or the Instance ID of the UDM network element corresponding to the thing network user.

[0090] S503, performing UDM registration on the target user through the target UDM network element according to the Instance ID of the target UDM network element.

[0091] The above session establishment method ensures the smooth progress of the subsequent session establishment process by performing the UDM registration process operation on the target user.

[0092] In an embodiment, as shown in the following table, the UDM registration process of the target user can include the following contents: Figure 6 ​As shown, when it is needed to establish the N15 session for the target user, the following can be included:

[0093] S601, in response to completing the information authentication and unified data management entity UDM registration process for the target user, obtaining the user location of the target user.

[0094] S602, in the case where the user location is located in the session establishment area, obtaining the feature identifier corresponding to the target user; wherein the feature identifier includes at least one of the Instance ID instance identifier and the terminal identifier.

[0095] S603, attribute recognition is performed on the feature identifier to obtain the user attribute of the target user.

[0096] S604, in the case where the user attribute is a human network user, it is determined that the target user has the N15 session establishment permission.

[0097] S605, in the case where the target user has the N15 session establishment permission, the N15 session for the target user is established.

[0098] In an embodiment, as Figure 7As shown, 1. The terminal of the target user is online and initiates an initial registration request to the (R)AN, including terminal identification and the like. 2. The (R)AN discovers the AMF and completes the corresponding registration request sending process. 3. The AMF sends a discovery AUSF request to the NRF to implement user authentication, including terminal identification and the like. 4. The NRF identifies whether the user is a human network or a thing network through the terminal identification, and finds the corresponding Instance ID of the AUSF and replies to the AMF through the discovery AUSF request. 5. The AMF completes the authentication corresponding process according to the above reply to the corresponding AUSF. 6. The AMF sends a discovery UDM request to the NRF to implement user authentication, including terminal identification and the like. 7. The NRF identifies whether the user is a human network or a thing network through the terminal identification, and finds the corresponding Instance ID of the UDM and replies to the AMF through the discovery UDM request. 8. The AMF completes the registration, subscription data and the like corresponding process according to the above reply to the corresponding UDM. 9. The AMF initiates a registration request reply to the terminal through the (R)AN, including the registration result. 10. The AMF judges whether it is in the N15 session establishment area according to the real-time location reported by the user, if so, further judges the user type, otherwise, confirms not to establish the N15 session. 11. The AMF has the ability to identify the user attribute, and can be configured to identify the user attribute according to the user number or Instance ID, when the user attribute is judged as a human network user, the subsequent step is performed, when the user attribute is judged as a thing network user, it is confirmed that the N15 session is not established. 12. The AMF initiates an N15 session establishment request to the AM-PCF / PCF, including terminal identification and the like. 13. The AM-PCF initiates an N15 session establishment request reply to the AMF, including terminal identification, session establishment result and the like.

[0099] According to the above content, it can be known that in the process of establishing the session, the user location of the target user is acquired in advance, and then it is judged whether the user location is in the session establishment area, so as to realize the preliminary judgment of whether to establish the session. In the case that the user location is in the session establishment area, the N15 session establishment permission of the target user is judged, and then whether to establish the session is judged according to whether the target user has the N15 session establishment permission, so as to avoid a large number of meaningless N15 session establishment, and reduce the network operation and maintenance pressure on the basis of realizing the target of human network differentiation experience.

[0100] It should be understood that although each step in the flowchart involved in the above embodiments is shown in sequence according to the arrow, the steps are not necessarily executed in the order indicated by the arrow. Unless otherwise specified herein, the execution of the steps is not strictly limited in sequence, and the steps can be executed in other orders. Moreover, at least part of the steps in the flowchart involved in the above embodiments can include multiple steps or multiple stages, which are not necessarily executed at the same time, but can be executed at different times, and the execution order of the steps or stages is not necessarily sequential, but can be alternately executed with at least part of other steps or steps or stages in other steps.

[0101] Based on the same inventive concept, the embodiments of the present application also provide a session establishment apparatus for implementing the above-mentioned session establishment method. The implementation scheme for solving the problem provided by the apparatus is similar to the implementation scheme described in the above method, so the specific limitations in one or more session establishment apparatus embodiments provided below can refer to the limitations of the session establishment method in the above text, which will not be repeated here.

[0102] In one embodiment, as shown in Figure 8 A session establishment apparatus is provided, comprising: an acquisition module 10, a judgment module 20 and an establishment module 30, wherein:

[0103] The acquisition module 10 is configured to acquire the user location of the target user in response to completing the information authentication and UDM registration process for the target user.

[0104] The judgment module 20 is configured to perform the N15 session establishment permission judgment for the target user when the user location is located in the session establishment area.

[0105] The establishment module 30 is configured to establish the N15 session for the target user when the target user has the N15 session establishment permission.

[0106] In one embodiment, the user attribute of the target user is acquired; wherein the user attribute includes a human network user and a thing network user;

[0107] The N15 session establishment permission judgment is performed for the target user according to the user attribute.

[0108] In one embodiment, when the user attribute is a human network user, it is determined that the target user has the N5 session establishment permission;

[0109] When the user attribute is a thing network user, it is determined that the target user does not have the N5 session establishment permission.

[0110] In one embodiment, a feature identifier corresponding to the target user is obtained; wherein, the feature identifier includes at least one of InstanceID and terminal identifier;

[0111] By performing attribute recognition on the feature identifiers, the user attributes of the target user can be obtained.

[0112] In one embodiment, a service discovery request is sent to a network storage function (NRF) network element; the service discovery request is used to instruct the NRF network element to determine the authentication service function (AUSF) network element corresponding to the target user, and to perform information authentication on the target user through the AUSF network element.

[0113] Receive a service discovery request response from an NRF network element; wherein the service discovery request response carries the Instance ID of the AUSF network element.

[0114] In one embodiment, a service discovery request is sent to an NRF network element; wherein the service discovery request is used to instruct the NRF network element to determine the unified data management entity (UDM) network element corresponding to the target user;

[0115] Receive the service discovery request response sent by the NRF network element; wherein the service discovery request response carries the Instance ID of the target UDM network element;

[0116] Based on the Instance ID of the target UDM network element, UDM registration for the target user is performed through the target UDM network element.

[0117] The aforementioned session establishment device, in response to completing the information authentication and Unified Data Management Entity (UDM) registration process for the target user, obtains the target user's location. Then, if the user's location is within the session establishment area, it performs a N15 session establishment permission check on the target user. Finally, if the target user has N15 session establishment permission, it establishes an N15 session for the target user. As can be seen from the above, this application, during the session establishment process, pre-obtains the target user's location and determines whether the user's location is within the session establishment area to achieve a preliminary judgment on whether to establish a session. Furthermore, if the user's location is within the session establishment area, it performs a N15 session establishment permission check on the target user. By determining whether the target user has N15 session establishment permission, a secondary judgment on whether to establish a session is achieved, thereby avoiding a large number of meaningless N15 session establishments. This reduces network operation and maintenance pressure while achieving the goal of differentiated human-network experience.

[0118] Each module in the aforementioned session establishment device can be implemented entirely or partially through software, hardware, or a combination thereof. These modules can be embedded in or independent of the processor in a computer device, or stored in the memory of a computer device as software, so that the processor can invoke and execute the operations corresponding to each module.

[0119] In one embodiment, a computer device is provided, which may be a terminal, and its internal structure diagram may be as follows: Figure 9 As shown, the computer device includes a processor, memory, input / output interfaces, a communication interface, a display unit, and an input device. The processor, memory, and input / output interfaces are connected via a system bus, and the communication interface, display unit, and input device are also connected to the system bus via the input / output interfaces. The processor provides computing and control capabilities. The memory includes non-volatile storage media and internal memory. The non-volatile storage media stores the operating system and computer programs. The internal memory provides an environment for the operation of the operating system and computer programs stored in the non-volatile storage media. The input / output interfaces are used for exchanging information between the processor and external devices. The communication interface is used for wired or wireless communication with external terminals; wireless communication can be achieved through Wi-Fi, mobile cellular networks, NFC (Near Field Communication), or other technologies. When the computer program is executed by the processor, it implements a session establishment method. The display unit is used to form a visually visible image and can be a display screen, a projection device, or a virtual reality imaging device. The display screen can be an LCD screen or an e-ink screen. The input device of the computer device can be a touch layer covering the display screen, or buttons, trackballs, or touchpads set on the casing of the computer device, or external keyboards, touchpads, or mice, etc.

[0120] Those skilled in the art will understand that Figure 9 The structure shown is merely a block diagram of a portion of the structure related to the present application and does not constitute a limitation on the computer device to which the present application is applied. Specific computer devices may include more or fewer components than those shown in the figure, or combine certain components, or have different component arrangements.

[0121] In one embodiment, a computer device is provided, including a memory and a processor, wherein the memory stores a computer program, and the processor executes the computer program to perform the following steps:

[0122] In response to the completion of the information authentication and unified data management entity (UDM) registration process for the target user, the user's location is obtained;

[0123] When the user's location is within the session establishment area, perform a session establishment permission determination based on the N15 standard of fifth-generation mobile communication technology on the target user.

[0124] If the target user has N15 session creation permissions, establish an N15 session for the target user.

[0125] In one embodiment, the processor, when executing a computer program, also performs the following steps:

[0126] Obtain the user attributes of the target users; among which, user attributes include human network users and Internet of Things users;

[0127] Based on user attributes, establish access control for the target user's N15 conversation.

[0128] In one embodiment, the processor, when executing a computer program, also performs the following steps:

[0129] Given that the user's attributes are human network users, it is determined that the target user has N15 session establishment permissions;

[0130] If the user attribute is IoT user, it is determined that the target user does not have N15 session establishment permission.

[0131] In one embodiment, the processor, when executing a computer program, also performs the following steps:

[0132] Obtain the feature identifier corresponding to the target user; wherein, the feature identifier includes at least one of Instance ID and terminal identifier;

[0133] By performing attribute recognition on the feature identifiers, the user attributes of the target user can be obtained.

[0134] In one embodiment, the processor, when executing a computer program, also performs the following steps:

[0135] Send a service discovery request to the Network Storage Function (NRF) network element; the service discovery request is used to instruct the NRF network element to determine the authentication service function (AUSF) network element corresponding to the target user, and to perform information authentication on the target user through the AUSF network element;

[0136] Receive a service discovery request response from an NRF network element; wherein the service discovery request response carries the Instance ID of the AUSF network element.

[0137] In one embodiment, the processor, when executing a computer program, also performs the following steps:

[0138] Send a service discovery request to the NRF network element; wherein the service discovery request is used to instruct the NRF network element to determine the unified data management entity (UDM) network element corresponding to the target user;

[0139] Receive the service discovery request response sent by the NRF network element; wherein the service discovery request response carries the Instance ID of the target UDM network element;

[0140] Based on the Instance ID of the target UDM network element, UDM registration for the target user is performed through the target UDM network element.

[0141] In one embodiment, a computer-readable storage medium is provided having a computer program stored thereon, the computer program performing the following steps when executed by a processor:

[0142] In response to the completion of the information authentication and unified data management entity (UDM) registration process for the target user, the user's location is obtained;

[0143] When the user's location is within the session establishment area, perform a session establishment permission determination based on the N15 standard of fifth-generation mobile communication technology on the target user.

[0144] If the target user has N15 session creation permissions, establish an N15 session for the target user.

[0145] In one embodiment, when the computer program is executed by a processor, it also performs the following steps:

[0146] Obtain the user attributes of the target users; among which, user attributes include human network users and Internet of Things users;

[0147] Based on user attributes, establish access control for the target user's N15 conversation.

[0148] In one embodiment, when the computer program is executed by a processor, it also performs the following steps:

[0149] Given that the user's attributes are human network users, it is determined that the target user has N15 session establishment permissions;

[0150] If the user attribute is IoT user, it is determined that the target user does not have N15 session establishment permission.

[0151] In one embodiment, when the computer program is executed by a processor, it also performs the following steps:

[0152] Obtain the feature identifier corresponding to the target user; wherein, the feature identifier includes at least one of Instance ID and terminal identifier;

[0153] By performing attribute recognition on the feature identifiers, the user attributes of the target user can be obtained.

[0154] In one embodiment, when the computer program is executed by a processor, it also performs the following steps:

[0155] Send a service discovery request to the Network Storage Function (NRF) network element; the service discovery request is used to instruct the NRF network element to determine the authentication service function (AUSF) network element corresponding to the target user, and to perform information authentication on the target user through the AUSF network element;

[0156] Receive a service discovery request response from an NRF network element; wherein the service discovery request response carries the Instance ID of the AUSF network element.

[0157] In one embodiment, when the computer program is executed by a processor, it also performs the following steps:

[0158] Send a service discovery request to the NRF network element; wherein the service discovery request is used to instruct the NRF network element to determine the unified data management entity (UDM) network element corresponding to the target user;

[0159] Receive the service discovery request response sent by the NRF network element; wherein the service discovery request response carries the Instance ID of the target UDM network element;

[0160] Based on the Instance ID of the target UDM network element, UDM registration for the target user is performed through the target UDM network element.

[0161] In one embodiment, a computer program product is provided, including a computer program that, when executed by a processor, performs the following steps:

[0162] In response to the completion of the information authentication and unified data management entity (UDM) registration process for the target user, the user's location is obtained;

[0163] When the user's location is within the session establishment area, perform a session establishment permission determination based on the N15 standard of fifth-generation mobile communication technology on the target user.

[0164] If the target user has N15 session creation permissions, establish an N15 session for the target user.

[0165] In one embodiment, when the computer program is executed by a processor, it also performs the following steps:

[0166] Obtain the user attributes of the target users; among which, user attributes include human network users and Internet of Things users;

[0167] Based on user attributes, establish access control for the target user's N15 conversation.

[0168] In one embodiment, when the computer program is executed by a processor, it also performs the following steps:

[0169] Given that the user's attributes are human network users, it is determined that the target user has N15 session establishment permissions;

[0170] If the user attribute is IoT user, it is determined that the target user does not have N15 session establishment permission.

[0171] In one embodiment, when the computer program is executed by a processor, it also performs the following steps:

[0172] Obtain the feature identifier corresponding to the target user; wherein, the feature identifier includes at least one of Instance ID and terminal identifier;

[0173] By performing attribute recognition on the feature identifiers, the user attributes of the target user can be obtained.

[0174] In one embodiment, when the computer program is executed by a processor, it also performs the following steps:

[0175] Send a service discovery request to the Network Storage Function (NRF) network element; the service discovery request is used to instruct the NRF network element to determine the authentication service function (AUSF) network element corresponding to the target user, and to perform information authentication on the target user through the AUSF network element;

[0176] Receive a service discovery request response from an NRF network element; wherein the service discovery request response carries the Instance ID of the AUSF network element.

[0177] In one embodiment, when the computer program is executed by a processor, it also performs the following steps:

[0178] Send a service discovery request to the NRF network element; wherein the service discovery request is used to instruct the NRF network element to determine the unified data management entity (UDM) network element corresponding to the target user;

[0179] Receive the service discovery request response sent by the NRF network element; wherein the service discovery request response carries the Instance ID of the target UDM network element;

[0180] Based on the Instance ID of the target UDM network element, UDM registration for the target user is performed through the target UDM network element.

[0181] It should be noted that the user information (including but not limited to user device information, user personal information, etc.) and data (including but not limited to data used for analysis, data stored, data displayed, etc.) involved in this application are all information and data authorized by the user or fully authorized by all parties, and the collection, use and processing of related data must comply with the relevant laws, regulations and standards of the relevant countries and regions.

[0182] Those skilled in the art will understand that all or part of the processes in the methods of the above embodiments can be implemented by a computer program instructing related hardware. The computer program can be stored in a non-volatile computer-readable storage medium. When executed, the computer program can include the processes of the embodiments of the above methods. Any references to memory, databases, or other media used in the embodiments provided in this application can include at least one of non-volatile and volatile memory. Non-volatile memory can include read-only memory (ROM), magnetic tape, floppy disk, flash memory, optical memory, high-density embedded non-volatile memory, resistive random access memory (ReRAM), magnetic random access memory (MRAM), ferroelectric random access memory (FRAM), phase change memory (PCM), graphene memory, etc. Volatile memory can include random access memory (RAM) or external cache memory, etc. By way of illustration and not limitation, RAM can take many forms, such as Static Random Access Memory (SRAM) or Dynamic Random Access Memory (DRAM). The databases involved in the embodiments provided in this application may include at least one type of relational database and non-relational database. Non-relational databases may include, but are not limited to, blockchain-based distributed databases. The processors involved in the embodiments provided in this application may be general-purpose processors, central processing units, graphics processing units, digital signal processors, programmable logic devices, quantum computing-based data processing logic devices, etc., and are not limited to these.

[0183] The technical features of the above embodiments can be combined in any way. For the sake of brevity, not all possible combinations of the technical features in the above embodiments are described. However, as long as there is no contradiction in the combination of these technical features, they should be considered to be within the scope of this specification.

[0184] The above embodiments are merely illustrative of several implementation methods of this application, and their descriptions are relatively specific and detailed. However, they should not be construed as limiting the scope of this application. It should be noted that those skilled in the art can make various modifications and improvements without departing from the concept of this application, and these all fall within the protection scope of this application. Therefore, the protection scope of this application should be determined by the appended claims.

Claims

1. A session establishment method, characterized in that, Applied to Access and Mobility Management (AMF) network elements, the method includes: In response to completing the information authentication and unified data management entity (UDM) registration process for the target user, the user location of the target user is obtained; If the user's location is within the session establishment area, the target user will be subject to a session establishment permission determination based on the N15 standard of fifth-generation mobile communication technology. If the target user has N15 session establishment permission, an N15 session is established for the target user.

2. The method according to claim 1, characterized in that, The step of performing N15 session establishment permission determination on the target user includes: Obtain the user attributes of the target user; wherein, the user attributes include human network users and Internet of Things users; Based on the user attributes, a meeting permission determination is performed on the target user.

3. The method according to claim 2, characterized in that, The step of performing N15 session establishment permission determination on the target user based on the user attributes includes: If the user attribute is that of the human network user, it is determined that the target user has N15 session establishment permission; If the user attribute is that of the IoT user, it is determined that the target user does not have N15 session establishment permission.

4. The method according to claim 2, characterized in that, The process of obtaining the user attributes of the target user includes: Obtain the feature identifier corresponding to the target user; wherein, the feature identifier includes at least one of Instance ID and terminal identifier; The user attributes of the target user are obtained by performing attribute recognition on the feature identifier.

5. The method according to any one of claims 1-4, characterized in that, The information authentication process for the target user includes: Send a service discovery request to the Network Storage Function (NRF) network element; the service discovery request is used to instruct the NRF network element to determine the Authentication Service Function (AUSF) network element corresponding to the target user, and to perform information authentication on the target user through the AUSF network element; Receive a service discovery request response from an NRF network element; wherein the service discovery request response carries the Instance ID of the AUSF network element.

6. The method according to any one of claims 1-4, characterized in that, The UDM registration process for the target user includes: Send a service discovery request to the NRF network element; wherein the service discovery request is used to instruct the NRF network element to determine the unified data management entity (UDM) network element corresponding to the target user; Receive the service discovery request response sent by the NRF network element; wherein the service discovery request response carries the Instance ID of the target UDM network element; Based on the Instance ID of the target UDM network element, UDM registration for the target user is performed through the target UDM network element.

7. A session establishment apparatus, characterized in that, The device, configured in an Access and Mobility Management (AMF) network element, includes: The acquisition module is used to acquire the user location of the target user in response to the completion of the information authentication and unified data management entity (UDM) registration process for the target user; The judgment module is used to determine the N15 session establishment permission of the target user when the user's location is within the session establishment area. The module is used to establish an N15 session for the target user if the target user has N15 session establishment permissions.

8. A computer device comprising a memory and a processor, wherein the memory stores a computer program, characterized in that, When the processor executes the computer program, it implements the steps of the method according to any one of claims 1 to 6.

9. A computer-readable storage medium having a computer program stored thereon, characterized in that, When the computer program is executed by a processor, it implements the steps of the method according to any one of claims 1 to 6.

10. A computer program product, comprising a computer program, characterized in that, When the computer program is executed by a processor, it implements the steps of the method according to any one of claims 1 to 6.