Method and apparatus for protecting supi against quantum computing threat

The method generates a Subscription Concealed Identifier (SUCI) by encrypting a random number and a Subscription Permanent Identifier (SUPI) with a network public key, effectively protecting terminal identification information from quantum computing threats in wireless communication systems.

WO2025105789A1PCT designated stage expired Publication Date: 2025-05-22SAMSUNG ELECTRONICS CO LTD
View PDF 3 Cites 0 Cited by

Patent Information

Application Number
PCT/KR2024/017730
Authority / Receiving Office
WO · WO
Patent Type
Applications
Current Assignee / Owner
Priority Date
2023-11-14
Filing Date
2024-11-11
Publication Date
2025-05-22

AI Technical Summary

Technical Problem

In wireless communication systems, particularly in 5G and beyond, there is a need for enhanced security measures to protect terminal identification information from quantum computing threats, as existing security technologies may not be sufficient against quantum computing attacks.

Method used

The method involves generating a Subscription Concealed Identifier (SUCI) by encrypting a value including a random number and a Subscription Permanent Identifier (SUPI) based on a network public key, and transmitting a message containing the SUCI to a network entity. This process ensures that the SUPI is protected from unauthorized access.

Benefits of technology

This solution effectively protects terminal identification information from quantum computing threats by utilizing advanced encryption techniques, ensuring the confidentiality and integrity of the SUPI during transmission in wireless communication systems.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure KR2024017730_22052025_PF_FP_ABST
    Figure KR2024017730_22052025_PF_FP_ABST
Patent Text Reader

Abstract

The present disclosure relates to a 4G, 5G, or 6G communication system for supporting a higher data transfer rate.
Need to check novelty before this filing date? Find Prior Art

Description

SUPI protection method and device for quantum computing threats

[0001] The present disclosure relates to a method and device for safely protecting information from a security perspective when a terminal transmits its identification information to a network in a wireless communication system.

[0002] 5G mobile communication technology defines a wide frequency band to enable fast transmission speeds and new services, and can be implemented not only in the sub-6GHz frequency band such as 3.5 gigahertz (3.5GHz), but also in the ultra-high frequency band called millimeter wave (mmWave) such as 28GHz and 39GHz ('Above 6GHz'). In addition, for 6G mobile communication technology, which is called the system after 5G communication (Beyond 5G), implementation in the terahertz (THz) band (for example, 3 THz band at 95GHz) is being considered to achieve a transmission speed that is 50 times faster than 5G mobile communication technology and an ultra-low latency time that is reduced to one-tenth.

[0003] In the early stages of 5G mobile communication technology, the goal is to support services and satisfy performance requirements for enhanced Mobile Broadband (eMBB), Ultra-Reliable Low-Latency Communications (URLLC), and massive Machine-Type Communications (mMTC). These include beamforming and massive MIMO to mitigate path loss of radio waves in ultra-high frequency bands and increase the transmission distance of radio waves, support for various numerologies (such as operation of multiple subcarrier intervals) and dynamic operation of slot formats for efficient use of ultra-high frequency resources, initial access technology to support multi-beam transmission and wideband, definition and operation of BWP (Bidth Part), new channel coding methods such as LDPC (Low Density Parity Check) codes for large-capacity data transmission and Polar Code for reliable transmission of control information, and L2 pre-processing (L2). Standardization has been made for network slicing, which provides dedicated networks specialized for specific services, and pre-processing.

[0004] Currently, discussions are underway to improve and enhance the initial 5G mobile communication technology in consideration of the services that 5G mobile communication technology was intended to support, and physical layer standardization is in progress for technologies such as V2X (Vehicle-to-Everything) to help autonomous vehicles make driving decisions and increase user convenience based on their own location and status information transmitted by vehicles, NR-U (New Radio Unlicensed) for the purpose of system operation that complies with various regulatory requirements in unlicensed bands, NR terminal low power consumption technology (UE Power Saving), Non-Terrestrial Network (NTN), which is direct terminal-satellite communication to secure coverage in areas where communication with terrestrial networks is impossible, and Positioning.

[0005] In addition, standardization of wireless interface architecture / protocols is in progress for technologies such as intelligent factories (Industrial Internet of Things, IIoT) to support new services through linkage and convergence with other industries, Integrated Access and Backhaul (IAB) that provides nodes for expanding network service areas by integrating wireless backhaul links and access links, Mobility Enhancement technology including Conditional Handover and Dual Active Protocol Stack (DAPS) handover, and 2-step random access (2-step RACH for NR) that simplifies random access procedures. Standardization is also in progress for system architecture / services such as 5G baseline architecture (e.g., Service-based Architecture, Service-based Interface) for grafting Network Functions Virtualization (NFV) and Software-Defined Networking (SDN) technologies, and Mobile Edge Computing (MEC) that provides services based on the location of the terminal.

[0006] Once these 5G mobile communication systems are commercialized, an explosive increase in connected devices will be connected to the communication network, necessitating enhanced functionality and performance of 5G mobile communication systems and integrated operation of these connected devices. To this end, new research will be conducted on improving 5G performance and reducing complexity, supporting AI services, supporting metaverse services, and drone communications by utilizing eXtended Reality (XR), Artificial Intelligence (AI), and Machine Learning (ML) to efficiently support Augmented Reality (AR), Virtual Reality (VR), and Mixed Reality (MR).

[0007] In addition, the development of these 5G mobile communication systems includes new waveforms to ensure coverage in the terahertz band of 6G mobile communication technology, multi-antenna transmission technologies such as Full Dimensional MIMO (FD-MIMO), Array Antenna, and Large Scale Antenna, metamaterial-based lenses and antennas to improve the coverage of terahertz band signals, high-dimensional spatial multiplexing technology using Orbital Angular Momentum (OAM), Reconfigurable Intelligent Surface (RIS) technology, as well as full duplex technology to improve the frequency efficiency and system network of 6G mobile communication technology, satellite, AI (Artificial Intelligence) from the design stage and AI-based communication technology that realizes system optimization by internalizing end-to-end AI support functions, and ultra-high-performance communication and computing resources to provide services with complexity that exceeds the limits of terminal computing capabilities. It can serve as a basis for the development of next-generation distributed computing technologies that can be realized by utilizing them.

[0008] Based on the above discussion, the present disclosure seeks to address the following issues. In wireless communication systems, terminals must transmit their identification information to the network, and this information must be securely protected, taking into account security issues. In quantum computing, which is provided by quantum computers in wireless communication systems, new protection methods against quantum computing threats may be needed to effectively protect this information using existing security technologies.

[0009] The technical problems to be achieved in the present invention are not limited to the technical problems mentioned above, and other technical problems not mentioned can be clearly understood by a person having ordinary skill in the technical field to which the present invention belongs from the description below.

[0010] Based on the discussion as described above, the present disclosure is characterized by a method performed by a terminal of a communication system, comprising the steps of: generating a subscription concealed identifier (SUCI) by encrypting a value including a random number and a subscription permanent identifier (SUPI) based on a network public key; and transmitting a message including the SUCI to a network entity.

[0011] In addition, the message includes information related to the random number, and the information related to the random number is characterized in that it identifies whether an error occurs during the decryption process for the SUCI.

[0012] In addition, the information related to the random number is characterized by including all or part of the random number.

[0013] In addition, the method includes receiving the network public key from the network entity, wherein the network entity includes at least one of a base station, a user data management (UDM), or an access and mobility management function (AMF).

[0014] According to one embodiment of the present disclosure, a method performed by a network entity of a communication system comprises the steps of: receiving a message including a subscription concealed identifier (SUCI) from a terminal; decrypting the SUCI based on a network secret key; and obtaining a random number generated by the terminal and a subscription permanent identifier (SUPI), wherein the SUCI is characterized in that a value including the random number and the SUPI is encrypted based on a network public key.

[0015] A terminal of a communication system comprises: a transceiver; and a control unit connected to the transceiver, encrypting a value including a random number and a SUPI (subscription permanent identifier) ​​based on a network public key to generate a SUCI (subscription concealed identifier), and transmitting a message including the SUCI to a network entity.

[0016] According to one embodiment of the present disclosure, a network entity of a communication system comprises: a transceiver; and a control unit connected to the transceiver, receiving a message including a subscription concealed identifier (SUCI) from a terminal, decrypting the SUCI based on a network secret key, and obtaining a random number generated by the terminal and a subscription permanent identifier (SUPI), wherein the SUCI is characterized in that a value including the random number and the SUPI is encrypted based on a network public key.

[0017] According to one embodiment of the present disclosure, protection of terminal identification information can be effectively provided in quantum computing provided by a quantum computer.

[0018] The effects that can be obtained from the present disclosure are not limited to the effects mentioned in the various embodiments, and other effects that are not mentioned can be clearly understood by a person having ordinary skill in the art to which the present disclosure belongs from the description below.

[0019] FIG. 1A illustrates a communication network including core network entities in a wireless communication system according to various embodiments of the present disclosure.

[0020] FIG. 1b illustrates a wireless environment including a core network in a wireless communication system according to various embodiments of the present disclosure.

[0021] FIG. 2a illustrates an example of a functional structure of a terminal according to embodiments of the present disclosure.

[0022] FIG. 2b illustrates an example of a functional structure of a base station according to embodiments of the present disclosure.

[0023] FIG. 2c illustrates an example of a functional structure of a core network object according to embodiments of the present disclosure.

[0024] FIG. 3 is a diagram illustrating a process in which a terminal securely transmits its identification information to a network according to an embodiment of the present disclosure.

[0025] FIG. 4 is a diagram illustrating another process in which a terminal securely transmits its identification information to a network according to an embodiment of the present disclosure.

[0026] FIG. 5 is a diagram illustrating another process in which a terminal securely transmits its identification information to a network according to an embodiment of the present disclosure.

[0027] The terms used in this disclosure are used only to describe specific embodiments and may not be intended to limit the scope of other embodiments. The singular expression may include the plural expression unless the context clearly indicates otherwise. Terms used herein, including technical or scientific terms, may have the same meaning as commonly understood by those of ordinary skill in the art described in this disclosure. Terms defined in general dictionaries among the terms used in this disclosure may be interpreted as having the same or similar meaning in the context of the related technology, and shall not be interpreted in an idealized or overly formal sense unless explicitly defined in this disclosure. In some cases, even if a term is defined in this disclosure, it cannot be interpreted to exclude embodiments of the present disclosure.

[0028] The various embodiments of the present disclosure described below illustrate a hardware-based approach as an example. However, since the various embodiments of the present disclosure include techniques utilizing both hardware and software, the various embodiments of the present disclosure do not exclude a software-based approach.

[0029] 3GPP, responsible for cellular mobile communications standards, is standardizing a new core network architecture, dubbed 5G core (5GC), to facilitate the evolution of existing 4G LTE systems into 5G systems. Compared to the evolved packet core (EPC), the network core for existing 4G systems, 5GC supports the following differentiated features:

[0030] First, 5GC introduces network slicing. As a 5G requirement, 5GC must support various terminal types and services (e.g., eMBB, URLLC, or mMTC services). Each type of service has different requirements for the core network. For example, eMBB services require high data rates, while URLLC services require high reliability and low latency. One technology proposed to meet these diverse service requirements is network slicing.

[0031] Network slicing virtualizes a single physical network to create multiple logical networks. Each network slice instance (NSI) can have different characteristics. Therefore, each NSI can satisfy diverse service requirements by possessing a network function (NF) tailored to its characteristics. If each terminal is assigned an NSI that matches the characteristics of the service it requires, multiple 5G services can be efficiently supported.

[0032] Second, 5GC can facilitate support for the network virtualization paradigm by separating mobility management and session management functions. In 4G LTE (long term evolution), services were provided through signaling exchanges with a single core device called the mobility management entity (MME), which was responsible for registration, authentication, mobility management, and session management for all terminals. However, in 5G, the number of terminals increases explosively, and the mobility and traffic / session characteristics that must be supported for each terminal type become more specialized. Therefore, supporting all functions with a single device like the MME inevitably reduces scalability by adding entities for each required function. Therefore, various functions are being developed based on a structure that separates mobility management and session management functions to improve scalability in terms of functional / implementation complexity and signaling load of the core device responsible for the control plane.

[0033] Hereinafter, various embodiments will be described in detail with reference to the attached drawings. Furthermore, when describing embodiments of the present disclosure, detailed descriptions of related known functions or configurations will be omitted if they are deemed to unnecessarily obscure the gist of the embodiments. Furthermore, the terms described below are defined based on their functions in the embodiments, and may vary depending on the intent or custom of the user or operator. Therefore, their definitions should be based on the contents throughout this specification.

[0034] For the same reason, some components in the attached drawings are exaggerated, omitted, or schematically depicted. Furthermore, the dimensions of each component do not entirely reflect its actual size. Identical or corresponding components in each drawing are assigned the same reference numbers.

[0035] The advantages and features of the present disclosure, and methods for achieving them, will become clearer with reference to the embodiments described below in detail together with the accompanying drawings. However, the present disclosure is not limited to the embodiments disclosed below and may be implemented in various different forms. These embodiments are provided solely to ensure that the present disclosure is complete and to fully inform those skilled in the art of the scope of the disclosure, and the present disclosure is defined only by the scope of the claims. Like reference numerals designate like elements throughout the specification.

[0036] At this time, it will be understood that each block of the processing flowchart drawings and combinations of the flowchart drawings can be performed by computer program instructions. These computer program instructions can be installed in a processor of a general-purpose computer, a special-purpose computer, or other programmable data processing equipment, so that the instructions executed by the processor of the computer or other programmable data processing equipment create a means for performing the functions described in the flowchart block(s). These computer program instructions can also be stored in a computer-available or computer-readable memory that can direct a computer or other programmable data processing equipment to implement the functions in a specific manner, so that the instructions stored in the computer-available or computer-readable memory can also produce a manufactured item that includes an instruction means for performing the functions described in the flowchart block(s). Since the computer program instructions may be installed on a computer or other programmable data processing device, a series of operational steps may be performed on the computer or other programmable data processing device to create a computer-executable process, and the instructions that cause the computer or other programmable data processing device to perform the steps for performing the functions described in the flowchart block(s) may also provide steps for performing the functions described in the flowchart block(s).

[0037] Additionally, each block may represent a module, segment, or portion of code that contains one or more executable instructions for performing a specific logical function(s). It should also be noted that in some alternative implementation examples, the functions described in the blocks may occur out of order. For example, two blocks depicted in succession may actually be executed substantially concurrently, or the blocks may sometimes be executed in reverse order, depending on their respective functions.

[0038] Here, the term '~ unit' used in various embodiments of the present disclosure means a software or hardware component such as an FPGA or ASIC, and the '~ unit' can perform certain roles. However, the '~ unit' is not limited to software or hardware. The '~ unit' may be configured to be on an addressable storage medium and may be configured to play one or more processors. Accordingly, as an example, the '~ unit' may include components such as software components, object-oriented software components, class components, and task components, processes, functions, properties, procedures, subroutines, segments of program code, drivers, firmware, microcode, circuits, data, databases, data structures, tables, arrays, and variables. The functions provided within the components and '~ units' may be combined into a smaller number of components and '~ units' or further separated into additional components and '~ units'. Additionally, components and '~parts' may be implemented to regenerate one or more CPUs within a device or secure multimedia card.

[0039] Hereinafter, a base station is an entity that performs resource allocation of a terminal, and may be at least one of an eNode B (eNB), a Node B, a BS (base station), a RAN (radio access network), an AN (access network), a RAN node, a NR NB, a gNB, a wireless access unit, a base station controller, or a node on a network. The terminal may include a user equipment (UE), a mobile station (MS), a cellular phone, a smartphone, a computer, or a multimedia system capable of performing a communication function. In various embodiments of the present disclosure, a case where the terminal is a UE will be described as an example. In addition, although various embodiments of the present disclosure are described below using a system based on LTE, LTE-A, or NR as an example, various embodiments of the present disclosure may be applied to other communication systems having a similar technical background or channel type. In addition, various embodiments of the present disclosure may be applied to other communication systems with some modifications within a range that does not significantly depart from the scope thereof at the discretion of a person having skilled technical knowledge.

[0040] The terms used in the following description to identify connection nodes, terms referring to network entities, terms referring to messages, terms referring to interfaces between network entities, terms referring to various identification information, etc. are provided as examples for convenience of explanation. Therefore, the present disclosure is not limited to the terms described below, and other terms referring to objects with equivalent technical meanings may be used.

[0041] Additionally, while this disclosure describes various embodiments using terminology used in certain communication standards (e.g., 3rd Generation Partnership Project (3GPP)), these are merely illustrative examples. The various embodiments of this disclosure can be easily modified and applied to other communication systems. Below, some terms used in the core network of this disclosure are predefined.

[0042] AMF access and mobility management function

[0043] CN core network

[0044] CNF containerized network function

[0045] DNN data network name

[0046] PCF policy control function

[0047] HSS home subscriber server

[0048] SMF session management function

[0049] UDM user data management

[0050] UPF user plane function

[0051] CNF containerized network function

[0052] VNF virtual network function

[0053] FIG. 1A illustrates a communication network including core network entities in a wireless communication system according to embodiments of the present disclosure. A 5G mobile communication network may be configured to include a 5G user equipment (UE) (110), a 5G radio access network (RAN) (120), and a 5G core network.

[0054] The 5G core network may be configured to include network functions such as an access and mobility management function (AMF) (150) that provides a mobility management function of UE, a session management function (SMF) (160) that provides a session management function, a user plane function (UPF) (170) that performs a data transfer role, a policy control function (PCF) (180) that provides a policy control function, a unified data management (UDM) (153) that provides a data management function such as subscriber data and policy control data, or a unified data repository (UDR) that stores data of various network functions.

[0055] Referring to FIG. 1A, a user equipment (UE) (110) may communicate with a base station (e.g., an eNB, a gNB) via a wireless channel, i.e., an access network. In some embodiments, the UE (110) may be a device used by a user and configured to provide a user interface (UI). As an example, the UE (110) may be a terminal mounted (equipment) on a vehicle for driving. In other embodiments, the UE (110) may be a device that performs machine type communication (MTC) that operates without user intervention, or may be an autonomous vehicle. UE may be referred to as a 'terminal', 'vehicle terminal', 'user equipment (UE)', 'mobile station', 'subscriber station', 'remote terminal', 'wireless terminal', or 'user device' or other terms having equivalent technical meanings, other than electronic devices. As the terminal, in addition to the UE, a customer-premises equipment (CPE) or a dongle-type terminal may be used. The CPE, while connected to the NG-RAN node like the UE, may also provide a network to other communication devices (e.g., a laptop).

[0056] Referring to FIG. 1A, the AMF (150) provides a function for connection and mobility management per terminal (110), and basically, one AMF (150) can be connected to one terminal (110). Specifically, the AMF (150) can perform at least one of signaling between core network nodes for mobility between 3GPP access networks, an interface (N2 interface) between wireless access networks (e.g., 5G RAN) (120), NAS signaling with the terminal (110), identification of the SMF (160), and provision of transmission of session management (SM) messages between the terminal (110) and the SMF (160). Some or all of the functions of the AMF (150) can be supported within a single instance of one AMF (150).

[0057] Referring to FIG. 1A, the SMF (160) provides a session management function, and when the terminal (110) has multiple sessions, each session may be managed by a different SMF (160). Specifically, the SMF (160) may perform at least one of the following functions: session management (e.g., session establishment, modification, and release, including tunnel maintenance between the UPF (170) and the access network node), selection and control of UP (user plane) functions, traffic steering setup for routing traffic to an appropriate destination in the UPF (170), termination of the SM portion of NAS messages, downlink data notification (DDN), and initiation of AN-specific SM information (e.g., delivery to the access network via the N2 interface via the AMF (150)). Some or all of the functions of the SMF (160) may be supported within a single instance of one SMF (160).

[0058] In the 3GPP system, conceptual links connecting NFs within a 5G system may be referred to as reference points. Reference points may also be referred to as interfaces. The following exemplifies reference points (hereafter, interchangeably referred to as interfaces) included in the 5G system architecture represented throughout various embodiments of the present disclosure.

[0059] - N1: Reference point between UE (110) and AMF (150)

[0060] - N2: Reference point between (R)AN(120) and AMF(150)

[0061] - N3: Reference point between (R)AN(120) and UPF(170)

[0062] - N4: Reference point between SMF (160) and UPF (170)

[0063] - N5: Reference point between PCF (180) and AF (130)

[0064] - N6: Reference point between UPF (170) and DN (140)

[0065] - N7: Reference point between SMF (160) and PCF (180)

[0066] - N8: Reference point between UDM (153) and AMF (150)

[0067] - N9: Reference point between two core UPFs (170)

[0068] - N10: Reference point between UDM (153) and SMF (160)

[0069] - N11: Reference point between AMF (150) and SMF (160)

[0070] - N12: Reference point between AMF (150) and authentication server function (AUSF) (151)

[0071] - N13: Reference point between UDM (153) and authentication server function (151)

[0072] - N14: Reference point between two AMFs (150)

[0073] - N15: For non-roaming scenarios, reference point between PCF (180) and AMF (150), for roaming scenarios, reference point between PCF (180) and AMF (150) within the visited network.

[0074] FIG. 1B illustrates a wireless environment including a core network in a wireless communication system according to embodiments of the present disclosure. Referring to FIG. 1B, the wireless communication system may include a radio access network (RAN) (120) and a core network (CN).

[0075] The wireless access network (120) is a network that is directly connected to a user device, for example, a terminal (110), and is an infrastructure that provides wireless access to the terminal (110). The wireless access network (120) includes a set of a plurality of base stations including a base station (125), and the plurality of base stations can communicate through interfaces formed between each other. At least some of the interfaces between the plurality of base stations can be wired or wireless. The base station (125) can have a structure that is divided into a central unit (CU) and a distributed unit (DU). In this case, one CU can control a plurality of DUs. The base station (125) can be referred to as an 'access point (AP)', 'next generation node B (gNB)', '5th generation node (5G node)', 'wireless point', 'transmission / reception point (TRP)', or other terms having an equivalent technical meaning thereto in addition to the base station. The terminal (110) can connect to a wireless access network (120) and communicate with a base station (125) via a wireless channel. The terminal (110) may be referred to as a 'user equipment (UE)', a 'mobile station', a 'subscriber station', a 'remote terminal', a 'wireless terminal', a 'user device', or other terms having an equivalent technical meaning.

[0076] The core network is a network that manages the entire system, controls the wireless access network (120), and can process data and control signals for terminals (110) transmitted and received through the wireless access network (120). The core network performs various functions, such as controlling the user plane and control plane, processing mobility, managing subscriber information, billing, and interworking with other types of systems (e.g., long term evolution (LTE) system). In order to perform the various functions described above, the core network may include a number of functionally separated entities having different network functions (NFs). For example, the core network (200) may include an access and mobility management function (AMF) (150), a session management function (SMF) (160), a user plane function (UPF) (170), a policy and charging function (PCF) (180), a network repository function (NRF) (159), a unified data management (UDM) (153), a network exposure function (NEF) (155), and a unified data repository (UDR) (157).

[0077] The terminal (110) can be connected to the AMF (150) that performs the mobility management function of the core network by being connected to the wireless access network (120). The AMF (150) may be a function or device that is in charge of both the connection to the wireless access network (120) and the mobility management of the terminal (110). The SMF (160) is an NF that manages sessions. The AMF (150) is connected to the SMF (160), and the AMF (150) can route session-related messages for the terminal (110) to the SMF (160). The SMF (160) is connected to the UPF (170) to allocate user plane resources to be provided to the terminal (110), and establishes a tunnel for transmitting data between the base station (125) and the UPF (170). PCF (180) can control information related to policy and charging for the session used by the terminal (110).

[0078] The NRF (159) can store information about NFs installed in a mobile communication service provider network and perform a function of notifying the stored information. The NRF (159) can be connected to all NFs. When each NF starts operating in the service provider network, it can notify the NRF (159) that the NF is operating within the network by registering with the NRF (159). The UDM (153) is an NF that performs a role similar to the HSS (home subscriber server) of a 4G network, and can store subscription information of the terminal (110) or the context used by the terminal (110) within the network.

[0079] The NEF (155) may connect a third-party server and an NF within a 5G mobile communication system. It may also provide data to, update, or acquire data from the UDR (157). The UDR (157) may store subscription information of the terminal (110), policy information, data exposed externally, or information required by a third-party application. Furthermore, the UDR (157) may also provide stored data to other NFs.

[0080] FIG. 2A illustrates an example of the functional structure of a terminal according to embodiments of the present disclosure. The configuration illustrated in FIG. 2A can be understood as the configuration of a terminal (110). Terms such as "... unit" and "... device" used hereinafter refer to a unit that processes at least one function or operation, which can be implemented using hardware, software, or a combination of hardware and software.

[0081] Referring to FIG. 2a, the terminal may include a communication unit (205), a storage unit (210), and a control unit (215).

[0082] The communication unit (205) can perform functions for transmitting and receiving signals via a wireless channel. For example, the communication unit (205) can perform a conversion function between a baseband signal and a bit stream according to the physical layer specifications of the system. For example, when transmitting data, the communication unit (205) can generate complex symbols by encoding and modulating a transmission bit stream. In addition, when receiving data, the communication unit (205) can restore a reception bit stream by demodulating and decoding the baseband signal. In addition, the communication unit (205) upconverts a baseband signal to an RF band signal and transmits it through an antenna, and downconverts an RF band signal received through the antenna to a baseband signal. For example, the communication unit (205) can include a transmission filter, a reception filter, an amplifier, a mixer, an oscillator, a DAC, an ADC, etc.

[0083] In addition, the communication unit (205) may include a plurality of transmit / receive paths. Furthermore, the communication unit (205) may include at least one antenna array composed of a plurality of antenna elements. In terms of hardware, the communication unit (205) may be composed of digital circuits and analog circuits (e.g., radio frequency integrated circuits (RFIC)). Here, the digital circuits and analog circuits may be implemented in a single package. In addition, the communication unit (205) may include a plurality of RF chains. Furthermore, the communication unit (205) may perform beamforming.

[0084] The communication unit (205) can transmit and receive signals as described above. Accordingly, all or part of the communication unit (205) may be referred to as a "transmitter," a "receiver," or a "transmitting and receiving unit." Furthermore, in the following description, transmission and reception performed via a wireless channel may be used to mean that processing as described above is performed by the communication unit (205).

[0085] The storage unit (210) can store data such as basic programs, application programs, and setting information for the operation of the terminal. The storage unit (210) can be composed of volatile memory, non-volatile memory, or a combination of volatile and non-volatile memory. In addition, the storage unit (210) can provide stored data upon request from the control unit (215).

[0086] The control unit (215) can control the overall operations of the terminal. For example, the control unit (215) can transmit and receive signals through the communication unit (205). In addition, the control unit (215) can record and read data in the storage unit (210). In addition, the control unit (215) can perform the functions of the protocol stack required by the communication standard. To this end, the control unit (215) may include at least one processor or microprocessor, or may be a part of a processor. In addition, a part of the communication unit (205) and the control unit (215) may be referred to as a CP (communication processor). According to various embodiments, the control unit (215) can control to perform synchronization using a wireless communication network. For example, the control unit (215) can control the terminal to perform operations according to various embodiments described below.

[0087] According to various embodiments of the present disclosure, a terminal may be composed of a mobile equipment (ME) and a universal mobile telecommunications service (UMTS) subscriber identity module (USIM). The ME may include a mobile terminal (MT) and terminal equipment (TE). The MT may be a part where a wireless access protocol operates, and the TE may be a part where a control function operates. For example, in the case of a wireless communication terminal (e.g., a mobile phone), the MT and the TE may be integrated, and in the case of a laptop, the MT and the TE may be separated. The present disclosure may express the ME and the USIM as distinct entities depending on the operation of each component, but is not limited thereto, and may express the ME and the USIM as a terminal (e.g., UE) including the ME, or it is of course possible to describe various embodiments of the present disclosure by expressing the ME as a terminal.

[0088] FIG. 2B illustrates an example of the functional structure of a base station according to embodiments of the present disclosure. The configuration illustrated in FIG. 2B can be understood as the configuration of a base station (120). Terms such as "... unit" and "... unit" used hereinafter refer to a unit that processes at least one function or operation, which can be implemented using hardware, software, or a combination of hardware and software.

[0089] Referring to FIG. 2b, the base station may include a wireless communication unit (235), a backhaul communication unit (220), a storage unit (225), and a control unit (230).

[0090] The wireless communication unit (235) can perform functions for transmitting and receiving signals via a wireless channel. For example, the wireless communication unit (235) can perform a conversion function between baseband signals and bit streams according to the physical layer specifications of the system. For example, when transmitting data, the wireless communication unit (235) can generate complex symbols by encoding and modulating the transmitted bit stream. Furthermore, when receiving data, the wireless communication unit (235) can restore the received bit stream by demodulating and decoding the baseband signal.

[0091] In addition, the wireless communication unit (235) can upconvert a baseband signal into an RF (radio frequency) band signal and transmit it through an antenna, and downconvert an RF band signal received through the antenna into a baseband signal. To this end, the wireless communication unit (235) can include a transmission filter, a reception filter, an amplifier, a mixer, an oscillator, a digital to analog convertor (DAC), an analog to digital convertor (ADC), etc. In addition, the wireless communication unit (235) can include a plurality of transmission and reception paths. Furthermore, the wireless communication unit (235) can include at least one antenna array composed of a plurality of antenna elements.

[0092] In terms of hardware, the wireless communication unit (235) may be composed of a digital unit and an analog unit, and the analog unit may be composed of a plurality of sub-units depending on operating power, operating frequency, etc. The digital unit may be implemented with at least one processor (e.g., a digital signal processor (DSP)).

[0093] The wireless communication unit (235) can transmit and receive signals as described above. Accordingly, all or part of the wireless communication unit (235) may be referred to as a "transmitter," a "receiver," or a "transceiver." Furthermore, in the following description, transmission and reception performed via a wireless channel may be used to mean that the wireless communication unit (235) performs the processing described above.

[0094] The backhaul communication unit (220) can provide an interface for performing communication with other nodes within the network. That is, the backhaul communication unit (220) can convert a bit string transmitted from a base station to another node, such as another access node, another base station, an upper node, a core network, etc., into a physical signal, and can convert a physical signal received from another node into a bit string.

[0095] The storage unit (225) can store data such as basic programs, application programs, and setting information for the operation of the base station. The storage unit (225) can be composed of volatile memory, non-volatile memory, or a combination of volatile and non-volatile memory. In addition, the storage unit (225) can provide stored data upon request from the control unit (230).

[0096] The control unit (230) can control the overall operations of the base station. For example, the control unit (230) can transmit and receive signals through the wireless communication unit (235) or the backhaul communication unit (220). In addition, the control unit (230) can record and read data in the storage unit (225). In addition, the control unit (230) can perform the functions of the protocol stack required by the communication standard. According to another implementation example, the protocol stack can be included in the wireless communication unit (235). For this purpose, the control unit (230) can include at least one processor. According to various embodiments, the control unit (230) can control to perform synchronization using a wireless communication network. For example, the control unit (230) can control the base station to perform operations according to various embodiments described below.

[0097] FIG. 2C illustrates an example of the functional structure of a core network object according to embodiments of the present disclosure. It may represent the configuration of a core network object in a wireless communication system according to various embodiments of the present disclosure. The configuration illustrated in FIG. 2C may be understood as a configuration of a device having the function of at least one of the network entities including the AMF (150) of FIG. 1. Terms such as "... unit" and "... device" used hereinafter mean a unit that processes at least one function or operation, and this may be implemented by hardware, software, or a combination of hardware and software.

[0098] Referring to the above drawing 2c, the core network object can be configured to include a communication unit (240), a storage unit (245), and a control unit (250).

[0099] The communication unit (240) may provide an interface for performing communication with other devices within the network. That is, the communication unit (240) may convert a bit string transmitted from a core network object to another device into a physical signal, and may convert a physical signal received from another device into a bit string. That is, the communication unit (240) may transmit and receive signals. Accordingly, the communication unit (240) may be referred to as a modem, a transmitter, a receiver, or a transceiver. In this case, the communication unit (240) may enable the core network object to communicate with other devices or systems via a backhaul connection (e.g., a wired backhaul or a wireless backhaul) or via a network.

[0100] The storage unit (245) can store data such as basic programs, application programs, and setting information for the operation of core network objects. The storage unit (245) can be composed of volatile memory, non-volatile memory, or a combination of volatile and non-volatile memory. In addition, the storage unit (245) can provide stored data upon request from the control unit (250).

[0101] The control unit (250) can control the overall operations of the core network object. For example, the control unit (250) can transmit and receive signals through the communication unit (240). In addition, the control unit (250) can record and read data in the storage unit (245). For this purpose, the control unit (250) can include at least one processor. According to various embodiments of the present disclosure, the control unit (250) can control synchronization using a wireless communication network. For example, the control unit (250) can control the core network object to perform operations according to various embodiments described below.

[0102] The terms used in the following description to identify connection nodes, terms referring to network entities, terms referring to messages, terms referring to interfaces between network entities, and terms referring to various identification information are provided as examples for convenience of explanation. Therefore, the present disclosure is not limited to the terms described below, and other terms referring to objects with equivalent technical meanings may be used.

[0103] For convenience of explanation, this disclosure uses terms and names defined in the 5GS (5G system) and NR (new radio) standards, the most recent standards defined by the 3GPP organization among the existing communication standards. However, this disclosure is not limited to these terms and names and can be equally applied to wireless communication networks conforming to other standards. In particular, this disclosure can be applied to 3GPP 5th generation mobile communication standards (e.g., 5GS and NR).

[0104] With regard to one embodiment that can be exemplified by FIGS. 3 to 5,

[0105] SUPI (Subscription Permanent Identifier) ​​may be a unique ID assigned to a terminal. SUPI can be used as identification information for a specific terminal.

[0106] If SUPI is exposed, the following security threats may occur:

[0107] - Privacy Invasion: It is possible to know what tasks a terminal with the SUPI is performing, and also to track the tasks performed by the terminal with the SUPI.

[0108] - Location tracking: The physical location of a terminal with the SUPI can be tracked.

[0109] - Impersonation attack: An entity other than the terminal corresponding to the SUPI can pretend to be the terminal corresponding to the SUPI by using the SUPI.

[0110] There may be cases where a terminal must transmit its own identification information to a network to prove its identity. In this case, the terminal's identification information transmitted to the network may be SUPI. Due to the security threats described above, SUPI may be transmitted in a protected form. A method for protecting SUPI may be to encrypt it. Encrypted SUPI may be exemplified by SUCI (Subscription Concealed Identifier). SUCI may not simply be encrypted SUPI, but may also be encrypted together with additional information.

[0111] For the reasons described above, SUPI is transmitted encrypted in current communication systems. The encryption system used in current communication systems may be based on public-key cryptography (e.g., Elliptic Curve Cryptosystem).

[0112] Since Elliptic Curve Cryptosystem can be defeated by quantum computing, the SUPI protection mechanism currently in use may not be secure against attacks utilizing quantum computing.

[0113] A secure cryptographic system can also exist for quantum computing. This cryptographic system can be exemplified by Post-Quantum Cryptography (PQC). This cryptographic system can be implemented in various ways. For example, it can be implemented using the following methods:

[0114] - Lattice-based: When there is a set of lattice points defined in a multidimensional space, the relationship between a given arbitrary point and a point belonging to the lattice point set is utilized. For example, the problem of finding the point in the lattice point set that is closest to a given arbitrary point.

[0115] - Code-based: Using error-correcting codes. For example, correcting errors in random linear codes.

[0116] - Non-commutative: Problems based on abstract algebraic structures such as non-commutative groups, semigroups, and rings.

[0117] - Multivariate: The problem of finding the roots of a multivariate quadratic equation system defined on a finite field.

[0118] - Isogeny-based: A problem defined based on the interrelationship between elliptic curves.

[0119] - Hash-based: Problems defined using the properties of the hash function

[0120] Security mechanisms available using the above PQC may be as follows.

[0121] - Encapsulation

[0122] - Encryption

[0123] - Digital signature

[0124] Among the above mechanisms, encapsulation and encryption can be used for the following purposes: a method of forming a common key when two entities wishing to communicate securely wish to share a common key for the purpose.

[0125] When using encapsulation as a method for forming the above key, various methods can be used. According to one embodiment, the following process can be exemplified.

[0126] The example below illustrates the process by which a first entity and a second entity form a common key. The first and second entities illustrated below may correspond to network entities or users, and are not limited to the notation illustrated.

[0127] - First entity

[0128] > Any random value m can be selected.

[0129] > The above m can be encapsulated using the public key of the second entity. As a result, a value exemplified by the key and a value exemplified by the encapsulated message can be obtained.

[0130] > It can send an encapsulated message to a second entity.

[0131] - Second entity

[0132] > The encapsulated message can be decapsulated using the second entity's secret key. As a result, m can be obtained.

[0133] > The above m can be encapsulated using the public key of the second entity. As a result, the key value can be obtained.

[0134] - The above key value can be a mutually common key value of the first entity and the second entity.

[0135] When using encryption to form the key illustrated above, various methods can be employed. One example may be illustrated by the following process.

[0136] - The example below can be illustrated as a process in which the first entity and the second entity form a common key.

[0137] - First entity

[0138] > You can select the key value.

[0139] > The above key value can be encrypted using the public key of the second entity. As a result, a value exemplified by the encrypted key can be obtained.

[0140] > The encrypted key can be sent to a second entity.

[0141] - Second entity

[0142] > You can decrypt the encrypted key using your own private key. This will yield the key value.

[0143] The above key value can be a mutually common key value of the first entity and the second entity.

[0144] In the embodiments of FIGS. 3 to 5, various methods of protecting SUPI can be exemplified by utilizing the background knowledge described above.

[0145] FIG. 3 is a diagram illustrating a process in which a terminal securely transmits its identification information to a network according to an embodiment of the present disclosure.

[0146] The network illustrated in FIG. 3 may be an object(s) of the wireless communication system disclosed in FIGS. 1A and 1B . The series of tasks performed in the network illustrated in FIG. 3 may be performed by object(s) of the wireless communication system suitable for the task. For example, the series of tasks performed in the network illustrated in FIG. 3 may be performed through UDM (and, if necessary, collaboration with other wireless communication system object(s)).

[0147] According to FIG. 3, in step 310, the UE (301) may perform one or more of the following processes.

[0148] - UE (301) can generate a random number (RN).

[0149] - The UE (301) can encapsulate the RN using the public key of the network (e.g., public key (PK).HN (home network)). As a result, the UE (301) can obtain a one-time shared symmetric key (e.g., Ephemeral Shared Symmetric Key (ESSK)) and an encrypted message (e.g., Encapsulated Message (EM)), or at least one of them. The ESSK may be exemplified as a symmetric key to be used for SUPI encryption later. The EM may be exemplified as a value that generates the RN when the decapsulation process is performed later.

[0150] At step 320, the UE (301) may perform one or more of the following processes.

[0151] - UE (301) can encrypt SUPI using the above ESSK. As a result, UE (301) can obtain encrypted SUPI, i.e., SUCI.

[0152] At step 330, one or more of the following processes may be performed.

[0153] - UE (301) can transmit the generated SUCI to the network (302).

[0154] - UE (301) can transmit the generated EM to the network (302).

[0155] At step 340, the network (302) may perform one or more of the following processes.

[0156] - The network (302) can decapsulate the received EM using its own secret key (e.g., SK (secret key).HN (home network)). As a result, the network (302) can obtain the RN.

[0157] - The network (302) can encapsulate the obtained RN using PK.HN, which is exemplified by its own public key. As a result, the network (302) can obtain an ESSK.

[0158] At step 350, the network (302) may perform one or more of the following processes.

[0159] - The network (302) can decrypt SUCI using the above ESSK. As a result, the network can obtain SUPI.

[0160] FIG. 4 is a diagram illustrating another process in which a terminal securely transmits its identification information to a network according to an embodiment of the present disclosure.

[0161] The network illustrated in FIG. 4 may be an object(s) of the wireless communication system disclosed in FIGS. 1A and 1B . The series of tasks performed in the network illustrated in FIG. 4 may be performed by object(s) of the wireless communication system suitable for the task. For example, the series of tasks performed in the network illustrated in FIG. 4 may be performed through UDM (and, if necessary, collaboration with other wireless communication system object(s)).

[0162] According to FIG. 4, in step 410, the UE (401) may perform one or more of the following processes.

[0163] - UE (401) can generate a one-time shared symmetric key (e.g., Ephemeral Shared Symmetric Key (ESSK)). The ESSK can be exemplified as a symmetric key to be used for SUPI encryption in the future.

[0164] - UE (401) can encrypt the ESSK exemplified above using the public key of the network (e.g., public key (PK).HN (home network)). As a result, UE (401) can obtain an encrypted, one-time shared symmetric key (e.g., Encrypted Ephemeral Shared Symmetric Key (EESSK)).

[0165] At step 420, the UE (401) may perform one or more of the following processes.

[0166] - UE (401) can encrypt SUPI using the above ESSK. As a result, UE (401) can obtain encrypted SUPI, i.e., SUCI.

[0167] At step 430, one or more of the following processes may be performed.

[0168] - UE (401) can transmit the generated SUCI to the network (402).

[0169] - UE (401) can transmit the generated EESSK to the network (402).

[0170] At step 440, the network (402) may perform one or more of the following processes.

[0171] - The network (402) can decrypt the received EESSK using its own secret key (e.g., SK (secret key).HN (home network)). As a result, the network (402) can obtain the ESSK.

[0172] At step 450, the network (402) may perform one or more of the following processes.

[0173] - The network (402) can decrypt SUCI using the above ESSK. As a result, the network (402) can obtain SUPI.

[0174] FIG. 5 is a diagram illustrating another process in which a terminal securely transmits its identification information to a network according to an embodiment of the present disclosure.

[0175] The network illustrated in FIG. 5 may be an object(s) of the wireless communication system disclosed in FIGS. 1A and 1B. The series of tasks performed in the network illustrated in FIG. 5 may be performed by object(s) of the wireless communication system suitable for the task. For example, the series of tasks performed in the network illustrated in FIG. 5 may be performed through UDM (and, if necessary, collaboration with other wireless communication system object(s)).

[0176] According to FIG. 5, in step 510, the UE (501) may perform one or more of the following processes.

[0177] - UE (501) can generate a random number (RN).

[0178] - The UE (501) can encrypt the “concatenation of the RN and SUPI” using the public key of the network (502) (e.g., PK(public key).HN(home network)). (The concatenation method can be various as long as only the information of the RN and SUPI is included. For example, the RN value can be followed by the SUPI value, the SUPI value can be followed by the RN value, or the RN and SUPI values ​​can be mixed in any way according to a specific rule.) As a result, the UE (501) can obtain the SUCI. That is, according to an embodiment, there can be a process of generating the concatenation value of the RN and the SUPI. In addition, according to an embodiment, the concatenation value of the RN and the SUPI can be generated, and the generated concatenation value can be encrypted using the public key, through which the UE can obtain the SUCI.

[0179] At step 520, one or more of the following processes may be performed.

[0180] - UE (501) can transmit the generated SUCI to the network (502).

[0181] - UE (501) can transmit information related to the generated RN to the network (502). (The information related to the RN can be in various forms. For example, it can be the entire RN value or a portion of the RN value extracted by a specific rule.)

[0182] At step 530, the network (502) may perform one or more of the following processes.

[0183] - The network (502) can decrypt the received SUCI using its own secret key (e.g., SK (secret key).HN (home network)). As a result, the network (502) can obtain SUPI.

[0184] - The network (502) can decrypt the received SUCI using its own secret key SK.HN. As a result, the network (502) can obtain the RN.

[0185] - The network (502) can compare the acquired RN with the ‘information related to the RN received in step 520’ to check whether an error has occurred.

[0186] The configuration diagrams, diagrams illustrating control / data signal transmission / reception methods, and diagrams illustrating operational procedures, which may be exemplified by FIGS. 1A to 5, do not limit the scope of the embodiments of the present disclosure. That is, not all components, entities, or operational steps exemplified in FIGS. 1A to 5 should be construed as essential components for implementing the disclosure, and implementations may be made within a scope that does not harm the essence of the disclosure even if only some components are included.

[0187] The operations of the embodiments described above can be realized by providing a memory device storing the corresponding program code in any component within the device. That is, the control unit within the device can execute the operations described above by reading and executing the program code stored in the memory device through a processor or a CPU (Central Processing Unit).

[0188] The various components and modules of the entity or terminal device described in the present disclosure may be operated using hardware circuits, such as logic circuits based on complementary metal oxide semiconductors, firmware, software, and / or hardware and firmware and / or software embedded in a machine-readable medium. For example, various electrical structures and methods may be implemented using electrical circuits such as transistors, logic gates, and application-specific semiconductors.

[0189] The methods according to the embodiments described in the claims or specification of the present disclosure may be implemented in the form of hardware, software, or a combination of hardware and software.

[0190] When implemented in software, a computer-readable storage medium storing one or more programs (software modules) may be provided. The one or more programs stored in the computer-readable storage medium are configured for execution by one or more processors within an electronic device. The one or more programs include instructions that cause the electronic device to execute methods according to the embodiments described in the claims or specification of the present disclosure.

[0191] These programs (software modules, software) may be stored in random access memory, non-volatile memory including flash memory, read only memory (ROM), electrically erasable programmable read only memory (EEPROM), magnetic disc storage devices, compact disc-ROMs (CD-ROMs), digital versatile discs (DVDs) or other forms of optical storage devices, magnetic cassettes, or may be stored in memories formed by a combination of some or all of these. In addition, each configuration memory may include multiple copies.

[0192] Additionally, the program may be stored on an attachable storage device that is accessible via a communication network, such as the Internet, an intranet, a local area network (LAN), a wide area network (WAN), a storage area network (SAN), or a combination thereof. Such a storage device may be connected to a device performing an embodiment of the present disclosure via an external port. Additionally, a separate storage device on the communication network may be connected to a device performing an embodiment of the present disclosure.

[0193] In the specific embodiments of the present disclosure described above, components included in the disclosure are expressed in the singular or plural form, depending on the specific embodiment presented. However, the singular or plural expressions are selected to suit the presented situation for convenience of explanation, and the present disclosure is not limited to singular or plural components. Components expressed in the plural form may be composed of singular elements, or components expressed in the singular form may be composed of plural elements.

[0194] While the detailed description of this disclosure has described specific embodiments, it should be understood that various modifications are possible without departing from the scope of this disclosure. Therefore, the scope of this disclosure should not be limited to the described embodiments, but should be defined not only by the scope of the claims described below, but also by equivalents thereof.

Claims

1. In a method performed by a terminal of a communication system, A step of generating a subscription concealed identifier (SUCI) by encrypting a value including a random number and a subscription permanent identifier (SUPI) based on a network public key; and A method comprising the step of transmitting a message comprising said SUCI to a network entity.

2. In paragraph 1, The above message contains information related to the random number, A method characterized in that the information related to the random number is used to identify whether an error occurs during the decryption process for the SUCI.

3. In paragraph 2, A method characterized in that the information related to the random number includes all or part of the random number.

4. In paragraph 1, comprising a step of receiving the network public key from the network entity; A method characterized in that the above network entity includes at least one of a base station, a user data management (UDM), or an access and mobility management function (AMF).

5. In a method performed by a network entity of a communication system, A step of receiving a message including a subscription concealed identifier (SUCI) from a terminal; A step of decrypting the SUCI based on a network secret key; and Including a step of obtaining a random number generated by the terminal and a SUPI (subscription permanent identifier), The above SUCI is a method characterized in that a value including the random number and the SUPI is encrypted based on a network public key.

6. In paragraph 5, The above message contains information related to the random number, Further comprising a step of identifying whether an error has occurred based on information related to the above random number, A method characterized in that the information related to the random number includes all or part of the random number.

7. In paragraph 5, comprising a step of transmitting the network public key to the terminal; A method characterized in that the above network entity includes at least one of a base station, a user data management (UDM), or an access and mobility management function (AMF).

8. At the terminal of the communication system, Transmitter and receiver; and A terminal including a control unit connected to the above transceiver, and generating a SUCI (subscription concealed identifier) ​​by encrypting a value including a random number and a SUPI (subscription permanent identifier) ​​based on a network public key, and transmitting a message including the SUCI to a network entity.

9. In paragraph 8, The above message contains information related to the random number, A terminal characterized in that the information related to the above random number is used to identify whether an error occurred during the decryption process for the SUCI.

10. In paragraph 9, A terminal characterized in that the information related to the random number includes all or part of the random number.

11. In paragraph 8, The above control unit receives the network public key from the network entity, A terminal characterized in that the above network entity includes at least one of a base station, a user data management (UDM), or an access and mobility management function (AMF).

12. In the network entity of the communication system, Transmitter and receiver; and A control unit connected to the above transceiver, receiving a message including a SUCI (subscription concealed identifier) ​​from a terminal, decrypting the SUCI based on a network secret key, and obtaining a random number generated by the terminal and a SUPI (subscription permanent identifier), The above SUCI is a network entity characterized in that the value including the random number and the SUPI is encrypted based on a network public key.

13. In paragraph 12, The above message contains information related to the random number, The above control unit is a network entity that identifies whether an error has occurred based on information related to the random number.

14. In paragraph 13, A network entity characterized in that the information related to the random number includes all or part of the random number.

15. In paragraph 12, The above control unit transmits the network public key to the terminal, A network entity characterized in that the above network entity includes at least one of a base station, a user data management (UDM), or an access and mobility management function (AMF).

Citation Information

Patent Citations

  • 5G network authentication method and system based on DH ratchet algorithm

    CN112399407A

  • Communication method and related product

    US20210320788A1

  • Subscription Concealed Identifier (SUCI) Supporting Post-Quantum Cryptography

    US20210409214A1