Apparatus, method and computer program for provisioning closed access group information to a user equipment and for controlling access of the user equipment to a network
The method and apparatus provide CAG information provisioning and access management in visited networks, addressing access control issues for roaming UEs in 5G networks, ensuring seamless access to CAG cells by managing CAG identifiers and validation criteria.
Patent Information
- Application Number
- PCT/CN2024/072134
- Authority / Receiving Office
- WO · WO
- Patent Type
- Applications
- Current Assignee / Owner
- Filing Date
- 2024-01-12
- Publication Date
- 2025-07-17
AI Technical Summary
Existing 5G networks lack a mechanism for provisioning and managing access control for Closed Access Group (CAG) cells for roaming user equipment (UEs) in visited networks, leading to access restrictions when valid CAG IDs are not provisioned by the home PLMN.
A method and apparatus for provisioning CAG information to UEs in visited networks, involving the exchange of CAG identifiers and validation criteria, using network functions like AMF, NEF, and UDR to manage access control based on subscription data and location information, ensuring UEs can access allowed CAG cells.
Enables seamless access to CAG cells in visited networks by roaming UEs, enhancing mobility and roaming capabilities while maintaining access control, and allowing UEs to receive and store valid CAG lists for network access.
Smart Images

Figure CN2024072134_17072025_PF_FP_ABST
Abstract
Description
APPARATUS, METHOD AND COMPUTER PROGRAM FOR PROVISIONING CLOSED ACCESS GROUP INFORMATION TO A USER EQUIPMENT AND FOR CONTROLLING ACCESS OF THE USER EQUIPMENT TO A NETWORKField
[0001] The present application relates to a method, apparatus, system and computer program and in particular but not exclusively to an apparatus, method, and computer program for provisioning closed access group (CAG) information to a user equipment and for controlling access of the user equipment to a network.Background
[0002] A communication network can be seen as a facility that enables communications between two or more communication devices or provides communication devices access to a data network. A mobile or cellular communication network is one example of a communication network. A communication device may be provided with a service by an application server.
[0003] Such communication networks operate in according with standards such as those provided by 3GPP (Third Generation Partnership Project) or ETSI (European Telecommunications Standards Institute) . Examples of standards provided by 3GPP are the so-called 3GPP standards for cellular technology generations, such as 3GPP standards for 4G technology and 3GPP standards for 5G technology.Summary
[0004] In a first aspect there is provided a user equipment comprising means for receiving information relating to a closed access group for the user equipment, wherein the closed access group comprises a plurality of cells and is associated with a visited network, and wherein the information comprises one or more allowed closed access group identifiers, each allowed closed access group identifier associated with one or more cells of the plurality of cells comprised in closed access group allowed for the user equipment, means for receiving from the plurality of cells comprised in closed access group, one or more closed access group identifiers associated with the cell broadcast by the cell, means for determining, based on the one or more allowed closed group identifiers associated with the cell and the one or more closed group identifiers received from the cell, to access the visited network via the cell and means for accessing the visited network via the cell.
[0005] The means for receiving information relating to the closed access group may comprise means for sending, to the visited core network, a registration request message to register the user equipment with the visited network, means for receiving, from the visited network, a registration reject message, the registration reject message comprising the information relating to the closed access group and means for storing the information relating to the closed access group.
[0006] The means for receiving information relating to the closed access group may comprise means for sending, to the visited network via a cell of the plurality of cells of the closed access group, a registration request message to register the user equipment with the visited network; means for receiving a registration accept message from the visited network and means for storing an identifier of the cell via which the registration request message was sent.
[0007] The user equipment may be registered with the visited network. The information relating to the closed access group may be received from the visited network in a registration accept message, UE configuration update command message or another signalling message.
[0008] The information relating to the closed access group may further comprise a closed access group validation criteria. The user equipment may further comprise means for storing the allowed closed access group identifiers according to the closed access group validation criteria.
[0009] The user equipment may further comprise means for providing, from the user equipment to the visited network, an indication that the user equipment supports receiving information relating to the closed access group associated with the visited network, and wherein the information relating to the closed access group is received in response to the indication.
[0010] In a second aspect there is provided an apparatus for a visited network, the apparatus comprising a network function configured to perform at least the following obtaining, from a storage function of the visited network, information relating to a closed access group for a user equipment using a public subscription identifier associated with the user equipment, wherein the closed access group comprises a plurality of cells and is associated with the visited network, and wherein the information comprises one or more closed access group identifiers, each of the closed access group identifiers associated with one or more cells of the plurality of cell comprised in the closed access group allowed for the user equipment and the public subscription identifier of the user equipment and managing access to the closed access group for the user equipment based on the information related to the closed access group for the user equipment.
[0011] The network function may be further configured for receiving, from a user equipment, a registration request to register the user equipment with the visited network, the registration request comprising a temporary identifier associated with the user equipment, obtaining, from a home network of the user equipment, subscription information associated with the user equipment based on the temporary identifier associated with the user equipment, the subscription information comprising the public subscription identifier associated with the temporary identifier of the user equipment.
[0012] The network function may be further configured for receiving, from the home network, an indication that the closed access group for the user equipment is allowed in the visited network and wherein the managing access to the closed access group for the user equipment is further based on the indication.
[0013] Managing access to the closed access group for the user equipment may comprise providing the information relating to the closed access group to at least one of the following: the user equipment or a radio access network.
[0014] The network function may be further configured for: receiving, from the user equipment, an indication that the user equipment supports receiving information relating to a closed access group in the visited network for the user equipment and providing the information relating to the closed access group in response to the indication.
[0015] The information relating to the closed access group may comprise a closed access group validation criteria for which the information relating to the closed access group is valid.
[0016] The information relating to the closed access group may comprises location information for the plurality of cells.
[0017] In a third aspect there is provided an apparatus for a visited network, the apparatus comprising a network exposure function configured for receiving a request to store information relating to a closed access group for a user equipment and a location of the closed access group, wherein the closed access group comprises a plurality of cells and is associated with the visited core network and the information relating to the closed access group comprises one or more allowed closed access group identifiers and a public subscription identifier associated with the user equipment, wherein each allowed closed access group identifier is associated with one or more cell of the plurality of cells comprised in the closed access group allowed for a user equipment, obtaining, based on the location of the closed access group, identifiers of at least one cell and providing, to a store function of the visited network, the information relating to the closed access group for the user equipment and the identifiers of the at least one cell for storage therein.
[0018] In a fourth aspect there is provided an apparatus for a visited network, the apparatus comprising a network function configured to perform at least the following: storing information relating to a closed access group for a user equipment using a public subscription identifier associated with the user equipment, wherein the closed access group comprises a plurality of cells and is associated with the visited network, and wherein the information comprises one or more closed access group identifiers, each of the closed access group identifiers associated with one or more cells of the plurality of cell comprised in the closed access group allowed for the user equipment and the public subscription identifier of the user equipment and providing the information relating to the closed access group for the user equipment to a further network function of the visited network for managing access to the closed access group for the user equipment.
[0019] In a fifth aspect there is provided a method comprising receiving information relating to a closed access group for a user equipment, wherein the closed access group comprises a plurality of cells and is associated with a visited network, and wherein the information comprises one or more allowed closed access group identifiers, each allowed closed access group identifier associated with one or more cells of the plurality of cells comprised in closed access group allowed for the user equipment, means for receiving from the plurality of cells comprised in closed access group, one or more closed access group identifiers associated with the cell broadcast by the cell, means for determining, based on the one or more allowed closed group identifiers associated with the cell and the one or more closed group identifiers received from the cell, to access the visited network via the cell and means for accessing the visited network via the cell.
[0020] Receiving information relating to the closed access group may comprise sending, to the visited core network, a registration request message to register the user equipment with the visited network, receiving, from the visited network, a registration reject message, the registration reject message comprising the information relating to the closed access group and storing the information relating to the closed access group.
[0021] Receiving information relating to the closed access group may comprise sending, to the visited network via a cell of the plurality of cells of the closed access group, a registration request message to register the user equipment with the visited network, receiving a registration accept message from the visited network and storing an identifier of the cell via which the registration request message was sent.
[0022] The user equipment may be registered with the visited network. The information relating to the closed access group may be received from the visited network in a registration accept message, UE configuration update command message or another signalling message.
[0023] The information relating to the closed access group may further comprise a closed access group validation criteria. The method may further comprise storing the allowed closed access group identifiers according to the closed access group validation criteria.
[0024] The method may further comprise providing, from the user equipment to the visited network, an indication that the user equipment supports receiving information relating to the closed access group associated with the visited network, and wherein the information relating to the closed access group is received in response to the indication.
[0025] In a sixth aspect there is provided a method comprising obtaining, from a storage function of the visited network, information relating to a closed access group for a user equipment using a public subscription identifier associated with the user equipment, wherein the closed access group comprises a plurality of cells and is associated with the visited network, and wherein the information comprises one or more closed access group identifiers, each of the closed access group identifiers associated with one or more cells of the plurality of cell comprised in the closed access group allowed for the user equipment and the public subscription identifier of the user equipment and managing access to the closed access group for the user equipment based on the information related to the closed access group for the user equipment.
[0026] The method may further comprise receiving, from a user equipment, a registration request to register the user equipment with the visited network, the registration request comprising a temporary identifier associated with the user equipment, obtaining, from a home network of the user equipment, subscription information associated with the user equipment based on the temporary identifier associated with the user equipment, the subscription information comprising the public subscription identifier associated with the temporary identifier of the user equipment.
[0027] The method may further comprise receiving, from the home network, an indication that the closed access group for the user equipment is allowed in the visited network and wherein the managing access to the closed access group for the user equipment is further based on the indication.
[0028] Managing access to the closed access group for the user equipment may comprise providing the information relating to the closed access group to at least one of the following: the user equipment or a radio access network.
[0029] The method may further comprise receiving, from the user equipment, an indication that the user equipment supports receiving information relating to a closed access group in the visited network for the user equipment and providing the information relating to the closed access group in response to the indication.
[0030] The information relating to the closed access group may comprise a closed access group validation criteria for which the information relating to the closed access group is valid.
[0031] The information relating to the closed access group may comprises location information for the plurality of cells.
[0032] In a seventh aspect there is provided a method comprising receiving a request to store information relating to a closed access group for a user equipment and a location of the closed access group, wherein the closed access group comprises a plurality of cells and is associated with the visited core network and the information relating to the closed access group comprises one or more allowed closed access group identifiers and a public subscription identifier associated with the user equipment, wherein each allowed closed access group identifier is associated with one or more cell of the plurality of cells comprised in the closed access group allowed for a user equipment, obtaining, based on the location of the closed access group, identifiers of at least one cell and providing, to a store function of the visited network, the information relating to the closed access group for the user equipment and the identifiers of the at least one cell for storage therein.
[0033] In an eighth aspect there is provided a method comprising storing information relating to a closed access group for a user equipment using a public subscription identifier associated with the user equipment, wherein the closed access group comprises a plurality of cells and is associated with the visited network, and wherein the information comprises one or more closed access group identifiers, each of the closed access group identifiers associated with one or more cells of the plurality of cell comprised in the closed access group allowed for the user equipment and the public subscription identifier of the user equipment and providing the information relating to the closed access group for the user equipment to a further network function of the visited network for managing access to the closed access group for the user equipment.
[0034] In a ninth aspect there is provided a user equipment comprising at least one processor, and at least one memory storing instructions which, when executed by the processor, cause the user equipment at least to receive information relating to a closed access group for the user equipment, wherein the closed access group comprises a plurality of cells and is associated with a visited network, and wherein the information comprises one or more allowed closed access group identifiers, each allowed closed access group identifier associated with one or more cells of the plurality of cells comprised in closed access group allowed for the user equipment, receive from the plurality of cells comprised in closed access group, one or more closed access group identifiers associated with the cell broadcast by the cell, determine, based on the one or more allowed closed group identifiers associated with the cell and the one or more closed group identifiers received from the cell, to access the visited network via the cell and access the visited network via the cell.
[0035] The user equipment may be configured to send, to the visited core network, a registration request message to register the user equipment with the visited network, receive, from the visited network, a registration reject message, the registration reject message comprising the information relating to the closed access group and store the information relating to the closed access group.
[0036] The user equipment may be configured to send, to the visited network via a cell of the plurality of cells of the closed access group, a registration request message to register the user equipment with the visited network, receive a registration accept message from the visited network and store an identifier of the cell via which the registration request message was sent.
[0037] The user equipment may be registered with the visited network. The information relating to the closed access group may be received from the visited network in a registration accept message, UE configuration update command message or another signalling message.
[0038] The information relating to the closed access group may further comprise a closed access group validation criteria. The user equipment may be further configured to store the allowed closed access group identifiers according to the closed access group validation criteria.
[0039] The user equipment may be further configured to provide, from the user equipment to the visited network, an indication that the user equipment supports receiving information relating to the closed access group associated with the visited network, and wherein the information relating to the closed access group is received in response to the indication.
[0040] In a tenth aspect there is provided an apparatus for a visited network comprising at least one processor, and at least one memory storing instructions which, when executed by the processor, cause the apparatus at least to obtain, from a storage function of the visited network, information relating to a closed access group for a user equipment using a public subscription identifier associated with the user equipment, wherein the closed access group comprises a plurality of cells and is associated with the visited network, and wherein the information comprises one or more closed access group identifiers, each of the closed access group identifiers associated with one or more cells of the plurality of cell comprised in the closed access group allowed for the user equipment and the public subscription identifier of the user equipment and manage access to the closed access group for the user equipment based on the information related to the closed access group for the user equipment.
[0041] The apparatus may be further configured for receiving, from a user equipment, a registration request to register the user equipment with the visited network, the registration request comprising a temporary identifier associated with the user equipment, obtaining, from a home network of the user equipment, subscription information associated with the user equipment based on the temporary identifier associated with the user equipment, the subscription information comprising the public subscription identifier associated with the temporary identifier of the user equipment.
[0042] The apparatus may be further configured for receiving, from the home network, an indication that the closed access group for the user equipment is allowed in the visited network and wherein the managing access to the closed access group for the user equipment is further based on the indication.
[0043] Managing access to the closed access group for the user equipment may comprise providing the information relating to the closed access group to at least one of the following: the user equipment or a radio access network.
[0044] The apparatus may be further configured for: receiving, from the user equipment, an indication that the user equipment supports receiving information relating to a closed access group in the visited network for the user equipment and providing the information relating to the closed access group in response to the indication.
[0045] The information relating to the closed access group may comprise a closed access group validation criteria for which the information relating to the closed access group is valid.
[0046] The information relating to the closed access group may comprises location information for the plurality of cells.
[0047] In an eleventh aspect there is provided an apparatus for a visited network comprising at least one processor, and at least one memory storing instructions which, when executed by the processor, cause the apparatus at least to receive a request to store information relating to a closed access group for a user equipment and a location of the closed access group, wherein the closed access group comprises a plurality of cells and is associated with the visited core network and the information relating to the closed access group comprises one or more allowed closed access group identifiers and a public subscription identifier associated with the user equipment, wherein each allowed closed access group identifier is associated with one or more cell of the plurality of cells comprised in the closed access group allowed for a user equipment, obtain, based on the location of the closed access group, identifiers of at least one cell and provide, to a store function of the visited network, the information relating to the closed access group for the user equipment and the identifiers of the at least one cell for storage therein.
[0048] In a twelfth aspect there is provided an apparatus for a visited network comprising at least one processor, and at least one memory storing instructions which, when executed by the processor, cause the apparatus at least to store information relating to a closed access group for a user equipment using a public subscription identifier associated with the user equipment, wherein the closed access group comprises a plurality of cells and is associated with the visited network, and wherein the information comprises one or more closed access group identifiers, each of the closed access group identifiers associated with one or more cells of the plurality of cell comprised in the closed access group allowed for the user equipment and the public subscription identifier of the user equipment and provide the information relating to the closed access group for the user equipment to a further network function of the visited network for managing access to the closed access group for the user equipment.
[0049] In a thirteenth aspect there is provided a computer readable medium comprising instructions which, when executed by a user equipment, cause the user equipment to perform at least the following receiving information relating to a closed access group for the user equipment, wherein the closed access group comprises a plurality of cells and is associated with a visited network, and wherein the information comprises one or more allowed closed access group identifiers, each allowed closed access group identifier associated with one or more cells of the plurality of cells comprised in closed access group allowed for the user equipment, receiving from the plurality of cells comprised in closed access group, one or more closed access group identifiers associated with the cell broadcast by the cell, determining, based on the one or more allowed closed group identifiers associated with the cell and the one or more closed group identifiers received from the cell, to access the visited network via the cell and accessing the visited network via the cell.
[0050] Receiving information relating to the closed access group may comprise sending, to the visited core network, a registration request message to register the user equipment with the visited network, receiving, from the visited network, a registration reject message, the registration reject message comprising the information relating to the closed access group and storing the information relating to the closed access group.
[0051] Receiving information relating to the closed access group may comprise sending, to the visited network via a cell of the plurality of cells of the closed access group, a registration request message to register the user equipment with the visited network, receiving a registration accept message from the visited network and storing an identifier of the cell via which the registration request message was sent.
[0052] The user equipment may be registered with the visited network. The information relating to the closed access group may be received from the visited network in a registration accept message, UE configuration update command message or another signalling message.
[0053] The information relating to the closed access group may further comprise a closed access group validation criteria. The user equipment may be caused to perform storing the allowed closed access group identifiers according to the closed access group validation criteria.
[0054] The user equipment may be caused to perform providing, from the user equipment to the visited network, an indication that the user equipment supports receiving information relating to the closed access group associated with the visited network, and wherein the information relating to the closed access group is received in response to the indication.
[0055] In a fourteenth aspect there is provided a computer readable medium comprising instructions which, when executed by an apparatus, cause the apparatus to perform at least the following: obtaining, from a storage function of the visited network, information relating to a closed access group for a user equipment using a public subscription identifier associated with the user equipment, wherein the closed access group comprises a plurality of cells and is associated with the visited network, and wherein the information comprises one or more closed access group identifiers, each of the closed access group identifiers associated with one or more cells of the plurality of cell comprised in the closed access group allowed for the user equipment and the public subscription identifier of the user equipment and managing access to the closed access group for the user equipment based on the information related to the closed access group for the user equipment.
[0056] The apparatus may be further caused to perform receiving, from a user equipment, a registration request to register the user equipment with the visited network, the registration request comprising a temporary identifier associated with the user equipment, obtaining, from a home network of the user equipment, subscription information associated with the user equipment based on the temporary identifier associated with the user equipment, the subscription information comprising the public subscription identifier associated with the temporary identifier of the user equipment.
[0057] The apparatus may be further caused to perform receiving, from the home network, an indication that the closed access group for the user equipment is allowed in the visited network and wherein the managing access to the closed access group for the user equipment is further based on the indication.
[0058] Managing access to the closed access group for the user equipment may comprise providing the information relating to the closed access group to at least one of the following: the user equipment or a radio access network.
[0059] The apparatus may be further caused to perform receiving, from the user equipment, an indication that the user equipment supports receiving information relating to a closed access group in the visited network for the user equipment and providing the information relating to the closed access group in response to the indication.
[0060] The information relating to the closed access group may comprise a closed access group validation criteria for which the information relating to the closed access group is valid.
[0061] The information relating to the closed access group may comprises location information for the plurality of cells.
[0062] In a fifteenth aspect there is provided a computer readable medium comprising instructions which, when executed by an apparatus, cause the apparatus to perform at least the following: receiving a request to store information relating to a closed access group for a user equipment and a location of the closed access group, wherein the closed access group comprises a plurality of cells and is associated with the visited core network and the information relating to the closed access group comprises one or more allowed closed access group identifiers and a public subscription identifier associated with the user equipment, wherein each allowed closed access group identifier is associated with one or more cell of the plurality of cells comprised in the closed access group allowed for a user equipment, obtaining, based on the location of the closed access group, identifiers of at least one cell and providing, to a store function of the visited network, the information relating to the closed access group for the user equipment and the identifiers of the at least one cell for storage therein.
[0063] In a sixteenth aspect there is provided a computer readable medium comprising instructions which, when executed by an apparatus, cause the apparatus to perform at least the following: storing information relating to a closed access group for a user equipment using a public subscription identifier associated with the user equipment, wherein the closed access group comprises a plurality of cells and is associated with the visited network, and wherein the information comprises one or more closed access group identifiers, each of the closed access group identifiers associated with one or more cells of the plurality of cell comprised in the closed access group allowed for the user equipment and the public subscription identifier of the user equipment and providing the information relating to the closed access group for the user equipment to a further network function of the visited network for managing access to the closed access group for the user equipment.
[0064] In an aspect there is provided a non-transitory computer readable medium comprising program instructions for causing an apparatus to perform at least the method according to any of the fifth to eighth aspect.
[0065] In the above, many different embodiments have been described. It should be appreciated that further embodiments may be provided by the combination of any two or more of the embodiments described above.
[0066] Description of Figures
[0067] Embodiments will now be described, by way of example only, with reference to the accompanying Figures in which:
[0068] Figure 1 shows a schematic diagram of an example a communication network;
[0069] Figure 2 shows a schematic diagram of an example a communication device;
[0070] Figure 3 shows a schematic diagram of an example an apparatus comprising or implementing one or more network functions of;
[0071] Figure 4 shows a flowchart of a method according to an example embodiment;
[0072] Figure 5 shows a flowchart of a method according to an example embodiment;
[0073] Figure 6 shows a flowchart of a method according to an example embodiment;
[0074] Figure 7 shows a flowchart of a method according to an example embodiment;
[0075] Figure 8 shows a signalling flow according to an example embodiment;
[0076] Figure 9 shows a signalling flow according to an example embodiment.Detailed description
[0077] Before explaining in detail the examples, certain general principles of a wireless communication network and communication devices are briefly explained with reference to Figure 1, Figure 2 and Figure 3 to assist in understanding the technology underlying the described examples.
[0078] Figure 1 shows a schematic representation of a communication network comprising a 5G system (5GS) 100 connected to one or more data networks 110. The 5GS may comprise a user equipment (UE) 102 (which may also be referred to as a communication device or a terminal) , a 5G radio access network (5G RAN) 104, a 5G core network (5GC) 106. The 5GC may be connected to one or more application functions (AF) 108, which are untrusted application functions.
[0079] The 5GC has a service-based architecture and comprises one or more network functions. In the example shown in Figure 1, the 5GC 106 comprises one or more Access and mobility Management Functions (AMF) 112, one or more session management functions (SMF) 114, an authentication server function (AUSF) 116, a Unified Data Management (UDM) 118, one or more user plane functions (UPF) 120, a Unified Data Repository (UDR) 122 and a Network Exposure Function (NEF) 124. The UPF is controlled by the SMF (Session Management Function) that receives policies from a PCF (Policy Control Function) . The NEF 124 is connected to the one or more application functions 108 via reference point N33.
[0080] The 5GC 100 is connected to the Radio Access Network (5G RAN) 104 via the reference point N3. The 5G-RAN may comprise one or more base stations (otherwise referred to as radio access network nodes) . Examples of base stations are gNodeB (gNB) . A base station may include one or more Distributed Units (DU) connected to one or more gNodeB (gNB) Centralized Unit (CU) .
[0081] A User Plane Function (UPF) 120 of the 5GC 106 may be PDU Session Anchor (PSA) for a PDU session established between the 5GC 106 (e.g., the UPF 120) and UE 102. The PDU Session Anchor may be responsible for send data received from the one or more DNs 110 to UE 102 and for sending data received from UE to the DNs 110. The PDU session may be established via a radio link between UE 102 and a base station of the 5G RAN node and tunnels established between the base station of the 5G-RAN 104 and the 5GC 106 (e.g., the PDU Session Anchor) .
[0082] A possible communication device will now be described in more detail with reference to Figure 2 showing a schematic, partially sectioned view of a communication device 200. User equipment 192 is an example of a communication device 200. The communication device 200 may be any device capable of sending and receiving wireless signals, including radio signals. Non-limiting examples of a communication device 200 comprise a terminal, a user equipment such as UE 102, a mobile station (MS) or mobile device such as a mobile phone or what is known as a ’s mart phone’ , a computer provided with a wireless interface card or other wireless interface facility (e.g., USB dongle) , personal data assistant (PDA) or a tablet provided with wireless communication capabilities, voice over IP (VoIP) phones, portable computers, desktop computer, image capture terminal devices such as digital cameras, gaming terminal devices, music storage and playback appliances, vehicle-mounted wireless terminal devices, wireless endpoints, mobile stations, laptop-embedded equipment (LEE) , laptop-mounted equipment (LME) , smart devices, wireless customer-premises equipment (CPE) , or any combinations of these or the like. A communication device 200 may send and / or receive, for example, co data carrying communications such as voice, electronic mail (email) , text message, multimedia and so on to a base station of a 5G RAN 104. Users of communication devices 200 may thus be offered and provided numerous services via their communication devices 200. Non-limiting examples of these services comprise two-way or multi-way calls, data communication or multimedia services or simply access to the one or more data networks 110, such as the Internet. A communication device 200 may also be provided data that is broadcast or multicast by base stations of the 5G RAN 104. Non-limiting examples of content provided to a communication device via a communication network, such as communication network 100, comprise downloads, television and radio programs, videos, advertisements, various alerts, and other information.
[0083] Communication device 200 is typically provided with or comprises at least one processor 201, at least one memory 202 and other possible components 203 for use in software and hardware aided execution of tasks the communication device 200 is designed to perform, including control of access to and communications with access networks including radio access networks of communication networks (e.g., 5G RAN 104) and device-to-device communication with other communication devices. The processor 201, the at least one memory 202 and other possible components can be provided on an appropriate circuit board and / or in a chipset. A circuit board or chipset is denoted by reference 204. A user of the communication device 200 may control the operation of the communication device 200 by means of a suitable user interface such as key pad 205, voice commands, touch sensitive screen or pad, combinations thereof or the like. The communication device 200 may also include a display 208, a speaker and a microphone Furthermore, a communication device 200 may comprise appropriate connectors (either wired or wireless) for connecting the communication device 200 to other communication devices and / or for connecting external accessories, for example hands-free equipment, thereto.
[0084] The communication device 200 may receive wireless signals, including radio signals over an air interface 207 via an apparatus configured for receiving radio signals and via an apparatus configured for transmitting radio signals. The communication device 200 shown in Figure 2 includes a transceiver apparatus 206 configured for transmitting and receiving radio signals over air interface 207. The transceiver apparatus 206 may be include for example a radio part and associated antenna arrangement. The antenna arrangement may be arranged internally or externally to the communication device and may include one or more antenna elements.
[0085] Figure 3 shows an example of a an apparatus 300 for a communication network, implementing or comprising one or more network functions of the core network, including AMF 112, NEF 124, UDM 118. The apparatus 300 comprises at least one memory 301 storing instructions of one or more network functions (e.g., instructions of AMF 112, instructions of a NEF 124, and or instructions of a UDR (not shown) , at least one processor 302, an accelerator 303 and an network interface 304. Execution of the instructions of a network function by the at least one processor 301 causes the apparatus to perform the operations of the network function. For example, execution of the instructions of AMF 112 causes the apparatus to perform the operations of the method described in FIG. 5. Execution of the instructions of NEF 112 causes the apparatus to perform the operations of the method described in FIG. 6. Execution of the instructions of a UDR causes the apparatus to perform the operations of the method described in FIG. 7. Via the network interface the apparatus 200 can be coupled to another apparatus 200 implementing or comprising other network functions of the core network (e.g., 5GC 106) of the communication network 100.
[0086] In Public Network Integrated Non-Public Networks (PNI-NPN) , a Closed Access Group (CAG) identifies a group of subscribers who are allowed to access one or more CAG cells of PNI-NPN. The CAG cells are identified by CAG ID (s) . A CAG cell is a cell broadcasting one or several CAG IDs. A small base station that is broadcasting CAG IDs may be referred to as a Femto base station. Whether a UE is allowed to access one or more CAG cells is configured in user subscription data and on the UE.
[0087] To support Femto base stations in a 5G communication network (referred to as “5G network” ) , one question is whether and how to support provisioning of subscribers allowed to access CAG cells and to manage access control by the owner or an authorized administrator of the 5G network that includes Femto base stations. It may be assumed that the CAG concept as defined for PNI-NPN is re-used for communication networks that include Femto base stations enabling access control in the 5G network.
[0088] When a Femto base stations are deployed in 5G networks, mobility and / or roaming between home PLMN CAG Cells and visited PLMN CAG cells should be considered as, e.g., an operator of a 5G network might include 5G Femto base stations in a 5G-RAN of a 5G network. If a UE is roaming, access control should be performed in the visited network based on CAG IDs configured in the visited PLMN (VPLMN) and the UE should be provisioned with allowed visited CAG cell access information in the visited network.
[0089] Currently in 5G networks, an allowed CAG list is provisioned to a UE in the HPLMN. When a UE is registered in the visited PLMN or equivalent home PLMN (EHPLMN) , the provisioned allowed CAG list from HPLMN should contain VPLMN related CAG IDs to allow the UE to access CAG cells in the VPLMN. CAG ID (s) are assumed to be reused for control of access to a Femto cell provided by a Femto base station.
[0090] When a UE is roaming, if the UE is not configured with CAG IDs that are valid in the VPLMN and subscription data of the UE (generally referred to herein as UE subscription data) in the HPLMN does not include a list of CAG IDs of the VPLMN (e.g., the UE subscription data does not include one or more CAG IDs of the VPLM) , the UE is not able to access to the CAG cell in VPLMN. This problem may also apply to PNI-NPN for which the CAG concept was first introduced, i.e., there is no mechanism specified to allow a roaming UE to use a PNI-NPN in the VPLMN if the CAG ID of VPLMN is not provisioned to the UE by HPLMN.
[0091] The following aims to provide a method for provisioning a roaming UE and its serving network to enable access control in a visited PLMN.
[0092] Figure 4 shows a flowchart of a method according to an example embodiment. The method may be performed at a UE. The method begins at 401.
[0093] At 401, a UE receives information relating to a closed access group for the user equipment, wherein the closed access group comprises a plurality of cells and is associated with a visited network, and wherein the information comprises one or more allowed closed access group identifiers, each allowed closed access group identifier associated with one or more cells of the plurality of cells comprised in closed access group allowed for the user equipment.
[0094] At 402, the UE receives from the plurality of cells comprised in closed access group, one or more closed access group identifiers associated with the cell broadcast by the cell.
[0095] At 403, the UE determines, based on the one or more allowed closed group identifiers associated with the cell and the one or more closed group identifiers received from the cell, to access the visited network via the cell.
[0096] At 404, the UE accesses the visited network via the cell.
[0097] Figure 5 shows a flowchart of a method according to an example embodiment. The method may be performed by an AMF of a visited network.
[0098] At 501, the AMF obtains, from a storage function of the visited network, information relating to a closed access group for a user equipment using a public subscription identifier associated with the user equipment, wherein the closed access group comprises a plurality of cells and is associated with the visited network, and wherein the information comprises one or more closed access group identifiers, each of the closed access group identifiers associated with one or more cells of the plurality of cells comprised in the closed access group allowed for the user equipment and the public subscription identifier of the user equipment.
[0099] At 502, the AMF manages access to the closed access group for the user equipment based on the information related to the closed access group for the user equipment.
[0100] Managing access to the closed access group for the user equipment may comprise providing the information relating to the closed access group to at least one of the following: the user equipment or a radio access network.
[0101] Figure 6 shows a flowchart of a method according to an example embodiment. The method may be performed by a NEF of a network (e.g., NEF 124) .
[0102] At 601, the NEF receives a request to store information relating to a closed access group for a user equipment and a location of the closed access group, wherein the closed access group comprises a plurality of cells and is associated with the visited core network and the information relating to the closed access group comprises one or more allowed closed access group identifiers and a public subscription identifier associated with the user equipment, wherein each allowed closed access group identifier is associated with one or more cell of the plurality of cells comprised in the closed access group allowed for a user equipment.
[0103] At 602, the NEF obtains, based on the location of the closed access group, identifiers of at least one cell.
[0104] At 603, the NEF provides, to a storage function of the visited network, the information relating to the closed access group for the user equipment and the identifiers of the at least one cell for storage therein.
[0105] Figure 7 shows a flowchart of a method according to an example embodiment. The method may be performed by a UDR of a visited network.
[0106] At 701, the UDR stores information relating to a closed access group for a user equipment using a public subscription identifier associated with the user equipment, wherein the closed access group comprises a plurality of cells and is associated with the visited network, and wherein the information comprises one or more closed access group identifiers, each of the closed access group identifiers associated with one or more cells of the plurality of cell comprised in the closed access group allowed for the user equipment and the public subscription identifier of the user equipment.
[0107] At 702, the UDR provides the information relating to the closed access group for the user equipment to a further network function of the visited network for managing access to the closed access group for the user equipment.
[0108] The visited network described with reference to Figures 4 to 7 may comprise a visited
[0109] PLMN. The plurality of cells may be referred to as CAG cells. The plurality of cells may be cells of a of PNI-NPN.
[0110] The public subscription identifier referred to in the description of Figures 5, 6 and 7 may be a generic pubic subscription identifier (GPSI) or Mobile Station International Subscriber Directory Number (MSISDN) . The network function may obtain the public subscription identifier by mapping a UE temporary identifier (e.g., subscription permanent identifier (SUPI) ) to a public subscription identifier if the UE temporary identifier is available (e.g., if the UE has already registered with the network) .
[0111] The information relating to the closed access group may further comprise a closed access group validation criteria, and the user equipment may further comprises means for storing the allowed close group identifiers according to the closed access group validation criteria.
[0112] The CAG validation criteria may be based on time period or registration status.
[0113] The information relating to the CAG may comprise location information for the plurality of cells. The information relating to the CAG may comprise Femto serial numbers or identifiers.
[0114] The method as described with reference to Figure 5 may comprise receiving, from the home network, an indication that the closed access group for the user equipment is allowed in the visited network. Managing access to the closed access group for the user equipment may be further based on the indication.
[0115] For example, an indication whether visited CAG allowed list controlled and managed by the visited network is allowed for the UE (s) or not may be provided from home PLMN to visited PLMN. Alternatively, the indication may be configured in VPLMN (AMF or UDR) on per PLMN basis or may be part of the subscription data stored in HPLMN and fetched by AMF in VPLMN.
[0116] The method as described with reference to Figure 4 may comprise providing, from the user equipment to the visited network, an indication that the user equipment supports receiving information relating to the closed access group associated with the visited network, and wherein the information relating to the closed access group is received in response to the indication.
[0117] For example, a UE capability indication may be provided from a UE to the AMF. The UE capability indication indicates whether visited CAG allowed list controlled and managed by the visited network is supported by the UE or not.
[0118] Visited CAG Information may be stored in the UDR of the VPLMN or in another Network Function (NF) and provisioned via NEF per user (e.g., per GPSI / MSISDN or, if available, per SUPI) or per group of users. This is an example of storing information relating to a closed access group for a user equipment using a public subscription identifier associated with the user equipment, wherein the closed access group comprises a plurality of cells and is associated with the visited network, and wherein the information comprises one or more closed access group identifiers, each of the closed access group identifiers associated with one or more cells of the plurality of cell comprised in the closed access group allowed for the user equipment and the public subscription identifier of the user equipment. Provisioning may be triggered by any AF, e.g., authorized entity / user or authorized application server.
[0119] The AF request which triggers provisioning may also include location information (e.g., area code or co-ordinates where the CAG cells are located) .
[0120] Visited CAG Information indicates the allowed visited CAG ID list that is controlled and managed by the visited network. The visited CAG Information is managed by the visited network. Visited CAG information may contain validation time or validity period besides the allowed CAG IDs. Validation time or validity period are examples of CAG validation criteria.
[0121] The NEF may translate external location information from an AF request into internal location identities (e.g., Cell IDs / TAC) and updates the UDR with the location information from the AF. This is an example of obtaining, based on the location of the closed access group, identifiers of at least one cell.
[0122] The UDR, based on the location information, may trigger a notification to the corresponding AMF(s) regarding the provisioned CAG Information, e.g., in case AF has made updates to the CAG Information by adding or removing CAG IDs. This is an example of providing the information relating to the closed access group for the user equipment to a further network function of the visited network for managing access to the closed access group for the user equipment.
[0123] In an example embodiment, when a UE triggers a registration request, and the visited AMF retrieves the subscription data from the HPLMN UDM, the AMF may also receive information on how to map GPSIs (e.g., MSIDN) to SUPI (e.g., IMSI) for the UE.
[0124] In an example embodiment, the AMF may use the notification received from the UDR regarding the provisioned CAG Information and map the allowed visited CAG list to SUPI.
[0125] In an example embodiment, the VPLMN (e.g., AMF) may provide visited CAG Information to the UE. The UE may use this information to decide whether to access a CAG cell in this VPLMN or not. This is an example of receiving from the plurality of cells comprised in closed access group, one or more closed access group identifiers associated with the cell broadcast by the cell and determining, based on the one or more allowed closed group identifiers associated with the cell and the one or more closed group identifiers received from the cell, to access the visited network via the cell and accessing the visited network via the cell. Alternatively, the user may also manually select a CAG cell to access the CAG cell in VPLMN, even if it is not part of the allowed CAG list stored on the UE yet.
[0126] The AMF in a VPLMN may perform access control based on CAG ID (s) of the serving cell and information received from UDR or other NF based on the subscriber identifier of the UE. This is an example of managing access to the closed access group for the user equipment based on the information related to the closed access group for the user equipment.
[0127] Receiving information relating to the closed access group as described with reference to Figure 4 may comprise sending from a UE, to the visited network via a cell of the plurality of cells of the closed access group, a registration request message to register the user equipment with the visited network, receiving a registration accept message from the visited network and storing an identifier of the cell via which the registration request message was sent. Alternatively, in response to he registration request message, the method may comprise receiving, from the visited network, a registration reject message, the registration reject message comprising the information relating to the closed access group.
[0128] The registration request to register the user equipment with the visited network may comprise a temporary identifier associated with the user equipment (e.g., SUPI) . A method as described with reference to Figure 5 may comprise obtaining, from a home network of the user equipment, subscription information associated with the user equipment based on the temporary identifier associated with the user equipment, the subscription information comprising the public subscription identifier (e.g., GPSI / MSISDN) associated with the temporary identifier of the user equipment.
[0129] Figure 8 shows a procedure that includes signalling and operations for an example embodiment where there is access control of a CAG enabled UE in the visited network. This is an example of an embodiment where the UE provides a registration request to register the user equipment with the visited network, the registration request comprising a temporary identifier associated with the user equipment;
[0130] This procedure shown in Figure 8 is applicable in the case where network-initiated CAG ID(s) are provisioned by an authorised administrator.
[0131] In the example embodiment described with reference to Figure 8, the UDR stores the visited CAG information and performs UE identity (e.g., GPSI) mapping. Table 1 shows an example UDR data structure.
[0132] Table 1
[0133] At 1, the visited allowed CAG list, GPSI and external location information is added to an AF request that is created by AF.
[0134] At 2, the created AF request is sent to the V-NEF. For example, the Nnef_ServiceParameter_Create / Update / Delete request message specified in TS 29.522 Clause 5.11 table 5.11.2.3.2-1 for the IE ServiceParameterData may be updated by adding new IE cagData (vplmnAllowedCagList, externalLocation, expiryTime) as illustrated, for example, in Table 1 for each of the CAG IDs.
[0135] At 3, the NEF translates the external location and provides the mapped internal Ids (e.g., Cell IDs, TAC) and determines the UDR to store the information from the NEF.
[0136] At 4, a response of the AF request is sent back to AF.
[0137] Optionally, at 5, the UDM and / or UDR, based on the location information (e.g., Cell Id / TA) , notifies the AMFs serving the particular Cell ID / TA. UDM / UDR may learn the list of AMFs from NRF. The AMF receives and temporarily stores AF provisioned visited network CAG IDs from V-UDR (the AMF acts as UDR NF consumer) .
[0138] Optionally, at 6, a user of the UE may manually select the CAG cell to access to the visited network, especially if the UE can access the CAG cell only.
[0139] At 7, the UE sends an initial registration request message in the visited network, in which the UE identifier such as SUPI is provided.
[0140] At 8, the AMF correlates the SUPI and its mapped GPSI / MSISDN received as part of subscription data from the Home UDM, which also delivers the Visited CAG allow indication to the serving AMF in visited network. If Visited CAG allow indication is set to true, AMF will obtain the Visited CAG information for this UE from local visited UDR either received via notification at step 5 or from visited UDR / UDM using the MSISDN provided from Home UDR / UDM. For either option, the Home UDR / UDM provides MSISDN of the UE as mandatory information, which can be based on the enabled Visited CAG allow indication of the UE and / or based on the indication from visited AMF that the UE is access via visited Femto / CAG cell. The Visited CAG information from visited UDR / UDM will be appended as part of NPN Mobility Information in Mobility Restriction List.
[0141] At 9, the AMF sends a registration accept message to the UE and at 10, the UE sends a registration complete message to the AMF.
[0142] In the example embodiment when the UE receives a Registration Accept message, it indicates UE is allowed to access this CAG cell in the visited PLMN, and the UE stores the CAG ID.
[0143] However, if access is denied, e.g., if this UE is not allowed to access this particular CAG cell (based on information retrieved by AMF from visited UDR) , then AMF sends a Registration Reject message to UE at 9. In the Registration Reject message AMF may provide a list of allowed CAG IDs.
[0144] The UE may use the received list of allowed CAG IDs to re-initiate registration procedure in a particular CAG cell (from among the CAG cells provided by the AMF in Registration Reject message) .
[0145] In the example embodiment when the UE receives a Registration Reject message with the allowed list of CAG IDs in the visited network, the UE updates and stores the list locally.
[0146] If expiry time, as one example of CAG validation criteria, is provided in the list of allowed CAG information, the UE may remove the stored allowed CAG IDs upon reaching the expiry time. Or as another CAG validation criteria additionally or instead of, the UE may remove the allowed CAG IDs upon leaving VPLMN according to the specification or based on an explicit indication in the Visited CAG information.
[0147] If expiry time is included in the Visited CAG information, the UDR will remove the Visited CAG information upon reaching the expiry time. Or if the explicit indication in the Visited CAG information is included to indicate removing the Visited CAG information, the UDR may be also informed to remove the Visited CAG information. Or if it is defined to remove the visited CAG information upon UE leaving VPLMN, the UDR may remove the Visited CAG information upon receiving deregistration information of the UE.
[0148] For HO case without initial registration, e.g., inter NG-RAN node based handover, in an execution phase, the registration accept may include the Visited CAG information as part of CAG information list or Extended CAG information list.
[0149] When the user equipment is registered with the visited network, the information relating to the closed access group may be received from the visited network in a UE configuration update command message or another signalling message.
[0150] Figure 9 shows a procedure that includes signalling and operations for an example embodiment where in a visited network, CAG related parameters are provisioned after initial registration.
[0151] An example UDM data structure is shown in Table 2.
[0152] The UDR data structure may be as described with reference to Table 1.
[0153] At 0s to 1 show a known UE registration procedure where a UE is registering with a network. During the UE registration procedure, the home UDR provides the Visit CAG allow indication to the AMF in visit network that is serving the UE.
[0154] At 2, the visited allowed CAG list, GPSI and external location information is added to an AF request sent to the V-NEF. For example, the Nnef_ServiceParameter_Create request, Nnef_ServiceParameter_Update Request, and / or the Nnef_ServiceParameter_Delete request defined in TS 29.522 Clause 5.11 table 5.11.2.3.2-1 for the IE ServiceParameterData may be updated by adding new IE cagData (vplmnAllowedCagList, externalLocation, expiryTime) as illustrated, for example, in Table 1 for each of the CAG IDs.
[0155] At 3, the UDR stores, updates or removes information related to the allowed CAG list in the visited network. For example, the Nudr_DM_Update message as defined in TS 23.502 Clause 5.2.12.2.1 table 5.2.12.2.1-1 may be extended by adding cagData (vplmnAllowedCagList, expiryTime) to UDR.
[0156] At 4, an Nnef_ServiceParameter_Create response, or Nnef_ServiceParameter_Create Update and / or Nnef_ServiceParameter_Create Nnef_ServiceParameter_Delete response is sent by the V-NEF to the AF. The IE included in the Nnef_ServiceParameter_Create response, Nnef_ServiceParameter_Create Update, and Nnef_ServiceParameter_Create Nnef_ServiceParameter_Delete response are defined in TS 29.522 clause 5.11.1.2.3.3 table 5.11.1.2.3.3-2 and the IEs for the Nnef_ServiceParameter_Create response, Nnef_ServiceParameter_Create Update, and Nnef_ServiceParameter_Create Nnef_ServiceParameter_Delete response ServiceParameterData may include cagData (vplmnAllowedCagList, expiryTime) .
[0157] 5 to 5a are known to persons skilled in the art and hence are not described in detail.
[0158] At 5b, the V-UDR sends to the AMF a Nudr_DM_Notify message as per TS 23.502 clause 5.2.12.2. that includes cagData (vplmnAllowedCagList, expiryTime) in the MRL (Mobility Restriction List) .
[0159] At 5c, the AMF sends a Configuration Update Command message to the UE that includes cagData (vplmnAllowedCagList, expiryTime) if the AMF serving the UE in visited network has the Visit CAG allow indication in the UE’s subscription information from home UDM. In another option, the existing CAG information list information element may include expiryTime.
[0160] AT 5d, the UE appends vplmnAllowedCagList to allowedCagList already stored locally in the UE’s USIM. If expiry time as one CAG validation criteria is provided in the Visited CAG information, the UE will remove the Visited CAG information upon reaching the expiry time. Or as another CAG validation criteria additionally or instead of, the UE may remove the Visited CAG information upon leaving VPLMN according to the specification or based on the explicit indication in the Visited CAG information.
[0161] At 5e, the UE sends a Configuration Update Complete message to AMF.
[0162] At 5f, the AMF sends Nudm_SDM_Info_Service message to V-UDR. AMF acknowledges to the UDM that the UE received the cagData (vplmnAllowedCagList, expiryTime) .
[0163] At 5g, the AMF updates the RAN for the UE’s mobility restriction list changes to include cagData (vplmnAllowedCagList, expiryTime) .
[0164] 6 to 9 are signals of known to persons skilled in the art and hence are not described in detail
[0165] Upon the procedures described with reference to Figures 7 and 8 to provision the allowed visited CAG list to the UE, the UE can access the visited CAG cells that broadcast the CAG IDs in the provisioned allowed visited CAG list. If it is preferred that the UE access the visited CAG cells that is not in the provisioned allowed CAG list yet, the end user of the UE may be allowed to manually select the CAG cell for initial registration as illustrated in step 7 of Figure 7. This may be useful for the UE that can access 5GS via CAG cells only and the visited CAG ID provisioning is to be used for access control of CAG cell for the UE and CAG ID provisioning via the manually selected CAG cell, i.e., user selects a CAG cell manually and the network allows the UE to connect to the CAG cell and provisions the UE with the updated or new allowed CAG list.
[0166] The AF may additionally or optionally configure Femto serial number. AMF could learn the Femto serial number of the Femto base station during the NG setup procedure and use the information for correlation along with CAG list stored at the UDR during the UE registration.
[0167] The owner of a 5G Femto cell may create or update the CAG group with one or more member IDs (e.g., GPSI / MSISDN) in a Web portal which is provided by the Operator. For example, a Nnef_ServiceParameter_Create / Update Request may be sent to NEF (including GPSI / MSISDN and the CAG group ID) and an "allowed" indication to access femto is set to true (if UE is added to the allowed list) or set to false (if UE is removed from the allowed list) .
[0168] When the NF (AMF) gets the update in Nudm_Notification_notify, the NF may update the CAG information and "allowed" flag status to the corresponding UEs with the CAG IDs / 5G Femto Serial Number / 5G Femto Name updated through a UE configuration command update procedure.
[0169] An apparatus may comprise means for receiving information relating to a closed access group for the user equipment, wherein the closed access group comprises a plurality of cells and is associated with a visited network, and wherein the information comprises one or more allowed closed access group identifiers, each allowed closed access group identifier associated with one or more cells of the plurality of cells comprised in closed access group allowed for the user equipment, means for receiving from the plurality of cells comprised in closed access group, one or more closed access group identifiers associated with the cell broadcast by the cell, means for determining, based on the one or more allowed closed group identifiers associated with the cell and the one or more closed group identifiers received from the cell, to access the visited network via the cell and means for accessing the visited network via the cell.
[0170] Alternatively, or in addition, an apparatus may comprise means for obtaining, from a storage function of the visited network, information relating to a closed access group for a user equipment using a public subscription identifier associated with the user equipment, wherein the closed access group comprises a plurality of cells and is associated with the visited network, and wherein the information comprises one or more closed access group identifiers, each of the closed access group identifiers associated with one or more cells of the plurality of cells comprised in the closed access group allowed for the user equipment and the public subscription identifier of the user equipment and means for managing access to the closed access group for the user equipment based on the information related to the closed access group for the user equipment.
[0171] Alternatively, or in addition, an apparatus may comprise means for receiving a request to store information relating to a closed access group for a user equipment and a location of the closed access group, wherein the closed access group comprises a plurality of cells and is associated with the visited core network and the information relating to the closed access group comprises one or more allowed closed access group identifiers and a public subscription identifier associated with the user equipment, wherein each allowed closed access group identifier is associated with one or more cell of the plurality of cells comprised in the closed access group allowed for a user equipment, means for obtaining, based on the location of the closed access group, identifiers of at least one cell and means for providing, to a store function of the visited network, the information relating to the closed access group for the user equipment and the identifiers of the at least one cell for storage therein.
[0172] Alternatively, or in addition, an apparatus may comprise means for storing information relating to a closed access group for a user equipment using a public subscription identifier associated with the user equipment, wherein the closed access group comprises a plurality of cells and is associated with the visited network, and wherein the information comprises one or more closed access group identifiers, each of the closed access group identifiers associated with one or more cells of the plurality of cell comprised in the closed access group allowed for the user equipment and the public subscription identifier of the user equipment and means for providing the information relating to the closed access group for the user equipment to a further network function of the visited network for managing access to the closed access group for the user equipment.
[0173] The apparatus may comprise a user equipment, such as a mobile phone, or an access node such as a gNB, or a NF such as a NEF, UDR or AMF, be the user equipment, gNB or NF or be comprised in the user equipment, gNB or NF or a chipset for performing at least some actions of / for the user equipment, gNB or NF.
[0174] It should be understood that the apparatuses may comprise or be coupled to other units or modules etc., such as radio parts or radio heads, used in or for transmission and / or reception. Although the apparatuses have been described as one entity, different modules and memory may be implemented in one or more physical or logical entities.
[0175] It is noted that whilst some embodiments have been described in relation to 5G networks, similar principles can be applied in relation to other networks and communication systems such as 6G networks or 5G-Advanced networks. Therefore, although certain embodiments were described above by way of example with reference to certain example architectures for wireless networks, technologies and standards, embodiments may be applied to any other suitable forms of communication systems than those illustrated and described herein.
[0176] It is also noted herein that while the above describes example embodiments, there are several variations and modifications which may be made to the disclosed solution without departing from the scope of the present invention.
[0177] As used herein, “at least one of the following: <a list of two or more elements>” and “at least one of <a list of two or more elements>” and similar wording, where the list of two or more elements are joined by “and” or “or” , mean at least any one of the elements, or at least any two or more of the elements, or at least all the elements.
[0178] In general, the various embodiments may be implemented in hardware or special purpose circuitry, software, logic or any combination thereof. Some aspects of the disclosure may be implemented in hardware, while other aspects may be implemented in firmware or software which may be executed by a controller, microprocessor or other computing device, although the disclosure is not limited thereto. While various aspects of the disclosure may be illustrated and described as block diagrams, flow charts, or using some other pictorial representation, it is well understood that these blocks, apparatus, systems, techniques or methods described herein may be implemented in, as non-limiting examples, hardware, software, firmware, special purpose circuits or logic, general purpose hardware or controller or other computing devices, or some combination thereof.
[0179] As used in this application, the term “circuitry” may refer to one or more or all of the following:
[0180] (a) hardware-only circuits (such as only analog and / or digital circuits) and
[0181] (b) combinations of hardware circuits and software, such as (as applicable) :
[0182] (i) a combination of analog and / or digital hardware circuit (s) with software / firmware and
[0183] (ii) any portions of hardware processor (s) with software (including digital signal processor (s) ) , software, and memory (ies) that work together to cause an apparatus, such as a communication device (e.g., user equipment) or server, to perform and the methods described herein
[0184] (iv) hardware circuit (s) and or processor (s) , such as a microprocessor (s) or a portion of a microprocessor (s) , that requires software (e.g., firmware) for operation, but the software may not be present when it is not needed for operation.
[0185] This definition of circuitry applies to all uses of this term “means” in this application, including in any claims. As a further example, as used in this application, the term circuitry also covers an implementation of merely a hardware circuit or processor (or multiple processors) or portion of a hardware circuit or processor and its (or their) accompanying software and / or firmware. The term circuitry also covers, for example and if applicable to the particular claim element, a baseband integrated circuit or processor integrated circuit for a mobile device or a similar integrated circuit in server, a cellular network device, or other computing or network device.
[0186] The embodiments of this disclosure may be implemented by computer software executable by a data processor of the mobile device, such as in the processor entity, or by hardware, or by a combination of software and hardware. Computer software or program, also called program product, including software routines, applets and / or macros, may be stored in any apparatus-readable data storage medium and they comprise program instructions to perform particular tasks. A computer program product may comprise one or more computer-executable components which, when the program is run, are configured to carry out embodiments. The one or more computer-executable components may be at least one software code or portions of it.
[0187] Further in this regard it should be noted that any blocks of the logic flow as in the Figures may represent program steps, or interconnected logic circuits, blocks and functions, or a combination of program steps and logic circuits, blocks and functions. The software may be stored on such physical media as memory chips, or memory blocks implemented within the processor, magnetic media such as hard disk or floppy disks, and optical media such as for example DVD and the data variants thereof, CD. The physical media is a non-transitory media.
[0188] The term “non-transitory, ” as used herein, is a limitation of the medium itself (i.e., tangible, not a signal) as opposed to a limitation on data storage persistency (e.g., RAM vs. ROM) .
[0189] The memory may be of any type suitable to the local technical environment and may be implemented using any suitable data storage technology, such as semiconductor based memory devices, magnetic memory devices and systems, optical memory devices and systems, fixed memory and removable memory. The data processors may be of any type suitable to the local technical environment, and may comprise one or more of general purpose computers, special purpose computers, microprocessors, digital signal processors (DSPs) , application specific integrated circuits (ASIC) , FPGA, gate level circuits and processors based on multi core processor architecture, as non-limiting examples.
[0190] Embodiments of the disclosure may be practiced in various components such as integrated circuit modules. The design of integrated circuits is by and large a highly automated process. Complex and powerful software tools are available for converting a logic level design into a semiconductor circuit design ready to be etched and formed on a semiconductor substrate.
[0191] The scope of protection sought for various embodiments of the disclosure is set out by the independent claims. The embodiments and features, if any, described in this specification that do not fall under the scope of the independent claims are to be interpreted as examples useful for understanding various embodiments of the disclosure.
[0192] The foregoing description has provided by way of non-limiting examples a full and informative description of the exemplary embodiment of this disclosure. However, various modifications and adaptations may become apparent to those skilled in the relevant arts in view of the foregoing description, when read in conjunction with the accompanying drawings and the appended claims. However, all such and similar modifications of the teachings of this disclosure will still fall within the scope of this invention as defined in the appended claims. Indeed, there is a further embodiment comprising a combination of one or more embodiments with any of the other embodiments previously discussed.
Claims
1.A user equipment comprising:means for receiving information relating to a closed access group for the user equipment, wherein the closed access group comprises a plurality of cells and is associated with a visited network, and wherein the information comprises one or more allowed closed access group identifiers, each allowed closed access group identifier associated with one or more cells of the plurality of cells comprised in closed access group allowed for the user equipment;means for receiving from the plurality of cells comprised in closed access group, one or more closed access group identifiers associated with the cell broadcast by the cell;means for determining, based on the one or more allowed closed group identifiers associated with the cell and the one or more closed group identifiers received from the cell, to access the visited network via the cell; andmeans for accessing the visited network via the cell.2.The user equipment according to claim 1, wherein the means for receiving information relating to the closed access group comprises:means for sending, to the visited core network, a registration request message to register the user equipment with the visited network;means for receiving, from the visited network, a registration reject message, the registration reject message comprising the information relating to the closed access group; andmeans for storing the information relating to the closed access group.3.The user equipment according to claim 1, wherein the means for receiving information relating to the closed access group comprises:means for sending, to the visited network via a cell of the plurality of cells of the closed access group, a registration request message to register the user equipment with the visited network;means for receiving a registration accept message from the visited network; andmeans for storing an identifier of the cell via which the registration request message was sent.4.The user equipment according to claim 1, wherein the user equipment is registered with the visited network, and wherein the information relating to the closed access group is received from the visited network in a registration accept message, UE configuration update command message or another signalling message.5.The user equipment according to claim 1, wherein the information relating to the closed access group further comprises a closed access group validation criteria, and the user equipment further comprises means for storing the allowed closed access group identifiers according to the closed access group validation criteria.6.The user equipment according to any of claims 1 to 5, further comprising means for providing, from the user equipment to the visited network, an indication that the user equipment supports receiving information relating to the closed access group associated with the visited network, and wherein the information relating to the closed access group is received in response to the indication.7.An apparatus for a visited network, the apparatus comprising:a network function configured to perform at least the following:obtaining, from a storage function of the visited network, information relating to a closed access group for a user equipment using a public subscription identifier associated with the user equipment, wherein the closed access group comprises a plurality of cells and is associated with the visited network, and wherein the information comprises one or more closed access group identifiers, each of the closed access group identifiers associated with one or more cells of the plurality of cell comprised in the closed access group allowed for the user equipment and the public subscription identifier of the user equipment; andmanaging access to the closed access group for the user equipment based on the information related to the closed access group for the user equipment.8.The apparatus according to claim 7, wherein the network function is further configured for:receiving, from a user equipment, a registration request to register the user equipment with the visited network, the registration request comprising a temporary identifier associated with the user equipment;obtaining, from a home network of the user equipment, subscription information associated with the user equipment based on the temporary identifier associated with the user equipment, the subscription information comprising the public subscription identifier associated with the temporary identifier of the user equipment.9.The apparatus according to claim 7, wherein the network function is further configured for receiving, from the home network, an indication that the closed access group for the user equipment is allowed in the visited network and wherein the managing access to the closed access group for the user equipment is further based on the indication.10.The apparatus according to claim 7 or claim 8, wherein the managing access to the closed access group for the user equipment comprises providing the information relating to the closed access group to at least one of the following: the user equipment or a radio access network.11.The apparatus according to claim 7, wherein the network function is further configured for: receiving, from the user equipment, an indication that the user equipment supports receiving information relating to a closed access group in the visited network for the user equipment and providing the information relating to the closed access group in response to the indication.12.The apparatus according to any of claims 7 to 10, wherein the information relating to the closed access group comprises a closed access group validation criteria for which the information relating to the closed access group is valid.13.The apparatus according to any of claims 7 to 12, where in the information relating to the closed access group comprises location information for the plurality of cells.14.An apparatus for a visited network, the apparatus comprising:a network exposure function configured for:receiving a request to store information relating to a closed access group for a user equipment and a location of the closed access group, wherein the closed access group comprises a plurality of cells and is associated with the visited core network and the information relating to the closed access group comprises one or more allowed closed access group identifiers and a public subscription identifier associated with the user equipment, wherein each allowed closed access group identifier is associated with one or more cell of the plurality of cells comprised in the closed access group allowed for a user equipment;obtaining, based on the location of the closed access group, identifiers of at least one cell; andproviding, to a store function of the visited network, the information relating to the closed access group for the user equipment and the identifiers of the at least one cell for storage therein.15.An apparatus for a visited network, the apparatus comprising:a network function configured to perform at least the following:storing information relating to a closed access group for a user equipment using a public subscription identifier associated with the user equipment, wherein the closed access group comprises a plurality of cells and is associated with the visited network, and wherein the information comprises one or more closed access group identifiers, each of the closed access group identifiers associated with one or more cells of the plurality of cell comprised in the closed access group allowed for the user equipment and the public subscription identifier of the user equipment; andproviding the information relating to the closed access group for the user equipment to a further network function of the visited network for managing access to the closed access group for the user equipment.16.A method comprising:receiving information relating to a closed access group for the user equipment, wherein the closed access group comprises a plurality of cells and is associated with a visited network, and wherein the information comprises one or more allowed closed access group identifiers, each allowed closed access group identifier associated with one or more cells of the plurality of cells comprised in closed access group allowed for the user equipment;receiving from the plurality of cells comprised in closed access group, one or more closed access group identifiers associated with the cell broadcast by the cell;determining, based on the one or more allowed closed group identifiers associated with the cell and the one or more closed group identifiers received from the cell, to access the visited network via the cell; andaccessing the visited network via the cell.17.A method comprising:obtaining, from a storage function of a visited network, information relating to a closed access group for a user equipment using a public subscription identifier associated with the user equipment, wherein the closed access group comprises a plurality of cells and is associated with the visited network, and wherein the information comprises one or more closed access group identifiers, each of the closed access group identifiers associated with one or more cells of the plurality of cell comprised in the closed access group allowed for the user equipment and the public subscription identifier of the user equipment; andmanaging access to the closed access group for the user equipment based on the information related to the closed access group for the user equipment.18.A method comprising:receiving a request to store information relating to a closed access group for a user equipment and a location of the closed access group, wherein the closed access group comprises a plurality of cells and is associated with the visited core network and the information relating to the closed access group comprises one or more allowed closed access group identifiers and a public subscription identifier associated with the user equipment, wherein each allowed closed access group identifier is associated with one or more cell of the plurality of cells comprised in the closed access group allowed for a user equipment;obtaining, based on the location of the closed access group, identifiers of at least one cell; andproviding, to a store function of the visited network, the information relating to the closed access group for the user equipment and the identifiers of the at least one cell for storage therein.19.A method comprising:storing information relating to a closed access group for a user equipment using a public subscription identifier associated with the user equipment, wherein the closed access group comprises a plurality of cells and is associated with the visited network, and wherein the information comprises one or more closed access group identifiers, each of the closed access group identifiers associated with one or more cells of the plurality of cell comprised in the closed access group allowed for the user equipment and the public subscription identifier of the user equipment; andproviding the information relating to the closed access group for the user equipment to a further network function of the visited network for managing access to the closed access group for the user equipment.20.A user equipment comprising:at least one processor, and at least one memory storing instructions which, when executed by the processor, cause the user equipment at least to:receive information relating to a closed access group for the user equipment, wherein the closed access group comprises a plurality of cells and is associated with a visited network, and wherein the information comprises one or more allowed closed access group identifiers, each allowed closed access group identifier associated with one or more cells of the plurality of cells comprised in closed access group allowed for the user equipment;receive from the plurality of cells comprised in closed access group, one or more closed access group identifiers associated with the cell broadcast by the cell;determine, based on the one or more allowed closed group identifiers associated with the cell and the one or more closed group identifiers received from the cell, to access the visited network via the cell; andaccess the visited network via the cell.21.An apparatus for a visited network comprising:at least one processor, and at least one memory storing instructions which, when executed by the processor, cause the apparatus at least to:obtain, from a storage function of the visited network, information relating to a closed access group for a user equipment using a public subscription identifier associated with the user equipment, wherein the closed access group comprises a plurality of cells and is associated with the visited network, and wherein the information comprises one or more closed access group identifiers, each of the closed access group identifiers associated with one or more cells of the plurality of cell comprised in the closed access group allowed for the user equipment and the public subscription identifier of the user equipment; andmanage access to the closed access group for the user equipment based on the information related to the closed access group for the user equipment.22.An apparatus for a visited network comprising:at least one processor, and at least one memory storing instructions which, when executed by the processor, cause the apparatus at least to:receive a request to store information relating to a closed access group for a user equipment and a location of the closed access group, wherein the closed access group comprises a plurality of cells and is associated with the visited core network and the information relating to the closed access group comprises one or more allowed closed access group identifiers and a public subscription identifier associated with the user equipment, wherein each allowed closed access group identifier is associated with one or more cell of the plurality of cells comprised in the closed access group allowed for a user equipment;obtain, based on the location of the closed access group, identifiers of at least one cell; andprovide, to a store function of the visited network, the information relating to the closed access group for the user equipment and the identifiers of the at least one cell for storage therein.23.An apparatus for a visited network comprising:at least one processor, and at least one memory storing instructions which, when executed by the processor, cause the apparatus at least to:store information relating to a closed access group for a user equipment using a public subscription identifier associated with the user equipment, wherein the closed access group comprises a plurality of cells and is associated with the visited network, and wherein the information comprises one or more closed access group identifiers, each of the closed access group identifiers associated with one or more cells of the plurality of cell comprised in the closed access group allowed for the user equipment and the public subscription identifier of the user equipment; andprovide the information relating to the closed access group for the user equipment to a further network function of the visited network for managing access to the closed access group for the user equipment.24.A computer readable medium comprising instructions which, when executed by a user equipment, cause the user equipment to perform at least the following:receiving information relating to a closed access group for the user equipment, wherein the closed access group comprises a plurality of cells and is associated with a visited network, and wherein the information comprises one or more allowed closed access group identifiers, each allowed closed access group identifier associated with one or more cells of the plurality of cells comprised in closed access group allowed for the user equipment;receiving from the plurality of cells comprised in closed access group, one or more closed access group identifiers associated with the cell broadcast by the cell;determining, based on the one or more allowed closed group identifiers associated with the cell and the one or more closed group identifiers received from the cell, to access the visited network via the cell; andaccessing the visited network via the cell.25.A computer readable medium comprising instructions which, when executed by an apparatus, cause the apparatus to perform at least the following:obtaining, from a storage function of the visited network, information relating to a closed access group for a user equipment using a public subscription identifier associated with the user equipment, wherein the closed access group comprises a plurality of cells and is associated with the visited network, and wherein the information comprises one or more closed access group identifiers, each of the closed access group identifiers associated with one or more cells of the plurality of cell comprised in the closed access group allowed for the user equipment and the public subscription identifier of the user equipment; andmanaging access to the closed access group for the user equipment based on the information related to the closed access group for the user equipment.26.A computer readable medium comprising instructions which, when executed by an apparatus, cause the apparatus to perform at least the following:receiving a request to store information relating to a closed access group for a user equipment and a location of the closed access group, wherein the closed access group comprises a plurality of cells and is associated with the visited core network and the information relating to the closed access group comprises one or more allowed closed access group identifiers and a public subscription identifier associated with the user equipment, wherein each allowed closed access group identifier is associated with one or more cell of the plurality of cells comprised in the closed access group allowed for a user equipment;obtaining, based on the location of the closed access group, identifiers of at least one cell; andproviding, to a store function of the visited network, the information relating to the closed access group for the user equipment and the identifiers of the at least one cell for storage therein.27.A computer readable medium comprising instructions which, when executed by an apparatus, cause the apparatus to perform at least the following:storing information relating to a closed access group for a user equipment using a public subscription identifier associated with the user equipment, wherein the closed access group comprises a plurality of cells and is associated with the visited network, and wherein the information comprises one or more closed access group identifiers, each of the closed access group identifiers associated with one or more cells of the plurality of cell comprised in the closed access group allowed for the user equipment and the public subscription identifier of the user equipment; andproviding the information relating to the closed access group for the user equipment to a further network function of the visited network for managing access to the closed access group for the user equipment.
Citation Information
Patent Citations
Method and apparatus for determining cell in wireless communication system
CN114145046A
Network access method and apparatus
US20230370961A1
Supporting a public network integrated non-public network
WO2020186387A1
Methods, apparatuses and computer programs for configuring network measurements of restricted access resources for groups of users
WO2021063790A1