3GPP Network Access Authentication for Core Load Reduction

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The existing 3GPP network architecture faces excessive load due to unauthorized access attempts from user equipment (UE) that are not permitted, leading to inefficiencies and increased processing demands on core network devices.

Innovation Solution

The proposed solution involves the UE sending an access request message to the core network device, receiving an unauthorized access message with authentication information, and performing authentication using this information to determine authorization, thereby reducing the number of access request messages sent to the core network device and implementing corresponding network access policies.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If the core network device sends unauthorized access messages to all terminals without authentication, then the access control process is simple and fast, but the core network device experiences excessively heavy load due to continuous access attempts from unauthorized terminals

Engineering Contradiction:
Improveaccess control efficiencyVSAvoidcore network device load
Core Design Contradiction:
ProductivityVSPower

Solution Approach 1:

The terminal performs authentication on the core network device before attempting network access. This preliminary action verifies whether the terminal is authorized, preventing unauthorized terminals from continuously sending access requests to the core network device, thereby reducing the device's processing load while maintaining access control efficiency

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The core network device provides authentication information to the terminal, and the terminal uses this information to authenticate the core network device. This feedback mechanism enables the terminal to make informed access decisions, reducing unnecessary access attempts and lowering the core network device's load

Inventive Principle:
Principle #23Feedback

2Reliability

If the terminal continuously sends access request messages to the core network device, then the terminal ensures it can access the network if authorized, but the core network device experiences excessively heavy load from processing numerous requests

Engineering Contradiction:
Improvenetwork access reliabilityVSAvoidcore network device load
Core Design Contradiction:
ReliabilityVSPower

Solution Approach 1:

The terminal performs authentication on the core network device before sending access requests. This preliminary verification ensures that only authorized terminals attempt to access the network, maintaining access reliability for legitimate users while preventing unauthorized terminals from generating excessive traffic that would overload the core network device

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The terminal autonomously authenticates the core network device using authentication information obtained from the network. This self-service capability allows the terminal to determine its own authorization status without requiring continuous core network device processing, reducing the device's load while ensuring reliable access for authorized terminals

Inventive Principle:
Principle #25Self-service

Data Source

PatentEP3614741B1Processing apparatus for terminal access to 3GPP network and communication system and corresponding system and computer program product
Publication Date: 2021.09.29 HUAWEI TECH CO LTD
  • EP3614741B1 patent drawingFigure 1
  • EP3614741B1 patent drawingFigure 2~3
  • EP3614741B1 patent drawingFigure 4A

AI summary

A processing method for terminal access to a 3GPP network is provided. UE sends an access request message to a core network device on the 3GPP network, and the core network device sends an unauthorized access message to the UE after determining that the UE has no permission to access the 3GPP network. The unauthorized access message includes authentication information of the core network device. The UE performs authentication on the core network device according to the authentication information of the core network device, and executes a corresponding network access policy after authentication on the core network device by the UE succeeds, that is, after the UE determines that a source of the unauthorized access message is authorized, to reduce a quantity of access request messages that are sent to the core network device. This reduces load of the core network device, and further can improve efficiency of accessing the 3GPP network.