5G Authentication via HSS Retrieval Without UDM Data Migration
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The construction period and difficulty of Unified Data Management (UDM) in 5G networks are prolonged due to the large amount of user data migration from Home Subscriber Server (HSS) to UDM, necessitating a method to quickly activate 5G services without pre-storing authentication data in UDM.
Innovation Solution
A 5G authentication method that retrieves authentication data from the HSS when needed, generating a home authentication vector, and performing verification without pre-storing data in UDM, thereby reducing the construction period and difficulty.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If authentication data is pre-stored in UDM, then authentication verification can be performed locally, but the construction period and difficulty of UDM are prolonged due to large amount of data migration from HSS
Solution Approach 1:
The patent extracts the authentication data from the HSS and retrieves it on-demand during the authentication process, rather than pre-storing it in the UDM. This allows the UDM to function without bearing the burden of storing large amounts of authentication data, thereby reducing construction complexity while maintaining authentication capability through dynamic retrieval from HSS.
Solution Approach 2:
The patent introduces the HSS as an intermediary component that stores authentication data, while the UDM acts as a mediator that retrieves and processes this data during authentication. This intermediary arrangement allows the UDM to perform authentication verification without directly storing authentication data, resolving the contradiction between local verification capability and construction complexity.
2Speed
If authentication data is pre-stored in UDM, then authentication can be performed quickly, but storage space is consumed by large amount of user data migration
Solution Approach 1:
The patent extracts authentication data from the UDM storage and retrieves it dynamically from HSS during authentication operations. This eliminates the need to pre-store authentication data in the UDM, thereby avoiding storage space consumption while maintaining authentication functionality through on-demand retrieval.
Solution Approach 2:
The authentication data is prepared and stored in advance in the HSS, which serves as a pre-established repository. During authentication, the UDM retrieves this pre-prepared data from HSS, eliminating the need for the UDM to perform data migration and storage, thus saving storage space while enabling quick authentication.
3Productivity
If authentication data is migrated from HSS to UDM, then 5G services can be activated, but the activation process is delayed due to prolonged construction period
Solution Approach 1:
The patent extracts the data migration step from the UDM construction process by retrieving authentication data directly from HSS during authentication operations. This eliminates the time-consuming data migration phase, allowing 5G services to be activated immediately without waiting for UDM construction and data population.
Solution Approach 2:
The authentication data is pre-configured in the HSS before UDM construction is complete. This preliminary preparation allows the UDM to retrieve and use authentication data immediately upon service activation, eliminating the need to wait for data migration to complete and thereby reducing service activation time.
Data Source
Figure 1~2
Figure 3~4
Figure 5~7
AI summary
Related to is the technical field of mobile communication, and discloses a 5th Generation, 5G, authentication method, a 5G account opening method and system, an electronic device, and a computer-readable storage medium. The 5G authentication method comprises: determining whether there is authentication data in local based on an authentication vector acquisition request transmitted by an authentication network element, AUSF; in response to there being no authentication data in local, acquiring an authentication vector from a home subscription server, HSS, according to the authentication vector acquisition request; and generating a home authentication vector according to the authentication vector, and transmitting the home authentication vector to the AUSF, to enable the AUSF performs authentication verification according to the home authentication vector.