5G Closed Access Group Management for Secure UE Registration

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing 5G communication systems face challenges in securely managing access and protecting user equipment (UE) when accessing both public and private networks, particularly in environments with vertical networks and non-public networks, where security and efficient communication are crucial.

Innovation Solution

The implementation of Closed Access Group (CAG) information management through the Access and Mobility Management Function (AMF) and User Equipment (UE) to securely manage access to public and private networks, using integrity protection and ciphering of messages like Registration Accept and Service Accept, ensuring secure communication protocols are in place.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If Closed Access Group (CAG) information management is implemented through AMF and UE to securely manage access to public and private networks, then security is improved, but device complexity increases

Engineering Contradiction:
ImprovesecurityVSAvoiddevice complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent segments access control by introducing Closed Access Group (CAG) information that divides networks into public and private access groups. The AMF and UE maintain separate CAG information lists that categorize different network access rights, allowing secure differentiation between public and private network access while managing complexity through structured information organization.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces CAG information as an intermediary element between the UE and networks. This intermediary contains structured data about which networks are publicly accessible and which require private access credentials, simplifying the security management process by providing a centralized information repository that both AMF and UE can reference.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If integrity protection and ciphering are applied to messages like Registration Accept and Service Accept, then security is improved, but processing time increases

Engineering Contradiction:
ImprovesecurityVSAvoidprocessing time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent applies integrity protection and ciphering algorithms to Registration Accept and Service Accept messages during the message generation phase at the AMF, rather than adding these protections later in the transmission chain. This preliminary application of security measures streamlines the overall processing by establishing security upfront in the protocol flow.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentEP4014576B1Apparatus and method for access control, management, and protection in wireless communication system
Publication Date: 2025.11.12 SAMSUNG ELECTRONICS CO LTD
  • EP4014576B1 patent drawingFigure 1
  • EP4014576B1 patent drawingFigure 2~3
  • EP4014576B1 patent drawingFigure 4~5

AI summary

Provided are a method and apparatus for access control, management, and protection to support various services in a wireless communication system. An access method of a user equipment (UE) in the wireless communication system includes: transmitting a Registration Request message to an Access and Mobility Management Function (AMF); receiving a Registration Accept message from the AMF, in response to the Registration Request message; and storing or updating a Closed Access Group (CAG) list included in the Registration Accept message.