5G Authentication via HSS On-Demand Vector Retrieval

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The migration of user data from HSS to UDM for 5G authentication is cumbersome due to the large volume of data and prolonged construction periods, necessitating a method to quickly activate 5G services without pre-storing authentication data in UDM.

Innovation Solution

A 5G authentication method that retrieves authentication data from the HSS when needed, generating a home authentication vector, and performing verification without prior storage in UDM, thereby reducing UDM construction difficulty and time.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If user data is migrated from HSS to UDM for 5G authentication, then 5G services can be activated, but the construction period is prolonged and the process becomes cumbersome due to large volume of data

Engineering Contradiction:
Improveauthentication capabilityVSAvoidconstruction period
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent extracts the authentication data retrieval function from the UDM and relocates it back to the HSS. The UDM no longer needs to store authentication data locally, instead querying the HSS when authentication is needed. This extraction of the storage function resolves the contradiction by eliminating the time-consuming data migration process while maintaining authentication capability.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent introduces the AUSF (Authentication Server Function) as an intermediary between the UDM and HSS. The AUSF mediates the authentication data retrieval process by receiving requests from UDM and fetching data from HSS, thereby eliminating the need for direct data migration to UDM and reducing construction time.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If authentication data is pre-stored in UDM, then 5G authentication can be performed, but UDM construction difficulty and time increase

Engineering Contradiction:
Improveauthentication verificationVSAvoidUDM construction
Core Design Contradiction:
Ease of operationVSEase of manufacture

Solution Approach 1:

The patent extracts the authentication data storage function from UDM and returns it to HSS. The UDM only maintains subscription data while authentication data is retrieved on-demand from HSS through AUSF. This extraction simplifies UDM construction by removing the complex authentication data management burden.

Inventive Principle:
Principle #2Taking out (Extraction)

3Reliability

If large volume of user data is migrated to UDM, then complete authentication capability is achieved, but storage requirements and construction complexity increase

Engineering Contradiction:
Improveauthentication capabilityVSAvoiddata storage volume
Core Design Contradiction:
ReliabilityVSQuantity of substance

Solution Approach 1:

The patent extracts the authentication data storage function from UDM and relocates it to HSS. The UDM only stores minimal subscription data (SUPI, service profiles) while authentication vectors are retrieved from HSS when needed. This extraction dramatically reduces the storage volume required at UDM.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent changes the dimensional arrangement of data storage by separating authentication data (stored at HSS in the home network) from subscription data (stored at UDM in the visited network). This dimensional separation allows UDM to operate with minimal local storage while maintaining complete authentication capability through on-demand retrieval.

Inventive Principle:
Principle #17Another dimension (Dimensionality change)

Data Source

PatentUS12445838B25G authentication method, 5G account opening method and system, and electronic device and computer-readable storage medium
Publication Date: 2025.10.14 ZTE CORP
  • US12445838B2 patent drawing
  • US12445838B2 patent drawing
  • US12445838B2 patent drawing

AI summary

Related to is the technical field of mobile communication, and discloses a 5th Generation (5G) authentication method, a 5G account opening method and system, an electronic device, and a computer-readable storage medium. The 5G authentication method comprises: determining whether there is authentication data in local based on an authentication vector acquisition request transmitted by an authentication network element (AUSF); in response to there being no authentication data in local, acquiring an authentication vector from a home subscription server (HSS) according to the authentication vector acquisition request; and generating a home authentication vector according to the authentication vector, and transmitting the home authentication vector to the AUSF, to enable the AUSF performs authentication verification according to the home authentication vector.