5G NR Access Category Mapping for Unified Barring Control

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In the 5G New Radio (NR) system, there is a need for a unified access control mechanism to determine the access category of an initiated access attempt, as current solutions are lacking.

Innovation Solution

A method and apparatus that determine the access category based on a mapping relationship between access attempt and access category, allowing for unified access control through predefined or configured mappings in user equipment (UE), using access categories and setup cause values, and employing timers to manage access barring checks.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If access control is implemented based on subscriber identity module (SIM) cards, then user identification and authentication are improved, but the system becomes vulnerable to SIM card theft and unauthorized access

Engineering Contradiction:
Improveauthentication securityVSAvoidSIM card theft vulnerability
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent introduces a cloud-based authentication server as an intermediary between the mobile terminal and the access control system. The server receives authentication requests from terminals, verifies them against stored subscriber information, and issues authentication tokens. This intermediary architecture prevents direct trust between terminals and the access control system, thereby mitigating SIM card theft vulnerabilities while maintaining secure user identification.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If traditional access control systems are used, then system simplicity is maintained, but they cannot provide location-based access control and real-time monitoring

Engineering Contradiction:
Improvelocation-based access control capabilityVSAvoidsystem architecture complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent implements a multi-functional access control system that integrates location-based services, real-time monitoring, authentication, and authorization capabilities into a single unified platform. The cloud server handles multiple functions including storing subscriber information, processing authentication requests, determining geographic locations, and controlling access rights. This universal approach enables location-based access control without requiring separate specialized systems, thereby managing complexity through functional integration rather than multiplication.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Reliability

If access control decisions are made in real-time, then security responsiveness is improved, but system response time and processing speed are increased

Engineering Contradiction:
Improvesecurity responsivenessVSAvoidauthentication processing speed
Core Design Contradiction:
ReliabilityVSSpeed

Solution Approach 1:

The patent implements preliminary action by pre-storing subscriber authentication information and access control rules in the cloud server before actual access attempts occur. When a terminal requests access, the server retrieves pre-configured authentication parameters and applies predetermined access control policies, enabling rapid real-time decisions without performing complex computations during the authentication moment. This advance preparation significantly reduces processing time while maintaining security responsiveness.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentEP3713193B1Access control method, apparatus and communication system
Publication Date: 2026.05.06 FINITY INC
  • EP3713193B1 patent drawingFigure 1~2
  • EP3713193B1 patent drawingFigure 3
  • EP3713193B1 patent drawingFigure 4~5

AI summary

An access control method and apparatus and communication system. The access control method includes: based on a mapping relationship between access attempt and access category, determining an access category to which an access attempt corresponds; performing access barring check based on the access category, so as to determine whether an access to which the access category corresponds is barred; and transmitting a connection setup request message or a connection recovery request message to a network device when it is determined that the access is allowed. Hence, an access category may be determined even in different scenarios, thereby achieving a unified access control mechanism in a simple and high-efficiency manner.