5G-4G Security Key Management via AMF and UDM Intermediary

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The integration of 5G and 4G communication systems poses challenges in ensuring secure communication, particularly in environments where both systems coexist, due to differences in mobility and session management entities, which can lead to data loss and security vulnerabilities.

Innovation Solution

The proposed solution involves an apparatus and method for managing security in a wireless communication system, where the Access and Mobility Management Function (AMF) and User Data Management (UDM) entities interact to transmit and receive security keys, leveraging base security keys associated with both systems to enhance security and stability in communication between terminals and networks.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If 5G and 4G communication systems coexist with separate mobility and session management entities, then system functionality and adaptability are improved, but security vulnerabilities and data loss risks increase

Engineering Contradiction:
Improvesystem functionalityVSAvoidsecurity
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent introduces a security management entity that acts as an intermediary between the AMF and UDM. This intermediary receives security parameters from the UDM, generates appropriate security keys, and distributes them to the eNB and UE. This mediator resolves the security coordination problem in multi-system coexistence by centralizing security key management while maintaining the functional separation of mobility and session management entities.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If security keys are managed separately in 5G and 4G systems, then system independence is improved, but security consistency and stability deteriorate

Engineering Contradiction:
Improvesystem independenceVSAvoidsecurity consistency
Core Design Contradiction:
Adaptability or versatilityVSStability of the object's composition

Solution Approach 1:

The patent merges the security key management function into a unified process where the security management entity receives a single security parameter from the UDM and uses it to generate both 5G and 4G security keys through a deterministic key derivation process. This combining approach ensures security consistency across different systems while maintaining their operational independence, as the same base security parameter guarantees consistent security levels throughout the multi-system environment.

Inventive Principle:
Principle #5Merging (Combining)

Data Source

PatentUS11930355B2Apparatus and method for information security
Publication Date: 2024.03.12 SAMSUNG ELECTRONICS CO LTD
  • US11930355B2 patent drawing
  • US11930355B2 patent drawing
  • US11930355B2 patent drawing

AI summary

The present disclosure relates to a 5th (5G) generation) or pre-5G communication system for supporting a higher data transmission rate beyond a 4th (4G) generation communication system such as long term evolution (LTE). According to various embodiments of the present disclosure, an apparatus of a user data management (UDM) for a first cellular network in a wireless communication system may include at least one transceiver, and at least one processor operatively coupled with the at least one transceiver, the at least one processor may be configured to receive a request message for security of a second cellular network from an access and mobility management function (AMF) for the first cellular network, and transmit to the AMF a response message for transmitting a security key for an eNB of the second cellular network to the eNB, and the security key may be obtained from the base security key of the second cellular network.