Cellular Redirection Security Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Wireless communication systems face security vulnerabilities due to less stringent authentication mechanisms in older technologies, allowing unauthorized redirections to less secure networks, which can lead to privacy invasions and eavesdropping.

Innovation Solution

Implementing secure connection release and network redirection methods where wireless devices and base stations ensure authentication before redirecting to less secure technologies, and configuring systems to perform cell re-selection if security is not established, thereby preventing unauthorized redirections.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If wireless devices redirect to older wireless communication technologies for network coverage or service availability, then network connectivity and service accessibility are improved, but security and authentication reliability deteriorate due to less stringent authentication mechanisms in legacy technologies

Engineering Contradiction:
Improvenetwork connectivityVSAvoidsecurity authentication
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The system performs authentication with the target cell before executing the redirection. The base station establishes security credentials and verifies device identity in advance, so that when redirection occurs, the security framework is already in place. This preliminary authentication prevents the security vulnerability of redirecting to insecure networks without verification.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The base station acts as an intermediary that mediates between the wireless device and the target cell. It verifies the security capabilities of the target cell and ensures that redirection only occurs to cells with adequate authentication mechanisms. This intermediary layer filters out insecure redirection targets while allowing connectivity to secure networks.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Productivity

If base stations provide redirection indications to wireless devices for network optimization or load balancing, then network efficiency and resource utilization are improved, but vulnerability to unauthorized redirection and eavesdropping increases

Engineering Contradiction:
Improvenetwork efficiencyVSAvoidunauthorized redirection
Core Design Contradiction:
ProductivityVSObject-affected harmful factors

Solution Approach 1:

The base station performs authentication and security verification with the target cell before providing redirection indications to wireless devices. This preliminary action ensures that only secure redirection targets are recommended, preventing unauthorized redirection while maintaining network efficiency benefits.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system implements feedback mechanisms where the base station receives security capability information from target cells and uses this feedback to determine whether to provide redirection indications. Cells with insufficient security credentials receive negative feedback, preventing them from being redirection targets, while secure cells receive positive feedback enabling efficient redirection.

Inventive Principle:
Principle #23Feedback

3Speed

If wireless devices comply with all redirection indications received from base stations, then network handover speed and service continuity are improved, but risk of privacy invasion and security breaches increases

Engineering Contradiction:
Improvehandover speedVSAvoidprivacy invasion
Core Design Contradiction:
SpeedVSObject-affected harmful factors

Solution Approach 1:

Authentication and security verification are performed in advance before redirection execution. The wireless device receives security confirmation from the base station prior to handover, enabling rapid compliance with redirection indications while ensuring the target cell meets security requirements. This eliminates the need for post-redirection security checks that would slow down the process.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The base station serves as a trusted intermediary that validates redirection targets for the wireless device. It filters out insecure redirection targets and presents only verified secure options to the device, allowing the device to quickly comply with redirections without directly assessing security risks themselves.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS10728763B2Evaluating cellular redirection based on security establishment
Publication Date: 2020.07.28 APPLE INC
  • US10728763B2 patent drawing
  • US10728763B2 patent drawing
  • US10728763B2 patent drawing

AI summary

This disclosure relates to techniques for securely performing connection release and network redirection in a wireless communication system. A wireless device may establish a radio resource control (RRC) connection with a first cell. The wireless device may receive a RRC connection release message from the first cell. The RRC connection release message may include an indication to redirect the wireless device to a second cell. The RRC connection with the first cell may be released. It may be determined whether security has been established with the first cell when the indication to redirect the wireless device to the second cell is received. A new serving cell may be selected based at least in part on whether security has been established with the first cell when the indication to redirect the wireless device to the second cell is received.