Configurable Access Stratum Security for 5G Network Controllers

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Next-generation wireless communication systems, particularly 5G networks, face performance bottlenecks at network access device controllers due to congestion, high throughput, and increased computational overhead, primarily caused by AS security protection processing for data packets.

Innovation Solution

Configurable AS security is implemented by offloading some of the AS security protection processing from network access device controllers to associated network access devices, allowing the selection of the protocol layer for security processing to reduce computational overhead and mitigate bottlenecks.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If AS security protection processing is centralized at network access device controllers, then security protection is provided for data packets, but performance bottlenecks arise due to congestion and high computational overhead

Engineering Contradiction:
Improvesecurity protectionVSAvoidprocessing capacity
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The patent segments the AS security protection processing function from the network access device controller and distributes it to multiple network access devices. This segmentation allows the security processing load to be divided across multiple processing units, thereby maintaining security protection while eliminating the performance bottleneck caused by centralized processing.

Inventive Principle:
Principle #1Segmentation

2Reliability

If AS security protection processing is performed at network access device controllers, then data packet security is ensured, but computational overhead increases and resources are heavily utilized

Engineering Contradiction:
Improvesecurity protectionVSAvoidcomputational overhead
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent extracts the AS security protection processing function from the network access device controller and relocates it to network access devices. This extraction removes the computational overhead burden from the controller while maintaining the security protection capability through the distributed processing architecture.

Inventive Principle:
Principle #2Taking out (Extraction)

Data Source

PatentEP3403385B1Configurable access stratum security
Publication Date: 2022.07.06 QUALCOMM INC
  • EP3403385B1 patent drawingFigure 1
  • EP3403385B1 patent drawingFigure 2
  • EP3403385B1 patent drawingFigure 3~5

AI summary

Techniques are described for wireless communication. A method for wireless communication at a user equipment (UE) includes establishing a connection with a network node; receiving from the network node, as part of establishing the connection, an AS security indication indicating an AS protocol layer for protecting data packets; and configuring AS security protection for data packets based at least in part on the AS security indication and the indicated AS protocol layer. A method for configuring AS security includes establishing a connection with a UE; receiving from a network access device controller, as part of establishing the connection, an AS security indication indicating an AS protocol layer for protecting data packets; and configuring AS security protection for data packets transmitted to or received from the UE based at least in part on the AS security indication and the indicated AS protocol layer.