D2D Key Pairing Across eNB Areas
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current network-controlled device-to-device (D2D) communication systems face challenges in securing key pairing between D2D devices operating under different eNB or D2D areas, leading to increased signaling burden on the core network, as existing security mechanisms rely heavily on core network involvement for key generation.
Innovation Solution
A method and apparatus for key pairing between peer D2D user equipment (UEs) in different eNB or D2D areas, where a first access network node receives a request for keys from a first UE, identifies and requests the security context from a second access network node serving the second UE's area, and obtains the keys for D2D communication, thereby reducing core network involvement.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If core network is involved in key generation for D2D communications, then security protection is improved, but signaling burden on core network increases
Solution Approach 1:
The patent segments the key generation process into two parts: security context management remains with the core network, while actual key generation for D2D communications is delegated to access network nodes (eNBs). This segmentation allows security protection to be maintained through centralized security context storage while reducing core network signaling burden by enabling distributed key generation.
Solution Approach 2:
The patent introduces access network nodes (eNBs) as intermediaries between the core network and D2D devices. These intermediaries obtain security contexts from the core network and use them to generate D2D communication keys locally, thereby reducing direct signaling between the core network and D2D devices while maintaining security protection.
2Ease of operation
If existing key generation method is used for intra-eNB cases, then key pairing is simplified, but it cannot be applied to inter-eNB cases where D2D devices are under different eNBs
Solution Approach 1:
The patent creates a universal key generation mechanism that works for both intra-eNB and inter-eNB cases. The method uses a common security context structure that can be stored and utilized by any access network node, allowing the same key generation procedure to be applied regardless of whether D2D devices are under the same eNB or different eNBs.
Solution Approach 2:
The patent enables access network nodes to copy and utilize security contexts from other access network nodes. When D2D devices are under different eNBs, the serving eNB can obtain the security context of the other device through inter-eNB communication, effectively copying the necessary security information to enable key generation without requiring core network involvement in each case.
Data Source
AI summary
Methods and apparatus are provided for key pairing between peer D2D UEs in different eNBs or D2D areas. A method may comprise: receiving at a first access network node serving a first D2D area from a first user equipment in the first D2D area, a request for keys for a D2D communication between the first user equipment and a second user equipment, wherein the request comprises an identification of a second D2D area where the second user equipment is located and being different from the first D2D area; identifying a second access network node serving the second D2D area based on the identification; sending to the second access network node, a request for a security context of the second user equipment; and receiving from the second access network node the security context for obtaining the keys for the D2D communication.


