Key-Based URSP Rule Verification for Secure Roaming
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The existing URSP architecture in wireless communication systems faces potential security issues and privacy risks when configuring and executing user equipment route selection policies, particularly in roaming scenarios, due to the vulnerability of URSP rules being tampered with and the exposure of user privacy during network analysis.
Innovation Solution
Implementing a security mechanism that includes generating and verifying URSP rules using verification information based on a key, ensuring secure transmission of URSP rules to user equipment in roaming scenarios, and protecting user privacy by determining operations based on user consent.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If URSP rules are transmitted without verification information, then the transmission process is simple and fast, but the security is compromised and URSP rules can be tampered with
Solution Approach 1:
The patent introduces verification information as an intermediary element between the URSP rule and the terminal device. This verification information, generated based on the URSP rule and a key, acts as a mediator that enables the terminal device to verify the authenticity and integrity of received URSP rules without requiring complex mutual authentication protocols between network elements.
Solution Approach 2:
The patent applies preliminary action by pre-generating verification information along with the URSP rule before transmission. The network element generates the verification information based on the URSP rule and a key in advance, so that when the terminal device receives the URSP rule, it can immediately verify its authenticity without requiring additional authentication steps during the rule execution phase.
2Reliability
If network elements perform detailed analysis of user traffic and behavior, then network optimization and security monitoring are improved, but user privacy is exposed
Solution Approach 1:
The patent applies local quality by enabling the terminal device to perform local verification of URSP rules using verification information and keys stored on the device itself. This distributed verification approach allows security validation to occur locally at the terminal rather than requiring centralized network analysis of user traffic and behavior, thereby maintaining network security monitoring while protecting user privacy.
Data Source
AI summary
Provided are wireless communication methods and an apparatus. A first method comprises: a terminal device receiving a first message, the first message comprising a first URSP rule and first verification information, the first URSP rule corresponding to a VPLMN of the terminal device; and the terminal device verifying the first verification information on the basis of the first URSP rule and a first secret key, the first verification information being obtained on the basis of the first URSP rule and the first secret key.


