MAC-CE Integrity Protection Using Fast MAC-I Signaling

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing wireless communication systems face vulnerabilities in MAC-CEs and PHY layer data transmission due to unsecured signaling, which can be exploited to compromise sensitive information and integrity, and the lack of effective security protocols, which can be exploited to track user location and manipulate network operations.

Innovation Solution

Implementing a fast MAC-I at the MAC layer to secure lower layer signaling, such as MAC-CEs, using message authentication codes for integrity protection, reducing transmission delays by applying security measures earlier in the protocol stack.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If security protocols are applied at higher layers (PDCP layer), then security protection is provided, but transmission delays increase due to later-stage security processing

Engineering Contradiction:
Improvesecurity protectionVSAvoidtransmission delays
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent applies security processing (integrity protection and ciphering) at the MAC layer before data transmission, rather than at the PDCP layer after data preparation. This preliminary application of security measures at an earlier stage in the protocol stack reduces transmission delays while maintaining security protection, as security operations are performed concurrently with or before data assembly rather than as a subsequent step

Inventive Principle:
Principle #10Preliminary action

2Device complexity

If unsecured signaling is used in MAC-CEs and PHY layer data transmission, then device complexity is reduced, but system vulnerability increases allowing compromise of sensitive information

Engineering Contradiction:
Improvesecurity protocol complexityVSAvoidsystem vulnerability
Core Design Contradiction:
Device complexityVSObject-affected harmful factors

Solution Approach 1:

The patent implements integrity protection and ciphering at the MAC layer, applying security measures before data leaves the transmitting device. This preliminary security application protects sensitive information including UE location data and network operation details from unauthorized access and manipulation, without requiring complex higher-layer security protocols

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent introduces MAC-I (MAC layer integrity protection) as an intermediary security mechanism between the MAC layer and PHY layer. This intermediary provides authentication and integrity verification for MAC-CEs and PHY layer transmissions, protecting against unauthorized manipulation while maintaining relatively simple device implementation compared to full higher-layer security protocols

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS20260067897A1Method and apparatus for protecting lower layer signaling
Publication Date: 2026.03.05 LENOVO UNITED STATES INC
  • US20260067897A1 patent drawing
  • US20260067897A1 patent drawing
  • US20260067897A1 patent drawing

AI summary

Various aspects of the present disclosure relate to a User Equipment (UE) configured to or operable to receive, from a network entity, a grant for a set of resources, generate a transport block (TB) for transmission, wherein the TB includes a first medium access control-control element (MAC-CE), select one of a first type of message authentication code for integrity (MAC-I) or a second type of MAC-I for validating the first MAC-CE, wherein the first type of MAC-I is different from the second type of MAC-I, and transmit, to the network entity, the TB using the set of resources, wherein the TB includes the first MAC-CE and the selected one of the first type of MAC-I or the second type of MAC-I.