MBS Traffic Protection via 5GC Individual Delivery
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current wireless network technologies face challenges in efficiently protecting Multi-cast Broadcast Service (MBS) traffic, particularly in ensuring security and optimal delivery methods across different service layers and user equipment capabilities.
Innovation Solution
The proposed method involves receiving security information in MBS announcements, determining the enablement of MBS traffic protection over the service layer, and selecting either the 5GC individual or shared MBS traffic delivery method based on the security capability of the Multi-cast Broadcast Service (MBS).
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If service layer protection is applied to MBS traffic, then security is improved, but device complexity increases due to additional security handling requirements
Solution Approach 1:
The patent implements dynamic selection between service layer protection and 5GC individual delivery based on UE security capability. The network determines whether to apply service layer protection or use 5GC individual delivery with PDCP layer protection, allowing the system to adapt its security approach according to device capabilities and requirements, thereby resolving the contradiction between security reliability and device complexity
Solution Approach 2:
The patent changes the security parameter configuration based on UE capability indicators. When a UE indicates support for service layer protection, the network configures相应 security parameters; when not supported, it switches to alternative protection mechanisms with different parameter settings, optimizing the balance between security and complexity
2Adaptability or versatility
If 5GC individual MBS traffic delivery method is used, then adaptability to different UE capabilities is improved, but network complexity increases
Solution Approach 1:
The patent segments MBS traffic delivery into two distinct paths: service layer protected delivery for capable UEs and 5GC individual delivery for incapable UEs. This segmentation allows the network to handle different UE types through specialized procedures, improving adaptability while managing complexity through clear separation of delivery mechanisms
Solution Approach 2:
The patent introduces capability indication messages as intermediaries between UE and network. These messages carry security capability information that enables the network to automatically select appropriate delivery methods without complex manual configuration, thereby improving adaptability while keeping the system manageable
3Ease of operation
If service layer protection is not supported by UE, then ease of operation is improved, but MBS traffic security deteriorates
Solution Approach 1:
The patent implements a copy-protection mechanism where 5GC individual delivery creates a protected copy path for UEs that cannot handle service layer protection. The PDCP layer applies integrity protection and confidentiality to the traffic, effectively copying the security function from the service layer to the network layer, thereby maintaining security for simple UEs
Solution Approach 2:
The patent uses the 5GC network infrastructure as an intermediary to provide protection for UEs lacking service layer protection capability. The network entities (SMF, UPF, RAN) work together to establish protected delivery paths, transferring the security burden from the UE to the network, thus maintaining security while preserving UE operational simplicity
Data Source
AI summary
The disclosure relates to a 5G or 6G communication system for supporting a higher data transmission rate. Method and system for supporting protection of MBS traffic in wireless network. Embodiments herein disclose a method and a system for supporting protection of Multi-cast Broadcast Service (MBS) traffic in a wireless network. The method includes receiving security information in a MBS announcement by user equipment (UE) (100). The method includes determining if MBS traffic protection is applied or not over the service layer; determining whether security capability of the MBS supports handling of the MBS traffic protected at the service layer, when the MBS traffic protection is applied over the service layer; joining a MBS session by sending a Non-access stratum (NAS) request message to a session management function (SMF) device (200), and requesting for the 5GC individual traffic delivery method by including an indication in the NAS request message, if the security capability of the MBS does not support handling of the MBS traffic protected at the service layer; and receiving the MBS traffic via 5GC individual traffic delivery method.


