MME Security Management for Seamless PLMN Handover
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current NAS protocol security management is inadequate during handovers between Public Land Mobile Networks (PLMNs), leading to potential communication interruptions and security breaches.
Innovation Solution
A method and system for managing security during UE handovers using a Mobility Management Entity (MME) that compares network identities in Tracking Area Update (TAU) request messages to determine the transmission of authentication and Security Mode Command (SMC) messages, ensuring seamless authentication and security mode operations across PLMNs.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If current NAS protocol security management is used during handovers between PLMNs, then device complexity is reduced, but security reliability deteriorates and communication interruptions occur
Solution Approach 1:
The patent applies preliminary action by performing security management operations before handover occurs. The MME compares network identities in advance during the TAU request processing, determines authentication requirements before the handover is complete, and prepares security context accordingly. This prevents security issues during handover rather than reacting to them afterward, thereby improving security reliability without adding complex real-time security mechanisms.
2Reliability
If network identity comparison and authentication message transmission is implemented during handover, then security reliability is improved, but communication efficiency deteriorates due to additional authentication steps
Solution Approach 1:
The patent applies partial action by selectively transmitting authentication request messages only when necessary. The MME compares network identities and determines whether authentication is required based on whether the UE is moving to a different PLMN. If the PLMN remains the same, no additional authentication is performed. This partial approach ensures authentication reliability when needed while avoiding unnecessary authentication steps that would reduce handover efficiency.
3Reliability
If security mode command messages are transmitted during handover between PLMNs, then security is enhanced, but loss of time increases due to additional message exchanges
Solution Approach 1:
The patent applies preliminary action by preparing security context and determining SMC transmission requirements during the TAU request processing phase, before the actual handover execution. The MME compares network identities early in the process and determines whether SMC messages need to be transmitted. This allows security assurance to be established in advance, minimizing the time impact during the critical handover execution phase.
Data Source
AI summary
A method, an apparatus, and a system for solving and managing security problems, which may occur during a handover of a User Equipment (UE) between PLMNs in a mobile communication network, by using a Non-Access Stratum (NAS) protocol are provided. By the method, a UE can perform a security mode command and an authentication with a network. Further, the method can prevent interruption of communication due to authentication or security during a handover of a UE between Public Land Mobile Networks (PLMNs).


