Network Control Node Access Control for Subscriber Group Cells

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current communication networks lack effective mechanisms for CSG-based access control during handovers, leading to illegitimate mobile nodes accessing restricted cells, inefficient resource allocation, and increased network signaling.

Innovation Solution

Implementing a method that checks the target subscriber group identification against the mobile node's allowed subscriber group list early in the handover process, preventing illegitimate access and optimizing resource allocation by ensuring only authorized nodes access restricted cells.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If access control is performed during handover in current communication networks, then network security is improved, but the patent reveals that illegitimate mobile nodes can still access restricted cells due to lack of effective CSG-based access control mechanisms

Engineering Contradiction:
Improveaccess control effectivenessVSAvoidillegitimate access
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent performs CSG membership verification early in the handover process, specifically in the source eNodeB before the mobile node actually accesses the target cell. This preliminary action prevents illegitimate access before it can occur, rather than detecting and correcting it after the fact.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent introduces the source eNodeB as an intermediary that mediates the handover process by verifying CSG membership before allowing the handover to proceed. This intermediary performs the access control function that was previously missing, acting as a gatekeeper between the mobile node and the restricted target cell.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Productivity

If handover procedures are simplified without access control checks, then network signaling is reduced, but illegitimate nodes can access restricted cells

Engineering Contradiction:
Improvehandover efficiencyVSAvoidaccess control
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The access control verification is performed as a preliminary action during the handover preparation phase in the source eNodeB, rather than adding post-handover verification steps. This approach maintains handover efficiency while ensuring security, as the check is integrated into the existing handover signaling flow.

Inventive Principle:
Principle #10Preliminary action

3Productivity

If access control verification is performed early in handover, then resource allocation efficiency is improved, but additional signaling may be required

Engineering Contradiction:
Improveresource allocation efficiencyVSAvoidnetwork signaling
Core Design Contradiction:
ProductivityVSLoss of information

Solution Approach 1:

The patent utilizes existing handover signaling messages to carry CSG verification information, rather than introducing completely new signaling protocols. The source eNodeB uses the handover request and handover command messages that are already part of the standard procedure to convey access control decisions, making the existing signaling infrastructure serve multiple functions.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentEP2382826B1Method and arrangement in a communication network
Publication Date: 2017.11.29 TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)
  • EP2382826B1 patent drawingFigure 1
  • EP2382826B1 patent drawingFigure 2
  • EP2382826B1 patent drawingFigure 3

AI summary

Method and arrangement in a network control node, for performing access control of a mobile node in a handover from a source cell to a target subscriber group cell. The method comprises obtaining a network based allowed subscriber group list, receiving a target subscriber group identification, checking if the target subscriber group identification is comprised in the obtained network based allowed subscriber group list. If it is, information from a target network control node is obtained, verifying that the received subscriber group identification corresponds to the target subscriber group cell. Still further, the method comprises granting the mobile node access to the target subscriber group cell. Also, a method and arrangement in a target network control node, for assisting a network control node in performing access control for a mobile node in a handover from a source cell to a target subscriber group cell is provided.