Non-Cellular Access Authentication via Gateway Registration

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing communication systems face challenges in authenticating terminal devices accessing networks via non-cellular mechanisms, particularly non-3GPP devices, as existing solutions do not adequately address the authentication and security of such devices.

Innovation Solution

A method and apparatus for authenticating devices with non-cellular access, involving a registration request and authentication process that includes transmitting a registration request indicating non-cellular access, receiving authentication messages, and establishing connections using security information, ensuring secure communication between devices.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If authentication for non-cellular devices is implemented, then network security is improved, but device complexity increases

Engineering Contradiction:
Improvenetwork securityVSAvoidauthentication process complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent introduces a gateway function as an intermediary between non-cellular devices and the core network. This gateway handles the authentication process by interacting with both the device and the authentication server, thereby improving network security while managing the complexity at a centralized point rather than distributing it across all network elements.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The authentication system is segmented into distinct functional components: the gateway function that receives registration requests, the authentication server that verifies credentials, and the core network that enforces security policies. This segmentation allows each component to handle specific tasks, improving overall security while making the complex authentication process more manageable and maintainable.

Inventive Principle:
Principle #1Segmentation

2Reliability

If registration and authentication processes are added for non-cellular access, then network security is improved, but processing time increases

Engineering Contradiction:
Improvenetwork securityVSAvoidconnection establishment time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent implements preliminary authentication where devices are registered and authenticated in advance before actual data transmission begins. The gateway function processes registration requests and obtains authentication results beforehand, so that when data needs to be transmitted, the security verification is already complete, reducing the time loss during actual communication.

Inventive Principle:
Principle #10Preliminary action

3Reliability

If authentication mechanisms are implemented for non-3GPP devices, then network security is improved, but system complexity increases

Engineering Contradiction:
Improvenetwork securityVSAvoidsystem architecture complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The gateway function is designed as a universal component that can handle authentication for multiple types of non-cellular devices (WiFi, Bluetooth, etc.) and support various authentication methods. This multi-functionality allows the system to improve security across different access technologies without proportionally increasing system complexity, as a single gateway handles diverse authentication scenarios.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS20260067679A1Authentication for device with non-cellular access
Publication Date: 2026.03.05 NOKIA TECHNOLOGIES OY
  • US20260067679A1 patent drawing
  • US20260067679A1 patent drawing
  • US20260067679A1 patent drawing

AI summary

Example embodiments of the present disclosure relate to authentication for device with non-cellular access. A first apparatus transmits, to a second apparatus, a registration request for a third apparatus. The registration request at least indicates that the third apparatus is accessing a network via a non-cellular mechanism. The first apparatus further receives, from the second apparatus, a first message indicating that the third apparatus is authenticated. Based on the receipt of the first message, the first apparatus further transmits security information to a fourth apparatus for establishing a connection between the third and fourth apparatuses. In this way, the third apparatus can be authenticated. In addition, secure connection can be established between the third and fourth apparatuses.