ProSe Authorization via Home ProSe Function Mediator
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Conventional ProSe authorization in mobile communication systems faces issues with PC3 signalling between UE and ProSe Function when they reside in different networks, particularly concerning availability and security, and requires tunnelling through IPX networks, which is not scalable and poses configuration challenges.
Innovation Solution
The solution involves the UE obtaining authorization by connecting to the home ProSe Function via a home-routed PDN connection, merging authorization information from the home and visited/local ProSe Functions using the PC6 and PC7 interfaces, thereby eliminating the need for direct IPX network tunnelling and reducing configuration complexity.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If PC3 signalling is carried over the user plane over the SGi interface across network borders, then ProSe authorization can be obtained in visited and local networks, but extensive tunnelling and configuration are required which reduces scalability and increases complexity
Solution Approach 1:
The home ProSe Function acts as an intermediary that the UE directly contacts for authorization, eliminating the need for complex IPX tunnelling through visited networks. The home ProSe Function then communicates with visited and local ProSe Functions using standardized interfaces (PC6/PC7), simplifying the overall architecture while maintaining authorization availability across networks.
Solution Approach 2:
Instead of having the UE signal directly to visited/local ProSe Functions through complex IPX tunnels, the approach is inverted: the UE signals to its home ProSe Function using home-routed PDN connections, and the home ProSe Function handles all external communications. This inversion eliminates the need for UE-side tunnelling configuration and IPX network complexity.
2Reliability
If home-routed PDN connection is set up for ProSe authorization signalling, then authorization can be obtained securely, but the limit on number of PDN connections and bearers is reached faster
Solution Approach 1:
The home-routed PDN connection is made multi-functional by using it for both general data traffic and ProSe authorization signalling. This eliminates the need for separate dedicated PDN connections for authorization purposes, allowing the same connection to serve multiple functions and preserving available bearers for other uses.
3Reliability
If PC3 signalling is transported over IPX network with tunnelling, then security issues are addressed, but the configuration and tunnelling requirements reduce ease of operation
Solution Approach 1:
The home ProSe Function serves as a secure intermediary that the UE directly communicates with using home-routed PDN connections. This eliminates the need for complex IPX tunnelling configuration while maintaining security, as the authorization signalling occurs over controlled, home-network-routed connections rather than untrusted external IPX networks.
Data Source
Figure 1
Figure 2
Figure 3
AI summary
The present invention relates to mobile communication systems, and more particularly to technology that enables a User Equipment (UE) to obtain authorization to use Proximity-based Services. A method is performed by a mobile terminal requesting authorization to use a proximity service, comprising submitting a request to obtain proximity service authorization, receiving a response indicating to which proximity service function the authorization request should be submitted, and submitting the proximity service authorization request to the proximity service function indicated in the response.