Signaling-Based Security Function Configuration in Communication Nodes
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing communication apparatuses lack flexibility in configuring security functions, which are typically fixed and tied to communication functions, making them inflexible in adapting to changing application scenarios and security requirements.
Innovation Solution
A communication method and apparatus that allows for independent configuration of security functions through signaling, using first information to determine configuration information, enabling quick and flexible adaptation to changing scenarios and requirements, with entities like a fourth entity, third entity, and second entity interacting to manage and trigger configuration operations.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If the security function is tightly coupled to the communication function and managed by the management plane, then the communication function can be managed centrally, but the security function cannot be flexibly configured or updated
Solution Approach 1:
The patent segments the security function from the communication function by introducing a separate security function node that can be independently configured and managed. This allows the security function to evolve independently without being constrained by the communication function's management architecture, directly resolving the contradiction between flexibility and complexity.
Solution Approach 2:
The patent introduces a security function node as an intermediary between the communication function and the security requirements. This intermediary can be independently configured through new signaling procedures, enabling flexible security configuration without modifying the core communication function or its management plane.
2Adaptability or versatility
If the security function is updated only when the communication apparatus is updated and the network is upgraded, then the system structure remains stable, but the security function cannot adapt to changing application scenarios in real-time
Solution Approach 1:
The patent makes the security function dynamic by enabling real-time configuration and updates through new signaling procedures. The security function node can be updated independently of communication apparatus upgrades, allowing immediate adaptation to changing security requirements without waiting for scheduled network upgrades.
Solution Approach 2:
The patent enables preliminary configuration of security functions before they are needed. The security function node can be pre-configured with new security capabilities through signaling, so when security requirements change, the system can quickly adapt without waiting for communication apparatus updates.
3Adaptability or versatility
If the security function is fixed and cannot be independently configured, then the system is simple to manage, but the security function cannot meet diverse application scenario requirements
Solution Approach 1:
The patent creates a universal security function node that can serve multiple purposes and adapt to different application scenarios. The security function node can be configured with different security capabilities through standardized signaling procedures, making it multi-functional while maintaining manageable complexity through a unified configuration approach.
Data Source
AI summary
This application discloses a communication method and apparatus. The method includes: A fourth entity sends first information to a first entity, where the first information is used to determine first configuration information of the first entity, and the first configuration information is configuration information used by the first entity to provide a security capability for a third entity. The first entity sends first feedback information, where the first feedback information indicates whether the first entity is successfully configured with the first configuration information. According to the method, the fourth entity can configure the first entity based on the first information, so that the first entity can be configured quickly and flexibly.


