Mobile Device Security Mode Command Failure Recovery

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In cellular communication networks, security mode command failures can lead to prolonged service disruptions due to the E-UTRAN's failure to release RRC connections, causing User Equipment (UE) to wait for guard timers to expire before retrying procedures, resulting in extended downtime for users.

Innovation Solution

A mobile communication device and method that determine whether a SECURITY MODE COMMAND message fails integrity protection checks and, if so, locally release connections without waiting for timers to expire, allowing immediate retry of NAS procedures.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If the E-UTRAN fails to release the RRC connection after security activation failure, then the UE must wait for guard timer expiry before retrying, but this causes extended service downtime for users

Engineering Contradiction:
Improvesecurity activation reliabilityVSAvoidservice downtime
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The UE proactively detects security mode command failures through integrity protection checks before the network can initiate timer-based recovery procedures. By performing preliminary detection and locally releasing the RRC connection immediately upon failure detection, the UE eliminates the need to wait for guard timer expiry, thus resolving the contradiction between maintaining security reliability and minimizing service downtime

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The UE continuously monitors the integrity protection status of SECURITY MODE COMMAND messages and provides immediate feedback when failures are detected. This feedback mechanism enables the UE to trigger local RRC connection release without waiting for network-initiated timer expiry, thereby reducing service downtime while maintaining security activation reliability

Inventive Principle:
Principle #23Feedback

2Ease of operation

If the UE waits for guard timer expiry before retrying NAS procedures, then the protocol specification is followed, but user service is blocked for extended periods

Engineering Contradiction:
Improveprotocol complianceVSAvoidservice recovery speed
Core Design Contradiction:
Ease of operationVSProductivity

Solution Approach 1:

The UE performs preliminary integrity protection checks on SECURITY MODE COMMAND messages and proactively detects failures before the guard timer expires. By taking preliminary action to detect and respond to failures, the UE can locally release the RRC connection and retry NAS procedures immediately, thus improving service recovery speed while still following the spirit of the protocol specification

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The UE dynamically adjusts its behavior based on the detected failure condition. When integrity protection failure is detected, the UE transitions from passive timer-waiting mode to active local release mode, enabling immediate retry of NAS procedures. This dynamic adaptation resolves the contradiction between protocol compliance and service recovery speed

Inventive Principle:
Principle #15Dynamics

3Extent of automation

If the E-UTRAN does not release the RRC connection upon security activation failure, then network control is maintained, but the UE remains in a stuck state unable to perform any operations

Engineering Contradiction:
Improvenetwork controlVSAvoidUE operational capability
Core Design Contradiction:
Extent of automationVSEase of operation

Solution Approach 1:

The UE autonomously detects security mode command failures through integrity protection checks and self-resolves the stuck state by locally releasing the RRC connection without requiring network intervention. This self-service capability enables the UE to recover from failure states independently, improving operational capability while the network maintains overall control through the integrity protection mechanism

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS9788208B2Apparatuses and methods for recovering from security mode command failures
Publication Date: 2017.10.10 MEDIATEK INC
  • US9788208B2 patent drawing
  • US9788208B2 patent drawing
  • US9788208B2 patent drawing

AI summary

A mobile communication device including a wireless transceiver and a controller is provided. The wireless transceiver performs wireless transmission and reception to and from a service network. The controller determines, during an ongoing Non-Access Stratum (NAS) procedure, whether a SECURITY MODE COMMAND message received from the service network via the wireless transceiver fails an integrity protection check and no RRC CONNECTION RELEASE message has been received from the service network via the wireless transceiver, or whether transmission of a SECURITY MODE COMPLETE message to the service network via the wireless transceiver has failed. Also, the controller locally releases a connection to the service network when the SECURITY MODE COMMAND message fails the integrity protection check and no RRC CONNECTION RELEASE message has been received, or when the transmission of the SECURITY MODE COMPLETE message has failed.