Wireless Device Security Mode Error Detection
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The existing Security Mode Command procedure in wireless communication systems can lead to asynchronous abortions of security mode configuration at the UE and UTRAN, resulting in mismatched ciphering and integrity protection configurations, causing RRC connection loss and prolonged call drop recovery times.
Innovation Solution
A method and device for detecting errors in the security mode configuration procedure by transmitting a cell update message to abort the security mode configuration, receiving and verifying the new configuration, and performing security mode checks using both new and original configurations to maintain consistent security settings, thereby preventing RRC connection loss.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If the UE performs a Cell Update during the security mode command procedure, then the UE can update its location information, but the UTRAN aborts the security mode configuration procedure causing ciphering and integrity protection mismatch
Solution Approach 1:
The UE performs the security mode configuration check before actually using the new security parameters. By checking the integrity of downlink messages against the new security mode configuration in advance, the UE can detect mismatches caused by asynchronous abortions and take corrective action before communication errors occur.
Solution Approach 2:
The UE continuously monitors downlink messages and performs feedback checks to detect security configuration mismatches. When a mismatch is detected, the UE sends a Security Mode Command Complete message to notify the UTRAN, enabling coordinated resolution of the asynchronous abort issue.
2Productivity
If the UE completes the security mode configuration procedure without receiving UTRAN acknowledgement, then the UE can establish new security parameters, but the RRC connection is lost due to configuration mismatch
Solution Approach 1:
The UE uses feedback mechanisms by checking the integrity of downlink messages against the new security mode configuration. This feedback loop detects when the UTRAN has not properly completed the security mode configuration procedure, allowing the UE to identify and report the issue through Security Mode Command Complete messages.
Solution Approach 2:
The UE performs self-verification of security configuration correctness by independently checking downlink message integrity against the new security parameters. This self-service capability allows the UE to detect configuration mismatches without waiting for explicit UTRAN confirmation, enabling proactive error detection and reporting.
3Reliability
If the UE aborts the security mode configuration procedure when Cell Update is sent before acknowledgement, then the UE can prevent configuration mismatch, but the UTRAN may have already completed the procedure causing connection loss
Solution Approach 1:
The UE performs security mode configuration checks on downlink messages before using them for communication. This preliminary verification action allows the UE to detect configuration mismatches early, before they cause communication errors or connection losses.
Solution Approach 2:
The UE continuously monitors downlink messages and performs ongoing security configuration checks throughout the communication session. This continuous monitoring ensures that any configuration mismatches are detected immediately and reported through Security Mode Command Complete messages, maintaining connection stability.
Data Source
AI summary
A method of detecting an error in a security mode configuration procedure conducted at a radio access network is provided. A cell update message is transmitted which causes the radio access network to abort a security mode configuration procedure. After the transmission of an update message, a new security mode configuration is received and the original security mode configuration is replaced with a new security mode configuration. A security mode configuration check is performed on a received downlink message using the new security mode configuration. If the security mode configuration check fails, a further security mode configuration check is performed on the downlink message to detect an error in the security mode configuration procedure. If it is determined there has been an error in the security mode configuration procedure, security mode configuration checks are performed on further downlink messages received from the network using the original security mode configuration.


