Uplink Downlink Security Parameter Indication for Wireless Data Transmission
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
In LTE-Advanced systems, during PCell changes or security parameter updates, there is a confusion stage where it is unclear whether uplink or downlink data is encrypted with the source or target security key, leading to incorrect decryption and disrupted data transmission.
Innovation Solution
Introducing security parameter indications into uplink and downlink data, allowing the base station and user equipment to determine the correct security parameter used for processing, ensuring accurate decryption by including a first or second security parameter indication in the data transmission.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Duration of action of stationary object
If data transmission continues during PCell change without security parameter indications, then data transmission continuity is maintained, but decryption accuracy deteriorates due to confusion about which security key to use
Solution Approach 1:
A security parameter indication field is introduced as an intermediary element in the data transmission process. This field explicitly carries information about which security parameter (source or target) was used to encrypt the data, enabling the receiving end to accurately select the corresponding decryption key without interrupting data transmission.
Solution Approach 2:
The patent changes the state of data packets by adding a security parameter indication parameter. This parameter transformation allows the receiving end to distinguish between data encrypted with source security parameters and data encrypted with target security parameters, resolving the decryption key selection ambiguity during PCell transition.
2Reliability
If security parameters are changed during PCell change, then security freshness is improved, but system complexity increases due to dual security parameter management
Solution Approach 1:
The source base station performs preliminary actions by setting the security parameter indication field before transmitting data during the transition period. This allows the receiving end to proactively identify and select the correct security parameter without needing complex real-time decision-making mechanisms.
Solution Approach 2:
The security parameter indication field acts as a feedback mechanism that provides explicit information about the encryption state of transmitted data. This feedback loop eliminates the need for complex inference algorithms at the receiving end, simplifying the overall security parameter management system.
3Measurement precision
If security parameter indications are added to data, then decryption accuracy is improved, but data processing overhead increases
Solution Approach 1:
The security parameter indication field is designed to be compact and selective, providing just enough information (source or target indicator) to enable accurate decryption without adding excessive overhead. This partial information approach achieves the necessary decryption accuracy while minimizing processing burden.
Data Source
Figure 1
Figure 2
Figure 3
AI summary
The present invention relates to the field of wireless communications technologies, and specifically, to a data transmission method and an apparatus. According to the data transmission method provided in embodiments of the present invention, a first security parameter indication is introduced into uplink data on a first bearer, and a base station can determine, based on the first security parameter indication in the uplink data, whether first security processing of the uplink data is performed by using a first security parameter or a second security parameter, so as to select a corresponding security parameter to perform second security processing, thereby resolving a problem that decrypted data at a confusion stage is incorrect, and enabling the uplink data to be uninterruptedly transmitted; and a second security parameter indication is introduced into downlink data, and UE can determine, based on the second security parameter indication in the downlink data, whether the first security processing of the data is performed by using the first security parameter or the second security parameter, so as to select a corresponding security parameter to perform the second security processing, thereby resolving a problem that decrypted data at a confusion stage is incorrect, and enabling the downlink data to be uninterruptedly transmitted.