Selection Function Entity for Dedicated Core Network Access
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
In multi-network scenarios, existing access methods for user equipment (UE) face issues such as failed security verification, redundant signaling processes, increased processing delays, and network isolation when different dedicated core networks are involved, leading to inefficiencies and increased load on default MMEs.
Innovation Solution
The introduction of a Selection Function Entity (SFE) that determines the correct dedicated core network for UE access based on usage type, reducing redundant procedures and ensuring security verification by selecting the appropriate network node, thereby minimizing interaction between networks and maintaining isolation.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If the default DECOR MME forwards the attach request or TAU request to an MME in the DECOR corresponding to the UE, then the UE can access the correct dedicated core network, but the UE and the network side complete an attach procedure or TAU procedure twice, causing signaling waste and increasing processing delay and load
Solution Approach 1:
The patent applies preliminary action by having the eNB determine the target DECOR before forwarding the attach request or TAU request. The eNB uses pre-configured mapping relationships between usage types and DECORs to identify the correct target DECOR in advance, so that the default DECOR MME can directly forward the request without needing to perform redirection procedures later, thus avoiding duplicate attach/TAU procedures and reducing processing delay
Solution Approach 2:
The patent introduces the eNB as an intermediary that performs DECOR determination. Instead of having the default DECOR MME perform redirection (which causes double procedures), the eNB acts as a mediator that pre-determines the target DECOR based on usage type information, enabling direct forwarding of requests and eliminating the need for UE to re-establish connections through redundant procedures
2Ease of operation
If the default DECOR MME obtains user context from an MME in a source DECOR, then the access procedure can be completed, but network isolation is destroyed
Solution Approach 1:
The patent applies local quality by making each DECOR self-sufficient with its own user context information. The target DECOR stores and uses local user context data (obtained from HSS or pre-configured) to complete authentication and access procedures, rather than retrieving context from source DECOR. This ensures that each network maintains its independence and isolation while still enabling complete access procedures locally
3Adaptability or versatility
If the DECOR in which the default MME is located is not the DECOR corresponding to the UE, then redirection is performed, but security verification of the UE may fail
Solution Approach 1:
The patent applies preliminary action by having the eNB pre-determine the correct target DECOR based on usage type before the UE initiates attachment or TAU. This ensures that the UE is directed to the appropriate DECOR that has the correct security verification capabilities for its usage type, preventing security verification failures that would occur if redirected to an incompatible DECOR
Solution Approach 2:
The eNB serves as an intermediary that uses pre-configured mapping relationships between usage types and DECORs to determine the correct target DECOR. This intermediary function ensures that UEs with different usage types (e.g., MBB, MTC) are directed to DECORs with appropriate security verification mechanisms, maintaining security integrity across multi-network scenarios
Data Source
Figure 1~2a
Figure 2b~3
Figure 4~5
AI summary
The present invention discloses an access method, apparatus, device, and system, and belongs to the field of communications technologies. The method includes: receiving, by a selection function entity SFE, an access request of user equipment UE sent by a radio access network node RAN node; determining a usage type of the UE based on the access request of the UE; and selecting, for the UE based on the usage type of the UE, a node that is in a dedicated core network and that can serve the UE, where the node that is in the dedicated core network and that can serve the UE corresponds to the usage type of the UE. Therefore, a node accessed by the UE is the node in the dedicated core network corresponding to the UE, and this ensures that the node can complete security verification of the UE. In addition, in the method, an attach procedure or a TAU procedure is performed only one time, so that signaling interaction can be reduced, and a processing delay and processing load of the node are reduced. In the method, a function of the node does not need to be redesigned. In addition, interaction between dedicated core networks is avoided, and this ensures mutual isolation between the dedicated core networks.