Terminal Device Security Capabilities Integrity Protection

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current security mechanisms in Cellular Internet of Things (CIoT) over GSM EDGE Radio Access Network (GERAN) lack integrity protection, making them vulnerable to attacks such as 'bidding down' attacks, which can lead to loss of confidentiality and detachment of CIoT UE from the network, and increased battery consumption due to frequent authentication.

Innovation Solution

Implementing integrity protection by negotiating and echoing security capabilities, including integrity and encryption algorithms, in the GMM Attach Request message between the CIoT UE and the SGSN, using Message Authentication Codes to verify the integrity of security capabilities and activate integrity protection in the LLC layer.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If integrity protection is implemented by negotiating and echoing security capabilities in GMM layer, then security against bidding down attacks is improved, but device complexity and processing overhead increase

Engineering Contradiction:
ImprovesecurityVSAvoidprocessing overhead
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent applies preliminary action by negotiating and echoing security capabilities during the initial GMM attach procedure. The terminal device sends its security capabilities in the GMM Attach Request message, and the network echoes these capabilities back in an integrity-protected manner before actual data transmission begins. This pre-negotiation and pre-protection mechanism ensures security is established upfront, preventing bidding down attacks during subsequent communications without adding complexity to the main data transmission process.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent implements feedback by having the network echo back the security capabilities that were sent by the terminal device in the GMM Attach Request. This echo message contains the same security capability information and is protected with integrity using a message authentication code. The terminal device can verify this echoed information to confirm the network has correctly received and recognized its security capabilities, providing feedback that validates the security negotiation process.

Inventive Principle:
Principle #23Feedback

2Reliability

If frequent authentication is performed to maintain security, then security is improved, but battery consumption increases

Engineering Contradiction:
ImprovesecurityVSAvoidbattery consumption
Core Design Contradiction:
ReliabilityVSUse of energy by moving object

Solution Approach 1:

The patent reduces battery consumption by performing authentication and security capability negotiation as a preliminary action during the initial GMM attach procedure. Once the security capabilities are negotiated and the integrity protection is established, the terminal device can communicate with the network without needing to perform frequent re-authentication. The echoed security capabilities serve as a persistent validation that remains effective for subsequent communications, eliminating the need for repeated authentication cycles that would drain the battery.

Inventive Principle:
Principle #10Preliminary action

3Reliability

If security capabilities are echoed with integrity protection, then integrity of security capabilities is ensured, but message size and transmission overhead increase

Engineering Contradiction:
ImproveintegrityVSAvoidmessage size
Core Design Contradiction:
ReliabilityVSQuantity of substance

Solution Approach 1:

The patent uses copying by having the network echo back the exact security capability information that was sent by the terminal device in the GMM Attach Request. Rather than transmitting new or additional security parameters, the network simply copies and returns the original security capability data in an integrity-protected format. This approach ensures integrity verification while minimizing the increase in message size, as the echoed content is essentially a replicated version of already-transmitted information.

Inventive Principle:
Principle #26Copying

Data Source

PatentUS10555177B2Method of operation of a terminal device in a cellular communications network
Publication Date: 2020.02.04 TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)
  • US10555177B2 patent drawing
  • US10555177B2 patent drawing
  • US10555177B2 patent drawing

AI summary

A method of operation of a terminal device in a cellular communications network is disclosed. The method comprises sending a GMM Attach Request message to the network, the GMM Attach Request message identifying security capabilities of the terminal device. The terminal device receiving from the network an echo message in the GMM layer including information identifying the security capabilities of the terminal device, wherein the echo message is received with integrity protection.