UDM Entity AKMA Allowability Indication via Database Query
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The current AKMA architecture lacks information on AKMA allowability for subscribers, preventing the unified data management (UDM) entity from providing necessary indications during authentication processes, which hampers efficient AKMA service implementation in 5G networks.
Innovation Solution
Incorporating a mechanism to transmit a query with a subscriber's identifier to a database to retrieve AKMA allowability information, allowing the UDM to provide an indication of AKMA allowability based on stored subscriber data, thereby enhancing existing authentication procedures to support AKMA functionality.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Loss of information
If the current AKMA architecture is used without database integration, then the system structure remains simple, but the UDM entity cannot provide AKMA allowability information
Solution Approach 1:
A database is introduced as an intermediary component between the UDM entity and the AKMA service. The database stores subscriber-specific AKMA allowability information and makes it accessible to the UDM entity during authentication processes, thereby resolving the information availability issue without fundamentally restructuring the core AKMA architecture
Solution Approach 2:
AKMA allowability information is pre-stored in the database before authentication occurs. This preliminary action ensures that when the UDM entity needs to determine AKMA allowability during authentication, the information is already available and does not require complex real-time computation or additional signaling exchanges
2Productivity
If AKMA functionality is integrated into existing authentication procedures, then authentication efficiency is improved, but the complexity of authentication processes increases
Solution Approach 1:
The AKMA authentication process is merged with the existing 3GPP authentication procedures. The UDM entity retrieves AKMA allowability information from the database and provides it to the authentication process, allowing both standard authentication and AKMA-specific authentication to occur through a unified流程, thereby improving efficiency without requiring separate parallel authentication paths
Solution Approach 2:
The UDM entity autonomously queries the database for AKMA allowability information and integrates it into the authentication process without requiring external intervention or complex coordination with other network entities. This self-service approach streamlines the authentication process while maintaining the necessary complexity for secure AKMA operation
Data Source
AI summary
Embodiments include methods, network nodes, storage medium, and instructions to support Authentication and Key Management for Applications (AKMA) using an allowability indication. In one embodiment, a method comprises: transmitting a query that includes an identifier of the subscriber and that requires information on AKMA allowability of the subscriber to a database; and receiving an indication of AKMA allowability of the subscriber responsively, where the indication of AKMA allowability is provided based on retrieval of information for the subscriber stored in the database.


