UE Network Slice Authentication State Management

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In the 5G System, there is a lack of specific methods for managing information related to pending network slices during the network slice-specific authentication and authorization process, where a UE requests connection to a network slice, leading to unclear management of allowed or rejected slices.

Innovation Solution

A User Equipment (UE) is designed with a controller that transitions from a registered state to a deregistered state for both first and second access attempts when network slice-specific authentication and authorization are failed or revoked, and the storage unit deletes the rejected NSSAI, enabling proper management of rejected network slices.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If the UE stores rejected NSSAI information for network slices requiring authentication and authorization, then the network slice management capability is improved, but the device complexity increases due to the need to manage multiple access states and rejection information

Engineering Contradiction:
Improvenetwork slice management capabilityVSAvoiddevice complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent segments the rejected NSSAI information management by creating distinct categories: rejected NSSAI for pending authentication/authorization and rejected NSSAI for other reasons. This segmentation allows the UE to handle different rejection scenarios separately, improving network slice management capability while maintaining manageable device complexity through structured information organization.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent implements dynamic state management where the UE transitions between registered and deregistered states based on authentication/authorization outcomes. The rejected NSSAI information is dynamically updated and managed according to the current registration state and access type (3GPP or non-3GPP), allowing flexible adaptation to changing network conditions while systematically managing complexity.

Inventive Principle:
Principle #15Dynamics

2Reliability

If the UE transitions to deregistered state on both accesses upon authentication failure, then the reliability of network slice authentication is improved, but the loss of time occurs due to the need to delete rejected NSSAI and perform full re-registration

Engineering Contradiction:
Improveauthentication reliabilityVSAvoidre-registration time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent extracts and separately manages the rejected NSSAI information from the general registration state. When authentication fails, only the specific rejected NSSAI related to the failed authentication is deleted, while other registration information may be preserved. This extraction approach maintains authentication reliability by enforcing proper state transitions while reducing time loss by avoiding complete re-registration for all services.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent implements feedback mechanisms where the UE monitors authentication/authorization outcomes and adjusts its registration state and rejected NSSAI information accordingly. The system provides feedback loops that track pending authentication states, allowing the UE to make informed decisions about state transitions and information deletion, balancing reliability with time efficiency through adaptive state management.

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS12133072B2User equipment (UE)
Publication Date: 2024.10.29 SHARP KK
  • US12133072B2 patent drawing
  • US12133072B2 patent drawing
  • US12133072B2 patent drawing

AI summary

According to an aspect of the present invention, a procedure for initial registration of a UE and a procedure for periodic registration or registration based on movement, and a communication unit are provided which are used to implement Network Slice Specific Authentication and Authorization in 5GS. Furthermore, by providing the Network Slice Specific Authentication and Authorization initiated by a network, a procedure for changing UE configurations initiated by the network, the procedure being initiated based on completion of the Network Slice Specific Authentication and Authorization, a de-registration procedure initiated by the network, and a communication unit, a communication unit is provided that is used to implement functions related to the Network Slice Specific Authentication and Authorization in the 5GS.