UE Security Context Update for LTE Paging Reliability

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In the LTE system, when the network capability of a UE changes, the existing security context becomes invalid, preventing the use of encryption protection for SERVICE REQ messages, which fails to trigger the RRC connection establishment process and hinders successful paging by the network.

Innovation Solution

A method and apparatus that involve determining changes in the UE's network capability and sending a message to the MME to generate a new security context, allowing the network to recognize and initiate the RRC connection establishment process.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If the UE uses the original security context for encryption protection of the SERVICE REQ message, then the message can be protected, but the MME cannot recognize the message because the security context is invalid due to changed network capability

Engineering Contradiction:
Improvemessage protection reliabilityVSAvoidmessage recognition failure
Core Design Contradiction:
ReliabilityVSLoss of information

Solution Approach 1:

The patent changes the security context parameters (encryption algorithm, integrity protection algorithm, keys) based on the updated network capability information. When the MME detects that the UE's network capability has changed, it generates a new security context with updated parameters that match the current capability, ensuring both protection and recognizability of messages.

Inventive Principle:
Principle #35Parameter changes

2Adaptability or versatility

If the network capability of the UE changes, then the UE can support new algorithms, but the stored security context becomes invalid and cannot be used

Engineering Contradiction:
Improvealgorithm support capabilityVSAvoidsecurity context validity
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent makes the security context dynamic by linking it to the UE's network capability. When the capability changes, the security context is automatically updated or regenerated to reflect the new capability state. This ensures the security context remains valid and usable throughout the UE's operation with changing capabilities.

Inventive Principle:
Principle #15Dynamics

3Loss of energy

If the RRC connection establishment process is not triggered, then the UE can remain in idle state, but the network cannot page the UE successfully

Engineering Contradiction:
ImproveUE energy consumptionVSAvoidpaging success rate
Core Design Contradiction:
Loss of energyVSReliability

Solution Approach 1:

The patent implements a feedback mechanism where the UE sends a service request message to the network, which triggers the network to recognize the UE's presence and initiate the RRC connection establishment process. This feedback loop ensures that paging can be successfully executed when needed, while allowing the UE to remain in idle state and conserve energy when no communication is required.

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS8423769B2Method and apparatus for generating security context
Publication Date: 2013.04.16 ETHERWAVE COMMUNICATIONS LLC
  • US8423769B2 patent drawing
  • US8423769B2 patent drawing
  • US8423769B2 patent drawing

AI summary

A method and an apparatus for generating a security context are provided. The implementation of the method includes: receiving a first message carrying a network capability of a User Equipment (UE); and generating the security context according to the network capability of the UE carried in the first message if the network capability of the UE carried in the first message is inconsistent with the stored network capability of the UE. After the network capability of the UE changes, information carrying the network capability of the UE is sent to a network side, so as to inform the network side that the network capability of the UE changes; therefore the network side can obtain the network capability of the UE, generate the security context according to the changed network capability of the UE, and further trigger a Radio Resource Control (RRC) connection establishment process.