Unified Tag Device Authentication Through 3GPP User Identifiers

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing communication technologies lack a unified authentication process for tag devices, leading to increased complexity in managing multiple tag devices from different vendors, which complicates network management.

Innovation Solution

An authentication method and apparatus that utilize a 3GPP network user identifier to authenticate tag devices, enabling unified network management by determining and sending a 3GPP network user identifier through an access network device and mobility management network element, and configuring communication parameters for secure access.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If multiple vendor-specific authentication procedures are used for tag devices, then each vendor's tag devices can be authenticated, but the complexity of network management increases significantly

Engineering Contradiction:
Improvecompatibility with different tag devicesVSAvoidcomplexity of network management
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent applies universality by introducing a unified authentication procedure that can handle multiple types of tag devices (RFID, UWB, passive IoT, active terminal devices) through a single standardized process. The access network device and core network elements implement a vendor-agnostic authentication mechanism that adapts to different tag types without requiring separate authentication procedures for each vendor, thereby reducing network management complexity while maintaining broad compatibility.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The patent uses intermediary elements (access network device, access and mobility management network element, authentication server) that mediate between diverse tag devices and the core network. These intermediaries translate and standardize authentication requests from various tag types into a unified authentication流程, isolating the complexity from the core network while maintaining compatibility with different tag vendors.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Device complexity

If a unified authentication procedure is implemented for all tag devices, then network management complexity is reduced, but specific vendor authentication requirements may not be met

Engineering Contradiction:
Improvecomplexity of network managementVSAvoidauthentication reliability
Core Design Contradiction:
Device complexityVSReliability

Solution Approach 1:

The patent implements dynamics by making the unified authentication procedure adaptable and configurable. The system can dynamically adjust authentication parameters, select appropriate authentication methods, and modify authentication flows based on the specific requirements of different tag devices and vendors. This allows the standardized procedure to maintain authentication reliability for specific vendors while preserving overall network management simplicity.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The patent applies parameter changes by allowing authentication parameters (such as authentication algorithms, security keys, timeout values, and verification methods) to be configured and adjusted based on the specific requirements of different tag devices. The unified procedure can modify these parameters dynamically to meet vendor-specific authentication requirements without changing the overall authentication framework, thus maintaining both simplicity and reliability.

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentEP4258718B1Authentication method and communication apparatus
Publication Date: 2025.08.27 HUAWEI TECH CO LTD
  • EP4258718B1 patent drawingFigure 1~2
  • EP4258718B1 patent drawingFigure 3
  • EP4258718B1 patent drawingFigure 4

AI summary

Embodiments of this application disclose an authentication method and a communication apparatus, and relate to the communication field, to support unified network management for a plurality of tags, and provide a unified authentication procedure to perform security authentication on a tag device, thereby reducing complexity of converged management. The method includes: An access network device obtains an identifier of a tag device, and determines a 3rd generation partnership project 3GPP network user identifier based on the identifier of the tag device. The access network device may further send a first message to an access and mobility management network element, where the first message includes the 3GPP network user identifier, and 3GPP network user identifier is for authenticating the tag device. The tag device may be an RFID tag, a UWB tag, a Bluetooth device, or the like.