V2X Parameter Security in 5G Control Plane
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current V2X communication systems face security concerns due to the leakage of configured parameters, as they are often managed by third-party entities outside the operator network, leading to potential unauthorized access and compromised security.
Innovation Solution
Implementing a communication method where the V2X configuration parameters are managed within the operator's control plane network, specifically using the mobility management network element (AMF) and V2X parameter configuration network element (PCF) to securely allocate and update V2X configuration parameters, thereby isolating the application layer from parameter configuration.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If V2X configuration parameters are managed by third-party entities outside the operator network, then V2X service deployment flexibility is improved, but security of the parameters is worsened due to potential leakage and unauthorized access
Solution Approach 1:
The patent introduces a V2X parameter configuration network element as an intermediary component within the operator's control plane. This intermediary manages V2X configuration parameters securely while maintaining the ability to serve multiple V2X services and applications, thus resolving the contradiction between deployment flexibility and parameter security
Solution Approach 2:
The patent segments the V2X system into distinct functional components: the V2X parameter configuration network element responsible for secure parameter management within the operator network, and the V2X application layer that can deploy services flexibly. This segmentation allows security-critical functions to remain protected while maintaining service deployment versatility
2Adaptability or versatility
If V2X configuration parameters are transmitted through the application layer, then service customization is improved, but parameter security is worsened due to exposure to third-party entities
Solution Approach 1:
The V2X parameter configuration network element acts as a secure intermediary between the control plane and the application layer. It transmits necessary configuration parameters to authorized applications while filtering and protecting sensitive information, thus enabling service customization without exposing parameters to unauthorized entities
Solution Approach 2:
The patent extracts the V2X parameter configuration function from the application layer and places it within the control plane. This extraction removes the security vulnerability of transmitting parameters through the application layer while maintaining the ability to customize services through controlled parameter distribution
3Adaptability or versatility
If V2X parameters are updated frequently to support evolving services, then service adaptability is improved, but security risk is worsened due to increased exposure opportunities
Solution Approach 1:
The V2X parameter configuration network element serves as a secure intermediary that manages parameter updates. It can frequently update parameters to support service evolution while maintaining security control, thus resolving the contradiction between adaptability and security risk
Solution Approach 2:
The patent implements a feedback mechanism where the V2X parameter configuration network element monitors and controls parameter updates based on service requirements. This allows the system to adapt to evolving services while maintaining security through controlled, monitored parameter changes rather than uncontrolled frequent updates
Data Source
Figure 1~2
Figure 3
Figure 4
AI summary
This application discloses a communication method and a communications apparatus. The method includes: receiving, by a mobility management network element, a registration request message from a terminal, where the registration request message is used to request a vehicle-to-everything V2X configuration parameter for the terminal, and the V2X configuration parameter is used by the terminal to perform a V2X service; sending, by the mobility management network element, a parameter request message to a V2X parameter configuration network element based on the registration request message, where the parameter request message is used to request the V2X configuration parameter of the terminal from the V2X parameter configuration network element; and receiving, by the mobility management network element, the V2X configuration parameter from the V2X parameter configuration network element, and sending the V2X configuration parameter to the terminal. Use of this application helps improve security of the V2X service.