会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 4. 发明申请
    • USER PLANE MODEL FOR NON-3GPP ACCESS TO FIFTH GENERATION CORE NETWORK
    • 用于非3GPP访问第五代核心网络的用户平面模型
    • WO2018087696A1
    • 2018-05-17
    • PCT/IB2017/057021
    • 2017-11-09
    • TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)
    • ROMMER, StefanRYDNELL, GunnarNILSSON, DanielCHEN, Qian
    • H04L12/46H04L29/06H04W12/06
    • Systems and methods relating to establishment of a Packet Data Unit, PDU, session over a Non 3GPP Access to a 3GPP network and transmitting IP data and non-IP data are provided. A method of operation of a wireless device is provided and comprises sending to an AMF over an N3IWF a PDU session request to establish a PDU session to transport one of IP data or non-IP data over an established first IPsec, Security Association, SA, establishing an IPSec Child SA, for the PDU session and associating the IPSec Child SA to a PDU session then encapsulating the data using ESP encapsulation or GRE encapsulation associated with the IPSec Child SA and indicating the type of data that is being transmitted (e.g., non-IP data that comprises raw application data). In this manner, an loT device is able to securely transmit to the 3GPP network IP data/non-IP data/raw application data over an unsecure non 3GPP access network such as Wireless Local Area Network. Methods and apparatus describing the NAS signalling and the PDU session as each using their respective IPSec SA are provided. Similarly, methods and apparatus describing the NAS signalling and the PDU sessions sharing a common IPSec SA are provided. GRE encapsulation of the data within the ESP frame is described for both NAS signalling and PDU session in the case of multiple IPSec/Child SAs or common IPSec SA. Similarly, methods and apparatus are provided for the N3IWF which provides for the UE secure access to the network.
    • 提供了与建立分组数据单元PDU的会话相关的系统和方法,该分组数据单元通过对3GPP网络的非3GPP接入来进行会话,并且发送IP数据和非IP数据。 提供了一种操作无线设备的方法,并且包括:通过N3IWF向AMF发送PDU会话请求,以建立PDU会话,以通过建立的第一IPsec,安全关联SA,第一IPsec或非IP数据传输IP数据或非IP数据中的一个; 为PDU会话建立IPSec子SA,并将IPSec子SA与PDU会话相关联,然后使用与IPSec子SA相关联的ESP封装或GRE封装并指示正在传输的数据的类型(例如非 -IP数据,其包括原始应用程序数据)。 以这种方式,loT设备能够通过诸如无线局域网之类的不安全的非3GPP接入网络安全地向3GPP网络传输IP数据/非IP数据/原始应用数据。 提供了描述每个使用它们各自的IPSec SA的NAS信令和PDU会话的方法和设备。 类似地,提供了描述NAS信令和共享公共IPSec SA的PDU会话的方法和装置。 在多个IPSec /子SA或普通IPSec SA的情况下,针对NAS信令和PDU会话描述ESP帧内数据的GRE封装。 类似地,为N3IWF提供了为UE提供网络安全访问的方法和装置。
    • 5. 发明申请
    • ENHANCEMENTS TO TERMINATING ACCESS DOMAIN SELECTION
    • 终止访问域名选择的增强功能
    • WO2016165757A1
    • 2016-10-20
    • PCT/EP2015/058170
    • 2015-04-15
    • TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)
    • ÖSTERLUND, HåkanSANDER, Ann-ChristineNILSSON, DanielABTIN, Afshin
    • H04L29/06H04W8/04H04W76/02
    • H04W76/16H04L65/1016H04L65/104H04L65/1063H04L65/1069H04W8/04H04W76/12
    • A method of determining in an IP multimedia subsystem, IMS, network which radio access type, RAT, should be used to route a terminating session directed towards a user equipment, UE. The HSS receives a terminating access domain selection, T- ADS, query from an application server, AS, of the IMS network, the T-ADS query relating to the terminating session and identifying the UE; and determines whether a packet data network gateway, PDN-GW, is registered for the UE. In the case where a PDN-GW is registered, the HSS sends a RAT request towards the PDN-GW, the RAT request identifying the UE and requesting a RAT used by the UE to connect to the IMS network. The PDN-GW determines the RAT and sends the result towards the HSS, which sends a T-ADS response to the AS indicating the RAT. In the case where a PDN-GW is not registered, the HSS sends a T-ADS response to the AS indicating that the RAT is a circuit switched RAT. Apparatus for implementing the method are also provided.
    • 一种在IP多媒体子系统IMS网络中确定无线电接入类型RAT应该用于路由朝向用户设备UE的终接会话的方法。 HSS接收来自IMS网络的应用服务器AS AS的终接接入域选择,T-ADS查询,与终端会话相关的T-ADS查询并识别UE; 并确定是否为UE注册了分组数据网络网关PDN-GW。 在注册PDN-GW的情况下,HSS向PDN-GW发送RAT请求,RAT请求标识UE并请求UE使用的RAT连接到IMS网络。 PDN-GW确定RAT并将结果发送给HSS,HSS向表示RAT的AS发送T-ADS响应。 在没有注册PDN-GW的情况下,HSS向AS发送指示RAT是电路交换RAT的T-ADS响应。 还提供了用于实现该方法的装置。
    • 7. 发明申请
    • ESTABLISHING NEW IPSEC SAS
    • WO2019219209A1
    • 2019-11-21
    • PCT/EP2018/063124
    • 2018-05-18
    • TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)
    • NILSSON, DanielROMMER, StefanCHEN, QianFOTI, George
    • H04L29/06H04W12/06
    • The invention relates to methods of enabling a wireless communication device to connect to a core network over non- 3 GPP ("3rd Generation Partnership Project") access via a non-3GPP Interworking Function (N3IWF) with a new IPsec ("Internet Protocol Security") SA ("Security Association"), and devices performing the methods. In an aspect a method performed by an N3IWF (14) for enabling a wireless communication device (10) to connect to a core network (100) over non- 3GPP access with a new signalling IPsec SA is provided. The method comprises performing (S101) IKE SA initialisation with the wireless communication device (10) for the new signalling IPsec SA to be established, receiving (S102), from the wireless communication device (10), an IKE authentication request message including an identifier of User Equipment, (UE) context associated with the wireless communication device (10), and data enabling authentication of the wireless communication device (10) at the N3IWF (14), the data having been processed with a key required to authenticate the data, acquiring (S103) the UE context associated with the wireless communication device (10) as identified by the received identifier for a previously established signalling IPsec SA between the wireless communication device (10) and the N3IWF (14), which UE context is available to the N3IWF (14) and comprises the key with which the received data is authenticated, authenticating (S104) the received data using the acquired key, transmitting (S105), to the wireless communication device (10), an IKE authentication response message indicating that the authentication is successful, and establishing (S106) the new signalling IPsec SA with the wireless communication device (10).