IP Library Granted Patent US 12701410
Granted Patent B2
US 12701410 · App. 18/577,645 · Granted Aug 4, 2026

System and method for key generation in authentication and key management for applications (AKMA)

Inventors: Rajavelsamy Rajadurai (Bangalore, IN); Nivedya Parambath Sasi (Bangalore, IN); Rajendran Rohini (Bangalore, IN)
Assignee: Samsung Electronics Co., Ltd.
H04W12/041H04W12/0431
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12701410
App. No.
18/577,645
Granted
Aug 4, 2026
Kind
B2
Abstract

The disclosure relates to a 5G or 6G communication system for supporting a higher data transmission rate. Embodiments herein provide a system and method for key refresh in Authentication and Key Management for Applications (AKMA). The proposed method is to support K AKMA refresh by requesting the refreshing parameters from the network once the K AF is about to expire. Further, the proposed method is to support K AF refresh by requesting the refreshing parameters from the network once the K AF is about to expire. Further the proposed method uses certain mechanisms to provide the refresh parameter to the AUSF, AAnF and the UE as a part of AKMA Refresh procedure or as a part of UPU procedure. Further, the proposed method supports AKMA key refresh with limited impacts on AKMA services in 5G system. Furthermore, the proposed method is used to support a mechanism to address the Key synchronisation issue at a User Equipment (UE) side, AF and at the network side.

Claims (35)

1 . A method performed by a Unified Data Management (UDM) in a wireless network for generating at least one new Authentication and Key Management for Application (AKMA) key, the method comprising:

receiving a first request from an AKMA Anchor Function (AAnF), wherein the first request is for AKMA refresh and the first request includes at least one subscription permanent identifier (SUPI) associated with at least one user equipment (UE) for generating at least one new AKMA key;

generating at least one AKMA parameter for refresh based on the received first request; and

sending the at least one generated AKMA parameter for refresh to an Authentication Server Function (AUSF) for generating the at least one new AKMA key.

2 . The method of claim 1 , wherein the method further comprising:

receiving at least one response message from the AUSF upon generating the at least one new AKMA key by the AUSF.

3 . The method of claim 1 , wherein the method further comprising:

sending the at least one generated AKMA parameter for refresh to at least one UE through an Access and Mobility Management Function (AMF).

4 . The method of claim 1 , wherein the at least one new AKMA key is associated with a new AKMA Key Identifier.

5 . A method of generating at least one new Authentication and Key Management for Application (AKMA) key by a User Equipment (UE) in a wireless network, the method comprising:

receiving a first request from a Unified Data Management (UDM), wherein the first request comprises a Authentication and Key Management for Application (AKMA) parameter for refresh for generating the at least one new AKMA key;

generating the at least one new AKMA key and associated new AKMA key identifier (A-KID') based on the at least one received AKMA parameter for refresh; and

sending a second request to at least one Application Function (AF), based on the at least one generated new AKMA key, wherein the second request is an application session establishment request for establishing communication between the UE and the at least one AF.

6 . The method of claim 5 , wherein the method further comprising;

sending at least one acknowledgment to the UDM in response to the generating the at least one new AKMA key.

7 . The method of claim 5 , wherein the generated at least one new AKMA key is associated with the A-KID'.

8 . A Unified Data Management (UDM) in a wireless network for generating at least one new Authentication and key Management for Application (AKMA) key, the UDM comprising:

a communicator; and

a processor, coupled to the communicator, configured to:

receive a first request from an AKMA Anchor Function (AAnF), wherein the first request is for AKMA refresh and the first request includes at least one subscription permanent identifier (SUPI) associated with at least one user equipment (UE) for generating at least one new AKMA key,

generate at least one AKMA parameter for refresh based on the received first request, and

send the at least one generated AKMA parameter for refresh to an Authentication Server Function (AUSF) for generating the at least one new AKMA key.

9 . The UDM of claim 8 , wherein the processor is further configured to:

send the at least one generated AKMA parameter for refresh to at least one UE through an Access and Mobility Management Function (AMF).

10 . A User Equipment (UE) in a wireless network for generating at least one new Authentication and Key Management for Application (AKMA) key, the UE comprising:

a communicator; and

a processor, coupled to the communicator, configured to:

receive a first request from a Unified Data Management (UDM), wherein the first request comprises a Authentication and Key Management for Application (AKMA) parameter for refresh for generating the at least one new AKMA key,

generate the at least one new AKMA key and associated new AKMA key identifier (A-KID') based on the at least one received AKMA parameter for refresh, and

send a second request to at least one Application Function (AF), based on the at least one generated new AKMA key, wherein the second request is an application session establishment request for establishing communication between the UE and the at least one AF.

11 . The UE of claim 10 ,

wherein the processor is further configured to:

send at least one acknowledgment to the UDM in response to the generating the at least one new AKMA key.

12 . The UE of claim 10 ,

wherein the generated at least one new AKMA key is associated with the A-KID'.