Method for detecting security error in mobile telecommunications system and device of mobile telecommunications
According to one embodiment, a method of performing a re-establishment procedure in a mobile communication system includes: receiving at least one packet data convergence protocol (PDCP) control plane data unit; performing an integrity check on the at least one PDCP control plane data unit; identifying an integrity check failure with regard to the at least one PDCP control plane data unit; and performing a re-establishment procedure if the integrity check failure is identified to exist with regard to the at least one PDCP control plane data unit.
1. An apparatus in a mobile communication system, the apparatus comprising:
a receiving module configured to receive at least one packet data convergence protocol (PDCP) control plane data unit;
an integrity check module configured to perform an integrity check on the at least one PDCP control plane data unit, and to identify an integrity check failure with regard to the at least one PDCP control plane data unit; and
a control module configured to perform a re-establishment procedure if the integrity check failure is identified to exist with regard to the at least one PDCP control plane data unit.
2. The apparatus of claim 1 , wherein the re-establishment procedure comprises at least one of re-establishing a radio bearer (RB) or re-establishing a radio resource control (RRC) connection.
3. The apparatus of claim 1 , wherein the integrity check module is configured to perform the integrity check by counting a number of integrity-failed PDCP control plane data units among the received at least one PDCP control plane data unit, comparing the counted number of integrity-failed PDCP control plane data units to a reference value, and identifying the integrity check failure if the counted number of integrity-failed PDCP control plane data units reaches the reference value.
4. The apparatus of claim 3 , wherein the integrity-failed PDCP control plane data units are in a consecutive order.
5. The apparatus of claim 1 , wherein the integrity check failure is identified if a message authentication code-integrity (MAC-I) value of the received at least one PDCP control plane data unit is different from an expected message authentication code-integrity (XMAC-I) value.
6. The apparatus of claim 1 , further comprising:
a deciphering module configured to decipher the received at least one PDCP control plane data unit.
7. The apparatus of claim 6 , wherein the receiving module is further configured to remove at least one PDCP header from the at least one PDCP control plane data unit.