IP Library › Granted Patent US 11,974,132
Granted Patent B2
US 11,974,132 · App. 16/898,326 · Granted Apr 30, 2024

Routing method, apparatus, and system

Inventors: Hua Li (Xi'an, CN); Bo Zhang (Shenzhen, CN)
Assignee: HUAWEI TECHNOLOGIES CO., LTD.
H04W12/102H04W12/06H04W40/248
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,974,132
App. No.
16/898,326
Granted
Apr 30, 2024
Kind
B2
Abstract

A routing method, apparatus, and system, related to the field of communications technologies, to update a routing indicator in a subscription concealed identifier when a user is migrated to a new unified subscriber data management UDM network element and the routing indicator in the subscription concealed identifier changes. The method includes: sending, by an authentication server function AUSF network element, a first authentication vector obtaining request to a first unified data management UDM network element; and if the AUSF network element receives a routing indicator RI sent by the first UDM network element, sending the RI to an access and mobility management function AMF network element. The method is applied to a process in which a terminal updates the RI.

Claims (76)

1. A method for updating a parameter, comprising:

sending, by a unified data management network element, an integrity protection request message to an authentication server function network element, wherein the integrity protection request message comprises an update parameter, and the update parameter comprises a routing indicator (RI), wherein the RI is used to address the unified data management network element;

generating, by the authentication server function network element, an integrity verification code for the update parameter based on a protection key Kausf, a counter stored in the authentication server function network element, and the update parameter;

sending, by the authentication server function network element, an integrity protection response message to the unified data management network element, wherein the integrity protection response message comprises the integrity verification code for the update parameter and the counter;

receiving, by the unified data management network element, the integrity protection response message from the authentication server function network element; and

sending, by the unified data management network element via an access and mobility management function network element to a user equipment (UE), the update parameter, the counter, the integrity verification code for the update parameter, a first indication indicating whether apparatus needs to send a response message and a second indication indicating whether the apparatus needs re-registration.

2. The method according to claim 1 , wherein

the generating, by the authentication server function network element, the integrity verification code for the update parameter based on the protection key Kausf, the counter stored in the authentication server function network element, and the update parameter comprises:

generating, by the authentication server function network element, the integrity verification code for the update parameter based on the protection key Kausf, the counter stored in the authentication server function network element, the indication indicating whether the UE needs to send a response message, and the update parameter.

3. The method according to claim 1 , wherein the integrity protection request message further comprises the first indication; and

the generating, by the authentication server function network element, the integrity verification code for the update parameter based on the protection key Kausf, the counter stored in the authentication server function network element, and the update parameter comprises:

generating, by the authentication server function network element, the integrity verification code for the update parameter based on the protection key Kausf, the counter stored in the authentication server function network element, the first indication, and the update parameter.

4. The method according to claim 1 , wherein the integrity protection request message further comprises the second indication indicating whether the UE needs re-registration; and

the generating, by the authentication server function network element, the integrity verification code for the update parameter based on the protection key Kausf, the counter stored in the authentication server function network element, and the update parameter comprises:

generating, by the authentication server function network element, the integrity verification code for the update parameter based on the protection key Kausf, the counter stored in the authentication server function network element, and the second indication, and the update parameter.

5. The method according to claim 1 , further comprising:

receiving, by the access and mobility management function network element, a first feedback message from the UE; and

in response to receiving the first feedback message, sending, by the access and mobility management function network element, a second feedback message to the unified data management network element.

6. The method according to claim 5 , wherein the first feedback message comprises a user equipment counter message authentication code which is used to perform integrity protection on the counter received by the UE.

7. The method according to claim 5 , wherein first feedback message further comprises a universal subscriber identity module (USIM) response.

8. The method according to claim 5 , wherein first feedback message is an uplink non-access stratum (NAS) message.

9. A method for updating a parameter, comprising:

receiving, by an apparatus via an access and mobility management function network element, a configuration modification request message from a unified data management network element; wherein the configuration modification request message comprises an update parameter, a counter, an integrity verification code for the update parameter, a first indication indicating whether apparatus needs to send a response message and a second indication indicating whether the apparatus needs re-registration, and the update parameter comprises a routing indicator (RI), wherein the RI is used to address the unified data management network element;

performing, by the apparatus, integrity verification on the integrity verification code based on a protection key Kausf, the update parameter, and the counter; and

after the verification succeeds, updating, by the apparatus, using the update parameter, a parameter stored in the apparatus.

10. The method according to claim 9 , wherein

the performing, by the apparatus, integrity verification on the integrity verification code for the update parameter based on the protection key Kausf, the update parameter, and the counter comprises:

performing, by the apparatus, integrity verification on the integrity verification code for the update parameter based on the protection key Kausf, the update parameter, the counter, and the first indication.

11. The method according to claim 9 , wherein

the performing, by the apparatus, integrity verification on the integrity verification code for the update parameter based on the protection key Kausf, the update parameter, and the counter comprises:

performing, by the apparatus, integrity verification on the integrity verification code for the update parameter based on the protection key Kausf, the update parameter, the counter, and the second indication.

12. The method according to claim 9 , wherein before the performing, by the terminal, integrity verification on the integrity verification code for the update parameter based on the protection key Kausf, the update parameter, and the counter, the method further comprises:

determining, by the apparatus, whether a received counter is greater than a locally stored counter; and

the performing, by the apparatus, integrity verification on the integrity verification code for the update parameter based on a protection key Kausf, the update parameter, and the counter comprises:

if the received counter is greater than the locally stored counter, performing, by the apparatus, integrity verification on the integrity verification code for the update parameter based on the protection key Kausf, the update parameter, and the counter.

13. The method according to claims 9 , wherein the method further comprises:

sending, by the apparatus according to the first indication, a configuration modification response message to the access and mobility management function network element.

14. The method according to claims 9 , wherein the method further comprises:

initiating, by the apparatus according to the second indication, a re-registration based on the RI.

15. An apparatus, comprising:

a processor coupled to a memory storing instructions and configured to execute the instructions to cause the apparatus to:

receive, via an access and mobility management function network element, a configuration modification request message from a unified data management network element, wherein the configuration modification request message comprises an update parameter, a counter, an integrity verification code for the update parameter, a first indication indicating whether apparatus needs to send a response message and a second indication indicating whether the apparatus needs re-registration, and the update parameter comprises a routing indicator RI, wherein the RI is used to address the unified data management network element;

perform integrity verification on the integrity verification code based on the protection key Kausf, the update parameter, and the counter, and

after the verification succeeds, update, using the update parameter, a parameter stored in the apparatus.

16. The apparatus according to claim 15 ,

wherein the instructions, when be executed, -cause the apparatus to:

perform integrity verification on the integrity verification code for the update parameter based on the protection key Kausf, the update parameter, the counter, and the first indication.

17. The apparatus according to claim 15 ,

wherein the instructions, when be executed, -cause the apparatus to:

perform integrity verification on the integrity verification code for the update parameter based on the protection key Kausf, the update parameter, the counter, and the second indication.

18. The apparatus according to claim 15 ,

wherein the instructions, when be executed, -cause the apparatus to:

determine whether a received counter is greater than a locally stored counter, and if the received counter is greater than the locally stored counter, perform integrity verification on the integrity verification code for the update parameter based on the protection key Kausf, the update parameter, and the counter.

19. The apparatus according to claim 15 , wherein the instructions, when be executed, further cause the apparatus to send a configuration modification response message to the access and mobility management function network element.

20. The apparatus according to claim 15 , wherein the apparatus is a user equipment (UE) or a chip in the UE.

21. The apparatus according to claim 15 , wherein the instructions, when be executed, further cause the apparatus to:

initiate, according to the second indication, a re-registration based on the RI.

22. A system for updating a parameter, comprising:

a unified data management network element comprising:

a first memory configured to store first instructions; and

one or more first processors coupled to the first memory and configured to execute the first instructions to cause the unified data management network element to:

send an integrity protection request message to an authentication server function network element, wherein the integrity protection request message comprises an update parameter, and the update parameter comprises a routing indicator (RI), wherein the RI is used to address the unified data management network element;

wherein

the authentication server function network element comprising:

a second memory configured to store second instructions; and

one or more first processors coupled to the second memory and configured to execute the second instructions to the authentication server function network element to:

receive the integrity protection request message;

generate an integrity verification code for the update parameter based on a protection key Kausf, a counter stored in the authentication server function network element, and the update parameter; and

send an integrity protection response message to the unified data management network element, wherein the integrity protection response message comprises the integrity verification code for the update parameter and the counter;

the unified data management network element is further configured to:

receive the integrity protection response message from the authentication server function network element; and

send, via an access and mobility management function network element to a user equipment (UE), the update parameter, the counter, the integrity verification code for the update parameter, a first indication indicating whether apparatus needs to send a response message and a second indication indicating whether the apparatus needs re-registration.

23. The system according to claim 22 , wherein the integrity protection request message further comprises an indication indicating whether the UE needs re-registration: wherein the authentication server function network element is configured to generate the integrity verification code by:

generating the integrity verification code for the update parameter based on the protection key Kausf, the counter stored in the authentication server function network element, the indication indicating whether the UE needs re-registration, and the update parameter.

24. The system according to claim 22 , wherein the integrity protection request message further comprises an indication indicating whether the UE needs to send a response message, and the indication indicating whether the UE needs re-registration; wherein the authentication server function network element is configured to generate the integrity verification code by:

generating the integrity verification code for the update parameter based on the protection key Kausf, the counter stored in the authentication server function network element, the indication indicating whether the UE needs to send a response message, the indication indicating whether the UE needs re-registration, and the update parameter.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 11, 2020
From: LI, HUA; ZHANG, BO
To: HUAWEI TECHNOLOGIES CO., LTD.
Reel/Frame 052911/0452 →
Priority Claims (2)
CN 201810970120.2 · Aug 23, 2018 · national
CN 201811289488.9 · Oct 31, 2018 · national
Continuity (2)
Continuation PCTCN2019099792 · Aug 8, 2019
Related Publication 20200305001A1 · Sep 24, 2020