IP Library Granted Patent US 12,526,702
Granted Patent B2
US 12,526,702 · App. 17/428,183 · Granted Jan 13, 2026

Network node, UE and method for handling handover with parameter for deriving security context

Inventors: Pontus Wallentin (Linköping, SE); Torsten Dudda (Wassenberg, DE); Claes-Göran Persson (Mjölby, SE); Jens Bergqvist (Linköping, SE); Johan Rune (Lidingö, SE); Oscar Ohlsson (Bromma, SE)
Assignee: Telefonaktiebolaget LM Ericsson (PUBL)
H04W36/0038H04W36/0094H04W36/08H04W36/00695
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,526,702
App. No.
17/428,183
Granted
Jan 13, 2026
Kind
B2
Abstract

A method performed in a User Equipment, UE, for handling handover from a source access node to a target access node is provided. The UE receives ( 501 ) a handover command message from the source access node. The handover command message includes parameters required for deriving a security context associated with the target access node. The UE establishes ( 502 ) a radio connection with the target access node. When detecting ( 503 ) that a security context switching criterion is fulfilled, the UE stops ( 504 ) to use a security context associated with the source access node.

Claims (64)

1 . A method performed in a User Equipment, UE, for handling handover from a source access node to a target access node, comprising:

receiving a handover command message from the source access node; wherein the handover command message includes parameters required for deriving a security context associated with the target access node;

establishing a radio connection with the target access node;

when detecting that a security context switching criterion is fulfilled, stopping to use a security context associated with the source access node, wherein detecting that the security context switching criterion is fulfilled comprises detecting that a control plane data packet on a target radio connection is received from the target access node,

wherein the security context switching criterion is configurable and comprises a criterion indicating when the UE has sent a message 3, MSG3, to the target access node.

2 . The method according to claim 1 , further comprising: starting to use the security contexts associated with both the target access node and the source access node after establishing the radio connection with the target access node.

3 . The method according to claim 1 , further comprising:

starting to use the security context associated with the target access node in response to the security context switching criterion being fulfilled.

4 . The method according to claim 1 , wherein the security context switching criterion further comprises any one of or a combination of:

a reception of a user plane data packet from the target access node;

a reception of a control plane data packet from the target access node;

a reception of an UL grant from the target access node;

a reception of a Media Access Control Element, MAC CE, or Packet Data Unit, PDU, from the target access node;

a confirmation message transmitted to the target access node to indicate completion of the handover;

a reception of a dummy packet from the target access node;

when the UE has sent the PDCP Status Report to the target access node or when the UE has received a confirmation that the PDCP Status Report has been received by the target access node;

when the UE has received a confirmation that the MSG3 has been received by the target access node;

when the UE transmits an assigned Random Access Preamble in case the non-contention based random access procedure is configured.

5 . The method according to claim 1 , wherein the security context switching criterion comprises a first security context switching criterion, the method further comprising:

starting to use the security context associated with the target access node for a first bearer in response to the security context switching criterion being fulfilled for the first bearer.

6 . The method according to claim 1 , wherein the security context switching criterion comprises a second security context switching criterion, the method further comprising:

starting to use the security context associated with the target access node for a second bearer in response to the second security context switching criterion being fulfilled for the second bearer.

7 . The method according to claim 1 , wherein the security context switching criterion comprises a second security context switching criterion, the method further comprising:

starting to use the security context associated with the target access node for all bearers in response to the second security context switching criterion being fulfilled.

8 . The method according to claim 1 , further comprising:

receiving from the source access node configuration data for instructing the UE to apply one or subset out of a set of criteria for triggering switch of security context; and

switching security context in accordance with the received configuration data upon fulfillment of the configured criteria or criterion.

9 . The method according to claim 1 , wherein the method further comprises detecting if a security context switching criterion is fulfilled by performing for UL and DL independently with different switching criterion, and wherein switching security context is performed separately for the UL and the DL.

10 . A non-transitory computer-readable medium comprising instructions, which when executed by a processor, causes the processor to perform actions according to claim 1 .

11 . A method performed in a network node for assisting a User Equipment, UE, to handover from a source access node to a target access node comprising:

sending a message to the UE comprising configuration data for instructing the UE to apply one or subset out of a set of criteria for triggering switch of security context, wherein in response to sending the message, a security context switching criterion is fulfilled, the security context switching criterion comprises a reception of a control plane data packet on a target radio connection by the UE from the target access node, wherein the security context switching criterion is configurable and comprises a criterion indicating when the UE has sent a message 3, MSG3, to the target access node.

12 . The method of claim 11 , wherein the network node is the source access node or the target access node.

13 . A non-transitory computer-readable medium comprising instructions, which when executed by a processor, causes the processor to perform actions according to claim 11 .

14 . A User Equipment, UE, for handling handover from a source access node to a target access node, the UE being configured to:

receive a handover command message from the source access node; wherein the handover command message is adapted to include parameters required for deriving a security context associated with the target access node;

establish a radio connection with the target access node;

when detecting that a security context switching criterion is fulfilled, stop to use a security context associated with the source access node, wherein detecting that the security context switching criterion is fulfilled comprises detecting that a control plane data packet on a target radio connection is received from the target access node,

wherein the security context switching criterion is configurable and comprises a criterion indicating when the UE has sent a message 3, MSG3, to the target access node.

15 . The method according to claim 14 , further being configured to: start to use the security contexts associated with both the target access node and the source access node after establishing the radio connection with the target access node.

16 . The UE according to claim 14 , further being configured to:

start to use the security context associated with the target access node in response to the security context switching criterion being fulfilled.

17 . The UE according to claim 14 , wherein the security context switching criterion further comprises any one of or a combination of:

a reception of a user plane data packet from the target access node;

a reception of a control plane data packet from the target access node;

a reception of an UL grant from the target access node;

a reception of a Media Access Control Element, MAC CE, or Packet Data Unit, PDU, from the target access node;

a confirmation message transmitted to the target access node to indicate completion of the handover;

a reception of a dummy packet from the target access node;

when the UE has sent the PDCP Status Report to the target access node or when the UE has received a confirmation that the PDCP Status Report has been received by the target access node;

when the UE has received a confirmation that the MSG3 has been received by the target access node;

when the UE transmits an assigned Random Access Preamble in case the non-contention based random access procedure is configured.

18 . The UE according to claim 14 , further being configured to:

start to use the security context associated with the target access node for a first bearer in response to the security context switching criterion being fulfilled for the first bearer.

19 . The UE according to claim 14 , further being configured to,

start to use the security context associated with the target access node for a second bearer in response to the second security context switching criterion being fulfilled for the second bearer.

20 . The UE according to claim 14 , further being configured to:

start to use the security context associated with the target access node for all bearers in response to a second security context switching criterion being fulfilled.

21 . The UE according to claim 14 , further being configured to:

receive from the source access node configuration data for instructing the UE to apply one or subset out of a set of criteria for triggering switch of security context; and

switch security context in accordance with the received configuration data upon fulfillment of the configured criteria or criterion.

22 . The UE according to claim 14 , wherein the UE further is configured to detect if a security context switching criterion is fulfilled by performing for UL and DL independently with different switching criterion, and wherein switching security context is performed separately for the UL and the DL.

23 . A network node for assisting a User Equipment, UE, to handover from a source access node to a target access node, the network node being configured to:

send a message to the UE comprising configuration data for instructing the UE to apply one or subset out of a set of criterion for triggering switch of security context, wherein in response to the message being sent, a security context switching criterion is fulfilled, the security context switching criterion comprises a reception of a control plane data packet on a target radio connection by the UE from the target access node, wherein the security context switching criterion is configurable and comprises a criterion indicating when the UE has sent a message 3, MSG3, to the target access node.

24 . The network node of claim 23 , wherein the network node is the source access node or the target access node.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 3, 2021
From: BERGQVIST, JENS; DUDDA, TORSTEN; OHLSSON, OSCAR; PERSSON, CLAES-GORAN; RUNE, JOHAN; WALLENTIN, PONTUS
To: TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)
Reel/Frame 057069/0859 →
Continuity (2)
Provisional Application 62805354 · Feb 14, 2019
Related Publication 20220124566A1 · Apr 21, 2022
References Cited (31)
US 10728757B2 · Wu · 2020 [cited by examiner]
US 12082064B2 · Zhang · 2024 [cited by examiner]
US 20080181411A1 · Norrman · 2008 [cited by examiner]
US 20190174571A1 · Deenoo · 2019 [cited by examiner]
US 20200275519A1 · Sharma · 2020 [cited by examiner]
US 20220386195A1 · Ishii · 2022 [cited by applicant]
CN 101355809A · 2009 [cited by applicant]
CN 104067648A · 2014 [cited by applicant]
CN 104782179A · 2015 [cited by applicant]
WO 2015042804A1 · 2015 [cited by applicant]
WO WO2018029932A1 · 2018 [cited by applicant]
WO 2018138347A1 · 2018 [cited by applicant]
WO 2018141079A1 · 2018 [cited by applicant]
WO 2019019736A1 · 2019 [cited by applicant]
Intel Corporation, Control plane consideration on simultaneous connectivity, 3GPP TSG RAN WG2 Meeting #106 R2-1906290 ( Year: 2019). [cited by examiner]
Packet Data Convergence Protocol (PDCP) specification (Release 16) (Year: 2020). [cited by examiner]
Examination Report issued by Intellectual Property India for Application No. 202117029621—Mar. 7, 2022. [cited by applicant]
EPO Communication issued for Application No. 20 704 631.9-1216—May 4, 2023. [cited by applicant]
3GPP TR 36.881 v14.0.0; Technical Report; 3rd Generation Partnership Project; Technical Specification Group Radio Access Network; Evolved Universal Terrestrial Radio Access (E-UTRA); Study on latency reduction technique… [cited by applicant]
3GPP TS 36.300 v14.8.0; Technical Specification; 3rd Generation Partnership Project; Technical Specification Group Radio Access Network; Evolved Universal Terrestrial Radio Access (E-UTRA) and Evolved Universal Terrestr… [cited by applicant]
3GPP TS 36.331 v14.9.0; Technical Specification; 3rd Generation Partnership Project; Technical Specification Group Radio Access Network; Evolved Universal Terrestrial Radio Access (E-UTRA); Radio Resource Control (RRC);… [cited by applicant]
3GPP TS 38.300 v15.2.0; Technical Specification; 3rd Generation Partnership Project; Technical Specification Group Radio Access Network; NR; NR and NG-RAN Overall Description; Stage 2 (Release 15)—Jun. 2018. [cited by applicant]
3GPP TSG-RAN WG2 #100; Reno, Nevada; Source: Ericsson; Title: Conditional Handover (R2-1713606, resubmission of R2-1710850)—Nov. 27-Dec. 1, 2017. [cited by applicant]
3GPP TSG-RAN WG2 Meeting #103bis; Changdu, China; Title: LTE Mobility Enhancements; Source: Qualcomm Incorporated (R2-1814206)—Oct. 8-12, 2018. [cited by applicant]
3GPP TSG-RAN WG2#105; Athens, Greece; Source: Ericsson; Title: User plane aspects of Make-Before-Break Handover (Tdoc R2-1901090)—Feb. 25-Mar. 1, 2019. [cited by applicant]
3GPP TSG-RAN WG2 #105-Bis; Xian, China; Source: Ericsson; Title: User plane aspects of Make-Before-Break handover (Tdoc R2-1903881)—Apr. 8-12, 2019. [cited by applicant]
3GPP TSG-RAN WG2#106; Reno, Nevada; Source: Ericsson; Title: Make-Before-Break Handover (Tdoc R2-1907316)—May 13-17, 2019. [cited by applicant]
PCT International Search Report issued for International application No. PCT/SE2020/050117—Mar. 31, 2020. [cited by applicant]
PCT Written Opinion of the International Searching Authority issued for International application No. PCT/SE2020/050117—Mar. 31, 2020. [cited by applicant]
Office Action issued for Chinese Patent Application No. 202080014328.2—Oct. 19, 2023. [cited by applicant]
Search Report issued for Chinese Patent Application No. 2020800143282—Oct. 16, 2023. [cited by applicant]