IP Library Granted Patent US 12,470,928
Granted Patent B2
US 12,470,928 · App. 17/799,455 · Granted Nov 11, 2025

Protecting capability information transfer in a wireless communication network

Inventors: Paul Schliwa-Bertling (Ljungsbro, SE); Prajwol Kumar Nakarmi (Sollentuna, SE); Christofer Lindheimer (Vadstena, SE); Helena Vahidi Mazinani (Lund, SE)
Assignee: Telefonaktiebolaget LM Ericsson (Publ)
H04W12/08G06F21/10H04L63/0807H04W12/037
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,470,928
App. No.
17/799,455
Granted
Nov 11, 2025
Kind
B2
Abstract

A wireless device ( 14 ) receives, over an access stratum ( 18 ), a capability enquiry ( 24 ) that requests the wireless device ( 14 ) to transmit capability information ( 22 ) indicating one or more capabilities of the wireless device ( 14 ). After receiving the capability enquiry ( 24 ), the wireless device ( 14 ) generates a token ( 26 ) using one or more input parameters ( 28 ) and transmits the token ( 26 ). The one or more input parameters ( 28 ) include at least some part of the capability enquiry ( 24 ) and/or at least some of the capability information ( 22 ). In some embodiments, the token ( 26 ) is generated or transmitted based on a non-access stratum security context ( 30 ) at the wireless device ( 14 ). The wireless device ( 14 ) also transmits the capability information ( 22 ) over the access stratum ( 18 ).

Claims (33)

1 . A method performed by a wireless device, the method comprising:

receiving, over an access stratum, a capability enquiry that requests the wireless device to transmit capability information indicating one or more capabilities of the wireless device, the capability enquiry being received over the access stratum and not having access stratum security, the capabilities of the wireless device being access stratum capabilities; and

after receiving the capability enquiry:

generating a token using one or more input parameters and transmitting the token, the one or more input parameters including at least some part of the capability enquiry and some of the capability information that the wireless device has or will transmit, the token being generated or transmitted based on a non-access stratum security context at the wireless device; and

transmitting the capability information over the access stratum without having activated security over the access stratum, without having activated security over the access stratum comprising without the use of a security key for activating or applying integrity protection and without confidentiality protection over the access stratum.

2 . The method of claim 1 , wherein the one or more input parameters include:

at least some part of the capability enquiry; or

at least some of the capability information.

3 . The method of claim 1 , wherein the one or more input parameters include one or both of:

a key that is in or derived from the non-access stratum security context; and

a count value included in the non-access stratum security context.

4 . The method of claim 1 , wherein generating the token comprises calculating the token as a hash, or as a keyed hash, over the at least some of the capability information.

5 . The method of claim 1 , wherein transmitting the capability information comprises transmitting a response to the capability enquiry, wherein the response includes the capability information and the token.

6 . The method of claim 1 , wherein transmitting the token comprises:

transmitting the token to radio network equipment over the access stratum; or

transmitting the token to core network equipment in a non-access stratum message.

7 . A method performed by network equipment, the method comprising:

receiving, from radio network equipment, at least some part of a capability enquiry that the radio network equipment has sent to a wireless device to request the wireless device to transmit capability information indicating one or more capabilities of the wireless device, the request being transmitted from a first protocol layer of the radio network equipment to the wireless device without security on the first protocol layer, the wireless device transmitting the capability information over an access stratum without having activated security over the access stratum, without having activated security over the access stratum comprising without the use of a security key for activating or applying integrity protection and without confidentiality protection over the access stratum, the capabilities of the wireless device being access stratum capabilities, and at least some of the capability information that the radio network equipment has received from the wireless device in response to the capability enquiry;

generating, by the network equipment, a token using one or more input parameters, the one or more input parameters including the at least some part of the capability enquiry and the at least some of the capability information that the wireless device has or will transmit and that is received from the radio network equipment; and

performing, or assisting the radio network equipment with, verification of whether the token that the network equipment generated matches or corresponds to a token that the wireless device generated.

8 . The method of claim 7 , further comprising, after the network equipment receives the capability information from the wireless device, receiving the token that the wireless device generated.

9 . The method of claim 8 , wherein receiving the token that the wireless device generated comprises:

receiving, from the radio network equipment, the token that the wireless device generated; or

receiving, from the wireless device, the token that the wireless device generated.

10 . The method of claim 7 , wherein generating the token by the network equipment comprises generating the token by the network equipment based on a non-access stratum security context at the network equipment.

11 . The method of claim 7 , wherein generating the token comprises calculating the token as a hash, or as a keyed hash, over the at least some of the capability information.

12 . A wireless device comprising:

communication circuitry; and

processing circuitry configured to:

receive, over an access stratum, a capability enquiry that requests the wireless device to transmit capability information indicating one or more capabilities of the wireless device, the capability enquiry being received over the access stratum and not having access stratum security, the capabilities of the wireless device being access stratum capabilities; and

after receiving the capability enquiry:

generate a token using one or more input parameters and transmit the token, the one or more input parameters including at least some part of the capability enquiry and at least some of the capability information that the wireless device has or will transmit, the token being generated or transmitted based on a non-access stratum security context at the wireless device; and

transmit the capability information over the access stratum without having activated security over the access stratum, without having activated security over the access stratum comprising without the use of a security key for activating or applying integrity protection and without confidentiality protection over the access stratum.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 12, 2022
From: SCHLIWA-BERTLING, PAUL; NAKARMI, PRAJWOL KUMAR; LINDHEIMER, CHRISTOFER; VAHIDI MAZINANI, HELENA
To: TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)
Reel/Frame 060794/0905 →
Continuity (2)
Provisional Application 62976897 · Feb 14, 2020
Related Publication 20230188992A1 · Jun 15, 2023
References Cited (36)
US 10841084B2 · Lee · 2020 [cited by examiner]
US 11589235B2 · Ohlsson · 2023 [cited by examiner]
US 11617077B2 · Kolekar · 2023 [cited by examiner]
US 11800522B2 · Jassal · 2023 [cited by examiner]
US 11962999B2 · Baskaran · 2024 [cited by examiner]
US 20090111428A1 · Blommaert · 2009 [cited by examiner]
US 20170187691A1 · Lee · 2017 [cited by examiner]
US 20180007552A1 · Bae · 2018 [cited by examiner]
US 20180249479A1 · Cho · 2018 [cited by examiner]
US 20190320318A1 · Lehtovirta · 2019 [cited by examiner]
US 20190357109A1 · Hong · 2019 [cited by examiner]
US 20190363843A1 · Gordaychik · 2019 [cited by applicant]
US 20190387404A1 · Chen et al. · 2019 [cited by applicant]
US 20200028817A1 · Ramakrishnan · 2020 [cited by examiner]
US 20200092727A1 · Basu Mallick · 2020 [cited by examiner]
US 20200128398A1 · Wifvesson · 2020 [cited by examiner]
US 20200396598A1 · Guo · 2020 [cited by examiner]
US 20210021994A1 · Kolekar · 2021 [cited by examiner]
US 20220007176A1 · Lindheimer · 2022 [cited by examiner]
US 20220007182A1 · Stojanovski · 2022 [cited by examiner]
US 20220014920A1 · Pham Van · 2022 [cited by examiner]
US 20220303935A1 · Olsson · 2022 [cited by examiner]
US 20220394476A1 · Da Silva · 2022 [cited by examiner]
US 20240357350A1 · Liu · 2024 [cited by examiner]
WO 2018083151A1 · 2018 [cited by applicant]
3GPP, “3GPP TR 23.743 V16.0.0”, 3rd Generation Partnership Project; Technical Specification Group Services and System Aspects; Study on optimisations on UE radio capability signalling (Release 16), Mar. 2019, 1-56. [cited by applicant]
3GPP, “3GPP TR 33.861 V1.5.0”, 3rd Generation Partnership Project; Technical Specification Group Services and System Aspects; Study on evolution of Cellular IoT security for the 5G System; (Release 16), Nov. 2019, 1-72. [cited by applicant]
3GPP, “3GPP TS 23.401 V16.5.0”, 3rd Generation Partnership Project; Technical Specification Group Services and System Aspects; General Packet Radio Service (GPRS) enhancements for Evolved Universal Terrestrial Radio Acc… [cited by applicant]
3GPP, “3GPP TS 33.401 V16.1.0”, 3rd Generation Partnership Project; Technical Specification Group Services and System Aspects; 3GPP System Architecture Evolution (SAE); Security architecture (Release 16), Dec. 2019, 1-1… [cited by applicant]
3GPP, “3GPP TS 33.501 V15.6.0”, 3rd Generation Partnership Project; Technical Specification Group Services and System Aspects; Security architecture and procedures for 5G system (Release 15), Sep. 2019, 1-190. [cited by applicant]
3GPP, “3GPP TS 33.501 V16.1.0”, 3rd Generation Partnership Project; Technical Specification Group Services and System Aspects; Security architecture and procedures for 5G system (Release 16), Dec. 2019, 1-202. [cited by applicant]
3GPP, “3rd Generation Partnership Project; Technical Specification Group Radio Access Network; Evolved Universal Terrestrial Radio Access (E-UTRA); Radio Resource Control (RRC); Protocol specification (Release 15)”, 3GP… [cited by applicant]
3GPP, “3rd Generation Partnership Project; Technical Specification Group Radio Access Network; NR; NR and NG-Ran Overall Description; Stage 2 (Release 15)”, 3GPP TS 38.300 V15.0.0, Dec. 2017, 1-68. [cited by applicant]
3GPP, “3rd Generation Partnership Project; Technical Specification Group Radio Access Network; NR; Radio Resource Control (RRC) protocol specification (Release 15)”, 3GPP TS 38.331 V15.8.0, Dec. 2019, pp. 1-532. [cited by applicant]
3GPP, “3rd Generation Partnership Project; Technical Specification Group Services and System Aspects; Procedures for the 5G System (5GS); Stage 2 (Release 16)”, 3GPP TS 23.502 V16.3.0, Dec. 2019, 1-558. [cited by applicant]
3GPP, “3rd Generation Partnership Project; Technical Specification Group Services and System Aspects; System architecture for the 5G System (5GS); Stage 2 (Release 16)”, 3GPP TS 23.501 V16.3.0, Dec. 2019, 1-417. [cited by applicant]