Communication terminal, network apparatus, communication method, and de-concealment method
A communication terminal ( 10 ) includes control means for generating a subscription concealed identifier (SUCI) including a subscription permanent identifier (SUPI) concealed using a predetermined protection scheme, and a protection scheme identifier identifying the protection scheme, and transmission means for sending the SUCI to a first network apparatus during a registration procedure, the SUCI being sent for a second network apparatus to de-conceal the SUPI from the SUCI based on the protection scheme used to generate the SUCI.
1. A user equipment (UE) comprising:
a controller configured to generate a Subscription Concealed Identifier (SUCI), wherein the SUCI includes:
a Subscription Permanent Identifier (SUPI) concealed using a protection scheme and
a protection scheme identifier identifying the protection scheme used to conceal the SUPI; and
a transmitter configured to send the SUCI to a first network apparatus during a Registration procedure, the SUCI being sent for a second network apparatus to de-conceal the SUCI to the SUPI based on the protection scheme identified by the protection scheme identifier.
2. The UE according to claim 1 , wherein the transmitter is configured to send the SUCI included in a NAS message.
3. The UE according to claim 2 , wherein the NAS message is a Registration Request message.
4. The UE according to claim 1 , wherein the second network apparatus is a second core network apparatus.
5. The UE according to claim 4 , wherein the second core network apparatus is a Unified Data Management (UDM).
6. The UE according to claim 4 , wherein the second core network apparatus is a Subscription Identifier De-concealing Function (SIDF).
7. The UE according to claim 1 , wherein the first network apparatus is a first core network apparatus.
8. The UE according to claim 1 , wherein the protection scheme identifier identifies a profile.
9. The UE according to claim 1 , wherein the protection scheme identifier is concealed.
10. A network apparatus comprising:
a receiver configured to receive a message containing a Subscription Concealed Identifier (SUCI) generated by a user equipment, wherein the SUCI includes:
a Subscription Permanent Identifier (SUPI) concealed using a protection scheme and
a protection scheme identifier identifying the protection scheme; and
a controller configured to de-conceal the SUCI to the SUPI based on the protection scheme identified by the protection scheme identifier.
11. The network apparatus according to claim 10 , wherein the network apparatus is a core network apparatus.
12. The network apparatus according to claim 11 , wherein the core network apparatus is a Unified Data Management (UDM).
13. The network apparatus according to claim 11 , wherein the core network apparatus is a Subscription Identifier De-concealing Function (SIDF).
14. The network apparatus according to claim 10 , wherein the protection scheme identifier is concealed.
15. A communication method comprising:
generating a Subscription Concealed Identifier (SUCI)), wherein the SUCI includes:
a Subscription Permanent Identifier (SUPI) concealed using a protection scheme and
a protection scheme identifier identifying the protection scheme used to conceal the SUPI; and
sending the SUCI to a first network apparatus during a Registration Procedure, the SUCI being sent for a second network apparatus to de-conceal the SUCI to the SUPI based on the protection scheme identified by the protection scheme identifier.
16. The communication method according to claim 15 , wherein the SUCI is sent included in a NAS message in a case where the SUCI is sent to the first network apparatus during the Registration Procedure.
17. The communication method according to claim 16 , wherein the NAS message is a Registration Request message.
18. The communication method according to claim 15 , wherein the second network apparatus is a second core network apparatus.
19. The communication method according to claim 18 , wherein the second core network apparatus is a Unified Data Management (UDM).
20. The communication method according to claim 18 , wherein the second core network apparatus is a Subscription Identifier De-concealing Function (SIDF).
21. The communication method according to claim 15 , wherein the first network apparatus is a first core network apparatus.
22. The communication method according to claim 15 , wherein the protection scheme identifier identifies a profile.
23. The communication method according to claim 15 , wherein the protection scheme identifier is concealed.
24. A de-concealment method comprising:
receiving a message containing a Subscription Concealed Identifier (SUCI) generated by a user equipment, wherein the SUCI includes:
a Subscription Permanent Identifier (SUPI) concealed using a protection scheme and
a protection scheme identifier identifying the protection scheme; and
de-concealing the SUCI to the SUPI based on the protection scheme identified by the protection scheme identifier.
25. The de-concealment method according to claim 24 , wherein the de-concealment method is performed in a core network apparatus.
26. The de-concealment method according to claim 25 , wherein the core network apparatus is a Unified Data Management (UDM).
27. The de-concealment method according to claim 25 , wherein the core network apparatus is a Subscription Identifier De-concealing Function (SIDF).
28. The de-concealment method according to claim 24 , wherein the protection scheme identifier is concealed.