Communication method, apparatus, and system
A communication method, apparatus, and system. The method includes after a second node sends first indication information to a first node by using a message that is not security protected, the first node requests an Integrated Access and Backhaul (IAB) donor node to verify whether the first indication information is trustworthy, so that the first node performs a subsequent operation based on a verification result of the IAB donor node. This eliminates a security risk in a communication process, and help improve communication quality.
1 . A communication method, comprising:
receiving, by a first node, a first message from a second node, wherein the first message includes
first indication information; wherein
the first message is not security protected, and
both the first node and the second node are integrated access and backhaul (IAB) nodes;
sending, by the first node to an IAB donor node, a second message, indicating that the first node received the first indication information, and the second message is security protected, wherein the second message requests the IAB donor node to verify whether the first indication information is trustworthy; and
receiving, by the first node, a third message from the IAB donor node, wherein the third message includes second indication information indicating whether the first indication information is trustworthy, and the third message is security protected.
2 . The method according to claim 1 , wherein:
the first message further includes:
an identifier of a third node;
the first indication information indicates that a signal transmission exception occurs on the third node; and
the third node is an IAB node; and
the second message further includes the identifier of the third node indicating that the first node receives the first indication information from the third node.
3 . The method according to claim 2 , wherein:
the identifier of the third node is an address of the third node; or
the identifier of the third node is an identifier of a first path corresponding to the third node, the first path is a path on which the signal transmission exception occurs, and the first path includes the third node.
4 . The method according to claim 1 , wherein:
the second message includes third indication information indicating that the first node received the first indication information.
5 . The method according to claim 1 , wherein:
the first message is one of:
an internet protocol (IP) layer message;
an adaptation Adapt layer message;
a radio link control (RLC) message;
a media access control (MAC) message; or
a physical (PHY) layer message;
the second message is one of:
an F1 application protocol F1AP layer message;
a stream control transmission protocol (SCTP) layer message; or
an internet protocol security (IPsec) layer message; and
the third message is one of:
an F1AP layer message;
an SCTP layer message; or
an IPsec layer message.
6 . A communication method, comprising:
receiving, by an Integrated Access and Backhaul (IAB) donor node, a second message from a first node, wherein the second message indicates that the first node receives first indication information, the second message is security protected and requests to verify whether the first indication information is trustworthy, and wherein the first indication information is included in a first message sent from a second node without security protection, and both the first node and the second node are IAB nodes;
verifying, by the IAB donor node, whether the first indication information received by the first node is trustworthy; and
sending, by the IAB donor node, a third message to the first node, wherein the third message includes second indication information indicating whether the first indication information is trustworthy, and the third message is security protected.
7 . The method according to claim 6 , wherein:
the second message further includes:
an identifier of a third node;
the identifier of the third node is an address of the third node or an identifier of a first path corresponding to the third node;
the first path is a path on which a signal transmission exception occurs;
and the first path includes the third node; and
the second message indicates that the first node receives the first indication information from the third node.
8 . The method according to claim 7 , wherein:
the determining, by the IAB donor node, whether the first indication information is trustworthy comprises:
in response to determining that the signal transmission exception occurs on the first path, determining, by the IAB donor node, that the first indication information is trustworthy.
9 . The method according to claim 7 , further comprising:
receiving, by the IAB donor node, fourth indication information from the third node, wherein the fourth indication information indicates that the signal transmission exception occurs on the first path.
10 . The method according to claim 6 , wherein:
the second message includes third indication information indicating that the first node receives the first indication information.
11 . An apparatus comprising:
a processor coupled to a memory storing instructions and configured to execute the instructions to cause the processor to:
receive a first message from a second node, wherein the first message includes
first indication information; wherein
the first message is not security protected and
both the first node and the second node are integrated access and backhaul (IAB) node;
send a second message to an IAB donor node, wherein the second message is used to indicate that the apparatus received the first indication information, and the second message is security protected, wherein the second message requests the IAB donor node to verify whether the first indication information is trustworthy; and
receive a third message from the IAB donor node, wherein the third message includes second indication information, the second indication information is used to indicate whether the first indication information is trustworthy, and the third message is security protected.
12 . The apparatus according to claim 11 , wherein:
the first message further includes:
an identifier of a third node;
the first indication information is used to indicate that a signal transmission exception occurs on the third node; and
the third node is an IAB node; and
the second message further includes the identifier of the third node indicating that the first indication information was received from the third node.
13 . The apparatus according to claim 12 , wherein:
the identifier of the third node is an address of the third node or an identifier of a first path corresponding to the third node, the first path is a path on which the signal transmission exception occurs, and the first path includes the third node.
14 . The apparatus according to claim 11 , wherein:
the second message includes third indication information indicating that the first indication information was received.
15 . The apparatus according to claim 11 , wherein:
the first message is one of:
an internet protocol (IP) layer message;
an adaptation Adapt layer message;
a radio link control (RLC) message;
a media access control (MAC) message; or
a physical (PHY) layer message;
the second message is one of:
an F1 application protocol F1AP layer message;
a stream control transmission protocol (SCTP) layer message; or
an internet protocol security (IPsec) layer message; and
the third message is one of:
an F1AP layer message;
an SCTP layer message; or
an IPsec layer message.
16 . An apparatus comprising:
a processor coupled to a memory storing instructions and configured to execute the instructions to cause the processor to:
receive a second message from a first node, wherein the second message is used to indicate that the first node receives first indication information, the second message is security protected, and the first node is an Integrated Access and Backhaul (IAB) node, wherein the second message requests an IAB donor node to verify whether the first indication information is trustworthy;
wherein the first indication information is included in a first message sent from a second node without security protection, and the second node is an IAB node;
verify, by the IAB donor node, whether the first indication information is trustworthy; and
send, by the IAB donor node, a third message to the first node, wherein the third message includes second indication information, the second indication information is used to indicate whether the first indication information is trustworthy, and the third message is security protected.
17 . The apparatus according to claim 16 , wherein:
the second message further includes:
an identifier of a third node, the identifier of the third node is an address of the third node or an identifier of a first path corresponding to the third node, the first path is a path on which a signal transmission exception occurs, and the first path includes the third node; and
the second message indicates that the first node receives the first indication information from the third node.
18 . The apparatus according to claim 17 , wherein the instructions further cause the processor to determine that the first indication information is trustworthy in response to determining that the signal transmission exception occurs on the first path.
19 . The apparatus according to claim 17 , wherein the instructions further cause the processor to receive fourth indication information from the third node, wherein the fourth indication information indicates that the signal transmission exception occurs on the first path.
20 . The apparatus according to claim 16 , wherein:
the second message includes third indication information indicating that the first node receives the first indication information.