IP Library › Granted Patent US 12,713,236
Granted Patent B2
US 12,713,236 · App. 18/571,609 · Granted Aug 18, 2026

Method and device for operating terminal in wireless communication system

Inventors: Dongjoo Kim (Seoul, KR); Hyun Sook Kim (Seoul, KR)
Assignee: LG ELECTRONICS INC.
H04W12/069H04W12/084
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,713,236
App. No.
18/571,609
Filed
Dec 18, 2023
Granted
Aug 18, 2026
Kind
B2
Art Unit
2642
USPC
455/411
Abstract

Disclosed herein is a method for operating a user equipment (UE) in a wireless communication system, and the method may include generating, by the UE, a SUCI by encrypting a unique identifier with a public key of a DCS, transmitting, to a base station, a registration request including the generated SUCI and a first standalone non public network (SNPN) ID, performing two-way authentication with the base station, receiving, from the base station, a provisioning server address and a provisioning server token based on the two-way authentication being completed, transmitting, to a provisioning server, a credential request including the unique identifier and the provisioning server token based on the received provisioning server address, and being provided with a credential of a first SNPN from the provisioning server.

Claims (45)

1 . A method for operating a user equipment (UE) in a wireless communication system, the method comprising:

generating, by the UE, a subscription concealed identifier (SUCI);

transmitting, to a base station, a registration request;

performing two-way authentication with the base station;

receiving, from the base station, a provisioning server address and a provisioning server token based on the two-way authentication being completed;

transmitting, to a provisioning server, a credential request; and

being provided with a credential of a first SNPN from the provisioning server,

wherein the SUCI is generated by encrypting a unique identifier with a public key of a default credential server (DCS),

wherein the registration request includes the generated SUCI and a first standalone non public network (SNPN) ID, and

wherein the credential request includes the unique identifier and the provisioning server token based on the received provisioning server address.

2 . The method of claim 1 , wherein an access and mobility management function (AMF) of the base station receives the registration request from the UE, and

wherein the AMF requests authentication including the SUCI and the first SNPN ID to an authentication server function (AUSF) of the base station.

3 . The method of claim 2 , wherein, based on the AMF requesting the authentication to the AUSF, the AMF further transmits, to the AUSF, authentication method selection indication information.

4 . The method of claim 3 , wherein the AUSF searches for the DCS by confirming the authentication method selection indication information and domain information of the SUCI and requests necessary information for the authentication of the UE to the DCS,

generate a subscription concealed identifier (SUCI);

control the transceiver to transmit, to a base station, a registration request;

perform two-way authentication with the base station;

control the transceiver to receive, from the base station, a provisioning server address and a provisioning server token based on the two-way authentication being completed;

controlling the transceiver to transmit, to the provisioning server, a credential request; and

controlling the transceiver to be provided with a credential of a first SNPN from the provisioning server,

wherein the SUCI is generated by encrypting a unique identifier with a public key of a default credential server (DCS),

wherein the registration request includes the generated SUCI and a first standalone non public network (SNPN) ID, and

wherein the credential request includes the unique identifier and the provisioning server token based on the received provisioning server address.

5 . The method of claim 4 , wherein the necessary information for the authentication of the UE transmitted to the DCS includes the SUCI, wherein the DCS generates a subscriber identifier (SUPI) by decrypting the SUCI with a private key, generates a first certificate capable of verifying a certificate mapped to the SUPI, generates the provisioning server address of the provisioning server in charge of authenticating the first SNPN based on the first SNPN ID, and generates the provisioning server token that the provisioning server and the UE use for authentication.

6 . The method of claim 5 , wherein the AUSF receives, from the DCS, the first certificate, the provisioning server address of the provisioning server in charge of authenticating the first SNPN based on the first SNPN ID, and the provisioning server token that the provisioning server uses for the authentication of the UE.

7 . The method of claim 1 , wherein the UE is provided beforehand by the DCS with at least one of the unique identifier, the public key, a certificate of the UE issued based on the DCS, and a certificate of a root/intermediary certificate authority (CA) capable of verifying a certificate of thebase station.

8 . The method of claim 1 , wherein the two-way authentication is performed based on an extensible authentication protocol-transport layer security (EAP-TLS) protocol.

9 . The method of claim 1 , wherein the base station is an onboarding-standalone non-public network (O-SNPN).

10 . The method of claim 1 , wherein the UE accesses the first SNPN based on the credential of the first SNPN delivered from the provisioning server.

11 . A user equipment (UE) operating in a wireless communication system, the UE comprising:

a transceiver; and

a processor coupled to the transceiver,

wherein the processor is configured to:

server address and is provided with a credential of a first SNPN from the provisioning server, and

wherein the registration request includes a generated subscription concealed identifier (SUCI) and a first standalone non public network (SNPN) ID.

12 . An base station operating in a wireless communication system, the base station comprising:

a transceiver; and

a processor coupled to the transceiver,

wherein the processor is configured to:

control the transceiver to receive, from a user equipment (UE), a registration request;

control the transceiver to transmit, to a DCS, an authentication information request based on the received registration request;

control the transceiver to receive, based on the authentication information request, a response including at least one of a first certificate, an address of a provisioning server, and a provisioning server token;

perform two-way authentication with the UE based on the received response; and

control the transceiver to transmitting the provisioning server address and the provisioning server token to the UE based on the two-way authentication being completed,

wherein the UE transmits, to the provisioning server, a credential request including the unique identifier and the provisioning server token based on the received provisioning.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 18, 2023
From: KIM, DONGJOO; KIM, HYUN SOOK
To: LG ELECTRONICS INC.
Reel/Frame 065901/0313 →
Priority Claims (1)
KR 10-2021-0096542 · Jul 22, 2021 · national
Continuity (1)
Related Publication 20240292219A1 · Aug 29, 2024
References Cited (21)
US 11395127B2 · Sahin · 2022 [cited by examiner]
US 11470474B2 · Palanigounder · 2022 [cited by examiner]
US 11659387B2 · Nair · 2023 [cited by examiner]
US 11785450B2 · Tiwari · 2023 [cited by examiner]
US 11785456B2 · Gundavelli · 2023 [cited by examiner]
US 12356199B2 · Lei · 2025 [cited by examiner]
US 12477329B2 · Hu · 2025 [cited by examiner]
US 20200245235A1 · Chun · 2020 [cited by examiner]
US 20210058784A1 · Kedalagudde · 2021 [cited by examiner]
US 20210105712A1 · Speicher · 2021 [cited by examiner]
US 20220174583A1 · Yang · 2022 [cited by examiner]
US 20230164559A1 · Yang · 2023 [cited by examiner]
US 20230179989A1 · Nayak · 2023 [cited by examiner]
WO 2021134107 · 2021 [cited by applicant]
PCT International Application No. PCT/KR2022/001228, International Search Report dated Apr. 26, 2022, 4 pages. [cited by applicant]
Intel et al., “KI #4, Evaluation —UE Onboarding,” S2-2007854, 3GPP TSG-WG SA2 Meeting #141e, e-meeting, Oct. 2020, 7 pages. [cited by applicant]
Intel, “Updates to solution 14: Removal of Editor's notes and Evaluation,” S3-210985, 3GPP TSG-SA3 Meeting #102Bis-e, e-meeting, Mar. 2021, 8 pages. [cited by applicant]
Huawei et al., “KI#4, evaluations and conclusions updates,” S2-2009151, 3GPP TSG-WG SA2 Meeting #142e, Nov. 2020, 10 pages. [cited by applicant]
Ericsson, “KI#4, New Sol: Simplified Onboarding procedure supporting both User and Control Plane UE Provisioning Procedures,” S2-2003610, 3GPP TSG-WG SA2 Meeting #139e, Jun. 2020, 10 pages. [cited by applicant]
European Patent Office Application Serial No. 22845985.5, Search Report dated Jun. 5, 2025, 9 pages. [cited by applicant]
3rd Generation Partnership Project, “Technical Specification Group Services and System Aspects; Study on enhanced support of non-public networks (Release 17),” 3GPP TR 23.700-07 V1.2.0, Nov. 2020, 247 pages. [cited by applicant]