METHOD AND APPARATUS FOR PROVIDING USER CONSENT IN WIRELESS COMMUNICATION SYSTEM

    公开(公告)号:US20240137746A1

    公开(公告)日:2024-04-25

    申请号:US18264964

    申请日:2022-02-11

    CPC classification number: H04W8/18 H04L41/082

    Abstract: The disclosure relates to a 5G or 6G communication system for supporting a higher data transmission rate. Embodiments herein is to provide a method for providing user consent for UE in a 5G network (1000) by a UE (300). The method includes receiving a request message from a network apparatus (200) to check with the UE (300) whether the network apparatus (200) can provide subscribed event information to a NWDAF (100). The request message includes the subscribed event information and a consumer NF ID to obtain consent from the UE (300). Further, the method includes determining, by the UE (300), using the preconfigured data whether a consent can be provided for the subscribed event information to the NWDAF (100). Further, the method includes sending, by the UE (300), a response message to the network apparatus (200), wherein the response message comprises a consent indication allowing the network apparatus (200) to provide the subscribed event information to the NWDAF (100).

    METHOD AND DEVICE FOR PROTECTING SENSITIVE USER PLANE TRAFFIC

    公开(公告)号:US20240129738A1

    公开(公告)日:2024-04-18

    申请号:US18540242

    申请日:2023-12-14

    CPC classification number: H04W12/106 H04W12/033 H04W12/069

    Abstract: Disclosed herein are a communication technique for merging, with an IoT technology, a 5G communication system for supporting a data transmission rate higher than that of a 4G system; and a system therefor.
    Embodiments herein disclose a method of protecting sensitive user plane traffic in an User Equipment (UE) (100), the method comprising: transmitting, to a network (200), by the UE (100) a first NAS message comprising an indicator indicating that the UE (200) supports of a secure channel for domain name system (DNS); receiving, from the network (200), by the UE (100) a second NAS message including DNS server security information in response to transmitting the first NAS message; and transmitting, to the network (200), by the UE (100) the DNS over the secure channel based on the DNS server security information.

    METHOD AND APPARATUS FOR MITIGATING MAN IN THE MIDDLE ATTACK IN WIRELESS NETWORK

    公开(公告)号:US20230413057A1

    公开(公告)日:2023-12-21

    申请号:US18252501

    申请日:2021-11-10

    CPC classification number: H04W12/121

    Abstract: The present disclosure relates to a communication method and system for converging a 5th Generation (5G) communication system for supporting higher data rates beyond a 4th Generation (4G) system with a technology for Internet of Things (IoT).
    The method includes comparing plurality of parameters (e.g. TAI) received in message (e.g. initial NAS message, registration request, first protected NAS message) from UE and plurality of parameters (e.g. TAI) broadcasted/received/stored by AMF entity and/or genuine gNB. AMF entity and/or genuine gNB sends an accept message (e.g. NAS accept) or reject message (e.g. NAS reject, RRC reject or RRC reconfiguration.) with appropriate error cause value to UE to mitigate the MitM attack. Based on received message from AMF entity and/or genuine gNB, UE detects that UE is camped on genuine gNB or fake gNB. UE performs action(s) (e.g. cell reselection), when UE is camped on fake gNB/eNB to mitigate MitM attack.

    METHOD AND SERVER FOR PROVIDING USER CONSENT TO EDGE APPLICATION

    公开(公告)号:US20220263832A1

    公开(公告)日:2022-08-18

    申请号:US17612477

    申请日:2020-06-15

    Abstract: Embodiments herein provide a method for providing a service to an edge application (600). The method includes receiving, by a server (500), at least one of a request for accessing the service associated with a User Equipment (300) from the edge application (600), and a request for a user consent associated with the UE (300) from the edge application (600). The method includes retrieving, by the server (500), the user consent from the edge enabler client (100), where the user consent indicates a consent of a user of the edge enabler client (100) to provide at least one of the service and the user consent with the edge application (600). The method includes sending, by the server (500), at least one of the service and the user consent to the edge application (600).

    METHOD AND SYSTEM FOR AUTHENTICATING APPLICATION PROGRAM INTERFACE (API) INVOKERS

    公开(公告)号:US20220217178A1

    公开(公告)日:2022-07-07

    申请号:US17703531

    申请日:2022-03-24

    Abstract: A method and system for authenticating application program interface (API) invokers using a common application program interface framework (CAPIF) is provided. The method includes establishing by a CAPIF core function (CCF) a secure Transport Layers Security (TLS) connection with at least one API invoker, on receiving a connection request from the at least one API invoker to access at least one service API on a CAPIF-2e interface. Further, the method includes determining by the CCF at least one security method to be used by the at least one API invoker for a CAPIF-2e interface security (C2eIS) of the at least one API invoker for accessing the at least one service API on a CAPIF-2e interface. The method further includes enabling the C2eIS by an API exposing function (AEF) the at least one API invoker based on the determined at least one security method.

Patent Agency Ranking