User plane model for non-3GPP access to fifth generation core network

    公开(公告)号:US11463527B2

    公开(公告)日:2022-10-04

    申请号:US16348554

    申请日:2017-11-09

    摘要: Systems and methods relating to establishment of a Packet Data Unit, PDU, session over a Non 3GPP Access to a 3GPP network and transmitting IP data and non-IP data are provided. A method of operation of a wireless device is provided and comprises sending to an AMF over an N3IWF a PDU session request to establish a PDU session to transport one of IP data or non-IP data over an established first IPsec, Security Association, SA, establishing an IPSec Child SA, for the PDU session and associating the IPSec Child SA to a PDU session then encapsulating the data using ESP encapsulation or GRE encapsulation associated with the IPSec Child SA and indicating the type of data that is being transmitted (e.g., non-IP data that comprises raw application data). In this manner, an IoT device is able to securely transmit to the 3GPP network IP data/non-IP data/raw application data over an unsecure non 3GPP access network such as Wireless Local Area Network. Methods and apparatus describing the NAS signalling and the PDU session as each using their respective IPSec SA are provided. Similarly, methods and apparatus describing the NAS signalling and the PDU sessions sharing a common IPSec SA are provided. GRE encapsulation of the data within the ESP frame is described for both NAS signalling and PDU session in the case of multiple IPSec/Child SAs or common IPSec SA. Similarly, methods and apparatus are provided for the N3IWF which provides for the UE secure access to the network.

    Enhancements to terminating access domain selection

    公开(公告)号:US10383163B2

    公开(公告)日:2019-08-13

    申请号:US15561721

    申请日:2015-04-15

    摘要: A method of determining in an IP multimedia subsystem, IMS, network which radio access type, RAT, should be used to route a terminating session directed towards a user equipment, UE. The HSS receives a terminating access domain selection, T-ADS, query from an application server, AS, of the IMS network, the T-ADS query relating to the terminating session and identifying the UE; and determines whether a packet data network gateway, PDN-GW, is registered for the UE. In the case where a PDN-GW is registered, the HSS sends a RAT request towards the PDN-GW, the RAT request identifying the UE and requesting a RAT used by the UE to connect to the IMS network. The PDN-GW determines the RAT and sends the result towards the HSS, which sends a T-ADS response to the AS indicating the RAT. In the case where a PDN-GW is not registered, the HSS sends a T-ADS response to the AS indicating that the RAT is a circuit switched RAT. Apparatus for implementing the method are also provided.

    Controlling wireless local area network access

    公开(公告)号:US10314101B2

    公开(公告)日:2019-06-04

    申请号:US15519525

    申请日:2014-12-17

    摘要: Apparatus configured to operate as a WAC of a WAN. The apparatus comprises a database unit, a transceiver, and a resource request processor. The database unit maintains a database of a plurality of user equipment (UEs) connected to the WAN, resource usage by each of the UEs, and available resources of the WAN. The transceiver communicates with a gateway between the WAN and a telecommunications network. The resource request processor receives a resource request from the gateway, the resource request identifying a UE and indicating a required change in resource usage; and determines whether the required change in resource usage is possible based on the available resources of the WAN. If the required change in resource usage is possible, the resource request processor updates database records for resource usage by the UE and available resources of the WAN and sends a resource response to the gateway.

    Method and apparatus for performing protection control in a core network

    公开(公告)号:US12108245B2

    公开(公告)日:2024-10-01

    申请号:US17636772

    申请日:2020-08-06

    IPC分类号: H04W12/033 H04W12/088

    CPC分类号: H04W12/033 H04W12/088

    摘要: The present application generally relates to wireless communication technology. More particularly, the present application relates to a method and apparatus for performing protection control in a core network with separation between control plane and user plane. The present application also relates to computer program product adapted for the same purpose. According to one embodiment, a method for performing protection control in a core network with separation between control plane and user plane, comprises the following steps performed on the user plane: —a) pairing a User Plane Function (UPF) and at least one User Plane Security Function (UPSF); and —b) notifying a pairing relationship between the UPF and the UPSF to the control plane so that the pair of the UPF and the UPSF can be controlled by a Control Plane Function (CPF) via the same reference point.

    ONLINE SIGN-UP IN NEUTRAL HOST NETWORKS
    7.
    发明申请

    公开(公告)号:US20190159268A1

    公开(公告)日:2019-05-23

    申请号:US16301858

    申请日:2017-05-30

    IPC分类号: H04W76/10

    摘要: Disclosed herein is a method of operation of a network node and a corresponding network node in a Neutral Host Network (NHN) in relation to an Online Set Up (OSU) procedure by which User Equipment devices (UEs) are enabled to access a data network via the NHN where the NHN comprises one or more Access Points (APs) that provide wireless access according to a cellular communications technology. The method of operation of the network node comprises: obtaining a filter list that defines limitations on a connectivity of a Packet Data Network (PDN) connection established for OSU between a UE and a Participating Service Provider (PSP); and utilizing the filter list such that traffic on the PDN connection is limited to traffic between the UE and one or more other network nodes of the PSP that perform operations related to OSU.