CN101330469B - Method for implementing collection of safety parameter of resource control part in the next generation network - Google Patents

Method for implementing collection of safety parameter of resource control part in the next generation network Download PDF

Info

Publication number
CN101330469B
CN101330469B CN2008101345390A CN200810134539A CN101330469B CN 101330469 B CN101330469 B CN 101330469B CN 2008101345390 A CN2008101345390 A CN 2008101345390A CN 200810134539 A CN200810134539 A CN 200810134539A CN 101330469 B CN101330469 B CN 101330469B
Authority
CN
China
Prior art keywords
resource
control part
resource control
network
parameter
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Expired - Fee Related
Application number
CN2008101345390A
Other languages
Chinese (zh)
Other versions
CN101330469A (en
Inventor
滕志猛
钱勇
韦银星
陈剑勇
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
ZTE Corp
Original Assignee
ZTE Corp
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by ZTE Corp filed Critical ZTE Corp
Priority to CN2008101345390A priority Critical patent/CN101330469B/en
Publication of CN101330469A publication Critical patent/CN101330469A/en
Application granted granted Critical
Publication of CN101330469B publication Critical patent/CN101330469B/en
Expired - Fee Related legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Abstract

The invention discloses a realization method for collecting the security parameters for a resource control part in the next generation network. The method comprises the following steps: the resource control part receives a resource application and a reservation request, and the resource application and the reservation request carry security parameters; the resource control part performs revision to service quality parameters according to the requirements of the security policy rules after receiving the security parameters; the resource control part adopts the service quality parameters after being revised to perform admission control, resource-assignment decision-making or resources reservation processing. By the method, the influence of the security parameters can be considered when the resource control part performs the network resource reservation decision-making.

Description

The implementation method of collection of safety parameter of resource control part in the next generation network
Technical field
The present invention relates to communication technical field, relate in particular to the implementation method of collection of safety parameter of resource control part in a kind of next generation network.
Background technology
TDM circuit, ATM, FR etc. are provided on IP network,, are called Everythingover IP or Internet Protocol to support traditional business.Development along with Everything over IP (Internet Protocol), for satisfy the user to packet network at QoS (Quality of Service, service quality) demand of aspect, industry have proposed NGN (Next Generation Networks, next generation network).NGN is based on group technology, adopts operation layer and transport layer is separated from each other, uses and professional control is separated from each other, transmits control and the thought that transmission is separated from each other, and can support existing various access technology; Business such as speech, data, video, Streaming Media can be provided; Can support the miscellaneous service on the existing mobile network, realize fixed network and mobile network's fusion; Can guarantee the service quality of customer service according to user's needs.
As shown in Figure 1, be NGN architectural framework schematic diagram of the prior art, the NGN architectural framework comprises: network insertion control section, resource control part, translator unit, professional control section and user terminal/user network part.
The network insertion control section partly provides functions such as registration, Authentication Authorization, address assignment, parameter configuration, location management for the user terminal/user network that inserts the NGN network.For example, network attachment controlled function (Network Attachment Control Functions) among Network Attachment Subsystem (Network Attachment Subsystem), the ITU-T NGN among the TISPAN NGN.
Resource control part is based on strategy and network resource status, admits functions such as control, resource reservation when being used to finish user terminal/user network part access network.For example, among the TISPAN NGN among Resource and Admission Control Sub-system (Resource and Admission Control Subsystem), the ITU-T NGN among resource accommodating control function (Resource and Admission Control Functions), the 3GPP mobile network strategy with charging rule functions (Policy and Charging Rules Function).
Translator unit is used to the transmitting function of the information of finishing.For example, TISPAN NGN transmits among processing capacity (Transport Processing Functions), the ITU-T NGN strategy and charge execution function (Policy and ChargingEnforcement Function) among transmitting function (TransportFunctions), the 3GPP mobile network.
Professional control section belongs to the part in the operation layer, finishes functions such as registration, Authentication Authorization, resource control on professional level.For example among the TISPAN NGN among professional control subsystem (Service ControlSubsystems), the ITU-T NGN among service control function (Service Control Functions), the 3GPP mobile network IMS territory (IP Multimedia Subsystem).
User terminal/user network part provides network access facility to the user, CPE (Customer Premises Equipment among the ITU-TNGN/TISPAN NGN for example, ustomer premises access equipment)/CPN (Customer Premises Network, the local network of users), 3GPP mobile network in portable terminal/wireless side.
Exist various users and various business on the NGN.Different users has different demands for security and QoS requirement, same user has different demands for security and QoS requirement for different business, even same user also may have different demands for security and QoS requirement for same business under the different application environment.When validated user terminal/subscriber network portion is used NGN, in order to guarantee service quality, resource control part will be according to service request (comprising parameters such as service priority, service bandwidth demand) and network resource status information, admit control and network resource reservation based on moving speed decision-making, in this process, do not consider the influence of safety measure at present service quality.In fact, safety measure and service quality are interactional, and stable service quality needs safety measure to take precautions against various attacks on the one hand, avoids the network congestion that causes because of success attack; The realization of safety measure need be used certain Internet resources on the other hand, if do not consider the influence of safety measure during resource allocation, may cause service quality to be subjected to obvious influence, and for example authentication or ciphering process can strengthen the time delay of processing procedure.Particularly, if network does not support safety measure or the required safety measure of user that the user is required to be higher than the signatory safety measure of user,, can not provide required service for the user even then there are the Internet resources that can guarantee service quality in network.So,, then may be able to not satisfy the requirement of service quality if resource control part is not considered the influence of safety measure to service quality when admitting control with resource allocation decisions.
Summary of the invention
The technical problem to be solved in the present invention provides the implementation method of collection of safety parameter of resource control part in a kind of next generation network, makes resource control part when carrying out the network resource reservation based on moving speed decision-making, can consider the influence of security parameter.
In order to address the above problem, the invention provides the implementation method of collection of safety parameter of resource control part in a kind of next generation network, comprising:
Resource control part receives resource bid and reservation request, and described resource bid and reservation request carry security parameter;
After described resource control part receives described security parameter,, QoS parameter is revised according to the security strategy rule request;
Described resource control part adopts revised QoS parameter to admit control, resource allocation decisions or resource reservation to handle.
Further, professional control section, user terminal, user network part or translator unit send resource request to described resource control part, reserve to described resource control part request resource by resource request; In described resource request, carry security parameter according to the security strategy rule request.
Further, described resource control part adopts described revised QoS parameter to replace original QoS parameter, admits control, resource allocation decisions or resource reservation to handle.
Further, in order to handle the ability of dissimilar described user terminals or user network part transmission service quality, described resource control part is supported Push pattern or Pull pattern.
Further, under described Pull pattern, according to the network strategy rule request, described user network part or translator unit provide described security parameter to described resource control part when applying for resource reservation alternately with described resource control part.
Further, under described Push pattern, described professional control section provides described security parameter to described resource control part carrying out mutual request resource when reserving with resource control part.
Further, described security parameter comprises: authentication type, encryption type, encryption key length, integrality type, Integrity Key length, admittance control mode, network address translation mode, terminal security Agent Type, data encryption type, data encryption key, data origin, recipient's auth type, recipient's authenticate key length, non-repudiation type, non-repudiation key length, anti-rubbish mail type or anti-refuse messages type.
Further, home networking gateway is when carrying out information exchange with resource control part, when carrying out information exchange between the perhaps described resource control part, when carrying out information exchange between inner each logical ne of perhaps described resource control part or the physical NE, in describing, media safety comprises described security parameter.
Resource control part of the present invention is when carrying out the network resource reservation based on moving speed decision-making, can consider the influence of security parameter, on the one hand, if network does not support safety measure or the required safety measure of user that the user is required to be higher than the signatory safety measure of user, even then there are the Internet resources that can guarantee service quality in network, can not provide required service for the user; On the other hand, can be according to the security strategy rule request, carry out the revision of QoS parameter according to security parameter, adopt revised QoS parameter to carry out the network resource reservation based on moving speed decision-making then, thereby make the result of decision can meet the quality of service requirement of service request.
Description of drawings
Fig. 1 is a NGN architectural framework schematic diagram in the prior art;
Fig. 2 is resource allocation process schematic diagram among the present invention (comprising Fig. 2 a and Fig. 2 b);
Fig. 2 a is the resource allocation process schematic diagram under the Push pattern among the present invention;
Fig. 2 b is the resource allocation process schematic diagram under the Pull pattern among the present invention;
Fig. 3 is the implementation method flow chart of collection of safety parameter of resource control part among the NGN among the present invention.
Embodiment
Below in conjunction with drawings and Examples technical scheme of the present invention is described in detail.
In order to realize the network insertion of dissimilar user terminals/user network part, resource control part need be supported Push pattern and Pull pattern.
As shown in Figure 2, resource allocation process schematic diagram among the present invention, it comprises Fig. 2 a and two kinds of situations of Fig. 2 b.
Shown in Fig. 2 a, be the resource allocation process schematic diagram under the Push pattern among the present invention, under the Push pattern, resource allocation process is as follows:
(1) user terminal/user network sends service request to professional control section, certain business of request visit;
(2) professional control section extracts or derives the qos parameter of institute's requested service, and sends the resource reservation request that comprises qos parameter to resource control part, request QoS resource authorization and reservation;
(3) based on the user's registration information in policing rule and resource state information and the network insertion control section, resource control part is finished and is authorized and admit control.
Shown in Fig. 2 b, be the resource allocation process schematic diagram under the Pull pattern among the present invention.Under the Pull pattern, have two kinds of possibilities, a kind of is that professional control section needs to participate in, and at this moment, process is as follows:
(1) user terminal/user network partly sends service request to professional control section, certain business of request visit;
(2) professional control section extracts or derives the qos parameter of institute's requested service, and sends the resource reservation request that comprises qos parameter to resource control part, request QoS resource authorization and reservation;
(3) policing rule Network Based, resource control part is made a strategic decision to resource reservation;
(4) user terminal/user network may be initiated service request by transport layer and be given user network/translator unit;
(5) in a single day receive that service request, user network/translator unit will send a request to resource control part, request resource is reserved, need to allow resource control part know the qos parameter of being asked in some way clearly in this request;
(6) based on user's registration information and business information in policing rule, resource state information, the network attachment control section, resource control part is finished and is authorized and admit control, and provides for user network/translator unit and admit information such as control, bag sign and allocated bandwidth decision-making.
Under the Pull pattern, another is that professional control section does not participate in, and at this moment, process is made up of above-mentioned (4)~(6), does not have (1)~(3), and is as follows:
(1) user terminal/user network is initiated service request by transport layer and is given user network/translator unit;
(2) in case receive service request, user network/translator unit will extract or derive this professional qos parameter, send a request to resource control part, request resource is reserved, and needs to allow resource control part know the qos parameter of being asked in some way clearly in this request;
(3) based on user's registration information and business information in policing rule, resource state information, the network attachment control section, resource control part is finished and is authorized and admit control, and provides for user network/translator unit and admit information such as control, bag sign and allocated bandwidth decision-making.
On the one hand, if there are not the Internet resources that can guarantee service quality in required safety measure network even network is not supported the user, can not provide required service for the user; On the other hand, if the required safety measure of user is higher than the signatory safety measure of user,, also may not provide required service for the user then according to the network strategy rule request.In addition,, Media Stream is encrypted, the QoS performance is obviously descended,, need to consider the influence of safety measure time delay therefore in order to guarantee that the business that the user asks has stable QoS because Media Stream is relatively more responsive to time delay.So in order to address the above problem, resource control part not only needs to collect qos parameter, and need to collect security parameter, the security parameter here is meant parameters such as authentication, confidentiality, integrality.
So professional control section, user terminal/user network part, translator unit utilize existing procedure, reserve to the resource control part request resource.In resource request message,, may need parameter safe to carry according to the security strategy rule request.
Professional control section need provide security parameter to resource control part carrying out mutual request resource when reserving with resource control part.For example, in ITU-T NGN, on the Rs reference point between professional control section and the resource control part, QoS resource information sub-component information unit is as shown in table 1;
QoS resource information sub-component (the QoS Resource Information Sub-Components) information unit that transmits on the Rs reference point between table 1:ITU-T NGN service control layer and the resource key-course
Figure DEST_PATH_GSB00000389066500021
Medium numberings (Media Number) Serial number).An identifier for a media session (e.g., ordinal number of the position of the " m=" line in the SDP).
Type of service (Type of Service) The type of service sign (as voice, visual telephone, or video flowing) of media data flow.Indication of service type for the media data flow (e.g., voice, video telephony, or streaming video).
Applied business type (optional) (Application Class ofService) (Optional) The media application type of service that has local significance between resource request terminal (as SCF owner) and policy deciding functional entity (PD-FE) owner (for example, the first order), PD-FE will be the Network type with this applied business conversion in type based on SLA (Service Level Agreement) and network strategy rule.The application service class for the media (e.g., first class) is of local significance between the resource request client (i.e., the owner of SCF) and the owner of PD-FE, and is to be converted by PD-FE to Network Class of Service (e.g., Y.1541 class for performance requirement) based on SLA and network policy rules.
Media priority (optional) (Media Priority) (Optional) The information (for example TDR/ETS) that is used for processed.Information for priority handling (e.g., TDR/ETS).
Media Stream is described (Media Flow Description) The set of single or group media stream sub-component in media session.A set of sub-components of individual or a group of media flows within a media session.
In TISPAN NGN, the media description on the Gq ' reference point between professional control section and the resource control part in the resource reservation request information (Media Description) information is as shown in table 2.
Media description (Media Description) information that transmits on the Gq ' reference point between table 2:TISPAN NGN service control layer and the resource key-course
Figure S2008101345390D00071
Figure S2008101345390D00081
Figure S2008101345390D00091
In order to transmit security parameter, increase the description of security parameter in the information that need between professional control section and resource control part, transmit to resource control part.For example, need to increase media safety in the medium summaries (Media Profile) on the Rs reference point between professional control section of ITU-T NGN and the resource control part in the QoS resource information sub-component information unit (QoSResource Information Components) and describe (Media Security Description), media safety is described and also can be called network safety grade Network Security Class or Network Security Level, service security is described ServiceSecurity Description, differentiation security service Differentiated Security Service, or the like.Initializing resource request on the ITU-T NGN Rs interface (Resource Initiation Request), initializing resource response (Resource Initiation Response) (optional), resource change request (ResourceModification Request), resource active request (Resource Action Request), resource active response (Resource Action Response) (optional), resource notification (Resource Notification), in the resource release request message such as (Resource Release Request), comprise media safety in may make a summary at medium (Media Profile) and describe.
As shown in table 3.
The medium summaries (Media Profile) that transmit on the Rs reference point between table 3:ITU-T NGN service control layer and the resource key-course with security parameter description
Information unit (Information Component) Describe (Description)
Medium summaries (Media Profile) Be used for the set of the information sub-component of media session, can form (the RTP stream and the RTCP stream that for example are used for voip call) by data flow and control flows.Available in case of necessity asterisk wildcard is represented sub-component.A set of information sub-components for a media session, which may be composed of data flows and control flows (e.g., RTP and RTCP flows for a VoIP call) .The sub-components in a media profile can be represented by a wildcard as needed.
The medium numbering The identifier (for example SDP " m=" serial number of line position) that is used for media session.
(Media Number) An identifier for a media session (e.g., ordinal number of the position of the " m=" line in the SDP).
Type of service (Type of Service) The type of service sign (as voice, visual telephone, or video flowing) of media data flow.Indication of service type for the media data flow (e.g., voice, video telephony, or streaming video).
Applied business type (optional) (Application Class of Service) (Optional) The media application type of service that has local significance between resource request terminal (as SCF owner) and policy deciding functional entity (PD-FE) owner (for example, the first order), PD-FE will be the Network type with this applied business conversion in type based on SLA (Service Level Agreement) and network strategy rule.The application service class for the media (e.g., first class) is of local significance between the resource request client (i.e., the owner of SCF) and the owner of PD-FE, and is to be converted by PD-FE to Network Class of Service (e.g., Y.1541 class for performance requirement) based on SLA and network policy rules.
Media priority (optional) (Media Priority) (Optional) The information (for example TDR/ETS) that is used for processed.Information for priority handling (e.g., TDR/ETS).
Media Stream is described (Media Flow Description) The set of single or group media stream sub-component in media session.A set of sub-components of individual or a group of media flows within a media session.
Media safety is described (Media Security Description) The security parameter relevant with Media Stream described.
Media description (Media Description) information the inside on the Gq ' reference point between professional control section of TISPAN NGN and the resource control part in the resource reservation request information increases media safety and describes (Media Security Description), media safety describe also can be called network safety grade Network Security Class or Network Security Level, service security is described ServiceSecurity Description, differentiation security service Differentiated Security Service, or the like, as shown in table 4.
On the TISPAN NGN Gq ' reference point, in the resource reservation request message such as (Resource ReservationRequest), may comprise media safety in media description (Media Description) describes, media safety describe also can be called network safety grade Network Security Class or Network Security Level, service security is described Service Security Description, differentiation security service Differentiated Security Service, or the like.
Media description (Media Description) information that transmits on the Gq ' reference point between table 4:TISPAN NGN service control layer and the resource key-course with security parameter description
Figure S2008101345390D00121
Under the PULL pattern, translator unit is carrying out alternately with resource control part, and during the application resource reservation, also may need provides security parameter to resource control part.For example, in ITU-T NGN, on the Rw reference point between translator unit and the resource control part, in mutual medium summary (Media Profile) information, need comprise media safety describes, media safety describe also can be called network safety grade Network Security Class or Network Security Level, service security is described ServiceSecurity Description, differentiation security service Differentiated Security Service, or the like, as shown in table 5.
On the ITU-T NGN Rw interface, initializing resource request (Resource Initiation Request), initializing resource response (Resource Initiation Response) (optional), resource change request (Resource Modification Request), resource active request (Resource Action Request) (optional), resource active response (Resource Action Response) (optional), resource notification (Resource Notification), resource decision request (Resource Decision Request), resource decision response (Resource Decision Response), in the resource release request message such as (Resource Release Request), comprise media safety in may make a summary at medium (Media Profile) and describe.
Among the table 5:ITU-T NGN, medium summary (Media Profile) information that transmits on the Rw reference point between transport layer and the resource key-course with security parameter description
Information unit (Information Component) Describe (Description)
Medium summaries (Media Profile) Be used for the set of the information sub-component of media session, can form (RTP and the RTCP stream that for example are used for voip call) by data flow and control flows.Available in case of necessity asterisk wildcard is represented sub-component.A set of information sub-components for a media session, which may be composed of data flows and control flows (e.g., RTP and RTCP flows for a VoIP call) .The sub-components in a media profile can be represented by a wildcard as needed.
Medium number (Media Number) The identifier (for example SDP " m=" serial number of line position) that is used for media session.An identifier for a media session (e.g., ordinal number of the position of the " m=" line in the SDP).
Network class (optional) (Network Class of Service) (Optional) The Network class (as diamond, gold medal, silver medal, routine) that the representative of consumer terminal is submitted to, it may comprise QoS performance classes (as class Y.1541).This parameter only has local significance for the single operator that has transfer resource.This parameter can be mapped as by Service Control Unit (SCF) policing rule Network Based and service level agreement (SLA) and use CoS, and can be used for transfer resource control and transmission request authentication.Represents the network service class subscribed by a CPE(e.g.,Premium,Gold,Silver,and Regular).It may include the QoS performance class(e.g., Y.1541 class). This parameter is only of local significance for a single operator owning the transport resource,which can be mapped from application CoS issued by the
Media safety is described (Media Security Descrption), media safety describe also can be called network safety grade Network Security Class or Network Security Level, service security is described Service Security Description, differentiation security service Differentiated Security Service, or the like.Can describe with security parameters such as authentication type, encryption type, encryption key length, integrality type, Integrity Key length, admittance control mode, network address translation (nat) mode, terminal security Agent Type, data encryption type, data encryption key, data origin, recipient's auth type, recipient's authenticate key length, non-repudiation type, non-repudiation key length, anti-rubbish mail type, anti-refuse messages type or reverse path forwarding (uRPF) patterns, as shown in table 6.
Table 6: media safety is described
Media safety is described (Media Security Descrption) The security parameter relevant with media session described.
Authentication type (Authentication Type) Which kind of mode media session adopts carry out authentication, as EAP, and PAP, CHAP etc.
Encryption type (Encryption Type) Which kind of mode media session adopts encrypt, as AES, and DES, RSA etc.
Encryption key length (Encryption Key Length) The length of the employed encryption key of media session
Integrality type (Integrity Type) Which kind of mode media session uses carry out integrity checking, as MD5, and SHA etc.
Integrity Key length (Integrity Key Length) The length of the integrity checking key that media session uses
In TISPAN NGN, during exchange message, also need security parameter is comprised to come on Ia reference point between translator unit and the resource control part and the Re reference point.On the TISPAN NGN Ia reference point, in the message that comprises media description (Media Description) of exchange, may need to comprise media safety and describe; On the TISPAN NGN Re reference point, in the message that comprises media description (Media Description) of exchange, may need to comprise media safety and describe.
These security parameters both may occur simultaneously according to the security strategy rule, also a part may only occur.Media safety is described and can be described with safe class, and each safe class correspondence one group of security parameter.Home networking gateway may need to comprise media safety and describe when carrying out information exchange with resource control part; When carrying out information exchange between the resource control part, may need to comprise media safety and describe; When carrying out information exchange between inner each logical ne of resource control part or the physical NE, may need to comprise media safety and describe.
As shown in Figure 3, be the implementation method flow chart of collection of safety parameter of resource control part among the NGN among the present invention, the implementation method of collection of safety parameter of resource control part is specific as follows among the NGN:
Step 301: request resource is reserved.
Professional control section, user terminal/user network part or translator unit send resource request message to resource control part, reserve to the resource control part request resource by resource request message; In this resource request message,, may need to carry security parameter according to the security strategy rule request.
Step 302: resource control part revision qos parameter.
After resource control part receives security parameter,, qos parameter is revised according to the security strategy rule request.
Step 303: admit control, resource allocation decisions and resource reservation to handle.
Resource control part adopts revised qos parameter to replace original qos parameter, admits control, resource allocation decisions or resource reservation to handle.

Claims (8)

1. the implementation method of collection of safety parameter of resource control part in the next generation network is characterized in that, comprising:
Resource control part receives resource bid and reservation request, and described resource bid and reservation request carry security parameter;
After described resource control part receives described security parameter,, QoS parameter is revised according to the security strategy rule request;
Described resource control part adopts revised QoS parameter to admit control, resource allocation decisions or resource reservation to handle.
2. the implementation method of collection of safety parameter of resource control part in the next generation network as claimed in claim 1, it is characterized in that, professional control section, user terminal, user network part or translator unit send resource bid and reservation request to described resource control part, reserve to described resource control part request resource by resource bid and reservation request; In described resource bid and reservation request, carry security parameter according to the security strategy rule request.
3. the implementation method of collection of safety parameter of resource control part in the next generation network as claimed in claim 1, it is characterized in that, described resource control part adopts described revised QoS parameter to replace original QoS parameter, admits control, resource allocation decisions or resource reservation to handle.
4. the implementation method of collection of safety parameter of resource control part in the next generation network as claimed in claim 2, it is characterized in that, in order to handle the ability of dissimilar described user terminals or user network part transmission service quality, described resource control part is supported Push pattern or Pull pattern.
5. the implementation method of collection of safety parameter of resource control part in the next generation network as claimed in claim 4, it is characterized in that, under described Pull pattern, according to the network strategy rule request, described user network part or translator unit provide described security parameter to described resource control part when applying for resource reservation alternately with described resource control part.
6. the implementation method of collection of safety parameter of resource control part in the next generation network as claimed in claim 4, it is characterized in that, under described Push pattern, described professional control section provides described security parameter to described resource control part carrying out mutual request resource when reserving with resource control part.
7. the implementation method of collection of safety parameter of resource control part in the next generation network as claimed in claim 1, it is characterized in that described security parameter comprises: authentication type, encryption type, encryption key length, integrality type, Integrity Key length, admittance control mode, network address translation mode, terminal security Agent Type, data encryption type, data encryption key, data origin, recipient's auth type, recipient's authenticate key length, non-repudiation type, non-repudiation key length, anti-rubbish mail type or anti-refuse messages type.
8. the implementation method of collection of safety parameter of resource control part in the next generation network as claimed in claim 1, it is characterized in that, home networking gateway is when carrying out information exchange with resource control part, when carrying out information exchange between the perhaps described resource control part, when carrying out information exchange between inner each logical ne of perhaps described resource control part or the physical NE, in describing, media safety comprises described security parameter.
CN2008101345390A 2008-07-25 2008-07-25 Method for implementing collection of safety parameter of resource control part in the next generation network Expired - Fee Related CN101330469B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN2008101345390A CN101330469B (en) 2008-07-25 2008-07-25 Method for implementing collection of safety parameter of resource control part in the next generation network

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN2008101345390A CN101330469B (en) 2008-07-25 2008-07-25 Method for implementing collection of safety parameter of resource control part in the next generation network

Publications (2)

Publication Number Publication Date
CN101330469A CN101330469A (en) 2008-12-24
CN101330469B true CN101330469B (en) 2011-07-13

Family

ID=40206065

Family Applications (1)

Application Number Title Priority Date Filing Date
CN2008101345390A Expired - Fee Related CN101330469B (en) 2008-07-25 2008-07-25 Method for implementing collection of safety parameter of resource control part in the next generation network

Country Status (1)

Country Link
CN (1) CN101330469B (en)

Families Citing this family (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102164068B (en) * 2010-02-20 2016-04-13 中兴通讯股份有限公司 Resource acceptance control method and system
CN102215155B (en) * 2010-04-02 2016-06-08 中兴通讯股份有限公司 The resource acceptance control method of a kind of home network and system
CN106603473B (en) * 2015-10-19 2021-01-01 华为技术有限公司 Network security information processing method and network security information processing system
WO2018000867A1 (en) * 2016-07-01 2018-01-04 华为技术有限公司 Method and apparatus for configuring key and determining security policy
CN107566115B (en) 2016-07-01 2022-01-14 华为技术有限公司 Secret key configuration and security policy determination method and device
CN115150341B (en) * 2022-07-15 2023-09-29 中国联合网络通信集团有限公司 Resource reservation method, device and storage medium

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1859736A (en) * 2005-10-15 2006-11-08 华为技术有限公司 Method and system for providing safety service to mobile terminal
CN1881960A (en) * 2005-06-14 2006-12-20 华为技术有限公司 Edge or packet gateway control system in next generation network and its method
EP1816789A1 (en) * 2005-07-30 2007-08-08 Huawei Technologies Co., Ltd. A method and system for controlling the selection of the transmitting path for the media flow in the next generation network

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1881960A (en) * 2005-06-14 2006-12-20 华为技术有限公司 Edge or packet gateway control system in next generation network and its method
EP1816789A1 (en) * 2005-07-30 2007-08-08 Huawei Technologies Co., Ltd. A method and system for controlling the selection of the transmitting path for the media flow in the next generation network
CN1859736A (en) * 2005-10-15 2006-11-08 华为技术有限公司 Method and system for providing safety service to mobile terminal

Also Published As

Publication number Publication date
CN101330469A (en) 2008-12-24

Similar Documents

Publication Publication Date Title
EP1964421B1 (en) Mapping of packet flows to bearers in a communication system
EP2156655B1 (en) Apparatus and method to support voip calls for mobile subscriber stations
US20080273520A1 (en) NETWORK ARCHITECTURE FOR DYNAMICALLY SETTING END-TO-END QUALITY OF SERVICE (QoS) IN A BROADBAND WIRELESS COMMUNICATION SYSTEM
CN101330469B (en) Method for implementing collection of safety parameter of resource control part in the next generation network
CN101222432B (en) Resource accepting and control method
CN102215155B (en) The resource acceptance control method of a kind of home network and system
US7571238B1 (en) Authorizing communication services
WO2009146593A1 (en) Method and system for resource admission control
CN101166153A (en) A method and system for controlling network service
CN101330757B (en) Method for implementing business safety grade in next generation network
CN101345703A (en) Bearing resource reservation method, system and device
WO2009103192A1 (en) A resource allocation method and a resource release method
EP2472814A1 (en) Method for interaction between resource and admission control systems and resource and admission control system
CN101335998B (en) QoS parameter processing method and system
CN101146322B (en) Inter-domain negotiation method for guaranteeing end-to-end service quality
CN101237448B (en) Selection method for policy decision function entity in resource receiving control system
CN101330462B (en) Method for implementing network safety gradation in the next generation network
CN101198159A (en) Method for processing emergency service call accessed in interoperability network with global microwave
CN102026302A (en) Pull-mode resource admission control method and system at wholesale scene
Hemami et al. Analysis and optimization of resource control schemes in Next Generation Networks
Wang et al. Architecture of IMS over WiMAX PCC and the QoS mechanism
Manner Provision of Quality of Service in IP-based Mobile Access Networks
CN102148809B (en) System and method for service identification and management system to obtain information
Ram et al. Admission control by implicit signaling in support of voice over IP over ADSL
CN101409684A (en) Method for distributing internet high-performance address based on three-layer soft exchange

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
CF01 Termination of patent right due to non-payment of annual fee

Granted publication date: 20110713

Termination date: 20200725

CF01 Termination of patent right due to non-payment of annual fee