CN104349312A - Safe processing method for supporting dual connection - Google Patents

Safe processing method for supporting dual connection Download PDF

Info

Publication number
CN104349312A
CN104349312A CN201310337478.9A CN201310337478A CN104349312A CN 104349312 A CN104349312 A CN 104349312A CN 201310337478 A CN201310337478 A CN 201310337478A CN 104349312 A CN104349312 A CN 104349312A
Authority
CN
China
Prior art keywords
base station
micro
subscriber equipment
macro base
heterogeneous networks
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201310337478.9A
Other languages
Chinese (zh)
Other versions
CN104349312B (en
Inventor
邓云
温萍萍
钱德瑞卡·沃拉尔
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Nokia Shanghai Bell Co Ltd
Alcatel Lucent SAS
Alcatel Optical Networks Israel Ltd
Original Assignee
Alcatel Lucent Shanghai Bell Co Ltd
Alcatel Optical Networks Israel Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Alcatel Lucent Shanghai Bell Co Ltd, Alcatel Optical Networks Israel Ltd filed Critical Alcatel Lucent Shanghai Bell Co Ltd
Priority to CN201310337478.9A priority Critical patent/CN104349312B/en
Priority to PCT/IB2014/001839 priority patent/WO2015015300A2/en
Publication of CN104349312A publication Critical patent/CN104349312A/en
Application granted granted Critical
Publication of CN104349312B publication Critical patent/CN104349312B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/04Key management, e.g. using generic bootstrapping architecture [GBA]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/20Network architectures or network communication protocols for network security for managing network security; network security policies in general
    • H04L63/205Network architectures or network communication protocols for network security for managing network security; network security policies in general involving negotiation or determination of the one or more network security mechanisms to be used, e.g. by negotiation between the client and the server or between peers or by selection according to the capabilities of the entities involved
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/04Key management, e.g. using generic bootstrapping architecture [GBA]
    • H04W12/041Key generation or derivation
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W76/00Connection management
    • H04W76/10Connection setup
    • H04W76/15Setup of multiple wireless link connections
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W74/00Wireless channel access, e.g. scheduled or random access
    • H04W74/08Non-scheduled or contention based access, e.g. random access, ALOHA, CSMA [Carrier Sense Multiple Access]
    • H04W74/0833Non-scheduled or contention based access, e.g. random access, ALOHA, CSMA [Carrier Sense Multiple Access] using a random access procedure

Abstract

The invention relates to a safe processing method for supporting dual connection in a macro eNodeB in a wireless communication system. The wireless communication system comprises the macro eNodeB, a micro eNodeB and user equipment. The method is as follows: the macro eNodeB establishes a first RRC (Radio Resource Control) connection with the user equipment; the micro eNodeB determines to establish a second RRC connection for the user equipment and the micro eNodeB, so as to form dual connection; the macro eNodeB or micro eNodeB selects a security algorithm for the micro eNodeB and the macro eNodeB sends RRC connection configuration comprising the security algorithm to the user equipment so as to indicate the micro eNodeB to establish the second RRC connection with the user equipment according to the RRC connection configuration, so that the user equipment has dual connection. The method is capable of establishing respective RRC connections between the macro eNodeB and the user equipment and between the micro eNodeB and the user equipment.

Description

For supporting the method for the safe handling of dual link
Technical field
The present invention relates to wireless communication field, more specifically, relating in a kind of macro base station in a wireless communication system, micro-base station and subscriber equipment for supporting the method for the safe handling of dual link.
Background technology
In cordless communication network of today, usually have the larger macro base station of coverage and coverage is less comparatively speaking micro-base station.Fig. 1 shows signal Figure 100 of the network architecture of the prior art, as seen from the figure, in such network environment, macro base station 110 provides the network coverage (part in figure shown by point-like background) the most basic, meanwhile, the network insertion that such as micro-base station 121,122,123 and 124 with smaller power (namely having less network coverage (with the region that backslash marks in figure)) provides more at a high speed may.Now, the subscriber equipment be in its common coverage can establish a communications link with macro base station and micro-base station simultaneously.
3GPP has determined possible protocol infrastructure thus has supported the dual link of subscriber equipment and macro base station and micro-base station, wherein, has following two kinds of possibilities in control plane framework:
Possibility 1: only have macro base station can produce final RRC information, and this message by the RRM orthofunction between macro base station and micro-base station after be sent to subscriber equipment.
Possibility 2: macro base station and micro-base station all can produce final wireless heterogeneous networks (Radio Resource Control, RRC) message, and this message is by RRM (the Radio Resource Management between macro base station and micro-base station, RRM) subscriber equipment is sent to after orthofunction, and this message directly can be sent to subscriber equipment (depending on L2 layer architecture) by macro base station or micro-base station, and subscriber equipment will respond this message.
Below list nine kinds of possible user plane frameworks:
1A:S1-U ends in micro-base station+independently PDCP (without carrying division, no Bearersplit);
2A:S1-U ends in macro base station+in macro base station without carrying division+have independently PDCP in micro-base station;
2B:S1-U ends in macro base station+in macro base station without carrying division+MS master-slave PDCP;
2C:S1-U ends in macro base station+in macro base station without carrying division+have independently RLC in micro-base station;
2D:S1-U ends in macro base station+in macro base station without carrying division+MS master-slave RLC;
3A:S1-U ends in macro base station+have in the macro base station carrying division+independently carrying of PDCP for dividing;
3B:S1-U ends in the carrying of macro base station+have in macro base station carrying division+MS master-slave PDCP for dividing;
3C:S1-U ends in macro base station+have in the macro base station carrying division+independently carrying of RLC for dividing;
3D:S1-U ends in the carrying of macro base station+have in macro base station carrying division+MS master-slave RLC for dividing.
If employ above-mentioned possibility 2 at control plane, PDCP entity so must be had to guarantee the safety of RRC information in micro-base station.Alternatively, for following user plane framework, namely 1A, 2A, 2B, 3A and 3B then need there is PDCP entity in micro-base station, for 2C, 2D, 3C and 3D user plane framework then in macro base station, need PDCP entity.
If architecture combined is possibility 1+2C, 2D, 3C or 3D, so a safe key is just enough; And for other combinations, then need two safe keys.Particularly for following architecture combined, i.e. possibility 1+1A, 2A, 2B, 3A or 3B, only that data need different safe keys, and for following architecture combined, i.e. possibility 2+2C, 2D, 3C or 3D, only that Signaling Radio Bearer (Signaling Radio Bearer, SRB) in micro-base station needs different safe keys.
Only process in existing standard and provide one for the situation of the safe key of subscriber equipment by network.But in view of above description, likely need to provide two safe keys to combine for the different network architectures.
Summary of the invention
According to the understanding of the above-mentioned technical problem to background technology and existence, a first aspect of the present invention proposes in a kind of macro base station in a wireless communication system for supporting the method for the safe handling of dual link, wherein, described wireless communication system comprises macro base station, micro-base station and subscriber equipment, and described method comprises:
B. described macro base station and described subscriber equipment are set up the first wireless heterogeneous networks (RRC:Radio Resource Control) and are connected;
C. described macro base station is defined as described subscriber equipment and sets up the second wireless heterogeneous networks with described micro-base station and be connected, thus forms dual link;
D. described macro base station or described micro-base station selected security algorithm for described micro-base station by described macro base station, the wireless heterogeneous networks comprising described security algorithm is connected configuration and send to described subscriber equipment, be connected configuration to indicate described micro-base station and described subscriber equipment according to described wireless heterogeneous networks to set up described second wireless heterogeneous networks and connect, thus make described subscriber equipment have dual link.
Can by means of different security algorithms at macro base station and subscriber equipment and set up respective wireless heterogeneous networks between micro-base station and subscriber equipment and connect according to method of the present invention.Become the first wireless heterogeneous networks connection in this article to be respectively connected with the second wireless heterogeneous networks.
In foundation one embodiment of the present of invention, described method is further comprising the steps of before described step B:
A. described macro base station receives the first safe key being used for described first wireless heterogeneous networks and connecting from core net node.
Make described macro base station from core net node, the information about the safe key used in access network node such as, in MME (Mobility Management Entity: Mobility Management Entity), can be received by this way.
According in one embodiment of the present of invention, also comprise in described step D and generate according to described first safe key the second safe key connected for described second wireless heterogeneous networks.
Because under the application scenes in background technology of the present invention, some scene needs two keys, at this moment the first safe key just by connecting for the first wireless heterogeneous networks derives the second safe key, thus connect for the second wireless heterogeneous networks, to improve the fail safe that described second wireless heterogeneous networks connects.
In foundation one embodiment of the present of invention, down-link frequencies also according to jurisdiction district, described micro-base station in described step D generates with Physical Cell Identifier described second safe key being used for described second wireless heterogeneous networks and being connected, and described jurisdiction district is the Serving cell that the second wireless heterogeneous networks connection set up by described subscriber equipment.It will be understood by those of skill in the art that at this, also can generate described second safe key by other known modes according to described first safe key.
In foundation one embodiment of the present of invention, in described step D:
If select the security algorithm for described micro-base station by described macro base station, then described macro base station first obtains the configured list of cryptographic algorithm described micro-base station and protection algorithm integrallty and the selected described security algorithm being used for described micro-base station is sent to described micro-base station by described macro base station from described micro-base station; Or
If select the security algorithm for described micro-base station by described micro-base station, then the security capabilities of described subscriber equipment is first sent to described micro-base station and the selected described security algorithm being used for described micro-base station is sent to described macro base station by described micro-base station by described macro base station.
More than for select two of the security algorithm be connected for the second wireless heterogeneous networks kinds of different implementations by described macro base station and described micro-base station respectively, wherein, according to the difference selecting main body, previously the required information obtained also was different.
In foundation one embodiment of the present of invention, after described step D, also comprise following steps:
E. described macro base station receives the customer equipment context amendment request for upgrading described first safe key and described second safe key from described core net node and upgrades described first safe key and described second safe key according to described customer equipment context amendment request.
In order to requirements such as satisfied raising communications securities, usually need to upgrade the safe key used, can notify that access network node carries out the renewal process of safe key by core net node very simply in the above described manner.
It will be understood by those of skill in the art that the mode of the renewal realizing safe key is diversified, the different methods realizing security key update will be provided in various embodiments below.
In foundation one embodiment of the present of invention, in described step e, described macro base station sends the first wireless heterogeneous networks to described subscriber equipment what receive described customer equipment context amendment request and connects reprovision instruction afterwards, starts intra-cell bring to upgrade described first safe key and receive the first wireless heterogeneous networks from described subscriber equipment after renewal completes and connect reprovision and complete instruction and described macro base station sends customer equipment context amendment to described core net node responds to indicate described subscriber equipment; Described macro base station notifies that described micro-base station upgrades described second safe key after receiving described customer equipment context amendment request simultaneously, indicates described subscriber equipment startup intra-cell to bring the second wireless heterogeneous networks described in reprovision connect to make described micro-base station.
In foundation one embodiment of the present of invention; described customer equipment context amendment request comprises the security capabilities of described subscriber equipment; described security capabilities comprises supported encryption and protection algorithm integrallty; described macro base station or described micro-base station selected security algorithm for described micro-base station, then send to described subscriber equipment by described micro-base station.
In foundation one embodiment of the present of invention, in described step e, described macro base station sends the first wireless heterogeneous networks connection reprovision instruction to described subscriber equipment receiving the rear of described customer equipment context amendment request, start intra-cell to indicate described subscriber equipment and bring described first safe key of renewal, described subscriber equipment thinks that described micro-base station is that the community deexcitation that it is served stops and described micro-base-station transmission data, and after renewal completes, receive the first wireless heterogeneous networks from described subscriber equipment connect reprovision and complete instruction and described macro base station sends customer equipment context amendment response to described core net node, simultaneously described macro base station notifies that after receiving described customer equipment context amendment request described micro-base station upgrades described second safe key and receives the first wireless heterogeneous networks at described macro base station and connects reprovision and complete the rear of instruction and send Medium Access Layer control signal MAC CE to activate the community that described micro-base station is the service of described subscriber equipment to described subscriber equipment, and described subscriber equipment performs Stochastic accessing accesses described micro-base station.
In foundation one embodiment of the present of invention, when the security algorithm of described micro-base station changes, described micro-base station sends safe mode command to described subscriber equipment and indicates described subscriber equipment to carry out described second wireless heterogeneous networks after corresponding safe mode completes instruction to connect reprovision receiving from described subscriber equipment.
In foundation one embodiment of the present of invention, in described step e, described macro base station sends the first wireless heterogeneous networks connection reprovision instruction to described subscriber equipment receiving the rear of described customer equipment context amendment request, start intra-cell to indicate described subscriber equipment and bring described first safe key of renewal, described subscriber equipment thinks that described micro-base station is that the community deexcitation that it is served stops and described micro-base-station transmission data, and after renewal completes, receive the first wireless heterogeneous networks from described subscriber equipment connect reprovision and complete instruction and described macro base station sends customer equipment context amendment response to described core net node, simultaneously described macro base station notifies that after receiving described customer equipment context amendment request described micro-base station upgrades described second safe key and the first information received from described micro-base station described micro-base station and receive the first wireless heterogeneous networks at described macro base station and connect and indicate described subscriber equipment to carry out described second wireless heterogeneous networks after reprovision completes instruction to connect reprovision and send MAC CE to activate the community that described micro-base station is the service of described subscriber equipment to described subscriber equipment, and described subscriber equipment performs Stochastic accessing accesses described micro-base station.
According in one embodiment of the present of invention, the described first information comprises the security algorithm of resource allocation information in described micro-base station and needs renewal.
A second aspect of the present invention proposes for supporting the method for the safe handling of dual link in a kind of micro-base station in a wireless communication system, and wherein, described wireless communication system comprises macro base station, micro-base station and subscriber equipment, and described method comprises:
O. by described macro base station or described micro-base station selected security algorithm for described micro-base station and by described macro base station by comprise described security algorithm wireless heterogeneous networks connect configuration send to described subscriber equipment;
P. described micro-base station and described subscriber equipment are connected configuration according to described wireless heterogeneous networks and set up the second wireless heterogeneous networks and connect, and have dual link to make described subscriber equipment.
In foundation one embodiment of the present of invention, described macro base station generates the second safe key being used for described second wireless heterogeneous networks and connecting from the first safe key that core net node receives according to described macro base station.
A third aspect of the present invention proposes for supporting the method for the safe handling of dual link in a kind of subscriber equipment in a wireless communication system, and wherein, described wireless communication system comprises macro base station, micro-base station and subscriber equipment, and described method comprises:
X. described subscriber equipment and described micro-base station are connected configuration according to the wireless heterogeneous networks of the security algorithm for described micro-base station comprised selected by described macro base station or described micro-base station and set up the second wireless heterogeneous networks and connect, and have dual link to make described subscriber equipment.
Accompanying drawing explanation
Read the following detailed description to non-limiting example by referring to accompanying drawing, other features, objects and advantages of the present invention will become more obvious.
Fig. 1 shows signal Figure 100 of the network architecture of the method for criteria in application safe handling of the present invention; And
Fig. 2 shows flow process Figure 200 of an embodiment according to method of the present invention;
Fig. 3 shows the flow chart 300 according to another embodiment of method of the present invention;
Fig. 4 shows the flow chart 400 according to another embodiment of method of the present invention; And
Fig. 5 shows the flow chart 500 according to another embodiment of method of the present invention.
In the drawings, run through different diagrams, same or similar Reference numeral represents same or analogous device (module) or step.
Embodiment
In the specific descriptions of following preferred embodiment, with reference to the accompanying drawing formed appended by a part of the present invention.Appended accompanying drawing shows by way of example and can realize specific embodiment of the present invention.The embodiment of example is not intended to limit according to all embodiments of the present invention.Be appreciated that under the prerequisite not departing from scope of the present invention, other embodiments can be utilized, also can carry out amendment that is structural or logicality.Therefore, following specific descriptions are also nonrestrictive, and scope of the present invention limited by appended claim.
Fig. 1 shows signal Figure 100 of the network architecture of the method for criteria in application safe handling of the present invention, and this figure have ever made description in background technology part, does not repeat them here.
Fig. 2 shows flow process Figure 200 of the first embodiment according to method of the present invention.As can be seen from the figure, comprise according to the method for the safe handling supporting dual link in macro base station in a wireless communication system of the present invention:
In a step 220, described macro base station and described subscriber equipment are set up the first wireless heterogeneous networks and are connected;
Next, in step 230, described macro base station is defined as described subscriber equipment and sets up the second wireless heterogeneous networks with described micro-base station and be connected, thus forms dual link;
Subsequently, in step 240, the wireless heterogeneous networks comprising described security algorithm is also connected configuration by described macro base station and sends to described subscriber equipment by described macro base station or described micro-base station selected security algorithm for described micro-base station in step 250, be connected configuration according to described wireless heterogeneous networks in step 260 to indicate described micro-base station and described subscriber equipment to set up described second wireless heterogeneous networks and connect, thus make described subscriber equipment have dual link.
Can by means of different security algorithms at macro base station and subscriber equipment and set up respective wireless heterogeneous networks between micro-base station and subscriber equipment and connect according to method of the present invention.Become the first wireless heterogeneous networks connection in this article to be respectively connected with the second wireless heterogeneous networks.
In foundation one embodiment of the present of invention, described method is further comprising the steps of before described step 220:
Described macro base station receives the first safe key being used for described first wireless heterogeneous networks and connecting from core net node.
Make described macro base station from core net node, the information about the safe key used in access network node such as, in MME (Mobility Management Entity: Mobility Management Entity), can be received by this way.
According in one embodiment of the present of invention, also comprise in described step 240 and generate according to described first safe key KeNB the second safe key KeNB* connected for described second wireless heterogeneous networks.
Because under the application scenes in background technology of the present invention, some scene needs two keys, at this moment the first safe key just by connecting for the first wireless heterogeneous networks derives the second safe key, thus connect for the second wireless heterogeneous networks, to improve the fail safe that described second wireless heterogeneous networks connects.This is especially possibility 2 for framework, or when being possibility 1+1A, 2A, 2B, 3A or 3B.
In foundation one embodiment of the present of invention, down-link frequencies also according to jurisdiction district, described micro-base station in described step 240 generates with Physical Cell Identifier described second safe key being used for described second wireless heterogeneous networks and being connected, and described jurisdiction district is the Serving cell that the second wireless heterogeneous networks connection set up by described subscriber equipment.It will be understood by those of skill in the art that at this, also can generate described second safe key by other known modes according to described first safe key.
In foundation one embodiment of the present of invention, in described step 240:
If select the security algorithm for described micro-base station by described macro base station, then described macro base station first obtains the configured list (i.e. the cryptographic algorithm of described micro-base station support and protection algorithm integrallty) of cryptographic algorithm described micro-base station and protection algorithm integrallty and the selected described security algorithm being used for described micro-base station is sent to described micro-base station by described macro base station from described micro-base station; Or
If select the security algorithm for described micro-base station by described micro-base station, then the security capabilities (UE Security Capabilities) of described subscriber equipment is first sent to described micro-base station and the selected described security algorithm being used for described micro-base station is sent to described macro base station by described micro-base station by described macro base station.
More than for select two of the security algorithm be connected for the second wireless heterogeneous networks kinds of different implementations by described macro base station and described micro-base station respectively, wherein, according to the difference selecting main body, previously the required information obtained also was different.But total principle is all the security configuration list supported according to security capabilities and micro-base station of subscriber equipment by macro base station or micro-base station to be determined.
In foundation one embodiment of the present of invention, after described step 260, also comprise following steps:
Described macro base station receives the customer equipment context amendment request for upgrading described first safe key and described second safe key from described core net node and upgrades described first safe key and described second safe key according to described customer equipment context amendment request.
In order to requirements such as satisfied raising communications securities, usually need to upgrade the safe key used, can notify that access network node carries out the renewal process of safe key by core net node very simply in the above described manner.
It will be understood by those of skill in the art that the mode of the renewal realizing safe key is diversified, below by different embodiments, in namely different flow charts, provide the different methods realizing security key update.The renewal how carrying out safe key below emphasis is described, but not the foundation of dual link, namely how expound revises request to upgrade safe key by the customer equipment context received from core net node.
Illustrated in fig. 3 according in one embodiment of the present of invention 300, after dual link is set up (step 310), next what receive from core net node that described customer equipment context revises request (step 320) by described macro base station sent the first wireless heterogeneous networks to described subscriber equipment and connect reprovision instruction (step 330) afterwards, start switching within cell (intra-cell handover) to indicate described subscriber equipment to upgrade described first safe key and receive the first wireless heterogeneous networks from described subscriber equipment after renewal completes and connect reprovision and complete instruction (step 340) and described macro base station sends customer equipment context amendment response (step 350) to described core net node, described macro base station notifies that described micro-base station upgrades described second safe key (step 360) after receiving described customer equipment context amendment request simultaneously, indicates described subscriber equipment startup intra-cell to bring the second wireless heterogeneous networks described in reprovision connect (step 370,380) to make described micro-base station.At this, alternatively, after the second security key update completes, described micro-base station can to described macro base station report renewal second safe key success (step 390).
In foundation one embodiment of the present of invention; described customer equipment context amendment request comprises the security capabilities of described subscriber equipment; described security capabilities comprises supported encryption and protection algorithm integrallty; described macro base station or described micro-base station selected security algorithm for described micro-base station, then send to described subscriber equipment by described micro-base station.
Fig. 4 shows the flow chart 400 of the second embodiment according to method of the present invention, in this embodiment, after dual link is set up (step 410), described macro base station (step 420) after receiving described customer equipment context amendment request sends the first wireless heterogeneous networks to described subscriber equipment and connects reprovision instruction (step 430), start intra-cell to indicate described subscriber equipment and bring described first safe key of renewal, described subscriber equipment thinks that described micro-base station is that the community deexcitation that it is served stops and described micro-base-station transmission data (step 440), and after renewal completes, receive the first wireless heterogeneous networks from described subscriber equipment connect reprovision and complete instruction (step 450) and described macro base station sends customer equipment context amendment response (step 460) to described core net node, simultaneously described macro base station notifies that after receiving described customer equipment context amendment request described micro-base station upgrades described second safe key (step 470) and receives the first wireless heterogeneous networks at described macro base station and connects reprovision and complete the rear of instruction and send Medium Access Layer control signal MAC CE (step 480) to activate the community that described micro-base station is the service of described subscriber equipment to described subscriber equipment, and described subscriber equipment performs Stochastic accessing accesses described micro-base station (step 490).
In foundation one embodiment of the present of invention, when the security algorithm of described micro-base station changes, described micro-base station to described subscriber equipment send safe mode command (step 492) and receive from described subscriber equipment corresponding safe mode complete instruction after (step 494) indicate described subscriber equipment to carry out described second wireless heterogeneous networks to connect reprovision (step 496 and step 498).
In foundation one embodiment of the present of invention, after dual link is set up (step 510), described macro base station (step 520) after receiving described customer equipment context amendment request sends the first wireless heterogeneous networks to described subscriber equipment and connects reprovision instruction (step 530), start intra-cell to indicate described subscriber equipment and bring described first safe key of renewal, described subscriber equipment thinks that described micro-base station is that the community deexcitation that it is served stops and described micro-base-station transmission data (step 540), and after renewal completes, receive the first wireless heterogeneous networks from described subscriber equipment connect reprovision and complete instruction (step 550) and described macro base station sends customer equipment context amendment response (step 560) to described core net node, simultaneously described macro base station notifies that after receiving described customer equipment context amendment request described micro-base station upgrades described second safe key (step 570) and the first information (step 580) received from described micro-base station described micro-base station and receive the first wireless heterogeneous networks at described macro base station and connect and indicate described subscriber equipment to carry out described second wireless heterogeneous networks after reprovision completes instruction to connect reprovision (step 582) and send MAC CE to activate the community (step 584) that described micro-base station is the service of described subscriber equipment to described subscriber equipment, and described subscriber equipment performs Stochastic accessing accesses described micro-base station (step 590).Usual subscriber equipment is different from the up lead of administrative Serving cell, micro-base station in the administrative Serving cell of macro base station, and therefore subscriber equipment is when administrative Serving cell, the micro-base station of access, needs to initiate Stochastic accessing; If subscriber equipment is identical with the up lead of administrative Serving cell, micro-base station in the administrative Serving cell of macro base station, subscriber equipment, when administrative Serving cell, the micro-base station of access, does not need to initiate Stochastic accessing.
According in one embodiment of the present of invention, the described first information comprises the security algorithm of resource allocation information in described micro-base station and needs renewal.
A second aspect of the present invention proposes for supporting the method for the safe handling of dual link in a kind of micro-base station in a wireless communication system, and wherein, described wireless communication system comprises macro base station, micro-base station and subscriber equipment, and described method comprises:
O. by described macro base station or described micro-base station selected security algorithm for described micro-base station and by described macro base station by comprise described security algorithm wireless heterogeneous networks connect configuration send to described subscriber equipment;
P. described micro-base station and described subscriber equipment are connected configuration according to described wireless heterogeneous networks and set up the second wireless heterogeneous networks and connect, and have dual link to make described subscriber equipment.
In foundation one embodiment of the present of invention, described macro base station generates the second safe key being used for described second wireless heterogeneous networks and connecting from the first safe key that core net node receives according to described macro base station.
A third aspect of the present invention proposes for supporting the method for the safe handling of dual link in a kind of subscriber equipment in a wireless communication system, and wherein, described wireless communication system comprises macro base station, micro-base station and subscriber equipment, and described method comprises:
X. described subscriber equipment and described micro-base station are connected configuration according to the wireless heterogeneous networks of the security algorithm for described micro-base station comprised selected by described macro base station or described micro-base station and set up the second wireless heterogeneous networks and connect, and have dual link to make described subscriber equipment.
To those skilled in the art, obviously the invention is not restricted to the details of above-mentioned one exemplary embodiment, and when not deviating from spirit of the present invention or essential characteristic, the present invention can be realized in other specific forms.Therefore, in any case, all should embodiment be regarded as exemplary, and be nonrestrictive.In addition, significantly, " comprising " one word do not get rid of other elements and step, and wording " one " does not get rid of plural number.Multiple elements of stating in device claim also can be realized by an element.First, second word such as grade is used for representing title, and does not represent any specific order.

Claims (15)

1. in macro base station in a wireless communication system for supporting a method for the safe handling of dual link, wherein, described wireless communication system comprises macro base station, micro-base station and subscriber equipment, and described method comprises:
B. described macro base station and described subscriber equipment are set up the first wireless heterogeneous networks and are connected;
C. described macro base station is defined as described subscriber equipment and sets up the second wireless heterogeneous networks with described micro-base station and be connected, thus forms dual link;
D. described macro base station or described micro-base station selected security algorithm for described micro-base station by described macro base station, the wireless heterogeneous networks comprising described security algorithm is connected configuration and send to described subscriber equipment, be connected configuration to indicate described micro-base station and described subscriber equipment according to described wireless heterogeneous networks to set up described second wireless heterogeneous networks and connect, thus make described subscriber equipment have dual link.
2. method according to claim 1, wherein, described method is further comprising the steps of before described step B:
A. described macro base station receives the first safe key being used for described first wireless heterogeneous networks and connecting from core net node.
3. method according to claim 2, wherein, also comprises and generates according to described first safe key the second safe key connected for described second wireless heterogeneous networks in described step D.
4. method according to claim 3, wherein, down-link frequencies also according to jurisdiction district, described micro-base station in described step D generates with Physical Cell Identifier described second safe key being used for described second wireless heterogeneous networks and being connected, and described jurisdiction district is the Serving cell that the second wireless heterogeneous networks connection set up by described subscriber equipment.
5. method according to claim 1, wherein, in described step D,
If select the security algorithm for described micro-base station by described macro base station, then described macro base station first obtains the configured list of cryptographic algorithm described micro-base station and protection algorithm integrallty and the selected described security algorithm being used for described micro-base station is sent to described micro-base station by described macro base station from described micro-base station; Or
If select the security algorithm for described micro-base station by described micro-base station, then the security capabilities of described subscriber equipment is first sent to described micro-base station and the selected described security algorithm being used for described micro-base station is sent to described macro base station by described micro-base station by described macro base station.
6. the method according to claim 3 or 4, wherein, also comprises following steps after described step D:
E. described macro base station receives the customer equipment context amendment request for upgrading described first safe key and described second safe key from described core net node and upgrades described first safe key and described second safe key according to described customer equipment context amendment request.
7. method according to claim 6, wherein, in described step e, described macro base station sends the first wireless heterogeneous networks to described subscriber equipment what receive described customer equipment context amendment request and connects reprovision instruction afterwards, starts intra-cell bring to upgrade described first safe key and receive the first wireless heterogeneous networks from described subscriber equipment after renewal completes and connect reprovision and complete instruction and described macro base station sends customer equipment context amendment to described core net node responds to indicate described subscriber equipment; Described macro base station notifies that described micro-base station upgrades described second safe key after receiving described customer equipment context amendment request simultaneously, indicates described subscriber equipment startup intra-cell to bring the second wireless heterogeneous networks described in reprovision connect to make described micro-base station.
8. method according to claim 7; wherein; described customer equipment context amendment request comprises the security capabilities of described subscriber equipment; described security capabilities comprises supported encryption and protection algorithm integrallty; described macro base station or described micro-base station selected security algorithm for described micro-base station, then send to described subscriber equipment by described micro-base station.
9. method according to claim 6, wherein, in described step e, described macro base station sends the first wireless heterogeneous networks connection reprovision instruction to described subscriber equipment receiving the rear of described customer equipment context amendment request, start intra-cell to indicate described subscriber equipment and bring described first safe key of renewal, described subscriber equipment thinks that described micro-base station is that the community deexcitation that it is served stops and described micro-base-station transmission data, and after renewal completes, receive the first wireless heterogeneous networks from described subscriber equipment connect reprovision and complete instruction and described macro base station sends customer equipment context amendment response to described core net node, simultaneously described macro base station notifies that after receiving described customer equipment context amendment request described micro-base station upgrades described second safe key and receives the first wireless heterogeneous networks at described macro base station and connects reprovision and complete the rear of instruction and send Medium Access Layer control signal MAC CE to activate the community that described micro-base station is the service of described subscriber equipment to described subscriber equipment, and described subscriber equipment performs Stochastic accessing accesses described micro-base station.
10. method according to claim 9, wherein, when the security algorithm of described micro-base station changes, described micro-base station sends safe mode command to described subscriber equipment and indicates described subscriber equipment to carry out described second wireless heterogeneous networks after corresponding safe mode completes instruction to connect reprovision receiving from described subscriber equipment.
11. methods according to claim 6, wherein, in described step e, described macro base station sends the first wireless heterogeneous networks connection reprovision instruction to described subscriber equipment receiving the rear of described customer equipment context amendment request, start intra-cell to indicate described subscriber equipment and bring described first safe key of renewal, described subscriber equipment thinks that described micro-base station is that the community deexcitation that it is served stops and described micro-base-station transmission data, and after renewal completes, receive the first wireless heterogeneous networks from described subscriber equipment connect reprovision and complete instruction and described macro base station sends customer equipment context amendment response to described core net node, simultaneously described macro base station notifies that after receiving described customer equipment context amendment request described micro-base station upgrades described second safe key and the first information received from described micro-base station described micro-base station and receive the first wireless heterogeneous networks at described macro base station and connect and indicate described subscriber equipment to carry out described second wireless heterogeneous networks after reprovision completes instruction to connect reprovision and send MAC CE to activate the community that described micro-base station is the service of described subscriber equipment to described subscriber equipment, and described subscriber equipment performs Stochastic accessing accesses described micro-base station.
12. methods according to claim 11, wherein, the described first information comprises the security algorithm that resource allocation information in described micro-base station and needs upgrade.
For supporting the method for the safe handling of dual link in 13. 1 kinds of micro-base stations in a wireless communication system, wherein, described wireless communication system comprises macro base station, micro-base station and subscriber equipment, and described method comprises:
O. by described macro base station or described micro-base station selected security algorithm for described micro-base station and by described macro base station by comprise described security algorithm wireless heterogeneous networks connect configuration send to described subscriber equipment;
P. described micro-base station and described subscriber equipment are connected configuration according to described wireless heterogeneous networks and set up the second wireless heterogeneous networks and connect, and have dual link to make described subscriber equipment.
14. methods according to claim 13, wherein, described macro base station generates the second safe key being used for described second wireless heterogeneous networks and connecting from the first safe key that core net node receives according to described macro base station.
For supporting the method for the safe handling of dual link in 15. 1 kinds of subscriber equipmenies in a wireless communication system, wherein, described wireless communication system comprises macro base station, micro-base station and subscriber equipment, and described method comprises:
X. described subscriber equipment and described micro-base station are connected configuration according to the wireless heterogeneous networks of the security algorithm for described micro-base station comprised selected by described macro base station or described micro-base station and set up the second wireless heterogeneous networks and connect, and have dual link to make described subscriber equipment.
CN201310337478.9A 2013-08-02 2013-08-02 Method for supporting the safe handling of dual link Active CN104349312B (en)

Priority Applications (2)

Application Number Priority Date Filing Date Title
CN201310337478.9A CN104349312B (en) 2013-08-02 2013-08-02 Method for supporting the safe handling of dual link
PCT/IB2014/001839 WO2015015300A2 (en) 2013-08-02 2014-08-01 Method of supporting security handling for dual connectivity

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201310337478.9A CN104349312B (en) 2013-08-02 2013-08-02 Method for supporting the safe handling of dual link

Publications (2)

Publication Number Publication Date
CN104349312A true CN104349312A (en) 2015-02-11
CN104349312B CN104349312B (en) 2019-01-29

Family

ID=52146540

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201310337478.9A Active CN104349312B (en) 2013-08-02 2013-08-02 Method for supporting the safe handling of dual link

Country Status (2)

Country Link
CN (1) CN104349312B (en)
WO (1) WO2015015300A2 (en)

Cited By (12)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2016177107A1 (en) * 2015-07-20 2016-11-10 中兴通讯股份有限公司 Method, user equipment, and node for implementing access stratum security
US20170026347A1 (en) 2015-07-24 2017-01-26 Futurewei Technologies, Inc. Ultra Dense Network Security Architecture and Method
CN107113821A (en) * 2015-09-24 2017-08-29 华为技术有限公司 The method and apparatus of transmitting uplink data
CN107306455A (en) * 2016-04-20 2017-10-31 中兴通讯股份有限公司 A kind of method, base station, UE and the MME of dual link operation
CN109168161A (en) * 2018-08-27 2019-01-08 创新维度科技(北京)有限公司 Secure mode active method, apparatus, system and computer storage medium
CN109246692A (en) * 2017-06-16 2019-01-18 华为技术有限公司 Connection management method, terminal and wireless access network equipment
CN109429283A (en) * 2017-08-31 2019-03-05 华为技术有限公司 Communication means, device and system
WO2019090727A1 (en) * 2017-11-10 2019-05-16 Oppo广东移动通信有限公司 Signalling control and transmission method and related product
CN109792600A (en) * 2016-08-03 2019-05-21 诺基亚通信公司 The service of local operator provides
WO2019113969A1 (en) * 2017-12-15 2019-06-20 Oppo广东移动通信有限公司 Method for paging user equipment, first network device, and user equipment
CN111108774A (en) * 2018-08-28 2020-05-05 苹果公司 Mobility enhancement for cellular communications
CN112218344A (en) * 2019-07-12 2021-01-12 华为技术有限公司 Communication method and device

Families Citing this family (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
KR102107327B1 (en) * 2016-01-08 2020-05-06 닛본 덴끼 가부시끼가이샤 Radio station system, radio terminal, and method therefor
CN109792603B (en) 2016-09-28 2022-01-14 索尼公司 Telecommunication device and method for handling split radio bearers
CN108633018B (en) 2017-03-23 2024-02-02 华为技术有限公司 Configuration method, device and system
CN110463240B (en) * 2017-03-30 2023-08-04 康维达无线有限责任公司 Telecommunication apparatus and method
CN108810899A (en) * 2017-04-28 2018-11-13 维沃移动通信有限公司 Integrality detection method, terminal and network side equipment
WO2019219668A1 (en) * 2018-05-14 2019-11-21 Telefonaktiebolaget Lm Ericsson (Publ) To increase security of dual connectvity
WO2021118322A1 (en) * 2019-12-13 2021-06-17 Samsung Electronics Co., Ltd. Design and architecture for multi radio multi connectivity network system

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101502019A (en) * 2006-07-14 2009-08-05 高通股份有限公司 Methods and apparatus for supporting multiple connections
US20100284304A1 (en) * 2009-05-06 2010-11-11 Qualcomm Incorporated Method and apparatus to establish trust and secure connection via a mutually trusted intermediary
CN102740289A (en) * 2012-06-15 2012-10-17 电信科学技术研究院 Method, device and system for key updating
CN103188663A (en) * 2011-12-27 2013-07-03 华为技术有限公司 Secure communication method for carrier aggregation between base stations and equipment

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101502019A (en) * 2006-07-14 2009-08-05 高通股份有限公司 Methods and apparatus for supporting multiple connections
US20100284304A1 (en) * 2009-05-06 2010-11-11 Qualcomm Incorporated Method and apparatus to establish trust and secure connection via a mutually trusted intermediary
CN103188663A (en) * 2011-12-27 2013-07-03 华为技术有限公司 Secure communication method for carrier aggregation between base stations and equipment
CN102740289A (en) * 2012-06-15 2012-10-17 电信科学技术研究院 Method, device and system for key updating

Cited By (20)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2016177107A1 (en) * 2015-07-20 2016-11-10 中兴通讯股份有限公司 Method, user equipment, and node for implementing access stratum security
US20170026347A1 (en) 2015-07-24 2017-01-26 Futurewei Technologies, Inc. Ultra Dense Network Security Architecture and Method
WO2017016450A1 (en) * 2015-07-24 2017-02-02 Huawei Technologies Co., Ltd. Ultra dense network security architecture and method
US10412056B2 (en) 2015-07-24 2019-09-10 Futurewei Technologies, Inc. Ultra dense network security architecture method
CN107113821A (en) * 2015-09-24 2017-08-29 华为技术有限公司 The method and apparatus of transmitting uplink data
CN107306455A (en) * 2016-04-20 2017-10-31 中兴通讯股份有限公司 A kind of method, base station, UE and the MME of dual link operation
CN109792600A (en) * 2016-08-03 2019-05-21 诺基亚通信公司 The service of local operator provides
CN109246692A (en) * 2017-06-16 2019-01-18 华为技术有限公司 Connection management method, terminal and wireless access network equipment
CN109429283B (en) * 2017-08-31 2021-07-20 华为技术有限公司 Communication method, device and system
WO2019042224A1 (en) * 2017-08-31 2019-03-07 华为技术有限公司 Communication method, device and system
CN109429283A (en) * 2017-08-31 2019-03-05 华为技术有限公司 Communication means, device and system
US11259219B2 (en) 2017-08-31 2022-02-22 Huawei Technologies Co., Ltd. Communication method, apparatus, and system
WO2019090727A1 (en) * 2017-11-10 2019-05-16 Oppo广东移动通信有限公司 Signalling control and transmission method and related product
WO2019113969A1 (en) * 2017-12-15 2019-06-20 Oppo广东移动通信有限公司 Method for paging user equipment, first network device, and user equipment
US11528682B2 (en) 2017-12-15 2022-12-13 Guangdong Oppo Mobile Telecommunications Corp., Ltd. Method for paging user equipment, first network device, and user equipment
CN109168161A (en) * 2018-08-27 2019-01-08 创新维度科技(北京)有限公司 Secure mode active method, apparatus, system and computer storage medium
CN111108774A (en) * 2018-08-28 2020-05-05 苹果公司 Mobility enhancement for cellular communications
US11218924B2 (en) 2018-08-28 2022-01-04 Apple Inc. Mobility enhancements for cellular communications
CN111108774B (en) * 2018-08-28 2023-02-21 苹果公司 Mobility enhancement for cellular communications
CN112218344A (en) * 2019-07-12 2021-01-12 华为技术有限公司 Communication method and device

Also Published As

Publication number Publication date
CN104349312B (en) 2019-01-29
WO2015015300A3 (en) 2015-07-02
WO2015015300A2 (en) 2015-02-05

Similar Documents

Publication Publication Date Title
CN104349312A (en) Safe processing method for supporting dual connection
US10187370B2 (en) Fast-accessing method and apparatus
JP7272395B2 (en) Radio station system, radio terminal, and method thereof
CN110447302B (en) Method and apparatus for managing sessions to change user plane functions in a wireless communication system
KR102345654B1 (en) Dual connection establishment method and device
CN104581843B (en) For the processing delivering method and its communication device of the network-side of wireless communication system
JP2020061792A (en) Wireless terminal, second core network node, and method therefor
EP3497972B1 (en) Telecommunications system, terminal device, infrastructure equipment and methods
CN104272777A (en) Method and device for preserving mobility information in terminal state transition and effectively re-accessing in heterogeneous cell network in mobile communication system
CN104349389A (en) Wireless carrier establishing method and wireless carrier establishing device
TWI693856B (en) Device and method of handling an evolved packet system bearer context
CN105307220A (en) D2D service switch implementation method and device
CN104936174A (en) Method of updating secret key under condition of double connections based on user plane 1A configuration
CN103716847A (en) Method for establishing X2 through gateway
CN103888959A (en) Method and system for communication of small cells and devices thereof
CN104918242A (en) Slave base station secret key updating method, slave base station, terminal and communication system
CN102655637A (en) Mobile communication system and networking method
CN110651523B (en) User device
KR20140113234A (en) Method for wireless link setup of mobile station utilizing neighbor access point
JP2018129812A (en) Synchronization of radio configuration parameters
CN105101154A (en) D2D (device-to-device) authorization information configuration method and device, and network element equipment
EP3844998B1 (en) User equipment context transfer over radio access network paging
CN108464056A (en) Configuration method, device, base station and the equipment of the core network of user equipment information
WO2023070587A1 (en) Network access switching method and apparatus, and device and storage medium
CN104902539A (en) Method and system for jointly processing control plane signaling

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
CB02 Change of applicant information
CB02 Change of applicant information

Address after: Pudong New Area, Pudong Jinqiao Ning Bridge Road, No. 388, No.

Applicant after: Shanghai NOKIA Baer Limited by Share Ltd

Applicant after: Alcatel Optical Networks Israe

Address before: 201206 Shanghai, Pudong Jinqiao Ning Bridge Road, No. 388, No.

Applicant before: Shanghai Alcatel-Lucent Co., Ltd.

Applicant before: Alcatel Optical Networks Israe

GR01 Patent grant
GR01 Patent grant