WO2007056925A1 - Procede et materiel de controle de session dans un reseau ims - Google Patents

Procede et materiel de controle de session dans un reseau ims Download PDF

Info

Publication number
WO2007056925A1
WO2007056925A1 PCT/CN2006/002799 CN2006002799W WO2007056925A1 WO 2007056925 A1 WO2007056925 A1 WO 2007056925A1 CN 2006002799 W CN2006002799 W CN 2006002799W WO 2007056925 A1 WO2007056925 A1 WO 2007056925A1
Authority
WO
WIPO (PCT)
Prior art keywords
session
user
behalf
information
initiate
Prior art date
Application number
PCT/CN2006/002799
Other languages
English (en)
Chinese (zh)
Inventor
Yajuan Wu
Fenqin Zhu
Original Assignee
Huawei Technologies Co., Ltd.
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Huawei Technologies Co., Ltd. filed Critical Huawei Technologies Co., Ltd.
Publication of WO2007056925A1 publication Critical patent/WO2007056925A1/fr

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/14Session management

Definitions

  • the present invention relates to the field of network communication technologies, and in particular, to a session control method and apparatus in an IMS network. Background of the invention
  • multimedia services combining multiple media types such as audio, video, pictures and text will be gradually developed, through with presence (presentation services), groups Management, short message, WEB (web) browsing, location information, PUSH (push service), file sharing and other data services can meet the diverse needs of users.
  • IP Multimedia Subsystem IMS
  • IMS IP Multimedia Subsystem
  • IMS IP Multimedia Subsystem
  • IMS IP Multimedia Subsystem
  • CSCF Call Session Control Function
  • MGCF Media Gateway Control Function, Media
  • the gateway control function the MR Multimedia Resource Function
  • HSS Home Subscriber Server
  • S-CSCF Serving CSCF
  • P- CSCF Proxy CSCF, Proxy CSCF
  • I-CSCF Interrogating CSCF, Query CSCF
  • the S-CSCF is the service switching center of the IMS, performs session control, maintains session state, is responsible for managing user information, and generates charging information.
  • the P-CSCF is an access point for the terminal user to access the IMS, completes user registration, and is responsible for QoS.
  • the I-CSCF is responsible for interworking between MS domains, managing the allocation of S-CSCFs, hiding network topology and configuration, and generating billing data.
  • the MGCF controls the gateway to implement interworking between the IMS network and other networks.
  • the MRF provides media resources such as audio and video, codec and multimedia conference bridge.
  • the HSS is a user database that stores subscription data and configuration information of IMS users.
  • the IMS network can also be applied to other packet networks outside the 3GPP defined packet domain network.
  • Each user who has signed an IMS service is assigned one or more private user identifiers IMPI by the home network operator for use in the registration, authorization, management, and accounting processes.
  • IMPI uses NAI (Network Access Identifier).
  • NAI Network Access Identifier
  • each IMS user also has one or more public user identifiers IMPU, which are used to identify themselves and find each other when communicating with other users.
  • Private user IDs are generally not publicly available, and public user IDs are publicly available and used during conversations using various types of services.
  • PSI Public Service Identitity, Public Service Identity
  • the difference between the public service identifier and the public user identifier is that the public user identifier is used to identify the user and find the identity of the other party in the use of various services, and the public service identifier is the service, and the services generally reside in the service.
  • the application server AS such as a local service, can also be used to identify a group. For example, in a chat room service, a public service identifier such as sip:chatlist_X@example.com can It is used to represent a chat group. Each user can establish a session with this PSI, and send and receive messages through the AS where the PSI is located and other participants in the chat session.
  • the format of the PSI can be a SIP URI or a TEL URL.
  • the AS in the IMS network can initiate a call on behalf of a user represented by a public user identifier or a service represented by a public service identifier.
  • the request message indicates that the domain of the initiator is filled. The identity of the user.
  • the AS When the AS initiates a session on behalf of the IMPUL (IP Multimedia Public User Identity) or the PSI, the AS needs to obtain the address of the S-CSCF. If the AS initiates a session request on behalf of the user, the AS cannot obtain one for the IMPU. The address of the serving S-CSCF, the AS cannot initiate this session request on behalf of the user. If the AS initiates a session request using the PSI and the PSI is not assigned an S-CSCF address, the AS uses a mechanism such as DNS to complete the routing process of the SIP message and directly sends the session initiation request to the called network. If the AS obtains the address of the S-CSCF serving the IMPU or PSI, the AS sends a session initiation request to the S-CSCF.
  • IP Multimedia Public User Identity IP Multimedia Public User Identity
  • the AS allows the list to check whether the AS that sends the query request is allowed to perform the query. The check is performed in the AS granularity. Only the AS that has passed the check of the list can process the subsequent messages.
  • the AS initiates a service request on behalf of the user, if an AS located in the AS allow list obtains user information in some way, the AS can replace other users in the IMS network according to the user information obtained by the AS. Initiating a call, although the AS may only be able to initiate a call request on the IMS network on its own behalf, such as an advertisement push service. Other users or application servers in the network will receive call requests initiated by the user in the AS, which will cause hidden dangers to the network security and damage the legitimate interests of the users.
  • the object of the present invention is to provide a session control method and device in an MS network, which can detect the security risks existing in the network and ensure the legality of the user by detecting the authority of the AS to initiate a session on the user.
  • the benefits are not compromised.
  • the method for controlling a session in an IMS network includes: Having an AS on the IMS network to perform the permission information of the user on behalf of the user, the method specifically includes: initiating a session process on the AS on behalf of the user.
  • the IMS network function entity obtains the rights information, and determines, according to the obtained rights information, the rights of the AS that initiates the session on behalf of the user, and the IMS network function entity performs the session process initiated by the AS on behalf of the user according to the determined rights. control.
  • the method includes: the IMS network function entity determining, according to the obtained rights information, whether the AS that initiates the session on behalf of the user has the right to initiate a session on behalf of the user. If the AS has the right to initiate a session on behalf of the user, the IMS network function entity allows the AS representative The user initiates a session. If the AS does not have the right to initiate a session on behalf of the user, the IMS network function entity prohibits the AS from initiating a session on behalf of the user.
  • the IMS network function entity is: HSS or S-CSCF.
  • the AS is set in the HSS on behalf of the user to initiate the session.
  • the method includes:
  • the AS sends a query request for user data to the HSS;
  • the HSS checks and controls the session process initiated by the AS on behalf of the user according to the information carried in the query request and the information stored in the AS allow list.
  • the query request of the user data includes: a query request for address information of the S-CSCF corresponding to the user; and the step of checking and controlling the HSS includes:
  • the HSS obtains the corresponding entry in the AS allowed list according to the user data index information carried in the query request;
  • the HSS determines whether the query is successful according to the AS identifier information, the user identifier, and the entry information carried in the query request.
  • the S-CSCF address information is carried in the response message of the successful query and transmitted to the AS;
  • the S-CSCF address information is carried in the response message of the query failure and transmitted to the AS.
  • the predetermined field in the User Profile of the HSS is set to the authority information of the AS to initiate a session on behalf of the user.
  • the predetermined field is AS information, and the method includes:
  • the S-CSCF determines, according to the SIP session establishment request message sent by the AS, that the session to be established is an AS originating session, and determines whether the AS profile downloaded from the HSS includes the AS information.
  • the AS information is included, determining that the AS has the right to initiate a session on behalf of the user, allowing subsequent processing of the SIP session establishment request message;
  • the AS information is not included, it is determined that the AS does not have the right to initiate a session on behalf of the user, and the subsequent processing of the SIP session establishment request message is refused.
  • the method includes:
  • the S-CSCF determines, according to the SIP session establishment request message sent by the AS, the information carried in the SIP session establishment request message and the filtering rule in the User Profile downloaded from the HSS when the session to be established is the AS originating session. The information is matched, and it is determined whether the AS identification information that allows the AS to initiate the session on behalf of the user and the AS that sends the SIP session establishment request message are successfully matched;
  • the step of determining that the session to be established is an AS originating session specifically includes:
  • the session to be established is determined to be an AS originating session according to the contents of the orig field, the record route header field, and the p-asserted-identity in the SIP session establishment request message.
  • the present invention also provides a session control apparatus in an IMS network, including: an acquisition authority information module: in the process of the AS initiating a session on behalf of the user, obtaining the authority information of the AS on behalf of the user to initiate the session, and transmitting the permission information to the determining permission module; T N2006/002799 determining the privilege module: determining, according to the privilege information received by the AS, the information carried in the request message transmitted by the AS, whether the AS is allowed to initiate a session on behalf of the user, and transmitting the permitted or prohibited information to the session control module;
  • the session control module performs corresponding control processing on the process in which the AS initiates a session on behalf of the user according to the information that is allowed or prohibited.
  • the device is: S-CSCF or HSS.
  • the present invention can enable the IMS network function entity to detect whether the AS has the authority to initiate a session on behalf of the user according to the authority information, so that the AS representative can effectively control the AS representative.
  • the session initiated by the user avoids the phenomenon that the AS arbitrarily initiates a call on the IMS network on behalf of other users, and eliminates the security risks existing in the network.
  • the AS information of the present invention can be set in the HSS on behalf of the user to initiate the session, and the setting is set.
  • the method is flexible, such as setting user identification information that allows and/or prohibits the AS to initiate a session on the user in the AS allow list or the User Profile, and uses the original field content in the User Profile, etc.; the present invention provides multiple ASs to initiate a session on behalf of the user.
  • the privilege detection implementation process enables the present invention to meet various detection requirements in an actual network, such as detecting the user's initiation of session authority on behalf of the user in the process of querying the user data that the AS is allowed to read, and then sending a SIP session on the AS.
  • the AS initiates the detection of the session authority on behalf of the user; thus, the technical solution provided by the invention achieves the purpose of improving network security and improving user satisfaction.
  • FIG. 1 is a schematic diagram of a session control device of the present invention. Mode for carrying out the invention
  • the AS can check the eligibility of the user to initiate a session on behalf of the user, the AS can effectively prevent the AS from initiating a call on the IMS network on behalf of the user, thus avoiding the security risks in the network. , so that the legitimate interests of users are effectively guaranteed.
  • the main technical content of the present invention is: setting the privilege information of the AS on behalf of the user to initiate the session in the IMS network, and the IMS network function entity acquires the privilege information, and the AS is based on the privilege information. Controls the session process initiated on behalf of the user.
  • the IMS network of the present invention is provided with the privilege information that the AS initiates the session on behalf of the user, and the privilege information can be set in the HSS, such as in the AS allow list or in the User Profile.
  • the limit information may be information newly added for the permission.
  • the permission information is set in the AS allow list of the HSS
  • the extended AS allow list is set, and the new field content is set in the AS' allow list.
  • the content of the field is the authority information of the AS on behalf of the user to initiate the session, such as setting the user identification information that allows the AS to initiate the session on behalf of the user, or setting the user identification information that prohibits the AS from initiating the session on behalf of the user, or setting the user identification information that allows the AS to initiate the session on behalf of the user.
  • the user identification information set by the above may be: IMPU or MSISDN (Mobile Subscriber ISDN Number) information.
  • the privilege information can also utilize the original information content, such as when the privilege information is set in the User Profile, using the original AS information, and the like.
  • the present invention can fully utilize the process in which the AS queries the HSS for the user data that is allowed to be read by the AS to implement the session control of the present invention.
  • the basic implementation principle is :
  • the AS When the AS needs to initiate a session establishment request on behalf of the user, the AS sends a query request to the HSS to obtain user data, the HSS receives the query request, and obtains index information of the user data from the query request, and determines the AS allow list according to the index information. The corresponding entry is determined according to the user data that the AS allows to read and the authority information of the AS on behalf of the user to initiate the session. The AS is allowed to initiate a session on behalf of the user, and returns a corresponding response message to the AS according to the judgment result.
  • the session control process of the present invention is described in detail below by taking the S-CSCF address information of the calling party user as an example.
  • the AS is allowed to add user identification information that allows the AS to initiate a session on behalf of the user, such as IMPU or MSISDN information.
  • the AS needs to initiate a session on behalf of the user IMPUa.
  • the AS Since the S-CSCF allocated for the user is dynamically changed according to the registration status of the user, the AS first needs to send a query request to the HSS to obtain the address of the S-CSCF currently serving the user.
  • the user here is a user with an IMPU.
  • the AS sends a query request message to the HSS through the sh interface.
  • the query request message carries the public user identifier IMPUa of the user, indicating that the user data that the AS needs to query is the S-CSCF address currently serving the IMPUa.
  • the HSS After receiving the query request from the AS on the Sh interface, the HSS determines the corresponding entry in the AS allow list according to the index of the user data to be queried carried in the query request message, and then, according to the AS identifier carried in the query request message. And the IMPUA to determine whether the AS is allowed to read the S-CSCF address information of the user IMPUA, and the user identification information of the entry that allows the AS to initiate the session on the user includes the IMPUA; if the S-CSCF address information is allowed to be read And the user identification information in the entry that allows the AS to initiate a session on behalf of the user. In the case of the ICMPa, the S-CSCF address information of the user's IMPUA is returned to the AS through the successful response message.
  • the response message of the query failure is returned to the AS when the S-CSCF address is obtained from the response message of the successful query, and the session establishment request is initiated on behalf of the IMPUA.
  • the session establishment request message received by the S-CSCF is a process of detecting the session authority initiated by the AS on behalf of the user, and detecting the message sent by the successful AS, which is a secure aggregation setup request message.
  • the method can be conveniently applied to the newly implemented IMS system.
  • the present invention implements the authority detection of the AS on behalf of the user to initiate a session in the query request detection process of the AS, thereby improving the service processing efficiency.
  • the present invention can also add an additional processing procedure to check the S-CSCF process. Whether the AS has the right to initiate a session on behalf of the user, so that the process of checking the authority of the AS on behalf of the user to initiate the session introduced by the present invention does not affect the existing process of detecting the query request to the AS.
  • an additional process is added to implement the specific process of the AS to initiate a session on behalf of the user.
  • the AS sends a query request message to the HSS through the sh interface.
  • the query request message carries the public user identifier MSISDNb of the user, indicating that the user data that the AS needs to query is the S-CSCF address currently serving the MSISDNb.
  • the HSS After receiving the query request message from the AS on the Sh interface, the HSS determines the corresponding entry in the AS allow list according to the index of the user data to be queried carried in the query request message, and then, according to the AS identifier carried in the query message.
  • the MSISDNb determines whether the AS is allowed to read the S-CSCF address of the user MSISDNb.
  • the AS After the foregoing process ends, and after determining that the AS is allowed to read the S-CSCF address information, the AS performs a permission check process for the user to initiate a session.
  • the specific process is as follows: The HSS needs to query the user according to the query request message. The data index information is retrieved to the corresponding entry in the AS allow list. Then, according to the AS identifier, the MSISDNb, and the corresponding entry of the list in the query request message, the AS identifies the user identification information that the AS initiates the session on behalf of the user to determine whether the AS is Allows a user to initiate a session.
  • the HSS returns the S-CSCF address information of the user MSISDNb to the AS through a successful response message, and the AS obtains the S-CSCF address according to the obtained S-CSCF address.
  • the PT/CN2006/002799 initiates a session establishment request on behalf of the MSISDNb.
  • the session establishment request message received by the S-CSCF is a message that is sent by the AS on behalf of the user to initiate the session authority detection process and detects the successful AS. Aggregate the setup request message.
  • the HSS returns the response message of the query failure to the AS, and the AS cannot obtain the S-CSCF address corresponding to the MSISDNb. Therefore, the session establishment request cannot be initiated on behalf of the MSISDNb, thereby avoiding the insecure reception by the S-CSCF. Request message.
  • the AS can query the address information of the S-CSCF from the HSS through the SH interface, or obtain the address of the S-CSCF through static configuration, and directly send the session establishment request message to the specified S- CSCF.
  • static configuration it is not possible to use the AS Allow List to implement the eligibility check process for the AS to initiate a session on behalf of the user.
  • the address of the S-CSCF is configured on the AS, which means that the IMS operator has a certain trust relationship with the AS.
  • the invention proposes another method to avoid the phenomenon that the AS may represent a PSI that the user does not have to represent on the basis of the configuration: the IMPU initiates a session request to establish a session.
  • the authority information of the AS on behalf of the user to initiate the session can be set in the User Profile.
  • the S-CSCF After the AS sends a SIP session establishment request message to the S-CSCF, the S-CSCF treats it as a normal SIP session establishment request message, and checks according to the User Profile information downloaded from the HSS, such as performing iFC (filter rule).
  • the matching process the matching process is the same as the existing iFC matching process, in that each triggering rule is matched according to each information field in the received SIP message, and if the matching is successful, it corresponds to an AS.
  • the difference is that when the S-CSCF determines that the call is an AS originated call, it is necessary to add an AS to perform a permission check on the user initiated session in the above matching process.
  • Example 1 Set the permission information of the AS on behalf of the user to initiate a session as the predetermined field information already in the User Profile, such as AS information.
  • the S-CSCF For the call initiated by the AS on behalf of the IMPU/PSI, the S-CSCF is downloaded from the HSS according to it.
  • the AS that initiates the session establishment request message appears in the user's iFC list, that is, the user's session information, such as registration information, can be routed to the AS that initiated the session establishment request message, indicating that the AS The AS can initiate a session on behalf of the user; when the AS that initiated the session establishment request message does not appear in the user's iFC list, that is, the user's session information, such as registration information, cannot be routed to the AS that initiated the session establishment request message, indicating that the AS The AS cannot initiate a session on behalf of the user.
  • PT/CN2006/002799 This method is more suitable for IMS networks that have applied S-CSCF and HSS, and this method has no effect on the existing network architecture of IMS and the message transmission between S-CSCF and HSS.
  • Example 2 Setting the rights information of the AS to initiate a session on the user is the newly added field content in the User Profile.
  • the content of the field is used to indicate the authorization list that allows the AS to initiate a session on behalf of the user, such as adding/disabling the user profile.
  • the AS initiates the AS identification information of the user on behalf of the user.
  • the newly added field content in the User Profile needs to be detected to detect whether the AS is in the authorization list. If the AS is in the authorization list, the AS can initiate a session on behalf of the user. - The CSCF allows the session establishment request sent by the AS; if the AS is not in the authorization list, it indicates that the AS cannot initiate a session on behalf of the user, and the S-CSCF rejects the session establishment request sent by the AS.
  • Example 2 is applicable to the case where the S-CSCF and HSS are newly applied to the IMS network.
  • the S-CSCF determines that the AS-initiated session is the originating call of the AS on behalf of the IMPU/PSI: the orig (source) field in the session establishment request message is used to discriminate the The call is the originating call, and the AS originating call is identified by the record route header field.
  • the p-asserted-identity (p is the private header field) is used to identify which IMPU/PSI the AS represents. Originated originating call.
  • the download of the iFC needs to distinguish the user registration status. Therefore, when the iFC is configured, if the AS initiates a session establishment request on behalf of the user. If the current registration status of the user needs to be distinguished, the iFC used to check the validity of the AS on behalf of the user will be configured only in the user profile of the corresponding registration status, such as only in the REGISTERED section, or only configured.
  • the UNREGISTERED section is not configured, or is configured in a User Profile that is not related to the registration status.
  • the AS initiates a session establishment request on behalf of the user, it does not need to distinguish the current registration status of the user, that is, regardless of the current registration status of the user, and the user profile of the HSS distinguishes the user data according to the registration status, and may be in different registrations.
  • the configuration of this iFC is added to the user profile of the state.
  • the invention enhances the inspection process of the AS in the existing IMS network, that is, increases the detection of the AS initiated by the user on the IMS network, so that the IMS network can check the AS not only for the AS itself, but also for the AS itself.
  • the AS is a user who initiates a call, thereby avoiding the phenomenon that an application server located in the AS allow list replaces a user to initiate a call when the user does not have the right to initiate a call, thereby eliminating the security risks in the IMS network. Protect the legitimate interests of users.
  • the session control apparatus in the IMS network provided by the present invention is as shown in FIG.
  • the device in FIG. 1 mainly includes: an acquisition permission information module, a determination permission module, and a session control module.
  • the obtaining permission information module is mainly used to obtain the permission information of the AS on behalf of the user to initiate the session, and transmit the permission information to the determining permission module.
  • the privilege information of the AS on behalf of the user to initiate the session may be set in the privilege information module, and the privilege information of the AS on behalf of the user to initiate the session may be stored in the form of an AS allow list, as described in the foregoing method.
  • the obtaining permission information module may obtain the permission information of the corresponding AS on behalf of the user to initiate the session according to the query request sent by the AS to obtain the user data that is allowed to be read by the AS, and transmit the permission information to the determined permission module.
  • the session control device is an S-CSCF
  • the right information of the AS on behalf of the user to initiate the session may be set in the HSS, so that the obtaining permission information module needs to obtain the authority information of the AS on behalf of the user to initiate the session from the HSS, as in the above method. description.
  • the determining permission module is mainly used to determine, according to the rights information received by the AS, the information carried in the request message transmitted by the AS, whether the AS is allowed to initiate a session on behalf of the user, and transmit the permitted or prohibited information to the session control module.
  • the request message transmitted by the AS is a query request message of the user data that is allowed to be read, and the process of determining the permission of the permission module may be performed simultaneously with the processing request process of the HSS to the S-CSCF, or After the query request processing process of the S-CSCF, it is specifically described in the method.
  • the request message transmitted by the AS is a session establishment request message
  • the permission module determines that the session to be established is the initial session of the AS on behalf of the user, according to the rights information received by the AS, AS.
  • the information carried in the transmitted request message determines whether the AS is allowed to initiate a session on behalf of the user.
  • the session control module is mainly used to perform corresponding control processing on the process in which the AS initiates a session on behalf of the user according to the information that is allowed or prohibited.
  • the session control module can control the process of the AS initiating a session on behalf of the user by denying the address information of the S-CSCF to the AS or the address information of the S-CSCF to the AS. Specifically, it is described in the above method.
  • the session control module can control the process of the AS initiating the session on behalf of the user by rejecting the session establishment request message sent by the AS or the session establishment request message sent by the AS. Specifically, it is described in the above method.

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Hardware Design (AREA)
  • Computer Security & Cryptography (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Mobile Radio Communication Systems (AREA)
  • Telephonic Communication Services (AREA)

Abstract

L'invention concerne un procédé et un matériel de contrôle de session dans un réseau IMS, qui permettent de configurer les informations d'habilitation d'un serveur d'application (AS) représentant un utilisateur pour lancer une session au cours de laquelle l'entité de fonction du réseau IMS obtient les informations d'habilitation et, sur la base de celles-ci, contrôle le déroulement de la session lancée par l'AS représentant l'utilisateur. Le procédé de l'invention permet de déterminer si l'AS est habilité à représenter l'utilisateur pour lancer la session par le biais d'une entité de fonction du réseau IMS, de façon à contrôler effectivement le déroulement de la session lancée par l'AS représentant l'utilisateur, et à éviter que l'AS ne prenne l'initiative de représenter les autres utilisateurs et lancer la session, ce qui élimine les problèmes de sécurité occultes existants dans le réseau. Les informations d'habilitation sont configurées de manière souple pour permettre à l'AS de représenter l'utilisateur et de lancer la session, et une grande partie des informations d'habilitation fournie permet de déterminer un processus de mise en oeuvre selon lequel l'AS représente l'utilisateur pour lancer la session. Ainsi, le procédé de l'invention s'adapte à toutes sortes de besoins de détermination dans le réseau réel, et permet d'améliorer la sécurité du réseau et la satisfaction de l'utilisateur.
PCT/CN2006/002799 2005-11-15 2006-10-20 Procede et materiel de controle de session dans un reseau ims WO2007056925A1 (fr)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN200510123209.8 2005-11-15
CN 200510123209 CN1968262B (zh) 2005-11-15 2005-11-15 一种ims网络中的会话控制方法和装置

Publications (1)

Publication Number Publication Date
WO2007056925A1 true WO2007056925A1 (fr) 2007-05-24

Family

ID=38048285

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2006/002799 WO2007056925A1 (fr) 2005-11-15 2006-10-20 Procede et materiel de controle de session dans un reseau ims

Country Status (2)

Country Link
CN (1) CN1968262B (fr)
WO (1) WO2007056925A1 (fr)

Families Citing this family (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101163344B (zh) * 2007-10-24 2011-04-20 中兴通讯股份有限公司 对用户设备伪装成应用服务器发起呼叫的处理方法
CN101621772B (zh) 2008-07-02 2012-06-06 中国移动通信集团公司 一种会话控制方法及设备
CN101364874B (zh) * 2008-09-27 2011-07-06 华为终端有限公司 一种媒体转移方法、终端及应用服务器

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JPH11328117A (ja) * 1998-05-14 1999-11-30 Hitachi Ltd 認証システムにおけるユーザ管理方法
WO2002061604A1 (fr) * 2001-01-31 2002-08-08 Telcordia Technologies, Inc. Systeme et procede pour impartir la fonctionnalite d'agents d'utilisateurs sip a des serveurs mandataires
CN1483265A (zh) * 2000-08-01 2004-03-17 ��˹��ŵ�� 采用会话启动协议消息进行通用移动通信系统验证的技术
WO2004032415A1 (fr) * 2002-10-03 2004-04-15 Nokia Corporation Procede et appareil de reauthentification dans un systeme de communication cellulaire
EP1583312A1 (fr) * 2004-04-02 2005-10-05 France Telecom Appareils et méthode pour contrôler l'accès à un système multimédia IP à partir d'un serveur d'applications

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JPH11328117A (ja) * 1998-05-14 1999-11-30 Hitachi Ltd 認証システムにおけるユーザ管理方法
CN1483265A (zh) * 2000-08-01 2004-03-17 ��˹��ŵ�� 采用会话启动协议消息进行通用移动通信系统验证的技术
WO2002061604A1 (fr) * 2001-01-31 2002-08-08 Telcordia Technologies, Inc. Systeme et procede pour impartir la fonctionnalite d'agents d'utilisateurs sip a des serveurs mandataires
WO2004032415A1 (fr) * 2002-10-03 2004-04-15 Nokia Corporation Procede et appareil de reauthentification dans un systeme de communication cellulaire
EP1583312A1 (fr) * 2004-04-02 2005-10-05 France Telecom Appareils et méthode pour contrôler l'accès à un système multimédia IP à partir d'un serveur d'applications

Also Published As

Publication number Publication date
CN1968262A (zh) 2007-05-23
CN1968262B (zh) 2011-04-06

Similar Documents

Publication Publication Date Title
KR101507632B1 (ko) 로컬 네트워크로의 원격 액세스를 위한 방법 및 장치
US7822407B2 (en) Method for selecting the authentication manner at the network side
KR101139072B1 (ko) Ims 기반 통신 개시 방법
KR100966516B1 (ko) 세션 개시 프로토콜을 통해 트러스티드 네트워크 지원형 액세스 네트워크 정보를 전달하는 시스템 및 방법
US8929360B2 (en) Systems, methods, media, and means for hiding network topology
JP5345154B2 (ja) Ipマルチメディアサブシステムにおけるメッセージハンドリング
JP2007516485A (ja) ネットワーク内のユーザ情報へのアクセスを許可する方法およびシステム
US8844011B2 (en) IP multimedia subsystem user identity handling method and apparatus
RU2434351C2 (ru) Способ, система и устройство для использования идентификаторов услуг связи ims в системе связи
CN101193068B (zh) 一种应答请求的方法和设备
WO2006136097A1 (fr) Procédé pour traiter une anomalie lors de la procédure d'inscription d'un utilisateur
US20070055874A1 (en) Bundled subscriber authentication in next generation communication networks
WO2006099815A1 (fr) Procede d'enregistrement d'un utilisateur dans le sous-systeme multimedia ip et systeme associe
US20080275988A1 (en) Method And System For Lawful Interception In Next Generation Networks
US20070289009A1 (en) Authentication in a multiple-access environment
US7600116B2 (en) Authentication of messages in a communication system
KR100928247B1 (ko) 통신 네트워크들 간의 보안 통신을 제공하기 위한 방법 및시스템
WO2008011819A1 (fr) Procédé et dispositif permettant d'émettre des informations d'interception légales
CN101192920A (zh) 一种应答请求的方法和设备
US20130212646A1 (en) Usage authentication via intercept and challege for network services
CN101018240B (zh) 检查通用可路由用户代理统一资源标识有效性的方法
WO2007056925A1 (fr) Procede et materiel de controle de session dans un reseau ims
WO2007112642A1 (fr) Procédé et dispositif de mise en place d'un service d'identificateur multimédia d'utilisateur
WO2009074063A1 (fr) Procédé et appareil de choix du motif d'autorisation pour qu'un ue accède à un ims
WO2007085199A1 (fr) Procédé, application et appareil permettant d'identifier l'état utilisateur dans des réseaux

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application
NENP Non-entry into the national phase

Ref country code: DE

122 Ep: pct application non-entry in european phase

Ref document number: 06805009

Country of ref document: EP

Kind code of ref document: A1