WO2021088090A1 - 接入控制方法及通信装置 - Google Patents

接入控制方法及通信装置 Download PDF

Info

Publication number
WO2021088090A1
WO2021088090A1 PCT/CN2019/116891 CN2019116891W WO2021088090A1 WO 2021088090 A1 WO2021088090 A1 WO 2021088090A1 CN 2019116891 W CN2019116891 W CN 2019116891W WO 2021088090 A1 WO2021088090 A1 WO 2021088090A1
Authority
WO
WIPO (PCT)
Prior art keywords
network
access
terminal device
cell
pni
Prior art date
Application number
PCT/CN2019/116891
Other languages
English (en)
French (fr)
Inventor
杨晨晨
李欢
韩锋
晋英豪
Original Assignee
华为技术有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 华为技术有限公司 filed Critical 华为技术有限公司
Priority to CN201980041178.1A priority Critical patent/CN113099736A/zh
Priority to EP19951697.2A priority patent/EP4050937A4/en
Priority to PCT/CN2019/116891 priority patent/WO2021088090A1/zh
Priority to CN202011633828.2A priority patent/CN112867100B/zh
Publication of WO2021088090A1 publication Critical patent/WO2021088090A1/zh
Priority to US17/735,738 priority patent/US20220264435A1/en

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W48/00Access restriction; Network selection; Access point selection
    • H04W48/18Selecting a network or a communication service
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W48/00Access restriction; Network selection; Access point selection
    • H04W48/08Access restriction or access information delivery, e.g. discovery data delivery
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W48/00Access restriction; Network selection; Access point selection
    • H04W48/16Discovering, processing access restriction or access information
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W76/00Connection management
    • H04W76/10Connection setup
    • H04W76/18Management of setup rejection or failure
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W76/00Connection management
    • H04W76/30Connection release
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W48/00Access restriction; Network selection; Access point selection
    • H04W48/02Access restriction performed under specific conditions
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W84/00Network topologies
    • H04W84/02Hierarchically pre-organised networks, e.g. paging networks, cellular networks, WLAN [Wireless Local Area Network] or WLL [Wireless Local Loop]
    • H04W84/04Large scale networks; Deep hierarchical networks
    • H04W84/042Public Land Mobile systems, e.g. cellular systems
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W84/00Network topologies
    • H04W84/02Hierarchically pre-organised networks, e.g. paging networks, cellular networks, WLAN [Wireless Local Area Network] or WLL [Wireless Local Loop]
    • H04W84/10Small scale networks; Flat hierarchical networks
    • H04W84/105PBS [Private Base Station] network

Definitions

  • This application relates to the field of communication technology, and in particular to an access control method and communication device.
  • Non-public networks are a type of network under discussion in the 3GPP standard. Different from traditional cellular networks, NPN networks only allow certain users with specific permissions to access. 3GPP has defined two NPN deployment modes: stand-alone non-public networks (SNPN) and non-stand-alone NPN networks. Non-stand-alone NPN networks are also It is called Public Network Integrated NPN (PNI-NPN).
  • SNPN stand-alone non-public networks
  • PNI-NPN Public Network Integrated NPN
  • the public network integrated NPN network Public Network Integrated NPN, PNI-NPN
  • the public land mobile network Public Land Mobile Network, PLMN
  • the PLMN ID can be used to identify the PNI-NPN network.
  • CAG represents a group of devices that can access a CAG cell (PNI-NPN cell).
  • PNI-NPN cell a CAG cell
  • CAG can be represented by a closed access group identifier (CAG ID).
  • CAG ID closed access group identifier
  • the embodiments of the present application provide an access control method and a communication device, which are beneficial for terminal equipment to be able to access the correct cell.
  • an embodiment of the present application provides an access control method, the method includes: an access network device receives a first message sent by a terminal device, the first message carrying a first public information of the network that the terminal device requests to access Land mobile network PLMN identification and indication information, the indication information is used to instruct the terminal device to request access to the public network-converged non-public network PNI-NPN supported by the first cell; the access network device sends a second message to the core network device, The second message carries the first PLMN identification and the network information supported by the first cell; the access network device receives the third message sent by the core network device, and the third message is used to notify the access network device to release the resources configured for the terminal device ; The access network device sends a fourth message to the terminal device, and the fourth message is used to notify the terminal device to release the radio resource control RRC connection.
  • the access network device can send the network information supported by the cell to the core network device, so that the core network device can perform access control on the terminal device based on the network information supported by the cell, which is conducive to the access of the terminal device The right neighborhood.
  • the network information supported by the first cell includes one or more of the following information: the closed access group CAG identity corresponding to the first PLMN identity supported by the first cell, or the first The PNI-NPN identification information supported by the cell, or the PLMN identification supported by the first cell; the PNI-NPN identification information includes the PLMN identification and the CAG identification.
  • the second message also carries indication information.
  • the terminal device can be instructed to the core network device to request access to the PNI-NPN.
  • the third message and the fourth message also carry a reason value, and the reason value is used to indicate the reason for the terminal device access failure.
  • the access network device and the terminal device can determine the reason why the core network device refuses the terminal device to access the network according to the reason value.
  • an embodiment of the present application provides an access control method.
  • the method includes: a core network device receives a second message sent by an access network device, and the second message carries the first message of the network that the terminal device requests to access.
  • the core network equipment refers to the network information supported by the first cell and the contract information of the terminal equipment, and when the terminal equipment is not allowed to access the network,
  • the network device sends a third message, where the third message is used to notify the access network device to release resources configured for the terminal device.
  • the core network device can perform access control on the terminal device based on the network information supported by the cell, which is beneficial for the terminal device to access the correct cell.
  • the network information supported by the first cell includes one or more of the following information: the closed access group CAG identity corresponding to the first PLMN identity supported by the first cell, or the first The PNI-NPN identification information supported by the cell, or the PLMN identification supported by the first cell; the PNI-NPN identification information includes the PLMN identification and the CAG identification.
  • the subscription information of the terminal device includes one or more of the following information: the public network converged non-public network PNI-NPN identification information that the terminal device can access, and the PLMN that the terminal device can access An indication of whether the identity or terminal equipment can only access the network through the CAG cell of the closed access group.
  • the PNI-NPN identification information of the public network converged non-public network that the terminal device can access may include the CAG identification list (Allowed CAG List) that the UE is allowed to access, and whether the terminal device can only be accessed through the closed access group CAG cell
  • the indication of the network includes CAG-only indication.
  • the terminal device when the terminal device is not allowed to access the network, one or more of the following situations: when the contract information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, first The cell does not support the PNI-NPN that can be accessed by the terminal device or the PNI-NPN identification information that the terminal device can access is empty; or the contract information indicates that the terminal device can access the network through the CAG cell and the public network cell, and the first cell does not Support the PNI-NPN that can be accessed by the terminal device or when the identification information of the PNI-NPN that can be accessed by the terminal device is empty, the first cell does not support the public network identified by the first PLMN identity or the PLMN that can be accessed by the terminal device Does not include the first PLMN identity; or, when the contract information indicates that the terminal device can access the network through the public network cell and cannot access the network through the CAG cell, the first cell does not support the public network identified by the first PLMN identity or the
  • the terminal device when the terminal device is not allowed to access the network, one or more of the following situations: when the contract information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, first The cell does not support the first CAG identifier and the first PNI-NPN identified by the first PLMN identifier, or the first PNI-NPN is not a PNI-NPN that the terminal device can access; or, the subscription information indicates that the terminal device can pass the CAG cell When accessing the network with a public network cell, and the first cell does not support the first PNI-NPN, or the first PNI-NPN is not a PNI-NPN that can be accessed by the terminal device, the first cell does not support the first PLMN identification The public network or the PLMN that the terminal device can access does not include the first PLMN identity; or, when the contract information indicates that the terminal device can access the network through the public network cell and cannot access the network through the CAG cell, the first cell does not support the
  • the situation that the terminal device is not allowed to access the network includes one or more of the following situations:
  • the contract information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell
  • the first A cell does not support the PNI-NPN identified by the first PLMN identifier accessible by the terminal device, or the PNI-NPN identifier information accessible by the terminal device does not include the first PLMN identifier, or the subscription information indicates that the terminal device can
  • the network is accessed through the CAG cell and public network cell, and the first cell does not support the PNI-NPN identified by the first PLMN identification that the terminal device can access, or the PNI-NPN identification information that the terminal device can access does not include the first
  • the first cell does not support the public network identified by the first PLMN identity or the PLMN identity that the terminal device can access does not include the first PLMN identity
  • the contract information indicates that the terminal device can access the network through the public network cell
  • the third message also carries a reason value, and the reason value is used to indicate the reason why the terminal device fails to access the network.
  • the second message also carries indication information, which is used to instruct the terminal device to request access to the public network converged non-public network PNI-NPN supported by the first cell.
  • an embodiment of the present application provides an access control method.
  • the method includes: a terminal device sends a first message to an access network device, the first message carrying the first public land mobile network of the network that the terminal device requests to access Network PLMN identification and indication information.
  • the indication information is used to instruct the terminal device to request access to the public network-converged non-public network PNI-NPN supported by the first cell; the terminal device receives a fourth message, which is used to notify the terminal device Release the radio resource control RRC connection; the terminal device releases the RRC connection.
  • the terminal equipment can indicate to the access network equipment to request access to the public network-converged non-public network PNI-NPN supported by the first cell; thus, the access network equipment requests access to the first cell at the terminal equipment.
  • the PNI-NPN supported by a cell the network information supported by the cell is sent to the core network equipment, so that the core network equipment can control the access of the terminal equipment based on the network information supported by the cell, which is beneficial to avoid allowing the terminal equipment to access the correct Community.
  • the fourth message carries a reason value
  • the reason value is used to indicate the reason why the terminal device fails to access the network.
  • the first PLMN identity corresponds to at least two CAG identities of the closed access group.
  • the terminal device when the terminal device requests the PNI-NPN to be accessed, the first PLMN identifier of the PNI-NPN that the terminal device requests to access corresponds to at least two CAG identifiers, and the first message carries the indication information.
  • an embodiment of the present application provides an access control method.
  • the method includes: an access network device receives a first message sent by a terminal device, and the first message carries a public network convergence non-public network to which the terminal device requests access.
  • the access network device sends a second message to the core network device, and the second message carries the first PLMN identity;
  • the access network device receives the third message sent by the core network device
  • the third message carries the subscription information of the terminal device;
  • the access network device refers to the network information supported by the first cell that the terminal device requests to access and the subscription information of the terminal device, and when the terminal device is not allowed to access the network,
  • a fourth message is sent to the core network device, where the fourth message is used to indicate that the terminal device fails to access the network.
  • the access network device can receive the subscription information of the terminal device sent by the core network device, and then the access network device can perform the subscription information on the terminal device based on the network information supported by the first cell and the subscription information of the terminal device. Access control helps terminal equipment to access the correct network.
  • the contract information of the terminal device includes the PNI-NPN identification information of the public network converged non-public network that the terminal device can access, and/or whether the terminal device can only access the network through the CAG cell of the closed access group
  • the network information supported by the first cell includes PNI-NPN identification information and/or PLMN identification;
  • PNI-NPN identification information includes PLMN identification and CAG identification.
  • the situation that the terminal device is not allowed to access the network includes one or more of the following situations: the contract information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, and the first A cell does not support the PNI-NPN that the terminal device can access; or, the contract information indicates that the terminal device can access the network through the CAG cell and the public network cell, and the first cell does not support the public network identified by the first PLMN identity, and the first cell A cell does not support the PNI-NPN that the terminal device can access; or, the contract information indicates that the terminal device can access the network through the public network cell and cannot access the network through the CAG cell, and the first cell does not support the public network identified by the first PLMN identity. network. Based on this possible implementation, it is beneficial for the terminal equipment to access the correct cell.
  • the situation that the terminal device is not allowed to access the network includes one or more of the following situations: the contract information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, and the first The first CAG identifier and the first PNI-NPN identified by the first PLMN identifier not supported by a cell; or, the subscription information indicates that the terminal device can access the network through the CAG cell and the public network cell, and the first cell does not support the first PLMN Identifies the public network identified by the first PNI-NPN, and the first cell does not support the first PNI-NPN; or, the contract information indicates that the terminal device can access the network through the public network cell and cannot access the network through the CAG cell, and the first cell does not support the first PNI-NPN The public network identified by the PLMN identifier. Based on this possible implementation, it is beneficial for the terminal equipment to access the correct cell.
  • the situation that the terminal device is not allowed to access the network includes one or more of the following situations: the contract information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, and the first A cell does not support the PNI-NPN identified by the first PLMN identity that the terminal device can access; or the contract information indicates that the terminal device can access the network through the CAG cell and the public network cell, and the first cell does not support the first PLMN identity
  • the identified public network, and the first cell does not support the PNI-NPN identified by the first PLMN identification that the terminal device can access; or the contract information indicates that the terminal device can access the network through the public network cell and cannot access the CAG cell Network, and the first cell does not support the public network identified by the first PLMN identity.
  • the fourth message also carries a reason value, and the reason value is used to indicate the reason why the terminal device fails to access the network.
  • the core network device can determine the reason why the access network device refuses the terminal device to access the network according to the reason value.
  • the access network device receives a fifth message sent by the core network device, the fifth message carries a cause value, and the fifth message is used to notify the access network device to release resources configured for the terminal device; access;
  • the network device sends a sixth message to the terminal device, the sixth message carries a cause value, and the sixth message is used to notify the terminal device to release the radio resource control RRC connection.
  • the radio resource control RRC connection and the resources configured for the terminal device can be released in time when the terminal device is not allowed to access the network.
  • the access network device before the access network device sends the fourth message to the core network device, the access network device receives the seventh message sent by the core network device, and the seventh message indicates that the terminal device is successfully authenticated and the security is verified. Success, successful registration, or successful attachment; the access network device sends an eighth message to the terminal device, the eighth message indicating that the terminal device is successfully authenticated, successfully verified, registered, or attached; the access network device sends the core network device After sending the reason value, the access network device receives the ninth message sent by the core network device, the ninth message carries the reason value, and the ninth message indicates that the terminal device authentication failure, security verification failure, registration failure, or attachment failure; The network access device sends a tenth message to the terminal device.
  • the tenth message carries a cause value.
  • the tenth message indicates that the terminal device has failed authentication, security verification, registration failure, or attachment failure. Based on this possible implementation, the release registration information of the terminal device can be released in time when the terminal device is not allowed to access the network.
  • an embodiment of the present application provides an access control method.
  • the method includes: a core network device receives a second message sent by an access network device, and the second message carries a public network convergence information that the terminal device requests to access.
  • the message carries the subscription information of the terminal device; the core network device receives the fourth message sent by the access network device, and the fourth message is used to indicate that the terminal device fails to access the network.
  • the subscription information of the terminal device includes one or more of the following information: the PNI-NPN identification information that the terminal device can access, the PLMN identification that the terminal device can access, or whether the terminal device is only The indication of access to the network through the CAG cell of the closed access group; the PNI-NPN identification information includes the PLMN identification and the CAG identification.
  • the situation that the terminal device is allowed to access the network includes one or more of the following situations: the contract information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, and the terminal device can The access PNI-NPN identification information is not empty; or, when the contract information indicates that the terminal device can access the network through the CAG cell and the public network cell, the PLMN identification that the terminal device can access includes the first PLMN identification, or the terminal device can access the network.
  • the access PNI-NPN identification information is not empty; or, the subscription information indicates that the terminal device can access the network through the public network cell and cannot access the network through the CAG cell, and the PLMN identification accessible to the terminal device includes the first PLMN identification.
  • the situation that the terminal device is allowed to access the network includes one or more of the following situations: the subscription information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, and the first CAG
  • the first PNI-NPN identified by the identifier and the first PLMN is the PNI-NPN that the terminal device can access; or, when the contract information indicates that the terminal device can access the network through the CAG cell and public network cell, the PLMN that the terminal device can access
  • the identity includes the first PLMN identity, or the first PNI-NPN is the PNI-NPN that the terminal device can access; or, the contract information indicates that the terminal device can access the network through the public network cell and cannot access the network through the CAG cell, and the terminal device
  • the accessible PLMN identity includes the first PLMN identity.
  • the situation that the terminal device is allowed to access the network includes one or more of the following situations: the contract information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, and the terminal device can The accessed PNI-NPN identification information includes the first PLMN identification; or, when the subscription information indicates that the terminal device can access the network through the CAG cell and the public network cell, the PLMN identification that the terminal device can access includes the first PLMN identification, or The PNI-NPN identification information that the terminal device can access includes the first PLMN identification; or, the contract information indicates that the terminal device can access the network through the public network cell and cannot access the network through the CAG cell, and the terminal device can access the PLMN identification Including the first PLMN identity.
  • the fourth message also carries a reason value, and the reason value is used to indicate the reason why the terminal device fails to access the network.
  • the core network device sends a fifth message to the access network device, where the fifth message carries a cause value, and the fifth message is used to notify the access network device to release resources configured for the terminal device.
  • the core network device sends a seventh message to the access network device, and the seventh message indicates that the terminal device is successfully authenticated, successfully verified, registered, or attached; the core network device receives the access network After the device sends the reason value, the method further includes: the core network device sends a ninth message to the access network device, the ninth message carries the reason value, and the ninth message indicates that the terminal device authentication failed, security verification failed, registration failed, or attached failure.
  • an embodiment of the present application provides an access control method.
  • the method includes: an access network device receives a first message sent by a terminal device, where the first message carries a public network convergence non-public network to which the terminal device requests access.
  • the access network device sends a second message to the core network device, and the second message carries the first PLMN identity;
  • the access network device receives the third message sent by the core network device,
  • the third message carries the subscription information of the terminal device;
  • the access network device refers to the network information supported by the first cell that the terminal device requests to access and the subscription information of the terminal device.
  • the device sends a message indicating that the terminal device has successfully accessed the network.
  • the subscription information of the terminal device includes the PNI-NPN identification information that the terminal device can access, and/or the indication of whether the terminal device can only access the network through the CAG cell of the closed access group;
  • Supported network information includes PNI-NPN identification information and/or PLMN identification;
  • PNI-NPN identification information includes PLMN identification and CAG identification;
  • the situation that the terminal device is allowed to access the network includes one or more of the following situations: the subscription information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, and the first The cell supports the PNI-NPN that the terminal device can access; or, when the contract information indicates that the terminal device can access the network through the CAG cell and the public network cell, the first cell supports the public network identified by the first PLMN identity and the terminal device can access
  • the PLMN identity includes the first PLMN identity, or the first cell supports the PNI-NPN that the terminal device can access; or, the contract information indicates that the terminal device can access the network through the public network cell and cannot access the network through the CAG cell, and the first cell The cell supports the public network identified by the first PLMN identity.
  • the situation that the terminal device is allowed to access the network includes one or more of the following situations: the subscription information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, and the first The cell supports the first CAG identity and the first PNI-NPN identified by the first PLMN identity; or, when the subscription information indicates that the terminal device can access the network through the CAG cell and the public network cell, the first cell supports the first PLMN identity.
  • the public network and the terminal device’s accessible PLMN identifier includes the first PLMN identifier; or the contract information indicates that when the terminal device can access the network through the CAG cell and the public network cell, the first cell supports the first PNI-NPN and the first PNI- NPN is a PNI-NPN that the terminal device can access; or, the contract information indicates that the terminal device can access the network through the public network cell and cannot access the network through the CAG cell, and the first cell supports the public network identified by the first PLMN identity.
  • the situation where the terminal device is allowed to access the network includes one or more of the following situations:
  • the subscription information indicates that the terminal device can access the network through the CAG cell but cannot access the network through the public network cell, and the first cell supports the PNI-NPN identified by the first PLMN identifier that the terminal device can access; or, the subscription information indicates the terminal device When the network can be accessed through the CAG cell and the public network cell, the first cell supports the public network identified by the first PLMN identity and the PLMN identity that the terminal device can access includes the first PLMN identity; or the contract information indicates that the terminal device can use the CAG When the cell and public network cell access the network, the first cell supports the PNI-NPN identified by the first PLMN identity that the terminal device can access; or the contract information indicates that the terminal device can access the network through the public network cell and cannot pass the CAG cell Access to the network, and the first cell supports the public network identified by the first PLMN identity.
  • an embodiment of the present application provides an access control method.
  • the method includes: an access network device sends network information supported by a cell under the access network device to a core network device;
  • the first message carries the first public land mobile network PLMN identification of the public network-converged non-public network PNI-NPN that the terminal device requests to access;
  • the access network device sends a second message to the core network device, and the first message
  • the second message carries the identity of the first public land mobile network PLMN;
  • the access network device receives the third message sent by the core network device, and the third message is used to notify the access network device to release the resources configured for the terminal device;
  • the access network device sends
  • the terminal device sends a fourth message, and the fourth message is used to notify the terminal device to release the radio resource control RRC connection.
  • the network information supported by the cell under the access network device includes one or more of the following information: cell identification, PNI-NPN identification information corresponding to the cell, PLMN identification corresponding to the cell; PNI-NPN identification The information includes the PLMN identification and the CAG identification of the closed access group.
  • the third message and the fourth message also carry a reason value, and the reason value is used to indicate the reason why the terminal device fails to access the network.
  • the access network device and the terminal device can determine the reason why the core network device refuses the terminal device to access the network according to the reason value.
  • the network information supported by the cell under the core network device sent by the core network device is received.
  • an embodiment of the present application provides an access control method.
  • the method includes: a core network device receives network information supported by a cell under the access network device from the access network device; the core network device receives the access network
  • the second message sent by the device, the second message carries the first public land mobile network PLMN identity of the public network converged non-public network PNI-NPN that the terminal device requests to access; the core network device refers to the first cell that the terminal device requests to access The supported network information and the contract information of the terminal device.
  • a third message is sent to the access network device. The third message is used to notify the access network device to release the configuration for the terminal device. Resources.
  • the network information supported by the cell under the access network device includes one or more of the following information: cell identification, PNI-NPN identification information corresponding to the cell; PLMN identification corresponding to the cell; PNI-NPN identification The information includes the PLMN identification and the CAG identification of the closed access group.
  • the subscription information of the terminal device includes one or more of the following information: the PNI-NPN identification information that the terminal device can access, the PLMN identification that the terminal device can access, or whether the terminal device is only An indication that the network can be accessed through the CAG cell of the closed access group;
  • the network information supported by the first cell includes one or more of the following information: PNI-NPN identification information or PLMN identification supported by the first cell;
  • one or more of the following situations is not allowed for terminal equipment to access the network:
  • the first cell does not support the PNI-NPN that the terminal device can access or the PNI-NPN identification information that the terminal device can access is empty; Or, when the subscription information indicates that the terminal device can access the network through the CAG cell and the public network cell, the first cell does not support the PNI-NPN that the terminal device can access, or the PNI-NPN identification information of the terminal device is empty, and the first cell is not Support the public network identified by the first PLMN ID or the PLMN ID that the terminal device can access does not include the first PLMN ID; or the contract information indicates that the terminal device can access the network through the public network cell but cannot access the network through the CAG cell, The first cell does not support the public network identified by the first PLMN identification or the PLMN identification accessible by the terminal device does not include the first PLMN identification.
  • one or more of the following situations is not allowed for terminal equipment to access the network:
  • the first cell When the subscription information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, the first cell does not support the first PNI-NPN or the first PNI-NPN identified by the first CAG identity and the first PLMN identity It is not a PNI-NPN that can be accessed by the terminal device; or, when the contract information indicates that the terminal device can access the network through the CAG cell and public network cell, the first cell does not support the first PNI-NPN, or the first PNI-NPN is not The PNI-NPN that the terminal device can access, and the first cell does not support the public network identified by the first PLMN ID or the PLMN ID that the terminal device can access does not include the first PLMN ID; or, the subscription information indicates that the terminal device can When accessing the network through a public network cell and cannot access the network through a CAG cell, the first cell does not support the public network identified by the first PLMN identification or the PLMN identification accessible to the terminal device does not include
  • the situation where the terminal device is not allowed to access the network includes one or more of the following situations:
  • the first cell When the contract information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, the first cell does not support the PNI-NPN identified by the first PLMN identifier that the terminal device can access, or the terminal device can access the network
  • the PNI-NPN identity information does not include the first PLMN identity, or when the contract information indicates that the terminal device can access the network through the CAG cell and the public network cell, the first cell does not support the first PLMN identity that can be accessed by the terminal device.
  • the identified PNI-NPN or the PNI-NPN identification information accessible by the terminal device does not include the first PLMN identity, and the first cell does not support the public network identified by the first PLMN identity or the PLMN identity accessible by the terminal device Does not include the first PLMN identity; or, the contract information indicates that the terminal device can access the network through the public network cell and cannot access the network through the CAG cell, and the first cell does not support the public network identified by the first PLMN identity or that the terminal device can access the network.
  • the imported PLMN identity does not include the first PLMN identity.
  • the third message also carries a reason value, and the reason value is used to indicate the reason why the terminal device fails to access the network.
  • the core network device sends the network information supported by the cell under the core network device to the access network device.
  • a communication device may be an access network device, a device in an access network device, or a device that can be matched and used with an access network device.
  • the communication device may also be a chip system.
  • the communication device can perform the method described in the first aspect, the fourth aspect, the sixth aspect, or the seventh aspect.
  • the function of the communication device can be realized by hardware, or by hardware executing corresponding software.
  • the hardware or software includes one or more units corresponding to the above-mentioned functions.
  • the unit can be software and/or hardware.
  • an embodiment of the present application provides a communication device.
  • the communication device may be a core network device, a device in a core network device, or a device that can be matched and used with a core network device. Or it can be a chip in a core network device.
  • the communication device includes a communication interface and a processor, and the communication interface is used for communication between the device and other devices, such as sending and receiving data or signals.
  • the communication interface may be a transceiver, circuit, bus, module, or other type of communication interface, and other devices may be terminal devices or core network devices.
  • the processor is used to call a set of programs, instructions or data to execute the method described in the second aspect, the fifth aspect or the eighth aspect.
  • the device may also include a memory for storing programs, instructions or data called by the processor.
  • the memory is coupled with the processor, and when the processor executes instructions or data stored in the memory, the method described in the second aspect, the sixth aspect, or the eighth aspect described above can be implemented.
  • an embodiment of the present application provides a communication device.
  • the communication device may be a terminal device, or a device in a terminal device, or a device that can be matched and used with the terminal device. Or it can be a chip in a terminal device.
  • the communication device includes a communication interface and a processor, and the communication interface is used for communication between the device and other devices, such as sending and receiving data or signals.
  • the communication interface may be a transceiver, circuit, bus, module, or other type of communication interface, and other devices may be terminal devices or terminal devices.
  • the processor is used to call a set of programs, instructions or data to execute the method described in the third aspect.
  • the device may also include a memory for storing programs, instructions or data called by the processor. The memory is coupled with the processor, and when the processor executes instructions or data stored in the memory, the method described in the third aspect can be implemented.
  • inventions of the present application provide a communication device.
  • the communication device may be an access network device, a device in an access network device, or a device that can be matched and used with an access network device. Or it can be a chip in an access network device.
  • the communication device includes a communication interface and a processor, and the communication interface is used for communication between the device and other devices, such as sending and receiving data or signals.
  • the communication interface may be a transceiver, circuit, bus, module, or other type of communication interface, and other devices may be network devices.
  • the processor is used to call a set of programs, instructions, or data to execute the methods described in the first, fourth, sixth, or seventh aspects.
  • the device may also include a memory for storing programs, instructions or data called by the processor.
  • the memory is coupled with the processor, and when the processor executes instructions or data stored in the memory, the method described in the first aspect, the third aspect, the fifth aspect, or the seventh aspect can be implemented.
  • inventions of the present application provide a communication device.
  • the communication device may be a core network device, a device in a core network device, or a device that can be matched and used with a core network device. Or it can be a chip in a core network device.
  • the communication device includes a communication interface and a processor, and the communication interface is used for communication between the device and other devices, such as sending and receiving data or signals.
  • the communication interface may be a transceiver, circuit, bus, module, or other type of communication interface, and other devices may be network devices.
  • the processor is used to call a set of programs, instructions or data to execute the method described in the second aspect, the fifth aspect or the eighth aspect.
  • the device may also include a memory for storing programs, instructions or data called by the processor.
  • the memory is coupled with the processor, and when the processor executes instructions or data stored in the memory, the method described in the second aspect, the sixth aspect, or the eighth aspect described above can be implemented.
  • the communication device may be a terminal device, a device in a terminal device, or a device that can be matched and used with the terminal device. Or it can be a chip in a terminal device.
  • the communication device includes a communication interface and a processor, and the communication interface is used for communication between the device and other devices, such as sending and receiving data or signals.
  • the communication interface may be a transceiver, circuit, bus, module, or other type of communication interface, and other devices may be network devices.
  • the processor is used to call a set of programs, instructions or data to execute the method described in the third aspect.
  • the device may also include a memory for storing programs, instructions or data called by the processor. The memory is coupled with the processor, and when the processor executes instructions or data stored in the memory, the method described in the third aspect can be implemented.
  • an embodiment of the present application provides a chip system, which includes a processor and may also include a memory, configured to implement the method described in any one of the first to eighth aspects.
  • the chip system can be composed of chips, or it can include chips and other discrete devices.
  • an embodiment of the present application provides a computer-readable storage medium, which is used to store instructions. When the instructions are executed, any one of the first aspect to the eighth aspect is The described method is implemented.
  • embodiments of the present application provide a computer program product including instructions, which when executed, enable the method described in any one of the first to eighth aspects to be implemented.
  • FIG. 1 is a schematic diagram of the architecture of a communication system provided by an embodiment of this application.
  • FIGS. 2-9 are schematic diagrams of the flow of the access control method provided by the embodiments of this application.
  • FIG. 10 is a schematic structural diagram of a communication device provided by an embodiment of this application.
  • FIG. 11 is a schematic structural diagram of another communication device provided by an embodiment of this application.
  • FIG. 12a is a schematic structural diagram of another communication device provided by an embodiment of this application.
  • FIG. 12b is a schematic structural diagram of another communication device provided by an embodiment of this application.
  • FIG. 1 is a schematic diagram of a public network integrated NPN (Public Network Integrated NPN, PNI-NPN) system architecture provided by an embodiment of the present application.
  • PNI-NPN Public Network Integrated NPN
  • PNI-NPN Public Network Integrated NPN
  • PLMN Public Land Mobile Network
  • the PNI-NPN depends on the PLMN for deployment, and the PLMN ID can be used to identify the PNI-NPN network . Among them, PLMN can also be called a public network.
  • Fig. 1 takes the access network equipment taking the core network shared by the PNI-NPN network and the PLMN network as an example for illustration.
  • PNI-NPN-RAN represents the access network of PNI-NPN
  • PLMN-RAN represents the access network of the public network.
  • the PNI-NPN-RAN includes one or more access network devices
  • the PLMN-RAN may also include one or more access network devices.
  • Figure 1 takes the PNI-NPN-RAN including the access network device 1 and the access network device 2, and the PLMN-RAN includes the access network device 3 as an example.
  • the access network device involved in the embodiments of this application is an entity on the network side for transmitting or receiving signals, and can be used to convert received air frames and Internet protocol (IP) packets to each other.
  • IP Internet protocol
  • the access network equipment can also coordinate the attribute management of the air interface.
  • the access network equipment can be an evolved Node B (eNB or e-NodeB) in LTE, a new radio controller (NR controller), or a gNode B in a 5G system.
  • gNB can be a centralized unit, it can be a new wireless base station, it can be a remote radio module, it can be a micro base station, it can be a relay, it can be a distributed unit ), which may be a reception point (transmission reception point, TRP) or transmission point (transmission point, TP) or any other wireless access device, but the embodiment of the present application is not limited thereto.
  • TRP transmission reception point
  • TP transmission point
  • the access and mobility management function (AMF) entity and the user plane function (UPF) entity belong to the core network equipment.
  • Figure 1 may also include other core network equipment, which is not limited in the embodiment of the present application.
  • AMF entity It is the control plane network function provided by the operator's network, which is responsible for the access control and mobility management of terminal equipment accessing the operator's network, for example, including mobile status management, assigning user temporary identities, authenticating and authorizing users, etc. .
  • the UPF entity a gateway provided by the operator, and a gateway for communication between the operator's network and the data network DN 120.
  • the UPF entity includes user plane-related functions such as data packet routing and transmission, packet inspection, service usage reporting, quality of service (QoS) processing, lawful monitoring, uplink packet inspection, and downlink packet storage.
  • QoS quality of service
  • the data network DN may also be referred to as a packet data network (packet data network, PDN), which is usually a network located outside the operator's network, such as a third-party network.
  • PDN packet data network
  • the system architecture of the embodiment of the present application may further include one or more terminal devices.
  • the terminal device involved in the embodiments of the present application is an entity on the user side for receiving or transmitting signals.
  • a terminal device may be a device that provides users with voice and/or data connectivity, for example, a handheld device with a wireless connection function, a vehicle-mounted device, and so on.
  • the terminal device can also be another processing device connected to the wireless modem.
  • the terminal device can communicate with a radio access network (RAN).
  • RAN radio access network
  • Terminal devices can also be called wireless terminals, subscriber units, subscriber stations, mobile stations, mobile stations, remote stations, and access points , Remote terminal (remote terminal), access terminal (access terminal), user terminal (user terminal), user agent (user agent), user equipment (user device), or user equipment (user equipment, UE), etc.
  • the terminal equipment can be a mobile terminal, such as a mobile phone (or called a "cellular" phone) and a computer with a mobile terminal.
  • a mobile phone or called a "cellular" phone
  • it can be a portable, pocket-sized, handheld, built-in computer or vehicle-mounted mobile device, which is connected with wireless
  • the access network exchanges language and/or data.
  • the terminal device may also be a personal communication service (PCS) phone, a cordless phone, a session initiation protocol (SIP) phone, a wireless local loop (WLL) station, a personal digital assistant (personal digital assistant, PDA), and other equipment.
  • PCS personal communication service
  • IP session initiation protocol
  • WLL wireless local loop
  • PDA personal digital assistant
  • Common terminal devices include, for example, mobile phones, tablet computers, notebook computers, handheld computers, mobile internet devices (MID), wearable devices, such as smart watches, smart bracelets, pedometers, etc., but this application is implemented Examples are not limited to this.
  • CAG ID closed access group identifier
  • a CAG represents a group of users who can access a CAG cell. It is represented by a CAG identifier, which is unique in a PLMN, and the CAG identifier in different PLMNs can be the same. Among them, a CAG identity and a PLMN identity can form a PNI-NPN identity information.
  • One PNI-NPN identification information is used to identify one PNI-NPN. Alternatively, the PNI-NPN identification information may include a PLMN identification and/or a CAG identification.
  • a CAG cell can support multiple PNI-NPNs.
  • cell 1 supports PNI-NPN1 to PNI-NPN2.
  • PNI-NPN1 is jointly identified by PLMN identification 1 and CAG identification 1
  • PNI-NPN2 is jointly identified by PLMN identification 2 and CAG identification 1.
  • PNI-NPN PNI-NPN logo PNI-NPN1 PNI-NPN identification information 1 (PLMN identification 1 and CAG identification 1)
  • PNI-NPN2 PNI-NPN identification information 2 PNI-NPN identification 2 and CAG identification 1
  • cell 2 supports PNI-NPN2 to PNI-NPN5.
  • PNI-NPN3 is identified by PLMN identification 2 and CAG identification 2
  • PNI-NPN4 is identified by PLMN identification 4 and CAG identification 1
  • PNI-NPN5 is identified by PLMN identification 5 and CAG identification 1.
  • PNI-NPN PNI-NPN logo PNI-NPN2 PNI-NPN identification information 2 (PLMN identification 2 and CAG identification 1)
  • PNI-NPN3 PNI-NPN identification information 3 PNI-NPN identification 2 and CAG identification 2
  • PNI-NPN4 PNI-NPN identification information 4 PNI-NPN identification 4 and CAG identification 1
  • PNI-NPN5 PNI-NPN logo 5 PNI-NPN logo 5 and CAG logo 1
  • a cell when the PNI-NPN and the PLMN share an access network, a cell can also support both the PNI-NPN and the public network.
  • cell 1 can also support the public network identified by the PLMN shown in Table 3 below.
  • Cell 2 can also support the public network identified by the PLMN shown in Table 4 below.
  • the terminal device stores its subscription information, and the subscription information also includes the PNI-NPN identification information that the terminal device can access.
  • the PNI-NPN identification information that the terminal device can access may be as shown in Table 5 below.
  • PNI-NPN PNI-NPN logo PNI-NPN4 PNI-NPN logo 4 PNI-NPN logo 4 and CAG logo 1
  • PNI-NPN5 PNI-NPN logo 5 PNI-NPN logo 5 and CAG logo 1
  • PNI-NPN6 PNI-NPN logo 6 PNI-NPN logo 6 and CAG logo 1
  • PNI-NPN7 PNI-NPN logo 7 PNI-NPN logo 6 and CAG logo 2
  • the subscription information of the terminal device also includes the PLMN identifier that the terminal device can access.
  • the PLMN identities that the terminal device can access can be as shown in Table 6 below.
  • the cell broadcasts the PNI-NP identification information (PLMN ID(s), CAG ID(s)) that it supports in the system information.
  • the terminal equipment can report the PNI-NPN identification information (or CAG identification) that it has selected to access to the access network equipment, and the access network equipment will PNI-NPN
  • the identification information is sent to AMF.
  • AMF then performs access control on the terminal equipment and decides whether to allow the terminal equipment to access the network.
  • the terminal device reports the PNI-NP identification information to the access network device, the PLMN identification and the CAG identification can be reported in one message or in different messages.
  • the PLMN identifier is reported in the access stratum (AS) information.
  • the current standard discusses the situations in which the terminal device reports the selected CAG identifier to the access network device, including the following four types: 1.
  • the terminal device reports the selected CAG identifier in the AS information in MSG5. 2.
  • the terminal device reports the selected CAG identifier in non-access stratum (NAS) information (for example, NAS information in MSG5, or NAS message after MSG5).
  • NAS non-access stratum
  • the terminal device does not report the selected CAG identifier to neither the AS information nor the NAS information, that is, the terminal device does not report the CAG identifier to the access network device.
  • the terminal device reports the CAG identification in both the AS information and the NAS information.
  • the terminal device may access an incorrect cell.
  • the access network device cannot parse the content in the NAS information, after the access network device receives the PNI-NP identification information reported by the terminal device, it cannot determine whether the cell that the terminal device requests to access is Support the network that the terminal device requests to access. In other words, the access network device cannot perform access control on the terminal device based on the network information supported by the cell.
  • the core network device side can resolve the CAG identifier in the NAS information, the core network device does not store the PNI-NPN supported by the cell that the terminal device requests to access. Therefore, the core network device cannot perform access control on the terminal device based on the network information supported by the cell.
  • the core network equipment may allow the terminal equipment to access the incorrect cell.
  • the access network device cannot determine the PNI-NPN that the terminal device requests to access, and thus cannot perform access control on the terminal device based on the network information supported by the cell.
  • embodiments of the present application provide an access control method and device.
  • the access network device after receiving the PLMN identification and/or CAG identification in the PNI-NP identification information reported by the terminal device, the access network device sends the PLMN identification and/or the CAG identification to the core network device.
  • the core network equipment can send the terminal equipment subscription information to the access network equipment, so that the access network equipment can perform access control on the terminal equipment according to the network information supported by the cell and the terminal equipment subscription information to Access the correct cell.
  • FIG. 2 is a schematic flowchart of an access control method provided by an embodiment of the present application.
  • the access control method includes the following steps 201 to 204.
  • the subject of execution of the method shown in FIG. 2 may be terminal equipment, access network equipment, and core network equipment. Or the execution subject of the method shown in FIG. 2 may be a chip in a terminal device, a chip in an access network device, and a chip in a core network device.
  • FIG. 2 uses terminal equipment, access network equipment, and core network equipment as the execution body of the method as an example for illustration.
  • the execution subject of the access control method shown in the other figures of the embodiment of the present application is the same, and will not be described in detail later. among them:
  • the terminal device sends a first message to an access network device.
  • the first message may be an RRC setup complete (RRC setup complete) message, an RRC setup request (RRC setup request) message, an RRC resume complete (RRC resume complete) message, or an RRC resume request (RRC resume request) message.
  • the first message carries the first PLMN identifier of the PNI-NPN that the terminal device requests to access.
  • the first message is used to request access to the PNI-NPN of the first cell.
  • the first cell is a cell under the access network device.
  • the terminal device selects the PNI-NPN that needs to be accessed, it reports the identification information of the selected PNI-NPN to the access network device through the first message.
  • the first PLMN identification is the PLMN identification in the identification information of the PNI-NPN that needs to be accessed selected by the terminal device. For example, the terminal device selects to access PNI-NPN4 from Table 5 above. Then the first PLMN identifier is PLMN identifier 4.
  • the terminal device chooses to access PNI-NPN5 from Table 5 above. Then the first PLMN identifier is PLMN identifier 5. It should be understood that the PLMN identity may also be an index of the PLMN identity. The terminal equipment chooses to access other PNI-NPN for the same reason, so I won't repeat it here.
  • the access network device sends a second message to the core network device.
  • the second message may be an initial terminal equipment message (initial UE message).
  • the access network device after receiving the first message, sends the second message to the core network device.
  • the second message carries the first PLMN identity.
  • the content carried in the first message and the second message may have the following two situations:
  • Case 1 In addition to carrying the first PLMN identity, the first message also carries NAS information, and the NAS information carries the first CAG identity.
  • the second message In addition to carrying the first PLMN identity, the second message also carries NAS information, and the NAS information carries the first CAG identity. That is, both the first message and the second message include the first PLMN identifier and the first CAG identifier, and the first CAG identifier is carried in the NAS information.
  • the first CAG identifier is the CAG identifier included in the identification information of the PNI-NPN selected by the terminal device that needs to be accessed. For example, as shown in Table 5 above, if the terminal device requests to access PNI-NPN4. Then the first CAG ID is CAG ID 1.
  • the terminal device requests to access PNI-NPN5. Then the first CAG ID is CAG ID 1. The terminal device requests to access other PNI-NPNs in the same way, so I won’t repeat them here. Case 1 is equivalent to Mode 2 of the above-mentioned terminal device reporting the CAG identifier.
  • the terminal device sends the first PLMN identity and the first CAG identity to the access network device, the first PLMN identity and the first CAG identity may not be sent in the same message.
  • the access network device sends the first PLMN identity and the first CAG identity to the core network device, the first PLMN identity and the first CAG identity may not be sent in the same message.
  • the first information carries the first PLMN identity, and does not carry the first CAG identity.
  • the second information carries the first PLMN identifier, and does not carry the first CAG identifier.
  • the first CAG identifier is the CAG identifier included in the identification information of the PNI-NPN selected by the terminal device that needs to be accessed. It is equivalent to the above-mentioned method 3 of the terminal device reporting the CAG identifier, that is, the terminal device does not report the selected CAG identifier neither in the AS information nor the NAS information.
  • the access network device because the access network device cannot determine whether the terminal device requests to access the public network or the PNI-NPN, after receiving the first message, the access network device verifies whether the first PLMN identity is the location of the first cell. Supported PNI-NPN or PLMN corresponding to the public network. If it is, the second message is sent to AMF. Otherwise, the access request of the terminal device is directly rejected.
  • the core network device refers to the contract information of the terminal device and sends a third message to the access network device when the terminal device is allowed to access the network.
  • the third message may be an initial context setup request (initial context setup request) message.
  • the core network device after the core network device receives the second message sent by the access network device, it refers to (or is based on or based on) the subscription information and/or registration information of the terminal device, and when the terminal device is allowed to access the network , Send a third message to the access network device, where the third message carries the subscription information of the terminal device.
  • the subscription information of the terminal device includes one or more of the following information: the PNI-NPN identification information that the terminal device can access, the PLMN identification that the terminal device can access, or whether the terminal device is only
  • the PNI-NPN identification information that the terminal device can access may be as shown in Table 5 above.
  • the PLMN identities that the terminal device can access can be as shown in Table 6 above.
  • the value of the indication of whether the terminal device can only access the network through the CAG cell is Yes, it means that the terminal device can only access the network through the CAG cell, that is, the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, and the network can It is a 5G network, a 5G system, or other networks in the future.
  • the value of the indication of whether the terminal device can only access the network through the CAG cell is No, it means that the terminal device can access the network through the CAG cell and can access the network through the public network cell.
  • the core network device may not only refer to the subscription information of the terminal device, but also refer to the first PLMN identifier and/or the first CAG identifier to send the third information to the access network device.
  • the core network device refers to the subscription information of the terminal device to allow or not allow the terminal device to access the network, or the core network device refers to the subscription information of the terminal device, and the first PLMN identification and/or the first CAG identification, allowing or
  • the terminal device is not allowed to access the network, please refer to the corresponding descriptions in the following embodiment 1 to embodiment 3, which will not be repeated here.
  • the core network device can perform access control on the terminal device based on the subscription information of the terminal device, which is beneficial to ensure that the network accessed by the terminal device is a network that the terminal device has the ability to access.
  • the access network device refers to the network information supported by the first cell that the terminal device requests to access and the contract information of the terminal device, and sends a fourth message to the core network device when the terminal device is not allowed to access the network.
  • the fourth message may be an initial context setup failure message, a registration rejection message, or an error indication message.
  • the access network device after the access network device receives the third message, it refers to the network information supported by the first cell that the terminal device requests to access and the subscription information of the terminal device, and when the terminal device is not allowed to access the network, A fourth message is sent to the core network device, where the fourth message is used to indicate that the terminal device fails to access the network.
  • the first cell is a PNI-NPN cell that the terminal device requests to access.
  • the network information supported by the first cell includes PNI-NPN identification information and/or PLMN identification.
  • the network information supported by the first cell including PNI-NPN identification information may be as shown in Table 1 above.
  • the PLMN identity supported by the first cell may be as shown in Table 3 above. Wherein, if there is only one PNI-NPN supported by the first cell, the PNI-NPN identification information supported by the first cell may not exist in the form of. If there is only one public network supported by the first cell, the PLMN identity supported by the first cell may not exist in the form of.
  • the access network device can not only refer to the network information supported by the first cell and the subscription information of the terminal device, but also refer to the first PLMN identity and/or the first CAG identity to send the fourth to the core network device. information.
  • step 304 after the access network device receives the third message, the access network device refers to the network information and terminal supported by the first cell that the terminal device requests to access.
  • the subscription information of the device in the case that the terminal device is allowed to access the network, sends to the core network device a message indicating that the terminal device has successfully accessed the network.
  • the specific implementation manners of step 301 to step 303 are the same as the specific implementation manners of step 201 to step 203, and will not be repeated here.
  • the access network device refers to the network information supported by the first cell and the contract information of the terminal device, allowing or not allowing the terminal device to access the network, or the access network device refers to the network information supported by the first cell and the terminal device’s information
  • the access network device refers to the network information supported by the first cell and the terminal device’s information
  • the first PLMN identifier and/or the first CAG identifier the conditions of allowing or not allowing the terminal device to access the network, please refer to the corresponding descriptions in the following embodiment 1 to embodiment 3, which will not be repeated here.
  • the access network device can receive the subscription information of the terminal device sent by the core network device, and then the access network device can contact the terminal device based on the network information supported by the first cell and the subscription information of the terminal device. Access control is helpful for terminal equipment to access the correct cell.
  • the core network equipment refers to the subscription information of the terminal equipment, allows or disallows the terminal equipment to access the network
  • the access network equipment refers to the network information supported by the first cell and the subscription of the terminal equipment. Information, allowing or not allowing terminal equipment to access the network.
  • the subscription information of the terminal device includes one or more of the following information: PNI-NPN identification information that the terminal device can access, the PLMN that the terminal device can access, or an indication of whether the terminal device can only access the network through the CAG cell.
  • the network information supported by the first cell includes PNI-NPN identification information and/or PLMN identification.
  • the NAS information of the first message may carry the first CAG identifier
  • the NAS information of the second message may also carry the first CAG identifier.
  • the first CAG identifier may not be carried in the first message and the second message.
  • the core network equipment refers to the contract information of the terminal equipment, and the conditions that the terminal equipment is allowed to access the network include one or more of the following three conditions: a1 to a3:
  • the contract information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, and the PNI-NPN identification information that the terminal device can access is not empty.
  • the PLMN identity that the terminal device can access includes the first PLMN identity, or the PNI-NPN identity information that the terminal device can access is not empty.
  • the contract information indicates that the terminal device can access the network through the public network cell and cannot access the network through the CAG cell, and the PLMN identifier that the terminal device can access includes the first PLMN identifier.
  • the access network device refers to the network information supported by the first cell and the subscription information of the terminal device, and the situation that the terminal device is not allowed to access the network includes one or more of the following three situations b1 to b3:
  • the subscription information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, and the first cell does not support the PNI-NPN that the terminal device can access.
  • the subscription information indicates that the terminal device can access the network through the CAG cell and the public network cell, and the first cell does not support the public network identified by the first PLMN identity, and the first cell does not support the PNI-NPN that the terminal device can access.
  • the subscription information indicates that the terminal device can access the network through the public network cell and cannot access the network through the CAG cell, and the first cell does not support the public network identified by the first PLMN identity.
  • the core network device can allow the terminal device to access the network and send a third message to the access network device .
  • the access network device determines any one of the three cases of contract information b1 to b3 of the terminal device, the access network device does not allow the terminal device to access the network, and sends the fourth information to the access network device.
  • the case that the core network device allows the terminal device to access the network may also include only two cases or one case among a1 to a3. For example, if the terminal device is allowed to access the network, it can also only include a1 and a2.
  • the core network device can send to the access network device The third news.
  • the case of allowing the terminal device to access the network may also only include the case of a1.
  • the core network device may send a third message to the access network device.
  • the access network device refers to the network information supported by the first cell and the contract information of the terminal device, and the same is true for the case where the terminal device is not allowed to access the network, which will not be repeated here. The same applies to the second implementation method and the third implementation method below, and will not be repeated hereafter.
  • the core network device in the first embodiment refers to the contract information of the terminal device, the situation that the terminal device is allowed to access the network, and the access network device refers to the network information supported by the first cell and the contract information of the terminal device.
  • the core network device in the first embodiment refers to the contract information of the terminal device, the situation that the terminal device is allowed to access the network, and the access network device refers to the network information supported by the first cell and the contract information of the terminal device.
  • the terminal device needs to request access to the PNI-NPN4 of cell 1.
  • the identification information of PNI-NPN4 includes PLMN identification 4 and CAG identification 1.
  • the terminal device sends a first message to the access network device, where the first message carries the PLMN identity 4, and the first message is used to request access to the PNI-NPN 4 of the cell 1.
  • the access network device After receiving the first message, sends a second message to the core network device, where the second message carries the PLMN identifier 4.
  • the core network device sends the third message to the access network device.
  • the value of the indication of whether the terminal device can only access the network through the CAG cell is No (that is, the terminal device can access the network through the CAG cell and the network through the public network cell); or, when the terminal device’s subscription information does not include the terminal device
  • the indication of whether the network can only be accessed through the CAG cell but includes the PNI-NPN identification information that the terminal device can access it means that the terminal device can access the network through the CAG cell and can access the network through the public network cell.
  • the core network device is connected to The network-connected device sends a third message.
  • the subscription information of the terminal device does not include an indication of whether it can only access the network through the CAG cell and does not include the PNI-NPN identification information that the terminal device can access, it indicates that the terminal device can access the network through the public network cell and cannot pass through the CAG cell Access the network.
  • the core network device since the PLMN identity of the terminal device includes the PLMN identity 4, the core network device sends the third message to the access network device.
  • the access network device determines whether to allow the terminal device to access the network based on the network information supported by cell 1 and the subscription information of the terminal device. Assume that the contract information of the terminal device indicates that the terminal device can access the network through the CAG cell, and cannot access the network through the public network cell. As shown in Table 1, cell 1 does not support PNI-NPN4 to PNI-NPN7 that can be accessed by terminal equipment. Therefore, the access network device determines that the terminal device is not allowed to access the network, and the access network device sends a fourth message to the core network device to indicate that the terminal device fails to access the network.
  • the contract information of the terminal device indicates that the terminal device can access the network through the CAG cell and can access the network through the public network cell.
  • cell 1 does not support PNI-NPN4 to PNI-NPN7 that can be accessed by terminal equipment.
  • cell 1 does not support PLMN4. Therefore, the access network equipment does not allow terminal equipment to access the network.
  • contract information of the terminal device indicates that the terminal device cannot access the network through the CAG cell, and can access the network through the public network cell.
  • cell 1 does not support PLMN4. Therefore, the access network equipment does not allow terminal equipment to access the network.
  • the core network device allows the terminal device to access the network, which helps to ensure that the network that the terminal device accesses is the network that the terminal device has the ability to access.
  • the access network equipment does not allow the terminal equipment to access the network, and the PNI-NPN that can prevent the terminal equipment from accessing is the PNI-NPN that the first cell does not support, and it can prevent the terminal equipment from accessing the public network.
  • the network is a public network that is not supported by the first cell.
  • the core network device refers to the contract information of the terminal device, and the case that the terminal device is not allowed to access the network includes one or more of the following three cases c1 to c3:
  • the contract information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, and the PNI-NPN identification information that the terminal device can access is empty.
  • the subscription information indicates that the terminal device can access the network through the CAG cell and the public network cell, and the PLMN identity that the terminal device can access does not include the first PLMN identity, and the PNI-NPN identity information of the terminal device is empty.
  • the subscription information indicates that the terminal device can access the network through the public network cell and cannot access the network through the CAG cell, and the PLMN identifier that the terminal device can access does not include the first PLMN identifier.
  • the core network device does not allow the terminal device to access the network, which helps to ensure that the network that the terminal device accesses is a network that the terminal device has the ability to access.
  • the access network equipment refers to the network information supported by the first cell and the contract information of the terminal equipment to allow the terminal equipment to access the network to introduce:
  • the access network device refers to the contract information of the terminal device, and the circumstances in which the terminal device is allowed to access the network include one or more of the following three situations d1 to d3:
  • the contract information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, and the first cell supports the PNI-NPN that the terminal device can access.
  • the subscription information indicates that the terminal device can access the network through the CAG cell and the public network cell
  • the first cell supports the public network identified by the first PLMN identity and the PLMN identity that the terminal device can access includes the first PLMN identity; or the contract is
  • the information indicates that when the terminal device can access the network through the CAG cell and the public network cell, the first cell supports the PNI-NPN that the terminal device can access.
  • the contract information indicates that the terminal device can access the network through the public network cell and cannot access the network through the CAG cell, and the first cell supports the public network identified by the first PLMN identity.
  • the NAS information of the first message and the second message also carries the first CAG identifier, and the third message also carries the first CAG identifier.
  • the core network equipment refers to the contract information of the terminal equipment, and the conditions that the terminal equipment is allowed to access the network include one or more of the following three conditions: a1 to a3:
  • the subscription information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell.
  • the first CAG identifier and the first PNI-NPN identified by the first PLMN are the PNI-NPN that the terminal device can access.
  • the PLMN identity that the terminal device can access includes the first PLMN identity, or the first PNI-NPN is the PNI- which the terminal device can access. NPN.
  • a3 is the same as a3 in the first embodiment, and will not be repeated here.
  • the access network device refers to the network information supported by the first cell and the subscription information of the terminal device, and the situation that the terminal device is not allowed to access the network includes one or more of the following three situations b1 to b3:
  • the subscription information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, and the first CAG identifier and the first PNI-NPN identified by the first PLMN identifier that are not supported by the first cell.
  • the subscription information indicates that the terminal device can access the network through the CAG cell and the public network cell, and the first cell does not support the public network identified by the first PLMN identity, and the first PNI-NPN that the first cell does not support.
  • the core network device when a1 to a3 in the second embodiment are not satisfied, if a1 to a3 in the first embodiment are satisfied, the core network device allows the terminal device to access the network, and sends the first to the access network device.
  • the core network device may first determine whether a1 to a3 in the second embodiment are satisfied, and when it is determined that a1 to a3 in the second embodiment are not satisfied, then determine whether a1 to a3 in the first embodiment are satisfied. If a1 to a3 in the first embodiment are satisfied, the third message is sent to the access network device.
  • the core network device allows the terminal device to access the network, which helps to ensure that the network that the terminal device accesses is the network that the terminal device has the ability to access.
  • the access network equipment does not allow the terminal equipment to access the network, and the PNI-NPN that can prevent the terminal equipment from accessing is the PNI-NPN that the first cell does not support, and it can prevent the terminal equipment from accessing the public network.
  • the network is a public network that is not supported by the first cell.
  • the case where the core network device refers to the contract information of the terminal device and the terminal device is not allowed to access the network includes one or more of the following three cases c1 to c3:
  • the subscription information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, and the first CAG identifier and the first PNI-NPN identified by the first PLMN are not PNI-NPN accessible to the terminal device.
  • the subscription information indicates that the terminal device can access the network through the CAG cell and the public network cell, and the PLMN identity of the terminal device does not include the first PLMN identity, and the first PNI-NPN is not a PNI-NPN that the terminal device can access.
  • c3 is the same as c3 in the first embodiment, and will not be repeated here.
  • the core network device does not allow the terminal device to access the network, which helps to ensure that the network that the terminal device accesses is a network that the terminal device has the ability to access.
  • the access network equipment refers to the network information supported by the first cell and the contract information of the terminal equipment to allow the terminal equipment to access the network to introduce:
  • the access network device refers to the contract information of the terminal device, and the situation that the terminal device is allowed to access the network includes one or more of the following three situations d1 to d3:
  • the subscription information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, and the first cell supports the first CAG identifier and the first PNI-NPN identified by the first PLMN identifier.
  • the subscription information indicates that when the terminal device can access the network through the CAG cell and the public network cell, the first cell supports the public network identified by the first PLMN identity and the PLMN identity of the terminal device includes the first PLMN identity, or the first cell
  • the first PNI-NPN is supported, and the first PNI-NPN is a PNI-NPN that the terminal device can access.
  • d3 is the same as d3 in the first embodiment, and will not be repeated here.
  • the NAS information of the first message may carry the first CAG identifier
  • the NAS information of the second message may also carry the first CAG identifier.
  • the first CAG identifier may not be carried in the first message and the second message.
  • the core network equipment refers to the contract information of the terminal equipment, and the conditions that the terminal equipment is allowed to access the network include one or more of the following three conditions: a1 to a3:
  • the subscription information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, and the PNI-NPN identification information that the terminal device can access includes the first PLMN identification.
  • the subscription information indicates that when the terminal device can access the network through the CAG cell and the public network cell, the PLMN identity that the terminal device can access includes the first PLMN identity, or the PNI-NPN identity information that the terminal device can access includes the first PLMN identity. PLMN identification.
  • a3 is the same as a3 in the first embodiment, and will not be repeated here.
  • the access network device refers to the network information supported by the first cell and the subscription information of the terminal device, and the situation that the terminal device is not allowed to access the network includes one or more of the following three situations b1 to b3:
  • the subscription information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, and the first cell does not support the PNI-NPN identified by the first PLMN identifier that the terminal device can access.
  • the subscription information indicates that the terminal device can access the network through the CAG cell and the public network cell, and the first cell does not support the public network identified by the first PLMN identity, and the first cell does not support the first PLMN accessible by the terminal device Identifies the identified PNI-NPN.
  • the core network device allows the terminal device to access the network, which helps to ensure that the network that the terminal device accesses is the network that the terminal device has the ability to access.
  • the access network equipment does not allow the terminal equipment to access the network, and the PNI-NPN that can prevent the terminal equipment from accessing is the PNI-NPN that the first cell does not support, and it can prevent the terminal equipment from accessing the public network.
  • the network is a public network that is not supported by the first cell.
  • the core network device refers to the contract information of the terminal device, and the case that the terminal device is not allowed to access the network includes one or more of the following three cases c1 to c3:
  • the subscription information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, and the PNI-NPN identification information that the terminal device can access does not include the first PLMN identification.
  • the subscription information indicates that the terminal device can access the network through the CAG cell and the public network cell, and the PLMN identity that the terminal device can access does not include the first PLMN identity, and the PNI-NPN identity information of the terminal device does not include the first PLMN Logo.
  • c3 is the same as c3 in the first embodiment, and will not be repeated here.
  • the core network device does not allow the terminal device to access the network, which helps to ensure that the network that the terminal device accesses is a network that the terminal device has the ability to access.
  • the access network equipment refers to the network information supported by the first cell and the contract information of the terminal equipment to allow the terminal equipment to access the network to introduce:
  • the access network device refers to the contract information of the terminal device, and the circumstances in which the terminal device is allowed to access the network include one or more of the following three situations d1 to d3:
  • the subscription information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, and the first cell supports the PNI-NPN identified by the first PLMN identifier that the terminal device can access.
  • the subscription information indicates that when the terminal device can access the network through the CAG cell and the public network cell, the first cell supports the public network identified by the first PLMN identity and the PLMN identity of the terminal device includes the first PLMN identity, or the first cell supports The PNI-NPN identified by the first PLMN identity that can be accessed by the terminal device.
  • d3 is the same as d3 in the first embodiment, and will not be repeated here.
  • the access network equipment allows the terminal equipment to access the network, which can prevent the terminal equipment from accessing the PNI-NPN that is not supported by the first cell, and can prevent the terminal equipment from accessing the public network.
  • the network is a public network that is not supported by the first cell.
  • Embodiment 1 to Embodiment 3 can also be improved.
  • the following respectively introduces the improvement methods of the first to the third embodiment:
  • the access network device may not send the fourth message to the core network device.
  • the access network device sends first target information to the core network device, where the first target information includes at least the identity of the second cell.
  • the first target information further includes a second CAG identifier and/or a second PLMN identifier.
  • the second CAG identifier is the same as or different from the first CAG identifier.
  • the second PLMN identity is the same as or different from the first PLMN identity.
  • the second cell is a cell that supports the second PNI-NPN identified by the second CAG identity and the second PLMN identity, and the terminal device can access the second PNI-NPN.
  • Fig. 4 takes an example in which the first target information includes the identity of the second cell, the second CAG identity, and the second PLMN identity.
  • the core network device After receiving the first target information, the core network device can access the terminal device to the second PNI-NPN in the second cell.
  • the access network device may also send the first target information to the terminal device to notify the terminal device to access the second PNI-NPN in the second cell.
  • the access network device may not send the first target information to the terminal device, and the core network device forwards the first target information to the terminal device after receiving the target information.
  • the access network device does not send the first target information to the core network device, and the terminal device forwards the first target information to the core network device after receiving the first target information.
  • the access network device may send the first target information to the terminal device through an RRC reconfiguration (RRC reconfiguration) message.
  • RRC reconfiguration RRC reconfiguration
  • the access network device may send the RRC reconfiguration message during initial access or handover.
  • the terminal device requests to access PNI-NPN4 in cell 1.
  • the identification information of PNI-NPN4 includes PLMN identification 4 and CAG identification 1.
  • cell 1 does not support PNI-NPN4.
  • cell 2 supports PNI-NPN4. Therefore, the access network device sends first target information to the core network device.
  • the first target information includes the identity of cell 2 to instruct the core network device to access the terminal device to the PNI-NPN4 in the second cell.
  • the access network device re-selects a PNI-NPN supported by cell 2 from the PNI-NPNs accessible by the terminal device. For example, if PNI-NPN5 is selected, the access network device sends first target information to the core network device.
  • the first target information includes the identity of cell 2 and the PNI-NPN identity 5 to instruct the core network device to connect the terminal device. Enter PNI-NPN5 under cell 2. Since the CAG identifier in PNI-NPN identifier 5 is CAG identifier 1, the CAG identifier in PNI-NPN identifier 1 is also CAG identifier 1. Therefore, the first target information may include the identity of cell 2 and the identity of PLMN 5.
  • the access network device may not send the fourth message to the core network device.
  • the access network device in the improvement 1 in the second embodiment can also perform the same operation as the access network device in the improvement 1 in the first embodiment.
  • the first target information includes at least the identity of the second cell, or may also include the first PLMN identity and the first CAG identity.
  • the second cell is a cell that supports the first PNI-NPN identified by the first PLMN identity and the first CAG identity.
  • the first target information includes at least the second CAG identity, or further includes the identity of the first cell, or the identity of the first PLMN.
  • the second CAG identifier and the second PNI-NPN identified by the first PLMN identifier are PNI-NPNs that can be accessed by the terminal device.
  • the access network device may not send the fourth message to the core network device.
  • the access network device in the improvement 1 in the third embodiment can also perform the operation of the access network device in the improvement 1 in the first embodiment.
  • the first target information includes at least the identity of the second cell and the second CAG identity, or may also include the identity of the first PLMN.
  • the PNI-NPN identified by the second CAG identifier and the first PLMN identifier is the PNI-NPN supported by the second cell.
  • the first target information includes at least the identity of the second cell, or may also include the first CAG identity and/or the first PLMN identity.
  • the second cell supports the PNI-NPN identified by the first CAG identity and the first PLMN identity.
  • the first target information includes at least the second CAG identity, or further includes the first PLMN identity and/or the first cell identity.
  • the first cell supports the network identified by the second CAG identity and the first PLMN identity
  • the access network device may not send the fourth message to the core network device .
  • the PLMN identity supported by the second cell can be stored in the access network device.
  • the access network device can select a second cell that supports the public network identified by the first PLMN identity.
  • the access network device may send the identity of the second cell to the core network device.
  • the core network device After receiving the identity of the second cell, the core network device can access the terminal device to the public network identified by the first PLMN identity under the second cell.
  • the access network device may also send the identity of the second cell to the terminal device.
  • the access network device sends the identity of the second cell to the terminal device, and the terminal device forwards it to the core network device. After receiving the identity of the second cell, the core network device then connects the terminal device to the terminal device under the second cell.
  • the public network identified by the first PLMN identifier.
  • the access network device may also send the first CAG identity and/or the first PLMN identity to the core network device or the terminal device.
  • the access network device may send the identity of the second cell to the terminal device through an RRC reconfiguration (RRC reconfiguration) message.
  • RRC reconfiguration RRC reconfiguration
  • the RRC reconfiguration message also carries the identity of the first CAG and/or the identity of the first PLMN.
  • the access network device may send the RRC reconfiguration message during initial access or handover.
  • the above-mentioned access network device is the first access network device.
  • the first access network device may not send the fourth message to the core network device.
  • the first access network device sends fourth target information to the second access network device, and the fourth target information includes one or more of the following information: Identity information, the identity of the second cell under the second access network device, the second CAG identity, the second PLMN identity, the context information of the terminal device, the subscription information of the terminal device or the identity of the core network device; where the second cell It is a cell that supports the second PNI-NPN.
  • the second CAG identifier and the second PNI-NPN identified by the second PLMN identifier are PNI-NPNs that the terminal device can access.
  • the fourth target information may include the identification information of the terminal device, the identification of the second cell, the second CAG identification, the second PLMN identification, and the identification of the core network device, so that the second access network device can verify the second cell Whether the identity supports the second CAG identity and the second PNI-NPN identified by the second PLMN identity, when it is confirmed that the second cell supports the second PNI-NPN, the fifth target information is sent to the first access network device and the core network The device sends the sixth target information.
  • the fourth target information may include the identification information of the terminal device, the identification of the second cell, the second CAG identification, the second PLMN identification, the subscription information of the terminal device, and the identification of the core network device, so that the second access network device It is possible to verify whether the identity of the second cell supports the second CAG identity and the second PNI-NPN identified by the second PLMN identity, and to verify whether the terminal device can access the second PNI-NPN based on the subscription information of the terminal device.
  • the fifth target information is sent to the first access network device and the sixth target information is sent to the core network device.
  • the fourth target information may include the identification information of the terminal device and the subscription information of the terminal device, so that the second access network device selects a cell for the terminal device based on the network information supported by the cell under it and the subscription information of the terminal device.
  • Network access may include the identification information of the terminal device, the identification of the second cell under the second access network device, the second CAG identification, the second PLMN identification, the context information of the terminal device, and the subscription information of the terminal device.
  • FIG. 5 takes as an example that the fourth target information includes the identification information of the terminal device, the identification of the second cell under the second access network device, the second CAG identification, the second PLMN identification, and the identification of the core network device.
  • the second access network device sends fifth target information to the first access network device, where the fifth target information includes one or more of the following information: The identification information, the identification of the second cell under the second access network device, the second CAG identification, the second PLMN identification, or the configuration parameter information for the terminal device to access the second cell.
  • the configuration parameter information may be the configuration parameter information of the SRB or DRB of the second cell.
  • FIG. 5 takes as an example the fifth target information including the identification information of the terminal device, the identification of the second cell, the second CAG identification, the second PLMN identification, and the configuration parameter information for the terminal device to access the second cell.
  • the fifth target information includes one or more of the following information: the identification information of the terminal device, the identification of the third cell under the second access network device, the third CAG identification, the third PLMN identification, and the identification information for the terminal Configuration parameter information for the device to access the third cell; where the third PNI-NPN identified by the third CAG identifier and the third PLMN identifier is the PNI-NPN that the terminal device can access.
  • the third cell is a cell that supports the third PNI-NPN. That is, the second access network device re-selects a PNI-NPN that the terminal device can access for the terminal device.
  • the first access network device sends the fifth target information to the terminal device.
  • the first access network device may carry the fifth target information through an RRC reconfiguration (RRC reconfiguration) message.
  • RRC reconfiguration RRC reconfiguration
  • the first access network device may send the fifth target information during the initial access or handover process.
  • the second access network device sends sixth target information to the core network device.
  • the sixth target information includes one or more of the following information: identification information of the terminal device, 2. The identity of the second cell, the second CAG identity, and the second PLMN identity under the access network device.
  • the core network device After receiving the sixth target information, the core network device connects the terminal device to the second PNI-NPN of the second cell.
  • the sixth target information includes one or more of the following information: the identification information of the terminal device, the identification of the third cell under the second access network device, the third CAG identification, and the third PLMN identification.
  • the core network device connects the terminal device to the third PNI-NPN of the third cell.
  • FIG. 5 takes the sixth target information including the identification information of the terminal device, the identification of the second cell under the second access network device, the second CAG identification, and the second PLMN identification as an example.
  • the access network device may not send the fourth message to the core network device.
  • the access network device in Modification 2 in the second embodiment can also perform the same operation as the access network device in the Modification 2 in the first embodiment.
  • the fourth target information includes one or more of the following information: the identification information of the terminal device, the identification of the second cell under the second access network device, and the first CAG The identifier, the first PLMN identifier, the context information of the terminal device, the subscription information of the terminal device, or the identifier of the core network device.
  • the fifth target information includes one or more of the following information: the identification information of the terminal device, the identification of the second cell under the second access network device, the first CAG identification, the first PLMN identification, or the identification information for the terminal device Access to the configuration parameter information of the second cell.
  • the second cell is a cell supporting the network identified by the first CAG identity and the first PLMN identity under the second access network device.
  • the sixth target information includes one or more of the following information: the identification information of the terminal device, the identification of the second cell under the second access network device, the first CAG identification, and the first PLMN identification.
  • the access network device may not send the fourth message to the core network device.
  • the access network device in the improvement 2 in the third embodiment can also perform the operation of the access network device in the improvement 2 in the first embodiment.
  • the fourth target information includes one or more of the following information: the identification information of the terminal device, the identification of the second cell under the second access network device, and the second CAG The identifier, the first PLMN identifier, the context information of the terminal device, the subscription information of the terminal device, or the identifier of the core network device.
  • the PNI-NPN identified by the second CAG identifier and the first PLMN identifier is the PNI-NPN supported by the terminal device and the second cell.
  • the fifth target information includes one or more of the following information: the identification information of the terminal device, the identification of the second cell under the second access network device, the second CAG identification, the first PLMN identification, or the identification information for the terminal device Access to the configuration parameter information of the second cell.
  • the configuration parameter information may be the configuration parameter information of the SRB or DRB of the second cell.
  • the fifth target information includes one or more of the following information: the identification information of the terminal device, the identification of the third cell under the second access network device, the third CAG identification, the first PLMN identification or the The configuration parameter information for the terminal device to access the second cell.
  • the PNI-NPN identified by the third CAG identifier and the first PLMN identifier is a PNI-NPN supported by the terminal device and the third cell.
  • the sixth target information includes one or more of the following information: the identification information of the terminal device, the identification of the second cell under the second access network device, the second CAG identification, and the first PLMN identification.
  • the sixth target information includes one or more of the following information: the identification information of the terminal device, the identification of the third cell under the second access network device, the third CAG identification, and the first PLMN identification.
  • the first access network device may store PLMN identifiers supported by the cells under the second access network device.
  • the first access network device may determine the second cell under the second access network device that supports the first PLMN identity.
  • the first access network device may send at least one of the identity of the second cell, the identity of the first PLMN, the Internet context information of the terminal device, the subscription information of the terminal device, or the identity of the core device to the second access network device.
  • the second cell is a cell under the second access network device that supports the public network identified by the first PLMN identity.
  • the second access network device After the second access network device receives at least one of the identity of the second cell, the first PLMN identity, the context information of the terminal device, the subscription information of the terminal device, or the identity of the core network device, it sends the information to the first access network device Send at least one of the identity of the terminal device, the identity of the second cell, the identity of the first PLMN, and the configuration parameter information of the second cell, and send the identity of the terminal device, the identity of the second cell, and the first cell to the core network device. At least one type of information in the PLMN identity.
  • the core network device After the core network device receives at least one of the identity of the terminal device, the identity of the second cell, and the first PLMN identity, it connects the terminal device to the public network identified by the first PLMN identity of the second cell.
  • FIG. 6 is a schematic flowchart of an access control method according to an embodiment of the present application.
  • the access control method includes the following steps 601 to 606.
  • the access control method shown in FIG. 6 is an improvement of the access control method shown in FIG. 2. among them:
  • the terminal device sends a first message to the access network device.
  • the access network device sends a second message to the core network device.
  • the core network device refers to the contract information of the terminal device, and sends a third message to the access network device when the terminal device is allowed to access the network.
  • the access network device refers to the network information supported by the first cell that the terminal device requests to access and the contract information of the terminal device, and sends a fourth message to the core network device when the terminal device is not allowed to access the network.
  • step 601 to step 604 For the specific implementation manners of step 601 to step 604, reference may be made to the description in the foregoing embodiment, which will not be repeated here.
  • the fourth message may carry a reason value, and the reason value is used to indicate the reason why the terminal device fails to access the network.
  • the cause value can indicate that the cell requested by the terminal device does not support any PNI-NPN that the terminal device can access, or the terminal The cell to which the device requests access does not support the PNI-NPN identified by the first PLMN identity that the terminal device can access.
  • the cause value can indicate that the cell requested by the terminal device does not support any PNI-NPN that the terminal device can access, and the terminal device requests access The cell of does not support the public network that the terminal device can access, or the cell that the terminal device requests to access does not support the PNI-NPN and the public network identified by the first PLMN identity that the terminal device can access.
  • the cause value can indicate that the cell requested by the terminal device does not support the public network that the terminal device can access, or the terminal device requested The accessed cell does not support the public network identified by the first PLMN identity that the terminal device can access.
  • the reason value can be invalid NPN, invalid PNI-NPN, invalid CAG ID(s), invalid network, invalid PLMN, invalid PNI-NPN and PLMN, invalid NPN and PLMN, valid PLMN ID but PNI-NPN unavailable, PNI -NPN available but invalid PLMN ID, valid PLMN ID but NPN unavailable, etc.
  • the core network device sends a fifth message to the access network device.
  • the fifth message may be a UE context release command (UE context release command), a registration rejection (registration rejection) message, or an error indication (error indication) message.
  • UE context release command UE context release command
  • registration rejection registration rejection
  • error indication error indication
  • the core network device after receiving the fourth message, sends the fifth message to the access network device.
  • the fifth message carries the cause value, and the fifth message is used to notify the access network device to release the resources configured for the terminal device.
  • the access network device releases the resources configured for the terminal device.
  • the resource may be an interface resource, such as an NG port resource, or an S1 port resource.
  • the access network device sends a sixth message to the terminal device.
  • the sixth message may be an RRC release (RRC release) message.
  • the first access network device after receiving the fifth message, sends the sixth message to the terminal device.
  • the sixth message carries a reason value, and the sixth message is used to notify the terminal device to release the RRC connection.
  • the terminal device releases the RRC connection of the terminal device.
  • the sixth message is used to notify the terminal device to release air interface resources.
  • the terminal device releases the air interface (Uu port) resource of the terminal device.
  • the RRC connection of the terminal device and the resources configured for the terminal device can be released in time when the terminal device is not allowed to access the network.
  • FIG. 7 is a schematic flowchart of an access control method provided by an embodiment of the present application.
  • the access control method includes the following steps 701 to 710.
  • the access control method shown in FIG. 7 is an improvement of the access control method shown in FIG. 6.
  • the access control method shown in FIG. 7 adds step 704, step 705, step 709, and step 710. among them:
  • the core network device sends a seventh message to the access network device.
  • the seventh message may be a downlink information transport (downlink information transport) message, or an initial context setup request (initial context setup request) message.
  • the seventh message is used to indicate that the terminal device is successfully authenticated, security verified, registered, or attached.
  • step 704 may be performed when the core network device refers to the subscription information of the terminal device and allows the terminal device to access the network.
  • the core network device may first send the seventh message and then the third message, or the core network device may first send the third message and then the seventh message, or the third message and the seventh message are sent at the same time.
  • the access network device sends an eighth message to the terminal device.
  • the eighth message may be a downlink information transfer message.
  • the access network device after receiving the seventh message, sends the eighth message to the terminal device.
  • the eighth message is used to indicate that the terminal device is successfully authenticated, security verified, registered, or attached.
  • the core network device sends a ninth message to the access network device.
  • the ninth message may be a downlink information transport message, a registration reject message, an error indication message, or an initial context setup failure message.
  • the core network device after receiving the fourth message, sends the ninth message to the access network device.
  • the ninth message carries a reason value, and the ninth message indicates that the terminal device authentication fails, security verification fails, registration fails, or attachment fails.
  • the core network device can interact with other core network devices to release information such as registration of the terminal device and related resources allocated to the terminal device.
  • step 707 can be performed before step 709, or after, or simultaneously.
  • the access network device sends a tenth message to the terminal device.
  • the tenth message may be a downlink information transfer message, an RRC release (RRC release) message, a registration rejection (registration rejection) message, and an error indication (error indication) message.
  • RRC release RRC release
  • registration rejection registration rejection
  • error indication error indication
  • the access network device after receiving the ninth message, sends the tenth message to the terminal device.
  • the tenth message carries a reason value, and the tenth message indicates that the terminal device authentication fails, the security verification fails, the registration fails, or the attachment fails.
  • the terminal device After receiving the tenth message, the terminal device can execute the detach process to release the registration information.
  • the release registration information of the terminal device can be released in time when the terminal device is not allowed to access the network.
  • FIG. 8 is a schematic flowchart of an access control method provided by an embodiment of the present application. 8 The method includes the following steps 801 to 805, wherein:
  • the terminal device sends a first message to the access network device.
  • the type of the first message refer to the type of the first message in step 201 above, which will not be repeated here.
  • the first message is used to request access to the network of the first cell.
  • the first message carries the first PLMN identifier and indication information of the network that the terminal device requests to access. If the terminal device requests to access the PNI-NPN, the first PLMN identifier is the PLMN identifier of the PNI-NPN. If the terminal device requests to access the public network, the PLMN identifier is the PLMN identifier of the public network.
  • the first cell is a cell under the access network device.
  • the indication information is used to indicate that the terminal device requests to access the PNI-NPN supported by the first cell. For example, when the bit value of the indication information is 0, it indicates that the terminal device requests to access the PNI-NPN supported by the first cell. Or, when the bit value of the indication information is 1, it instructs the terminal device to request access to the PNI-NPN supported by the first cell.
  • the first message may not carry the indication information.
  • the terminal device requests to access the PNI-NPN supported by the first cell
  • the first message carries indication information. If the first message carries the indication information, the access network device sends the network information supported by the first cell to the core network device.
  • the indication information is carried in the AS information of the first message, so that the access network device can parse the indication information.
  • Sending the instruction information in the AS information not only avoids the possibility of privacy leakage caused by the CAG ID in the AS information, but also enables the access network device to decide whether to send the PNI-NPN information supported by the first cell to the core network device based on the instruction information Therefore, it is avoided that the access network device sends the PNI-NPN information supported by the first cell to the core network device even when the public network terminal device requests to access the first cell.
  • the first PLMN identity corresponds to at least two CAG identities. If the first PLMN identifier corresponds to a CAG identifier, after the illegal user steals the first PLMN identifier and the indication information, it can determine the PNI-NPN that the user wants to access based on the correspondence between the PLMN identifier and the CAG identifier. By carrying the indication information in the first message when the first PLMN identifier corresponds to at least two CAG identifiers, this can prevent illegal users from stealing that the user wants to access the PNI-NPN.
  • the first message may also carry indication information.
  • the first PLMN identity corresponds to at least two CAG identities, or the first cell supports at least two CAG identities.
  • the terminal device can carry at least two CAG identities (or the index of at least two CAG identities, or the index of at least two PNI-NPN identification information) in the AS information of the first message. Index), the indication information can be optionally carried.
  • at least one of the at least two CAG identifiers carried in the AS information is the CAG identifier corresponding to the PNI-NPN that the terminal device requests to access.
  • the first PLMN identifier corresponds to at least two CAG identifiers
  • after an illegal user steals the first PLMN identifier and at least two CAG identifiers in the first message it cannot be based on the correspondence between the PLMN identifier and multiple CAG identifiers.
  • the first PLMN identity corresponds to at least two CAG identities, or when the first cell supports at least two CAG identities, at least two CAG identities are carried in the first message, and the indication information is selectively carried, so as to avoid An illegal user steals that the user wants to access the PNI-NPN.
  • the at least two CAG identities carried in the AS information may not include the CAG identities corresponding to the PNI-NPN that any terminal device requests to access.
  • the at least two CAG identities may have indication information To instruct the terminal device to request access to the PNI-NPN supported by the first cell.
  • the PNI-NPN supported by the terminal device requesting to access the first cell may be one or more PNI-NPNs.
  • the access network device sends a second message to the core network device.
  • the second message may be an initial terminal equipment message (initial UE message).
  • the access network device after the access network device receives the first message, the access network device sends the second message to the core network device.
  • the second message carries the identity of the first PLMN and the network information supported by the first cell.
  • the first message also carries NAS information, and the NAS information carries the first CAG identifier.
  • the second message also carries NAS information, and the NAS information carries the first CAG identifier.
  • the terminal device sends the first PLMN identity and the first CAG identity to the access network device
  • the first PLMN identity and the first CAG identity may not be sent in the same message.
  • the access network device sends the first PLMN identity and the first CAG identity to the core network device
  • the first PLMN identity and the first CAG identity may not be sent in the same message.
  • neither the first message nor the second message carries the first CAG identifier. That is, the terminal device does not report the selected CAG identifier neither in the AS information nor in the NAS information.
  • the second message also carries indication information.
  • the network information supported by the first cell includes one or more of the following information: the CAG identity corresponding to the first PLMN identity supported by the first cell, or the CAG identity supported by the first cell PNI-NPN identification information, or PLMN identification supported by the first cell.
  • the access network device can send the PNI-NPN identification information 1 and PNI-NPN identification information 2 shown in Table 1 above, and the PLMN identification 1 shown in Table 3 above to the core network device.
  • PLMN identification 3 the access network device sends the CAG identity 1 to the core network device.
  • the access network device when the indication information indicates that the terminal device requests to access the PNI-NPN supported by the first cell, the access network device carries the first PLMN identity supported by the first cell in the second message The corresponding CAG identity, or the PNI-NPN identity information supported by the first cell. Through the indication information, the overhead for the access network device to send the second message to the core network device can be reduced.
  • the core network device refers to the network information supported by the first cell and the subscription information of the terminal device, and sends a third message to the access network device when the terminal device is not allowed to access the network.
  • the third message may be a UE context release command (UE context release command), a registration rejection (registration reject) message, or an error indication (error indication) message.
  • the core network device after the core network device receives the second message, it refers to the network information supported by the first cell and the subscription information of the terminal device, and sends the second message to the access network device when the terminal device is not allowed to access the network.
  • the third message is used to notify the access network device to release the resources configured for the terminal device.
  • the access network device releases the resources configured for the terminal device.
  • the resource may be an interface resource, for example, an NG port resource or an S1 port resource.
  • the core network device refers to the network information supported by the first cell and the subscription information of the terminal device to determine whether the terminal device is allowed to access the network.
  • the network-connected device sends a third message.
  • the core network device may connect the terminal device to the network.
  • the core network device can not only refer to the network information supported by the first cell and the subscription information of the terminal device, but also refer to the first PLMN identity and/or the first CAG identity and/or the indication information , To determine whether to allow the terminal device to access the network.
  • the core network equipment refers to the network information supported by the first cell and the subscription information of the terminal equipment, allowing or not allowing the terminal equipment to access the network, or the core network equipment refers to the subscription information of the terminal equipment, and the first PLMN identification and
  • the core network equipment refers to the network information supported by the first cell and the subscription information of the terminal equipment, allowing or not allowing the terminal equipment to access the network, or the core network equipment refers to the subscription information of the terminal equipment, and the first PLMN identification and
  • the core network equipment refers to the network information supported by the first cell and the subscription information of the terminal equipment, allowing or not allowing the terminal equipment to access the network
  • the core network equipment refers to the subscription information of the terminal equipment, and the first PLMN identification and
  • the access network device sends a fourth message to the terminal device.
  • the fourth message may be an RRC release (RRC release) message.
  • the access network device after receiving the third message, sends the fourth message to the terminal device.
  • the fourth message is used to notify the terminal device to release the RRC connection.
  • the terminal device releases the RRC connection.
  • the terminal device after receiving the fourth message, releases the RRC connection.
  • the fourth message is used to notify the terminal device to release air interface resources.
  • the terminal device releases the air interface (Uu port) resource of the terminal device.
  • the third message and the fourth message also carry a reason value, and the reason value is used to indicate the reason why the terminal device fails to access the network.
  • the reason value is used to indicate the reason why the terminal device fails to access the network.
  • the first message when the terminal device requests to access the PNI-NPN supported by the first cell, the first message does not carry indication information.
  • the terminal device when the terminal device does not request to access the PNI-NPN supported by the first cell, the first message carries indication information. If the first message does not carry the indication information, the access network device sends the network information supported by the first cell to the core network device. Otherwise, the access network device does not send the network information supported by the first cell to the core network device.
  • the foregoing indication information may also be used to indicate whether the terminal device requests to access the public network supported by the first cell.
  • the indication information indicates that the terminal device does not request to access the public network supported by the first cell
  • the access network device sends the network information supported by the first cell to the core network device. Otherwise, the access network device does not send the network information supported by the first cell to the core network device.
  • the terminal device may not carry the indication information in the first message when it does not request to access the public network supported by the first cell.
  • the first message carries indication information.
  • the access network device sends the network information supported by the first cell to the core network device. Otherwise, the access network device does not send the network information supported by the first cell to the core network device.
  • the terminal device may not carry the indication information in the first message when requesting to access the public network supported by the first cell.
  • the first message carries the indication information.
  • the access network device sends the network information supported by the first cell to the core network device. Otherwise, the access network device does not send the network information supported by the first cell to the core network device.
  • the access network device can send the network information supported by the cell to the core network device, so that the core network device can perform access control on the terminal device based on the network information supported by the cell, which is conducive to the access of the terminal device. Enter the correct neighborhood.
  • the core network equipment refers to the network information supported by the first cell and the contract information of the terminal equipment, the conditions that the terminal equipment is allowed or not allowed to access the network, and the access network equipment refers to the first cell support
  • the network information and the contract information of the terminal equipment, the permission or disallowance of the terminal equipment to access the network will be introduced.
  • the subscription information of the terminal device includes one or more of the following information: the identification information of the PNI-NPN that the terminal device can access, the PLMN identification that the terminal device can access, or an indication of whether the terminal device can only access the network through the CAG cell ;
  • the network information supported by the first cell includes one or more of the following information: the CAG identity corresponding to the first PLMN identity supported by the first cell, or the PNI-NPN identity information supported by the first cell, or PLMN identity supported by the first cell.
  • the core network equipment refers to the network information supported by the first cell and the contract information of the terminal equipment, and the situations in which the terminal equipment is not allowed to access the network include one or more of the following three situations a1 to a3:
  • the contract information indicates that when the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, the first cell does not support the PNI-NPN that the terminal device can access or the PNI-NPN identification information that the terminal device can access is air.
  • the first cell does not support the PNI-NPN that the terminal device can access or the PNI-NPN identification information that the terminal device can access is empty, and the first cell A cell that does not support the public network identified by the first PLMN identity or the PLMN identity that the terminal device can access does not include the first PLMN identity.
  • the first cell does not support the public network identified by the first PLMN identity or the PLMN identity accessible to the terminal device does not include the first cell A PLMN logo.
  • the core network device refers to the network information supported by the first cell and the subscription information of the terminal device, and the conditions for allowing the terminal device to access the network include one or more of the following three situations b1 to b3:
  • the contract information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, and the first cell supports the PNI-NPN that the terminal device can access.
  • the contract information indicates that when the terminal device can access the network through the CAG cell and public network cell, the first cell supports the PNI-NPN that the terminal device can access; or the contract information indicates that the terminal device can access the network through the CAG cell and public network cell At this time, the first cell supports the public network identified by the first PLMN identity, and the PLMN identity that can be accessed by the terminal device includes the first PLMN identity.
  • the first cell supports the public network identified by the first PLMN identity, and the PLMN identity that the terminal device can access includes the first PLMN identification.
  • the core network equipment refers to the network information supported by the first cell and the subscription information of the terminal equipment, and the terminal equipment is not allowed to access the network.
  • the subscription information indicates that when the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, the first cell does not support the first PLMN identity and the first PNI-NPN identified by the first CAG identity, or the first PNI -NPN is not a PNI-NPN that can be accessed by terminal devices.
  • the subscription information indicates that the terminal device can access the network through CAG cells and public network cells, and the first cell does not support the first PNI-NPN identified by the first CAG identity and the first PLMN identity, or the first PNI-NPN is not In the case of the PNI-NPN accessible by the terminal device, the first cell does not support the public network identified by the first PLMN identity or the PLMN identity accessible by the terminal device does not include the first PLMN identity.
  • the core network device refers to the network information supported by the first cell and the subscription information of the terminal device, and the conditions for allowing the terminal device to access the network include one or more of the following three situations b1 to b3:
  • the subscription information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell.
  • the first cell supports the first PNI-NPN identified by the first CAG identity and the first PLMN identity, and the first PNI-NPN It is a PNI-NPN that can be accessed by terminal equipment.
  • the subscription information indicates that when the terminal device can access the network through the CAG cell and the public network cell, the first cell supports the first PNI-NPN, and the first PNI-NPN is the PNI-NPN that the terminal device can access; or, the subscription information When indicating that the terminal device can access the network through the CAG cell and the public network cell, the first cell supports the public network identified by the first PLMN identity, and the PLMN identity that the terminal device can access includes the first PLMN identity.
  • the situations in which terminal devices are not allowed to access the network include one or more of the following situations:
  • the first cell does not support the PNI-NPN identified by the first PLMN identity that the terminal device can access, or the terminal device can access the network.
  • the accessed PNI-NPN identification information does not include the first PLMN identification.
  • the subscription information indicates that the terminal device can access the network through the CAG cell and the public network cell.
  • the first cell does not support the PNI-NPN identified by the first PLMN identity that the terminal device can access, or the PNI- that the terminal device can access.
  • the first PLMN identity does not exist in the NPN identity information
  • the first cell does not support the public network identified by the first PLMN identity or the PLMN identity that can be accessed by the terminal device does not include the first PLMN identity.
  • the core network device refers to the network information supported by the first cell and the subscription information of the terminal device, and the conditions for allowing the terminal device to access the network include one or more of the following three situations b1 to b3:
  • the contract information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, and the first cell supports the PNI-NPN identified by the first PLMN identifier that the terminal device can access, and the terminal device can access the network.
  • the imported PNI-NPN identification information includes the first PLMN identification.
  • the subscription information indicates that when the terminal device can access the network through the CAG cell and the public network cell, the first cell supports the PNI-NPN identified by the first PLMN identity that the terminal device can access, and the PNI- that the terminal device can access
  • the NPN identification information includes the first PLMN identification.
  • the subscription information indicates that the terminal device can access the network through the CAG cell and the public network cell
  • the first cell supports the public network identified by the first PLMN identity
  • the PLMN identity that the terminal device can access includes the first PLMN identity.
  • FIG. 9 is a schematic flowchart of an access control method provided by an embodiment of the present application. As shown in FIG. 9, the access control method includes the following steps 901 to 905, where:
  • the access network device sends network information supported by the cell under the access network device to the core network device.
  • the access network device may send the network information supported by the cell under the access network device to the core network device when the NG interface is established or updated.
  • the network information supported by the cell under the access network device may be carried in an NG setup request (NG setup request) message and a RAN configuration update (RAN Configuration update) message.
  • the network information supported by the cell under the access network device includes one or more of the following information: cell identification information, PNI-NPN identification information corresponding to the cell, PLMN identification corresponding to the cell, and the location where the cell is located. Tracing Area Code (TAC).
  • the cell identification information may be a cell identity (cell identity), a global cell identification code (CGI), or a physical cell identifier (PCI).
  • the PNI-NPN identification information may include a PLMN identification and/or a CAG identification. For example, if the access network device includes cell 1 and cell 2, the access network device can send to the core network device: the identity of cell 1, the PNI-NPN identity information corresponding to cell 1, the PLMN identity corresponding to cell 1, and cell 2. , The PNI-NPN identity information corresponding to cell 2, and the PLMN identity corresponding to cell 2.
  • the core network device may also send the cell under the core network device or the available network information of the cell under the access network device to the access network device.
  • the core network device may also send the cell under the core network device or the available network information of the cell under the access network device to the access network device.
  • the NG interface establishment response (NG setup response) message AMF configuration update (AMF configuration update) message.
  • the available network information of the cell under the core network device or the cell under the access network device includes one or more of the following information: cell identification information, PNI-NPN identification information corresponding to the cell, PLMN identification corresponding to the cell, and where the cell is located TAC.
  • the core network device can send to the access network device: the identity of cell 3, the PNI-NPN identity information corresponding to cell 3, the PLMN identity corresponding to cell 3, and the identity of cell 4 Identification, PNI-NPN identification information corresponding to cell 4, and PLMN identification corresponding to cell 4.
  • the terminal device sends a first message to the access network device.
  • the access network device For the types of the first message and the second message, refer to the description in the embodiment corresponding to FIG. 2, which is not repeated here.
  • the first message carries the first PLMN identifier of the PNI-NPN that the terminal device requests to access.
  • the access network device sends a second message to the core network device.
  • the access network device after receiving the first message, sends a second message to the core network device.
  • the second message carries the first PLMN identity.
  • step 902 and step 903 please refer to the specific implementation manners of step 201 and step 202 described above, which will not be repeated here.
  • the core network device refers to the network information supported by the first cell that the terminal device requests to access and the contract information of the terminal device, and sends a third message to the access network device when the terminal device is not allowed to access the network.
  • the third message may be a UE context release command (UE context release command), a registration rejection (registration rejection) message, or an error indication (error indication) message.
  • the core network device after the core network device receives the second message, it refers to the network information supported by the first cell that the terminal device requests to access and the subscription information of the terminal device, and when the terminal device is not allowed to access the network, The access network device sends a third message.
  • the third message is used to notify the access network device to release the resources configured for the terminal device.
  • the access network device releases the resources configured for the terminal device.
  • the resource may be an interface resource, such as an NG port resource, or an S1 port resource.
  • the access network device sends a fourth message to the terminal device.
  • the fourth message may be an RRC release (RRC release) message.
  • the access network device after receiving the third message, sends a fourth message to the terminal device, and the fourth message is used to notify the terminal device to release the RRC connection. After receiving the fourth message, the terminal device releases the RRC connection.
  • the sixth message is used to notify the terminal device to release air interface resources. After receiving the sixth message, the terminal device releases the air interface (Uu port) resource of the terminal device.
  • the third message and the fourth message also carry a reason value, and the reason value is used to indicate the reason why the terminal device fails to access the network.
  • the reason value is used to indicate the reason why the terminal device fails to access the network.
  • the core network equipment refers to the network information supported by the first cell and the subscription information of the terminal equipment, allowing or not allowing the terminal equipment to access the network, or the core network equipment refers to the subscription information of the terminal equipment, and the first PLMN identification and
  • the core network equipment refers to the network information supported by the first cell and the subscription information of the terminal equipment, allowing or not allowing the terminal equipment to access the network, or the core network equipment refers to the subscription information of the terminal equipment, and the first PLMN identification and
  • the core network equipment refers to the network information supported by the first cell and the subscription information of the terminal equipment, allowing or not allowing the terminal equipment to access the network
  • the core network equipment refers to the subscription information of the terminal equipment, and the first PLMN identification and
  • FIG. 10 shows a schematic structural diagram of a communication device according to an embodiment of the present application.
  • the communication device shown in FIG. 10 may be used to perform part or all of the functions of the access network device in the method embodiment described in FIG. 8. Or, the communication device may be used to perform part or all of the functions of the access network device in the method embodiment described in FIG. 8.
  • the device may be an access network device, a device in an access network device, or a device that can be matched and used with the access network device.
  • the communication device may also be a chip system.
  • the communication device shown in FIG. 10 may include a receiving unit 1001 and a sending unit 1002. among them:
  • the receiving unit 1001 is used for the access network device to receive a first message sent by the terminal device, the first message carrying the first public land mobile network PLMN identification and indication information of the network that the terminal device requests to access, and the indication information is used to indicate the terminal device Request access to the non-public network PNI-NPN of public network convergence supported by the first cell;
  • the sending unit 1002 is configured to send a second message to the core network device, the second message carrying the first PLMN identifier and the information supported by the first cell Network information;
  • the receiving unit 1001 is also used to receive a third message sent by the core network device, the third message is used to notify the access network device to release the resources configured for the terminal device;
  • the sending unit 1002 is also used to send the first message to the terminal device Four messages, the fourth message is used to notify the terminal equipment to release the radio resource control RRC connection.
  • the network information supported by the first cell includes one or more of the following information: the closed access group CAG identity corresponding to the first PLMN identity supported by the first cell, or the first The PNI-NPN identification information supported by the cell, or the PLMN identification supported by the first cell; the PNI-NPN identification information includes the PLMN identification and the CAG identification.
  • the second message also carries indication information.
  • the third message and the fourth message also carry a reason value, and the reason value is used to indicate the reason why the terminal device fails to access the network.
  • FIG. 10 shows a schematic structural diagram of a communication device according to an embodiment of the present application.
  • the communication device shown in FIG. 10 may be used to perform part or all of the functions of the core network device in the method embodiment described in FIG. 8. Or, the communication device may be used to perform part or all of the functions of the core network device in the method embodiment described in FIG. 8.
  • the device may be a core network device, a device in a core network device, or a device that can be matched and used with the core network device.
  • the communication device may also be a chip system.
  • the communication device shown in FIG. 10 may include a receiving unit 1001 and a sending unit 1002. among them:
  • the receiving unit 1001 is configured to receive a second message sent by the access network device, the second message carrying the first public land mobile network PLMN identifier of the network that the terminal device requests to access and the network information supported by the first cell; the sending unit 1002 , Used to refer to the network information supported by the first cell and the subscription information of the terminal device, and to send a third message to the access network device when the terminal device is not allowed to access the network, and the third message is used to notify the access network The device releases the resources configured for the terminal device.
  • the network information supported by the first cell includes one or more of the following information: the closed access group CAG identity corresponding to the first PLMN identity supported by the first cell, or the first The PNI-NPN identification information supported by the cell, or the PLMN identification supported by the first cell; the PNI-NPN identification information includes the PLMN identification and the CAG identification.
  • the subscription information of the terminal device includes one or more of the following information: the public network converged non-public network PNI-NPN identification information that the terminal device can access, and the PLMN that the terminal device can access An indication of whether the identity or terminal equipment can only access the network through the CAG cell of the closed access group.
  • the terminal device when the terminal device is not allowed to access the network, one or more of the following situations: when the contract information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, first The cell does not support the PNI-NPN that can be accessed by the terminal device or the PNI-NPN identification information that the terminal device can access is empty; or the contract information indicates that the terminal device can access the network through the CAG cell and the public network cell, and the first cell does not Support the PNI-NPN that can be accessed by the terminal device or when the identification information of the PNI-NPN that can be accessed by the terminal device is empty, the first cell does not support the public network identified by the first PLMN identity or the PLMN that can be accessed by the terminal device Does not include the first PLMN identity; or, when the contract information indicates that the terminal device can access the network through the public network cell and cannot access the network through the CAG cell, the first cell does not support the public network identified by the first PLMN identity or the
  • one or more of the following situations is not allowed for terminal equipment to access the network:
  • the first cell does not support the first PNI-NPN or the first PNI-NPN identified by the first CAG identity and the first PLMN identity It is not a PNI-NPN that can be accessed by the terminal device; or, the contract information indicates that the terminal device can access the network through the CAG cell and the public network cell, and the first cell does not support the first PNI-NPN, or the first PNI-NPN is not
  • the terminal device can access the PNI-NPN
  • the first cell does not support the public network identified by the first PLMN ID or the PLMN ID that the terminal device can access does not include the first PLMN ID; or, the subscription information indicates that the terminal device can When accessing the network through a public network cell and cannot access the network through a CAG cell, the first cell does not support the public network identified by the first PLMN identification or the PLMN identification accessible to the terminal device does not include the first PLM
  • the situation where the terminal device is not allowed to access the network includes one or more of the following situations:
  • the first cell does not support the PNI-NPN identified by the first PLMN identifier that the terminal device can access, or the terminal device can access the network
  • the PNI-NPN identity information does not include the first PLMN identity, or the contract information indicates that the terminal device can access the network through the CAG cell and the public network cell, and the first cell does not support the terminal device accessible by the first PLMN identity.
  • the first cell does not support the public network identified by the first PLMN identification or the PLMN identification accessible by the terminal device Does not include the first PLMN identity; or, the contract information indicates that the terminal device can access the network through the public network cell and cannot access the network through the CAG cell, and the first cell does not support the public network identified by the first PLMN identity or that the terminal device can access the network.
  • the imported PLMN identity does not include the first PLMN identity.
  • the third message also carries a reason value, and the reason value is used to indicate the reason why the terminal device fails to access the network.
  • the second message also carries indication information, which is used to indicate whether the terminal device requests to access the public network converged non-public network PNI-NPN supported by the first cell.
  • FIG. 11 shows a schematic structural diagram of a communication device according to an embodiment of the present application.
  • the communication device shown in FIG. 11 may be used to perform part or all of the functions of the terminal device in the method embodiment described in FIG. 8. Or, the communication device may be used to perform part or all of the functions of the terminal device in the method embodiment described in FIG. 8.
  • the device may be a terminal device, a device in a terminal device, or a device that can be matched and used with the terminal device.
  • the communication device may also be a chip system.
  • the communication device shown in FIG. 11 may include a receiving unit 1101, a sending unit 1102, and a processing unit 1103. among them:
  • the sending unit 1102 is configured to send a first message to the access network device, the first message carrying the first public land mobile network PLMN identification and indication information of the network that the terminal device requests to access, and the indication information is used to instruct the terminal device to request access
  • the fourth message carries a reason value
  • the reason value is used to indicate the reason why the terminal device fails to access the network.
  • the first PLMN identity corresponds to at least two CAG identities of the closed access group.
  • FIG. 10 shows a schematic structural diagram of a communication device according to an embodiment of the present application.
  • the communication device shown in FIG. 10 may be used to perform part or all of the functions of the access network device in the method embodiments described in FIG. 2 to FIG. 7.
  • the device may be an access network device, a device in an access network device, or a device that can be matched and used with the access network device.
  • the communication device may also be a chip system.
  • the communication device shown in FIG. 10 may include a receiving unit 1001 and a sending unit 1002. among them:
  • the receiving unit 1001 is configured to receive a first message sent by a terminal device, the first message carrying the first public land mobile network PLMN identifier of the public network-converged non-public network PNI-NPN that the terminal device requests to access; the sending unit 1002, It is used to send a second message to the core network device, the second message carrying the first PLMN identifier; the receiving unit 1001 is also used to receive a third message sent by the core network device, the third message carrying the subscription information of the terminal device; The unit 1002 is also used to refer to the network information supported by the first cell that the terminal device requests to access and the subscription information of the terminal device, and to send a fourth message to the core network device when the terminal device is not allowed to access the network. The fourth message is used to indicate that the terminal device fails to access the network.
  • the contract information of the terminal device includes the PNI-NPN identification information of the public network converged non-public network that the terminal device can access, and/or whether the terminal device can only access the network through the CAG cell of the closed access group
  • the network information supported by the first cell includes PNI-NPN identification information and/or PLMN identification;
  • PNI-NPN identification information includes PLMN identification and CAG identification;
  • the situation where the terminal device is not allowed to access the network includes one or more of the following situations:
  • the contract information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, and the first cell does not support the PNI-NPN that the terminal device can access; or the contract information indicates that the terminal device can access the CAG cell and the public network
  • the cell accesses the network, and the first cell does not support the public network identified by the first PLMN identity, and the first cell does not support the PNI-NPN that the terminal device can access; or the contract information indicates that the terminal device can access the network through the public network cell And the network cannot be accessed through the CAG cell, and the first cell does not support the public network identified by the first PLMN identity.
  • the NAS information of the first message and the second message also carries the CAG identifier of the first closed access group
  • the third message also carries the first CAG identifier.
  • the situations in which the terminal device is not allowed to access the network include One or more of the following situations: the subscription information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, and the first CAG identifier and the first PLMN identifier that are not supported by the first cell A PNI-NPN; or, the subscription information indicates that the terminal device can access the network through the CAG cell and the public network cell, and the first cell does not support the public network identified by the first PLMN identity, and the first PNI- which the first cell does not support NPN; or, the contract information indicates that the terminal device can access the network through the public network cell and cannot access the network through the CAG cell, and the first cell does not support the public network identified by the first PLMN identity.
  • the situation that the terminal device is not allowed to access the network includes one or more of the following situations: the contract information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, and the first A cell does not support the PNI-NPN identified by the first PLMN identity that the terminal device can access; or the contract information indicates that the terminal device can access the network through the CAG cell and the public network cell, and the first cell does not support the first PLMN identity
  • the identified public network, and the first cell does not support the PNI-NPN identified by the first PLMN identification that the terminal device can access; or the contract information indicates that the terminal device can access the network through the public network cell and cannot access the CAG cell Network, and the first cell does not support the public network identified by the first PLMN identity.
  • the fourth message also carries a reason value, and the reason value is used to indicate the reason why the terminal device fails to access the network.
  • the receiving unit 1001 is further configured to receive a fifth message sent by the core network device, the fifth message carrying a cause value, and the fifth message is used to notify the access network device to release resources configured for the terminal device
  • the sending unit 1002 is also used to send a sixth message to the terminal device, the sixth message carries a cause value, and the sixth message is used to notify the terminal device to release the RRC connection.
  • the receiving unit 1001 is further configured to receive a seventh message sent by the core network device, the seventh message indicating that the terminal device is successfully authenticated, successfully verified, registered, or attached; the sending unit 1002 , Is also used to send an eighth message to the terminal device, the eighth message indicating that the terminal device is successfully authenticated, successfully verified, registered, or attached; the receiving unit 1001 is also used to receive a ninth message sent by the core network device , The ninth message carries the reason value, the ninth message indicates that the terminal device authentication failure, security verification failure, registration failure, or attachment failure; the sending unit 1002 is also used to send a tenth message to the terminal device, the tenth message carrying the reason value , The tenth message indicates that the terminal device authentication fails, the security verification fails, the registration fails, or the attachment fails.
  • FIG. 10 shows a schematic structural diagram of a communication device according to an embodiment of the present application.
  • the communication device shown in FIG. 10 may be used to perform part or all of the functions of the core network device in the method embodiments described in FIG. 2 to FIG. 7. Or, the communication device may be used to perform part or all of the functions of the core network device in the method embodiments described in FIG. 2 to FIG. 7.
  • the device may be a core network device, a device in a core network device, or a device that can be matched and used with the core network device.
  • the communication device may also be a chip system.
  • the communication device shown in FIG. 10 may include a receiving unit 1001 and a sending unit 1002. among them:
  • the receiving unit 1001 is configured to receive a second message sent by the access network device, the second message carrying the first public land mobile network PLMN identification of the public network-converged non-public network PNI-NPN that the terminal device requests to access; the sending unit 1002, used to refer to the subscription information of the terminal device, and when the terminal device is allowed to access the network, send a third message to the access network device, the third message carrying the subscription information of the terminal device; the receiving unit 1001 is also used to receive The fourth message sent by the access network device, where the fourth message is used to indicate that the terminal device fails to access the network.
  • the subscription information of the terminal device includes one or more of the following information: the PNI-NPN identification information that the terminal device can access, the PLMN identification that the terminal device can access, or whether the terminal device is only The indication of access to the network through the CAG cell of the closed access group; the PNI-NPN identification information includes the PLMN identification and the CAG identification.
  • the circumstances in which the terminal device is allowed to access the network include one or more of the following situations: the contract information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell.
  • the PNI-NPN identification information is not empty; or, when the contract information indicates that the terminal device can access the network through the CAG cell and the public network cell, the first PLMN identification exists in the PLMN identification of the terminal device, or the PNI-NPN identification information of the terminal device is not empty. Is empty; or, the contract information indicates that the terminal device can access the network through the public network cell and cannot access the network through the CAG cell, and the first PLMN identifier exists in the PLMN identifier of the terminal device.
  • the situation where the terminal device is allowed to access the network includes one or more of the following situations:
  • the subscription information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, and the first CAG identifier and the first PNI-NPN identified by the first PLMN are the PNI-NPN that the terminal device can access; or, the contract
  • the information indicates that when the terminal device can access the network through the CAG cell and the public network cell, the first PLMN identity exists in the PLMN identity of the terminal device, or the first PNI-NPN is the PNI-NPN that the terminal device can access; or, the subscription information indicates The terminal device can access the network through the public network cell but cannot access the network through the CAG cell, and the first PLMN identity exists in the PLMN identity of the terminal device.
  • the situation where the terminal device is allowed to access the network includes one or more of the following situations:
  • the contract information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, and the PNI-NPN identification information of the terminal device contains the first PLMN identity; or the contract information indicates that the terminal device can access the CAG cell and the public network cell
  • the first PLMN identity is present in the PLMN identity of the terminal device, or the first PLMN identity is present in the PNI-NPN identity information of the terminal device; or the contract information indicates that the terminal device can access the network through the public network cell and cannot pass the CAG
  • the cell accesses the network, and the first PLMN identity exists in the PLMN identity of the terminal device.
  • the fourth message also carries a reason value, and the reason value is used to indicate the reason why the terminal device fails to access the network.
  • the sending unit 1002 is further configured to send a fifth message to the access network device, where the fifth message carries a cause value, and the fifth message is used to notify the access network device to release the configuration for the terminal device. Resources.
  • the sending unit 1002 is further configured to send a seventh message to the access network device, the seventh message indicating that the terminal device is successfully authenticated, successfully verified, registered, or attached;
  • the sending unit 1002 is further configured to send a ninth message to the access network device, where the ninth message carries a reason value, and the ninth message indicates that the terminal device has failed authentication, security verification, registration failure, or attachment failure.
  • FIG. 10 shows a schematic structural diagram of a communication device according to an embodiment of the present application.
  • the communication device shown in FIG. 10 may be used to perform part or all of the functions of the access network device in the method embodiments described in FIG. 2 to FIG. 7. Or, the communication device may be used to perform part or all of the functions of the access network device in the method embodiments described in Figs. 2 to 7 above.
  • the device may be an access network device, a device in an access network device, or a device that can be matched and used with the access network device.
  • the communication device may also be a chip system.
  • the communication device shown in FIG. 10 may include a receiving unit 1001 and a sending unit 1002. among them:
  • the receiving unit 1001 is configured to receive a first message sent by a terminal device, the first message carrying the first public land mobile network PLMN identifier of the public network-converged non-public network PNI-NPN that the terminal device requests to access; the sending unit 1002 uses To send a second message to the core network device, the second message carries the first PLMN identifier; the receiving unit 1001 is also used to receive a third message sent by the core network device, the third message carries the subscription information of the terminal device; the sending unit 1002, It is also used to refer to the network information supported by the first cell that the terminal device requests to access and the contract information of the terminal device, and when the terminal device is allowed to access the network, send to the core network device to indicate that the terminal device has successfully accessed the network News.
  • the subscription information of the terminal device includes the PNI-NPN identification information that the terminal device can access, and/or the indication of whether the terminal device can only access the network through the CAG cell of the closed access group;
  • Supported network information includes PNI-NPN identification information and/or PLMN identification;
  • PNI-NPN identification information includes PLMN identification and CAG identification.
  • the situation that the terminal device is allowed to access the network includes one or more of the following situations: the subscription information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, and the first The cell supports the PNI-NPN that the terminal device can access; or, when the contract information indicates that the terminal device can access the network through the CAG cell and public network cell, the first cell supports the public network identified by the first PLMN identity and the PLMN identity of the terminal device There is a first PLMN identity in the first cell, or the first cell supports the PNI-NPN that the terminal device can access; or, the contract information indicates that the terminal device can access the network through the public network cell and cannot access the network through the CAG cell, and the first cell supports the first cell A public network identified by a PLMN identity.
  • the NAS information of the first message and the second message also carries the first closed access group CAG identifier, and the third message also carries the first CAG identifier;
  • the conditions for allowing terminal equipment to access the network include the following One or more of the situations: the subscription information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, and the first cell supports the first CAG identifier and the first PNI identified by the first PLMN identifier.
  • the first cell supports the public network identified by the first PLMN identity and the first PLMN identity exists in the PLMN identity of the terminal device, or the first The cell supports the first PNI-NPN and the first PNI-NPN is the PNI-NPN that the terminal device can access; or, the contract information indicates that the terminal device can access the network through the public network cell and cannot access the network through the CAG cell, and the first cell Support the public network identified by the first PLMN identifier.
  • the situation where the terminal device is allowed to access the network includes one or more of the following situations:
  • the subscription information indicates that the terminal device can access the network through the CAG cell but cannot access the network through the public network cell, and the first cell supports the PNI-NPN identified by the first PLMN identifier that the terminal device can access; or, the subscription information indicates the terminal device
  • the first cell supports the public network identified by the first PLMN identity and the first PLMN identity exists in the PLMN identity of the terminal device, or the first cell supports the network accessible by the terminal device.
  • the PNI-NPN identified by the first PLMN identifier; or, the contract information indicates that the terminal device can access the network through the public network cell but cannot access the network through the CAG cell, and the first cell supports the public network identified by the first PLMN identifier.
  • FIG. 10 shows a schematic structural diagram of a communication device according to an embodiment of the present application.
  • the communication device shown in FIG. 10 may be used to perform part or all of the functions of the access network device in the method embodiment described in FIG. 9. Or, the communication device may be used to perform part or all of the functions of the access network device in the method embodiment described in FIG. 9 above.
  • the device may be an access network device, a device in an access network device, or a device that can be matched and used with the access network device.
  • the communication device may also be a chip system.
  • the communication device shown in FIG. 10 may include a receiving unit 1001 and a sending unit 1002. among them:
  • the sending unit 1002 is configured to send network information supported by the cell under the access network device to the core network device; the receiving unit 1001 is configured to receive a first message sent by the terminal device, the first message carrying the terminal device requesting access The first public land mobile network PLMN identity of the network-converged non-public network PNI-NPN; the sending unit 1002 is further configured to send a second message to the core network device, the second message carrying the first public land mobile network PLMN identity; The unit 1001 is also used to receive a third message sent by the core network device, and the third message is used to notify the access network device to release the resources configured for the terminal device; the sending unit 1002 is also used to send a fourth message to the terminal device, The fourth message is used to notify the terminal device to release the RRC connection.
  • the network information supported by the cell under the access network device includes one or more of the following information: cell identification, PNI-NPN identification information corresponding to the cell, PLMN identification corresponding to the cell; PNI-NPN identification The information includes the PLMN identification and the CAG identification of the closed access group.
  • the third message and the fourth message also carry a reason value, and the reason value is used to indicate the reason why the terminal device fails to access the network.
  • the receiving unit 1001 is further configured to receive network information supported by the cell under the core network device sent by the core network device.
  • FIG. 10 shows a schematic structural diagram of a communication device according to an embodiment of the present application.
  • the communication device shown in FIG. 10 may be used to perform part or all of the functions of the core network device in the method embodiment described in FIG. 9. Or the communication device may be used to perform part or all of the functions of the core network device in the method embodiment described in FIG. 9 above.
  • the device may be a core network device, a device in a core network device, or a device that can be matched and used with the core network device.
  • the communication device may also be a chip system.
  • the communication device shown in FIG. 10 may include a receiving unit 1001 and a sending unit 1002. among them:
  • the receiving unit 1001 is configured to receive network information supported by the cell under the access network device sent by the access network device;
  • the receiving unit 1001 is further configured to receive a second message sent by the access network device, the second message carrying the first public land mobile network PLMN identifier of the public network converged non-public network PNI-NPN that the terminal device requests to access;
  • the sending unit 1002 is configured to refer to the network information supported by the first cell that the terminal device requests to access and the contract information of the terminal device, and send a third message to the access network device when the terminal device is not allowed to access the network, The third message is used to notify the access network device to release the resources configured for the terminal device.
  • the network information supported by the cell under the access network device includes one or more of the following information: cell identification, PNI-NPN identification information corresponding to the cell; PLMN identification corresponding to the cell; PNI-NPN identification The information includes the PLMN identification and the CAG identification of the closed access group.
  • the subscription information of the terminal device includes one or more of the following information: the PNI-NPN identification information that the terminal device can access, the PLMN identification that the terminal device can access, or whether the terminal device is only An indication that the network can be accessed through the CAG cell of the closed access group;
  • the network information supported by the first cell includes one or more of the following information: PNI-NPN identification information or PLMN identification supported by the first cell.
  • one or more of the following situations is not allowed for terminal equipment to access the network:
  • the subscription information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell
  • the first cell does not support the PNI-NPN that the terminal device can access or the PNI-NPN identification information of the terminal device is empty; or, the contract The information indicates that when the terminal device can access the network through the CAG cell and the public network cell, the first cell does not support the PNI-NPN that the terminal device can access or the PNI-NPN identification information of the terminal device is empty, and the first cell does not support the first cell.
  • the first PLMN identity does not exist in the PLMN identity of the public network or terminal device identified by the PLMN identity; or, when the contract information indicates that the terminal device can access the network through the public network cell and cannot access the network through the CAG cell, the first cell does not support the first cell.
  • the first PLMN identity does not exist in the PLMN identity of the public network or terminal equipment identified by a PLMN identity.
  • the terminal device when the terminal device is not allowed to access the network, one or more of the following situations: when the contract information indicates that the terminal device can access the network through the CAG cell and cannot access the network through the public network cell, first The cell does not support the first CAG identifier and the first PNI-NPN identified by the first PLMN identifier, or the first PNI-NPN is not a PNI-NPN that the terminal device can access; or, the subscription information indicates that the terminal device can pass the CAG cell
  • the first cell when accessing the network with a public network cell, the first cell does not support the first PNI-NPN, or the first PNI-NPN is not a PNI-NPN that can be accessed by the terminal device, and the first cell does not support the first PLMN identification
  • the first PLMN identity does not exist in the PLMN identity of the public network or terminal device; or, when the contract information indicates that the terminal device can access the network through the public network cell and cannot access the network through the CAG cell, the first cell
  • the situation where the terminal device is not allowed to access the network includes one or more of the following situations:
  • the first cell does not support the PNI-NPN identified by the first PLMN identity that the terminal device can access, or the PNI-NPN of the terminal device.
  • the first PLMN identity does not exist in the NPN identity information, or,
  • the first cell does not support the PNI-NPN identified by the first PLMN identification that the terminal device can access, or the PNI-NPN identification information of the terminal device
  • the first PLMN identity does not exist, and the first cell does not support the public network or terminal equipment identified by the first PLMN identity.
  • the first PLMN identity does not exist in the PLMN identity; or,
  • the subscription information indicates that the terminal device can access the network through the public network cell and cannot access the network through the CAG cell, and the first cell does not support the public network identified by the first PLMN identifier or the first PLMN identifier does not exist in the PLMN identifier of the terminal device.
  • the third message also carries a reason value, and the reason value is used to indicate the reason why the terminal device fails to access the network.
  • the sending unit 1002 is further configured to send network information supported by the cell under the core network device to the access network device.
  • a communication device 120 provided by an embodiment of the application is used to implement the functions of terminal equipment/access network equipment/core network equipment in the foregoing method.
  • the device may be terminal equipment/access network equipment/core network equipment, or a device for terminal equipment/access network equipment/core network equipment.
  • the terminal device may be a mobile phone, a wearable device, or a tablet computer.
  • the device for terminal equipment/access network equipment/core network equipment may be a chip system or chip in the terminal equipment. Among them, the chip system can be composed of chips, and can also include chips and other discrete devices.
  • the apparatus 120 includes at least one processor 1212, configured to implement the data processing function of the first terminal device in the method provided in the embodiment of the present application.
  • the apparatus 120 may further include a communication interface 1210, which is used to implement the receiving and sending operations of the terminal equipment/access network equipment/core network equipment in the method provided in the embodiment of the present application.
  • the communication interface may be a transceiver, circuit, bus, module, or other type of communication interface, which is used to communicate with other devices through a transmission medium.
  • the communication interface 1210 is used for the device in the device 120 to communicate with other devices.
  • the processor 1212 uses the communication interface 1210 to send and receive data, and is used to implement the method described in the foregoing method embodiment.
  • the device 120 may also include at least one memory 1230 for storing program instructions and/or data.
  • the memory 1230 and the processor 1212 are coupled.
  • the coupling in the embodiments of the present application is an indirect coupling or communication connection between devices, units or modules, and may be in electrical, mechanical or other forms, and is used for information exchange between devices, units or modules.
  • the processor 1212 may cooperate with the memory 1230 to operate.
  • the processor 1212 may execute program instructions stored in the memory 1230. At least one of the at least one memory may be included in the processor.
  • connection medium between the aforementioned communication interface 1210, the processor 1212, and the memory 1230 is not limited in the embodiment of the present application.
  • the memory 1230, the communication interface 1212, and the communication interface 1210 are connected by a bus 1240.
  • the bus is represented by a thick line in FIG. 12a.
  • the connection mode between other components is only for schematic illustration. , Is not limited.
  • the bus can be divided into an address bus, a data bus, a control bus, and so on. For ease of representation, only one thick line is used to represent in FIG. 12a, but it does not mean that there is only one bus or one type of bus.
  • the communication interface 1210 may output or receive a baseband signal.
  • the apparatus 120 is specifically a terminal device, what the communication interface 1210 outputs or receives may be a radio frequency signal.
  • the processor may be a general-purpose processor, a digital signal processor, an application specific integrated circuit, a field programmable gate array or other programmable logic device, a discrete gate or transistor logic device, or a discrete hardware component, which may implement or Perform the methods, steps, and logical block diagrams disclosed in the embodiments of the present application.
  • the general-purpose processor may be a microprocessor or any conventional processor or the like.
  • the steps of the method disclosed in the embodiments of the present application may be directly embodied as being executed and completed by a hardware processor, or executed and completed by a combination of hardware and software modules in the processor.
  • FIG. 12b is a schematic structural diagram of another terminal device 1200 provided in an embodiment of the application.
  • the terminal device can perform the operations performed by the terminal device in the foregoing method embodiment.
  • FIG. 12b only shows the main components of the terminal device.
  • the terminal device 1200 includes a processor, a memory, a radio frequency circuit, an antenna, and an input and output device.
  • the processor is mainly used to process the communication protocol and communication data, and to control the entire terminal device, execute the software program, and process the data of the software program, for example, to support the terminal device to execute the processes described in FIGS. 3-7.
  • the memory is mainly used to store software programs and data.
  • the radio frequency circuit is mainly used for the conversion of baseband signal and radio frequency signal and the processing of radio frequency signal.
  • the antenna is mainly used to send and receive radio frequency signals in the form of electromagnetic waves.
  • the terminal device 1200 may also include input and output devices, such as a touch screen, a display screen, a keyboard, etc., which are mainly used to receive data input by the user and output data to the user. It should be noted that some types of terminal devices may not have input and output devices.
  • the processor can read the software program in the storage unit, interpret and execute the software program, and process the data of the software program.
  • the processor performs baseband processing on the data to be sent, and outputs the baseband signal to the radio frequency circuit.
  • the radio frequency circuit performs radio frequency processing on the baseband signal and sends the radio frequency signal to the outside in the form of electromagnetic waves through the antenna.
  • the radio frequency circuit receives the radio frequency signal through the antenna, converts the radio frequency signal into a baseband signal, and outputs the baseband signal to the processor, and the processor converts the baseband signal into data and processes the data.
  • FIG. 12b shows only one memory and a processor. In an actual terminal device, there may be multiple processors and memories.
  • the memory may also be referred to as a storage medium or a storage device, etc., which is not limited in the embodiment of the present application.
  • the processor may include a baseband processor and a central processing unit (CPU).
  • the baseband processor is mainly used to process communication protocols and communication data, and the CPU is mainly used to process the entire terminal.
  • the equipment controls, executes the software program, and processes the data of the software program.
  • the processor may also be a network processor (network processor, NP) or a combination of CPU and NP.
  • the processor may further include a hardware chip.
  • the aforementioned hardware chip may be an application-specific integrated circuit (ASIC), a programmable logic device (PLD), or a combination thereof.
  • the above-mentioned PLD may be a complex programmable logic device (CPLD), a field-programmable gate array (FPGA), a generic array logic (GAL) or any combination thereof.
  • the memory may include volatile memory (volatile memory), such as random-access memory (RAM); the memory may also include non-volatile memory (non-volatile memory), such as flash memory (flash memory) , Hard disk drive (HDD) or solid-state drive (solid-state drive, SSD); the memory may also include a combination of the above types of memory.
  • the antenna and radio frequency circuit with the transceiver function may be regarded as the communication unit 1201 of the terminal device 1200, and the processor with the processing function may be regarded as the terminal device 1200.
  • the communication unit 1201 may also be called a transceiver, a transceiver, a transceiving device, etc., and is used to implement a transceiving function.
  • the device for implementing the receiving function in the communication unit 1201 can be regarded as the receiving unit, and the device for implementing the sending function in the communication unit 1201 as the sending unit, that is, the communication unit 1201 includes a receiving unit and a sending unit.
  • the receiving unit may also be called a receiver, a receiver, a receiving circuit, etc.
  • the sending unit may be called a transmitter, a transmitter, or a transmitting circuit, etc.
  • the communication unit 1201 and the processing unit 1202 may be integrated into one device or separated into different devices.
  • the processor and the memory may also be integrated into one device or separate into different devices.
  • the communication unit 1201 can be used to perform the transceiving operation of the terminal device in the foregoing method embodiment.
  • the processing unit 1202 may be configured to perform the data processing operation of the first terminal device in the foregoing method embodiment.
  • the embodiment of the present invention also provides a computer-readable storage medium, where instructions are stored in the computer-readable storage medium, and when it runs on a processor, the method flow of the foregoing method embodiment is realized.
  • the embodiment of the present invention also provides a computer program product.
  • the computer program product runs on a processor, the method flow of the above method embodiment is realized.
  • the computer may be implemented in whole or in part by software, hardware, firmware, or any combination thereof.
  • software it can be implemented in the form of a computer program product in whole or in part.
  • the computer program product includes one or more computer instructions.
  • the computer may be a general-purpose computer, a special-purpose computer, a computer network, or other programmable devices.
  • the computer instructions may be stored in a computer-readable storage medium, or transmitted from one computer-readable storage medium to another computer-readable storage medium.
  • the computer instructions may be transmitted from a website, computer, server, or data center.
  • the computer-readable storage medium may be any available medium that can be accessed by a computer or a data storage device such as a server or a data center integrated with one or more available media.
  • the usable medium may be a magnetic medium (for example, a floppy disk, a hard disk, a magnetic tape), an optical medium (for example, a DVD), or a semiconductor medium (for example, an SSD).
  • These computer program instructions can also be stored in a computer-readable memory that can guide a computer or other programmable data processing equipment to work in a specific manner, so that the instructions stored in the computer-readable memory produce an article of manufacture including the instruction device.
  • the device implements the functions specified in one process or multiple processes in the flowchart and/or one block or multiple blocks in the block diagram.
  • These computer program instructions can also be loaded on a computer or other programmable data processing equipment, so that a series of operation steps are executed on the computer or other programmable equipment to produce computer-implemented processing, so as to execute on the computer or other programmable equipment.
  • the instructions provide steps for implementing the functions specified in one process or multiple processes in the flowchart and/or one block or multiple blocks in the block diagram.

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Security & Cryptography (AREA)
  • Mobile Radio Communication Systems (AREA)

Abstract

本发明实施例公开了一种接入控制方法,包括:接入网设备接收终端设备发送的第一消息,该第一消息携带终端设备请求接入的网络的第一公共陆地移动网络PLMN标识和指示信息,该指示信息用于指示终端设备请求接入第一小区所支持的公网融合的非公网络PNI-NPN;接入网设备向核心网设备发送第二消息,该第二消息携带第一PLMN标识和第一小区所支持的网络信息;接入网设备接收核心网设备发送的第三消息,第三消息用于通知接入网设备释放为终端设备配置的资源;接入网设备向终端设备发送第四消息,第四消息用于通知终端设备设备释放无线资源控制RRC连接。通过实施本申请实施例,有利于终端设备接入正确的小区。

Description

接入控制方法及通信装置 技术领域
本申请涉及通信技术领域,特别涉及一种接入控制方法及通信装置。
背景技术
非公网络(non-public networks,NPN)是3GPP标准中正在讨论的一种网络,区别于传统蜂窝网络,NPN网路只允许某些具有特定权限的用户接入。3GPP定义了两种NPN部署模式:独立组网(Stand-alone non-public networks,SNPN)和非独立组网(non-stand-alone NPN)两种组网方式,非独立组网的NPN网络也称为公共网络集成的NPN网络(Public Network Integrated NPN,PNI-NPN)。
其中,公共网络集成的NPN网络(Public Network Integrated NPN,PNI-NPN)与公共陆地移动网络(Public Land Mobile Network,PLMN)共用核心网和/或接入网,PNI-NPN依赖于PLMN进行部署,可用PLMN ID来标识PNI-NPN网络。
为了阻止非授权的UE接入PNI-NPN小区,定义了封闭接入组(Closed Access Group,CAG)的概念,一个CAG就代表了一组可以接入某个CAG小区(PNI-NPN小区)的用户。CAG可以由封闭接入组标识(closed access group identifier,CAG ID)来表示。在这种网络架构下,如何保障终端设备的接入到正确的小区是一个值得考虑的问题。
发明内容
本申请实施例提供了一种接入控制方法及通信装置,有利于终端设备能够接入到正确的小区。
第一方面,本申请实施例提供了一种接入控制方法,该方法包括:接入网设备接收终端设备发送的第一消息,该第一消息携带终端设备请求接入的网络的第一公共陆地移动网络PLMN标识和指示信息,该指示信息用于指示终端设备请求接入第一小区所支持的公网融合的非公网络PNI-NPN;接入网设备向核心网设备发送第二消息,该第二消息携带第一PLMN标识和第一小区所支持的网络信息;接入网设备接收核心网设备发送的第三消息,第三消息用于通知接入网设备释放为终端设备配置的资源;接入网设备向终端设备发送第四消息,第四消息用于通知终端设备设备释放无线资源控制RRC连接。
基于第一方面所描述的方法,接入网设备可以向核心网设备发送小区支持的网络信息,从而核心网设备可以基于小区支持的网络信息对终端设备进行接入控制,有利于终端设备接入正确的小区。
在一种可能的实现中,第一小区所支持的网络信息包括以下信息中的一种或多种:第一小区所支持的第一PLMN标识所对应的封闭接入组CAG标识,或第一小区所支持的PNI-NPN标识信息,或第一小区所支持的PLMN标识;PNI-NPN标识信息包含PLMN标识和CAG标识。
在一种可能的实现中,第二消息还携带指示信息。通过在第二消息携带指示信息,能够向核心网设备指示终端设备请求接入PNI-NPN。
在一种可能的实现中,第三消息和第四信息中还携带原因值,该原因值用于指示终端 设备接入失败的原因。通过在第三消息和第四消息中携带原因值,从而接入网设备和终端设备就能根据原因值确定核心网设备拒绝终端设备接入网络的原因。
第二方面,本申请实施例提供了一种接入控制方法,该方法包括:核心网设备接收接入网设备发送的第二消息,该第二消息携带终端设备请求接入的网络的第一公共陆地移动网络PLMN标识和第一小区所支持的网络信息;核心网设备参考第一小区所支持的网络信息和终端设备的签约信息,在不允许终端设备接入网络的情况下,向接入网设备发送第三消息,该第三消息用于通知接入网设备释放为终端设备配置的资源。
基于第二方面所描述的方法,核心网设备可以基于小区支持的网络信息对终端设备进行接入控制,有利于终端设备接入正确的小区。
在一种可能的实现中,第一小区所支持的网络信息包括以下信息中的一种或多种:第一小区所支持的第一PLMN标识所对应的封闭接入组CAG标识,或第一小区所支持的PNI-NPN标识信息,或第一小区所支持的PLMN标识;PNI-NPN标识信息包含PLMN标识和CAG标识。
在一种可能的实现中,终端设备的签约信息包括以下信息中的一种或多种:终端设备可接入的公网融合的非公网络PNI-NPN标识信息、终端设备可接入的PLMN标识或终端设备是否只能通过封闭接入组CAG小区访问网络的指示。该终端设备可接入的公网融合的非公网络PNI-NPN标识信息可包括UE允许接入的CAG标识列表(Allowed CAG List),所述终端设备是否只能通过封闭接入组CAG小区访问网络的指示包括仅CAG指示(CAG-only indication)。
在一种可能的实现中,不允许终端设备接入网络的情况以下情况中的一项或多项:签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络时,第一小区不支持终端设备可接入的PNI-NPN或终端设备可接入的PNI-NPN标识信息为空;或者,签约信息指示终端设备可以通过CAG小区和公网小区访问网络,且第一小区不支持终端设备可接入的PNI-NPN或终端设备可接入的PNI-NPN标识信息为空时,第一小区不支持第一PLMN标识所标识的公网或终端设备可接入的PLMN标识中不包括第一PLMN标识;或者,签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络时,第一小区不支持第一PLMN标识所标识的公网或终端设备可接入的PLMN标识中不包括包括第一PLMN标识。
基于该可能的实现,有利于终端设备接入正确的小区。
在一种可能的实现中,不允许终端设备接入网络的情况以下情况中的一项或多项:签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络时,第一小区不支持第一CAG标识和第一PLMN标识所标识的第一PNI-NPN,或第一PNI-NPN不为终端设备可接入的PNI-NPN;或者,签约信息指示终端设备可以通过CAG小区和公网小区访问网络,且第一小区不支持第一PNI-NPN,或第一PNI-NPN不为终端设备可接入的PNI-NPN时,第一小区不支持第一PLMN标识所标识的公网或终端设备可接入的PLMN标识中不包括第一PLMN标识;或者,签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络时,第一小区不支持第一PLMN标识所标识的公网或终端设备可接入的PLMN标识中不包括第一PLMN标识。
基于该可能的实现,有利于终端设备接入正确的小区。
在一种可能的实现中,不允许终端设备接入网络的情况包括以下情况中的一项或多项: 签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络时,第一小区不支持终端设备可接入的由第一PLMN标识所标识的PNI-NPN,或终端设备可接入的PNI-NPN标识信息中不包括第一PLMN标识,或者,签约信息指示终端设备可以通过CAG小区和公网小区访问网络,且第一小区不支持终端设备可接入的由第一PLMN标识所标识的PNI-NPN,或终端设备可接入的PNI-NPN标识信息中不包括第一PLMN标识时,第一小区不支持第一PLMN标识所标识的公网或终端设备可接入的PLMN标识中不包括第一PLMN标识;或者,签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络,且第一小区不支持第一PLMN标识所标识的公网或终端设备可接入的PLMN标识中不包括第一PLMN标识。
基于该可能的实现,有利于终端设备接入正确的小区。
在一种可能的实现中,第三消息还携带原因值,该原因值用于指示终端设备接入网络失败的原因。
在一种可能的实现中,第二消息还携带指示信息,该指示信息用于指示终端设备请求接入第一小区所支持的公网融合的非公网络PNI-NPN。
第三方面,本申请实施例提供了一种接入控制方法,该方法包括:终端设备向接入网设备发送第一消息,第一消息携带终端设备请求接入的网络的第一公共陆地移动网络PLMN标识和指示信息,指示信息用于指示终端设备请求接入第一小区所支持的公网融合的非公网络PNI-NPN;终端设备接收第四消息,该第四消息用于通知终端设备释放无线资源控制RRC连接;终端设备释放RRC连接。
基于第三方面所描述的方法,终端设备能够向接入网设备指示请求接入第一小区所支持的公网融合的非公网络PNI-NPN;从而接入网设备在终端设备请求接入第一小区所支持的PNI-NPN时,向核心网设备发送小区支持的网络信息,从而核心网设备可以基于小区支持的网络信息对终端设备进行接入控制,有利于避免允许终端设备接入正确的小区。
在一种可能的实现中,第四消息携带原因值,该原因值用于指示终端设备接入网络失败的原因。
在一种可能的实现中,第一PLMN标识对应至少两个封闭接入组CAG标识。
在一种可能的实现中,终端设备请求接入的PNI-NPN时,终端设备请求接入的PNI-NPN的第一PLMN标识对应至少两个CAG标识,才在第一消息中携带指示信息。
第四方面,本申请实施例提供了一种接入控制方法,该方法包括:接入网设备接收终端设备发送的第一消息,第一消息携带终端设备请求接入的公网融合的非公网络PNI-NPN的第一公共陆地移动网络PLMN标识;接入网设备向核心网设备发送第二消息,该第二消息携带第一PLMN标识;接入网设备接收核心网设备发送的第三消息,该第三消息携带终端设备的签约信息;接入网设备参考终端设备请求接入的第一小区所支持的网络信息和终端设备的签约信息,在不允许终端设备接入网络的情况下,向核心网设备发送第四消息,第四消息用于指示终端设备接入网络失败。
基于第四方面所描述的方法,接入网设备可以接收核心网设备发送的终端设备的签约信息,进而接入网设备能够基于第一小区支持的网络信息和终端设备的签约信息对终端设备进行接入控制,有利于终端设备接入正确的网络。
在一种可能的实现中,终端设备的签约信息包括终端设备可接入的公网融合的非公网络PNI-NPN标识信息,和/或终端设备是否只能通过封闭接入组CAG小区访问网络的指示; 第一小区所支持的网络信息包括PNI-NPN标识信息和/或PLMN标识;PNI-NPN标识信息包含PLMN标识和CAG标识。
在一种可能的实现中,不允许终端设备接入网络的情况包括以下情况中的一项或多项:签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,且第一小区不支持终端设备可接入的PNI-NPN;或者,签约信息指示终端设备可以通过CAG小区和公网小区访问网络,且第一小区不支持第一PLMN标识所标识的公网,且第一小区不支持终端设备可接入的PNI-NPN;或者,签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络,且第一小区不支持第一PLMN标识所标识的公网。基于该可能的实现,有利于终端设备接入正确的小区。
在一种可能的实现中,不允许终端设备接入网络的情况包括以下情况中的一项或多项:签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,且第一小区不支持的第一CAG标识和第一PLMN标识所标识的第一PNI-NPN;或者,签约信息指示终端设备可以通过CAG小区和公网小区访问网络,且第一小区不支持第一PLMN标识所标识的公网,且第一小区不支持的第一PNI-NPN;或者,签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络,且第一小区不支持第一PLMN标识所标识的公网。基于该可能的实现,有利于终端设备接入正确的小区。
在一种可能的实现中,不允许终端设备接入网络的情况包括以下情况中的一项或多项:签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,且第一小区不支持终端设备可接入的由第一PLMN标识所标识的PNI-NPN;或者,签约信息指示终端设备可以通过CAG小区和公网小区访问网络,且第一小区不支持第一PLMN标识所标识的公网,且第一小区不支持终端设备可接入的由第一PLMN标识所标识的PNI-NPN;或者,签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络,且第一小区不支持第一PLMN标识所标识的公网。基于该可能的实现,有利于终端设备接入正确的小区。
在一种可能的实现中,第四消息还携带原因值,该原因值用于指示终端设备接入网络失败的原因。通过在第四消息中携带原因值,从而核心网设备就能根据原因值确定接入网设备拒绝终端设备接入网络的原因。
在一种可能的实现中,接入网设备接收核心网设备发送的第五消息,该第五消息携带原因值,第五消息用于通知接入网设备释放为终端设备配置的资源;接入网设备向终端设备发送第六消息,第六消息携带原因值,第六消息用于通知终端设备释放无线资源控制RRC连接。基于该可能的实现,能够在不允许终端设备接入网络的情况下,及时地释放无线资源控制RRC连接以及及时释放为终端设备配置的资源。
在一种可能的实现中,接入网设备向核心网设备发送第四消息之前,接入网设备接收核心网设备发送的第七消息,该第七消息指示终端设备鉴权成功、安全性验证成功、注册成功或者附着成功;接入网设备向终端设备发送第八消息,该第八消息指示终端设备鉴权成功、安全性验证成功、注册成功或者附着成功;接入网设备向核心网设备发送原因值之后,接入网设备接收核心网设备发送的第九消息,该第九消息携带原因值,该第九消息指示终端设备鉴权失败、安全性验证失败、注册失败或者附着失败;接入网设备向终端设备发送第十消息,第十消息携带原因值,该第十消息指示终端设备鉴权失败、安全性验证失败、注册失败或者附着失败。基于该可能的实现,能够在不允许终端设备接入网络的情况 下,及时地释放终端设备的释放注册信息。
第五方面,本申请实施例提供了一种接入控制方法,该方法包括:核心网设备接收接入网设备发送的第二消息,该第二消息携带终端设备请求接入的公网融合的非公网络PNI-NPN的第一公共陆地移动网络PLMN标识;核心网设备参考终端设备的签约信息,在允许终端设备接入网络的情况下,向接入网设备发送第三消息,该第三消息携带终端设备的签约信息;核心网设备接收接入网设备发送的第四消息,第四消息用于指示终端设备接入网络失败。
在一种可能的实现中,终端设备的签约信息包括以下信息中的一项或多项:终端设备可接入的PNI-NPN标识信息,终端设备可接入的PLMN标识,或终端设备是否只能通过封闭接入组CAG小区访问网络的指示;PNI-NPN标识信息包含PLMN标识和CAG标识。
在一种可能的实现中,允许终端设备接入网络的情况包括以下情况中的一项或多项:签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,终端设备可接入的PNI-NPN标识信息不为空;或者,签约信息指示终端设备能够通过CAG小区和公网小区访问网络时,终端设备可接入的PLMN标识中包括第一PLMN标识,或终端设备可接入的PNI-NPN标识信息不为空;或者,签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络,且终端设备可接入的PLMN标识中包括第一PLMN标识。
在一种可能的实现中,允许终端设备接入网络的情况包括以下情况中的一项或多项:签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,第一CAG标识和第一PLMN所标识的第一PNI-NPN为终端设备可接入的PNI-NPN;或者,签约信息指示终端设备能够通过CAG小区和公网小区访问网络时,终端设备可接入的PLMN标识中包括第一PLMN标识,或第一PNI-NPN为终端设备可接入的PNI-NPN;或者,签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络,且终端设备可接入的PLMN标识中包括第一PLMN标识。
在一种可能的实现中,允许终端设备接入网络的情况包括以下情况中的一项或多项:签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,终端设备可接入的PNI-NPN标识信息中包括第一PLMN标识;或者,签约信息指示终端设备能够通过CAG小区和公网小区访问网络时,终端设备可接入的PLMN标识中包括第一PLMN标识,或终端设备可接入的PNI-NPN标识信息中包括第一PLMN标识;或者,签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络,且终端设备可接入的PLMN标识中包括第一PLMN标识。
在一种可能的实现中,第四消息还携带原因值,该原因值用于指示终端设备接入网络失败的原因。
在一种可能的实现中,核心网设备向接入网设备发送第五消息,该第五消息携带原因值,第五消息用于通知接入网设备释放为终端设备配置的资源。
在一种可能的实现中,核心网设备向接入网设备发送第七消息,该第七消息指示终端设备鉴权成功、安全性验证成功、注册成功或者附着成功;核心网设备接收接入网设备发送的原因值之后,方法还包括:核心网设备向接入网设备发送第九消息,第九消息携带原因值,第九消息指示终端设备鉴权失败、安全性验证失败、注册失败或者附着失败。
第六方面,本申请实施例提供了一种接入控制方法,该方法包括:接入网设备接收终 端设备发送的第一消息,第一消息携带终端设备请求接入的公网融合的非公网络PNI-NPN的第一公共陆地移动网络PLMN标识;接入网设备向核心网设备发送第二消息,第二消息携带第一PLMN标识;接入网设备接收核心网设备发送的第三消息,第三消息携带终端设备的签约信息;接入网设备参考终端设备请求接入的第一小区所支持的网络信息和终端设备的签约信息,在允许终端设备接入网络的情况下,向核心网设备发送用于指示终端设备接入网络成功的消息。
在一种可能的实现中,终端设备的签约信息包括终端设备可接入的PNI-NPN标识信息,和/或终端设备是否只能通过封闭接入组CAG小区访问网络的指示;第一小区所支持的网络信息包括PNI-NPN标识信息和/或PLMN标识;PNI-NPN标识信息包含PLMN标识和CAG标识;
在一种可能的实现中,允许终端设备接入网络的情况包括以下情况中的一项或多项:签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,且第一小区支持终端设备可接入的PNI-NPN;或者,签约信息指示终端设备可以通过CAG小区和公网小区访问网络时,第一小区支持第一PLMN标识所标识的公网且终端设备可接入的PLMN标识中包括第一PLMN标识,或第一小区支持终端设备可接入的PNI-NPN;或者,签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络,且第一小区支持第一PLMN标识所标识的公网。
在一种可能的实现中,允许终端设备接入网络的情况包括以下情况中的一项或多项:签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,且第一小区支持第一CAG标识和第一PLMN标识所标识的第一PNI-NPN;或者,签约信息指示终端设备可以通过CAG小区和公网小区访问网络时,第一小区支持第一PLMN标识所标识的公网且终端设备可接入的PLMN标识中包括第一PLMN标识;或签约信息指示终端设备可以通过CAG小区和公网小区访问网络时,第一小区支持第一PNI-NPN且第一PNI-NPN为终端设备可接入的PNI-NPN;或者,签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络,且第一小区支持第一PLMN标识所标识的公网。
在一种可能的实现中,允许终端设备接入网络的情况包括以下情况中的一项或多项:
签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,且第一小区支持终端设备可接入的由第一PLMN标识所标识的PNI-NPN;或者,签约信息指示终端设备可以通过CAG小区和公网小区访问网络时,第一小区支持第一PLMN标识所标识的公网且终端设备可接入的PLMN标识中包括第一PLMN标识;或签约信息指示终端设备可以通过CAG小区和公网小区访问网络时,第一小区支持终端设备可接入的由第一PLMN标识所标识的PNI-NPN;或者,签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络,且第一小区支持第一PLMN标识所标识的公网。
第五方面的有益效果和第六方面的有益效果,可参见上述第四方面的描述,在此不赘述。
第七方面,本申请实施例提供了一种接入控制方法,该方法包括:接入网设备向核心网设备发送接入网设备下的小区支持的网络信息;接入网设备接收终端设备发送的第一消息,第一消息携带终端设备请求接入的公网融合的非公网络PNI-NPN的第一公共陆地移动网络PLMN标识;接入网设备向核心网设备发送第二消息,该第二消息携带第一公共陆地移动网络PLMN标识;接入网设备接收核心网设备发送的第三消息,该第三消息用于通知 接入网设备释放为终端设备配置的资源;接入网设备向终端设备发送第四消息,第四消息用于通知终端设备释放无线资源控制RRC连接。
基于该可能的实现,有利于终端设备接入正确的小区。
在一种可能的实现中,接入网设备下的小区支持的网络信息包括以下一项或多项信息:小区标识、小区对应的PNI-NPN标识信息、小区对应的PLMN标识;PNI-NPN标识信息包含PLMN标识和封闭接入组CAG标识。
在一种可能的实现中,第三消息和第四信息中还携带原因值,该原因值用于指示终端设备接入网络失败的原因。通过在第三消息和第四消息中携带原因值,从而接入网设备和终端设备就能根据原因值确定核心网设备拒绝终端设备接入网络的原因。
在一种可能的实现中,接收核心网设备发送的核心网设备下的小区支持的网络信息。
第八方面,本申请实施例提供了一种接入控制方法,该方法包括:核心网设备接收接入网设备发送的接入网设备下的小区支持的网络信息;核心网设备接收接入网设备发送的第二消息,第二消息携带终端设备请求接入的公网融合的非公网络PNI-NPN的第一公共陆地移动网络PLMN标识;核心网设备参考终端设备请求接入的第一小区所支持的网络信息和终端设备的签约信息,在不允许终端设备接入网络的情况下,向接入网设备发送第三消息,第三消息用于通知接入网设备释放为终端设备配置的资源。
在一种可能的实现中,接入网设备下的小区支持的网络信息包括以下一项或多项信息:小区标识、小区对应的PNI-NPN标识信息;小区对应的PLMN标识;PNI-NPN标识信息包含PLMN标识和封闭接入组CAG标识。
在一种可能的实现中,终端设备的签约信息包括以下信息中的一项或多项:终端设备可接入的PNI-NPN标识信息,终端设备可接入的PLMN标识,或终端设备是否只能通过封闭接入组CAG小区访问网络的指示;第一小区所支持的网络信息包括以下信息中的一项或多项:第一小区所支持的PNI-NPN标识信息或PLMN标识;
在一种可能的实现中,不允许终端设备接入网络的情况以下情况中的一项或多项:
签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络时,第一小区不支持终端设备可接入的PNI-NPN或终端设备可接入的PNI-NPN标识信息为空;或者,签约信息指示终端设备可以通过CAG小区和公网小区访问网络时,第一小区不支持终端设备可接入的PNI-NPN或终端设备的PNI-NPN标识信息为空,并且第一小区不支持第一PLMN标识所标识的公网或终端设备可接入的PLMN标识中不包括第一PLMN标识;或者,签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络时,第一小区不支持第一PLMN标识所标识的公网或终端设备可接入的PLMN标识中不包括第一PLMN标识。
在一种可能的实现中,不允许终端设备接入网络的情况以下情况中的一项或多项:
签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络时,第一小区不支持第一CAG标识和第一PLMN标识所标识的第一PNI-NPN,或第一PNI-NPN不为终端设备可接入的PNI-NPN;或者,签约信息指示终端设备可以通过CAG小区和公网小区访问网络时,第一小区不支持第一PNI-NPN,或第一PNI-NPN不为终端设备可接入的PNI-NPN,并且第一小区不支持第一PLMN标识所标识的公网或终端设备可接入的PLMN标识中不包括第一PLMN标识;或者,签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络时,第一小区不支持第一PLMN标识所标 识的公网或终端设备可接入的PLMN标识中不包括第一PLMN标识。
在一种可能的实现中,不允许终端设备接入网络的情况包括以下情况中的一项或多项:
签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络时,第一小区不支持终端设备可接入的由第一PLMN标识所标识的PNI-NPN,或终端设备可接入的PNI-NPN标识信息中不包括第一PLMN标识,或者,签约信息指示终端设备可以通过CAG小区和公网小区访问网络时,第一小区不支持终端设备可接入的由第一PLMN标识所标识的PNI-NPN,或终端设备可接入的PNI-NPN标识信息中不包括第一PLMN标识,并且第一小区不支持第一PLMN标识所标识的公网或终端设备可接入的PLMN标识中不包括第一PLMN标识;或者,签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络,且第一小区不支持第一PLMN标识所标识的公网或终端设备可接入的PLMN标识中不包括第一PLMN标识。
在一种可能的实现中,第三消息还携带原因值,原因值用于指示终端设备接入网络失败的原因。
在一种可能的实现中,核心网设备向接入网设备发送核心网设备下的小区支持的网络信息。
第九方面,提供了一种通信装置,该装置可以是接入网设备,也可以是接入网设备中的装置,或者是能够和接入网设备匹配使用的装置。其中,该通信装置还可以为芯片系统。该通信装置可执行第一方面、第四方面、第六方面或第七方面所述的方法。该通信装置的功能可以通过硬件实现,也可以通过硬件执行相应的软件实现。该硬件或软件包括一个或多个与上述功能相对应的单元。该单元可以是软件和/或硬件。该通信装置执行的操作及有益效果可以参见上述第一方面、第四方面、第六方面或第七方面所述的方法以及有益效果,重复之处不再赘述。
第十方面,本申请实施例提供一种通信装置,该通信装置可以为核心网设备,也可以是核心网设备中的装置,或者是能够和核心网设备匹配使用的装置。或可以为核心网设备内的芯片。所述通信装置包括包括通信接口和处理器,所述通信接口用于该装置与其它设备进行通信,例如数据或信号的收发。示例性的,通信接口可以是收发器、电路、总线、模块或其它类型的通信接口,其它设备可以为终端设备或核心网设备。处理器用于调用一组程序、指令或数据,执行上述第二方面、第五方面或第八方面描述的方法。所述装置还可以包括存储器,用于存储处理器调用的程序、指令或数据。所述存储器与所述处理器耦合,所述处理器执行所述存储器中存储的、指令或数据时,可以实现上述第二方面、第六方面或第八方面描述的方法。
第十一方面,本申请实施例提供一种通信装置,该通信装置可以为终端设备,也可以是终端设备中的装置,或者是能够和终端设备匹配使用的装置。或可以为终端设备内的芯片。所述通信装置包括包括通信接口和处理器,所述通信接口用于该装置与其它设备进行通信,例如数据或信号的收发。示例性的,通信接口可以是收发器、电路、总线、模块或其它类型的通信接口,其它设备可以为终端设备或终端设备。处理器用于调用一组程序、指令或数据,执行上述第三方面描述的方法。所述装置还可以包括存储器,用于存储处理器调用的程序、指令或数据。所述存储器与所述处理器耦合,所述处理器执行所述存储器中存储的、指令或数据时,可以实现上述第三方面描述的方法。
第十二方面,本申请实施例提供一种通信装置,该通信装置可以为接入网设备,也可 以是接入网设备中的装置,或者是能够和接入网设备匹配使用的装置。或可以为接入网设备内的芯片。所述通信装置包括包括通信接口和处理器,所述通信接口用于该装置与其它设备进行通信,例如数据或信号的收发。示例性的,通信接口可以是收发器、电路、总线、模块或其它类型的通信接口,其它设备可以为网络设备。处理器用于调用一组程序、指令或数据,执行上述第一方面、第四方面、第六方面或第七方面描述的方法。所述装置还可以包括存储器,用于存储处理器调用的程序、指令或数据。所述存储器与所述处理器耦合,所述处理器执行所述存储器中存储的、指令或数据时,可以实现上述第一方面、第三方面、第五方面或第七方面描述的方法。
第十三方面,本申请实施例提供一种通信装置,该通信装置可以为核心网设备,也可以是核心网设备中的装置,或者是能够和核心网设备匹配使用的装置。或可以为核心网设备内的芯片。所述通信装置包括包括通信接口和处理器,所述通信接口用于该装置与其它设备进行通信,例如数据或信号的收发。示例性的,通信接口可以是收发器、电路、总线、模块或其它类型的通信接口,其它设备可以为网络设备。处理器用于调用一组程序、指令或数据,执行上述第二方面、第五方面或第八方面描述的方法。所述装置还可以包括存储器,用于存储处理器调用的程序、指令或数据。所述存储器与所述处理器耦合,所述处理器执行所述存储器中存储的、指令或数据时,可以实现上述第二方面、第六方面或第八方面描述的方法。
第十四方面,本申请实施例提供一种通信装置,该通信装置可以为终端设备,也可以是终端设备中的装置,或者是能够和终端设备匹配使用的装置。或可以为终端设备内的芯片。所述通信装置包括包括通信接口和处理器,所述通信接口用于该装置与其它设备进行通信,例如数据或信号的收发。示例性的,通信接口可以是收发器、电路、总线、模块或其它类型的通信接口,其它设备可以为网络设备。处理器用于调用一组程序、指令或数据,执行上述第三方面描述的方法。所述装置还可以包括存储器,用于存储处理器调用的程序、指令或数据。所述存储器与所述处理器耦合,所述处理器执行所述存储器中存储的、指令或数据时,可以实现上述第三方面描述的方法。
第十五方面,本申请实施例提供了一种芯片系统,该芯片系统包括处理器,还可以包括存储器,用于实现上述第一方面~第八方面中任意一方面所述的方法。该芯片系统可以由芯片构成,也可以包含芯片和其他分立器件。
第十六方面,本申请实施例提供一种计算机可读存储介质,所述计算机可读存储介质用于存储指令,当所述指令被执行时,使得第一方面~第八方面中任意一方面所述的方法被实现。
第十七方面,本申请实施例提供一种包括指令的计算机程序产品,当所述指令被执行时,使得第一方面~第八方面中任意一方面所述的方法被实现。
附图说明
图1为本申请实施例提供的一种通信系统的架构示意图;
图2~图9为本申请实施例提供的接入控制方法的流程的示意图;
图10为本申请实施例提供的一种通信装置的结构示意图;
图11为本申请实施例提供的另一种通信装置的结构示意图;
图12a为本申请实施例提供的又一种通信装置的结构示意图;
图12b为本申请实施例提供的又一种通信装置的结构示意图。
具体实施方式
为了使本申请的目的、技术方案和优点更加清楚,下面将结合附图对本申请作进一步地详细描述。
为了能够更好地理解本申请实施例,下面先对本申请实施例的系统架构进行说明:
图1是本申请实施例提供的一种公共网络集成的NPN(Public Network Integrated NPN,PNI-NPN)的系统架构的示意图。区别于传统蜂窝网络,PNI-NPN只允许某些具有特定权限的用户接入。PNI-NPN也可称为非独立组网(non-stand-alone NPN)。本申请实施例中,PNI-NPN与公共陆地移动网络(Public Land Mobile Network,PLMN)共用核心网和/或接入网,PNI-NPN依赖于PLMN进行部署,可用PLMN ID来标识PNI-NPN网络。其中,PLMN也可称为公网。图1以接入网设备以PNI-NPN网络与PLMN网络共用核心网为例进行说明。
如图1所示,PNI-NPN-RAN表示PNI-NPN的接入网,PLMN-RAN表示公网的接入网。其中,PNI-NPN-RAN中包括一个或多个接入网设备,PLMN-RAN中也可包括一个或多个接入网设备。图1以PNI-NPN-RAN包括接入网设备1和接入网设备2,PLMN-RAN中包括接入网设备3为例。
本申请实施例中所涉及的接入网设备,是网络侧的一种用于发射或接收信号的实体,可以用于将收到的空中帧与网络协议(internet protocol,IP)分组进行相互转换,作为终端设备与接入网的其余部分之间的路由器,其中接入网的其余部分可以包括IP网络等。接入网设备还可以协调对空中接口的属性管理。例如,接入网设备可以是LTE中的演进型基站(evolutional Node B,eNB或e-NodeB),还可以是新无线控制器(new radio controller,NR controller),可以是5G系统中的gNode B(gNB),可以是集中式网元(centralized unit),可以是新无线基站,可以是射频拉远模块,可以是微基站,可以是中继(relay),可以是分布式网元(distributed unit),可以是接收点(transmission reception point,TRP)或传输点(transmission point,TP)或者任何其它无线接入设备,但本申请实施例不限于此。
在图1所示的系统架构中,接入与移动性管理功能(access and mobility management function,AMF)实体和用户面功能(user plane function,UPF)实体属于核心网设备。图1中还可以包括其他核心网设备,本申请实施例中不做限定。
AMF实体:是由运营商网络提供的控制面网络功能,负责终端设备接入运营商网络的接入控制和移动性管理,例如包括移动状态管理,分配用户临时身份标识,认证和授权用户等功能。
UPF实体:是由运营商提供的网关,是运营商网络与数据网络DN 120通信的网关。UPF实体包括数据包路由和传输、包检测、业务用量上报、服务质量(quality of service,QoS)处理、合法监听、上行包检测、下行数据包存储等用户面相关的功能。
在图1所示的系统架构中,数据网络DN也可以称为分组数据网络(packet data network,PDN),通常是位于运营商网络之外的网络,例如第三方网络。
如图1所示,本申请实施例的系统架构中还可包括一个或多个终端设备。本申请实施例中涉及的终端设备,是用户侧的一种用于接收或发射信号的实体。终端设备可以是一种向用户提供语音和/或数据连通性的设备,例如,具有无线连接功能的手持式设备、车载设 备等。终端设备也可以是连接到无线调制解调器的其他处理设备。终端设备可以与无线接入网(radio access network,RAN)进行通信。终端设备也可以称为无线终端、订户单元(subscriber unit)、订户站(subscriber station),移动站(mobile station)、移动台(mobile)、远程站(remote station)、接入点(access point)、远程终端(remote terminal)、接入终端(access terminal)、用户终端(user terminal)、用户代理(user agent)、用户设备(user device)、或用户设备(user equipment,UE)等等。终端设备可以是移动终端,如移动电话(或称为“蜂窝”电话)和具有移动终端的计算机,例如,可以是便携式、袖珍式、手持式、计算机内置的或者车载的移动装置,它们与无线接入网交换语言和/或数据。例如,终端设备还可以是个人通信业务(personal communication service,PCS)电话、无绳电话、会话发起协议(session initiation protocol,SIP)话机、无线本地环路(wireless local loop,WLL)站、个人数字助理(personal digital assistant,PDA)、等设备。常见的终端设备例如包括:手机、平板电脑、笔记本电脑、掌上电脑、移动互联网设备(mobile internet device,MID)、可穿戴设备,例如智能手表、智能手环、计步器等,但本申请实施例不限于此。
为便于理解本申请实施例提供的接入控制方法,下面对封闭接入组标识(closed access group identifier,CAG ID)进行相关介绍:
为了阻止非授权的终端设备接入CAG小区(即PNI-NPN的小区),定义了CAG的概念,一个CAG就代表了一组可以接入某个CAG小区的用户。它由一个CAG标识来表示,在一个PLMN中唯一,不同PLMN中的CAG标识可以相同。其中,一个CAG标识和一个PLMN标识可组成一个PNI-NPN标识信息。一个PNI-NPN标识信息用于标识一个PNI-NPN。或者,PNI-NPN标识信息可包含PLMN标识和/或CAG标识。一个CAG小区可以支持多个PNI-NPN。例如,如下表1所示,小区1支持PNI-NPN1~PNI-NPN2。其中,PNI-NPN1由PLMN标识1和CAG标识1共同标识,PNI-NPN2由PLMN标识2和CAG标识1共同标识。
表1
PNI-NPN PNI-NPN标识
PNI-NPN1 PNI-NPN标识信息1(PLMN标识1和CAG标识1)
PNI-NPN2 PNI-NPN标识信息2(PLMN标识2和CAG标识1)
其中,不同的小区可以支持相同或不同的PNI-NPN。例如,如下表2所示,小区2支持PNI-NPN2~PNI-NPN5。其中,PNI-NPN3由PLMN标识2和CAG标识2所标识,PNI-NPN4由PLMN标识4和CAG标识1所标识,PNI-NPN5由PLMN标识5和CAG标识1所标识。
表2
PNI-NPN PNI-NPN标识
PNI-NPN2 PNI-NPN标识信息2(PLMN标识2和CAG标识1)
PNI-NPN3 PNI-NPN标识信息3(PLMN标识2和CAG标识2)
PNI-NPN4 PNI-NPN标识信息4(PLMN标识4和CAG标识1)
PNI-NPN5 PNI-NPN标识5(PLMN标识5和CAG标识1)
在一种可能的实现中,当PNI-NPN与PLMN共享接入网时,一个小区也可以即支持PNI-NPN也支持公网。例如,小区1还可支持下表3所示的PLMN标识的公网。小区2还可支持下表4所示的PLMN标识的公网。
表3
公网 公网标识
PLMN1 PLMN标识1
PLMN2 PLMN标识2
PLMN3 PLMN标识3
表4
公网 公网标识
PLMN2 PLMN标识2
PLMN3 PLMN标识3
PLMN4 PLMN标识4
PLMN5 PLMN标识5
本申请实施例中,终端设备中存储其签约信息,该签约信息中也包括终端设备可接入的PNI-NPN标识信息。例如,终端设备可接入的PNI-NPN标识信息可如下表5所示。
表5
PNI-NPN PNI-NPN标识
PNI-NPN4 PNI-NPN标识4(PLMN标识4和CAG标识1)
PNI-NPN5 PNI-NPN标识5(PLMN标识5和CAG标识1)
PNI-NPN6 PNI-NPN标识6(PLMN标识6和CAG标识1)
PNI-NPN7 PNI-NPN标识7(PLMN标识6和CAG标识2)
在一种可能的实现中,终端设备的签约信息中也包括终端设备可接入的PLMN标识。例如,终端设备可接入的PLMN标识可如下表6所示。
表6
公网 公网标识
PLMN4 PLMN标识4
PLMN5 PLMN标识5
PLMN6 PLMN标识6
小区在系统信息中会广播其所支持接入的PNI-NP标识信息(PLMN ID(s),CAG ID(s))。终端设备在收到小区广播的系统信息之后,可将其所选择接入的PNI-NPN标识信息(也可以不上报CAG标识)上报至接入网设备,再由接入网设备将PNI-NPN标识信息发送至AMF。AMF再对终端设备进行接入控制,决定是否允许终端设备接入网络。终端设备向接入网设备上报PNI-NP标识信息时,PLMN标识和CAG标识可以在一个信息中上报也可以在不同的信息中上报。通常PLMN标识在接入层(access stratum,AS)信息中上报。现在标准在讨论终端设备向接入网设备上报选择的CAG标识的情况包括以下4种:1、终端设备在MSG5中的AS信息中上报选择的CAG标识。2、终端设备在非接入层(non-access stratum,NAS)信息(例如,MSG5中的NAS信息,或者MSG5后的NAS消息)中上报选择的CAG标识。3、终端设备既不在AS信息又不在NAS信息上报选择的CAG标识,即终端设备不向接入网设备上报CAG标识。4、终端设备既在AS信息中又在NAS信息中上报CAG标识。
在一些情况下,终端设备有可能接入不正确的小区。例如,在方式2中,由于接入网 设备不能对NAS信息中的内容进行解析,因此,接入网设备接收终端设备上报的PNI-NP标识信息之后,无法确定终端设备请求接入的小区是否支持终端设备请求接入的网络。也就是说,接入网设备无法基于小区所支持的网络信息对终端设备进行接入控制。核心网设备侧虽然能够解析NAS信息中的CAG标识,但核心网设备中未存储终端设备请求接入的小区支持的PNI-NPN。因此,核心网设备也无法基于小区所支持的网络信息对终端设备进行接入控制。由于接入网设备和核心网设备都无法基于小区所支持的网络信息对终端设备进行接入控制。因此,核心网设备有可能允许终端设备接入不正确的小区。在方式3中同理,接入网设备也无法确定终端设备请求接入的PNI-NPN,进而无法基于小区所支持的网络信息对终端设备进行接入控制。
因此,为了使终端设备能够接入正确的小区,本申请实施例提供了一种接入控制方法及装置。在本申请实施例提供的接入控制方法中,接入网设备在接收到终端设备上报的PNI-NP标识信息中的PLMN标识和/或CAG标识之后,向核心网设备发送该PLMN标识和/或CAG标识,核心网设备可以向接入网设备发送终端设备的签约信息,从而接入网设备根据小区所支持的网络信息和终端设备的签约信息,就可对终端设备进行接入控制,以接入正确的小区。
下面对本申请提供的接入控制方法及装置进一步进行介绍:
请参见图2,图2是本申请实施例提供的一种接入控制方法的流程示意图。如图2所示,该接入控制方法包括如下步骤201~步骤204。图2所示的方法执行主体可以为终端设备、接入网设备和核心网设备。或者图2所示的方法执行主体可以为终端设备中的芯片、接入网设备中的芯片和核心网设备中的芯片。图2以终端设备、接入网设备和核心网设备为方法的执行主体为例进行说明。本申请实施例的其他附图所示的接入控制方法的执行主体同理,后文不再赘述。其中:
201、终端设备向接入网设备发送第一消息。例如,该第一消息可以为RRC建立完成(RRC setup complete)消息、RRC建立请求(RRC setup request)消息、RRC恢复完成(RRC resume complete)消息或RRC恢复请求(RRC resume request)消息。
其中,该第一消息携带终端设备请求接入的PNI-NPN的第一PLMN标识。其中,第一消息用于请求接入第一小区的PNI-NPN。第一小区为接入网设备下的小区。终端设备选择需要接入的PNI-NPN之后,通过第一消息向接入网设备上报所选择的PNI-NPN的标识信息。该第一PLMN标识为终端设备选择的需要接入的PNI-NPN的标识信息中的PLMN标识。例如,终端设备从上述表5中选择接入PNI-NPN4。那么第一PLMN标识为PLMN标识4。如果终端设备从上述表5中选择接入PNI-NPN5。那么第一PLMN标识为PLMN标识5。应当理解,PLMN标识也可以为PLMN标识的索引(index)。终端设备选择接入其他PNI-NPN同理,在此不赘述。
202、接入网设备向核心网设备发送第二消息。例如,该第二消息可以为初始终端设备消息(initial UE message)。
本申请实施例中,接入网设备接收第一消息之后,向核心网设备发送第二消息。该第二消息携带第一PLMN标识。
其中,第一消息和第二消息携带的内容可以有以下两种情况:
情况一:第一消息除携带第一PLMN标识之外,还携带NAS信息,该NAS信息中携带第一CAG标识。第二消息除携带第一PLMN标识之外,还携带NAS信息,该NAS信 息中携带第一CAG标识。也就是说,第一消息和第二消息中均包括第一PLMN标识和第一CAG标识,且第一CAG标识携带于NAS信息中。其中,第一CAG标识是终端设备选择的需要接入的PNI-NPN的标识信息包括的CAG标识。例如,如上表5所示,如果终端设备请求接入PNI-NPN4。那么第一CAG标识为CAG标识1。如果终端设备请求接入PNI-NPN5。那么第一CAG标识为CAG标识1。终端设备请求接入其他PNI-NPN同理,在此不赘述。情况一相当于上述终端设备上报CAG标识的方式2。可选的,终端设备向接入网设备发送第一PLMN标识和第一CAG标识时,第一PLMN标识和第一CAG标识也可以不在同一个消息中发送。接入网设备向核心网设备发送第一PLMN标识和第一CAG标识时,第一PLMN标识和第一CAG标识也可以不在同一个消息中发送。
情况二:第一信息中携带第一PLMN标识,且不携带第一CAG标识。第二信息中携带第一PLMN标识,且不携带第一CAG标识。其中,第一CAG标识是终端设备选择的需要接入的PNI-NPN的标识信息包括的CAG标识。相当于上述终端设备上报CAG标识的方式3,即终端设备既不在AS信息又不在NAS信息上报选择的CAG标识。
在一种可能的实现中,由于接入网设备不能确定终端设备请求接入公网还是PNI-NPN,所以接入网设备在接收第一消息之后,会验证第一PLMN标识是否第一小区所支持的PNI-NPN或者公网所对应的PLMN。若是,才向AMF发送第二消息。否则,则直接拒绝终端设备的接入请求。
203、核心网设备参考终端设备的签约信息,在允许终端设备接入网络的情况下,向接入网设备发送第三消息。例如,第三消息可为初始上下文建立请求(initial context setup request)消息。
本申请实施例中,核心网设备接收该接入网设备发送的第二消息之后,参考(或根据或基于)终端设备的签约信息和/或注册信息,在允许终端设备接入网络的情况下,向接入网设备发送第三消息,该第三消息携带终端设备的签约信息。
在一种可能的实现中,终端设备的签约信息包括以下信息中的一种或多种:终端设备可接入的PNI-NPN标识信息,终端设备可接入的PLMN标识,或终端设备是否只能通过CAG小区访问网络的指示(CAG access only indication)。例如,终端设备可接入的PNI-NPN标识信息可如上表5所示。终端设备可接入的PLMN标识可如上表6所示。终端设备是否只能通过CAG小区访问网络的指示的值为是时,表示终端设备只能通过CAG小区访问网络,即终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,该网络可以为5G网络,为5G系统,或者为未来的其他网络。终端设备是否只能通过CAG小区访问网络的指示的值为否时,表示终端设备能够通过CAG小区访问网络且能够通过公网小区访问网络。当终端设备的签约信息中不存在终端设备是否只能通过CAG小区访问网络的指示,且不存在终端设备可接入的PNI-NPN标识信息时,表示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络。当终端设备的签约信息中不存在终端设备是否只能通过CAG小区访问网络的指示但存在终端设备可接入的PNI-NPN标识信息时,表示终端设备能够通过CAG小区访问网络且能够通过公网小区访问网络。
在一种可能的实现中,核心网设备不仅可参考终端设备的签约信息,还可参考第一PLMN标识和/或第一CAG标识向接入网设备发送第三信息。
其中,核心网设备参考终端设备的签约信息,允许或不允许终端设备接入网络的情况,或核心网设备参考终端设备的签约信息,以及第一PLMN标识和/或第一CAG标识,允许 或不允许终端设备接入网络的情况,可参见下文实施方式一~实施方式三所对应的描述,在此不赘述。
通过执行步骤203,核心网设备能够基于终端设备的签约信息对终端设备进行接入控制,有利于保证终端设备接入的网络是终端设备有能力接入的网络。
204、接入网设备参考终端设备请求接入的第一小区所支持的网络信息和终端设备的签约信息,在不允许终端设备接入网络的情况下,向核心网设备发送第四消息。例如,第四消息可为初始上下文建立失败(initial context setup failure)消息、注册拒绝(registration reject)消息、或错误指示(error indication)消息。
本申请实施例中,接入网设备接收第三消息之后,参考终端设备请求接入的第一小区所支持的网络信息和终端设备的签约信息,在不允许终端设备接入网络的情况下,向核心网设备发送第四消息,该第四消息用于指示终端设备接入网络失败。
在一种可能的实现中,第一小区为终端设备请求接入的PNI-NPN的小区。第一小区所支持的网络信息包括PNI-NPN标识信息和/或PLMN标识。例如,第一小区为小区1时,第一小区所支持的网络信息包括PNI-NPN标识信息可如上表1所示。第一小区所支持的PLMN标识可如上表3所示。其中,如果第一小区所支持的PNI-NPN只有一个时,第一小区所支持的PNI-NPN标识信息也可以不是以的形式存在。如果第一小区所支持的公网只有一个时,第一小区所支持的PLMN标识也可以不是以的形式存在。
在一种可能的实现中,接入网设备不仅可参考第一小区支持的网络信息和终端设备的签约信息,还可参考第一PLMN标识和/或第一CAG标识向核心网设备发送第四信息。
在一种可能的实现中,如图3所示,在步骤304中,接入网设备接收第三消息之后,接入网设备参考终端设备请求接入的第一小区所支持的网络信息和终端设备的签约信息,在允许终端设备接入网络的情况下,向核心网设备发送用于指示终端设备接入网络成功的消息。其中,步骤301~步骤303的具体实现方式与步骤201~步骤203的具体实现方式相同,在此不赘述。
其中,接入网设备参考第一小区支持的网络信息和终端设备的签约信息,允许或不允许终端设备接入网络的情况,或接入网设备参考第一小区支持的网络信息、终端设备的签约信息,以及第一PLMN标识和/或第一CAG标识,允许或不允许终端设备接入网络的情况,可参见下文实施方式一~实施方式三所对应的描述,在此不赘述。
可见,实施图2所描述的方法,接入网设备可以接收核心网设备发送的终端设备的签约信息,进而接入网设备能够基于第一小区支持的网络信息和终端设备的签约信息对终端设备进行接入控制,有利于终端设备接入正确的小区。
下面基于三个不同的实施方式,对核心网设备参考终端设备的签约信息,允许或不允许终端设备接入网络的情况,以及接入网设备参考第一小区支持的网络信息和终端设备的签约信息,允许或不允许终端设备接入网络的情况进行介绍。
终端设备的签约信息包括以下信息中的一项或多项:终端设备可接入的PNI-NPN标识信息,终端设备可接入的PLMN,或终端设备是否只能通过CAG小区访问网络的指示。第一小区所支持的网络信息包括PNI-NPN标识信息和/或PLMN标识。
实施方式一:
在实施方式一中,第一消息的NAS信息中可以携带第一CAG标识,第二消息的NAS信 息中也可以携带第一CAG标识。或者,第一消息和第二消息中也可以不携带第一CAG标识。核心网设备参考终端设备的签约信息,允许终端设备接入网络的情况包括以下a1~a3这三种情况中的一项或多项:
a1、签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,终端设备可接入的PNI-NPN标识信息不为空。
a2、签约信息指示终端设备能够通过CAG小区和公网小区访问网络时,终端设备可接入的PLMN标识中包括第一PLMN标识,或终端设备可接入的PNI-NPN标识信息不为空。
a3、签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络,且终端设备可接入的PLMN标识中包括第一PLMN标识。
相应地,接入网设备参考第一小区支持的网络信息和终端设备的签约信息,不允许终端设备接入网络的情况包括以下b1~b3这三种情况中的一项或多项:
b1、签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,且第一小区不支持终端设备可接入的PNI-NPN。
b2、签约信息指示终端设备能够通过CAG小区和公网小区访问网络,且第一小区不支持第一PLMN标识所标识的公网,且第一小区不支持终端设备可接入的PNI-NPN。
b3、签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络,且第一小区不支持第一PLMN标识所标识的公网。
也就是说,只要核心网设备确定终端设备的签约信息a1~a3这3种情况中的任意一一种,核心网设备就可允许终端设备接入网络,并向接入网设备发送第三消息。只要接入网设备确定终端设备的签约信息b1~b3这3种情况中的任意一一种,接入网设备就不允许终端设备接入网络,并向接入网设备发送第四信息。当然,核心网设备允许终端设备接入网络的情况也可以只包括a1~a3中的两种情况或一种情况。例如,如果允许终端设备接入网络的情况也可以只包括a1和a2这两种情况,那么核心网设备在确定终端设备的签约信息a1或a2时,核心网设备就可向接入网设备发送第三消息。再如,允许终端设备接入网络的情况也可以只包括a1这种情况,那么核心网设备在确定终端设备的签约信息a1时,核心网设备就可向接入网设备发送第三消息。接入网设备参考第一小区支持的网络信息和终端设备的签约信息,不允许终端设备接入网络的情况同理,在此不赘述。下文的实施方法二和实施方式三中也同理,后文不再赘述。
下面以具体的示例进一步对实施方式一中核心网设备参考终端设备的签约信息,允许终端设备接入网络的情况,以及接入网设备参考第一小区支持的网络信息和终端设备的签约信息,不允许终端设备接入网络的情况进行说明:
终端设备需要请求接入小区1的PNI-NPN4。PNI-NPN4的标识信息包括PLMN标识4和CAG标识1。终端设备向接入网设备发送第一消息,该第一消息携带PLMN标识4,该第一消息用于请求接入小区1的PNI-NPN4。接入网设备接收第一消息之后,向核心网设备发送第二消息,该第二消息携带PLMN标识4。
假设终端设备是否只能通过CAG小区访问网络的指示的值为是(即终端设备能够通过CAG小区访问网络,且不能通过公网小区访问网络)。如上表5所示,由于终端设备的PNI-NPN标识信息不为空,因此核心网设备向接入网设备发送第三消息。
假设终端设备是否只能通过CAG小区访问网络的指示的值为否(即终端设备能够通过CAG小区访问网络,且通过公网小区访问网络);或者,当终端设备的签约信息中不包括 终端设备是否只能通过CAG小区访问网络的指示但包括终端设备可接入的PNI-NPN标识信息时,表示终端设备能够通过CAG小区访问网络且能够通过公网小区访问网络。如上表5和上表6所示,由于终端设备的PNI-NPN标识信息不为空,和终端设备的PLMN标识中包括PLMN标识4这两个条件中的任意一个条件,因此核心网设备向接入网设备发送第三消息。
假设终端设备的签约信息中不包括是否只能通过CAG小区访问网络的指示且不包括终端设备可接入的PNI-NPN标识信息,则表明终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络。如上表6所示,由于终端设备的PLMN标识中包括PLMN标识4,因此核心网设备向接入网设备发送第三消息。
接入网设备接收第三消息之后,接入网设备基于小区1支持的网络信息和终端设备的签约信息确定是否允许终端设备接入网络。假设终端设备的签约信息指示终端设备能够通过CAG小区访问网络,且不能通过公网小区访问网络。如上表1所示,小区1不支持终端设备可接入的PNI-NPN4~PNI-NPN7。因此,接入网设备确定不允许终端设备接入网络,接入网设备向核心网设备发送第四消息,以指示终端设备接入网络失败。
假设终端设备的签约信息指示终端设备能够通过CAG小区访问网络,且能够通过公网小区访问网络。如上表1所示,小区1不支持终端设备可接入的PNI-NPN4~PNI-NPN7。如上表3所示,小区1不支持PLMN4。因此,接入网设备不允许终端设备接入网络。
如果终端设备的签约信息指示终端设备不能通过CAG小区访问网络,且能够通过公网小区访问网络。如上表3所示,小区1不支持PLMN4。因此,接入网设备不允许终端设备接入网络。
在上述情况a1~a3下,核心网设备才允许终端设备接入网络,有利于保证终端设备接入的网络是终端设备有能力接入的网络。在上述情况b1~b3下,接入网设备不允许终端设备接入网络,能够避免终端设备接入的PNI-NPN是第一小区不支持的PNI-NPN,且能够避免终端设备接入的公网是第一小区不支持的公网。
下面对核心网设备参考终端设备的签约信息,不允许终端设备接入网络的情况进行介绍:
对应于上述a1~a3,对核心网设备参考终端设备的签约信息,不允许终端设备接入网络的情况包括以下c1~c3这三种情况中的一项或多项:
c1、签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,终端设备可接入的PNI-NPN标识信息为空。
c2、签约信息指示终端设备可以通过CAG小区和公网小区访问网络,且终端设备可接入的PLMN标识中不包括第一PLMN标识,且终端设备的PNI-NPN标识信息为空。
c3、签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络,且终端设备可接入的PLMN标识中不包括第一PLMN标识。
在上述情况c1~c3下,核心网设备不允许终端设备接入网络,有利于保证终端设备接入的网络是终端设备有能力接入的网络。
下面接入网设备参考第一小区支持的网络信息和终端设备的签约信息,允许终端设备接入网络的情况进行介绍:
对应于上述b1~b3,接入网设备参考终端设备的签约信息,允许终端设备接入网络的情况包括以下d1~d3这三种情况中的一项或多项:
d1、签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网 络,且第一小区支持终端设备可接入的PNI-NPN。
d2、签约信息指示终端设备能够通过CAG小区和公网小区访问网络时,第一小区支持第一PLMN标识所标识的公网且终端设备可接入的PLMN标识中包括第一PLMN标识;或签约信息指示终端设备能够通过CAG小区和公网小区访问网络时,第一小区支持终端设备可接入的PNI-NPN。
d3、签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络,且第一小区支持第一PLMN标识所标识的公网。
实施方式二:
第一消息和第二消息的NAS信息中还携带第一CAG标识,第三消息还携带第一CAG标识。
核心网设备参考终端设备的签约信息,允许终端设备接入网络的情况包括以下a1~a3这三种情况中的一项或多项:
a1、签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,第一CAG标识和第一PLMN所标识的第一PNI-NPN为终端设备可接入的PNI-NPN。
a2、签约信息指示终端设备可以通过CAG小区和公网小区访问网络时,终端设备可接入的PLMN标识中包括第一PLMN标识,或者,第一PNI-NPN为终端设备可接入的PNI-NPN。
a3、与实施方式一中的a3相同,在此不赘述。
相应地,接入网设备参考第一小区支持的网络信息和终端设备的签约信息,不允许终端设备接入网络的情况包括以下b1~b3这三种情况中的一项或多项:
b1、签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,且第一小区不支持的第一CAG标识和第一PLMN标识所标识的第一PNI-NPN。
b2、签约信息指示终端设备可以通过CAG小区和公网小区访问网络,且第一小区不支持第一PLMN标识所标识的公网,且第一小区不支持的第一PNI-NPN。
b3、与实施方式一中的b3相同,在此不赘述。
在一种可能的实现中,在实施方式二中的a1~a3不满足时,如果实施方式一中的a1~a3满足,则核心网设备允许终端设备接入网络,向接入网设备发送第三消息。例如,核心网设备可以先确定是否满足实施方式二中的a1~a3,在确定不满足实施方式二中的a1~a3时,再确定是否满足实施方式一中的a1~a3。如果实施方式一中的a1~a3满足,则向接入网设备发送第三消息。
在上述情况a1~a3下,核心网设备才允许终端设备接入网络,有利于保证终端设备接入的网络是终端设备有能力接入的网络。在上述情况b1~b3下,接入网设备不允许终端设备接入网络,能够避免终端设备接入的PNI-NPN是第一小区不支持的PNI-NPN,且能够避免终端设备接入的公网是第一小区不支持的公网。
下面对核心网设备参考终端设备的签约信息,不允许终端设备接入网络的情况进行介绍:
对应于实施方式二的上述a1~a3,对核心网设备参考终端设备的签约信息,不允许终端设备接入网络的情况包括以下c1~c3这三种情况中的一项或多项:
c1、签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,第一CAG标识和第一PLMN所标识的第一PNI-NPN不为终端设备可接入的PNI-NPN。
c2、签约信息指示终端设备可以通过CAG小区和公网小区访问网络,且终端设备的PLMN标识中不包括第一PLMN标识,且第一PNI-NPN不为终端设备可接入的PNI-NPN。
c3、与实施方式一中的c3相同,在此不赘述。
在上述情况c1~c3下,核心网设备不允许终端设备接入网络,有利于保证终端设备接入的网络是终端设备有能力接入的网络。
下面接入网设备参考第一小区支持的网络信息和终端设备的签约信息,允许终端设备接入网络的情况进行介绍:
对应于实施方式二的上述b1~b3,接入网设备参考终端设备的签约信息,允许终端设备接入网络的情况包括以下d1~d3这三种情况中的一项或多项:
d1、签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,且第一小区支持第一CAG标识和第一PLMN标识所标识的第一PNI-NPN。
d2、签约信息指示终端设备可以通过CAG小区和公网小区访问网络时,第一小区支持第一PLMN标识所标识的公网且终端设备的PLMN标识中包括第一PLMN标识,或者,第一小区支持第一PNI-NPN且第一PNI-NPN为终端设备可接入的PNI-NPN。
d3、与实施方式一中的d3相同,在此不赘述。
实施方式三:
在实施方式三中,第一消息的NAS信息中可以携带第一CAG标识,第二消息的NAS信息中也可以携带第一CAG标识。或者,第一消息和第二消息中也可以不携带第一CAG标识。
核心网设备参考终端设备的签约信息,允许终端设备接入网络的情况包括以下a1~a3这三种情况中的一项或多项:
a1、签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,终端设备可接入的PNI-NPN标识信息中包括第一PLMN标识。
a2、签约信息指示终端设备可以通过CAG小区和公网小区访问网络时,终端设备可接入的PLMN标识中包括第一PLMN标识,或者终端设备可接入的PNI-NPN标识信息中包括第一PLMN标识。
a3、与实施方式一中的a3相同,在此不赘述。
相应地,接入网设备参考第一小区支持的网络信息和终端设备的签约信息,不允许终端设备接入网络的情况包括以下b1~b3这三种情况中的一项或多项:
b1、签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,且第一小区不支持终端设备可接入的由第一PLMN标识所标识的PNI-NPN。
b2、签约信息指示终端设备可以通过CAG小区和公网小区访问网络,且第一小区不支持第一PLMN标识所标识的公网,且第一小区不支持终端设备可接入的由第一PLMN标识所标识的PNI-NPN。
b3、与实施方式一中的b3相同,在此不赘述。
在上述情况a1~a3下,核心网设备才允许终端设备接入网络,有利于保证终端设备接入的网络是终端设备有能力接入的网络。在上述情况b1~b3下,接入网设备不允许终端设备接入网络,能够避免终端设备接入的PNI-NPN是第一小区不支持的PNI-NPN,且能够避免终端设备接入的公网是第一小区不支持的公网。
下面对核心网设备参考终端设备的签约信息,不允许终端设备接入网络的情况进行介绍:
对应于上述a1~a3,对核心网设备参考终端设备的签约信息,不允许终端设备接入网络的情况包括以下c1~c3这三种情况中的一项或多项:
c1、签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,终端设备可接入的PNI-NPN标识信息中不包括第一PLMN标识。
c2、签约信息指示终端设备可以通过CAG小区和公网小区访问网络,且终端设备可接入的PLMN标识中不包括第一PLMN标识,且终端设备的PNI-NPN标识信息中不包括第一PLMN标识。
c3、与实施方式一中的c3相同,在此不赘述。
在上述情况c1~c3下,核心网设备不允许终端设备接入网络,有利于保证终端设备接入的网络是终端设备有能力接入的网络。
下面接入网设备参考第一小区支持的网络信息和终端设备的签约信息,允许终端设备接入网络的情况进行介绍:
对应于上述b1~b3,接入网设备参考终端设备的签约信息,允许终端设备接入网络的情况包括以下d1~d3这三种情况中的一项或多项:
d1、签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,且第一小区支持终端设备可接入的由第一PLMN标识所标识的PNI-NPN。
d2、签约信息指示终端设备可以通过CAG小区和公网小区访问网络时,第一小区支持第一PLMN标识所标识的公网且终端设备的PLMN标识中包括第一PLMN标识,或第一小区支持终端设备可接入的由第一PLMN标识所标识的PNI-NPN。
d3、与实施方式一中的d3相同,在此不赘述。
在上述情况d1~d3下,接入网设备才允许终端设备接入网络,能够避免终端设备接入的PNI-NPN是第一小区不支持的PNI-NPN,且能够避免终端设备接入的公网是第一小区不支持的公网。
在一种可能的实现中,还可对上述实施方式一~实施方式三进行改进。下面分别对实施方式一~实施方式三的改进方式进行介绍:
实施方式一的改进1:
在满足实施方式一的上述b1或上述b2时,接入网设备可以不向核心网设备发送第四消息。
例如,请参见图4,图4中步骤401~步骤403的具体实现方式与上述步骤201~步骤203相同,在此不赘述。如图4所示,在步骤404中,接入网设备向核心网设备发送第一目标信息,该第一目标信息至少包括第二小区的标识。可选的,第一目标信息还包括第二CAG标识和/或第二PLMN标识。第二CAG标识与第一CAG标识相同或不同。第二PLMN标识与第一PLMN标识相同或不同。第二小区为支持第二CAG标识和第二PLMN标识所标识的第二PNI-NPN的小区,且终端设备可接入第二PNI-NPN。图4以第一目标信息包括第二小区的标识、第二CAG标识和第二PLMN标识为例。核心网设备接收该第一目标信息之后,可将终端设备接入到第二小区下的第二PNI-NPN。
在步骤405中,接入网设备还可向终端设备发送第一目标信息,以通知终端设备接入到第二小区下的第二PNI-NPN。可选的,接入网设备也可以不向终端设备发送第一目标信息,由核心网设备在接收到目标信息之后,将第一目标信息转发给终端设备。或者,接入网设备不向核心网设备发送第一目标信息,由终端设备在接收到第一目标信息之后,将第 一目标信息转发给核心网设备。
可选的,如果第二PNI-NPN与第一PNI-NPN相同,则第一目标信息中可以不包括第二PNI-NPN标识信息。如果第二PNI-NPN与第一PNI-NPN不相同,则第一目标信息中包括第二PNI-NPN标识信息。可选的,如果第二PLMN标识与第一PLMN标识标识相同,则第一目标信息中可以不包括第二PLMN标识,否则,第一目标信息中包括第二PLMN标识。如果第二CAG标识与第一CAG标识标识相同,则第一目标信息中可以不包括第二CAG标识,否则,第一目标信息中包括第二CAG标识。可选的,接入网设备可通过RRC重配置(RRC reconfiguration)消息,向终端设备发送第一目标信息。可选的,接入网设备可在初始接入或者切换的过程中发送该RRC重配置消息。
举例来说,终端设备请求接入小区1下的PNI-NPN4。PNI-NPN4的标识信息包括PLMN标识4和CAG标识1。如上表1所示,小区1不支持PNI-NPN4。如上表2所示,小区2支持PNI-NPN4。因此,接入网设备向核心网设备发送第一目标信息,该第一目标信息包括小区2的标识,以指示核心网设备将终端设备接入到第二小区下的PNI-NPN4。或者,接入网设备重新从终端设备可接入的PNI-NPN中选择一个小区2所支持的PNI-NPN。例如,选择的是PNI-NPN5,那么接入网设备向核心网设备发送第一目标信息,该第一目标信息包括小区2的标识和PNI-NPN标识5,以指示核心网设备将终端设备接入到小区2下的PNI-NPN5。由于PNI-NPN标识5中的CAG标识为CAG标识1,PNI-NPN标识1中的CAG标识也为CAG标识1。因此,该第一目标信息可包括小区2的标识和PLMN标识5。
实施方式二的改进1:
在满足实施方式二的上述b1或上述b2时,接入网设备可以不向核心网设备发送第四消息。实施方式二中的改进1接入网设备也可以执行和实施例方式一的改进1中接入网设备的操作。区别在于,实施方式二中的改进1中,第一目标信息至少包括第二小区的标识,或者还可包括第一PLMN标识和第一CAG标识。其中,第二小区为支持第一PLMN标识和第一CAG标识所标识的第一PNI-NPN的小区。或者,该第一目标信息至少包括第二CAG标识,或者还包括第一小区的标识,或者第一PLMN标识。其中,第二CAG标识和第一PLMN标识所标识的第二PNI-NPN为终端设备可接入的PNI-NPN。
实施方式三的改进1:
在满足实施方式三的上述b1或上述b2时,接入网设备可以不向核心网设备发送第四消息。实施方式三中的改进1接入网设备也可以执行和实施例方式一的改进1中接入网设备的操作。区别在于,实施方式三中的改进1中,第一目标信息至少包括至少包括第二小区的标识和第二CAG标识,或还可包括第一PLMN标识。第二CAG标识和第一PLMN标识所标识的PNI-NPN为第二小区支持的PNI-NPN。
或者,实施方式三中的改进1中,该第一目标信息至少包括第二小区的标识,或还可包括第一CAG标识和/或第一PLMN标识。第二小区支持第一CAG标识和第一PLMN标识标识的PNI-NPN。
或者,实施方式三中的改进1中,该第一目标信息至少包括第二CAG标识,或还包括第一PLMN标识和/或第一小区标识。第一小区支持第二CAG标识和第一PLMN标识所标识的网络
在实施方式一的上述b2或上述b3时,或实施方式二的上述b2或上述b3时,或实施方式三的上述b2或上述b3时,接入网设备可以不向核心网设备发送第四消息。接入网设备中可 存储第二小区所支持的PLMN标识。接入网设备可选择一个支持第一PLMN标识所标识的公网的第二小区。接入网设备可向核心网设备发送第二小区的标识。核心网设备接收该第二小区的标识之后,可将终端设备接入到第二小区下的第一PLMN标识所标识的公网。接入网设备还可将第二小区的标识发送给终端设备。或者,接入网设备将第二小区的标识发送给终端设备,由终端设备转发给核心网设备,核心网设备接收该第二小区的标识之后,再将终端设备接入到第二小区下的第一PLMN标识所标识的公网。或者,接入网设备除了向核心网设备或终端设备发送第二小区的标识,还可向核心网设备或终端设备发送第一CAG标识和/或第一PLMN标识。可选的,接入网设备可通过RRC重配置(RRC reconfiguration)消息,向终端设备发送第二小区的标识。或者,RRC重配置消息中除携带第二小区的标识外,还携带第一CAG标识和/或第一PLMN标识。可选的,接入网设备可在初始接入或者切换的过程中发送该RRC重配置消息。
实施方式一的改进2:
在实施方式一的改进2中,上述接入网设备为第一接入网设备。在实施方式一的上述b1或上述b2时,第一接入网设备可以不向核心网设备发送第四消息。
例如,请参见图5,图5中步骤501~步骤503的具体实现方式与上述步骤201~步骤203相同,在此不赘述。5如图5所示,在步骤504中,第一接入网设备向第二接入网设备发送第四目标信息,该第四目标信息包括以下信息中的一项或多项:终端设备的标识信息、第二接入网设备下的第二小区的标识、第二CAG标识、第二PLMN标识、终端设备的上下文信息、终端设备的签约信息或核心网设备的标识;其中,第二小区为支持第二PNI-NPN的小区。第二CAG标识和第二PLMN标识标识的第二PNI-NPN为终端设备可接入的PNI-NPN。
例如,第四目标信息可以包括终端设备的标识信息、第二小区的标识、第二CAG标识、第二PLMN标识和核心网设备的标识,这样第二接入网设备就可校验第二小区的标识是否支持第二CAG标识、第二PLMN标识标识的第二PNI-NPN,在确认第二小区支持第二PNI-NPN时,向第一接入网设备发送第五目标信息和向核心网设备发送第六目标信息。再如,第四目标信息可以包括终端设备的标识信息、第二小区的标识、第二CAG标识、第二PLMN标识、终端设备的签约信息和核心网设备的标识,这样第二接入网设备就可校验第二小区的标识是否支持第二CAG标识、第二PLMN标识标识的第二PNI-NPN,并基于终端设备的签约信息校验终端设备是否可接入第二PNI-NPN,在确认第二小区支持第二PNI-NPN,且终端设备可接入第二PNI-NPN时,向第一接入网设备发送第五目标信息和向核心网设备发送第六目标信息。再如,第四目标信息可以包括终端设备的标识信息、终端设备的签约信息,这样第二接入网设备基于其下的小区支持的网络信息和终端设备的签约信息为终端设备选择一个小区的网络进行接入。再如,第四目标信息可以包括终端设备的标识信息、第二接入网设备下的第二小区的标识、第二CAG标识、第二PLMN标识、终端设备的上下文信息、终端设备的签约信息和核心网设备的标识。图5以第四目标信息包括终端设备的标识信息、第二接入网设备下的第二小区的标识、第二CAG标识、第二PLMN标识和核心网设备的标识为例。
在步骤505中,第二接入网设备接收第四目标信息之后,向第一接入网设备发送第五目标信息,该第五目标信息包括以下信息中的一项或多项:终端设备的标识信息、第二接入网设备下的第二小区的标识、第二CAG标识、第二PLMN标识或供所述终端设备接入所述第二小区的配置参数信息。例如,该配置参数信息可以为第二小区的SRB或DRB的配置 参数信息。图5以第五目标信息包括终端设备的标识信息、第二小区的标识、第二CAG标识、第二PLMN标识和供终端设备接入所述第二小区的配置参数信息为例。
或者,该第五目标信息包括以下信息中的一项或多项:终端设备的标识信息、第二接入网设备下的第三小区的标识、第三CAG标识、第三PLMN标识、供终端设备接入第三小区的配置参数信息;其中,第三CAG标识和第三PLMN标识所标识的第三PNI-NPN为终端设备可接入的PNI-NPN。第三小区为支持第三PNI-NPN的小区。也就是说,由第二接入网设备重新为终端设备选择一个终端设备可接入的PNI-NPN。
在步骤506中,第一接入网设备接收该第五目标信息之后,向终端设备发送第五目标信息。可选的,第一接入网设备可通过RRC重配置(RRC reconfiguration)消息携带第五目标信息。第一接入网设备可在初始接入或者切换的过程中发送第五目标信息。
在步骤507中,第二接入网设备接收第四目标信息之后,向核心网设备发送第六目标信息,第六目标信息包括以下信息中的一项或多项:终端设备的标识信息、第二接入网设备下的第二小区的标识、第二CAG标识、第二PLMN标识。核心网设备接收第六目标信息之后,将终端设备接入第二小区的第二PNI-NPN。或者,第六目标信息包括以下信息中的一项或多项:终端设备的标识信息、第二接入网设备下的第三小区的标识、第三CAG标识、第三PLMN标识。核心网设备接收第六目标信息之后,将终端设备接入第三小区的第三PNI-NPN。图5以第六目标信息包括终端设备的标识信息、第二接入网设备下的第二小区的标识、第二CAG标识和第二PLMN标识为例。
实施方式二的改进2:
在满足实施方式二的上述b1或上述b2时,接入网设备可以不向核心网设备发送第四消息。实施方式二中的改进2接入网设备也可以执行和实施例方式一的改进2中接入网设备的操作。区别在于,实施方式二中的改进2中,第四目标信息包括以下信息中的一项或多项:终端设备的标识信息、第二接入网设备下的第二小区的标识、第一CAG标识、第一PLMN标识、终端设备的上下文信息、终端设备的签约信息或核心网设备的标识。
第五目标信息包括以下信息中的一项或多项:终端设备的标识信息、第二接入网设备下的第二小区的标识、第一CAG标识、第一PLMN标识或供所述终端设备接入所述第二小区的配置参数信息。第二小区的为第二接入网设备下支持第一CAG标识和第一PLMN标识所标识的网络的小区。
第六目标信息包括以下信息中的一项或多项:终端设备的标识信息、第二接入网设备下的第二小区的标识、第一CAG标识、第一PLMN标识。
实施方式三的改进2:
在满足实施方式三的上述b1或上述b2时,接入网设备可以不向核心网设备发送第四消息。实施方式三中的改进2接入网设备也可以执行和实施例方式一的改进2中接入网设备的操作。区别在于,实施方式三中的改进2中,第四目标信息包括以下信息中的一项或多项:终端设备的标识信息、第二接入网设备下的第二小区的标识、第二CAG标识、第一PLMN标识、终端设备的上下文信息、终端设备的签约信息或核心网设备的标识。第二CAG标识和第一PLMN标识所标识的PNI-NPN为终端设备和第二小区支持的PNI-NPN。
第五目标信息包括以下信息中的一项或多项:终端设备的标识信息、第二接入网设备下的第二小区的标识、第二CAG标识、第一PLMN标识或供所述终端设备接入所述第二小区的配置参数信息。例如,该配置参数信息可以为第二小区的SRB或DRB的配置参数信息。 或者,第五目标信息包括以下信息中的一项或多项:终端设备的标识信息、第二接入网设备下的第三小区的标识、第三CAG标识、第一PLMN标识或供所述终端设备接入所述第二小区的配置参数信息。第三CAG标识和第一PLMN标识所标识的PNI-NPN为终端设备和第三小区支持的PNI-NPN。
第六目标信息包括以下信息中的一项或多项:终端设备的标识信息、第二接入网设备下的第二小区的标识、第二CAG标识、第一PLMN标识。或者,第六目标信息包括以下信息中的一项或多项:终端设备的标识信息、第二接入网设备下的第三小区的标识、第三CAG标识、第一PLMN标识。
在一种可能的实现中,在实施方式一的上述b2或上述b3时,或者实施方式二的上述b2或上述b3时,或者实施方式三的上述b2或上述b3时,第一接入网设备可以不向核心网设备发送第四消息。第一接入网设备中可存储第二接入网设备下的小区所支持的PLMN标识。第一接入网设备可确定支持第一PLMN标识的第二接入网设备下的第二小区。第一接入网设备可向第二接入网设备发送第二小区的标识、第一PLMN标识、终端设备的上网下文信息、终端设备的签约信息或核心设备的标识中的至少一种信息。其中,第二小区为第二接入网设备下支持第一PLMN标识所标识的公网的小区。
第二接入网设备接收第二小区的标识、第一PLMN标识、终端设备的上下文信息、终端设备的签约信息或核心网设备的标识中的至少一种信息之后,向第一接入网设备发送终端设备的标识、第二小区的标识、第一PLMN标识和第二小区的该配置参数信息中的至少一种,并向核心网设备发送终端设备的标识、第二小区的标识和第一PLMN标识中的至少一种信息。核心网设备接收该终端设备的标识、第二小区的标识和第一PLMN标识中的至少一种信息之后,将终端设备接入第二小区的第一PLMN标识所标识的公网下。
请参见图6,图6是本申请实施例提供的一种接入控制方法的流程示意图。如图6所示,该接入控制方法包括如下步骤601~步骤606。图6所示的接入控制方法是对图2所示的接入控制方法的改进。其中:
601、终端设备向接入网设备发送第一消息。
602、接入网设备向核心网设备发送第二消息。
603、核心网设备参考终端设备的签约信息,在允许终端设备接入网络的情况下,向接入网设备发送第三消息。
604、接入网设备参考终端设备请求接入的第一小区所支持的网络信息和终端设备的签约信息,在不允许终端设备接入网络的情况下,向核心网设备发送第四消息。
其中,步骤601~步骤604的具体实现方式可参见上述实施例中的描述,在此不赘述。
其中,第四消息中可携带原因值,该原因值用于指示终端设备接入网络失败的原因。
例如,终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络时,该原因值可以指示终端设备所请求接入的小区不支持终端设备可接入的任意一个PNI-NPN,或,终端设备所请求接入的小区不支持终端设备可接入的由第一PLMN标识所标识的PNI-NPN。或者,终端设备可以通过CAG小区和公网小区访问网络时,该原因值可以指示终端设备所请求接入的小区不支持终端设备可接入的任意一个PNI-NPN,且终端设备所请求接入的小区并不支持终端设备可接入的公网,或,终端设备所请求接入的小区不支持终端设备可接入的由第一PLMN标识所标识的PNI-NPN和公网。或者,终端设备能够通过公网小区访问 网络且不能通过CAG小区访问网络时,该原因值可以指示终端设备所请求接入的小区并不支持终端设备可接入的公网,或终端设备所请求接入的小区不支持终端设备可接入的由第一PLMN标识所标识的公网。可选的,原因值可用invalid NPN,invalid PNI-NPN,invalid CAG ID(s),invalid network,invalid PLMN,invalid PNI-NPN and PLMN,invalid NPN and PLMN,valid PLMN ID but PNI-NPN unavailable,PNI-NPN available but invalid PLMN ID,valid PLMN ID but NPN unavailable等来表示。
605、核心网设备向接入网设备发送第五消息。例如,该第五消息可以为UE上下文释放命令(UE context release command)、注册拒绝(registration reject)消息、或错误指示(error indication)消息。
本申请实施例中,核心网设备接收第四消息之后,向接入网设备发送第五消息。其中,该第五消息携带该原因值,该第五消息用于通知接入网设备释放为终端设备配置的资源。接入网设备接收第五消息之后,释放为终端设备配置的资源。可选的,该资源可以为接口资源,如NG口资源,或S1口资源。
606、接入网设备向终端设备发送第六消息。例如,该第六消息可以为RRC释放(RRC release)消息。
本申请实施例中,第一接入网设备接收第五消息之后,向终端设备发送第六消息。该第六消息携带原因值,该第六消息用于通知终端设备释放RRC连接。终端设备接收该第六消息之后,释放终端设备的RRC连接。或者,该第六消息用于通知终端设备释放空口资源。终端设备接收该第六消息之后,释放终端设备的空口(Uu口)资源。
通过实施图6所描述的方法,能够在不允许终端设备接入网络的情况下,及时地释放终端设备的RRC连接以及及时释放为终端设备配置的资源。
[根据细则91更正 22.11.2019] 
请参见图7,图7是本申请实施例提供的一种接入控制方法的流程示意图。如图7所示,该接入控制方法包括如下步骤701~步骤710。图7所示的接入控制方法是对图6所示的接入控制方法的改进。图7与图6相比,图7所示的接入控制方法新增加了步骤704、步骤705、步骤709和步骤710。其中:
704、核心网设备向接入网设备发送第七消息。例如,第七消息可以为下行链路信息传输(downlink information transport)消息,或者,初始上下文建立请求(initial context setup request)消息。
其中,该第七消息用于指示终端设备鉴权成功、安全性验证成功、注册成功或者附着成功。
其中,步骤704可以在核心网设备参考终端设备的签约信息,在允许终端设备接入网络的情况下执行的。核心网设备可以先发送第七消息,再发送第三消息,或者,核心网设备可以先发送第三消息,再发送第七消息,或者,第三消息和第七消息被同时发送。
705、接入网设备向终端设备发送第八消息。例如,第八消息可以为下行链路信息转移(downlink information transfer)消息。
本申请实施例中,接入网设备接收第七消息之后,向终端设发送第八消息。该第八消息用于指示终端设备鉴权成功、安全性验证成功、注册成功或者附着成功。
709、核心网设备向接入网设备发送第九消息。例如,第九消息可以为下行链路信息 传输(downlink information transport)消息、注册拒绝(registration reject)消息、错误指示(error indication)消息、或初始上下文建立失败(initial context setup failure)消息。
本申请实施例中,核心网设备接收第四消息之后,向接入网设备发送第九消息。该第九消息携带原因值,该第九消息指示终端设备鉴权失败、安全性验证失败、注册失败或者附着失败。核心网设备接收到第四消息之后,可与其他核心网设备交互释放终端设备的注册等信息和为所述终端设备分配的相关资源。其中,步骤707可以在步骤709之前执行,或之后执行,或同时执行。
710、接入网设备向终端设备发送第十消息。例如,第十消息可以为下行链路信息转移(downlink information transfer)消息、RRC释放(RRC release)消息、注册拒绝(registration reject)消息、错误指示(error indication)消息。
本申请实施例中,接入网设备接收第九消息之后,向终端设备发送第十消息。该第十消息携带原因值,该第十消息指示终端设备鉴权失败、安全性验证失败、注册失败或者附着失败。终端设备接收第十消息之后,可执行detach过程,释放注册信息。
通过实施图7所描述的方法,能够在不允许终端设备接入网络的情况下,及时地释放终端设备的释放注册信息。
图8是本申请实施例提供的一种接入控制方法的流程示意图。8该方法包括如下步骤801~步骤805,其中:
801、终端设备向接入网设备发送第一消息。第一消息的类型可参见上述步骤201中第一消息的类型,在此不赘述。
其中,该第一消息用于请求接入第一小区的网络。该第一消息携带终端设备请求接入的网络的第一PLMN标识和指示信息。如果终端设备请求接入PNI-NPN,则第一PLMN标识为PNI-NPN的PLMN标识。如果终端设备请求接入公网,则PLMN标识为公网的PLMN标识。其中,第一小区为接入网设备下的小区。
该指示信息用于指示终端设备请求接入第一小区所支持的PNI-NPN。例如,该指示信息的比特值为0时,指示终端设备请求接入第一小区所支持的PNI-NPN。或者,该指示信息的比特值为1时,指示终端设备请求接入第一小区所支持的PNI-NPN。
或者,在终端设备不请求接入第一小区所支持的PNI-NPN时,第一消息中可以不携带指示信息。在终端设备请求接入第一小区所支持的PNI-NPN时,第一消息中携带指示信息。如果第一消息携带指示信息,则接入网设备向核心网设备发送第一小区所支持的网络信息。
在一种可能的实现中,该指示信息携带于第一消息的AS信息中,以便于接入网设备可以解析到该指示信息。在AS信息中发送指示信息,既避免了AS信息中携带CAG ID导致泄露隐私的可能,又可使接入网设备基于指示信息决定是否向核心网设备发送第一小区所支持的PNI-NPN信息,从而避免即使公网终端设备请求接入第一小区时接入网设备也向核心网设备发送第一小区所支持的PNI-NPN信息的可能。
在一种可能的实现中,第一PLMN标识对应至少两个CAG标识。如果第一PLMN标识对应一个CAG标识时,非法用户窃取到第一PLMN标识和指示信息之后,就可基于PLMN标识和CAG标识的对应关系,确定出用户想要访问的PNI-NPN。通过在第一PLMN标识对应至少两个CAG标识时,在第一消息中携带指示信息,这样可以避免非法用户窃取到用户想要访问PNI-NPN。
在一种可能的实现中,第一PLMN标识对应一个CAG标识时,第一消息中也可以携带指示信息。
在一种可能的实现中,第一PLMN标识对应至少两个CAG标识,或者第一小区支持至少两个CAG标识。终端设备请求接入PNI-NPN时,可在第一消息的AS信息中携带至少两个CAG标识(也可以是至少两个CAG标识的索引(index),或至少两个PNI-NPN标识信息的索引),该指示信息可选择性携带。可选的,AS信息中携带的至少两个CAG标识中至少有一个是终端设备请求接入的PNI-NPN所对应的CAG标识。例如,如果第一PLMN标识对应至少两个CAG标识时,非法用户窃取到第一消息中的第一PLMN标识和至少两个CAG标识之后,并不能基于PLMN标识和多个CAG标识的对应关系,确定出用户想要访问的具体的PNI-NPN。通过在第一PLMN标识对应至少两个CAG标识,或者第一小区支持至少两个CAG标识时,在第一消息中携带至少两个CAG标识,并选择性的携带所述指示信息,这样可以避免非法用户窃取到用户想要访问PNI-NPN。
可选的,AS信息中携带的至少两个CAG标识中也可不包含任何终端设备请求接入的PNI-NPN所对应的CAG标识,在这种情况下,该至少两个CAG标识可具有指示信息的功能,以指示终端设备请求接入第一小区所支持的PNI-NPN。终端设备请求访问第一小区所支持的PNI-NPN可以是某一个或者多个PNI-NPN。
802、接入网设备向核心网设备发送第二消息。例如,该第二消息可以为初始终端设备消息(initial UE message)。
本申请实施例中,接入网设备接收第一消息之后,接入网设备向核心网设备发送第二消息。该第二消息携带第一PLMN标识和第一小区所支持的网络信息。
在一种可能的实现中,该第一消息还携带NAS信息,该NAS信息中携带第一CAG标识。第二消息还携带NAS信息,该NAS信息中携带第一CAG标识。可选的,终端设备向接入网设备发送第一PLMN标识和第一CAG标识时,第一PLMN标识和第一CAG标识也可以不在同一个消息中发送。接入网设备向核心网设备发送第一PLMN标识和第一CAG标识时,第一PLMN标识和第一CAG标识也可以不在同一个消息中发送。
在一种可能的实现中,该第一消息和第二消息中均不携带第一CAG标识。即终端设备既不在AS信息又不在NAS信息上报选择的CAG标识。
在一种可能的实现中,第二消息还携带指示信息。
在一种可能的实现中,第一小区所支持的网络信息包括以下信息中的一种或多种:第一小区所支持的第一PLMN标识所对应的CAG标识,或第一小区所支持的PNI-NPN标识信息,或第一小区所支持的PLMN标识。例如,如果第一小区为小区1,接入网设备可以向核心网设备发送上表1所示的PNI-NPN标识信息1和PNI-NPN标识信息2,以及上表3所示的PLMN标识1~PLMN标识3。或者,如果第一PLMN标识为PLMN标识1,则接入网设备向核心网设备发送CAG标识1。
在一种可能的实现中,在指示信息指示终端设备请求接入第一小区所支持的PNI-NPN的情况下,接入网设备在第二消息中携带第一小区所支持的第一PLMN标识所对应的CAG标识,或第一小区所支持的PNI-NPN标识信息。通过指示信息,可以减少接入网设备向核心网设备发送第二消息的开销。
803、核心网设备参考第一小区所支持的网络信息和终端设备的签约信息,在不允许终端设备接入网络的情况下,向接入网设备发送第三消息。例如,该第三消息可以为UE 上下文释放命令(UE context release command)、注册拒绝(registration reject)消息、或错误指示(error indication)消息。
本申请实施例中,核心网设备接收第二消息之后,参考第一小区所支持的网络信息和终端设备的签约信息,在不允许终端设备接入网络的情况下,向接入网设备发送第三消息。其中,该第三消息用于通知接入网设备释放为终端设备配置的资源。接入网设备接收第三消息之后,释放为终端设备配置的资源。该资源可以是接口资源,例如,NG口资源或S1口资源。
在一种可能的实现中,核心网设备参考第一小区所支持的网络信息和终端设备的签约信息,确定是否允许终端设备接入网络,在不允许终端设备接入网络的情况下,向接入网设备发送第三消息。可选的,在允许终端设备接入网络的情况下,核心网设备可以将终端设备接入网络。
在一种可能的实现中,核心网设备不仅可参考第一小区所支持的网络信息和终端设备的签约信息,还可参考第一PLMN标识和/或第一CAG标识和/或所述指示信息,来确定是否允许终端设备接入网络。
其中,核心网设备参考第一小区所支持的网络信息和终端设备的签约信息,允许或不允许终端设备接入网络的情况,或核心网设备参考终端设备的签约信息,以及第一PLMN标识和/或第一CAG标识,允许或不允许终端设备接入网络的情况,可参见下文实施方式四~实施方式六所对应的描述,在此不赘述。
804、接入网设备向终端设备发送第四消息。例如,该第四消息可以为RRC释放(RRC release)消息。
本申请实施例中,接入网设备接收第三消息之后,向终端设备发送第四消息。该第四消息用于通知终端设备释放RRC连接。
805、终端设备释放RRC连接。
本申请实施例中,终端设备接收第四消息之后,释放RRC连接。或者,该第四消息用于通知终端设备释放空口资源。终端设备接收该第四消息之后,释放终端设备的空口(Uu口)资源。
在一种可能的实现中,上述第三消息、第四消息中还携带原因值,该原因值用于指示终端设备接入网络失败的原因。关于该原因值的描述可参见图6所对应的实施例中的描述,在此不赘述。
在一种可能的实现中,在终端设备请求接入第一小区所支持的PNI-NPN时,第一消息中不携带指示信息。在终端设备不请求接入第一小区所支持的PNI-NPN时,第一消息中携带指示信息。如果第一消息不携带指示信息,则接入网设备向核心网设备发送第一小区所支持的网络信息。否则,接入网设备向核心网设备不发送第一小区所支持的网络信息。
在一种可能的实现中,上述指示信息也可用于指示终端设备是否请求接入第一小区所支持的公网。在指示信息指示终端设备不请求接入第一小区所支持的公网时,接入网设备向核心网设备发送第一小区所支持的网络信息。否则,接入网设备不向核心网设备发送第一小区所支持的网络信息。
或者,终端设备可以在不请求接入第一小区所支持的公网时,在第一消息中不携带指示信息。终端设备在请求接入第一小区所支持的公网时,在第一消息中携带指示信息。在第一消息中不携带指示信息时,接入网设备向核心网设备发送第一小区所支持的网络信息。 否则,接入网设备不向核心网设备发送第一小区所支持的网络信息。
或者,终端设备可以在请求接入第一小区所支持的公网时,在第一消息中不携带指示信息。终端设备在不请求接入第一小区所支持的公网时,在第一消息中携带指示信息。在第一消息中携带指示信息时,接入网设备向核心网设备发送第一小区所支持的网络信息。否则,接入网设备不向核心网设备发送第一小区所支持的网络信息。
可见,实施图8所描述的方法,接入网设备可以向核心网设备发送小区支持的网络信息,从而核心网设备可以基于小区支持的网络信息对终端设备进行接入控制,有利于终端设备接入正确的小区。
下面基于三个不同的实施方式,对核心网设备参考第一小区支持的网络信息和终端设备的签约信息,允许或不允许终端设备接入网络的情况,以及接入网设备参考第一小区支持的网络信息和终端设备的签约信息,允许或不允许终端设备接入网络的情况进行介绍。
实施方式四:
终端设备的签约信息包括以下信息中的一种或多种:终端设备可接入的PNI-NPN的标识信息、终端设备可接入的PLMN标识或终端设备是否只能通过CAG小区访问网络的指示;第一小区所支持的网络信息包括以下信息中的一种或多种:第一小区所支持的第一PLMN标识所对应的CAG标识,或第一小区所支持的PNI-NPN标识信息,或第一小区所支持的PLMN标识。
核心网设备参考第一小区所支持的网络信息和终端设备的签约信息,不允许终端设备接入网络的情况包括以下a1~a3这三种情况中的一项或多项:
a1、签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络时,第一小区不支持终端设备可接入的PNI-NPN或者终端设备可接入的PNI-NPN标识信息为空。
a2、签约信息指示终端设备能够通过CAG小区和公网小区访问网络时,第一小区不支持终端设备可接入的PNI-NPN或终端设备可接入的PNI-NPN标识信息为空,并且第一小区不支持第一PLMN标识所标识的公网或终端设备可接入的PLMN标识中不包括第一PLMN标识。
a3、签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络时,第一小区不支持第一PLMN标识所标识的公网或者终端设备可接入的PLMN标识中不包括第一PLMN标识。
对应地,核心网设备参考第一小区所支持的网络信息和终端设备的签约信息,允许终端设备接入网络的情况包括以下b1~b3这三种情况中的一项或多项:
b1、签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,第一小区支持终端设备可接入的PNI-NPN。
b2、签约信息指示终端设备能够通过CAG小区和公网小区访问网络时,第一小区支持终端设备可接入的PNI-NPN;或者,签约信息指示终端设备能够通过CAG小区和公网小区访问网络时,第一小区支持第一PLMN标识所标识的公网,且终端设备可接入的PLMN标识中包括第一PLMN标识。
b3、签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络时,第一小区支持第一PLMN标识所标识的公网,且终端设备可接入的PLMN标识中 包括第一PLMN标识。
实施方式五:
如果第一消息和第二消息的NAS信息中还包括第一CAG标识。核心网设备参考第一小区所支持的网络信息和终端设备的签约信息,不允许终端设备接入网络的情况以下情况中的一项或多项:
a1、签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络时,第一小区不支持第一PLMN标识和第一CAG标识所标识的第一PNI-NPN,或第一PNI-NPN不为终端设备可接入的PNI-NPN。
a2、签约信息指示终端设备可以通过CAG小区和公网小区访问网络,且第一小区不支持第一CAG标识和第一PLMN标识所标识的第一PNI-NPN,或第一PNI-NPN不为终端设备可接入的PNI-NPN时,第一小区不支持第一PLMN标识所标识的公网或终端设备可接入的PLMN标识中不包括第一PLMN标识。
a3、与实施方式四中a3相同,具体参见实施方式四中a3的描述。
对应地,核心网设备参考第一小区所支持的网络信息和终端设备的签约信息,允许终端设备接入网络的情况包括以下b1~b3这三种情况中的一项或多项:
b1、签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,第一小区支持第一CAG标识和第一PLMN标识所标识的第一PNI-NPN,且第一PNI-NPN为终端设备可接入的PNI-NPN。
b2、签约信息指示终端设备能够通过CAG小区和公网小区访问网络时,第一小区支持第一PNI-NPN,且第一PNI-NPN为终端设备可接入的PNI-NPN;或者,签约信息指示终端设备能够通过CAG小区和公网小区访问网络时,第一小区支持第一PLMN标识所标识的公网,且终端设备可接入的PLMN标识中包括第一PLMN标识。
b3、与实施方式四中b3相同,具体可参见实施方式四中b3的描述。
实施方式六:
不允许终端设备接入网络的情况包括以下情况中的一项或多项:
a1、签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络时,第一小区不支持终端设备可接入的由第一PLMN标识所标识的PNI-NPN,或终端设备可接入的PNI-NPN标识信息中不包括第一PLMN标识。
a2、签约信息指示终端设备可以通过CAG小区和公网小区访问网络,第一小区不支持终端设备可接入的由第一PLMN标识所标识的PNI-NPN,或终端设备可接入的PNI-NPN标识信息中不存在第一PLMN标识时,第一小区不支持第一PLMN标识所标识的公网或终端设备可接入的PLMN标识中不存在第一PLMN标识。
a3、与实施方式四中a3相同,具体参见实施方式四中a3的描述。
对应地,核心网设备参考第一小区所支持的网络信息和终端设备的签约信息,允许终端设备接入网络的情况包括以下b1~b3这三种情况中的一项或多项:
b1、签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,且第一小区支持终端设备可接入的由第一PLMN标识所标识的PNI-NPN,且终端设备可接入的PNI-NPN标识信息中包括第一PLMN标识。
b2、签约信息指示终端设备可以通过CAG小区和公网小区访问网络时,第一小区支持终端设备可接入的由第一PLMN标识所标识的PNI-NPN,且终端设备可接入的PNI-NPN 标识信息中包括第一PLMN标识。或者签约信息指示终端设备可以通过CAG小区和公网小区访问网络时,第一小区支持第一PLMN标识所标识的公网,且终端设备可接入的PLMN标识中包括第一PLMN标识。
b3、与实施方式四中b3相同,具体可参见实施方式四中b3的描述。
通过实施上述实施方式四~实施方式六,有利于终端设备接入正确的小区。
图9是本申请实施例提供的一种接入控制方法的流程示意图。如图9所示,该接入控制方法包括如下步骤901~步骤905,其中:
901、接入网设备向核心网设备发送接入网设备下的小区支持的网络信息。
其中,接入网设备可以在NG接口建立或者更新时,向核心网设备发送接入网设备下的小区支持的网络信息。例如,接入网设备下的小区支持的网络信息可以携带于NG建立请求(NG setup request)消息、RAN配置更新(RAN Configuration update)消息。
在一种可能的实现中,接入网设备下的小区支持的网络信息包括以下一项或多项信息:小区标识信息、小区对应的PNI-NPN标识信息、小区对应的PLMN标识、小区所在的跟踪区号(Tracing Area Code,TAC)。小区标识信息可以为小区标识(cell identity)、全球小区识别码(cell global identification,CGI)、或物理小区标识(physical cell identifier,PCI)。PNI-NPN标识信息可包含PLMN标识和/或CAG标识。例如,接入网设备下包括小区1和小区2,则接入网设备可向核心网设备发送:小区1的标识、小区1对应的PNI-NPN标识信息、小区1对应的PLMN标识、小区2的标识、小区2对应的PNI-NPN标识信息、小区2对应的PLMN标识。
在一种可能的实现中,核心网设备还可向接入网设备发送核心网设备下的小区或者所述接入网设备下的小区可用的网络信息。例如,通过NG接口建立响应(NG setup response)消息、AMF配置更新(AMF configuration update)消息。核心网设备下的小区或者所述接入网设备下的小区可用的网络信息包括以下一项或多项信息:小区标识信息、小区对应的PNI-NPN标识信息、小区对应的PLMN标识、小区所在的TAC。例如,核心网设备下包括小区3和小区4,则核心网设备可向接入网设备发送:小区3的标识、小区3对应的PNI-NPN标识信息、小区3对应的PLMN标识、小区4的标识、小区4对应的PNI-NPN标识信息、小区4对应的PLMN标识。
902、终端设备向接入网设备发送第一消息。关于第一消息和第二消息的类型可参见图2所对应的实施例中的描述,在此不赘述。
其中,该第一消息携带终端设备请求接入的PNI-NPN的第一PLMN标识。
903、接入网设备向核心网设备发送第二消息。
其中,接入网设备接收第一消息之后,向核心网设备发送第二消息。该第二消息携带第一PLMN标识。
其中,步骤902和步骤903的具体实现方式可参见上述步骤201和步骤202的具体实现方式,在此不赘述。
904、核心网设备参考终端设备请求接入的第一小区所支持的网络信息和终端设备的签约信息,在不允许终端设备接入网络的情况下,向接入网设备发送第三消息。例如,该第三消息可以为UE上下文释放命令(UE context release command)、注册拒绝(registration reject)消息、或错误指示(error indication)消息。
本申请实施例中,核心网设备接收第二消息之后,参考终端设备请求接入的第一小区所支持的网络信息和终端设备的签约信息,在不允许终端设备接入网络的情况下,向接入网设备发送第三消息。第三消息用于通知接入网设备释放为终端设备配置的资源。接入网设备接收第三消息之后,释放为终端设备配置的资源。可选的,该资源可以为接口资源,如NG口资源,或S1口资源。
905、接入网设备向终端设备发送第四消息。例如,该第四消息可以为RRC释放(RRC release)消息。
本申请实施例中,接入网设备接收第三消息之后,向终端设备发送第四消息,该第四消息用于通知终端设备释放RRC连接。终端设备接收第四消息之后,释放RRC连接。或者,该第六消息用于通知终端设备释放空口资源。终端设备接收该第六消息之后,释放终端设备的空口(Uu口)资源。
在一种可能的实现中,上述第三消息、第四消息中还携带原因值,该原因值用于指示终端设备接入网络失败的原因。关于该原因值的描述可参见图6所对应的实施例中的描述,在此不赘述。
其中,核心网设备参考第一小区所支持的网络信息和终端设备的签约信息,允许或不允许终端设备接入网络的情况,或核心网设备参考终端设备的签约信息,以及第一PLMN标识和/或第一CAG标识,允许或不允许终端设备接入网络的情况,可参见上文实施方式四~实施方式六所对应的描述,在此不赘述。
通过实施图9所描述的方法,有利于终端设备接入正确的小区。
请参见图10,图10示出了本申请实施例的一种通信装置的结构示意图。图10所示的通信装置可以用于执行上述图8所描述的方法实施例中接入网设备的部分或全部功能。或该通信装置可以用于执行上述图8所描述的方法实施例中接入网设备的部分或全部功能。该装置可以是接入网设备,也可以是接入网设备中的装置,或者是能够和接入网设备匹配使用的装置。其中,该通信装置还可以为芯片系统。图10所示的通信装置可以包括接收单元1001和发送单元1002。其中:
接收单元1001,用于接入网设备接收终端设备发送的第一消息,第一消息携带终端设备请求接入的网络的第一公共陆地移动网络PLMN标识和指示信息,指示信息用于指示终端设备请求接入第一小区所支持的公网融合的非公网络PNI-NPN;发送单元1002,用于向核心网设备发送第二消息,第二消息携带第一PLMN标识和第一小区所支持的网络信息;接收单元1001,还用于接收核心网设备发送的第三消息,第三消息用于通知接入网设备释放为终端设备配置的资源;发送单元1002,还用于向终端设备发送第四消息,第四消息用于通知终端设备设备释放无线资源控制RRC连接。
在一种可能的实现中,第一小区所支持的网络信息包括以下信息中的一种或多种:第一小区所支持的第一PLMN标识所对应的封闭接入组CAG标识,或第一小区所支持的PNI-NPN标识信息,或第一小区所支持的PLMN标识;PNI-NPN标识信息包含PLMN标识和CAG标识。
在一种可能的实现中,第二消息还携带指示信息。
在一种可能的实现中,第三消息和第四信息中还携带原因值,该原因值用于指示终端设备接入网络失败的原因。
[根据细则91更正 22.11.2019] 
请参见图10,图10示出了本申请实施例的一种通信装置的结构示意图。图10所示的通信装置可以用于执行上述图8所描述的方法实施例中核心网设备的部分或全部功能。或该通信装置可以用于执行上述图8所描述的方法实施例中核心网设备的部分或全部功能。该装置可以是核心网设备,也可以是核心网设备中的装置,或者是能够和核心网设备匹配使用的装置。其中,该通信装置还可以为芯片系统。图10所示的通信装置可以包括接收单元1001和发送单元1002。其中:
接收单元1001,用于接收接入网设备发送的第二消息,第二消息携带终端设备请求接入的网络的第一公共陆地移动网络PLMN标识和第一小区所支持的网络信息;发送单元1002,用于参考第一小区所支持的网络信息和终端设备的签约信息,在不允许终端设备接入网络的情况下,向接入网设备发送第三消息,第三消息用于通知接入网设备释放为终端设备配置的资源。
在一种可能的实现中,第一小区所支持的网络信息包括以下信息中的一种或多种:第一小区所支持的第一PLMN标识所对应的封闭接入组CAG标识,或第一小区所支持的PNI-NPN标识信息,或第一小区所支持的PLMN标识;PNI-NPN标识信息包含PLMN标识和CAG标识。
在一种可能的实现中,终端设备的签约信息包括以下信息中的一种或多种:终端设备可接入的公网融合的非公网络PNI-NPN标识信息、终端设备可接入的PLMN标识或终端设备是否只能通过封闭接入组CAG小区访问网络的指示。
在一种可能的实现中,不允许终端设备接入网络的情况以下情况中的一项或多项:签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络时,第一小区不支持终端设备可接入的PNI-NPN或终端设备可接入的PNI-NPN标识信息为空;或者,签约信息指示终端设备可以通过CAG小区和公网小区访问网络,且第一小区不支持终端设备可接入的PNI-NPN或终端设备可接入的PNI-NPN标识信息为空时,第一小区不支持第一PLMN标识所标识的公网或终端设备可接入的PLMN标识中不包括第一PLMN标识;或者,签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络时,第一小区不支持第一PLMN标识所标识的公网或终端设备可接入的PLMN标识中不包括包括第一PLMN标识。
在一种可能的实现中,不允许终端设备接入网络的情况以下情况中的一项或多项:
签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络时,第一小区不支持第一CAG标识和第一PLMN标识所标识的第一PNI-NPN,或第一PNI-NPN不为终端设备可接入的PNI-NPN;或者,签约信息指示终端设备可以通过CAG小区和公网小区访问网络,且第一小区不支持第一PNI-NPN,或第一PNI-NPN不为终端设备可接入的PNI-NPN时,第一小区不支持第一PLMN标识所标识的公网或终端设备可接入的PLMN标识中不包括第一PLMN标识;或者,签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络时,第一小区不支持第一PLMN标识所标识的公网或终端设备可接入的PLMN标识中不包括第一PLMN标识。
在一种可能的实现中,不允许终端设备接入网络的情况包括以下情况中的一项或多项:
签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络时,第一小区不支持终端设备可接入的由第一PLMN标识所标识的PNI-NPN,或终端设备可接 入的PNI-NPN标识信息中不包括第一PLMN标识,或者,签约信息指示终端设备可以通过CAG小区和公网小区访问网络,且第一小区不支持终端设备可接入的由第一PLMN标识所标识的PNI-NPN,或终端设备可接入的PNI-NPN标识信息中不包括第一PLMN标识时,第一小区不支持第一PLMN标识所标识的公网或终端设备可接入的PLMN标识中不包括第一PLMN标识;或者,签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络,且第一小区不支持第一PLMN标识所标识的公网或终端设备可接入的PLMN标识中不包括第一PLMN标识。
在一种可能的实现中,第三消息还携带原因值,该原因值用于指示终端设备接入网络失败的原因。
在一种可能的实现中,第二消息还携带指示信息,该指示信息用于指示终端设备是否请求接入第一小区所支持的公网融合的非公网络PNI-NPN。
请参见图11,图11示出了本申请实施例的一种通信装置的结构示意图。图11所示的通信装置可以用于执行上述图8所描述的方法实施例中终端设备的部分或全部功能。或该通信装置可以用于执行上述图8所描述的方法实施例中终端设备的部分或全部功能。该装置可以是终端设备,也可以是终端设备中的装置,或者是能够和终端设备匹配使用的装置。其中,该通信装置还可以为芯片系统。图11所示的通信装置可以包括接收单元1101、发送单元1102和处理单元1103。其中:
发送单元1102,用于向接入网设备发送第一消息,第一消息携带终端设备请求接入的网络的第一公共陆地移动网络PLMN标识和指示信息,指示信息用于指示终端设备请求接入第一小区所支持的公网融合的非公网络PNI-NPN;接收单元1101,用于接收第四消息,第四消息用于通知终端设备释放无线资源控制RRC连接;处理单元1103,用于释放RRC连接。
在一种可能的实现中,该第四消息携带原因值,该原因值用于指示终端设备接入网络失败的原因。
在一种可能的实现中,第一PLMN标识对应至少两个封闭接入组CAG标识。
请参见图10,图10示出了本申请实施例的一种通信装置的结构示意图。图10所示的通信装置可以用于执行上述图2~图7所描述的方法实施例中接入网设备的部分或全部功能。该装置可以是接入网设备,也可以是接入网设备中的装置,或者是能够和接入网设备匹配使用的装置。其中,该通信装置还可以为芯片系统。图10所示的通信装置可以包括接收单元1001和发送单元1002。其中:
接收单元1001,用于接收终端设备发送的第一消息,该第一消息携带终端设备请求接入的公网融合的非公网络PNI-NPN的第一公共陆地移动网络PLMN标识;发送单元1002,用于向核心网设备发送第二消息,该第二消息携带第一PLMN标识;接收单元1001,还用于接收核心网设备发送的第三消息,该第三消息携带终端设备的签约信息;发送单元1002,还用于参考终端设备请求接入的第一小区所支持的网络信息和终端设备的签约信息,在不允许终端设备接入网络的情况下,向核心网设备发送第四消息,该第四消息用于指示终端设备接入网络失败。
在一种可能的实现中,终端设备的签约信息包括终端设备可接入的公网融合的非公网 络PNI-NPN标识信息,和/或终端设备是否只能通过封闭接入组CAG小区访问网络的指示;第一小区所支持的网络信息包括PNI-NPN标识信息和/或PLMN标识;PNI-NPN标识信息包含PLMN标识和CAG标识;
在一种可能的实现中,不允许终端设备接入网络的情况包括以下情况中的一项或多项:
签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,且第一小区不支持终端设备可接入的PNI-NPN;或者,签约信息指示终端设备可以通过CAG小区和公网小区访问网络,且第一小区不支持第一PLMN标识所标识的公网,且第一小区不支持终端设备可接入的PNI-NPN;或者,签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络,且第一小区不支持第一PLMN标识所标识的公网。
在一种可能的实现中,第一消息和第二消息的NAS信息中还携带第一封闭接入组CAG标识,第三消息还携带第一CAG标识,不允许终端设备接入网络的情况包括以下情况中的一项或多项:签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,且第一小区不支持的第一CAG标识和第一PLMN标识所标识的第一PNI-NPN;或者,签约信息指示终端设备可以通过CAG小区和公网小区访问网络,且第一小区不支持第一PLMN标识所标识的公网,且第一小区不支持的第一PNI-NPN;或者,签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络,且第一小区不支持第一PLMN标识所标识的公网。
在一种可能的实现中,不允许终端设备接入网络的情况包括以下情况中的一项或多项:签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,且第一小区不支持终端设备可接入的由第一PLMN标识所标识的PNI-NPN;或者,签约信息指示终端设备可以通过CAG小区和公网小区访问网络,且第一小区不支持第一PLMN标识所标识的公网,且第一小区不支持终端设备可接入的由第一PLMN标识所标识的PNI-NPN;或者,签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络,且第一小区不支持第一PLMN标识所标识的公网。
在一种可能的实现中,第四消息还携带原因值,该原因值用于指示终端设备接入网络失败的原因。
在一种可能的实现中,接收单元1001,还用于接收核心网设备发送的第五消息,该第五消息携带原因值,第五消息用于通知接入网设备释放为终端设备配置的资源;发送单元1002,还用于向终端设备发送第六消息,该第六消息携带原因值,该第六消息用于通知终端设备释放RRC连接。
在一种可能的实现中,接收单元1001,还用于接收核心网设备发送的第七消息,该第七消息指示终端设备鉴权成功、安全性验证成功、注册成功或者附着成功;发送单元1002,还用于向终端设备发送第八消息,该第八消息指示终端设备鉴权成功、安全性验证成功、注册成功或者附着成功;接收单元1001,还用于接收核心网设备发送的第九消息,第九消息携带原因值,第九消息指示终端设备鉴权失败、安全性验证失败、注册失败或者附着失败;发送单元1002,还用于向终端设备发送第十消息,第十消息携带原因值,第十消息指示终端设备鉴权失败、安全性验证失败、注册失败或者附着失败。
请参见图10,图10示出了本申请实施例的一种通信装置的结构示意图。图10所示的通信装置可以用于执行上述图2~图7所描述的方法实施例中核心网设备的部分或全部功能。 或该通信装置可以用于执行上述图2~图7所描述的方法实施例中核心网设备的部分或全部功能。该装置可以是核心网设备,也可以是核心网设备中的装置,或者是能够和核心网设备匹配使用的装置。其中,该通信装置还可以为芯片系统。图10所示的通信装置可以包括接收单元1001和发送单元1002。其中:
接收单元1001,用于接收接入网设备发送的第二消息,该第二消息携带终端设备请求接入的公网融合的非公网络PNI-NPN的第一公共陆地移动网络PLMN标识;发送单元1002,用于参考终端设备的签约信息,在允许终端设备接入网络的情况下,向接入网设备发送第三消息,第三消息携带终端设备的签约信息;接收单元1001,还用于接收接入网设备发送的第四消息,第四消息用于指示终端设备接入网络失败。
在一种可能的实现中,终端设备的签约信息包括以下信息中的一项或多项:终端设备可接入的PNI-NPN标识信息,终端设备可接入的PLMN标识,或终端设备是否只能通过封闭接入组CAG小区访问网络的指示;PNI-NPN标识信息包含PLMN标识和CAG标识。
在一种可能的实现中,允许终端设备接入网络的情况包括以下情况中的一项或多项:签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,终端设备的PNI-NPN标识信息不为空;或者,签约信息指示终端设备可以通过CAG小区和公网小区访问网络时,终端设备的PLMN标识中存在第一PLMN标识,或终端设备的PNI-NPN标识信息不为空;或者,签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络,且终端设备的PLMN标识中存在第一PLMN标识。
在一种可能的实现中,允许终端设备接入网络的情况包括以下情况中的一项或多项:
签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,第一CAG标识和第一PLMN所标识的第一PNI-NPN为终端设备可接入的PNI-NPN;或者,签约信息指示终端设备可以通过CAG小区和公网小区访问网络时,终端设备的PLMN标识中存在第一PLMN标识,或第一PNI-NPN为终端设备可接入的PNI-NPN;或者,签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络,且终端设备的PLMN标识中存在第一PLMN标识。
在一种可能的实现中,允许终端设备接入网络的情况包括以下情况中的一项或多项:
签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,终端设备的PNI-NPN标识信息中存在第一PLMN标识;或者,签约信息指示终端设备可以通过CAG小区和公网小区访问网络时,终端设备的PLMN标识中存在第一PLMN标识,或终端设备的PNI-NPN标识信息中存在第一PLMN标识;或者,签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络,且终端设备的PLMN标识中存在第一PLMN标识。
在一种可能的实现中,第四消息还携带原因值,原因值用于指示终端设备接入网络失败的原因。
在一种可能的实现中,发送单元1002,还用于向接入网设备发送第五消息,该第五消息携带原因值,该第五消息用于通知接入网设备释放为终端设备配置的资源。
在一种可能的实现中,发送单元1002,还用于向接入网设备发送第七消息,该第七消息指示终端设备鉴权成功、安全性验证成功、注册成功或者附着成功;
发送单元1002,还用于向接入网设备发送第九消息,第九消息携带原因值,该第九消息指示终端设备鉴权失败、安全性验证失败、注册失败或者附着失败。
请参见图10,图10示出了本申请实施例的一种通信装置的结构示意图。图10所示的通信装置可以用于执行上述图2~图7所描述的方法实施例中接入网设备的部分或全部功能。或该通信装置可以用于执行上述图2~图7所描述的方法实施例中接入网设备的部分或全部功能。该装置可以是接入网设备,也可以是接入网设备中的装置,或者是能够和接入网设备匹配使用的装置。其中,该通信装置还可以为芯片系统。图10所示的通信装置可以包括接收单元1001和发送单元1002。其中:
接收单元1001,用于接收终端设备发送的第一消息,第一消息携带终端设备请求接入的公网融合的非公网络PNI-NPN的第一公共陆地移动网络PLMN标识;发送单元1002,用于向核心网设备发送第二消息,第二消息携带第一PLMN标识;接收单元1001,还用于接收核心网设备发送的第三消息,第三消息携带终端设备的签约信息;发送单元1002,还用于参考终端设备请求接入的第一小区所支持的网络信息和终端设备的签约信息,在允许终端设备接入网络的情况下,向核心网设备发送用于指示终端设备接入网络成功的消息。
在一种可能的实现中,终端设备的签约信息包括终端设备可接入的PNI-NPN标识信息,和/或终端设备是否只能通过封闭接入组CAG小区访问网络的指示;第一小区所支持的网络信息包括PNI-NPN标识信息和/或PLMN标识;PNI-NPN标识信息包含PLMN标识和CAG标识。
在一种可能的实现中,允许终端设备接入网络的情况包括以下情况中的一项或多项:签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,且第一小区支持终端设备可接入的PNI-NPN;或者,签约信息指示终端设备可以通过CAG小区和公网小区访问网络时,第一小区支持第一PLMN标识所标识的公网且终端设备的PLMN标识中存在第一PLMN标识,或第一小区支持终端设备可接入的PNI-NPN;或者,签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络,且第一小区支持第一PLMN标识所标识的公网。
在一种可能的实现中,第一消息和第二消息的NAS信息中还携带第一封闭接入组CAG标识,第三消息还携带第一CAG标识;允许终端设备接入网络的情况包括以下情况中的一项或多项:签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,且第一小区支持第一CAG标识和第一PLMN标识所标识的第一PNI-NPN;或者,签约信息指示终端设备可以通过CAG小区和公网小区访问网络时,第一小区支持第一PLMN标识所标识的公网且终端设备的PLMN标识中存在第一PLMN标识,或第一小区支持第一PNI-NPN且第一PNI-NPN为终端设备可接入的PNI-NPN;或者,签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络,且第一小区支持第一PLMN标识所标识的公网。
在一种可能的实现中,允许终端设备接入网络的情况包括以下情况中的一项或多项:
签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络,且第一小区支持终端设备可接入的由第一PLMN标识所标识的PNI-NPN;或者,签约信息指示终端设备可以通过CAG小区和公网小区访问网络时,第一小区支持第一PLMN标识所标识的公网且终端设备的PLMN标识中存在第一PLMN标识,或第一小区支持终端设备可接入的由第一PLMN标识所标识的PNI-NPN;或者,签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络,且第一小区支持第一PLMN标识所标识的公网。
请参见图10,图10示出了本申请实施例的一种通信装置的结构示意图。图10所示的通信装置可以用于执行上述图9所描述的方法实施例中接入网设备的部分或全部功能。或该通信装置可以用于执行上述图9描述的方法实施例中接入网设备的部分或全部功能。该装置可以是接入网设备,也可以是接入网设备中的装置,或者是能够和接入网设备匹配使用的装置。其中,该通信装置还可以为芯片系统。图10所示的通信装置可以包括接收单元1001和发送单元1002。其中:
发送单元1002,用于向核心网设备发送接入网设备下的小区支持的网络信息;接收单元1001,用于接收终端设备发送的第一消息,该第一消息携带终端设备请求接入的公网融合的非公网络PNI-NPN的第一公共陆地移动网络PLMN标识;发送单元1002,还用于向核心网设备发送第二消息,该第二消息携带第一公共陆地移动网络PLMN标识;接收单元1001,还用于接收核心网设备发送的第三消息,该第三消息用于通知接入网设备释放为终端设备配置的资源;发送单元1002,还用于向终端设备发送第四消息,该第四消息用于通知终端设备释放RRC连接。
在一种可能的实现中,接入网设备下的小区支持的网络信息包括以下一项或多项信息:小区标识、小区对应的PNI-NPN标识信息、小区对应的PLMN标识;PNI-NPN标识信息包含PLMN标识和封闭接入组CAG标识。
在一种可能的实现中,第三消息和第四信息中还携带原因值,该原因值用于指示终端设备接入网络失败的原因。
在一种可能的实现中,接收单元1001,还用于接收核心网设备发送的核心网设备下的小区支持的网络信息。
请参见图10,图10示出了本申请实施例的一种通信装置的结构示意图。图10所示的通信装置可以用于执行上述图9所描述的方法实施例中核心网设备的部分或全部功能。或该通信装置可以用于执行上述图9所描述的方法实施例中核心网设备的部分或全部功能。该装置可以是核心网设备,也可以是核心网设备中的装置,或者是能够和核心网设备匹配使用的装置。其中,该通信装置还可以为芯片系统。图10所示的通信装置可以包括接收单元1001和发送单元1002。其中:
接收单元1001,用于接收接入网设备发送的接入网设备下的小区支持的网络信息;
接收单元1001,还用于接收接入网设备发送的第二消息,第二消息携带终端设备请求接入的公网融合的非公网络PNI-NPN的第一公共陆地移动网络PLMN标识;
发送单元1002,用于参考终端设备请求接入的第一小区所支持的网络信息和终端设备的签约信息,在不允许终端设备接入网络的情况下,向接入网设备发送第三消息,第三消息用于通知接入网设备释放为终端设备配置的资源。
在一种可能的实现中,接入网设备下的小区支持的网络信息包括以下一项或多项信息:小区标识、小区对应的PNI-NPN标识信息;小区对应的PLMN标识;PNI-NPN标识信息包含PLMN标识和封闭接入组CAG标识。
在一种可能的实现中,终端设备的签约信息包括以下信息中的一项或多项:终端设备可接入的PNI-NPN标识信息,终端设备可接入的PLMN标识,或终端设备是否只能通过封闭接入组CAG小区访问网络的指示;第一小区所支持的网络信息包括以下信息中的一项或 多项:第一小区所支持的PNI-NPN标识信息或PLMN标识。
在一种可能的实现中,不允许终端设备接入网络的情况以下情况中的一项或多项:
签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络时,第一小区不支持终端设备可接入的PNI-NPN或终端设备的PNI-NPN标识信息为空;或者,签约信息指示终端设备可以通过CAG小区和公网小区访问网络时,第一小区不支持终端设备可接入的PNI-NPN或终端设备的PNI-NPN标识信息为空,并且第一小区不支持第一PLMN标识所标识的公网或终端设备的PLMN标识中不存在第一PLMN标识;或者,签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络时,第一小区不支持第一PLMN标识所标识的公网或终端设备的PLMN标识中不存在第一PLMN标识。
在一种可能的实现中,不允许终端设备接入网络的情况以下情况中的一项或多项:签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络时,第一小区不支持第一CAG标识和第一PLMN标识所标识的第一PNI-NPN,或第一PNI-NPN不为终端设备可接入的PNI-NPN;或者,签约信息指示终端设备可以通过CAG小区和公网小区访问网络时,第一小区不支持第一PNI-NPN,或第一PNI-NPN不为终端设备可接入的PNI-NPN,并且第一小区不支持第一PLMN标识所标识的公网或终端设备的PLMN标识中不存在第一PLMN标识;或者,签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络时,第一小区不支持第一PLMN标识所标识的公网或终端设备的PLMN标识中不存在第一PLMN标识。
在一种可能的实现中,不允许终端设备接入网络的情况包括以下情况中的一项或多项:
签约信息指示终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络时,第一小区不支持终端设备可接入的由第一PLMN标识所标识的PNI-NPN,或终端设备的PNI-NPN标识信息中不存在第一PLMN标识,或者,
签约信息指示终端设备可以通过CAG小区和公网小区访问网络时,第一小区不支持终端设备可接入的由第一PLMN标识所标识的PNI-NPN,或终端设备的PNI-NPN标识信息中不存在第一PLMN标识,并且第一小区不支持第一PLMN标识所标识的公网或终端设备的PLMN标识中不存在第一PLMN标识;或者,
签约信息指示终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络,且第一小区不支持第一PLMN标识所标识的公网或终端设备的PLMN标识中不存在第一PLMN标识。
在一种可能的实现中,该第三消息还携带原因值,该原因值用于指示终端设备接入网络失败的原因。
在一种可能的实现中,发送单元1002,还用于向接入网设备发送核心网设备下的小区支持的网络信息。
如图12a所示为本申请实施例提供的一种通信装置120,用于实现上述方法中终端设备/接入网设备/核心网设备的功能。该装置可以是终端设备/接入网设备/核心网设备,或用于终端设备/接入网设备/核心网设备的装置。例如,终端设备可以是手机、穿戴式设备或平板电脑等。用于终端设备/接入网设备/核心网设备的装置可以为终端设备内的芯片系统或芯片。其中,芯片系统可以由芯片构成,也可以包含芯片和其他分立器件。装置120包括至少一个处理器1212,用于实现本申请实施例提供的方法中第一终端设备的数据处理功 能。装置120还可以包括通信接口1210,用于实现本申请实施例提供的方法中终端设备/接入网设备/核心网设备的收发操作。在本申请实施例中,通信接口可以是收发器、电路、总线、模块或其它类型的通信接口,用于通过传输介质和其它设备进行通信。例如,通信接口1210用于装置120中的装置可以和其它设备进行通信。处理器1212利用通信接口1210收发数据,并用于实现上述方法实施例所述的方法。
装置120还可以包括至少一个存储器1230,用于存储程序指令和/或数据。存储器1230和处理器1212耦合。本申请实施例中的耦合是装置、单元或模块之间的间接耦合或通信连接,可以是电性,机械或其它的形式,用于装置、单元或模块之间的信息交互。处理器1212可能和存储器1230协同操作。处理器1212可能执行存储器1230中存储的程序指令。所述至少一个存储器中的至少一个可以包括于处理器中。
本申请实施例中不限定上述通信接口1210、处理器1212以及存储器1230之间的具体连接介质。本申请实施例在图12a中以存储器1230、通信接口1212以及通信接口1210之间通过总线1240连接,总线在图12a中以粗线表示,其它部件之间的连接方式,仅是进行示意性说明,并不引以为限。所述总线可以分为地址总线、数据总线、控制总线等。为便于表示,图12a中仅用一条粗线表示,但并不表示仅有一根总线或一种类型的总线。
装置120具体是用于终端设备/接入网设备/核心网设备的装置时,例如装置120具体是芯片或者芯片系统时,通信接口1210所输出或接收的可以是基带信号。装置120具体是终端设备时,通信接口1210所输出或接收的可以是射频信号。在本申请实施例中,处理器可以是通用处理器、数字信号处理器、专用集成电路、现场可编程门阵列或者其他可编程逻辑器件、分立门或者晶体管逻辑器件、分立硬件组件,可以实现或者执行本申请实施例中的公开的各方法、步骤及逻辑框图。通用处理器可以是微处理器或者任何常规的处理器等。结合本申请实施例所公开的方法的步骤可以直接体现为硬件处理器执行完成,或者用处理器中的硬件及软件模块组合执行完成。
作为示例,图12b为本申请实施例提供的另一种终端设备1200的结构示意图。该终端设备可执行上述方法实施例中终端设备所执行的操作。
为了便于说明,图12b仅示出了终端设备的主要部件。如图12b所示,终端设备1200包括处理器、存储器、射频电路、天线以及输入输出装置。处理器主要用于对通信协议以及通信数据进行处理,以及对整个终端设备进行控制,执行软件程序,处理软件程序的数据,例如用于支持终端设备执行图3~图7所描述的流程。存储器主要用于存储软件程序和数据。射频电路主要用于基带信号与射频信号的转换以及对射频信号的处理。天线主要用于收发电磁波形式的射频信号。终端设备1200还可以包括输入输出装置,例如触摸屏、显示屏,键盘等主要用于接收用户输入的数据以及对用户输出数据。需要说明的是,有些种类的终端设备可以不具有输入输出装置。
当终端设备开机后,处理器可以读取存储单元中的软件程序,解释并执行软件程序的,处理软件程序的数据。当需要通过无线发送数据时,处理器对待发送的数据进行基带处理后,输出基带信号至射频电路,射频电路将基带信号进行射频处理后将射频信号通过天线以电磁波的形式向外发送。当有数据发送到终端设备时,射频电路通过天线接收到射频信号,将射频信号转换为基带信号,并将基带信号输出至处理器,处理器将基带信号转换为数据并对该数据进行处理。
本领域技术人员可以理解,为了便于说明,图12b仅示出了一个存储器和处理器。在实际的终端设备中,可以存在多个处理器和存储器。存储器也可以称为存储介质或者存储设备等,本申请实施例对此不做限制。
作为一种可选的实现方式,处理器可以包括基带处理器和中央处理器(central processing unit,CPU),基带处理器主要用于对通信协议以及通信数据进行处理,CPU主要用于对整个终端设备进行控制,执行软件程序,处理软件程序的数据。可选的,该处理器还可以是网络处理器(network processor,NP)或者CPU和NP的组合。处理器还可以进一步包括硬件芯片。上述硬件芯片可以是专用集成电路(application-specific integrated circuit,ASIC),可编程逻辑器件(programmable logic device,PLD)或其组合。上述PLD可以是复杂可编程逻辑器件(complex programmable logic device,CPLD),现场可编程逻辑门阵列(field-programmable gate array,FPGA),通用阵列逻辑(generic array logic,GAL)或其任意组合。存储器可以包括易失性存储器(volatile memory),例如随机存取存储器(random-access memory,RAM);存储器也可以包括非易失性存储器(non-volatile memory),例如快闪存储器(flash memory),硬盘(hard disk drive,HDD)或固态硬盘(solid-state drive,SSD);存储器还可以包括上述种类的存储器的组合。
示例性的,在本申请实施例中,如图12b所示,可以将具有收发功能的天线和射频电路视为终端设备1200的通信单元1201,将具有处理功能的处理器视为终端设备1200的处理单元1202。
通信单元1201也可以称为收发器、收发机、收发装置等,用于实现收发功能。可选的,可以将通信单元1201中用于实现接收功能的器件视为接收单元,将通信单元1201中用于实现发送功能的器件视为发送单元,即通信单元1201包括接收单元和发送单元。示例性的,接收单元也可以称为接收机、接收器、接收电路等,发送单元可以称为发射机、发射器或者发射电路等。
在一些实施例中,通信单元1201、处理单元1202可能集成为一个器件,也可以分离为不同的器件,此外,处理器与存储器也可以集成为一个器件,或分立为不同器件。
其中,通信单元1201可用于执行上述方法实施例中终端设备的收发操作。处理单元1202可用于执行上述方法实施例中第一终端设备的数据处理操作。
本发明实施例还提供一种计算机可读存储介质,该计算机可读存储介质中存储有指令,当其在处理器上运行时,上述方法实施例的方法流程得以实现。
本发明实施例还提供一种计算机程序产品,当所述计算机程序产品在处理器上运行时,上述方法实施例的方法流程得以实现。
在上述实施例中,可以全部或部分地通过软件、硬件、固件或者其任意组合来实现。当使用软件实现时,可以全部或部分地以计算机程序产品的形式实现。所述计算机程序产品包括一个或多个计算机指令。在计算机上加载和执行所述计算机程序指令时,全部或部分地产生按照本申请实施例所述的流程或功能。所述计算机可以是通用计算机、专用计算机、计算机网络、或者其他可编程装置。所述计算机指令可以存储在计算机可读存储介质中,或者从一个计算机可读存储介质向另一个计算机可读存储介质传输,例如,所述计算机指令可以从一个网站站点、计算机、服务器或数据中心通过有线(例如同轴电缆、光纤、数字用户线(DSL))或无线(例如红外、无线、微波等)方式向另一个网站站点、计算机、服务器或数据中心进行传输。所述计算机可读存储介质可以是计算机能够存取的任何可用 介质或者是包括一个或多个可用介质集成的服务器、数据中心等数据存储设备。所述可用介质可以是磁性介质,(例如,软盘、硬盘、磁带)、光介质(例如,DVD)、或者半导体介质(例如SSD)等。
本申请是参照根据本申请的方法、设备(系统)、和计算机程序产品的流程图和/或方框图来描述的。应理解可由计算机程序指令实现流程图和/或方框图中的每一流程和/或方框、以及流程图和/或方框图中的流程和/或方框的结合。可提供这些计算机程序指令到通用计算机、专用计算机、嵌入式处理机或其他可编程数据处理设备的处理器以产生一个机器,使得通过计算机或其他可编程数据处理设备的处理器执行的指令产生用于实现在流程图一个流程或多个流程和/或方框图一个方框或多个方框中指定的功能的装置。
这些计算机程序指令也可存储在能引导计算机或其他可编程数据处理设备以特定方式工作的计算机可读存储器中,使得存储在该计算机可读存储器中的指令产生包括指令装置的制造品,该指令装置实现在流程图一个流程或多个流程和/或方框图一个方框或多个方框中指定的功能。
这些计算机程序指令也可装载到计算机或其他可编程数据处理设备上,使得在计算机或其他可编程设备上执行一系列操作步骤以产生计算机实现的处理,从而在计算机或其他可编程设备上执行的指令提供用于实现在流程图一个流程或多个流程和/或方框图一个方框或多个方框中指定的功能的步骤。
显然,本领域的技术人员可以对本申请进行各种改动和变型而不脱离本申请的精神和范围。这样,倘若本申请的这些修改和变型属于本申请权利要求及其等同技术的范围之内,则本申请也意图包含这些改动和变型在内。

Claims (28)

  1. 一种接入控制方法,其特征在于,所述方法包括:
    接入网设备接收终端设备发送的第一消息,所述第一消息携带所述终端设备请求接入的网络的第一公共陆地移动网络PLMN标识和指示信息,所述指示信息用于指示所述终端设备请求接入第一小区所支持的公网融合的非公网络PNI-NPN;
    所述接入网设备向核心网设备发送所述第二消息,所述第二消息携带第一PLMN标识和所述第一小区所支持的网络信息;
    所述接入网设备接收所述核心网设备发送的第三消息,所述第三消息用于通知所述接入网设备释放为所述终端设备配置的资源;
    所述接入网设备向所述终端设备发送第四消息,所述第四消息用于通知所述终端设备设备释放无线资源控制RRC连接。
  2. 根据权利要求1所述的方法,其特征在于,所述第一小区所支持的网络信息包括以下信息中的一种或多种:所述第一小区所支持的所述第一PLMN标识所对应的封闭接入组CAG标识,或所述第一小区所支持的PNI-NPN标识信息,或所述第一小区所支持的PLMN标识;所述PNI-NPN标识信息包含PLMN标识和CAG标识。
  3. 根据权利要求1或2所述的方法,其特征在于,所述第二消息还携带所述指示信息。
  4. 根据权利要求1~3中任意一项所述的方法,其特征在于,所述第三消息和所述第四信息中还携带原因值,所述原因值用于指示所述终端设备接入失败的原因。
  5. 一种接入控制方法,其特征在于,所述方法包括:
    核心网设备接收接入网设备发送的第二消息,所述第二消息携带终端设备请求接入的网络的第一公共陆地移动网络PLMN标识和所述第一小区所支持的网络信息;
    所述核心网设备参考所述第一小区所支持的网络信息和所述终端设备的签约信息,在不允许所述终端设备接入网络的情况下,向所述接入网设备发送第三消息,所述第三消息用于通知所述接入网设备释放为所述终端设备配置的资源。
  6. 根据权利要求5所述的方法,其特征在于,所述第一小区所支持的网络信息包括以下信息中的一种或多种:所述第一小区所支持的所述第一PLMN标识所对应的封闭接入组CAG标识,或所述第一小区所支持的PNI-NPN标识信息,或所述第一小区所支持的PLMN标识;所述PNI-NPN标识信息包含PLMN标识和CAG标识。
  7. 根据权利要求6所述的方法,其特征在于,所述终端设备的签约信息包括以下信息中的一种或多种:所述终端设备可接入的公网融合的非公网络PNI-NPN标识信息、所述终端设备可接入的PLMN标识或所述终端设备是否只能通过封闭接入组CAG小区访问网络的指示;
    不允许所述终端设备接入网络的情况以下情况中的一项或多项:
    所述签约信息指示所述终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络时,所述第一小区不支持所述终端设备可接入的PNI-NPN或所述终端设备可接入的PNI-NPN标识信息为空;或者,
    所述签约信息指示所述终端设备可以通过CAG小区和公网小区访问网络,且所述第一小区不支持所述终端设备可接入的PNI-NPN或所述终端设备可接入的PNI-NPN标识信息为空时,所述第一小区不支持所述第一PLMN标识所标识的公网或所述终端设备可接入的PLMN标识中不包括所述第一PLMN标识;或者,
    所述签约信息指示所述终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络时,所述第一小区不支持所述第一PLMN标识所标识的公网或所述终端设备可接入的PLMN标识中不包括包括所述第一PLMN标识。
  8. 根据权利要求6所述的方法,其特征在于,所述第二消息的NAS信息中还包括第一封闭接入组CAG标识,所述终端设备的签约信息包括以下信息中的一种或多种:所述终端设备可接入的公网融合的非公网络PNI-NPN标识信息、所述终端设备可接入的PLMN标识或所述终端设备是否只能通过封闭接入组CAG小区访问网络的指示;
    不允许所述终端设备接入网络的情况以下情况中的一项或多项:
    所述签约信息指示所述终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络时,所述第一小区不支持所述第一CAG标识和所述第一PLMN标识所标识的第一PNI-NPN,或所述第一PNI-NPN不为所述终端设备可接入的PNI-NPN;或者,
    所述签约信息指示所述终端设备可以通过CAG小区和公网小区访问网络,且所述第一小区不支持所述第一PNI-NPN,或所述第一PNI-NPN不为所述终端设备可接入的PNI-NPN时,所述第一小区不支持所述第一PLMN标识所标识的公网或所述终端设备可接入的PLMN标识中不包括所述第一PLMN标识;或者,
    所述签约信息指示所述终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络时,所述第一小区不支持所述第一PLMN标识所标识的公网或所述终端设备可接入的PLMN标识中不包括所述第一PLMN标识。
  9. 根据权利要求6所述的方法,其特征在于,所述终端设备的签约信息包括以下信息中的一种或多种:所述终端设备可接入的公网融合的非公网络PNI-NPN标识信息、所述终端设备可接入的PLMN标识或所述终端设备是否只能通过封闭接入组CAG小区访问网络的指示;
    不允许所述终端设备接入网络的情况包括以下情况中的一项或多项:
    所述签约信息指示所述终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络时,所述第一小区不支持所述终端设备可接入的由所述第一PLMN标识所标识的PNI-NPN,或所述终端设备可接入的PNI-NPN标识信息中不包括所述第一PLMN标识,或者,
    所述签约信息指示所述终端设备可以通过CAG小区和公网小区访问网络,且所述第一小区不支持所述终端设备可接入的由所述第一PLMN标识所标识的PNI-NPN,或所述终端设备可接入的PNI-NPN标识信息中不包括所述第一PLMN标识时,所述第一小区不支 持所述第一PLMN标识所标识的公网或所述终端设备可接入的PLMN标识中不包括所述第一PLMN标识;或者,
    所述签约信息指示所述终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络,且所述第一小区不支持所述第一PLMN标识所标识的公网或所述终端设备可接入的PLMN标识中不包括所述第一PLMN标识。
  10. 根据权利要求5~9中任意一项所述的方法,其特征在于,所述第三消息还携带原因值,所述原因值用于指示所述终端设备接入网络失败的原因。
  11. 根据权利要求5~10中任意一项所述的方法,其特征在于,所述第二消息还携带指示信息,所述指示信息用于指示所述终端设备请求接入第一小区所支持的公网融合的非公网络PNI-NPN。
  12. 一种接入控制方法,其特征在于,所述方法包括:
    终端设备向接入网设备发送第一消息,所述第一消息携带所述终端设备请求接入的网络的第一公共陆地移动网络PLMN标识和指示信息,所述指示信息用于指示所述终端设备请求接入第一小区所支持的公网融合的非公网络PNI-NPN;
    所述终端设备接收第四消息,所述第四消息用于通知所述终端设备释放无线资源控制RRC连接;
    所述终端设备释放RRC连接。
  13. 根据权利要求12所述的方法,其特征在于,所述第四消息携带原因值,所述原因值用于指示所述终端设备接入网络失败的原因。
  14. 根据权利要求12或13所述的方法,其特征在于,所述第一PLMN标识对应至少两个封闭接入组CAG标识。
  15. 一种通信装置,其特征在于,所述装置包括:
    接收单元,用于接入网设备接收终端设备发送的第一消息,所述第一消息携带所述终端设备请求接入的网络的第一公共陆地移动网络PLMN标识和指示信息,所述指示信息用于指示所述终端设备请求接入第一小区所支持的公网融合的非公网络PNI-NPN;
    发送单元,用于向核心网设备发送所述第二消息,所述第二消息携带第一PLMN标识和所述第一小区所支持的网络信息;
    所述接收单元,还用于接收所述核心网设备发送的第三消息,所述第三消息用于通知所述接入网设备释放为所述终端设备配置的资源;
    所述发送单元,还用于向所述终端设备发送第四消息,所述第四消息用于通知所述终端设备设备释放无线资源控制RRC连接。
  16. 根据权利要求15所述的装置,其特征在于,所述第一小区所支持的网络信息包括以下信息中的一种或多种:所述第一小区所支持的所述第一PLMN标识所对应的封闭接 入组CAG标识,或所述第一小区所支持的PNI-NPN标识信息,或所述第一小区所支持的PLMN标识;所述PNI-NPN标识信息包含PLMN标识和CAG标识。
  17. 根据权利要求15或16所述的装置,其特征在于,所述第二消息还携带所述指示信息。
  18. 根据权利要求15~17中任意一项所述的装置,其特征在于,所述第三消息和所述第四信息中还携带原因值,所述原因值用于指示所述终端设备接入网络失败的原因。
  19. 一种通信装置,其特征在于,所述装置包括:
    接收单元,用于接收接入网设备发送的第二消息,所述第二消息携带终端设备请求接入的网络的第一公共陆地移动网络PLMN标识和所述第一小区所支持的网络信息;
    发送单元,用于参考所述第一小区所支持的网络信息和所述终端设备的签约信息,在不允许所述终端设备接入网络的情况下,向所述接入网设备发送第三消息,所述第三消息用于通知所述接入网设备释放为所述终端设备配置的资源。
  20. 根据权利要求19所述的装置,其特征在于,所述第一小区所支持的网络信息包括以下信息中的一种或多种:所述第一小区所支持的所述第一PLMN标识所对应的封闭接入组CAG标识,或所述第一小区所支持的PNI-NPN标识信息,或所述第一小区所支持的PLMN标识;所述PNI-NPN标识信息包含PLMN标识和CAG标识。
  21. 根据权利要求20所述的装置,其特征在于,所述终端设备的签约信息包括以下信息中的一种或多种:所述终端设备可接入的公网融合的非公网络PNI-NPN标识信息、所述终端设备可接入的PLMN标识或所述终端设备是否只能通过封闭接入组CAG小区访问网络的指示;
    不允许所述终端设备接入网络的情况以下情况中的一项或多项:
    所述签约信息指示所述终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络时,所述第一小区不支持所述终端设备可接入的PNI-NPN或所述终端设备可接入的PNI-NPN标识信息为空;或者,
    所述签约信息指示所述终端设备可以通过CAG小区和公网小区访问网络,且所述第一小区不支持所述终端设备可接入的PNI-NPN或所述终端设备可接入的PNI-NPN标识信息为空时,所述第一小区不支持所述第一PLMN标识所标识的公网或所述终端设备可接入的PLMN标识中不包括所述第一PLMN标识;或者,
    所述签约信息指示所述终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络时,所述第一小区不支持所述第一PLMN标识所标识的公网或所述终端设备可接入的PLMN标识中不包括包括所述第一PLMN标识。
  22. 根据权利要求20所述的装置,其特征在于,所述第二消息的NAS信息中还包括第一封闭接入组CAG标识,所述终端设备的签约信息包括以下信息中的一种或多种:所述终端设备可接入的公网融合的非公网络PNI-NPN标识信息、所述终端设备可接入的 PLMN标识或所述终端设备是否只能通过封闭接入组CAG小区访问网络的指示;
    不允许所述终端设备接入网络的情况以下情况中的一项或多项:
    所述签约信息指示所述终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络时,所述第一小区不支持所述第一CAG标识和所述第一PLMN标识所标识的第一PNI-NPN,或所述第一PNI-NPN不为所述终端设备可接入的PNI-NPN;或者,
    所述签约信息指示所述终端设备可以通过CAG小区和公网小区访问网络,且所述第一小区不支持所述第一PNI-NPN,或所述第一PNI-NPN不为所述终端设备可接入的PNI-NPN时,所述第一小区不支持所述第一PLMN标识所标识的公网或所述终端设备可接入的PLMN标识中不包括所述第一PLMN标识;或者,
    所述签约信息指示所述终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络时,所述第一小区不支持所述第一PLMN标识所标识的公网或所述终端设备可接入的PLMN标识中不包括所述第一PLMN标识。
  23. 根据权利要求20所述的装置,其特征在于,所述终端设备的签约信息包括以下信息中的一种或多种:所述终端设备可接入的公网融合的非公网络PNI-NPN标识信息、所述终端设备可接入的PLMN标识或所述终端设备是否只能通过封闭接入组CAG小区访问网络的指示;
    不允许所述终端设备接入网络的情况包括以下情况中的一项或多项:
    所述签约信息指示所述终端设备能够通过CAG小区访问网络且不能通过公网小区访问网络时,所述第一小区不支持所述终端设备可接入的由所述第一PLMN标识所标识的PNI-NPN,或所述终端设备可接入的PNI-NPN标识信息中不包括所述第一PLMN标识,或者,
    所述签约信息指示所述终端设备可以通过CAG小区和公网小区访问网络,且所述第一小区不支持所述终端设备可接入的由所述第一PLMN标识所标识的PNI-NPN,或所述终端设备可接入的PNI-NPN标识信息中不包括所述第一PLMN标识时,所述第一小区不支持所述第一PLMN标识所标识的公网或所述终端设备可接入的PLMN标识中不包括所述第一PLMN标识;或者,
    所述签约信息指示所述终端设备能够通过公网小区访问网络且不能通过CAG小区访问网络,且所述第一小区不支持所述第一PLMN标识所标识的公网或所述终端设备可接入的PLMN标识中不包括所述第一PLMN标识。
  24. 根据权利要求19~23中任意一项所述的装置,其特征在于,所述第三消息还携带原因值,所述原因值用于指示所述终端设备接入网络失败的原因。
  25. 根据权利要求19~24中任意一项所述的装置,其特征在于,所述第二消息还携带指示信息,所述指示信息用于指示所述终端设备是否请求接入第一小区所支持的公网融合的非公网络PNI-NPN。
  26. 一种通信装置,其特征在于,所述装置包括:
    发送单元,用于向接入网设备发送第一消息,所述第一消息携带所述终端设备请求接 入的网络的第一公共陆地移动网络PLMN标识和指示信息,所述指示信息用于指示所述终端设备请求接入第一小区所支持的公网融合的非公网络PNI-NPN;
    接收单元,用于接收第四消息,所述第四消息用于通知所述终端设备释放无线资源控制RRC连接;
    所述处理单元,用于释放RRC连接。
  27. 根据权利要求26所述的装置,其特征在于,所述第四消息携带原因值,所述原因值用于指示所述终端设备接入网络失败的原因。
  28. 根据权利要求26或27所述的装置,其特征在于,所述第一PLMN标识对应至少两个封闭接入组CAG标识。
PCT/CN2019/116891 2019-11-08 2019-11-08 接入控制方法及通信装置 WO2021088090A1 (zh)

Priority Applications (5)

Application Number Priority Date Filing Date Title
CN201980041178.1A CN113099736A (zh) 2019-11-08 2019-11-08 接入控制方法及通信装置
EP19951697.2A EP4050937A4 (en) 2019-11-08 2019-11-08 ACCESS CONTROL METHOD AND COMMUNICATION DEVICE
PCT/CN2019/116891 WO2021088090A1 (zh) 2019-11-08 2019-11-08 接入控制方法及通信装置
CN202011633828.2A CN112867100B (zh) 2019-11-08 2019-11-08 接入控制方法及通信装置
US17/735,738 US20220264435A1 (en) 2019-11-08 2022-05-03 Access control method and communications apparatus

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
PCT/CN2019/116891 WO2021088090A1 (zh) 2019-11-08 2019-11-08 接入控制方法及通信装置

Related Child Applications (1)

Application Number Title Priority Date Filing Date
US17/735,738 Continuation US20220264435A1 (en) 2019-11-08 2022-05-03 Access control method and communications apparatus

Publications (1)

Publication Number Publication Date
WO2021088090A1 true WO2021088090A1 (zh) 2021-05-14

Family

ID=75848703

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2019/116891 WO2021088090A1 (zh) 2019-11-08 2019-11-08 接入控制方法及通信装置

Country Status (4)

Country Link
US (1) US20220264435A1 (zh)
EP (1) EP4050937A4 (zh)
CN (1) CN113099736A (zh)
WO (1) WO2021088090A1 (zh)

Families Citing this family (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2021146685A1 (en) * 2020-01-19 2021-07-22 Talebi Fard Peyman Relay node selection
CN115802428A (zh) * 2021-09-09 2023-03-14 中国移动通信有限公司研究院 一种自动邻区发现方法、装置、通信设备和存储介质

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20060268907A1 (en) * 2005-05-30 2006-11-30 Samsung Electronics Co., Ltd. System for enabling heterogeneous communication systems to cooperate in providing communication services and method therefor
CN106572508A (zh) * 2015-10-13 2017-04-19 电信科学技术研究院 一种将终端设备切换到目标小区的方法、装置及基站
CN110213808A (zh) * 2019-05-06 2019-09-06 腾讯科技(深圳)有限公司 网络接入控制方法、装置、计算机可读介质及电子设备

Family Cites Families (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20200329422A1 (en) * 2019-08-05 2020-10-15 Intel Corporation Non-public networks support by ng radio access network (ng-ran)
CN112637906B (zh) * 2019-08-16 2022-05-24 华为技术有限公司 寻呼的方法和装置
GB2588104A (en) * 2019-10-04 2021-04-21 Nec Corp Communication system

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20060268907A1 (en) * 2005-05-30 2006-11-30 Samsung Electronics Co., Ltd. System for enabling heterogeneous communication systems to cooperate in providing communication services and method therefor
CN106572508A (zh) * 2015-10-13 2017-04-19 电信科学技术研究院 一种将终端设备切换到目标小区的方法、装置及基站
CN110213808A (zh) * 2019-05-06 2019-09-06 腾讯科技(深圳)有限公司 网络接入控制方法、装置、计算机可读介质及电子设备

Non-Patent Citations (4)

* Cited by examiner, † Cited by third party
Title
CMCC: "Left issues in idle and inactive mode for NPN", 3GPP DRAFT; R2-1912924 LEFT ISSUES IN IDLE AND INACTIVE MODE FOR NPN, 3RD GENERATION PARTNERSHIP PROJECT (3GPP), MOBILE COMPETENCE CENTRE ; 650, ROUTE DES LUCIOLES ; F-06921 SOPHIA-ANTIPOLIS CEDEX ; FRANCE, vol. RAN WG2, no. Chongqing, China; 20191014 - 20191018, 4 October 2019 (2019-10-04), Mobile Competence Centre ; 650, route des Lucioles ; F-06921 Sophia-Antipolis Cedex ; France, XP051790958 *
ERICSSON: "Feasibility to support a deployment independent solution", 3GPP DRAFT; S2-1903383_NPN_HARMONIZED, 3RD GENERATION PARTNERSHIP PROJECT (3GPP), MOBILE COMPETENCE CENTRE ; 650, ROUTE DES LUCIOLES ; F-06921 SOPHIA-ANTIPOLIS CEDEX ; FRANCE, vol. SA WG2, no. Xi’an, China; 20190408 - 20190412, 2 April 2019 (2019-04-02), Mobile Competence Centre ; 650, route des Lucioles ; F-06921 Sophia-Antipolis Cedex ; France, pages 1 - 10, XP051719546 *
ERICSSON: "Submission for information on Commonalities in solutions for Non-Public Network", 3GPP DRAFT; R2-1907313, 3RD GENERATION PARTNERSHIP PROJECT (3GPP), MOBILE COMPETENCE CENTRE ; 650, ROUTE DES LUCIOLES ; F-06921 SOPHIA-ANTIPOLIS CEDEX ; FRANCE, vol. RAN WG2, no. Reno, Nevada, USA; 20190513 - 20190517, 13 May 2019 (2019-05-13), Mobile Competence Centre ; 650, route des Lucioles ; F-06921 Sophia-Antipolis Cedex ; France, XP051730752 *
See also references of EP4050937A4 *

Also Published As

Publication number Publication date
CN113099736A (zh) 2021-07-09
US20220264435A1 (en) 2022-08-18
EP4050937A1 (en) 2022-08-31
EP4050937A4 (en) 2022-11-02

Similar Documents

Publication Publication Date Title
US20220007274A1 (en) Communication Method And Apparatus
WO2018137637A1 (zh) 一种接入目标小区的方法以及设备
WO2021136211A1 (zh) 授权结果的确定方法及装置
EP4027684A1 (en) Service configuration method, communication device, and communication system
US20230029714A1 (en) Authorization method, policy control function device, and access and mobility management function device
US20230099786A1 (en) Methods and Apparatus for Provisioning Private Network Devices During Onboarding
WO2021063164A1 (zh) 通信方法、通信装置及存储介质
WO2022022347A1 (zh) 接入网络的方法、通信系统和通信装置
US20220264435A1 (en) Access control method and communications apparatus
KR20140028100A (ko) 중계 노드에 대한 네트워크 부착 방법 및 관련 장치
WO2023011630A1 (zh) 授权验证的方法及装置
WO2023024931A1 (zh) 用于设备间通信的方法和装置
WO2023160199A1 (zh) 一种接入通信网络的方法和装置
WO2021087696A1 (zh) 身份认证方法及通信装置
WO2022199451A1 (zh) 会话切换的方法和装置
US20240129710A1 (en) Methods and apparatus for subscription authorization enhancement
CN115412911A (zh) 一种鉴权方法、通信装置和系统
WO2023016160A1 (zh) 一种会话建立方法和相关装置
WO2023020481A1 (zh) 用于传输数据的方法和装置
CN112867100B (zh) 接入控制方法及通信装置
WO2023273880A1 (zh) 传输方式切换的方法和相关装置
JP2014530530A (ja) Lteにおけるmbmsカウントを改善する方法および装置
KR20240060670A (ko) 통신 방법 및 장치
JP2021510993A (ja) セルアクセスプロシージャの改善
WO2020057497A1 (zh) 通信方法和装置

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 19951697

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

ENP Entry into the national phase

Ref document number: 2019951697

Country of ref document: EP

Effective date: 20220527