WO2022111339A1 - 鉴权异常的处理方法、系统及用户终端 - Google Patents

鉴权异常的处理方法、系统及用户终端 Download PDF

Info

Publication number
WO2022111339A1
WO2022111339A1 PCT/CN2021/130996 CN2021130996W WO2022111339A1 WO 2022111339 A1 WO2022111339 A1 WO 2022111339A1 CN 2021130996 W CN2021130996 W CN 2021130996W WO 2022111339 A1 WO2022111339 A1 WO 2022111339A1
Authority
WO
WIPO (PCT)
Prior art keywords
authentication
request
mobility management
exception
management procedure
Prior art date
Application number
PCT/CN2021/130996
Other languages
English (en)
French (fr)
Inventor
蔡玉婷
包蕾
金逸
Original Assignee
展讯半导体(成都)有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 展讯半导体(成都)有限公司 filed Critical 展讯半导体(成都)有限公司
Publication of WO2022111339A1 publication Critical patent/WO2022111339A1/zh

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/08Access security

Definitions

  • the invention belongs to the technical field of mobile communication, and particularly relates to a method, system and user terminal for processing abnormal authentication.
  • UE User Equipment, user terminal, also known as mobile terminal
  • LTE Long Term Evolution, long-term evolution technology
  • TAU Tracking Area Update, tracking area update, one of the special registration procedures initiated by the LTE mobile terminal
  • mobility management procedures such as Service Request (service request) or Extended Service Request (extended service request), or UE in 5G (fifth Initiated Registration or Service Request procedure in the scenario of generation mobile communication technology).
  • the network will initiate an authentication interaction with the UE. Because of a temporary abnormality, after the UE replies with a failed authentication result, the network will issue an authentication rejection.
  • the UE will enter the Deregistered state, which is regarded as a SIM (Subscriber).
  • SIM Subscriber
  • Identity Module user identification module
  • the UE will discard these messages, so that the UE cannot synchronize with the network normally for a period of time, which may lead to failure to receive Downlink data (such as the called phone) and inability to initiate uplink services (such as the calling phone), that is, the UE will not be able to obtain any LTE services in this power-on state, and can only make emergency calls.
  • the technical problem to be solved by the present invention is to overcome the defect that the UE cannot normally synchronize with the network within a period of time for the temporary abnormality when the network authenticates the UE abnormally after the UE initiates the relevant procedures.
  • the temporary abnormality can make the UE synchronize with the network as soon as possible, so as to obtain the processing method, system and user terminal of the authentication abnormality of the uplink and downlink service capabilities.
  • a first aspect of the present invention provides an authentication exception processing method for a user terminal, and the processing method includes:
  • EMM Evolved Packet
  • Evolved Packet System Evolved Packet System
  • the request for the mobility management procedure is re-initiated when monitoring whether a message of rejection of the mobility management procedure is received within the authentication exception waiting time, and the mobility management procedure initiated again
  • the request of the management procedure carries invalid authentication information.
  • the user terminal is a user terminal under LTE
  • the request of the mobility management procedure includes at least one of Attach Request, TAU Request, Service Request and Extended Service Request.
  • the user terminal is a user terminal under 5G
  • the request of the mobility management procedure includes at least one of Registration Request and Service Request.
  • the exception processing before the exception processing is performed according to the EMM cause in the received message of the rejection of the mobility management procedure, it also includes:
  • the request for initiating the mobility management procedure carries the authentication information of the historical registration.
  • the monitoring within the authentication abnormal waiting time is realized by starting a timer; the authentication abnormal waiting time is less than 10 seconds.
  • a second aspect of the present invention provides an authentication exception processing system for a user terminal, the processing system comprising a setting module, a request module, a receiving module, a monitoring module and an exception processing module;
  • the setting module is used to set the authentication abnormal waiting time
  • the request module is used for initiating a request for a mobility management procedure
  • the receiving module is configured to receive an authentication request initiated by the network
  • the monitoring module is configured to monitor whether there is a rejection message received from the mobility management procedure within the authentication abnormal waiting time after the response to the authentication failure and after receiving the authentication rejection sent by the network. , the exception handling module is called;
  • the exception handling module is configured to perform exception handling according to the EMM cause in the received message of the rejection of the mobility management procedure.
  • the monitoring module is further configured to monitor whether there is a rejection message received from the mobility management procedure within the authentication exception waiting time and call the request module again, and call the request module again.
  • the request initiated by the request module carries invalid authentication information.
  • the user terminal is a user terminal under LTE
  • the request of the mobility management procedure includes at least one of Attach Request, TAU Request, Service Request and Extended Service Request.
  • the user terminal is a user terminal under 5G
  • the request of the mobility management procedure includes at least one of Registration Request and Service Request.
  • the processing system further includes an inspection module
  • the checking module is used to perform integrity protection checking on the received message rejected by the mobility management procedure, if the check succeeds, the exception handling module is called, and if the check fails or the received mobility management procedure If the rejected message does not carry integrity protection, the SIM card is considered invalid.
  • the request for initiating the mobility management procedure by the request module carries the authentication information of the historical registration.
  • the monitoring module implements monitoring by starting a timer during the authentication abnormal waiting time; the authentication abnormal waiting time is less than 10 seconds.
  • a third aspect of the present invention provides a user terminal, including the authentication exception processing system described in the second aspect.
  • the positive improvement effect of the present invention is that: the present invention increases the waiting time for the authentication abnormality after the UE side initiates the request of the mobility management procedure, and monitors whether there is a rejection of the mobility management procedure within the waiting time. After receiving the message, the corresponding exception processing is performed by parsing the EMM cause carried in the message. After the processing is completed, the UE can be synchronized with the network. Compared with the prior art, for the temporary abnormality, the present invention can make the UE synchronize with the network as soon as possible, thereby obtaining the uplink and downlink service capability, and effectively improve the success rate of the user terminal accessing the network after the authentication abnormality.
  • FIG. 1 is a flowchart of a method for processing an authentication exception according to Embodiment 1 of the present invention.
  • FIG. 2 is a schematic flowchart of processing an authentication exception for Attach between a user terminal and a network in an LTE application scenario of the method for processing an authentication exception according to Embodiment 1 of the present invention.
  • FIG. 3 is a schematic block diagram of an authentication exception processing system according to Embodiment 2 of the present invention.
  • this embodiment provides a method for processing an authentication exception, which is used for a user terminal, and the processing method includes the following steps:
  • Step 101 Set the authentication exception waiting time.
  • the waiting time is less than 10 seconds.
  • Step 102 Initiate a request for the mobility management procedure, where the request carries the authentication information of the historical registration.
  • Step 103 Receive an authentication request initiated by the network.
  • Step 104 reply that the network authentication fails.
  • Step 105 Receive an authentication rejection sent by the network.
  • Step 106 Monitor whether there is a rejection message of the mobility management procedure within the authentication exception waiting time by starting the timer. If yes, go to step 107; If the message is rejected by the sex management procedure, step 109 is executed.
  • Step 107 Perform an integrity protection check on the received message rejected by the mobility management procedure, if the check succeeds, perform step 108, if the check fails or the received message rejected by the mobility management procedure does not carry integrity protection, The SIM card is deemed invalid, and the process ends.
  • integrity protection checks security can be improved. For the case where the check fails or the rejected message of the mobility management procedure is received without integrity protection, such as a pseudo base station, it can be identified that no further analysis is performed, thereby reducing the risk.
  • Step 108 Execute exception processing according to the EMM cause in the rejected message of the received mobility management procedure, so as to restore synchronization with the network as soon as possible, thereby obtaining the uplink and downlink service capabilities.
  • Step 109 re-initiating the request for the mobility management procedure, and the re-initiated request for the mobility management procedure carries invalid authentication information. If it is still abnormal after this initiation, the SIM card is deemed invalid, and the process ends.
  • the user terminal may be a user terminal in an LTE application scenario, or may be a user terminal in a 5G application scenario.
  • the request of the mobility management procedure includes at least one of Attach Request, TAU Request, Service Request and Extended Service Request.
  • the request for the mobility management procedure includes at least one of Registration Request and Service Request.
  • step 101 in this embodiment is only an exemplary description, and does not constitute a limitation on the protection scope of the present invention.
  • the setting of the authentication exception waiting time can be performed in step 106 by using the value before the authentication exception waiting time. set at any time.
  • the following takes an example of the processing flow of the authentication exception for Attach between the user terminal and the network in the LTE application scenario, and see FIG. 2 for details.
  • the first step is to initiate an Attach Request (carrying the authentication information of the historical registration, such as: ksi (key set Indetifier) is 1 after the UE is powered on or after successfully staying on the network under LTE, and the value of ksi ranges from 0 to 7, where 0 -6 is a valid value, indicating the authentication information carried in the successful historical registration, and 7 is an invalid value);
  • ksi key set Indetifier
  • the network initiates the authentication process, that is, Authentication Request
  • the UE replies with an Authentication Failure response
  • the network issues an Authentication Reject, and the UE waits for a certain period of time (depending on the implementation of the UE, such as starting a 1-second timer, etc.);
  • the fifth step if the network issues the Attach Reject within the waiting time, the message carries the corresponding EMM cause, which is divided into the following two cases:
  • the UE If the UE fails to check the integrity of the Attach Reject or does not have integrity protection, the UE considers the SIM card to be invalid until it is turned off or the SIM card is removed;
  • the UE If the network does not issue the Attach Reject within the waiting time, the UE retries the Attach once (carries invalid authentication information, for example: ksi is 7).
  • the UE in the fourth step, due to some temporary abnormality in the UE or the network, after the network issues an authentication rejection, the UE usually enters a de-registration state, and the SIM card is regarded as invalid, and the UE cannot process the network. For the subsequent Attach Reject, the UE will not be able to obtain any LTE services in this power-on state. Based on the improved processing method in this embodiment, the UE will wait for a certain period of time. If the network issues the Attach Reject within the waiting period, carrying the corresponding EMM cause, the UE will further analyze the EMM cause and obtain the reason for the abnormal authentication. Targeted processing can restore synchronization with the network as soon as possible for temporary exceptions.
  • This embodiment increases the waiting time for the authentication abnormality after the UE side initiates the request of the mobility management procedure, and monitors whether there is a rejection message of the mobility management procedure received within the waiting time, and passes the message after receiving the request.
  • the EMM cause carried in the parsing message performs corresponding exception processing, and after the processing is completed, the UE can be synchronized with the network.
  • this embodiment enables the UE to synchronize with the network as soon as possible, thereby obtaining the uplink and downlink service capabilities, and effectively improves the success rate of the user terminal accessing the network after the authentication abnormality.
  • This embodiment provides an authentication exception processing system for a user terminal.
  • the processing system includes a setting module 1 , a request module 2 , a receiving module 3 , a monitoring module 4 , an exception processing module 5 , and an inspection module 5 .
  • Module 6 the processing system includes a setting module 1 , a request module 2 , a receiving module 3 , a monitoring module 4 , an exception processing module 5 , and an inspection module 5 .
  • the setting module 1 is used to set the authentication abnormal waiting time; the authentication abnormal waiting time is less than 10 seconds.
  • the request module 2 is used to initiate a request for mobility management procedures. At this time, the request carries the authentication information of the historical registration.
  • the receiving module 3 is used for receiving the authentication request initiated by the network.
  • the monitoring module 4 is used to monitor whether there is a message of rejection of the mobility management procedure within the abnormal waiting time of authentication by starting a timer after replying to the authentication failure and after receiving the authentication rejection sent by the network.
  • the checking module 6 is called; otherwise, the requesting module 2 is called again, and the request initiated by the calling requesting module 2 carries invalid authentication information.
  • the checking module 6 is used to perform integrity protection check on the received message rejected by the mobility management procedure, if the check succeeds, call the exception handling module 5, if the check fails or the received message rejected by the mobility management procedure does not carry Integrity protection, the SIM card is considered invalid.
  • the exception handling module 5 is configured to perform exception handling according to the EMM cause in the received message of the rejection of the mobility management procedure.
  • the user terminal may be a user terminal in an LTE application scenario, or may be a user terminal in a 5G application scenario.
  • the request of the mobility management procedure includes at least one of Attach Request, TAU Request, Service Request and Extended Service Request.
  • the request for the mobility management procedure includes at least one of Registration Request and Service Request.
  • This embodiment increases the waiting time for the authentication abnormality after the UE side initiates the request of the mobility management procedure, and monitors whether there is a rejection message of the mobility management procedure received within the waiting time, and passes the message after receiving the request.
  • the EMM cause carried in the parsing message performs corresponding exception processing, and after the processing is completed, the UE can be synchronized with the network.
  • this embodiment enables the UE to synchronize with the network as soon as possible, thereby obtaining the uplink and downlink service capabilities, and effectively improves the success rate of the user terminal accessing the network after the authentication abnormality.
  • This embodiment provides a user terminal, where the user terminal includes the authentication exception processing system of Embodiment 2.
  • the user terminal implemented in this embodiment can synchronize the UE with the network as soon as possible for temporary abnormality, thereby obtaining the uplink and downlink service capabilities, and effectively improve the success rate of the user terminal accessing the network after authentication abnormality.

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Mobile Radio Communication Systems (AREA)
  • Telephonic Communication Services (AREA)

Abstract

本发明公开了一种鉴权异常的处理方法、系统及用户终端,处理方法用于用户终端,包括:设置鉴权异常等待时间;发起移动性管理规程的请求;接收网络发起的鉴权请求;在回复鉴权失败后,并且接收到网络发出的鉴权拒绝之后,执行以下步骤:在所述鉴权异常等待时间内监控是否有收到所述移动性管理规程的拒绝的消息,若是,则根据收到的所述移动性管理规程的拒绝的消息中的EMM cause进行异常处理。与现有技术相比,对于临时异常本发明能够使UE尽快与网络同步、从而获得上下行业务能力,有效提高了用户终端在鉴权异常后接入网络的成功率。

Description

鉴权异常的处理方法、系统及用户终端
本申请要求申请日为2020年11月30日的中国专利申请202011377957.X的优先权。本申请引用上述中国专利申请的全文。
技术领域
本发明属于移动通信技术领域,特别涉及一种鉴权异常的处理方法、系统及用户终端。
背景技术
UE(User Equipment,用户终端,又称移动终端)在LTE(Long Term Evolution,长期演进技术)下正常注册过,若发起Attach(附着,由LTE移动终端发起的注册特殊规程之一)或TAU(Tracking Area Update,跟踪区更新,由LTE移动终端发起的注册特殊规程之一)或Service Request(业务请求)或Extended Service Request(扩展业务请求)等移动性管理规程规程,或者UE在5G(第五代移动通信技术)场景下发起Registration(注册)或Service Request规程。网络会发起与UE的鉴权交互,因为某种临时异常,在UE回复失败的鉴权结果后,网络下发鉴权拒绝,此时UE会进入去注册(Deregistered)状态,视为SIM(Subscriber Identity Module,用户身份识别模块)卡无效,后续若网络下发相对应的Reject(拒绝)消息时,UE会丢弃这些消息,从而使UE在一段时间内不能与网络正常同步,可能会导致无法接收下行数据(如被叫电话)和无法发起上行业务(如主叫电话),即UE在本次开机状态下将无法获取任何LTE服务,只能拨打紧急呼叫电话等。
发明内容
本发明要解决的技术问题是为了克服现有技术中UE在发起相关规程后 网络对UE的鉴权异常时,对于临时异常存在UE在一段时间内不能与网络正常同步的缺陷,提供一种对于临时异常能够使UE尽快与网络同步、从而获得上下行业务能力的鉴权异常的处理方法、系统及用户终端。
本发明是通过下述技术方案来解决上述技术问题:
本发明第一方面提供了一种鉴权异常的处理方法,用于用户终端,所述处理方法包括:
设置鉴权异常等待时间;
发起移动性管理规程的请求;
接收网络发起的鉴权请求;
在回复鉴权失败后,并且接收到网络发出的鉴权拒绝之后,执行以下步骤:
在所述鉴权异常等待时间内监控是否有收到所述移动性管理规程的拒绝的消息,若是,则根据收到的所述移动性管理规程的拒绝的消息中的EMM(EPS(Evolved Packet System)mobility management,演进分组系统移动性管理)cause(原因)进行异常处理。
较佳地,在所述鉴权异常等待时间内监控是否有收到所述移动性管理规程的拒绝的消息为否时再次发起所述移动性管理规程的请求,且再次发起的所述移动性管理规程的请求携带无效的鉴权信息。
较佳地,所述用户终端为LTE下的用户终端,所述移动性管理规程的请求包括Attach Request、TAU Request、Service Request以及Extended Service Request中的至少一种。
较佳地,所述用户终端为5G下的用户终端,所述移动性管理规程的请求包括Registration Request和Service Request中的至少一种。
较佳地,在所述根据收到的所述移动性管理规程的拒绝的消息中的EMM cause进行异常处理之前还包括:
对收到的所述移动性管理规程的拒绝的消息进行完整性保护检查,若检 查成功则执行所述根据收到的所述移动性管理规程的拒绝的消息中的EMM cause进行异常处理的步骤,若检查失败或收到的所述移动性管理规程的拒绝的消息不带完整性保护,则视为SIM卡无效。
较佳地,所述发起移动性管理规程的请求携带历史注册的鉴权信息。
较佳地,所述在所述鉴权异常等待时间内监控通过启动定时器实现监控;所述鉴权异常等待时间小于10秒。
本发明第二方面提供了一种鉴权异常的处理系统,用于用户终端,所述处理系统包括设置模块、请求模块、接收模块、监控模块和异常处理模块;
所述设置模块用于设置鉴权异常等待时间;
所述请求模块用于发起移动性管理规程的请求;
所述接收模块用于接收网络发起的鉴权请求;
所述监控模块用于在回复鉴权失败后,并且接收到网络发出的鉴权拒绝之后,在所述鉴权异常等待时间内监控是否有收到所述移动性管理规程的拒绝的消息,若是,则调用所述异常处理模块;
所述异常处理模块用于根据收到的所述移动性管理规程的拒绝的消息中的EMM cause进行异常处理。
较佳地,所述监控模块还用于在所述鉴权异常等待时间内监控是否有收到所述移动性管理规程的拒绝的消息为否时再次调用所述请求模块,且再次调用所述请求模块发起的请求携带无效的鉴权信息。
较佳地,所述用户终端为LTE下的用户终端,所述移动性管理规程的请求包括Attach Request、TAU Request、Service Request以及Extended Service Request中的至少一种。
较佳地,所述用户终端为5G下的用户终端,所述移动性管理规程的请求包括Registration Request和Service Request中的至少一种。
较佳地,所述处理系统还包括检查模块;
所述检查模块用于对收到的所述移动性管理规程的拒绝的消息进行完 整性保护检查,若检查成功则调用所述异常处理模块,若检查失败或收到的所述移动性管理规程的拒绝的消息不带完整性保护,则视为SIM卡无效。
较佳地,所述请求模块发起移动性管理规程的请求携带历史注册的鉴权信息。
较佳地,所述监控模块在所述鉴权异常等待时间内监控通过启动定时器实现监控;所述鉴权异常等待时间小于10秒。
本发明第三方面提供了一种用户终端,包括前述第二方面所述的鉴权异常的处理系统。
本发明的积极进步效果在于:本发明针对UE侧在发起移动性管理规程的请求之后的鉴权异常,增加等待时间,并在该等待时间内监控是否有收到该移动性管理规程的拒绝的消息,在收到后通过解析消息中携带的EMM cause进行对应的异常处理,处理完毕后即可以使得UE与网络同步。与现有技术相比,对于临时异常本发明能够使UE尽快与网络同步、从而获得上下行业务能力,有效提高了用户终端在鉴权异常后接入网络的成功率。
附图说明
图1为本发明实施例1的鉴权异常的处理方法的流程图。
图2为本发明实施例1的鉴权异常的处理方法在LTE应用场景下用户终端与网络之间针对Attach的鉴权异常的处理流程示意图。
图3为本发明实施例2的鉴权异常的处理系统的模块示意图。
具体实施方式
下面通过实施例的方式进一步说明本发明,但并不因此将本发明限制在所述的实施例范围之中。
实施例1
如图1所示,本实施例提供了一种鉴权异常的处理方法,用于用户终端, 该处理方法包括以下步骤:
步骤101、设置鉴权异常等待时间。
本实施例中该等待时间小于10秒。
步骤102、发起移动性管理规程的请求,该请求携带历史注册的鉴权信息。
步骤103、接收网络发起的鉴权请求。
步骤104、回复网络鉴权失败。
步骤105、接收网络发出的鉴权拒绝。
步骤106、通过启动定时器实现在鉴权异常等待时间内监控是否有收到移动性管理规程的拒绝的消息,若是,则执行步骤107;若否,即在鉴权异常等待时间没有收到移动性管理规程的拒绝的消息则执行步骤109。
步骤107、对收到的移动性管理规程的拒绝的消息进行完整性保护检查,若检查成功则执行步骤108,若检查失败或收到的移动性管理规程的拒绝的消息不带完整性保护,则视为SIM卡无效,流程结束。
通过完整性保护检查,能够提高安全性。对于检查失败或收到的移动性管理规程的拒绝的消息不带完整性保护的情况,如伪基站,能够识别出不进一步解析,从而降低风险。
步骤108、根据收到的移动性管理规程的拒绝的消息中的EMM cause进行异常处理,以尽快恢复与网络同步,从而获得上下行业务能力。
步骤109、再次发起移动性管理规程的请求,且再次发起的移动性管理规程的请求携带无效的鉴权信息。若本次发起后还异常,则视为SIM卡无效,流程结束。
本实施例中,用户终端可以为LTE应用场景下的用户终端,也可以为5G应用场景下的用户终端。当为LTE应用场景下的用户终端时,移动性管理规程的请求包括Attach Request、TAU Request、Service Request以及Extended Service Request中的至少一种。当为5G应用场景下的用户终端时, 移动性管理规程的请求包括Registration Request和Service Request中的至少一种。
需要说明的是,本实施例中步骤101的执行顺序仅为示例性说明,并不构成对本发明保护范围的限制,鉴权异常等待时间的设置可以在步骤106使用该鉴权异常等待时间之前的任何时刻设置。
下面以LTE应用场景下用户终端与网络之间针对Attach的鉴权异常的处理流程为例进行说明,具体参见图2。
第一步,UE开机后或在LTE下驻网成功后发起Attach Request(携带历史注册的鉴权信息,如:ksi(key set Indetifier)为1,ksi的取值范围为0~7,其中0-6为有效值,表示历史注册成功中携带的鉴权信息,7为无效值);
第二步,网络发起鉴权过程,即Authentication Request(鉴权请求);
第三步,UE回复鉴权失败(Authentication Failure)响应;
第四步,由于UE或者网络存在某种临时异常,网络下发鉴权拒绝(Authentication Reject),UE等待一定时间(取决于UE实现,如:启动1秒定时器等);
第五步,若网络在等待时间内下发Attach Reject,该消息携带对应的EMM cause,分为以下两种情况:
1)若UE检查Attach Reject的完整性成功,根据Attach Reject中的EMM cause进行后续处理;
2)若UE检查Attach Reject的完整性失败或不带完整性保护,UE将SIM卡视为无效直到关机或SIM卡移除;
若网络在等待时间内不下发Attach Reject,则UE重试一次Attach(携带无效的鉴权信息,如:ksi为7)。
LTE终端在Attach过程中的鉴权被拒后,可视后续网络是否下发Attach Reject以及其中的参数继续处理后续NAS(非接入层)流程。
对于现有技术而言,其中的第四步,由于UE或网络存在某种临时异常, 网络下发鉴权拒绝后,UE通常会进入去注册状态,视为SIM卡无效,UE将无法处理网络后续下发的Attach Reject,UE在本次开机状态下将无法获取任何LTE服务。而基于本实施例改进后的处理方法,UE会等待一定时间,若网络在等待时间内下发Attach Reject,携带对应的EMM cause,UE会进一步分析EMM cause,得到鉴权异常的原因,进行有针对性的处理,对于临时异常能够尽快恢复与网络同步。
其他移动性管理规程的请求流程也类似,在此不再赘述。
本实施例针对UE侧在发起移动性管理规程的请求之后的鉴权异常,增加等待时间,并在该等待时间内监控是否有收到该移动性管理规程的拒绝的消息,在收到后通过解析消息中携带的EMM cause进行对应的异常处理,处理完毕后即可以使得UE与网络同步。与现有技术相比,对于临时异常本实施例能够使UE尽快与网络同步、从而获得上下行业务能力,有效提高了用户终端在鉴权异常后接入网络的成功率。
实施例2
本实施例提供一种鉴权异常的处理系统,用于用户终端,如图3所示,本处理系统包括设置模块1、请求模块2、接收模块3、监控模块4、异常处理模块5和检查模块6。
其中设置模块1用于设置鉴权异常等待时间;该鉴权异常等待时间小于10秒。请求模块2用于发起移动性管理规程的请求。此时该请求携带历史注册的鉴权信息。接收模块3用于接收网络发起的鉴权请求。
监控模块4用于在回复鉴权失败后,并且接收到网络发出的鉴权拒绝之后,通过启动定时器实现在鉴权异常等待时间内监控是否有收到移动性管理规程的拒绝的消息,若是则调用检查模块6;若否则再次调用请求模块2,且再次调用请求模块2发起的请求携带无效的鉴权信息。
检查模块6用于对收到的移动性管理规程的拒绝的消息进行完整性保护检查,若检查成功则调用异常处理模块5,若检查失败或收到的移动性管理 规程的拒绝的消息不带完整性保护,则视为SIM卡无效。
异常处理模块5用于根据收到的移动性管理规程的拒绝的消息中的EMM cause进行异常处理。
本实施例中,用户终端可以为LTE应用场景下的用户终端,也可以为5G应用场景下的用户终端。当为LTE应用场景下的用户终端时,移动性管理规程的请求包括Attach Request、TAU Request、Service Request以及Extended Service Request中的至少一种。当为5G应用场景下的用户终端时,移动性管理规程的请求包括Registration Request和Service Request中的至少一种。
本实施例针对UE侧在发起移动性管理规程的请求之后的鉴权异常,增加等待时间,并在该等待时间内监控是否有收到该移动性管理规程的拒绝的消息,在收到后通过解析消息中携带的EMM cause进行对应的异常处理,处理完毕后即可以使得UE与网络同步。与现有技术相比,对于临时异常本实施例能够使UE尽快与网络同步、从而获得上下行业务能力,有效提高了用户终端在鉴权异常后接入网络的成功率。
实施例3
本实施例提供了一种用户终端,该用户终端包括实施例2的鉴权异常的处理系统。
与现有技术相比,本实施例实现的用户终端,对于临时异常能够使UE尽快与网络同步、从而获得上下行业务能力,有效提高了用户终端在鉴权异常后接入网络的成功率。
虽然以上描述了本发明的具体实施方式,但是本领域的技术人员应当理解,这仅是举例说明,本发明的保护范围是由所附权利要求书限定的。本领域的技术人员在不背离本发明的原理和实质的前提下,可以对这些实施方式做出多种变更或修改,但这些变更和修改均落入本发明的保护范围。

Claims (15)

  1. 一种鉴权异常的处理方法,用于用户终端,其特征在于,所述处理方法包括:
    设置鉴权异常等待时间;
    发起移动性管理规程的请求;
    接收网络发起的鉴权请求;
    在回复鉴权失败后,并且接收到网络发出的鉴权拒绝之后,执行以下步骤:
    在所述鉴权异常等待时间内监控是否有收到所述移动性管理规程的拒绝的消息,若是,则根据收到的所述移动性管理规程的拒绝的消息中的EMM cause进行异常处理。
  2. 如权利要求1所述的鉴权异常的处理方法,其特征在于,在所述鉴权异常等待时间内监控是否有收到所述移动性管理规程的拒绝的消息为否时再次发起所述移动性管理规程的请求,且再次发起的所述移动性管理规程的请求携带无效的鉴权信息。
  3. 如权利要求1-2中至少一项所述的鉴权异常的处理方法,其特征在于,所述用户终端为LTE下的用户终端,所述移动性管理规程的请求包括Attach Request、TAU Request、Service Request以及Extended Service Request中的至少一种。
  4. 如权利要求1-2中至少一项所述的鉴权异常的处理方法,其特征在于,所述用户终端为5G下的用户终端,所述移动性管理规程的请求包括Registration Request和Service Request中的至少一种。
  5. 如权利要求1-4中至少一项所述的鉴权异常的处理方法,其特征在于,在所述根据收到的所述移动性管理规程的拒绝的消息中的EMM cause进行异常处理之前还包括:
    对收到的所述移动性管理规程的拒绝的消息进行完整性保护检查,若检查成功则执行所述根据收到的所述移动性管理规程的拒绝的消息中的EMM cause进行异常处理的步骤,若检查失败或收到的所述移动性管理规程的拒绝的消息不带完整性保护,则视为SIM卡无效。
  6. 如权利要求1-5中至少一项所述的鉴权异常的处理方法,其特征在于,所述发起移动性管理规程的请求携带历史注册的鉴权信息。
  7. 如权利要求1-6中至少一项所述的鉴权异常的处理方法,其特征在于,所述在所述鉴权异常等待时间内监控通过启动定时器实现监控;所述鉴权异常等待时间小于10秒。
  8. 一种鉴权异常的处理系统,用于用户终端,其特征在于,所述处理系统包括设置模块、请求模块、接收模块、监控模块和异常处理模块;
    所述设置模块用于设置鉴权异常等待时间;
    所述请求模块用于发起移动性管理规程的请求;
    所述接收模块用于接收网络发起的鉴权请求;
    所述监控模块用于在回复鉴权失败后,并且接收到网络发出的鉴权拒绝之后,在所述鉴权异常等待时间内监控是否有收到所述移动性管理规程的拒绝的消息,若是,则调用所述异常处理模块;
    所述异常处理模块用于根据收到的所述移动性管理规程的拒绝的消息中的EMM cause进行异常处理。
  9. 如权利要求8所述的鉴权异常的处理系统,其特征在于,所述监控模块还用于在所述鉴权异常等待时间内监控是否有收到所述移动性管理规程的拒绝的消息为否时再次调用所述请求模块,且再次调用所述请求模块发起的请求携带无效的鉴权信息。
  10. 如权利要求8-9中至少一项所述的鉴权异常的处理系统,其特征在于,所述用户终端为LTE下的用户终端,所述移动性管理规程的请求包括Attach Request、TAU Request、Service Request以及Extended Service Request中的 至少一种。
  11. 如权利要求8-9中至少一项所述的鉴权异常的处理系统,其特征在于,所述用户终端为5G下的用户终端,所述移动性管理规程的请求包括Registration Request和Service Request中的至少一种。
  12. 如权利要求8-11中至少一项所述的鉴权异常的处理系统,其特征在于,所述处理系统还包括检查模块;
    所述检查模块用于对收到的所述移动性管理规程的拒绝的消息进行完整性保护检查,若检查成功则调用所述异常处理模块,若检查失败或收到的所述移动性管理规程的拒绝的消息不带完整性保护,则视为SIM卡无效。
  13. 如权利要求8-12中至少一项所述的鉴权异常的处理系统,其特征在于,所述请求模块发起移动性管理规程的请求携带历史注册的鉴权信息。
  14. 如权利要求8-13中至少一项所述的鉴权异常的处理系统,其特征在于,所述监控模块在所述鉴权异常等待时间内监控通过启动定时器实现监控;所述鉴权异常等待时间小于10秒。
  15. 一种用户终端,其特征在于,包括如权利要求8至14任一项所述的鉴权异常的处理系统。
PCT/CN2021/130996 2020-11-30 2021-11-16 鉴权异常的处理方法、系统及用户终端 WO2022111339A1 (zh)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN202011377957.XA CN112637850B (zh) 2020-11-30 2020-11-30 鉴权异常的处理方法、系统及用户终端
CN202011377957.X 2020-11-30

Publications (1)

Publication Number Publication Date
WO2022111339A1 true WO2022111339A1 (zh) 2022-06-02

Family

ID=75306943

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2021/130996 WO2022111339A1 (zh) 2020-11-30 2021-11-16 鉴权异常的处理方法、系统及用户终端

Country Status (2)

Country Link
CN (1) CN112637850B (zh)
WO (1) WO2022111339A1 (zh)

Families Citing this family (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN112637850B (zh) * 2020-11-30 2023-05-16 展讯半导体(成都)有限公司 鉴权异常的处理方法、系统及用户终端
CN114339749B (zh) * 2021-09-29 2023-09-19 荣耀终端有限公司 降低掉话率的方法及终端

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20140355417A1 (en) * 2012-03-16 2014-12-04 Lg Electronics Inc. Method and apparatus for processing nas signaling request in wireless communication system
US20160198514A1 (en) * 2015-01-06 2016-07-07 At&T Intellectual Property I, Lp Method and apparatus for managing failed connection requests for devices in an inactive mode
CN106162778A (zh) * 2015-04-23 2016-11-23 宇龙计算机通信科技(深圳)有限公司 一种网络切换方法、装置和移动终端
CN107087272A (zh) * 2017-05-19 2017-08-22 广东欧珀移动通信有限公司 一种连接网络的方法、终端及存储介质
CN112637850A (zh) * 2020-11-30 2021-04-09 展讯半导体(成都)有限公司 鉴权异常的处理方法、系统及用户终端

Family Cites Families (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102026407A (zh) * 2009-09-21 2011-04-20 中兴通讯股份有限公司 业务请求过程中的异常处理方法及用户设备
CN102469514A (zh) * 2010-11-05 2012-05-23 中兴通讯股份有限公司 终端及其接入网络的方法
US20160309523A1 (en) * 2015-04-16 2016-10-20 Qualcomm Incorporated Reducing delay in attachment procedure with a network
CN108293259B (zh) * 2015-12-28 2021-02-12 华为技术有限公司 一种nas消息处理、小区列表更新方法及设备
CN108040336A (zh) * 2017-11-30 2018-05-15 广东欧珀移动通信有限公司 网络接入结果的检测方法及装置、计算机存储介质
CN107995638B (zh) * 2017-11-30 2021-07-16 Oppo广东移动通信有限公司 Lte网络接入结果的检测方法及装置、计算机存储介质
CN107948976A (zh) * 2017-12-01 2018-04-20 广东欧珀移动通信有限公司 Lte网络接入结果的检测方法及装置、计算机存储介质

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20140355417A1 (en) * 2012-03-16 2014-12-04 Lg Electronics Inc. Method and apparatus for processing nas signaling request in wireless communication system
US20160198514A1 (en) * 2015-01-06 2016-07-07 At&T Intellectual Property I, Lp Method and apparatus for managing failed connection requests for devices in an inactive mode
CN106162778A (zh) * 2015-04-23 2016-11-23 宇龙计算机通信科技(深圳)有限公司 一种网络切换方法、装置和移动终端
CN107087272A (zh) * 2017-05-19 2017-08-22 广东欧珀移动通信有限公司 一种连接网络的方法、终端及存储介质
CN112637850A (zh) * 2020-11-30 2021-04-09 展讯半导体(成都)有限公司 鉴权异常的处理方法、系统及用户终端

Also Published As

Publication number Publication date
CN112637850B (zh) 2023-05-16
CN112637850A (zh) 2021-04-09

Similar Documents

Publication Publication Date Title
WO2022111339A1 (zh) 鉴权异常的处理方法、系统及用户终端
US11751054B2 (en) Network slice access control method and apparatus
US10327137B2 (en) System and method for detecting malicious attacks in a telecommunication network
EP3528591B1 (en) Dual-sim card dual-call connection communication method, terminal, network and system
TWI458380B (zh) 在通信網路中處理無線電連結失效之技術
US9986432B2 (en) Method and system for providing security from a radio access network
US20140289403A1 (en) Method and Apparatus for Learning Online State of Terminal
CN109195217B (zh) Lte网络拒绝行为的处理方法及装置
CN110419248B (zh) 用于用户设备寻呼中的隐私保护的方法和装置
US20200153707A1 (en) NF SERVICE CONSUMER RESTART DETECTION USING DIRECT SIGNALING BETWEEN NFs
US10659960B2 (en) Method and system for providing security from a radio access network
US20190159014A1 (en) Method of registering a mobile terminal in a mobile communication network
CN109548094B (zh) 一种连接恢复方法及装置、计算机存储介质
US20240098487A1 (en) Method and apparatus for sending subscriber identifiers
AU2017386034B2 (en) Link re-establishment method, apparatus, and system
US20220201488A1 (en) Management of user equipment security capabilities in communication system
JP2020502894A (ja) サービス注文方法および装置
CN111278010A (zh) 一种备份信息方法、装置、存储介质和计算机设备
EP4135383A1 (en) Enhanced user equipment security against attacks in a 4g or 5g network
CN108282735B (zh) 一种通信中的控制方法及基站、终端
EP4221285A1 (en) Method and apparatus for establishing communication connection
EP4340322A2 (en) Enhanced pfcp association procedure for session restoration
SE542465C2 (en) Methods, subscriber identity component and managing node for providing wireless device with connectivity
CN109803260B (zh) 拒绝接入方法、装置及系统
CN108495279B (zh) 一种lte-m信令解析方法及系统

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 21896840

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

122 Ep: pct application non-entry in european phase

Ref document number: 21896840

Country of ref document: EP

Kind code of ref document: A1