WO2023083174A1 - Subscription update method and device, network element, and medium - Google Patents

Subscription update method and device, network element, and medium Download PDF

Info

Publication number
WO2023083174A1
WO2023083174A1 PCT/CN2022/130604 CN2022130604W WO2023083174A1 WO 2023083174 A1 WO2023083174 A1 WO 2023083174A1 CN 2022130604 W CN2022130604 W CN 2022130604W WO 2023083174 A1 WO2023083174 A1 WO 2023083174A1
Authority
WO
WIPO (PCT)
Prior art keywords
network element
terminal
target
indication
target terminal
Prior art date
Application number
PCT/CN2022/130604
Other languages
French (fr)
Chinese (zh)
Inventor
李欢
柯小婉
Original Assignee
维沃移动通信有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 维沃移动通信有限公司 filed Critical 维沃移动通信有限公司
Publication of WO2023083174A1 publication Critical patent/WO2023083174A1/en

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/08Access security
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W24/00Supervisory, monitoring or testing arrangements
    • H04W24/02Arrangements for optimising operational condition

Definitions

  • the present application belongs to the technical field of communication, and in particular relates to a method, device, network element and medium for subscription renewal.
  • the terminal After the terminal registers to the 5G core network, it can use the data network name (Data Network Name, DNN) and/or single network slice selection assistance information (S-Network Slice Selection Assistance Information S-NSSAI) to establish a PDU session.
  • DNN Data Network Name
  • S-Network Slice Selection Assistance Information S-NSSAI single network slice selection assistance information
  • Some DNNs need to perform secondary authentication, that is, when a terminal establishes a protocol data unit (Protocol Data Unit, PDU) session of the DNN, it needs to provide credential information to authenticate the terminal through the authentication server in the DNN.
  • PDU Protocol Data Unit
  • NSSAI Network Slice-Specific Authentication and Authorization
  • NSSAA Network Slice-Specific Authentication and Authorization
  • the push server can automatically push the credential information of business parameters (for example, the credential used for the second authentication of DNN, or the credential information used for network slicing authentication). sent to the terminal. Subsequently, the terminal may request the network to use the service parameter. However, if the subscription data of the terminal in the network is not updated in time, the network will still reject the terminal's request for the service parameter, thus causing the terminal to be unable to use the corresponding service.
  • provisioning Server Policy Server
  • the embodiments of the present application provide a subscription renewal method, device, network element and medium, which enable target service parameters by updating the subscription data of the terminal, so as to solve the problem of timely renewal of the terminal subscription existing in related technologies.
  • a method for updating a subscription comprising: a unified data network element receives an indication of successful credential push; the successful push indication of credential is used to indicate that the credential corresponding to the target service parameter has been successfully pushed to the target A terminal: the unified data network element enables the target service parameter in the subscription of the target terminal.
  • a device for updating a subscription which includes: a receiving module configured to receive an indication of a successful credential push; the successful credential push indication is used to indicate that the credential corresponding to the target service parameter has been successfully pushed to The target terminal; an execution module, configured to enable the target service parameter in the subscription of the target terminal.
  • a method for updating a subscription includes: a server sends an indication of a successful credential push to a unified data network element; wherein the successful credential push indication is used to indicate that the credential corresponding to the target service parameter has Successfully pushed to the target terminal.
  • a device for updating a subscription which includes: a sending module, configured to send an indication of a successful credential push to a unified data network element; wherein, the successful push of a credential is used to indicate: the target service parameter The corresponding credentials have been successfully pushed to the target terminal.
  • a method for updating a contract comprising: an open network element obtains an indication of successfully pushing a credential; the open network element sends the indication of successfully pushing the credential to a unified data network element; wherein, the The credential push success indication is used to indicate that the credential corresponding to the target service parameter has been successfully pushed to the target terminal.
  • a device for updating a subscription which includes: an execution module, configured to obtain a certificate success push indication; a sending module, configured to send the certificate success certificate obtained by the execution module to a unified data network element.
  • Push indication wherein, the credential success push indication is used to indicate that the credential corresponding to the target service parameter has been successfully pushed to the target terminal.
  • a method for updating a subscription comprising: a policy control network element acquires a destination address of a target terminal, where the destination address includes the IP address of the target terminal or the media access control (MAC) address of the target terminal (Medium Access Control, MAC) address; the policy control network element determines the second terminal identifier corresponding to the target address; the policy control network element sends the second terminal identifier to the network open network element or unified data network element A terminal identifier; wherein, the second terminal identifier is used to update the subscription of the terminal indicated by the second terminal identifier.
  • MAC media access control
  • a device for updating a subscription which includes: an execution module configured to obtain a destination address of a target terminal, where the destination address includes the IP address of the target terminal or the MAC address of the target terminal; An execution module, configured to determine the second terminal identifier corresponding to the target address received by the receiving module; a transmission module, further configured to send the second terminal identifier to the network open network element or unified data network element; Wherein, the second terminal identifier is used to update the subscription of the terminal indicated by the second terminal identifier.
  • a network side device in a ninth aspect, includes a processor, a memory, and a program or instruction stored in the memory and operable on the processor, and the program or instruction is executed by the processor When executed, the steps of the method described in the first aspect are realized.
  • a network side device which is a unified data network element, including a processor and a communication interface, wherein: the communication interface is used to receive an indication of successful credential push; the indication of successful credential push is used to indicate : The certificate corresponding to the target service parameter has been successfully pushed to the target terminal; the processor is configured to enable the target service parameter in the subscription of the target terminal.
  • a network side device is provided, the network side device is a server, and includes a processor and a communication interface, wherein: the communication interface is used to send a certificate push indication to a unified data network element; wherein, the certificate success The push indication is used to indicate that: the voucher corresponding to the target service parameter has been successfully pushed to the target terminal.
  • a network side device is provided, the network side device is an open network element, including a processor and a communication interface, wherein: the processor is used to obtain the certificate push indication; the communication interface is used to send the unified data network element Sending the successful credential pushing indication; wherein, the credential successful pushing indication is used to indicate that the credential corresponding to the target service parameter has been successfully pushed to the target terminal.
  • a network side device is provided, the network side device is a policy control network element, including a processor and a communication interface, wherein: the communication interface is used to receive the destination address of the target terminal from the network open network element, so The destination address includes the IP address of the target terminal or the MAC address of the target terminal; the processor is configured to determine a second terminal identifier corresponding to the target address.
  • a fourteenth aspect there is provided a readable storage medium, where programs or instructions are stored on the readable storage medium, and when the programs or instructions are executed by a processor, the steps of the method as described in the first aspect are implemented, or The steps of the method as described in the third aspect.
  • a chip in a fifteenth aspect, there is provided a chip, the chip includes a processor and a communication interface, the communication interface is coupled to the processor, and the processor is used to run a program or an instruction to implement the method described in the first aspect method, or implement the method as described in the third aspect, or implement the method as described in the fifth aspect, or implement the method as described in the seventh aspect.
  • a computer program/program product is provided, the computer program/program product is stored in a non-volatile storage medium, and the program/program product is executed by at least one processor to implement the first
  • the unified data network element can enable the target service parameters in the subscription of the target terminal, so as to update the subscription data of the target terminal in time, and then can subscribe according to the target terminal.
  • Authorized terminal service request to provide services for the target terminal.
  • FIG. 1 is a schematic diagram of a system architecture of a wireless communication system provided by an embodiment of the present application
  • FIG. 2 is one of the flow charts of a method for updating a subscription provided in an embodiment of the present application
  • Fig. 3 is the second flow chart of a method for updating a subscription provided by an embodiment of the present application
  • Fig. 4 is the third flowchart of a method for updating a subscription provided by the embodiment of the present application.
  • FIG. 5 is the fourth flowchart of a method for updating a subscription provided by an embodiment of the present application.
  • Fig. 6 is the fifth flowchart of a method for updating a subscription provided by the embodiment of the present application.
  • FIG. 7 is the sixth flowchart of a method for updating a subscription provided by the embodiment of the present application.
  • FIG. 8 is one of the schematic structural diagrams of a device for updating a subscription provided in an embodiment of the present application.
  • Fig. 9 is the second structural schematic diagram of a device for updating a subscription provided by an embodiment of the present application.
  • Fig. 10 is the third schematic structural diagram of a device for updating a subscription provided in the embodiment of the present application.
  • Fig. 11 is a fourth structural schematic diagram of a device for updating a subscription provided by an embodiment of the present application.
  • Fig. 12 is a schematic structural diagram of a communication device provided by an embodiment of the present application.
  • FIG. 13 is a schematic diagram of a hardware structure of a network side device provided by an embodiment of the present application.
  • first, second and the like in the specification and claims of the present application are used to distinguish similar objects, and are not used to describe a specific sequence or sequence. It is to be understood that the terms so used are interchangeable under appropriate circumstances such that the embodiments of the application are capable of operation in sequences other than those illustrated or described herein and that "first" and “second” distinguish objects. It is usually one category, and the number of objects is not limited. For example, there may be one or more first objects.
  • “and/or” in the description and claims means at least one of the connected objects, and the character “/” generally means that the related objects are an "or” relationship.
  • LTE Long Term Evolution
  • LTE-Advanced LTE-Advanced
  • LTE-A Long Term Evolution-Advanced
  • CDMA Code Division Multiple Access
  • TDMA Time Division Multiple Access
  • FDMA Frequency Division Multiple Access
  • OFDMA Orthogonal Frequency Division Multiple Access
  • SC-FDMA Single-carrier Frequency-Division Multiple Access
  • system and “network” in the embodiments of the present application are often used interchangeably, and the described technology can be used for the above-mentioned system and radio technology, and can also be used for other systems and radio technologies.
  • the following description describes the New Radio (New Radio, NR) system for example purposes, and uses NR terminology in most of the following descriptions, but these techniques can also be applied to applications other than NR system applications, such as the 6th generation (6th Generation , 6G) communication system.
  • 6G 6th generation
  • Fig. 1 shows a block diagram of a wireless communication system to which the embodiment of the present application is applicable.
  • the wireless communication system includes a terminal (such as terminal 1 and terminal 2 in FIG. 1 ), a radio access network (Radio Access Network, RAN) (such as RAN1 and RAN2 in FIG. 1 ) and a core network.
  • a terminal such as terminal 1 and terminal 2 in FIG. 1
  • RAN Radio Access Network
  • a terminal can also be called a terminal device or a user equipment (User Equipment, UE), which can be a mobile phone, a tablet computer (Tablet Personal Computer), a laptop computer (Laptop Computer) or a notebook computer, a personal digital Assistant (Personal Digital Assistant, PDA), handheld computer, netbook, ultra-mobile personal computer (ultra-mobile personal computer, UMPC), mobile internet device (Mobile Internet Device, MID), augmented reality (augmented reality, AR)/virtual reality (virtual reality, VR) equipment, robots, wearable devices (Wearable Device), vehicle-mounted equipment (VUE), pedestrian terminal (PUE), smart home (home equipment with wireless communication functions, such as refrigerators, TVs, washing machines or furniture etc.) and other terminal-side devices, wearable devices include: smart watches, smart bracelets, smart headphones, smart glasses, smart jewelry (smart bracelets, smart bracelets, smart rings, smart necklaces, smart anklets, smart anklets, etc.) , smart wristbands, smart clothing, game
  • the wireless access network described in the embodiments of this application is not limited to the LTE/LTE-A system, and can also be used in other wireless communication systems, such as CDMA, TDMA, FDMA, OFDMA, SC-FDMA and other systems.
  • system and “network” in the embodiments of this application are often used interchangeably, and the described technology can be used for the above-mentioned system and radio technology, and can also be used for other systems and radio technologies, such as non-3GPP Access systems (eg, WLAN, fixed access systems, Bluetooth, etc.).
  • the following description describes the NR system for example purposes, and uses NR terminology in most of the following descriptions, and these techniques can also be applied to applications other than NR system applications, such as 6G communication systems.
  • the aforementioned core network may include at least one of the following functions or network elements: session management function (e.g. Session Management Function, SMF), access and mobility management function (e.g. Access and Mobility Management Function, AMF), user plane function (e.g.User Port Function, UPF), policy control function (e.g.Policy Control Function, PCF), unified data network element, and network exposure function (e.g.Network Exposure Function, NEF).
  • session management function e.g. Session Management Function, SMF
  • access and mobility management function e.g. Access and Mobility Management Function, AMF
  • user plane function e.g.User Port Function, UPF
  • policy control function e.g.Policy Control Function, PCF
  • unified data network element e.g.Network Exposure Function, NEF
  • network exposure function e.g.Network Exposure Function, NEF
  • the above-mentioned unified data network element may include a unified data management network element (e.g. Unified Data Management, UDM) or a unified data storage network element (Unified Data Repository, UDR). It should be noted that the above-mentioned unified data network element may also be called a user subscription database.
  • UDM Unified Data Management
  • UDR Unified Data Repository
  • the above-mentioned network element may also be another network element with the same function or type, but the specific name may be different from the name of the above-mentioned network element, which is not limited in this embodiment of the present application.
  • the PVS can send credential information of service parameters (eg, credential for DNN's secondary authentication, or credential information for network slicing authentication) to the terminal in an automatic push manner.
  • credential information of service parameters eg, credential for DNN's secondary authentication, or credential information for network slicing authentication
  • the terminal's subscription also needs to be updated in time to allow the terminal to use the service parameter. Otherwise, when a terminal requests to access the DNN or network slice, the network may reject the terminal's request. How to update the contract of the terminal in time, there is no effective solution at present.
  • the unified data network element after receiving the certificate push indication, the unified data network element knows that the certificate corresponding to the target service parameter has been successfully pushed to the target terminal, so that it can directly enable Target business parameters, and then update the subscription data of the target terminal in time, and provide services for the target terminal according to the terminal service request authorized by the target terminal for signing.
  • An embodiment of the present application provides a method for updating a subscription.
  • the method for updating a subscription provided in the embodiment of the present application may include the following steps 201 and 202:
  • Step 201 The unified data network element receives the certificate push indication successfully.
  • the above indication of successfully pushing the credential is used to indicate that the credential corresponding to the target service parameter has been successfully pushed to the target terminal.
  • the aforementioned target terminal may be a predetermined or preconfigured terminal.
  • the unified data network element or the target terminal corresponding to the pre-configured target parameters in the communication network can acquire the target terminal corresponding to the target parameter from the local area or the communication network.
  • the subscription renewal method provided in this embodiment of the application may further include step 201a:
  • Step 201a the unified data network element receives the first terminal identifier.
  • the above-mentioned target terminal may include a terminal indicated by the first terminal identifier.
  • step 201a may include the following step 201a1:
  • Step 201a1 the unified data network element receives the first terminal identifier from the open network element.
  • the above step 201 may include the following step 201b:
  • Step 201b The unified data network element receives the certificate push indication from the network open network element.
  • the above-mentioned credential push success indication includes target service parameters.
  • the above-mentioned credential push success indication includes information used to describe target service parameters.
  • the above target service parameters include at least one of the following: DNN, S-NSSAI.
  • the first terminal identifier includes at least one of the following: the IP address of the target terminal, the MAC address of the target terminal, the International Mobile Subscriber Identity (IMSI) of the target terminal, the target terminal Subscription Permanent Identifier (SUPI) of the target terminal, Mobile Station International Service Digital Network (MSISDN) of the target terminal, and Generic Public Subscription Identifier (GPSI) of the target terminal.
  • IMSI International Mobile Subscriber Identity
  • SUPI Serving Uplink Identity
  • MSISDN Mobile Station International Service Digital Network
  • GPSI Generic Public Subscription Identifier
  • the above indication of successfully pushing the credential further includes: a credential corresponding to the target service parameter.
  • the above-mentioned credential push indication further includes a first authentication indication
  • the above-mentioned first authentication indication is used to indicate that the target service parameter requires further authentication
  • the first authentication indication includes at least one of the following:
  • the unified data network element may receive the first terminal identifier and the certificate push indication from the server successfully.
  • the unified data network element may receive from the network open network element the first terminal identifier and the certificate push success indication from the server.
  • Step 202 The unified data network element enables target service parameters in the subscription of the target terminal.
  • the unified data network element activates the configured target service parameters during the subscription of the target terminal.
  • the above step 202 may also include the following process: the unified data network element stores the target service parameter in the subscription of the target terminal.
  • the unified data network element may further activate the target service parameter after storing the target service parameter in the subscription of the target terminal.
  • the process of the unified data network element activating the target service parameter in the subscription of the target terminal can be regarded as: the unified data network element first determines the configured target service parameter, and then activates the target service parameter. It is worth noting that for the subscription data of different users, some service parameters may have been configured, and some service parameters have not been configured. In this scenario, the unified data network element can first determine whether there is a configuration in the subscription data of related users The service parameter, and then, based on whether the service parameter is configured, a corresponding action of activating or storing the service parameter is performed.
  • the subscription renewal method provided in the embodiment of the present application may further include the following step 203:
  • Step 203 The unified data network element determines a closed access group identifier (Closed Access Group Identifier, CAG) that can be used by the target terminal according to the target service parameters.
  • CAG Closed Access Group Identifier
  • the unified data network element may determine the CAG available to the target terminal based on the enabled DNN and/or the enabled S-NSSAI.
  • the subscription renewal method provided by the embodiment of the present application may also include the following step 204:
  • Step 204 The unified data network element activates or stores the CAG in the subscription of the target terminal.
  • the unified data network element determines the CAG that can be used by the target terminal, it performs corresponding The action of activating or storing the CAG. For example, the unified data network element directly activates the configured CAG, or activates the stored CAG after storing the unconfigured CAG.
  • steps 203 and 204 may occur before or after step 202, and step 204 may also occur at the same time as step 202, that is, the order of steps 203 and 204 and step 202 is not limited in this application.
  • the subscription renewal method provided in the embodiment of the present application may further include the following step 205:
  • Step 205 The unified data network element sends the updated subscription of the target terminal to the target terminal.
  • the above-mentioned updated contract includes at least one of the following:
  • CAG determined based on enabled DNN and/or enabled S-NSSAI.
  • the above-mentioned updated contract includes at least one of the following:
  • CAG determined based on activated DNN and/or activated S-NSSAI.
  • the subscription renewal method provided by the embodiment of the present application may also include the following step 206:
  • Step 206 UDR sends the updated subscription of the target terminal to UDM.
  • the unified data network element can enable the target service parameters in the subscription of the target terminal, thereby updating the subscription data of the target terminal in time, Furthermore, the service can be provided for the target terminal according to the terminal service request signed and authorized by the target terminal.
  • the embodiment of the present application provides another method for updating the subscription.
  • the method for updating the subscription provided in the embodiment of the present application may include the following steps 301 to 303:
  • Step 301 the server sends a certificate push indication to the unified data network element.
  • Step 302 The unified data network element receives the certificate push indication successfully.
  • Step 303 The unified data network element enables the target service parameters in the subscription of the target terminal.
  • step 302 and step 303 in this embodiment, reference may be made to the foregoing description, and details are not repeated here to avoid repetition.
  • the above step 301 may also include the following step 301a:
  • Step 301a the server sends the first terminal identifier to the unified data network element.
  • the above step 301a may also include the following step 301a1:
  • Step 301a1 The server sends the first terminal identifier to the unified data network element through the open network element.
  • the above step 302 may also include the following step 302a:
  • Step 302a The unified data network element receives the first terminal identifier.
  • the above step 301 may also include the following step 301b:
  • Step 301b The server sends an indication of successful credential push to the unified data network element.
  • the server sends an indication that the credential is successfully pushed to the unified data network element through the open network element.
  • the server sends the certificate push indication to the unified data network element, so that the unified data network element can enable the subscription of the target terminal after receiving the certificate push success indication.
  • Target service parameters thereby updating the subscription data of the target terminal in time, and then providing services for the target terminal according to the terminal service request authorized by the target terminal for signing.
  • the embodiment of the present application provides another method for updating the subscription.
  • the method for updating the subscription provided in the embodiment of the present application may include the following steps 401:
  • Step 401 Push an indication that the network open network element obtains the certificate successfully.
  • Step 402 The network open network element sends a certificate pushing success indication to the unified data network element.
  • Step 403 The unified data network element receives the certificate push indication successfully.
  • Step 404 The unified data network element enables the target service parameters in the subscription of the target terminal.
  • step 403 and step 404 in this embodiment reference may be made to the foregoing description, and details are not repeated here to avoid repetition.
  • step 401 may also include step A1:
  • Step A1 The network opening network element acquires the first terminal identifier.
  • step 402 may also include step A2:
  • Step A2 The network open network element sends the first terminal identifier to the unified data network element.
  • step 403 may also include step A3:
  • Step A3 The unified data network element receives the first terminal identifier.
  • the network opening network element may receive the first terminal identifier and the certificate push success indication from the server side.
  • the above step A1 may include the following steps 401a and 401b:
  • Step 401a The network opening network element obtains the target address of the target terminal and an indication of successful credential push.
  • the above-mentioned target address of the target terminal includes the IP address of the target terminal or the MAC address of the target terminal.
  • the network opening network element may receive the target address of the target terminal from the server and the certificate push indication successfully.
  • Step 401b The network opening network element obtains the second terminal identifier corresponding to the target address of the target terminal.
  • the above step 402 may include: the network open network element sends the second terminal identifier and the certificate push indication to the unified data network element; correspondingly, the above step 403 may include: the unified data network The unit receives the second terminal identifier and the certificate push indication successfully.
  • the above-mentioned second terminal identifier may be the same as the first terminal identifier, or may be different from the first terminal identifier, which is not limited in this embodiment of the present application.
  • the terminal identifier sent by the network open network element to the unified data network element is the second terminal identifier, or the terminal identifier sent by the network open network element to the unified data network element may include the IP address or MAC address of the target terminal at the same time.
  • the address and the second terminal identifier are not limited in this embodiment of the present application.
  • step 401b may include the following steps 401b1 and 401b2:
  • Step 401b1 The network opening network element sends the target address of the target terminal to the policy control network element.
  • Step 401b2 The network opening network element acquires the second terminal identifier corresponding to the target address of the target terminal from the policy control network element.
  • the second terminal identifier includes at least one of the following: IMSI of the target terminal, SUPI of the target terminal, MSISDN of the target terminal, and GPSI of the target terminal.
  • the network opening network element sends a policy service request (for example, Npcf_PolicyAuthorization_Create service request) to the policy control network element, where the policy service request includes the target address (for example, IP address or MAC address) of the target terminal
  • the policy control network element will send a policy service response (for example, Npcf_PolicyAuthorization_Create service response) to the network open network element, and the policy service response includes the second terminal identifier of the target terminal.
  • the network open network element sends the certificate push indication to the unified data network element, so that the unified data network element can be in the subscription of the target terminal after receiving the certificate push success indication.
  • the target service parameter is activated, so that the subscription data of the target terminal is updated in time, and services can be provided for the target terminal according to the terminal service request authorized by the target terminal for signing.
  • the embodiment of the present application provides another method for updating the subscription.
  • the method for updating the subscription provided in the embodiment of the present application may include the following steps 501:
  • Step 501 The policy control network element obtains the target address of the target terminal.
  • the above-mentioned target address of the target terminal includes the IP address of the target terminal or the MAC address of the target terminal.
  • the policy control network element may receive the target address of the target terminal from the server and an indication of successful credential push.
  • the policy control network element may receive the target address of the target terminal from the server and the certificate push indication from the server through the network opening network element.
  • Step 502 The policy control network element determines the second terminal identifier corresponding to the target address of the target terminal.
  • Step 503 The policy control network element sends the second terminal identifier to the network open network element or the unified data network element.
  • the above-mentioned second terminal identifier is used to update the subscription of the terminal indicated by the second terminal identifier.
  • the second terminal identifier includes at least one of the following: IMSI of the target terminal, SUPI of the target terminal, MSISDN of the target terminal, and GPSI of the target terminal.
  • the policy control network element may also send the second terminal identifier to the network open network element.
  • the network opening network element may also send the second terminal identifier and a certificate push indication to the unified data network element, so that the unified data network element updates the subscription data of the terminal indicated by the second terminal identifier according to the second terminal identifier.
  • the policy control network element may also send the second terminal identifier to the unified data network element, so that the unified data network element updates the subscription data of the terminal indicated by the second terminal identifier according to the second terminal identifier.
  • the policy control network element obtains the target address of the target terminal (that is, the IP address of the target terminal or the MAC address of the target terminal), and the corresponding second terminal identifier, so that the communication network
  • the subscription of the terminal indicated by the second terminal identifier may be updated in time.
  • the subscription renewal methods shown in the foregoing embodiments may be combined with each other. That is, during specific implementation, the subscription renewal method shown in each of the above embodiments can also be implemented in combination with any one or more of the other embodiments shown in the above embodiments that can be combined, and will not be repeated here.
  • the IP address and/or MAC address can be used to obtain the terminal identification used inside the communication system, and then update the terminal identification indication The signing of the target terminal.
  • the following example uses PVS as the server, UDM and/or UDR as the unified data network element, NEF as the network open network element, PCF as the policy control network element, and UE as the terminal.
  • NEF the network open network element
  • PCF the policy control network element
  • UE the terminal.
  • the network element name in the following example is only an example, and other network element names may also be used in practical applications, which is not limited in this embodiment of the present application.
  • the preconditions for the execution of this embodiment may be: the service parameters (that is, DNN or S-NSSAI) can be configured in the UE in advance, and an indication that secondary authentication or NSSAA is required, but no credentials (credential) are configured; or, the UE can also The aforementioned information may not be configured in advance. Meanwhile, the DNN or S-NSSAI is not configured in UDR/UDM.
  • Step S11 The UE establishes a PDU session, and downloads the credentials of the DNN or S-NSSAI from the PVS.
  • the UE uses the configured DNN or S-NSSAI to request to establish a PDU session, and obtains a PVS address during the process of establishing the session.
  • the UE contacts the PVS indicated by the PVS address to obtain the credentials of the DNN or S-NSSAI.
  • Step S12 The PVS sends the UE ID and the DNN or S-NSSAI credential success push indication to the UDM of the UE.
  • the UE identity may include at least one of the following: the IP address of the UE, the MAC address of the UE, the IMSI of the UE, the GPSI of the UE, the MSISDN of the UE, the SUPI of the UE, the SUCI of the UE, or other temporary or permanent identifiers of the UE, or , other internal or external identifiers of the UE.
  • the credential success push indication may include DNN or S-NSSAI and the corresponding credential, or may send DNN or S-NSSAI and an indication of "Need Second Authentication” or “Need NSSAA", or send "Need Second Authentication DNN” or "S-NSSAI with NSSAA” parameter.
  • the DNN or S-NSSAI is included in the indication that the credential is successfully pushed.
  • the PVS may directly send to the UDM, or the PVS may send to the UDM through the NEF.
  • the PVS can use the Nnef_ServiceParameter_Create service to send the UE identity and the credential push indication to the NEF successfully.
  • NEF sends UE identity and credential push indication to UDM successfully.
  • Step S13 UDM receives the certificate push indication, and stores the DNN or S-NSSAI and the indication of the need for secondary authentication or NSSAA in the subscription of the UE.
  • Step S14 The UDM can determine the CAG available to the UE according to the DNN or S-NSSAI, and store the CAG in the UE subscription.
  • UDM in this embodiment can be replaced by a UDR.
  • the UDR sends the UE's updated subscription, including the new DNN or S-NSSAI, to the UDM. Further, the updated subscription also includes: the CAG determined according to the new DNN or S-NSSAI.
  • the scheme of this embodiment may also include:
  • Step S15 The UDM sends the updated subscription to the UE.
  • the updated subscription includes a new DNN or S-NSSAI. Further, the updated subscription also includes: the CAG determined according to the new DNN or S-NSSAI.
  • the scheme of this embodiment may also include:
  • Step S16 UE activates the configured DNN or S-NSSAI.
  • the DNN or S-NSSAI is configured in the UE in advance, and the corresponding DNN or S-NSSAI is activated after receiving the updated subscription.
  • the UE also activates corresponding CAG information.
  • the UE marks the DNN, S-NSSAI or CAG as "activated” or deletes the DNN, S-NSSAI or CAG as "inactive”.
  • the DNN or S-NSSAI is not configured in the UE, and the UE stores the corresponding DNN or S-NSSAI after receiving the updated subscription.
  • the UE also stores corresponding CAG information.
  • the UE may not need to determine whether the aforementioned information has been configured in advance, that is, the UE performs the aforementioned activation or storage operations after receiving an updated subscription.
  • DNN or S-NSSAI is configured in UDR/UDM in advance, and a secondary authentication or NSSAA indication is required, but no credential is configured.
  • Service parameters that is, DNN or S-NSSAI
  • an indication of the need for secondary authentication or NSSAA can be configured in the UE in advance, but credentials (credential) are not configured; or, the foregoing information may not be configured in the UE in advance.
  • Step S21 The UE establishes a PDU session, and downloads the credentials of the DNN or S-NSSAI from the PVS.
  • Step S22 The PVS sends the UE ID and the DNN or S-NSSAI credential success push indication to the UDM of the UE.
  • Step S23 The UDM receives the certificate push indication, and activates the DNN or S-NSSAI in the subscription of the UE.
  • Step S24 The UDM can determine the CAG that the UE can use according to the DNN or S-NSSAI, store the CAG in the UE subscription, or directly activate the corresponding CAG.
  • UDM in this embodiment can be replaced by a UDR.
  • the UDR sends the UE's updated subscription, including the new DNN or S-NSSAI, to the UDM. Further, the updated subscription also includes: the CAG determined according to the new DNN or S-NSSAI.
  • the scheme of this embodiment may also include:
  • Step S25 The UDM sends the updated subscription to the UE.
  • the scheme of this embodiment may also include:
  • Step S26 UE activates the configured DNN or S-NSSAI.
  • steps S25-S26 reference may be made to the description of steps S15-S16 in the first embodiment above.
  • the NEF may first query the PCF for the UE identifier.
  • the internal identifier of the UE corresponding to the IP address such as GPSI, IMSI, SUPI, MSISDN or SUCI.
  • the NEF sends an Npcf_PolicyAuthorization_Create service request to the PCF, wherein the Npcf_PolicyAuthorization_Create service request includes the IP address and/or MAC address of the UE, and the PCF sends an Npcf_PolicyAuthorization_Create service response to the NEF, and the Npcf_PolicyAuthorization_Create service response includes the IMSI of the UE.
  • NEF sends UE's IMSI and credential push indication to UDR/UDM successfully.
  • the execution subject may be a subscription renewal device, or a control module in the subscription renewal device for executing the subscription renewal method.
  • the method for executing the subscription renewal by the subscription renewal device is taken as an example to describe the subscription renewal device provided in the embodiment of the present application.
  • the apparatus for updating a subscription may include: a transmission module 601 and an execution module 602, wherein:
  • the transmission module 601 is configured to receive an indication of successful credential push; the above-mentioned successful credential push indication is used to indicate that the credential corresponding to the target service parameter has been successfully pushed to the target terminal; the execution module 602 is used to enable the target service in the subscription of the target terminal parameter.
  • the indication of successful credential push includes target service parameters.
  • the above target service parameters include at least one of the following: DNN, S-NSSAI.
  • the transmission module 601 is further configured to receive a first terminal identifier; wherein the target terminal includes a terminal indicated by the first terminal identifier.
  • the first terminal identifier includes at least one of the following: IP address of the target terminal, MAC address of the target terminal, IMSI of the target terminal, SUPI of the target terminal, MSISDN of the target terminal, GPSI of the target terminal .
  • the above indication of successfully pushing the credential further includes: a credential corresponding to the target service parameter.
  • the above-mentioned credential push indication further includes a first authentication indication
  • the above-mentioned first authentication indication includes at least one of the following:
  • the execution module 602 is specifically configured to: activate and/or store target service parameters in the subscription of the target terminal.
  • the execution module 602 is further configured to determine the CAG available to the target terminal according to the target service parameters.
  • the execution module 602 is further configured to activate or store the CAG in the subscription of the target terminal.
  • the transmitting module 601 is further configured to send the updated subscription of the target terminal to the target terminal.
  • the transmitting module 601 is further configured to send the updated subscription of the target terminal to the UDM.
  • the above-mentioned updated subscription includes at least one of the following:
  • CAG determined based on enabled DNN and/or enabled S-NSSAI.
  • the transmission module 601 is specifically configured to: receive a certificate push indication from an open network element of the network.
  • the transmission module 601 is specifically configured to: receive the first terminal identifier from an open network element of the network.
  • the device after receiving the successful certificate push indication, the device can know that the certificate corresponding to the target service parameter has been successfully pushed to the target terminal based on the successful certificate push indication. At this time, the device can The target service parameter is enabled in the subscription of the target terminal, so that the subscription data of the target terminal is updated in time, and then the service can be provided for the target terminal according to the terminal service request authorized by the subscription of the target terminal.
  • the apparatus for updating a subscription may include: a transmission module 701, wherein:
  • the transmission module 701 is configured to send a certificate push success indication to the unified data network element; the above certificate success push indication is used to indicate that the certificate corresponding to the target service parameter has been successfully pushed to the target terminal.
  • the indication of successful credential push includes target service parameters.
  • the above target service parameters include at least one of the following: DNN, S-NSSAI.
  • the transmission module 701 is further configured to send the first terminal identifier to the unified data network element; wherein the target terminal includes a terminal indicated by the first terminal identifier.
  • the first terminal identifier includes at least one of the following: IP address of the target terminal, MAC address of the target terminal, IMSI of the target terminal, SUPI of the target terminal, MSISDN of the target terminal, GPSI of the target terminal .
  • the above indication of successfully pushing the credential further includes: a credential corresponding to the target service parameter.
  • the above-mentioned credential push indication further includes a first authentication indication
  • the above-mentioned first authentication indication is used to indicate that the target service parameter requires further authentication
  • the above-mentioned first authentication indication includes at least one of the following:
  • the transmission module 701 is specifically configured to: send an indication of successful credential push to the network opening network element.
  • the transmission module 701 is specifically configured to: send the first terminal identifier to the unified data network element through the network open network element.
  • the device sends a certificate push indication to the unified data network element, so that the unified data network element can enable the subscription of the target terminal after receiving the certificate push success indication.
  • Target service parameters thereby updating the subscription data of the target terminal in time, and then providing services for the target terminal according to the terminal service request authorized by the target terminal for signing.
  • An apparatus for updating a subscription may include: an execution module 801 and a transmission module 802, wherein:
  • the execution module 801 is configured to obtain an indication of a successful credential push; the sending module 802 is configured to send the above-mentioned credential successful push indication obtained by the execution module 801 to the unified data network element; the above-mentioned credential successful push indication is used to indicate: Credentials have been successfully pushed to the target endpoint.
  • the indication of successful credential push includes target service parameters.
  • the above target service parameters include at least one of the following: DNN, S-NSSAI.
  • the above indication of successfully pushing the credential further includes: a credential corresponding to the target service parameter.
  • the above-mentioned credential push indication further includes a first authentication indication
  • the above-mentioned first authentication indication includes at least one of the following:
  • the execution module 801 is further configured to obtain the first terminal identifier; the transmission module 802 is further configured to send the first terminal identifier to a unified data network element.
  • the transmission module 802 is further configured to receive a target address of the target terminal and an indication of successful credential push, where the target address includes the IP address of the target terminal or the MAC address of the target terminal; the execution module 801 is specifically used to Obtain the second terminal identifier corresponding to the above target address.
  • the transmission module 802 is further configured to send the target address of the above target terminal to the policy control network element; the transmission module 802 is also used to receive the second terminal corresponding to the above target address from the policy control network element logo.
  • the first terminal identifier includes at least one of the following: IP address of the target terminal, MAC address of the target terminal, IMSI of the target terminal, SUPI of the target terminal, MSISDN of the target terminal, GPSI of the target terminal .
  • the above-mentioned second terminal identifier includes at least one of the following: IMSI of the target terminal, SUPI of the target terminal, MSISDN of the target terminal, and GPSI of the target terminal.
  • the device sends a certificate push indication to the unified data network element, so that the unified data network element can enable the subscription of the target terminal after receiving the certificate push success indication.
  • Target service parameters thereby updating the subscription data of the target terminal in time, and then providing services for the target terminal according to the terminal service request authorized by the target terminal for signing.
  • An apparatus for updating a subscription may include: a transmission module 901 and an execution module 902, wherein:
  • the execution module 902 is used to obtain the destination address of the target terminal, and the above destination address includes the IP address of the target terminal or the MAC address of the target terminal; the execution module 902 is also used to determine the second terminal identifier corresponding to the above target address; the transmission module 901 , further configured to send the second terminal identifier to the network open network element or unified data network element; where the second terminal identifier is used to update the subscription of the terminal indicated by the second terminal identifier.
  • the above-mentioned second terminal identifier includes at least one of the following: IMSI of the target terminal, SUPI of the target terminal, MSISDN of the target terminal, and GPSI of the target terminal.
  • the device obtains the target address of the target terminal (that is, the IP address of the target terminal or the MAC address of the target terminal), corresponding to the second terminal identifier, so that the communication network can timely
  • the subscription of the terminal indicated by the second terminal identifier is updated.
  • the computing task resource allocation device or computing task policy determination device in the embodiment of the present application may be a device, a device with an operating system or an electronic device, or a component, an integrated circuit, or a chip in the device.
  • the device or electronic device may be a network element, a node device, a server, a network attached storage (Network Attached Storage, NAS), a personal computer (personal computer, PC), etc., which are not specifically limited in this embodiment of the present application.
  • the subscription renewal device provided by the embodiment of the present application can realize the various processes realized by the method embodiments in Fig. 2 to Fig. 7 and achieve the same technical effect, and to avoid repetition, details are not repeated here.
  • this embodiment of the present application further provides a communication device 1000, including a processor 1001, a memory 1002, and programs or instructions stored in the memory 1002 and operable on the processor 1001,
  • a communication device 1000 including a processor 1001, a memory 1002, and programs or instructions stored in the memory 1002 and operable on the processor 1001
  • the communication device 1000 is a network-side device
  • the program or instruction is executed by the processor 1001
  • various processes of the above-mentioned method embodiments can be achieved, and the same technical effect can be achieved. To avoid repetition, details are not repeated here.
  • the embodiment of the present application also provides a network side device, including a processor and a communication interface.
  • the network-side device embodiment corresponds to the above-mentioned network-side device method embodiment, and each implementation process and implementation mode of the above-mentioned method embodiment can be applied to this network-side device embodiment, and can achieve the same technical effect.
  • the network side device is a unified data network element, including a processor and a communication interface, wherein the communication interface is used to receive an indication of a successful credential push; the above indication of a successful credential push is used to indicate: The credential has been successfully pushed to the target terminal; the processor is used to enable the target service parameter in the subscription of the target terminal.
  • the credential successfully pushed indication includes target service parameters.
  • the above target service parameters include at least one of the following: DNN, S-NSSAI.
  • the foregoing communication interface is further configured to receive a first terminal identifier; wherein the target terminal includes a terminal indicated by the first terminal identifier.
  • the first terminal identifier includes at least one of the following: the IP address of the target terminal, the MAC address of the target terminal, the IMSI of the target terminal, the SUPI of the target terminal, the MSISDN of the target terminal, and the GPSI of the target terminal.
  • the above indication of successfully pushing the credential further includes: a credential corresponding to the target service parameter.
  • the above-mentioned certificate push indication further includes a first authentication indication
  • the above-mentioned first authentication indication includes at least one of the following:
  • the processor is specifically configured to: activate and/or store target service parameters in subscription of the target terminal.
  • the processor is further configured to determine the CAG usable by the target terminal according to the target service parameters.
  • the processor is further configured to enable or store the foregoing CAG in the subscription of the target terminal.
  • the communication interface is further configured to send the updated subscription of the target terminal to the target terminal.
  • the communication interface is further configured to send the updated subscription of the target terminal to the UDM.
  • the above-mentioned updated contract includes at least one of the following:
  • CAG determined based on enabled DNN and/or enabled S-NSSAI.
  • the communication interface is specifically configured to: receive an indication from a network open network element that the credential is successfully pushed.
  • the communication interface is specifically configured to: receive the first terminal identifier from an open network element of the network.
  • the unified data network element In the unified data network element provided in the example of this application, after the unified data network element receives the successful push indication of the certificate, it can know that the certificate corresponding to the target service parameter has been successfully pushed to the target terminal based on the successful push indication of the certificate. At this time, the The device can enable the target service parameters in the subscription of the target terminal, thereby updating the subscription data of the target terminal in time, and then can provide services for the target terminal according to the terminal service request authorized by the target terminal subscription.
  • the network-side device is a server, including a processor and a communication interface, wherein the communication interface is used to send an indication of successful credential push to a unified data network element; wherein, the above-mentioned successful credential push indication is used to indicate: target The certificate corresponding to the business parameter has been successfully pushed to the target terminal.
  • the credential successfully pushed indication includes target service parameters.
  • the above target service parameters include at least one of the following: DNN, S-NSSAI.
  • the communication interface is further configured to send the first terminal identifier to the unified data network element; wherein the target terminal is a terminal indicated by the first terminal identifier.
  • the first terminal identifier includes at least one of the following: the IP address of the target terminal, the MAC address of the target terminal, the IMSI of the target terminal, the SUPI of the target terminal, the MSISDN of the target terminal, and the GPSI of the target terminal.
  • the above indication of successfully pushing the credential further includes: a credential corresponding to the target service parameter.
  • the above-mentioned certificate push indication further includes a first authentication indication
  • the above-mentioned first authentication indication is used to indicate that the target service parameter requires further authentication
  • the above-mentioned first authentication indication includes at least one of the following:
  • the communication interface is specifically configured to: send an indication of successful credential push to the network opening network element.
  • the communication interface is specifically configured to: send the first terminal identifier to the unified data network element through the network open network element.
  • the server sends a certificate push indication to the unified data network element, so that the unified data network element can enable the target service parameter in the subscription of the target terminal after receiving the certificate push success indication, Therefore, the subscription data of the target terminal is updated in time, and the service can be provided for the target terminal according to the terminal service request of the target terminal's contract authorization.
  • the network-side device is an open network element, including a processor and a communication interface, wherein the processor is used to obtain an indication of successful credential push; the communication interface is used to send the information obtained by the processor to the unified data network element.
  • the above indication of successfully pushing the voucher wherein, the indication of successfully pushing the voucher includes target service parameters; the above indication of successfully pushing the voucher is used to indicate that the voucher corresponding to the target service parameter has been successfully pushed to the target terminal.
  • the credential successfully pushed indication includes target service parameters.
  • the above target service parameters include at least one of the following: DNN, S-NSSAI.
  • the above indication of successfully pushing the credential further includes: a credential corresponding to the target service parameter.
  • the above-mentioned certificate push indication further includes a first authentication indication
  • the above-mentioned first authentication indication is used to indicate that the target service parameter requires further authentication
  • the above-mentioned first authentication indication includes at least one of the following:
  • An indication used to indicate that the target service parameter requires network slice authentication.
  • the processor is further configured to acquire the first terminal identifier; the communication interface is further configured to send the first terminal identifier to a unified data network element.
  • the communication interface is further configured to receive a target address of the target terminal and an indication of successful credential push, where the target address includes the IP address of the target terminal or the MAC address of the target terminal; the processor is specifically configured to obtain the target terminal The second terminal identifier corresponding to the address.
  • the communication interface is further configured to send the target address of the target terminal to the policy control network element; the communication interface is further configured to receive the second terminal identifier corresponding to the target address from the policy control network element.
  • the first terminal identifier includes at least one of the following: the IP address of the target terminal, the MAC address of the target terminal, the IMSI of the target terminal, the SUPI of the target terminal, the MSISDN of the target terminal, and the GPSI of the target terminal.
  • the second terminal identifier includes at least one of the following: IMSI of the target terminal, SUPI of the target terminal, MSISDN of the target terminal, and GPSI of the target terminal.
  • the network open network element sends a certificate push indication to the unified data network element, so that after receiving the certificate push successful indication, the unified data network element can sign up for the target terminal
  • the target service parameters are enabled, so that the subscription data of the target terminal is updated in time, and services can be provided for the target terminal according to the terminal service request authorized by the target terminal for signing.
  • the network side device is a policy control network element, including a processor and a communication interface, wherein the processor is used to obtain the destination address of the target terminal, and the destination address includes the IP address of the target terminal or the IP address of the target terminal.
  • a MAC address ; a processor, further configured to determine a second terminal identifier corresponding to the above-mentioned target address; a communication interface, further configured to send the second terminal identifier to the network open network element or unified data network element; wherein, the The second terminal identifier is used to update the subscription of the terminal indicated by the second terminal identifier.
  • the second terminal identifier includes at least one of the following: IMSI of the target terminal, SUPI of the target terminal, MSISDN of the target terminal, and GPSI of the target terminal.
  • the policy control network element obtains the second terminal identifier corresponding to the target address of the target terminal (that is, the IP address of the target terminal or the MAC address of the target terminal), so that the communication network can
  • the subscription of the terminal indicated by the second terminal identifier is updated in time.
  • the embodiment of the present application also provides a network side device.
  • the network side device in this embodiment of the present invention includes: a processor 1101 , a transceiver 1102 , a memory 1103 , a network interface 1104 and a bus interface.
  • the bus architecture may include any number of interconnected buses and bridges, specifically one or more processors represented by processor 1101 and various circuits of memory represented by memory 1103 are linked together.
  • the bus architecture can also link together various other circuits such as peripherals, voltage regulators, and power management circuits, etc., which are well known in the art and therefore will not be further described herein.
  • the bus interface provides the interface.
  • Transceiver 1102 may be a plurality of elements, including a transmitter and a receiver, providing a means for communicating with various other devices over transmission media.
  • the processor 1101 is responsible for managing the bus architecture and general processing, and the memory 1103 can store data used by the processor 1101 when performing operations.
  • the network side device also includes some unshown functional modules, which will not be repeated here.
  • the network side device further includes: instructions or programs stored in the memory 1103 and operable on the processor 1101, and the processor 1101 invokes the instructions or programs in the memory 1103 to execute FIG. 8 or FIG. 9 or FIG. 10 or FIG.
  • the method executed by each module shown in 11 achieves the same technical effect. In order to avoid repetition, it is not repeated here.
  • the embodiment of the present application also provides a readable storage medium, on which a program or instruction is stored, and when the program or instruction is executed by a processor, each process of the method embodiment of the above-mentioned subscription renewal method is implemented, and The same technical effect can be achieved, so in order to avoid repetition, details will not be repeated here.
  • the processor is the processor in the terminal described in the foregoing embodiments.
  • the readable storage medium includes computer readable storage medium, such as computer read-only memory (Read-Only Memory, ROM), random access memory (Random Access Memory, RAM), magnetic disk or optical disk, etc.
  • the embodiment of the present application further provides a chip, the chip includes a processor and a communication interface, the communication interface is coupled to the processor, and the processor is used to run programs or instructions to implement the above-mentioned subscription renewal method
  • the chip includes a processor and a communication interface
  • the communication interface is coupled to the processor
  • the processor is used to run programs or instructions to implement the above-mentioned subscription renewal method
  • the chip mentioned in the embodiment of the present application may also be called a system-on-chip, a system-on-chip, a system-on-a-chip, or a system-on-a-chip.
  • the term “comprising”, “comprising” or any other variation thereof is intended to cover a non-exclusive inclusion such that a process, method, article or apparatus comprising a set of elements includes not only those elements, It also includes other elements not expressly listed, or elements inherent in the process, method, article, or device. Without further limitations, an element defined by the phrase “comprising a " does not preclude the presence of additional identical elements in the process, method, article, or apparatus comprising that element.
  • the scope of the methods and devices in the embodiments of the present application is not limited to performing functions in the order shown or discussed, and may also include performing functions in a substantially simultaneous manner or in reverse order according to the functions involved. Functions are performed, for example, the described methods may be performed in an order different from that described, and various steps may also be added, omitted, or combined. Additionally, features described with reference to certain examples may be combined in other examples.
  • the methods of the above embodiments can be implemented by means of software plus a necessary general-purpose hardware platform, and of course also by hardware, but in many cases the former is better implementation.
  • the technical solution of the present application can be embodied in the form of computer software products, which are stored in a storage medium (such as ROM/RAM, magnetic disk, etc.) , CD-ROM), including several instructions to make a terminal (which may be a mobile phone, a computer, a server, an air conditioner, or a network device, etc.) execute the methods described in the various embodiments of the present application.

Abstract

The present application relates to the technical field of communications, and discloses a subscription update method and device, a network element, and a medium. The subscription update method in embodiments of the present application comprises: a unified data network element receives a certificate pushing success indication, the certificate pushing success indication being used for indicating that a certificate corresponding to a target service parameter has been successfully pushed to a target terminal; and the unified data network element enables the target service parameter during subscription of the target terminal.

Description

签约更新的方法、装置、网元及介质Method, device, network element and medium for subscription renewal
相关申请的交叉引用Cross References to Related Applications
本申请主张在2021年11月10日在中国提交的中国专利申请号No.202111327554.9的优先权,其全部内容通过引用包含于此。This application claims priority to Chinese Patent Application No. 202111327554.9 filed in China on November 10, 2021, the entire contents of which are hereby incorporated by reference.
技术领域technical field
本申请属于通信技术领域,具体涉及一种签约更新的方法、装置、网元及介质。The present application belongs to the technical field of communication, and in particular relates to a method, device, network element and medium for subscription renewal.
背景技术Background technique
终端注册到5G核心网之后,可以使用数据网络名称(Data Network Name,DNN),和/或单一网络切片选择辅助信息(S-Network Slice Selection Assistance Information S-NSSAI)建立PDU会话。某些DNN需要进行二次鉴权,即终端建立该DNN的协议数据单元(Protocol Data Unit,PDU)会话时,需要提供凭证信息,以通过该DNN中的鉴权服务器对该终端进行鉴权。某些S-NSSAI需要网络切片鉴权(NSSAA,Network Slice-Specific Authentication and Authorization),即当终端请求该S-NSSAI时,需要提供该切片相关的凭证信息,以通过该S-NSSAI相应的鉴权。After the terminal registers to the 5G core network, it can use the data network name (Data Network Name, DNN) and/or single network slice selection assistance information (S-Network Slice Selection Assistance Information S-NSSAI) to establish a PDU session. Some DNNs need to perform secondary authentication, that is, when a terminal establishes a protocol data unit (Protocol Data Unit, PDU) session of the DNN, it needs to provide credential information to authenticate the terminal through the authentication server in the DNN. Some S-NSSAI require Network Slice-Specific Authentication and Authorization (NSSAA, Network Slice-Specific Authentication and Authorization), that is, when the terminal requests the S-NSSAI, it needs to provide the credential information related to the slice to pass the corresponding authentication of the S-NSSAI right.
在相关技术中,推送服务器(Provisioning Server,PVS)可以将业务参数的凭证信息(如,用于DNN的二次鉴权的凭证,或者,用于网络切片鉴权的凭证信息),通过自动推送的方式发送给终端。后续,终端可以向网络请求使用该业务参数。然而,如果网络中终端的签约数据未能及时更新,则网络仍然会拒绝终端针对该业务参数的请求,进而导致该终端无法使用相应的业务。In related technologies, the push server (Provisioning Server, PVS) can automatically push the credential information of business parameters (for example, the credential used for the second authentication of DNN, or the credential information used for network slicing authentication). sent to the terminal. Subsequently, the terminal may request the network to use the service parameter. However, if the subscription data of the terminal in the network is not updated in time, the network will still reject the terminal's request for the service parameter, thus causing the terminal to be unable to use the corresponding service.
发明内容Contents of the invention
本申请实施例提供一种签约更新的方法、装置、网元及介质,通过更新终端的签约数据,使能目标业务参数,以解决相关技术中所存在的终端的签约及时更新的问题。The embodiments of the present application provide a subscription renewal method, device, network element and medium, which enable target service parameters by updating the subscription data of the terminal, so as to solve the problem of timely renewal of the terminal subscription existing in related technologies.
第一方面,提供了一种签约更新的方法,该方法包括:统一数据网元接收凭证成功推送指示;所述凭证成功推送指示用于指示:所述目标业务参数对应的凭证已成功推送至目标终端;所述统一数据网元在所述目标终端的签约中使能所述目标业务参数。In the first aspect, a method for updating a subscription is provided, the method comprising: a unified data network element receives an indication of successful credential push; the successful push indication of credential is used to indicate that the credential corresponding to the target service parameter has been successfully pushed to the target A terminal: the unified data network element enables the target service parameter in the subscription of the target terminal.
第二方面,提供了一种签约更新的装置,该装置包括:接收模块,用于接收凭证成功推送指示;所述凭证成功推送指示用于指示:所述目标业务参数对应的凭证已成功推送至目标终端;执行模块,用于在所述目标终端的签约中使能所述目标业务参数。In a second aspect, a device for updating a subscription is provided, which includes: a receiving module configured to receive an indication of a successful credential push; the successful credential push indication is used to indicate that the credential corresponding to the target service parameter has been successfully pushed to The target terminal; an execution module, configured to enable the target service parameter in the subscription of the target terminal.
第三方面,提供了一种签约更新的方法,该方法包括:服务器向统一数据网元发送凭证成功推送指示;其中,所述凭证成功推送指示用于指示:所述目标业务参数对应的凭证已成功推送至目标终端。In a third aspect, a method for updating a subscription is provided. The method includes: a server sends an indication of a successful credential push to a unified data network element; wherein the successful credential push indication is used to indicate that the credential corresponding to the target service parameter has Successfully pushed to the target terminal.
第四方面,提供了一种签约更新的装置,该装置包括:发送模块,用于向统一数据网元发送凭证成功推送指示;其中,所述凭证成功推送指示用于指示:所述目标业 务参数对应的凭证已成功推送至目标终端。In a fourth aspect, a device for updating a subscription is provided, which includes: a sending module, configured to send an indication of a successful credential push to a unified data network element; wherein, the successful push of a credential is used to indicate: the target service parameter The corresponding credentials have been successfully pushed to the target terminal.
第五方面,提供了一种签约更新的方法,该方法包括:网络开放网元获取凭证成功推送指示;所述网络开放网元向统一数据网元发送所述凭证成功推送指示;其中,所述凭证成功推送指示用于指示:所述目标业务参数对应的凭证已成功推送至目标终端。According to the fifth aspect, a method for updating a contract is provided, the method comprising: an open network element obtains an indication of successfully pushing a credential; the open network element sends the indication of successfully pushing the credential to a unified data network element; wherein, the The credential push success indication is used to indicate that the credential corresponding to the target service parameter has been successfully pushed to the target terminal.
第六方面,提供了一种签约更新的装置,该装置包括:执行模块,用于获取凭证成功推送指示;发送模块,用于向统一数据网元发送所述执行模块获取到的所述凭证成功推送指示;其中,所述凭证成功推送指示用于指示:所述目标业务参数对应的凭证已成功推送至目标终端。According to the sixth aspect, a device for updating a subscription is provided, which includes: an execution module, configured to obtain a certificate success push indication; a sending module, configured to send the certificate success certificate obtained by the execution module to a unified data network element. Push indication; wherein, the credential success push indication is used to indicate that the credential corresponding to the target service parameter has been successfully pushed to the target terminal.
第七方面,提供了一种签约更新的方法,该方法包括:策略控制网元获取目标终端的目的地址,所述目的地址包括所述目标终端的IP地址或者所述目标终端的媒体接入控制(Medium Access Control,MAC)地址;所述策略控制网元确定所述目标地址对应的第二终端标识;所述策略控制网元向所述网络开放网元或统一数据网元发送所述第二终端标识;其中,所述第二终端标识用于更新所述第二终端标识指示的终端的签约。In a seventh aspect, a method for updating a subscription is provided, the method comprising: a policy control network element acquires a destination address of a target terminal, where the destination address includes the IP address of the target terminal or the media access control (MAC) address of the target terminal (Medium Access Control, MAC) address; the policy control network element determines the second terminal identifier corresponding to the target address; the policy control network element sends the second terminal identifier to the network open network element or unified data network element A terminal identifier; wherein, the second terminal identifier is used to update the subscription of the terminal indicated by the second terminal identifier.
第八方面,提供了一种签约更新的装置,该装置包括:执行模块,用于获取目标终端的目的地址,所述目的地址包括所述目标终端的IP地址或者所述目标终端的MAC地址;执行模块,用于确定所述接收模块接收到的所述目标地址对应的第二终端标识;传输模块,还用于向所述网络开放网元或统一数据网元发送所述第二终端标识;其中,所述第二终端标识用于更新所述第二终端标识指示的终端的签约。According to an eighth aspect, there is provided a device for updating a subscription, which includes: an execution module configured to obtain a destination address of a target terminal, where the destination address includes the IP address of the target terminal or the MAC address of the target terminal; An execution module, configured to determine the second terminal identifier corresponding to the target address received by the receiving module; a transmission module, further configured to send the second terminal identifier to the network open network element or unified data network element; Wherein, the second terminal identifier is used to update the subscription of the terminal indicated by the second terminal identifier.
第九方面,提供了一种网络侧设备,该终端包括处理器、存储器及存储在所述存储器上并可在所述处理器上运行的程序或指令,所述程序或指令被所述处理器执行时实现如第一方面所述的方法的步骤。In a ninth aspect, a network side device is provided, the terminal includes a processor, a memory, and a program or instruction stored in the memory and operable on the processor, and the program or instruction is executed by the processor When executed, the steps of the method described in the first aspect are realized.
第十方面,提供了一种网络侧设备,该网络侧设备为统一数据网元,包括处理器及通信接口,其中:通信接口用于接收凭证成功推送指示;所述凭证成功推送指示用于指示:所述目标业务参数对应的凭证已成功推送至目标终端;处理器用于在所述目标终端的签约中使能所述目标业务参数。In the tenth aspect, a network side device is provided, which is a unified data network element, including a processor and a communication interface, wherein: the communication interface is used to receive an indication of successful credential push; the indication of successful credential push is used to indicate : The certificate corresponding to the target service parameter has been successfully pushed to the target terminal; the processor is configured to enable the target service parameter in the subscription of the target terminal.
第十一方面,提供了一种网络侧设备,该网络侧设备为服务器,包括处理器及通信接口,其中:通信接口用于向统一数据网元发送凭证成功推送指示;其中,所述凭证成功推送指示用于指示:所述目标业务参数对应的凭证已成功推送至目标终端。In an eleventh aspect, a network side device is provided, the network side device is a server, and includes a processor and a communication interface, wherein: the communication interface is used to send a certificate push indication to a unified data network element; wherein, the certificate success The push indication is used to indicate that: the voucher corresponding to the target service parameter has been successfully pushed to the target terminal.
第十二方面,提供了一种网络侧设备,该网络侧设备为网络开放网元,包括处理器及通信接口,其中:处理器用于获取凭证成功推送指示;通信接口用于向统一数据网元发送所述凭证成功推送指示;其中,所述凭证成功推送指示用于指示:所述目标业务参数对应的凭证已成功推送至目标终端。In the twelfth aspect, a network side device is provided, the network side device is an open network element, including a processor and a communication interface, wherein: the processor is used to obtain the certificate push indication; the communication interface is used to send the unified data network element Sending the successful credential pushing indication; wherein, the credential successful pushing indication is used to indicate that the credential corresponding to the target service parameter has been successfully pushed to the target terminal.
第十三方面,提供了一种网络侧设备,该网络侧设备为策略控制网元,包括处理器及通信接口,其中:通信接口用于接收来自网络开放网元的目标终端的目的地址,所述目的地址包括所述目标终端的IP地址或者所述目标终端的MAC地址;处理器用 于确定所述目标地址对应的第二终端标识。In a thirteenth aspect, a network side device is provided, the network side device is a policy control network element, including a processor and a communication interface, wherein: the communication interface is used to receive the destination address of the target terminal from the network open network element, so The destination address includes the IP address of the target terminal or the MAC address of the target terminal; the processor is configured to determine a second terminal identifier corresponding to the target address.
第十四方面,提供了一种可读存储介质,所述可读存储介质上存储程序或指令,所述程序或指令被处理器执行时实现如第一方面所述的方法的步骤,或者实现如第三方面所述的方法的步骤。In a fourteenth aspect, there is provided a readable storage medium, where programs or instructions are stored on the readable storage medium, and when the programs or instructions are executed by a processor, the steps of the method as described in the first aspect are implemented, or The steps of the method as described in the third aspect.
第十五方面,提供了一种芯片,所述芯片包括处理器和通信接口,所述通信接口和所述处理器耦合,所述处理器用于运行程序或指令,实现如第一方面所述的方法,或实现如第三方面所述的方法,或实现如第五方面所述的方法,或实现如第七方面所述的方法。In a fifteenth aspect, there is provided a chip, the chip includes a processor and a communication interface, the communication interface is coupled to the processor, and the processor is used to run a program or an instruction to implement the method described in the first aspect method, or implement the method as described in the third aspect, or implement the method as described in the fifth aspect, or implement the method as described in the seventh aspect.
第十六方面,提供了一种计算机程序/程序产品,所述计算机程序/程序产品被存储在非易失的存储介质中,所述程序/程序产品被至少一个处理器执行以实现如第一方面所述的方法,或实现如第三方面所述的方法,或实现如第五方面所述的方法,或实现如第七方面所述的方法的步骤。In a sixteenth aspect, a computer program/program product is provided, the computer program/program product is stored in a non-volatile storage medium, and the program/program product is executed by at least one processor to implement the first The method described in the aspect, or realize the method described in the third aspect, or realize the method described in the fifth aspect, or realize the steps of the method described in the seventh aspect.
在本申请实施例中,统一数据网元在接收到凭证成功推送指示后,可以在该目标终端的签约中使能目标业务参数,从而及时更新了目标终端的签约数据,进而可以根据目标终端签约授权的终端服务请求,为目标终端提供服务。In this embodiment of the application, after receiving the certificate push indication, the unified data network element can enable the target service parameters in the subscription of the target terminal, so as to update the subscription data of the target terminal in time, and then can subscribe according to the target terminal. Authorized terminal service request to provide services for the target terminal.
附图说明Description of drawings
图1是本申请实施例提供的一种无线通信系统的系统架构示意图;FIG. 1 is a schematic diagram of a system architecture of a wireless communication system provided by an embodiment of the present application;
图2是本申请实施例提供的一种签约更新的方法的流程图之一;FIG. 2 is one of the flow charts of a method for updating a subscription provided in an embodiment of the present application;
图3是本申请实施例提供的一种签约更新的方法的流程图之二;Fig. 3 is the second flow chart of a method for updating a subscription provided by an embodiment of the present application;
图4是本申请实施例提供的一种签约更新的方法的流程图之三;Fig. 4 is the third flowchart of a method for updating a subscription provided by the embodiment of the present application;
图5是本申请实施例提供的一种签约更新的方法的流程图之四;FIG. 5 is the fourth flowchart of a method for updating a subscription provided by an embodiment of the present application;
图6是本申请实施例提供的一种签约更新的方法的流程图之五;Fig. 6 is the fifth flowchart of a method for updating a subscription provided by the embodiment of the present application;
图7是本申请实施例提供的一种签约更新的方法的流程图之六;FIG. 7 is the sixth flowchart of a method for updating a subscription provided by the embodiment of the present application;
图8是本申请实施例提供的一种签约更新的装置的结构示意图之一;FIG. 8 is one of the schematic structural diagrams of a device for updating a subscription provided in an embodiment of the present application;
图9是本申请实施例提供的一种签约更新的装置的结构示意图之二;Fig. 9 is the second structural schematic diagram of a device for updating a subscription provided by an embodiment of the present application;
图10是本申请实施例提供的一种签约更新的装置的结构示意图之三;Fig. 10 is the third schematic structural diagram of a device for updating a subscription provided in the embodiment of the present application;
图11是本申请实施例提供的一种签约更新的装置的结构示意图之四;Fig. 11 is a fourth structural schematic diagram of a device for updating a subscription provided by an embodiment of the present application;
图12是本申请实施例提供的一种通信设备的结构示意图;Fig. 12 is a schematic structural diagram of a communication device provided by an embodiment of the present application;
图13是本申请实施例提供的一种网络侧设备的硬件结构示意图。FIG. 13 is a schematic diagram of a hardware structure of a network side device provided by an embodiment of the present application.
具体实施方式Detailed ways
下面将结合本申请实施例中的附图,对本申请实施例中的技术方案进行清楚描述,显然,所描述的实施例是本申请一部分实施例,而不是全部的实施例。基于本申请中的实施例,本领域普通技术人员所获得的所有其他实施例,都属于本申请保护的范围。The technical solutions in the embodiments of the present application will be clearly described below in conjunction with the drawings in the embodiments of the present application. Obviously, the described embodiments are part of the embodiments of the present application, but not all of them. All other embodiments obtained by persons of ordinary skill in the art based on the embodiments in this application belong to the protection scope of this application.
本申请的说明书和权利要求书中的术语“第一”、“第二”等是用于区别类似的对象,而不用于描述特定的顺序或先后次序。应该理解这样使用的术语在适当情况下可以互换,以便本申请的实施例能够以除了在这里图示或描述的那些以外的顺序实施,且“第一”、 “第二”所区别的对象通常为一类,并不限定对象的个数,例如第一对象可以是一个,也可以是多个。此外,说明书以及权利要求中“和/或”表示所连接对象的至少其中之一,字符“/”一般表示前后关联对象是一种“或”的关系。The terms "first", "second" and the like in the specification and claims of the present application are used to distinguish similar objects, and are not used to describe a specific sequence or sequence. It is to be understood that the terms so used are interchangeable under appropriate circumstances such that the embodiments of the application are capable of operation in sequences other than those illustrated or described herein and that "first" and "second" distinguish objects. It is usually one category, and the number of objects is not limited. For example, there may be one or more first objects. In addition, "and/or" in the description and claims means at least one of the connected objects, and the character "/" generally means that the related objects are an "or" relationship.
值得指出的是,本申请实施例所描述的技术不限于长期演进型(Long Term Evolution,LTE)/LTE的演进(LTE-Advanced,LTE-A)系统,还可用于其他无线通信系统,诸如码分多址(Code Division Multiple Access,CDMA)、时分多址(Time Division Multiple Access,TDMA)、频分多址(Frequency Division Multiple Access,FDMA)、正交频分多址(Orthogonal Frequency Division Multiple Access,OFDMA)、单载波频分多址(Single-carrier Frequency-Division Multiple Access,SC-FDMA)和其他系统。本申请实施例中的术语“系统”和“网络”常被可互换地使用,所描述的技术既可用于以上提及的系统和无线电技术,也可用于其他系统和无线电技术。以下描述出于示例目的描述了新空口(New Radio,NR)系统,并且在以下大部分描述中使用NR术语,但是这些技术也可应用于NR系统应用以外的应用,如第6代(6th Generation,6G)通信系统。It is worth noting that the technology described in the embodiment of this application is not limited to the Long Term Evolution (Long Term Evolution, LTE)/LTE-Advanced (LTE-Advanced, LTE-A) system, and can also be used in other wireless communication systems, such as code Code Division Multiple Access (CDMA), Time Division Multiple Access (TDMA), Frequency Division Multiple Access (FDMA), Orthogonal Frequency Division Multiple Access, OFDMA), Single-carrier Frequency-Division Multiple Access (Single-carrier Frequency-Division Multiple Access, SC-FDMA) and other systems. The terms "system" and "network" in the embodiments of the present application are often used interchangeably, and the described technology can be used for the above-mentioned system and radio technology, and can also be used for other systems and radio technologies. The following description describes the New Radio (New Radio, NR) system for example purposes, and uses NR terminology in most of the following descriptions, but these techniques can also be applied to applications other than NR system applications, such as the 6th generation (6th Generation , 6G) communication system.
图1示出本申请实施例可应用的一种无线通信系统的框图。无线通信系统包括终端(如图1中的终端1和终端2),无线接入网(Radio Access Network,RAN)(如图1中的RAN1和RAN2)和核心网。Fig. 1 shows a block diagram of a wireless communication system to which the embodiment of the present application is applicable. The wireless communication system includes a terminal (such as terminal 1 and terminal 2 in FIG. 1 ), a radio access network (Radio Access Network, RAN) (such as RAN1 and RAN2 in FIG. 1 ) and a core network.
示例性地,终端也可以称作终端设备或者是用户设备(User Equipment,UE),可以是手机、平板电脑(Tablet Personal Computer)、膝上型电脑(Laptop Computer)或称为笔记本电脑、个人数字助理(Personal Digital Assistant,PDA)、掌上电脑、上网本、超级移动个人计算机(ultra-mobile personal computer,UMPC)、移动上网装置(Mobile Internet Device,MID)、增强现实(augmented reality,AR)/虚拟现实(virtual reality,VR)设备、机器人、可穿戴式设备(Wearable Device)、车载设备(VUE)、行人终端(PUE)、智能家居(具有无线通信功能的家居设备,如冰箱、电视、洗衣机或者家具等)等终端侧设备,可穿戴式设备包括:智能手表、智能手环、智能耳机、智能眼镜、智能首饰(智能手镯、智能手链、智能戒指、智能项链、智能脚镯、智能脚链等)、智能腕带、智能服装、游戏机等。需要说明的是,在本申请实施例并不限定终端的具体类型。Exemplarily, a terminal can also be called a terminal device or a user equipment (User Equipment, UE), which can be a mobile phone, a tablet computer (Tablet Personal Computer), a laptop computer (Laptop Computer) or a notebook computer, a personal digital Assistant (Personal Digital Assistant, PDA), handheld computer, netbook, ultra-mobile personal computer (ultra-mobile personal computer, UMPC), mobile internet device (Mobile Internet Device, MID), augmented reality (augmented reality, AR)/virtual reality (virtual reality, VR) equipment, robots, wearable devices (Wearable Device), vehicle-mounted equipment (VUE), pedestrian terminal (PUE), smart home (home equipment with wireless communication functions, such as refrigerators, TVs, washing machines or furniture etc.) and other terminal-side devices, wearable devices include: smart watches, smart bracelets, smart headphones, smart glasses, smart jewelry (smart bracelets, smart bracelets, smart rings, smart necklaces, smart anklets, smart anklets, etc.) , smart wristbands, smart clothing, game consoles, etc. It should be noted that, the embodiment of the present application does not limit the specific type of the terminal.
值得指出的是,本申请实施例所描述的无线接入网不限于LTE/LTE-A系统,还可用于其他无线通信系统,CDMA、TDMA、FDMA、OFDMA、SC-FDMA和其他系统。本申请实施例中的术语“系统”和“网络”常被可互换地使用,所描述的技术既可用于以上提及的系统和无线电技术,也可用于其他系统和无线电技术,如非3GPP接入系统(例如,WLAN,固定接入系统,蓝牙等)。以下描述出于示例目的描述了NR系统,并且在以下大部分描述中使用NR术语,这些技术也可应用于NR系统应用以外的应用,如6G通信系统。It is worth noting that the wireless access network described in the embodiments of this application is not limited to the LTE/LTE-A system, and can also be used in other wireless communication systems, such as CDMA, TDMA, FDMA, OFDMA, SC-FDMA and other systems. The terms "system" and "network" in the embodiments of this application are often used interchangeably, and the described technology can be used for the above-mentioned system and radio technology, and can also be used for other systems and radio technologies, such as non-3GPP Access systems (eg, WLAN, fixed access systems, Bluetooth, etc.). The following description describes the NR system for example purposes, and uses NR terminology in most of the following descriptions, and these techniques can also be applied to applications other than NR system applications, such as 6G communication systems.
示例性地,上述核心网可以包括以下至少一个功能或网元:会话管理功能(e.g.Session Management Function,SMF)、接入和移动管理功能(e.g.Access and Mobility Management Function,AMF)、用户面功能(e.g.User Port Function,UPF)、策略控制功能(e.g.Policy Control Function,PCF),统一数据网元,和网络开放功能(e.g.Network Exposure Function, NEF)。值得说明的是,上述核心网功能可以由多个设备共同实现,也可以多个核心网功能由一个设备实现,本申请实施例对此不做限定。Exemplarily, the aforementioned core network may include at least one of the following functions or network elements: session management function (e.g. Session Management Function, SMF), access and mobility management function (e.g. Access and Mobility Management Function, AMF), user plane function ( e.g.User Port Function, UPF), policy control function (e.g.Policy Control Function, PCF), unified data network element, and network exposure function (e.g.Network Exposure Function, NEF). It should be noted that the above-mentioned core network functions may be jointly implemented by multiple devices, or multiple core network functions may be implemented by one device, which is not limited in this embodiment of the present application.
示例性地,在5G系统中,上述统一数据网元可以包括统一数据管理网元(e.g.Unified Data Management,UDM)或统一数据存储网元(Unified Data Repository,UDR)。需要说明的是,上述统一数据网元还可以称为用户签约数据库。Exemplarily, in a 5G system, the above-mentioned unified data network element may include a unified data management network element (e.g. Unified Data Management, UDM) or a unified data storage network element (Unified Data Repository, UDR). It should be noted that the above-mentioned unified data network element may also be called a user subscription database.
需要说明的是,上述网元还可以是其他与其功能相同或类型相同的网元,但具体名称可能与上述网元名称不同,本申请实施例对此不做限定。It should be noted that the above-mentioned network element may also be another network element with the same function or type, but the specific name may be different from the name of the above-mentioned network element, which is not limited in this embodiment of the present application.
在相关技术中,PVS可以将业务参数的凭证信息(如,用于DNN的二次鉴权的凭证,或者,用于网络切片鉴权的凭证信息),通过自动推送的方式发送给终端。然而,当PVS将该凭证信息成功自动推送给终端之后,终端的签约也需要及时更新以允许终端使用该业务参数。否则,当终端请求接入该DNN或网络切片时,网络可能拒绝该终端的请求。如何及时更新终端的签约,目前并没有有效方案。In related technologies, the PVS can send credential information of service parameters (eg, credential for DNN's secondary authentication, or credential information for network slicing authentication) to the terminal in an automatic push manner. However, after the PVS successfully and automatically pushes the credential information to the terminal, the terminal's subscription also needs to be updated in time to allow the terminal to use the service parameter. Otherwise, when a terminal requests to access the DNN or network slice, the network may reject the terminal's request. How to update the contract of the terminal in time, there is no effective solution at present.
在本申请实施例提供的技术方案中,统一数据网元在接收到凭证成功推送指示后,获知目标业务参数对应的凭证已成功推送至目标终端,从而可以直接在该目标终端的签约中使能目标业务参数,进而及时更新了目标终端的签约数据,并可以根据目标终端签约授权的终端服务请求,为目标终端提供服务。In the technical solution provided by the embodiment of this application, after receiving the certificate push indication, the unified data network element knows that the certificate corresponding to the target service parameter has been successfully pushed to the target terminal, so that it can directly enable Target business parameters, and then update the subscription data of the target terminal in time, and provide services for the target terminal according to the terminal service request authorized by the target terminal for signing.
下面结合附图,通过一些实施例及其应用场景对本申请实施例提供的签约更新的方法、装置、网元及介质进行详细地说明。The subscription update method, device, network element and medium provided by the embodiments of the present application will be described in detail below through some embodiments and application scenarios with reference to the accompanying drawings.
本申请实施例提供一种签约更新的方法,如图2所示,本申请实施例提供的签约更新的方法可以包括如下步骤201和步骤202:An embodiment of the present application provides a method for updating a subscription. As shown in FIG. 2 , the method for updating a subscription provided in the embodiment of the present application may include the following steps 201 and 202:
步骤201:统一数据网元接收凭证成功推送指示。Step 201: The unified data network element receives the certificate push indication successfully.
在本申请实施例中,上述凭证成功推送指示用于指示:目标业务参数对应的凭证已成功推送至目标终端。In the embodiment of the present application, the above indication of successfully pushing the credential is used to indicate that the credential corresponding to the target service parameter has been successfully pushed to the target terminal.
在一些可能的实施例中,上述目标终端可以为预定或预配置的终端。例如,统一数据网元或通信网络中预配置目标参数对应的目标终端。统一数据网元可以从本地或通信网络中获取该目标参数对应的目标终端。In some possible embodiments, the aforementioned target terminal may be a predetermined or preconfigured terminal. For example, the unified data network element or the target terminal corresponding to the pre-configured target parameters in the communication network. The unified data network element can acquire the target terminal corresponding to the target parameter from the local area or the communication network.
在一些可能的实施例中,本申请实施例提供的签约更新的方法还可以包括步骤201a:In some possible embodiments, the subscription renewal method provided in this embodiment of the application may further include step 201a:
步骤201a:统一数据网元接收第一终端标识。Step 201a: the unified data network element receives the first terminal identifier.
其中,上述目标终端可以包括第一终端标识所指示的终端。Wherein, the above-mentioned target terminal may include a terminal indicated by the first terminal identifier.
进一步地,上述步骤201a可以包括如下步骤201a1:Further, the above step 201a may include the following step 201a1:
步骤201a1:统一数据网元接收来自网络开放网元的第一终端标识。Step 201a1: the unified data network element receives the first terminal identifier from the open network element.
在一些可能的实施例中,上述步骤201可以包括如下步骤201b:In some possible embodiments, the above step 201 may include the following step 201b:
步骤201b:统一数据网元接收来自网络开放网元的凭证成功推送指示。Step 201b: The unified data network element receives the certificate push indication from the network open network element.
在一些可能的实施例中,上述凭证成功推送指示包括目标业务参数。In some possible embodiments, the above-mentioned credential push success indication includes target service parameters.
在一些可能的实施例中,上述凭证成功推送指示包括用于描述目标业务参数的信息。In some possible embodiments, the above-mentioned credential push success indication includes information used to describe target service parameters.
在一些可能的实施例中,上述目标业务参数包括以下至少之一:DNN,S-NSSAI。In some possible embodiments, the above target service parameters include at least one of the following: DNN, S-NSSAI.
在一些可能的实施例中,上述第一终端标识包括以下至少一项:目标终端的IP地址, 目标终端的MAC地址,目标终端的国际移动用户识别码(International Mobile Subscriber Identity,IMSI),目标终端的签约永久标识(Subscription Permanent Identifier,SUPI),目标终端的移动台综合业务数字网号码(Mobile Station International Service Digital Network,MSISDN),目标终端的一般公共签约标识(Generic Public Subscription Identifier,GPSI)。In some possible embodiments, the first terminal identifier includes at least one of the following: the IP address of the target terminal, the MAC address of the target terminal, the International Mobile Subscriber Identity (IMSI) of the target terminal, the target terminal Subscription Permanent Identifier (SUPI) of the target terminal, Mobile Station International Service Digital Network (MSISDN) of the target terminal, and Generic Public Subscription Identifier (GPSI) of the target terminal.
在一些可能的实施例中,上述凭证成功推送指示还包括:目标业务参数对应的凭证。In some possible embodiments, the above indication of successfully pushing the credential further includes: a credential corresponding to the target service parameter.
在一些可能的实施例中,上述凭证成功推送指示还包括第一鉴权指示;In some possible embodiments, the above-mentioned credential push indication further includes a first authentication indication;
其中,上述第一鉴权指示用于指示目标业务参数需要进一步鉴权;Wherein, the above-mentioned first authentication indication is used to indicate that the target service parameter requires further authentication;
第一鉴权指示包括以下至少之一:The first authentication indication includes at least one of the following:
用于指示需要对目标业务参数进行二次鉴权的指示,An indication for indicating that a second authentication of the target service parameters is required,
用于指示需要对目标业务参数进行网络切片鉴权的指示。It is used to indicate that network slice authentication needs to be performed on target service parameters.
在一些可能的实施例中,统一数据网元可以接收来自服务器的第一终端标识和凭证成功推送指示。In some possible embodiments, the unified data network element may receive the first terminal identifier and the certificate push indication from the server successfully.
在另一些可能的实施例中,统一数据网元可以从网络开放网元接收来自服务器的第一终端标识和凭证成功推送指示。In some other possible embodiments, the unified data network element may receive from the network open network element the first terminal identifier and the certificate push success indication from the server.
步骤202:统一数据网元在目标终端的签约中使能目标业务参数。Step 202: The unified data network element enables target service parameters in the subscription of the target terminal.
在一些可能的实施例中,统一数据网元在目标终端的签约中激活配置好的目标业务参数。In some possible embodiments, the unified data network element activates the configured target service parameters during the subscription of the target terminal.
在一些可能的实施例中,上述步骤202还可以通过以下过程可以包括:统一数据网元在目标终端的签约中存储目标业务参数。In some possible embodiments, the above step 202 may also include the following process: the unified data network element stores the target service parameter in the subscription of the target terminal.
可选地,统一数据网元在目标终端的签约中存储目标业务参数后,可以进一步激活该目标业务参数。Optionally, the unified data network element may further activate the target service parameter after storing the target service parameter in the subscription of the target terminal.
可选地,统一数据网元在目标终端的签约中激活目标业务参数的过程可以认为是:统一数据网元先确定配置的目标业务参数,再激活该目标业务参数。值得说明的是,对于不同用户的签约数据,可能有的已经配置了业务参数,有的没有配置业务参数,在这种场景下,统一数据网元可以先确定相关用户的签约数据中是否有配置业务参数,然后,基于是否配置业务参数执行相应的激活或存储该业务参数的动作。Optionally, the process of the unified data network element activating the target service parameter in the subscription of the target terminal can be regarded as: the unified data network element first determines the configured target service parameter, and then activates the target service parameter. It is worth noting that for the subscription data of different users, some service parameters may have been configured, and some service parameters have not been configured. In this scenario, the unified data network element can first determine whether there is a configuration in the subscription data of related users The service parameter, and then, based on whether the service parameter is configured, a corresponding action of activating or storing the service parameter is performed.
在一些可能的实施例中,本申请实施例提供的签约更新的方法还可以包括如下步骤203:In some possible embodiments, the subscription renewal method provided in the embodiment of the present application may further include the following step 203:
步骤203:统一数据网元根据目标业务参数,确定目标终端可使用的封闭访问组标识符(Closed Access Group Identifier,CAG)。Step 203: The unified data network element determines a closed access group identifier (Closed Access Group Identifier, CAG) that can be used by the target terminal according to the target service parameters.
示例性地,统一数据网元可以基于使能的DNN和/或使能的S-NSSAI,确定目标终端可使用的CAG。Exemplarily, the unified data network element may determine the CAG available to the target terminal based on the enabled DNN and/or the enabled S-NSSAI.
进一步地,基于步骤203,本申请实施例提供的签约更新的方法还可以包括如下步骤204:Further, based on step 203, the subscription renewal method provided by the embodiment of the present application may also include the following step 204:
步骤204:统一数据网元在目标终端的签约中激活或存储CAG。Step 204: The unified data network element activates or stores the CAG in the subscription of the target terminal.
示例性地,对于不同用户的签约数据,可能有的已经配置了CAG,有的没有配置CAG, 因此,统一数据网元在确定出目标终端可使用的CAG后,基于是否配置该CAG来执行相应的激活或存储CAG的动作。如,统一数据网元直接激活已配置的CAG,或者,存储未配置的CAG后,激活存储的CAG。For example, for the subscription data of different users, some of them may have been configured with CAG, and some may not be configured with CAG. Therefore, after the unified data network element determines the CAG that can be used by the target terminal, it performs corresponding The action of activating or storing the CAG. For example, the unified data network element directly activates the configured CAG, or activates the stored CAG after storing the unconfigured CAG.
值得说明的是,步骤203和204可以在步骤202之前发生或之后发生,步骤204也可以与步骤202同时发生,即步骤203和204与步骤202的顺序本申请不作限定。It is worth noting that steps 203 and 204 may occur before or after step 202, and step 204 may also occur at the same time as step 202, that is, the order of steps 203 and 204 and step 202 is not limited in this application.
在一些可能的实施例中,本申请实施例提供的签约更新的方法还可以包括如下步骤205:In some possible embodiments, the subscription renewal method provided in the embodiment of the present application may further include the following step 205:
步骤205:统一数据网元向目标终端发送该目标终端的更新后的签约。Step 205: The unified data network element sends the updated subscription of the target terminal to the target terminal.
示例性地,上述更新后的签约包括以下至少之一:Exemplarily, the above-mentioned updated contract includes at least one of the following:
使能的DNN,enabled DNN,
使能的S-NSSAI,Enabled S-NSSAI,
基于使能的DNN和/或使能的S-NSSAI确定的CAG。CAG determined based on enabled DNN and/or enabled S-NSSAI.
一种示例中,上述更新后的签约包括以下至少之一:In an example, the above-mentioned updated contract includes at least one of the following:
激活的DNN,Activated DNN,
激活的S-NSSAI,Activated S-NSSAI,
基于激活的DNN和/或激活的S-NSSAI确定的CAG。CAG determined based on activated DNN and/or activated S-NSSAI.
进一步地,基于步骤205,在统一数据网元为UDR的情况下,本申请实施例提供的签约更新的方法还可以包括如下步骤206:Further, based on step 205, in the case that the unified data network element is a UDR, the subscription renewal method provided by the embodiment of the present application may also include the following step 206:
步骤206:UDR向UDM发送目标终端的更新后的签约。Step 206: UDR sends the updated subscription of the target terminal to UDM.
在本申请实施例提供的签约更新的方法中,统一数据网元在接收到凭证成功推送指示后,可以在该目标终端的签约中使能目标业务参数,从而及时更新了目标终端的签约数据,进而可以根据目标终端签约授权的终端服务请求,为目标终端提供服务。In the subscription renewal method provided in the embodiment of the present application, after receiving the certificate push indication, the unified data network element can enable the target service parameters in the subscription of the target terminal, thereby updating the subscription data of the target terminal in time, Furthermore, the service can be provided for the target terminal according to the terminal service request signed and authorized by the target terminal.
本申请实施例提供了另一种签约更新的方法,结合图2和图3所示,本申请实施例提供的签约更新的方法可以包括如下步骤301至步骤303:The embodiment of the present application provides another method for updating the subscription. As shown in FIG. 2 and FIG. 3 , the method for updating the subscription provided in the embodiment of the present application may include the following steps 301 to 303:
步骤301:服务器向统一数据网元发送凭证成功推送指示。Step 301: the server sends a certificate push indication to the unified data network element.
步骤302:统一数据网元接收凭证成功推送指示。Step 302: The unified data network element receives the certificate push indication successfully.
步骤303:统一数据网元在目标终端的签约中使能目标业务参数。Step 303: The unified data network element enables the target service parameters in the subscription of the target terminal.
需要说明的是,本实施例中的步骤302和步骤303的相关描述可以参照前文的描述,为了避免重复,此处不再赘述。It should be noted that, for related descriptions of step 302 and step 303 in this embodiment, reference may be made to the foregoing description, and details are not repeated here to avoid repetition.
在一些可能的实施例中,上述步骤301还可以包括如下步骤301a:In some possible embodiments, the above step 301 may also include the following step 301a:
步骤301a:服务器向统一数据网元发送第一终端标识。Step 301a: the server sends the first terminal identifier to the unified data network element.
在一些可能的实施例中,上述步骤301a还可以包括如下步骤301a1:In some possible embodiments, the above step 301a may also include the following step 301a1:
步骤301a1:服务器通过网络开放网元向统一数据网元发送第一终端标识。Step 301a1: The server sends the first terminal identifier to the unified data network element through the open network element.
在一些可能的实施例中,上述步骤302还可以包括如下步骤302a:In some possible embodiments, the above step 302 may also include the following step 302a:
步骤302a:统一数据网元接收第一终端标识。Step 302a: The unified data network element receives the first terminal identifier.
在一些可能的实施例中,上述步骤301还可以包括如下步骤301b:In some possible embodiments, the above step 301 may also include the following step 301b:
步骤301b:服务器向统一数据网元发送凭证成功推送指示。Step 301b: The server sends an indication of successful credential push to the unified data network element.
示例性地,服务器通过网络开放网元向统一数据网元发送凭证成功推送指示。Exemplarily, the server sends an indication that the credential is successfully pushed to the unified data network element through the open network element.
在本申请实施例提供的签约更新的方法中,服务器通过向统一数据网元发送凭证成功推送指示,使得统一数据网元在接收到凭证成功推送指示后,可以在该目标终端的签约中使能目标业务参数,从而及时更新了目标终端的签约数据,进而可以根据目标终端签约授权的终端服务请求,为目标终端提供服务。In the subscription renewal method provided in the embodiment of the present application, the server sends the certificate push indication to the unified data network element, so that the unified data network element can enable the subscription of the target terminal after receiving the certificate push success indication. Target service parameters, thereby updating the subscription data of the target terminal in time, and then providing services for the target terminal according to the terminal service request authorized by the target terminal for signing.
本申请实施例提供了另一种签约更新的方法,结合图2,如图4所示,本申请实施例提供的签约更新的方法可以包括如下步骤401:The embodiment of the present application provides another method for updating the subscription. With reference to FIG. 2 , as shown in FIG. 4 , the method for updating the subscription provided in the embodiment of the present application may include the following steps 401:
步骤401:网络开放网元获取凭证成功推送指示。Step 401: Push an indication that the network open network element obtains the certificate successfully.
步骤402:网络开放网元向统一数据网元发送凭证成功推送指示。Step 402: The network open network element sends a certificate pushing success indication to the unified data network element.
步骤403:统一数据网元接收凭证成功推送指示。Step 403: The unified data network element receives the certificate push indication successfully.
步骤404:统一数据网元在目标终端的签约中使能目标业务参数。Step 404: The unified data network element enables the target service parameters in the subscription of the target terminal.
需要说明的是,本实施例中的步骤403和步骤404的相关描述可以参照前文的描述,为了避免重复,此处不再赘述。It should be noted that, for related descriptions of step 403 and step 404 in this embodiment, reference may be made to the foregoing description, and details are not repeated here to avoid repetition.
在一些可能的实施例中,上述步骤401还可以包括步骤A1:In some possible embodiments, the above step 401 may also include step A1:
步骤A1:网络开放网元获取第一终端标识。Step A1: The network opening network element acquires the first terminal identifier.
在一些可能的实施例中,上述步骤402还可以包括步骤A2:In some possible embodiments, the above step 402 may also include step A2:
步骤A2:网络开放网元向统一数据网元发送第一终端标识。Step A2: The network open network element sends the first terminal identifier to the unified data network element.
在一些可能的实施例中,上述步骤403还可以包括步骤A3:In some possible embodiments, the above step 403 may also include step A3:
步骤A3:统一数据网元接收第一终端标识。Step A3: The unified data network element receives the first terminal identifier.
在一些可能的实施例中,网络开放网元可以接收来自服务器侧的第一终端标识和凭证成功推送指示。In some possible embodiments, the network opening network element may receive the first terminal identifier and the certificate push success indication from the server side.
在一些可能的实施例中,上述步骤A1可以包括如下步骤401a和步骤401b:In some possible embodiments, the above step A1 may include the following steps 401a and 401b:
步骤401a:网络开放网元获取目标终端的目标地址和凭证成功推送指示。Step 401a: The network opening network element obtains the target address of the target terminal and an indication of successful credential push.
其中,上述目标终端的目标地址包括目标终端的IP地址或者目标终端的MAC地址。Wherein, the above-mentioned target address of the target terminal includes the IP address of the target terminal or the MAC address of the target terminal.
示例性地,网络开放网元可以接收来自服务器的目标终端的目标地址和凭证成功推送指示。Exemplarily, the network opening network element may receive the target address of the target terminal from the server and the certificate push indication successfully.
步骤401b:网络开放网元获取该目标终端的目标地址对应的第二终端标识。Step 401b: The network opening network element obtains the second terminal identifier corresponding to the target address of the target terminal.
示例性地,结合上述步骤401a和步骤401b,上述步骤402可以包括:网络开放网元向统一数据网元发送第二终端标识和凭证成功推送指示;相应的,上述步骤403可以包括:统一数据网元接收第二终端标识和凭证成功推送指示。Exemplarily, in combination with the above step 401a and step 401b, the above step 402 may include: the network open network element sends the second terminal identifier and the certificate push indication to the unified data network element; correspondingly, the above step 403 may include: the unified data network The unit receives the second terminal identifier and the certificate push indication successfully.
需要说明的是,上述第二终端标识可以与第一终端标识相同,也可以与第一终端标识不同,本申请实施例对此不做限定。It should be noted that the above-mentioned second terminal identifier may be the same as the first terminal identifier, or may be different from the first terminal identifier, which is not limited in this embodiment of the present application.
可以理解的是,网络开放网元向统一数据网元发送的终端标识为第二终端标识,或者,网络开放网元向统一数据网元发送的终端标识中可以同时包含目标终端的IP地址或者MAC地址,以及该第二终端标识,本申请实施例对此不做限定。It can be understood that the terminal identifier sent by the network open network element to the unified data network element is the second terminal identifier, or the terminal identifier sent by the network open network element to the unified data network element may include the IP address or MAC address of the target terminal at the same time. The address and the second terminal identifier are not limited in this embodiment of the present application.
一种可能的示例中,上述步骤401b可以包括如下步骤401b1和步骤401b2:In a possible example, the above step 401b may include the following steps 401b1 and 401b2:
步骤401b1:网络开放网元向策略控制网元发送目标终端的目标地址。Step 401b1: The network opening network element sends the target address of the target terminal to the policy control network element.
步骤401b2:网络开放网元从策略控制网元获取该目标终端的目标地址对应的第二终端标识。Step 401b2: The network opening network element acquires the second terminal identifier corresponding to the target address of the target terminal from the policy control network element.
一种可能的示例中,上述第二终端标识包括以下至少之一:目标终端的IMSI,目标终端的SUPI,目标终端的MSISDN,目标终端的GPSI。In a possible example, the second terminal identifier includes at least one of the following: IMSI of the target terminal, SUPI of the target terminal, MSISDN of the target terminal, and GPSI of the target terminal.
一种可能的示例中,网络开放网元向策略控制网元发送策略服务请求(例如,Npcf_PolicyAuthorization_Create服务请求),其中,该策略服务请求包括该目标终端的目标地址(如,IP地址或MAC地址),策略控制网元接收到该策略服务请求后,会向网络开放网元发送策略服务响应(例如,Npcf_PolicyAuthorization_Create服务响应),该策略服务响应中包含目标终端的第二终端标识。In a possible example, the network opening network element sends a policy service request (for example, Npcf_PolicyAuthorization_Create service request) to the policy control network element, where the policy service request includes the target address (for example, IP address or MAC address) of the target terminal After receiving the policy service request, the policy control network element will send a policy service response (for example, Npcf_PolicyAuthorization_Create service response) to the network open network element, and the policy service response includes the second terminal identifier of the target terminal.
在本申请实施例提供的签约更新的方法中,网络开放网元通过向统一数据网元发送凭证成功推送指示,使得统一数据网元在接收到凭证成功推送指示后,可以在目标终端的签约中激活目标业务参数,从而及时更新了目标终端的签约数据,进而可以根据目标终端签约授权的终端服务请求,为目标终端提供服务。In the subscription renewal method provided by the embodiment of the present application, the network open network element sends the certificate push indication to the unified data network element, so that the unified data network element can be in the subscription of the target terminal after receiving the certificate push success indication. The target service parameter is activated, so that the subscription data of the target terminal is updated in time, and services can be provided for the target terminal according to the terminal service request authorized by the target terminal for signing.
本申请实施例提供了另一种签约更新的方法,如图5所示,本申请实施例提供的签约更新的方法可以包括如下步骤501:The embodiment of the present application provides another method for updating the subscription. As shown in FIG. 5 , the method for updating the subscription provided in the embodiment of the present application may include the following steps 501:
步骤501:策略控制网元获取目标终端的目标地址。Step 501: The policy control network element obtains the target address of the target terminal.
其中,上述目标终端的目标地址包括目标终端的IP地址或者目标终端的MAC地址。Wherein, the above-mentioned target address of the target terminal includes the IP address of the target terminal or the MAC address of the target terminal.
一种可能的示例中,策略控制网元可以接收来自服务器的目标终端的目标地址和凭证成功推送指示。可选地,策略控制网元可以通过网络开放网元接收来自服务器的目标终端的目标地址和凭证成功推送指示。In a possible example, the policy control network element may receive the target address of the target terminal from the server and an indication of successful credential push. Optionally, the policy control network element may receive the target address of the target terminal from the server and the certificate push indication from the server through the network opening network element.
步骤502:策略控制网元确定该目标终端的目标地址对应的第二终端标识。Step 502: The policy control network element determines the second terminal identifier corresponding to the target address of the target terminal.
步骤503:策略控制网元向网络开放网元或统一数据网元发送第二终端标识。Step 503: The policy control network element sends the second terminal identifier to the network open network element or the unified data network element.
其中,上述第二终端标识用于更新该第二终端标识指示的终端的签约。Wherein, the above-mentioned second terminal identifier is used to update the subscription of the terminal indicated by the second terminal identifier.
一种可能的示例中,上述第二终端标识包括以下至少之一:目标终端的IMSI,目标终端的SUPI,目标终端的MSISDN,目标终端的GPSI。In a possible example, the second terminal identifier includes at least one of the following: IMSI of the target terminal, SUPI of the target terminal, MSISDN of the target terminal, and GPSI of the target terminal.
一种可能的示例中,策略控制网元还可以将第二终端标识发送给网络开放网元。网络开放网元还可以向统一数据网元发送第二终端标识和和凭证成功推送指示,以便统一数据网元根据第二终端标识更新该标识所指示的终端的签约数据。In a possible example, the policy control network element may also send the second terminal identifier to the network open network element. The network opening network element may also send the second terminal identifier and a certificate push indication to the unified data network element, so that the unified data network element updates the subscription data of the terminal indicated by the second terminal identifier according to the second terminal identifier.
一种可能的示例中,策略控制网元还可以将第二终端标识发送给统一数据网元,以便统一数据网元根据第二终端标识更新该标识所指示的终端的签约数据。In a possible example, the policy control network element may also send the second terminal identifier to the unified data network element, so that the unified data network element updates the subscription data of the terminal indicated by the second terminal identifier according to the second terminal identifier.
在本申请实施例提供的签约更新的方法中,策略控制网元获取与目标终端的目标地址(即目标终端的IP地址或者目标终端的MAC地址),对应的第二终端标识,以使通信网络可以及时更新第二终端标识所指示的终端的签约。In the subscription renewal method provided by the embodiment of the present application, the policy control network element obtains the target address of the target terminal (that is, the IP address of the target terminal or the MAC address of the target terminal), and the corresponding second terminal identifier, so that the communication network The subscription of the terminal indicated by the second terminal identifier may be updated in time.
需要说明的是,在本申请实施例中,上述各个实施例所示的签约更新的方法均可相互结合。即在具体实现时,上述各个实施例所示的签约更新的方法还可以结合上述实施例中示意的其它可以结合的任意一种或多种实施例实现,此处不再赘述。例如,将上文中的图4和图5所示实施例提供的签约更新的方法相结合后,便可使用IP地址和/或MAC地址获 取通信系统内部用的终端标识,进而更新该终端标识指示的目标终端的签约。It should be noted that, in this embodiment of the application, the subscription renewal methods shown in the foregoing embodiments may be combined with each other. That is, during specific implementation, the subscription renewal method shown in each of the above embodiments can also be implemented in combination with any one or more of the other embodiments shown in the above embodiments that can be combined, and will not be repeated here. For example, after combining the subscription renewal methods provided by the embodiments shown in Fig. 4 and Fig. 5 above, the IP address and/or MAC address can be used to obtain the terminal identification used inside the communication system, and then update the terminal identification indication The signing of the target terminal.
以下将对本申请实施例提供的签约更新方案进行示例性说明。The subscription renewal solution provided by the embodiment of the present application will be exemplarily described below.
以下示例以服务器为PVS、统一数据网元为UDM和/或UDR、网络开放网元为NEF、策略控制网元为PCF、终端为UE为例进行说明。应注意的是,以下示例中的网元名称仅仅只是一种示例,在实际应用中,还可以使用其他网元名称,本申请实施例对此不做限定。The following example uses PVS as the server, UDM and/or UDR as the unified data network element, NEF as the network open network element, PCF as the policy control network element, and UE as the terminal. It should be noted that the network element name in the following example is only an example, and other network element names may also be used in practical applications, which is not limited in this embodiment of the present application.
实施例一:Embodiment one:
本实施例执行的前提条件可以为:UE中可以事先配置业务参数(即DNN或S-NSSAI),以及需要二次鉴权或NSSAA的指示,但是没有配置凭证(credential);或者,UE中也可以事先未配置前述信息。同时,UDR/UDM中未配置该DNN或S-NSSAI。The preconditions for the execution of this embodiment may be: the service parameters (that is, DNN or S-NSSAI) can be configured in the UE in advance, and an indication that secondary authentication or NSSAA is required, but no credentials (credential) are configured; or, the UE can also The aforementioned information may not be configured in advance. Meanwhile, the DNN or S-NSSAI is not configured in UDR/UDM.
示例性地,如图6所示,本实施例提供的技术方案具体可以通过以下步骤来实现:Exemplarily, as shown in FIG. 6, the technical solution provided by this embodiment may specifically be implemented through the following steps:
步骤S11:UE建立PDU会话,从PVS下载DNN或S-NSSAI的credential。Step S11: The UE establishes a PDU session, and downloads the credentials of the DNN or S-NSSAI from the PVS.
示例性地,UE使用配置的DNN或S-NSSAI请求建立PDU会话,在建立会话的过程中得到PVS地址。UE与该PVS地址指示的PVS联系,得到DNN或S-NSSAI的credential。Exemplarily, the UE uses the configured DNN or S-NSSAI to request to establish a PDU session, and obtains a PVS address during the process of establishing the session. The UE contacts the PVS indicated by the PVS address to obtain the credentials of the DNN or S-NSSAI.
步骤S12:PVS向UE的UDM发送UE标识和DNN或S-NSSAI的credential成功推送指示。Step S12: The PVS sends the UE ID and the DNN or S-NSSAI credential success push indication to the UDM of the UE.
其中,UE标识可以包括以下至少一项:UE的IP地址,UE的MAC地址,UE的IMSI,UE的GPSI,UE的MSISDN,UE的SUPI,UE的SUCI或者UE的其他临时或永久标识,或者,UE的其他内部或外部标识。Wherein, the UE identity may include at least one of the following: the IP address of the UE, the MAC address of the UE, the IMSI of the UE, the GPSI of the UE, the MSISDN of the UE, the SUPI of the UE, the SUCI of the UE, or other temporary or permanent identifiers of the UE, or , other internal or external identifiers of the UE.
其中,credential成功推送指示可以包括DNN或S-NSSAI及对应的credential,也可以发送DNN或S-NSSAI及“需二次鉴权”或“需NSSAA”的指示,或者发送“需二次鉴权的DNN”或“需NSSAA的S-NSSAI”参数。同时,该credential成功推送指示中包含该DNN或S-NSSAI。Among them, the credential success push indication may include DNN or S-NSSAI and the corresponding credential, or may send DNN or S-NSSAI and an indication of "Need Second Authentication" or "Need NSSAA", or send "Need Second Authentication DNN" or "S-NSSAI with NSSAA" parameter. At the same time, the DNN or S-NSSAI is included in the indication that the credential is successfully pushed.
应注意的是,本步骤可以由PVS直接向UDM发送,也可以由PVS通过NEF向UDM发送。It should be noted that, in this step, the PVS may directly send to the UDM, or the PVS may send to the UDM through the NEF.
示例性地,PVS可以使用Nnef_ServiceParameter_Create服务向NEF发送UE标识和credential成功推送指示。NEF向UDM发送UE标识和credential成功推送指示。Exemplarily, the PVS can use the Nnef_ServiceParameter_Create service to send the UE identity and the credential push indication to the NEF successfully. NEF sends UE identity and credential push indication to UDM successfully.
步骤S13:UDM接收到该凭证成功推送指示,在UE的签约中存储该DNN或S-NSSAI以及需要二次鉴权或需NSSAA的指示。Step S13: UDM receives the certificate push indication, and stores the DNN or S-NSSAI and the indication of the need for secondary authentication or NSSAA in the subscription of the UE.
步骤S14:UDM可以根据DNN或S-NSSAI确定UE可以使用的CAG,将CAG存储在UE签约中。Step S14: The UDM can determine the CAG available to the UE according to the DNN or S-NSSAI, and store the CAG in the UE subscription.
需要说明的是,本实施例中的UDM可以替换成UDR。It should be noted that the UDM in this embodiment can be replaced by a UDR.
在一种示例中,UDR向UDM发送UE的更新的签约,包括新的DNN或S-NSSAI。进一步地,更新的签约中还包括:根据该新的DNN或S-NSSAI确定的CAG。In one example, the UDR sends the UE's updated subscription, including the new DNN or S-NSSAI, to the UDM. Further, the updated subscription also includes: the CAG determined according to the new DNN or S-NSSAI.
可选地,本实施例方案还可以包括:Optionally, the scheme of this embodiment may also include:
步骤S15:UDM向UE发送更新的签约。Step S15: The UDM sends the updated subscription to the UE.
其中,更新的签约包括新的DNN或S-NSSAI。进一步地,更新的签约中还包括:根据该新的DNN或S-NSSAI确定的CAG。Wherein, the updated subscription includes a new DNN or S-NSSAI. Further, the updated subscription also includes: the CAG determined according to the new DNN or S-NSSAI.
可选地,本实施例方案还可以包括:Optionally, the scheme of this embodiment may also include:
步骤S16:UE激活配置的DNN或S-NSSAI。Step S16: UE activates the configured DNN or S-NSSAI.
其中,UE中事先配置了该DNN或S-NSSAI,则接收到更新的签约后,激活相应的DNN或S-NSSAI。可选地,UE还激活相应的CAG信息。示例性地,UE标记该DNN、S-NSSAI或CAG为“激活”状态,或删除该DNN、S-NSSAI或CAG的“非激活”状态。Wherein, the DNN or S-NSSAI is configured in the UE in advance, and the corresponding DNN or S-NSSAI is activated after receiving the updated subscription. Optionally, the UE also activates corresponding CAG information. Exemplarily, the UE marks the DNN, S-NSSAI or CAG as "activated" or deletes the DNN, S-NSSAI or CAG as "inactive".
或者,UE中并未实现配置该DNN或S-NSSAI,UE接收到更新的签约后,存储相应的DNN或S-NSSAI。可选地,UE还存储相应的CAG信息。Alternatively, the DNN or S-NSSAI is not configured in the UE, and the UE stores the corresponding DNN or S-NSSAI after receiving the updated subscription. Optionally, the UE also stores corresponding CAG information.
值得说明的是,在实际使用中,UE可能并不需要判断是否已经事先配置了前述信息,即接收到更新的签约后,执行上述激活或存储的操作。It is worth noting that in actual use, the UE may not need to determine whether the aforementioned information has been configured in advance, that is, the UE performs the aforementioned activation or storage operations after receiving an updated subscription.
实施例二:Embodiment two:
本实施例执行的前提条件为:UDR/UDM中事先配置了DNN或S-NSSAI,和需要二次鉴权或NSSAA的指示,但是没有配置credential。UE中可以事先配置业务参数(即DNN或S-NSSAI),以及需要二次鉴权或NSSAA的指示,但是没有配置凭证(credential);或者,UE中也可以事先未配置前述信息。The preconditions for the execution of this embodiment are: DNN or S-NSSAI is configured in UDR/UDM in advance, and a secondary authentication or NSSAA indication is required, but no credential is configured. Service parameters (that is, DNN or S-NSSAI) and an indication of the need for secondary authentication or NSSAA can be configured in the UE in advance, but credentials (credential) are not configured; or, the foregoing information may not be configured in the UE in advance.
示例性地,如图7所示,本实施例提供的技术方案具体可以通过以下步骤来实现:Exemplarily, as shown in FIG. 7, the technical solution provided by this embodiment may be implemented through the following steps:
步骤S21:UE建立PDU会话,从PVS下载DNN或S-NSSAI的credential。Step S21: The UE establishes a PDU session, and downloads the credentials of the DNN or S-NSSAI from the PVS.
本步骤的相关内容的具体描述可以参考实施例一的描述,此处不再赘述。For a specific description of relevant content in this step, reference may be made to the description of Embodiment 1, and details are not repeated here.
步骤S22:PVS向UE的UDM发送UE标识和DNN或S-NSSAI的credential成功推送指示。Step S22: The PVS sends the UE ID and the DNN or S-NSSAI credential success push indication to the UDM of the UE.
本步骤的相关内容的具体描述可以参考实施例一的描述,此处不再赘述。For a specific description of relevant content in this step, reference may be made to the description of Embodiment 1, and details are not repeated here.
步骤S23:UDM接收到该凭证成功推送指示,在UE的签约中激活该DNN或S-NSSAI。Step S23: The UDM receives the certificate push indication, and activates the DNN or S-NSSAI in the subscription of the UE.
步骤S24:UDM可以根据DNN或S-NSSAI确定UE可以使用的CAG,将CAG存储在UE签约中,或者,直接激活对应的CAG。Step S24: The UDM can determine the CAG that the UE can use according to the DNN or S-NSSAI, store the CAG in the UE subscription, or directly activate the corresponding CAG.
需要说明的是,本实施例中的UDM可以替换成UDR。It should be noted that the UDM in this embodiment can be replaced by a UDR.
在一种示例中,UDR向UDM发送UE的更新的签约,包括新的DNN或S-NSSAI。进一步地,更新的签约中还包括:根据该新的DNN或S-NSSAI确定的CAG。In one example, the UDR sends the UE's updated subscription, including the new DNN or S-NSSAI, to the UDM. Further, the updated subscription also includes: the CAG determined according to the new DNN or S-NSSAI.
可选地,本实施例方案还可以包括:Optionally, the scheme of this embodiment may also include:
步骤S25:UDM向UE发送更新的签约。Step S25: The UDM sends the updated subscription to the UE.
可选地,本实施例方案还可以包括:Optionally, the scheme of this embodiment may also include:
步骤S26:UE激活配置的DNN或S-NSSAI。Step S26: UE activates the configured DNN or S-NSSAI.
步骤S25-S26可以参考上述实施例一中关于步骤S15-S16的描述。For steps S25-S26, reference may be made to the description of steps S15-S16 in the first embodiment above.
此外,应注意的是,如果上述实施例一中步骤S12以及实施例二中步骤S22中:NEF接收到的UE标识是该UE的IP地址和/或MAC地址,NEF还可以先向PCF查询该IP地址对应的UE的内部标识,如GPSI,IMSI,SUPI,MSISDN或SUCI。In addition, it should be noted that if in step S12 in the first embodiment and step S22 in the second embodiment: the UE identifier received by the NEF is the IP address and/or MAC address of the UE, the NEF may first query the PCF for the UE identifier. The internal identifier of the UE corresponding to the IP address, such as GPSI, IMSI, SUPI, MSISDN or SUCI.
一种示例中,NEF向PCF发送Npcf_PolicyAuthorization_Create服务请求,其中,Npcf_PolicyAuthorization_Create服务请求包括该UE的IP地址和/或MAC地址,PCF向NEF发送Npcf_PolicyAuthorization_Create服务响应,该Npcf_PolicyAuthorization_Create 服务响应中包含UE的IMSI。NEF向UDR/UDM发送UE的IMSI和credential成功推送指示。In one example, the NEF sends an Npcf_PolicyAuthorization_Create service request to the PCF, wherein the Npcf_PolicyAuthorization_Create service request includes the IP address and/or MAC address of the UE, and the PCF sends an Npcf_PolicyAuthorization_Create service response to the NEF, and the Npcf_PolicyAuthorization_Create service response includes the IMSI of the UE. NEF sends UE's IMSI and credential push indication to UDR/UDM successfully.
需要说明的是,本申请实施例提供的签约更新的方法,执行主体可以为签约更新的装置,或者,该签约更新的装置中的用于执行签约更新的方法的控制模块。本申请实施例中以签约更新的装置执行签约更新的方法为例,说明本申请实施例提供的签约更新的装置。It should be noted that, for the subscription renewal method provided in the embodiment of the present application, the execution subject may be a subscription renewal device, or a control module in the subscription renewal device for executing the subscription renewal method. In the embodiment of the present application, the method for executing the subscription renewal by the subscription renewal device is taken as an example to describe the subscription renewal device provided in the embodiment of the present application.
本申请实施例提供的一种签约更新的装置,如图8所示,该签约更新的装置可以包括:传输模块601和执行模块602,其中:An apparatus for updating a subscription provided in an embodiment of the present application, as shown in FIG. 8 , the apparatus for updating a subscription may include: a transmission module 601 and an execution module 602, wherein:
传输模块601,用于接收凭证成功推送指示;上述凭证成功推送指示用于指示:目标业务参数对应的凭证已成功推送至目标终端;执行模块602,用于在目标终端的签约中使能目标业务参数。The transmission module 601 is configured to receive an indication of successful credential push; the above-mentioned successful credential push indication is used to indicate that the credential corresponding to the target service parameter has been successfully pushed to the target terminal; the execution module 602 is used to enable the target service in the subscription of the target terminal parameter.
在一些可能的实施例中,凭证成功推送指示包括目标业务参数。In some possible embodiments, the indication of successful credential push includes target service parameters.
在一些可能的实施例中,上述目标业务参数包括以下至少之一:DNN,S-NSSAI。In some possible embodiments, the above target service parameters include at least one of the following: DNN, S-NSSAI.
在一些可能的实施例中,上述传输模块601,还用于接收第一终端标识;其中,所述目标终端包括所述第一终端标识所指示的终端。In some possible embodiments, the transmission module 601 is further configured to receive a first terminal identifier; wherein the target terminal includes a terminal indicated by the first terminal identifier.
在一些可能的实施例中,上述第一终端标识包括以下至少一项:目标终端的IP地址,目标终端的MAC地址,目标终端的IMSI,目标终端的SUPI,目标终端的MSISDN,目标终端的GPSI。In some possible embodiments, the first terminal identifier includes at least one of the following: IP address of the target terminal, MAC address of the target terminal, IMSI of the target terminal, SUPI of the target terminal, MSISDN of the target terminal, GPSI of the target terminal .
在一些可能的实施例中,上述凭证成功推送指示还包括:目标业务参数对应的凭证。In some possible embodiments, the above indication of successfully pushing the credential further includes: a credential corresponding to the target service parameter.
在一些可能的实施例中,上述凭证成功推送指示还包括第一鉴权指示;In some possible embodiments, the above-mentioned credential push indication further includes a first authentication indication;
其中,上述第一鉴权指示包括以下至少之一:Wherein, the above-mentioned first authentication indication includes at least one of the following:
用于指示需要对目标业务参数进行二次鉴权的指示,An indication for indicating that a second authentication of the target service parameters is required,
用于指示需要对目标业务参数进行网络切片鉴权的指示。It is used to indicate that network slice authentication needs to be performed on target service parameters.
在一些可能的实施例中,执行模块602,具体用于:在目标终端的签约中激活和/或存储目标业务参数。In some possible embodiments, the execution module 602 is specifically configured to: activate and/or store target service parameters in the subscription of the target terminal.
在一些可能的实施例中,执行模块602,还用于根据目标业务参数,确定目标终端可使用的CAG。In some possible embodiments, the execution module 602 is further configured to determine the CAG available to the target terminal according to the target service parameters.
在一些可能的实施例中,执行模块602,还用于在目标终端的签约中激活或存储上述CAG。In some possible embodiments, the execution module 602 is further configured to activate or store the CAG in the subscription of the target terminal.
在一些可能的实施例中,传输模块601,还用于向目标终端发送该目标终端的更新后的签约。In some possible embodiments, the transmitting module 601 is further configured to send the updated subscription of the target terminal to the target terminal.
在一些可能的实施例中,传输模块601,还用于向UDM发送该目标终端的更新后的签约。In some possible embodiments, the transmitting module 601 is further configured to send the updated subscription of the target terminal to the UDM.
在一些可能的实施例中,上述更新后的签约包括以下至少之一:In some possible embodiments, the above-mentioned updated subscription includes at least one of the following:
使能的DNN,enabled DNN,
使能的S-NSSAI,Enabled S-NSSAI,
基于使能的DNN和/或使能的S-NSSAI确定的CAG。CAG determined based on enabled DNN and/or enabled S-NSSAI.
在一些可能的实施例中,传输模块601,具体用于:接收来自网络开放网元的凭证成 功推送指示。In some possible embodiments, the transmission module 601 is specifically configured to: receive a certificate push indication from an open network element of the network.
在一些可能的实施例中,传输模块601,具体用于:接收来自网络开放网元的第一终端标识。In some possible embodiments, the transmission module 601 is specifically configured to: receive the first terminal identifier from an open network element of the network.
在本申请实施例提供的签约更新的装置中,该装置在接收到凭证成功推送指示后,可以基于凭证成功推送指示获知目标业务参数对应的凭证已成功推送至目标终端,此时,该装置可以在该目标终端的签约中使能目标业务参数,从而及时更新了目标终端的签约数据,进而可以根据目标终端签约授权的终端服务请求,为目标终端提供服务。In the device for subscription renewal provided in the embodiment of the present application, after receiving the successful certificate push indication, the device can know that the certificate corresponding to the target service parameter has been successfully pushed to the target terminal based on the successful certificate push indication. At this time, the device can The target service parameter is enabled in the subscription of the target terminal, so that the subscription data of the target terminal is updated in time, and then the service can be provided for the target terminal according to the terminal service request authorized by the subscription of the target terminal.
本申请实施例提供的一种签约更新的装置,如图9所示,该签约更新的装置可以包括:传输模块701,其中:An apparatus for updating a subscription provided in an embodiment of the present application, as shown in FIG. 9 , the apparatus for updating a subscription may include: a transmission module 701, wherein:
传输模块701,用于向统一数据网元发送凭证成功推送指示;上述凭证成功推送指示用于指示:目标业务参数对应的凭证已成功推送至目标终端。The transmission module 701 is configured to send a certificate push success indication to the unified data network element; the above certificate success push indication is used to indicate that the certificate corresponding to the target service parameter has been successfully pushed to the target terminal.
在一些可能的实施例中,凭证成功推送指示包括目标业务参数。In some possible embodiments, the indication of successful credential push includes target service parameters.
在一些可能的实施例中,上述目标业务参数包括以下至少之一:DNN,S-NSSAI。In some possible embodiments, the above target service parameters include at least one of the following: DNN, S-NSSAI.
在一些可能的实施例中,传输模块701,还用于向统一数据网元发送第一终端标识;其中,所述目标终端包括所述第一终端标识所指示的终端。In some possible embodiments, the transmission module 701 is further configured to send the first terminal identifier to the unified data network element; wherein the target terminal includes a terminal indicated by the first terminal identifier.
在一些可能的实施例中,上述第一终端标识包括以下至少之一:目标终端的IP地址,目标终端的MAC地址,目标终端的IMSI,目标终端的SUPI,目标终端的MSISDN,目标终端的GPSI。In some possible embodiments, the first terminal identifier includes at least one of the following: IP address of the target terminal, MAC address of the target terminal, IMSI of the target terminal, SUPI of the target terminal, MSISDN of the target terminal, GPSI of the target terminal .
在一些可能的实施例中,上述凭证成功推送指示还包括:目标业务参数对应的凭证。In some possible embodiments, the above indication of successfully pushing the credential further includes: a credential corresponding to the target service parameter.
在一些可能的实施例中,上述凭证成功推送指示还包括第一鉴权指示;In some possible embodiments, the above-mentioned credential push indication further includes a first authentication indication;
其中,上述第一鉴权指示用于指示目标业务参数需要进一步鉴权;Wherein, the above-mentioned first authentication indication is used to indicate that the target service parameter requires further authentication;
上述第一鉴权指示包括以下至少之一:The above-mentioned first authentication indication includes at least one of the following:
用于指示需要对目标业务参数进行二次鉴权的指示,An indication for indicating that a second authentication of the target service parameters is required,
用于指示需要对目标业务参数进行网络切片鉴权的指示。It is used to indicate that network slice authentication needs to be performed on target service parameters.
在一些可能的实施例中,传输模块701,具体用于:向网络开放网元向发送凭证成功推送指示。In some possible embodiments, the transmission module 701 is specifically configured to: send an indication of successful credential push to the network opening network element.
在一些可能的实施例中,传输模块701,具体用于:通过网络开放网元向统一数据网元发送第一终端标识。In some possible embodiments, the transmission module 701 is specifically configured to: send the first terminal identifier to the unified data network element through the network open network element.
在本申请实施例提供的签约更新的装置中,该装置通过向统一数据网元发送凭证成功推送指示,使得统一数据网元在接收到凭证成功推送指示后,可以在目标终端的签约中使能目标业务参数,从而及时更新了目标终端的签约数据,进而可以根据目标终端签约授权的终端服务请求,为目标终端提供服务。In the subscription renewal device provided in the embodiment of the present application, the device sends a certificate push indication to the unified data network element, so that the unified data network element can enable the subscription of the target terminal after receiving the certificate push success indication. Target service parameters, thereby updating the subscription data of the target terminal in time, and then providing services for the target terminal according to the terminal service request authorized by the target terminal for signing.
本申请实施例提供的一种签约更新的装置,如图10所示,该签约更新的装置可以包括:执行模块801和传输模块802,其中:An apparatus for updating a subscription provided in an embodiment of the present application, as shown in FIG. 10 , may include: an execution module 801 and a transmission module 802, wherein:
执行模块801,用于获取凭证成功推送指示;发送模块802,用于向统一数据网元发送执行模块801获取到的上述凭证成功推送指示;上述凭证成功推送指示用于指示:目标业务参数对应的凭证已成功推送至目标终端。The execution module 801 is configured to obtain an indication of a successful credential push; the sending module 802 is configured to send the above-mentioned credential successful push indication obtained by the execution module 801 to the unified data network element; the above-mentioned credential successful push indication is used to indicate: Credentials have been successfully pushed to the target endpoint.
在一些可能的实施例中,凭证成功推送指示包括目标业务参数。In some possible embodiments, the indication of successful credential push includes target service parameters.
在一些可能的实施例中,上述目标业务参数包括以下至少之一:DNN,S-NSSAI。In some possible embodiments, the above target service parameters include at least one of the following: DNN, S-NSSAI.
在一些可能的实施例中,上述凭证成功推送指示还包括:目标业务参数对应的凭证。In some possible embodiments, the above indication of successfully pushing the credential further includes: a credential corresponding to the target service parameter.
在一些可能的实施例中,上述凭证成功推送指示还包括第一鉴权指示;In some possible embodiments, the above-mentioned credential push indication further includes a first authentication indication;
其中,上述第一鉴权指示包括以下至少之一:Wherein, the above-mentioned first authentication indication includes at least one of the following:
用于指示需要对目标业务参数进行二次鉴权的指示,An indication for indicating that a second authentication of the target service parameters is required,
用于指示需要对目标业务参数进行网络切片鉴权的指示。It is used to indicate that network slice authentication needs to be performed on target service parameters.
在一些可能的实施例中,执行模块801,还用于获取第一终端标识;传输模块802,还用于向统一数据网元发送所述第一终端标识。In some possible embodiments, the execution module 801 is further configured to obtain the first terminal identifier; the transmission module 802 is further configured to send the first terminal identifier to a unified data network element.
在一些可能的实施例中,传输模块802,还用于接收目标终端的目标地址和凭证成功推送指示,上述目标地址包括目标终端的IP地址或者目标终端的MAC地址;执行模块801,具体用于获取上述目标地址对应的第二终端标识。In some possible embodiments, the transmission module 802 is further configured to receive a target address of the target terminal and an indication of successful credential push, where the target address includes the IP address of the target terminal or the MAC address of the target terminal; the execution module 801 is specifically used to Obtain the second terminal identifier corresponding to the above target address.
在一些可能的实施例中,传输模块802,还用于向策略控制网元发送上述目标终端的目标地址;传输模块802,还用于接收来自策略控制网元的上述目标地址对应的第二终端标识。In some possible embodiments, the transmission module 802 is further configured to send the target address of the above target terminal to the policy control network element; the transmission module 802 is also used to receive the second terminal corresponding to the above target address from the policy control network element logo.
在一些可能的实施例中,上述第一终端标识包括以下至少之一:目标终端的IP地址,目标终端的MAC地址,目标终端的IMSI,目标终端的SUPI,目标终端的MSISDN,目标终端的GPSI。In some possible embodiments, the first terminal identifier includes at least one of the following: IP address of the target terminal, MAC address of the target terminal, IMSI of the target terminal, SUPI of the target terminal, MSISDN of the target terminal, GPSI of the target terminal .
在一些可能的实施例中,上述第二终端标识包括以下至少之一:目标终端的IMSI,目标终端的SUPI,目标终端的MSISDN,目标终端的GPSI。In some possible embodiments, the above-mentioned second terminal identifier includes at least one of the following: IMSI of the target terminal, SUPI of the target terminal, MSISDN of the target terminal, and GPSI of the target terminal.
在本申请实施例提供的签约更新的装置中,该装置通过向统一数据网元发送凭证成功推送指示,使得统一数据网元在接收到凭证成功推送指示后,可以在目标终端的签约中使能目标业务参数,从而及时更新了目标终端的签约数据,进而可以根据目标终端签约授权的终端服务请求,为目标终端提供服务。In the subscription renewal device provided in the embodiment of the present application, the device sends a certificate push indication to the unified data network element, so that the unified data network element can enable the subscription of the target terminal after receiving the certificate push success indication. Target service parameters, thereby updating the subscription data of the target terminal in time, and then providing services for the target terminal according to the terminal service request authorized by the target terminal for signing.
本申请实施例提供的一种签约更新的装置,如图11所示,该签约更新的装置可以包括:传输模块901和执行模块902,其中:An apparatus for updating a subscription provided in an embodiment of the present application, as shown in FIG. 11 , may include: a transmission module 901 and an execution module 902, wherein:
执行模块902,用于获取目标终端的目的地址,上述目的地址包括目标终端的IP地址或者目标终端的MAC地址;执行模块902,还用于确定上述目标地址对应的第二终端标识;传输模块901,还用于向所述网络开放网元或统一数据网元发送所述第二终端标识;其中,所述第二终端标识用于更新所述第二终端标识指示的终端的签约。The execution module 902 is used to obtain the destination address of the target terminal, and the above destination address includes the IP address of the target terminal or the MAC address of the target terminal; the execution module 902 is also used to determine the second terminal identifier corresponding to the above target address; the transmission module 901 , further configured to send the second terminal identifier to the network open network element or unified data network element; where the second terminal identifier is used to update the subscription of the terminal indicated by the second terminal identifier.
在一些可能的实施例中,上述第二终端标识包括以下至少之一:目标终端的IMSI,目标终端的SUPI,目标终端的MSISDN,目标终端的GPSI。In some possible embodiments, the above-mentioned second terminal identifier includes at least one of the following: IMSI of the target terminal, SUPI of the target terminal, MSISDN of the target terminal, and GPSI of the target terminal.
在本申请实施例提供的签约更新的装置中,该装置获取与目标终端的目标地址(即目标终端的IP地址或者目标终端的MAC地址),对应的第二终端标识,以使通信网络可以及时更新第二终端标识所指示的终端的签约。In the device for updating the subscription provided in the embodiment of the present application, the device obtains the target address of the target terminal (that is, the IP address of the target terminal or the MAC address of the target terminal), corresponding to the second terminal identifier, so that the communication network can timely The subscription of the terminal indicated by the second terminal identifier is updated.
本申请实施例中的计算任务的资源分配装置或计算任务的策略确定装置可以是装置,具有操作系统的装置或电子设备,也可以是设备中的部件、集成电路、或芯片。该装置或 电子设备可以是网元、节点设备、服务器、网络附属存储器(Network Attached Storage,NAS)、个人计算机(personal computer,PC)等,本申请实施例不作具体限定。The computing task resource allocation device or computing task policy determination device in the embodiment of the present application may be a device, a device with an operating system or an electronic device, or a component, an integrated circuit, or a chip in the device. The device or electronic device may be a network element, a node device, a server, a network attached storage (Network Attached Storage, NAS), a personal computer (personal computer, PC), etc., which are not specifically limited in this embodiment of the present application.
本申请实施例提供的签约更新的装置能够实现图2至图7的方法实施例实现的各个过程,并达到相同的技术效果,为避免重复,这里不再赘述。The subscription renewal device provided by the embodiment of the present application can realize the various processes realized by the method embodiments in Fig. 2 to Fig. 7 and achieve the same technical effect, and to avoid repetition, details are not repeated here.
可选地,如图12所示,本申请实施例还提供一种通信设备1000,包括处理器1001,存储器1002,存储在存储器1002上并可在所述处理器1001上运行的程序或指令,例如,该通信设备1000为网络侧设备时,该程序或指令被处理器1001执行时实现上述方法实施例的各个过程,且能达到相同的技术效果,为避免重复,这里不再赘述。Optionally, as shown in FIG. 12 , this embodiment of the present application further provides a communication device 1000, including a processor 1001, a memory 1002, and programs or instructions stored in the memory 1002 and operable on the processor 1001, For example, when the communication device 1000 is a network-side device, when the program or instruction is executed by the processor 1001, various processes of the above-mentioned method embodiments can be achieved, and the same technical effect can be achieved. To avoid repetition, details are not repeated here.
本申请实施例还提供一种网络侧设备,包括处理器和通信接口。该网络侧设备实施例是与上述网络侧设备方法实施例对应的,上述方法实施例的各个实施过程和实现方式均可适用于该网络侧设备实施例中,且能达到相同的技术效果。The embodiment of the present application also provides a network side device, including a processor and a communication interface. The network-side device embodiment corresponds to the above-mentioned network-side device method embodiment, and each implementation process and implementation mode of the above-mentioned method embodiment can be applied to this network-side device embodiment, and can achieve the same technical effect.
在一种示例中,该网络侧设备为统一数据网元,包括处理器及通信接口,其中,通信接口,用于接收凭证成功推送指示;上述凭证成功推送指示用于指示:目标业务参数对应的凭证已成功推送至目标终端;处理器用于在目标终端的签约中使能目标业务参数。In one example, the network side device is a unified data network element, including a processor and a communication interface, wherein the communication interface is used to receive an indication of a successful credential push; the above indication of a successful credential push is used to indicate: The credential has been successfully pushed to the target terminal; the processor is used to enable the target service parameter in the subscription of the target terminal.
在一些可能的示例中,凭证成功推送指示包括目标业务参数。In some possible examples, the credential successfully pushed indication includes target service parameters.
在一些可能的示例中,上述目标业务参数包括以下至少之一:DNN,S-NSSAI。In some possible examples, the above target service parameters include at least one of the following: DNN, S-NSSAI.
在一些可能的示例中,上述通信接口,还用于接收第一终端标识;其中,所述目标终端包括所述第一终端标识所指示的终端。In some possible examples, the foregoing communication interface is further configured to receive a first terminal identifier; wherein the target terminal includes a terminal indicated by the first terminal identifier.
在一些可能的示例中,上述第一终端标识包括以下至少一项:目标终端的IP地址,目标终端的MAC地址,目标终端的IMSI,目标终端的SUPI,目标终端的MSISDN,目标终端的GPSI。In some possible examples, the first terminal identifier includes at least one of the following: the IP address of the target terminal, the MAC address of the target terminal, the IMSI of the target terminal, the SUPI of the target terminal, the MSISDN of the target terminal, and the GPSI of the target terminal.
在一些可能的示例中,上述凭证成功推送指示还包括:目标业务参数对应的凭证。In some possible examples, the above indication of successfully pushing the credential further includes: a credential corresponding to the target service parameter.
在一些可能的示例中,上述凭证成功推送指示还包括第一鉴权指示;In some possible examples, the above-mentioned certificate push indication further includes a first authentication indication;
其中,上述第一鉴权指示包括以下至少之一:Wherein, the above-mentioned first authentication indication includes at least one of the following:
用于指示需要对目标业务参数进行二次鉴权的指示,An indication for indicating that a second authentication of the target service parameters is required,
用于指示需要对目标业务参数进行网络切片鉴权的指示。It is used to indicate that network slice authentication needs to be performed on target service parameters.
在一些可能的示例中,处理器,具体用于:在目标终端的签约中激活和/或存储目标业务参数。In some possible examples, the processor is specifically configured to: activate and/or store target service parameters in subscription of the target terminal.
在一些可能的示例中,处理器,还用于根据目标业务参数,确定目标终端可使用的CAG。In some possible examples, the processor is further configured to determine the CAG usable by the target terminal according to the target service parameters.
在一些可能的示例中,处理器,还用于在目标终端的签约中使能或存储上述CAG。In some possible examples, the processor is further configured to enable or store the foregoing CAG in the subscription of the target terminal.
在一些可能的示例中,通信接口,还用于向目标终端发送该目标终端的更新后的签约。In some possible examples, the communication interface is further configured to send the updated subscription of the target terminal to the target terminal.
在一些可能的示例中,通信接口,还用于向UDM发送该目标终端的更新后的签约。In some possible examples, the communication interface is further configured to send the updated subscription of the target terminal to the UDM.
在一些可能的示例中,上述更新后的签约包括以下至少之一:In some possible examples, the above-mentioned updated contract includes at least one of the following:
使能的DNN,enabled DNN,
使能的S-NSSAI,Enabled S-NSSAI,
基于使能的DNN和/或使能的S-NSSAI确定的CAG。CAG determined based on enabled DNN and/or enabled S-NSSAI.
在一些可能的示例中,通信接口,具体用于:接收来自网络开放网元的凭证成功推送指示。In some possible examples, the communication interface is specifically configured to: receive an indication from a network open network element that the credential is successfully pushed.
在一些可能的示例中,通信接口,具体用于:接收来自网络开放网元的第一终端标识。In some possible examples, the communication interface is specifically configured to: receive the first terminal identifier from an open network element of the network.
在本申请示例提供的统一数据网元中,该统一数据网元在接收到凭证成功推送指示后,可以基于凭证成功推送指示获知目标业务参数对应的凭证已成功推送至目标终端,此时,该装置可以在该目标终端的签约中使能目标业务参数,从而及时更新了目标终端的签约数据,进而可以根据目标终端签约授权的终端服务请求,为目标终端提供服务。In the unified data network element provided in the example of this application, after the unified data network element receives the successful push indication of the certificate, it can know that the certificate corresponding to the target service parameter has been successfully pushed to the target terminal based on the successful push indication of the certificate. At this time, the The device can enable the target service parameters in the subscription of the target terminal, thereby updating the subscription data of the target terminal in time, and then can provide services for the target terminal according to the terminal service request authorized by the target terminal subscription.
在一种示例中,该网络侧设备为服务器,包括处理器及通信接口,其中,通信接口,用于向统一数据网元发送凭证成功推送指示;其中,上述凭证成功推送指示用于指示:目标业务参数对应的凭证已成功推送至目标终端。In one example, the network-side device is a server, including a processor and a communication interface, wherein the communication interface is used to send an indication of successful credential push to a unified data network element; wherein, the above-mentioned successful credential push indication is used to indicate: target The certificate corresponding to the business parameter has been successfully pushed to the target terminal.
在一些可能的示例中,凭证成功推送指示包括目标业务参数。In some possible examples, the credential successfully pushed indication includes target service parameters.
在一些可能的示例中,上述目标业务参数包括以下至少之一:DNN,S-NSSAI。In some possible examples, the above target service parameters include at least one of the following: DNN, S-NSSAI.
在一些可能的示例中,通信接口,还用于向统一数据网元发送第一终端标识;其中,所述目标终端为包括所述第一终端标识所指示的终端。In some possible examples, the communication interface is further configured to send the first terminal identifier to the unified data network element; wherein the target terminal is a terminal indicated by the first terminal identifier.
在一些可能的示例中,上述第一终端标识包括以下至少之一:目标终端的IP地址,目标终端的MAC地址,目标终端的IMSI,目标终端的SUPI,目标终端的MSISDN,目标终端的GPSI。In some possible examples, the first terminal identifier includes at least one of the following: the IP address of the target terminal, the MAC address of the target terminal, the IMSI of the target terminal, the SUPI of the target terminal, the MSISDN of the target terminal, and the GPSI of the target terminal.
在一些可能的示例中,上述凭证成功推送指示还包括:目标业务参数对应的凭证。In some possible examples, the above indication of successfully pushing the credential further includes: a credential corresponding to the target service parameter.
在一些可能的示例中,上述凭证成功推送指示还包括第一鉴权指示;In some possible examples, the above-mentioned certificate push indication further includes a first authentication indication;
其中,上述第一鉴权指示用于指示目标业务参数需要进一步鉴权;Wherein, the above-mentioned first authentication indication is used to indicate that the target service parameter requires further authentication;
上述第一鉴权指示包括以下至少之一:The above-mentioned first authentication indication includes at least one of the following:
用于指示需要对目标业务参数进行二次鉴权的指示,An indication for indicating that a second authentication of the target service parameters is required,
用于指示需要对目标业务参数进行网络切片鉴权的指示。It is used to indicate that network slice authentication needs to be performed on target service parameters.
在一些可能的示例中,通信接口,具体用于:向网络开放网元向发送凭证成功推送指示。In some possible examples, the communication interface is specifically configured to: send an indication of successful credential push to the network opening network element.
在一些可能的示例中,通信接口,具体用于:通过网络开放网元向统一数据网元发送第一终端标识。In some possible examples, the communication interface is specifically configured to: send the first terminal identifier to the unified data network element through the network open network element.
在本申请示例提供的服务器中,该服务器通过向统一数据网元发送凭证成功推送指示,使得统一数据网元在接收到凭证成功推送指示后,可以在目标终端的签约中使能目标业务参数,从而及时更新了目标终端的签约数据,进而可以根据目标终端签约授权的终端服务请求,为目标终端提供服务。In the server provided in the example of this application, the server sends a certificate push indication to the unified data network element, so that the unified data network element can enable the target service parameter in the subscription of the target terminal after receiving the certificate push success indication, Therefore, the subscription data of the target terminal is updated in time, and the service can be provided for the target terminal according to the terminal service request of the target terminal's contract authorization.
在一种示例中,该网络侧设备为网络开放网元,包括处理器及通信接口,其中,处理器用于获取凭证成功推送指示;通信接口,用于向统一数据网元发送处理器获取到的上述凭证成功推送指示;其中,上述凭证成功推送指示包括目标业务参数;上述凭证成功推送指示用于指示:目标业务参数对应的凭证已成功推送至目标终端。In one example, the network-side device is an open network element, including a processor and a communication interface, wherein the processor is used to obtain an indication of successful credential push; the communication interface is used to send the information obtained by the processor to the unified data network element. The above indication of successfully pushing the voucher; wherein, the indication of successfully pushing the voucher includes target service parameters; the above indication of successfully pushing the voucher is used to indicate that the voucher corresponding to the target service parameter has been successfully pushed to the target terminal.
在一些可能的示例中,凭证成功推送指示包括目标业务参数。In some possible examples, the credential successfully pushed indication includes target service parameters.
在一些可能的示例中,上述目标业务参数包括以下至少之一:DNN,S-NSSAI。In some possible examples, the above target service parameters include at least one of the following: DNN, S-NSSAI.
在一些可能的示例中,上述凭证成功推送指示还包括:目标业务参数对应的凭证。In some possible examples, the above indication of successfully pushing the credential further includes: a credential corresponding to the target service parameter.
在一些可能的示例中,上述凭证成功推送指示还包括第一鉴权指示;In some possible examples, the above-mentioned certificate push indication further includes a first authentication indication;
其中,上述第一鉴权指示用于指示目标业务参数需要进一步鉴权;Wherein, the above-mentioned first authentication indication is used to indicate that the target service parameter requires further authentication;
上述第一鉴权指示包括以下至少之一:The above-mentioned first authentication indication includes at least one of the following:
用于指示目标业务参数需要二次鉴权的指示,An indication for indicating that the target service parameter requires secondary authentication,
用于指示目标业务参数需要网络切片鉴权的指示。An indication used to indicate that the target service parameter requires network slice authentication.
在一些可能的示例中,处理器,还用于获取第一终端标识;通信接口,还用于向统一数据网元发送所述第一终端标识。In some possible examples, the processor is further configured to acquire the first terminal identifier; the communication interface is further configured to send the first terminal identifier to a unified data network element.
在一些可能的示例中,通信接口,还用于接收目标终端的目标地址和凭证成功推送指示,上述目标地址包括目标终端的IP地址或者目标终端的MAC地址;处理器,具体用于获取上述目标地址对应的第二终端标识。In some possible examples, the communication interface is further configured to receive a target address of the target terminal and an indication of successful credential push, where the target address includes the IP address of the target terminal or the MAC address of the target terminal; the processor is specifically configured to obtain the target terminal The second terminal identifier corresponding to the address.
在一些可能的示例中,通信接口,还用于向策略控制网元发送上述目标终端的目标地址;通信接口,还用于接收来自上述策略控制网元的上述目标地址对应的第二终端标识。In some possible examples, the communication interface is further configured to send the target address of the target terminal to the policy control network element; the communication interface is further configured to receive the second terminal identifier corresponding to the target address from the policy control network element.
在一些可能的示例中,上述第一终端标识包括以下至少之一:目标终端的IP地址,目标终端的MAC地址,目标终端的IMSI,目标终端的SUPI,目标终端的MSISDN,目标终端的GPSI。In some possible examples, the first terminal identifier includes at least one of the following: the IP address of the target terminal, the MAC address of the target terminal, the IMSI of the target terminal, the SUPI of the target terminal, the MSISDN of the target terminal, and the GPSI of the target terminal.
在一些可能的示例中,上述第二终端标识包括以下至少之一:目标终端的IMSI,目标终端的SUPI,目标终端的MSISDN,目标终端的GPSI。In some possible examples, the second terminal identifier includes at least one of the following: IMSI of the target terminal, SUPI of the target terminal, MSISDN of the target terminal, and GPSI of the target terminal.
在本申请示例提供的网络开放网元中,该网络开放网元通过向统一数据网元发送凭证成功推送指示,使得统一数据网元在接收到凭证成功推送指示后,可以在目标终端的签约中使能目标业务参数,从而及时更新了目标终端的签约数据,进而可以根据目标终端签约授权的终端服务请求,为目标终端提供服务。In the network open network element provided in the example of this application, the network open network element sends a certificate push indication to the unified data network element, so that after receiving the certificate push successful indication, the unified data network element can sign up for the target terminal The target service parameters are enabled, so that the subscription data of the target terminal is updated in time, and services can be provided for the target terminal according to the terminal service request authorized by the target terminal for signing.
在一种示例中,该网络侧设备为策略控制网元,包括处理器及通信接口,其中,处理器,用于获取目标终端的目的地址,上述目的地址包括目标终端的IP地址或者目标终端的MAC地址;处理器,还用于确定上述目标地址对应的第二终端标识;通信接口,还用于向所述网络开放网元或统一数据网元发送所述第二终端标识;其中,所述第二终端标识用于更新所述第二终端标识指示的终端的签约。In one example, the network side device is a policy control network element, including a processor and a communication interface, wherein the processor is used to obtain the destination address of the target terminal, and the destination address includes the IP address of the target terminal or the IP address of the target terminal. A MAC address; a processor, further configured to determine a second terminal identifier corresponding to the above-mentioned target address; a communication interface, further configured to send the second terminal identifier to the network open network element or unified data network element; wherein, the The second terminal identifier is used to update the subscription of the terminal indicated by the second terminal identifier.
在一些可能的示例中,上述第二终端标识包括以下至少之一:目标终端的IMSI,目标终端的SUPI,目标终端的MSISDN,目标终端的GPSI。In some possible examples, the second terminal identifier includes at least one of the following: IMSI of the target terminal, SUPI of the target terminal, MSISDN of the target terminal, and GPSI of the target terminal.
在本申请示例提供的策略控制网元中,该策略控制网元获取与目标终端的目标地址(即目标终端的IP地址或者目标终端的MAC地址)对应的第二终端标识,以使通信网络可以及时更新第二终端标识所指示的终端的签约。In the policy control network element provided in the example of this application, the policy control network element obtains the second terminal identifier corresponding to the target address of the target terminal (that is, the IP address of the target terminal or the MAC address of the target terminal), so that the communication network can The subscription of the terminal indicated by the second terminal identifier is updated in time.
本申请实施例还提供了一种网络侧设备。如图13所示,本发明实施例的网络侧设备包括:处理器1101、收发机1102、存储器1103、网络接口1104和总线接口。在图13中,总线架构可以包括任意数量的互联的总线和桥,具体由处理器1101代表的一个或多个处理器和存储器1103代表的存储器的各种电路链接在一起。总线架构还可以将诸如外围设备、稳压器和功率管理电路等之类的各种其他电路链接在一起,这些都是本领域所公知的, 因此,本文不再对其进行进一步描述。总线接口提供接口。收发机1102可以是多个元件,即包括发送机和接收机,提供用于在传输介质上与各种其他装置通信的单元。处理器1101负责管理总线架构和通常的处理,存储器1103可以存储处理器1101在执行操作时所使用的数据。另外,网络侧设备还包括一些未示出的功能模块,在此不再赘述。The embodiment of the present application also provides a network side device. As shown in FIG. 13 , the network side device in this embodiment of the present invention includes: a processor 1101 , a transceiver 1102 , a memory 1103 , a network interface 1104 and a bus interface. In FIG. 13 , the bus architecture may include any number of interconnected buses and bridges, specifically one or more processors represented by processor 1101 and various circuits of memory represented by memory 1103 are linked together. The bus architecture can also link together various other circuits such as peripherals, voltage regulators, and power management circuits, etc., which are well known in the art and therefore will not be further described herein. The bus interface provides the interface. Transceiver 1102 may be a plurality of elements, including a transmitter and a receiver, providing a means for communicating with various other devices over transmission media. The processor 1101 is responsible for managing the bus architecture and general processing, and the memory 1103 can store data used by the processor 1101 when performing operations. In addition, the network side device also includes some unshown functional modules, which will not be repeated here.
具体的,该网络侧设备还包括:存储在存储器1103上并可在处理器1101上运行的指令或程序,处理器1101调用存储器1103中的指令或程序执行图8或图9或图10或图11所示各模块执行的方法,并达到相同的技术效果,为避免重复,故不在此赘述。Specifically, the network side device further includes: instructions or programs stored in the memory 1103 and operable on the processor 1101, and the processor 1101 invokes the instructions or programs in the memory 1103 to execute FIG. 8 or FIG. 9 or FIG. 10 or FIG. The method executed by each module shown in 11 achieves the same technical effect. In order to avoid repetition, it is not repeated here.
本申请实施例还提供一种可读存储介质,所述可读存储介质上存储有程序或指令,该程序或指令被处理器执行时实现上述签约更新的方法的方法实施例的各个过程,且能达到相同的技术效果,为避免重复,这里不再赘述。The embodiment of the present application also provides a readable storage medium, on which a program or instruction is stored, and when the program or instruction is executed by a processor, each process of the method embodiment of the above-mentioned subscription renewal method is implemented, and The same technical effect can be achieved, so in order to avoid repetition, details will not be repeated here.
其中,所述处理器为上述实施例中所述的终端中的处理器。所述可读存储介质,包括计算机可读存储介质,如计算机只读存储器(Read-Only Memory,ROM)、随机存取存储器(Random Access Memory,RAM)、磁碟或者光盘等。Wherein, the processor is the processor in the terminal described in the foregoing embodiments. The readable storage medium includes computer readable storage medium, such as computer read-only memory (Read-Only Memory, ROM), random access memory (Random Access Memory, RAM), magnetic disk or optical disk, etc.
本申请实施例另提供了一种芯片,所述芯片包括处理器和通信接口,所述通信接口和所述处理器耦合,所述处理器用于运行程序或指令,实现上述签约更新的方法的方法实施例的各个过程,且能达到相同的技术效果,为避免重复,这里不再赘述。The embodiment of the present application further provides a chip, the chip includes a processor and a communication interface, the communication interface is coupled to the processor, and the processor is used to run programs or instructions to implement the above-mentioned subscription renewal method The various processes of the embodiment can achieve the same technical effect, so in order to avoid repetition, details are not repeated here.
应理解,本申请实施例提到的芯片还可以称为系统级芯片,系统芯片,芯片系统或片上系统芯片等。It should be understood that the chip mentioned in the embodiment of the present application may also be called a system-on-chip, a system-on-chip, a system-on-a-chip, or a system-on-a-chip.
需要说明的是,在本文中,术语“包括”、“包含”或者其任何其他变体意在涵盖非排他性的包含,从而使得包括一系列要素的过程、方法、物品或者装置不仅包括那些要素,而且还包括没有明确列出的其他要素,或者是还包括为这种过程、方法、物品或者装置所固有的要素。在没有更多限制的情况下,由语句“包括一个……”限定的要素,并不排除在包括该要素的过程、方法、物品或者装置中还存在另外的相同要素。此外,需要指出的是,本申请实施方式中的方法和装置的范围不限按示出或讨论的顺序来执行功能,还可包括根据所涉及的功能按基本同时的方式或按相反的顺序来执行功能,例如,可以按不同于所描述的次序来执行所描述的方法,并且还可以添加、省去、或组合各种步骤。另外,参照某些示例所描述的特征可在其他示例中被组合。It should be noted that, in this document, the term "comprising", "comprising" or any other variation thereof is intended to cover a non-exclusive inclusion such that a process, method, article or apparatus comprising a set of elements includes not only those elements, It also includes other elements not expressly listed, or elements inherent in the process, method, article, or device. Without further limitations, an element defined by the phrase "comprising a ..." does not preclude the presence of additional identical elements in the process, method, article, or apparatus comprising that element. In addition, it should be pointed out that the scope of the methods and devices in the embodiments of the present application is not limited to performing functions in the order shown or discussed, and may also include performing functions in a substantially simultaneous manner or in reverse order according to the functions involved. Functions are performed, for example, the described methods may be performed in an order different from that described, and various steps may also be added, omitted, or combined. Additionally, features described with reference to certain examples may be combined in other examples.
通过以上的实施方式的描述,本领域的技术人员可以清楚地了解到上述实施例方法可借助软件加必需的通用硬件平台的方式来实现,当然也可以通过硬件,但很多情况下前者是更佳的实施方式。基于这样的理解,本申请的技术方案本质上或者说对现有技术做出贡献的部分可以以计算机软件产品的形式体现出来,该计算机软件产品存储在一个存储介质(如ROM/RAM、磁碟、光盘)中,包括若干指令用以使得一台终端(可以是手机,计算机,服务器,空调器,或者网络设备等)执行本申请各个实施例所述的方法。Through the description of the above embodiments, those skilled in the art can clearly understand that the methods of the above embodiments can be implemented by means of software plus a necessary general-purpose hardware platform, and of course also by hardware, but in many cases the former is better implementation. Based on such an understanding, the technical solution of the present application can be embodied in the form of computer software products, which are stored in a storage medium (such as ROM/RAM, magnetic disk, etc.) , CD-ROM), including several instructions to make a terminal (which may be a mobile phone, a computer, a server, an air conditioner, or a network device, etc.) execute the methods described in the various embodiments of the present application.
上面结合附图对本申请的实施例进行了描述,但是本申请并不局限于上述的具体实施方式,上述的具体实施方式仅仅是示意性的,而不是限制性的,本领域的普通技术人员在本申请的启示下,在不脱离本申请宗旨和权利要求所保护的范围情况下,还可做出很多形式,均属于本申请的保护之内。The embodiments of the present application have been described above in conjunction with the accompanying drawings, but the present application is not limited to the above-mentioned specific implementations. The above-mentioned specific implementations are only illustrative and not restrictive. Those of ordinary skill in the art will Under the inspiration of this application, without departing from the purpose of this application and the scope of protection of the claims, many forms can also be made, all of which belong to the protection of this application.

Claims (45)

  1. 一种签约更新的方法,包括:A method for subscription renewal, comprising:
    统一数据网元接收凭证成功推送指示;所述凭证成功推送指示用于指示:目标业务参数对应的凭证已成功推送至目标终端;The unified data network element receives the voucher success push indication; the voucher success push indication is used to indicate that the voucher corresponding to the target service parameter has been successfully pushed to the target terminal;
    所述统一数据网元在所述目标终端的签约中使能所述目标业务参数。The unified data network element enables the target service parameter in the subscription of the target terminal.
  2. 根据权利要求1所述的方法,其中,所述凭证成功推送指示包括所述目标业务参数。The method according to claim 1, wherein the indication of successful credential push includes the target service parameter.
  3. 根据权利要求2所述的方法,其中,所述目标业务参数包括以下至少之一:数据网络名称DNN,单一网络切片选择辅助信息S-NSSAI。The method according to claim 2, wherein the target service parameters include at least one of the following: data network name DNN, single network slice selection auxiliary information S-NSSAI.
  4. 根据权利要求1所述的方法,其中,所述方法还包括:The method according to claim 1, wherein the method further comprises:
    所述统一数据网元接收第一终端标识;The unified data network element receives the first terminal identifier;
    其中,所述目标终端包括所述第一终端标识所指示的终端。Wherein, the target terminal includes the terminal indicated by the first terminal identifier.
  5. 根据权利要求4所述的方法,其中,所述第一终端标识包括以下至少一项:所述目标终端的IP地址,所述目标终端的MAC地址,所述目标终端的国际移动用户识别码IMSI,所述目标终端的签约永久标识SUPI,所述目标终端的移动台综合业务数字网号码MSISDN,所述目标终端的一般公共签约标识GPSI。The method according to claim 4, wherein the first terminal identifier includes at least one of the following: the IP address of the target terminal, the MAC address of the target terminal, and the International Mobile Subscriber Identity (IMSI) of the target terminal , the subscription permanent identifier SUPI of the target terminal, the mobile station integrated services digital network number MSISDN of the target terminal, and the general public subscription identifier GPSI of the target terminal.
  6. 根据权利要求1所述的方法,其中,所述凭证成功推送指示还包括:所述目标业务参数对应的凭证。The method according to claim 1, wherein, the indication of successful credential pushing further includes: a credential corresponding to the target service parameter.
  7. 根据权利要求2所述的方法,其中,所述凭证成功推送指示还包括第一鉴权指示;The method according to claim 2, wherein the indication of successful certificate pushing further comprises a first authentication indication;
    其中,所述第一鉴权指示包括以下至少之一:Wherein, the first authentication indication includes at least one of the following:
    用于指示需要对所述目标业务参数进行二次鉴权的指示,An indication for indicating that the target service parameter needs to be authenticated twice,
    用于指示需要对所述目标业务参数进行网络切片鉴权的指示。An indication for indicating that network slice authentication needs to be performed on the target service parameter.
  8. 根据权利要求1所述的方法,其中,所述统一数据网元在所述目标终端的签约中使能所述目标业务参数,包括:The method according to claim 1, wherein the unified data network element enabling the target service parameter in the subscription of the target terminal comprises:
    所述统一数据网元在所述目标终端的签约中存储和/或激活所述目标业务参数。The unified data network element stores and/or activates the target service parameter in the subscription of the target terminal.
  9. 根据权利要求2所述的方法,其中,所述方法还包括:The method according to claim 2, wherein the method further comprises:
    所述统一数据网元根据所述目标业务参数,确定所述目标终端可使用的封闭访问组标识符CAG。The unified data network element determines the closed access group identifier CAG usable by the target terminal according to the target service parameters.
  10. 根据权利要求7所述的方法,其中,所述方法还包括:The method according to claim 7, wherein the method further comprises:
    所述统一数据网元在所述目标终端的签约中激活或存储所述CAG。The unified data network element activates or stores the CAG in the subscription of the target terminal.
  11. 根据权利要求1至10任一项所述的方法,其中,所述方法还包括:The method according to any one of claims 1 to 10, wherein the method further comprises:
    所述统一数据网元向所述目标终端发送所述目标终端的更新后的签约。The unified data network element sends the updated subscription of the target terminal to the target terminal.
  12. 根据权利要求11所述的方法,其中,在所述统一数据网元为统一数据存储网元UDR的情况下,所述方法还包括:The method according to claim 11, wherein, when the unified data network element is a unified data storage network element UDR, the method further comprises:
    所述UDR向统一数据管理网元UDM发送所述目标终端的更新后的签约。The UDR sends the updated subscription of the target terminal to the unified data management network element UDM.
  13. 根据权利要求11所述的方法,其中,所述更新后的签约包括以下至少之一:The method according to claim 11, wherein the updated subscription includes at least one of the following:
    使能的DNN,enabled DNN,
    使能的S-NSSAI,Enabled S-NSSAI,
    基于使能的DNN和/或使能的S-NSSAI确定的CAG。CAG determined based on enabled DNN and/or enabled S-NSSAI.
  14. 根据权利要求1所述的方法,其中,所述统一数据网元接收凭证成功推送指示,包括:The method according to claim 1, wherein the unified data network element receiving the certificate push success indication comprises:
    所述统一数据网元接收来自网络开放网元的凭证成功推送指示。The unified data network element receives the certificate push indication from the network open network element.
  15. 根据权利要求4所述的方法,其中,所述统一数据网元接收第一终端标识,包括:The method according to claim 4, wherein the receiving the first terminal identifier by the unified data network element comprises:
    所述统一数据网元接收来自网络开放网元的第一终端标识。The unified data network element receives the first terminal identifier from the network open network element.
  16. 一种签约更新的方法,包括:A method for subscription renewal, comprising:
    服务器向统一数据网元发送凭证成功推送指示;The server sends a certificate push indication to the unified data network element;
    其中,所述凭证成功推送指示用于指示:目标业务参数对应的凭证已成功推送至目标终端。Wherein, the credential push success indication is used to indicate that the credential corresponding to the target service parameter has been successfully pushed to the target terminal.
  17. 根据权利要求16所述的方法,其特征在于,所述凭证成功推送指示包括所述目标业务参数。The method according to claim 16, characterized in that, the indication of successful push of the credential includes the target service parameter.
  18. 根据权利要求17所述的方法,其特征在于,所述目标业务参数包括以下至少之一:DNN,S-NSSAI。The method according to claim 17, wherein the target service parameters include at least one of the following: DNN, S-NSSAI.
  19. 根据权利要求16所述的方法,其特征在于,所述方法还包括:The method according to claim 16, further comprising:
    服务器向所述统一数据网元发送第一终端标识;The server sends the first terminal identifier to the unified data network element;
    其中,所述目标终端包括所述第一终端标识所指示的终端。Wherein, the target terminal includes the terminal indicated by the first terminal identifier.
  20. 根据权利要求19所述的方法,其特征在于,所述第一终端标识包括以下至少之一:所述目标终端的IP地址,所述目标终端的MAC地址,所述目标终端的IMSI,所述目标终端的SUPI,所述目标终端的MSISDN,所述目标终端的GPSI。The method according to claim 19, wherein the first terminal identifier includes at least one of the following: the IP address of the target terminal, the MAC address of the target terminal, the IMSI of the target terminal, the The SUPI of the target terminal, the MSISDN of the target terminal, and the GPSI of the target terminal.
  21. 根据权利要求16所述的方法,其特征在于,所述凭证成功推送指示还包括:所述目标业务参数对应的凭证。The method according to claim 16, wherein the indication of successful credential push further includes: the credential corresponding to the target service parameter.
  22. 根据权利要求17所述的方法,其特征在于,所述凭证成功推送指示还包括第一鉴权指示;The method according to claim 17, characterized in that, the indication of successful credential push further includes a first authentication indication;
    其中,所述第一鉴权指示包括以下至少之一:Wherein, the first authentication indication includes at least one of the following:
    用于指示需要对所述目标业务参数进行二次鉴权的指示,An indication for indicating that the target service parameter needs to be authenticated twice,
    用于指示需要对所述目标业务参数进行网络切片鉴权的指示。An indication for indicating that network slice authentication needs to be performed on the target service parameter.
  23. 根据权利要求16所述的方法,其特征在于,所述服务器向统一数据网元发送凭证成功推送指示,包括:The method according to claim 16, wherein the server sends an indication that the certificate is successfully pushed to the unified data network element, including:
    所述服务器向网络开放网元发送凭证成功推送指示。The server sends an indication that the certificate is successfully pushed to the open network element.
  24. 根据权利要求19所述的方法,其特征在于,所述服务器向统一数据网元发送第一终端标识,包括:The method according to claim 19, wherein the server sends the first terminal identifier to the unified data network element, comprising:
    所述服务器通过网络开放网元向所述统一数据网元发送所述第一终端标识。The server sends the first terminal identifier to the unified data network element through an open network element.
  25. 一种签约更新的方法,包括:A method for subscription renewal, comprising:
    网络开放网元获取凭证成功推送指示;The network open network element obtains the certificate and successfully pushes the indication;
    所述网络开放网元向统一数据网元发送所述凭证成功推送指示;The network open network element sends the certificate push indication to the unified data network element;
    其中,所述凭证成功推送指示用于指示:目标业务参数对应的凭证已成功推送至目标终端。Wherein, the credential push success indication is used to indicate that the credential corresponding to the target service parameter has been successfully pushed to the target terminal.
  26. 根据权利要求25所述的方法,其中,所述凭证成功推送指示包括所述目标业务参数。The method according to claim 25, wherein the credential push success indication includes the target service parameter.
  27. 根据权利要求26所述的方法,其中,所述目标业务参数包括以下至少之一:DNN,S-NSSAI。The method according to claim 26, wherein the target service parameters include at least one of the following: DNN, S-NSSAI.
  28. 根据权利要求25所述的方法,其中,所述凭证成功推送指示还包括:所述目标业务参数对应的凭证。The method according to claim 25, wherein the indication of successful push of the credential further includes: the credential corresponding to the target service parameter.
  29. 根据权利要求26所述的方法,其中,所述凭证成功推送指示还包括第一鉴权指示;The method according to claim 26, wherein the credential successfully pushed indication further comprises a first authentication indication;
    其中,所述第一鉴权指示包括以下至少之一:Wherein, the first authentication indication includes at least one of the following:
    用于指示需要对所述目标业务参数进行二次鉴权的指示,An indication for indicating that the target service parameter needs to be authenticated twice,
    用于指示需要对所述目标业务参数进行网络切片鉴权的指示。An indication for indicating that network slice authentication needs to be performed on the target service parameter.
  30. 根据权利要求26所述的方法,其中,所述方法还包括:The method according to claim 26, wherein said method further comprises:
    所述网络开放网元获取第一终端标识;The network opening network element acquires the first terminal identifier;
    所述网络开放网元向所述统一数据网元发送所述第一终端标识。The network open network element sends the first terminal identifier to the unified data network element.
  31. 根据权利要求30所述的方法,其中,所述网络开放网元获取第一终端标识,包括:The method according to claim 30, wherein said network opening network element acquiring the first terminal identifier comprises:
    所述网络开放网元接收所述目标终端的目标地址和凭证成功推送指示,所述目标地址包括所述目标终端的IP地址或者所述目标终端的MAC地址;The network opening network element receives a target address of the target terminal and a certificate push indication, where the target address includes the IP address of the target terminal or the MAC address of the target terminal;
    所述网络开放网元获取所述目标地址对应的第二终端标识。The network opening network element acquires the second terminal identifier corresponding to the target address.
  32. 根据权利要求31所述的方法,其中,所述网络开放网元获取所述目标地址对应的第二终端标识,包括:The method according to claim 31, wherein the network opening network element obtaining the second terminal identifier corresponding to the target address comprises:
    所述网络开放网元向策略控制网元发送所述目标终端的目标地址;The network opening network element sends the target address of the target terminal to the policy control network element;
    所述网络开放网元接收来自所述策略控制网元的所述目标地址对应的第二终端标识。The network opening network element receives the second terminal identifier corresponding to the target address from the policy control network element.
  33. 根据权利要求31所述的方法,其中,所述第一终端标识包括以下至少之一:所述目标终端的IP地址,所述目标终端的MAC地址,所述目标终端的IMSI,所述目标终端的SUPI,所述目标终端的MSISDN,所述目标终端的GPSI。The method according to claim 31, wherein the first terminal identifier includes at least one of the following: the IP address of the target terminal, the MAC address of the target terminal, the IMSI of the target terminal, the target terminal SUPI, MSISDN of the target terminal, GPSI of the target terminal.
  34. 根据权利要求32或33所述的方法,其中,所述第二终端标识包括以下至少之一:所述目标终端的IMSI,所述目标终端的SUPI,所述目标终端的MSISDN,所述目标终端的GPSI。The method according to claim 32 or 33, wherein the second terminal identifier includes at least one of the following: the IMSI of the target terminal, the SUPI of the target terminal, the MSISDN of the target terminal, the target terminal GPSI.
  35. 一种签约更新的方法,包括:A method for subscription renewal, comprising:
    策略控制网元获取目标终端的目的地址,所述目的地址包括所述目标终端的IP地址或者所述目标终端的MAC地址;The policy control network element acquires the destination address of the target terminal, where the destination address includes the IP address of the target terminal or the MAC address of the target terminal;
    所述策略控制网元确定所述目标地址对应的第二终端标识;The policy control network element determines a second terminal identifier corresponding to the target address;
    所述策略控制网元向所述网络开放网元或统一数据网元发送所述第二终端标识;The policy control network element sends the second terminal identifier to the open network element or unified data network element;
    其中,所述第二终端标识用于更新所述第二终端标识指示的终端的签约。Wherein, the second terminal identifier is used to update the subscription of the terminal indicated by the second terminal identifier.
  36. 根据权利要求35所述的方法,其中,所述第二终端标识包括以下至少之一:所述目标终端的IMSI,所述目标终端的SUPI,所述目标终端的MSISDN,所述目标终端的GPSI。The method according to claim 35, wherein the second terminal identifier includes at least one of the following: IMSI of the target terminal, SUPI of the target terminal, MSISDN of the target terminal, GPSI of the target terminal .
  37. 一种签约更新的装置,包括:A device for subscription renewal, comprising:
    接收模块,用于接收凭证成功推送指示;所述凭证成功推送指示用于指示:所述目标业务参数对应的凭证已成功推送至目标终端;A receiving module, configured to receive an indication of successful credential push; the successful credential push indication is used to indicate that the credential corresponding to the target service parameter has been successfully pushed to the target terminal;
    执行模块,用于在所述目标终端的签约中激活所述目标业务参数。An execution module, configured to activate the target service parameter in the subscription of the target terminal.
  38. 一种签约更新的装置,包括:A device for subscription renewal, comprising:
    发送模块,用于向统一数据网元发送凭证成功推送指示;A sending module, configured to send an indication of successful credential push to the unified data network element;
    其中,所述凭证成功推送指示用于指示:所述目标业务参数对应的凭证已成功推送至目标终端。Wherein, the credential successfully pushed indication is used to indicate that the credential corresponding to the target service parameter has been successfully pushed to the target terminal.
  39. 一种签约更新的装置,包括:A device for subscription renewal, comprising:
    执行模块,用于获取凭证成功推送指示;Executing the module, used to obtain the successful push indication of the credential;
    发送模块,用于向统一数据网元发送所述执行模块获取到的所述凭证成功推送指示;A sending module, configured to send the successful push indication of the credential obtained by the execution module to a unified data network element;
    其中,所述凭证成功推送指示用于指示:所述目标业务参数对应的凭证已成功推送至目标终端。Wherein, the credential successfully pushed indication is used to indicate that the credential corresponding to the target service parameter has been successfully pushed to the target terminal.
  40. 一种签约更新的装置,包括:A device for subscription renewal, comprising:
    执行模块,用于获取目标终端的目的地址,所述目的地址包括所述目标终端的IP地址或者所述目标终端的MAC地址;An execution module, configured to obtain a destination address of the target terminal, where the destination address includes the IP address of the target terminal or the MAC address of the target terminal;
    所述执行模块,还用于确定所述目标地址对应的第二终端标识;The execution module is further configured to determine a second terminal identifier corresponding to the target address;
    传输模块,还用于向所述网络开放网元或统一数据网元发送所述第二终端标识;The transmission module is further configured to send the second terminal identifier to the network open network element or unified data network element;
    其中,所述第二终端标识用于更新所述第二终端标识指示的终端的签约。Wherein, the second terminal identifier is used to update the subscription of the terminal indicated by the second terminal identifier.
  41. 一种统一数据网元,包括处理器,存储器及存储在所述存储器上并可在所述处理器上运行的程序或指令,所述程序或指令被所述处理器执行时实现如权利要求1至15任一项所述的签约更新的方法的步骤。A unified data network element, comprising a processor, a memory, and a program or instruction stored in the memory and operable on the processor, when the program or instruction is executed by the processor, the claim 1 is realized The steps of the subscription renewal method described in any one of 15 to 15.
  42. 一种服务器,包括处理器,存储器及存储在所述存储器上并可在所述处理器上运行的程序或指令,所述程序或指令被所述处理器执行时实现如权利要求16至24任一项所述的签约更新的方法的步骤。A server, comprising a processor, a memory, and a program or instruction stored on the memory and operable on the processor, when the program or instruction is executed by the processor, any of claims 16 to 24 can be implemented. A step in the method for renewal of a subscription.
  43. 一种网络开放网元,包括处理器,存储器及存储在所述存储器上并可在所述处理器上运行的程序或指令,所述程序或指令被所述处理器执行时实现如权利要求25至34任一项所述的签约更新的方法的步骤。An open network element of a network, comprising a processor, a memory, and a program or instruction stored on the memory and operable on the processor, when the program or instruction is executed by the processor, claim 25 is realized Steps of the subscription renewal method described in any one of 34 to 34.
  44. 一种策略控制网元,包括处理器,存储器及存储在所述存储器上并可在所述处理器上运行的程序或指令,所述程序或指令被所述处理器执行时实现如权利要求35 或36所述的签约更新的方法的步骤。A policy control network element, comprising a processor, a memory, and a program or instruction stored in the memory and operable on the processor, when the program or instruction is executed by the processor, the claim 35 is implemented Or the steps in the method for updating the subscription described in 36.
  45. 一种可读存储介质,所述可读存储介质上存储程序或指令,所述程序或指令被处理器执行时实现如权利要求1至15任一项所述的签约更新的方法,或者实现如权利要求16至24任一项所述的签约更新的方法,或者实现如权利要求25至34任一项所述的签约更新的方法,或者实现如权利要求35或36所述的签约更新的方法的步骤。A readable storage medium, on which a program or instruction is stored, and when the program or instruction is executed by a processor, the subscription renewal method according to any one of claims 1 to 15 is realized, or the method as described in any one of claims 1 to 15 is realized, or The subscription renewal method according to any one of claims 16 to 24, or the subscription renewal method according to any one of claims 25 to 34, or the subscription renewal method according to claim 35 or 36 A step of.
PCT/CN2022/130604 2021-11-10 2022-11-08 Subscription update method and device, network element, and medium WO2023083174A1 (en)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN202111327554.9 2021-11-10
CN202111327554.9A CN116112925A (en) 2021-11-10 2021-11-10 Subscription updating method, device, network element and medium

Publications (1)

Publication Number Publication Date
WO2023083174A1 true WO2023083174A1 (en) 2023-05-19

Family

ID=86260259

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2022/130604 WO2023083174A1 (en) 2021-11-10 2022-11-08 Subscription update method and device, network element, and medium

Country Status (2)

Country Link
CN (1) CN116112925A (en)
WO (1) WO2023083174A1 (en)

Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2020036882A1 (en) * 2018-08-13 2020-02-20 Intel Corporation Local area network (lan) service in fifth generation (5g) systems
CN113490214A (en) * 2021-07-15 2021-10-08 北京京东乾石科技有限公司 Method, apparatus, system, server and medium for network connection

Patent Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2020036882A1 (en) * 2018-08-13 2020-02-20 Intel Corporation Local area network (lan) service in fifth generation (5g) systems
CN113490214A (en) * 2021-07-15 2021-10-08 北京京东乾石科技有限公司 Method, apparatus, system, server and medium for network connection

Non-Patent Citations (2)

* Cited by examiner, † Cited by third party
Title
CHINA MOBILE, OPPO: "NEF and AF service updates for PNI-NPN credentials remote provisioning", 3GPP TSG-SA WG2 MEETING #143-E, S2-2100552, 18 February 2021 (2021-02-18), XP052172883 *
CHINA TELECOM: "KI #4, Update interim conclusions on NG-RAN impact", SA WG2 MEETING #S2-141E E-MEETING, S2-2007356, 2 October 2020 (2020-10-02), XP051938396 *

Also Published As

Publication number Publication date
CN116112925A (en) 2023-05-12

Similar Documents

Publication Publication Date Title
CN109842906B (en) Communication method, device and system
CN111901135B (en) Data analysis method and device
WO2018157439A1 (en) Service processing method and device
CN110881185B (en) Communication method and device
WO2020147030A1 (en) Cell registration method and terminal device
CN103812900A (en) Data synchronization method, device and system
US20220225095A1 (en) External Authentication Method, Communication Apparatus, and Communication System
WO2022095850A1 (en) Method and apparatus for establishing policy association, and terminal and network-side device
CN112954768B (en) Communication method, device and system
WO2019196963A1 (en) Method and device for accessing network slice, storage medium, electronic device
WO2023071836A1 (en) Communication method and apparatus
WO2023083174A1 (en) Subscription update method and device, network element, and medium
WO2024061205A1 (en) Parameter acquisition method and apparatus, first network function, and second network function
WO2023143423A1 (en) Information acquisition, storage and reporting method and device, terminal, and network function
US10595324B2 (en) Method and apparatus for server-based scheduling of network traffic to a mobile device
WO2024022182A1 (en) Information query method and apparatus, terminal, and network side device
WO2023216960A1 (en) Data processing method and apparatus, core network node, electronic device, and storage medium
WO2023125870A1 (en) Communication method and apparatus, communication device, and readable storage medium
WO2023020465A1 (en) Address conversion control method and apparatus, and terminal and network element
WO2023179595A1 (en) Session channel establishment method and apparatus for non-3gpp device, and device
WO2023143441A1 (en) Notification method, first network function, and second network function
EP4311280A1 (en) Communication method and device
CN117858083A (en) Method and device for authenticating equipment in personal networking and communication equipment
CN117500091A (en) PIN device registration method and device and communication device
CN116567593A (en) Notification method, first network function and second network function

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 22891968

Country of ref document: EP

Kind code of ref document: A1