白丝美女被狂躁免费视频网站,500av导航大全精品,yw.193.cnc爆乳尤物未满,97se亚洲综合色区,аⅴ天堂中文在线网官网

Authentication method, device, and system

專利號
US11503467B2
公開日期
2022-11-15
申請人
HUAWEI TECHNOLOGIES CO., LTD.(CN Shenzhen)
發(fā)明人
Hua Li; Chengdong He; Bo Zhang
IPC分類
H04W12/06; H04W8/02; H04W12/63; H04L12/28
技術(shù)領(lǐng)域
network,rg,gateway,element,ng,virtual,udm,key,in,3gpp
地域: Guangdong

摘要

Example authentication methods, devices, and systems are provided, where those example can be used to verify validity of access location information of a next generation-residential gateway (NG-RG) in a fixed-mobile convergence architecture. One example method includes a network device receiving first link information that is used to represent an access location of a residential gateway, and the network device obtaining second link information of the residential gateway. When the first link information matches partial or all information of the second link information, or when the first link information matches partial or all information of one link information of the second link information, the network device verifies validity of the access location of the residential gateway.

說明書

CROSS-REFERENCE TO RELATED APPLICATIONS

This application is a continuation of International Application No. PCT/CN2019/101941, filed on Aug. 22, 2019, which claims priority to Chinese Patent Application No. 201811090292.7, filed on Sep. 18, 2018. The disclosures of the aforementioned applications are hereby incorporated by reference in their entireties.

TECHNICAL FIELD

This application relates to the field of communications technologies, and in particular, to an authentication method, a device, and a system.

BACKGROUND

In a fixed-mobile convergence (namely, convergence of a fixed network and a mobile network) network architecture jointly defined by the 3rd generation partnership project (3GPP) and the fixed network forum, a next generation-residential gateway (NG-RG) as a residential gateway can access a 5th generation (5G) mobile core network by using a wireline 5G access network (W-5GAN) device and a 5G access gateway function (5G-AGF) network element. In a process of accessing the 5G mobile core network by the NG-RG, the NG-RG verifies validity of a universal subscriber identity module (USIM) by using a 5G-authentication and key agreement (5G-AKA) authentication algorithm or an extensible authentication protocol (EAP) authentication algorithm (for example, an EAP-AKA authentication algorithm or an improved EAP-AKA (EAP-AKA′) authentication algorithm). In addition, considering that an access location of an NG-RG in a fixed network generally needs to be fixed, currently, validity of access location information of the NG-RG needs to be verified while validity of a USIM is verified.

權(quán)利要求

1
What is claimed is:1. An authentication method, wherein the method comprises:receiving, by a mobility management network device, first link information, wherein the first link information is used to represent an access location of a residential gateway;obtaining, by the mobility management network device, subscription information of the residential gateway, wherein the subscription information of the residential gateway comprises second link information of the residential gateway and second virtual interface information of the residential gateway, the second link information is used to represent a location of the residential gateway, and the second virtual interface information is used to represent a service type of the residential gateway; andverifying, by the mobility management network device, validity of the access location of the residential gateway based on the first link information and the second link information;receiving, by the mobility management network device, first virtual interface information, wherein the first virtual interface information is used to represent a current service type of the residential gateway; andverifying, by the mobility management network device, validity of a current service of the residential gateway based on the first virtual interface information and the second virtual interface information; andsending, by the mobility management network device, a non-access stratum security mode command (NAS SMC) request message to the residential gateway, wherein the NAS SMC request message comprises the first virtual interface information, and the first virtual interface information is used by the residential gateway to verify whether the first virtual interface information is modified on an air interface.2. The method according to claim 1, wherein there are a plurality of pieces of second link information; andthe verifying, by the mobility management network device, validity of the access location of the residential gateway based on the first link information and the second link information comprises:if the first link information matches any one of the plurality of pieces of second link information, determining, by the mobility management network device, that the access location of the residential gateway is valid.3. The method according to claim 1, wherein there are a plurality of pieces of second virtual interface information; andthe verifying, by the mobility management network device, validity of a current service of the residential gateway based on the first virtual interface information and the second virtual interface information comprises:if the first virtual interface information matches any one of the plurality of pieces of second virtual interface information, determining, by the mobility management network device, that the current service of the residential gateway is valid.4. A mobility management network device, wherein the mobility management network device comprises at least one processor configured to execute instructions stored in a memory, wherein the instructions instruct the at least one processor to:receive first link information, wherein the first link information is used to represent an access location of a residential gateway;obtain subscription information of the residential gateway, wherein the subscription information of the residential gateway comprises second link information of the residential gateway and second virtual interface information of the residential gateway, the second link information is used to represent a location of the residential gateway, and the second virtual interface information is used to represent a service type of the residential gateway;verify validity of the access location of the residential gateway based on the first link information and the second link information; andreceive first virtual interface information, wherein the first virtual interface information is used to represent a current service type of the residential gateway;verify validity of a current service of the residential gateway based on the first virtual interface information and the second virtual interface information; andsend a non-access stratum security mode command (NAS SMC) request message to the residential gateway, wherein the NAS SMC request message comprises the first virtual interface information, and the first virtual interface information is used by the residential gateway to verify whether the first virtual interface information is modified on an air interface.5. The mobility management network device according to claim 4, wherein there are a plurality of pieces of second link information; andthe instructions instruct the at least one processor to verify validity of the access location of the residential gateway based on the first link information and the second link information comprises:if the first link information matches any one of the plurality of pieces of second link information, determine that the access location of the residential gateway is valid.6. The mobility management network device according to claim 4, wherein there are a plurality of pieces of second virtual interface information; andthe instructions instruct the at least one processor to verify validity of the current service of the residential gateway based on the first virtual interface information and the second virtual interface information comprises:if the first virtual interface information matches any one of the plurality of pieces of second virtual interface information, determine that the current service of the residential gateway is valid.
微信群二維碼
意見反饋