CN101959190A - Method, device and system for controlling access to a cell - Google Patents
Method, device and system for controlling access to a cell Download PDFInfo
- Publication number
- CN101959190A CN101959190A CN2009101087533A CN200910108753A CN101959190A CN 101959190 A CN101959190 A CN 101959190A CN 2009101087533 A CN2009101087533 A CN 2009101087533A CN 200910108753 A CN200910108753 A CN 200910108753A CN 101959190 A CN101959190 A CN 101959190A
- Authority
- CN
- China
- Prior art keywords
- terminal
- authentication
- cell
- network
- algorithm
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Pending
Links
Images
Landscapes
- Mobile Radio Communication Systems (AREA)
Abstract
Description
技术领域technical field
本发明涉及通信领域,尤其涉及控制接入小区的方法、装置和系统。The present invention relates to the communication field, in particular to a method, device and system for controlling access to a cell.
背景技术Background technique
驻留在GERAN(GSM EDGE Radio Access Network,GSM EDGE无线接入网)网络的终端在执行小区重选时,如果信号最强的UTRAN(Universal TerrestrialRadio Access Network,全球陆地无线接入网)小区因为属于禁止漫游的位置区列表(List of forbidden Location Areas for roaming)或非等效的注册PLMN(Public Land Mobile-communication Network,公众陆地移动通信网)而使终端不适合接入该小区时,终端就会在最长达20分钟的时间内禁止向该小区所在的频点上的所有的小区进行重选。同样,当终端驻留在GERAN网络时,信号最强的EUTRAN(Evolved Universal Terrestrial Radio Access Network,演进的全球陆地无线接入网)小区因为属于禁止漫游的跟踪区列表(List offorbidden Tracking Areas for roaming)或非等效的注册PLMN而使终端不适合接入该小区时,终端就会在最长达20分钟的时间内禁止向该小区所在的频点上的所有的小区进行重选。When a terminal residing in the GERAN (GSM EDGE Radio Access Network, GSM EDGE Radio Access Network) network performs cell reselection, if the UTRAN (Universal Terrestrial Radio Access Network, Global Terrestrial Radio Access Network) cell with the strongest signal When the list of forbidden Location Areas for roaming (List of forbidden Location Areas for roaming) or non-equivalent registered PLMN (Public Land Mobile-communication Network, public land mobile communication network) makes the terminal unsuitable for accessing the cell, the terminal will Reselection to all cells on the frequency point where the cell is located is prohibited within a time period of up to 20 minutes. Similarly, when the terminal resides on the GERAN network, the EUTRAN (Evolved Universal Terrestrial Radio Access Network, Evolved Global Terrestrial Radio Access Network) cell with the strongest signal belongs to the tracking area list (List offorbidden Tracking Areas for roaming) or a non-equivalent registered PLMN and the terminal is not suitable for accessing the cell, the terminal will be prohibited from reselecting to all the cells on the frequency point where the cell is located for a maximum of 20 minutes.
驻留在UTRAN/EUTRAN网络的终端也存在类似的机制,不同之处在于,被禁止重选到对应频点的时间是5分钟。A similar mechanism exists for terminals residing in the UTRAN/EUTRAN network, the difference is that the time for being prohibited from reselecting to the corresponding frequency point is 5 minutes.
在当前GERAN/UTRAN/E-UTRAN宏小区覆盖范围内会部署一种称作CSG(Closed Subscriber Group)小区的家庭基站小区,采用UTRAN接入技术的家庭基站称为Home NodeB,简称HNB,采用EUTRAN接入技术的家庭基站称为HomeeNodeB,简称HeNB。对于HNB或者HeNB,仅有少数签约的终端能够接入的,称为封闭接入(Closed Access),这类小区称为CSG小区;对于少数签约的终端能够优先接入及优先保障QoS(Quality of Service,业务质量),在保证签约用户的接入及其QoS前提下对其他终端也可以接入,称为混合接入(HybridAccess),这类小区称为Hybrid(混合)小区,对于少数签约的终端将Hybrid小区视为CSG小区,对于其他终端将Hybrid小区视为宏小区。A home base station cell called CSG (Closed Subscriber Group) cell will be deployed within the coverage of the current GERAN/UTRAN/E-UTRAN macro cell. The home base station using UTRAN access technology is called Home NodeB, or HNB for short, and uses EUTRAN The home base station of the access technology is called HomeeNodeB, HeNB for short. For HNB or HeNB, only a small number of signed terminals can access it, which is called closed access (Closed Access), and this type of cell is called CSG cell; for a small number of signed terminals, priority access and priority guarantee of QoS (Quality of Service, quality of service), under the premise of ensuring the access of subscribers and their QoS, other terminals can also access, which is called hybrid access (HybridAccess), and this type of cell is called Hybrid (hybrid) cell, for a small number of contracted The terminal regards the Hybrid cell as a CSG cell, and regards the Hybrid cell as a macro cell for other terminals.
在一个宏小区覆盖范围内部署了数量众多的CSG小区,这些CSG小区可能部署在专用频点也可能和宏小区和/或Hybrid小区部署在相同频点,而对于给定的终端,只能成功接入极少数CSG小区,或者都不能接入。目前,如果一个终端试图接入一个CSG小区,而该终端不是该CSG小区的签约用户,该终端不能通过网络的接入控制,那么,终端根据网络接入控制的返回消息,会将该CSG的位置区加入到禁止漫游的位置区列表中,或者跟踪区加入到禁止漫游的跟踪区列表中,于是,该终端就会被禁止接入到该CSG小区所在的频点的其他小区(例如,宏小区、Hybrid小区、签约的CSG小区)最长达20分钟(该终端驻留在GERAN网络时)或者5分钟(该终端驻留在UTRAN网络或者EUTRAN网络时)。A large number of CSG cells are deployed within the coverage area of a macro cell. These CSG cells may be deployed on dedicated frequency points or may be deployed on the same frequency point as macro cells and/or hybrid cells. For a given terminal, only Access to very few CSG cells, or none of them. At present, if a terminal tries to access a CSG cell, but the terminal is not a subscriber of the CSG cell, and the terminal cannot pass the access control of the network, then, according to the return message of the network access control, the terminal will The location area is added to the list of location areas prohibited from roaming, or the tracking area is added to the list of tracking areas prohibited from roaming, so the terminal will be prohibited from accessing other cells of the frequency point where the CSG cell is located (for example, macro cell, Hybrid cell, subscribed CSG cell) up to 20 minutes (when the terminal resides on the GERAN network) or 5 minutes (when the terminal resides on the UTRAN network or EUTRAN network).
由此看出,试图接入CSG小区而被拒绝,导致最长20分钟或者5分钟不能接入到对应频点的所有小区,这个问题在GERAN中称为20分钟问题。由于在UTRAN/EUTRAN网络中这个问题同样存在,只是禁止的时间不同,在此,统一称为20分钟问题。It can be seen from this that if the user attempts to access the CSG cell but is rejected, it will not be able to access all the cells of the corresponding frequency point for a maximum of 20 minutes or 5 minutes. This problem is called the 20-minute problem in GERAN. Since this problem also exists in the UTRAN/EUTRAN network, but the prohibition time is different, here, it is collectively referred to as the 20-minute problem.
由于在一个宏小区内部署了数量众多的CSG小区,而只有极少数或者没有CSG小区允许终端接入,CSG小区数量众多会使得终端频繁试图接入CSG小区,而该宏小区中只有极少数或者没有CSG小区允许终端接入,由于20分钟问题使得该终端在长时间内难以获得CSG部署所在频点的其他小区的服务。Since a large number of CSG cells are deployed in a macro cell, and only a few or no CSG cells allow terminals to access, the large number of CSG cells will make terminals frequently try to access CSG cells, and only a few or no CSG cells in the macro cell No CSG cell allows the terminal to access. Due to the 20-minute problem, it is difficult for the terminal to obtain services from other cells at the frequency point where the CSG is deployed for a long time.
发明内容Contents of the invention
本发明实施例提供了控制接入小区的方法、装置和系统。采用如下技术方案:Embodiments of the present invention provide a method, device and system for controlling access to a cell. Adopt the following technical solutions:
一种控制接入小区的方法,包括:接收第一终端在第一小区发送的第一消息,所述第一小区包括CSG小区或混合小区,所述第一消息表示所述第一终端向所述第一小区所属的网络发起位置注册或者业务请求;对应接收所述第一消息,确定所述第一终端为老终端,所述老终端为不能识别所述第一小区的终端并且所述老终端的用户不是所述第一小区的签约用户;根据所述第一终端为所述老终端,使用第一算法产生鉴权参数,并将所述鉴权参数发送给所述第一终端指示所述第一终端根据所述鉴权参数对所述第一小区所属的网络进行鉴权;其中,所述第一算法用于使所述第一终端根据所述鉴权参数对所述第一小区所属的网络进行鉴权的结果为鉴权失败,所述鉴权失败禁止所述第一终端在预设时间内接入所述第一小区。A method for controlling access to a cell, comprising: receiving a first message sent by a first terminal in a first cell, the first cell includes a CSG cell or a hybrid cell, and the first message indicates that the first terminal sends a message to the first cell. The network to which the first cell belongs initiates location registration or a service request; corresponding to receiving the first message, it is determined that the first terminal is an old terminal, the old terminal is a terminal that cannot identify the first cell and the old The user of the terminal is not a subscriber of the first cell; according to the fact that the first terminal is the old terminal, use a first algorithm to generate an authentication parameter, and send the authentication parameter to the first terminal to indicate the The first terminal authenticates the network to which the first cell belongs according to the authentication parameter; wherein the first algorithm is used to enable the first terminal to authenticate the first cell according to the authentication parameter The result of the authentication performed by the network to which it belongs is an authentication failure, and the authentication failure prohibits the first terminal from accessing the first cell within a preset time.
一种装置,该装置位于网络侧,该装置包括:消息接收模块,用于接收第一终端在第一小区发送的第一消息,所述第一小区包括CSG小区或混合小区,所述第一消息表示所述第一终端向所述第一小区所属的网络发起位置注册或者业务请求;终端类型确定模块,对应所述消息接收模块接收的所述第一消息,用于确定所述第一终端为老终端,所述老终端为不能识别所述第一小区并且所述老终端的用户不是所述第一小区的签约用户;鉴权参数生成和发送模块,用于根据所述终端类型确定模块确定所述第一终端为所述老终端,使用第一算法产生鉴权参数,并将所述鉴权参数发送给所述第一终端指示所述第一终端根据所述鉴权参数对所述第一小区所属的网络进行鉴权;其中,所述第一算法用于使所述第一终端根据所述鉴权参数对所述第一小区所属的网络进行鉴权的结果为鉴权失败,所述鉴权失败禁止所述第一终端在预设时间内接入所述第一小区。An apparatus, the apparatus is located on the network side, and the apparatus includes: a message receiving module, configured to receive a first message sent by a first terminal in a first cell, the first cell includes a CSG cell or a hybrid cell, and the first The message indicates that the first terminal initiates a location registration or a service request to the network to which the first cell belongs; the terminal type determining module corresponds to the first message received by the message receiving module, and is used to determine the first terminal It is an old terminal, the old terminal cannot identify the first cell and the user of the old terminal is not a subscriber of the first cell; the authentication parameter generation and sending module is used to determine the module according to the terminal type determining that the first terminal is the old terminal, using a first algorithm to generate an authentication parameter, and sending the authentication parameter to the first terminal to instruct the first terminal to perform authentication on the performing authentication on the network to which the first cell belongs; wherein the first algorithm is used to make the result of the first terminal authenticating the network to which the first cell belongs according to the authentication parameter be an authentication failure, The authentication failure prohibits the first terminal from accessing the first cell within a preset time.
一种通信系统,该通信系统包括:装置和第一终端,其中,所述装置用于接收所述第一终端在第一小区发送的第一消息,所述第一小区包括CSG小区或混合小区,所述第一消息表示所述第一终端向所述第一小区所属的网络发起位置注册或者业务请求;对应接收所述第一消息,所述装置确定所述第一终端为老终端,所述老终端为不能识别所述第一小区并且不是所述老终端的用户所述第一小区的签约用户;根据所述第一终端为所述老终端,所述装置使用第一算法产生鉴权参数,并将所述鉴权参数发送给所述第一终端指示所述第一终端根据所述鉴权参数对所述第一小区所属的网络进行鉴权;其中,所述第一算法用于使所述第一终端根据所述鉴权参数对所述第一小区所属的网络进行鉴权的结果为鉴权失败,所述鉴权失败禁止所述第一终端在预设时间内接入所述第一小区。A communication system, the communication system includes: a device and a first terminal, wherein the device is used to receive a first message sent by the first terminal in a first cell, and the first cell includes a CSG cell or a hybrid cell , the first message indicates that the first terminal initiates a location registration or service request to the network to which the first cell belongs; corresponding to receiving the first message, the device determines that the first terminal is an old terminal, so The old terminal cannot identify the first cell and is not a user of the old terminal and is a subscriber of the first cell; according to the fact that the first terminal is the old terminal, the device uses a first algorithm to generate an authentication parameter, and send the authentication parameter to the first terminal to instruct the first terminal to authenticate the network to which the first cell belongs according to the authentication parameter; wherein, the first algorithm is used for Making the first terminal authenticate the network to which the first cell belongs according to the authentication parameter as an authentication failure, and the authentication failure prohibits the first terminal from accessing the network within a preset time. Describe the first district.
本发明实施例提供的控制接入小区方法、装置和系统,针对包括CSG小区或者混合小区的第一小区,在不能识别该第一小区并且不是该第一小区的签约用户的第一终端进入该第一小区之后,该第一终端向网络侧发起位置注册或者业务请求,相应的,网络侧根据第一算法产生鉴权参数并向该第一终端发送鉴权参数,第一终端根据鉴权参数进行鉴权计算,向网络侧返回鉴权消息。由于网络侧通过第一算法对鉴权参数进行设置,使得第一终端能够返回鉴权失败,这样第一终端就可以判断对网络鉴权失败,在一定时间内不再尝试接入该第一小区,也就避免了20分钟问题。The method, device, and system for controlling access to a cell provided by the embodiments of the present invention aim at a first cell including a CSG cell or a hybrid cell, when a first terminal that cannot identify the first cell and is not a subscriber of the first cell enters the cell After the first cell, the first terminal initiates a location registration or service request to the network side. Correspondingly, the network side generates authentication parameters according to the first algorithm and sends the authentication parameters to the first terminal. Perform authentication calculation and return an authentication message to the network side. Since the network side sets the authentication parameters through the first algorithm, the first terminal can return the authentication failure, so that the first terminal can judge that the network authentication fails, and no longer try to access the first cell within a certain period of time , which avoids the 20 minute problem.
附图说明Description of drawings
为了更清楚地说明本发明实施例或现有技术中的技术方案,下面将对实施例或现有技术描述中所需要使用的附图作简单地介绍,显而易见地,下面描述中的附图仅仅是本发明的一些实施例,对于本领域普通技术人员来讲,在不付出创造性劳动性的前提下,还可以根据这些附图获得其他的附图。In order to more clearly illustrate the technical solutions in the embodiments of the present invention or the prior art, the following will briefly introduce the drawings that need to be used in the description of the embodiments or the prior art. Obviously, the accompanying drawings in the following description are only These are some embodiments of the present invention. For those skilled in the art, other drawings can also be obtained according to these drawings without any creative effort.
图1显示了一种包含终端和网络侧的系统示意图;Figure 1 shows a schematic diagram of a system including a terminal and a network side;
图2显示了一个实施例中提供的控制接入CSG小区方法流程示意图;FIG. 2 shows a schematic flow diagram of a method for controlling access to a CSG cell provided in an embodiment;
图3显示了一个实施例中提供的一种装置模块图,该装置位于网络侧;Figure 3 shows a block diagram of a device provided in an embodiment, the device is located on the network side;
图4显示了一个实施例中提供的一种通信系统的示意图。Fig. 4 shows a schematic diagram of a communication system provided in an embodiment.
具体实施方式Detailed ways
图1以举例的方式显示了一种系统1000的示意图,该系统1000包括第一终端1006和网络侧1002。系统1000可以包括一个或者多个终端1006。FIG. 1 shows a schematic diagram of a
第一终端1006为一种终端。“终端”这个术语可以为任何便携的或者可移动的设备,该设备可以与一个或者多个无线通信设备或者无线通信网络进行无线信号的接收或者发送。例如,该终端可以为无线设备(Radio device),蜂窝电话设备(Cellular telephone device),计算机设备(Computing device),个人通信设备(Personal communication system device)或者其他任何装备无线通信的可移动设备。The
网络侧1002包括第一小区1004。网络侧1002并不局限于只有一个第一小区1004,可以包括多个第一小区1004。第一小区可以是CSG小区或是混合小区,也可以是家庭基站小区。The
“网络侧”这个术语可以为一种位于网络侧的装置。该装置可以为家用基站、或家用基站网关、或核心网中的移动交换中心、或核心网中的服务通用分组无线业务支持节点中的一个或者一个以上的组合。The term "network side" may refer to a device located on the network side. The device may be one or a combination of a home base station, a home base station gateway, a mobile switching center in the core network, or a serving general packet radio service support node in the core network.
第一终端1006可以与网络侧1002进行无线信号的接收或者发送。系统1000可以位于GERAN网络、UTRAN网络或者E-UTRAN网络中,第一小区1004位于GERAN网络、UTRAN网络或者E-UTRAN网络的宏小区覆盖范围内。The
为了便于描述,此处采用以CSG小区为例子进行说明。For ease of description, a CSG cell is used as an example for illustration.
对于支持EUTRAN网络的终端,即可能接入HeNB CSG小区的终端,这种终端可以分为两类,一类是支持CSG最小集的终端,该类终端能识别CSG小区,这类终端无论在自主重选模式还是手动重选模式下,都不会试图接入HeNB的CSG小区,这样就不会发生20分钟问题;另一类是支持CSG能力的终端,这类终端在试图接入CSG小区时,如果试图接入不成功,网络将会返回新定义的原因值,避免20分钟问题。所以,对于支持EUTRAN网络的终端在试图接入HeNB的CSG小区时,不会发生20分钟问题。For terminals that support the EUTRAN network, that is, terminals that may access the HeNB CSG cell, such terminals can be divided into two categories, one is the terminal that supports the minimum set of CSG, and this type of terminal can identify the CSG cell. In reselection mode or manual reselection mode, neither will attempt to access the CSG cell of the HeNB, so that the 20-minute problem will not occur; the other type is a terminal that supports CSG capabilities. , if the attempt to access is unsuccessful, the network will return the newly defined reason value to avoid the 20-minute problem. Therefore, when a terminal supporting the EUTRAN network tries to access the CSG cell of the HeNB, the 20-minute problem will not occur.
对于支持UTRAN网络的并且可能接入HNB CSG小区的终端,如果是支持CSG最小集或支持CSG能力的终端,也不会出现20分钟问题。如果终端不能识别CSG小区并且该终端的用户不是该CSG小区的签约用户,当该终端进行接入CSG小区的重选尝试,该终端就会发生20分钟问题,本发明实施例中,为描述方便,可以称这类终端为“老终端”。对于老终端,如果试图接入HNB的CSG小区,网络会拒绝其接入,根据拒绝的原因值可能发生20分钟问题。For a terminal that supports the UTRAN network and may access the HNB CSG cell, if it supports the CSG minimum set or supports the CSG capability, the 20-minute problem will not occur. If the terminal cannot identify the CSG cell and the user of the terminal is not a subscriber of the CSG cell, when the terminal tries to reselect to access the CSG cell, the terminal will have a 20-minute problem. In the embodiment of the present invention, for the convenience of description , and this type of terminal can be called an "old terminal". For an old terminal, if it tries to access the CSG cell of the HNB, the network will reject its access, and a 20-minute problem may occur depending on the value of the reason for the rejection.
相应的,本发明实施例中所涉及的终端除特别说明外,都是指老终端。第一终端1006为老终端。Correspondingly, unless otherwise specified, the terminals involved in the embodiments of the present invention refer to old terminals. The
终端在重选或者选择到一个HNB的CSG小区后,可以通过AS(AccessStratum,接入层)流程也可以通过NAS(Non-Access Stratum,非接入层)流程进行接入控制。本发明实施例所提供的技术方案是在NAS层。通过NAS层触发接入控制的流程可以分为两类,一类是位置注册相关的流程,如位置更新(Location Updating)流程、GPRS的附着(Attach)流程、路由区更新(RoutingArea Updating)流程;另一类是与业务发起相关的流程,如Service Request(业务请求)流程、CM Service Request流程等。这两类NAS流程中,核心网都可能触发鉴权规程。如果终端(包括老终端和所有其他不会发生20分钟问题的终端)对网络进行鉴权时,终端对网络侧的鉴权不能通过时,即终端对网络侧鉴权失败时,则终端将当前小区禁止一段时间,在该段时间内不再尝试接入该小区。所以,可以通过在上述的两类NAS流程中,当终端不能识别该CSG小区并且不是该CSG小区的签约用户时,也即终端为第一终端1006时,网络侧可以触发鉴权流程,并特别设置鉴权流程的鉴权参数使得第一终端1006鉴权网络失败,这样第一终端1006将该CSG小区禁止一段时间,也就避免了20分钟问题。在目前的鉴权流程中,网络侧采用和第一终端1006约定的算法来设置鉴权参数,第一终端1006收到网络侧发送的鉴权参数后采用相同的算法来计算鉴权参数。在本发明实施例中,网络侧采用与第一终端1006约定的算法不同的一种特定算法来设置鉴权参数,可以称该特定算法为第一算法,而称网络侧与第一终端1006约定的算法为第二算法,网络侧使用该第一算法的目的在于使得第一终端1006使用鉴权参数对网络进行鉴权后的结果为鉴权失败,从而第一终端1006将该CSG小区禁止一段时间来避免20分钟问题。After the terminal reselects or selects a CSG cell of an HNB, it can perform access control through the AS (Access Stratum, access stratum) process or through the NAS (Non-Access Stratum, non-access stratum) process. The technical solutions provided by the embodiments of the present invention are at the NAS layer. The process of triggering access control through the NAS layer can be divided into two categories, one is the process related to location registration, such as the location update (Location Updating) process, GPRS Attach (Attach) process, routing area update (RoutingArea Updating) process; The other type is the process related to business initiation, such as Service Request (business request) process, CM Service Request process, etc. In both types of NAS processes, the core network may trigger authentication procedures. If the terminal (including the old terminal and all other terminals that will not have the 20-minute problem) authenticates the network, the terminal fails to pass the authentication on the network side, that is, when the terminal fails to authenticate the network side, the terminal will use the current cell Forbidden for a period of time, no more attempts to access the cell will be made within this period of time. Therefore, in the above two types of NAS processes, when the terminal cannot identify the CSG cell and is not a subscriber of the CSG cell, that is, when the terminal is the
下面结合以举例的方式所描述的实施例对控制接入小区的方法、装置和系统进行详细描述。显然,这些实施例仅仅是本发明的一部分实施例,而不是全部的实施例。基于这些实施例,本领域普通技术人员在没有付出创造性劳动前提下所获得的所有其他实施例,都属于本发明保护的范围。The method, device and system for controlling access to a cell will be described in detail below in conjunction with the embodiments described by way of example. Apparently, these embodiments are only some of the embodiments of the present invention, but not all of them. Based on these embodiments, all other embodiments obtained by persons of ordinary skill in the art without making creative efforts fall within the protection scope of the present invention.
本领域普通技术人员可以理解,本发明实施例中的方法可以采用不同的方式来实施。例如,这些方法可以采用硬件、软件或者硬件和软件结合的方式通过程序指令来实施。该程序指令在执行时,执行包括本发明实施例中的方法。对于采用硬件实施的方式,本发明实施例中的一个或者多个处理模块可以在一个或者多个电路模块中实施,该电路模块可以为专用集成电路(ApplicationSpecific Integrated Circuits,ASICs),数字信号处理器(Digital SignalProcessors,DSPs),数字信号处理设备(Digital Signal Processing Devices,DSPDs),可编程逻辑器件(Programmable Logic Devices,PLDs),现场可编程门阵列(Field Programmable Gate Arrays,FPGAs),处理器,控制器,微处理器,微控制器,或者其他进行设计并且可以用来执行本发明实施例中的方法的电子设备。Those skilled in the art can understand that the methods in the embodiments of the present invention can be implemented in different ways. For example, these methods may be implemented by program instructions in hardware, software, or a combination of hardware and software. When the program instructions are executed, the methods included in the embodiments of the present invention are executed. For the way of adopting hardware implementation, one or more processing modules in the embodiment of the present invention can be implemented in one or more circuit modules, and the circuit modules can be application specific integrated circuits (Application Specific Integrated Circuits, ASICs), digital signal processors (Digital Signal Processors, DSPs), digital signal processing devices (Digital Signal Processing Devices, DSPDs), programmable logic devices (Programmable Logic Devices, PLDs), field programmable gate arrays (Field Programmable Gate Arrays, FPGAs), processors, control processor, microprocessor, microcontroller, or other electronic devices that are designed and can be used to execute the methods in the embodiments of the present invention.
采用软件实施的方式,本发明实施例中的方法可以采用使用一个或者多个模块的方式来实施,例如,可以采用基于过程或者功能的模块化的方式来实现。这些程序指令可以实施在任何计算机或者机器可读介质。例如,该可读介质可以为内存、ROM、RAM、磁碟或者光盘等各种可以存储程序代码的介质。内存可以位于处理器内,也可以位于处理器外。此处,内存指的是任何类型的长期内存、短期内存、可擦除内存、不可擦除内存或者其他类型的内存。In the manner of software implementation, the methods in the embodiments of the present invention may be implemented using one or more modules, for example, may be implemented in a process-based or function-based modular manner. These program instructions can be embodied on any computer or machine readable medium. For example, the readable medium may be various mediums capable of storing program codes such as memory, ROM, RAM, magnetic disk or optical disk. Memory can be located inside the processor or outside the processor. Here, memory refers to any type of long-term memory, short-term memory, erasable memory, non-erasable memory, or other types of memory.
如图2所示,一个实施例中提供了一种控制接入小区的方法,该方法包括:As shown in Figure 2, an embodiment provides a method for controlling access to a cell, the method includes:
110、网络侧接收第一终端在第一小区发送的第一消息,第一小区包括CSG小区或混合小区,第一消息表示第一终端向网络侧发起位置注册或者业务请求。110. The network side receives a first message sent by the first terminal in the first cell, where the first cell includes a CSG cell or a hybrid cell, and the first message indicates that the first terminal initiates a location registration or a service request to the network side.
在第一终端进入第一小区之后,第一终端可以触发两类NAS流程,包括位置注册相关的流程和与业务发起相关的流程。第一终端向网络侧发起位置注册可以触发位置注册相关的流程,而第一终端向网络侧发起业务请求可以触发与业务发起相关的流程。位置注册相关流程包括位置更新流程、GPRS附着流程、路由区更新流程等。当第一终端进入第一小区时,第一终端可以向网络侧发送位置更新请求(Location Updating Request)消息;当终端进入第一小区并发起业务时,终端可以向网络侧发送呼叫管理业务请求消息(CM Service Request)消息。第一消息可以为下列消息中的任意一种消息:位置更新请求消息、路由区更新请求消息、业务请求消息、呼叫管理业务请求消息、附着请求消息、去附着请求消息和连接重建请求消息。After the first terminal enters the first cell, the first terminal may trigger two types of NAS processes, including a process related to location registration and a process related to service initiation. The location registration initiated by the first terminal to the network side may trigger a procedure related to location registration, and the service request initiated by the first terminal to the network side may trigger a procedure related to service initiation. Location registration-related procedures include location update procedure, GPRS attach procedure, routing area update procedure, etc. When the first terminal enters the first cell, the first terminal can send a location updating request (Location Updating Request) message to the network side; when the terminal enters the first cell and initiates a service, the terminal can send a call management service request message to the network side (CM Service Request) message. The first message may be any one of the following messages: location update request message, routing area update request message, service request message, call management service request message, attach request message, detach request message and connection reestablishment request message.
115、对应接收第一消息,网络侧确定第一终端为老终端。115. Corresponding to receiving the first message, the network side determines that the first terminal is an old terminal.
“老终端”这个术语可以定义为不能识别第一小区的终端并且该老终端的用户不是第一小区的签约用户。The term "old terminal" may be defined as a terminal that cannot identify the first cell and whose user is not a subscriber of the first cell.
网络侧收到第一消息后可以触发Identification(识别)流程。网络接收第一终端发送的第一消息,判断第一终端发送第一消息时位于第一小区,并根据第一终端能力得到第一终端的版本信息以及判断第一终端不能识别第一小区,根据第一终端的国际移动用户识别码判断第一终端的用户不是第一小区的签约用户。也即,此时网络侧确定第一终端为老终端。After receiving the first message, the network side may trigger an Identification (identification) process. The network receives the first message sent by the first terminal, determines that the first terminal is located in the first cell when sending the first message, and obtains the version information of the first terminal according to the capabilities of the first terminal and judges that the first terminal cannot identify the first cell. The IMSI of the first terminal determines that the user of the first terminal is not a subscriber of the first cell. That is, at this moment, the network side determines that the first terminal is an old terminal.
120、根据第一终端为老终端,网络侧使用第一算法产生鉴权参数,并将鉴权参数发送给第一终端指示第一终端根据鉴权参数对第一小区所属的网络进行鉴权。120. According to the fact that the first terminal is an old terminal, the network side uses the first algorithm to generate authentication parameters, and sends the authentication parameters to the first terminal to instruct the first terminal to authenticate the network to which the first cell belongs according to the authentication parameters.
第一小区所属的网络可以为第一小区的接入网,也可以为第一小区的核心网。第一小区的接入网和第一小区的核心网都可以认为是网络侧。The network to which the first cell belongs may be an access network of the first cell, or may be a core network of the first cell. Both the access network of the first cell and the core network of the first cell may be regarded as the network side.
网络侧选择与第一终端约定的算法所不同的第一算法来设置鉴权参数,使用第一算法的目的是网络侧通过第一算法产生的鉴权参数在第一终端对第一小区所属的网络进行鉴权时,第一终端可以对该第一小区的鉴权结果为鉴权失败,从而第一终端可以在预设时间内禁止接入该CSG小区。The network side selects a first algorithm that is different from the algorithm agreed by the first terminal to set the authentication parameters. The purpose of using the first algorithm is that the authentication parameters generated by the network side through the first algorithm can be used by the first terminal for the first cell to which the first terminal belongs. When the network performs authentication, the authentication result of the first terminal to the first cell may be an authentication failure, so that the first terminal may be prohibited from accessing the CSG cell within a preset time.
由第一算法产生的鉴权参数可以包含在由网络侧发送给第一终端的鉴权请求消息中。在鉴权请求消息中包括密钥序列号(Ciphering Key Sequence Number,CKSN),密钥序列号的值为000到110之一。鉴权请求消息也可以为鉴权加密请求(Authentication And Ciphering Request)消息,在后续的描述中仅以鉴权请求消息为例进行说明,对鉴权加密请求消息也可以采用与本发明实施例中类似的方法,在此不再赘述。除了密钥序列号,鉴权参数中可以仅包括鉴权参数RAND(“随机数”),或者鉴权参数也可以包括鉴权参数RAND和鉴权参数AUTN(“鉴权”)。The authentication parameter generated by the first algorithm may be included in the authentication request message sent by the network side to the first terminal. Include the key sequence number (Ciphering Key Sequence Number, CKSN) in the authentication request message, and the value of the key sequence number is one of 000 to 110. The authentication request message can also be an Authentication And Ciphering Request (Authentication And Ciphering Request) message. In the subsequent description, only the Authentication And Ciphering Request message is used as an example for illustration, and the authentication and encryption request message can also be used in the embodiment of the present invention. Similar methods will not be repeated here. In addition to the key serial number, the authentication parameter may only include the authentication parameter RAND ("random number"), or the authentication parameter may also include the authentication parameter RAND and the authentication parameter AUTN ("authentication").
鉴权参数RAND可以由网络侧选择,如果网络侧已经保存了RAND参数,可以采用保存的值。或者,鉴权参数RAND也可以由网络侧直接随机选择一个相同比特(bit)长度的合法参数值,第一算法可以为随机算法。The authentication parameter RAND can be selected by the network side, and if the network side has saved the RAND parameter, the saved value can be used. Alternatively, the authentication parameter RAND may also be directly randomly selected by the network side to a valid parameter value with the same bit length, and the first algorithm may be a random algorithm.
鉴权参数AUTN中的MAC(“媒体接入控制”)、SQN(“同步”)参数可以由网络侧随机选择,第一算法可以为随机算法,如果网络侧是核心网的MSC(MobileSwitching Center,移动交换中心)或者核心网的SGSN(Serving GPRS SupportNode,服务通用分组无线业务支持节点)选择,则选择终端验证失败的值,或者在第一鉴权请求消息中不携带该参数值。The MAC ("Media Access Control") and SQN ("Synchronization") parameters in the authentication parameter AUTN can be randomly selected by the network side, and the first algorithm can be a random algorithm. If the network side is an MSC (MobileSwitching Center, Mobile Switching Center) or core network SGSN (Serving GPRS SupportNode, Serving General Packet Radio Service Support Node) selection, then select the value of terminal authentication failure, or do not carry this parameter value in the first authentication request message.
130、第一终端接收网络侧发送的鉴权参数,并根据鉴权参数确定对该第一小区所属的网络进行鉴权的结果为鉴权失败。130. The first terminal receives the authentication parameter sent by the network side, and determines, according to the authentication parameter, that the authentication result of the network to which the first cell belongs is an authentication failure.
第一终端接收到网络侧发送的包含鉴权参数的鉴权请求消息后,使用与网络侧约定的算法来使用鉴权参数对第一小区所属的网络进行鉴权。由于网络侧在产生鉴权参数时,使用了与第一终端约定的算法所不同的第一算法,所以第一终端在使用与网络侧约定的算法来使用鉴权参数对第一小区所属的网络进行鉴权后的鉴权结果为鉴权失败。当网络侧使用的第一算法为随机算法时,第一终端有可能对经过随机算法所设置的鉴权参数验证通过。此时,第一终端会返回鉴权响应消息。当网络侧收到鉴权响应消息时,网络侧会重新使用第一算法来生成新的鉴权参数发送给第一终端,指示第一终端根据该新的鉴权参数对第一小区所属的网络进行鉴权,直到第一终端不再发送给网络侧鉴权响应消息,也即网络侧接收到第一终端发送的鉴权失败消息。该鉴权失败消息中可以包括“MAC失败”、“同步失败”和“GSM鉴权不可接受”中的任意一种。After receiving the authentication request message including the authentication parameter sent by the network side, the first terminal uses an algorithm agreed with the network side to use the authentication parameter to authenticate the network to which the first cell belongs. Since the network side uses a first algorithm different from the algorithm agreed with the first terminal when generating the authentication parameters, the first terminal uses the algorithm agreed with the network side to use the authentication parameters to verify the identity of the network to which the first cell belongs. The authentication result after authentication is authentication failure. When the first algorithm used by the network side is a random algorithm, the first terminal may pass the verification of the authentication parameter set by the random algorithm. At this point, the first terminal will return an authentication response message. When the network side receives the authentication response message, the network side will re-use the first algorithm to generate a new authentication parameter and send it to the first terminal, instructing the first terminal to identify the network to which the first cell belongs according to the new authentication parameter. Authentication is performed until the first terminal no longer sends an authentication response message to the network side, that is, the network side receives the authentication failure message sent by the first terminal. The authentication failure message may include any one of "MAC failure", "synchronization failure" and "GSM authentication unacceptable".
网络侧可以持续使用第一算法来产生鉴权参数,并将鉴权参数发送给第一终端指示第一终端对第一小区所属的网络进行鉴权的过程。在第一终端连续3次或者3次以上向网络侧发送鉴权失败消息时,第一终端和网络侧认为第一终端对第一小区所属的网络的鉴权失败,此时,网络侧可以不再继续向第一终端发送由第一算法所产生的鉴权参数。The network side may continuously use the first algorithm to generate the authentication parameter, and send the authentication parameter to the first terminal to instruct the first terminal to perform authentication on the network to which the first cell belongs. When the first terminal sends authentication failure messages to the network side for 3 or more consecutive times, the first terminal and the network side consider that the first terminal has failed to authenticate the network to which the first cell belongs. At this time, the network side may not Then continue to send the authentication parameter generated by the first algorithm to the first terminal.
可选的,在第一终端第一次向网络侧发送鉴权失败消息时,第一终端可以同时启动定时器。当第一终端再次收到网络侧发送的鉴权请求消息时,第一终端停止定时器。如果在定时器超时时,第一终端还未能接收到网络侧发送的鉴权请求消息,第一终端可以认为鉴权网络失败。所以,网络侧收到鉴权失败消息时可以不再发送鉴权请求,由上述定时器来控制第一终端使得第一终端认为鉴权第一小区所属的网络失败。采用该方式可以减少网络侧和终端之间的信令交互。Optionally, when the first terminal sends the authentication failure message to the network side for the first time, the first terminal may start the timer at the same time. When the first terminal receives the authentication request message sent by the network side again, the first terminal stops the timer. If the first terminal fails to receive the authentication request message sent by the network side when the timer expires, the first terminal may consider that authentication to the network has failed. Therefore, when the network side receives the authentication failure message, the authentication request may not be sent any more, and the timer is used to control the first terminal so that the first terminal considers that authentication of the network to which the first cell belongs fails. In this manner, the signaling interaction between the network side and the terminal can be reduced.
140、第一终端根据其对第一小区所属的网络的鉴权失败在预设时间内禁止接入第一小区。140. The first terminal is prohibited from accessing the first cell within a preset time according to its failure to authenticate the network to which the first cell belongs.
当第一终端连续发送三次以上鉴权失败消息,第一终端已经判断对第一小区鉴权失败,在预设时间内不再尝试接入该第一小区,该预设时间可以根据实际情况来设定。相应的,避免了由于第一终端不能通过鉴权流程之后的第一小区接入控制流程,从而避免了第一终端将与该第一小区同频率的其他小区禁止接入,也即避免了20分钟问题。When the first terminal sends more than three consecutive authentication failure messages, the first terminal has judged that the authentication of the first cell has failed, and it will not try to access the first cell within a preset time. The preset time can be determined according to the actual situation. set up. Correspondingly, because the first terminal cannot pass the first cell access control process after the authentication process, it is avoided that the first terminal prohibits access to other cells with the same frequency as the first cell, that is, avoids 20 minute question.
本实施例提供的控制接入小区的方法,在第一终端进入第一小区之后,如果网络侧获知第一终端不是该CSG小区的签约用户并且该第一终端的用户不是第一小区的签约用户,网络侧向第一终端发送鉴权参数,第一终端根据鉴权参数对第一小区所属的网络进行鉴权。网络侧通过采用第一算法来对鉴权参数进行设置,使得第一终端能够对第一小区所属的网络进行鉴权的结果为鉴权失败,从而第一终端在一定时间内不再尝试接入该第一小区。相应的,避免了第一终端也禁止接入该第一小区同频率的其他小区,解决由于20分钟问题而使第一终端很难得到第一小区部署所在频点的宏小区或签约CSG小区或签约的其他类型小区的服务的问题。In the method for controlling access to a cell provided in this embodiment, after the first terminal enters the first cell, if the network side learns that the first terminal is not a subscriber of the CSG cell and the user of the first terminal is not a subscriber of the first cell , the network side sends the authentication parameter to the first terminal, and the first terminal authenticates the network to which the first cell belongs according to the authentication parameter. The network side uses the first algorithm to set the authentication parameters, so that the first terminal can authenticate the network to which the first cell belongs, and the result is that the authentication fails, so that the first terminal does not try to access the network within a certain period of time. the first cell. Correspondingly, it prevents the first terminal from being prohibited from accessing other cells with the same frequency as the first cell, and solves the 20-minute problem that makes it difficult for the first terminal to obtain the macro cell or contracted CSG cell or CSG cell at the frequency where the first cell is deployed. The problem of the service of other types of cells contracted.
如图3所示,又一个实施例中提供了一种装置200。该装置200位于网络侧,该装置200具体种类不限,例如,装置200可能是家用基站、或家用基站网关、或核心网中的移动交换中心、或核心网中的服务通用分组无线业务支持节点中的一个或者一个以上的组合。装置200可以完成上述方法实施例中网络侧的全部功能。装置200包括:消息接收模块210、终端类型确定模块220和鉴权参数生成和发送模块230。As shown in FIG. 3 , a device 200 is provided in yet another embodiment. The device 200 is located on the network side, and the specific type of the device 200 is not limited. For example, the device 200 may be a home base station, or a home base station gateway, or a mobile switching center in the core network, or a serving general packet radio service support node in the core network one or a combination of more than one. The device 200 can complete all functions of the network side in the foregoing method embodiments. The device 200 includes: a message receiving module 210 , a terminal type determining module 220 and an authentication parameter generating and sending module 230 .
消息接收模块210用于接收第一终端在第一小区发送的第一消息,该第一小区包括CSG小区或混合小区,该第一消息表示该第一终端向该第一小区所属的网络发起位置注册或者业务请求;终端类型确定模块220对应消息接收模块210接收的第一消息,用于确定第一终端为老终端,老终端为不能识别所述第一小区的终端并且老终端的用户不是所述第一小区的签约用户;鉴权参数生成和发送模块230用于根据终端类型确定模块220确定第一终端为老终端,使用第一算法产生鉴权参数,并将该鉴权参数发送给第一终端指示第一终端根据鉴权参数对第一小区所属的网络进行鉴权;其中,第一算法用于使第一终端根据鉴权参数对第一小区所属的网络进行鉴权的结果为鉴权失败,该鉴权失败禁止第一终端在预设时间内接入所述第一小区。The message receiving module 210 is configured to receive a first message sent by a first terminal in a first cell, the first cell includes a CSG cell or a hybrid cell, and the first message indicates that the first terminal initiates a location to the network to which the first cell belongs Registration or service request; the terminal type determination module 220 corresponds to the first message received by the message receiving module 210, and is used to determine that the first terminal is an old terminal, the old terminal is a terminal that cannot identify the first cell and the user of the old terminal is not The subscriber of the first cell; the authentication parameter generation and sending module 230 is used to determine the first terminal as an old terminal according to the terminal type determination module 220, use the first algorithm to generate the authentication parameter, and send the authentication parameter to the second A terminal instructs the first terminal to authenticate the network to which the first cell belongs according to the authentication parameter; wherein, the first algorithm is used to make the first terminal authenticate the network to which the first cell belongs according to the authentication parameter. authorization failure, the authentication failure prohibits the first terminal from accessing the first cell within a preset time.
进一步,第一消息包括:位置更新请求消息、路由区更新请求消息、业务请求消息、呼叫管理业务请求消息、附着请求消息、去附着请求消息和连接重建请求消息中的其中一种。Further, the first message includes: one of a location update request message, a routing area update request message, a service request message, a call management service request message, an attach request message, a detach request message, and a connection reestablishment request message.
进一步,第一算法包括:随机算法,所述随机算法用于随机选择鉴权参数RAND的值、鉴权参数SQN的值和鉴权参数MAC的值中的至少一个。Further, the first algorithm includes: a random algorithm, which is used to randomly select at least one of the value of the authentication parameter RAND, the value of the authentication parameter SQN, and the value of the authentication parameter MAC.
进一步,除了密钥序列号,鉴权参数可以仅包括鉴权参数RAND;或者,该鉴权参数可以包括鉴权参数SQN和鉴权参数MAC中的至少一个以及鉴权参数RAND。Further, in addition to the key serial number, the authentication parameter may only include the authentication parameter RAND; or, the authentication parameter may include at least one of the authentication parameter SQN and the authentication parameter MAC and the authentication parameter RAND.
进一步,鉴权参数生成和发送模块230使用第一算法产生鉴权参数,并将鉴权参数发送给终端指示终端根据鉴权参数对第一小区所属的网络进行鉴权包括:鉴权参数生成和发送模块230持续使用第一算法产生鉴权参数并将鉴权参数发送给第一终端的过程,直到消息接收模块210连续接收到第一终端发送的至少3次鉴权失败消息。Further, the authentication parameter generation and sending module 230 uses the first algorithm to generate the authentication parameter, and sends the authentication parameter to the terminal to instruct the terminal to authenticate the network to which the first cell belongs according to the authentication parameter, including: authentication parameter generation and The sending module 230 continues the process of using the first algorithm to generate the authentication parameter and sending the authentication parameter to the first terminal until the message receiving module 210 continuously receives at least 3 authentication failure messages sent by the first terminal.
本实施例中提供的装置200,通过采用第一算法来对鉴权参数进行设置,使得第一终端能够对第一小区所属的网络进行鉴权的结果为鉴权失败,从而第一终端在一定时间内不再尝试接入该第一小区。相应的,避免了第一终端将与该第一小区同频率的其他小区也禁止接入,解决由于20分钟问题而使第一终端很难得到第一小区部署所在频点的宏小区或签约CSG小区或签约的其他类型小区的服务的问题。The apparatus 200 provided in this embodiment uses the first algorithm to set the authentication parameters, so that the first terminal can authenticate the network to which the first cell belongs, and the result of the authentication failure is that the first terminal is in a certain No more attempts to access the first cell within the time period. Correspondingly, it prevents the first terminal from prohibiting access to other cells with the same frequency as the first cell, and solves the 20-minute problem that makes it difficult for the first terminal to obtain the macro cell or contracted CSG at the frequency where the first cell is deployed. Issues with service in a cell or other type of cell contracted.
如图4所示,再一个实施例中提供了一种通信系统300,通信系统300包括装置310和第一终端320,其中,As shown in FIG. 4, a
装置310用于接收第一终端320在第一小区发送的第一消息,该第一小区包括CSG小区或混合小区,该第一消息表示第一终端320向第一小区所属的网络发起位置注册或者业务请求;对应接收所述第一消息,装置310确定第一终端320为老终端,该老终端为不能识别该第一小区的终端并且该老终端的用户不是该第一小区的签约用户;根据第一终端320为老终端,装置310使用第一法产生鉴权参数,并将鉴权参数发送给第一终端320指示第一终端320根据鉴权参数对第一小区所属的网络进行鉴权;其中,该第一算法用于使第一终端320根据鉴权参数对第一小区所属的网络进行鉴权的结果为鉴权失败,该鉴权失败禁止第一终端320在预设时间内接入第一小区。The
进一步,第一消息可以包括:位置更新请求消息、路由区更新请求消息、业务请求消息、呼叫管理业务请求消息、附着请求消息、去附着请求消息和连接重建请求消息中的其中一种。Further, the first message may include: one of a location update request message, a routing area update request message, a service request message, a call management service request message, an attach request message, a detach request message, and a connection reestablishment request message.
进一步,第一算法可以包括:随机算法,所述随机算法用于随机选择鉴权参数RAND的值、鉴权参数SQN的值和鉴权参数MAC的值中的至少一个。Further, the first algorithm may include: a random algorithm, which is used to randomly select at least one of the value of the authentication parameter RAND, the value of the authentication parameter SQN, and the value of the authentication parameter MAC.
进一步,鉴权参数中除了包括密钥序列号外,鉴权参数可以仅包括鉴权参数RAND;或者,鉴权参数也可以包括鉴权参数SQN和鉴权参数MAC中的至少一个以及鉴权参数RAND。Further, in addition to including the key serial number in the authentication parameter, the authentication parameter may only include the authentication parameter RAND; or, the authentication parameter may also include at least one of the authentication parameter SQN and the authentication parameter MAC and the authentication parameter RAND .
进一步,装置310使用第一算法产生鉴权参数,并将鉴权参数发送给第一终端320指示所述第一终端320根据所述鉴权参数对第一小区所属的网络进行鉴权,包括:装置310持续使用第一算法产生鉴权参数并将鉴权参数发送给第一终端320的过程,直到连续接收到第一终端320发送的至少3次鉴权失败消息。Further, the
装置310位于网络侧。装置310可能是家用基站、或家用基站网关、或核心网中的移动交换中心、或核心网中的服务通用分组无线业务支持节点中的一个或者一个以上的组合。进一步,装置310可以完成上述方法实施例中网络侧的全部功能。The
在本实施例中提供的通信系统300中,装置310通过采用第一算法来对鉴权参数进行设置,使得第一终端320能够对第一小区所属的网络进行鉴权的结果为鉴权失败,从而第一终端320在一定时间内不再尝试接入该第一小区。相应的,避免了由于第一终端320不能通过鉴权流程之后的第一小区接入控制流程,从而避免了第一终端320将与该第一小区同频率的其他小区也禁止接入,解决由于20分钟问题而使第一终端320很难得到第一小区部署所在频点的宏小区或签约CSG小区或签约的其他类型小区的服务的问题。In the
以上所述,仅为本发明的具体实施方式,但本发明的保护范围并不局限于此,任何熟悉本技术领域的技术人员在本发明揭露的技术范围内,可轻易想到变化或替换,都应涵盖在本发明的保护范围之内。因此,本发明的保护范围应以权利要求的保护范围为准。The above is only a specific embodiment of the present invention, but the scope of protection of the present invention is not limited thereto. Anyone skilled in the art can easily think of changes or substitutions within the technical scope disclosed in the present invention. Should be covered within the protection scope of the present invention. Therefore, the protection scope of the present invention should be based on the protection scope of the claims.
Claims (15)
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN2009101087533A CN101959190A (en) | 2009-07-13 | 2009-07-13 | Method, device and system for controlling access to a cell |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN2009101087533A CN101959190A (en) | 2009-07-13 | 2009-07-13 | Method, device and system for controlling access to a cell |
Publications (1)
Publication Number | Publication Date |
---|---|
CN101959190A true CN101959190A (en) | 2011-01-26 |
Family
ID=43486225
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN2009101087533A Pending CN101959190A (en) | 2009-07-13 | 2009-07-13 | Method, device and system for controlling access to a cell |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN101959190A (en) |
Cited By (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN105530699A (en) * | 2016-01-15 | 2016-04-27 | 华为技术有限公司 | Tracking area disabling method and user equipment |
CN107454660A (en) * | 2017-08-08 | 2017-12-08 | 北京小米移动软件有限公司 | Network method and device are stayed after failed authentication |
-
2009
- 2009-07-13 CN CN2009101087533A patent/CN101959190A/en active Pending
Cited By (3)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN105530699A (en) * | 2016-01-15 | 2016-04-27 | 华为技术有限公司 | Tracking area disabling method and user equipment |
CN105530699B (en) * | 2016-01-15 | 2020-01-17 | 华为技术有限公司 | Tracking Area Deactivation Method and User Equipment |
CN107454660A (en) * | 2017-08-08 | 2017-12-08 | 北京小米移动软件有限公司 | Network method and device are stayed after failed authentication |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
JP7585241B2 (en) | Method and system for handling closed access group related procedures - Patents.com | |
EP3738333B1 (en) | Method and apparatus for multiple registrations | |
CN110419205B (en) | Method for integrity protection of user plane data | |
US11503662B2 (en) | Method and system for handling of closed access group related procedure | |
KR101987394B1 (en) | Provisioning credentials in wireless communications | |
EP3123788B1 (en) | Decoupling service and network provider identification in wireless communications | |
EP2351435B1 (en) | Support for multiple access modes for home base stations | |
TWI575971B (en) | Method and apparatus for adding csg identities to a white list in connected mode | |
TWI785843B (en) | Method and user equipment of enhanced handling of a forbidden snpn list | |
US20100002883A1 (en) | Security procedure and apparatus for handover in a 3gpp long term evolution system | |
WO2014032570A1 (en) | Method, user equipment and remote management platform for switching operator network | |
WO2009132524A1 (en) | A method, system and device for keeping continuity of user's service | |
WO2016085001A1 (en) | Method and apparatus for supporting location privacy protection in wireless access system supporting small cell environment | |
CN102056164B (en) | Method for accessing home base station to network and home base station management server | |
WO2010124586A1 (en) | Emergency service implemention method and device | |
WO2018068536A1 (en) | Method and terminal for network switching | |
CN112956226B (en) | Isolating fake base stations in communication systems | |
WO2016155478A1 (en) | User equipment authentication method and device | |
CN114765811B (en) | Information processing method, device, equipment and readable storage medium | |
US9420460B2 (en) | WLAN authentication restriction | |
CN101959190A (en) | Method, device and system for controlling access to a cell | |
CN105992302A (en) | Method and device for carrying out access control and switching control on UE | |
JP7572568B2 (en) | Information processing method, device, communication device, and readable storage medium | |
US20250024234A1 (en) | Wireless communication method and device thereof | |
HK1176500A (en) | Method and apparatus for adding csg identities to a white list in connected mode |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
C06 | Publication | ||
PB01 | Publication | ||
C02 | Deemed withdrawal of patent application after publication (patent law 2001) | ||
WD01 | Invention patent application deemed withdrawn after publication |
Application publication date: 20110126 |