| CPC H04L 9/321 (2013.01) [H04L 9/0819 (2013.01); H04L 9/0894 (2013.01)] | 20 Claims |

|
1. A communication system, wherein the communication system is configured to implement authentication and key management for applications (AKMA) service-based data transmission between a terminal device and an application function network element, and the communication system comprises:
an AKMA anchor function network element; and
a network exposure function network element, wherein:
the network exposure function network element is configured to:
receive second identification information from the application function network element;
in response to determining that the application function network element authorizes the network exposure function network element to request a key, send a first request message to a unified data management network element, wherein the first request message, comprising the second identification information, requests the unified data management network element to determine first identification information based on the second identification information; and
receive a first response message from the unified data management network element, wherein the first response message comprises the first identification information; wherein the first identification information is used to determine an authentication server function network element corresponding to the terminal device, and
send the first identification information to the AKMA anchor function network element; and
the AKMA anchor function network element is configured to:
obtain, from the unified data management network element based on the first identification information, identification information of the authentication server function network element corresponding to the terminal device.
|