US 12,382,284 B2
User equipment authentication and authorization procedure for edge data network
Shu Guo, Beijing (CN); Dawei Zhang, Saratoga, CA (US); Fangli Xu, Beijing (CN); Haijing Hu, Los Gatos, CA (US); Huarui Liang, Beijing (CN); Mona Agnel, Guildford (GB); Ralf Rossbach, Munich (DE); Sudeep Manithara Vamanan, Nuremberg (DE); Xiangying Yang, Cupertino, CA (US); and Yuqin Chen, Beijing (CN)
Assigned to Apple Inc., Cupertino, CA (US)
Appl. No. 17/593,460
Filed by Apple Inc., Cupertino, CA (US)
PCT Filed Aug. 6, 2020, PCT No. PCT/CN2020/107556
§ 371(c)(1), (2) Date Sep. 19, 2021,
PCT Pub. No. WO2022/027505, PCT Pub. Date Feb. 10, 2022.
Prior Publication US 2022/0303767 A1, Sep. 22, 2022
This patent is subject to a terminal disclaimer.
Int. Cl. H04W 12/06 (2021.01); H04W 12/08 (2021.01)
CPC H04W 12/06 (2013.01) [H04W 12/08 (2013.01)] 14 Claims
OG exemplary drawing
 
1. A method, comprising:
at a user equipment (UE):
generating a first credential based on a second credential, the second credential generated for a primary authentication procedure between the UE and a cellular network, wherein the second credential is an Authentication Server Function (AUSF) key (KAUSF);
generating an identifier corresponding to the first credential, said identifier uniquely identifying the first credential;
calculating a multi-access edge computing (MEC) authorization parameter using the first credential and a second identifier, the second identifier being a globally unique value associated with an edge enabler client (EEC) running on the UE;
transmitting an application registration request message to a server associated with an edge data network, the application registration request message including the second identifier, the second identifier corresponding to the first credential and the MEC authorization parameter; and
receiving an authentication accept message or an authentication reject message from the server associated with the edge data network, wherein the authentication accept message or the authentication rejection message is based on a validation of the MEC authorization parameter.