LTE_NAS-EMM¹ý³Ì-ѧϰ1 ÏÂÔØ±¾ÎÄ

ÄÚÈÝ·¢²¼¸üÐÂʱ¼ä : 2026/6/2 3:37:42ÐÇÆÚÒ» ÏÂÃæÊÇÎÄÕµÄÈ«²¿ÄÚÈÝÇëÈÏÕæÔĶÁ¡£

T3410, T3417, T3421 , T3430£©¡£µ±µÚÒ»´ÎÊÕµ½À´×ÔUE µÄEMM cause Ϊ\failure\µÄAUTHENTICATION FAILURE ÏûÏ¢£¬ÍøÂ罫ʹÓÃAUTHENTICATION FAILURE ÏûÏ¢ÖÐauthentication failure parameter IE ÖеÄAUTS ²ÎÊý½øÐÐÖØÍ¬²½¡£ÖØÍ¬²½¹ý³ÌÒªÇóMME ɾ³ýÓëIMSI ¶ÔÓ¦µÄËùÓÐδʹÓõļøÈ¨ÏòÁ¿£¬²¢´ÓHSS ÖØÐ»ñȡеÄÏòÁ¿¡£Èç¹ûÖØÍ¬²½Ê±ÍêÕûµÄ£¬ÍøÂ罫·¢Æð¼øÈ¨¹ý³Ì¡£µ±½ÓÊÕµ½AUTHENTICATION REQUEST ÏûÏ¢£¬UE ½«Í£Ö¹´¦ÓÚÔËÐÐ̬µÄ¶¨Ê±Æ÷T3420¡£

NOTE3£ºµ±ÊÕµ½À´×ÔUE µÄEMM cause Ϊ\µÄAUTHENTICATION FAILURE ÏûÏ¢£¬ÍøÂçÒ²¿ÉÄÜͨ¹ý·¢ËÍÒ»ÌõAUTHENTICATION REJECT ÏûÏ¢À´ÖÕÖ¹¼øÈ¨¹ý³Ì£¨²Î¿¼2.5£©¡£

Èç¹ûÍøÂçÔÚ¶¨Ê±Æ÷T3420ÔËÐÐʱ³É¹¦¾­¹ýÑéÖ¤£¨AUTHENTICATION REQUESTÏûÏ¢Öаüº¬ÓÐЧµÄSQNºÍMAC£©£¬UE½«·¢ËÍAUTHENTICATION RESPONSEÏûÏ¢¸øÍøÂ磬²¢Æô¶¯ÈÎÒ»ÖØ´«¶¨Ê±Æ÷£¨ÀýÈ磺T3410£¬T3417£¬T3421»òÕßT3430£©£¬µ±UEÊÕµ½µÚÒ»¸ö´íÎóµÄAUTHENTICATION REQUESTÏûÏ¢£¬ÕâЩÔËÐÐÖеĶ¨Ê±Æ÷½«±»Í£Ö¹¡£

T3420´¦ÓÚÔËÐÐ״̬ʱ£¬Èç¹ûUEÊÕµ½µÚ¶þ¸öAUTHENTICATION REQUEST£¬²¢ÇÒMACÖµ²»Äܱ»½â¾ö£¬UE½«Ö´Ðб¾Ð¡½ÚÖ¸¶¨µÄÌõÄ¿c£¬»òÕßÈç¹ûÏûÏ¢°üº¬Ò»¸öUMTS¼øÈ¨Ñ¯ÎÊ£¬UE½«Ö´ÐÐÌõÄ¿dÖ¸¶¨µÄ¹ý³Ì¡£Èç¹ûSQNÎÞЧ£¬UE½«´ÓÌõÄ¿eÖØÐ¿ªÊ¼Ö´ÐС£

Èç¹ûÏÂÃæµÄÇé¿ö·¢Éú£¬UE½«ÈÏÎªÍøÂç¼øÈ¨Ê§°Ü²¢°´ÌõÄ¿fµÄÃèÊö¼ÌÐøÖ´ÐУº - ¶¨Ê±Æ÷T3420³¬Ê±£»

- ÔÚÁ¬Ðø3´Î¼øÈ¨Ñ¯ÎÊÆÚ¼ä£¬UE̽²âµ½×éºÏ¼øÈ¨´íÎó£ºEMM causes #20 \

µÚ11Ò³

failure\£¬#21 \ºÍ#26\¡£Èç¹ûUEÊÕµ½ÒýÆðµÚ¶þ´Î¡¢µÚÈý´Î¼øÈ¨´íÎóµÄ¼øÈ¨Ñ¯ÎÊ£¬ÇÒ¶¨Ê±Æ÷T3418»òÕßT3420£¨ÔÚ֮ǰ¼øÈ¨´íÎóºó±»¿ªÆô£©´¦ÓÚÔËÐÐ״̬£¬ÄÇô¸Ã¼øÈ¨Ñ¯Îʱ»ÈÏΪÊÇÁ¬ÐøµÄ¼øÈ¨Ñ¯ÎÊ¡£

f) ÍøÂç¼øÈ¨Ê§°Ü

Èç¹ûUEÈÏÎªÍøÂç¼øÈ¨Ê§°Ü£¬UE½«ÒªÇóRRC±¾µØÊÍ·ÅRRCÁ¬½Ó£¬²¢ÈÏΪ¸Ã»îÔ¾Ð¡ÇøÎª½ûÖ¹½ÓÈë¡£UE½«Æô¶¯ÈÎÒ»ÖØ´«¶¨Ê±Æ÷£¨e.g. T3410, T3417, T3421 or T3430£©£¬£¬µ±UEÊÕµ½µÚÒ»¸ö°üº¬ÎÞЧMAC»òÕßSQNµÄAUTHENTICATION REQUESTÏûÏ¢£¬ÕâЩÔËÐÐÖеĶ¨Ê±Æ÷½«±»Í£Ö¹¡£

g) À´×ԵͲãµÄAUTHENTICATION RESPONSEÏûÏ¢»òÕßAUTHENTICATION FAILUREÏûÏ¢µÄ´«Êä´íÎóָʾ£¨Èç¹û¼øÈ¨¹ý³Ì±»¸ú×ÙÇøÓò¸üйý³Ì´¥·¢£©¡£

UE½«ÖØÐ·¢Æð¸ú×ÙÇøÓò¸üС£

h) À´×ԵͲãµÄ°üº¬TAI±ä»¯ÐÅÏ¢µÄAUTHENTICATION RESPONSE»òÕßAUTHENTICATION FAILUREÏûÏ¢µÄ´«Êä´íÎóָʾ£¨Èç¹û¼øÈ¨¹ý³Ì±»·þÎñÇëÇó¹ý³Ì´¥·¢£©¡£

Èç¹ûµ±Ç°µÄTAI²»ÔÚTAIÁбíÖУ¬¼øÈ¨¹ý³Ì½«±»·ÅÆú£¬²¢ÇÒ¸ú×ÙÇøÓò¸üйý³Ì±»´¥·¢¡£

Èç¹ûµ±Ç°TAIÈÎÈ»ÊÇTAIÁбíµÄÒ»²¿·Ö£¬ÔòÈ¡¾öÓÚUEÈçºÎʵÏÖÖØÔËÐÐ֮ǰ´¥·¢¼øÈ¨µÄ½øÐÐÖеĹý³Ì¡£

i) À´×ԵͲãµÄ²»°üº¬TAI±ä»¯ÐÅÏ¢µÄAUTHENTICATION RESPONSE»òÕßAUTHENTICATION FAILUREÏûÏ¢µÄ´«Êä´íÎóָʾ£¨Èç¹û¼øÈ¨¹ý³Ì±»·þÎñÇëÇó¹ý³Ì´¥·¢£©¡£

Èç¹ûµ±Ç°TAIÈÎÈ»ÊÇTAIÁбíµÄÒ»²¿·Ö£¬ÔòÈ¡¾öÓÚUEÈçºÎʵÏÖÖØÔËÐÐ֮ǰ´¥·¢¼øÈ¨µÄ½øÐÐÖеĹý³Ì¡£

j) µÍ²ãָʾÓÉÓÚÇл»¶øÃ»Óз¢ËÍNAS PDU

Èç¹ûÓÉÓÚͬMMEÇл»¶øÔì³ÉAUTHENTICATION REQUESTÏûÏ¢²»Äܱ»·¢ËÍ£¬²¢ÇÒÄ¿±êTA°üº¬ÔÚTAIÁбíÖУ¬È»ºóµ±³É¹¦Íê³ÉͬMMEÇл»ºó£¬MME½«ÖØ´«

AUTHENTICATION REQUESTÏûÏ¢¡£Èç¹ûµÍ²ã±¨¸æÇл»¹ý³Ì´íÎó£¬ÇÒS1ÐÅÁîÁ¬½Ó´æÔÚ£¬MME½«ÖØ´«AUTHENTICATION REQUESTÏûÏ¢¡£

µÚ12Ò³

3. 3¡¢°²È«Ä£Ê½¿ØÖƹý³Ì

3.1 ×ÛÊö

NAS°²È«Ä£Ê½¿ØÖƹý³ÌµÄÄ¿µÄÊÇʹÓÃEPS°²È«ÉÏÏÂÎÄ£¬²¢³õʼ»¯ºÍÆôÓÃUEÓëMMEÖ®¼äµÄNASÐÅÁȫ£¨°üÀ¨NAS keysºÍ°²È«Ëã·¨£©¡£

´ËÍâ£¬ÍøÂçÒ²¿ÉÒÔ·¢ÆðSECURITY MODE COMMAND´Ó¶ø¸Ä±äµ±Ç°Ê¹ÓõÄEPS°²È«ÉÏÏÂÎĵÄNAS°²È«Ëã·¨¡£

3.2 ÍøÂç·¢ÆðNAS °²È«Ä£Ê½¿ØÖÆ

MME ͨ¹ý¸øUE ·¢ËÍSECURITY MODE COMMAND ÏûÏ¢ºÍÆô¶¯T3460 ¶¨Ê±Æ÷À´·¢ÆðNAS °²È«Ä£Ê½¿ØÖƹý³Ì£¨¼ûͼ3.2.1 Àý×Ó£©¡£

MME Ö»»áÖØÖÃÏÂÐÐNAS COUNT ¼ÆÊýÆ÷²¢½«ÆäÓÃÓÚSECURITY MODE COMMAND ÏûÏ¢µÄÍêÕûÐÔ±£»¤£¬Èç¹û°²È«Ä£Ê½¿ØÖƹý³Ì±»·¢Æð£º

- ΪÁËʹÓÃEPS ¼øÈ¨¹ý³Ì³É¹¦Íê³Éºó½¨Á¢µÄEPS °²È«ÉÏÏÂÎÄ£»»òÕß

- µ±ÊÕµ½°üº¬GPRS ¼ÓÃÜÃÜÔ¿ÐòÁкÅIE µÄTRACKING AREA UPDATE REQUEST ÏûÏ¢£¬Èç¹ûMME Ï£Íû½¨Á¢Ò»¸öÓ³ÉäµÄEPS °²È«ÉÏÏÂÎÄ£¨Ò²¾ÍÊÇÔÚSECURITY MODE COMMAND ÏûÏ¢ÖеÄNAS key set identifier IE ÖеÄsecurity context flag µÄÀàÐͱ»ÉèÖÃΪ¡± mapped security context¡±£©¡£

MME ½«·¢ËÍδ¼ÓÃܵÄSECURITY MODE COMMAND ÏûÏ¢£¬µ«ÊǸÃÏûÏ¢½«±»ÍêÕûÐÔ±£»¤£¬ËùʹÓõÄÃÜÔ¿ÊÇ»ùÓÚKASME »òÕßmapped K'ASME£¨ÓÉÏûÏ¢ÖеÄeKSI ָʾ£©µÄ

µÚ13Ò³

NAS ÍêÕûÐÔÃÜÔ¿¡£MME ½«¸ÃÏûÏ¢µÄsecurity header type Ϊ\new EPS security context\¡£

µ±ÊÕµ½°üº¬GPRS ¼ÓÃÜÃÜÔ¿ÐòÁкÅIE µÄTRACKING AREA UPDATE REQUEST ÏûÏ¢£¬ Èç¹ûUE ָʾMME ûÓÐÓÐЧµÄµ±Ç°EPS °²È«ÉÏÏÂÎÄ£¬MME ½«Í¨¹ýÉèÖÃNAS key set identifier IE ÖеÄsecurity context flag µÄÀàÐÍΪ¡± mapped security context¡±À´Ö¸Ê¾UE ʹÓÃеÄÓ³ÉäEPS °²È«ÉÏÏÂÎÄ£¬²¢ÇÒKSI µÄÖµºÍԭϵͳµÄ°²È«ÉÏÏÂÎÄÏà¹Ø¡£

Èç¹ûMME ÏëҪʹÓñ¾µØEPS °²È«ÉÏÏÂÎÄ£¬¶øµ±Ç°Ê¹ÓõÄÊÇÓ³É䰲ȫÉÏÏÂÎÄ£¬ÄÇôMME ÐèÒªÔÚSECURITY MODE COMMAND Öаüº¬Æ¥Åä±¾µØEPS ÉÏÏÂÎĵÄeKSI¡£

MME ÐèÒª°üÀ¨the replayed security capabilities of the UE£¨°üÀ¨NAS¡¢RRC ºÍUP ¼ÓÃÜ£¬NAS¡¢RRC ÍêÕûÐÔºÍÆäËû¿ÉÄܵÄÄ¿±êÍøÂ簲ȫÄÜÁ¦£©£¬replayed nonceUE£¨Èç¹ûUE ֮ǰ·¢¸øÍøÂçµÄÏûÏ¢Öаüº¬nonceUE£©£¬the selected NAS security algorithms ºÍthe Key Set Identifier (eKSI)¡£

µ±ÔÚÒìϵͳ´ÓA/Gbģʽ¸Ä±äµ½S1ģʽ»òÕßIuģʽµ½S1ģʽÆÚ¼ä£¬Òª´´½¨Ò»¸öÓ³ÉäEPS°²È«ÉÏÏÂÎĵÄʱºò£¬MMEÐèÒª°üº¬nonceMMEºÍnonceUE¡£

MME¿ÉÄÜ·¢ÆðSECURITY MODE COMMANDÀ´¸Ä±äµ±Ç°ÔÚʹÓõÄEPS°²È«ÉÏÏÂÎĵÄNAS°²È«Ëã·¨¡£MME´ÓKASMEÖØÐ»ñÈ¡NASÃÜÔ¿£¬²¢Ê¹ÓÃеÄNASËã·¨±êʶ×÷ΪÊäÈ룬ÔÚSECURITY MODE COMMANDÏûÏ¢ÖÐÌṩеÄNASËã·¨±êʶ¡£

´ËÍ⣬MME¿ÉÒÔÇëÇóUEÔÚSECURITY MODE COMPLETEÏûÏ¢Öаüº¬ÆäIMEISV¡£ NOTE: ASºÍNAS°²È«ÄÜÁ¦½«»áÏàͬ£¬Ò²¾ÍÊÇ£¬UE¶ÔNASÖ§³ÖijÖÖËã·¨£¬ÄÇôͬʱ¶ÔASÒ²Ö§³Ö¡£

3.3 UE½ÓÊÜNAS°²È«Ä£Ê½ÃüÁî

µ±ÊÕµ½SECURITY MODE COMMANDÏûÏ¢£¬UEÓ¦¸Ã¼ì²é°²È«Ä£Ê½ÃüÁîÊÇ·ñÄܱ»½ÓÊÜ¡£¸Ã¼ì²éͨ¹ý¶ÔÏûÏ¢Ö´ÐÐÍêÕûÐÔ¼ìÑ飬ÒÔ¼°¼ìÑéÊÕµ½µÄUE security capabilitiesºÍnonceUE£¨ÓëUEÌṩµÄ´¥·¢¸Ã¹ý³ÌµÄ³õʼ²ãÈýÏûÏ¢ÖÐÏàÓ¦µÄÄÚÈݶԱȣ©Ã»Óб»¸Ä±ä¡£µ«ÊÇ£¬Èç¹û²»ÏëÖØÐÂÉú³ÉK'ASME£¬UE²»»áÒªÇóÖ´ÐжÔÊÕµ½µÄnonceUE½øÐмìÑé¡£

Èç¹ûsecurity context flagµÄÀàÐÍΪ¡± native security context¡±ÇÒÈç¹ûKSIÆ¥ÅäUEÖб£´æµÄÒ»¸öÓÐЧµÄ·Çµ±Ç°±¾µØEPS°²È«ÉÏÏÂÎÄ£¬¶øUSµÄµ±Ç°EPS°²È«ÉÏÏÂÎÄΪһ¸öÓ³ÉäEPS°²È«ÉÏÏÂÎÄ£¬UEÓ¦¸ÃʹÓÃÄǸö·Çµ±Ç°µÄ±¾µØEPS°²È«ÉÏÏÂÎÄ£¨¸Ã°²È«ÉÏÏÂÎÄËæºó±ä³Éµ±Ç°°²È«ÉÏÏÂÎÄ£©²¢É¾³ýÓ³ÉäEPS°²È«ÉÏÏÂÎÄ¡£

Èç¹ûSECURITY MODE COMMANDÏûÏ¢Äܱ»½ÓÊÜ£¬UEÓ¦¸ÃʹÓøÃÏûÏ¢ÖÐָʾµÄ

µÚ14Ò³

EPS°²È«ÉÏÏÂÎÄ¡£´ËÍâUEÓ¦¸ÃÖØÖÃÉÏÐÐNAS COUNT¼ÆÊýÆ÷½öµ±£º

- ΪÁËʹÓóɹ¦Ö´ÐмøÈ¨¹ý³Ì½¨Á¢µÄEPS°²È«ÉÏÏÂÎÄ£¬SECURITY MODE COMMANDÏûÏ¢±»½ÓÊÕ£»»òÕß

- ½ÓÊÕµ½µÄSECURITY MODE COMMANDÏûÏ¢°üº¬µÄsecurity context flagµÄÀàÐͱ»ÉèÖÃΪ¡±mapped security context¡±ÇÒeKSI²»Æ¥Å䵱ǰEPS°²È«ÉÏÏÂÎÄ£¬Èç¹ûµ±Ç°EPS°²È«ÉÏÏÂÎÄÊÇÒ»¸öÓ³ÉäEPS°²È«ÉÏÏÂÎÄ¡£

Èç¹û°²È«Ä£Ê½ÃüÁîÄܱ»½ÓÊÜ£¬UEÓ¦¸Ã·¢ËÍSECURITY MODE COMPLETEÏûÏ¢£¬¸ÃÏûÏ¢µÄÍêÕûÐÔ±£»¤ÓÉÑ¡ÔñµÄNASÍêÕûÐÔËã·¨ºÍ»ùÓÚKASME»òÕßmapped K'ASME µÄNASÍêÕûÐÔÃÜԿʵÏÖ¡£µ±SECURITY MODE COMMANDÏûÏ¢°üº¬type of security context flag£¨ÔÚIE NAS key set identifiersecurityÖÐÆäÖµ±»ÉèÖÃΪ¡±mapped security context¡±£©¡¢nonceMMEºÍnonceUE£¬UEÓ¦¸Ã£º

- ͨ¹ýÁ½¸önonce²úÉúK'ASME£»»òÕß

- ¼ì²éSECURITY MODE COMMANDÏûÏ¢ÊÇ·ñΪµ±Ç°EPS°²È«ÉÏÏÂÎÄ£¨Èç¹û¸ÃÉÏÏÂÎÄÊÇÓ³ÉäEPS°²È«ÉÏÏÂÎÄ£©Ö¸Ê¾ÁËeKSI£¬ÒÔ±ÜÃâÖØÐÂÉú³ÉK'ASME¡£

ÁíÍ⣬Èç¹ûSECURITY MODE COMMANDÏûÏ¢Äܱ»½ÓÊÜ£¬UEÐèҪʹÓÃÑ¡ÔñµÄNAS¼ÓÃÜËã·¨ºÍ»ùÓÚKASME»òÕßmapped K'ASMEµÄNAS¼ÓÃÜÃÜÔ¿¶ÔSECURITY MODE COMPLETEÏûÏ¢½øÐмÓÃÜ¡£UEÓ¦¸Ã½«¸ÃÏûÏ¢µÄsecurity header typeÉèÖÃΪ\protected and ciphered with new EPS security context\¡£

´Ó´Ëʱ¿ªÊ¼£¬UEÐèÒªÀûÓÃÑ¡ÔñµÄNAS¼ÓÃܺÍÍêÕûÐÔ±£»¤Ë㷨Ϊ֮ºóËùÓÐNASÐÅÁîÏûÏ¢½øÐмÓÃܺÍÍêÕûÐÔ±£»¤¡£

Èç¹ûMMEÔÚSECURITY MODE COMMANDÏûÏ¢ÖÐָʾҪÇóIMEISV£¬ÄÇôUEÐèÒª°üº¬½«ÆäIMEISV°üº¬ÔÚSECURITY MODE COMPLETEÏûÏ¢ÖС£

3.4 ÍøÂçÍê³ÉNAS°²È«Ä£Ê½¿ØÖÆ

µ±ÊÕµ½SECURITY MODE COMPLETEÏûÏ¢£¬MMEÓ¦¸ÃÍ£Ö¹T3460¶¨Ê±Æ÷¡£´Ó´Ëʱ¿ªÊ¼£¬MMEÐèÒªÀûÓÃÑ¡ÔñµÄNASÍêÕûÐԺͼÓÃÜË㷨ΪËùÓÐÐÅÁîÏûÏ¢½øÐÐÍêÕûÐÔ±£»¤ºÍ¼ÓÃÜ¡£

3.5 UE¾Ü¾øNAS°²È«Ä£Ê½ÃüÁî

Èç¹û°²È«Ä£Ê½ÃüÁî²»±»½ÓÊÜ£¬UEÐèÒª·¢ËͰüº¬EMM causeµÄSECURITY MODE REJECTÏûÏ¢¸øÍøÂç¡£EMM causeָʾÏÂÃæÄ³Ò»ÖÖÔ­Òò£º

µÚ15Ò³