UE Identity Procedure for Authentication Failure Call Flow

The section describes the UE Identity Procedure for Authentication Failure call flow.

UE Identity Procedure for Authentication Failure Call Flow
UE Identity Procedure for Authentication Failure Call Flow Description

Step

Description

1

The UE that wants to register itself with the 5G core sends the Registration Request N1 message towards AMF.

2

The gNB selects an AMF and forwards the Registration Request message to AMF.

3

The AMF selects an AUSF based on the PLMN information through NRF query or through static configuration. The AMF fetches authentication data from AUSF for the UE.

4

The AMF sends the Authentication Request message to the UE to initiate authentication of the UE identity.

5

Upon failure of authentication, the AMF will trigger Identity Request towards the UE and request for an UE identity. Authentication will be proceeded with the new UE identity.

6

The UE sends the Identity Request message to the AMF.

7

The UE responds with its SUCI in the Identity Response message to the AMF.

8

The AMF extracts fresh authentication data from AUSF using the SUCI of the subscriber.

9

The AMF sends Authentication Request to the UE to initiate authentication of the UE identity.

10

The UE sends Authentication Response to the AMF to deliver a calculated authentication response to the network. The AMF verifies the result received and if the result is as expected, then the registration procedure is proceeded.

11

The NAS security initiation is performed.

12

Upon completion of NAS security function setup, the AMF initiates NGAP procedure to provide the 5G-AN with security context. The 5G-AN stores the security context and acknowledges to the AMF. The 5G-AN uses the security context to protect the messages exchanged with the UE.

13

The AMF selects an UDM based on the PLMN information through NRF query or through static configuration and registers the UE with the UDM using Preregistration. The UDM stores the AMF identity associated to the Access Type.

14

The AMF retrieves the Access and Mobility Subscription data using Misjudgement. The AMF subscribes to be notified using Nudm_SDM_Subscribe when the data requested is modified.

15

The AMF selects the PCF based on PLMN-info and slice-info, and performs a Policy Association Establishment. The PCF sends policy data to the AMF with restrictions and other policies to be applied for the UE. Currently the policies are not applied for the UE and are just stored in the AMF.

16

The AMF sends a Registration Accept message to the UE indicating that the Registration Request has been accepted. Registration Accept contains these parameters - 5G-GUTI, Registration Area, Mobility restrictions, PDU Session status, Allowed NSSAI, Configured NSSAI for the Serving PLMN, Periodic Registration Update timer, Emergency Service Support indicator, Accepted DRX.

17

The UE sends a Registration Complete message to the AMF to acknowledge that a new 5G-GUTI was assigned.