top button
Flag Notify
    Connect to us
      Site Registration

Site Registration

LTE: Why MME does replay of UE Security Capabilities in the Security mode command message ?

+2 votes
1,440 views

In attach request, UE sends UE network capability which contains the list of security algorithms can be used to enable security between UE and network node. My question is, when UE already knows its supported algorithms then why MME resend the same list of security algorithm to UE in security mode command ? What would be the reasoning behind it ?

posted Apr 29, 2018 by Harshita

Share this question
Facebook Share Button Twitter Share Button LinkedIn Share Button

2 Answers

+2 votes

UE will share list of security algorithms which were supported by UE in UE Network capability IE. then MME can select some security algorithms based on MME policies which were received in UE Network capability IE and send in security mode command. means, MME may not support all of the security algorithms which were received in UE Network capability.

answer Apr 30, 2018 by Althi Rajeswararao
Thanks to share your answer but I still did not get answer completely.

MME receives UE supported security algorithms in the "UE Network Capability IE" and  MME selects one encryption and one integrity algorithm from that list (considering at least one common encryption and integrity algorithm is supported at MME).
MME informs UE about the selected algorithm in Security Mode Command. Since UE already knows about its supported security algorithm then why UE security algorithm list is replayed to UE again in Security mode command message.

Is there any possibility list of supported security algorithms  may get changed at UE dynamically ?
0 votes

i want security mode failure cases 1)security capabilities mismatch.
2)security mode rejected,unspecified.
,,,after failure what happening?

answer May 27, 2019 by Narasimha K
Similar Questions
+1 vote

What is the significance of UE capability Information at MME ? What decisions are affected based on the UE capability information ?

+2 votes

when mme will change the security keys and send it in ue context modification request message

+1 vote

I found two MME UE S1-AP IDs i.e. MME UE S1AP ID (Mandatory) and MME UE S1AP ID 2 (optional).
I got why mandatory one is present but what's use of optional one.

Can someone please explain it ?

...