Figure 6.2.7.2-1 shows the messages exchanged between the UE, HSE, HSS/EMKS and EAS in order to setup a BEST Session when using EMSDP. In this figure, the EMKS and HSS are collapsed into one.
The above figure depicts BEST Session setup procedure for Key Agreement Only service. The EAS PSK is provided by the HSE to the EAS in step 5. The UE derives all the required keys in Step 9.
The EAS shall also be able to obtain the EAS PSK anytime after the BEST Session is setup by the UE. The EAS initiates a EAS Session Request message with the required Key Id (specific to the UE). The HSE derives EAS PSK and provides it in the EAS Session Start message.
Figure 6.2.7.2-2 shows the messages exchanged between the UE, HSE, HSS/EMKS and EAS in order to refresh the keys when using EMSDP. In this Figure, the EMKS and HSS are collapsed into one.
In the above Figure, steps 1-5 and 7-9 are mandatory. Steps 10 and 11 are optional depending on whether the HSE has set the 'Confirm Authentication' flag in the 'EMSDP Session Response' message. The contents of the respective commands are given in the respective clauses that detail the commands. Step 6 is optional and out of scope.
Figure 6.2.7.3-1 shows the messages exchanged between the UE, HSE, HSS/EMKS and EAS in order to setup a BEST Session when using EMSDP. In this Figure, the EMKS and HSS are collapsed into one.
In the above Figure, steps 1-8 are mandatory. The contents of the respective commands are given in the respective clauses that detail the commands. Step 6 is only performed when a BEST UE-to-EAS UP session is setup.
Figure 6.2.7.3-2 shows the messages exchanged between the UE, HSE, HSS/EMKS and EAS in order to refresh the keys when using EMSDP. In this Figure, the EMKS and HSS are collapsed into one.
In the above Figure, steps 1-8 are mandatory. The contents of the respective commands are given in the respective clauses that detail the commands. Step 6 is only performed when a BEST UE-to-EAS UP session is setup.