7 Administrative restriction of subscribers’ access

22.0113GPPRelease 18Service accessibilityTS

7.1 Allowed Location and Routing Area identities access

Means shall be standardised for an administrative restriction of subscribers’ access without the need of having explicit Tracking/Location/Routing Area identities in the individual subscription profiles.

To achieve this it shall be possible to indicate per subscriber, in subscription data, allowed categories of Tracking/ Location/Routing Areas. It shall be possible to use this subscription information to restrict subscribers’ access to categories of Tracking/Location/Routing Areas in serving networks accordingly.

As a minimum, at least one of the following categories shall be available:

a) GERAN

b) UTRAN

c) E-UTRAN

d) NG-RAN

There might be cases where the visited network has not separated the Location/Routing area categories, in which case the administrative restriction of subscribers’ access to only GERAN or UTRAN will not be possible.

In EPS, an operator may introduce subscriptions supporting the 5G NR Dual Connectivity in E-UTRAN. It shall be possible to indicate in subscription data that a subscriber´s access to the 5G NR Dual Connectivity in E-UTRAN service is restricted.

This administrative restriction of subscribers’ access shall be an optional feature.

7.2 Void

7.3 UE configured radio technology restriction

A UE shall support a Man Machine Interface setting for the user to disable use of one or more of the UE’s radio technologies, regardless of PLMNs. Radio technologies that individually can be disabled is dependent on supported radio technology of the UE such as GSM/EDGE, WCDMA, E-UTRA, and NR.

A UE shall support a Man Machine Interface setting enabling the user to re-enable use of one or more of the ME’s radio technologies for access to a radio access network, regardless of PLMNs. The user can only re-allow a radio technology that the user has previously disallowed.

NOTE: The described MMI user setting is a proprietary function of most legacy UE products to allow a user of a UE to change the radio capabilities of the UE. Legacy radio technologies may lack means to mitigate some security attack. If severe enough, the home operator may want to disallow their subscribers to access a radio access network with such radio technology. This configuration of the UE is valid for all PLMNs.

A UE shall support a secure mechanism for the home operator to disallow selection of one or more of the UE’s radio technologies for access to a radio access network, regardless of PLMNs. Radio technologies that individually can be disallowed are at least GSM/EDGE, WCDMA, E-UTRA, and NR.

A UE shall support a secure mechanism for the home operator to re-allow selection of one or more of the UE’s radio technologies for access to a radio access network, regardless of PLMNs. Radio technologies that individually can be re-allowed are at least GSM/EDGE, WCDMA, E-UTRA, and NR. The home operator can only re-allow a radio technology that the home operator has previously disallowed.

For a prioritized service (e.g., Emergency Services, MPS, Mission Critical Services), the UE shall support a mechanism to automatically override user and network disallowed RATs when there are no PLMNs on the allowed radio technologies identified that the UE is able to access.

Upon power-cycle or when the USIM is disabled, the UE configuration of enabled/disabled radio technologies configured by the user shall remain as it was before such events happen. The radio technologies disallowed by the HPLMN shall remain as it was before a power cycle. The radio technologies disallowed by the HPLMN shall be bound to the USIM