-
公开(公告)号:US11522721B2
公开(公告)日:2022-12-06
申请号:US16842060
申请日:2020-04-07
Applicant: Verizon Patent and Licensing Inc.
Inventor: Vinod Kumar Choyi , Sudhakar Reddy Patil , Jayesh Kumar Laad
Abstract: Systems and methods leverage trust anchors to generate tokens which can then be used by network functions (NFs). A virtualization infrastructure manager (VIM) for a virtualized platform receives a NF software package and a certificate request token (CRT) from a management function. The NF is a virtual NF, a containerized NF, or another virtual entity (xNF) to be deployed. The CRT is digitally signed by the management function and includes a network address of a trust anchor platform and a NF profile. The VIM deploys the NF and provides the CRT to the NF. The NF obtains from the CRT the network address of the trust anchor platform, generates a certificate signing request (CSR) for a digital certificate, and submits the CSR and the CRT to the trust anchor platform. The NF receives a digital certificate from the trust anchor platform based on validation of both the CSR and CRT.
-
公开(公告)号:US11509476B2
公开(公告)日:2022-11-22
申请号:US16788477
申请日:2020-02-12
Applicant: Verizon Patent and Licensing Inc.
Inventor: Vinod Kumar Choyi , Hossein M. Ahmadi , Sudhakar Reddy Patil
Abstract: Systems and methods enable secure service-based communications in networks that use a Services Communications Proxy (SCP). A Network Function (NF) producer receives a service request including an authorization token and a signed service request object, wherein the service request originates from an NF consumer of the wireless core network and is forwarded to the NF producer via the SCP. The NF producer verifies the signed service request object and generates, after the verifying, a service response. The service response includes a signed service response object. The NF producer sends, to the NF consumer and via the SCP, the service response with the signed service response object.
-
公开(公告)号:US12255875B2
公开(公告)日:2025-03-18
申请号:US17400173
申请日:2021-08-12
Applicant: VERIZON PATENT AND LICENSING INC.
Inventor: David Robert Lenrow , Myron Eugene Bagwell , Vinod Kumar Choyi , Michael A Gallagher
IPC: H04L9/40 , G06F9/455 , H04L41/0806 , H04L41/0893
Abstract: Disclosed are embodiments for injecting sidecar proxy capabilities into non-sidecar applications, allowing such non-sidecar applications to communicate with a service mesh architecture. In an embodiment, a method comprises receiving a request to instantiate a proxy for a non-sidecar application at a service mesh gateway (SMG). The SMG then instantiates the proxy in response to the request and broadcasts network information of the non-sidecar application to a mesh controller deployed in a containerized environment. Finally, the SMG (via the proxy) transmits data over a control plane that is communicatively coupled to the mesh controller.
-
公开(公告)号:US20250016854A1
公开(公告)日:2025-01-09
申请号:US18347021
申请日:2023-07-05
Applicant: Verizon Patent and Licensing Inc.
Abstract: A system described herein may request, from a first network, access parameters associated with a User Equipment (“UE”) and a second network. The first network may be, for example, a home network with respect to the UE and the second network may be a roaming network with respect to the UE. The system may receive, from the first network, the requested access parameters associated with the UE and the second network, which may include authentication information associated with the first network (e.g., as provided by an authentication system of the first network). The system may output the access parameters and the authentication information to the UE, which may verify the access parameters based on the authentication information, select one or more access parameters of the verified access parameters, and request a communication session establishment with the second network in accordance with the selected one or more access parameters.
-
公开(公告)号:US12143813B2
公开(公告)日:2024-11-12
申请号:US17492051
申请日:2021-10-01
Applicant: Verizon Patent and Licensing Inc.
Inventor: David Taft , Maqbool Chauhan , Sudhakar Reddy Patil , Vinod Kumar Choyi , Jerry Steben
Abstract: Systems and methods described herein provide for User Equipment (UE)-initiated authentication and authorization updates to Network Slice-Specific Authentication and Authorization (NSSAA). A network device in a core network receives a message from a user device outside of the core network, wherein the message includes a request to initiate a NSSAA procedure. The network device initiates the NSSAA procedure in response to the request. The systems and methods also provide for UE-initiated authorization revocation of NSSAA.
-
26.
公开(公告)号:US11979743B2
公开(公告)日:2024-05-07
申请号:US17349436
申请日:2021-06-16
Applicant: Verizon Patent and Licensing Inc.
Inventor: Vinod Kumar Choyi , Samita Chakrabarti
CPC classification number: H04W12/068 , H04W12/03 , H04W12/0431 , H04W12/08 , H04W12/72 , H04W12/75
Abstract: One or more devices may include a credentials server. The credentials server may be configured to: receive primary Standalone Non-Public Network (SNPN) credentials for a User Equipment device (UE) and SNPN information. The primary SNPN credentials and the SNPN information are associated with the UE and an SNPN. The devices may be configured to generate temporary SNPN credentials based on the primary SNPN credentials and the SNPNN information. The devices may forward the temporary SNPN credentials to the SNPN.
-
公开(公告)号:US11910480B2
公开(公告)日:2024-02-20
申请号:US17233030
申请日:2021-04-16
Applicant: Verizon Patent and Licensing Inc.
Inventor: Yousif Targali , Vinod Kumar Choyi , Sudhakar Reddy Patil , Michael A. Gallagher
Abstract: A method may include receiving, at a network device, a registration request that comprises a subscription concealed identifier (SUCI) associated with a particular user equipment (UE) device. The network device determines whether the SUCI indicates a request for null-scheme network access; and retrieves a scheme authorization parameter for the UE device when it is determined that the SUCI indicates a request for null-scheme network access. The scheme authorization parameter indicates whether the UE device is authorized for null-scheme access to a service provider network. The network device determines whether the UE device is authorized for null-scheme network access based on the retrieved scheme authorization parameter and performs processing associated with null-scheme network access when it is determined that the particular UE device is authorized for null-scheme network access.
-
公开(公告)号:US20220353263A1
公开(公告)日:2022-11-03
申请号:US17242419
申请日:2021-04-28
Applicant: Verizon Patent and Licensing Inc.
Inventor: Vinod Kumar Choyi , Ali Imdad Malik , Sudhakar Reddy Patil
IPC: H04L29/06 , H04W12/06 , H04L9/32 , H04W12/08 , H04W12/122
Abstract: A network device receives, from a requester, an access token request associated with subscribing a consumer network function (NF) to a resource provided by a producer NF, where the access token request includes a notification identifier identifying where the consumer NF is to receive content and/or notifications, associated with the resource, from the producer NF. The network device validates the requester and generates an access token and an access token response based on successfully validating the requester. The network device signs the notification identifier as a component of the access token response and sends the access token response, with the signed notification identifier, to the requester for use in requesting a subscription to the resource for the consumer NF from the producer NF.
-
公开(公告)号:US20220337994A1
公开(公告)日:2022-10-20
申请号:US17233030
申请日:2021-04-16
Applicant: Verizon Patent and Licensing Inc.
Inventor: Yousif Targali , Vinod Kumar Choyi , Sudhakar Reddy Patil , Michael A. Gallagher
Abstract: A method may include receiving, at a network device, a registration request that comprises a subscription concealed identifier (SUCI) associated with a particular user equipment (UE) device. The network device determines whether the SUCI indicates a request for null-scheme network access; and retrieves a scheme authorization parameter for the UE device when it is determined that the SUCI indicates a request for null-scheme network access. The scheme authorization parameter indicates whether the UE device is authorized for null-scheme access to a service provider network. The network device determines whether the UE device is authorized for null-scheme network access based on the retrieved scheme authorization parameter and performs processing associated with null-scheme network access when it is determined that the particular UE device is authorized for null-scheme network access.
-
公开(公告)号:US11432158B2
公开(公告)日:2022-08-30
申请号:US16988988
申请日:2020-08-10
Applicant: Verizon Patent and Licensing Inc.
Inventor: Vinod Kumar Choyi , Sudhakar Reddy Patil , Robert Avanes
Abstract: In some implementations, a device of a network may receive, from a user equipment (UE), a request associated with enabling the UE to access a network, wherein the request includes a first routing indicator. The device may identify an authentication manager, of the network, that is mapped to the first routing indicator in an entry of a routing table of the network. The device may route the request to the authentication manager of the network to permit the authentication manager to authenticate the UE. The device may purge, based on the request being routed to the authentication manager, the entry to remove the first routing indicator from the routing table. The device may store, after purging the entry, a second routing indicator in the entry to map the second routing indicator to the authentication manager, wherein the second routing indicator is different from the first routing indicator.
-
-
-
-
-
-
-
-
-