SELECTIVE NETWORK SLICE AUTHENTICATION AND AUTHORIZATION IN A MOBILE NETWORK ENVIRONMENT

    公开(公告)号:US20230388792A1

    公开(公告)日:2023-11-30

    申请号:US17752182

    申请日:2022-05-24

    IPC分类号: H04W12/06 H04W60/00

    摘要: Presented herein are techniques to provide selective network slice authentication and authorization in a mobile network environment. In one example, a method may include obtaining, by an access management element of a mobile network, a registration request from a user equipment, wherein the registration request identifies a plurality of network slices with which the user equipment seeks authentication; determining that if authentication for the user equipment with a first network slice is successful, authentication for the user equipment with one or more other network slices can be skipped; and upon successful authentication for the user equipment with the first network slice, skipping authentication for the user equipment with the one or more other network slices.

    HOME NETWORK ASSISTED CONCURRENT ACCESS TO NETWORK SLICES IN MULTIPLE VISITED PUBLIC LAND MOBILE NETWORKS (VPLMNS)

    公开(公告)号:US20230308852A1

    公开(公告)日:2023-09-28

    申请号:US17705939

    申请日:2022-03-28

    IPC分类号: H04W8/12 H04W60/04 H04W8/20

    摘要: Techniques and mechanisms for use in facilitating home network assisted concurrent access to network slices in multiple visited public land mobile networks (VPLMNs) are described. A control plane (CP) function for mobility management may receive, from a UE (e.g., configured without dual connectivity), a message which indicates a registration request for registration using a first network slice and a second network slice. The CP function may manage registration for the UE in response to the registration request. The CP function may receive, from the UE, a message which indicates a request for establishing a protocol data unit (PDU) session using the second network slice which is not supported or available in the first VPLMN. The CP function may forward the request for establishing the PDU session to an application function (AF) for managing establishment of the PDU session for the UE using the second network slice in a second VPLMN.

    NETWORK ADDRESS TRANSLATION (NAT) TRAVERSAL AND PROXY BETWEEN USER PLANE FUNCTION (UPF) AND SESSION MANAGEMENT FUNCTION (SMF)

    公开(公告)号:US20220131830A1

    公开(公告)日:2022-04-28

    申请号:US17079836

    申请日:2020-10-26

    IPC分类号: H04L29/12

    摘要: A method enables communication between Session Management Function (SMF) and User Plane Function (UPF) instances which are separately deployed behind Network Address Translation (NAT) services. The method includes configuring an SMF or a UPF to initiate an association with a corresponding UPF or SMF. The SMF registers first information with a Network Repository Function (NRF) enabling the remote UPF to communicate with the SMF through a NAT service. The method further includes obtaining second information from the NRF enabling the SMF to communicate with the remote UPF through the NAT service. The method also includes sending an association request to the remote UPF based on the second information and receiving an association response from the remote UPF through the NAT service.

    TENANT DEPLOYMENT OF MOBILE NETWORK COMPONENTS

    公开(公告)号:US20230017423A1

    公开(公告)日:2023-01-19

    申请号:US17375765

    申请日:2021-07-14

    IPC分类号: H04W76/10 H04W48/20 H04W68/00

    摘要: Disclosed are embodiments that leverage a central control plane of a managed 5G network service architecture across multiple serviced tenants by deploying tenant specific user plane function (UPF) and gNB components within tenant managed compute infrastructure. To enable this architecture, the disclosed embodiments assign gNBs and UPF instances to specific tenants and communicate those assignments to core components. Policies can be defined and applied to specific tenants from the central control plane. Inbound data routing to a specific tenant is accomplished by referencing a data store in the control plane that identifies which gNBs are assigned to a tenant associated with the incoming data. Those gNBs are then paged to service the incoming data.

    UPF Programming Over Enhanced N9 Interface
    9.
    发明申请

    公开(公告)号:US20200007590A1

    公开(公告)日:2020-01-02

    申请号:US16118554

    申请日:2018-08-31

    IPC分类号: H04L29/06 H04L29/08 H04L12/46

    摘要: Various implementations disclosed herein enable programming user plane gateway controllers over enhanced N9 interfaces. In various implementations, a method of gateway controlling is performed by a computing device including one or more processors, and a non-transitory memory. In various implementations the method includes determining, by a first packet gateway controller connected to a first session manager device, that a user equipment moved to a geographical area that is served by a second session manager device. In some implementations, the method includes receiving, by the first packet gateway device, a set of information for a second packet gateway device. In some implementations, the method includes transmitting, by the first packet gateway device, a session establishment request via a first network interface to the second packet gateway controller using segment routing via a second network interface.

    TENANT DEPLOYMENT OF MOBILE NETWORK COMPONENTS

    公开(公告)号:US20240306223A1

    公开(公告)日:2024-09-12

    申请号:US18665711

    申请日:2024-05-16

    IPC分类号: H04W76/10 H04W48/20 H04W68/00

    摘要: Disclosed are embodiments that leverage a central control plane of a managed 5G network service architecture across multiple serviced tenants by deploying tenant specific user plane function (UPF) and gNB components within tenant managed compute infrastructure. To enable this architecture, the disclosed embodiments assign gNBs and UPF instances to specific tenants and communicate those assignments to core components. Policies can be defined and applied to specific tenants from the central control plane. Inbound data routing to a specific tenant is accomplished by referencing a data store in the control plane that identifies which gNBs are assigned to a tenant associated with the incoming data. Those gNBs are then paged to service the incoming data.