-
公开(公告)号:US20250133487A1
公开(公告)日:2025-04-24
申请号:US18489529
申请日:2023-10-18
Applicant: Verizon Patent and Licensing Inc.
Inventor: Yousif Targali , Vinod Kumar Choyi
IPC: H04W48/18 , H04W4/50 , H04W12/086 , H04W40/02 , H04W76/10
Abstract: A device may include a processor. The processor may be configured to: receive, from a User Equipment device (UE) over a wireless connection, a request to enroll an application installed on the UE to receive a service from a network slice; select a network slice to provide the service to the application on the UE; bind the application on the UE to the selected network slice; and send an enrollment reply to the UE. The processor may perform a dynamic, short-term application enrollment or a long-term application enrollment, to enable the application to access the service.
-
公开(公告)号:US20230179967A1
公开(公告)日:2023-06-08
申请号:US18161535
申请日:2023-01-30
Applicant: Verizon Patent and Licensing Inc.
Inventor: David Taft , Vinod Kumar Choyi , Maqbool Chauhan , Jerry Steben , Parry Cornell Booker , Hossein M. Ahmadi , Minbao Li , Sudhakar Reddy Patil
Abstract: A computer device may include a memory storing instructions and processor configured to execute the instructions to host a network function container that implements a microservice for a network function in a wireless communications network, wherein the network function container is deployed by a container orchestration platform; host a service proxy container associated with the network function container, wherein the service proxy container is deployed by the container orchestration platform; and configure the hosted service proxy container to apply a wireless network policy to the microservice for the network function. The processor may be further configured to intercept messages associated with the microservice for the network function using the configured service proxy container; and apply the wireless network policy to the intercepted messages using the configured service proxy container.
-
公开(公告)号:US20220408256A1
公开(公告)日:2022-12-22
申请号:US17349436
申请日:2021-06-16
Applicant: Verizon Patent and Licensing Inc.
Inventor: Vinod Kumar Choyi , Samita Chakrabarti
Abstract: One or more devices may include a credentials server. The credentials server may be configured to: receive primary Standalone Non-Public Network (SNPN) credentials for a User Equipment device (UE) and SNPN information. The primary SNPN credentials and the SNPN information are associated with the UE and an SNPN. The devices may be configured to generate temporary SNPN credentials based on the primary SNPN credentials and the SNPNN information. The devices may forward the temporary SNPN credentials to the SNPN.
-
公开(公告)号:US12262206B2
公开(公告)日:2025-03-25
申请号:US18314219
申请日:2023-05-09
Applicant: Verizon Patent and Licensing Inc.
Inventor: Vinod Kumar Choyi , Kristen Sydney Young , Yousif Targali , Michael A. Gallagher
Abstract: Systems and methods enable the provisioning of security as a service for network slices. A network device stores definitions of multiple security assurance levels for network slices based on security parameters of assets used in the network slices. The network device stores multiple network slice templates, wherein the multiple network slice templates have different security assurance levels, of the multiple security assurance levels, for a Network Service Descriptor (NSD). The network device receives a request for a network slice with a requested security assurance level, of the multiple security assurance levels, for the NSD, and deploys the network slice using one of the network slice templates that has a security assurance level that corresponds to the requested security assurance level. The network device monitors the security parameters of the assets of the network slice for changes to the security assurance level of the deployed network slice.
-
公开(公告)号:US20240224092A1
公开(公告)日:2024-07-04
申请号:US18149180
申请日:2023-01-03
Applicant: Verizon Patent and Licensing Inc.
Inventor: Vinod Kumar Choyi , Samita Chakrabarti
Abstract: A system described herein may monitor information associated with a set of User Equipment (“UEs”) associated with a first network, and may receive an access request, for access to a first UE of the set of UEs, from a second UE associated with a second network. The system may obtain, based on the access request and from the second network, monitored information associated with the second UE. The system may identify monitored information associated with the first UE and a particular access policy that is associated with the first UE and the second UE. The system may identify, based on the particular access policy, the monitored information associated with the first UE, and the monitored information associated with the second UE, whether to grant or deny the access request. The system may output, in response to the access request, an indication of whether the access request is granted or denied.
-
公开(公告)号:US20230064698A1
公开(公告)日:2023-03-02
申请号:US18053899
申请日:2022-11-09
Applicant: Verizon Patent and Licensing Inc.
Inventor: Vinod Kumar Choyi , Sudhakar Reddy Patil , Jayesh Kumar Laad
Abstract: Systems and methods leverage trust anchors to generate tokens which can then be used by network functions (NFs). A virtualization infrastructure manager (VIM) for a virtualized platform receives a NF software package and a certificate request token (CRT) from a management function. The NF is a virtual NF, a containerized NF, or another virtual entity (xNF) to be deployed. The CRT is digitally signed by the management function and includes a network address of a trust anchor platform and a NF profile. The VIM deploys the NF and provides the CRT to the NF. The NF obtains from the CRT the network address of the trust anchor platform, generates a certificate signing request (CSR) for a digital certificate, and submits the CSR and the CRT to the trust anchor platform. The NF receives a digital certificate from the trust anchor platform based on validation of both the CSR and CRT.
-
公开(公告)号:US20220217540A1
公开(公告)日:2022-07-07
申请号:US17143589
申请日:2021-01-07
Applicant: Verizon Patent and Licensing Inc.
Inventor: Vinod Kumar Choyi , Kristen Sydney Young , Yousif Targali , Michael A. Gallagher
Abstract: Systems and methods enable the provisioning of security as a service for network slices. A network device stores definitions of multiple security assurance levels for network slices based on security parameters of assets used in the network slices. The network device stores multiple network slice templates, wherein the multiple network slice templates have different security assurance levels, of the multiple security assurance levels, for a Network Service Descriptor (NSD). The network device receives a request for a network slice with a requested security assurance level, of the multiple security assurance levels, for the NSD, and deploys the network slice using one of the network slice templates that has a security assurance level that corresponds to the requested security assurance level. The network device monitors the security parameters of the assets of the network slice for changes to the security assurance level of the deployed network slice.
-
公开(公告)号:US20210392477A1
公开(公告)日:2021-12-16
申请号:US16899150
申请日:2020-06-11
Applicant: Verizon Patent and Licensing Inc.
Inventor: David Taft , Vinod Kumar Choyi , Maqbool Chauhan , Jerry Steben , Parry Cornell Booker , Hossein M. Ahmadi , Minbao Li , Sudhakar Reddy Patil
Abstract: A computer device may include a memory storing instructions and processor configured to execute the instructions to host a network function container that implements a microservice for a network function in a wireless communications network, wherein the network function container is deployed by a container orchestration platform; host a service proxy container associated with the network function container, wherein the service proxy container is deployed by the container orchestration platform; and configure the hosted service proxy container to apply a wireless network policy to the microservice for the network function. The processor may be further configured to intercept messages associated with the microservice for the network function using the configured service proxy container; and apply the wireless network policy to the intercepted messages using the configured service proxy container.
-
公开(公告)号:US20210314171A1
公开(公告)日:2021-10-07
申请号:US16842060
申请日:2020-04-07
Applicant: Verizon Patent and Licensing Inc.
Inventor: Vinod Kumar Choyi , Sudhakar Reddy Patil , Jayesh Kumar Laad
Abstract: Systems and methods leverage trust anchors to generate tokens which can then be used by network functions (NFs). A virtualization infrastructure manager (VIM) for a virtualized platform receives a NF software package and a certificate request token (CRT) from a management function. The NF is a virtual NF, a containerized NF, or another virtual entity (xNF) to be deployed. The CRT is digitally signed by the management function and includes a network address of a trust anchor platform and a NF profile. The VIM deploys the NF and provides the CRT to the NF. The NF obtains from the CRT the network address of the trust anchor platform, generates a certificate signing request (CSR) for a digital certificate, and submits the CSR and the CRT to the trust anchor platform. The NF receives a digital certificate from the trust anchor platform based on validation of both the CSR and CRT.
-
公开(公告)号:US20210250172A1
公开(公告)日:2021-08-12
申请号:US16788477
申请日:2020-02-12
Applicant: Verizon Patent and Licensing Inc.
Inventor: Vinod Kumar Choyi , Hossein M. Ahmadi , Sudhakar Reddy Patil
Abstract: Systems and methods enable secure service-based communications in networks that use a Services Communications Proxy (SCP). A Network Function (NF) producer receives a service request including an authorization token and a signed service request object, wherein the service request originates from an NF consumer of the wireless core network and is forwarded to the NF producer via the SCP. The NF producer verifies the signed service request object and generates, after the verifying, a service response. The service response includes a signed service response object. The NF producer sends, to the NF consumer and via the SCP, the service response with the signed service response object.
-
-
-
-
-
-
-
-
-