Systems and methods to protect against information disclosure
US-2024205287-A1 · Jun 20, 2024 · US
US2021075868A1 · US · A1
| Field | Value |
|---|---|
| Publication number | US-2021075868-A1 |
| Application number | US-202017100120-A |
| Country | US |
| Kind code | A1 |
| Filing date | Nov 20, 2020 |
| Priority date | May 22, 2018 |
| Publication date | Mar 11, 2021 |
| Grant date | — |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
Embodiments of this application disclose a method and system for identifying an application identifier (APP ID), and a device. The method includes: receiving, by a packet flow description function network element, a query request that carries a signature parameter of a service data flow; determining an APP ID corresponding to a PFD that matches the signature parameter of the service data flow, as an APP ID corresponding to the service data flow; and sending a query response that carries the APP ID corresponding to the service data flow. The method provided in the embodiments of this application is applicable to APP ID identification.
Opening claim text (preview).
1 . A method for identifying an application identifier (APP ID), the method comprising: receiving, by a packet flow description function network element, a query request, wherein the query request comprises a signature parameter of a first service data flow, and the signature parameter is used to describe the first service data flow; determining, by the packet flow description function network element, a first APP ID corresponding to a first packet flow description (PFD) that matches the signature parameter, as an APP ID corresponding to the first service data flow; and sending, by the packet flow description function network element, a query response, wherein the query response comprises the fist APP ID. 2 . The method of claim 1 , wherein determining the first APP ID corresponding to the first packet flow description (PFD) that matches the signature parameter, as the APP ID corresponding to the first service data flow comprises: matching, by the packet flow description function network element, the signature parameter with at least one PFDs, to determine that the first PFD matches the signature parameter; and determining, by the packet flow description function network element based on the first PFD and a correspondence between the first PFD and first APP ID, the first APP ID as the APP ID corresponding to the first service data flow. 3 . The method of claim 2 , wherein before matching, by the packet flow description function network element, the signature parameter with at least one PFD, the method further comprises: determining, by the packet flow description function network element, that a correspondence between the signature parameter and an APP ID does not exist. 4 . The method of claim 2 , further comprising: storing, by the packet flow description function network element, a correspondence between the signature parameter and the first APP ID. 5 . The method of claim 1 , wherein receiving, by the packet flow description function network element, query request comprises: receiving, by the packet flow description function network element, the query request from a user plane network element through a communications interface between the packet flow description function network element and the user plane network element; and sending, by the packet flow description function network element, the query response comprises: sending, by the packet flow description function network element, the query response to the user plane network element through the communications interface. 6 . The method of claim 1 , wherein receiving, by the packet flow description function network element, the query request comprises: receiving, by the packet flow description function network element, the query request from a session management network element through a service-based interface between the packet flow description function network element and the session management network element; and sending, by the packet flow description function network element, the query response comprises: sending, by the packet flow description function network element, the query response to the session management network element through the service-based interface. 7 . The method of claim 6 , wherein: the query response further comprises a forwarding indication, and the forwarding indication is used to indicate the session management network element to send the first APP ID to a user plane network element. 8 . The method of claim 1 , wherein: the packet flow description function network element is deployed in a network exposure function network element. 9 . The method of claim 2 , further comprises: receiving, by the packet flow description function network element from an application function network element, the first PFD and first APP ID corresponding to the first PFD, and storing the correspondence between the first PFD and the first APP ID. 10 . The method of claim 1 , wherein: the signature parameter comprises one or more of: a 5-tuple of the first service data flow, a uniform resource locator (URL), of the first service data flow, or a domain name of the first service data flow. 11 . A system for identifying an application identifier (APP ID), the system comprising: a first network element and a packet flow description function network element, wherein, the first network element is configured to send a query request to the packet flow description function network element, wherein the query request comprises a signature parameter of a first service data flow, and the signature parameter is used to describe the first service data flow; the packet flow description function network element is configured to: receive the query request; determine an first APP ID corresponding to a first packet flow description (PFD) that matches the signature parameter, as an APP ID corresponding to the first service data flow; and send a query response to the first network element, wherein the query response comprises the first APP ID; and the first network element is further configured to receive the query response from the packet flow description function network element. 12 . The system of claim 11 , wherein the packet flow description function network element is configured to: match the signature parameter with at least one PFD, to determine that the first PFD matches the signature parameter; and determining, based on the first PFD and a correspondence between the first PFD and the first APP ID, the first APP ID as the APP ID corresponding to the first service data flow. 13 . The system of claim 12 , wherein the packet flow description function network element is further configured to: before matching the signature parameter with the at least one PFD, determine that a correspondence between the signature parameter and an APP ID does not exist. 14 . The system of claim 12 , wherein the packet flow description function network element is further configured to: store a correspondence between the signature parameter and the first APP ID. 15 . The system of claim 11 , wherein the first network element is a user plane network element. 16 . The system of claim 1 , wherein the first network element is a session management network element, and the system further comprises a user plane network element and wherein the user plane network element is configured to send a first request to the first network element, wherein the first request comprises the signature parameter; and the first network element is further configured to send a first response to the user plane network element, wherein the first response comprises the first APP ID. 17 . The system of claim 11 , wherein the packet flow description function network element is deployed in a network exposure function network element. 18 . A packet flow description function network element comprising: at least one processor; and a memory coupled to the at least one processor and having instructions stored thereon which, when executed by the at least one processor, cause the packet flow description function network element to: receive a query request, wherein the query request comprises a signature parameter of a first service data flow, and the signature parameter is used to describe the first service data flow; determine a first APP ID corresponding to a first packet flow description (PFD) that matches the signature parameter, as an APP ID corresponding to the first service data flow; and send a query response, wherein the query response comprises the fist APP ID. 19 . The
based on web technology, e.g. hypertext transfer protocol [HTTP] · CPC title
Markers for unambiguous identification of a particular session, e.g. session cookie or URL-encoding · CPC title
for supporting traffic characterised by the type of applications · CPC title
Charging, metering or billing arrangements specially adapted for data communications, e.g. authentication, authorisation and accounting [AAA] framework · CPC title
based on the service used · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.