Method for providing access of an user end device to a service provided by an application function within a network structure and a network structure

US9450920B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-9450920-B2
Application numberUS-201214381393-A
CountryUS
Kind codeB2
Filing dateMar 1, 2012
Priority dateMar 1, 2012
Publication dateSep 20, 2016
Grant dateSep 20, 2016

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

For allowing a simple and reliable differentiation of UEs behind a GW from an AF side a method for providing access of an User End device (UE) to a service provided by an Application Function (AF) within a network structure is claimed, wherein the UE is authenticated by a Gateway (GW) to which the UE is attached and which provides access to the AF via a Broadband Access Network (BB Access Network). The method is characterized in that the GW informs a state database (SDB) on service flow requests to or from the authenticated UE towards the AF, that the GW additionally sends NAT (Network Address Translation) or NAPT (Network Address and Port Translation) binding information of a respective NAT or NAPT binding created by the GW regarding the authenticated UE and a respective service flow request to the SDB and that the SDB sends the NAT or NAPT binding information or an UE identifier to the AF, so that the AF—after having received the service flow request from the GW—can correlate the authenticated UE with the service flow request. Further an according network structure is claimed, preferably for carrying out the above mentioned method.

First claim

Opening claim text (preview).

The invention claimed is: 1. A method for providing a User End device (UE) with access to a service provided by an Application Function (AF) via a network, the method comprising: authenticating the UE by a gateway to which the UE is attached; obtaining, by the gateway, a service flow request from the UE, wherein the gateway adds additional information to the service flow request; creating, by the gateway, a Network Address Translation (NAT) or Network Address and Port Translation (NAPT) binding for the UE; sending, by the gateway, information on the created NAT or NAPT binding to a state database (SDB), wherein the SDB is on a separate network from the network used by the AF to provide the service to the UE; sending, by the SDB, the information on the created NAT or NAPT binding, or a UE identifier corresponding to the information on the created NAT or NAPT binding, to the AF; forwarding, by the gateway, the service flow request to the AF via the network; correlating, by the AF, the service flow request with the UE based on the information on the created NAT or NAPT binding, or the UE identifier corresponding to the information on the created NAT or NAPT binding, from the SDB; and configuring, by the AF, in response to the correlating, a service flow corresponding to the service flow request with the UE for providing the service, wherein the configuring includes at least one of the following: (a) allowing the service to be set up, (b) allowing specific policies to be applied to the service, and (c) starting an accounting procedure. 2. The method according to claim 1 , further comprising: based on the correlating, providing, by the AF, traffic to the UE based on at least one definable parameter. 3. The method according to claim 1 , wherein the configuring includes providing the service to the authenticated UE without requiring a login from a subscriber corresponding to the UE if the SUB sends login/authentication data to the AF. 4. The method according to claim 1 , wherein the gateway authenticates the UE by exchanging information with an entity that contains a user database and a profile. 5. The method according to claim 4 , wherein with an authentication reply from the entity, the gateway receives a policy that instructs the gateway to inform the SDB regarding the service flow request. 6. The method according to claim 1 , wherein forwarding the service flow request to the AF via the network is performed by the gateway after the AF has informed the gateway that the AF has received the information on the created NAT or NAPT binding, or the UE identifier corresponding to the information on the created NAT or NAPT binding, from the SDB. 7. The method according to claim 1 , wherein the additional information is used by the AF to query the SDB to find out information needed for the service flow. 8. The method according to claim 1 , wherein the SDB queries the gateway for NAT or NAPT bindings relating to other UEs attached to the gateway. 9. The method according to claim 1 , wherein the AF is authenticated during its registration according to a business level agreement. 10. The method according to claim 1 , wherein the UE transfers its access rights to another UE attached to the same gateway not having performed an authentication procedure. 11. The method according to claim 10 , wherein the UE sends a message via an authentication channel to the gateway to bundle both UEs with regard to the UE identifier. 12. A network system, wherein access to a service provided by an Application Function (AF) is provided to a User End device (UE) via a network, wherein the network system comprises: a gateway to which the UE is attached, configured to: authenticate the UE; obtain a service flow request from the UE, wherein the gateway is configured to add additional information to the service flow request; create a Network Address Translation (NAT) or Network Address and Port Translation (NAPT) binding for the UE; send information on the created NAT or NAPT binding to a state database (SDB); forwarding, by the gateway, the service flow request to the AF via the network; the SDB, configured to send the information on the created NAT or NAPT binding, or a UE identifier corresponding to the information on the created NAT or NAPT binding, to the AF, wherein the SDB is on a separate network from the network used by the AF to provide the service to the UE; the AF, configured to: correlate the service flow request with the UE based on the information on the created NAT or NAPT binding, or the UE identifier corresponding to the created NAT or NAPT binding information, from the SDB; and configure, in response to the correlating, a service flow corresponding to the service flow request with the UE for providing the service, wherein the configuring includes at least one of the following: (a) allowing the service to be set up, (b) allowing specific policies to be applied to the service, and (c) starting an accounting procedure.

Assignees

Inventors

Classifications

  • Identification of devices behind NAT devices · CPC title

  • Electricity · mapped topic

  • using address mapping retrieval, e.g. simple traversal of user datagram protocol through session traversal utilities for NAT [STUN] · CPC title

  • Electricity · mapped topic

  • through control of the NAT server, e.g. using universal plug and play [UPnP] · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US9450920B2 cover?
For allowing a simple and reliable differentiation of UEs behind a GW from an AF side a method for providing access of an User End device (UE) to a service provided by an Application Function (AF) within a network structure is claimed, wherein the UE is authenticated by a Gateway (GW) to which the UE is attached and which provides access to the AF via a Broadband Access Network (BB Access Netwo…
Who is the assignee on this patent?
Kolbe Hans-Joerg, Schmidt Mischa, Stiemerling Martin, and 1 more
What technology area does this patent fall under?
Primary CPC classification H04L61/2591. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Sep 20 2016 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).