BR112017007974A2 - processamento de mensagem para sessões de assinante que se estendem sobre domínios de rede diferentes - Google Patents

processamento de mensagem para sessões de assinante que se estendem sobre domínios de rede diferentes

Info

Publication number
BR112017007974A2
BR112017007974A2 BR112017007974A BR112017007974A BR112017007974A2 BR 112017007974 A2 BR112017007974 A2 BR 112017007974A2 BR 112017007974 A BR112017007974 A BR 112017007974A BR 112017007974 A BR112017007974 A BR 112017007974A BR 112017007974 A2 BR112017007974 A2 BR 112017007974A2
Authority
BR
Brazil
Prior art keywords
message
identifier
fqdn
network domain
extending over
Prior art date
Application number
BR112017007974A
Other languages
English (en)
Other versions
BR112017007974B1 (pt
Inventor
DIMITRIADIS Gerasimos
Essigmann Kurt
KLEINFELD Volker
Original Assignee
Ericsson Telefon Ab L M
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Ericsson Telefon Ab L M filed Critical Ericsson Telefon Ab L M
Publication of BR112017007974A2 publication Critical patent/BR112017007974A2/pt
Publication of BR112017007974B1 publication Critical patent/BR112017007974B1/pt

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/04Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks
    • H04L63/0428Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload
    • H04L63/0435Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload wherein the sending and receiving network entities apply symmetric encryption, i.e. same key used for encryption and decryption
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/04Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks
    • H04L63/0407Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the identity of one or more communicating identities is hidden
    • H04L63/0414Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the identity of one or more communicating identities is hidden during transmission, i.e. party's identity is protected against eavesdropping, e.g. by using temporary identifiers, but is known to the other party or parties involved in the communication
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/04Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks
    • H04L63/0428Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload
    • H04L63/0471Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload applying encryption by an intermediary, e.g. receiving clear information at the intermediary and encrypting the received information at the intermediary before forwarding
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/32Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
    • H04L9/3236Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials using cryptographic hash functions
    • H04L9/3239Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials using cryptographic hash functions involving non-keyed hash functions, e.g. modification detection codes [MDCs], MD5, SHA or RIPEMD
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04MTELEPHONIC COMMUNICATION
    • H04M15/00Arrangements for metering, time-control or time indication ; Metering, charging or billing arrangements for voice wireline or wireless communications, e.g. VoIP
    • H04M15/48Secure or trusted billing, e.g. trusted elements or encryption
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04MTELEPHONIC COMMUNICATION
    • H04M15/00Arrangements for metering, time-control or time indication ; Metering, charging or billing arrangements for voice wireline or wireless communications, e.g. VoIP
    • H04M15/55Arrangements for metering, time-control or time indication ; Metering, charging or billing arrangements for voice wireline or wireless communications, e.g. VoIP for hybrid networks
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04MTELEPHONIC COMMUNICATION
    • H04M15/00Arrangements for metering, time-control or time indication ; Metering, charging or billing arrangements for voice wireline or wireless communications, e.g. VoIP
    • H04M15/62Arrangements for metering, time-control or time indication ; Metering, charging or billing arrangements for voice wireline or wireless communications, e.g. VoIP based on trigger specification
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04MTELEPHONIC COMMUNICATION
    • H04M15/00Arrangements for metering, time-control or time indication ; Metering, charging or billing arrangements for voice wireline or wireless communications, e.g. VoIP
    • H04M15/66Policy and charging system
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04MTELEPHONIC COMMUNICATION
    • H04M15/00Arrangements for metering, time-control or time indication ; Metering, charging or billing arrangements for voice wireline or wireless communications, e.g. VoIP
    • H04M15/82Criteria or parameters used for performing billing operations
    • H04M15/8221Message based
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04MTELEPHONIC COMMUNICATION
    • H04M15/00Arrangements for metering, time-control or time indication ; Metering, charging or billing arrangements for voice wireline or wireless communications, e.g. VoIP
    • H04M15/82Criteria or parameters used for performing billing operations
    • H04M15/8228Session based
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/02Protecting privacy or anonymity, e.g. protecting personally identifiable information [PII]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W4/00Services specially adapted for wireless communication networks; Facilities therefor
    • H04W4/24Accounting or billing
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L12/00Data switching networks
    • H04L12/02Details
    • H04L12/14Charging, metering or billing arrangements for data wireline or wireless communications
    • H04L12/1403Architecture for metering, charging or billing

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Hardware Design (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Business, Economics & Management (AREA)
  • Accounting & Taxation (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)
  • Mobile Radio Communication Systems (AREA)
  • Computer And Data Communications (AREA)

Abstract

é apresentada uma técnica para ocultar informação topológica em uma mensagem que sai de um domínio de rede confiável. a mensagem se refere a uma sessão de assinante e compreende um nome de domínio totalmente qualificado (fqdn) de um originador de mensagem. o originador é localizado em um primeiro domínio de rede, e a mensagem é dirigida a um destino em um segundo domínio de rede. um aspecto do método compreende as etapas de receber a mensagem, determinar o fqdn compreendido na mensagem e determinar um identificador associado à mensagem. o identificador compreende pelo menos um entre um identificador de assinante, um identificador de sessão e um identificador de destino. além disso, o método compreende aplicar uma operação criptográfica no fqdn e identificador, ou em informações derivadas a partir daí, para gerar um valor criptográfico. a mensagem é então processada por substituir pelo menos uma porção do fqdn com o valor criptográfico antes de enviar a mensagem em direção ao segundo domínio de rede.
BR112017007974-7A 2014-12-08 2014-12-08 Método de processar uma mensagem para uma sessão de assinante, mídia legível por computador, elemento de rede, sistema de gerenciamento de mobilidade, e, sistema de carga BR112017007974B1 (pt)

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
PCT/EP2014/076900 WO2016091279A1 (en) 2014-12-08 2014-12-08 Message processing for subscriber sessions which stretch over different network domains

Publications (2)

Publication Number Publication Date
BR112017007974A2 true BR112017007974A2 (pt) 2018-01-16
BR112017007974B1 BR112017007974B1 (pt) 2022-12-06

Family

ID=52144647

Family Applications (1)

Application Number Title Priority Date Filing Date
BR112017007974-7A BR112017007974B1 (pt) 2014-12-08 2014-12-08 Método de processar uma mensagem para uma sessão de assinante, mídia legível por computador, elemento de rede, sistema de gerenciamento de mobilidade, e, sistema de carga

Country Status (7)

Country Link
US (2) US10491573B2 (pt)
EP (1) EP3231202B1 (pt)
AR (1) AR102945A1 (pt)
BR (1) BR112017007974B1 (pt)
MX (1) MX366459B (pt)
TR (1) TR201811991T4 (pt)
WO (1) WO2016091279A1 (pt)

Families Citing this family (10)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP5988447B2 (ja) * 2014-08-28 2016-09-07 インターナショナル・ビジネス・マシーンズ・コーポレーションInternational Business Machines Corporation ログメッセージのフォーマットを推定する方法、並びに、その為のコンピュータ及びコンピュータ・プログラム
US9967148B2 (en) 2015-07-09 2018-05-08 Oracle International Corporation Methods, systems, and computer readable media for selective diameter topology hiding
US10033736B2 (en) * 2016-01-21 2018-07-24 Oracle International Corporation Methods, systems, and computer readable media for remote authentication dial-in user service (radius) topology hiding
CN113940103A (zh) * 2019-06-10 2022-01-14 瑞典爱立信有限公司 用于处置网络功能的网络节点及其中执行的方法
US11558737B2 (en) 2021-01-08 2023-01-17 Oracle International Corporation Methods, systems, and computer readable media for preventing subscriber identifier leakage
US11888894B2 (en) 2021-04-21 2024-01-30 Oracle International Corporation Methods, systems, and computer readable media for mitigating network function (NF) update and deregister attacks
US11627467B2 (en) 2021-05-05 2023-04-11 Oracle International Corporation Methods, systems, and computer readable media for generating and using single-use OAuth 2.0 access tokens for securing specific service-based architecture (SBA) interfaces
US11695563B2 (en) 2021-05-07 2023-07-04 Oracle International Corporation Methods, systems, and computer readable media for single-use authentication messages
US11570689B2 (en) 2021-05-07 2023-01-31 Oracle International Corporation Methods, systems, and computer readable media for hiding network function instance identifiers
US11638155B2 (en) 2021-05-07 2023-04-25 Oracle International Corporation Methods, systems, and computer readable media for protecting against mass network function (NF) deregistration attacks

Family Cites Families (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2008127662A1 (en) * 2007-04-12 2008-10-23 Marvell World Trade Ltd. Packet data network connectivity domain selection and bearer setup
JP4128610B1 (ja) * 2007-10-05 2008-07-30 グローバルサイン株式会社 サーバ証明書発行システム
US9253163B2 (en) * 2011-12-12 2016-02-02 Tekelec, Inc. Methods, systems, and computer readable media for encrypting diameter identification information in a communication network
US10084595B2 (en) * 2012-08-24 2018-09-25 At&T Intellectual Property I, L.P. Algorithm-based anonymous customer references
US10924895B2 (en) * 2013-01-22 2021-02-16 Blackberry Limited Enhancing short message service addressing and routing
US20150046826A1 (en) * 2013-08-08 2015-02-12 Alcatel Lucent Canada, Inc. Visual Rendering of Diameter Network Topology
US9350550B2 (en) * 2013-09-10 2016-05-24 M2M And Iot Technologies, Llc Power management and security for wireless modules in “machine-to-machine” communications
US9397891B2 (en) * 2014-04-25 2016-07-19 Cellco Partnership Geo-redundant PCRF MRA with MPE allocation via IMSI hashing and IP indexed table

Also Published As

Publication number Publication date
BR112017007974B1 (pt) 2022-12-06
WO2016091279A1 (en) 2016-06-16
EP3231202A1 (en) 2017-10-18
TR201811991T4 (tr) 2018-09-21
AR102945A1 (es) 2017-04-05
US20200067893A1 (en) 2020-02-27
US10491573B2 (en) 2019-11-26
MX366459B (es) 2019-07-10
US11546308B2 (en) 2023-01-03
US20160352696A1 (en) 2016-12-01
MX2017006164A (es) 2017-07-27
EP3231202B1 (en) 2018-06-13

Similar Documents

Publication Publication Date Title
BR112017007974A2 (pt) processamento de mensagem para sessões de assinante que se estendem sobre domínios de rede diferentes
BR112016023565A2 (pt) atualizações para suportar mobilidade de fluxo de protocolo de internet baseado em rede
BR112016025138A2 (pt) conexão de nuvem pública com recursos de rede privada
BR112016025270A2 (pt) aparelhos e métodos para integração rápida de um dispositivo habilitado para internet
BR112015014511A2 (pt) método e dispositivo para ajuste de potência transmissão
BR112016020392A8 (pt) dispositivo de nó de acesso, método em nó de acesso, dispositivo de nó de porta de comunicação e método em nó de porta de comunicação
BR112017003510A2 (pt) método para determinar um atraso de propagação de uma mensagem, e, componente de rede.
GB201419338D0 (en) Providing origin insight for web applications via session traversal utilities for network address translation (stun) message, and computer-readable media
BR112017017072A2 (pt) distribuição de largura de banda em uma rede
BR112018003253A2 (pt) método de transmissão de dados, e dispositivo e sistema relacionados
MY202056A (en) Signaling message processing method and entity
BR112018008282A2 (pt) dispositivo de comunicação, nó de rede de núcleo e métodos desempenhados pelos mesmos
SG10201804055XA (en) Router
MX362086B (es) Aparato y método de transferencia de información.
JP2015133639A5 (pt)
BR112015008294A2 (pt) método e dispositivo para processar dados de pwm
Nakagawa migration and regional disparity
TAGIRI et al. 2nd report on fossil textures from Hitachi Cambrian Akazawa Formation; sponge spicule, foraminifera and Echinodermata
Suzuki et al. Hf-O isotope systematics of zircons from the Taitao Granite: Implications for slab-melting components
Editorial Committee Contents of Back Issues of Eizōgaku No. 84, 2010-No. 91, 2013
後藤裕平 et al. 21pDG-9 Yukawa interactions in orbifold famiy unification
Editorial Committee Contents of Back Issues of ICONICS Vol. 1, 1987-Vol. 10, 2010
BR112018002522A2 (pt) métodos de preparar composições de polímero de cloreto de vinilideno
佐藤勇二 et al. Non-SUSY D-branes with Vanishing Cylinder Amplitudes in Asymmetric Orbifolds
池田真希 et al. Benign symmetrical lipomatosis

Legal Events

Date Code Title Description
B06U Preliminary requirement: requests with searches performed by other patent offices: procedure suspended [chapter 6.21 patent gazette]
B09A Decision: intention to grant [chapter 9.1 patent gazette]
B16A Patent or certificate of addition of invention granted [chapter 16.1 patent gazette]

Free format text: PRAZO DE VALIDADE: 20 (VINTE) ANOS CONTADOS A PARTIR DE 08/12/2014, OBSERVADAS AS CONDICOES LEGAIS