METHODS, SYSTEMS, AND COMPUTER READABLE MEDIA FOR VALIDATING SUBSCRIBER ENTITIES AGAINST SPOOFING ATTACKS IN A COMMUNICATIONS NETWORK

    公开(公告)号:US20230247430A1

    公开(公告)日:2023-08-03

    申请号:US17587669

    申请日:2022-01-28

    CPC classification number: H04W12/122 H04W12/06 H04W12/72 H04W84/042

    Abstract: Methods, systems, and computer readable media for validating subscriber entities against spoofing attacks in a communications network are disclosed. One method includes receiving, by a proxy element, a subscriber authentication request message that is sent from an access and mobility management function (AMF) and is directed to a user data management (UDM) function in a home network, creating, by the proxy element, a record entry including a subscriber identifier and a public land mobile network (PLMN) identifier contained in the subscriber authentication request message, wherein the record entry is stored in an authentication registry database prior to forwarding the subscriber authentication request message to the UDM function. The method further includes receiving, by the proxy element, a subsequent update context request message from the AMF, updating the record entry to include an AMF identifier if the subscriber identifier and the PLMN identifier in the subsequent update context request message respectively match the subscriber identifier and the PLMN identifier in the record entry, and rejecting the subsequent update context request message if the subscriber identifier and the PLMN identifier in the subsequent update context request message fail to match the subscriber identifier and PLMN identifier in the record entry.

    METHODS, SYSTEMS, AND COMPUTER READABLE MEDIA FOR DISTRIBUTING SIGTRAN CONNECTIONS AMONG SIGNAL TRANSFER POINT (STP) MESSAGE PROCESSORS

    公开(公告)号:US20200177508A1

    公开(公告)日:2020-06-04

    申请号:US16206592

    申请日:2018-11-30

    Abstract: A method for distributing Sigtran connections among signal transfer point (STP) message processors includes providing a connection load balancer as a front end to plural message processors of an STP. The method further includes publishing, by the connection load balancer, an Internet protocol (IP) address to SS7 peers. The method further includes initializing the message processors of the STP to listen on the IP address published by the connection load balancer. The method further includes receiving, at the connection load balancer, a Sigtran message addressed to the IP address. The method further includes determining, by the connection load balancer, whether the Sigtran message is an initial message for a Sigtran connection or a subsequent message for a Sigtran connection and whether the Sigtran connection has been assigned to one of the message processors. The method further includes forwarding the message to one of the message processors or dropping the message based on whether the message is an initial message or a subsequent message and based on whether the connection has been assigned to one of the message processors.

Patent Agency Ranking