EXTENDING SECONDARY AUTHENTICATION FOR FAST ROAMING BETWEEN SERVICE PROVIDER AND ENTERPRISE NETWORK

    公开(公告)号:US20210218744A1

    公开(公告)日:2021-07-15

    申请号:US16743630

    申请日:2020-01-15

    Abstract: Methods are provided for generating an enterprise key for access to an enterprise network via another access network, as part of a secondary authentication to an external data network through another access network. In these methods, an enterprise authentication device obtains, via a first access network, a request to authenticate a user device onto an enterprise network. The user device is connected to the first access network. The method further includes the enterprise authentication device authenticating the user device to obtain access to the enterprise network via the first access network and generating the enterprise key for the user device to provide access to the enterprise network via a second access network.

    OPEN ACCESS IN NEUTRAL HOST NETWORK ENVIRONMENTS

    公开(公告)号:US20210136583A1

    公开(公告)日:2021-05-06

    申请号:US17088770

    申请日:2020-11-04

    Abstract: Techniques are described to provide open access in a neutral host environment. In one example, a method includes obtaining, by a mobility management node of a neutral host network, a network connectivity request from a user equipment, wherein the network connectivity request comprises an indication of a preferred service provider to which the user equipment is to be connected; determining, by the mobility management node, that the preferred service provider provides non-subscription-based network connectivity for the neutral host network; based on determining that the preferred service provider provides non-subscription-based network connectivity for the neutral host network, establishing secure communications for the user equipment, wherein the secure communications are established for the user equipment without authenticating an identity of user equipment; and providing network connectivity between the user equipment and the preferred service provider upon establishing the secure communications.

    Efficient authentication and secure communications in private communication systems having non-3GPP and 3GPP access

    公开(公告)号:US10932132B1

    公开(公告)日:2021-02-23

    申请号:US16884537

    申请日:2020-05-27

    Abstract: A user equipment (UE) may be in coverage of a local private non-Third Generation Partnership Project (non-3GPP) wireless network (e.g. a Wi-Fi network) of an enterprise. This non-3GPP wireless network may be part of a private communication system of the enterprise which further includes a local private 3GPP network (e.g. a Long-Term Evolution or “LTE” based network). When the non-3GPP wireless network advertises “single-authentication” support, the UE may complete authentication for non-3GPP access, obtain a Master Session Key (MSK) from the authentication, and generate an Access Security Management Entity (ASME) key (KASME) based on the MSK. In further implementations, the UE may obtain a Globally Unique Temporary Identifier (GUTI) from the non-3GPP wireless network. Subsequently, the UE may perform an attach procedure with the local private 3GPP network without performing an authentication procedure, presenting the GUTI that it obtained from the non-3GPP wireless network for 3GPP access.

    ULTRA-RELIABILITY FOR CELLULAR VEHICLE-TO-EVERYTHING (C-V2X) PC5 COMMUNICATIONS

    公开(公告)号:US20210021376A1

    公开(公告)日:2021-01-21

    申请号:US16516776

    申请日:2019-07-19

    Abstract: Techniques are described to provide ultra-reliability for cellular vehicle-to-everything (C-V2X) PC5 communications, including Network Assisted mode and Autonomous mode communications. In one example, a method includes receiving, by a radio unit of a system, a communication from a user equipment, such as a V2X-UE, wherein the communication comprises a data packet, a Layer 2 destination identifier, and an indication that the data packet is associated with a transmission type; determining whether transmission for the data packet is allowed for the transmission type; based on determining that transmission for the data packet is allowed for the transmission type, communicating a response to the UE, wherein the response provides a confirmation to the UE that the data packet was received by the radio unit and that the transmission type can be performed by the radio unit; and transmitting, by the radio unit, the data packet to one or more other UEs.

    IDENTIFIER LOCATOR ADDRESSING FOR IPV6-BASED SOFTWARE DEFINED FABRIC

    公开(公告)号:US20200314060A1

    公开(公告)日:2020-10-01

    申请号:US16364630

    申请日:2019-03-26

    Abstract: A network management center includes a Dynamic Host Configuration Protocol (DHCP) server. The network management center obtains from an identity server, client information indicating authentication of a client device in a wireless network that is connected to a network fabric. The network management center obtains from an edge node in the network fabric an Internet Protocol (IP) address request for the client device. The IP address request including a fabric domain identifier associated with the edge node. The network management center allocates an IP address for the client device based on the client information obtained from the identity server and the fabric domain identifier contained in the IP address request obtained from the edge node. The network management center provides to the edge node an Identifier Locator Addressing (ILA) address based on the IP address.

    ENTERPRISE FABRIC CONFIGURED TO SUPPORT CELLULAR MOBILITY

    公开(公告)号:US20200288424A1

    公开(公告)日:2020-09-10

    申请号:US16562912

    申请日:2019-09-06

    Abstract: A mobility management entity (MME) controls an enterprise fabric. The MME receives from a mobile device via a cellular network a request to initiate an attach procedure. In response, the MME acquires from the mobile device a unique equipment identifier of the mobile device. The MME generates an enterprise identity for the mobile device based on the unique equipment identifier, and registers the enterprise identity in the enterprise fabric. The MME signals to a user plane function of the cellular network that the mobile device has been registered, to trigger the user plane function to acquire an Internet Protocol (IP) address of the mobile device based on the enterprise identity. The MME receives from the user plane function the acquired IP address. The MME sends to the mobile device, through the cellular network, an attach accept message that includes the acquired IP address for use by the mobile device.

    Mechanism for realizing LWA/LWIP aggregator function

    公开(公告)号:US10560976B2

    公开(公告)日:2020-02-11

    申请号:US16430543

    申请日:2019-06-04

    Abstract: In one implementation, the method comprises, in response to obtaining a request to associate an electronic device with the one or more WLAN termination nodes: generating, between a base station and a networking device, a control link based on a first identifier associated with the base station; generating, between the networking device and a first WLAN termination node, a control link based on a second identifier that corresponds to a pseudonym for the base station; and associating the first and second identifiers in a control table. The method further comprises: instantiating, between the base station and the networking device, a first data tunnel associated with a first tunneling protocol; instantiating, between the networking device and the first WLAN termination node, a second data tunnel associated with a second tunneling protocol; and associating the first and second data tunnels.

Patent Agency Ranking