Trust based continuous 5G service assessment
A trust based continuous Fifth Generation (5G) network service assessment, and more specifically a trust based continuous 5G network service assessment for a user equipment to ensure an authorized user is using the user equipment may be provided. A registration request may be received by an Access and Mobility Management Function (AMF) from a User Equipment (UE). In response to the registration request, a Policy Control Function (PCF) may exchange a policy with the AMF, wherein the policy comprises instructions to perform a continuous service assessment. Next, a registration accept message may be sent to the UE, wherein the registration accept message comprises instructions for the UE to enable the continuous service assessment.
1 . A method comprising:
receiving, by an Access and Mobility Management Function (AMF), a registration request from a user equipment (UE) to connect to a Radio Access Network (RAN);
in response to the registration request, a Policy Control Function (PCF) exchanging a policy with the AMF, wherein the policy comprises instructions to perform a continuous service assessment; and
sending a registration accept message comprising a continuous service assessment information element (IE) to the UE, wherein the continuous assessment of the registration accept message comprises an activate field comprising instructions for the UE to enable the continuous service assessment, a fetch field indicating whether the UE has to send the trust score to the AMF, and a length field indicating a period the UE is authorized to access certain services without being reauthorized,
wherein the UE, in response to enabling the continuous service assessment is configured to:
determine biometric information and behavior characteristics of a current user of the UE,
compare the determined biometric information and the determined behavior characteristics with an expected biometric information and an expected behavior characteristic of the current user of the UE,
determine a trust score based on comparing the determined biometric information and the determined behavior characteristics with the expected biometric information and the expected behavior characteristic of the current user of the UE, wherein the expected biometric information is collected when the UE was initially registered, and
send the trust score to the AMF when the trust score is below a predetermined range.
2 . The method of claim 1 , further comprising:
receiving, by the AMF, the trust score from the UE; and
comparing, by the AMF, the trust score to a threshold.
3 . The method of claim 2 , further comprising, altering, by the AMF, an authorization of the UE when the trust score is below the threshold and a period has elapsed.
4 . The method of claim 2 , further comprising, reauthorizing, by the AMF, the UE when the trust score is below the threshold.
5 . The method of claim 1 , further comprising:
sending a trust score request to the UE; and
receiving, by the AMF, the trust score from the UE.
6 . The method of claim 1 , wherein the UE, in response to enabling the continuous service assessment, is configured to monitor another trust score to indicate when the UE is a same device that was initially registered.
7 . The method of claim 6 , wherein the another trust score is determined as:
determining a current device information of the UE,
comparing the current device information with an expected device information collected when the UE was initially registered, and
determining the another trust score based on the comparing the current device information with the expected device information collected when the UE was initially registered.
8 . The method of claim 1 , wherein determining the biometric information comprises one or more of:
collecting fingerprints,
collecting facial recognition,
collecting retina recognition, and
collecting palm prints.
9 . The method of claim 1 , wherein the UE sends the trust score based on a value of the fetch field.
10 . The method of claim 9 , further comprising: requesting, by the AMF, the trust score by sending a message that changes the value of the fetch field.
11 . A system comprising:
a memory storage; and a processor coupled to the memory storage, wherein the processor is operative to:
receive a registration request from a user equipment (UE);
in response to the registration request, exchange a policy with a Policy Control Function (PCF), wherein the policy comprises instructions to perform a continuous service assessment; and
send a registration accept message comprising a continuous service assessment information element (IE) to the UE, wherein the continuous assessment of the registration accept message comprises an activate field comprising instructions for the UE to enable the continuous service assessment, a fetch field indicating whether the UE has to send the trust score to the AMF, and a length field indicating a period the UE is authorized to access certain services without being reauthorized, wherein the UE, in response to enabling the continuous service assessment is configured to:
determine biometric information and behavior characteristics of a current user of the UE,
compare the determined biometric information and the determined behavior characteristics with an expected biometric information and an expected behavior characteristic of the current user of the UE,
determine a trust score based on comparing the determined biometric information and the determined behavior characteristics with the expected biometric information and the expected behavior characteristic of the current user of the UE, wherein the expected biometric information is collected when the UE was initially registered, and
send the trust score to the AMF when the trust score is below a predetermined range.
12 . The system of claim 11 , wherein the processor is further operative to:
receive the trust score from the UE; and
compare the trust score to a threshold.
13 . The system of claim 12 , wherein the processor is further operative to, alter an authorization of the UE when the trust score is below the threshold and a period has elapsed.
14 . The system of claim 12 , wherein the processor is further operative to, reauthorize the UE when the trust score is below the threshold.
15 . The system of claim 11 , wherein the processor is further operative to:
send a trust score request to the UE; and
receive the trust score from the UE.
16 . A non-transitory computer-readable medium that stores a set of instructions which when executed perform a method executed by the set of instructions comprising:
receiving, by an Access and Mobility Management Function (AMF), a registration request from a user equipment (UE);
in response to the registration request, a Policy Control Function (PCF) exchanging a policy with the AMF, wherein the policy comprises instructions to perform a continuous service assessment; and
sending a registration accept message comprising a continuous service assessment information element (IE) to the UE, wherein the continuous assessment of the registration accept message comprises an activate field comprising instructions for the UE to enable the continuous service assessment, a fetch field indicating whether the UE has to send the trust score to the AMF, and a length field indicating a period the UE is authorized to access certain services without being reauthorized,
wherein the UE, in response to enabling the continuous service assessment is configured to:
determine biometric information and behavior characteristics of a current user of the UE,
compare the determined biometric information and the determined behavior characteristics with an expected biometric information and an expected behavior characteristic of the current user of the UE,
determine a trust score based on comparing the determined biometric information and the determined behavior characteristics with the expected biometric information and the expected behavior characteristic of the current user of the UE, wherein the expected biometric information is collected when the UE was initially registered, and
send the trust score to the AMF when the trust score is below a predetermined range.
17 . The non-transitory computer-readable medium of claim 16 , further comprising:
receiving, by the AMF, the trust score from the UE; and
comparing, by the AMF, the trust score to a threshold.
18 . The non-transitory computer-readable medium of claim 17 , further comprising, altering, by the AMF, an authorization of the UE when the trust score is below the threshold and a period has elapsed.
19 . The non-transitory computer-readable medium of claim 17 , further comprising, reauthorizing, by the AMF, the UE when the trust score is below the threshold.
20 . The non-transitory computer-readable medium of claim 16 , further comprising to:
send a trust score request to the UE; and
receive the trust score from the UE.