IP Library Granted Patent US 9,160,799
Granted Patent B2
US 9,160,799 · App. 13/287,657 · Granted Oct 13, 2015

Systems and methods for authorizing services in a telecommunications network

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,160,799
App. No.
13/287,657
Granted
Oct 13, 2015
Kind
B2
Abstract

A computer-implemented method for authorizing access by a user device to at least one service offered over an Internet Protocol (IP) network is provided. A server receives a message from the user device. The message indicates that the user device is configured to support the at least one service. The server then retrieves from a database policy data associated with the user device. The server validates based on the policy data that the user device is authorized to advertise the at least one service and the at least one service is available for access by the user device. If the at least one service is unauthorized or unavailable for access by the user device, the server modifies the message to indicate one or more authorized and available services for the user device without including the at least one service.

Claims (57)

1. A method for authorizing access by a user device to at least one service offered over an Internet Protocol (IP) network, comprising:

receiving, by a server, a SIP message from the user device, wherein the SIP message includes a Contact header that indicates that the user device is configured to support the at least one service;

retrieving from a database, by the server, policy data associated with the user device, said policy data including Dynamic Service Activation Information;

validating, by the server, based on the policy data that the user device is authorized to advertise the at least one service and the at least one service is available for access by the user device,

when said validating determines that the at least one service is unauthorized or unavailable for access by the user device, modifying, by the server, the received message to generate a modified message, modifying said received message including omitting from said modified message Contact header information corresponding to the at least one service that is unauthorized or unavailable for access by the user device while including information from said received message indicating one or more authorized and available services for the user device;

forwarding, by the server, the modified message to a second user device or to a network server; and

when there is a change in a Dynamic Service Activation Information mask value associated with said user device the database sends a message to the server notifying the server of a change in a service authorization state for the user device.

2. The method of claim 1 ,

wherein said forwarding includes forwarding the modified message to a second user;

wherein the received message is one of a SIP INVITE message and a SIP OPTIONS message;

wherein the Contact header of said received SIP message includes information indicating that the user device is configured to support image share and video share services; and

wherein modifying said received message to generate a modified message includes removing from the Contact header of said received SIP message the information indicating that the user device is configured to support said video share services.

3. The method of claim 1 ,

wherein the message is a SIP OPTIONS message.

4. The method of claim 1 , wherein modifying said received message to generate a modified message includes:

adding information indicating that a service which was indicated by said received message to be supported by said user device is unavailable, said modified message including said added information.

5. The method of claim 1 wherein forwarding the modified message includes:

forwarding the modified message to a second user device, said second user device being a user device with which said first user device may establish a communications session.

6. The method of claim 1 wherein the received message and the modified message are Session Initiation Protocol (SIP) REGISTER request messages.

7. The method of claim 1 , wherein the received message and the modified message are the same type of SIP messages.

8. The method of claim 7 wherein the received message and modified message are both SIP INVITE requests, SIP SUBSCRIBE requests or SIP REFER requests.

9. The method of claim 1 wherein the policy data indicates the one or more authorized services currently available to the user device.

10. The method of claim 1 further comprising updating the policy data associated with the user device, said updating including:

examining at least one parameter associated with the user device or the IP network;

determining one or more services currently authorized and available for use by the user device based on the at least one parameter; and

removing at least a portion of the policy data corresponding to a service currently unavailable or unauthorized to the user device based on the determining.

11. The method of claim 10 wherein the at least one parameter describes user location, user device network access capability, user device hardware capability, availability of a network resource, or a combination thereof.

12. The method of claim 10 , wherein updating the policy data includes:

dynamically updating the policy data based on a change in the at least one parameter.

13. The method of claim 1 further comprising:

subscribing, by the user device, to the server for notification of a change in service availability or authorization to the user device; and

notifying the user device, by the server, if the user device is not authorized to access a service or the service is not available to the user device.

14. The method of claim 1 wherein the user device is configured to support the one or more authorized services.

15. The method of claim 1 wherein retrieving from the database the policy data comprises the server sending a Diameter Server Assignment request to the database.

16. The method of claim 1 further comprising:

including, by the server, the at least one service in a message that is unauthorized or unavailable for access by the user device if the at least one service becomes authorized and available to the user device; and

forwarding, by the server, the message to indicate that the at least one service is authorized and available to the user device.

17. A system for authorizing access by a user device to at least one service offered over an IP network, comprising:

a database for storing policy data associated with the user device; and

a server for receiving a SIP message from the user device, said SIP message including a Contact header indicating that the user device is configured to support the at least one service, the server being implemented in computer hardware including a processor for executing instructions and a memory device, said server being configured to:

retrieve from the database policy data associated with the user device, said policy data including Dynamic Service Activation Information;

validate based on the policy data that the user device is authorized to advertise the at least one service and the at least one service is available for access by the user device;

when said validating determines that the at least one service is unauthorized or unavailable for access by the user device, modify the received message to generate a modified message, modifying said received message including omitting from said modified message Contact header information corresponding to the at least one service that is unauthorized or unavailable for access by the user device while including information from said received message to indicate one or more authorized and available services for the user device;

forward the modified message to a second user device or to a network server; and

receive from the database a message notifying the server of a change in a service authorization state for the user device when there is a change in a Dynamic Service Activation Information mask value associated with said user device.

18. The system of claim 17 wherein the server resides in a Serving Call Session Control Function (S-CSCF) node or an application server of an Internet Protocol Multimedia Subsystem (IMS) network.

19. The system of claim 17 wherein the database storing the policy data is a Home Subscriber Service (HSS) in an IMS network.

20. The system of claim 17 wherein the server resides in a SIP registrar or a home proxy of a non-IMS network.

21. The system of claim 17 further comprising electronic circuitry for updating the policy data associated with the user device to indicate one or more services currently available and authorized to the user device.

22. The system of claim 21 wherein the electronic circuitry updates the policy data based on information related to user location, user device network access capability, user device hardware capability, availability of a network resource, or a combination thereof.

23. A computer program product, tangibly embodied in a non-transitory computer readable medium, for authorizing access by a user device to at least one service offered over an IP network, the computer program product including instructions being operable to cause data processing apparatus to:

receive a SIP message from the user device, wherein the SIP message includes a access class parameter in a P-Access-Network-Info header that indicates that the user device is configured to support the at least one service;

retrieve from a database policy data associated with the user device, said policy data including Dynamic Service Activation Information;

validate based on the policy data that the user device is authorized to advertise the at least one service and the at least one service is available for access by the user device;

when said validating determines that the at least one service is unauthorized or unavailable for access by the user device, modify the received message to generate a modified message, modifying said received message including omitting from said modified message P-Access-Network-Info header information corresponding to the at least one service that is unauthorized or unavailable for access by the user device while including information from said received message to indicate one or more authorized and available services for the user device without including the at least one service;

forward the modified message to a second user device or to a network server; and

receive from the database a message notifying the server of a change in a service authorization state for the user device when there is a change in a Dynamic Service Activation Information mask value associated with said user device.

Assignments (9)
RELEASE OF SECURITY INTEREST Recorded Jun 24, 2024
From: CITIZENS BANK, N.A.
To: RIBBON COMMUNICATIONS OPERATING COMPANY, INC. (F/K/A GENBAND US LLC AND SONUS NETWORKS, INC.)
Reel/Frame 067822/0433 →
TERMINATION AND RELEASE OF PATENT SECURITY AGREEMENT AT R/F 044978/0801 Recorded Dec 6, 2021
From: SILICON VALLEY BANK, AS ADMINISTRATIVE AGENT
To: RIBBON COMMUNICATIONS OPERATING COMPANY, INC. (F/K/A GENBAND US LLC AND SONUS NETWORKS, INC.)
Reel/Frame 058949/0497 →
SECURITY INTEREST Recorded Mar 3, 2020
From: RIBBON COMMUNICATIONS OPERATING COMPANY, INC.
To: CITIZENS BANK, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 052076/0905 →
CHANGE OF NAME Recorded Jan 16, 2019
From: SONUS NETWORKS, INC.
To: RIBBON COMMUNICATIONS OPERATING COMPANY, INC.
Reel/Frame 048078/0036 →
SECURITY INTEREST Recorded Jan 2, 2018
From: GENBAND US LLC; SONUS NETWORKS, INC.
To: SILICON VALLEY BANK, AS ADMINISTRATIVE AGENT
Reel/Frame 044978/0801 →
CHANGE OF NAME Recorded Dec 24, 2017
From: SONUS, INC.
To: SONUS NETWORKS, INC.
Reel/Frame 044957/0213 →
MERGER AND CHANGE OF NAME Recorded Dec 24, 2017
From: SOLSTICE SAPPHIRE, INC.; SONUS NETWORKS, INC.; SONUS NETWORKS, INC.
To: SONUS, INC.
Reel/Frame 044957/0243 →
RELEASE OF SECURITY INTEREST Recorded Oct 24, 2017
From: BANK OF AMERICA, N.A.
To: SONUS NETWORKS, INC.; SONUS FEDERAL, INC.; NETWORK EQUIPMENT TECHNOLOGIES, INC.; PERFORMANCE TECHNOLOGIES, INCORPORATED; SONUS INTERNATIONAL, INC.; TAQUA, INC.
Reel/Frame 044283/0361 →
SECURITY INTEREST Recorded Sep 12, 2014
From: SONUS NETWORKS, INC.; SONUS FEDERAL, INC.; NETWORK EQUIPMENT TECHNOLOGIES, INC.; PERFORMANCE TECHNOLOGIES, INCORPORATED; SONUS INTERNATIONAL, INC.
To: BANK OF AMERICA, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 033728/0409 →