IP Library Granted Patent US 9,027,088
Granted Patent B2
US 9,027,088 · App. 13/866,259 · Granted May 5, 2015

Systems and methods for protection of a SIP back-to-back user agent on modems

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,027,088
App. No.
13/866,259
Granted
May 5, 2015
Kind
B2
Abstract

Systems and methods are provided for authenticating Internet Protocol (IP) Multimedia Subsystem (IMS) applications in a User Equipment (UE). A method includes: receiving a first Session Initiation Protocol (SIP) REGISTER message from an IMS application operating on the UE; transmitting a response message to the IMS application based on the received first SIP REGISTER message; receiving a second SIP REGISTER message from the IMS application operating on the UE; determining authentication for the IMS application based on the received second SIP REGISTER message from the IMS application operating on the UE; and based on the step of determining authentication for the IMS application, if the IMS application is authorized, then transmitting information associated with the first and second SIP REGISTER messages toward a SIP node or if the IMS application is unauthorized, then discarding data associated with the first and second SIP REGISTER messages.

Claims (59)

1. A method for authenticating Internet Protocol (IP) Multimedia Subsystem (IMS) applications in a User Equipment (UE) the method comprising:

receiving in a Back-to-Back User Agent (B2BUA) operating on the User Equipment a first Session Initiation Protocol (SIP) REGISTER message from an IMS application operating on the UE;

transmitting a response message from the B2BUA to the IMS application based on the received first SIP REGISTER message;

receiving in the B2BUA a second SIP REGISTER message from the IMS application operating on the UE;

determining in the B2BUA authentication for the IMS application based on the received second SIP REGISTER message from the IMS application operating on the UE; and

based on the step of determining authentication for the IMS application,

if the IMS application is authorized, then transmitting information associated with the first and second SIP REGISTER messages toward a SIP node or

if the IMS application is unauthorized, then discarding data associated with the first and second SIP REGISTER messages.

2. The method of claim 1 , further comprising:

performing the functions of a user agent server; and

performing the functions of a user agent client, wherein performing the functions of a user agent server and client includes participating in requests and maintaining dialog state for all active IMS applications.

3. The method of claim 1 , wherein the steps of receiving a first Session Initiation Protocol (SIP) REGISTER message from an IMS application operating on the UE;

transmitting a response message to the IMS application based on the received first SIP REGISTER message;

receiving a second SIP REGISTER message from the IMS application operating on the UE;

determining authentication for the IMS application based on the received second SIP REGISTER message from the IMS application operating on the UE; and

based on the step of determining authentication for the IMS application,

if the IMS application is authorized, then transmitting information associated with the first and second SIP REGISTER messages toward a SIP node or

if the IMS application is unauthorized, then discarding data associated with the first and second SIP REGISTER messages,

are performed for a plurality of IMS applications operating on the UE.

4. The method of claim 3 , further comprising:

transmitting a message toward the SIP node which includes registration information for the plurality of IMS applications.

5. The method of claim 3 , wherein all of the plurality of IMS applications undergo a determination for authentication.

6. The method of claim 3 , wherein a subset of the plurality of IMS applications undergo a determination for authentication.

7. The method of claim 1 , further comprising:

maintaining dialog state information for all active IMS applications.

8. The method of claim 1 , wherein the UE is connected to a Long Term Evolution (LTE) Radio Access Network (RAN).

9. The method of claim 1 , wherein the UE determines authorization for the IMS application using a Hypertext Transfer Protocol (HTTP) Basic Authorization.

10. The method of claim 1 , wherein the UE determines authorization for the IMS application using a Hypertext Transfer Protocol (HTTP) Digest Access Authorization.

11. The method of claim 1 , wherein the UE is a mobile phone.

12. A User Equipment (UE) for authenticating Internet Protocol (IP) Multimedia Subsystem (IMS), the UE comprising:

a processor in conjunction with a memory and a transceiver configured to perform the functions of a Back to Back User Agent (B2BUA) function, which B2BUA is configured to perform the steps of:

receiving a first Session Initiation Protocol (SIP) REGISTER message from an IMS application operating on the UE;

transmitting a response message to the IMS application based on the received first SIP REGISTER message;

receiving a second SIP REGISTER message from the IMS application operating on the UE;

determining authentication for the IMS application based on the received second SIP REGISTER message from the IMS application operating on the UE; and

based on the step of determining authentication for the IMS application,

if the IMS application is authorized, then transmitting information associated with the first and second SIP REGISTER messages toward a SIP node or

if the IMS application is unauthorized, then discarding data associated with the first and second SIP REGISTER messages.

13. The UE of claim 12 , wherein the B2BUA is further configured to perform the steps of:

performing the functions of a user agent server; an

performing the functions of a user agent client, wherein performing the functions of a user agent server and client includes participating in requests and maintaining dialog state for all active IMS applications.

14. The UE of claim 13 , further comprising:

the B2BUA function configured to transmit a message toward the SIP node which includes registration information for the plurality of IMS applications.

15. The UE of claim 13 , wherein all of the plurality of IMS applications undergo a determination for authentication.

16. The UE of claim 13 , wherein a subset of the plurality of IMS applications undergo a determination for authentication.

17. The UE of claim 12 , wherein the steps of receiving a first Session Initiation Protocol (SIP) REGISTER message from an IMS application operating on the UE;

transmitting a response message to the IMS application based on the received first SIP REGISTER message;

receiving a second SIP REGISTER message from the IMS application operating on the UE;

determining authentication for the IMS application based on the received second SIP REGISTER message from the IMS application operating on the UE; and

based on the step of determining authentication for the IMS application,

if the IMS application is authorized, then transmitting information associated with the first and second SIP REGISTER messages toward a SIP node or

if the IMS application is unauthorized, then discarding data associated with the first and second SIP REGISTER messages,

are performed for a plurality of IMS applications operating on the UE.

18. The method of claim 12 , further comprising:

the B2BUA function configured to maintain dialog state information for all active IMS applications.

19. The UE of claim 12 , wherein the UE is connected to a Long Term Evolution (LTE) Radio Access Network (RAN).

20. The UE of claim 12 , wherein the UE determines authorization for the IMS application using a Hypertext Transfer Protocol (HTTP) Basic Authorization.

21. The UE of claim 12 , wherein the UE determines authorization for the IMS application using a Hypertext Transfer Protocol (HTTP) Digest Access Authorization.

22. The UE of claim 12 , wherein the UE is a mobile phone.

Assignments (5)
NUNC PRO TUNC ASSIGNMENT Recorded Jun 18, 2015
From: ERICSSON AB
To: TELEFONAKTIEBOLAGET L M ERICSSON (PUBL)
Reel/Frame 035931/0001 →
NUNC PRO TUNC ASSIGNMENT Recorded Jun 18, 2015
From: ERICSSON MODEMS SA
To: ERICSSON AB
Reel/Frame 035948/0147 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 23, 2014
From: RUNESON, STEFAN; STAHL, PER
To: ST-ERICSSON SA
Reel/Frame 032954/0678 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 23, 2014
From: ST-ERICSSON SA
To: ST-ERICSSON AT SA
Reel/Frame 032955/0372 →
CHANGE OF NAME Recorded May 23, 2014
From: ST-ERICSSON AT SA
To: ERICSSON MODEMS SA
Reel/Frame 033014/0596 →