IP Library › Granted Patent US 12,519,784
Granted Patent B2
US 12,519,784 · App. 17/735,913 · Granted Jan 6, 2026

Private networks sharing sliced resources with public network

Inventors: Rajesh Kumar Mishra (Westford, MA); Kaitki Agarwal (Westford, MA)
Assignee: A5G Networks, Inc.
H04L63/0876G06N20/00H04L63/102H04L63/20H04L67/141
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,519,784
App. No.
17/735,913
Granted
Jan 6, 2026
Kind
B2
Abstract

The present disclosure describes solutions for seamless enterprise network integration with operator networks. Enterprise networks can include full network resources to provide a complete, isolated network. The enterprise network can also host mobile network operator users with edge managers acting as routing agents. Moreover, when an enterprise moves outside of the enterprise network, the enterprise user can still access the enterprise network via an operator network without compromising security, privacy, and reliability. A neutral hosted core can be used as a routing agent to the enterprise network from one or more operator networks.

Claims (42)

1 . A method for facilitating roaming into a private network, the method comprising:

establishing a connection between a radio access network component associated with the private network and a device registered with a public network;

identifying, by the private network, the device as being associated with the public network;

allocating, by a first secure management function in the private network, a first user plane function in the private network to connect to a second user plane function among a plurality of edge-deployed user plane functions in different geographic locations in the public network managed by a second secure management function in the public network, wherein the first secure management function executes a first federatively-trained machine learning algorithm that receives predicted usage information and environmental information from one or more edge managers in the public network and outside the private network and selects the second user plane function to satisfy a service level agreement associated with the device;

establishing a secure connection between a first edge manager in the private network and a second edge manager associated with the second secure management function in public network, the secure connection including dynamically-allocated private network slices that are selected based on the first federatively-trained machine learning algorithm executed by the first secure management function and dynamically-allocated public network slices that are selected based on a second federatively-trained machine learning algorithm executed by the second edge manager;

authenticating, by the public network, the device as being registered with the public network; and

exchanging data traffic between the device and the public network using the secure connection after authenticating the device by the public network.

2 . The method of claim 1 , wherein the identifying is performed by a mobile management function component in the private network based on a subscriber identity associated with the device.

3 . The method of claim 1 , wherein the allocating the first user plane function is coordinated by an orchestrator node.

4 . The method of claim 1 , further comprising:

maintaining records of devices associated with the public network served by the private network.

5 . The method of claim 1 , further comprising:

detecting a disruption to network connectivity; and

stopping data traffic exchange between the device and the public network while maintaining service to private network users.

6 . A system comprising:

at least one hardware processor; and

at least one memory storing instructions that, when executed by the at least one hardware processor, cause the at least one hardware processor to perform actions comprising:

establishing a connection between a radio access network component associated with private network and a device registered with a public network;

identifying, by the private network, the device as being associated with the public network;

allocating, by a first secure management function in the private network, a first user plane function in the private network to connect to a second user plane function among a plurality of edge-deployed user plane functions in different geographic locations in the public network managed by a second secure management function in the public network, wherein the first secure management function executes a first federatively-trained machine learning algorithm that receives predicted usage information and environmental information from one or more edge managers in the public network and outside the private network and selects the second user plane function to satisfy a service level agreement associated with the device;

establishing a secure connection between a first edge manager in the private network and a second edge manager associated with the second secure management function in public network, the secure connection including dynamically-allocated private network slices that are selected based on the first federatively-trained machine learning algorithm executed by the first secure management function and dynamically-allocated public network slices that are selected based on a second federatively-trained machine learning algorithm executed by the second edge manager;

authenticating, by the public network, the device as being registered with the public network; and

exchanging data traffic between the device and the public network using the secure connection after authenticating the device by the public network.

7 . The system of claim 6 , wherein the identifying is performed by a mobile management function component in the private network based on a subscriber identity associated with the device.

8 . The system of claim 6 , wherein the allocating the first user plane function is coordinated by an orchestrator node.

9 . The system of claim 6 , further comprising:

maintaining records of devices associated with the public network served by the private network.

10 . The system of claim 6 , further comprising:

detecting a disruption to network connectivity; and

stopping data traffic exchange between the device and the public network while maintaining service to private network users.

11 . A machine-storage medium embodying instructions that, when executed by a machine, cause the machine to perform actions comprising:

establishing a connection between a radio access network component associated with a private network and a device registered with a public network,

identifying, by the private network, the device as being associated with the public network;

allocating, by a first secure management function in the private network, a first user plane function in the private network to connect to a second user plane function among a plurality of edge-deployed user plane functions in different geographic locations in the public network managed by a second secure management function in the public network, wherein the first secure management function executes a first federatively-trained machine learning algorithm that receives predicted usage information and environmental information from one or more edge managers in the public network and outside the private network and selects the second user plane function to satisfy a service level agreement associated with the device;

establishing a secure connection between a first edge manager in the private network and a second edge manager associated with the second secure management function in public network, the secure connection including dynamically-allocated private network slices that are selected based on the first federatively-trained machine learning algorithm executed by the first secure management function and dynamically-allocated public network slices that are selected based on a second federatively-trained machine learning algorithm executed by the second edge manager;

authenticating, by the public network, the device as being registered with the public network; and

exchanging data traffic between the device and the public network using the secure connection after authenticating the device by the public network.

12 . The machine-storage medium of claim 11 , wherein the identifying is performed by a mobile management function component in the private network based on a subscriber identity associated with the device.

13 . The machine-storage medium of claim 11 , wherein the allocating the first user plane function is coordinated by an orchestrator node.

14 . The machine-storage medium of claim 11 , further comprising:

detecting a disruption to network connectivity; and

stopping data traffic exchange between the device and the public network while maintaining service to private network users.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 3, 2022
From: MISHRA, RAJESH KUMAR; AGARWAL, KAITKI
To: A5G NETWORKS, INC.
Reel/Frame 059801/0822 →
Continuity (2)
Provisional Application 63184124 · May 4, 2021
Related Publication 20220360580A1 · Nov 10, 2022
References Cited (12)
US 7356001B1 · Jones · 2008 [cited by examiner]
US 9491002B1 · Brandwine · 2016 [cited by examiner]
US 10785652B1 · Ravindranath · 2020 [cited by examiner]
US 11405967B2 · Zhang · 2022 [cited by examiner]
US 20020075844A1 · Hagen · 2002 [cited by examiner]
US 20180026907A1 · Miller · 2018 [cited by examiner]
US 20210250890A1 · Won · 2021 [cited by applicant]
US 20210360714A1 · Zhang et al. · 2021 [cited by applicant]
CN 112422300A · 2021 [cited by examiner]
CN 112423301 · 2021 [cited by applicant]
WO 2020254301 · 2020 [cited by applicant]
WO 2021204369 · 2021 [cited by applicant]