Network service plan design
A technique involves modular storage of network service plan components and provisioning of same. A subset of the capabilities of a service design system can be granted to a sandbox system to enable customization of service plan offerings or other controls.
1. A method of provisioning a service to be delivered to an end-user device via a network, the method comprising:
obtaining an aspect of an access control policy and an aspect of an access accounting policy;
generating an access control policy instruction based at least in part on the aspect of the access control policy and an access accounting policy instruction based at least in part on the aspect of the access accounting policy;
providing the access control policy instruction and the access accounting policy instruction to one or more processing elements accessible via the network;
executing, by the one or more processing elements, the access control policy instruction to apply an access control action in connection with the service; and
executing, by the one or more processing elements, the access accounting policy instruction to apply an access accounting action in connection with the service.
2. The method of claim 1 , further comprising:
detecting a network state, by the one or more processing elements, before executing, by the one or more processing elements, the access control policy instruction to apply the access control action in connection with the service.
3. The method of claim 1 , further comprising:
obtaining one or more criteria enabling detection of a request from the end-user device to use the service.
4. The method of claim 3 , wherein obtaining the one or more criteria enabling detection of the request from the end-user device to use the service comprises obtaining at least one of a domain name associated with the service, an internet-protocol (IP) address associated with the service, a protocol associated with the service, or a communication port number associated with the service.
5. The method of claim 1 , further comprising:
obtaining an aspect of a notification policy;
generating a notification instruction based at least in part on the aspect of the notification policy;
providing the notification instruction to the one or more processing elements; and
rendering, by the one or more processing elements, on a user-interface of the end-user device, a notification indicated by the notification instruction.
6. A system for provisioning a service to be delivered to an end-user device via a network, the system comprising:
computing circuitry, including one or more processors and memory to store program code which, when executed by the one or more processors, causes the one or more processors to:
obtain an aspect of an access control policy and an aspect of an access accounting policy;
generate an access control policy instruction based at least in part on the aspect of the access control policy and an access accounting policy instruction based at least in part on the aspect of the access accounting policy
provide the access control policy instruction and the access accounting policy instruction to one or more processing elements accessible via the network;
execute by the one or more processing elements, the access control policy instruction to apply an access control action in connection with the service; and
execute, by the one or more processing elements, the access accounting policy instruction to apply an access accounting action in connection with the service.
7. The system of claim 6 , wherein when program code is executed by the one or more processors, further causes the one or more processors to:
detect a network state, by the one or more processing elements, before executing, by the one or more processing elements, the access control policy instruction to apply the access control action in connection with the service.
8. The system of claim 6 , wherein when program code is executed by the one or more processors, further causes the one or more processors to:
obtain one or more criteria enabling detection of a request from the end-user device to use the service.
9. The system of claim 8 , wherein obtaining the one or more criteria enabling detection of the request from the end-user device to use the service comprises obtaining at least one of a domain name associated with the service, an internet-protocol (IP) address associated with the service, a protocol associated with the service, or a communication port number associated with the service.
10. The system of claim 6 , wherein when program code is executed by the one or more processors, further causes the one or more processors to:
obtain an aspect of a notification policy;
generate a notification instruction based at least in part on the aspect of the notification policy;
provide the notification instruction to the one or more processing elements; and
render, by the one or more processing elements, on a user-interface of the end-user device, a notification indicated by the notification instruction.