IP Library Granted Patent US 7,283,822
Granted Patent B2
US 7,283,822 · App. 11/349,025 · Granted Oct 16, 2007

Service access control interface for an unlicensed wireless communication system

Assignee: Kineto Wireless, Inc.
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 7,283,822
App. No.
11/349,025
Granted
Oct 16, 2007
Kind
B2
Abstract

Some embodiments provide a system for authorization and authentication of an unlicensed mobile access (UMA) subscriber. The system includes an UMA network controller (UNC) which is communicatively coupled to a licensed wireless communication system. The system also includes an access point (AP) that serves a wireless local area network (WLAN). The system further includes a mobile station (MS) that is communicatively coupled to the AP and the licensed wireless communication system. The system also includes an authentication server that is communicatively coupled to the UNC. The authentication server authenticates a UMA subscriber for accessing an unlicensed mobile access network (UMAN) that includes the UNC and the AP.

Claims (53)

1. A system for authorization and authentication of an unlicensed mobile access (UMA) subscriber, the system comprising:

a) an unlicensed network controller communicatively coupled to a licensed wireless communication system, wherein the unlicensed network controller comprises an IP network controller (INC) communicatively coupled to the licensed wireless communication system and a security gateway communicatively coupled to the INC;

b) a mobile station (MS) communicatively coupled to the INC through the security gateway and communicatively coupled to the licensed wireless communication system;

c) a first server communicatively coupled to the security gateway for authentication of the MS into the unlicensed network controller; and

d) a second server communicatively coupled to the INC for exchanging session specific data with the INC, wherein the second server authorizes said session specific data.

2. The system of claim 1 , wherein the INC and the second server communicate using remote access dial-in user service (RADIUS) protocol.

3. The system of claim 1 , wherein the first server is communicatively coupled to the licensed wireless communication system home location register (HLR) and a set of databases comprising authorization, authentication, and accounting data.

4. The system of claim 1 , wherein the second server is an authorization, authentication, and accounting (AAA) server.

5. The system of claim 1 , wherein the unlicensed network controller further comprises a media and signaling gateway communicatively coupled to the INC, to the security gateway, and to the licensed wireless communication system.

6. A method of authorization and authentication of an unlicensed mobile access (UMA) subscriber, the method comprising:

a) receiving at a first server through a security gateway of an unlicensed network controller, information for authentication of a mobile station (MS) into the unlicensed network controller;

b) receiving at an IP network controller (INC) of the unlicensed network controller, session specific data from the MS, wherein the INC is communicatively coupled to a licensed wireless communication system and is communicatively coupled to the security gateway;

c) sending from the INC said session specific data to a second server;

d) performing a set of authorization checks by the second server by accessing aset of databases; and

e) sending a message from the second server to the INC to inform the INC whether the UMA subscriber is authorized to utilize the services of an unlicensed mobile access network comprising the unlicensed network controller.

7. The method of claim 6 , wherein said session specific data comprises the UMA subscriber's international mobile subscriber identity (IMSI).

8. The method of claim 6 , wherein said session specific data comprises a media access control (MAC) address of an access point (AP).

9. The method of claim 6 , wherein said session specific data comprises a service set identifier (SSID) of an access point (AP).

10. The method of claim 6 , wherein said session specific data comprises a cell global identification (CGI) of the licensed wireless communication system.

11. The method of claim 6 , wherein said perfonning a set of authorization checks by the second server comprises verifying whether the UMA subscriber has a valid UMA subscription.

12. The method of claim 6 , wherein the security gateway is communicatively coupled to an access point (AP), wherein said performing a set of authorization checks by the second server comprises verifying whether the AP is a valid access point.

13. The method of claim 6 , wherein the security gateway is communicatively coupled to an access point (AP), wherein said performing a set of authorization checks by the second server comprises verifying whether the AP is located within a valid public land mobile netxvork (PLMN).

14. The method of claim 6 , wherein said performing a set of authorization checks by the second server comprises obtaining a location of an access point (AP) from a database.

15. The method of claim 14 further comprising sending the location of the AP from the second server to the INC.

16. The system of claim 6 , wherein the second server is an authorization, authentication, and accounting (AAA) server.

17. The method of claim 6 , wherein the first server and the second server are the same physical server.

18. The method of claim 1 , wherein the first server and the second server are the same physical server.

19. The system of claim 1 , further comprising an access point (AP), wherein the security gateway and the AP are connected through a broadband access network.

20. The system of claim 19 , wherein the session specific data comprises a media access control (MAC) address of the AP.

21. The system of claim 19 , wherein the session specific data comprises a service set identifier (SSID) of the AP.

22. The system of claim 19 , wherein the broadband access network is the Internet.

23. The system of claim 19 , wherein the second server obtains a location of the AP from a set of operator databases, wherein when no location is available for a particular AP, the second server denies UMA service from the particular AP.

24. The system of claim 1 , wherein the second server utilizes the session specific data to verify that the subscriber has a UMA subscription, is trying to access UMA through a valid access point, and is using an access point located within a valid Public Land Mobile Network (PLMN).

25. The system of claim 1 , wherein the INC receives the session specific data from the MS as part of a UMA registration process.

26. The system of claim 1 , wherein the INC receives the session specific data from the MS as part of a UMA discovery process.

27. The system of claim 1 , wherein the session specific data comprises the UMA subscriber's international mobile subscriber identity (IMSI).

28. The system of claim 1 , wherein the session specific data comprises a cell global identification (CGI) from a licensed wireless communication system cell site upon which the MS is already camped.

29. The system of claim 1 , wherein the licensed wireless communication system comprises a Serving General Packet Radio Service (GPRS) Switch Node (SGSN), wherein the INC is communicatively coupled to the SGSN.

30. The system of claim 5 , wherein the media and signaling gateway is communicatively coupled to a Mobile Switching System (MSC) of the licensed wireless communication system.

31. An unlicensed network controller communicatively coupled to a licensed wireless communication system, comprising:

a) an IP network controller (INC) communicatively coupled to the licensed wireless communication system; and

b) a security gateway communicatively coupled to the INC and communicatively coupled a first server for authentication of a mobile station (MS) into the unlicensed network controller, wherein the MS is communicatively coupled to the INC through the security gateway, wherein the MS is communicatively coupled to the licensed wireless communication system;

wherein the INC is communicatively coupled to a second server for exchanging session specific data between the second server and the INC, wherein the second server authorizes said session specific data.

32. The unlicensed network controller of claim 31 , wherein the INC and the second server communicate using remote access dial-in user service (RADIUS) protocol.

33. The unlicensed network controller of claim 31 , wherein the first server is communicatively coupled to the licensed wireless communication system home location register (HLR) and a set of databases comprising authorization, authentication, and accounting data.

34. The unlicensed network controller of claim 31 , wherein the second server is an authorization, authentication, and accounting (AAA) server.

35. The unlicensed network controller of claim 31 , wherein the first server and the second server are the same physical server.

36. The unlicensed network controller of claim 31 , wherein the unlicensed network controller further comprises a media and signaling gateway communicatively coupled to the INC, to the security gateway, and to the licensed wireless communication system.

37. The unlicensed network controller of claim 36 , wherein the media and signaling gateway is communicatively coupled to a Mobile Switching System (MSC) of the licensed wireless communication system.

38. The unlicensed network controller of claim 31 , wherein the INC receives the session specific data from the MS as part of an unlicensed mobile access registration process.

39. The unlicensed network controller of claim 31 , wherein the INC receives the session specific data from the MS as part of an unlicensed mobile access discovery process.

40. The unlicensed network controller of claim 31 , wherein the licensed wireless communication system comprises a Serving General Packet Radio Service (GPRS) Switch Node (SGSN), wherein the INC is communicatively coupled to the SGSN.

41. The unlicensed network controller of claim 31 , wherein the INC performs a set of unlicensed mobile access control functions and packet gateway functions, wherein the unlicensed mobile access control functions provide the overall management, control, and signaling component of an unlicensed mobile access network architecture, wherein the packet gateway functions provide the conversion of frames received from the MS into a format required by the ii censed wireless communication system.

Assignments (12)
RELEASE OF SECURITY INTEREST Recorded Jun 24, 2024
From: CITIZENS BANK, N.A.
To: RIBBON COMMUNICATIONS OPERATING COMPANY, INC. (F/K/A GENBAND US LLC AND SONUS NETWORKS, INC.)
Reel/Frame 067822/0433 →
TERMINATION AND RELEASE OF PATENT SECURITY AGREEMENT AT R/F 044978/0801 Recorded Dec 6, 2021
From: SILICON VALLEY BANK, AS ADMINISTRATIVE AGENT
To: RIBBON COMMUNICATIONS OPERATING COMPANY, INC. (F/K/A GENBAND US LLC AND SONUS NETWORKS, INC.)
Reel/Frame 058949/0497 →
SECURITY INTEREST Recorded Mar 3, 2020
From: RIBBON COMMUNICATIONS OPERATING COMPANY, INC.
To: CITIZENS BANK, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 052076/0905 →
CHANGE OF NAME Recorded Jan 16, 2019
From: SONUS NETWORKS, INC.
To: RIBBON COMMUNICATIONS OPERATING COMPANY, INC.
Reel/Frame 048078/0036 →
SECURITY INTEREST Recorded Jan 2, 2018
From: GENBAND US LLC; SONUS NETWORKS, INC.
To: SILICON VALLEY BANK, AS ADMINISTRATIVE AGENT
Reel/Frame 044978/0801 →
MERGER AND CHANGE OF NAME Recorded Dec 24, 2017
From: SOLSTICE SAPPHIRE, INC.; SONUS NETWORKS, INC.; SONUS NETWORKS, INC.
To: SONUS, INC.
Reel/Frame 044957/0243 →
CHANGE OF NAME Recorded Dec 24, 2017
From: SONUS, INC.
To: SONUS NETWORKS, INC.
Reel/Frame 044957/0213 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 13, 2016
From: KINETO WIRELESS, LLC
To: SONUS NETWORKS, INC.
Reel/Frame 040351/0102 →
RELEASE OF SECURITY INTEREST Recorded Sep 28, 2016
From: BUSINESS DEVELOPMENT CORPORATION OF AMERICA, AS ADMINISTRATIVE AGENT
To: KINETO WIRELESS, LLC
Reel/Frame 040173/0114 →
CHANGE OF NAME Recorded Sep 23, 2014
From: KINETO WIRELESS, INC.
To: KINETO WIRELESS, LLC
Reel/Frame 033809/0952 →
NOTICE OF GRANT OF SECURITY INTEREST IN INTELLECTUAL PROPERTY Recorded Aug 7, 2014
From: KINETO WIRELESS, LLC
To: BUSINESS DEVELOPMENT CORPORATION OF AMERICA, AS ADMINISTRATIVE AGENT
Reel/Frame 033492/0826 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 23, 2006
From: GALLAGHER, MICHAEL D.; GUPTA, RAJEEV; SETHI, SWARAN SINGH; KHETAWAT, AMIT
To: KINETO WIRELESS, INC.
Reel/Frame 018162/0023 →
Continuity (5)
Continuation In Part 1068847000 · Oct 17, 2003
Continuation In Part 1112913400 · May 12, 2005
Provisional Application 6064997700 · Feb 4, 2005
Provisional Application 6072293600 · Sep 29, 2005
Related Publication 20060223498A1 · Oct 5, 2006