IP Library › Granted Patent US 12,713,240
Granted Patent B2
US 12,713,240 · App. 18/446,427 · Granted Aug 18, 2026

Secure identification of applications in communication network

Inventors: Saurabh Khare (Bangalore, IN); Rainer Liebhart (Munich, DE); Bo Holm Bjerrum (Aalborg, DK)
Assignee: Nokia Technologies Oy
H04W12/10H04L63/0807H04W12/06H04W12/66
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,713,240
App. No.
18/446,427
Granted
Aug 18, 2026
Kind
B2
Abstract

Techniques for securely identifying applications in a communication network are disclosed. For example, a method comprises receiving, at user equipment, a data item associated with an application program that is installed or being installed on the user equipment. The method further comprises storing, by the user equipment, the data item with an identifier of the application program. The method still further comprises utilizing, by the user equipment, the stored data item when deciding to apply a route selection rule for data traffic associated with the application program.

Claims (21)

1 . A user equipment comprising:

at least one processor and at least one memory storing instructions that, when executed by the at least one processor, cause the user equipment to perform operations, the operations comprising:

receiving, from a communication network, via a secure channel established between the user equipment and the communication network, a data item associated with an application program that is installed or being installed on the user equipment, wherein the data item comprises a secret;

storing the data item in association with an identifier of the application program;

receiving, from the communication network, a route selection rule for data traffic associated with the application program, the route selection rule comprising another data item, wherein the another data item comprises another secret; and

applying the route selection rule for data traffic associated with the application program when the secret matches the another secret; or

rejecting the route selection rule for data traffic associated with the application program when the secret does not match the another secret.

2 . The user equipment of claim 1 , wherein the data item comprising the secret is generated by: (i) an application server associated with the application program; or (ii) a network entity of a communication network connecting the user equipment and the application server.

3 . The user equipment of claim 1 , wherein the secret comprises a security token, wherein the security token is static or dynamic, and wherein the another secret comprises another security token that is static or dynamic.

4 . The user equipment of claim 1 , wherein the secret comprises a trust-based value, and wherein the another secret comprises another trust-based value.

5 . The user equipment of claim 4 , wherein the trust-based value is useable to compute a security token or a one-time pad.

6 . A method comprising:

receiving, at user equipment from a communication network via a secure channel established between the user equipment and the communication network, a data item associated with an application program that is installed or being installed on the user equipment, wherein the data item comprises a secret;

storing, by the user equipment, the data item in association with an identifier of the application program; and

receiving, by the user equipment from the communication network, a route selection rule for data traffic associated with the application program, the route selection rule comprising another data item, the another data item comprising another secret; and

applying, by the user equipment, the route selection rule for data traffic associated with the application program when the secret matches the another secret; or

rejecting, by the user equipment, the route selection rule for data traffic associated with the application program when the secret does not match the another secret.

7 . The method of claim 6 , wherein the data item comprising the secret is generated by: (i) an application server associated with the application program; or (ii) a network entity of a communication network connecting the user equipment and the application server.

8 . The method of claim 6 , wherein the secret comprises a security token, wherein the security token is static or dynamic, and wherein the another secret comprises another security token that is static or dynamic.

9 . The method of claim 6 , wherein the secret comprises a trust-based value, and wherein the another secret comprises another trust-based value.

10 . The method of claim 9 , wherein the trust-based value is useable to compute a security token or a one-time pad.

Assignments (6)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 27, 2023
From: HOLM BJERRUM, BO
To: NOKIA DENMARK A/S
Reel/Frame 065661/0695 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 27, 2023
From: LIEBHART, RAINER
To: NOKIA SOLUTIONS AND NETWORKS GMBH & CO. KG
Reel/Frame 065661/0707 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 27, 2023
From: KHARE, SAURABH
To: NOKIA SOLUTIONS AND NETWORKS INDIA PRIVATE LIMITED
Reel/Frame 065661/0710 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 27, 2023
From: NOKIA DENMARK A/S
To: NOKIA TECHNOLOGIES OY
Reel/Frame 065661/0713 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 27, 2023
From: NOKIA SOLUTIONS AND NETWORKS GMBH & CO. KG
To: NOKIA TECHNOLOGIES OY
Reel/Frame 065661/0717 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 27, 2023
From: NOKIA SOLUTIONS AND NETWORKS INDIA PRIVATE LIMITED
To: NOKIA TECHNOLOGIES OY
Reel/Frame 065661/0721 →
Priority Claims (1)
IN 202241045414 · Aug 9, 2022 · national
Continuity (1)
Related Publication 20240056815A1 · Feb 15, 2024
References Cited (16)
US 12294929B2 · Schumacher · 2025 [cited by examiner]
US 20150047003A1 · Khan · 2015 [cited by examiner]
US 20210168594A1 · Wu · 2021 [cited by examiner]
US 20210185529A1 · Patil · 2021 [cited by examiner]
US 20220386123A1 · Sangai · 2022 [cited by examiner]
WO 2022121696A1 · 2022 [cited by applicant]
“3rd Generation Partnership Project; Technical Specification Group Services and System Aspects; Security architecture and procedures for 5G system (Release 17)”, 3GPP TS 33.501, V17.6.0, Jun. 2022, pp. 1-292. [cited by applicant]
“New Study to enable URSP rules to securely identify Applications (FS_USIA)”, 3GPP TSG-SA3 Meeting #107-e, S3-221071, Agenda: 6, Lenovo, May 16-20, 2022, 3 pages. [cited by applicant]
“3rd Generation Partnership Project; Technical Specification Group Services and System Aspects; Policy and charging control framework for the 5G System (5GS); Stage 2 (Release 17)”, 3GPP TS 23.503, V17.5.0, Jun. 2022, p… [cited by applicant]
“3rd Generation Partnership Project; Technical Specification Group Services and System Aspects; System architecture for the 5G System (5GS); Stage 2 (Release 17)”, 3GPP TS 23.501, V17.5.0, Jun. 2022, pp. 1-568. [cited by applicant]
“3rd Generation Partnership Project; Technical Specification Group Services and System Aspects; Procedures for the 5G System (5GS); Stage 2 (Release 17)”, 3GPP TS 23.502, V17.5.0, Jun. 2022, pp. 1-744. [cited by applicant]
“3rd Generation Partnership Project; Technical Specification Group Services and System Aspects; Study to enable URSP rules to securely identify Applications (FS_USIA) (Release 18)”, 3GPP TR 33.892, V1.0.0, Mar. 2023, 16… [cited by applicant]
Extended European Search Report received for corresponding European Patent Application No. 23190489.7, dated Jan. 12, 2024, 8 pages. [cited by applicant]
“Discussion on applying URSP rules for Authentic Applications”, 3GPP TSG-SA3 Meeting #106-e, S3-220382, Agenda: 4.18, Lenovo, Feb. 14-25, 2022, 2 pages. [cited by applicant]
Notice of Allowance received for corresponding European Patent Application No. 23190489.7, dated Mar. 13, 2025, 6 pages. [cited by applicant]
Notice of Allowance received for corresponding European Patent Application No. 23190489.7, dated Oct. 21, 2024, 7 pages. [cited by applicant]