Secure access service edge for mobile networks

The integration of a cloud-based firewall as a service within the SASE solution addresses the challenge of integrating mobile networks by enforcing zero trust policies based on contextual information, enhancing security and eliminating the need for on-premises security equipment, thus facilitating efficient and scalable mobile network security.

WO2025221552A1PCT designated stage Publication Date: 2025-10-23PALO ALTO NETWORKS INC
View PDF 4 Cites 0 Cited by

Patent Information

Application Number
PCT/US2025/023942
Authority / Receiving Office
WO · WO
Patent Type
Applications
Current Assignee / Owner
Priority Date
2024-06-27
Filing Date
2025-04-09
Publication Date
2025-10-23

Smart Images

  • Figure US2025023942_23102025_PF_FP_ABST
    Figure US2025023942_23102025_PF_FP_ABST
Patent Text Reader

Abstract

Techniques for providing security for providing Secure Access Service Edge (SASE) for mobile networks (e.g., service provider networks for mobile subscribers) are disclosed. In some embodiments, a system / process / computer program product for providing SASE for mobile networks in accordance with some embodiments includes receiving traffic associated with a User Equipment (UE) from a mobile core network at a SASE cloud network; enforcing a security policy on data plane traffic associated with the UE based on contextual information associated with the UE to provide secured data plane traffic; and forwarding the secured data plane traffic from the SASE cloud network to the mobile core network, wherein the secured data plane traffic egresses the mobile core network for its original destination (e.g., or in other embodiments, forwarding the secured data plane traffic from the SASE cloud network to its original destination).
Need to check novelty before this filing date? Find Prior Art

Citation Information

Patent Citations

  • Methods and systems for providing network connectivity to a secure access service edge (SASE) domain

    US20230100395A1

  • Applying subscriber-id based security, equipment-id based security, and / or network slice-id based security with user-id and syslog messages in mobile networks

    US20240073698A1

  • Identity-Based Policy Enforcement for SIM Devices

    US20240107294A1

  • AU2020204346A1