AAA Server Failover Handling via HSS Registration

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

AAA server failures in communication networks lead to session loss and failed authentication requests due to the lack of effective failover mechanisms, where affected network entities are unaware of the failure and continue to send requests to the unavailable server, causing authentication failures and session disruptions.

Innovation Solution

A method and apparatus for handling AAA server failures by receiving authentication requests with failure indications, sending requests to alternative servers, and updating the HSS database to register the new server for authentication services, ensuring session continuity without altering existing signaling interfaces.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If an AAA server fails, then service availability deteriorates, but implementing failover mechanisms increases system complexity

Engineering Contradiction:
Improveservice availabilityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent implements feedback mechanisms where the network entity receives notifications about AAA server failure status. The system continuously monitors server availability and adjusts its behavior based on this feedback, switching to alternative servers when failures are detected, thereby maintaining service availability without requiring complex manual intervention

Inventive Principle:
Principle #23Feedback

Solution Approach 2:

The patent introduces an intermediary notification mechanism that communicates server status between components. Instead of implementing complex direct failover logic in each network entity, a standardized notification system acts as an intermediary to convey failure information, simplifying the overall system architecture while ensuring reliable service continuity

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If network entities continue sending requests to failed AAA servers, then authentication failure rate increases, but implementing failure detection mechanisms increase signaling overhead

Engineering Contradiction:
Improveauthentication success rateVSAvoidsignaling overhead
Core Design Contradiction:
ReliabilityVSLoss of information

Solution Approach 1:

The patent applies preliminary action by notifying network entities about AAA server failures before they attempt authentication. This advance warning allows entities to proactively redirect requests to alternative servers, preventing authentication failures without requiring repeated failed signaling attempts to detect the failure

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system enables network entities to self-adjust their authentication behavior based on received failure notifications. Entities autonomously switch to alternative AAA servers using the notification information, eliminating the need for continuous centralized control signaling and reducing overall signaling overhead while maintaining high authentication success rates

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS9960950B2Apparatus, method, system and computer program product for server failure handling
Publication Date: 2018.05.01 NOKIA SOLUTIONS & NETWORKS OY
  • US9960950B2 patent drawing
  • US9960950B2 patent drawing
  • US9960950B2 patent drawing

AI summary

Apparatus, method, system and computer program product for server failure handling A mechanism for a first apparatus is described. The mechanism comprising receiving, from a first apparatus, a first authentication request comprising an user identity and an identity of said first apparatus, wherein said first apparatus being capable for provide authentication related service with respect to said user identity; determining if a third apparatus, originally associated with said user identity for providing authentication related service, is available for providing said service; registering said first apparatus as the server associated with said user identity for providing authentication related service, if said third apparatus is not available; sending a response to said first apparatus to acknowledge the first authentication request.