Access Gateway Billing Data Verification via Cryptographic Hashing

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In unregulated wireless network environments, independent Access Gateway Operators can manipulate Network Resource Usage Statistics for fraudulent purposes, making it difficult for Billing Service Providers to detect and prevent fraud, especially in situations where there is no direct commercial relationship between the User and the Operator.

Innovation Solution

The Access Gateway periodically receives and verifies billing data from the Network User Device using encoded parameters that cannot be modified without detection, ensuring the accuracy of Network Resource Usage Statistics by correlating them with its own records and terminating sessions if discrepancies are found, and forwards verified data to the AAA System.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If the Access Gateway Operator independently manages Network Resource Usage Statistics, then operational autonomy and flexibility are improved, but the risk of fraudulent manipulation and billing accuracy deteriorates

Engineering Contradiction:
Improveoperational autonomyVSAvoidbilling accuracy
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The system performs preliminary encoding of billing data at the Network User Device before transmission to the Access Gateway. This encoding includes cryptographic hashing and digital signatures that prevent later manipulation. By establishing the integrity of usage statistics at the source before they leave the user's device, the system ensures operational autonomy for the Access Gateway while maintaining billing accuracy through pre-established cryptographic verification.

Inventive Principle:
Principle #10Preliminary action

2Reliability

If the Billing Service Provider performs audit-style spot-checks to detect fraudulent reporting, then fraud detection capability is improved, but cost and time consumption worsen

Engineering Contradiction:
Improvefraud detection capabilityVSAvoidaudit time consumption
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The system replaces manual audit-style spot-checks with automated cryptographic verification. Instead of periodically sampling and manually checking billing records, the system uses cryptographic hashes and digital signatures that automatically verify the integrity of every billing data transmission. This substitution transforms fraud detection from a resource-intensive manual process into an efficient automated verification mechanism that checks all transactions without additional time or cost overhead.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

3Object-affected harmful factors

If encrypted data transfer protocols are used between Access Gateway and Billing Service Provider, then data security during transmission is improved, but protection against source manipulation deteriorates

Engineering Contradiction:
Improvetransmission securityVSAvoidsource integrity protection
Core Design Contradiction:
Object-affected harmful factorsVSReliability

Solution Approach 1:

The system introduces cryptographic hashing as an intermediary verification layer between the Network User Device and the Billing Service Provider. The hash function creates a unique fingerprint of the billing data that travels with the encrypted transmission. This intermediary mechanism allows the Billing Service Provider to verify the source integrity of the data independently of the encryption protocol, detecting any manipulation that occurs either at the source or during transmission without relying solely on the encryption's confidentiality.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentEP1929680B1Method and system for verifying network resource usage records
Publication Date: 2016.10.26 JONES ADRIAN
  • EP1929680B1 patent drawingFigure 1
  • EP1929680B1 patent drawingFigure 2A~2C
  • EP1929680B1 patent drawingFigure 3

AI summary

A system and method for enabling verification of billing data received from an operator of a network resource access gateway by a billing service provider. An access gateway device is coupled to a network user device and to a billing service providers system. The network user device generates billing data. The access gateway device is configured to compare received billing data with corresponding billing data generated by the access gateway device and if the received billing data correlates to the billing data generated by the access gateway device, the access gateway device stores portions of the received billing data.