Data Privacy Management in RAN Sharing Networks
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
In wireless communication networks, especially in RAN sharing environments, existing technologies lack mechanisms to ensure user privacy and prevent unauthorized data sharing between operators, potentially violating user consent and proprietary information security.
Innovation Solution
Implementing mechanisms to identify and verify user consent for data collection, ensuring that user equipment (UE) only shares data with the operator it has consented to, by matching network identities and using consent status to configure data collection processes, thereby preventing data from being sent to unauthorized entities.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Productivity
If RAN sharing is implemented to reduce resource duplication and costs, then resource efficiency improves, but user privacy and data security deteriorate due to potential unauthorized data sharing between operators
Solution Approach 1:
The patent segments data sharing permissions by operator identity, creating distinct data collection channels for each operator. The system divides the data collection function into operator-specific instances, where each operator can only access data from devices that have explicitly consented to sharing with that specific operator. This segmentation prevents cross-operator data leakage while maintaining RAN sharing benefits.
Solution Approach 2:
The patent introduces an intermediary consent verification mechanism that mediates between multiple operators and user devices. This intermediary layer checks operator identities against stored consent information before allowing data collection, acting as a security gatekeeper that enables RAN sharing while preventing unauthorized data access between operators.
2Productivity
If data collection is performed without consent verification to maximize network optimization capabilities, then network optimization effectiveness improves, but user privacy protection deteriorates
Solution Approach 1:
The patent implements preliminary consent verification before data collection begins. The system stores consent status information in advance and verifies it during data collection operations. This preliminary action ensures that only devices with explicit consent are included in data collection, maintaining both network optimization effectiveness and user privacy protection.
Solution Approach 2:
The patent incorporates feedback mechanisms where the system continuously checks consent status information during data collection operations. The consent verification feedback loop ensures that data collection only proceeds when proper authorization is confirmed, preventing privacy violations while maintaining optimization capabilities.
3Object-affected harmful factors
If consent status verification is implemented to protect user privacy, then user privacy protection improves, but data collection complexity increases due to additional verification steps
Solution Approach 1:
The patent merges the consent verification function with existing network identity verification processes. By combining consent status checking with operator identity verification in a unified authentication mechanism, the system protects user privacy without significantly increasing overall system complexity.
Solution Approach 2:
The patent implements self-service consent management where user devices autonomously store and provide their own consent status information. This self-service approach reduces the burden on the network side, as devices automatically present their consent status for verification, simplifying the overall consent management architecture.
Data Source
Figure 1
Figure 2
Figure 3
AI summary
Systems and techniques for managing user data privacy are described. Upon identification of a user device as a candidate for performing data collection relating to network performance experienced by the device, a network operator on whose behalf the data collection is to be performed is identified, and user consent information associated with the user device is examined to determine if a user of the device has given consent for data collection on behalf of the network operator. If the user has given consent, the user device is configured for data collection.