Diameter Prefix Authorization Server for IPv6 Network Control

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional prefix management protocols lack efficient mechanisms for prefix authorization and management, particularly in Diameter applications for home agents in MIPv6 and NEMO scenarios, local mobility anchors in Proxy MIPv6 scenarios, and common access routers, leading to inadequate control over prefix delegation and renumbering.

Innovation Solution

A Diameter application for prefix authorization that enables clients, such as home agents, local mobility anchors, and access routers, to request, renew, and reconfigure IPv6 prefixes through a Prefix Authorization server, using new message types like Prefix-Authorize-Request, Prefix-Authorize-Answer, Prefix-Authorize-Renew, and Prefix-Authorize-Reconfigure, with support for Prefix User Identifier and Authorized-Prefix AVPs, allowing for efficient prefix management and renumbering.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If conventional prefix management protocols are used, then basic prefix delegation is possible, but control over prefix authorization and renumbering is inadequate

Engineering Contradiction:
Improvecontrol over prefix authorizationVSAvoidprefix management system complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent introduces a Prefix Authorization Server (PAS) as an intermediary component between prefix users and the prefix management system. The PAS mediates prefix authorization requests, validates prefix user identifiers, and manages prefix delegation control. This intermediary structure enhances reliability and control without requiring complex modifications to existing prefix management infrastructure, as the PAS operates as a dedicated authorization layer that interfaces with standard Diameter protocols.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If prefix delegation is enabled without authorization control, then prefix distribution is simple, but security and authorization control are weakened

Engineering Contradiction:
Improveprefix authorization securityVSAvoidprefix delegation operation
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent implements a feedback mechanism where the Prefix Authorization Server continuously monitors prefix usage, validates prefix user identifiers, and enforces authorization policies. The system provides feedback loops that verify prefix delegation requests against authorized prefixes stored in the database, ensuring security while maintaining operational simplicity through automated validation processes that operate transparently to end users.

Inventive Principle:
Principle #23Feedback

3Adaptability or versatility

If multiple prefix management protocols are supported, then versatility is improved, but system complexity increases

Engineering Contradiction:
Improveprotocol compatibilityVSAvoidsystem architecture complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent designs the Prefix Authorization Server with universal functionality that supports multiple prefix management protocols including DHCPv6, PPPoE, and Radius through a unified Diameter protocol interface. The PAS implements a standardized authorization framework that can handle different protocol-specific prefix delegation scenarios without requiring separate implementation instances, thereby achieving protocol versatility while maintaining relatively simple system architecture through centralized multi-functional design.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS8914445B2System and method for diameter prefix authorization
Publication Date: 2014.12.16 FUTUREWEI TECHNOLOGIES INC
  • US8914445B2 patent drawing
  • US8914445B2 patent drawing
  • US8914445B2 patent drawing

AI summary

The invention provides a method for Diameter prefix authorization. The method includes sending a request for a prefix by a Prefix Authorization (PA) client or Diameter client to a Prefix Authorization (PA) server or Diameter server. The method also includes replying with an answer message by the PA server to the PA client to provide a first prefix with a first lifetime. The invention further includes a method for initiating IPv6 address renumbering by sending a message for renumbering from the PA server. The method also includes receiving the message by the PA client and sending a message to the PA server to acquire a second prefix. The method further includes receiving the second prefix from the PA server with an answer message with a second lifetime, where the second prefix is different from the first prefix.