Identity Proxy for IMSI Reuse in Mobile Networks

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing mobile communication systems face challenges in efficiently managing and reusing International Mobile Subscriber Identity (IMSI) across multiple devices, leading to issues with authentication, authorization, and service provisioning, particularly in scenarios where devices are inactive or have been reassigned.

Innovation Solution

The implementation of an identity proxy function and an identity provisioning function that intercept registration requests and error messages to manage IMSI reuse, allowing a single IMSI to be shared across multiple devices by simulating registration processes and reassigning IMSIs, enabling seamless communication service provisioning without requiring unique device identifiers.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If a single IMSI is assigned to one device for secure authentication, then authentication reliability is improved, but device complexity increases when multiple devices need to share the same IMSI

Engineering Contradiction:
Improveauthentication reliabilityVSAvoiddevice complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

An identity proxy function is introduced as an intermediary between the communication device and the network registration function. This mediator intercepts registration requests, simulates authentication processes, and manages IMSI reassignment without requiring changes to the original authentication protocol, thereby maintaining authentication reliability while enabling multi-device sharing

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system creates a virtual copy of the authentication process through the identity proxy function. Instead of requiring multiple unique IMSIs, the proxy function replicates the authentication interaction, allowing multiple devices to use the same IMSI by simulating separate authentication sessions for each device

Inventive Principle:
Principle #26Copying

2Productivity

If multiple devices share a single IMSI for resource efficiency, then productivity is improved, but measurement precision deteriorates in tracking individual device authentication status

Engineering Contradiction:
Improveresource efficiencyVSAvoidauthentication status tracking precision
Core Design Contradiction:
ProductivityVSMeasurement precision

Solution Approach 1:

The system segments the authentication management function into two parts: the identity proxy function that handles multiple devices sharing an IMSI, and the network registration function that maintains precise tracking of each device's authentication status. This segmentation allows resource efficiency through IMSI sharing while preserving precise measurement of individual device states through separate tracking mechanisms

Inventive Principle:
Principle #1Segmentation

3Measurement precision

If traditional registration processes are used for each device, then measurement precision is maintained in device identification, but loss of time increases due to repeated authentication overhead

Engineering Contradiction:
Improvedevice identification precisionVSAvoidauthentication time
Core Design Contradiction:
Measurement precisionVSLoss of time

Solution Approach 1:

The identity proxy function performs preliminary authentication simulation and IMSI management actions before actual network registration is required. By pre-establishing authentication credentials and managing IMSI assignments in advance, the system reduces the time required for repeated authentication while maintaining precise device identification through the proxy's record-keeping

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS11032697B2Method and apparatus for provisioning of multiple devices with mobile subscriber identification information
Publication Date: 2021.06.08 AT&T INTELLECTUAL PROPERTY I L P
  • US11032697B2 patent drawing
  • US11032697B2 patent drawing
  • US11032697B2 patent drawing

AI summary

Aspects of the subject disclosure may include, for example, a system that manages utilization of mobile subscriber identity information including enabling use of such information by different communication devices. The use of a same generic mobile subscriber identity information by multiple devices can be based on intercepting registration requests and simulated registrations can be performed without providing a unique device identifier. Other embodiments are disclosed.