Mobile Equipment APN Verification for Cellular Access Control

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing cellular networks face challenges in enforcing the use of specific Access Point Names (APNs) with given applications, leading to potential unauthorized or unintended use of APNs.

Innovation Solution

An apparatus and method within mobile equipment that determines and verifies the appropriate APN for an application by using stored verification information, ensuring that only authorized APNs are used, and performing this verification within a time frame that is imperceptible to the user.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If the network deduces the application from ongoing traffic to enforce APN usage, then application identification is achieved, but processing cost for network servers increases substantially

Engineering Contradiction:
ImproveAPN usage enforcementVSAvoidnetwork server processing cost
Core Design Contradiction:
ReliabilityVSLoss of energy

Solution Approach 1:

The patent applies preliminary action by determining and verifying the application-access point name mapping relationship in advance, before actual data transmission occurs. The mobile equipment identifies which application should use which APN and performs verification proactively, so that when data needs to be transmitted, the correct APN is already selected without requiring expensive real-time traffic analysis by network servers.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent implements self-service by enabling the mobile equipment to autonomously perform application identification and APN selection without relying on network server intervention. The mobile equipment itself determines the mapping relationship between applications and APNs, verifies it using stored verification information, and makes the binding decision locally, thereby eliminating the need for energy-consuming network server processing.

Inventive Principle:
Principle #25Self-service

2Reliability

If special APNs are provisioned for specific applications, then authorized access is enabled, but unauthorized applications may still attempt to use them

Engineering Contradiction:
Improveauthorized accessVSAvoidunauthorized access attempts
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent applies feedback by implementing a verification mechanism where the mobile equipment checks whether an application is authorized to use a specific APN before allowing the connection. The system uses stored verification information to confirm the mapping relationship, and only allows data transmission if the verification succeeds. This feedback loop prevents unauthorized applications from accessing restricted APNs.

Inventive Principle:
Principle #23Feedback

Solution Approach 2:

The patent introduces an intermediary verification mechanism that acts as a mediator between applications and APNs. Instead of directly allowing any application to access any APN, the system inserts a verification step that checks the authorization status. This intermediary layer ensures that only properly authorized application-APN pairs can establish connections, blocking unauthorized access attempts.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Reliability

If real-time verification of application-APN mapping is performed, then unauthorized use is prevented, but user-perceivable delay may occur

Engineering Contradiction:
Improveauthorization verificationVSAvoidverification time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent applies preliminary action by performing the verification of application-APN mapping relationships in advance, before the user initiates data transmission. The mobile equipment pre-identifies which applications should use which APNs and stores this verification information locally. When data needs to be transmitted, the pre-performed verification allows immediate connection establishment without user-perceivable delay.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent implements dynamics by optimizing the verification process to complete within a time frame that is imperceptible to the user. The system dynamically adjusts the verification timing and efficiency, ensuring that the authorization check is performed so quickly that the user experiences no noticeable delay, while still maintaining security.

Inventive Principle:
Principle #15Dynamics

Data Source

PatentEP3219150B1Method and apparatus for cellular access point control
Publication Date: 2025.06.04 NOKIA TECHNOLOGIES OY
  • EP3219150B1 patent drawingFigure 1
  • EP3219150B1 patent drawingFigure 2~3
  • EP3219150B1 patent drawingFigure 4

AI summary

Method, apparatus and computer program for receiving an identification of an application that has issued a connectivity request for cellular communications with a cellular network;determining an access point name to be used for providing the identified application with the cellular communications; and verifying whether the identified access point name use is allowable with the identified application and accordingly allowing or preventing said use.