Proxy Mobile IPv6 Gateway for Cellular Data Access Control

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Organizations face challenges in managing cellular devices when they are outside their home network or in countries with which they do not have a roaming agreement, as these devices may become inaccessible, limiting the ability to track, configure, or access them.

Innovation Solution

Implementing technologies that allow cellular devices to connect to disallowed cellular networks by using a blocked Packet Data Network Gateway (PGW) for restricted access, while using a Home Subscriber Server (HSS) and proxy to manage connections and data paths, allowing devices to attach even when outside preferred networks and route data sessions accordingly.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If cellular devices are allowed to connect to any cellular network for global accessibility, then device reachability is improved, but network security and data access control deteriorate

Engineering Contradiction:
Improvedevice reachabilityVSAvoidunauthorized data access
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The patent introduces a Proxy Mobile IPv6 gateway as an intermediary component between the cellular device and the packet data network. This gateway intercepts and inspects data sessions, comparing source and destination addresses against policy rules to determine whether to allow or block access. The intermediary enables global device reachability while maintaining security control by filtering traffic at the network level rather than requiring device-side security decisions.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Object-affected harmful factors

If cellular devices are restricted to only home network or roaming agreement networks, then network security is improved, but device accessibility in foreign countries deteriorates

Engineering Contradiction:
Improvenetwork securityVSAvoiddevice accessibility
Core Design Contradiction:
Object-affected harmful factorsVSEase of operation

Solution Approach 1:

The patent segments the packet data network gateway functionality into multiple components: a Proxy Mobile IPv6 gateway that handles mobility management and a Policy gateway that handles security policy enforcement. This segmentation allows the system to maintain strict security policies for home and roaming networks while providing controlled access to non-roaming networks through the Proxy gateway's policy-based filtering mechanism.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent implements dynamic policy rule evaluation where the Proxy gateway inspects each data session in real-time, comparing source and destination addresses against configurable policy rules. The system dynamically determines whether to allow or block access based on the specific session characteristics and current policy settings, enabling flexible adaptation to different security requirements while maintaining device accessibility.

Inventive Principle:
Principle #15Dynamics

Data Source

PatentUS11076342B1Restrict data access based on cellular network
Publication Date: 2021.07.27 EXPETO WIRELESS INC
  • US11076342B1 patent drawing
  • US11076342B1 patent drawing
  • US11076342B1 patent drawing

AI summary

Technologies are described for restricting access within a cellular telecommunications environment. For example, the technologies described herein can be used to allow cellular devices to connect to cellular networks even when the cellular networks are disallowed. However, the connections to cellular networks that are disallowed can be handled differently from connections to cellular networks that are allowed. For example, when a cellular device is allowed to connect to a disallowed cellular network, the connection can be directed to a particular packet data network gateway (PGW), such as a blocked PGW.