RADIUS Prefix Authorization for IPv6 Network Management

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current DHCPv6 prefix authorization systems lack active control over delegated prefixes, particularly in cases of renumbering, as the AAA server passively delegates prefixes without the ability to manage or reassign them.

Innovation Solution

Implementing a RADIUS protocol-based Prefix Authorization (PA) system that allows a PA client to request, release, renew, and renumber IPv6 prefixes using a RADIUS PA server, enabling active management of prefixes through Access-Request and Access-Accept messages.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If a DHCPv6 prefix authorization system is used, then IPv6 prefixes can be delegated to mobile nodes, but the AAA server lacks active control over delegated prefixes and cannot manage or reassign them

Engineering Contradiction:
Improveprefix management capabilityVSAvoidactive control over prefixes
Core Design Contradiction:
Adaptability or versatilityVSEase of operation

Solution Approach 1:

The patent transforms the static prefix delegation mechanism into a dynamic one by implementing RADIUS protocol-based Prefix Authorization that enables real-time prefix management. The system allows the AAA server to actively control, renew, and reassign prefixes dynamically based on network conditions and user requirements, resolving the contradiction between adaptability and ease of operation.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The patent introduces feedback mechanisms through RADIUS protocol message exchanges (Access-Request, Access-Accept, Access-Reject) between the AAA server and network access servers. This feedback loop enables the AAA server to monitor prefix usage, detect expiration events, and actively manage prefix allocation, providing both adaptability and operational control.

Inventive Principle:
Principle #23Feedback

2Adaptability or versatility

If prefixes are passively delegated without active management, then the system is simpler to implement, but the network lacks flexibility for prefix renumbering and renewal

Engineering Contradiction:
Improvenetwork flexibilityVSAvoidprefix authorization system
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent leverages the existing RADIUS protocol framework, which is a universal authentication and authorization mechanism already widely deployed in network infrastructure. By extending RADIUS to handle prefix authorization, the system gains multi-functionality (authentication, authorization, and prefix management) without requiring a completely new complex system, thus achieving network flexibility with manageable complexity.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The patent introduces the AAA server as an intermediary between the network infrastructure and mobile nodes for prefix management. This intermediary consolidates the complexity of active prefix control, renewal, and renumbering operations in a single centralized component, allowing the rest of the network to remain relatively simple while still achieving high adaptability.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Productivity

If the AAA server actively manages prefixes using RADIUS protocol, then prefix renewal and renumbering become possible, but the system requires implementation of Access-Request and Access-Accept message exchanges

Engineering Contradiction:
Improveprefix management efficiencyVSAvoidRADIUS protocol implementation
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The patent replaces manual or passive prefix delegation mechanisms with an automated RADIUS protocol-based system. The automated message exchanges (Access-Request, Access-Accept) substitute for manual configuration and passive delegation, significantly improving prefix management efficiency. The automation handles renewal timing, expiration detection, and reassignment without human intervention, overcoming the complexity barrier through standardization.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Data Source

PatentUS8676999B2System and method for remote authentication dial in user service (RADIUS) prefix authorization application
Publication Date: 2014.03.18 FUTUREWEI TECHNOLOGIES INC
  • US8676999B2 patent drawing
  • US8676999B2 patent drawing
  • US8676999B2 patent drawing

AI summary

An apparatus comprising a client node configured to communicate with a server node and a plurality of mobile nodes, wherein the client node is configured to obtain Prefix Authorization (PA) for the mobile node from the server node using a Remote Authentication Dial In User Service (RADIUS) protocol. Also disclosed is a network component comprising at least one processor configured to implement a method comprising sending an Access-Request message to an Authentication, Authorization, and Accounting (AAA) PA server using a RADIUS protocol, receiving an Access-Accept message from the AAA PA server using the RADIUS protocol if the Access-Request message is accepted by the AAA PA server, and receiving an Access-Reject message from the AAA PA server using the RADIUS protocol if the Access-Request message is not accepted by the AAA PA server.