Telecommunication Gateway Decoupling Authentication and Data Routing
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing telecommunication systems are inflexible in choosing access and core network technologies and operators, leading to high costs and potential connectivity issues, especially when network coverage is insufficient or specific access technologies like NB-loT are not available.
Innovation Solution
A communication device with a database and routing/signaling means allows users to select a first core network using a user-specific number like IMSI, routing data to a second core network by assigning a second APN/IP address, enabling decoupling from specific mobile core network technology and operators, and optimizing service choices based on user preferences.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If a user device connects to a mobile core network via a SIM card with IMSI assigned to a specific MNO/MVNO, then authentication and service authorization are ensured, but the user is bound to a specific network operator and cannot flexibly choose access and core networks
Solution Approach 1:
The patent segments the traditional unified core network into two independent parts: a first core network for authentication (using the user's home network SIM card) and a second core network for data transmission (which can be freely selected). This segmentation allows the user to authenticate through their home network while connecting to different data networks, thereby achieving network selection flexibility without compromising authentication security.
Solution Approach 2:
The patent introduces a network gateway as an intermediary component that bridges the first core network (authentication) and the second core network (data transmission). The gateway receives authentication results from the first core network and establishes data connections with selected second core networks, enabling decoupling of authentication and data transmission functions while maintaining system coherence.
2Adaptability or versatility
If the mobile core network uses traditional HLR/HSS for authentication, then user authentication and service authorization are reliably performed, but the network cannot support multiple core network selections and roaming flexibility is limited
Solution Approach 1:
The patent segments the authentication and data transmission functions into separate core networks. The first core network (using traditional HLR/HSS) handles only authentication and authorization, ensuring reliability. The second core network handles data transmission and can be freely selected. This functional segmentation allows multiple core network selections for data while maintaining reliable authentication through the home network.
Solution Approach 2:
The patent makes the network gateway a universal intermediary that can connect multiple first core networks (different home networks) with multiple second core networks (different data networks). This multi-functionality allows the system to support various authentication networks while providing flexible access to multiple data transmission networks, enhancing both adaptability and reliability.
3Adaptability or versatility
If an MVNO rents radio access infrastructure from an MNO and uses the MNO's core network, then service provision is enabled, but the MVNO is bound to the MNO and cannot provide independent network selection to users
Solution Approach 1:
The patent enables MVNOs to segment their network architecture by separating authentication functions (using the MNO's first core network) from data transmission functions (using the MVNO's own second core network). This allows MVNOs to maintain independence in data transmission while leveraging MNO infrastructure for authentication, providing network independence without requiring complete infrastructure duplication.
Solution Approach 2:
The network gateway serves as an intermediary that allows MVNOs to connect to multiple MNOs for authentication while providing access to the MVNO's own core network for data transmission. This intermediary function enables MVNOs to operate independently with flexible network selection capabilities without needing to replicate entire core network infrastructure, simplifying setup while enhancing independence.
4Reliability
If a user device is restricted to a single access network and core network, then network management is simplified, but connectivity issues arise when network coverage is insufficient or specific access technologies are unavailable
Solution Approach 1:
The patent segments the network connection into authentication path (through home network) and data transmission path (through selected second core network). This allows the device to maintain reliable authentication through the home network while selecting the most suitable data network based on coverage and technology availability, improving connectivity reliability without requiring complex device-side routing logic.
Solution Approach 2:
The network gateway acts as an intermediary that handles the complexity of network selection and routing. It receives authentication results from the first core network and automatically establishes connections with appropriate second core networks based on user preferences and network availability. This transfers routing complexity from the device to the network side, maintaining simple device operation while achieving reliable multi-network connectivity.
Data Source
Figure 1
Figure 2
Figure 3
AI summary
A communication device for connecting a user device with a second network, the communication device comprises a database storing user information including user specific numbers and the name of the communication device and a database storing user and network specific information signalling means to enable signalling between the first user device and the first database and signalling means configured to establish a connection between the first network and the second network and the communication device configured to establish, upon receipt of a request message including the address name of the communication device, a connection with a second core network identified by the user and network specific information stored in the second database, by sending a third request message to the second core network.