User Plane Replicator for IoT Security via Traffic Simulation
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Networks, such as 5G, are vulnerable to malicious software that can cause poor performance or errors, particularly affecting IoT devices and autonomous vehicles, which can lead to financial loss, property damage, or human injury due to their accessibility and lack of initial screening for malicious intent.
Innovation Solution
The user plane replicator captures and evaluates data traffic before it enters the core network, simulating the traffic on virtual machines to determine a risk score and taking corrective actions, such as blocking or modifying traffic, to ensure secure data transmission.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If data traffic is allowed to traverse the network freely to maintain high connectivity and accessibility, then network usability and device accessibility are improved, but network security and vulnerability to malicious software worsen
Solution Approach 1:
The system performs preliminary simulation of data traffic on virtual machines before the traffic reaches the actual target device. By pre-executing the traffic on replicated device images, the system identifies malicious content in advance and blocks it before it can cause harm to real devices, thus maintaining accessibility while preventing vulnerability exploitation
Solution Approach 2:
The patent introduces virtual machines as intermediary entities between the data traffic source and the actual target devices. These virtual machines act as a mediation layer that receives, simulates, and evaluates traffic before allowing it to proceed to real devices, enabling security inspection without blocking legitimate communication
2Reliability
If virtual machine simulation is performed on all incoming data traffic to improve security detection, then network security is improved, but processing time and system complexity worsen
Solution Approach 1:
The system applies virtual machine simulation selectively rather than universally to all traffic. By focusing simulation resources on suspicious or high-risk traffic patterns while allowing trusted traffic to pass through with minimal inspection, the system achieves strong security for critical threats without incurring excessive processing time for all traffic
Solution Approach 2:
The patent creates virtual copies (images) of target devices that are stored and reused for simulation purposes. Once a device image is created, it can be used multiple times to simulate traffic from different sources, eliminating the need to recreate device representations repeatedly and reducing overall processing time
3Reliability
If device images are replicated and stored in the user plane replicator to enable simulation, then security evaluation capability is improved, but storage requirements and system complexity worsen
Solution Approach 1:
The system designs device images to be universal and reusable across multiple simulation scenarios. A single device image can serve as the basis for simulating traffic from multiple different sources and can be used repeatedly over time, maximizing the utility of stored images and reducing the total quantity needed
Solution Approach 2:
The patent creates simplified virtual copies of devices that capture essential simulation characteristics without requiring complete device replicas. These copied images contain only the necessary elements for traffic simulation, reducing storage requirements while maintaining security evaluation capability
Data Source
AI summary
A replicator device may capture and evaluate data traffic before it affects the core network or before it is delivered to the end device. After capturing the data traffic, the replicator may replicate the effect of the data traffic on mobile devices or other devices and take an appropriate corrective action.


