Wireless Network Trust Framework Using KPI-Driven Policy Feedback
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing 5G communication networks face challenges in managing access control policies due to interactions between multiple entities controlling network resources, which can impact network communication health and are complicated by specific performance requirements of network slices.
Innovation Solution
A wireless communication network system where enforcement points gather key performance indicators (KPIs) and send them to a policy source, which identifies trends and updates access control policies accordingly, allowing dynamic adaptation to network conditions.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If multiple entities control network resources with separate access control policies, then each entity can manage its domain independently, but interactions between policy rules create global impact on network communication health and increase management complexity
Solution Approach 1:
The patent segments the policy management system into hierarchical levels (local PDPs at network edges and central PDP at core), allowing each segment to manage policies independently while the central PDP coordinates interactions. This segmentation resolves the contradiction by enabling both independent local control and coordinated global management, reducing overall system complexity.
Solution Approach 2:
The patent introduces intermediary components (local PDPs and policy coordination mechanisms) that mediate between multiple entities' access control policies. These intermediaries collect KPIs, identify trends, and coordinate policy interactions, preventing harmful global impacts while preserving individual entity autonomy.
2Reliability
If access control policies are statically configured, then policy enforcement is simple and reliable, but the system cannot dynamically respond to changing network conditions or security threats
Solution Approach 1:
The patent implements feedback mechanisms where enforcement points continuously report KPIs to local PDPs, which analyze trends and dynamically adjust access control policies. This feedback loop maintains reliability through systematic policy management while enabling dynamic adaptation to changing network conditions and security threats.
Solution Approach 2:
The patent transforms static access control policies into dynamic policies that automatically adapt based on KPI trends. Enforcement points can modify policy parameters in real-time based on observed network conditions, maintaining both reliability through controlled adaptation and versatility through responsiveness to change.
3Productivity
If comprehensive KPI monitoring and policy analysis is implemented across all network entities, then network performance and security can be optimized, but the system complexity and computational overhead increase
Solution Approach 1:
The patent segments KPI monitoring and analysis functions across hierarchical levels (enforcement points, local PDPs, and central PDP). Each level monitors and analyzes KPIs relevant to its domain, reducing individual complexity while achieving comprehensive network optimization through coordinated multi-level analysis.
Solution Approach 2:
The patent applies local quality by enabling each network entity to perform KPI monitoring and policy analysis tailored to its specific domain and requirements. Enforcement points monitor local access attempts, local PDPs analyze regional trends, and the central PDP coordinates overall policy optimization, reducing unnecessary complexity at each level while maintaining comprehensive optimization.
Data Source
AI summary
Systems, methods, and devices are disclosed herein to identify and deploy policy changes from a policy source in a wireless communication network to enforcement points in the network based on trends identified by the policy source in KPIs reported by the enforcement points. In an implementation, enforcement points in the network report KPIs to the policy source. The KPIs are related to authorization attempts made by user equipment in the network. The policy source, upon receiving the KPIs, identifies a trend in the KPIs and identifies a policy change based on the KPIs. The policy source then deploys the policy change to the enforcement points. In various implementations, the policy source is a Policy Decision Point (PDP), and the enforcement points are Policy Enforcement Points (PEPs).


