Validating authorization for use of a set of features of a device
Abstract
A device obtains proof of its authority to use a first set of selectively activated features (first proof). An authorization server signs the first proof with its private key. The device sends a request to use a network service to a network node. The device sends the first proof to the network node. The network node validates the first proof using a public key of the authorization server. The network node grants the request to use the network service. The device sends a request for proof of authority for the network node to provide the network service (second proof). The device obtains the second proof, signed by another authorization server, and validates the second proof before using the network service. The first proof and the second proof each include a list of selectively activated features, where the selectively activated features are needed to use or provide the network service.
Claims
exact text as granted — not AI-modifiedWhat is claimed is:
1 . A method operational at a server, comprising:
obtaining a first list of selectively activated features of a device; and updating a second list of selectively activated features of the device, stored at the server, based on the first list, wherein the second list is associated with a subscription profile of the device, to reflect a change to an authorization status of at least one selectively activated feature in the second list.
2 . The method of claim 1 , wherein the server is a home subscriber server (HSS).
3 . The method of claim 1 , further comprising:
sending, responsive to a query concerning capability of the device, a capability profile including the second list of selectively activated features of the device.
4 . The method of claim 1 , wherein the first list of selectively activated features originates at an authorization server and is signed with a private key of the authorization server;
the method further comprising:
validating the first list of selectively activated features using a public key of the authorization server.
5 . The method of claim 4 , wherein the authorization server is a local authorization server.
6 . The method of claim 1 , wherein the first list of selectively activated features is data representative of an authorization certificate signed by an authorization server.
7 . The method of claim 1 , wherein the first list of selectively activated features is data representative of an authorization agreement indicating that the device is authorized to activate the selectively activated features.
8 . A server comprising:
a network communication circuit for communicating over a network; and a processing circuit coupled to the network communication circuit, wherein the processing circuit is configured to:
obtain a first list of selectively activated features of a device; and
update a second list of selectively activated features of the device, stored at the server, based on the first list, wherein the second list is associated with a subscription profile of the device, to reflect a change to an authorization status of at least one selectively activated feature in the second list.
9 . The server of claim 8 , wherein the server is a home subscriber server (HSS).
10 . The server of claim 8 , wherein the processing circuit is further configured to:
send, responsive to a query concerning capability of the device, a capability profile including the second list of selectively activated features of the device.
11 . The server of claim 8 , wherein the first list of selectively activated features originates at an authorization server and is signed with a private key of the authorization server, and the processing circuit is further configured to:
validate the first list of selectively activated features using a public key of the authorization server.
12 . The server of claim 11 , wherein the authorization server is a local authorization server.
13 . The server of claim 8 , wherein the first list of selectively activated features is data representative of an authorization certificate signed by an authorization server.
14 . The server of claim 8 , wherein the first list of selectively activated features is data representative of an authorization agreement indicating that the device is authorized to activate the selectively activated features.
15 . A server, comprising:
means for obtaining a first list of selectively activated features of a device; and means for updating a second list of selectively activated features of the device, stored at the server, based on the first list, wherein the second list is associated with a subscription profile of the device, to reflect a change to an authorization status of at least one selectively activated feature in the second list.
16 . The server of claim 15 , wherein the server is a home subscriber server (HSS).
17 . The server of claim 15 , further comprising:
sending, responsive to a query concerning capability of the device, a capability profile including the second list of selectively activated features of the device.
18 . The server of claim 15 , wherein the first list of selectively activated features originates at an authorization server and is signed with a private key of the authorization server;
the server further comprising:
means for validating the first list of selectively activated features using a public key of the authorization server.
19 . The server of claim 15 , wherein the first list of selectively activated features is data representative of an authorization certificate signed by an authorization server.
20 . The server of claim 15 , wherein the first list of selectively activated features is data representative of an authorization agreement indicating that the device is authorized to activate the selectively activated features.Join the waitlist — get patent alerts
Track US2021337386A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.