| CPC H04L 63/0414 (2013.01) [H04L 63/0428 (2013.01)] | 17 Claims |

|
1. A method, comprising:
receiving, by a Network Exposure Function (NEF) from a Unified Data Management (UDM) function in a mobile network, registration data associated with an application installed at a User Equipment device (UE), wherein the registration data comprises a first subscription concealed ID (SUCI), a first Subscription Permanent Identifier (SUPI) deconcealed from the first SUCI, and a first service identifier (ID) associated with the application;
receiving, at the NEF, a network service request from the UE, wherein the network service request includes a second service ID and a second SUCI;
obtaining, by the NEF from the UDM function, a second SUPI deconcealed from the second SUCI by the UDM function;
comparing, by the NEF, the second service ID with the first service ID;
comparing, by the NEF, the deconcealed second SUPI with the first SUPI; and
sending, by the NEF, a service authorization response to the UE based on the comparison of the deconcealed second SUPI with the first SUPI and the comparison of the second service ID with the first service ID.
|