US 12,075,253 B2
Attachment of a wireless device to a mobile network operator
Maria Esther Bas Sanchez, Madrid (ES); David Castellanos Zamora, Madrid (ES); Peter Hedman, Helsingborg (SE); Christine Jost, Lund (SE); and Monica Wifvesson, Lund (SE)
Assigned to Telefonaktiebolaget LM Ericsson (publ), Stockholm (SE)
Appl. No. 16/465,382
Filed by Telefonaktiebolaget LM Ericsson (publ), Stockholm (SE)
PCT Filed Jan. 26, 2017, PCT No. PCT/EP2017/051668
§ 371(c)(1), (2) Date May 30, 2019,
PCT Pub. No. WO2018/137769, PCT Pub. Date Aug. 2, 2018.
Prior Publication US 2020/0008052 A1, Jan. 2, 2020
Int. Cl. H04W 12/30 (2021.01); H04W 8/20 (2009.01); H04W 12/06 (2021.01); H04W 60/04 (2009.01)
CPC H04W 12/35 (2021.01) [H04W 8/205 (2013.01); H04W 12/06 (2013.01); H04W 60/04 (2013.01)] 15 Claims
OG exemplary drawing
 
1. A method for attachment of a wireless device to a mobile network operator, MNO, the method being performed by the wireless device, the method comprising:
providing an authorization token to an access and mobility management function (AMF) node of the MNO in conjunction with authenticating with the AMF node,
wherein the authorization token comprises information identifying which service the wireless device is authorized for and information identifying a service provider having a service license agreement with the MNO,
wherein the authorization token is provided during authentication signalling,
wherein the authorization token is signed by the service provider, and
wherein after authentication and authorization, the AMF node installs policy rules related to traffic flows and packet filters to the wireless device, so as to ensure that the wireless device only uses a connection for a purpose of accessing to the authorized service, and to ensure that the wireless device does not send packets beyond what is allowed;
completing attachment to the MNO upon successful validation of the authorization token by the AMF node,
wherein completing attachment to the MNO comprises obtaining information about a provisioning server from the AMF node, from which provisioning server operational subscription credentials are downloadable to the wireless device, and
wherein a provisioning process between the wireless device and the provisioning server takes place using User Plane signaling;
obtaining a further authorization token in conjunction with authenticating with the AMF node;
providing the further authorization token to the provisioning server, from which the operational subscription credentials are downloadable to the wireless device; and
downloading the operational subscription credentials upon successful validation of the further authorization token by the provisioning server.