US 12,425,857 B2
Security management between edge proxy and internetwork exchange node in a communication system
Nagendra S Bykampadi, Bangalore (IN); Anja Jerichow, Grafing bei München (DE); and Suresh Nair, Whippany, NJ (US)
Assigned to Nokia Technologies Oy, Espoo (FI)
Appl. No. 17/253,895
Filed by Nokia Technologies Oy, Espoo (FI)
PCT Filed Sep. 20, 2019, PCT No. PCT/FI2019/050673
§ 371(c)(1), (2) Date Dec. 18, 2020,
PCT Pub. No. WO2020/065130, PCT Pub. Date Apr. 2, 2020.
Claims priority of application No. 201841035941 (IN), filed on Sep. 24, 2018.
Prior Publication US 2021/0219137 A1, Jul. 15, 2021
Int. Cl. H04W 12/086 (2021.01); H04L 9/40 (2022.01); H04L 67/02 (2022.01); H04W 12/033 (2021.01); H04W 76/12 (2018.01); H04W 88/16 (2009.01)
CPC H04W 12/086 (2021.01) [H04L 63/0272 (2013.01); H04L 63/0281 (2013.01); H04L 63/166 (2013.01); H04W 12/033 (2021.01); H04W 76/12 (2018.02); H04W 88/16 (2013.01); H04L 67/02 (2013.01)] 16 Claims
OG exemplary drawing
 
1. A method comprising:
initiating establishment of a secure tunnel by a first security edge protection proxy element in a first public land mobile network with a first internetwork exchange element which is operatively coupled between the first public land mobile network and a second public land mobile network over a roaming interface, the roaming interface comprising the first internetwork exchange element trusted by the first security edge protection proxy element and a second internetwork exchange element trusted by a second security edge protection proxy element in the second public land mobile network;
generating, by the first security edge protection proxy element, a target uniform resource identifier for a message to be delivered from a first network entity in the first public land mobile network to a second network entity in the second public land mobile network, an authority component of the target uniform resource identifier pointing to the second security edge protection proxy element; and
upon establishment of the secure tunnel, sending the message utilizing the generated target uniform resource identifier from the first security edge protection proxy element to the first internetwork exchange element over the secure tunnel.