Transcript
Page 1: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

New AAA Business Use Casesfor Wi-Max and 4G Networks

Syed HashmiFounder and CEO

AdvOSS Farhan ZaidiCo-Founder &

CTOAdvOSS

Fawad Pasha

VP SalesAdvOSS

Page 2: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Agenda

1. Quick overview of AAA2. Authentication use cases3. Authorization use cases4. Accounting use cases

Focus: To signify the demands on AAA Applications to realize new use cases

Page 3: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Bridge between Service Delivery & Core

Page 4: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

AAA ApplicationsAuthentication handles ‘who’ intends to use

the serviceAuthorization handles ‘what’ service they

want to useAccounting handles ‘how much’ of the service

was used

Page 5: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

AAA ApplicationsEach AAA request is now handled by a respective ‘AAA Application’ that interfaces with different functions in core network over multiple interfaces.

Page 6: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

AuthenticationPreviously main use case was identification of users.

Page 7: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Authentication: New Use CasesAutomatic AuthenticationExclusivity of devicesControl of MobilityIdentity Theft PreventionAccount Sharing PreventionLoad Sharing among VLANs

Page 8: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Authentication: New Use CasesLawful interceptVirtual OperatorsIP Address AllocationCPE sharingUnsubscribed UsersRoaming

Page 9: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Automatic AuthenticationUsed for automated login of userTechnology used:Reverse IP LookupInterface to HSS

Page 10: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Exclusivity of DevicesOperator may want to exclude devices or CPEs not issued by it.Tech Features:Certificate based authentication (EAP-TLS)

Page 11: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Control of MobilityFor Business or Regulatory reasons, the operator may like the users not to be able to connect beyond a given geographical area of accessTech used:Hunt GroupsAccess Control Lists

Page 12: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Identify Theft ProtectionUsers should not be able to login using stolen IDs or devices. Two factor or multi-factor authentication needs to be supportedTech Used:EAP-TTLS

Page 13: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Account Sharing PreventionOperator for its business, regulatory or other needs, may not want more than one user to share a single account.Tech Used:Concurrency CheckEAP-TTLSInterface to HSS

Page 14: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Load Sharing among VLANsFor larger networks, operator may need to distribute subscribers across multiple VLANsTech Used:Subscriber ZoningVLAN managementLoad Balancing Algorithms

Page 15: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Lawful InterceptAAA is usually an appropriate layer to comply with Lawful Intercept requirements of Real-Time and Near Real-Time monitoring of Signalling and/or media streamsAvailable technologies:Forking ProxiesAAA based routingRule based engines

Page 16: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Virtual OperatorsSupport for multiple virtual operators sharing access networkTech Used:RealmHunt Group based ZoningRule Based EngineForking proxies

Page 17: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

IP Address AllocationMaintenance of IP addresses and subnetsTech Used:IP repositoryIP Pools zoning

Page 18: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Allowing device SharingAllowing multiple users to share a single device Tech Used:Combination of EAP-TLS and

UserName/Password authentication

Page 19: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Unsubscribed UsersUnsubscribed users should be able to get access on the fly using their PINsTech Used:Interfaces to Voucher

ManagementInterface to HSS or other

Subscriber ManagementInterface to Provisioning

EngineEAP-TTLS

Page 20: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

RoamingRoaming allows home users to get access from visited networks and vice versa.Technologies used:Realm based routingOrigin zoning in Policy

Page 21: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Authentication ResponsesReplying with network entry parametersMixing pre-paid and post-paid subscribersPolicy Enforcement and Bearer Binding

Page 22: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Network Entry ParametersIn response of Authentication, the AAA gives the complete enforcement profile to the enforcement function.

This is a detailed response on ‘how’ is the service to be delivered. Bandwidth, QoS, allowed features etc. are all part of this response

Page 23: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Pre-Paid behavior identificationBased on Authentication, the type of user is identified to enforce Pre-paid behavior. For strictly pre-paid or PAYG (Pay As You Go) users, continuous authorizations or re-authorizations may be initiated.

Page 24: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Bearer BindingDepending on the nature of enforcement point, some information may have to be sent to Bearer Binding functions

Page 25: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

AuthorizationInitial AuthorizationRe-Authorizations

Page 26: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Subscription AuthorizationChecking if Subscription is available for the asked Service and if it is valid at the time of requestTech Used:HSS Subscription Manager

Page 27: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Pre-paid QuotaAuthorization Application needs to keep counts of authorized quotas of both usage, duration and events and have arrangements to consume or refund them as needed.Tech UsedSession ManagementQuota ManagementCharging Application

Page 28: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Pre-Paid CreditAuthorizes enough credit for the SessionTech Used:Charging ApplicationRating Engine

Page 29: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

ConcurrencyEnforcing concurrency limits on individual subscribersTech Used:Session ManagementProfiles from HSS

Page 30: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Destination ControlFor ‘Destination’ based services, the requested resource may need to be authorized.Tech Used:Request AuthorizationRequest ZoningPolicy Management

Page 31: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Capacity & QoETaking care of capacity issues on ingress and egress and with vendorsTech Used:Policy ServerRequest ZoningSession Management

Page 32: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

QoSAsked QoS capability is matched with subscription information to allow/disallow requestTech usedCapability MatchingFlow based authorizationInterface to HSS

Page 33: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Time of Day restrictionsService may be restricted based on time of day or other temporal criteriaTech Used:Policy ServerInterface with Rating Engine

Page 34: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Access Method Control and ChargingIf operator supports multiple access methods (Fiber, Cable, Copper, Wi-Max, Wi-Fi), they may like to restrict users not to be able to access using other methods or they may like to be able to charge them separately.Technology:IP Address ZoningPolicy Server

Page 35: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

RoutingLeast Cost Routing or Policy Based Routing for termination of sessionTech Used:LCR (Least Cost Routing)Capacity ManagementPolicy Server

Page 36: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Authorization of Multiple ServicesAAA can authorize multiple services for the same userTech UsedService ManagerService Offering ManagerInterface to HSS

Page 37: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Subscription Add-OnsAdd-on based profilesTech Used:HSS User Profile Manager

Page 38: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

PersonalizationPersonalization allows users to change default behaviour as per their own preferences.Tech used:ID based profilesUser Profiles

Page 39: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Re-AuthorizationPrepaid

Quota ReservationChanged QoS including VAS

Page 40: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Authorization ResponsesIf all authorizations are passed, authorization may respond with the following:Allowed Duration or Usage before Re-

Authorization will be needed or session is disconnected

Suggested Routing information if AAA is also doing the Routing towards terminators or vendors

Page 41: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

AccountingStart AccountingInterim AccountingStop Accounting

Page 42: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Start AccountingHot liningSession ManagementService Management

Page 43: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Hot-LiningSubscriber is re-directed to a Hot-Lining Application such as a captive portal to perform some remedial action before resuming service usageTechnologies used:

Accounting applicationPolicy ServerCRM (self-care portal)

Page 44: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Session ManagementSessions are inserted, modified and deleted for real-time monitoring, business intelligence and several types of reportingTechnologies used:

Accounting applicationManagement GUI

Page 45: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Interim AccountingReal-Time ChargingTime based pricingTime based quotasFair-Usage PoliciesTime based restrictionsHot-LiningService ManagementAlerting

Page 46: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Real-Time Charging

Online charging based on time, volume or eventsTechnologies used:

Accounting ApplicationRating & Charging engine

Page 47: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Time based Pricing

Price is modified based on service used in different time slots of the day.Technologies used:

Accounting ApplicationRating & ChargingPolicy Server

Page 48: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Time-based QuotasService quotas are allocated to subscribers based on different time slots in the dayTechnologies used:

Accounting ApplicationQuota ManagerPolicy Server

Page 49: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Fair-Usage policies

Subscribers on unlimited plans are gradually reduced the level of service if they consume service units too soon as per Service Provider policyTechnologies used:

Accounting ApplicationPolicy ServerHSS

Page 50: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

AlertingBill Day AlertsBill Shock AlertsGrace period Alerts

Technologies used:Accounting

ApplicationAlerting

application

Page 51: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Stop AccountingRevenue AssuranceQoS MonitoringOTT (over the top) Applications

Page 52: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Revenue AssuranceCDR writing on multiple points in the

network

Page 53: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Near Real-Time QoS MonitoringQuality of service for different routes, destination, origins, access methods etc. is monitored in real-time. They include ASR, ACD, PDD, QoS etc.Tech Used:Interface to QoS monitoring application.

Page 54: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

General Purpose Use CasesReal-Time MonitoringService AssuranceOTT (Over the Top) and Flow Based

Accounting

Page 55: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Service AssuranceBypassing different interfaces to assure

service continuity in case of system and network failures

Page 56: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Service ManagementService experience and usability is modified based on policy rules, subscriber life cycle events and subscriber’s monetary credit etc.Technologies used:

Accounting ApplicationPolicy ServerHSS

Page 57: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

AdvOSS SolutionRadius / Diameter ServerPolicy Server

PCRF CompliantHSSSDP

AAA ApplicationsHot-lining / Captive Portal

Page 58: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Optional Products:Quota ManagerCharging EngineBilling EngineVoucher Management SystemProvisioning EngineMediation

Page 59: Syed Hashmi Founder and CEO AdvOSS Farhan Zaidi Co-Founder & CTO AdvOSS Fawad Pasha VP Sales AdvOSS

Thank You

For any further query and business with us please feel free to contact us at

[email protected]://advoss.com

Suite 120, 10691 Shellbridge WayRichmond, BC V6X 2W8, Canada

Tel: +1 (604) 800 0269


Top Related