CA2559647A1

Third party access gateway for telecommunications services

Abstract

A telecommunications architecture exposes telecommunications services to thi rd parties through a secure access gateway. The third parties may be other telecommunications service providers who employ the services to support thei r own products and services. The access gateway provides a secure, standardized, a nd controlled access platform for the exposed services, and addresses the technical problems associated with such access. In addition to providing technical solutions for efficient and secure access to exposed services, the architecture also provides an additional revenue channel for existing telecommunication service providers.

CA2559647A1, drawing sheet 1
Sheet 1 of 23

Term

Term ended

Projected expiry passed 13 September 2026, 0 years ago.

  1. Priority
  2. Filed
  3. Published
  4. Projected expiry
  5. Today

27 claims: 3 independent, 24 dependent

  1. 1
    CA 02559647 2006-09-13 Claims We claim:1. A secure access gateway for a telecommunications architecture, the access gateway comprising: a profiling database comprising third party authorization data;a subscriber communication interface;a service broker communication interface;a service provider communication interface;an application communication interface;a service request handler coupled to the subscriber communication interface and the profiling database, the service request handler operable to: receive a communication network access request through the subscriber communication interface;extract a subscriber device identifier from the communication network access request;search the profiling database for an authorized subscriber device identifier record;and when the authorized subscriber device identifier record exists, forward the communication network access request to a communication network service provider through the service provider communication interface;a capability hander coupled to the subscriber communication interface, the capability handler operable to: receive an exposed service request through the application communication interface;authenticate the exposed service request to obtain a certificate identifier from the exposed service request;search the profiling database for an authorized third party application associated to the certificate identifier;and CA 02559647 2006-09-13 when the authorized third party application exists, forward the exposed service request to a service broker through the service broker communication interface.
  2. 12
    A method for secure third party access to telecommunications services, the method comprising:establishing a profiling database comprising third party authorization data;receiving telecommunications service use requests;distinguishing the telecommunications service use requests between a communication network access request and an exposed service request;initiating execution of a service request handler on the communication network access request to: extract a subscriber device identifier from the communication network access request;search the profiling database for an authorized subscriber device identifier record;and when the authorized subscriber device exists, forward the communication network access request to a communication network service provider through a service provider communication interface;and initiating execution of a capability hander on the exposed service request to: authenticate the exposed service request to obtain a certificate identifier from the exposed service request;CA 02559647 2006-09-13 search the profiling database for an authorized third party application associated to the certificate identifier;and when the authorized third party application exists, forward the exposed service request to a service broker through the service broker communication interface.
  3. 21
    A product comprising:a machine readable medium;and instructions encoded on the machine readable medium which case a processor in an access gateway to perform a method comprising: storing third party authorization data in a profiling database;receiving a communication network access request through a first interface;receiving an exposed service request through a second interface;initiating execution of a service request handler on the communication network access request to: extract a subscriber device identifier from the communication network access request;search the profiling database for an authorized subscriber device identifier record;and when the authorized subscriber device exists, forward the communication network access request to a communication network service provider through a service provider communication interface;and initiating execution of a capability hander on the exposed service request to: authenticate the exposed service request to obtain a certificate identifier from the exposed service request;search the profiling database for an authorized third party application using the certificate identifier;and when the authorized third party application exists, forward the exposed service request to a service broker through the service broker communication interface.