Patents by Inventor Henrik Basilier
Henrik Basilier has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).
-
Patent number: 11469961Abstract: Methods (700,800,900), devices (12,20,30,40), and systems (500,540,560,570,600) for managing a federated network slice (602) providing an extension of one or more virtual network functions (620) from a first network domain (502,608) to a second network domain (504,610). One method (700), by a second orchestration manager (20,512) of the second network domain (504,610), includes accessing (702) a first virtual network function management component (514,562) for extension of the one or more virtual network functions (620) from the first network domain (502,608) to the second network domain (504,610). The method (700) further includes initiating registration (704) of the first virtual network function management component (514,562) with a look-up service (518) to generate a first association between a first name of the first virtual network function management component and a first location of the first virtual network function management component in the second network domain (504,610).Type: GrantFiled: December 20, 2017Date of Patent: October 11, 2022Assignee: TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)Inventors: Patrick Maguire, Henrik Basilier
-
Publication number: 20210092020Abstract: Methods (700,800,900), devices (12,20,30,40), and systems (500,540,560,570,600) for managing a federated network slice (602) providing an extension of one or more virtual network functions (620) from a first network domain (502,608) to a second network domain (504,610). One method (700), by a second orchestration manager (20,512) of the second network domain (504,610), includes accessing (702) a first virtual network function management component (514,562) for extension of the one or more virtual network functions (620) from the first network domain (502,608) to the second network domain (504,610). The method (700) further includes initiating registration (704) of the first virtual network function management component (514,562) with a look-up service (518) to generate a first association between a first name of the first virtual network function management component and a first location of the first virtual network function management component in the second network domain (504,610).Type: ApplicationFiled: December 20, 2017Publication date: March 25, 2021Inventors: Patrick Maguire, Henrik BASILIER
-
Patent number: 10616764Abstract: A method implemented in a user equipment (UE) includes connecting to a WLAN access point. The method further includes constructing a domain name for a packet system network, the domain name including network partition information for the packet system network. The method further includes transmitting, to a DNS server via the WLAN access point, the constructed domain name. The method further includes receiving, from the server, at least one address corresponding to a network node associated with the network partition information.Type: GrantFiled: April 8, 2016Date of Patent: April 7, 2020Assignee: TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)Inventors: Stefan Rommer, Henrik Basilier, Torbjörn Cagenius, Gunnar Mildh, Gunnar Nilsson, Lennart Norell, Göran Rune, Ann-Christine Sander
-
Method, apparatus, and system for providing encryption or integrity protection in a wireless network
Patent number: 10454686Abstract: A core network node identifies a non-USIM based authentication procedure to be utilized by a wireless communication device, WCD, being served by the core network node. The node obtains a session key associated with the identified non-USIM based authentication procedure. The node converts the session key associated with the identified non-USIM based authentication procedure to i) a first key, K1, for use by the WCD and a base station serving the WCD to derive an encryption or integrity protection key, Kenc/int, for enabling encryption or integrity protection of a communication between the WCD and the base station or ii) a second key, K2, for use by the WCD and the core network node to derive the first key K1. The node then send i) K1 to the base station or ii) K2 to another core network node that is configured to derive K1 from K2.Type: GrantFiled: April 8, 2016Date of Patent: October 22, 2019Assignee: Telefonaktiebolaget LM Ericsson (publ)Inventors: Gunnar Mildh, Henrik Basilier, Torbjörn Cagenius, Gunnar Nilsson, Stefan Rommer, Lennart Norell, Göran Rune, Ann-Christine Sander -
Patent number: 10299199Abstract: A method implemented in a control node includes receiving a message from a first node. The method further includes determining whether the received message corresponds to one or more network partitions based at least in part on the partition selection information. The method further includes selecting, in response to determining that the message corresponds to the one or more network partitions, a particular network partition from the one or more network partitions using the partition selection information, and routing the message to a second node associated with the selected particular network partition.Type: GrantFiled: April 8, 2016Date of Patent: May 21, 2019Assignee: TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)Inventors: Henrik Basilier, Torbjörn Cagenius, Gunnar Mildh, Gunnar Nilsson, Lennart Norell, Stefan Rommer, Göran Rune, Ann-Christine Sander
-
Patent number: 10117124Abstract: This disclosure relates to a method, and an arrangement and a computer program for updating a prioritization level of a service data flow between a user node and a network node. The method comprises obtaining a traffic size per time unit of detected data packets of the service data flow, and updating the prioritization level of the service data flow, based on the obtained traffic size per time unit. It is an advantage that embodiments provide a possibility to determine a trade-off between the need to optimize response times for short-lived data sessions and limiting the impact on other users when prioritizing long-lived high volume sessions. It is advantageous that the embodiments are applicable to situations in which a direct classification, using IP 5-tuple or deep packet inspection is not meaningful.Type: GrantFiled: May 28, 2013Date of Patent: October 30, 2018Assignee: Telefonaktiebolaget L M Ericsson (publ)Inventors: Henrik Basilier, Per Willars
-
Patent number: 10117137Abstract: A method is performed in a network control entity that manages network connections for a network. The method includes receiving a network attachment request from a network access entity or a user equipment for connecting the user equipment to the network. The method further includes obtaining a network partition ID associated with the UE, the network partition ID identifying a network partition that includes a predetermined group of network entities included in the network. The method also includes transmitting, to a network storage entity, a notification containing the network partition ID.Type: GrantFiled: April 8, 2016Date of Patent: October 30, 2018Assignee: TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)Inventors: Stefan Rommer, Henrik Basilier, Torbjörn Cagenius, Gunnar Mildh, Gunnar Nilsson, Lennart Norell, Göran Rune, Ann-Christine Sander
-
Publication number: 20180254987Abstract: A method is described for associating a data packet (DP) with a packet bearer (PB) in a user equipment (UE1) of a communication network. The data packet is sent in a data flow from an application function of the user equipment, the packet bearer (PB) is established with the user equipment to transmit the data packet (DP) over the communication network towards a further entity, and the user equipment is adapted to establish different packet bearers.Type: ApplicationFiled: August 6, 2014Publication date: September 6, 2018Inventors: Per Willars, Hannes Ekström, Reiner Ludwig, Henrik Basilier
-
Publication number: 20180139660Abstract: A method is performed in a network control entity that manages network connections for a network. The method includes receiving a network attachment request from a network access entity or a user equipment for connecting the user equipment to the network. The method further includes obtaining a network partition ID associated with the UE, the network partition ID identifying a network partition that includes a predetermined group of network entities included in the network. The method also includes transmitting, to a network storage entity, a notification containing the network partition ID.Type: ApplicationFiled: April 8, 2016Publication date: May 17, 2018Applicant: Telefonaktiebolaget LM Ericsson (publ)Inventors: Stefan ROMMER, Henrik BASILIER, Torbjörn CAGENIUS, Gunnar MILDH, Gunnar NILSSON, Lennart NORELL, Göran RUNE, Ann-Christine SANDER
-
Publication number: 20180132101Abstract: A method implemented in a user equipment (UE) includes connecting to a WLAN access point. The method further includes constructing a domain name for a packet system network, the domain name including network partition information for the packet system network. The method further includes transmitting, to a DNS server via the WLAN access point, the constructed domain name. The method further includes receiving, from the server, at least one address corresponding to a network node associated with the network partition information.Type: ApplicationFiled: April 8, 2016Publication date: May 10, 2018Applicant: TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)Inventors: Stefan ROMMER, Henrik BASILIER, Torbjörn CAGENIUS, Gunnar MILDH, Gunnar NILSSON, Lennart NORELL, Göran RUNE, Ann-Christine SANDER
-
Patent number: 9942159Abstract: A node in a first network domain and a method performed thereby for transmitting a data packet to a VPN client in a second network domain, the node and the VPN client being part of a VPN, wherein the first and second network domain are connected by means of a third network domain are provided. The method comprises receiving, from an application server, a first packet comprising a first IP header and a payload; and determining a DCSP. The method further comprises adding a second header comprising the determined DCSP and an IP address of a VPN client resulting in a second packet and encrypting the second packet. Further the method comprises adding a third header to the encrypted second packet resulting in a third packet, the third header comprising a destination address of a node in the second network domain, and transmitting the third packet in an IP tunnel terminating at the node in the second network domain.Type: GrantFiled: January 28, 2014Date of Patent: April 10, 2018Assignee: TELEFONAKTIEBOLAGET LM ERICSSONInventors: Henrik Basilier, Göran Eneroth, Michael Liljenstam, Linus Andersson, Björn Bodén, Kyösti Toivanen
-
Publication number: 20180077637Abstract: A method implemented in a control node includes receiving a message from a first node. The method further includes determining whether the received message corresponds to one or more network partitions based at least in part on the partition selection information. The method further includes selecting, in response to determining that the message corresponds to the one or more network partitions, a particular network partition from the one or more network partitions using the partition selection information, and routing the message to a second node associated with the selected particular network partition.Type: ApplicationFiled: April 8, 2016Publication date: March 15, 2018Applicant: Telefonaktiebolaget LM Ericsson (publ)Inventors: Henrik BASILIER, Torbjörn CAGENIUS, Gunnar MILDH, Gunnar NILSSON, Lennart NORELL, Stefan ROMMER, Göran RUNE, Ann-Christine SANDER
-
METHOD, APPARATUS, AND SYSTEM FOR PROVIDING ENCRYPTION OR INTEGRITY PROTECTION IN A WIRELESS NETWORK
Publication number: 20180062847Abstract: A core network node identifies a non-USIM based authentication procedure to be utilized by a wireless communication device, WCD, being served by the core network node. The node obtains a session key associated with the identified non-USIM based authentication procedure. The node converts the session key associated with the identified non-USIM based authentication procedure to i) a first key, K1, for use by the WCD and a base station serving the WCD to derive an encryption or integrity protection key, Kenc/int, for enabling encryption or integrity protection of a communication between the WCD and the base station or ii) a second key, K2, for use by the WCD and the core network node to derive the first key K1. The node then send i) K1 to the base station or ii) K2 to another core network node that is configured to derive K1 from K2.Type: ApplicationFiled: April 8, 2016Publication date: March 1, 2018Inventors: Gunnar Mildh, Henrik Basilier, Torbjörn Cagenius, Gunnar Nilsson, Stefan Rommer, Lennart Norell, Göran Rune, Ann-Christine Sander -
Patent number: 9894692Abstract: For transmitting data between a node (100) of a mobile network and a further node (200), the further node sends downlink data packets to the node (100) of the mobile network. The downlink data packets carry a destination address corresponding to a user equipment (10) connected to the mobile network. For implementing an inband data channel between the node (100) of the mobile network and the further node (200), the further node (200) inserts data destined to the node (100) of the mobile network into at least one of the downlink data packets and marks this downlink data packet as including data destined to the node (100) of the mobile network. The node (100) of the mobile network receives the downlink data packets from the further node (200) and identities, on the basis of the marking, the least one downlink data packet including data destined to the node (100) of the mobile network. The node (100) of the mobile network then extracts the data from the identified downlink data packet.Type: GrantFiled: October 6, 2011Date of Patent: February 13, 2018Assignee: TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)Inventors: Henrik Basilier, Reiner Ludwig, Magnus Olsson
-
Patent number: 9614774Abstract: A method for transmitting data packets of a data traffic between a sending device (10, 80) and a receiving device (80, 10) via a VPN client (200) and a VPN server (500) over a network using a secure encapsulation of the data packets, the method comprising the steps of determining a Quality of Service, QoS, parameter for the data packets of said data traffic, selecting, for the data packets, either a first tunnel (91) connecting the VPN client (200) and the VPN server (500) or a second tunnel (92) connecting the VPN client (200) and the VPN server (500) based on determined Quality of Service.Type: GrantFiled: March 13, 2013Date of Patent: April 4, 2017Assignee: TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)Inventor: Henrik Basilier
-
Publication number: 20160330121Abstract: A method is described for associating a data packet (DP) with a packet bearer (PB) in a user equipment (UE1) of a communication network. The data packet is sent in a data flow from an application function of the user equipment, the packet bearer (PB) is established with the user equipment to transmit the data packet (DP) over the communication network towards a further entity, and the user equipment is adapted to establish different packet bearers.Type: ApplicationFiled: August 6, 2014Publication date: November 10, 2016Inventors: Per Willars, Hannes Ekström, Reiner Ludwig, Henrik Basilier
-
Patent number: 9407495Abstract: Systems and methods according to these exemplary embodiments provide for methods and systems for allowing a variety of devices desiring Internet Protocol (IP) addresses from potentially different locations to all operate on the same local area network. For example, a node, e.g., a gateway device, can receive a request for an IP address and determine whether that request was issued by a locally addressable device or a wide area network (WAN) addressable device. The node can then selectively locally provide an IP address or request an IP address, e.g., from a WAN, based on the determination.Type: GrantFiled: February 5, 2008Date of Patent: August 2, 2016Assignee: Telefonaktiebolaget L M Ericsson (publ)Inventors: Ulf Fredrik Jönsson, Henrik Basilier
-
Publication number: 20160135073Abstract: This disclosure relates to a method, and an arrangement and a computer program for updating a prioritization level of a service data flow between a user node and a network node. The method comprises obtaining a traffic size per time unit of detected data packets of the service data flow, and updating the prioritization level of the service data flow, based on the obtained traffic size per time unit. It is an advantage that embodiments provide a possibility to determine a trade-off between the need to optimize response times for short-lived data sessions and limiting the impact on other users when prioritizing long-lived high volume sessions. It is advantageous that the embodiments are applicable to situations in which a direct classification, using IP 5-tuple or deep packet inspection is not meaningful.Type: ApplicationFiled: May 28, 2013Publication date: May 12, 2016Applicant: TELEFONAKTIEBOLAGET L M ERICSSON (PUBL)Inventors: Henrik BASILIER, Per WILLARS
-
Publication number: 20160080276Abstract: Methods, a user node and an arrangement for adapting a quality of service of a network connection during a user application session. A whole network connection between a user node and a network node, for instance a VPN tunnel, is assigned to a single QoS level at any given time, after which this assignment may be modified dynamically based on detected data traffic belonging to certain applications. Furthermore, by correlating an identity as obtained from the detected data traffic with authentication information, the identity of the user for which an adaptation of the QoS shall be requested is obtained. The QoS of an encrypted or scrambled network connection during an application session is adapted for the identified user.Type: ApplicationFiled: April 25, 2013Publication date: March 17, 2016Inventor: Henrik BASILIER
-
Patent number: 9277589Abstract: The disclosure concerns a method for providing communication with a mobile station (12) via a first wireless access point (10) as well as the access point. The mobile station (12) has a first identifier for use in a first communication network (14) and the wireless access point comprises a first wireless interface for a first type of wireless communication with mobile stations in relation to the first communication network (14), a second wireless interface for a second type of wireless communication with mobile stations in relation to a second communication network (16), a mapping unit associating the first type of wireless communication for the mobile station with the second type of wireless communication for the mobile station based on the first identifier and a traffic control unit transporting traffic of wireless communication of the second type for the mobile station through the first communication network (14) based on the association.Type: GrantFiled: May 15, 2012Date of Patent: March 1, 2016Assignee: Telefonaktiebolaget L M Ericsson (publ)Inventors: Erik Westerberg, Jari Vikberg, Gunnar Mildh, Göran Rune, Henrik Basilier