CN100471138C - A method of packet data service snooping - Google Patents

A method of packet data service snooping Download PDF

Info

Publication number
CN100471138C
CN100471138C CNB2004100372087A CN200410037208A CN100471138C CN 100471138 C CN100471138 C CN 100471138C CN B2004100372087 A CNB2004100372087 A CN B2004100372087A CN 200410037208 A CN200410037208 A CN 200410037208A CN 100471138 C CN100471138 C CN 100471138C
Authority
CN
China
Prior art keywords
target
switch equipment
mobile switch
monitoring system
communication
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Expired - Fee Related
Application number
CNB2004100372087A
Other languages
Chinese (zh)
Other versions
CN1691612A (en
Inventor
黄华
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Huawei Technologies Co Ltd
Original Assignee
Huawei Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Huawei Technologies Co Ltd filed Critical Huawei Technologies Co Ltd
Priority to CNB2004100372087A priority Critical patent/CN100471138C/en
Publication of CN1691612A publication Critical patent/CN1691612A/en
Application granted granted Critical
Publication of CN100471138C publication Critical patent/CN100471138C/en
Anticipated expiration legal-status Critical
Expired - Fee Related legal-status Critical Current

Links

Images

Abstract

The invention discloses a method for monitoring packet data business, comprising: setting target APN in the mobile exchange equipments by monitoring system; reporting communication information of the said target APN to the monitoring system. The said monitoring method is based on APN, it can accomplish the monitor on packet data business by the monitoring system, and it is independent on customer identification.

Description

A kind of method of monitoring packet data business
Technical field
The present invention relates to the monitoring field, be meant a kind of method of monitoring packet data business especially.
Background technology
Along with the generation of increasing terrorist incident and major crimes incident, the national security problem shows its importance day by day.At present, the telecommunications Lawful Interception comes into one's own in international community day by day as an important component part of national security measure, many countries have proposed requirement with the form of legislation, for example: Japan came into effect " communication intercept method " on August 15th, 2000, according to this law, national structure can be to the targeted customer of appointment, monitor and tackle as suspect's phone, fax and Email, simultaneously, also require the service provider that the means of its data of monitoring and speech line must be provided to actuator.
Fig. 1 is the annexation schematic diagram of monitoring system and mobile communications network in the mobile communication, as shown in Figure 1, monitoring system 101 links to each other with mobile switch equipment 102 in the mobile communications network, and monitoring system 101 wherein is responsible for targeted customers' management, the Collection and analysis of monitoring information; Mobile switch equipment 102 is responsible for monitored object user's activity, and in time reports targeted customer's action message and Content of Communication.
Based on monitoring structure shown in Figure 1, in existing mobile communications network, generally the targeted customer is carried out Lawful Interception by targeted customer's sign, promptly monitoring system is set the targeted customer who is monitored according to user ID.Move (GSM) communication system, Wideband Code Division Multiple Access (WCDMA) (WCDMA) communication system for the whole world, targeted customer's sign can be travelling carriage Integrated Services Digital Network number (MSISDN, MobileSubscriber ISDN Number), IMSI International Mobile Subscriber Identity (IMSI) or international mobile equipment identification number (IMEI); For cdma system, this targeted customer's sign can be mobile call number (MDN), IMSI or Electronic Serial Number (ESN).Give an example, know targeted customer's MSISDN in advance, just this MSISDN is set to be monitored in mobile switch equipment 12, and this MSISDN is recorded in the list of targeted subscribers of generation; When mobile switch equipment carried out audio call or exchanges data, first query aim user list was intercepted user if find this user, and then that this user is current action message and Content of Communication report monitoring system.
At present, the process that the based target user ID is monitored in mobile communications network comprises the steps: as shown in Figure 2
Step 201: monitoring system identifies the targeted customer that setting is monitored according to the targeted customer, and sends the targeted customer include the intercepted user sign to mobile switch equipment and set request; Mobile switch equipment is set request according to the targeted customer of monitoring system, in the inner list of targeted subscribers that generates of mobile switch equipment, the sign and the relevant monitoring attribute thereof of record intercepted user.
Step 202: when the user communicates activity, mobile switch equipment query aim user list judges whether this user ID belongs to list of targeted subscribers, if, then mobile switch equipment is when providing proper communication service for the targeted customer, execution in step 203; Otherwise mobile switch equipment only provides normal communication service for the targeted customer.
Step 203: mobile switch equipment reports targeted customer's current active information and Content of Communication according to monitoring attribute to monitoring system.
From said process as can be seen, monitoring based on user ID only is applicable to the situation of knowing that clearly the targeted customer identifies, but in actual applications, can't know that the targeted customer identifies under a lot of situations, because it is very convenient to change portable terminal and subscriber identification card (SIM), especially for the prepaid user.Therefore, when the activity of perceiveing oneself as the targeted customer may be subjected to monitoring, replacing mobile phone and SIM card that can be frequent cause can't bringing into play actual effect based on the monitoring of user ID.In addition, for many offenders, himself activity is unusual secret, so obtain its mobile terminal number or Internet protocol (IP) address is not easy more.
At present, Packet data service is development by leaps and bounds, and the user can be by the specific relevant external packet data network of APN (APN, Access Point Name) visit, the line correlation activity of going forward side by side.At GPRS (GPRS, General Packet Radio Service) in the backbone network, APN is used for the identification packet data network, APN is made up of two parts usually: APN network identity and APN network operator's sign, the APN network identity be by the network operator be ISP (ISP) or company distribute, with the consistent sign of its fixed the Internet (Internet) domain name, APN network operator's sign is used to identify home network, its form can be xxx.yyy.gprs, and this part is optional part.The APN network identity is stored in the attaching position register (HLR) as user signing contract information usually.
During the data service of user's initiation packet, can be to service universal grouping wireless business supporting node (SGSN, Serving GPRS Support Node) provides APN, make SGSN can select the ggsn (GGSN of needs access according to APN, Gateway GPRSSupport Node), and inserting this GGSN, GGSN determines the respective external packet data network that needs insert according to APN.
Some users that can't obtain sign can often visit relevant packet data network by some specific APN, and because APN is the key concept of GPRS, development along with Packet data service, can distinguish different user groups by APN, different business, different grade of service or the like, therefore, to become the important means of monitoring packet data business based on the monitoring of APN, but, the basic at present implementation method of APN not being monitored, the Lawful Interception that depends on user ID is incomplete, makes the validity of monitoring activity reduce greatly.
Summary of the invention
In view of this, the object of the present invention is to provide a kind of method of monitoring packet data business, make the monitoring activity more comprehensive effectively.
In order to achieve the above object, the invention provides a kind of method of monitoring packet data business, this method comprises:
A, monitoring system be target setting APN in mobile switch equipment;
B, mobile switch equipment report the pairing communication information of the Packet data service that can realize based on described target AP N to monitoring system.
Described steps A may further comprise the steps:
A1, monitoring system send target AP N to mobile switch equipment and set request;
A2, mobile switch equipment are set at target AP N the target AP N that is monitored after receiving that target AP N sets request.
Further comprise after the described steps A 2: mobile switch equipment returns target AP N to monitoring system and sets response.
Store target AP N tabulation in the mobile switch equipment, described in the steps A 2 target AP N is set at the target AP N that is monitored and is: target AP N is added target AP N tabulation.
Further comprise before the described step B: the user is during by APN visit packet data network, and mobile switch equipment judges whether this APN is target AP N, if, execution in step B then.
Store target AP N tabulation in the mobile switch equipment, whether the described APN of judging for target AP N is: judge whether APN belongs to target AP N and tabulate.
Described step B further comprises: mobile switch equipment provides the proper communication service.
Described steps A further comprises: monitoring system target setting APN in mobile switch equipment reaches the monitoring attribute corresponding to target AP N;
Described step B is: mobile switch equipment is according to described monitoring attribute, reports the communication information based on described target AP N to monitoring system.
The described communication information is: communication activity information, or communication activity information and Content of Communication.
When the described communication information is communication activity information and Content of Communication, this method further comprises: set Content of Communication and report threshold value, mobile switch equipment judges whether the current information amount reaches Content of Communication and report threshold value, if only report communication activity information to monitoring system; Otherwise, report communication activity information and Content of Communication to monitoring system.
This method further comprises: monitoring system sends target AP N query requests to mobile switch equipment, and mobile switch equipment returns Query Information to monitoring system.
Carry query argument in the described target AP N query requests,
Described mobile switch equipment returns Query Information to monitoring system: mobile switch equipment returns Query Information according to query argument to monitoring system.
Described Query Information is carried at mobile switch equipment in the target AP N inquiry response that monitoring system is returned.
A, monitoring system send target AP N cancellation request to mobile switch equipment;
After b, mobile switch equipment were received target AP N cancellation request, cancellation was to the setting of target AP N.
Store target AP N tabulation in the mobile switch equipment, described cancellation is set at target AP N's: with target AP N deletion from target AP N tabulation.
Further comprise after the described step b: mobile switch equipment returns target AP N cancellation response to monitoring system.
The monitor method that the present invention proposes is based on the monitoring of APN, realized the monitoring of monitoring system to Packet data service, and above-mentioned monitor method does not also rely on user ID, the realization means of monitoring activity have been enlarged, improve the validity of monitoring activity, make that the monitoring that target UE is carried out is effective more comprehensively; And, make that the effect meeting of the monitor method that proposes among the present invention is increasing along with the development of Packet data service and the Packet data service trend of refinement progressively.In addition, the present invention proposes the information interaction flow process of monitoring system and mobile switch equipment, make the monitoring activity more flexible effectively.
Description of drawings
Fig. 1 is the annexation schematic diagram of monitoring system and mobile communications network in the mobile communication;
The process schematic diagram of Fig. 2 in mobile communications network, monitoring based on user ID;
The process schematic diagram of Fig. 3 in mobile communications network, monitoring based on APN;
Fig. 4 is a target setting APN flow chart;
Fig. 5 is a query aim APN flow chart.
Fig. 6 is cancellation target AP N flow chart;
Embodiment
For making the purpose, technical solutions and advantages of the present invention clearer, the present invention is described in further detail below in conjunction with accompanying drawing.
The process schematic diagram of Fig. 3 in mobile communications network, monitoring based on APN, as shown in Figure 3, the implementation procedure of monitoring based on APN in the mobile communications network may further comprise the steps:
Step 301: monitoring system is set target AP N and the monitoring attribute of being monitored thereof, and provides target AP N and monitoring attribute thereof to mobile switch equipment; Mobile switch equipment generates target AP N tabulation, and writes down the monitoring attribute of each target AP N.Described monitoring attribute can be service feature, key bytes etc.
Step 302: when the user visits packet data network by APN, activate a context as certain user, mobile switch equipment judges whether this APN belongs to target AP N tabulation, if, then mobile switch equipment is when providing proper communication service for the user, execution in step 303; Otherwise mobile switch equipment only provides normal communication service for the targeted customer.
Step 303: mobile switch equipment reports current active information and the Content of Communication of target AP N according to monitoring attribute to monitoring system.
If an APN can realize the Packet data service of a plurality of kinds, then can the Packet data service that need be monitored be set by setting monitoring attribute, make mobile switch equipment to report the Packet data service that need be monitored to monitoring system.
In addition, monitoring system can not provide the corresponding monitoring attribute with APN to mobile switch equipment yet, and at this moment, mobile switch equipment reports all communication activity that carry out based on this APN to monitoring system.
Between monitoring system and mobile switch equipment, increase signaling process, could realize monitoring, below each signaling process is specifically described based on APN.
Fig. 4 is a target setting APN flow chart, and as shown in Figure 4, the implementation procedure of target setting APN may further comprise the steps:
Step 401: monitoring system sends target AP N to mobile switch equipment and sets request, requires mobile switch equipment target setting APN.Target AP N sets APN of portability, the also a plurality of APN of portability in the request; In addition, target AP N sets in the request and goes back the monitoring attribute of portability corresponding to APN, when requiring mobile switch equipment to set APN, also need set the corresponding monitoring attribute with this APN.
Step 402: after mobile switch equipment receives that APN sets request, set the target AP N of corresponding APN for being monitored, corresponding APN is added target AP N tabulation, return target AP N to monitoring system then and set response, the notice monitoring system is set at target AP N with corresponding APN.
Behind the mobile switch equipment target setting APN, when the user visits packet data network by APN, mobile switch equipment judges whether this APN belongs to target AP N tabulation, if, then mobile switch equipment reports current active information and the Content of Communication of target AP N to monitoring system according to monitoring attribute when the proper communication service is provided for the user; Otherwise mobile switch equipment only provides the proper communication service for the user.Mobile switch equipment also can be according to the monitoring attribute of monitoring system setting, report current active information and the Content of Communication relevant to monitoring system with monitoring attribute, for example, the monitoring attribute that monitoring system is set certain target AP N is the (WAP based on WAP (wireless application protocol), Wireless ApplicationProtocol) browse service, then mobile switch equipment only reports the current active information and the Content of Communication of the WAP browse service that is undertaken by this target AP N to monitoring system; Again for example, it is 80 that monitoring system is set the destination slogan, and then mobile switch equipment only reports current active information and the Content of Communication that is undertaken by this target AP N and destination interface 80 to monitoring system.
Because can be many at the number of users that synchronization activates based on same APN, so, monitoring based on APN will produce a very large impact the performance of mobile switch equipment, therefore, when monitoring based on APN, can be as far as possible based on the life event of report of user, as signaling, user's position upgrade, user's on-off state etc.Whether report Content of Communication to can be used as optional function as for mobile switch equipment based on APN to monitoring system, in addition, report Content of Communication if set mobile switch equipment to monitoring system based on APN, then can set Content of Communication and report threshold value, as the number of users that inserts mobile switch equipment is provided with, if the number of users that inserts mobile switch equipment is during greater than set point, mobile switch equipment no longer reports Content of Communication based on APN to monitoring system; Or the maximum data flow of mobile switch equipment set, if when the data traffic of mobile switch equipment reaches set point, mobile switch equipment no longer reports Content of Communication based on APN to monitoring system.
Fig. 5 is a query aim APN flow chart, and as shown in Figure 5, the implementation procedure of query aim APN may further comprise the steps:
Step 501: monitoring system sends target AP N query requests to mobile switch equipment, requires mobile switch equipment that the relevant information of target AP N is provided.Portability respective queries parameter in the target AP N query requests, as target AP N list query, certain target AP N or the like, also can set default query argument is target AP N list query.
Step 502: after mobile switch equipment is received target AP N query requests, return target AP N inquiry response to monitoring system, carry respective queries information in this target AP N inquiry response, as according to the respective queries parameter of carrying in the target AP N query requests, return target AP N tabulation to monitoring system, or the monitoring attribute of certain APN or the like.
Fig. 6 is cancellation target AP N flow chart, and as shown in Figure 6, the implementation procedure of cancellation target AP N may further comprise the steps:
Step 601: monitoring system sends target AP N cancellation request to mobile switch equipment, requires the setting of mobile switch equipment cancellation to target AP N.Target AP N sets APN of portability, the also a plurality of APN of portability in the request.
Step 602: after mobile switch equipment was received APN cancellation request, cancellation with corresponding APN deletion from target AP N tabulation, was returned target AP N cancellation response to monitoring system to the setting of corresponding APN then, and the notice monitoring system has been cancelled the setting of respective objects APN.
Store target AP N tabulation in the mobile switch equipment, when monitoring system is set new during by intercept target APN, mobile switch equipment just increases corresponding target AP N in target AP N tabulation, when monitoring system cancellation target AP N, mobile switch equipment is the corresponding target AP N of deletion in target AP N tabulation just.
In addition, monitoring system can be notified mobile switch equipment deletion target AP N tabulation, and cancellation is to the setting of all target AP N, for example, monitoring system is deleted whole target AP N tabulation by send the target AP N cancellation request of not carrying any parameter to mobile switch equipment in order to the notice mobile switch equipment.
Above-described mobile switch equipment can be grouping switching equipment such as SGSN, GGSN.
In a word, the above is preferred embodiment of the present invention only, is not to be used to limit protection scope of the present invention.

Claims (16)

1, a kind of method of monitoring packet data business is characterized in that, the method includes the steps of:
A, monitoring system be target setting APN in mobile switch equipment;
B, mobile switch equipment report the pairing communication information of the Packet data service that can realize based on described target AP N to monitoring system.
2, method according to claim 1 is characterized in that, described steps A may further comprise the steps:
A1, monitoring system send target AP N to mobile switch equipment and set request;
A2, mobile switch equipment are set at target AP N the target AP N that is monitored after receiving that target AP N sets request.
3, method according to claim 2 is characterized in that, further comprises after the described steps A 2: mobile switch equipment returns target AP N to monitoring system and sets response.
4, method according to claim 2 is characterized in that, stores target AP N tabulation in the mobile switch equipment, described in the steps A 2 target AP N is set at the target AP N that is monitored and is: target AP N is added target AP N tabulation.
5, method according to claim 1 is characterized in that, further comprises before the described step B: the user is during by APN visit packet data network, and mobile switch equipment judges whether this APN is target AP N, if, execution in step B then.
6, method according to claim 5 is characterized in that, stores target AP N tabulation in the mobile switch equipment, and whether the described APN of judging for target AP N is: judge whether APN belongs to target AP N and tabulate.
7, according to claim 1,5 or 6 described methods, it is characterized in that described step B further comprises: mobile switch equipment provides the proper communication service.
8, method according to claim 1 is characterized in that,
Described steps A further comprises: monitoring system target setting APN in mobile switch equipment reaches the monitoring attribute corresponding to target AP N;
Described step B is: mobile switch equipment is according to described monitoring attribute, reports the communication information based on described target AP N to monitoring system.
9, method according to claim 1 is characterized in that, the described communication information is: communication activity information, or communication activity information and Content of Communication.
10, method according to claim 9, it is characterized in that, when the described communication information is communication activity information and Content of Communication, this method further comprises: set Content of Communication and report threshold value, mobile switch equipment judges whether the current information amount reaches Content of Communication and report threshold value, if only report communication activity information to monitoring system; Otherwise, report communication activity information and Content of Communication to monitoring system.
11, method according to claim 1 is characterized in that, this method further comprises: monitoring system sends target AP N query requests to mobile switch equipment, and mobile switch equipment returns Query Information to monitoring system.
12, method according to claim 11 is characterized in that,
Carry query argument in the described target AP N query requests,
Described mobile switch equipment returns Query Information to monitoring system: mobile switch equipment returns Query Information according to query argument to monitoring system.
According to claim 11 or 12 described methods, it is characterized in that 13, described Query Information is carried at mobile switch equipment in the target AP N inquiry response that monitoring system is returned.
14, method according to claim 1 is characterized in that, this method further comprises:
A, monitoring system send target AP N cancellation request to mobile switch equipment;
After b, mobile switch equipment were received target AP N cancellation request, cancellation was to the setting of target AP N.
15, method according to claim 14 is characterized in that, stores target AP N tabulation in the mobile switch equipment, and described cancellation is set at target AP N's: with target AP N deletion from target AP N tabulation.
16, method according to claim 14 is characterized in that, further comprises after the described step b: mobile switch equipment returns target AP N cancellation response to monitoring system.
CNB2004100372087A 2004-04-22 2004-04-22 A method of packet data service snooping Expired - Fee Related CN100471138C (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CNB2004100372087A CN100471138C (en) 2004-04-22 2004-04-22 A method of packet data service snooping

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CNB2004100372087A CN100471138C (en) 2004-04-22 2004-04-22 A method of packet data service snooping

Publications (2)

Publication Number Publication Date
CN1691612A CN1691612A (en) 2005-11-02
CN100471138C true CN100471138C (en) 2009-03-18

Family

ID=35346758

Family Applications (1)

Application Number Title Priority Date Filing Date
CNB2004100372087A Expired - Fee Related CN100471138C (en) 2004-04-22 2004-04-22 A method of packet data service snooping

Country Status (1)

Country Link
CN (1) CN100471138C (en)

Families Citing this family (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US8705395B2 (en) * 2010-06-15 2014-04-22 Jds Uniphase Corporation Method for time aware inline remote mirroring

Also Published As

Publication number Publication date
CN1691612A (en) 2005-11-02

Similar Documents

Publication Publication Date Title
CA2491816C (en) Informing a lawful interception system of the serving system serving an intercepted target
US7570941B2 (en) Method enabling detection of stolen mobile communication devices and systems thereof
US8472947B2 (en) Call processing system for mobile and method thereof
CN100473187C (en) Method and equipment for storing subscriber data
US7860488B2 (en) Device detection in mobile networks
CN101242559B (en) SMS interception method, device and system
CN100512294C (en) Method for selecting gateway general packet wireless service support node
CN102104882B (en) Entire user or equipment service flow tracing method and system
CN100499906C (en) Method for realizing legal monitoring
CN102064972B (en) A kind of method and system monitoring advertising results
CN100471138C (en) A method of packet data service snooping
CN101374345A (en) Method, apparatus and system for transferring wireless virtual private network VPN short number of calling subscriber
KR100964246B1 (en) Lost mobile management system for out bound roaming and method thereof
CN1270477C (en) Monitoring realizing method
CN102158859A (en) Control method for monitoring user, monitoring system and network node
CN100407800C (en) Monitoring method based on general mobile communication system
WO2004086793A1 (en) A monitoring method based on a cell location
CN1985530B (en) Wireless communication method and system for establishing a multimedia message service over a WLAN
EP1444856B1 (en) Roaming in mms environment
CN100499898C (en) Monitoring method of block service in blocked domain
CN1691675B (en) A method for automatically reporting target user equipment location information
CN1677906B (en) Method for monitoring target user apparatus position business
CN110381453B (en) Incoming call reminding method and system for one-number double-terminal
CN100539489C (en) A kind of monitor method of group service in group domain
CN1319405C (en) Method of locating target user equipment in audio monitoring system and its system

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
CF01 Termination of patent right due to non-payment of annual fee

Granted publication date: 20090318

Termination date: 20200422

CF01 Termination of patent right due to non-payment of annual fee