SAP Brief SAP Mobile Services SAP SMS Firewall 365 Objectives Control Traffic from Grey Routes and Boost Enterprise Messaging Revenue
Cloud-based managed service helps control messaging abuse Cloud-based managed service helps control messaging abuse SAP SMS Firewall 365 mobile service improves monetization of SMS traffic by identifying and blocking grey routes and reducing network costs. Proactive monitoring and filtering help reduce spam and control content, and fraud-busting functionality delivers a better consumer experience. This cloud-based managed firewall service allows short time to market at a low operational cost. SAP Mobile Services, a division of SAP, combines proficiency in the mobile sector with broad global market knowledge of applicationto-person (A2P) and person-to-person (P2P) messaging, helping operators to monetize SMS traffic and reduce network costs. In addition to proactive monitoring, SAP SMS Firewall 365 mobile service supports customizable, rule-based filtering and automatic SMS monitoring and helps assure revenue of messaging traffic. 2 / 9
SAP SMS Firewall 365 runs as a turnkey, cloud-based service. It dynamically identifies and minimizes known messaging fraud types. Using a number of coordinated policies and rules that work together to detect and block unwanted messages, it improves revenue assurance by controlling traffic from grey routes and reducing SMS faking even when a customer is abroad. Handling nonmonetized SMS is a growing challenge for the operators. Senders hide the identity of the submitting SMS center (SMSC) using a fake SMSC address. The destination network can t track who sent the message, so it can t be billed correctly. SAP SMS Firewall 365 correlates SMSC addresses in the send routing information for short message (SRI-SM) request and the forward short message (FSM MT) so that messages with a faked SMSC address are identified and rejected. Messages to roaming subscribers normally bypass home operator s control, being directly delivered to the subscriber s location. Thanks to the home routing function, SAP SMS Firewall 365 forces the originating SMSC to pass messages in their entirety through the home operator s infrastructure and then to the firewall itself prior to being delivered to the recipient. This way, the operator detects fraud and also nonmonetized A2P traffic when subscribers are abroad. 3 / 9
SAP SMS Firewall 365 examines messages based on a variety of configurable rules. It evaluates multiple parameters including the content to identify if it is spam. Unsolicited mobile terminated (MT) messages sent to the operator s subscribers often include a premium rate number, e-mail address, or URL. The mobile service s antispamming capabilities enable in-depth content verification over specific keywords filtering. Illicit software download to mobile phones through over-the-air (OTA) or wireless access point (WAP) push generates excessive traffic and may, for example, send premium messages without the user s knowledge, thus leading to customer complaints and increased costs. The SMS firewall prevents software download by blocking these types of messages from untrusted sources while distinguishing and allowing genuine OTA and WAP push messages. See Figure 1 on the next page. Protect subscribers and your network from illicit software and malicious content. 4 / 9
Social media Enterprise traffic Banks Content providers Rest of world MNO SMS aggregators $0.01 $0.005 $0.025 SMS IW partner Operator A Operator B Operator C $0.05 $ $ $ $0.03 Increase in paid P2P SMS volume Increase in paid A2P SMS volume MSC SMS firewall checks: Sender ID Sending GT Keywords SMSC Repetitive content Repetitive sender Additional checks Operator A, B, C: Roaming partner without AA.19 (send for free) Mobile network operators (MNO) SMS IW partner: Interworking/AA.19 partner of MNO SMS aggregator: IP player connected to the SMSC of MNO (wholesale) Figure 1: Cloud-based SAP SMS Firewall 365 mobile service 5 / 9
A large number of messages delivered to one or more of an operator s subscribers may create a denial of service attack to the operator network, resulting in loss of revenue and other costs related to fraud and spam. SAP SMS Firewall 365 helps prevent such attacks by verifying the number of messages sent by individual originators during a configurable time period and blocking them if the threshold is reached. SIM farms or SIM boxes fraudsters originate A2P traffic in the operator s network, appearing to be P2P traffic that is abusing cheaper P2P bundles or unlimited subscriptions. SAP SMS Firewall 365 recognizes SIM farms by identifying originators who are sending messages to a large number of unique destinations; legitimate P2P users send messages to a more limited number of unique destinations. Fraudulent mobile originating messages with a fake MSISDN, also known as SMS spoofing, are sent through the operator s SMSC causing lost revenues and a negative impact on the brand. SAP SMS Firewall 365 crosschecks the VLR address and IMSI in the SRI-SM with the submitting MSC address number range and the IMSI included in the actual message. If these don t match, the message is rejected. See Figure 2 on the next page. 6 / 9
4 Mobile network operator Home routing redirection Global SS7 network 1 SAP IPX 365 mobile service Message ok 3 2 Check message International operators (bilateral) connections SMS aggregators SMS firewall Figure 2: Traffic flow with SAP SMS Firewall 365 mobile service 7 / 9
Cloud-based solution by SMS hubbing and A2P service provider Cloud-based solution by SMS hubbing and A2P service provider Traffic-filtering capacities are very restricted among SS7 providers. Typically they can only perform basic GT filtering for international SMS sent over their own infrastructure and have little or no messaging market experience. Hardware solutions require high investments, major management efforts, in-house messaging intelligence, and longer time to market. SAP SMS Firewall 365 brings the advantages of extensive messaging business knowledge, a reliable cloud-based managed service, and minimal impact on capital expenditures. This managed, turnkey solution lets mobile network operators enhance fraud-busting efficiency without increasing operating expenses. Operators don t have to spend resources to develop, integrate, and support the firewall. Moreover, as fraudsters find new techniques to tinker with the processes, antiabuse solutions need to adapt quickly. The SAP SMS Firewall 365 mobile service is regularly tuned by industry experts to keep pace with changes in the spamming world. SAP Mobile Services has over 15 years of experience in the messaging business, including knowledge of SMS hubbing and A2P and P2P messaging. Our expertise and managed firewall service can help you achieve a cost-efficient, end-to-end solution that dynamically evolves while minimizing messaging revenue leakage and network costs associated with fraud. 8 / 9
www.sap.com Objectives Summary As messaging fraud techniques become more sophisticated, SAP can help minimize the mobile messaging abuse that causes poor customer experience, creates unnecessary load on the network, and reduces margins. SAP SMS Firewall 365 mobile service helps mobile network operators address fraud challenges by detecting chargeable messaging traffic and blocking unsolicited messages or malware. It promotes a positive consumer experience and increased revenues for operators by identifying and rapidly managing grey routes. Objectives Protect subscribers from messaging abuse Block grey routes and increase messaging revenue and margins Avoid unnecessary load on network resources triggered by deceptive network queries Managed and cloud-based service Control over SMS traffic from grey routes Identification of unsolicited and nonmonetized SMS Powerful and highly configurable tool with extensive rule-based filtering capability More positive consumer experience with fewer unsolicited messages Increased efficiencies by discerning billable traffic from fraudulent traffic Greater revenue at lower capital and operating expenditure Combined simplicity of a cloud-based firewall service with SAP s expertise in application-to-person (A2P) messaging business Learn more To learn more about this service and how your business can benefit, visit www.sap.com/sapmobileservices. 9 / 9 Studio SAP 38456enUS (15/10)
No part of this publication may be reproduced or transmitted in any form or for any purpose without the express permission of SAP SE or an SAP affiliate company. SAP and other SAP products and services mentioned herein as well as their respective logos are trademarks or registered trademarks of SAP SE (or an SAP affiliate company) in Germany and other countries. Please see http://www.sap.com/corporate-en/legal/copyright/index.epx#trademark for additional trademark information and notices. Some software products marketed by SAP SE and its distributors contain proprietary software components of other software vendors. National product specifications may vary. These materials are provided by SAP SE or an SAP affiliate company for informational purposes only, without representation or warranty of any kind, and SAP SE or its affiliated companies shall not be liable for errors or omissions with respect to the materials. The only warranties for SAP SE or SAP affiliate company products and services are those that are set forth in the express warranty statements accompanying such products and services, if any. Nothing herein should be construed as constituting an additional warranty. In particular, SAP SE or its affiliated companies have no obligation to pursue any course of business outlined in this document or any related presentation, or to develop or release any functionality mentioned therein. This document, or any related presentation, and SAP SE s or its affiliated companies strategy and possible future developments, products, and/or platform directions and functionality are all subject to change and may be changed by SAP SE or its affiliated companies at any time for any reason without notice. The information in this document is not a commitment, promise, or legal obligation to deliver any material, code, or functionality. All forward-looking statements are subject to various risks and uncertainties that could cause actual results to differ materially from expectations. Readers are cautioned not to place undue reliance on these forward-looking statements, which speak only as of their dates, and they should not be relied upon in making purchasing decisions.