PCRF (Policy and Charging Rules Function)
Categories: Core NetworkOperations and BusinessSignaling
PCRF in context
The mobile core is where subscriber sessions, mobility and policy live. In 4G it is the EPC (MME, HSS, S/PGW); in 5G it is the Service-Based Architecture with AMF, SMF, UPF, AUSF, UDM and the NRF. Core exposure is the difference between a single-subscriber leak and a fleet-wide breach.
OSS/BSS platforms (provisioning, charging, mediation, order management) hold the highest-value subscriber and revenue data on the operator side. They are heavily targeted for fraud and insider abuse and are increasingly in scope for regulatory obligations like NIS2 and the UK Telecoms Security Act.
To place PCRF in the wider telecom-security picture, review PCF, PGW, Rx Interface, Diameter, PDN and CSCF.
Related terms
Equipment
Policy and charging (PCRF, PCF, CHF, OCS, OFCS)
Related topic hubs
- Diameter Security 4G/LTE Diameter threats across IPX/roaming and DEA defenses.
- LTE Security Training Training on 4G/LTE core, Diameter, NAS and RRC security.
- Diameter Attacks S6a IDR/PUR/CLR abuse, subscriber tracking, LTE signaling attacks.
- Signaling Firewall Unified SS7/Diameter/GTP/SMS signaling firewall framework.
More from the TelcoSec Glossary
Browse the full TelcoSec Glossary, the Ultimate Guide to Mobile Network Security, or the P1 Arsenal of telecom-security tools.