Multi-option authentication portal implementation in a network environment

    公开(公告)号:US11627121B2

    公开(公告)日:2023-04-11

    申请号:US15813599

    申请日:2017-11-15

    摘要: According to one configuration, a wireless access service provider selects and assigns a particular authentication option amongst multiple different authentication options to an entity such as a wireless access point or a sub-network supported by the wireless access point. When a communication device attempts to use the corresponding wireless access point provided by the wireless access service provider, a wireless access gateway receives information from the wireless access point indicating the particular authentication option assigned to authenticate the communication device. The wireless access gateway communicates the notification of the particular authentication option to an authentication manager, which provides the wireless access gateway with network address information indicating a captive portal in which to authenticate the communication device. The wireless access gateway then uses the network address information to redirect the communication device to the captive portal, which is then used to authenticate the communication device. to access the Internet.

    ANONYMOUS NETWORK ACCESS IN A NETWORK ENVIRONMENT

    公开(公告)号:US20220345884A1

    公开(公告)日:2022-10-27

    申请号:US17241587

    申请日:2021-04-27

    摘要: A same wireless access profile is installed on each of multiple mobile communication devices. The wireless access profile includes outer identity information and anonymous inner identity information for each service. The anonymous inner identity information includes a credential used by each of the multiple mobile communication devices to use the service. To use the service such as access a remote network, a respective mobile communication device communicates an anonymous username and password assigned to the service to a policy server during first level authentication. The policy server stores a network address of the authenticated mobile communication device. During second level authentication, the policy server receives an identity of the mobile communication device from a network gateway. The policy server provides access control information (assigned to the service) to the network gateway. The network gateway then provides access to the mobile communication device in accordance with the access control information.

    AUTHENTICATION AND DATA FLOW CONTROL CONFIGURATION

    公开(公告)号:US20230254691A1

    公开(公告)日:2023-08-10

    申请号:US17666862

    申请日:2022-02-08

    摘要: A wireless access point receives a request from a communication device for wireless access to a remote network. An authentication resource authenticates the communication device to use a wireless network provided by the wireless access point. Prior to providing notification to the communication device that it has been authenticated, a communication management resource produces data flow control settings and applies the data flow control settings to a communication gateway. Thereafter, the communication device is notified that it has been authenticated via the authentication resource. The communication gateway then controls flow of data through a communication gateway to the remote network via implementation of the data flow control settings.

    MULTI-OPTION AUTHENTICATION PORTAL IMPLEMENTATION IN A NETWORK ENVIRONMENT

    公开(公告)号:US20230231838A1

    公开(公告)日:2023-07-20

    申请号:US18124244

    申请日:2023-03-21

    IPC分类号: H04L9/40 H04W4/14 H04W12/06

    摘要: According to one configuration, a wireless access service provider selects and assigns a particular authentication option amongst multiple different authentication options to an entity such as a wireless access point or a sub-network supported by the wireless access point. When a communication device attempts to use the corresponding wireless access point provided by the wireless access service provider, a wireless access gateway receives information from the wireless access point indicating the particular authentication option assigned to authenticate the communication device. The wireless access gateway communicates the notification of the particular authentication option to an authentication manager, which provides the wireless access gateway with network address information indicating a captive portal in which to authenticate the communication device. The wireless access gateway then uses the network address information to redirect the communication device to the captive portal, which is then used to authenticate the communication device. to access the Internet.

    System and method for remotely filtering network traffic of a customer premise device

    公开(公告)号:US11075877B2

    公开(公告)日:2021-07-27

    申请号:US16245423

    申请日:2019-01-11

    摘要: Systems, methods, and devices for performing targeted filtering of network traffic generated by user equipment (UE) devices connected to a customer premise device (CPE) in a communication system that includes a distributed residential gateway. A broadband network gateway may be configured to identify a UE device in a local area network (LAN) associated with the CPE that is compromised, misconfigured, or operating outside normal communication parameters. The broadband network gateway may send a dynamic host configuration protocol (DHCP) force renew message via a wide area network (WAN) to the identified UE device in the LAN, generate a DHCP offer message that presents a new Internet protocol (IP) address assignment that is within a range of IP addresses included in a layer 2/3 access list, and send the generated DHCP offer message to the UE device to quarantine the UE device.

    CONFIGURATION AND USE OF INTERMEDIATE NETWORKS TO SUPPORT WIRELESS COMMUNICATIONS

    公开(公告)号:US20240155413A1

    公开(公告)日:2024-05-09

    申请号:US17980121

    申请日:2022-11-03

    摘要: An example communication system includes a communication management resource to control conveyance of data associated with a wireless communication link over a network path. The communication management resource receives a notification of a mobile communication device requesting to establish wireless connectivity with a wireless base station. The notification may indicate a type of communications to be supported by the wireless connectivity. In response to the notification, the communication management resource selects first data flow control settings based on the indicated type of communications associated with the wireless connectivity. The communication management resource then implements the first data flow control settings in a network path between the wireless base station and the remote network to support the type of communications indicated by the notification.