-
公开(公告)号:US11722893B2
公开(公告)日:2023-08-08
申请号:US17241587
申请日:2021-04-27
CPC分类号: H04W12/06 , H04L63/0407 , H04L63/083 , H04L63/10 , H04L63/20 , H04W12/02 , H04W12/033 , H04W76/10 , H04W88/16
摘要: A same wireless access profile is installed on each of multiple mobile communication devices. The wireless access profile includes outer identity information and anonymous inner identity information for each service. The anonymous inner identity information includes a credential used by each of the multiple mobile communication devices to use the service. To use the service such as access a remote network, a respective mobile communication device communicates an anonymous username and password assigned to the service to a policy server during first level authentication. The policy server stores a network address of the authenticated mobile communication device. During second level authentication, the policy server receives an identity of the mobile communication device from a network gateway. The policy server provides access control information (assigned to the service) to the network gateway. The network gateway then provides access to the mobile communication device in accordance with the access control information.
-
公开(公告)号:US11627121B2
公开(公告)日:2023-04-11
申请号:US15813599
申请日:2017-11-15
发明人: Shane B. Newberg , Christopher J. Teague , Venkata R. Divvi , Cheryl A. Warne , Loay O. Kreishan
摘要: According to one configuration, a wireless access service provider selects and assigns a particular authentication option amongst multiple different authentication options to an entity such as a wireless access point or a sub-network supported by the wireless access point. When a communication device attempts to use the corresponding wireless access point provided by the wireless access service provider, a wireless access gateway receives information from the wireless access point indicating the particular authentication option assigned to authenticate the communication device. The wireless access gateway communicates the notification of the particular authentication option to an authentication manager, which provides the wireless access gateway with network address information indicating a captive portal in which to authenticate the communication device. The wireless access gateway then uses the network address information to redirect the communication device to the captive portal, which is then used to authenticate the communication device. to access the Internet.
-
公开(公告)号:US20220345884A1
公开(公告)日:2022-10-27
申请号:US17241587
申请日:2021-04-27
IPC分类号: H04W12/06 , H04W76/10 , H04L29/06 , H04W12/033 , H04W12/02
摘要: A same wireless access profile is installed on each of multiple mobile communication devices. The wireless access profile includes outer identity information and anonymous inner identity information for each service. The anonymous inner identity information includes a credential used by each of the multiple mobile communication devices to use the service. To use the service such as access a remote network, a respective mobile communication device communicates an anonymous username and password assigned to the service to a policy server during first level authentication. The policy server stores a network address of the authenticated mobile communication device. During second level authentication, the policy server receives an identity of the mobile communication device from a network gateway. The policy server provides access control information (assigned to the service) to the network gateway. The network gateway then provides access to the mobile communication device in accordance with the access control information.
-
公开(公告)号:US11601811B2
公开(公告)日:2023-03-07
申请号:US17412335
申请日:2021-08-26
IPC分类号: H04W12/086 , H04W48/08 , H04L67/141 , H04W12/06 , H04W88/16 , H04W84/12
摘要: Systems, methods, and devices for instantiating both a private network service (PrNS) gateway virtual network function (VNF) and a public network service (PuNS) gateway VNF for a user equipment (UE) device that is associated with a PrNS and communicatively attached a public WiFi network allow users to access the same set of feature-rich network services (including layer 2 services) when connected through a public hotspot WiFi network as when connected through a home or local area network WiFi network.
-
公开(公告)号:US11134431B2
公开(公告)日:2021-09-28
申请号:US16527939
申请日:2019-07-31
摘要: Systems, methods, and devices for instantiating both a private network service (PrNS) gateway virtual network function (VNF) and a public network service (PuNS) gateway VNF for a user equipment (UE) device that is associated with a PrNS and communicatively attached a public WiFi network allow users to access the same set of feature-rich network services (including layer 2 services) when connected through a public hotspot WiFi network as when connected through a home or local area network WiFi network.
-
公开(公告)号:US20230254691A1
公开(公告)日:2023-08-10
申请号:US17666862
申请日:2022-02-08
IPC分类号: H04W12/06 , H04W12/082 , H04W12/69 , H04W28/12
CPC分类号: H04W12/06 , H04W12/69 , H04W12/082 , H04W28/12
摘要: A wireless access point receives a request from a communication device for wireless access to a remote network. An authentication resource authenticates the communication device to use a wireless network provided by the wireless access point. Prior to providing notification to the communication device that it has been authenticated, a communication management resource produces data flow control settings and applies the data flow control settings to a communication gateway. Thereafter, the communication device is notified that it has been authenticated via the authentication resource. The communication gateway then controls flow of data through a communication gateway to the remote network via implementation of the data flow control settings.
-
公开(公告)号:US20230231838A1
公开(公告)日:2023-07-20
申请号:US18124244
申请日:2023-03-21
发明人: Shane B. Newberg , Christopher J. Teague , Venkata R. Divvi , Cheryl A. Warne , Loay O. Kreishan
CPC分类号: H04L63/08 , H04L63/205 , H04W4/14 , H04W12/06 , H04W12/08
摘要: According to one configuration, a wireless access service provider selects and assigns a particular authentication option amongst multiple different authentication options to an entity such as a wireless access point or a sub-network supported by the wireless access point. When a communication device attempts to use the corresponding wireless access point provided by the wireless access service provider, a wireless access gateway receives information from the wireless access point indicating the particular authentication option assigned to authenticate the communication device. The wireless access gateway communicates the notification of the particular authentication option to an authentication manager, which provides the wireless access gateway with network address information indicating a captive portal in which to authenticate the communication device. The wireless access gateway then uses the network address information to redirect the communication device to the captive portal, which is then used to authenticate the communication device. to access the Internet.
-
公开(公告)号:US11075877B2
公开(公告)日:2021-07-27
申请号:US16245423
申请日:2019-01-11
IPC分类号: H04L29/12 , H04L12/66 , H04L12/911
摘要: Systems, methods, and devices for performing targeted filtering of network traffic generated by user equipment (UE) devices connected to a customer premise device (CPE) in a communication system that includes a distributed residential gateway. A broadband network gateway may be configured to identify a UE device in a local area network (LAN) associated with the CPE that is compromised, misconfigured, or operating outside normal communication parameters. The broadband network gateway may send a dynamic host configuration protocol (DHCP) force renew message via a wide area network (WAN) to the identified UE device in the LAN, generate a DHCP offer message that presents a new Internet protocol (IP) address assignment that is within a range of IP addresses included in a layer 2/3 access list, and send the generated DHCP offer message to the UE device to quarantine the UE device.
-
公开(公告)号:US20240172036A1
公开(公告)日:2024-05-23
申请号:US17988947
申请日:2022-11-17
发明人: Christopher J. Teague , Ahmed Bencheikh , Shane B. Newberg , Peter Andrew Ericksen , Venkata R. Divvi , Donald W. Sherker
CPC分类号: H04W28/0268 , H04W24/02 , H04W64/003 , H04W88/16
摘要: A tracking system monitors operating conditions of a first wireless access point through which a mobile communication device communicates with a gateway. The gateway and the first wireless access point support a session of data flows between the mobile communication device and a remote network. Based on the monitored operating conditions of the wireless access point, the controller associated with the tracking system dynamically generates control settings to control the session of data flows through the gateway. The controller applies the control settings to the gateway to control communications associated with the session of data flows between the remote network and the mobile communication device. The controller applies different control settings under different operating conditions and/or as the mobile communication device uses different wireless access points to communicate through the gateway to the remote network.
-
公开(公告)号:US20240155413A1
公开(公告)日:2024-05-09
申请号:US17980121
申请日:2022-11-03
IPC分类号: H04W28/02 , H04L47/2491 , H04W40/12
CPC分类号: H04W28/0268 , H04L47/2491 , H04W40/12
摘要: An example communication system includes a communication management resource to control conveyance of data associated with a wireless communication link over a network path. The communication management resource receives a notification of a mobile communication device requesting to establish wireless connectivity with a wireless base station. The notification may indicate a type of communications to be supported by the wireless connectivity. In response to the notification, the communication management resource selects first data flow control settings based on the indicated type of communications associated with the wireless connectivity. The communication management resource then implements the first data flow control settings in a network path between the wireless base station and the remote network to support the type of communications indicated by the notification.
-
-
-
-
-
-
-
-
-