IP Library Granted Patent US 8,259,914
Granted Patent B2
US 8,259,914 · App. 11/660,348 · Granted Sep 4, 2012

System and method for a secure log-on to a communications system comprising network connection and connection handling computers

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,259,914
App. No.
11/660,348
Filed
Feb 13, 2007
Granted
Sep 4, 2012
Kind
B2
Art Unit
2614
USPC
379/93.02
Abstract

In one aspect, communication link established from a communication unit to a communications system. A request message is transmitted from a communication unit to the work connection computer and checked with the aid of a user profile of the communication unit, to verify whether the communication unit has log-on authorization. If the verification of the request message is positive, the request message is forwarded from the network connection computer to the connection handling computer in the form of a modified request message. The modified request message is analyzed by the connection handling computer with the aid of an authentication profile of the network connection computer. Once the modified request message has been positively analyzed and the communication unit has been successfully registered, a response message is transmitted from the connection handling computer to the communication unit.

Claims (41)

1. A communications system, comprising:

a connection handling computer;

a network connection computer coupled to the connection handling computer;

a communication unit coupled to the network connection computer;

a first database connected to the network connection computer;

a user profile of the communication unit stored in the first database;

a second data base coupled to the connection handling computer; and

an authentication profile of the network connection computer stored in the second database; and

wherein a request message is transmitted from the communication unit to the network connection computer, the request message being sent to log on to the communications system;

wherein the network connection computer checks to verify whether the communication unit has log-on authorization, the network connection computer checking the request message by accessing the user profile;

wherein the network connection computer modifying the request message when the request message is verified as having authorization to log on to the communications system, the modified request message having an identification feature that identifies the communication unit;

the network connection computer sending the modified request message to the connection handling computer;

the modified request message is analyzed for validity by the connection handling computer by accessing the authentication profile stored in the second database and utilizing the authentication profile;

the connection handling computer registering the communication unit in the second database when the modified request message is validated;

after successful registration of the communication unit, the connection handling computer sending a registration message to the network connection computer to inform the network connection computer of the successful registration of the communication unit; and

the network connection computer modifying the registration message and sending the modified registration message to the communication unit for communicating a successful log on of the communication unit to the communications system.

2. The communications system of claim 1 , wherein the modified registration message has data needed to establish a secure connection between the communication unit and the network connection computer.

3. The communications system of claim 2 , wherein the data needed to establish the secure connection comprises a certificate of the network connection computer and wherein the communication unit, and the network connection computer are part of a first network

secured against unauthorized external access and the connection handling computer is part of a second network.

4. The communications system of claim 1 , wherein the connection handling computer does not perform any authorization and authentication of the communication unit.

5. The communications system of claim 1 , wherein the network connection computer and the connection handling computer are coupled to each other by a secure connection.

6. The communications system of claim 5 , wherein the secure connection also exists at least between the communication unit and the network connection computer after the communication unit receives the modified registration message.

7. The communications system of claim 1 , wherein the communication unit and the connection handling computer are allocated to different networks.

8. The communications system of claim 1 , wherein the connection handling computer is a computer or an additional network connection computer that is coupled to a connection handling computer.

9. The communications system of claim 1 , wherein a charging of a message traffic of the communication unit is allocated to the network connection computer.

10. The communications system of claim 1 , wherein a total charging of message traffic of all communication units that are connected to the network connection computer is allocated to the connection handling computer.

11. A method for establishing a communication link to a communications system comprising:

transmitting a request message from a communication unit to a network connection computer, the request message being sent to log on to a communications system;

the network connection computer checking to verify whether the communication unit has log-on authorization, the network connection computer checking the request message by accessing a user profile stored in a first database coupled to the network connection computer;

the network connection computer modifying the request message when the request message is verified as having authorization to log on to the communications system, the modified request message having an identification feature that identifies the communication unit;

the network connection computer sending the modified request message to a connection handling computer of the communications system;

the connection handling computer analyzing the modified request message for validity by accessing an authentication profile stored in a second database coupled to the connection handling computer and utilizing the authentication profile;

the connection handling computer registering the communication unit in the second database when the modified request message is validated;

after successful registration of the communication unit, the connection handling computer sending a registration message to the network connection computer to inform the network connection computer of the successful registration of the communication unit; and

the network connection computer modifying the registration message and sending the modified registration message to the communication unit for communicating a successful log on of the communication unit to the communications system.

12. The method of claim 11 , wherein the modified registration message has data needed to establish a secure connection between the communication unit and the network connection computer.

13. The method of claim 12 , wherein the data needed for the secure connection comprises a certificate of the network connection computer.

14. The method of claim 11 , wherein the network connection computer is expanded by access protection.

15. The method of claim 11 , wherein the connection handling computer does not perform any authorization and authentication of the communication unit and wherein a secure connection is formed between the connection handling computer and the network connection computer.

16. The method of claim 11 , wherein a secure connection is established between the communication unit and the network connection computer and a secure connection is also established between the connection handling computer and the network connection computer.

17. The method of claim 16 , wherein the modified request message is sent via forwarding if the secure connection exists between the connection handling computer and the network connection computer.

Assignments (9)
RELEASE OF SECURITY INTEREST Recorded Jun 24, 2025
From: WILMINGTON SAVINGS FUND SOCIETY, FSB
To: MITEL (DELAWARE), INC.; MITEL COMMUNICATIONS, INC.; MITEL NETWORKS, INC.; MITEL NETWORKS CORPORATION
Reel/Frame 071712/0821 →
NOTICE OF SUCCCESSION OF AGENCY - PL Recorded Jan 14, 2025
From: UBS AG, STAMFORD BRANCH, AS LEGAL SUCCESSOR TO CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: WILMINGTON SAVINGS FUND SOCIETY, FSB
Reel/Frame 069895/0755 →
NOTICE OF SUCCCESSION OF AGENCY - 2L Recorded Jan 14, 2025
From: UBS AG, STAMFORD BRANCH, AS LEGAL SUCCESSOR TO CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: WILMINGTON SAVINGS FUND SOCIETY, FSB
Reel/Frame 069896/0001 →
NOTICE OF SUCCCESSION OF AGENCY - 3L Recorded Jan 14, 2025
From: UBS AG, STAMFORD BRANCH, AS LEGAL SUCCESSOR TO CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: WILMINGTON SAVINGS FUND SOCIETY, FSB
Reel/Frame 070006/0268 →
CHANGE OF NAME Recorded Oct 24, 2024
From: UNIFY PATENTE GMBH & CO. KG
To: UNIFY BETEILIGUNGSVERWALTUNG GMBH & CO. KG
Reel/Frame 069242/0312 →
SECURITY INTEREST Recorded Jan 5, 2024
From: UNIFY PATENTE GMBH & CO. KG
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 066197/0073 →
SECURITY INTEREST Recorded Jan 5, 2024
From: UNIFY PATENTE GMBH & CO. KG
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 066197/0299 →
SECURITY INTEREST Recorded Jan 5, 2024
From: UNIFY PATENTE GMBH & CO. KG
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 066197/0333 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 18, 2023
From: UNIFY GMBH & CO. KG
To: UNIFY PATENTE GMBH & CO. KG
Reel/Frame 065627/0001 →