IP Library Granted Patent US 8,010,994
Granted Patent B2
US 8,010,994 · App. 11/288,680 · Granted Aug 30, 2011

Apparatus, and associated method, for providing communication access to a communication device at a network access port

Assignee: Alcatel Lucent
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,010,994
App. No.
11/288,680
Granted
Aug 30, 2011
Kind
B2
Abstract

Apparatus, and an associated method, for selectably providing access to a communication device connected to a network access port in a communication network. When a communication device is connected at the access port, its connection is detected by a detector. A determiner determines whether the communication device is 802.1x capable. If the device is non-802.1x capable, the device is assigned to a selected, non-secure VLAN by way of which to communicate.

Claims (32)

1. A method for enabling a client device access to a selected virtual local area network, said method comprising the operations of:

detecting connection of the client device to an authentication enabled port;

determining whether the client device is enabled to be authenticated pursuant to an authentication protocol used by the authentication enabled port;

precluding the authentication protocol of the authentication enabled port from being invoked for the client device when determination is made that the client device is not enabled for being authenticated pursuant to the authentication protocol used by the authentication enabled port for authenticating client devices connected thereto; and

assigning the client device to a selected non-secured virtual local area network while the client device remains connected to the authentication enabled port after said determination is made that the client device is not enabled for being authenticated pursuant to the authentication protocol used by the authentication enabled port for authenticating client devices connected thereto thereby allowing the client device to be connected to and communicate through the authentication enabled port concurrently with a client device that is enabled for being authenticated pursuant to the authentication protocol used by the authentication enabled port for authenticating client devices connected thereto.

2. The method of claim 1 wherein said operation of detecting comprises detecting an identifier that identifies the client device.

3. The method of claim 1 wherein said operation of detecting comprises detecting a Medium Access Control layer address of the client device.

4. The method of claim 1 wherein said operation of determining comprises sending a polling request to the client device.

5. The method of claim 4 wherein the polling request sent during said operation of determining comprises an EAP (Extensible Authentication Protocol) Request/Identity frame sent to the client device.

6. The method of claim 4 wherein said operation of determining further comprises detecting whether the client device responds to the polling request.

7. The method of claim 6 wherein the client device is determined during said operation of determining to be enabled to be authenticated if the client device responds to the polling request.

8. The method of claim 6 wherein the client device is determined during said operation of determining to be non-enabled to be authenticated if said operation of detecting fails to detect response to the by the client device to the polling request.

9. The method of claim 1 wherein the selected virtual local area network to which the client device is assigned during said operation of assigning comprises a user-configured virtual local area network.

10. The method of claim 9 further comprising the operation of configuring, by a user of the client device, the user-configured virtual local area network.

11. The method of claim 1 wherein the selected virtual local area network to which the client device is assigned during said operation of assigning comprises a group mobility rules configured virtual local area network.

12. Apparatus for enabling a client device access to a selected virtual local area network, said apparatus comprising:

a device detector configured to detect connection of the client device to an authentication enabled port;

a determiner operable responsive to detection by said device detector of the connection of the client device, said determiner configured to determine whether the client device is enabled to be authenticated pursuant to an authentication protocol used by the authentication enabled port;

an authenticator configured for precluding the authentication protocol of the authentication enabled port from being invoked for the client device when determination is made that the client device is not enabled for being authenticated pursuant to the authentication protocol used by the authentication enabled port for authenticating client devices connected thereto; and

an assignor configured to assign the client device to a selected non-secured virtual local area network while the client device remains connected to the authentication enabled port after said determination is made that the client device is not enabled for being authenticated pursuant to the authentication protocol used by the authentication enabled port for authenticating client devices connected thereto thereby allowing the client device to be connected to and to communicate through the authentication enabled port concurrently with a client device that is enabled for being authenticated pursuant to the authentication protocol used by the authentication enabled port for authenticating client devices connected thereto.

13. The apparatus of claim 12 wherein said device detector detects connection of the client device to the authentication enabled port by detecting a Medium Access Control layer identifier of the client device.

14. The apparatus of claim 12 wherein said determiner comprises a polling request generator configured to generate and send a polling request to the client device.

15. The apparatus of claim 14 wherein the polling request generated by said polling request generator comprises an EAP (Extensible Authentication Protocol) Request/Identity frame.

16. The apparatus of claim 14 wherein said determiner further comprises a response detector configured to detect a client-generated response to polling requests.

17. The apparatus of claim 16 wherein said determiner determines the client device to be non-enabled to be authenticated pursuant to the selected authentication protocol in absence of detection by said response detector of the client-generated response to the polling request.

18. The apparatus of claim 12 wherein said assignor is configured to assign the client device to a user configured virtual local area network.

19. The apparatus of claim 12 wherein the client device comprises an IP (Internet Protocol) phone, and wherein the authentication enabled port that said detector detects connection of the client device thereto comprises an 802.1x authentication enabled port.

20. Telephonic network switch apparatus for selectably enabling access of a client device to a selected virtual local area network, said apparatus comprising:

a detector configured to detect connection of the client device at an 802.1x authentication enabled port, wherein the authentication enabled port includes a physical port;

an enablement determiner operable responsive to detection by said detector of the connection of the client device, said enablement determiner configured to determine whether the client device is enabled to be authenticated pursuant to 802.1x authentication protocol used by the 802.1x authentication enabled port;

an authenticator configured for precluding the 802.1x authentication protocol of the authentication enabled port from being invoked for the client device when determination is made that the client device is not enabled for being authenticated pursuant to the 802.1x authentication protocol used by the authentication enabled port for authenticating client devices connected thereto; and

a communications assignor configured selectably to assign communication connectivity of the client device to a selected non-secured virtual local area network while the client device remains connected to the 802.1x authentication enabled port responsive to said determination being made by said enablement determiner that the client device is not enabled for being authenticated pursuant to the 802.1x authentication protocol used by the 802.1x authentication enabled port for authenticating client devices connected thereto thereby allowing the client device to be connected to and to communicate through the 802.1x authentication enabled port concurrently with a client device that is enabled for being authenticated pursuant to the authentication protocol used by the 802.1x authentication enabled port for authenticating client devices connected thereto.

Assignments (10)
PATENT SECURITY AGREEMENT Recorded Apr 22, 2023
From: RPX CORPORATION
To: BARINGS FINANCE LLC, AS COLLATERAL AGENT
Reel/Frame 063429/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 28, 2021
From: PROVENANCE ASSET GROUP LLC
To: RPX CORPORATION
Reel/Frame 059352/0001 →
RELEASE OF SECURITY INTEREST Recorded Nov 30, 2021
From: CORTLAND CAPITAL MARKETS SERVICES LLC
To: PROVENANCE ASSET GROUP HOLDINGS LLC; PROVENANCE ASSET GROUP LLC
Reel/Frame 058983/0104 →
RELEASE OF SECURITY INTEREST Recorded Nov 30, 2021
From: NOKIA US HOLDINGS INC.
To: PROVENANCE ASSET GROUP HOLDINGS LLC; PROVENANCE ASSET GROUP LLC
Reel/Frame 058363/0723 →
ASSIGNMENT AND ASSUMPTION AGREEMENT Recorded Feb 14, 2019
From: NOKIA USA INC.
To: NOKIA US HOLDINGS INC.
Reel/Frame 048370/0682 →
SECURITY INTEREST Recorded Sep 13, 2017
From: PROVENANCE ASSET GROUP HOLDINGS, LLC; PROVENANCE ASSET GROUP, LLC
To: CORTLAND CAPITAL MARKET SERVICES, LLC
Reel/Frame 043967/0001 →
SECURITY INTEREST Recorded Sep 13, 2017
From: PROVENANCE ASSET GROUP HOLDINGS, LLC; PROVENANCE ASSET GROUP LLC
To: NOKIA USA INC.
Reel/Frame 043879/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 13, 2017
From: NOKIA TECHNOLOGIES OY; NOKIA SOLUTIONS AND NETWORKS BV; ALCATEL LUCENT SAS
To: PROVENANCE ASSET GROUP LLC
Reel/Frame 043877/0001 →
CHANGE OF NAME Recorded Jun 20, 2011
From: ALCATEL
To: ALCATEL LUCENT
Reel/Frame 026481/0126 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 28, 2006
From: CHOW, ANTHONY T.
To: ALCATEL
Reel/Frame 017229/0061 →
Continuity (2)
Provisional Application 60681342 · May 16, 2005
Related Publication 20060259768A1 · Nov 16, 2006