IP Library Granted Patent US 9,203,858
Granted Patent B2
US 9,203,858 · App. 11/466,282 · Granted Dec 1, 2015

Method and system for generating an advisory message for an endpoint device

Inventors: Rohit Shankar (Hyderabad, IN); Sumit B. Deshpande (Central Islip, NY); Ravi R. Pore (Manarashtra, IN); Srinivas Gudipudi (Hyderabad, IN); Abhilash V. Purushothaman (Kerala, IN); Yidong Zhu (Lincolnshire, IL); Theodore Short (Jacksonville, FL)
Assignee: CA, Inc.
H04L63/1433H04W12/12
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,203,858
App. No.
11/466,282
Granted
Dec 1, 2015
Kind
B2
Abstract

According to one embodiment of the invention, a method for generating an advisory message for an endpoint device includes determining a threat level for the endpoint device by identifying a connection type between the endpoint device and the wireless network. The method also includes determining a second threat level for the endpoint device by identifying a security policy of the endpoint device. The method further includes generating an advisory message for the endpoint device based on the threat levels. The advisory message indicates vulnerability of the endpoint device.

Claims (31)

1. A method for generating an advisory message for an endpoint device in a wireless network, comprising:

determining, by a processor, a first threat level for an endpoint device in the wireless network by identifying a connection type between the endpoint device and the wireless network;

determining, by the processor, a second threat level for the endpoint device by identifying a security policy of the endpoint device; and

based on the first threat level and the second threat level, generating an advisory message for the endpoint device that indicates vulnerability of the endpoint device.

2. The method of claim 1 , wherein the security policy comprises a plurality of states of the endpoint device.

3. The method of claim 2 , wherein the plurality of states comprises a state indicative of whether the endpoint device allows dual homing.

4. The method of claim 2 , wherein the plurality of states comprises a state indicative of whether the endpoint device allows internet sharing.

5. The method of claim 2 , wherein the plurality of states comprises a state indicative of whether the endpoint device allows network file sharing.

6. The method of claim 2 , wherein the plurality of states comprises a state indicative of whether the endpoint device allows ad-hoc connections.

7. A system for generating an advisory message, comprising:

a wireless network, the wireless network comprising one or more access points; and

an endpoint device operable to connect to the wireless network, the endpoint device comprising:

a processor; and

a storage device, readable by the endpoint device, embodying a program of instructions executable by the processor to perform steps for generating an advisory message, the steps comprising:

determining a first threat level for the endpoint device in the wireless network by identifying a connection type between the endpoint device and the wireless network;

determining a second threat level for the endpoint device by identifying a security policy of the endpoint device; and

based on the first threat level and the second threat level, generating an advisory message for the endpoint device that indicates vulnerability of the endpoint device.

8. The system of claim 7 , wherein the security policy comprises a plurality of states of the endpoint device.

9. The system of claim 8 , wherein the plurality of states comprises a state indicative of whether the endpoint device allows dual homing.

10. The system of claim 8 , wherein the plurality of states comprises a state indicative of whether the endpoint device allows internet sharing.

11. The system of claim 8 , wherein the plurality of states comprises a state indicative of whether the endpoint device allows network file sharing.

12. The system of claim 8 , wherein the plurality of states comprises a state indicative of whether the endpoint device allows ad-hoc connections.

13. Logic encoded in non-transitory computer-readable media, the logic being operable to:

determine a first threat level for an endpoint device in a wireless network by identifying a connection type between the endpoint device and the wireless network;

determine a second threat level for the endpoint device by identifying a security policy of the endpoint device; and

based on the first threat level and the second threat level, generate an advisory message for the endpoint device that indicates vulnerability of the endpoint device.

14. The logic of claim 13 , wherein the security policy comprises a plurality of states of the endpoint device.

15. The logic of claim 14 , wherein the plurality of states comprises a state indicative of whether the endpoint device allows dual homing.

16. The logic of claim 14 , wherein the plurality of states comprises a state indicative of whether the endpoint device allows internet sharing.

17. The logic of claim 14 , wherein the plurality of states comprises a state indicative of whether the endpoint device allows network file sharing.

18. The logic of claim 14 , wherein the plurality of states comprises a state indicative of whether the endpoint device allows ad-hoc connections.

Assignments (2)
MERGER Recorded Aug 14, 2015
From: COMPUTER ASSOCIATES THINK, INC.
To: CA, INC.
Reel/Frame 036330/0745 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 24, 2006
From: SHANKAR, ROHIT; DESHPANDE, SUMIT B.; PORE, RAVI R.; GUDIPUDI, SRINIVAS; PURUSHOTHAMAN, ABHILASH V.; ZHU, YIDONG; SHORT, THEODORE
To: COMPUTER ASSOCIATES THINK, INC.
Reel/Frame 018166/0304 →
Continuity (2)
Provisional Application 60735690 · Nov 11, 2005
Related Publication 20070113080A1 · May 17, 2007