IP Library Granted Patent US 8,782,745
Granted Patent B2
US 8,782,745 · App. 11/467,495 · Granted Jul 15, 2014

Detection of unauthorized wireless access points

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,782,745
App. No.
11/467,495
Granted
Jul 15, 2014
Kind
B2
Abstract

A public wireless network has authorized wireless access points through which users connect to the network. A system for detecting the unauthorized access points comprises a monitoring client simulating a user and detecting available access points. The system further comprises an authentication server that maintains a configuration file with an identifier associated with each authorized access point. The system is adapted to compare the identity of any available access point(s) to those maintained by the authentication server to detect unauthorized access points.

Claims (34)

1. In a public wireless network where users connect to the network through a wireless access point, a system for detecting unauthorized access points, comprising:

a monitoring device connected to the network that simulates a user and requests connection to the network through an available access point; and

an authentication server that authenticates users and maintains a configuration file with an identifier associated with each authorized access point for the network;

wherein the monitoring device requests an identifier from the available access point, the requested identifier identifying the available access point, and wherein the authentication server compares the requested identifier with each identifier in the configuration file, in order to determine whether the available access point is an authorized access point.

2. The system of claim 1 , wherein a physical location is determined for any available access point that does not have an associated identifier in the configuration file.

3. The system of claim 2 , wherein triangulation methods are used to determine the location of the unauthorized access point.

4. The system of claim 3 , wherein there is further maintained in the configuration file an identifier for any access point that is determined to be an access point of a legitimate, nearby network.

5. The system of claim 1 , wherein the monitoring device is a programmed element of an authorized access point.

6. The system of claim 1 , wherein the monitoring device is a device separate from any authorized access point.

7. The system of claim 1 , wherein the network has multiple authorized access points.

8. The system of claim 1 , wherein the network is a WiFi network.

9. The system of claim 1 , wherein the network connects a user to the internet.

10. The system of claim 1 , wherein an alert is provided by the authentication server when the available access point is not an authorized access point.

11. A method for detecting unauthorized access points in a public wireless network serving wireless users within a predetermined geographical area, comprising:

storing an identifier associated with one or more authorized access points for the network;

providing a monitoring client that simulates a user for detecting available wireless access points within the area;

requesting, with the monitoring client, an identifier from an available access point, wherein the identifier identifies the available access point;

determining an identity of the available access point, based at least in part on the identifier;

comparing, with an authentication server, the identity of the available access point with the stored identifier associated with the authorized access point; and

authenticating users, with the authentication server.

12. The method of claim 11 , further comprising:

determining the physical location of any available access points that do not have a stored associated identifier.

13. The method of claim 11 , wherein the monitoring client is a device separate from any authorized access point.

14. The method of claim 11 , wherein the network has multiple authorized access points.

15. The method of claim 11 , wherein the network is a WiFi network.

16. The method of claim 15 , wherein the network connects a user to the internet.

17. The method of claim 11 , further comprising:

providing an alert from the authentication server when an available access point is not an authorized access point.

18. The system of claim 1 wherein,

the identifier comprises one of a MAC address and a SSID; and

the authentication server is adapted to detect a rogue access point when more than one available access point is using the same MAC address or SSID.

19. The method of claim 11 wherein,

the stored identifier and the identifier comprise one of a MAC address and a SSID; and further comprising,

detecting a rogue when more than one available access point is using the same MAC address or SSID.

Assignments (7)
RELEASE (REEL 066874 / FRAME 0793) Recorded Apr 15, 2026
From: BANK OF AMERICA, N.A.
To: QWEST COMMUNICATIONS INTERNATIONAL INC.
Reel/Frame 075405/0877 →
SECURITY INTEREST (FIRST LIEN) Recorded Apr 15, 2026
From: QWEST COMMUNICATIONS INTERNATIONAL INC.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 075406/0026 →
RELEASE OF SECURITY INTEREST Recorded Mar 25, 2024
From: COMPUTERSHARE TRUST COMPANY, N.A, AS SUCCESSOR TO WELLS FARGO BANK, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
To: QWEST COMMUNICATIONS INTERNATIONAL INC.
Reel/Frame 066885/0917 →
SECURITY AGREEMENT (FIRST LIEN) Recorded Mar 22, 2024
From: QWEST COMMUNICATIONS INTERNATIONAL INC.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 066874/0793 →
NOTES SECURITY AGREEMENT Recorded Jan 24, 2020
From: QWEST COMMUNICATIONS INTERNATIONAL INC.
To: WELLS FARGO BANK, NATIONAL ASSOCIATION
Reel/Frame 051692/0646 →
SECURITY INTEREST Recorded Nov 1, 2017
From: QWEST COMMUNICATIONS INTERNATIONAL INC.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 044652/0829 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 8, 2006
From: STEVENS, GILMAN R.; COOK, CHARLES I.
To: QWEST COMMUNICATIONS INTERNATIONAL INC.
Reel/Frame 018497/0465 →