IP Library Granted Patent US 9,137,012
Granted Patent B2
US 9,137,012 · App. 11/671,264 · Granted Sep 15, 2015

Wireless authentication methods and apparatus

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,137,012
App. No.
11/671,264
Granted
Sep 15, 2015
Kind
B2
Abstract

A first processing device, which may be, for example, a wireless authentication token or an RFID tag, transmits information in a wireless network in a manner that emulates standard communications of an access point of the wireless network, although the first processing device is not configured to operate as an actual access point of the wireless network. A second processing device, which may be, for example, a computer or other station of the wireless network, receives the transmitted information and is able to determine therefrom that the information originates from an emulated access point rather than an actual access point. The second processing device responds to this condition by utilizing the transmitted information in a manner distinct from its utilization of similar information received from the actual access point of the wireless network.

Claims (45)

1. A first processing device for use in a wireless network, the wireless network comprising at least one access point and one or more stations, the first processing device comprising:

a memory;

a processor coupled to the memory; and

network interface circuitry coupled to the processor;

the processor being operative to control the transmission of information via the network interface circuitry in a manner that emulates standard communications of an access point of the wireless network although the first processing device is not configured to operate as an actual access point of the wireless network;

wherein a second processing device receiving the transmitted information is able to determine therefrom that the transmitted information originates from an emulated access point rather than an actual access point, the second processing device responding to such a condition by utilizing the transmitted information in a manner distinct from its utilization of information received from the actual access point of the wireless network.

2. The first processing device of claim 1 wherein the transmitted information comprises authentication information.

3. The first processing device of claim 1 wherein said first processing device comprises a handheld wireless authentication token.

4. The first processing device of claim 1 wherein said first processing device comprises a radio frequency identification (RFID) tag.

5. The first processing device of claim 2 wherein the authentication information comprises a one-time password.

6. The first processing device of claim 1 wherein the wireless network comprises a wireless network operating in accordance with an 802.11 standard and the actual access point of the wireless network comprises an access point operating in accordance with the 802.11 standard.

7. The first processing device of claim 6 wherein the transmitted information comprises at least one of an 802.11 beacon frame and an 802.11 probe response frame.

8. The first processing device of claim 7 wherein the transmitted information comprises authentication information carried at least in part in a service set identifier (SSID) field of said at least one frame.

9. The first processing device of claim 1 wherein the transmitted information is transmitted by the first processing device responsive to a user command.

10. The first processing device of claim 1 wherein the transmitted information is transmitted by the first processing device periodically or continuously without user intervention.

11. The first processing device of claim 1 wherein at least a portion of the transmitted information is configured prior to transmission responsive to its relation to a particular time interval of a set of predetermined time intervals.

12. The first processing device of claim 1 wherein at least a portion of the transmitted information is configured prior to transmission responsive to a user command.

13. The first processing device of claim 2 wherein the authentication information comprises a sequence of values corresponding to images of a hash chain.

14. The first processing device of claim 2 wherein the authentication information is encrypted prior to transmission using a key established through a pairing protocol carried out between the first and second processing devices.

15. The first processing device of claim 14 wherein the pairing protocol supports key confirmation by allowing a user to compare a confirmation code produced by the first processing device with a confirmation code produced by the second processing device.

16. The first processing device of claim 14 wherein the pairing protocol utilizes a trusted server to authorize pairing of the first processing device with the second processing device.

17. The first processing device of claim 2 wherein the authentication information is utilizable by the second processing device in conjunction with supplementary information to generate combined authentication information of the first and second processing devices, said combined authentication information being presented to at least one server for joint authentication of the first and second processing devices.

18. The first processing device of claim 17 wherein the authentication information comprises a sequence of values corresponding to images of a hash chain, and said second processing device generates said combined authentication information using the hash chain images and a private key of a certificate held by the second processing device.

19. The first processing device of claim 2 wherein the authentication information is determined at least in part utilizing a base point on an elliptic curve.

20. The first processing device of claim 1 wherein the transmitted information comprises information that is utilizable by the second processing device to perform at least one of an encryption operation and a decryption operation.

21. The first processing device of claim 1 wherein the transmitted information comprises information that is utilizable by the second processing device to generate a joint digital signature on behalf of both the first and second processing devices.

22. A method for use in a first processing device in a wireless network, the wireless network comprising at least one access point and one or more stations, the method comprising the steps of:

generating information in the first processing device; and

transmitting the information from the first processing device in a manner that emulates standard communications of an access point of the wireless network although the first processing device is not configured to operate as an actual access point of the wireless network;

wherein a second processing device receiving the transmitted information is able to determine therefrom that the transmitted information originates from an emulated access point rather than an actual access point, the second processing device responding to such a condition by utilizing the transmitted information in a manner distinct from its utilization of information received from the actual access point of the wireless network.

23. An article of manufacture comprising a non-transitory computer-readable storage medium storing one or more software programs which when executed by a processor implement the steps of the method of claim 22 .

24. A processing device for use in a wireless network, the wireless network comprising at least one access point and one or more stations, the processing device comprising:

a memory;

a processor coupled to the memory; and

network interface circuitry coupled to the processor;

the processor being operative to control the reception of information via the network interface circuitry, the received information being transmitted by another processing device in a manner that emulates standard communications of an access point of the wireless network although the other processing device is not configured to operate as an actual access point of the wireless network;

wherein the processor is further operative to determine from the received information that said information originates from an emulated access point rather than an actual access point and to respond to such a condition by utilizing the received information in a manner distinct from its utilization of information received from the actual access point of the wireless network.

25. The processing device of claim 24 wherein said processing device having said processor, memory and network interface circuitry comprises a given one of the stations of the wireless network.

26. The processing device of claim 25 wherein the given station responds to the condition by extracting authentication information from the transmitted information and initiating an authentication process using the authentication information.

27. The processing device of claim 24 wherein said processing device having said processor, memory and network interface circuitry comprises a computer.

28. A method for use in a processing device in a wireless network, the wireless network comprising at least one access point and one or more stations, the method comprising the steps of:

receiving information transmitted by another processing device, the information being transmitted in a manner that emulates standard communications of an access point of the wireless network although the other processing device is not configured to operate as an actual access point of the wireless network;

determining from the received information that said information originates from an emulated access point rather than an actual access point; and

responding to such a condition by utilizing the received information in a manner distinct from its utilization of information received from the actual access point of the wireless network.

29. An article of manufacture comprising a non-transitory computer-readable storage medium storing one or more software programs which when executed by a processor implement the steps of the method of claim 28 .

Assignments (14)
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (053546/0001) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL MARKETING L.P. (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO CREDANT TECHNOLOGIES, INC.); DELL INTERNATIONAL L.L.C.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO FORCE10 NETWORKS, INC. AND WYSE TECHNOLOGY L.L.C.); EMC IP HOLDING COMPANY LLC
Reel/Frame 071642/0001 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (045455/0001) Recorded May 20, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO ASAP SOFTWARE EXPRESS, INC.); DELL MARKETING L.P. (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO CREDANT TECHNOLOGIES, INC.); DELL USA L.P.; DELL INTERNATIONAL L.L.C.; DELL PRODUCTS L.P.; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO FORCE10 NETWORKS, INC. AND WYSE TECHNOLOGY L.L.C.); EMC CORPORATION (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO MAGINATICS LLC); EMC IP HOLDING COMPANY LLC (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO MOZY, INC.); SCALEIO LLC
Reel/Frame 061753/0001 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (040136/0001) Recorded Apr 26, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO ASAP SOFTWARE EXPRESS, INC.); DELL MARKETING L.P. (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO CREDANT TECHNOLOGIES, INC.); DELL USA L.P.; DELL INTERNATIONAL L.L.C.; DELL PRODUCTS L.P.; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO FORCE10 NETWORKS, INC. AND WYSE TECHNOLOGY L.L.C.); EMC CORPORATION (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO MAGINATICS LLC); EMC IP HOLDING COMPANY LLC (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO MOZY, INC.); SCALEIO LLC
Reel/Frame 061324/0001 →
RELEASE OF SECURITY INTEREST Recorded Nov 3, 2021
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: DELL USA L.P.; ASAP SOFTWARE EXPRESS, INC.; AVENTAIL LLC; CREDANT TECHNOLOGIES, INC.; DELL INTERNATIONAL, L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL SOFTWARE INC.; DELL SYSTEMS CORPORATION; EMC CORPORATION; EMC IP HOLDING COMPANY LLC; FORCE10 NETWORKS, INC.; MAGINATICS LLC; MOZY, INC.; SCALEIO LLC; WYSE TECHNOLOGY L.L.C.
Reel/Frame 058216/0001 →
SECURITY AGREEMENT Recorded Mar 21, 2019
From: CREDANT TECHNOLOGIES, INC.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 049452/0223 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 29, 2016
From: EMC CORPORATION
To: EMC IP HOLDING COMPANY LLC
Reel/Frame 040203/0001 →
SECURITY AGREEMENT Recorded Sep 21, 2016
From: ASAP SOFTWARE EXPRESS, INC.; AVENTAIL LLC; CREDANT TECHNOLOGIES, INC.; DELL USA L.P.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL SOFTWARE INC.; DELL SYSTEMS CORPORATION; EMC CORPORATION; EMC IP HOLDING COMPANY LLC; FORCE10 NETWORKS, INC.; MAGINATICS LLC; MOZY, INC.; SCALEIO LLC; SPANNING CLOUD APPS LLC; WYSE TECHNOLOGY L.L.C.
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 040134/0001 →
SECURITY AGREEMENT Recorded Sep 21, 2016
From: ASAP SOFTWARE EXPRESS, INC.; AVENTAIL LLC; CREDANT TECHNOLOGIES, INC.; DELL USA L.P.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL SOFTWARE INC.; DELL SYSTEMS CORPORATION; EMC CORPORATION; EMC IP HOLDING COMPANY LLC; FORCE10 NETWORKS, INC.; MAGINATICS LLC; MOZY, INC.; SCALEIO LLC; SPANNING CLOUD APPS LLC; WYSE TECHNOLOGY L.L.C.
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
Reel/Frame 040136/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 23, 2010
From: RSA SECURITY LLC
To: RSA SECURITY HOLDING, INC.
Reel/Frame 023975/0453 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 23, 2010
From: RSA SECURITY HOLDING, INC.
To: EMC CORPORATION
Reel/Frame 023975/0151 →
MERGER Recorded Jan 27, 2010
From: RSA SECURITY INC
To: RSA SECURITY LLC
Reel/Frame 023852/0644 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 21, 2010
From: RSA SECURITY HOLDING, INC.
To: EMC CORPORATION
Reel/Frame 023825/0109 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 21, 2010
From: RSA SECURITY LLC
To: RSA SECURITY HOLDING, INC.
Reel/Frame 023824/0729 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 18, 2007
From: BAILEY, DANIEL VERNON; BRAINARD, JOHN G.; JUELS, ARI; KALISKI, BURTON S., JR.
To: RSA SECURITY INC.
Reel/Frame 019178/0199 →