IP Library › Granted Patent US 8,724,515
Granted Patent B2
US 8,724,515 · App. 13/235,007 · Granted May 13, 2014

Configuring a secure network

Inventors: Aaron H. Averbuch (Seattle, WA); David Davis (San Jose, CA); Edward W. James (San Jose, CA); Craig A. Hobbs (Seattle, WA)
Assignee: Cisco Technology, Inc.
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,724,515
App. No.
13/235,007
Granted
May 13, 2014
Kind
B2
Abstract

Techniques are presented for configuring a networking device to provide secure wireless connectivity to one or more client devices. In one embodiment, a networking device is discovered that is within a wireless connectivity range from a first client device. The networking device is configured to provide wireless connectivity to the first client device. The first client device is configured to initiate a first wireless connection, without requiring a user to specify any network settings. The networking device is configured to authenticate a user to access a user interface for configuring the networking device, where the user is not authenticated based on any password.

Claims (32)

1. A method, comprising:

discovering a networking device within a wireless connectivity range from a first client device;

upon determining that the networking device is configured with factory default settings, based on the networking device having a network identifier conforming to a predetermined format that includes a predefined character sequence contained in the network identifier, generating network settings for the networking device;

configuring the networking device to provide wireless connectivity according to the network settings; and

initiating, by the first client device and based on the network settings, a first wireless connection to the networking device, wherein the first wireless connection is initiated to request, on behalf of a user, access to a user interface for configuring the networking device, wherein the networking device is configured to, prior to granting access, authenticate the user requesting access.

2. The method of claim 1 , wherein the user requesting access is authenticated based on a digital certificate.

3. The method of claim 2 , wherein the digital certificate comprises an X.509 client certificate generated based on a predetermined security policy, wherein the first wireless connection is created without requiring user specification of any of the network settings, and wherein the user is not authenticated based on any password.

4. The method of claim 1 , wherein the network settings specify a network identifier, a network password, and a wireless security protocol.

5. The method of claim 1 , further comprising:

initiating, by a second client device and based on the network settings, a second wireless connection to the networking device, without requiring the user to specify any of the network settings.

6. Logic encoded in one or more tangible media for execution and when executed operable to:

discover a networking device within a wireless connectivity range from a first client device;

upon determining that the networking device is configured with factory default settings, based on the networking device having a network identifier conforming to a predetermined format that includes a predefined character sequence contained in the network identifier, generate network settings for the networking device;

configure the networking device to provide wireless connectivity according to the network settings; and

initiate, by the first client device and based on the network settings, a first wireless connection to the networking device, wherein the first wireless connection is initiated to request, on behalf of a user, access to a user interface for configuring the networking device, wherein the networking device is configured to, prior to granting access, authenticate the user requesting access.

7. The logic of claim 6 , wherein the user requesting access is authenticated based on a digital certificate.

8. The logic of claim 7 , wherein the digital certificate comprises an X.509 client certificate generated based on a predetermined security policy, wherein the first wireless connection is created without requiring user specification of the network settings, and wherein the user is not authenticated based on any password.

9. The logic of claim 6 , wherein the network settings specify a network identifier, a network password, and a wireless security protocol.

10. The logic of claim 6 , wherein the logic is further operable to:

initiate, by a second client device and based on the network settings, a second wireless connection to the networking device, without requiring the user to specify any of the network settings.

11. A system comprising:

one or more computer processors;

logic encoded in one or more tangible media for execution and, when executed by the one or more computer processors, operable to:

discover a networking device within a wireless connectivity range from a first client device;

upon determining that the networking device is configured with factory default settings, based on the networking device having a network identifier conforming to a predetermined format that includes a predefined character sequence contained in the network identifier, generate network settings for the networking device;

configure the networking device to provide wireless connectivity according to the network settings; and

initiate, by the first client device and based on the network settings, a first wireless connection to the networking device, wherein the first wireless connection is initiated to request, on behalf of a user, access to a user interface for configuring the networking device, wherein the networking device is configured to, prior to granting access, authenticate the user requesting access.

12. The system of claim 11 , wherein the user requesting access is authenticated based on a digital certificate.

13. The system of claim 12 , wherein the digital certificate comprises an X.509 client certificate generated based on a predetermined security policy, wherein the first wireless connection is created without requiring user specification of the network settings, and wherein the user is not authenticated based on any password.

14. The system of claim 11 , wherein the network settings specify a network identifier, a network password, and a wireless security protocol.

15. The system of claim 11 , wherein the logic is further operable to:

initiate, by a second client device and based on the network settings, a second wireless connection to the networking device, without requiring the user to specify any of the network settings.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 16, 2011
From: AVERBUCH, AARON H.; DAVIS, DAVID; JAMES, EDWARD W.; HOBBS, CRAIG A.
To: CISCO TECHNOLOGY, INC.
Reel/Frame 026921/0738 →
Continuity (2)
Continuation In Part 12732446 · Mar 26, 2010
Related Publication 20120008529A1 · Jan 12, 2012