IP Library Granted Patent US 9,015,816
Granted Patent B2
US 9,015,816 · App. 13/439,844 · Granted Apr 21, 2015

Key assignment for a brand

Inventors: Ming-Jye Sheu (San Jose, CA); Prashant Ranade (San Jose, CA)
Assignee: Ruckus Wireless, Inc.
G06F21/44H04W12/04H04W12/06
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,015,816
App. No.
13/439,844
Granted
Apr 21, 2015
Kind
B2
Abstract

Systems and methods for providing secured network access are provided. A user device located within range of a branded hotspot initiates a request for the secured network access. The request concerns secured network access at the hotspot by the user device and includes a unique pre-shared key. A query regarding the unique pre-shared key is sent to a database, which retrieves information regarding a corresponding pre-shared key. That information is sent to the hotspot controller, which allows the user device secured network access as governed by one or more parameters associated with the pre-shared key.

Claims (41)

1. A method for providing secured communication network access, the method comprising:

receiving a request sent over an open communication network for secured communication network access, the request initiated by a requesting user device located within a range of a first hotspot associated with a brand, the request including a unique pre-shared encryption key associated with the requesting user device, wherein the unique pre-shared encryption key was displayed in a web page generated by a web portal server to the requesting user device;

determining there is currently no corresponding pre-shared encryption key stored at the first hotspot, wherein the corresponding pre-shared encryption key is required to decrypt communications encrypted based on the unique pre-shared encryption key associated with the requesting user device;

sending a query for the corresponding pre-shared encryption key to a cloud database of pre-shared encryption keys generated at a plurality of different hotspots, the different hotspots including hotspots associated with a plurality of brands, wherein each pre-shared encryption key in the cloud database corresponds to a different pre-shared encryption key that is unique to an associated user device, the query concerning any prior use of the unique pre-shared encryption key associated with the requesting user device and included in the request;

receiving a response to the query including the corresponding pre-shared encryption key, wherein the corresponding pre-shared encryption key is unique to the requesting user device and had been generated during prior use at a second hotspot associated with the brand; and

providing secured communication network access at the first hotspot based on the unique pre-shared encryption key associated with the requesting user device and the corresponding pre-shared encryption key obtained from the cloud database, wherein encryption in accordance with the unique pre-shared encryption key associated with the requesting user device is different than encryption for any other user device in the secured communication network, and wherein the secured communication network access provided to the requesting user device is governed at least in part by at least one parameter identified as being associated with the unique pre-shared encryption key, the at least one parameter including an access policy.

2. The method of claim 1 , further comprising storing information regarding the associated at least one parameter, the associated at least one parameter further including one or more of the following: expiration date, session duration, bandwidth, user identity, or user rewards.

3. The method of claim 1 , further comprising submitting a second unique pre-shared encryption key to the cloud database of pre-shared encryption keys for retrieval in response to a subsequent query concerning the second pre-shared encryption key.

4. The method of claim 3 , wherein adding the second unique pre-shared encryption key to the cloud database of pre-shared encryption keys comprises:

executing instructions stored in memory, wherein execution of the instructions by a processor generates the second unique pre-shared encryption key for a second user device; and

transmitting a corresponding pre-shared encryption key associated with the second unique pre-shared encryption key to the cloud database of pre-shared encryption keys for retrieval in response to a subsequent request sent by the second user device while located within range of another hotspot associated with the brand.

5. The method of claim 4 , further comprising determining at least one parameter governing the secured communication network access to be provided to the second user device, wherein transmitted information regarding the second unique pre-shared encryption key further includes the at least one parameter.

6. An apparatus for providing secured communication network access, the apparatus comprising:

an interface for receiving an incoming request sent over an open communication network for secured communication network access, the request initiated by a requesting user device located within a range of a first hotspot associated with a brand, the request including a unique pre-shared encryption key associated with the requesting user device, wherein the unique pre-shared encryption key was displayed in a web page generated by a web portal server to the requesting user device; and

a processor for executing instructions stored in memory, wherein execution of the instructions by the processor:

determines there is currently no corresponding pre-shared encryption key stored at the first hotspot, wherein the corresponding pre-shared encryption key is required to decrypt communications encrypted based on the unique pre-shared encryption key associated with the requesting user device, and

generates a query for the corresponding pre-shared encryption key to a cloud database of pre-shared encryption keys generated at a plurality of different hotspots, the different hotspots including hotspots associated with a plurality of brands, wherein each pre-shared encryption key in the cloud database corresponds to a different pre-shared encryption key that is unique to an associated user device, the query concerning any prior use of the unique pre-shared encryption key associated with the requesting user device and included in the request,

wherein the interface receives a response to the query from the cloud database, the response including the corresponding pre-shared encryption wherein the corresponding pre-shared encryption key is unique to the requesting user device and had been generated during prior use at a second hotspot associated with the brand use at a second hotspot associated with the brand;

wherein secured communication network access at the first hotspot is subsequently provided based on the unique pre-shared encryption key associated with the requesting user device and the corresponding pre-shared encryption key obtained from the cloud database, wherein encryption in accordance with the unique pre-shared encryption key associated with the requesting user device is different than encryption for any other user device in the secured communication network, and wherein the secured communication network access provided to the requesting user device is governed at least in part by at least one parameter identified as being associated with the unique pre-shared encryption key, the at least one parameter including an access policy.

7. The apparatus of claim 6 , further comprising memory for storing information regarding the associated at least one parameter, the associated at least one parameter further including one or more of the following: expiration date, session duration, bandwidth, user identity, or user rewards.

8. The apparatus of claim 6 , wherein the interface sends a submission including a corresponding pre-shared encryption key associated with a second unique pre-shared encryption key to the cloud database of pre-shared encryption keys for retrieval in response to a subsequent query concerning the second unique pre-shared encryption key sent by a second user device while located within range of another hotspot associated with the brand.

9. The apparatus of claim 8 , wherein further execution of instructions by the processor generates the second unique pre-shared encryption key for the second user device.

10. The apparatus of claim 9 , wherein further execution of instructions by the processor determines at least one parameter governing the secured communication network access to be provided to the second user device, wherein transmitted information regarding the second unique pre-shared encryption key further includes the at least one parameter.

11. A system for providing secured communication network access, the system comprising:

a hotspot controller of a first hotspot comprising an interface for:

receiving an incoming request sent over an open communication network for secured communication network access, the request initiated by a requesting user device located within a range of the first hotspot, the request including a unique pre-shared encryption key associated with the requesting user device, wherein the unique pre-shared encryption key was displayed in a web page generated by a web portal server to the requesting user device,

determining there is currently no corresponding pre-shared encryption key stored at the first hotspot, wherein the corresponding pre-shared encryption key is required to decrypt communications encrypted based on the unique pre-shared encryption key associated with the requesting user device,

sending a query for the corresponding pre-shared encryption key to a cloud database of pre-shared encryption keys generated at a plurality of different hotspots, the different hotspots including hotspots associated with a plurality of brands, wherein each pre-shared encryption key in the cloud database corresponds to a different pre-shared encryption key that is unique to an associated user device, the query concerning any prior use of the unique pre-shared encryption key associated with the requesting user device and included in the request, and

receiving a response to the query including the corresponding pre-shared encryption key, wherein the corresponding pre-shared encryption key is unique to the requesting user device and had been generated during prior use at a second hotspot associated with the brand; and

an access point associated with the first hotspot, the hotspot associated with a brand, the access point providing secured communication network access based on the unique pre-shared encryption key associated with the requesting user device and the corresponding pre-shared encryption key obtained from the cloud database, wherein encryption in accordance with the unique pre-shared encryption key associated with the requesting user device is different than encryption for any other user device in the secured communication network, and wherein the secured communication network access provided to the requesting user device is governed at least in part by at least one parameter identified as being associated with the unique pre-shared encryption key, the at least one parameter including an access policy.

12. The system of claim 11 , further comprising a server for storing the cloud database of pre-shared encryption keys, the server in communication with the hotspot controller via the Internet.

13. The system of claim 11 , wherein the hotspot controller further includes memory for storing information regarding the associated at least one parameter, the associated at least one parameter further including one or more of the following: expiration date, session duration, bandwidth, user identity, or user rewards.

14. The system of claim 11 , wherein the interface sends a submission including a corresponding pre-shared encryption key associated with a second unique pre-shared encryption key to the cloud database of pre-shared encryption keys for retrieval in response to a subsequent query concerning the second unique pre-shared encryption key sent by a second user device while located within range of another hotspot associated with the brand.

15. The system of claim 14 , wherein further execution of instructions by the processor generates the second unique pre-shared encryption key for the second user device.

16. The system of claim 15 , wherein the hotspot controller further includes a processor for executing instructions stored in memory, wherein execution of instructions by the processor determines at least one parameter governing the secured communication network access to be provided to the second user device, wherein transmitted information regarding the second unique pre-shared encryption key further includes the at least one parameter.

17. A non-transitory computer-readable storage medium, having embodied thereon a program executable by a processor to perform a method for providing secured communication network access, the method comprising:

receiving a request sent over an open communication network for secured communication network access, the request initiated by a requesting user device located within a range of a first hotspot associated with a brand, the request including a unique pre-shared encryption key associated with the requesting user device, wherein the unique pre-shared encryption key was displayed in a web page generated by a web portal server to the requesting user device;

determining there is currently no corresponding pre-shared encryption key stored at the first hotspot, wherein the corresponding pre-shared encryption key is required to decrypt communications encrypted based on the unique pre-shared encryption key associated with the requesting user device;

sending a query for the corresponding pre-shared encryption key to a cloud database of pre-shared encryption keys generated at a plurality of different hotspots, the different hotspots including hotspots associated with a plurality of brands, wherein each pre-shared encryption key in the cloud database corresponds to a different pre-shared encryption key that is unique to an associated user device, the query concerning any prior use of the unique pre-shared encryption key associated with the requesting user device and included in the request;

receiving a response to the query including a corresponding pre-shared encryption key, wherein the corresponding pre-shared encryption key is unique to the requesting user device and had been generated during prior use at a second hotspot associated with the brand; and

providing secured communication network access at the first hotspot based on the unique pre-shared encryption key associated with the requesting user device and the corresponding pre-shared encryption key obtained from the cloud database, wherein encryption in accordance with the unique pre-shared encryption key associated with the requesting user device is different than encryption for any other user device in the secured communication network, and wherein the secured communication network access provided to the requesting user device is governed at least in part by at least one parameter identified as being associated with the unique pre-shared encryption key, the at least one parameter including an access policy.

Assignments (13)
PARTIAL TERMINATION AND RELEASE OF SECURITY INTEREST IN PATENTS Recorded Jul 2, 2026
From: CITIBANK, N.A., AS COLLATERAL AGENT
To: RUCKUS IP HOLDINGS LLC
Reel/Frame 075892/0107 →
SECURITY INTEREST Recorded Apr 8, 2026
From: ARRIS ENTERPRISES LLC; RUCKUS IP HOLDINGS LLC
To: CITIBANK, N.A., AS COLLATERAL AGENT
Reel/Frame 075476/0814 →
RELEASE OF SECURITY INTEREST AT REEL/FRAME 049905/0504 Recorded Dec 19, 2024
From: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
To: ARRIS ENTERPRISES LLC (F/K/A ARRIS ENTERPRISES, INC.); ARRIS TECHNOLOGY, INC.; ARRIS SOLUTIONS, INC.; COMMSCOPE, INC. OF NORTH CAROLINA; COMMSCOPE TECHNOLOGIES LLC; RUCKUS WIRELESS, LLC (F/K/A RUCKUS WIRELESS, INC.)
Reel/Frame 071477/0255 →
SECURITY INTEREST Recorded Dec 17, 2024
From: ARRIS ENTERPRISES LLC; COMMSCOPE TECHNOLOGIES LLC; COMMSCOPE INC., OF NORTH CAROLINA; OUTDOOR WIRELESS NETWORKS LLC; RUCKUS IP HOLDINGS LLC
To: APOLLO ADMINISTRATIVE AGENCY LLC
Reel/Frame 069889/0114 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 12, 2024
From: ARRIS ENTERPRISES LLC
To: RUCKUS IP HOLDINGS LLC
Reel/Frame 066399/0561 →
SECURITY INTEREST Recorded Nov 19, 2021
From: ARRIS SOLUTIONS, INC.; ARRIS ENTERPRISES LLC; COMMSCOPE TECHNOLOGIES LLC; COMMSCOPE, INC. OF NORTH CAROLINA; RUCKUS WIRELESS, INC.
To: WILMINGTON TRUST
Reel/Frame 060752/0001 →
PATENT SECURITY AGREEMENT Recorded Jul 3, 2019
From: ARRIS ENTERPRISES LLC
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS COLLATERAL AGENT
Reel/Frame 049820/0495 →
TERM LOAN SECURITY AGREEMENT Recorded Jul 3, 2019
From: COMMSCOPE, INC. OF NORTH CAROLINA; COMMSCOPE TECHNOLOGIES LLC; ARRIS ENTERPRISES LLC; ARRIS TECHNOLOGY, INC.; RUCKUS WIRELESS, INC.; ARRIS SOLUTIONS, INC.
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 049905/0504 →
ABL SECURITY AGREEMENT Recorded Jul 3, 2019
From: COMMSCOPE, INC. OF NORTH CAROLINA; COMMSCOPE TECHNOLOGIES LLC; ARRIS ENTERPRISES LLC; ARRIS TECHNOLOGY, INC.; RUCKUS WIRELESS, INC.; ARRIS SOLUTIONS, INC.
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 049892/0396 →
TERMINATION AND RELEASE OF SECURITY INTEREST IN PATENTS Recorded Apr 8, 2019
From: BANK OF AMERICA, N.A., AS ADMINISTRATIVE AGENT
To: RUCKUS WIRELESS, INC.
Reel/Frame 048817/0832 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 7, 2018
From: RUCKUS WIRELESS, INC.
To: ARRIS ENTERPRISES LLC
Reel/Frame 046730/0854 →
GRANT OF SECURITY INTEREST IN PATENT RIGHTS Recorded Apr 2, 2018
From: RUCKUS WIRELESS, INC.
To: BANK OF AMERICA, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 046379/0431 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 1, 2012
From: SHEU, MING-JYE; RANADE, PRASHANT
To: RUCKUS WIRELESS, INC.
Reel/Frame 028315/0527 →
Continuity (1)
Related Publication 20130269008A1 · Oct 10, 2013