IP Library Granted Patent US 9,572,034
Granted Patent B1
US 9,572,034 · App. 14/849,623 · Granted Feb 14, 2017

Systems and methods for securing wireless networks

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,572,034
App. No.
14/849,623
Granted
Feb 14, 2017
Kind
B1
Abstract

The disclosed computer-implemented method for securing wireless networks may include (1) receiving, at a physical access point, a request to improve the security of a wireless network that includes a client device and is serviced by an active virtual access point of the physical access point, (2) configuring a substitute virtual access point to service the wireless network by (a) configuring the substitute virtual access point to identify the wireless network using a substitute SSID and/or (b) secure the wireless network using a substitute passcode, (3) transmitting a notification that includes the substitute SSID and/or the substitute passcode to the client device that instructs the client device to connect to the wireless network via the substitute virtual access point, (4) connecting the client device to the substitute virtual access point, and (5) disabling the active virtual access point. Various other methods, systems, and computer-readable media are also disclosed.

Claims (70)

1. A computer-implemented method for securing wireless networks, at least a portion of the method being performed by a physical wireless access point comprising at least one physical processor, the method comprising:

receiving, at the physical wireless access point, a request to improve the security of a wireless network that comprises at least one client device and that is serviced by an active virtual wireless access point running on the physical wireless access point, wherein:

the physical wireless access point executes one or more virtual wireless access points that share physical resources of the physical wireless access point; and

the active virtual wireless access point identifies the wireless network using a service set identifier and secures the wireless network using a passcode; and

improving, in response to receiving the request, the security of the wireless network by:

configuring, at the physical wireless access point, a substitute virtual wireless access point to service the wireless network, wherein configuring the substitute virtual wireless access point to service the wireless network comprises at least one of:

configuring the substitute virtual wireless access point to identify the wireless network using a substitute service set identifier; and

configuring the substitute virtual wireless access point to secure the wireless network using a substitute passcode;

transmitting a notification to the client device that instructs the client device to connect to the wireless network via the substitute virtual wireless access point, wherein the notification comprises at least one of:

the substitute service set identifier;

the substitute passcode;

connecting, at the physical wireless access point, the client device to the wireless network via the substitute virtual wireless access point; and

disabling the active virtual wireless access point.

2. The computer-implemented method of claim 1 , wherein configuring the substitute virtual wireless access point to service the wireless network comprises:

configuring the substitute virtual wireless access point to identify the wireless network using the substitute service set identifier instead of the service set identifier;

configuring the substitute virtual wireless access point to secure the wireless network using the substitute passcode instead of the passcode.

3. The computer-implemented method of claim 1 , wherein configuring the substitute virtual wireless access point to service the wireless network comprises:

configuring the substitute virtual wireless access point to identify the wireless network using the substitute service set identifier instead of the service set identifier;

configuring the substitute virtual wireless access point to secure the wireless network using the passcode.

4. The computer-implemented method of claim 1 , wherein configuring the substitute virtual wireless access point to service the wireless network comprises:

configuring the substitute virtual wireless access point to identify the wireless network using the service set identifier;

configuring the substitute virtual wireless access point to secure the wireless network using the substitute passcode instead of the passcode.

5. The computer-implemented method of claim 1 , further comprising automatically initiating the request to improve the security of the wireless network in response to detecting abnormal behavior on the wireless network.

6. The computer-implemented method of claim 1 , further comprising automatically initiating the request to improve the security of the wireless network in response to determining that a predetermined amount of time has passed since the active virtual wireless access point was configured to identify the wireless network using the service set identifier.

7. The computer-implemented method of claim 1 , further comprising automatically initiating the request to improve the security of the wireless network in response to determining that a predetermined amount of time has passed since the active virtual wireless access point was configured to secure the wireless network using the passcode.

8. The computer-implemented method of claim 1 , wherein:

the client device is connected to the wireless network when the notification is transmitted to the client device;

transmitting the notification to the client device comprises transmitting, via the active virtual wireless access point, the notification to the client device.

9. The computer-implemented method of claim 8 , wherein the active virtual wireless access point is disabled after the client device is connected to the substitute virtual wireless access point.

10. The computer-implemented method of claim 1 , wherein transmitting the notification to the client device comprises transmitting, via the Internet, the notification to the client device.

11. The computer-implemented method of claim 10 , wherein the active virtual wireless access point is disabled before the client device is connected to the substitute virtual wireless access point.

12. The computer-implemented method of claim 1 , wherein configuring the substitute virtual wireless access point to service the wireless network comprises configuring the substitute virtual wireless access point to not broadcast the substitute service set identifier in an unencrypted state.

13. A system for securing wireless networks, the system comprising:

a receiving module, stored in memory, that receives, at a physical wireless access point, a request to improve the security of a wireless network that comprises at least one client device and that is serviced by an active virtual wireless access point running on the physical wireless access point, wherein:

the physical wireless access point executes one or more virtual wireless access points that share physical resources of the physical wireless access point; and

the active virtual wireless access point identifies the wireless network using a service set identifier and secures the wireless network using a passcode;

a configuring module, stored in memory, that improves, in response to the request, the security of the wireless network by configuring, at the physical wireless access point, a substitute virtual wireless access point to service the wireless network, wherein configuring the substitute virtual wireless access point to service the wireless network comprises at least one of:

configuring the substitute virtual wireless access point to identify the wireless network using a substitute service set identifier; and

configuring the substitute virtual wireless access point to secure the wireless network using a substitute passcode;

a transmitting module, stored in memory, that transmits a notification to the client device that instructs the client device to connect to the wireless network via the substitute virtual wireless access point, wherein the notification comprises at least one of:

the substitute service set identifier;

the substitute passcode;

a connecting module, stored in memory, that connects, at the physical wireless access point, the client device to the wireless network via the substitute virtual wireless access point;

a disabling module, stored in memory, that disables the active virtual wireless access point; and

at least one hardware processor that executes the receiving module, the configuring module, the transmitting module, the connecting module, and the disabling module.

14. The system of claim 13 , wherein the configuring module configures the substitute virtual wireless access point to service the wireless network by:

configuring the substitute virtual wireless access point to identify the wireless network using the substitute service set identifier instead of the service set identifier;

configuring the substitute virtual wireless access point to secure the wireless network using the substitute passcode instead of the passcode.

15. The system of claim 13 , wherein the configuring module configures the substitute virtual wireless access point to service the wireless network by:

configuring the substitute virtual wireless access point to identify the wireless network using the substitute service set identifier instead of the service set identifier;

configuring the substitute virtual wireless access point to secure the wireless network using the passcode.

16. The system of claim 13 , wherein the configuring module configures the substitute virtual wireless access point to service the wireless network by:

configuring the substitute virtual wireless access point to identify the wireless network using the service set identifier;

configuring the substitute virtual wireless access point to secure the wireless network using the substitute passcode instead of the passcode.

17. The system of claim 13 , wherein the receiving module receives the request to improve the security of the wireless network by detecting abnormal behavior on the wireless network.

18. The system of claim 13 , wherein the receiving module receives the request to improve the security of the wireless network by determining that a predetermined amount of time has passed since the active virtual wireless access point was configured to identify the wireless network using the service set identifier.

19. The system of claim 13 , wherein the receiving module receives the request to improve the security of the wireless network by determining that a predetermined amount of time has passed since the active virtual wireless access point was configured to secure the wireless network using the passcode.

20. A non-transitory computer-readable medium comprising one or more computer-executable instructions that, when executed by at least one physical processor of a computing device, cause the computing device to:

receive, at a physical wireless access point, a request to improve the security of a wireless network that comprises at least one client device and that is serviced by an active virtual wireless access point running on the physical wireless access point, wherein:

the physical wireless access point executes one or more virtual wireless access points that share physical resources of the physical wireless access point; and

the active virtual wireless access point identifies the wireless network using a service set identifier and secures the wireless network using a passcode; and

improve, in response to receiving the request, the security of the wireless network by:

configuring, at the physical wireless access point, a substitute virtual wireless access point to service the wireless network, wherein configuring the substitute virtual wireless access point to service the wireless network comprises at least one of:

configuring the substitute virtual wireless access point to identify the wireless network using a substitute service set identifier; and

configuring the substitute virtual wireless access point to secure the wireless network using a substitute passcode;

transmitting a notification to the client device that instructs the client device to connect to the wireless network via the substitute virtual wireless access point, wherein the notification comprises at least one of:

the substitute service set identifier;

the substitute passcode;

connecting, at the physical wireless access point, the client device to the wireless network via the substitute virtual wireless access point; and

disabling the active virtual wireless access point.

Assignments (6)
CHANGE OF NAME Recorded Feb 6, 2023
From: NORTONLIFELOCK INC.
To: GEN DIGITAL INC.
Reel/Frame 062714/0605 →
NOTICE OF SUCCESSION OF AGENCY (REEL 050926 / FRAME 0560) Recorded Sep 13, 2022
From: JPMORGAN CHASE BANK, N.A.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 061422/0371 →
SECURITY AGREEMENT Recorded Sep 13, 2022
From: NORTONLIFELOCK INC.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 062220/0001 →
CHANGE OF NAME Recorded Feb 14, 2020
From: SYMANTEC CORPORATION
To: NORTONLIFELOCK INC.
Reel/Frame 051935/0228 →
SECURITY AGREEMENT Recorded Nov 4, 2019
From: SYMANTEC CORPORATION; BLUE COAT LLC; LIFELOCK, INC,; SYMANTEC OPERATING CORPORATION
To: JPMORGAN, N.A.
Reel/Frame 050926/0560 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 10, 2015
From: LU, JIN
To: SYMANTEC CORPORATION
Reel/Frame 036527/0017 →