IP Library Granted Patent US 10,389,730
Granted Patent B2
US 10,389,730 · App. 15/145,270 · Granted Aug 20, 2019

Visitor access management

Inventor: Atul Prabhu (Bangalore, IN)
Assignee: Avaya Inc.
H04L63/107G07C9/00039G07C9/00103G07C9/00134H04L63/0838H04L63/20H04L67/24H04W12/06G07C9/00015
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,389,730
App. No.
15/145,270
Granted
Aug 20, 2019
Kind
B2
Abstract

Methods, systems and computer readable media for managing access of visitors to a facility as described herein can provide a seamless process by which a visitor of an organization may be granted access not only to the physical facility but also automatically granted network access (e.g., granted access to an enterprise network) with limited or no external human touch points and without compromising security.

Claims (70)

1. A method comprising:

providing an electronic invitation communication to a visitor device, the electronic invitation communication including a computer readable indicium;

determining physical presence of the visitor device by sensing, at a computer readable indicium sensor system, the computer readable indicium presented by the visitor device;

validating the computer readable indicium;

in response to determination that the computer readable indicium is valid, transmitting an authentication token to the visitor device;

receiving, at a visitor input device, a user input including the authentication token;

in response to determination that the authentication token in the received user input is valid, creating a visitor account by utilizing visitor information associated with the computer readable indicium, wherein the visitor information comprises one or more of visitor name, authentication information, and visitor email to permit the visitor device to automatically connect to a computer network without visitor intervention;

providing a network connection from the computer network to the visitor device;

causing a captive portal landing page that corresponds to a captive portal associated with the computer network to be displayed on the visitor device;

automatically searching for an electronically stored version of the computer readable indicium on the visitor device, wherein the automatically searching is in response to loading and displaying of the captive portal landing page on the visitor device;

in response to determination that the electronically stored version of the computer readable indicium is found on the visitor device, determining, using the captive portal, the visitor information based on the electronically stored version of the computer readable indicium;

performing a login process, using the visitor information, from the captive portal to a policy server to login the visitor device to the computer network; and

upon successfully performing the login process, granting the visitor device access to the computer network upon successful matching of the visitor information associated with the visitor account and based on an authentication policy evaluation.

2. The method of claim 1 , wherein the computer readable indicium includes one of a quick response (QR) code, a two-dimensional barcode, and a three-dimensional barcode.

3. The method of claim 1 , wherein validating the computer readable indicium includes determining that the computer readable indicium is being sensed at a date and time within a period of validity indicated in the electronic invitation communication.

4. The method of claim 1 , wherein the authentication token includes a one time password.

5. The method of claim 1 , further comprising:

when the electronically stored version of the computer readable indicium is not found on the visitor device, receiving a manually provided indication of a location of the electronically stored version of the computer readable indicium on the visitor device.

6. The method of claim 1 , further comprising:

providing a second level authentication request to the visitor device;

receiving second level authentication information from the visitor device; and

granting access to the computer network based on the second level authentication.

7. The method of claim 1 , wherein the captive portal is displayed automatically or in response to a user attempt to access the computer network.

8. The method of claim 1 , wherein causing the captive portal landing page that corresponds to the captive portal associated with the computer network to be displayed comprises causing the captive portal landing page that corresponds to the captive portal associated with the computer network to be displayed via a browser on the visitor device.

9. A system comprising:

one or more hardware processors; and

a non-transitory computer readable medium, coupled to the one or more hardware processors, the non-transitory computer readable medium having stored thereon on software instructions that, when executed by the one or more hardware processors, cause the one or more hardware processors to perform operations including:

providing an electronic invitation communication to a visitor device, the electronic invitation communication including a computer readable indicium;

determining physical presence of the visitor device by sensing, at a computer readable indicium sensor system, the computer readable indicium presented by the visitor device;

validating the computer readable indicium;

in response to determination that the computer readable indicium is valid, transmitting an authentication token to the visitor device;

receiving, at a visitor input device, a user input including the authentication token;

in response to determination that the authentication token in the received user input is valid, creating a visitor account by utilizing visitor information associated with the computer readable indicium, wherein the visitor information comprises one or more of visitor name, authentication information, and visitor email to permit the visitor device to automatically connect to a computer network without visitor intervention;

providing a network connection from the computer network to the visitor device;

causing a captive portal landing page that corresponds to a captive portal associated with the computer network to be displayed on the visitor device;

automatically searching for an electronically stored version of the computer readable indicium on the visitor device, wherein the automatically searching is in response to loading and displaying of the captive portal landing page on the visitor device;

in response to determination that the electronically stored version of the computer readable indicium is found on the visitor device, determining, using the captive portal, the visitor information based on the electronically stored version of the computer readable indicium;

performing a login process, using the visitor information, from the captive portal to a policy server to login the visitor device to the computer network; and

upon successfully performing the login process, granting the visitor device access to the computer network upon successful matching of the visitor information associated with the visitor account and based on an authentication policy evaluation.

10. The system of claim 9 , wherein the computer readable indicium includes one of a quick response (QR) code, a two-dimensional barcode, and a three-dimensional barcode.

11. The system of claim 9 , wherein validating the computer readable indicium includes determining that the computer readable indicium is being sensed at a date and time within a period of validity indicated in the electronic invitation communication.

12. The system of claim 9 , wherein the authentication token includes a one time password.

13. The system of claim 9 , wherein the operations further include:

when the electronically stored version of the computer readable indicium is not found on the visitor device, receiving a manually provided indication of a location of the electronically stored version of the computer readable indicium on the visitor device.

14. The system of claim 9 , wherein the operations further include:

providing a second level authentication request to the visitor device;

receiving second level authentication information from the visitor device; and

granting access to the computer network based on the second level authentication.

15. A non-transitory computer readable medium having stored thereon software instructions that, when executed by one or more processors, cause the one or more processors to perform operations including:

providing an electronic invitation communication to a visitor device, the electronic invitation communication including a computer readable indicium;

determining physical presence of the visitor device by sensing, at a computer readable indicium sensor system, the computer readable indicium presented by the visitor device;

validating the computer readable indicium;

in response to determination that the computer readable indicium is valid, transmitting an authentication token to the visitor device;

receiving, at a visitor input device, a user input including the authentication token;

in response to determination that the authentication token in the received user input is valid, creating a visitor account by utilizing visitor information associated with the computer readable indicium, wherein the visitor information comprises one or more of visitor name, authentication information, and visitor email to permit the visitor device to automatically connect to a computer network without visitor intervention;

providing a network connection from the computer network to the visitor device;

causing a captive portal landing page that corresponds to a captive portal associated with the computer network to be displayed on the visitor device;

automatically searching for an electronically stored version of the computer readable indicium on the visitor device, wherein the automatically searching is in response to loading and displaying of the captive portal landing page on the visitor device;

in response to determination that the electronically stored version of the computer readable indicium is found on the visitor device, determining, using the captive portal, the visitor information based on the electronically stored version of the computer readable indicium;

performing a login process, using the visitor information, from the captive portal to a policy server to login the visitor device to the computer network; and

upon successfully performing the login process, granting the visitor device access to the computer network upon successful matching of the visitor information associated with the visitor account and based on an authentication policy evaluation.

16. The non-transitory computer readable medium of claim 15 , wherein the computer readable indicium includes one of a quick response (QR) code, a two-dimensional barcode, and a three-dimensional barcode.

17. The non-transitory computer readable medium of claim 15 , wherein validating the computer readable indicium includes determining that the computer readable indicium is being sensed at a date and time within a period of validity indicated in the electronic invitation communication.

18. The non-transitory computer readable medium of claim 15 , wherein the authentication token includes a one time password.

19. The non-transitory computer readable medium of claim 15 , wherein the operations further include:

when the electronically stored version of the computer readable indicium is not found on the visitor device, receiving a manually provided indication of a location of the electronically stored version of the computer readable indicium on the visitor device.

20. The non-transitory computer readable medium of claim 15 , wherein the operations further include:

providing a second level authentication request to the visitor device;

receiving second level authentication information from the visitor device; and

granting access to the computer network based on the second level authentication.

Assignments (14)
(SECURITY INTEREST) GRANTOR'S NAME CHANGE Recorded Sep 21, 2023
From: AVAYA INC.
To: AVAYA LLC
Reel/Frame 065019/0231 →
RELEASE OF SECURITY INTEREST IN PATENTS (REEL/FRAME 53955/0436) Recorded May 18, 2023
From: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
To: AVAYA MANAGEMENT L.P.; AVAYA INC.; INTELLISIST, INC.; AVAYA INTEGRATED CABINET SOLUTIONS LLC
Reel/Frame 063705/0023 →
RELEASE OF SECURITY INTEREST IN PATENTS (REEL/FRAME 61087/0386) Recorded May 18, 2023
From: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
To: AVAYA MANAGEMENT L.P.; AVAYA INC.; INTELLISIST, INC.; AVAYA INTEGRATED CABINET SOLUTIONS LLC
Reel/Frame 063690/0359 →
RELEASE OF SECURITY INTEREST IN PATENTS (REEL/FRAME 045034/0001) Recorded May 18, 2023
From: GOLDMAN SACHS BANK USA., AS COLLATERAL AGENT
To: AVAYA INC.; INTELLISIST, INC.; AVAYA INTEGRATED CABINET SOLUTIONS LLC; OCTEL COMMUNICATIONS LLC; VPNET TECHNOLOGIES, INC.; ZANG, INC. (FORMER NAME OF AVAYA CLOUD INC.); HYPERQUALITY, INC.; HYPERQUALITY II, LLC; CAAS TECHNOLOGIES, LLC; AVAYA MANAGEMENT L.P.
Reel/Frame 063779/0622 →
INTELLECTUAL PROPERTY SECURITY AGREEMENT Recorded May 4, 2023
From: AVAYA INC.; AVAYA MANAGEMENT L.P.; INTELLISIST, INC.
To: CITIBANK, N.A., AS COLLATERAL AGENT
Reel/Frame 063542/0662 →
INTELLECTUAL PROPERTY SECURITY AGREEMENT Recorded May 3, 2023
From: AVAYA MANAGEMENT L.P.; AVAYA INC.; INTELLISIST, INC.; KNOAHSOFT INC.
To: WILMINGTON SAVINGS FUND SOCIETY, FSB [COLLATERAL AGENT]
Reel/Frame 063742/0001 →
RELEASE OF SECURITY INTEREST IN PATENTS AT REEL 45124/FRAME 0026 Recorded Apr 26, 2023
From: CITIBANK, N.A., AS COLLATERAL AGENT
To: AVAYA HOLDINGS CORP.; AVAYA INC.; AVAYA MANAGEMENT L.P.; AVAYA INTEGRATED CABINET SOLUTIONS LLC
Reel/Frame 063457/0001 →
INTELLECTUAL PROPERTY SECURITY AGREEMENT Recorded Aug 5, 2022
From: AVAYA INC.; INTELLISIST, INC.; AVAYA MANAGEMENT L.P.; AVAYA CABINET SOLUTIONS LLC
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS COLLATERAL AGENT
Reel/Frame 061087/0386 →
SECURITY INTEREST Recorded Sep 25, 2020
From: AVAYA INC.; AVAYA MANAGEMENT L.P.; INTELLISIST, INC.; AVAYA INTEGRATED CABINET SOLUTIONS LLC
To: WILMINGTON TRUST, NATIONAL ASSOCIATION
Reel/Frame 053955/0436 →
SECURITY INTEREST Recorded Jan 23, 2018
From: AVAYA INC.; AVAYA INTEGRATED CABINET SOLUTIONS LLC; OCTEL COMMUNICATIONS LLC; VPNET TECHNOLOGIES, INC.; ZANG, INC.
To: CITIBANK, N.A., AS COLLATERAL AGENT
Reel/Frame 045124/0026 →
SECURITY INTEREST Recorded Jan 10, 2018
From: AVAYA INC.; AVAYA INTEGRATED CABINET SOLUTIONS LLC; OCTEL COMMUNICATIONS LLC; VPNET TECHNOLOGIES, INC.; ZANG, INC.
To: GOLDMAN SACHS BANK USA, AS COLLATERAL AGENT
Reel/Frame 045034/0001 →
BANKRUPTCY COURT ORDER RELEASING ALL LIENS INCLUDING THE SECURITY INTEREST RECORDED AT REEL/FRAME 041576/0001 Recorded Dec 15, 2017
From: CITIBANK, N.A.
To: AVAYA INC.; AVAYA INTEGRATED CABINET SOLUTIONS INC.; OCTEL COMMUNICATIONS LLC (FORMERLY KNOWN AS OCTEL COMMUNICATIONS CORPORATION); VPNET TECHNOLOGIES, INC.
Reel/Frame 044893/0531 →
SECURITY INTEREST Recorded Jan 27, 2017
From: AVAYA INC.; AVAYA INTEGRATED CABINET SOLUTIONS INC.; OCTEL COMMUNICATIONS CORPORATION; VPNET TECHNOLOGIES, INC.
To: CITIBANK, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 041576/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 3, 2016
From: PRABHU, ATUL
To: AVAYA INC.
Reel/Frame 038446/0424 →
Continuity (1)
Related Publication 20170324751A1 · Nov 9, 2017