IP Library Granted Patent US 10,425,392
Granted Patent B2
US 10,425,392 · App. 15/228,024 · Granted Sep 24, 2019

Managing a device cloud

Inventors: Eran Tal (San Jose, CA); Martin Rehwald (Mountain View, CA); Francislav Penov (Kirkland, WA); Siyin Yang (Mercer Island, WA); Damian Kowalewski (Sunnyvale, CA); Georgiy Yakovlev (Pacifica, CA); Anupma Chhabra (Fremont, CA); Zachary Chee-Ping Lawrence (College Park, MD); Rizwan Ahmad (Menlo Park, CA); Dung Nguyen Tien (Newport News, VA); Angelica Estefania Escareno (San Francisco, CA); Aidymar Bigio (Hillsborough, CA)
Assignee: Facebook, Inc.
H04L63/062G06F1/32G06Q10/10G06Q50/01H04L41/0886H04L63/10H04W12/003H04W12/08H04W4/80H04W12/06H04W84/12H04W88/16
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,425,392
App. No.
15/228,024
Granted
Sep 24, 2019
Kind
B2
Abstract

Particular embodiments of a gateway computing device provide a provisioning service for access credentials to a restricted network, wherein the provisioning service is accessible by an open network. A messaging protocol for the open network may only recognize messages relating to one of a set of services provided by the gateway computing device, including the provisioning service. The gateway computing device may receive, from a client device, a request to connect to the restricted network, wherein the request was sent using the open network. Upon determining whether the client device is authorized to access the restricted network, the gateway computing device may send a response to the client device using the open network.

Claims (60)

1. A gateway computing device comprising one or more processors and a memory coupled to the processors comprising instructions executable by the processors, the processors being operable when executing the instructions to:

provide a provisioning service for access credentials to a restricted network, wherein the provisioning service is accessible by an open network, wherein a messaging protocol for the open network is designed to limit power usage by devices sending or receiving messages conforming to the messaging protocol;

receive, from a client device, a request to connect to the restricted network, wherein the request was sent using the open network;

authorize the client device to access the restricted network;

send, to the client device, a response to the request to connect to the restricted network, wherein the response comprising the access credentials for accessing the restricted network is segmented into small-size data packets and sent over a restricted micro packet radio frequency data protocol, wherein each small-size data packet comprises a packet header including sequencing information, and wherein the sequencing information of each of the small-size data packets is used to re-assemble the segmented response comprising the access credentials at the client device; and

receive, from the client device, an acknowledgement of each of the small-size data packets that were sent over the restricted micro packet radio frequency data protocol.

2. The gateway computing device of claim 1 , wherein the processors are further operable when executing the instructions to authorize the client device to:

prior to receiving the request to connect to the restricted network, receive authorization information regarding one or more pre-authorized client devices;

upon receiving the request to connect to the restricted network, determine whether the client device is one of the one or more pre-authorized client devices; and

if the client device is one of the one or more pre-authorized client devices, send the access credentials to the client device;

else send a message regarding lack of authorization to the client device.

3. The gateway computing device of claim 1 , wherein the processors are further operable when executing the instructions to authorize the client device to:

send, to a backend system, a request for authorization validation, wherein the request comprises identifying information for the client device; and

based on a response received from the backend system, determine whether the client device is authorized to connect to the restricted network; and

if the client device is authorized, send the access credentials to the client device;

else send a message regarding lack of authorization to the client device.

4. The gateway computing device of claim 3 , wherein the gateway computing device is associated with a first user of a social-networking system, wherein either the request for authorization validation comprises identifying information for a second user of the social-networking system or the client device is associated with the second user, and wherein the response to the request for authorization validation is based on a social-networking relationship between the first user and the second user.

5. The gateway computing device of claim 4 , wherein the gateway computing device is associated with a first user of a social-networking system, wherein the client device is not yet associated with any user of the social-networking system, wherein the client device has been authorized to connect to the restricted network, and wherein the processors are further operable when executing the instructions to:

send, to the client device, context information associated with the first user, wherein the context information is sent using the restricted network.

6. The gateway computing device of claim 1 , wherein the messaging protocol for the open network only recognizes messages relating to one of a set of services provided by the gateway computing device, and wherein the set of services includes the provisioning service.

7. A method comprising:

by a gateway computing device, providing a provisioning service for access credentials to a restricted network, wherein the provisioning service is accessible by an open network, wherein a messaging protocol for the open network is designed to limit power usage by devices sending or receiving messages conforming to the messaging protocol;

by the gateway computing device, receiving, from a client device, a request to connect to the restricted network, wherein the request was sent using the open network;

by the gateway computing device, authorizing the client device to access the restricted network;

by the gateway computing device, sending, to the client device, a response to the request to connect to the restricted network, wherein the response comprising the access credentials for accessing the restricted network is segmented into small-size data packets and sent over a restricted micro packet radio frequency data protocol, wherein each small-size data packet comprises a packet header including sequencing information, and wherein the sequencing information of each of the small-size data packets is used to re-assemble the segmented response comprising the access credentials at the client device; and

by the gateway computing device, receiving, from the client device, an acknowledgement of each of the small-size data packets that were sent over the restricted micro packet radio frequency data protocol.

8. The method of claim 7 , wherein the authorizing the client device further comprises:

prior to receiving the request to connect to the restricted network, receiving authorization information regarding one or more pre-authorized client devices;

upon receiving the request to connect to the restricted network, determining whether the client device is one of the one or more pre-authorized client devices; and

if the client device is one of the one or more pre-authorized client devices, sending the access credentials to the client device;

else sending a message regarding lack of authorization to the client device.

9. The method of claim 7 , wherein the authorizing the client device further comprises:

sending, to a backend system, a request for authorization validation, wherein the request comprises identifying information for the client device; and

based on a response received from the backend system, determining whether the client device is authorized to connect to the restricted network; and

if the client device is authorized, sending the access credentials to the client device;

else sending a message regarding lack of authorization to the client device.

10. The method of claim 9 , wherein the gateway computing device is associated with a first user of a social-networking system, wherein either the request for authorization validation comprises identifying information for a second user of the social-networking system or the client device is associated with the second user, and wherein the response to the request for authorization validation is based on a social-networking relationship between the first user and the second user.

11. The method of claim 10 , wherein the gateway computing device is associated with a first user of a social-networking system, wherein the client device is not yet associated with any user of the social-networking system, and wherein the client device has been authorized to connect to the restricted network, further comprising:

sending, to the client device, context information associated with the first user, wherein the context information is sent using the restricted network.

12. The method of claim 7 , wherein the messaging protocol for the open network only recognizes messages relating to one of a set of services provided by the gateway computing device, and wherein the set of services includes the provisioning service.

13. One or more computer-readable non-transitory storage media embodying software that is operable when executed by one or more processors of a gateway computing device to:

provide a provisioning service for access credentials to a restricted network, wherein the provisioning service is accessible by an open network, wherein a messaging protocol for the open network is designed to limit power usage by devices sending or receiving messages conforming to the messaging protocol;

receive, from a client device, a request to connect to the restricted network, wherein the request was sent using the open network;

authorize the client device to access the restricted network;

send, to the client device, a response to the request to connect to the restricted network, wherein the response comprising the access credentials for accessing the restricted network is segmented into small-size data packets and sent over a restricted micro packet radio frequency data protocol, wherein each small-size data packet comprises a packet header including sequencing information, and wherein the sequencing information of each of the small-size data packets is used to re-assemble the segmented response comprising the access credentials at the client device; and

receive, from the client device, an acknowledgement of each of the small-size data packets that were sent over the restricted micro packet radio frequency data protocol.

14. The media of claim 13 , wherein the processors are further operable when executing the instructions to authorize the client device to:

prior to receiving the request to connect to the restricted network, receive authorization information regarding one or more pre-authorized client devices;

upon receiving the request to connect to the restricted network, determine whether the client device is one of the one or more pre-authorized client devices; and

if the client device is one of the one or more pre-authorized client devices, send the access credentials to the client device;

else send a message regarding lack of authorization to the client device.

15. The media of claim 13 , wherein the processors are further operable when executing the instructions to authorize the client device to:

send, to a backend system, a request for authorization validation, wherein the request comprises identifying information for the client device; and

based on a response received from the backend system, determine whether the client device is authorized to connect to the restricted network; and

if the client device is authorized, send the access credentials to the client device;

else send a message regarding lack of authorization to the client device.

16. The media of claim 15 , wherein the gateway computing device is associated with a first user of a social-networking system, wherein either the request for authorization validation comprises identifying information for a second user of the social-networking system or the client device is associated with the second user, and wherein the response to the request for authorization validation is based on a social-networking relationship between the first user and the second user.

17. The media of claim 16 , wherein the gateway computing device is associated with a first user of a social-networking system, wherein the client device is not yet associated with any user of the social-networking system, wherein the client device has been authorized to connect to the restricted network, and wherein the processors are further operable when executing the instructions to:

send, to the client device, context information associated with the first user, wherein the context information is sent using the restricted network.

18. The media of claim 13 , wherein the messaging protocol for the open network only recognizes messages relating to one of a set of services provided by the gateway computing device, and wherein the set of services includes the provisioning service.

Assignments (4)
CHANGE OF NAME Recorded Nov 19, 2021
From: FACEBOOK, INC.
To: META PLATFORMS, INC.
Reel/Frame 058214/0351 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 27, 2017
From: TIEN, DUNG NGUYEN
To: FACEBOOK, INC.
Reel/Frame 043716/0479 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 19, 2017
From: LAWRENCE, ZACHARY CHEE-PING
To: FACEBOOK, INC.
Reel/Frame 043632/0188 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 20, 2016
From: TAL, ERAN; REHWALD, MARTIN; PENOV, FRANCISLAV; YANG, SIYIN; KOWALEWSKI, DAMIAN; YAKOVLEV, GEORGIY; CHHABRA, ANUPMA; AHMAD, RIZWAN; ESCARENO, ANGELICA ESTEFANIA; BIGIO, AIDYMAR
To: FACEBOOK, INC.
Reel/Frame 040080/0767 →
Cited By (2)
US 12,238,101 US 12,638,675