IP Library › Granted Patent US 10,439,820
Granted Patent B2
US 10,439,820 · App. 15/627,300 · Granted Oct 8, 2019

Method and apparatus for secure access to a mobile edge computing gateway device based on a subscriber location fingerprint

Inventors: Will A. Egner (Cedar Park, TX); Liam B. Quinn (Austin, TX)
Assignee: Dell Products, LP
H04L9/3247H04L63/0281H04L63/0428H04L63/06H04L63/08H04L63/0807H04L63/107H04W4/025H04W88/16
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,439,820
App. No.
15/627,300
Filed
Jun 19, 2017
Granted
Oct 8, 2019
Kind
B2
Art Unit
2497
USPC
713/176
Abstract

A method for secure access to a mobile edge computing gateway device based on a subscriber location fingerprint may comprise receiving a request to access the mobile edge computing gateway, a first user credential, and an encrypted token from a requesting user, associating the first user credential with a block chain location fingerprint for the subscribing user, including a plurality of time-stamped records of a plurality of estimated or measured location state variables of the subscribing user and an associated confidence interval representing an accuracy of those variables, decrypting the location fingerprint, receiving a requesting user location measurement, predicting a current location for the subscribing user and an associated current confidence interval based on recent location state variables in the location fingerprint, and allowing the requesting user access to the mobile edge computing gateway when the received requesting user location measurement falls within the value of the current confidence interval.

Claims (69)

1. An information handling system of a mobile edge computing gateway operating a location fingerprint security system comprising:

a memory for storing a plurality of blocks within a block chain of a location fingerprint for a subscribing user, each block including a time-stamped record of a plurality of estimated or measured location state variables of the subscribing user and an associated confidence interval representing an accuracy of the estimated or measured location state variables; and

a processor executing machine readable executable code instructions of the location fingerprint security system to:

receive a request to access the mobile edge computing gateway, a first user credential, and an encrypted token from a requesting user;

associate the first user credential with a block chain location fingerprint for the subscribing user, and decrypt the location fingerprint;

receive a requesting user location measurement;

predict a current location for the subscribing user and an associated current confidence interval based on the estimated or measured location state variables in the location fingerprint associated with the most recent time stamp; and

allow the requesting user access to the mobile edge computing gateway when the received requesting user location measurement falls within the value of the current confidence interval.

2. The information handling system operating a location fingerprint security system of claim 1 further comprising:

the processor executing machine readable executable code instructions of the location fingerprint security system to:

transmit a challenge request to the requesting user for a second user credential if the received requesting user location measurement falls outside the value of the current confidence interval; and

allow access to the mobile edge computing gateway upon receipt of the second user credential affirmatively identifying the requesting user as the subscribing user.

3. The information handling system operating the location fingerprint security system of claim 2 further comprising:

the processor executing machine readable executable code instructions of the location fingerprint security system to disallow access by the requesting user and future requesting users upon receipt of a second user credential failing to identify the requesting user as the subscribing user.

4. The information handling system operating the location fingerprint security system of claim 2 further comprising:

the processor executing code instructions to:

receive a second user credential affirmatively identifying the requesting user as the subscribing user; and

generate an updated block, stamped with the time of receipt of the request to access the mobile edge computing gateway, including the current estimated subscribing user location and current confidence interval, and adding the updated block to the subscribing user's block chain.

5. The information handling system operating the location fingerprint security system of claim 1 , wherein the requesting user location measurement is determined via a global positioning satellite location circuit within a mobile user information handling system in use by the requesting user.

6. The information handling system operating the location fingerprint security system of claim 1 further comprising:

the location fingerprint security system predicting the current location of the subscribing user by applying a Kalman filter to at least one recently time-stamped location fingerprint in the subscribing user's block chain having a confidence interval above a threshold level.

7. The information handling system operating the location fingerprint security system of claim 1 , wherein each block chain location fingerprint data is made available via an encryption key and a secure address location separately provided.

8. A method of securing access to a mobile edge computing gateway based on a location fingerprint comprising:

receiving a request to access the mobile edge computing gateway, a first user credential, and an encrypted token from a requesting user;

associating the first user credential with a block chain location fingerprint for a subscribing user, the block chain including a plurality of blocks, each block including a time-stamped record of a plurality of estimated or measured location state variables of the subscribing user and an associated confidence interval representing an accuracy of the estimated or measured location state variables, and decrypt the location fingerprint;

receiving a requesting user location measurement;

predicting a current location for the subscribing user and an associated current confidence interval based on the estimated or measured location state variables in the location fingerprint associated with the most recent time stamp; and

allowing the requesting user access to the mobile edge computing gateway when the received requesting user location measurement falls within the value of the current confidence interval.

9. The method of securing access to a mobile edge computing gateway based on a location fingerprint of claim 8 , further comprising:

transmitting a challenge request to the requesting user for a second user credential if the received requesting user location measurement falls outside the value of the current confidence interval; and

allowing access to the mobile edge computing gateway upon receipt of the second user credential affirmatively identifying the requesting user as the subscribing user.

10. The method of securing access to a mobile edge computing gateway based on a location fingerprint of claim 9 , further comprising:

disallowing access by the requesting user and future requesting users upon receipt of a second user credential failing to identify the requesting user as the subscribing user.

11. The method of securing access to a mobile edge computing gateway based on a location fingerprint of claim 9 , further comprising:

receiving a second user credential affirmatively identifying the requesting user as the subscribing user; and

generating an updated block, stamped with the time of receipt of the request to access the mobile edge computing gateway, including the current estimated subscribing user location and current confidence interval, and adding the updated block to the subscribing user's block chain.

12. The method of securing access to a mobile edge computing gateway based on a location fingerprint of claim 8 , wherein the requesting user location measurement is determined via a global positioning satellite location circuit within a mobile user information handling system in use by the requesting user.

13. The method of securing access to a mobile edge computing gateway based on a location fingerprint of claim 8 further comprising:

predicting the current location of the subscribing user by applying a Kalman filter to at least one recently time-stamped location fingerprint in the subscribing user's block chain having a confidence interval above a threshold level.

14. The method of securing access to a mobile edge computing gateway based on a location fingerprint of claim 8 wherein each block chain location fingerprint data is made available via an encryption key and a secure address location separately provided.

15. An information handling system of a mobile edge computing gateway and an authentication server operating a location fingerprint security system comprising:

a memory of the authentication server for storing a plurality of blocks within a block chain of a location fingerprint for a subscribing user, each block including a time-stamped record of a plurality of estimated or measured location state variables of the subscribing user and an associated confidence interval representing an accuracy of the estimated or measured location state variables; and

a processor of the authentication server executing machine readable executable code instructions of the location fingerprint security system to:

receive a request to access the mobile edge computing gateway, a first user credential, and an encrypted token from a requesting user via the mobile edge computing gateway;

associate the first user credential with a block chain location fingerprint for the subscribing user, and decrypt the location fingerprint;

predict a current location for the subscribing user and an associated current confidence interval;

determine whether the mobile edge computing gateway services a geographic area including the predicted current location; and

a processor of the mobile edge computing gateway executing code instructions if the authentication server determines the mobile edge computing gateway services the geographic area including the predicted current location to:

receive a requesting user location measurement; and

allow the requesting user access to the mobile edge computing gateway when the received requesting user location measurement falls within the value of the current confidence interval.

16. The information handling system operating a location fingerprint security system of claim 15 further comprising:

the processor of the authentication server executing machine readable executable code instructions of the location fingerprint security system to:

transmit a challenge request to the requesting user for a second user credential if the authentication server determines the mobile edge computing gateway does not service the geographic area including the predicted current location; and

the processor of the mobile edge computing gateway executing code instructions to:

upon receipt of the second user credential affirmatively identifying the requesting user as the subscribing user, request and receive a requesting user location measurement; and

allow access to a second mobile edge computing gateway servicing the area including the predicted current location when the received requesting user location measurement falls within the value of the current confidence interval.

17. The information handling system operating the location fingerprint security system of claim 16 further comprising:

the processor of the authentication server executing machine readable executable code instructions of the location fingerprint security system to disallow access by the requesting user and future requesting users upon receipt of a second user credential failing to identify the requesting user as the subscribing user.

18. The information handling system operating the location fingerprint security system of claim 15 further comprising:

the processor of the mobile edge computing gateway to transmit the received requesting user location measurement to the authentication server; and

the processor of the authentication server executing code instructions to:

determine the received requesting user location measurement falls within the value of the current confidence interval; and

generate an updated block, stamped with the time of receipt of the request to access the mobile edge computing gateway, including the current estimated subscribing user location and current confidence interval, and adding the updated block to the subscribing user's block chain.

19. The information handling system operating a location fingerprint security system of claim 16 further comprising:

the processor of the authentication server executing machine readable executable code instructions of the location fingerprint security system to:

transmit a challenge request to the requesting user via the mobile edge computing gateway for a third user credential if the received requesting user location measurement falls outside the value of the current confidence interval; and

allow access to the mobile edge computing gateway upon receipt of the third user credential affirmatively identifying the requesting user as the subscribing user.

20. The information handling system operating the location fingerprint security system of claim 19 further comprising:

the processor executing machine readable executable code instructions of the location fingerprint security system to disallow access by the requesting user and future requesting users upon receipt of a third user credential failing to identify the requesting user as the subscribing user.

Assignments (8)
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (053546/0001) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL MARKETING L.P. (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO CREDANT TECHNOLOGIES, INC.); DELL INTERNATIONAL L.L.C.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO FORCE10 NETWORKS, INC. AND WYSE TECHNOLOGY L.L.C.); EMC IP HOLDING COMPANY LLC
Reel/Frame 071642/0001 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (043775/0082) Recorded May 20, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC
Reel/Frame 060958/0468 →
RELEASE OF SECURITY INTEREST AT REEL 043772 FRAME 0750 Recorded Nov 2, 2021
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC
Reel/Frame 058298/0606 →
SECURITY AGREEMENT Recorded Apr 22, 2020
From: CREDANT TECHNOLOGIES INC.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 053546/0001 →
SECURITY AGREEMENT Recorded Mar 21, 2019
From: CREDANT TECHNOLOGIES, INC.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 049452/0223 →
PATENT SECURITY AGREEMENT (CREDIT) Recorded Sep 6, 2017
From: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 043772/0750 →
PATENT SECURITY AGREEMENT (NOTES) Recorded Sep 6, 2017
From: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
Reel/Frame 043775/0082 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 19, 2017
From: EGNER, WILL A.; QUINN, LIAM B.
To: DELL PRODUCTS, LP
Reel/Frame 042752/0089 →
Continuity (1)
Related Publication 20180367314A1 · Dec 20, 2018
Cited By (3)
US 12,267,729 US 12,328,385 US 12,483,425