IP Library Granted Patent US 10,798,125
Granted Patent B2
US 10,798,125 · App. 15/791,287 · Granted Oct 6, 2020

System and method for network entity assisted honeypot access point detection

Inventors: Ajay Kumar Gupta (Pune, IN); Vishal Vasant Oak (Bangalore, IN); Parwiz Shekalim (Navi Mumbai, IN); Tareq Amin (Navi Mumbai, IN)
Assignee: RELIANCE JIO INFOCOMM LIMITED
H04L63/1466H04L63/0876H04L63/1491H04W12/06H04W12/1202H04L63/101
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,798,125
App. No.
15/791,287
Granted
Oct 6, 2020
Kind
B2
Abstract

Embodiments of the present invention relate to a network entity assisted system and method for detection of Honeypot access point. More particularly, the embodiments may disclose a method for authenticating the access point based on a request from a user equipment; the method comprising: comparing an AP identifier with a pre-configured list of AP identifiers to generate one of a positive response and a negative response; transmitting one of a denial response and a verification request; receiving one of a positive verification response and a negative verification response from the authorized AP; transmitting one of a positive authentication response and negative authentication response to maintain the connection with the authorized AP and release the connection with Honeypot AP, respectively.

Claims (41)

1. A method for authenticating an access point, the method being performed by a network entity, the method comprising:

receiving an authentication request for authenticating an access point (AP), from a user equipment, wherein

the user equipment is in a connected state with said access point,

the access point is, one of an authorized AP and a honeypot AP, connected with the user equipment,

the authentication request comprises a UE identifier, an AP identifier, and at least one parameter, and

the UE identifier corresponds to the user equipment and the AP identifier corresponds to one of the authorized AP and the honeypot AP;

comparing the AP identifier with a pre-configured list of AP identifiers to generate one of a positive response and a negative response;

transmitting one of a denial response and a verification request, wherein

the denial response, to release/suspend the connection with the honeypot AP, is transmitted to the user equipment in an event the negative response is generated, and

the verification request is transmitted to the authorized AP in an event the positive response is generated;

receiving one of a positive verification response and a negative verification response from the authorized AP;

transmitting one of a positive authentication response and a negative authentication response to the user equipment, wherein

the positive authentication response is transmitted, to maintain the connection with the authorized AP, in response to the positive verification response received from the authorized AP, and

the negative authentication response is transmitted, to release/suspend the connection with the honeypot AP, in response to the negative verification response received from the authorized AP.

2. The method as claimed in claim 1 , wherein the authorized AP maintains the UE identifier and the at least one parameter in an event the authorized AP is connected with the user equipment.

3. The method as claimed in claim 1 , wherein the at least one parameter comprises at least one of a probe request identifier, an authentication request identifier, an association request identifier and a temporary user equipment identifier.

4. The method as claimed in claim 1 , wherein the positive response is generated in an event the AP identifier matches with the pre-configured list of AP identifiers.

5. The method as claimed in claim 1 , wherein the negative response is generated in an event the AP identifier varies with the pre-configured list of AP identifiers.

6. The method as claimed in claim 1 , wherein the verification request comprises the UE identifier, the AP identifier, and the at least one parameter.

7. The method as claimed in claim 1 , wherein the positive verification response is received in an event the UE identifier and the at least one parameter maintained at the authorized AP matches with the UE identifier and the at least one parameter received with the verification request.

8. The method as claimed in claim 1 , wherein the negative verification response is received in an event the UE identifier and the at least one parameter maintained at the authorized AP varies with the UE identifier and the at least one parameter received with the verification request.

9. A network entity for authenticating an access point, the network entity comprising:

a cellular radio comprising a receiver module configured to:

receive an authentication request for authenticating an access point (AP) from a user equipment, wherein

the user equipment is in a connected state with said access point,

the access point is, one of an authorized AP and a honeypot AP, connected with the user equipment,

the authentication request comprises a UE identifier, an AP identifier, and at least one parameter, and

the UE identifier corresponds to the user equipment and the AP identifier corresponds to one of the authorized AP and the honeypot AP;

a processor comprising a collection of electronic circuits, the processor configured to compare the AP identifier with a pre-configured list of AP identifiers to generate one of a positive response and a negative response;

a memory circuit, configured to store the pre-configured list of AP identifiers;

the cellular radio comprising a transmitter module configured to:

transmit one of a denial response to the user equipment and a verification request to the authorized AP, wherein

the denial response is transmitted, to release/suspend the connection with the honeypot AP, in an event the negative response is generated, and

the verification request is transmitted in an event the positive response is generated;

the receiver module further configured to receive a positive verification response and a negative verification response from the authorized AP; and

the transmitter module further configured to transmit one of a positive authentication response and a negative authentication response to the user equipment, wherein

the positive authentication response is transmitted to maintain the connection with the authorized AP, and

the negative authentication response is transmitted to release/suspend the connection with the honeypot AP.

10. The network entity as claimed in claim 9 , wherein the processor further configured to generate one of the positive authentication response and the negative authentication response.

11. The network entity as claimed in claim 10 , wherein the positive authentication response is generated in response to the positive verification response received from the authorized AP.

12. The network entity as claimed in claim 10 , wherein the negative authentication response in response to the negative verification response received from the authorized AP.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 28, 2022
From: RELIANCE JIO INFOCOMM LIMITED
To: JIO PLATFORMS LIMITED
Reel/Frame 060448/0533 →
NUNC PRO TUNC ASSIGNMENT Recorded Nov 22, 2017
From: GUPTA, AJAY KUMAR; OAK, VISHAL VASANT; SHEKALIM, PARWIZ; AMIN, TAREQ
To: RELIANCE JIO INFOCOMM LIMITED
Reel/Frame 044203/0006 →
Priority Claims (1)
IN 201621036954 · Oct 27, 2016 · national
Continuity (1)
Related Publication 20180124111A1 · May 3, 2018