IP Library Patent Application 15936083
Patent Application
App. No. 15/936,083

On Premises Peer to Peer Credential Validation System and Method of Operation

Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US None
App. No.
15/936,083
Abstract

For each area of a service subscriber, an occupancy control server maintains an access control list and a census of authorized occupants within the area. The server receives a query from a mobile security device, checks for access control permission, and transmits an updated census of authorized occupants to each authorized occupant in the area. Each occupant transmits its identification indicia and responds to requests. Each occupant demands an encrypted credential from a responding mobile security device not found in the most recently updated list and relays it to the occupancy control server for validation.

Claims (51)

1 . A method at a mobile security device comprising a process for searching for new devices in proximity, and a process for updating mobile security devices approved by an Authority for occupancy of an area wherein a mobile security device comprises a circuit to generate a temporal security hash upon demand.

2 . The method of claim 1 wherein, the process for searching for new devices in proximity comprises:

upon 1 st timer expiration, initiating peer occupancy application steps at a 1 st mobile security device;

transmitting query to RF neighborhood requesting response packet from mobile devices;

upon receiving at least one response packet, determining for device a characterization of being a 2 nd mobile security device, and not being a 2 nd mobile security device, and

storing determination as a list of current mobile security devices in proximity to 1 st mobile security device;

comparing said list of current 2 nd mobile security devices in proximity, with previously stored list of most recent approved list from Authority for exceptions;

when exception count is zero, reinitializing 1 st timer;

when exception count is non-zero, obtaining validation for each exception.

3 . The method of claim 2 wherein obtaining validation for each exception comprises:

requesting a temporal security hash from the exception;

relaying received said temporary security hash to authority in a request for validation of exception;

receiving validation response from security authority; and

displaying to a user interface of 1 st mobile security device, a message transformation of security authority response to request for validation of exception.

4 . The method of claim 3 wherein the process for updating mobile security devices approved by an Authority for occupancy of an area comprises:

at a 1 st mobile security device, initiating an updating process responsive to receiving a first interrupt from an Authority, the updating process comprising;

receiving a list of acceptable identification indicia (I*I) for each device currently approved to occupy an area;

receiving any notifications of unacceptable I*I for each device in said area; and

displaying on a user interface warnings concerning unacceptable I*I devices in the area.

5 . A method at a security server comprising:

maintaining a census of authorized occupants of a first secure Area A;

receiving from a first mobile security device a verification packet related to an identification indicia (I*I);

checking verification packet against most recent census of authorized occupants;

checking access control list of incremental current occupants for authorization in first secure Area A;

transmitting updated census to all authorized occupants of first secure Area A; and

when a check of access control list fails, transmitting a security alert to designated individuals; and

receiving location indicia from mobile security devices to update census of authorized occupants within each secure area.

6 . The method of claim 5 further comprising:

maintaining a census of authorized occupants of a first secure Area A;

receiving from a people counting apparatus an integer value of persons within Area A

receiving from a first mobile security device at least one verification packet;

checking an access control list for a credential consistent with the verification packet;

transmitting updated census to all authorized occupants of first secure Area A; and

when a check of access control list fails, transmitting a security alert to security desk and to first mobile security device;

comparing a person count of a people counting apparatus, with identity count of identification indicia as reported by all mobile security devices within Area A, and

generating security alert if the counts do not match.

7 . A method of operation of a first mobile security device in an on premises credential verification system by performing executable instructions stored in non-transitory media in at least one processor comprising the processes:

listening for a transmission from a credential verification server and updating an annotated list of identification indicia upon reception;

advertising according to a wireless protocol, its identification indicia;

responding to a request by hashing its first advertiser timestamp with its mobile security system credential to produce a first hash, and transmitting its first advertiser identification indicia, its first advertiser timestamp, and said first hash.

8 . The method of operation of claim 7 further comprising:

receiving at least one transmission from a first advertiser;

searching the annotated list of identification indicia with the identification indicia in the transmission of first advertiser;

upon failure to find the identification indicia of first advertiser in said annotated list, transmitting a request to said first advertiser; and

relaying a response to said request to the server.

9 . The method of claim 7 further comprising:

using GPS data from smart phones to additionally determine if detected device is inside or outside the protected area.

10 . The method of claim 7 further comprising:

using BT radio power level as an additional mechanism to determine if the device is inside or outside of the protected area.

11 . The method of claim 7 further comprising:

using very low power level, an individual can self check a single other person close to them for a valid credential.

Assignments (3)
RELEASE OF SECURITY INTEREST Recorded Oct 28, 2022
From: CIBC BANK USA
To: BRIVO SYSTEMS LLC
Reel/Frame 061579/0013 →
SECURITY INTEREST Recorded May 8, 2020
From: BRIVO SYSTEMS LLC
To: CIBC BANK USA
Reel/Frame 052608/0331 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 9, 2018
From: BRYANT, STEVEN MARK, MR.
To: BRIVO SYSTEMS, LLC
Reel/Frame 045479/0468 →