IP Library Granted Patent US 11,616,784
Granted Patent B2
US 11,616,784 · App. 16/508,375 · Granted Mar 28, 2023

Personal-public service set identifiers connection implemented by a WAP

Inventors: Shikhar Kwatra (Durham, NC); Seng Chai Gan (Ashburn, VA); Charles Kenneth Flack (Marietta, GA); Adam Lee Griffin (Dubuque, IA)
Assignee: Kyndryl, Inc.
H04L63/102H04L63/0861H04W4/021H04W48/20H04W76/11H04W76/38
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,616,784
App. No.
16/508,375
Granted
Mar 28, 2023
Kind
B2
Abstract

Embodiments are directed to techniques for secure network connectivity. The techniques including a system having a credential server storing a Personal-Public (PP) Service Set Identifier (SSID) profile configured according to registration information provided from a personal computing device. The system further including a Wireless Access Point (WAP) communicatively coupled to the credential server and configured to implement a PP SSID connection using the PP SSID profile to create a single-device, single-use, password-protected, unadvertised, and encrypted networking channel between the personal computing device and the Internet.

Claims (58)

1. A system comprising:

a credential server storing a plurality of Personal-Public (PP) Service Set Identifier (SSID) profiles configured according to registration information provided from a plurality of personal computing devices; and

a Wireless Access Point (WAP) communicatively coupled to the credential server and configured to implement an individualized PP SSID provisioning of a PP SSID connection for an associated individual personal computing device of the plurality of personal computing devices, the PP SSID connection being customized by using one of the PP SSID profiles to create a single-device, single-use, password-protected, unadvertised, and encrypted networking channel between the associated individual personal computing device and an Internet,

wherein the WAP implements the individualized PP SSID provisioning by accepting a connection of the associated individual personal computing device to a publicly advertised SSID, registering and configuring the PP SSID connection for the associated individual personal computing device, and the PP SSID connection being utilized to create the single-device, single-use, password-protected, unadvertised, and encrypted networking channel.

2. The system according to claim 1 , wherein each of the PP SSID profiles is associated with an expiration, and wherein the PP SSID connection is configured to be terminated according to the expiration.

3. The system according to claim 2 , wherein the expiration is selected from a group consisting of: a time, an amount of usage, and a type of usage.

4. The system according to claim 2 , wherein the expiration is based on a location of the associated individual personal computing device and a geofence defined in each of the PP SSID profiles, and wherein the PP SSID connection is terminated when the associated individual personal computing device is outside of the geofence.

5. The system according to claim 1 , wherein the configured Personal-Public (PP) SSID profile based on the registration information includes:

a location information related to the associated individual personal computing device,

a context information related to the associated individual personal computing device,

a machine learning based on the location information and the context information to generate a predicted area of usage and a predicted time of usage associated with the associated individual personal computing device,

an associated geofence with the PP SSID profile based on the predicted area of usage, and

an associated expiration of the PP SSID profile based on the predicted time of usage.

6. A computer-implemented method comprising:

storing a plurality of Personal-Public (PP) Service Set Identifier (SSID) profiles configured according to registration information provided from a plurality of personal computing devices; and

implementing an individualized PP SSID provisioning of a PP SSID connection for an associated individual personal computing device of the plurality of personal computing devices, the PP SSID connection being customized by using one of the plurality of PP SSID profiles for each personal computing device to create a single-device, single-use, password-protected, unadvertised, and encrypted networking channel between the associated personal computing device and an Internet,

wherein the one of the plurality of PP SSID profiles is associated with an expiration, and wherein the PP SSID connection is configured to be terminated according to the expiration, and the expiration is based on a location of the associated individual personal computing device and a geofence defined in the one of the plurality of PP SSID profiles, and wherein the PP SSID connection is terminated when the associated individual personal computing device is outside of the geofence.

7. The computer-implemented method according to claim 6 , further comprising:

deleting data in a cache of the associated individual personal computing device generated from utilizing the PP SSID connection when the PP SSID connection is terminated.

8. The computer-implemented method according to claim 6 , wherein the expiration is selected from a group consisting of: a time, an amount of usage, and a type of usage.

9. The computer-implemented method according to claim 6 , further comprising:

determining whether an indication that the one of the plurality of PP SSID profiles that is expired has been received at the associated individual personal computing device.

10. The computer-implemented method of claim 6 , wherein each of the configured Personal-Public (PP) SSID profiles based on the registration information includes:

receiving a location information related to the associated individual personal computing device,

receiving a context information related to the associated individual personal computing device,

performing machine learning based on the location information and the context information to generate a predicted area of usage and a predicted time of usage associated with the associated individual personal computing device,

associating a geofence with each of the one of the plurality of PP SSID profiles is based on the predicted area of usage, and

associating an expiration of the one of the plurality of PP SSID profiles is based on the predicted time of usage.

11. A computer program product comprising a computer readable storage medium having program instructions embodied therewith, the program instructions executable by a processor to cause the processor to perform a method comprising:

connecting one of a plurality of personal computing devices to a wireless access point (WAP) over a publicly advertised Service Set Identifier (SSID);

registering and configuring one of a plurality of Personal Public (PP) SSID profiles for the one of the plurality of personal computing devices;

storing the plurality of PP SSID profiles configured according to registration information provided from the plurality of personal computing devices; and

implementing an individualized PP SSID provisioning of a PP SSID connection for an associated individual personal computing device of the plurality of personal computing devices, the PP SSID connection being customized by using the one of the plurality of PP SSID profiles for each personal computing device to create a single-device, single-use, password-protected, unadvertised, and encrypted networking channel between the associated individual personal computing device and an Internet.

12. The computer program product of claim 11 , wherein each of the PP SSID profiles is associated with an expiration, and wherein the PP SSID connection is configured to be terminated according to the expiration.

13. The computer program product of claim 12 , wherein the expiration is selected from a group consisting of: a time, an amount of usage, and a type of usage.

14. The computer program product of claim 12 , wherein the expiration is based on a location of the associated individual personal computing device and a geofence defined in each of the PP SSID profiles, and wherein the PP SSID connection is terminated when the associated individual personal computing device is outside of the geofence.

15. The computer program product of claim 11 , wherein each of the configured Personal-Public (PP) SSID profiles based on the registration information includes:

receiving a location information related to the associated individual personal computing device,

receiving a context information related to the associated individual personal computing device,

performing machine learning based on the location information and the context information to generate a predicted area of usage and a predicted time of usage associated with the associated individual personal computing device,

associating a geofence with each of the PP SSID profiles is based on the predicted area of usage, and

associating an expiration of each of the PP SSID profiles is based on the predicted time of usage.

16. A system comprising:

a hardware processor; and

a computer-readable storage medium storing program instructions, wherein the processor is configured to execute the program instructions to cause the processor to perform a method comprising:

connecting one of a plurality of personal computing devices to a wireless access point (WAP) over a publicly advertised Service Set Identifier (SSID);

registering and configuring one of a plurality of Personal Public (PP) SSID profiles for the one of the personal computing devices;

storing the plurality of PP SSID profiles configured according to registration information provided from the plurality of personal computing devices; and

implementing an individualized PP SSID provisioning of a PP SSID connection for an associated individual personal computing device of the plurality of personal computing devices, the PP SSID connection being customized by using the one of the plurality of PP SSID profiles for each personal computing device to create a single-device, single-use, password-protected, unadvertised, and encrypted networking channel between the associated individual personal computing device and an Internet.

17. The system of claim 16 , wherein each of the PP SSID profiles is associated with an expiration, and wherein the PP SSID connection is configured to be terminated according to the expiration.

18. The system of claim 17 , wherein the expiration is selected from a group consisting of: a time, an amount of usage, and a type of usage.

19. The system of claim 17 , wherein the expiration is based on a location of the associated individual personal computing device and a geofence defined in each of the PP SSID profiles, and wherein the PP SSID connection is terminated when the associated individual personal computing device is outside of the geofence.

20. The system of claim 17 , wherein the configured Personal-Public (PP) SSID profile based on the registration information includes:

a location information related to the associated individual personal computing device,

a context information related to the associated individual personal computing device,

a machine learning based on the location information and the context information to generate a predicted area of usage and a predicted time of usage associated with the associated individual personal computing device,

an associated geofence with the PP SSID profile based on the predicted area of usage, and

an associated expiration of the PP SSID profile based on the predicted time of usage.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 18, 2021
From: INTERNATIONAL BUSINESS MACHINES CORPORATION
To: KYNDRYL, INC.
Reel/Frame 058213/0912 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 11, 2019
From: KWATRA, SHIKHAR; GAN, SENG CHAI; FLACK, CHARLES KENNETH; GRIFFIN, ADAM LEE
To: INTERNATIONAL BUSINESS MACHINES CORPORATION
Reel/Frame 049722/0470 →