IP Library › Granted Patent US 11,451,960
Granted Patent B2
US 11,451,960 · App. 16/781,305 · Granted Sep 20, 2022

Methods and systems for segmenting computing devices in a network

Inventors: James Randolph Winter Lepp (Ottawa, CA); Stephen McCann (Southampton, GB); Michael Peter Montemurro (Toronto, CA)
Assignee: BlackBerry Limited
H04W12/084H04L9/30H04L12/4641H04L63/0823H04L63/20H04W76/11
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,451,960
App. No.
16/781,305
Granted
Sep 20, 2022
Kind
B2
Abstract

Methods and systems of segmenting computing devices in a wireless network having an access point broadcasting in a single domain are described. In an exemplary method, a request to join the wireless network is received from a computing device. The request is associated with an identifier. When the identifier is not associated with a virtual network within the wireless network, a virtual network is configured within the wireless network and the identifier is associated thereto and the computing device is assigned thereto. When the identifier is associated with an existing virtual network within the wireless network, the computing device is assigned to the existing virtual network.

Claims (49)

1. A method of segmenting computing devices in a wireless network having an access point broadcasting in a single broadcast domain, the method comprising:

receiving, from a computing device, a request to join the wireless network, the request associated with an identifier;

when the identifier is not associated with a virtual network within the wireless network:

configuring a virtual network within the wireless network and associating the identifier thereto and creating an address resolution protocol table associated with the configured virtual network; and

assigning the computing device to the configured virtual network; and

when the identifier is associated with an existing virtual network within the wireless network:

assigning the computing device to the existing virtual network such that all computing devices having the identifier are connected to one another within the existing virtual network,

wherein assigning the computing device to the configured virtual network or the existing virtual network includes adding an internet protocol address and a medium access control address of the computing device to the address resolution protocol table associated with the virtual network.

2. The method of claim 1 , further comprising:

when the assigned computing device leaves the wireless network, removing the assigned computing device from the virtual network.

3. The method of claim 2 , further comprising:

when the assigned computing device leaving the wireless network is the last computing device within the virtual network, deleting the virtual network.

4. The method of claim 1 , wherein computing devices within the virtual network have at least one of unrestricted communication with one another and unlimited access to one another.

5. The method of claim 1 , wherein the identifier is at least one of a username, a password, a group name, a group password, a digital certificate, a hardware token, a subscriber identification module, a public key and an attribute associated with a certificate.

6. The method of claim 1 , comprising providing a network level service to the virtual network via at least one of an instance of the network level service configured within the virtual network and tunneled access to the network level service.

7. The method of claim 6 , wherein the network level service is one of e-mail, instant messaging, media streaming, voice communication, application program data, vehicle-related data, traffic and road conditions, and emergency information.

8. The method of claim 1 wherein each virtual network within the wireless network comprises a broadcast domain enforcement layer such that a computing device assigned to the virtual network can access only other computing devices assigned to the same virtual network.

9. The method of claim 1 , wherein each virtual network within the wireless network comprises an internet protocol broadcast domain enforcement layer such that when an internet protocol packet is received and includes an address outside the virtual network, the internet protocol packet is transmitted to the address outside the virtual network.

10. The method of claim 1 , wherein each virtual network within the wireless network comprises at least one of a network level service and a firewall layer, wherein the at least one of the network level service and the firewall layer are configured to be recognized and accessed by the assigned computing device as another computing device assigned to the virtual network.

11. A server associated with a wireless network having an access point broadcasting in a single broadcast domain, the server comprising:

a processor;

a memory; and

processor-executable instructions that, when executed by the processor, cause the processor to:

receive, from a computing device, a request to join the wireless network, the request associated with an identifier;

when the identifier is not associated with a virtual network within the wireless network:

configure a virtual network within the wireless network and associate the identifier thereto and create an address resolution protocol table associated with the configured virtual network; and

assign the computing device to the configured virtual network; and

when the identifier is associated with an existing virtual network within the wireless network:

assign the computing device to the existing virtual network such that all computing devices having the identifier are connected to one another within the existing virtual network,

wherein assigning the computing device to the configured virtual network or the existing virtual network includes adding an internet protocol address and a medium access control address of the computing device to the address resolution protocol table associated with the virtual network.

12. The server of claim 11 , wherein the processor-executable instructions, when executed by the processor, further cause the processor to:

when the assigned computing device leaves the wireless network, remove the assigned computing device from the virtual network.

13. The server of claim 12 , wherein the processor-executable instructions, when executed by the processor, further cause the processor to:

when the assigned computing device leaving the wireless network is the last computing device within the virtual network, delete the virtual network.

14. The server of claim 11 , wherein computing devices within the virtual network have at least one of unrestricted communication with one another and unlimited access to one another.

15. The server of claim 11 , wherein the identifier is at least one of a username, a password, a group name, a group password, a digital certificate, a hardware token, a subscriber identification module, a public key and an attribute associated with a certificate.

16. The server of claim 11 , wherein the processor-executable instructions, when executed by the processor, further cause the processor to:

provide a network level service to the virtual network via at least one of an instance of the network level service configured within the virtual network and tunneled access to the network level service.

17. The server of claim 11 , wherein each virtual network within the wireless network comprises a broadcast domain enforcement layer such that a computing device assigned to the virtual network can access only other computing devices assigned to the same virtual network.

18. The server of claim 11 , wherein each virtual network within the wireless network comprises an internet protocol broadcast domain enforcement layer such that when an internet protocol packet is received and includes an address outside the virtual network, the internet protocol packet is transmitted to the address outside the virtual network.

19. The server of claim 11 , wherein each virtual network within the wireless network comprises at least one of a network level service and a firewall layer, wherein the at least one of the network level service and the firewall layer are configured to be recognized and accessed by the assigned computing device as another computing device assigned to the virtual network.

20. A non-transitory computer readable medium having stored thereon processor-executable instructions that, when executed by the processor, cause the processor to:

receive, from a computing device, a request to join a wireless network having an access point broadcasting in a single broadcast domain, the request associated with an identifier;

when the identifier is not associated with a virtual network within the wireless network:

configure a virtual network within the wireless network and associate the identifier thereto and create an address resolution protocol table associated with the configured virtual network; and

assign the computing device to the configured virtual network; and

when the identifier is associated with an existing virtual network within the wireless network:

assign the computing device to the existing virtual network such that all computing devices having the identifier are connected to one another within the existing virtual network,

wherein assigning the computing device to the configured virtual network or the existing virtual network includes adding an internet protocol address and a medium access control address of the computing device to the address resolution protocol table associated with the virtual network.

Assignments (4)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 10, 2020
From: BLACKBERRY UK LIMITED
To: BLACKBERRY LIMITED
Reel/Frame 051769/0232 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 4, 2020
From: LEPP, JAMES RANDOLPH WINTER
To: BLACKBERRY LIMITED
Reel/Frame 051713/0479 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 4, 2020
From: MONTEMURRO, MICHAEL PETER
To: BLACKBERRY LIMITED
Reel/Frame 051713/0629 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 4, 2020
From: MCCANN, STEPHEN
To: BLACKBERRY UK LIMITED
Reel/Frame 051713/0817 →
Continuity (1)
Related Publication 20210243604A1 · Aug 5, 2021