IP Library Granted Patent US 11,792,193
Granted Patent B2
US 11,792,193 · App. 17/523,263 · Granted Oct 17, 2023

Vendor agnostic captive portal authentication

Inventors: Rajesh Kumar Ganapathy Achari (Maharashtra, IN); Anoop Kumaran Nair (Maharashtra, IN); Venkatesh Ramachandran (Karnataka, IN); Pattabhi Attaluri (Santa Clara, CA); Bhagya Prasad Nittur (Santa Clara, CA); Antoni Milton (Santa Clara, CA)
Assignee: Hewlett Packard Enterprise Development LP
H04L63/0876H04L63/105
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,792,193
App. No.
17/523,263
Granted
Oct 17, 2023
Kind
B2
Abstract

Methods and systems for providing vendor agnostic captive portal authentication in a network that includes a plurality of network access devices are provided. For instance, one method includes receiving a redirect request for a communication between a first user-terminal and a first network access device, the redirect request including at least one of a vendor-specific item of information of the first network access device and an Internet Protocol (IP) address of the first network access device. The method further includes comparing the at least one of the vendor-specific item of information of the first network access device and the IP address of the first network access device against each of a plurality of entries of a network access device database, and providing the first user-terminal access to a captive portal page in response to an appropriate match.

Claims (42)

1. A method for providing vendor agnostic captive portal authentication in a network that includes a plurality of network access devices, the method comprising:

receiving a redirect request of a communication between a first user-terminal and a first network access device of the plurality of network access devices,

wherein the redirect request includes a vendor-specific item of information of the first network access device and an Internet Protocol (IP) address of the first network access device,

wherein the vendor-specific item of information comprises at least one of: a vendor-specific network access device parameter, a vendor-specific formatting of a network access device parameter, or a vendor-specific label of a network access device parameter;

comparing the vendor-specific item of information of the first network access device and the IP address of the first network access device against each of a plurality of entries of a network access device database; and

providing the first user-terminal access to a vendor agnostic captive portal page based on the comparison of the vendor-specific item of information of the first network access device and the IP address of the first network access device and an entry of the network access device database.

2. The method of claim 1 , further comprising

enabling a vendor of the first network access device to be identified based on the vendor-specific item of information.

3. The method of claim 1 , further comprising

enabling a vendor of the first network access device to be identified based on the IP address of the first network access device.

4. The method of claim 1 ,

wherein the redirected communication further includes a Medium Access Control (MAC) address of the first user terminal, and

wherein access to the captive portal page is further based on the MAC address.

5. The method of claim 1 , further comprising:

establishing initial layer 2 access between the first user terminal and the first network access device; and

redirecting the communication between the first user-terminal and a first network access device in response to establishing the initial layer 2 access between the first user terminal and the first network access device.

6. The method of claim 1 , further comprising:

configuring the first network access device to communicate with the first user-terminal in response to a user operating the first user-terminal successfully completing the captive portal page.

7. A system for providing vendor agnostic captive portal authentication in a network that includes a plurality of network access devices, the system comprising a processor and a non-transitory computer-readable storage memory communicatively coupled to the processor, the memory containing instructions that cause the processor to:

receive a redirect request for a communication between a first user-terminal and a first network access device of the plurality of network access devices,

wherein the redirect request includes a vendor-specific item of information of the first network access device and an Internet Protocol (IP) address of the first network access device,

wherein the vendor-specific item of information comprises at least one of: a vendor-specific network access device parameter, a vendor-specific formatting of a network access device parameter, or a vendor-specific label of a network access device parameter;

compare the vendor-specific item of information of the first network access device and the IP address of the first network access device against each of a plurality of entries of a network access device database; and

provide the first user-terminal access to a captive portal page in response based on the comparison of the vendor-specific item of information of the first network access device and the IP address of the first network access device and an entry of the network access device database.

8. The system of claim 7 , wherein:

the network access device database enables a vendor of the first network access device to be identified based on the vendor-specific item of information;

the redirect request includes the vendor-specific item of information of the first network access device; and

access to the captive portal page is provided based on a match between the vendor-specific item of information of the first network access device against each of the plurality of entries of a network access device database.

9. The system of claim 7 , wherein the network access device database enables a vendor of the first network access device to be identified based on the IP address of the first network access device.

10. The system of claim 7 , wherein:

the redirected communication further includes a Medium Access Control (MAC) address of the first user terminal; and

access to the captive portal page is further based on the MAC address.

11. The system of claim 7 , wherein the memory containing instructions that further causes the processor to configure the first network access device to communicate with the first user-terminal in response to a user operating the first user-terminal successfully completing the captive portal page.

12. A non-transitory computer-readable storage memory containing a plurality of instructions such that, when operated upon by a processing system, causes the processor to:

receive a redirect request for a communication between a first user-terminal and a first network access device of a plurality of network access devices,

wherein the redirect request includes a vendor-specific item of information of the first network access device and an Internet Protocol (IP) address of the first network access device,

wherein the vendor-specific item of information comprises at least one of: a vendor-specific network access device parameter, a vendor-specific formatting of a network access device parameter, or a vendor-specific label of a network access device parameter;

compare the vendor-specific item of information of the first network access device and the IP address of the first network access device against each of a plurality of entries of a network access device database;

provide the first user-terminal access to a captive portal page based on the comparison of the vendor-specific item of information of the first network access device and the IP address of the first network access device and an entry of the network access device database;

authenticate a user operating the first user-terminal so as to allow access to a network that includes a plurality of network access devices; and

configure the first network access device to communicate with the first user-terminal using a vendor-specific protocol.

13. The memory of claim 12 , wherein the memory containing instructions that further causes the processor to configure the first network access device to communicate with the first user-terminal in response to a user operating the first user-terminal successfully completing the captive portal page.

Continuity (2)
Continuation 16429462 · Jun 3, 2019
Related Publication 20220070168A1 · Mar 3, 2022