IP Library › Granted Patent US 12,432,215
Granted Patent B2
US 12,432,215 · App. 18/106,730 · Granted Sep 30, 2025

Establishing a personal-public service set identifier connection between a personal device and the internet

Inventors: Shikhar Kwatra (San Jose, CA); Seng Chai Gan (Ashburn, VA); Charles Kenneth Flack (Marietta, GA); Adam Lee Griffin (Cohasset, MN)
Assignee: Kyndryl, Inc.
H04L63/102H04L63/0861H04W12/50H04W4/021H04W48/20H04W76/11H04W76/38
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,432,215
App. No.
18/106,730
Granted
Sep 30, 2025
Kind
B2
Abstract

Embodiments are directed to techniques for secure network connectivity. The techniques including a system having a credential server storing a Personal-Public (PP) Service Set. Identifier (SSID) profile configured according to registration information provided from a personal computing device. The system further including a Wireless Access Point (WAP) communicatively coupled to the credential server and configured to implement a PP SSID connection using the PP SSID profile to create a single-device, single-use, password-protected, unadvertised, and encrypted networking channel between the personal computing device and the Internet.

Claims (67)

1. A computer-implemented method comprising:

receiving, at a credential server and from a Wireless Access Point (WAP), registration information from a personal computing device in response to the personal computing device connecting to a publicly advertised Service Set Identifier (SSID) provided by the WAP;

configuring, by the credential server, a Personal-Public (PP) SSID profile based on the registration information;

providing a PP SSID network name and PP SSID password of the PP SSID profile to the personal computing device via the WAP, wherein the PP SSID profile enables the personal computing device to establish a PP SSID connection comprising a single-device based on customization in the PP SSID profile associated with the personal computing device, single-use associated with an expiration, password-protected by an authentication protocol utilizing a password based on the PP SSID profile, unadvertised PP SSID network name, and encrypted by an encryption protocol between the personal computing device and an Internet; and

performing machine learning on location information related to the personal computing device and context information related to the personal computing device to generate a predicted area of usage and a predicted time of usage associated with the personal computing device.

2. The method of claim 1 , further comprising:

associating a media access control (MAC) address of the personal computing device with the PP SSID profile,

creating a registration profile associated with the registration information in response to determining that the registration information is not associated with a profile in a registration profile database,

wherein the customization comprises a usage amount, a usage location, and a predicted future usage.

3. The method of claim 1 , wherein

wherein the WAP implements the individualized PP SSID provisioning by accepting a connection of the associated individual personal computing device to a publicly advertised SSID, registering and configuring the PP SSID connection for the associated individual personal computing device, and the PP SSID connection being utilized to create the single-device, the single-use, the password-protected, the unadvertised PP SSID network name, and encrypted by the encryption protocol, and

the expiration is based on a location, date, a time of usage, a type of usage, and an amount of usage.

4. The method of claim 1 , further comprising:

determining the PP SSID profile is expired; and

in response to determining that the PP SSID profile is expired, terminating the PP SSID connection.

5. The method of claim 4 , wherein determining that the PP SSID profile is expired comprises determining a current time is after an expiration time associated with the PP SSID profile.

6. The method of claim 4 , wherein determining that the PP SSID profile is expired comprises determining a current location is outside of a geofence associated with the PP SSID profile.

7. The method of claim 1 , wherein configuring the Personal-Public (PP) SSID profile based on the registration information further comprises:

receiving the location information related to the personal computing device;

receiving the context information related to the personal computing device;

associating a geofence with the PP SSID profile based on the predicted area of usage;

associating an expiration of the PP SSID profile based on the predicted time of usage; and

outputting the PP SSID profile having the geofence and the expiration.

8. The method of claim 1 , wherein configuring the Personal-Public (PP) SSID profile based on the registration information further comprises:

generating a predicted time of a PP SSID request associated with the personal computing device; and

wherein providing the PP SSID network name and PP SSID password of the PP SSID profile to the personal computing device occurs within an interval of time before the predicted time.

9. A computer program product comprising a computer readable storage medium having program instructions embodied therewith, the program instructions executable by a processor to cause the processor to perform a method comprising:

receiving, at a credential server and from a Wireless Access Point (WAP), registration information from a personal computing device in response to the personal computing device connecting to a publicly advertised Service Set Identifier (SSID) provided by the W AP;

configuring, by the credential server, a Personal-Public (PP) SSID profile based on the registration information;

providing a PP SSID network name and PP SSID password of the PP SSID profile to the personal computing device via the WAP, wherein the PP SSID profile enables the personal computing device to establish a PP SSID connection comprising a single-device based on customization in the PP SSID profile associated with the personal computing device, single-use associated with an expiration, password-protected by an authentication protocol utilizing a password based on the PP SSID profile, unadvertised PP SSID network name, and encrypted by an encryption protocol between the personal computing device and an Internet; and

performing machine learning on location information related to the personal computing device and context information related to the personal computing device to generate a predicted area of usage and a predicted time of usage associated with the personal computing device.

10. The computer program product of claim 9 , the method further comprising:

determining the PP SSID profile is expired; and

in response to determining that the PP SSID profile is expired, terminating the PP SSID connection,

wherein determining that the PP SSID profile is expired comprises determining a current time is after an expiration time associated with the PP SSID profile, and

the customization comprises a usage amount, a usage location, and a predicted future usage.

11. The computer program product of claim 9 , wherein the WAP implements the individualized PP SSID provisioning by accepting a connection of the associated individual personal computing device to a publicly advertised SSID, registering and configuring the PP SSID connection for the associated individual personal computing device, and the PP SSID connection being utilized to create the single-device, the single-use, the password-protected, the unadvertised PP SSID network name, and encrypted by the encryption protocol, and

the expiration is based on a location, date, a time of usage, a type of usage, and an amount of usage.

12. The computer program product of claim 10 , wherein determining that the PP SSID profile is expired comprises determining a current location is outside of a geofence associated with the PP SSID profile.

13. The computer program product of claim 9 , wherein configuring the Personal-Public (PP) SSID profile based on the registration information further comprises:

receiving the location information related to the personal computing device;

receiving the context information related to the personal computing device;

associating a geofence with the PP SSID profile based on the predicted area of usage;

associating an expiration of the PP SSID profile based on the predicted time of usage; and

outputting the PP SSID profile having the geofence and the expiration.

14. The computer program product of claim 9 , wherein configuring the Personal-Public (PP) SSID profile based on the registration information further comprises:

generating a predicted time of a PP SSID request associated with the personal computing device; and

wherein providing the PP SSID network name and PP SSID password of the PP SSID profile to the personal computing device occurs within an interval of time before the predicted time.

15. A system comprising:

a Wireless Access Point (WAP) which is configured to implement an individualized Personal-Public Service Set Identifier (PP SSID) provisioning by accepting a connection of an associated individual personal computing device to a publicly advertised SSID, registering and configuring the PP SSID connection for the associated individual personal computing device, and the PP SSID connection being utilized to create a single-device based on customization in the PP SSID profile of the associated individual personal computing device, single-use associated with an expiration, password-protected by an authentication protocol utilizing a password based on the PP SSID profile, unadvertised PP SSID network name, and encrypted by an encryption protocol between the associated individual personal computing device and an Internet, and performing machine learning on location information related to the associated individual personal computing device and context information related to the associated individual personal computing device to generate a predicted area of usage and a predicted time of usage with the associated individual personal computing device.

16. The system of claim 15 , further comprising:

a processor; and

a computer-readable storage medium storing program instructions, wherein the processor is configured to execute the program instructions to cause the processor to:

display on a personal computing device an indicator related to the PP SSID connection,

wherein the customization comprises a usage amount, a usage location, and a predicted future usage.

17. The system of claim 16 , wherein the program instructions to cause the processor to:

display, on the personal computing device, a connection expiration warning at a time within a time interval before an expiration associated with the PP SSID connection,

wherein the expiration is based on a location, date, a time of usage, a type of usage, and an amount of usage.

18. The system of claim 16 , the program instructions to cause the processor to:

display, on the personal computing device, a connection termination warning in response to a location of the personal computing device within a boundary of a geofence associated with the PP SSID profile.

19. The system of claim 16 , wherein the PP SSID password comprises a biometric password selected from a group consisting of: a voice-based password, a face-based password, a fingerprint-based password, and a gait-based password.

20. The system of claim 15 , further comprising:

a processor; and

a computer-readable storage medium storing program instructions, wherein the processor is configured to execute the program instructions to cause the processor to:

receive, at a credential server and from the WAP, registration information from a personal computing device in response to the personal computing device connecting to the SSID provided by the WAP;

configure, by the credential server, a profile of the PP SSID based on the registration information; and

provide a PP SSID network name and PP SSID password of the PP SSID profile to the personal computing device via the WAP, wherein the PP SSID profile enables the personal computing device to establish the PP SSID connection comprising the single-device, the single-use, the password-protected, the unadvertised PP SSID network name, and the encrypted by an encryption protocol between the personal computing device and the Internet.

Continuity (2)
Division 16508375 · Jul 11, 2019
Related Publication 20230188529A1 · Jun 15, 2023
References Cited (59)
US 7509131B2 · Krumm et al. · 2009 [cited by applicant]
US 8194589B2 · Wynn et al. · 2012 [cited by applicant]
US 8358638B2 · Scherzer et al. · 2013 [cited by applicant]
US 8463295B1 · Caralis et al. · 2013 [cited by applicant]
US 9137735B2 · Thomas et al. · 2015 [cited by applicant]
US 9286266B1 · Fleck et al. · 2016 [cited by applicant]
US 9998982B2 · Horn et al. · 2018 [cited by applicant]
US 10038729B1 · Ramalingam · 2018 [cited by examiner]
US 10417846B1 · Smith · 2019 [cited by examiner]
US 11405789B1 · Wei · 2022 [cited by examiner]
US 20080137860A1 · Silvernail · 2008 [cited by applicant]
US 20110149797A1 · Taaghol · 2011 [cited by examiner]
US 20120172027A1 · Partheesh · 2012 [cited by examiner]
US 20130058274A1 · Scherzer · 2013 [cited by examiner]
US 20130103807A1 · Couto · 2013 [cited by examiner]
US 20140066101A1 · Lyman et al. · 2014 [cited by applicant]
US 20140075523A1 · Tuomaala et al. · 2014 [cited by applicant]
US 20140164118A1 · Polachi · 2014 [cited by applicant]
US 20140337123A1 · Nuernberg et al. · 2014 [cited by applicant]
US 20150269624A1 · Cheng et al. · 2015 [cited by applicant]
US 20150289132A1 · Zhang · 2015 [cited by examiner]
US 20160125519A1 · Sundaresan · 2016 [cited by applicant]
US 20160180703A1 · Chang · 2016 [cited by applicant]
US 20160295546A1 · Yumura · 2016 [cited by examiner]
US 20170034215A1 · Sigel · 2017 [cited by examiner]
US 20170318418A1 · Alizadeh-Shabdiz et al. · 2017 [cited by applicant]
US 20180035248A1 · Soave · 2018 [cited by applicant]
US 20180176763A1 · Joarder et al. · 2018 [cited by applicant]
US 20180227959A1 · Fraccaroli · 2018 [cited by applicant]
US 20180234848A1 · Cohen et al. · 2018 [cited by applicant]
US 20180310123A1 · Deluca et al. · 2018 [cited by applicant]
US 20180338031A1 · Subramanian et al. · 2018 [cited by applicant]
US 20180375665A1 · Contenti · 2018 [cited by examiner]
US 20180376448A1 · Wild et al. · 2018 [cited by applicant]
US 20190014532A1 · Bradish · 2019 [cited by applicant]
US 20190287377A1 · Gillum et al. · 2019 [cited by applicant]
US 20190372838A1 · Travostino et al. · 2019 [cited by applicant]
US 20200168014A1 · Uliyar et al. · 2020 [cited by applicant]
US 20200236619A1 · Baird et al. · 2020 [cited by applicant]
US 20200252399A1 · Hancock et al. · 2020 [cited by applicant]
CN 103858097 · 2014 [cited by applicant]
CN 104852894 · 2015 [cited by applicant]
CN 105830414 · 2016 [cited by applicant]
CN 104798430 · 2018 [cited by applicant]
JP 2013122555A · 2013 [cited by examiner]
JP 2017188951 · 2020 [cited by applicant]
JP 2020137004 · 2020 [cited by applicant]
JP 2020098456 · 2021 [cited by applicant]
JP 6853742 · 2021 [cited by applicant]
KR 20060035410A · 2006 [cited by examiner]
WO 2018118150 · 2018 [cited by applicant]
Notification of Transmittal of the International Search Report and the Written Opinion of the International Searching Authority, or the Declaration, Nov. 3, 2020, 7 pages. [cited by applicant]
Symantec, “Norton Wi-Fi Risk Report—Report of Online Survey Results in 15 Global Markets”, 20 pages, https://www.symantec.com/contenUdam/symantec/docs/reports/2017-norton-wifi-risk-report-global-results-summary-en.pdf; … [cited by applicant]
Windows, “How to find and connect to Hidden WiFi Networks on Windows 10”, Posted by LavishT@TWC on Jan. 14, 2018, printed Mar. 20, 2019, 6 pages, https://www.thewindowsclub.com/hidden-wi-fi-networks. [cited by applicant]
Cache et al., “Hacking Exposed Wireless: Wireless Security Secrets and Solutions”, Second Edition, Copyright © 2010, 484 pages. [cited by applicant]
Anonymous, “Method for automatic redirection from open to protected public wireless networks”, An IP.com Prior Art Database Technical Disclosure, IP.com No. IPCOM000228195D, IP.com Electronic Publication Date: Jun. 12, … [cited by applicant]
IBM, “End to End WTLS Security Model for WAP”, An IP.com Prior Art Database Technical Disclosure, IP.com No. IPCOM000016778D, IP.com Electronic Publication Date: Jul. 15, 2003, 11 pages. [cited by applicant]
Mell et al., “The NIST Definition of Cloud Computing”, Recommendations of the National Institute of Standards and Technology, Sep. 2011, 7 pages. [cited by applicant]
List of Kyndryl Patents or Patent Applications Treated as Related, dated Feb. 6, 2023, 2 pages. [cited by applicant]