IP Library Granted Patent US 12,445,945
Granted Patent B2
US 12,445,945 · App. 18/124,469 · Granted Oct 14, 2025

Scalable personal device sharing

Inventors: Vinay Gopi (Bangalore, IN); Anjanish Pandey (Bangaluru, IN); Suresh Vaidya (Bengaluru, IN)
Assignee: Hewlett Packard Enterprise Development LP
H04W48/16H04L61/4511H04W8/26H04W12/069
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,445,945
App. No.
18/124,469
Granted
Oct 14, 2025
Kind
B2
Abstract

An access point (AP) receives a network-access request comprising a first multi-pre-shared key (MPSK) password and queries an authentication server to determine an owner of a first device based on the first MPSK password. The AP receives, from the first device, an advertisement packet indicating a service provided by the first device and forwards information about the service and the owner to a device-sharing server to obtain a device-sharing policy. The AP enforces the device-sharing policy, which can include receiving from a second device, a multicast Domain Name System (mDNS) query, indicating the first device in an mDNS response corresponding to the mDNS query in response to determining that the second device belongs to the owner of the first device based on a second MPSK password of the second device, and allowing the second device to access the service provided by the first device.

Claims (66)

1. A method comprising:

receiving, at an access point (AP), a network-access request comprising a first multi-pre-shared key (MPSK) password;

querying an authentication server to determine an owner of a first device based on the first MPSK password;

receiving, by the AP from the first device, an advertisement packet indicating a service provided by the first device;

forwarding information associated with the service and the owner to a device-sharing server to obtain a device-sharing policy associated with the owner;

enforcing the device-sharing policy, which comprises

receiving from a second device, a multicast Domain Name System (mDNS) query;

in response to determining that the second device belongs to the owner of the first device based on a second MPSK password of the second device, indicating the first device in an mDNS response corresponding to the mDNS query; and

establishing a connection between the first and second devices to allow the second device to access the service provided by the first device.

2. The method of claim 1 , wherein enforcing the device-sharing policy further comprises:

in response to determining that the second device does not belong to the owner of the first device based on the second MPSK password of the second device, excluding the first device from the mDNS response corresponding to the mDNS query.

3. The method of claim 1 , wherein querying the authentication server comprises:

forwarding the network-access request to the authentication server that stores a mapping relationship between the MPSK password and a username of the owner of the first device; and

receiving, from the authentication server, a network-access response indicating the username and a network role associated with the username.

4. The method of claim 3 ,

wherein the authentication server comprises a Remote Authentication Dial-in User Service (RADIUS) server;

wherein the network-access request comprises a RADIUS request; and

wherein the network response comprises a RADIUS response with the username and network role included in a vendor-specific attribute (VSA) field of RADIUS response.

5. The method of claim 3 , wherein the device-sharing policy is determined by the device-sharing server based on the username and the network role.

6. The method of claim 5 , further comprising:

in response to determining that the network role has administrative privilege, obtaining a device-sharing policy indicating that the first device is a public device; and

allowing any device to access the service provided by the first device.

7. The method of claim 1 , further comprising:

forwarding, by the device-sharing server, information associated with the service provided by the first device and the device-sharing policy to one or more neighboring APs; and

responding, by a neighboring AP, to an mDNS query from a third device coupled to the neighboring AP based on the device-sharing policy.

8. The method of claim 1 , further comprising maintaining a client database that stores one or more of:

an address of the first device;

information about the owner of the first device;

the service provided by the first device; and

the device-sharing policy.

9. The method of claim 1 , wherein the advertisement packet comprises an mDNS advertisement packet with one more resource records.

10. The method of claim 9 , wherein forwarding the information associated with the service and the owner comprises generating a Protocol Buffers (protobuf) message that encapsulates the resource records and a username associated with the owner.

11. A wireless access point (AP) comprising:

a processor;

a memory storing instructions that when executed by the processor cause the processor to perform a method, the method comprising:

receiving a network-access request comprising a first multi-pre-shared key (MPSK) password;

querying an authentication server to determine an owner of a first device based on the first MPSK password;

receiving, from the first device, an advertisement packet indicating a service provided by the first device;

forwarding information associated with the service and the owner to a device-sharing server to obtain a device-sharing policy associated with the owner;

enforcing the device-sharing policy, which comprises

receiving from a second device, a multicast Domain Name System (mDNS) query;

in response to determining that the second device belongs to the owner of the first device based on a second MPSK password of the second device, indicating the first device in an mDNS response corresponding to the mDNS query; and

establishing a connection between the first and second devices to allow the second device to access the service provided by the first device.

12. The AP of claim 11 , wherein enforcing the device-sharing policy further comprises:

in response to determining that the second device does not belong to the owner of the first device based on the second MPSK password of the second device, excluding the first device from the mDNS response corresponding to the mDNS query.

13. The AP of claim 10 , wherein querying the authentication server comprises:

forwarding the network-access request to the authentication server that stores a mapping relationship between the MPSK password and a username of the owner of the first device; and

receiving, from the authentication server, a network-access response indicating the username and a network role associated with the username.

14. The AP of claim 13 ,

wherein the authentication server comprises a Remote Authentication Dial-In User Service (RADIUS) server;

wherein the network-access request comprises a RADIUS request; and

wherein the network response comprises a RADIUS response with the username and network role included in a vendor-specific attribute (VSA) field of RADIUS response.

15. The AP of claim 13 , wherein the device-sharing policy is determined by the device-sharing server based on the username and the network role.

16. The AP of claim 15 , wherein the method further comprises:

in response to determining that the network role has administrative privilege, obtaining a device-sharing policy indicating that the first device is a public device; and

allowing any device to access the service provided by the first device.

17. The AP of claim 11 , wherein the method further comprises:

forwarding, by the device-sharing server, information associated with the service provided by the first device and the device-sharing policy to one or more neighboring APs; and

responding, by a neighboring AP, to an mDNS query from a third device coupled to the neighboring AP based on the device-sharing policy.

18. The AP of claim 11 , wherein the method further comprises maintaining a client database that stores one or more of:

an address of the first device;

information about the owner of the first device;

the service provided by the first device; and

the device-sharing policy.

19. The AP of claim 11 , wherein the advertisement packet comprises an mDNS advertisement packet with one more resource records.

20. The AP of claim 19 , wherein forwarding the information associated with the service and the owner comprises generating a Protocol Buffers (protobuf) message that encapsulates the resource records and a username associated with the owner.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 22, 2023
From: GOPI, VINAY; PANDEY, ANJANISH; VAIDYA, SURESH
To: HEWLETT PACKARD ENTERPRISE DEVELOPMENT LP
Reel/Frame 063057/0748 →
Continuity (1)
Related Publication 20240323816A1 · Sep 26, 2024
References Cited (1)
Cheshire et al., “Multicast DNS”, Request for Comments: 6762, Apple Inc., Feb. 2013, 70 pages. [cited by applicant]