IP Library Granted Patent US 12,192,771
Granted Patent B2
US 12,192,771 · App. 17/785,519 · Granted Jan 7, 2025

Collaborative wireless intrusion protection system

Inventors: Raghavendra Sadaramachandra (Sunnyvale, CA); Wen Chen (San Jose, CA)
Assignee: Ruckus IP Holdings LLC
H04W12/122H04W84/12
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,192,771
App. No.
17/785,519
Granted
Jan 7, 2025
Kind
B2
Abstract

A controller may receive information identifying a rogue access point operating on a channel in the WLAN. In response, the controller may provide instructions to at least a subset of the access points, where the instructions indicate that at least the subset of the access points collaboratively attack the rogue access point, and where a given instruction for a given access point specifies a schedule of attacks by the given access point. In some embodiments, the controller selects at least the subset of the access points based at least in part on one or more parameters, including: an ability to receive transmissions from the rogue access point; traffic loading; communication performance; a number of associated electronic devices; proximity to the rogue access point; and/or operating channels.

Claims (44)

1. A controller, comprising:

an interface circuit configured to communicate with access points in a wireless local area network (WLAN), wherein the controller is configured to:

receive, at the interface circuit, information identifying a rogue access point operating on a channel in the WLAN; and

provide, from the interface circuit, instructions addressed to at least a subset of the access points, wherein the instructions indicate that at least the subset of the access points collaboratively attack the rogue access point, and

wherein a given instruction for a given access point specifies a schedule of attacks by the given access point.

2. The controller of claim 1 , wherein the information is associated with one or more of the access points.

3. The controller of claim 1 , wherein the schedule comprises time intervals when the given access point attacks the rogue access point; and

wherein, when the given access point attacks the rogue access point, a remainder of the access points in at least the subset of the access points do not attack the rogue access point.

4. The controller of claim 1 , wherein the given instruction indicates that, during an instance of an attack, the given access point:

transitions from an operating channel of the given access point to the channel;

transmits de-authentication messages associated with the rogue access point; and

transitions from the channel to the operating channel of the given access point.

5. The controller of claim 1 , wherein the controller is configured to select at least the subset of the access points.

6. The controller of claim 5 , wherein at least the subset of the access points is selected based at least in part on one of more of: at least the subset of the access points having previously reported receiving transmissions associated with the rogue access point; traffic loading of at least the subset of the access points; communication performance of at least the subset of the access points; a number of electronic devices associated with at least the subset of the access points; or proximity of at least the subset of the access points to the rogue access point.

7. The controller of claim 1 , wherein the controller is configured to select at least the subset of the access points having operating channels that are the same as the channel.

8. A non-transitory computer-readable storage medium for use in conjunction with a controller, the computer-readable storage medium storing program instructions that, when executed by the controller, cause the controller to perform operations, comprising:

receiving, at an interface circuit, information identifying a rogue access point operating on a channel in a wireless local area network (WLAN); and

providing, from the interface circuit, instructions addressed to at least a subset of access points, wherein the instructions indicate that at least the subset of the access points collaboratively attack the rogue access point, and

wherein a given instruction for a given access point specifies a schedule of attacks by the given access point.

9. The non-transitory computer-readable storage medium of claim 8 , wherein the information is associated with one or more of the access points.

10. The non-transitory computer-readable storage medium of claim 8 , wherein the schedule comprises time intervals when the given access point attacks the rogue access point; and

wherein, when the given access point attacks the rogue access point, a remainder of the access points in at least the subset of the access points do not attack the rogue access point.

11. The non-transitory computer-readable storage medium of claim 8 , wherein the given instruction indicates that, during an instance of an attack, the given access point:

transitions from an operating channel of the given access point to the channel;

transmits de-authentication messages associated with the rogue access point; and

transitions from the channel to the operating channel of the given access point.

12. The non-transitory computer-readable storage medium of claim 8 , wherein the operations comprise selecting at least the subset of the access points.

13. The non-transitory computer-readable storage medium of claim 12 , wherein at least the subset of the access points is selected based at least in part on one of more of: at least the subset of the access points having previously reported receiving transmissions associated with the rogue access point; traffic loading of at least the subset of the access points; communication performance of at least the subset of the access points; a number of electronic devices associated with at least the subset of the access points; or proximity of at least the subset of the access points to the rogue access point.

14. The non-transitory computer-readable storage medium of claim 8 , wherein the operations comprise selecting at least the subset of the access points having operating channels that are the same as the channel.

15. A method for facilitating collaborative attacks on a rouge rogue access point, comprising:

by a controller;

receiving, at an interface circuit, information identifying a rogue access point operating on a channel in a wireless local area network (WLAN); and

providing, from the interface circuit, instructions addressed to at least a subset of access points, wherein the instructions indicate that at least the subset of the access points collaboratively attack the rogue access point, and

wherein a given instruction for a given access point specifies a schedule of attacks by the given access point.

16. The method of claim 15 , wherein the information is associated with one or more of the access points.

17. The method of claim 15 , wherein the schedule comprises time intervals when the given access point attacks the rogue access point; and

wherein, when the given access point attacks the rogue access point, a remainder of the access points in at least the subset of the access points do not attack the rogue access point.

18. The method of claim 15 , wherein the given instruction indicates that, during an instance of an attack, the given access point:

transitions from an operating channel of the given access point to the channel;

transmits de-authentication messages associated with the rogue access point; and

transitions from the channel to the operating channel of the given access point.

19. The method of claim 15 , wherein the method comprises selecting at least the subset of the access points; and

wherein at least the subset of the access points is selected based at least in part on one of more of: at least the subset of the access points having previously reported receiving transmissions associated with the rogue access point; traffic loading of at least the subset of the access points; communication performance of at least the subset of the access points; a number of electronic devices associated with at least the subset of the access points; or proximity of at least the subset of the access points to the rogue access point.

20. The method of claim 15 , wherein the method comprises selecting at least the subset of the access points having operating channels that are the same as the channel.

Assignments (8)
SECURITY INTEREST Recorded Apr 8, 2026
From: ARRIS ENTERPRISES LLC; RUCKUS IP HOLDINGS LLC
To: CITIBANK, N.A., AS COLLATERAL AGENT
Reel/Frame 075476/0814 →
RELEASE OF SECURITY INTEREST AT REEL/FRAME 067252/0657 Recorded Jan 12, 2026
From: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
To: ARRIS ENTERPRISES LLC; COMMSCOPE TECHNOLOGIES LLC; COMMSCOPE NORTH CAROLINA, LLC (F/K/A COMMSCOPE, INC. OF NORTH CAROLINA)
Reel/Frame 074593/0348 →
RELEASE OF SECURITY INTEREST AT REEL/FRAME 067259/0697 Recorded Dec 19, 2024
From: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
To: ARRIS ENTERPRISES LLC (F/K/A ARRIS ENTERPRISES, INC.); COMMSCOPE, INC. OF NORTH CAROLINA; COMMSCOPE TECHNOLOGIES LLC
Reel/Frame 069790/0575 →
SECURITY INTEREST Recorded Dec 17, 2024
From: ARRIS ENTERPRISES LLC; COMMSCOPE TECHNOLOGIES LLC; COMMSCOPE INC., OF NORTH CAROLINA; OUTDOOR WIRELESS NETWORKS LLC; RUCKUS IP HOLDINGS LLC
To: APOLLO ADMINISTRATIVE AGENCY LLC
Reel/Frame 069889/0114 →
PATENT SECURITY AGREEMENT (TERM) Recorded Apr 29, 2024
From: ARRIS ENTERPRISES LLC; COMMSCOPE TECHNOLOGIES LLC; COMMSCOPE, INC. OF NORTH CAROLINA
To: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
Reel/Frame 067259/0697 →
PATENT SECURITY AGREEMENT (ABL) Recorded Apr 29, 2024
From: ARRIS ENTERPRISES LLC; COMMSCOPE TECHNOLOGIES LLC; COMMSCOPE, INC. OF NORTH CAROLINA
To: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
Reel/Frame 067252/0657 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 12, 2024
From: ARRIS ENTERPRISES LLC
To: RUCKUS IP HOLDINGS LLC
Reel/Frame 066399/0561 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 15, 2022
From: SADARAMACHANDRA, RAGHAVENDRA; CHEN, WEN
To: ARRIS ENTERPRISES LLC
Reel/Frame 060210/0880 →
Continuity (2)
Provisional Application 62958675 · Jan 8, 2020
Related Publication 20230031634A1 · Feb 2, 2023
References Cited (12)
US 20050171720A1 · Olson · 2005 [cited by examiner]
US 20060236391A1 · Kim · 2006 [cited by examiner]
US 20070217371A1 · Sinha · 2007 [cited by applicant]
US 20080101283A1 · Calhoun et al. · 2008 [cited by applicant]
US 20090271684A1 · Dietrich et al. · 2009 [cited by applicant]
US 20090271864A1 · Dietrich et al. · 2009 [cited by applicant]
US 20140245441A1 · Lee · 2014 [cited by examiner]
US 20140282905A1 · Iyer · 2014 [cited by examiner]
US 20150082429A1 · Rangarajan · 2015 [cited by examiner]
A. Yin et al., “Detecting Protected Layer-3 Rogue APs”, Sep. 2007, Fourth International Conference on Broadband Communications, Networks and Systems, pp. 449-458 (Year: 2007). [cited by examiner]
“Notification of Transmittal of the International Search Report and the Written Opinion of the International Searching Authority, or the Declaration for corresponding International Application No. PCT/US2020/064762, mai… [cited by applicant]
“International Search Report and the Written Opinion of the International Searching Authority, or the Declaration”, in corresponding patent application No. PCT/US2020/064762, Mar. 3, 2021, 12 pages. [cited by applicant]