Automatic network address assignment in a wireless mesh
    2.
    发明授权
    Automatic network address assignment in a wireless mesh 有权
    在无线网格中自动进行网络地址分配

    公开(公告)号:US08385230B2

    公开(公告)日:2013-02-26

    申请号:US12392777

    申请日:2009-02-25

    IPC分类号: H04L12/28

    摘要: A computing environment containing a mesh network that is adapted to provide a reliable transport mechanism over which services may be delivered. Nodes of the mesh can automatically select routable addresses without conflicts, which allows nodes of the mesh to be accessed, even as the mesh changes through the addition or deletion of nodes. Also, nodes communicate with a protocol that supports service advertisements. These advertisements can identify mesh nodes that supply services, such as file or print servers, for which devices that have not yet connected to the network may be searching. Advertisements can also identify services to be used by nodes in the network, allowing, for example, a node to select a gateway providing a reliable connection to an external network. The mesh network can be used as a transport for communication using protocols, such as TCP/IP, that generally exhibit poor performance when using unreliable transports.

    摘要翻译: 一种包含网状网络的计算环境,其适于提供可传送服务的可靠传输机制。 网格的节点可以自动选择可路由的地址,而不会产生冲突,这允许网格的节点被访问,即使当网格通过添加或删除节点而改变时。 此外,节点与支持服务广告的协议进行通信。 这些广告可以识别提供诸如文件或打印服务器的服务的网状节点,对于尚未连接到网络的设备可能正在搜索的那些设备。 广告还可以识别要由网络中的节点使用的服务,例如,允许节点选择提供与外部网络的可靠连接的网关。 网状网络可以用作使用诸如TCP / IP的协议的通信的传输,当使用不可靠的传输时,通常表现出差的性能。

    Generic framework for EAP
    3.
    发明授权
    Generic framework for EAP 有权
    EAP的通用框架

    公开(公告)号:US08307411B2

    公开(公告)日:2012-11-06

    申请号:US11704624

    申请日:2007-02-09

    IPC分类号: H04L29/06

    CPC分类号: H04L63/083 H04L63/162

    摘要: An EAP-based authentication framework is provided that decouples credential acquisition from EAP methods that use credentials for authentication. An application may request from an EAP method parameters of credentials required by the EAP method. In response, the EAP method provides credential parameters, which may then be used by the application to acquire credentials consistent with the parameters from the user or other entity. The framework enables an application to request credentials in a context specific way. In addition, the application may simultaneously obtain credentials used in multiple authentication operations through a single user interface, or retain credentials for later use without further prompting a user such that a Single Sign-on user experience may be implemented. Additionally, the application can obtain credentials from a device so that the device may gain network access without requiring a user logon.

    摘要翻译: 提供了一种基于EAP的认证框架,用于将凭证获取与使用凭证进行身份验证的EAP方法进行脱钩。 应用程序可以从EAP方法请求的凭证请求EAP请求。 作为响应,EAP方法提供凭证参数,然后可以由应用程序使用该参数来获取与来自用户或其他实体的参数一致的凭证。 该框架使应用程序能够以上下文特定的方式请求凭证。 此外,应用程序可以同时获取通过单个用户界面在多个认证操作中使用的凭证,或者保留凭证以供将来使用而不进一步提示用户,使得可以实现单点登录用户体验。 此外,应用程序可以从设备获取凭据,以便设备可以在不需要用户登录的情况下获得网络访问权限。

    Extensible network discovery
    4.
    发明授权
    Extensible network discovery 有权
    可扩展网络发现

    公开(公告)号:US08245284B2

    公开(公告)日:2012-08-14

    申请号:US11599260

    申请日:2006-11-10

    IPC分类号: H04L29/06

    摘要: A computer system that can configure itself to establish a network connection. Configuration is performed by identifying a connection profile with information from a combination of sources. Information may be obtained from user input, network traffic monitoring and a discovery process involving attempts to establish a connection with different profiles. The computer system may perform the configuration process under the control of software that performs an automated configuration process is adapted to receive extensions for operation on computers with hardware components that have non-standardized configuration options. Extensions for networks operating according to non-standardized security protocol extensions are also possible.

    摘要翻译: 可以配置自己建立网络连接的计算机系统。 通过使用源的组合的信息识别连接简档来执行配置。 信息可以从用户输入,网络流量监控以及涉及尝试建立与不同配置文件的连接的发现过程获得。 计算机系统可以在执行自动配置过程的软件的控制下执行配置过程,以适应于在具有具有非标准化配置选项的硬件组件的计算机上接收用于操作的扩展。 根据非标准化安全协议扩展运行的网络的扩展也是可能的。

    REGISTRATION AND NETWORK ACCESS CONTROL
    5.
    发明申请
    REGISTRATION AND NETWORK ACCESS CONTROL 有权
    注册和网络访问控制

    公开(公告)号:US20120167185A1

    公开(公告)日:2012-06-28

    申请号:US12978158

    申请日:2010-12-23

    IPC分类号: G06F15/16 G06F17/30

    摘要: In embodiments of registration and network access control, an initially unconfigured network interface device can be registered and configured as an interface to a public network for a client device. In another embodiment, a network interface device can receive a network access request from a client device to access a secure network utilizing extensible authentication protocol (EAP), and the request is communicated to an authentication service to authenticate a user of the client device based on user credentials. In another embodiment, a network interface device can receive a network access request from a client device to access a Web site in a public network utilizing a universal access method (UAM), and the request is redirected to the authentication service to authenticate a user of the client device based on user credentials.

    摘要翻译: 在注册和网络访问控制的实施例中,可以将初始未配置的网络接口设备注册和配置为用于客户端设备的公共网络的接口。 在另一个实施例中,网络接口设备可以接收来自客户端设备的网络访问请求,以利用可扩展认证协议(EAP)来访问安全网络,并且该请求被传送到认证服务以基于客户端设备的用户认证 用户凭据。 在另一个实施例中,网络接口设备可以使用通用接入方法(UAM)从客户端设备接收访问公共网络中的网站的网络接入请求,并且将该请求重定向到认证服务以认证用户的 客户端设备基于用户凭据。

    Coordinating a transition of a roaming client between wireless access points using another client in physical proximity
    6.
    发明申请
    Coordinating a transition of a roaming client between wireless access points using another client in physical proximity 有权
    使用物理上接近的另一个客户端来协调漫游客户端在无线接入点之间的转换

    公开(公告)号:US20070253369A1

    公开(公告)日:2007-11-01

    申请号:US11414571

    申请日:2006-04-28

    IPC分类号: H04Q7/00

    CPC分类号: H04W36/0055 H04W88/04

    摘要: Systems and methods for handling a transition of a roaming mobile user device (i.e., a roaming client) from one access point (AP) to a target AP, referred to herein as soft inter-AP handoff. This technique involves a second mobile user device that is already connected with the target AP, called a roaming coordinator, assisting in handoff coordination between the APs. This coordination includes assisting the roaming client in establishing a client-to-client connection to relay data traffic during the handoff, while the roaming client establishes a connection with the target AP using traditional techniques. Soft inter-AP handoff allows a faster hand-off between APs than traditional techniques, and may reduce jitter in communications with the roaming device during the transition.

    摘要翻译: 用于处理从一个接入点(AP)到目标AP的漫游移动用户设备(即,漫游客户端)的转换的系统和方法,这里称为软AP间切换。 该技术涉及已经与称为漫游协调器的目标AP连接的第二移动用户设备,协助AP之间的切换协调。 该协调包括协助漫游客户端建立客户端到客户端连接以在切换期间中继数据业务,而漫游客户端使用传统技术与目标AP建立连接。 软APAP切换允许AP之间的传输速度比传统技术更快,并且可以在转换期间减少与漫游设备的通信中的抖动。

    Extensible access control architecture
    7.
    发明申请
    Extensible access control architecture 有权
    可扩展访问控制架构

    公开(公告)号:US20070016939A1

    公开(公告)日:2007-01-18

    申请号:US11177757

    申请日:2005-07-08

    IPC分类号: H04L9/32

    摘要: Software for managing access control functions in a network. The software includes a host that receives access control commands or information and calls one or more methods. The methods perform access control functions and communicate access control results or messages to be transmitted. The host may be installed in a network peer seeking access to the network or in a server controlling access to the network. When installed in a peer, the host receives commands and exchanges information with a supplicant. When installed in an access control server, the host receives commands and exchanges information with an authenticator. The host has a flexible architecture that enables multiple features, such as allowing the same methods to be used for authentication by multiple supplicants, providing ready integration of third party access control software, simplifying network maintenance by facilitating upgrades of authenticator software and enabling access control functions other than peer authentication.

    摘要翻译: 用于管理网络中访问控制功能的软件。 该软件包括接收访问控制命令或信息并调用一个或多个方法的主机。 该方法执行访问控制功能并传送要发送的访问控制结果或消息。 主机可以安装在寻求对网络的访问的网络对等体中,或者在控制对网络的访问的服务器中。 当安装在对等体中时,主机接收命令并与请求者交换信息。 当安装在访问控制服务器中时,主机接收命令并与验证者交换信息。 主机具有灵活的架构,可实现多种功能,例如允许将相同的方法用于多个请求者的身份验证,提供第三方访问控制软件的即时集成,通过促进验证器软件升级和启用访问控制功能简化网络维护 除了对等认证。

    Support of multiple pre-shared keys in access point
    9.
    发明授权
    Support of multiple pre-shared keys in access point 有权
    在接入点支持多个预共享密钥

    公开(公告)号:US08898474B2

    公开(公告)日:2014-11-25

    申请号:US12359987

    申请日:2009-01-26

    摘要: A method of operating an access point (AP) configured to support multiple pre-shared keys at a given time to authenticate its associated client devices. Each client device associated with the AP is provisioned with a key. To authenticate the client device that attempts to connect to the AP, the AP determines which pre-shared key (PSK) of the multiple supported pre-shared keys (PSKs), if any, matches information including the key received from the client device. When the information matches, the client device is allowed to connect to the AP. Provisioning the AP with multiple PSKs allows selectively disconnecting associated client devices from the AP. The AP may be configured to support PSKs of different lifetime and complexity. Removing a PSK of the multiple PSKs supported by the AP and disconnecting a client device that uses this PSK does not disconnect other client devices using different keys to access the AP.

    摘要翻译: 一种操作接入点(AP)的方法,所述接入点(AP)被配置为在给定时间支持多个预共享密钥以验证其相关联的客户端设备。 与AP相关联的每个客户端设备都配置了一个密钥。 为了验证尝试连接到AP的客户端设备,AP确定多个支持的预共享密钥(PSK)的哪个预共享密钥(PSK)(如果有的话)匹配包括从客户端设备接收的密钥的信息。 当信息匹配时,允许客户端设备连接到AP。 为AP配置多个PSK可以有选择地断开与AP的关联的客户端设备。 AP可以被配置为支持不同寿命和复杂性的PSK。 删除AP支持的多个PSK的PSK并断开使用此PSK的客户端设备不会使用不同的密钥断开其他客户端设备访问AP。

    Extensible private driver interface
    10.
    发明授权
    Extensible private driver interface 有权
    可扩展的私有驱动程序接口

    公开(公告)号:US08826307B2

    公开(公告)日:2014-09-02

    申请号:US12106255

    申请日:2008-04-18

    CPC分类号: G06F13/102

    摘要: A computer with an extensible framework for facilitating communication between a software component installed on the computer and a device driver that executes functions in response to vendor-specific command objects (e.g., OIDs). The framework defines data structures and a standardized format for defining and implementing private interfaces. After selecting a private interface that is commonly supported by a software component and a driver, a private communication path may be established by an operating system component to facilitate the transfer of command information from the software component to the driver. The private communication path allows commands packaged as OIDs to be routed from software components to intended drivers. By defining private interfaces which route commands from software components to intended drivers, the extensible framework mitigates potential incompatibilities that may arise when drivers created by different vendors include OIDs with the same OID value.

    摘要翻译: 具有可扩展框架的计算机,用于促进安装在计算机上的软件组件与响应于供应商特定的命令对象(例如,OID)执行功能的设备驱动程序之间的通信。 框架定义数据​​结构和用于定义和实现私有接口的标准化格式。 在选择通常被软件组件和驱动程序支持的私有接口之后,可以由操作系统组件建立专用通信路径,以便于将命令信息从软件组件传输到驱动器。 专用通信路径允许打包成OID的命令从软件组件路由到预期的驱动程序。 通过定义将命令从软件组件路由到预期驱动程序的私有接口,可扩展框架可减轻不同供应商创建的驱动程序包含具有相同OID值的OID时可能出现的潜在不兼容性。