ANCHORED WI-FI FINGERPRINTING FOR RISK-BASED AUTHENTICATION

    公开(公告)号:US20240314554A1

    公开(公告)日:2024-09-19

    申请号:US18122942

    申请日:2023-03-17

    IPC分类号: H04W12/06 H04W12/79

    CPC分类号: H04W12/06 H04W12/79 H04W84/12

    摘要: This disclosure describes techniques for using an anchored endpoint to enhance MFA authentication of a client device. A method performed at least in part by a security service includes authenticating of a client device connecting to a secure resource. The method also includes determining a first Wi-Fi fingerprint of the client device, determining that the client device is within a threshold proximity to an anchor device, and determining a second Wi-Fi fingerprint of the anchor device. The method also includes detecting a change to the first Wi-Fi fingerprint of the client device and determining that the second Wi-Fi fingerprint of the anchor device has not changed. The method also includes determining whether the client device is within the threshold proximity of the anchor device, if it is, access to the secured resource continues to be allowed, if it is not, a reauthentication of the client device is triggered.

    POWER-BASED CHANNEL ASSIGNMENTS FOR OVERLAPPING ACCESS POINTS

    公开(公告)号:US20240276229A1

    公开(公告)日:2024-08-15

    申请号:US18108236

    申请日:2023-02-10

    IPC分类号: H04W16/02 H04W52/38

    CPC分类号: H04W16/02 H04W52/38

    摘要: According to one or more embodiments of the disclosure, an example process herein may comprise: detecting overlapping coverage among a set of access points; identifying a permissible set of channels for each access point of the set of access points based at least in part on power characteristics associated with each access point of the set of access points; determining a level of modal commonality with neighboring access points for each access point of the set of access points; and assigning a channel to each access point of the set of access points based on the permissible set of channels and the level of modal commonality with neighboring access points for that access point.

    Mitigation of active link alternation by multi-link devices

    公开(公告)号:US11722931B2

    公开(公告)日:2023-08-08

    申请号:US17219376

    申请日:2021-03-31

    IPC分类号: H04W28/10 H04W28/02

    CPC分类号: H04W28/10 H04W28/0252

    摘要: Mitigation of active link alternation by multi-link devices (MLDs) may be provided. First, at least first and second links may be established between an Access Point (AP) MLD and an associated MLD client. The first link may be active, while the second link may be inactive. A set of traffic load data associated with the links may be collected before and after transmission of a Basic Service Set (BSS) load report to the MLD client. The report may include a traffic load on the second link prior to transmission, where the second link is less loaded than the first link. Based on the collected traffic load data, an active link alternation from the first to the second link by the MLD client responsive to receiving the report may be detected. One or more methods for BSS load report management may then be applied to mitigate future active link alternation.

    Seamless roaming for multi-link device clients

    公开(公告)号:US11553390B2

    公开(公告)日:2023-01-10

    申请号:US17144931

    申请日:2021-01-08

    摘要: Seamless client roaming for Multi-Link Device (MLD) clients may be provided. First, a Traffic Identifier (TID)-to-link map may be established by an Upper Service Access Point (U-SAP) of a multi-AP MLD entity that assigns subsets of TIDs to at least two links of the entity. For example, a client device logically associates with the U-SAP, while the client device physically connects to a first and second AP of the entity on a respective first and second link, where the first and second AP include first and second Lower Service Access Points (L-SAPs) and are non-collocated. Next, using the map, data received at the U-SAP is directed over one of the two links for transmission to the client device. Further, frame aggregation and block acknowledgment functions may be performed by one of the first or second L-SAP based on whether data transmission is over the first or second link.

    Flexible radio assignment for multi-link capable access points

    公开(公告)号:US11510210B2

    公开(公告)日:2022-11-22

    申请号:US17171741

    申请日:2021-02-09

    IPC分类号: H04W72/04 H04W8/00 H04L5/00

    摘要: Management of radio resources of a wireless network according to a Flexible Radio Assignment (FRA) mode may be provided. For each Access Point (AP) of the wireless network: a type of AP may be identified including determining whether each AP has Multi-Link (ML) capability, and when the FRA mode is for performance, a bias may be applied to each ML capable AP to reduce a likelihood of a radio of each ML capable AP being identified as a redundant radio. For each Client Device (CD) of the wireless network, an identification of whether each CD has ML capability may be made, and a radio configuration of at least one ML capable AP may be tailored to support one or more ML capable CDs.