System and method for remotely filtering network traffic of a customer premise device

    公开(公告)号:US11641341B2

    公开(公告)日:2023-05-02

    申请号:US17356710

    申请日:2021-06-24

    Abstract: Systems, methods, and devices for performing targeted filtering of network traffic generated by user equipment (UE) devices connected to a customer premise equipment (CPE) device in a communication system that includes a distributed residential gateway. A network server may determine that the communication system includes a UE device that is compromised, misconfigured, or operating outside normal communication parameters, identify the UE device, determine an Internet protocol (IP) address or a media access control (MAC) address of the identified UE device, generate a quarantine request message that includes the IP address or the MAC address of the identified UE device in response to determining that the preconfigured virtual local area network access control list (VACL) on the CPE lists source IP addresses from which the CPE will filter outbound traffic, and send the generated quarantine request message to a bridged residential gateway (BRG) associated with the CPE device.

    Identifying a tethered device using TCP error transmissions

    公开(公告)号:US11533244B1

    公开(公告)日:2022-12-20

    申请号:US17380695

    申请日:2021-07-20

    Abstract: Various embodiments comprise systems, methods, mechanisms, and apparatus by which a network operator such as a wireline internet service provider (ISP) may determine that an endpoint device has one or more other wireless devices tethered to it, such as a mobile handset providing dual-Wi-Fi ad-hoc tethering (i.e., connected to a high-speed Wi-Fi network while simultaneously providing Wi-Fi connections to wireless devices tethered to the mobile handset), by monitoring Transmission Control Protocol (TCP)/IP traffic flow associated with endpoint devices (i.e., to or through endpoint devices), characterizing these traffic flows in accordance with one or more error indicative criteria to establish thereby a baseline profile of error indicative criteria that is indicative of a TCP/IP traffic flow associated with an endpoint device that is not associated with tethering (e.g., a rate or number of duplicate ACKs), wherein deviations from the baseline profile of error indicative criteria beyond a threshold are indicative of a TCP/IP traffic flow associated with an endpoint device that is associated with tethering.

    Speed boost for eligible user equipment on a local area network

    公开(公告)号:US12177096B2

    公开(公告)日:2024-12-24

    申请号:US18408957

    申请日:2024-01-10

    Abstract: A method for providing a differentiated feature to a first user equipment (UE) connected to a local area network (LAN) implemented by a router connected to a customer premises equipment (CPE) provisioned with a default feature associated with a first service tier of a plurality of service tiers provided by an internet service provider includes obtaining data indicating the first UE has connected to the LAN and determining the first UE is eligible for a second service tier of the different tiers. In response to determining the first UE is eligible for the second service tier, the method includes causing the CPE to be dynamically provisioned for a differentiated service associated with the second service tier. The method includes sending a message to the router to configure the router to provide the differentiated feature to the first UE.

    METHODS AND APPARATUS FOR IMPLEMENTING VLAN STACKING FOR SEAMLESS ROAMING IN HIGH DENSITY WIRELESS NETWORKS

    公开(公告)号:US20240298176A1

    公开(公告)日:2024-09-05

    申请号:US18115919

    申请日:2023-03-01

    CPC classification number: H04W12/069 H04W12/69

    Abstract: The present invention relates to methods and apparatus for providing services in high density deployments using dynamic assignment Virtual Local Area Network (VLAN) stacking during client device authentication. An exemplary method includes the steps of: receiving wirelessly, by a first Access Point (AP), a first authentication request message including first user equipment device identification information from a first user equipment device; generating, by the first AP, a second message based on the first authentication request message, the second message including the first user equipment device identification information and location information for the first AP; transmitting, by first AP, the second message to a first server; and receiving in response to the second message, by the first AP, a third message, said third message including dynamically assigned stacked VLAN information including a first Service-VLAN Identifier and a first Customer-VLAN Identifier dynamically assigned to the first user equipment device.

    METHODS AND APPARATUS FOR DISCOVERING HIDDEN NETWORK SERVICE SET IDENTIFIERS

    公开(公告)号:US20230300719A1

    公开(公告)日:2023-09-21

    申请号:US17696431

    申请日:2022-03-16

    CPC classification number: H04W48/08 H04W48/16

    Abstract: The presentation invention relates to methods and apparatus for a mobile device to discover the hidden SSID of a network. An exemplary method embodiment includes the steps of: receiving, at the mobile device, a first beacon frame having a Service Set Identifier (SSID) field set to NULL from a first Access Point; determining, at the mobile device, based on information received from the first Access Point that the mobile device is provisioned to connect to a first network advertised by the first beacon frame; discovering, by the mobile device, a first SSID name for the first network advertised by the first beacon frame for which the mobile device is provisioned. In another embodiment the mobile device associates with the first network after discovering the first SSID name.

    Identifying a tethered device using TCP error transmissions

    公开(公告)号:US11924078B2

    公开(公告)日:2024-03-05

    申请号:US18078178

    申请日:2022-12-09

    CPC classification number: H04L43/0847 H04L47/11 H04L69/16 H04W24/02

    Abstract: Various embodiments comprise systems, methods, mechanisms, and apparatus by which a network operator such as a wireline internet service provider (ISP) may determine that an endpoint device has one or more other wireless devices tethered to it, such as a mobile handset providing dual-Wi-Fi ad-hoc tethering (i.e., connected to a high-speed Wi-Fi network while simultaneously providing Wi-Fi connections to wireless devices tethered to the mobile handset), by monitoring Transmission Control Protocol (TCP)/IP traffic flow associated with endpoint devices (i.e., to or through endpoint devices), characterizing these traffic flows in accordance with one or more error indicative criteria to establish thereby a baseline profile of error indicative criteria that is indicative of a TCP/IP traffic flow associated with an endpoint device that is not associated with tethering (e.g., a rate or number of duplicate ACKs), wherein deviations from the baseline profile of error indicative criteria beyond a threshold are indicative of a TCP/IP traffic flow associated with an endpoint device that is associated with tethering.

    Speed boost for eligible user equipment on a local area network

    公开(公告)号:US11909605B1

    公开(公告)日:2024-02-20

    申请号:US18086042

    申请日:2022-12-21

    CPC classification number: H04L41/508 H04L41/0896

    Abstract: A method for providing a differentiated feature to a first user equipment (UE) connected to a local area network (LAN) implemented by a router connected to a customer premises equipment (CPE) provisioned with a default feature associated with a first service tier of a plurality of service tiers provided by an internet service provider includes obtaining data indicating the first UE has connected to the LAN and determining the first UE is eligible for a second service tier of the different tiers. In response to determining the first UE is eligible for the second service tier, the method includes causing the CPE to be dynamically provisioned for a differentiated service associated with the second service tier. The method includes sending a message to the router to configure the router to provide the differentiated feature to the first UE.

    Automatic local gateway router backup of a network gateway router

    公开(公告)号:US11240098B2

    公开(公告)日:2022-02-01

    申请号:US16839998

    申请日:2020-04-03

    Abstract: Automatic local gateway router backup of a network gateway router is disclosed. A local gateway router communicatively coupled to a local subnet determines that a network gateway router that serves as a default gateway router for the local subnet has stopped responding. The local gateway router and the network gateway router are configured to communicate with one another via a tunnel implemented by a tunneling protocol. In response to determining that the network gateway router has stopped responding, automatically switching, by the local gateway router, from a tunneling mode to a routing mode, such that the local gateway router becomes the default gateway router for the local subnet.

    AUTOMATIC LOCAL GATEWAY ROUTER BACKUP OF A NETWORK GATEWAY ROUTER

    公开(公告)号:US20210314217A1

    公开(公告)日:2021-10-07

    申请号:US16839998

    申请日:2020-04-03

    Abstract: Automatic local gateway router backup of a network gateway router is disclosed. A local gateway router communicatively coupled to a local subnet determines that a network gateway router that serves as a default gateway router for the local subnet has stopped responding. The local gateway router and the network gateway router are configured to communicate with one another via a tunnel implemented by a tunneling protocol. In response to determining that the network gateway router has stopped responding, automatically switching, by the local gateway router, from a tunneling mode to a routing mode, such that the local gateway router becomes the default gateway router for the local subnet.

Patent Agency Ranking