-
1.
公开(公告)号:US20220225097A1
公开(公告)日:2022-07-14
申请号:US17147319
申请日:2021-01-12
发明人: Ugo Mario Campiglio , Amine Choukir , Roberto Muccifora , Domenico Ficara , Sachin Dinkar Wakudkar
IPC分类号: H04W12/069 , H04W12/041 , H04W12/033 , H04W12/71
摘要: A method for providing multicast frames in a Multi-Dwelling Unit (MDU) is provided herein. An Access Point (AP) can receive a join request from a first client device. The AP can generate a Group Master Key (GMK) from the Pre-Shared Key (PSK) associated with a Basic Service Set (BSS) that includes the first client device. The AP can then derive a Group Transient Key (GTK) from the GMK. The AP may then send the GTK to the first client device. Thereinafter, the AP can send multicast frames to the first client device encrypted by the GTK. The first client device can decrypt the multicast frames with the GTK. However, a second client device, that does not share the PSK, may receive the multicast frame but cannot decrypt the multicast frames.
-
公开(公告)号:US11627464B2
公开(公告)日:2023-04-11
申请号:US17090169
申请日:2020-11-05
发明人: Domenico Ficara , Ugo Mario Campiglio , Amine Choukir , Sachin Dinkar Wakudkar , Javier Ignacio Contreras Albesa , Jerome Henry
IPC分类号: H04W12/069 , H04W12/086 , H04W12/63 , H04W12/0433 , H04W84/12
摘要: Presented herein are techniques to manage a wireless local area network. A method includes defining a plurality of geographical zones corresponding to a geographical area that is serviced by a common service set identifier for a wireless local area network, assigning a pre-shared key to a mobile station based on the plurality of geographical zones, wherein the pre-shared key is associated with predetermined policies for a user of the mobile station, associating a media access control address of the mobile station with the pre-shared key, and controlling access of the mobile station to the wireless local area network based on the predetermined policies.
-
公开(公告)号:US20230099666A1
公开(公告)日:2023-03-30
申请号:US17487260
申请日:2021-09-28
IPC分类号: H04L29/06
摘要: Techniques and architecture are described for determining an identity of a client device and utilizing security policies associated with the client device provided by a device identity entity. For example, a tag associated with security policies is created for use in enforcing the security policies by a security policy enforcement entity associated with a cloud network. The techniques and architecture also allow for identification of a particular user on a client device that may be shared by multiple users based at least in part on the user accessing an application. Also, the techniques and architecture described herein provide a generic and agnostic approach to enforcing security policies for users and/or client devices.
-
公开(公告)号:US12047420B2
公开(公告)日:2024-07-23
申请号:US17487260
申请日:2021-09-28
IPC分类号: H04L9/40
CPC分类号: H04L63/20 , H04L63/102
摘要: Techniques and architecture are described for determining an identity of a client device and utilizing security policies associated with the client device provided by a device identity entity. For example, a tag associated with security policies is created for use in enforcing the security policies by a security policy enforcement entity associated with a cloud network. The techniques and architecture also allow for identification of a particular user on a client device that may be shared by multiple users based at least in part on the user accessing an application. Also, the techniques and architecture described herein provide a generic and agnostic approach to enforcing security policies for users and/or client devices.
-
5.
公开(公告)号:US20230308876A1
公开(公告)日:2023-09-28
申请号:US18325288
申请日:2023-05-30
发明人: Ugo Mario Campiglio , Amine Choukir , Roberto Muccifora , Domenico Ficara , Sachin Dinkar Wakudkar
IPC分类号: H04W12/069 , H04W12/71 , H04W12/041 , H04W12/033
CPC分类号: H04W12/069 , H04W12/71 , H04W12/041 , H04W12/033
摘要: A method for providing multicast frames in a Multi-Dwelling Unit (MDU) is provided herein. An Access Point (AP) can receive a join request from a first client device. The AP can generate a Group Master Key (GMK) from the Pre-Shared Key (PSK) associated with a Basic Service Set (BSS) that includes the first client device. The AP can then derive a Group Transient Key (GTK) from the GMK. The AP may then send the GTK to the first client device. Thereinafter, the AP can send multicast frames to the first client device encrypted by the GTK. The first client device can decrypt the multicast frames with the GTK. However, a second client device, that does not share the PSK, may receive the multicast frame but cannot decrypt the multicast frames.
-
公开(公告)号:US20240348662A1
公开(公告)日:2024-10-17
申请号:US18753432
申请日:2024-06-25
IPC分类号: H04L9/40
CPC分类号: H04L63/20 , H04L63/102
摘要: Techniques and architecture are described for determining an identity of a client device and utilizing security policies associated with the client device provided by a device identity entity. For example, a tag associated with security policies is created for use in enforcing the security policies by a security policy enforcement entity associated with a cloud network. The techniques and architecture also allow for identification of a particular user on a client device that may be shared by multiple users based at least in part on the user accessing an application. Also, the techniques and architecture described herein provide a generic and agnostic approach to enforcing security policies for users and/or client devices.
-
7.
公开(公告)号:US12069478B2
公开(公告)日:2024-08-20
申请号:US18325288
申请日:2023-05-30
发明人: Ugo Mario Campiglio , Amine Choukir , Roberto Muccifora , Domenico Ficara , Sachin Dinkar Wakudkar
IPC分类号: H04L9/40 , H04W12/033 , H04W12/041 , H04W12/06 , H04W12/069 , H04W12/71
CPC分类号: H04W12/069 , H04W12/033 , H04W12/041 , H04W12/71
摘要: A method for providing multicast frames in a Multi-Dwelling Unit (MDU) is provided herein. An Access Point (AP) can receive a join request from a first client device. The AP can generate a Group Master Key (GMK) from the Pre-Shared Key (PSK) associated with a Basic Service Set (BSS) that includes the first client device. The AP can then derive a Group Transient Key (GTK) from the GMK. The AP may then send the GTK to the first client device. Thereinafter, the AP can send multicast frames to the first client device encrypted by the GTK. The first client device can decrypt the multicast frames with the GTK. However, a second client device, that does not share the PSK, may receive the multicast frame but cannot decrypt the multicast frames.
-
8.
公开(公告)号:US11665544B2
公开(公告)日:2023-05-30
申请号:US17147319
申请日:2021-01-12
发明人: Ugo Mario Campiglio , Amine Choukir , Roberto Muccifora , Domenico Ficara , Sachin Dinkar Wakudkar
IPC分类号: H04L9/40 , H04W12/06 , H04W12/069 , H04W12/71 , H04W12/041 , H04W12/033
CPC分类号: H04W12/069 , H04W12/033 , H04W12/041 , H04W12/71
摘要: A method for providing multicast frames in a Multi-Dwelling Unit (MDU) is provided herein. An Access Point (AP) can receive a join request from a first client device. The AP can generate a Group Master Key (GMK) from the Pre-Shared Key (PSK) associated with a Basic Service Set (BSS) that includes the first client device. The AP can then derive a Group Transient Key (GTK) from the GMK. The AP may then send the GTK to the first client device. Thereinafter, the AP can send multicast frames to the first client device encrypted by the GTK. The first client device can decrypt the multicast frames with the GTK. However, a second client device, that does not share the PSK, may receive the multicast frame but cannot decrypt the multicast frames.
-
公开(公告)号:US20210360400A1
公开(公告)日:2021-11-18
申请号:US17090169
申请日:2020-11-05
发明人: Domenico Ficara , Ugo Mario Campiglio , Amine Choukir , Sachin Dinkar Wakudkar , Javier Ignacio Contreras Albesa , Jerome Henry
摘要: Presented herein are techniques to manage a wireless local area network. A method includes defining a plurality of geographical zones corresponding to a geographical area that is serviced by a common service set identifier for a wireless local area network, assigning a pre-shared key to a mobile station based on the plurality of geographical zones, wherein the pre-shared key is associated with predetermined policies for a user of the mobile station, associating a media access control address of the mobile station with the pre-shared key, and controlling access of the mobile station to the wireless local area network based on the predetermined policies.
-
-
-
-
-
-
-
-