Rogue access point detection
    5.
    发明授权
    Rogue access point detection 有权
    流氓接入点检测

    公开(公告)号:US07760710B2

    公开(公告)日:2010-07-20

    申请号:US11613594

    申请日:2006-12-20

    IPC分类号: H04L12/66

    摘要: A method of detecting a rogue access point is disclosed. A message is directed from a supplicant to a network through a first access point. A response message is received by the supplicant from the first access point. The supplicant can determine the first access point is a rogue access point based on whether the response message from the first access point is in nonconformity with a predetermined expectation. After the access point is determined to be a rogue access point, it is reported to the network through a valid network access point, after the supplicant is authenticated to the network.

    摘要翻译: 公开了一种检测流氓接入点的方法。 消息通过第一接入点从请求者指向网络。 请求者从第一接入点接收到响应消息。 请求者可以基于来自第一接入点的响应消息是否与预定期望不符合来确定第一接入点是不流氓接入点。 在接入点被确定为流氓接入点后,在向网络认证请求者后,通过有效的网络接入点向网络报告。

    Rogue AP detection
    6.
    发明授权
    Rogue AP detection 有权
    盗贼AP检测

    公开(公告)号:US07181530B1

    公开(公告)日:2007-02-20

    申请号:US09917122

    申请日:2001-07-27

    IPC分类号: G06F15/173

    摘要: A method of detecting a rogue access point is disclosed. A message is directed from a supplicant to a network through an access point. A network response message is received by the supplicant from the access point. A step of determining whether the access point is one of a valid network access point and a rogue access point is performed based on whether the received network response message is respectively in conformity or nonconformity with predetermined expectations. If the access point is determined to be a rogue access point, it is reported to the network. If the access point is determined to be a valid network access point, the supplicant is authenticated to the network.

    摘要翻译: 公开了一种检测流氓接入点的方法。 消息通过接入点从请求者发送到网络。 请求方从接入点接收到网络响应消息。 基于接收到的网络响应消息是否与预定期望一致或不一致来确定接入点是否是有效网络接入点和恶意接入点之一的步骤。 如果接入点被确定为流氓接入点,则将其报告给网络。 如果接入点被确定为有效的网络接入点,则向网络认证请求者。

    Tag location, client location, and coverage hole location in a wireless network
    7.
    发明授权
    Tag location, client location, and coverage hole location in a wireless network 有权
    无线网络中的标签位置,客户端位置和覆盖孔位置

    公开(公告)号:US07558852B2

    公开(公告)日:2009-07-07

    申请号:US11842549

    申请日:2007-08-21

    IPC分类号: G06F15/173

    摘要: Determining the location of a radio tag or client station of a wireless network, and the location of coverage holes by receiving from a plurality of wireless stations of the wireless network path loss information of the path loss of one or more location frames received at the respective wireless stations. The location frames transmitted by the radio tag or client station having a pre-defined frame structure. The radio tags and client stations use a common infrastructure for transmitting a location frame configured for radiolocation by path loss measurement. The common infrastructure includes a pre-defined protocol common for both radio tags and client stations for transmitting information for reception by the plurality of stations of the wireless network for radiolocation. The pre-defined protocol includes using the location frame having the pre-defined frame structure.

    摘要翻译: 确定无线网络的无线电标签或客户站的位置,以及通过从多个无线站接收无线网络路径损失信息来确定无线网络的无线电标签或客户站的位置,以及在各个无线站点处接收到的一个或多个位置帧的路径损耗 无线电台。 由具有预定义帧结构的无线电标签或客户站发送的位置帧。 无线电标签和客户端站使用通用基础设施来发送通过路径损耗测量配置无线电定位的位置帧。 公共基础设施包括用于无线电标签和客户端站的公共的预定义协议,用于发送用于由用于无线电定位的无线网络的多个站点接收的信息。 预定义的协议包括使用具有预定义帧结构的位置帧。

    Fast re-authentication with dynamic credentials
    8.
    发明授权
    Fast re-authentication with dynamic credentials 有权
    快速重新身份验证与动态凭据

    公开(公告)号:US07434044B2

    公开(公告)日:2008-10-07

    申请号:US10373128

    申请日:2003-02-26

    摘要: A proxy server that is inserted between a plurality of network access servers, typically an access points, and an authentication server. When an original authentication request is received by an network access server, the network access server forwards the request to the proxy server which forwards the request to an authentication server. The authentication server then sends the session information to the proxy server which stores the keying material as a dynamic credentials. When the client re-authenticates with one of the plurality of access servers, the re-authentication request is handled by the proxy server using the dynamic credentials. The proxy server may re-authenticate the client using a different method than the method that was originally used. For example, the original authentication may be by Extensible Authentication Protocol-Transport Layer Security (EAP-TLS) and subsequent reauthentications may use Wi-Fi Protected Access (WPA).

    摘要翻译: 插入在多个网络接入服务器(通常为接入点)和认证服务器之间的代理服务器。 当网络接入服务器接收到原始认证请求时,网络接入服务器将请求转发给代理服务器,将代理服务器转发给认证服务器。 然后,认证服务器将会话信息发送到存储密钥材料的代理服务器作为动态凭证。 当客户端重新认证多个访问服务器之一时,重新认证请求由代理服务器使用动态凭证处理。 代理服务器可以使用与最初使用的方法不同的方法来重新验证客户端。 例如,原始身份验证可能是通过可扩展身份验证协议 - 传输层安全(EAP-TLS)进行的,后续的重新认证可能会使用Wi-Fi保护访问(WPA)。

    System and method of controlling access by a wireless client to a network that utilizes a challenge/handshake authentication protocol
    9.
    发明授权
    System and method of controlling access by a wireless client to a network that utilizes a challenge/handshake authentication protocol 失效
    控制无线客户端访问利用挑战/握手认证协议的网络的系统和方法

    公开(公告)号:US07082535B1

    公开(公告)日:2006-07-25

    申请号:US10124285

    申请日:2002-04-17

    摘要: Architecture for controlling access by a Light Extensible Authentication Protocol (LEAP)-compatible wireless client to a network that utilizes a challenge/handshake authentication protocol (CHAP). A proxy service is hosted on a network server disposed on the network, and accessed in response to receiving access information from the client. The access information is processed with the proxy service into CHAP-compatible access information, and forwarded to a CHAP-based access control server disposed on the network to determine whether to grant network access to the client.

    摘要翻译: 用于通过光可扩展认证协议(LEAP)兼容的无线客户端访问利用挑战/握手认证协议(CHAP)的网络的架构。 代理服务被托管在设置在网络上的网络服务器上,并且响应于从客户端接收到访问信息被访问。 将访问信息与代理服务一起处理为CHAP兼容的访问信息,并转发到位于网络上的基于CHAP的访问控制服务器,以确定是否向客户端授予网络访问权限。

    System for selecting the operating frequency of a communication device in a wireless network
    10.
    发明授权
    System for selecting the operating frequency of a communication device in a wireless network 有权
    用于选择无线网络中通信设备的工作频率的系统

    公开(公告)号:US07260620B1

    公开(公告)日:2007-08-21

    申请号:US10802985

    申请日:2004-03-17

    申请人: David E. Halasz

    发明人: David E. Halasz

    IPC分类号: G06F15/13

    摘要: A system for automatically selecting communication frequencies for wireless communication devices (e.g., base unit, access point, and controller) being added to an existing wireless network. The operating frequencies, evaluated signal strength, and loads are used in determining the most suitable operating frequency. This automatic selection process eliminates the problems inherent in manual frequency selection.

    摘要翻译: 用于自动选择无线通信设备(例如,基站,接入点和控制器)的通信频率的系统被添加到现有的无线网络中。 操作频率,评估信号强度和负载用于确定最合适的工作频率。 这种自动选择过程消除了手动频率选择中固有的问题。