Secure Provisioning Methods And Apparatus For Mobile Communication Devices Operating In Wireless Local Area Networks (WLANS)
    1.
    发明申请
    Secure Provisioning Methods And Apparatus For Mobile Communication Devices Operating In Wireless Local Area Networks (WLANS) 有权
    用于无线局域网(WLANS)中的移动通信设备的安全配置方法和装置

    公开(公告)号:US20110134898A1

    公开(公告)日:2011-06-09

    申请号:US12909406

    申请日:2010-10-21

    IPC分类号: H04W84/02

    摘要: A wireless local area network (WLAN) includes a plurality of wireless access points (APs) which provide communications for a plurality of mobile communication devices. One of the APs is designated as a provisioning AP and is set to have a substantially smaller RF coverage area than RF coverage areas of the other APs. A mobile device is positioned within the provisioning RF coverage region and associates with the provisioning AP with use of a provisioning service set identifier, for establishing layer-2 communications with the WLAN, and for accessing and operating in a provisioning virtual local area network (VLAN) of the WLAN. While the mobile device is associated with the provisioning AP and operating in the provisioning VLAN, the mobile device receives via the provisioning AP an IP address which is assigned to the mobile device, for establishing layer-3 communications with the WLAN. After the layer-3 communications are established, the mobile device participates in an authentication procedure via the provisioning AP with a provisioning server of the provisioning VLAN. After positive authentication of the mobile device using the authentication procedure, the mobile device participates in a provisioning procedure with the provisioning server via the provisioning AP, for receiving provisioning information from the WLAN for programming in the mobile device.

    摘要翻译: 无线局域网(WLAN)包括为多个移动通信设备提供通信的多个无线接入点(AP)。 AP中的一个被指定为供应AP,并且被设置为具有比其他AP的RF覆盖区域更小的RF覆盖区域。 移动设备位于供应RF覆盖区域内,并且与供应AP相关联,使用供应服务集标识符,用于与WLAN建立第2层通信,并且在供应虚拟局域网(VLAN)中进行访问和操作 )的WLAN。 当移动设备与配置AP相关联并且在配置VLAN中操作时,移动设备经由供应AP接收分配给移动设备的IP地址,以便与WLAN建立第3层通信。 在建立了第3层通信之后,移动设备通过配置AP与配置VLAN的供应服务器参与认证过程。 在使用认证过程对移动设备进行正认证之后,移动设备经由供应AP参与与供应服务器的供应过程,用于从WLAN接收供应信息以在移动设备中进行编程。

    Secure provisioning methods and apparatus for mobile communication devices operating in wireless local area networks (WLANS)
    2.
    发明申请
    Secure provisioning methods and apparatus for mobile communication devices operating in wireless local area networks (WLANS) 有权
    用于在无线局域网(WLANS)中操作的移动通信设备的安全配置方法和装置

    公开(公告)号:US20080008143A1

    公开(公告)日:2008-01-10

    申请号:US11482864

    申请日:2006-07-07

    IPC分类号: H04Q7/24

    摘要: Methods and apparatus for use in securely provisioning a mobile communication device in a wireless local area network (WLAN) having a plurality of wireless access points (APs) are described. In one illustrative method, a provisioning procedure is performed between the mobile communication device and the WLAN via the provisioning wireless AP while the mobile communication device is positioned within a provisioning radio frequency (RF) coverage region of the provisioning wireless AP. However, the provisioning RF coverage region is otherwise confined so that a plurality of other mobile communication devices of the WLAN are restricted from access therefrom during the provisioning procedure. The provisioning RF coverage region may be confined by providing the provisioning wireless AP within a secured room, by providing an electromagnetic shield around the provisioning wireless AP, or both, as examples.

    摘要翻译: 描述了用于在具有多个无线接入点(AP)的无线局域网(WLAN)中安全地配置移动通信设备的方法和装置。 在一个说明性方法中,在移动通信设备位于供应无线AP的供应射频(RF)覆盖区域内时,经由供应无线AP在移动通信设备和WLAN之间执行供应过程。 然而,供应RF覆盖区域被限制为使得在供应过程期间WLAN的多个其他移动通信设备被限制从其访问。 作为示例,可以通过在供应无线AP周围提供电磁屏蔽或者两者来提供在安全房间内的供应无线AP来限制供应RF覆盖区域。

    Secure provisioning methods and apparatus for mobile communication devices operating in wireless local area networks (WLANs)
    3.
    发明授权
    Secure provisioning methods and apparatus for mobile communication devices operating in wireless local area networks (WLANs) 有权
    用于在无线局域网(WLAN)中操作的移动通信设备的安全配置方法和设备

    公开(公告)号:US08693986B2

    公开(公告)日:2014-04-08

    申请号:US13337238

    申请日:2011-12-26

    IPC分类号: H04M3/16

    摘要: A method for use in enabling a mobile communication device for communication involves establishing communication with an IEEE 801.11 device which is configured to operate as an access point; while communicating with the IEEE 801.11 device: participating in an authentication procedure with the IEEE 802.11 device; after positive authentication from the authentication procedure, participating in a provisioning procedure with the IEEE 802.11 device for receiving information for programming in the mobile communication device; and communicating with use of the programmed information in the mobile communication device.

    摘要翻译: 用于使移动通信设备能够进行通信的方法涉及建立与被配置为作为接入点操作的IEEE 801.11设备的通信; 同时与IEEE801.11.11设备通信:参与与IEEE 802.11设备的认证过程; 在来自认证过程的正认证之后,参与用于在移动通信设备中接收用于编程的信息的IEEE 802.11设备的供应过程; 以及在所述移动通信设备中与所编程的信息的使用进行通信。

    Secure Provisioning Methods And Apparatus For Mobile Communication Devices Operating In Wireless Local Area Networks (WLANs)
    4.
    发明申请
    Secure Provisioning Methods And Apparatus For Mobile Communication Devices Operating In Wireless Local Area Networks (WLANs) 有权
    用于无线局域网(WLAN)中的移动通信设备的安全配置方法和装置

    公开(公告)号:US20120096518A1

    公开(公告)日:2012-04-19

    申请号:US13337238

    申请日:2011-12-26

    IPC分类号: H04W12/06

    摘要: A method for use in enabling a mobile communication device for communication involves establishing communication with an IEEE 801.11 device which is configured to operate as an access point; while communicating with the IEEE 801.11 device: participating in an authentication procedure with the IEEE 802.11 device; after positive authentication from the authentication procedure, participating in a provisioning procedure with the IEEE 802.11 device for receiving information for programming in the mobile communication device; and communicating with use of the programmed information in the mobile communication device.

    摘要翻译: 用于使移动通信设备能够进行通信的方法涉及建立与被配置为作为接入点操作的IEEE 801.11设备的通信; 同时与IEEE801.11.11设备通信:参与与IEEE 802.11设备的认证过程; 在来自认证过程的正认证之后,参与用于在移动通信设备中接收编程信息的IEEE 802.11设备的供应过程; 以及在所述移动通信设备中与所编程的信息的使用进行通信。

    Secure provisioning methods and apparatus for mobile communication devices operating in wireless local area networks (WLANS)
    5.
    发明授权
    Secure provisioning methods and apparatus for mobile communication devices operating in wireless local area networks (WLANS) 有权
    用于在无线局域网(WLANS)中操作的移动通信设备的安全配置方法和装置

    公开(公告)号:US08107924B2

    公开(公告)日:2012-01-31

    申请号:US12909406

    申请日:2010-10-21

    摘要: A wireless local area network (WLAN) includes a plurality of wireless access points (APs) which provide communications for a plurality of mobile communication devices. One of the APs is designated as a provisioning AP and is set to have a substantially smaller RF coverage area than RF coverage areas of the other APs. A mobile device is positioned within the provisioning RF coverage region and associates with the provisioning AP with use of a provisioning service set identifier, for establishing layer-2 communications with the WLAN, and for accessing and operating in a provisioning virtual local area network (VLAN) of the WLAN. While the mobile device is associated with the provisioning AP and operating in the provisioning VLAN, the mobile device receives via the provisioning AP an IP address which is assigned to the mobile device, for establishing layer-3 communications with the WLAN. After the layer-3 communications are established, the mobile device participates in an authentication procedure via the provisioning AP with a provisioning server of the provisioning VLAN. After positive authentication of the mobile device using the authentication procedure, the mobile device participates in a provisioning procedure with the provisioning server via the provisioning AP, for receiving provisioning information from the WLAN for programming in the mobile device.

    摘要翻译: 无线局域网(WLAN)包括为多个移动通信设备提供通信的多个无线接入点(AP)。 AP中的一个被指定为供应AP,并且被设置为具有比其他AP的RF覆盖区域更小的RF覆盖区域。 移动设备位于供应RF覆盖区域内,并且与供应AP相关联,使用供应服务集标识符,用于与WLAN建立第2层通信,并且在供应虚拟局域网(VLAN)中进行访问和操作 )的WLAN。 当移动设备与配置AP相关联并且在配置VLAN中操作时,移动设备经由供应AP接收分配给移动设备的IP地址,以便与WLAN建立第3层通信。 在建立了第3层通信之后,移动设备通过配置AP与配置VLAN的供应服务器参与认证过程。 在使用认证过程对移动设备进行正认证之后,移动设备经由供应AP参与与供应服务器的供应过程,用于从WLAN接收供应信息以在移动设备中进行编程。

    Secure provisioning methods and apparatus for mobile communication devices operating in wireless local area networks (WLANS)
    6.
    发明授权
    Secure provisioning methods and apparatus for mobile communication devices operating in wireless local area networks (WLANS) 有权
    用于在无线局域网(WLANS)中操作的移动通信设备的安全配置方法和装置

    公开(公告)号:US07831236B2

    公开(公告)日:2010-11-09

    申请号:US11482864

    申请日:2006-07-07

    摘要: Methods and apparatus for use in securely provisioning a mobile communication device in a wireless local area network (WLAN) having a plurality of wireless access points (APs) are described. In one illustrative method, a provisioning procedure is performed between the mobile communication device and the WLAN via the provisioning wireless AP while the mobile communication device is positioned within a provisioning radio frequency (RF) coverage region of the provisioning wireless AP. However, the provisioning RF coverage region is otherwise confined so that a plurality of other mobile communication devices of the WLAN are restricted from access therefrom during the provisioning procedure. The provisioning RF coverage region may be confined by providing the provisioning wireless AP within a secured room, by providing an electromagnetic shield around the provisioning wireless AP, or both, as examples.

    摘要翻译: 描述了用于在具有多个无线接入点(AP)的无线局域网(WLAN)中安全地配置移动通信设备的方法和装置。 在一个说明性方法中,在移动通信设备位于供应无线AP的供应射频(RF)覆盖区域内时,经由供应无线AP在移动通信设备和WLAN之间执行供应过程。 然而,供应RF覆盖区域被限制为使得在供应过程期间WLAN的多个其他移动通信设备被限制从其访问。 作为示例,可以通过在供应无线AP周围提供电磁屏蔽或者两者来提供在安全房间内的供应无线AP来限制供应RF覆盖区域。

    Methods and apparatus for establishing WLAN communications using an ESSID created based on a predetermined algorithm and a domain name
    7.
    发明授权
    Methods and apparatus for establishing WLAN communications using an ESSID created based on a predetermined algorithm and a domain name 有权
    使用基于预定算法和域名创建的ESSID来建立WLAN通信的方法和装置

    公开(公告)号:US08488576B2

    公开(公告)日:2013-07-16

    申请号:US13209159

    申请日:2011-08-12

    IPC分类号: H04W4/00

    CPC分类号: H04W12/06

    摘要: One method in a mobile communication device for use in establishing communications between the mobile communication device and a wireless local communication network (WLAN) involves identifying a domain name of the WLAN; performing, in the mobile communication device, a predetermined algorithm with use of the domain name, for creating an extended service set identifier (ESSID) which includes at least a portion of the domain name of the WLAN; and associating with an wireless access point of the WLAN with use of the ESSID for accessing communication services in the WLAN.

    摘要翻译: 用于在移动通信设备和无线本地通信网络(WLAN)之间建立通信的移动通信设备中的一种方法涉及识别WLAN的域名; 在移动通信设备中使用域名执行预定算法,用于创建包括WLAN的域名的至少一部分的扩展服务集标识符(ESSID); 以及使用ESSID与WLAN的无线接入点相关联,用于访问WLAN中的通信服务。

    Provisioning Methods And Apparatus For Wireless Local Area Networks (WLANS) With Use Of A Provisioning ESSID
    8.
    发明申请
    Provisioning Methods And Apparatus For Wireless Local Area Networks (WLANS) With Use Of A Provisioning ESSID 有权
    使用配置ESSID的无线局域网(WLANS)的配置方法和设备

    公开(公告)号:US20120233672A1

    公开(公告)日:2012-09-13

    申请号:US13231593

    申请日:2011-09-13

    IPC分类号: H04W12/00

    摘要: A wireless network has a primary network which provides one or more communication services and a provisioning network which provides a provisioning service but disallows the one or more communication services. A mobile device associates with an access point of the wireless network by sending a request which includes a first set service identifier (SSID) for accessing and operating in the provisioning network. If an authentication procedure is successful, the device receives via the access point a second SSID in a provisioning procedure with the provisioning network, and programs the second SSID in a network list. The device subsequently associates with the access point by sending a request which includes the second SSID from the network list instead of the first SSID, for accessing and operating in the primary network for the one or more communication services.

    摘要翻译: 无线网络具有提供一个或多个通信服务的主网络和提供供应服务但不允许一个或多个通信服务的供应网络。 移动设备通过发送包括用于在供应网络中访问和操作的第一集合服务标识符(SSID)的请求来与无线网络的接入点相关联。 如果认证过程成功,则设备通过接入点接收与配置网络的配置过程中的第二SSID,并在网络列表中对第二SSID进行编程。 该设备随后通过从网络列表而不是第一SSID发送包括第二SSID的请求来与接入点相关联,用于在一个或多个通信服务的主网络中访问和操作。

    Provisioning methods and apparatus with use of a provisioning ESSID derived from both predetermined criteria and network-specific criteria
    9.
    发明授权
    Provisioning methods and apparatus with use of a provisioning ESSID derived from both predetermined criteria and network-specific criteria 有权
    使用从预定标准和网络特定标准导出的供应ESSID的配置方法和装置

    公开(公告)号:US08023994B2

    公开(公告)日:2011-09-20

    申请号:US11611274

    申请日:2006-12-15

    摘要: Methods and apparatus for use in provisioning mobile communication devices in wireless local area networks (WLANs) are described. In one illustrative example, a provisioning network identifier (“provisioning ESSID”) is derived based on both predetermined provisioning criteria (e.g. a fixed alphanumeric string) and network-specific criteria associated with a WLAN (eg a network domain name). The mobile device associates with a wireless access point of a provisioning virtual local area network (VLAN) of the network with use of the provisioning network identifier. After associating with the wireless access point with the provisioning network identifier, a primary network identifier (“primary ESSID”) associated with a primary VLAN of the network is received from the WLAN in a provisioning procedure and stored in memory of the mobile device after authentication. For subsequent communications with the WLAN, the mobile device associates with a wireless access point of the primary VLAN of the network with use of the primary network identifier. The technique of deriving an ESSID may alternatively be utilized in producing a primary ESSID of the WLAN.

    摘要翻译: 描述了用于在无线局域网(WLAN)中提供移动通信设备的方法和装置。 在一个说明性示例中,基于与WLAN(例如网络域名)相关联的网络特定标准的预定供应准则(例如,固定字母数字串)和网络特定标准,导出供应网络标识符(“供应ESSID”)。 移动设备使用配置网络标识符与网络的配置虚拟局域网(VLAN)的无线接入点相关联。 在与配置网络标识符的无线接入点相关联之后,在准备过程中从WLAN接收与网络的主VLAN相关联的主要网络标识符(“主要ESSID”),并在认证后存储在移动设备的存储器中 。 为了与WLAN的后续通信,移动设备使用主网络标识符与网络的主VLAN的无线接入点相关联。 导出ESSID的技术可以替代地用于生成WLAN的主要ESSID。

    Provisioning methods and apparatus for wireless local area networks (WLANS) with use of a provisioning ESSID
    10.
    发明授权
    Provisioning methods and apparatus for wireless local area networks (WLANS) with use of a provisioning ESSID 有权
    使用配置ESSID的无线局域网(WLANS)的配置方法和设备

    公开(公告)号:US08032174B2

    公开(公告)日:2011-10-04

    申请号:US11611293

    申请日:2006-12-15

    IPC分类号: H04M1/00

    摘要: Methods and apparatus for use in provisioning mobile communication devices in wireless local area networks (WLANs) are described. A mobile communication device associates with a wireless access point of a provisioning virtual local area network (VLAN) of the network with use of a provisioning network identifier (“provisioning ESS1D”). After associating with the wireless access point of the provisioning VLAN, a primary network identifier (“primary ESSID”) associated with a primary VLAN of the network is received from the WLAN in a provisioning procedure and stored in memory of the mobile device after authentication. For subsequent communications with the WLAN, the mobile device associates with a wireless access point of the primary VLAN of the network with use of the primary network identifier.

    摘要翻译: 描述了用于在无线局域网(WLAN)中提供移动通信设备的方法和装置。 移动通信设备使用提供网络标识符(“供应ESS1D”)与网络的供应虚拟局域网(VLAN)的无线接入点相关联。 在与配置VLAN的无线接入点相关联之后,在准备过程中从WLAN接收与网络的主VLAN相关联的主网络标识符(“主ESSID”),并且在认证之后存储在移动设备的存储器中。 为了与WLAN的后续通信,移动设备使用主网络标识符与网络的主VLAN的无线接入点相关联。