Wireless router and router management system
Abstract
According to embodiments the disclosure, a router management server may be utilized to manage a plurality of home routers. Appropriate access control rules may be determined by the router management server for various client devices including IoT devices based on the type and/or make/model of the client devices. MAC address-bound WLAN passphrases may be assigned to the client devices and bound to the MAC addresses associated the client devices. Further, WLAN passphrases may be associated with expiration periods and/or access control rules. Therefore, a secure home network environment that takes into account the vulnerabilities of IoT devices may be achieved without the involvement of an IT department. Moreover, embodiments of the disclosure improve the flexibility of WLAN passphrase management.
Claims
exact text as granted — not AI-modifiedWhat is claimed is:
1 . A method for determining an access control rule based on a client device type, comprising:
determining a type of the client device, the client device being associated with a router; determining an access control rule for the client device at a router management server based on the determined type of the client device, the router managements server being remote from the router; and applying the access control rule at the router to filter communications of the client device.
2 . The method of claim 1 , wherein the type of the client device is determined based on a characteristic detected by the router within the communications of the client device.
3 . The method of claim 2 , wherein the characteristic comprises at least one of a communication pattern, a keyword, or a media access control (MAC) address.
4 . The method of claim 1 , wherein the type of the client device is determined at least partially by the router.
5 . The method of claim 1 , wherein the type of the client device is determined at least partially by the router management server.
6 . The method of claim 1 , wherein the type of the client device is determined based on a user input.
7 . The method of claim 1 , wherein the access control rule causes the router to filter the communications of the client device based on at least one of a source Internet Protocol (IP) address, a source media access control (MAC) address, a source port, a destination IP address, a destination MAC address, or a destination port.
8 . The method of claim 7 , wherein the access control rule forbids an Internet of Things (IoT) device from sending information to or receiving information from devices or ports unrelated to functions of the IoT device.
9 . The method of claim 7 , wherein the access control rule forbids an IoT device from accessing a management interface of the router.
10 . The method of claim 1 , further comprising enabling an encrytor/decryptor function for the client device at the router.
11 . The method of claim 1 , further comprising enabling a storage and batch-retransmission function for the client device at the router.
12 . The method of claim 1 , wherein a router management device remote from both the router and the router management server is utilized to manage the router.
13 . An apparatus for determining an access control rule based on a client device type, comprising:
a memory; and a processor coupled to the memory, the processor to: determine a type of the client device, the client device being associated with a router, determine an access control rule for the client device at a router management server based on the determined type of the client device, the router managements server being remote from the router, and apply the access control rule at the router to filter communications of the client device.
14 . The apparatus of claim 13 , wherein the type of the client device is determined based on a characteristic detected by the router within the communications of the client device.
15 . The apparatus of claim 14 , wherein the characteristic comprises at least one of a communication pattern, a keyword, or a media access control (MAC) address.
16 . The apparatus of claim 13 , wherein the type of the client device is determined at least partially by the router.
17 . The apparatus of claim 13 , wherein the type of the client device is determined at least partially by the router management server.
18 . The apparatus of claim 13 , wherein the type of the client device is determined based on a user input.
19 . The apparatus of claim 13 , wherein the access control rule causes the router to filter the communications of the client device based on at least one of a source Internet Protocol (IP) address, a source media access control (MAC) address, a source port, a destination IP address, a destination MAC address, or a destination port.
20 . The apparatus of claim 19 , wherein the access control rule forbids an Internet of Things (IoT) device from sending information to or receiving information from devices or ports unrelated to functions of the IoT device.
21 . The apparatus of claim 19 , wherein the access control rule forbids an IoT device from accessing a management interface of the router.
22 . The apparatus of claim 13 , wherein the processor is further to enable an encrytor/decryptor function for the client device at the router.
23 . The apparatus of claim 13 , wherein the processor is further to enable a storage and batch-retransmission function for the client device at the router.
24 . The apparatus of claim 13 , wherein a router management device remote from both the router and the router management server is utilized to manage the router.
25 . An apparatus for determining an access control rule based on a client device type, comprising:
means for determining a type of the client device, the client device being associated with a router; means for determining an access control rule for the client device at a router management server based on the determined type of the client device, the router managements server being remote from the router; and means for applying the access control rule at the router to filter communications of the client device.
26 . The apparatus of claim 25 , wherein the type of the client device is determined based on a characteristic detected by the router within the communications of the client device.
27 . The apparatus of claim 26 , wherein the characteristic comprises at least one of a communication pattern, a keyword, or a media access control (MAC) address.
28 . A non-transitory computer-readable medium comprising code which, when executed by a processor, causes the processor to perform a method comprising:
determining a type of the client device, the client device being associated with a router, determining an access control rule for the client device at a router management server based on the determined type of the client device, the router managements server being remote from the router, and applying the access control rule at the router to filter communications of the client device.
29 . The non-transitory computer-readable medium of claim 28 , wherein the type of the client device is determined based on a characteristic detected by the router within the communications of the client device.
30 . The non-transitory computer-readable medium of claim 29 , wherein the characteristic comprises at least one of a communication pattern, a keyword, or a media access control (MAC) address.Join the waitlist — get patent alerts
Track US2017238235A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.