US2017238235A1PendingUtilityA1

Wireless router and router management system

Assignee: ZITOVAULT INCPriority: Feb 17, 2016Filed: Feb 17, 2016Published: Aug 17, 2017
Est. expiryFeb 17, 2036(~9.6 yrs left)· nominal 20-yr term from priority
H04W 84/12H04L 63/0876H04W 12/08H04L 63/0227H04W 48/02H04W 12/04H04L 63/062
44
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

According to embodiments the disclosure, a router management server may be utilized to manage a plurality of home routers. Appropriate access control rules may be determined by the router management server for various client devices including IoT devices based on the type and/or make/model of the client devices. MAC address-bound WLAN passphrases may be assigned to the client devices and bound to the MAC addresses associated the client devices. Further, WLAN passphrases may be associated with expiration periods and/or access control rules. Therefore, a secure home network environment that takes into account the vulnerabilities of IoT devices may be achieved without the involvement of an IT department. Moreover, embodiments of the disclosure improve the flexibility of WLAN passphrase management.

Claims

exact text as granted — not AI-modified
What is claimed is: 
     
         1 . A method for determining an access control rule based on a client device type, comprising:
 determining a type of the client device, the client device being associated with a router;   determining an access control rule for the client device at a router management server based on the determined type of the client device, the router managements server being remote from the router; and   applying the access control rule at the router to filter communications of the client device.   
     
     
         2 . The method of  claim 1 , wherein the type of the client device is determined based on a characteristic detected by the router within the communications of the client device. 
     
     
         3 . The method of  claim 2 , wherein the characteristic comprises at least one of a communication pattern, a keyword, or a media access control (MAC) address. 
     
     
         4 . The method of  claim 1 , wherein the type of the client device is determined at least partially by the router. 
     
     
         5 . The method of  claim 1 , wherein the type of the client device is determined at least partially by the router management server. 
     
     
         6 . The method of  claim 1 , wherein the type of the client device is determined based on a user input. 
     
     
         7 . The method of  claim 1 , wherein the access control rule causes the router to filter the communications of the client device based on at least one of a source Internet Protocol (IP) address, a source media access control (MAC) address, a source port, a destination IP address, a destination MAC address, or a destination port. 
     
     
         8 . The method of  claim 7 , wherein the access control rule forbids an Internet of Things (IoT) device from sending information to or receiving information from devices or ports unrelated to functions of the IoT device. 
     
     
         9 . The method of  claim 7 , wherein the access control rule forbids an IoT device from accessing a management interface of the router. 
     
     
         10 . The method of  claim 1 , further comprising enabling an encrytor/decryptor function for the client device at the router. 
     
     
         11 . The method of  claim 1 , further comprising enabling a storage and batch-retransmission function for the client device at the router. 
     
     
         12 . The method of  claim 1 , wherein a router management device remote from both the router and the router management server is utilized to manage the router. 
     
     
         13 . An apparatus for determining an access control rule based on a client device type, comprising:
 a memory; and   a processor coupled to the memory, the processor to:   determine a type of the client device, the client device being associated with a router,   determine an access control rule for the client device at a router management server based on the determined type of the client device, the router managements server being remote from the router, and   apply the access control rule at the router to filter communications of the client device.   
     
     
         14 . The apparatus of  claim 13 , wherein the type of the client device is determined based on a characteristic detected by the router within the communications of the client device. 
     
     
         15 . The apparatus of  claim 14 , wherein the characteristic comprises at least one of a communication pattern, a keyword, or a media access control (MAC) address. 
     
     
         16 . The apparatus of  claim 13 , wherein the type of the client device is determined at least partially by the router. 
     
     
         17 . The apparatus of  claim 13 , wherein the type of the client device is determined at least partially by the router management server. 
     
     
         18 . The apparatus of  claim 13 , wherein the type of the client device is determined based on a user input. 
     
     
         19 . The apparatus of  claim 13 , wherein the access control rule causes the router to filter the communications of the client device based on at least one of a source Internet Protocol (IP) address, a source media access control (MAC) address, a source port, a destination IP address, a destination MAC address, or a destination port. 
     
     
         20 . The apparatus of  claim 19 , wherein the access control rule forbids an Internet of Things (IoT) device from sending information to or receiving information from devices or ports unrelated to functions of the IoT device. 
     
     
         21 . The apparatus of  claim 19 , wherein the access control rule forbids an IoT device from accessing a management interface of the router. 
     
     
         22 . The apparatus of  claim 13 , wherein the processor is further to enable an encrytor/decryptor function for the client device at the router. 
     
     
         23 . The apparatus of  claim 13 , wherein the processor is further to enable a storage and batch-retransmission function for the client device at the router. 
     
     
         24 . The apparatus of  claim 13 , wherein a router management device remote from both the router and the router management server is utilized to manage the router. 
     
     
         25 . An apparatus for determining an access control rule based on a client device type, comprising:
 means for determining a type of the client device, the client device being associated with a router;   means for determining an access control rule for the client device at a router management server based on the determined type of the client device, the router managements server being remote from the router; and   means for applying the access control rule at the router to filter communications of the client device.   
     
     
         26 . The apparatus of  claim 25 , wherein the type of the client device is determined based on a characteristic detected by the router within the communications of the client device. 
     
     
         27 . The apparatus of  claim 26 , wherein the characteristic comprises at least one of a communication pattern, a keyword, or a media access control (MAC) address. 
     
     
         28 . A non-transitory computer-readable medium comprising code which, when executed by a processor, causes the processor to perform a method comprising:
 determining a type of the client device, the client device being associated with a router,   determining an access control rule for the client device at a router management server based on the determined type of the client device, the router managements server being remote from the router, and   applying the access control rule at the router to filter communications of the client device.   
     
     
         29 . The non-transitory computer-readable medium of  claim 28 , wherein the type of the client device is determined based on a characteristic detected by the router within the communications of the client device. 
     
     
         30 . The non-transitory computer-readable medium of  claim 29 , wherein the characteristic comprises at least one of a communication pattern, a keyword, or a media access control (MAC) address.

Join the waitlist — get patent alerts

Track US2017238235A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.