US2022337634A1PendingUtilityA1

Methods, systems, and devices coordinating security among different network devices

Assignee: AT & T IP I LPPriority: Jun 17, 2020Filed: Jul 5, 2022Published: Oct 20, 2022
Est. expiryJun 17, 2040(~13.9 yrs left)· nominal 20-yr term from priority
H04L 63/205H04L 63/08
63
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

Aspects of the subject disclosure may include, for example, identifying from a user device, authentication methods associated with services, obtaining network security information and identifying device security information for the authentication methods. Further embodiments include, in response to analyzing the network security information and the device security information: determining a first security risk for a first authentication method; and identifying a second authentication method with a second security risk lower than the first security risk. Additional embodiments include transmitting a notification to the user device indicating not to utilize the first authentication method based on the first security risk and to utilize the second authentication method, and transmitting a notification to network devices indicating the first security risk associated with the first authentication method. Each network device transmits to a group of user devices a notification indicating to cease utilizing the first authentication method. Other embodiments are disclosed.

Claims

exact text as granted — not AI-modified
What is claimed is: 
     
         1 . A device comprising:
 a processing system including a processor; and   a memory that stores executable instructions that, when executed by the processing system, facilitate performance of operations, the operations comprising:   obtaining, over a communication network, from a group of network devices, network security information for a group of authentication methods;   identifying device security information for the group of authentication methods;   in response to analyzing the network security information and the device security information utilizing a machine learning application:
 determining a security risk for each of the group of authentication methods resulting in a group of security risks; 
 determining a lowest security risk from the group of security risks; 
 identifying a first authentication method from the group of authentication methods associated with the lowest security risk; and 
   transmitting, over the communication network, a first notification to the group of network devices to utilize the first authentication method, wherein each of the group of network devices transmits, over the communication network, to a group of user devices a second notification to utilize the first authentication method.   
     
     
         2 . The device of  claim 1 , wherein the operations comprise identifying a first portion of the group of user devices utilizing a first portion of the group of authentication methods, wherein the first portion of the group of authentication methods does not include the first authentication method. 
     
     
         3 . The device of  claim 2 , wherein the operations comprise transmitting a third notification to each of the first portion of the group of user devices to not utilize any of the first portion of the group of authentication methods. 
     
     
         4 . The device of  claim 1 , wherein the device and each of the group of network devices comprises multi-access edge computing device, wherein each multi-access edge computing device comprises a radio intelligent controller, wherein each radio intelligent controller comprises a security monitoring and notification system. 
     
     
         5 . The device of  claim 1 , wherein the determining of the security risk for each of the group of authentication methods comprises determining a risk threshold for each of the group of authentication methods resulting in a group of risk thresholds. 
     
     
         6 . The device of  claim 5 , wherein the determining of the security risk for each of the group of authentication methods comprises:
 determining a security risk for each of a second portion of the group of authentication methods resulting in a first portion of the group of security risks;   determining each of the group of security risks is above a corresponding risk threshold from the group of risk thresholds, wherein the second portion of the group of authentication methods does not include the first authentication method.   
     
     
         7 . The device of  claim 6 , wherein the operations comprise determining a quarantine time period for each of the second portion of the group of authentication methods. 
     
     
         8 . The device of  claim 7 , wherein the operations comprise:
 detecting expiration of the quarantine time period;   determining each of the group of security risks is below a corresponding risk threshold from the group of risk thresholds in response to analyzing the network security information and the device security information using the machine learning application; and   transmitting, over the communication network, a fourth notification to a first user device that indicates that the first user device is able to utilize any authentication method from the second portion of the group of authentication methods.   
     
     
         9 . The device of  claim 8 , wherein the operations comprise transmitting, over the communication network, a fifth notification to the group of network devices that indicates the group of user devices are able to utilize any authentication method from the second portion of the group of authentication methods, wherein each of the group of network devices transmits, over the communication network, to the group of user devices a sixth notification that indicates that each of the group of user devices is able to utilize any authentication method from the second portion of the group of authentication methods. 
     
     
         10 . The device of  claim 5 , wherein the determining of the security risk for each of the group of authentication methods comprises:
 determining that the lowest security risk is less than a first risk threshold of the group of risk thresholds, wherein the first risk threshold is associated with the first authentication method.   
     
     
         11 . A non-transitory, machine-readable medium, comprising executable instructions that, when executed by a processing system including a processor, facilitate performance of operations, the operations comprising:
 obtaining, over a communication network, from a group of network devices, network security information for a group of authentication methods;   identifying first device security information for a first authentication method of the group of authentication methods and identifying a second device security information for a second authentication methods of the group of authentication methods;   identifying that a first group of user devices are utilizing the first authentication method;   in response to analyzing the network security information, the first device security information, and the second device security information:
 determining a first security risk associated with the first authentication method is above a risk threshold; 
 determining a second security risk associated with the second authentication method is below a risk threshold; 
   transmitting, over the communication network, a first notification to the first group of user devices that indicates not to utilize the first authentication method and to utilize the second authentication method.   
     
     
         12 . The non-transitory, machine-readable medium of  claim 11 , wherein the operations comprise transmitting, over the communication network, a second notification to the group of network devices that indicates not to utilize the first authentication method and to utilize the second authentication method, wherein each of the group of network devices transmits, over the communication network, to a second group of user devices a third notification that indicates to cease utilizing the first authentication method and to utilize the second authentication method. 
     
     
         13 . The non-transitory, machine-readable medium of  claim 11 , wherein the device and each of the group of network devices comprises multi-access edge computing device, wherein each multi-access edge computing device comprises a radio intelligent controller, wherein each radio intelligent controller comprises a security monitoring and notification system. 
     
     
         14 . The non-transitory, machine-readable medium of  claim 11 , wherein the operations comprise determining a quarantine time period for the first authentication method. 
     
     
         15 . The non-transitory, machine-readable medium of  claim 14 , wherein the operations comprise:
 detecting expiration of the quarantine time period; and   determining the first security risk is below the risk threshold.   
     
     
         16 . The non-transitory, machine-readable medium of  claim 15 , wherein the operations comprise transmitting a fourth notification to the first group of user devices that indicate to utilize the first authentication method. 
     
     
         17 . The non-transitory, machine-readable medium of  claim 15 , wherein the operations comprise transmitting, over the communication network, a fifth notification to the group of network devices that indicates to utilize the first authentication method, wherein each of the group of network devices transmits, over the communication network, to a second group of user devices a sixth notification that indicates to utilize the first authentication method. 
     
     
         18 . A method, comprising:
 obtaining, over a communication network, by a processing system including a processor, from a group of network devices, network security information for a group of authentication methods;   identifying, by the processing system, device security information for the group of authentication methods;   in response to analyzing, by the processing system, the network security information and the device security information using a machine learning application:
 determining, by the processing system, a security risk for each of the group of authentication methods resulting in a group of security risks; 
 determining, by the processing system, a lowest security risk from the group of security risks; 
 determining, by the processing system, the lowest security risk is below a risk threshold; 
 identifying, by the processing system, a first authentication method from the group of authentication methods associated with the lowest security risk; and 
   transmitting, over the communication network, by the processing system, a first notification to the group of network devices to utilize the first authentication method.   
     
     
         19 . The method of  claim 18 , wherein each of the group of network devices transmits, over the communication network, to a group of user devices a second notification to utilize the first authentication method. 
     
     
         20 . The method of  claim 18 , wherein the device and each of the group of network devices comprises multi-access edge computing device, wherein each multi-access edge computing device comprises a radio intelligent controller, wherein each radio intelligent controller comprises a security monitoring and notification system.

Join the waitlist — get patent alerts

Track US2022337634A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.