Secure wireless network credential sharing

US10270797B1 · US · B1

Patent metadata
FieldValue
Publication numberUS-10270797-B1
Application numberUS-201615082110-A
CountryUS
Kind codeB1
Filing dateMar 28, 2016
Priority dateDec 20, 2013
Publication dateApr 23, 2019
Grant dateApr 23, 2019

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

A wireless communications system mitigates the threat of a man-in-the-middle attack when sharing network credentials with a new device. A new wireless device signals that it needs credentials if no other devices are signaling that they need credentials. The new device provides a visible or audible indicator when requested to do so by a device with credentials. Either in response to approval by a user or automatically in response to the indicator, the device with credentials shares credentials with the new device, which can then establish a connection to the network.

First claim

Opening claim text (preview).

What is claimed is: 1. A first device, comprising: at least one hardware processor; at least one means for audio output; and at least one memory including instructions that, when executed by the at least one processor, cause the first device to: determine a first period of time has elapsed without detecting a first signal indicating a second device is requesting wireless network credentials of a network; after the first period of time has elapsed, commence sending of a second signal requesting the wireless network credentials; after commencing sending of the second signal, detect (i) the first signal or (ii) a third signal requesting the wireless network credentials; based at least in part on detecting the first signal or the third signal, stop sending of the second signal; after stopping sending of the second signal, determine a second period of time has elapsed without detecting a fourth signal requesting the wireless network credentials; after the second period of time has elapsed, (iii) resume sending of the second signal or (iv) send a fifth signal requesting the wireless network credentials; receive a sixth signal from a third device, the sixth signal responding to the second signal; after receiving the sixth signal, generate sound from the at least one means for audio output; after generating the sound, receive the wireless network credentials from the third device; and use the wireless network credentials to connect to a network access point device of the network. 2. The first device of claim 1 , wherein: the at least one means for audio output comprises at least one of a speaker, transducer, or piezoelectric element; and the sound is audible or ultrasonic. 3. The first device of claim 1 , wherein the sound represents a message based on information unique to the first device. 4. The first device of claim 1 , wherein the at least one memory further includes instructions that, when executed by the at least one processor, further cause the first device to: send a seventh signal to the third device, the seventh signal requesting information unique to the first device; after sending the seventh signal, receive an eighth signal from the third device; and determine the eighth signal includes the information, wherein the at least one means for audio output generates the sound after determining the eighth signal includes the information. 5. The first device of claim 1 , wherein the first device uses a wireless communications protocol to send the second signal and connect to the network access point device. 6. A first device, comprising: at least one hardware processor; and at least one memory including instructions that, when executed by the at least one processor, cause the first device to: determine a first period of time has elapsed without detecting a first signal indicating a second device is requesting wireless network credentials; after the first period of time has elapsed, commence sending of a second signal requesting the wireless network credentials of a network; after commencing sending of the second signal, detect (i) the first signal or (ii) a third signal requesting the wireless network credentials; based at least in part on detecting the first signal, stop sending of the second signal; after stopping sending of the second signal, determine a second period of time has elapsed without detecting a fourth signal requesting the wireless network credentials; after the second period of time has elapsed, (iii) resume sending of the second signal or (iv) send a fifth signal requesting the wireless network credentials; receive a sixth signal from a third device, the sixth signal responding to the second signal; after receiving the sixth signal, activate an indicator; after activating the indicator, receive the wireless network credentials from the third device; and use the wireless network credentials to connect to a network access point device of the network. 7. The first device of claim 6 , wherein the indicator represents a message based on information unique to the first device. 8. The first device of claim 6 , wherein the indicator comprises at least one of light, sound, vibration, or an electromagnetic field. 9. The first device of claim 6 , wherein the at least one memory further includes instructions that, when executed by the at least one processor, further cause the first device to: send a seventh signal to the third device, the seventh signal requesting information unique to the first device; after sending the seventh signal, receive an eighth signal from the third device; and determine the eighth signal includes the information, wherein the first device activates the indicator after determining the eighth signal includes the information. 10. The first device of claim 6 , wherein the first device uses a wireless communications protocol to send the second signal and connect to the network access point device. 11. A method performed by a first device, comprising: determining hardware processor of the first device, a first period of time has elapsed without detecting a first signal indicating a second device is requesting wireless network credentials of a network; after the first period of time has elapsed, commencing sending of a second signal requesting the wireless network credentials; after commencing sending of the second signal, detecting (i) the first signal or (ii) a third signal requesting the wireless network credentials; based at least in part on detecting the first signal, stopping sending of the second signal; after stopping sending of the second signal, determining a second period of time has elapsed without detecting a fourth signal requesting the wireless network credentials; after the second period of time has elapsed, (iii) resuming sending of the second signal or (iv) sending a fifth signal requesting the wireless network credentials; receiving a sixth signal from a third device, the sixth signal responding to the second signal; after receiving the sixth signal, activating an indicator; after activating the indicator, receiving the wireless network credentials from the third device; and using the wireless network credentials to connect to a network access point device of the network. 12. The method of claim 11 , wherein activating the indicator comprises outputting a message based on information unique to the first device. 13. The method of claim 11 , wherein activating the indicator comprises at least one of activating a light, outputting a sound, outputting a vibration, or outputting an electromagnetic field. 14. The method of claim 11 , further comprising: sending a seventh signal to the third device, the seventh signal requesting information unique to the first device; after sending the seventh signal, receiving an eighth signal from the third device; and before activating the indicator, determining the eighth signal includes the information. 15. The method of claim 11 , further comprising using a wireless communications protocol to send the second signal and connect to the network access point device. 16. The first device of claim 6 , wherein the at least one memory further includes instructions that, when executed by the at least one processor, further cause the first device to: activate the indicator in response to receiving the sixth signal. 17. The first device of claim 6 , wherein the first device is a displayless user device and the third device is a user device including a display. 18. The first device of claim 6 , wherein the at least on

Assignees

Inventors

Classifications

  • Countermeasures against malicious traffic (countermeasures against attacks on cryptographic mechanisms H04L9/002) · CPC title

  • Vulnerability analysis · CPC title

  • H04L63/062Primary

    for key distribution, e.g. centrally by trusted party (cryptographic mechanisms or cryptographic arrangements for key distribution involving a central third party H04L9/0819) · CPC title

  • Secure pairing of devices · CPC title

  • Counter-measures against attacks; Protection against rogue devices · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US10270797B1 cover?
A wireless communications system mitigates the threat of a man-in-the-middle attack when sharing network credentials with a new device. A new wireless device signals that it needs credentials if no other devices are signaling that they need credentials. The new device provides a visible or audible indicator when requested to do so by a device with credentials. Either in response to approval by …
Who is the assignee on this patent?
Amazon Tech Inc
What technology area does this patent fall under?
Primary CPC classification H04L63/1433. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Apr 23 2019 00:00:00 GMT+0000 (Coordinated Universal Time) (B1). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 1 related publication on this page (citations in our corpus or others sharing the same primary CPC).