Method and apparatus for providing a high security mode in a network

US10756923B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-10756923-B2
Application numberUS-201916404351-A
CountryUS
Kind codeB2
Filing dateMay 6, 2019
Priority dateAug 28, 2014
Publication dateAug 25, 2020
Grant dateAug 25, 2020

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Systems and methods systems and methods for efficiently and securely forming a communication network. As a non-limiting example, various aspects of the present disclosure provide systems and methods, for example utilizing a plurality of different security modes, for forming a premises-based network (e.g., a MoCA network).

First claim

Opening claim text (preview).

The invention claimed is: 1. A network comprising: a first network node; and a network coordinator node, wherein: the first network node comprises at least one circuit operable to, at least: transmit a discovery request message, the discovery request message comprising first security information that indicates a security mode in which the first network node is operating; receive a discovery response message from the network coordinator node in reply to the transmitted discovery request message, the discovery response message comprising second security information that indicates a security mode in which the network coordinator node is operating; analyze at least the second security information to determine whether the first network node is authorized to join the network; and if it is determined that the first network node is authorized to join the network, then join the network; and the network coordinator node comprises at least one circuit operable to, at least: receive the discovery request message from the first network node; analyze at least the first security information to determine whether the first network node is authorized to join the network; and if it is determined that the first network node is authorized to join the network then join the first network node to the network. 2. The network of claim 1 , wherein: the at least one circuit of the first network node operates to analyze the second security information by, at least in part, comparing the second security information to a security control parameter maintained by the first network node; and the at least one circuit of the network coordinator node operates to analyze the first security information by, at least in part, comparing the first security information to a security control parameter maintained by the network coordinator node. 3. The network of claim 2 , wherein: the at least one circuit of the first network node operates to, if the second security information does not match the security control parameter maintained by the first network node, then set a second control parameter maintained by the first network node that indicates a security mismatch has occurred; and the at least one circuit of the network coordinator node operates to, if the first security information does not match the security control parameter maintained by the network coordinator node, then set a second control parameter maintained by the network coordinator node that indicates a security mismatch has occurred. 4. The network of claim 1 , wherein the at least one circuit of the first network node operates to, before transmitting the discovery request message: receive a beacon from the network coordinator node, the beacon comprising timing information that indicates when a discovery request message may be transmitted; analyze the timing information in the received beacon to determine when to transmit the discovery request message. 5. A network node comprising: at least one circuit operable to, at least: transmit a first beacon comprising first timing information that indicates when a second node looking to gain admission to a network may transmit a discovery request message; receive a discovery request message from the second node, the discovery request message comprising first security information that indicates a security mode in which the second node is operating; analyze at least the first security information to determine whether the second node is authorized to join the network; if it is determined that the second node is authorized to join the network then join the second node to the network; and wherein the at least one circuit is operable to, if the at least one circuit determines that the second node is authorized to join the network, then analyze second information of the discovery request message to determine whether to send a discovery response message before sending another beacon, or to send another beacon before sending a discovery response message. 6. The network node of claim 5 , wherein: the network node operates in accordance with a set of protocol versions; and the first timing information indicates when a node operating in accordance with a first subset of the set of protocol versions may transmit a discovery request message. 7. The network node of claim 6 , wherein the at least one circuit is operable to transmit a second beacon comprising second timing information that indicates when a node operating in accordance with a second subset of the set of protocol versions and looking to gain admission to a network may transmit an admission request message. 8. The network node of claim 7 , wherein the at least one circuit is operable to alternate transmitting beacons of different types, the different types comprising a first type of beacon that comprises the first timing information, and a second type of beacon that comprises the second timing information. 9. The network node of claim 8 , wherein the at least one circuit is operable to: alternate transmitting at least the first and second types of beacons when operating in a first security mode; and only transmit beacons of the first type when operating in a second security mode. 10. The network node of claim 5 , wherein the at least one circuit is operable to analyze the first security information by, at least in part, comparing the first security information to a security control parameter maintained by the network node. 11. The network node of claim 10 , wherein the at least one circuit is operable to, if the at least one circuit determines that the first security information does not match the security control parameter maintained by the network node, then refrain from joining the second node to the network. 12. The network node of claim 11 , wherein the at least one circuit is operable to, if the at least one circuit determines that the first security information does not match the security control parameter maintained by the network node, then set a second control parameter maintained by the network node that indicates a security mismatch has occurred. 13. The network node of claim 12 , wherein the at least one circuit utilizes the second control parameter to indicate to a management entity of the network node that the security mismatch has occurred. 14. The network node of claim 5 , wherein the at least one circuit is operable to, if the at least one circuit determines that the second node is authorized to join the network, then analyze second information of the discovery request message to determine whether to send a discovery response message before receiving a second discovery request message. 15. A network node comprising: at least one circuit operable to, at least: receive a beacon from a second node of a network, the beacon comprising timing information that indicates when a discovery request message may be transmitted; analyze the timing information in the received beacon to determine when to transmit a discovery request message; transmit the discovery request message, the discovery request message comprising first security information that indicates a security mode in which the network node is operating; receive a discovery response message from the second node in reply to the transmitted discovery request message, the discovery response message comprising second security information that indicates a security mode in which the second node is operating; analyze at least the second security information to determine whether the network node is authorized to join the network; and if it is determined that the network node is authorized to join the networ

Assignees

Inventors

Classifications

  • Restricting access to network management systems or functions, e.g. using authorisation function to access network configuration · CPC title

  • Discovery or management of network topologies · CPC title

  • Audio/video appliances · CPC title

  • for managing network security; network security policies in general (filtering policies H04L63/0227) · CPC title

  • characterised by the type of medium used · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US10756923B2 cover?
Systems and methods systems and methods for efficiently and securely forming a communication network. As a non-limiting example, various aspects of the present disclosure provide systems and methods, for example utilizing a plurality of different security modes, for forming a premises-based network (e.g., a MoCA network).
Who is the assignee on this patent?
Maxlinear Inc
What technology area does this patent fall under?
Primary CPC classification H04L12/2838. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Aug 25 2020 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 1 related publication on this page (citations in our corpus or others sharing the same primary CPC).