Cloud device identification and authentication

US11451545B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-11451545-B2
Application numberUS-202117404269-A
CountryUS
Kind codeB2
Filing dateAug 17, 2021
Priority dateMar 7, 2014
Publication dateSep 20, 2022
Grant dateSep 20, 2022

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Methods and apparatuses for authentication and/or provisioning of wireless network devices, and in particular, methods and apparatuses for authentication and/or provisioning of wireless network devices that are communicating with and may be monitored and/or controlled by a remote (e.g., cloud) server.

First claim

Opening claim text (preview).

What is claimed is: 1. A method of provisioning a network device for use with a network using a handheld device, the method comprising: detecting, with a discovery tool, connection of one or more unprovisioned network devices, wherein the one or more unprovisioned network devices correspond to known devices on a list of known devices; prompting a user to adopt the one or more unprovisioned network devices; receiving, from the user, a device site selection for a logical networking environment within which the one or more unprovisioned network devices is to operate; receiving, from the user, cloud login information and organization information for the one or more unprovisioned network devices; provisioning the one or more unprovisioned network devices to operate in the selected device site via a first wireless network based, at least in part, on the device site selection, the cloud login information, and the organization information; establishing an authentication key shared between the network device and the handheld device during a trusted session; and communicating the authentication key to a remote server to enable the remote server to authenticate the network device. 2. The method of claim 1 , further comprising displaying a list of device sites to the user, and receiving the device site selection is in response to displaying the list of device sites to the user. 3. The method of claim 2 , wherein the list of device sites is displayed on the handheld device. 4. The method of claim 2 , wherein the list of device sites is based on a determined geographic location of the network device. 5. The method of claim 4 , wherein the geographic location is determined by the handheld device. 6. The method of claim 1 , further comprising prompting the user to select the one or more unprovisioned network devices from a list of unprovisioned network devices, wherein the receiving of the device site selection from the user is in response to the prompting. 7. The method of claim 1 , wherein detection of the one or more unprovisioned network devices is via an ad hoc network between the unprovisioned network device and the handheld device. 8. The method of claim 1 , further comprising: collecting GPS coordinates associated with network devices; and placing the network devices on a map based on the collected GPS coordinates. 9. The method of claim 1 , wherein selection of the unprovisioned network device includes identifying the network device using a unique identifier on the network device. 10. The method of claim 9 , wherein the identifying includes capturing an optical code on the network device. 11. The method of claim 1 , wherein the provisioning includes providing a secret string to the unprovisioned network device to establish a trusted session with the unprovisioned network device, the secret string associated with a network address for the unprovisioned network device. 12. A non-transitory computer-readable storage medium storing instructions that, when executed by a processor of a computing device, cause the computing device to: detect one or more unprovisioned network devices unable to communicate with a first wireless network, wherein the one or more unprovisioned network devices correspond to known devices on a list of known devices; prompt a user to adopt the one or more unprovisioned network devices; select, by a user, one of the one or more unprovisioned network devices; receive, from the user, a device site selection for a logical networking environment within which the selected unprovisioned network device is to operate; receive, from the user, cloud login information and organization information for the selected unprovisioned network device; provision the unprovisioned network device to operate in the selected device site via the first wireless network based, at least in part, on the device site selection, the cloud login information, and the organization information; establish an authentication key shared between the network device and the handheld device during a trusted session; and communicate the authentication key to a remote server to enable the remote server to authenticate the network device. 13. The non-transitory computer-readable storage medium of claim 12 , wherein the instructions cause the computing device to display a list of device sites to the user, wherein reception of the device site selection is in response to displaying the list of device sites to the user. 14. The non-transitory computer-readable storage medium of claim 12 , wherein the instructions cause the computing device to prompt the user to select the unprovisioned network device from a list of unprovisioned network devices, wherein reception of the device site selection from the user is in response to the prompt to select the unprovisioned network device. 15. The non-transitory computer-readable storage medium of claim 12 , wherein detection of the unprovisioned network device is via an ad hoc network between the unprovisioned network device and the computing device. 16. The non-transitory computer-readable storage medium of claim 12 , wherein instructions cause the computing device to: collect GPS coordinates associated with network devices; and place the network devices on a map based on the collected GPS coordinates. 17. The non-transitory computer-readable storage medium of claim 12 , wherein instructions to select at least one of the unprovisioned network devices include instructions to cause the computing device to identify the network device using a unique identifier on the network device. 18. The non-transitory computer-readable storage medium of claim 17 , wherein instructions to cause the computing device to identify the network device using a unique identifier on the network device include instructions to cause the computing device to capture an optical code on the network device.

Assignees

Inventors

Classifications

  • Authentication · CPC title

  • Key management, e.g. using generic bootstrapping architecture [GBA] · CPC title

  • Service provisioning or reconfiguring · CPC title

  • Arrangements for optimising operational condition · CPC title

  • for initial configuration or provisioning, e.g. plug-and-play · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US11451545B2 cover?
Methods and apparatuses for authentication and/or provisioning of wireless network devices, and in particular, methods and apparatuses for authentication and/or provisioning of wireless network devices that are communicating with and may be monitored and/or controlled by a remote (e.g., cloud) server.
Who is the assignee on this patent?
Ubiquiti Inc
What technology area does this patent fall under?
Primary CPC classification H04L41/0806. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Sep 20 2022 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 12 related publications on this page (citations in our corpus or others sharing the same primary CPC).