×

Method, apparatus, and software product for detecting rogue access points in a wireless network

  • US 7,286,515 B2
  • Filed: 01/28/2004
  • Issued: 10/23/2007
  • Est. Priority Date: 07/28/2003
  • Status: Active Grant
First Claim
Patent Images

1. A method comprising:

  • a central management entity managing managed access points (APs) of a wireless network, including carrying out one or both of power control and frequency selection to configure one or more configuration parameters of the managed access point;

    maintaining an AP database that includes information about managed APs and friendly APs of the wireless network, including for each managed AP in the AP database, the service set identifier of the managed AP and one or more of the configuration parameters;

    sending a scan request to one or more managed APs of the wireless network, the scan request including a request for the receiving managed AP to scan for beacons and probe responses; and

    receiving reports from at least one of the receiving managed APs about beacons or probe responses from any potential rogue AP, including, for each potential rogue AP from which a beacon or probe response was received, detection information, and information on the beacon or probe response received sent by the potential rogue AP,wherein the detection information includes the service set identifier of the potential rogue AP, and at least one further item of information, andwherein the information on the received beacon or probe response includes at least the service set identifier in the beacon or probe response, and one or more configuration parameters; and

    for each beacon or probe response from a potential rogue AP on which information is received, ascertaining if the potential rogue AP is a managed AP, including;

    ascertaining if there is a match for the service set identifier of the potential rogue AP in the AP database, and if there is a match for one or more configuration parameters of the potential rogue AP in the AP database in addition to the service set identifier of the potential rogue AP,such that at least a plurality of parameters are matched in the AP database to ascertain whether a potential rogue AP is a managed AP.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×