×

Systems and methods for user access authentication based on network access point

  • US 8,151,322 B2
  • Filed: 05/16/2006
  • Issued: 04/03/2012
  • Est. Priority Date: 05/16/2006
  • Status: Active Grant
First Claim
Patent Images

1. A method of user access authentication, the method comprising:

  • receiving an authentication request;

    determining whether to grant a user device access to a secure data network via a plurality of network access points, the plurality of network access points including a first network access point and a second network access point; and

    ,responding to the authentication request with an authentication response indicating whether the user device is granted access to the secure data network via the plurality of network access points;

    wherein;

    the authentication request travels along a communication path including the first network access point and the second network access point; and

    whether to grant the user device access is determined based on at least three data points, the at least three data points comprising a user identity provided by the user device, a first network access point identity associated with the first network access point, and a second network access point identity associated with the second network access point;

    wherein the combination of the user identity, the first network access point identity and the second network access point identity results in at least one of;

    (i) not granting the user device access to the secure data network; and

    (ii) granting the user device access to the secure data network,wherein the secure data network includes at least one of an Internet Protocol (IP) network;

    a Local Area Network (LAN);

    a Wide Area Network (WAN);

    a wireless network;

    a WiFi network;

    a General Packet Radio Service (GPRS) network;

    a public IP network; and

    a private IP network;

    wherein the user device includes at least one of a desktop personal computer, a laptop personal computer, a personal data assistance (PDA), a cellular phone, a smart-phone, and a device having a computing unit connectable to a network;

    wherein the user identity includes at least one of a user name;

    an identity of user device;

    a Media Access Control (MAC) address;

    an Internet Protocol (IP) address and port number;

    a device serial number;

    subscriber information in a subscriber identity module (SIM) card;

    subscriber information in a Universal Subscriber Identity Module (USIM) card;

    a telephone number;

    security information;

    a password;

    a security code;

    a secret answer to a security question;

    biometric characteristics;

    fingerprint data, eye retinal data, eye iris data voice pattern recognition data and signature recognition data;

    wherein the first network access point and/or the second network access point includes at least one of a firewall;

    a wireless access point a Dynamic Host Configuration Protocol (DHCP) server;

    a Remote Access Server (RAS);

    a Broadband Remote Access Server (BRAS);

    a web server;

    a secure web server;

    a virtual private network (VPN) server;

    a termination point of an access tunnel;

    a termination point of a virtual private network (VPN) tunnel;

    a termination point of a Generic Routing Encapsulation (GRE) tunnel; and

    a termination point of a Layer-2 Tunnel Protocol (L2TP) tunnel; and

    wherein the first network access point identity and/or the second network access point identity includes at least one of a network access point name;

    an IP address;

    a port number;

    security information;

    a password;

    a security code;

    a device name;

    a machine identity;

    a serial number;

    an identity of an access tunnel termination point and an Access Point Name (APN).

View all claims
  • 4 Assignments
Timeline View
Assignment View
    ×
    ×