Location-based access control for wireless local area networks
13 claims: 4 independent, 9 dependent
- 1A method of operating a wireless local area network comprising the steps of:receiving a request from a wireless station (7, 9) at an access point (3) of the wireless local area network;determining if a location of the wireless station (7, 9) is within a predefined geographical area;if the location is within the predefined geographical area, allowing the wireless station (7, 9) to access the wireless local area network;and if the location is outside the predefined geographical area, denying the wireless station (7, 9) access to the wireless local area network, the method characterized in that said step of determining includes the steps of: measuring a signal strength of the wireless station (7, 9) as received by the access point of the wireless local area network;and comparing the signal strength to a predetermined threshold value, wherein the predetermined threshold value is set such that reliable signals could be received at the access point (3) from the wireless station (7, 9) with a signal strength greater than the predetermined threshold value, however signal strengths less than the predetermined threshold value received at the access point (3) are assumed to come from an unauthorized wireless station outside the predefined geographical area and are denied access to the wireless local area network.
- 8A system comprising:an access point (3) for receiving a wireless request from a wireless station (7, 9);wherein the access point (3) comprises a control unit (11) for determining if a location of the wireless station (7, 9) is within a predefined geographical area;and a router or bridge (15) for providing the wireless station access (7, 9) to a wireless local area network, if the wireless station (7, 9) is within the predefined geographical area, wherein said control unit (11) includes: a signal strength measuring device for measuring a signal strength of a signal received by said access point from the wireless station (7, 9), and wherein said access point (3) further comprises: a memory (13) storing a predetermined threshold value, and wherein said control unit (11) includes a comparator for comparing a measured signal strength received by said access point (3) from the wireless station (7, 9) to said predetermined threshold value, wherein said predetermined threshold value is set such that reliable signals could be received at said access point from the wireless station with a signal strength greater than said predetermined threshold value, however signal strengths less than said predetermined threshold value received at said access point are assumed to come from an unauthorized wireless station (7, 9) outside the predefined geographical area and are denied access to the wireless local area network.
- 11A method of setting up a wireless local area network comprising the steps of:providing an access point for transceiving communications with wireless stations (7, 9) inside a predefined geographical area;operating a wireless station (7, 9) within the predefined geographical area which is smaller than an area which could be reliably served by the access point (3);measuring signal strengths received at the access point (3) from the wireless station (7, 9), as the wireless station is moved about within the predefined geographical area;setting a predetermined threshold value at an amount less than the lowest measured signal strength;and storing the predetermined threshold value in a memory (13), wherein the predetermined threshold value is set such that reliable signals could be received at the access point from the wireless station with a signal strength less than the predetermined threshold value, however signal strengths less than the predetermined threshold value received at the access point are assumed to come from an unauthorized wireless station (7, 9) outside the predefined geographical area and are denied access to the wireless local area network.
Independent claims4
44 paragraphs in 4 sections, as filed
BACKGROUND OF THE INVENTION
1. Field of the Invention
0001The present invention relates to a wireless, local area network (LAN). More particularly, the present invention relates to a system and method for preventing unauthorized use of a wireless LAN.
2. Description of the Related Art
0002Wireless LANs are a popular and inexpensive way to allow multiple users of "stations" to communicate with each other, to access a wired LAN, to access a local server, to access a remote server, such as over the Internet, etc.. A "station" is a piece of equipment, such as a laptop computer, a personal digital assistant (PDA), a pager, a cellular phone, or similar device. The station includes a wireless transceiver which can communicate with an access point. The communication can occur via radio waves, infrared, or any other known form of wireless communication. The access point allows wireless stations to communicate with each other and to communicate with infrastructure connected to the access point.
0003The server can provide services, such as access to applications like an email system, a word processing program, an accounting system and/or a dedicated database. Wireless LANs are employed within such facilities as businesses, university classrooms or buildings, airport lounges, hotel meeting rooms, etc. When a user is physically located in the vicinity of an access point, the transceiver of the station communicates with the access point and a connection to the wireless LAN is established.
0004One problem with wireless LANs is unauthorized users. An unauthorized user can position an unauthorized station on the outskirts of the transmission/reception area of the access point, such as in a parking lot, and "hack" into the wireless LAN. The unauthorized user can then use the LAN services without paying a subscriber fee. This leads to lost revenues and slows down the applications for the authorized subscribers. More importantly, the unauthorized user can often gain access to sensitive data, and/or can cause destruction or corruption of application programs and data on the wireless LAN. [04a] In <nplcit id="ncit0001" npl-type="s"><text>BERZINS A: "I/O Software and Bluesoft show innovative authentication solution at the Intel Developer Forum" PRESS RELEASE (Online), 25 February 2002 (2002-02-25), pages 1-2</text></nplcit>, a multifactor authentication for communication between a Bluetooth wireless device and a PC a is described. The Bluetooth wireless device must be positioned in a predetermined distance to the PC. Otherwise, the PC does not allow access; the nearby wireless device is used as key, wherein a distance and the presence of a particular wireless device is used for allowing or denying access. [04b] In <nplcit id="ncit0002" npl-type="s"><text>KINDBERG T ET AL: "Context Authentication Using Constrained Channels" PROCEE-DINGS FOURTH IEEE WORKSHOP ON MOBILE COMPUTING SYSTEMS AND APPLICATIONS, 20-21 June 2002 in Los Alamitos, USA, pages 14-21, CA</text></nplcit>, various ways are discussed for determining whether a user is seeking to access a wireless network from within given location. It is determined whether is inside or outside an office. This is carried out by detecting the number of individuals in a room or the temperature of a room. Such an approach has a reduced precision regarding the assessment of the position of a wireless device.
0005One solution to unauthorized users of wireless LANs has been to employ user names and passwords. Such a measure is successful to some extent. However, sophisticated hackers can still bypass user name and password protection systems. Since transmissions between the stations and the access point are wireless, it is possible to intercept a transmission, as an authorized users logs on, to decode a key code, the valid user name and password, and to then break into the wireless LAN. Further, other more sophisticated techniques are available. Therefore, there exists a need in the art for a system and method, which assists in preventing unauthorized users from gaining access to a wireless LAN.
SUMMARY OF THE INVENTION
0006It is an object of the present invention to address one or more of the drawbacks associated with the related art.
0007It is a further object of the present invention to enhance the security of a wireless LAN.
0008The invention is defined by the subject-matter of independent claims 1, 8 and 11.
0009Other objects and further scope of applicability of the present invention will become apparent from the detailed description given hereinafter. However, it should be understood that the detailed description and specific examples, while indicating preferred embodiments of the invention, are given by way of illustration only, since various changes and modifications within the spirit and scope of the invention will become apparent to those skilled in the art from this detailed description.
BRIEF DESCRIPTION OF THE DRAWINGS
0010The present invention will become more fully understood from the detailed description given hereinbelow and the accompanying drawings which are given by way of illustration only, and thus, are not limitative of the present invention, and wherein:
0011<figref idref="f0001">Figure 1</figref> is a block diagram illustrating a wireless LAN, in accordance with the present invention;
0012<figref idref="f0002">Figure 2</figref> is a floor plan of a business employing the wireless LAN;
0013<figref idref="f0003">Figure 3</figref> is a flow chart illustrating a method for allowing a wireless station access to the wireless LAN;
0014<figref idref="f0004">Figure 4</figref> is a floor plan of an airport lounge employing the wireless LAN; and
0015<figref idref="f0005">Figure 5</figref> is a flow chart illustrating a method for verifying that wireless stations on the wireless LAN remain within a predefined geographical service area.
DETAILED DESCRIPTION OF THE INVENTION
0016<figref idref="f0001">Figure 1</figref> is a block diagram illustrating a wireless LAN, in accordance with the present invention. The wireless LAN includes at least one access point 3. The access point 3 includes a wireless transceiver 5. The wireless transceiver communicates with wireless stations 7 and 9 in the vicinity.
0017The transceiver 5 is connected to a control unit 11. The control unit 11 is connected to a memory 13 and a bridge or router 15. The router 15 is connected to a server 17, either via a hardwired connection or via a wireless connection (as illustrated in <figref idref="f0001">Figure 1</figref>). The server 17 is, in turn, connected to peripheral devices, such as a printer 19, a modem 21 and a database 23. It should be noted that the bridge or router 15 need not be directly connected to a local server. A server could be anywhere in the Intranet, or Internet, if a suitable network configuration is provided. The primary function of the access point is to act as a bridge to allow communications between wireless stations (in which case a server is not required) and/or to allow communications between wireless stations and some infrastructure connected to the access point (which may or may not include a server).
0018With reference to <figref idref="f0002">Figure 2</figref>, a physical allocation of the wireless LAN in a small business will be described. A small business is located within a building defined by outside perimeter walls 25. A parking lot 27 is provided at the entrance to the business.
0019Inside the perimeter walls 25 are a plurality of interior walls 29 defining individual offices 31 and workspaces 33. The server 17 is located in one of the workspaces 33. The server 17 has a hardwired connection to the printer 19 and the modem 21. A personnel, customer, and production database is located on a hard drive, internal to the server 17. The server 17 also includes a wireless connection to a first access point 41 and a second access point 43.
0020Employees of the business are provided with stations, such as laptops. The laptops are connectable to either one of the first or second access points 41, 43 via a wireless connection. Three authorized stations are illustrated, i.e. a first station 45, a second station 47 and a third station 49. Each station 45, 47, 49 will communicate with a closest access point 41, 43. Employees may take their laptops to and from various offices and workspaces without interruption of their connection to the server 17. As an authorized station 45, 47, 49 travels within the business, the station 45, 47, 49 is handed-off to a closest access point 41, 43, so that an adequate signal strength is maintained.
0021<figref idref="f0002">Figure 2</figref> also illustrates an unauthorized fourth station 51. The authorized fourth station 51 is located in a car 53 in the parking lot 27. The unauthorized station 51 is sufficiently close to the second access point 43 to send signals to, and receive signals from, the second access point 43. Thus, a person in the parked car 53 has the opportunity to gain access to the wireless LAN.
0022In a wireless LAN in accordance with the background art, this person might view sensitive personnel and business data, or corrupt program or data files with a computer virus. However, in the present invention, the system components, and method of operation, act to prevent access to the wireless LAN by the unauthorized fourth station 51.
0023With reference to the flow chart of <figref idref="f0003">Figure 3</figref>, the operation of the system components, in accordance with the present invention, will be described. In step S100, an association request is received from a station seeking to connect to the wireless LAN. The request is received by the transceiver 5. The transceiver 5 passes the request to the control unit 11.
0024In step S102, the control unit 11 measures the signal strength (SS) of the request. Next, in Step S106, the control unit 11 compares the measured signal strength to a predetermined threshold value stored in the memory 13. If the measured signal strength is greater than the predetermined threshold value, the system concludes that the station is within the confines of the business's outer perimeter walls 25. Therefore, the process proceeds to step S108. In step S108, the control unit 11 allows the station to communicate with the server 17 or with other stations on the wireless LAN, via the router 15. Of course, key codes, user names, and passwords, may also be checked by the access point 3 or server 17 prior to allowing a station full access to the wireless LAN.
0025If the measured signal strength in step S102 is not greater than the predetermined threshold value (as determined by the comparison step S106), the process proceeds to step S110. In step S110, the control unit 11 prevents the station from communicating with the server 17 and with other stations on the wireless LAN by denying access to the router 15. It is also an option that the control unit 11 can send a message to the station, informing the station that it is out of range.
0026By the above arrangement, it is possible to prevent a wireless station from gaining access to the wireless LAN, when the station is positioned outside of a designated geographical area, such as outside of the perimeter walls 25 of the business. This will reduce the likelihood of an unscrupulous person tampering with the wireless LAN by "parking-lot hacking."
0027Since a wireless LAN can be installed in a business having a floor plan of any configuration or size, there would be no single predetermined threshold value which would be suitable for all installations. Therefore, it is envisioned that the predetermined threshold value would be experimentally determined at the time of installation by a technician or by the end user. During installation, a technician would take a station and travel entirely within the geographical area to be served by the access point of the wireless LAN. Measurements would be made of the signal strength of the technician's station in this geographical area to form a first set of measured signal strengths.
0028Next, the technician would take the station just outside the geographical area to be serviced by the access point. Signal strength measurement would be again taken, this time to form a second set of measured signal strengths. The predetermined threshold value would be set to reside somewhere in the margin between the first and second sets of measured signal strengths. Of course, it would be possible to obtain only the first set of measured signal strengths and set the predetermined threshold value slightly less than the lowest measured signal strength. In a wireless LAN having more than one access point, the process would be repeated to determine a predetermined threshold value for each access point.
0029Some airlines offer a lounge at an airport terminal, which has a wireless LAN. Waiting passengers can access the wireless LAN using their own laptop, or can use a laptop supplied by the lounge attendant. <figref idref="f0004">Figure 4</figref> is a floor plan for a wireless LAN, in accordance with the present invention, employed in a lounge area of an airport. <figref idref="f0004">Figure 4</figref> also illustrates a wireless LAN which does not include a local server.
0030In <figref idref="f0004">Figure 4</figref>, a lounge 100 is defined by structural walls 101. In the lounge 100, there are a plurality of tables 103 and seats 105, such as chairs and couches. Travelers, relaxing or working in the lounge, can operate portable wireless stations, such as a fifth station 107 and a sixth station 109. The fifth and sixth stations 107 and 109 communicate with a third access point 111, positioned inside of an attendant's area 113. The third access point 111 is hardwired to a personal computer 115.
0031In the arrangement of <figref idref="f0004">Figure 4</figref>, it is an object of the present invention to discriminate the authorized fifth and sixth stations 107 and 109, inside the lounge 100, from an unauthorized, seventh station 117 in a restaurant 120 outside of the lounge 100. The present invention would classify the seventh station 117 in the restaurant 120 as an unauthorized station, via the method of <figref idref="f0003">Figure 3</figref>. Therefore, the seventh station 117 would be denied access to the wireless LAN established in the lounge 100.
0032<figref idref="f0004">Figure 4</figref> illustrates that the present invention is applicable to situations wherein only a portion of a building, instead of an entire building, is defined as the authorized geographical area of the wireless LAN. In <figref idref="f0004">Figure 4</figref>, the authorized geographical area is defined within interior walls 101 of an airport terminal. It should be noted that it is within the scope of the present invention to establish an authorized geographical area which is not defined by walls, but merely a radius from the access point.
0033It is also an object of the present invention to verify that authorized stations remain within the authorized geographical area. This prevents an unscrupulous hacker from briefly entering the authorized geographical area, establishing a connection to the wireless LAN, and then leaving the authorized geographical area while maintaining the connection to the wireless LAN. For example, a hacker could conceal a laptop computer in a briefcase and walk into a business, under the premise of asking directions to a nearby building. Once inside the business, the laptop could be automatically programmed to connect to the wireless LAN. Since the laptop would actually be within the authorized geographical area, a sufficient signal strength would be present, and the method of <figref idref="f0003">Figure 3</figref> would characterize the station (e.g. laptop) as an authorized station. After the hacker leaves the business, the hacker could sit in the parking lot and access the wireless LAN.
0034<figref idref="f0005">Figure 5</figref> is a flow chart illustrating a method of ensuring that authorized stations on the wireless LAN remain within the authorized geographical area. In step S120, the control unit 11 checks a timer value. The timer value could be an internal clock of a CPU of the control unit 11, or any other timing device. In step S122, it is determined if the timer value has elapsed, or if a designated time period has passed. If not, the process returns to step S120.
0035If the timer has lapsed, the process continues to step S124. In step S124, a signal strength of all of the stations on the wireless LAN is measured. Also in step S124, a total number of the stations on the wireless LAN is noted and a variable "i" is set equal to 1. Then, the process goes to step S126.
0036In step S126, the signal strength (SS) of the station(i), e.g. the first station on the wireless LAN, is compared in the predetermined threshold value stored in the memory 13. If the signal strength exceeds the predetermined threshold value, the process goes to step S128.
0037In step S128, the variable "i" is incremented and the process returns to step S126. Therefore, the next station's signal strength, e.g. the second station's signal strength, is compared to the predetermined threshold value. If a station's signal strength is less than the predetermined threshold value, the method goes to step S130.
0038In step S 130, the control unit evaluates an "access control policy" stored in the memory 13. The access control policy sets the standards for dealing with a station which passes outside of the authorized geographical area. There can be a universal access control policy for all stations. However, in a preferred embodiment, different stations, as identified by their unique key codes, are treated differently when they pass outside of the authorized geographical area. For example: (1) certain stations could be seamlessly operated outside of the authorized geographical area; (2) certain stations could be provided with a warning signal causing a display indicting that the user should return to the authorized geographical area; (3) certain stations could be allowed to continue a data transfer which is in progress, but be foreclosed from initiating any new data transfer; (4) certain stations could be allowed restricted access (e.g. only certain programs on the server could be accessed); (5) a timer could be started which allows certain stations to function in a normal manner for a period of time sufficient to allow the station to return to the authorized geographical area; (6) certain stations could be immediately denied further access to the wireless LAN and/or not associated with the wireless LAN, such as by sending a de-authentication notification to the station. The de-authentication notification would reset the station's state variables, such that the station would be unassociated with the wireless LAN, in accordance with the 802.11 standards. Denying access to the wireless LAN would be transparent to the station (e.g. the station would not receive a transmission from the wireless LAN and hence would not "know" that access had been denied). Sending a de-authentication notification would not be transparent to the station.
0039It would also be possible to provide different timer values for different stations. In other words, each station could have its own unique timer value. A check would be made to see if a particular station had left the authorized geographical area after the lapse of the timer value associated with that particular station. For example, one station would be checked every three minutes, while another station would be checked every ten minutes.
0040Step S132 illustrates the situation when policies (1) and (6) are in place. In Step S132, if the policy associated with the particular station outside of the authorized geographical area calls for policy (1), processing proceeds to step S134. In step S134, the station is allowed to seamlessly remain on the wireless LAN. If the policy associated with the particular station outside of the authorized geographical area calls for policy (6), processing proceeds to step S136. In step S136, the station is denied further access to the wireless LAN and/or the station is not associated.
0041After either of step S134 or step S136, the process goes to step S138. In step S138, the control unit 11 checks to see if the last station on the wireless LAN has been evaluated. If not, the variable "i" is incremented in step S128, and the next station is evaluated. If so, the process returns to step S120 and waits for a period. After, the period lapses, the control unit again reevaluates all of the stations on the wireless LAN. The period of steps S120 and S122 may be selectively set by the installer or end user, e.g., three minutes, 30 seconds.
0042By the present invention, it is possible to define an authorized geographical area, inside of which stations can connect to a wireless LAN and outside of which stations cannot connect to the wireless LAN. The geographical area is inferred by relying on a measured signal strength of the station seeking a connection to the wireless LAN. This method can be very accurate since walls, especially outside walls, tend to greatly weaken or attenuate wireless signals. Thus, it is possible to discriminate between authorized stations within certain walls and unauthorized stations outside of those walls. This arrangement counteracts the "parking lot scenario," wherein an unauthorized person gains access to a wireless LAN, while sitting in a car parked adjacent to a business, hotel, person's house, etc.
Contents4
5 sheets
Sheet 1 Sheet 2 Sheet 3 Sheet 4 Sheet 5
Every citation, both ways
| Reference | Relation |
|---|---|
| BERZINS A: "I/O Software and Bluesoft show innovative authentication solution at the Intel Developer Forum" PRESS RELEASE, [Online] 25 February 2002 (2002-02-25), pages 1-2, XP002250194 San Francisco Retrieved from the Internet: <URL:http://www.bluesoft-inc.com/PR10.pdf> [retrieved on 2003-08-04] | Non-patent |
| KINDBERG T ET AL: "Context Authentication Using Constrained Channels" PROCEEDINGS FOURTH IEEE WORKSHOP ON MOBILE COMPUTING SYSTEMS AND APPLICATIONS, 20 - 21 June 2002, pages 14-21, XP002250195 Los Alamitos, CA, USA ISBN: 0-7965-1647-5 | Non-patent |
| IBM: "IBM researchers demonstrate industry's first Self-diagnostic wireless security monitoring tool" PRESS RELEASE, [Online] 21 June 2002 (2002-06-21), pages 1-2, XP002250196 Retrieved from the Internet: <URL:http://www.ibm.com/news/nl/24062002_n l_nl_distributed_wireless_security_auditor .html> [retrieved on 2003-08-05] | Non-patent |
| GARG S ET AL: "Wireless access server for quality of service and location based access control in 802.11 networks" PROCEEDINGS ISCC 2002 SEVENTH INTERNATIONAL SYMPOSIUM ON COMPUTERS AND COMMUNICATIONS, 1 - 4 July 2002, pages 819-824, XP010595853 | Non-patent |
| BANERJEE S ET AL: "Secure Spaces: Location-based Secure Wireless Group Communication" MOBILE COMPUTING AND COMMUNICATIONS REVIEW, [Online] vol. 1, no. 2, 2 October 2002 (2002-10-02), XP002250197 Retrieved from the Internet: <URL:http://www.cs.umd.edu/users/suman/pub s/mc2r02.pdf> [retrieved on 2003-08-05] | Non-patent |
10 members in 7 offices
Priority claims3
| Document | Office | Kind | Date |
|---|---|---|---|
| 180527 | United States of America | – | |
| 18052702 | United States of America | A | |
| 0315073 | United States of America | W |
Members10
| Document | Office | Kind | |
|---|---|---|---|
| CA2489698A1 | Canada | A1 | |
| WO2004004278A1 | World Intellectual Property Organization (WIPO) | A1 | |
| AU2003234539A1 | Australia | A1 | |
| US2004203748A1 | United States of America | A1 | |
| KR20050032529A | Republic of Korea | A | |
| EP1527583A1 | European Patent Office (EPO) | A1 | |
| US7403773B2 | United States of America | B2 | |
| CA2489698C | Canada | C | |
| EP1527583B1This record | European Patent Office (EPO) | B1 | |
| DE60333298D1 | Germany | D1 |
42 legal events, as 5 offices reported them to INPADOC
Over the term
Point at a mark for the eventEvents
| Event | Code | Office | |
|---|---|---|---|
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Gb: european patent ceased through non-payment of renewal feeCeasedGBPC | GBPC | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Application deemed withdrawn, or ip right lapsed, due to non-payment of renewal feeWithdrawnR119 | R119 | DE | |
| Amendment of ipc main classPREVIOUS MAIN CLASS: H04L0029060000R079 | R079 | DE | |
| Annual fee paid to national office [announced via postgrant information from national office to epo]GrantedPGFP | PGFP | EP | |
| Annual fee paid to national office [announced via postgrant information from national office to epo]GrantedPGFP | PGFP | EP | |
| Annual fee paid to national office [announced via postgrant information from national office to epo]GrantedPGFP | PGFP | EP | |
| Fee paymentPLFP | PLFP | FR | |
| Fee paymentPLFP | PLFP | FR | |
| Fee paymentPLFP | PLFP | FR | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Annual fee paid to national office [announced via postgrant information from national office to epo]GrantedPGFP | PGFP | EP | |
| No opposition filed against granted patent, or epo opposition proceedings concluded without decisionGrantedR097 | R097 | DE | |
| No opposition filedOpposition26N | 26N | EP | |
| No opposition filed within time limitOppositionORIGINAL CODE: 0009261PLBE | PLBE | EP | |
| Information on the status of an ep patent application or granted ep patentGrantedSTATUS: NO OPPOSITION FILED WITHIN TIME LIMITSTAA | STAA | EP | |
| Change of applicant/patenteeR081 | R081 | DE | |
| Change of applicant/patenteeR081 | R081 | DE | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Discontinued in the netherlands as no translation has been filedVDEP | VDEP | NL | |
| Party data changed (patent owner data changed or rights of a patent transferred)RAP2 | RAP2 | EP | |
| Corresponds to:REF | REF | EP | |
| Designated contracting statesAK | AK | EP | |
| European patent grantedGrantedFG4D | FG4D | GB | |
| Party data changed (applicant data changed or rights of an application transferred)RAP1 | RAP1 | EP | |
| (expected) grantORIGINAL CODE: 0009210GRAA | GRAA | EP | |
| Grant fee paidORIGINAL CODE: EPIDOSNIGR3GRAS | GRAS | EP | |
| Title (correction)LOCATION-BASED ACCESS CONTROL FOR WIRELESS LOCAL AREA NETWORKSRTI1 | RTI1 | EP | |
| Despatch of communication of intention to grant a patentORIGINAL CODE: EPIDOSNIGR1GRAP | GRAP | EP | |
| First examination report despatched (corrected)R17C | R17C | EP | |
| First examination report despatched17Q | 17Q | EP | |
| Information on inventor provided before grant (corrected)RIN1 | RIN1 | EP | |
| Information on inventor provided before grant (corrected)RIN1 | RIN1 | EP | |
| Information on inventor provided before grant (corrected)RIN1 | RIN1 | EP | |
| Request for extension of the european patent (deleted)DAX | DAX | EP | |
| Designated contracting states (corrected)RBV | RBV | EP | |
| Request for examination filed17P | 17P | EP | |
| Designated contracting statesAK | AK | EP | |
| Request for extension of the european patentAX | AX | EP | |
| Public reference made under article 153(3) epc to a published international application that has entered the european phaseORIGINAL CODE: 0009012PUAI | PUAI | EP |
Numbers
- Publication
- 1527583
- Application
- 37288792
Titles3
- German
- Ortsabhängige Zugriffskontrolle für drahtlose lokale Kommunikationsnetze
- English
- Location-based access control for wireless local area networks
- French
- Controle d'accés en fonction du lieu, destiné aux réseaux locaux
Classification
- CPC, 9
- H04L63/105
- H04L63/107
- H04L12/2856
- H04W12/08
- H04W48/04
- H04W4/021
- H04W12/64
- G01S5/02521
- H04W64/00
- IPC, 9
- H04L29 06
- H04L12 28
- H04L29 08
- H04W4 021
- H04W12 08
- H04W24 00
- H04W64 00
- H04W74 00
- H04W84 12
Designated states5
- Contracting states, 5
- Germany
- France
- United Kingdom
- Hungary
- Netherlands (Kingdom of the)
