WO2012068462A2

Method of and system for extending the wispr authentication procedure

Abstract

A method and system for completing the authentication process of a user device in a second communication network (such as Wi-Fi or WiMAX) utilizes the user credential (such as a SIM card, a USIM card, or a RUIM card) of a first communication network (such as GSM, CDMA, EDGE, or LTE). A client, such as a software module, executes on the wireless device. An authentication platform retrieves the SIM card credential information in the first communication network and passes the information to the authentication platform of the second communication network, thereby granting the client access to the second communication after the authentication platform validates with the first communication network.

WO2012068462A2, drawing sheet 1
Sheet 1 of 4

Term

No projected expiry on record.

  1. Priority
  2. Filed
  3. Published
  4. Today

37 claims: 7 independent, 30 dependent

  1. 1
    Claims What is claimed is:1. A method of granting a user access to a wireless network comprising: validating credential information of a user device via an Intermediary Authentication System against the Home Authentication System;and on successfully authenticating the credential information, granting the user device a temporary credential in a credential format of the wireless network, thereby allowing the user device to access the wireless network.
  2. 14
    A method of granting a user device access to a wireless network comprising:detecting that the wireless network does not include an Intermediary Authentication System in a walled garden;initiating a temporary Internet connection with the wireless network using predefined credential rules recognized by the Intermediary Authentication System;validating user credential information against a Home Authentication System over the temporary Internet connection;on successfully validating the user credential information, granting the user device a temporarily credential in a credential format of the wireless network;tearing down the temporary Internet connection;and accessing the wireless network using the temporary credential format.
  3. 18
    An Authentication System for completing an authentication and registration procedure in a wireless network by utilizing a user credential of a mobile device, the Authentication System comprising a memory containing computer-executable instructions that when executed by a processor performs a method comprising:receiving identifier information of a user credential associated with a wireless device;communicating with a Home Authentication Server to retrieve challenge vectors;transferring the challenge vectors to a client executing on the wireless device;validating a challenge result from the client against a response from the Home Authentication Server;and granting the wireless device access to the wireless network.
  4. 21
    The Authentication System of claiml9, wherein a communication protocol between Authentication System and the Home Authentication System is MAP, IS-41 or AAA.
  5. 27
    A method of authenticating a user comprising:verifying authentication requests from a Wi-Fi network;granting a user device access to the Wi-Fi network access by issuing different authorization results;and on receiving accounting requests, generating an accounting record for the user device.
  6. 30
    A wireless device comprising a computer memory containing computer-executable instructions that when executed by a processor performs a method comprising:detecting that the wireless network does not include an Authentication System in a walled garden;initiating a temporary Internet connection with the wireless network with predefined credential rules recognized by an Authentication Gateway;validating user credential information associated with a user device against a Home Authentication System over the temporary Internet connection;on successfully validating the user credential information, granting the user device a temporary credential in a credential format of the wireless network;tearing down the temporary Internet connection;and accessing the wireless network using the temporary credential.
  7. 35
    A wireless device comprising a computer memory containing computer-executable instructions that when executed by a processor performs a method comprising:retrieving user identification from a user credential;transferring the user identification to a remote Authentication System;receiving a challenge request from the remote Authentication System;generating a challenge response from the user credential using a challenge parameter as input;transferring the challenge response to the remote Authentication System;and receiving an authentication result and an authorization result.