WO2018032085A1

System for connecting to a secured wireless local area network (wlan) when roaming by means of purchased secure access credentials

Abstract

Described herein is a wireless network broadcast device comprising: a network interface supporting secured communications with an Internet access point; a wireless adapter to establish a plurality of secured wireless network connections and an open unsecured wireless network connection directed to a web page hosted on a remote server and providing information relating to purchase of one of the plurality of secured wireless network connections; and a processor programmed to execute network security rules to isolate network communications data of each of the plurality of secured wireless network connections from all other network communications data passing through the wireless adapter. Neighbor subscribers can use the web page to purchase access to one of the secured wireless network connections and have a computing device configured for password protected wireless connection to one of the plurality of secured wireless network connections.

WO2018032085A1, drawing sheet 1
Sheet 1 of 9

Term

No projected expiry on record.

  1. Priority and filed
  2. Published
  3. Today

164 claims: 81 independent, 83 dependent

  1. 1
    WHAT IS CLAIMED IS:1. A system for providing a plurality of secured wireless network connections over a shared Internet access point, the system comprising: a first wireless network broadcast device supporting a first wireless communication range and a second wireless network broadcast device supporting a second wireless communication range, the first and second wireless communication ranges being geographically distinct;the first wireless network broadcast device connected to a first Internet access point and the second wireless network broadcast devices connected to a second Internet access point;each of the first and second wireless network broadcast devices comprising a wireless adapter to establish a plurality of secured wireless local area networks (WLANs) and an open unsecured WLAN directed to a web page hosted on a remote server and providing information relating to the plurality of secured WLANs and prompts to allow a subscriber to purchase one of the plurality of secured WLANs, and a processor programmed to execute network security rules to isolate network communications data of each of the plurality of secured WLANs from all other network communications data passing through the wireless adapter;a first plurality of subscribers, each of the first plurality of subscribers having purchased access to one of the plurality of the secured WLANs of the first wireless network broadcast device and having a computing device configured for password protected wireless connection to one of the plurality of secured WLANs;a second plurality of subscribers, each of the second plurality of subscribers having purchased access to one of the plurality of the secured WLANs of the second wireless network broadcast device and having a computing device configured for password protected wireless connection to one of the plurality of secured WLANs;the computing device of at least one of the second plurality of subscribers automatically connected to one of the plurality of secured WLANs of the first wireless network broadcast device when the computing device of the at least one of the second plurality of subscribers is inside the first wireless communication range of the first wireless network broadcast device and outside the second wireless communication range of the second wireless network broadcast device.
  2. 4
    The system of any one of claims 1 to 3, wherein the first Internet access point is a first router connecting to an upstream Internet service provider (ISP) and the second Internet access point is a second router connecting to an upstream ISP.
  3. 5
    The system of any one of claims 1 to 4, wherein the networks security rules isolate network communication data of each of the plurality of secured WLANs from all other network communications data passing through the first or second Internet access points.
  4. 6
    The system of any one of claims 1 to 5, wherein the network security rules provide a firewall.
  5. 7
    The system of any one of claims 1 to 6, wherein the network security rules provide a VPN protocol.
  6. 8
    The system of any one of claims 1 to 7, wherein the first and second wireless network broadcast devices are configured to track subscriber usage and record subscriber usage statistics in a memory.
  7. 11
    A method for providing a plurality of secured wireless network connections over a shared Internet access point, the method comprising:connecting a first wireless network broadcast device supporting a first wireless communication range to a first Internet access point;connecting a second wireless network broadcast device supporting a second wireless communication range to a second Internet access point, the first and second wireless communication ranges being geographically distinct;from each of the first and second wireless network broadcast devices broadcasting a plurality of secured WLANs and an open unsecured WLAN directed to a web page hosted on a remote server and providing information relating to the plurality of secured WLANs and prompts to allow a subscriber to purchase one of the plurality of secured WLANs;providing network security rules to isolate network communications data of each of the plurality of secured WLANs from all other network communications data passing through the first and second wireless network broadcast devices;connecting a first plurality of subscribers to the plurality of secured WLANs of the first wireless network broadcast device, respectively, each of the first plurality of subscribers having a computing device configured for password protected wireless connection to one of the plurality of secured WLANs of the first wireless network broadcast device;connecting a second plurality of subscribers to the plurality of secured WLANs of the second wireless network broadcast device, respectively, each of the second plurality of subscribers having a computing device configured for password protected wireless connection to one of the plurality of secured WLANs of the second wireless network broadcast device;automatically connecting the computing device of at least one of the second plurality of subscribers to one of the plurality of secured WLANs of the first wireless network broadcast device when the computing device of the at least one of the second plurality of subscribers is inside the first wireless communication range of the first wireless network broadcast device and outside the second wireless communication range of the second wireless network broadcast device.
  8. 14
    The method of any one of claims 1 1 to 13, wherein the first Internet access point is a first router connecting to an upstream Internet service provider (ISP) and the second Internet access point is a second router connecting to an upstream ISP.
  9. 15
    The method of any one of claims 1 1 to 14, wherein the networks security rules isolate network communication data of each of the plurality of secured WLANs from all other network communications data passing through the first or second Internet access points.
  10. 16
    The method of any one of claims 11 to 15, wherein the network security rules provide a firewall.
  11. 17
    The method of any one of claims 1 1 to 16, wherein the network security rules provide a VPN protocol.
  12. 18
    The method of any one of claims 1 1 to 17, further comprising configuring the first and second wireless network broadcast devices to track subscriber usage and record subscriber usage statistics in a memory.
  13. 21
    A computer readable medium embodying a computer program for providing a plurality of secured wireless network connections over a shared Internet access point, the computer readable medium comprising:computer readable code for connecting a first wireless network broadcast device supporting a first wireless communication range to a first Internet access point;computer readable code for connecting a second wireless network broadcast device supporting a second wireless communication range to a second Internet access point, the first and second wireless communication ranges being geographically distinct;computer readable code for broadcasting, from each of the first and second wireless network broadcast devices, a plurality of secured WLANs and an open unsecured WLAN directed to a web page hosted on a remote server and providing information relating to the plurality of secured WLANs and prompts to allow a subscriber to purchase one of the plurality of secured WLANs;computer readable code for providing network security rules to isolate network communications data of each of the plurality of secured WLANs from all other network communications data passing through the first and second wireless network broadcast devices;computer readable code for respectively connecting a first plurality of subscribers to the plurality of secured WLANs of the first wireless network broadcast device, each of the first plurality of subscribers having a computing device configured for password protected wireless connection to one of the plurality of secured WLANs of the first wireless network broadcast device;computer readable code for respectively connecting a second plurality of subscribers to the plurality of secured WLANs of the second wireless network broadcast device, each of the second plurality of subscribers having a computing device configured for password protected wireless connection to one of the plurality of secured WLANs of the second wireless network broadcast device;computer readable code for automatically connecting the computing device of at least one of the second plurality of subscribers to one of the plurality of secured WLANs of the first wireless network broadcast device when the computing device of the at least one of the second plurality of subscribers is inside the first wireless communication range of the first wireless network broadcast device and outside the second wireless communication range of the second wireless network broadcast device.
  14. 24
    The computer readable medium of any one of claims 21 to 23, wherein the first Internet access point is a first router connecting to an upstream Internet service provider (ISP) and the second Internet access point is a second router connecting to an upstream ISP.
  15. 25
    The computer readable medium of any one of claims 21 to 24, wherein the networks security rules isolate network communication data of each of the plurality of secured WLANs from all other network communications data passing through the first or second Internet access points.
  16. 26
    The computer readable medium of any one of claims 21 to 25, wherein the network security rules provide a firewall.
  17. 27
    The computer readable medium of any one of claims 21 to 26, wherein the network security rules provide a VPN protocol.
  18. 28
    The computer readable medium of any one of claims 21 to 27, further comprising computer readable code for configuring the first and second wireless network broadcast devices to track subscriber usage and record subscriber usage statistics in a memory.
  19. 31
    A system for adding a secured wireless network connection for a subscriber in a mobility mode, the system comprising:a first wireless network broadcast device configured to broadcast an open unsecured wireless network connection, to broadcast a home mode secured wireless network connection uniquely accessible by a first subscriber in a home mode, and to broadcast a mobility mode secured wireless network connection uniquely accessible by a second subscriber in a mobility mode, the home mode designated when the first subscriber initially establishes the home mode secured wireless network connection with the first wireless network broadcast device in a first wireless communication range and remains geographically within the first wireless communication range of the first wireless network broadcast device, a mobility mode designated when the second subscriber initially establishes a home mode secured wireless network connection with a second wireless network broadcast device in a second wireless communication range and moves geographically outside of the second wireless communication range of the second wireless network broadcast device and remains within the first wireless communication range of the first wireless network broadcast device;a remote server communicative with the first wireless network broadcast device through an Internet access point, the remote server configured to receive information from the first wireless network broadcast device relating to the second subscriber, accessing a stored record of the second subscriber to designate the second subscriber in the mobility mode, and sending a communication to the first wireless network broadcasting device to add the mobility mode secured wireless network connection uniquely accessible by the second subscriber in the mobility mode.
  20. 35
    The system of any one of claims 31 to 34, wherein the mobility mode is designated when the second subscriber remains within the first wireless communication range of the first wireless network broadcast device for a predetermined time of at least 10 seconds.
  21. 36
    The system of any one of claims 31 to 35, further comprising a remote memory, the remote memory communicative with the remote server, the remote memory storing records of the first and second subscribers, each record comprising a unique identifier and a network usage statistic, the network usage statistic calculated based on time, data or both time and data in home mode and mobility mode.
  22. 39
    The system of any one of claims 31 to 35, wherein the information from the first wireless network broadcast device relating to the second subscriber includes a unique identifier of the second subscriber and the remote server determines whether the unique identifier is associated with a previously established secured wireless network connection within the system.
  23. 41
    A method for adding a secured wireless network connection for a subscriber in a mobility mode, the method comprising:broadcasting, using a first wireless network broadcast device, an open unsecured wireless network connection, a home mode secured wireless network connection uniquely accessible by a first subscriber in a home mode, and a mobility mode secured wireless network connection uniquely accessible by a second subscriber in a mobility mode, the home mode designated when the first subscriber initially establishes the home mode secured wireless network connection with the first wireless network broadcast device in a first wireless communication range and remains geographically within the first wireless communication range of the first wireless network broadcast device, a mobility mode designated when the second subscriber initially establishes a home mode secured wireless network connection with a second wireless network broadcast device in a second wireless communication range and moves geographically outside of the second wireless communication range of the second wireless network broadcast device and remains within the first wireless communication range of the first wireless network broadcast device;communicating information relating to the second subscriber from the first wireless network broadcast device to a remote server through an Internet access point, the remote server accessing a stored record of the second subscriber to designate the second subscriber in the mobility mode, and sending a communication from the remote server to the first wireless network broadcasting device to add the mobility mode secured wireless network connection uniquely accessible by the second subscriber in the mobility mode.
  24. 45
    The method of any one of claims 41 to 44, wherein the mobility mode is designated when the second subscriber remains within the first wireless communication range of the first wireless network broadcast device for a predetermined time of at least 10 seconds.
  25. 46
    The method of any one of claims 41 to 45, further comprising storing records of the first and second subscribers in a remote memory, each record comprising a unique identifier and a network usage statistic, the network usage statistic calculated based on time, data or both time and data in home mode and mobility mode.
  26. 49
    The method of any one of claims 41 to 45, further comprising determining whether a unique identifier of the second subscriber is associated with a previously established secured wireless network connection, wherein the information relating to the second subscriber from the first wireless network broadcast device includes the unique identifier of the second subscriber.
  27. 51
    A computer readable medium embodying a computer program for adding a secured wireless network connection for a subscriber in a mobility mode, the computer readable medium comprising:computer readable code for broadcasting, using a first wireless network broadcast device, an open unsecured wireless network connection, a home mode secured wireless network connection uniquely accessible by a first subscriber in a home mode, and a mobility mode secured wireless network connection uniquely accessible by a second subscriber in a mobility mode, the home mode designated when the first subscriber initially establishes the home mode secured wireless network connection with the first wireless network broadcast device in a first wireless communication range and remains geographically within the first wireless communication range of the first wireless network broadcast device, a mobility mode designated when the second subscriber initially establishes a home mode secured wireless network connection with a second wireless network broadcast device in a second wireless communication range and moves geographically outside of the second wireless communication range of the second wireless network broadcast device and remains within the first wireless communication range of the first wireless network broadcast device;computer readable code for communicating information relating to the second subscriber from the first wireless network broadcast device to a remote server through an Internet access point, computer readable code for the remote server accessing a stored record of the second subscriber to designate the second subscriber in the mobility mode, and computer readable code for sending a communication from the remote server to the first wireless network broadcasting device to add the mobility mode secured wireless network connection uniquely accessible by the second subscriber in the mobility mode.
  28. 55
    The computer readable medium of any one of claims 51 to 54, wherein the mobility mode is designated when the second subscriber remains within the first wireless communication range of the first wireless network broadcast device for a predetermined time of at least 10 seconds.
  29. 56
    The computer readable medium of any one of claims 51 to 55, further comprising computer readable code for storing records of the first and second subscribers in a remote memory, each record comprising a unique identifier and a network usage statistic, the network usage statistic calculated based on time, data or both time and data in home mode and mobility mode.
  30. 59
    The computer readable medium of any one of claims 51 to 55, further comprising computer readable code for determining whether a unique identifier of the second subscriber is associated with a previously established secured wireless network connection, wherein the information relating to the second subscriber from the first wireless network broadcast device includes the unique identifier of the second subscriber.
  31. 61
    A system for providing a plurality of secured wireless network connections over a shared Internet access point, the system comprising:a plurality of providers, each of the plurality of providers controlling an Internet access point and a wireless network broadcast device connected to the Internet access point;the wireless network broadcast device comprising a wireless adapter to establish a plurality of secured WLANs and an open unsecured WLAN directed to a web page hosted on a remote server and providing information relating to connection speed of the plurality of secured WLANs and prompts to allow a subscriber to purchase and configure one of the plurality of secured WLANs, and a processor programmed to execute network security rules to isolate network communications data of each of the plurality of secured WLANs from all other network communications data passing through the wireless adapter;a plurality of subscribers, each of the plurality of subscribers having purchased access to one of the plurality of the secured WLANs and having a computing device configured for wireless connection to one of the plurality of secured WLANs.
  32. 65
    The system of any one of claims 61 to 64, wherein the wireless adapter is configured to an 802.11 communication standard.
  33. 66
    The system of any one of claims 61 to 65, wherein the networks security rules isolate network communication data of each of the plurality of secured WLANs from all other network communications data passing through the Internet access point.
  34. 67
    The system of any one of claims 61 to 66, wherein the network security rules provide a firewall.
  35. 68
    The system of any one of claims 61 to 66, wherein the network security rules provide a sandbox.
  36. 69
    The system of any one of claims 61 to 66, wherein the network security rules provide a jail.
  37. 70
    The system of any one of claims 61 to 66, wherein the network security rules provide a VPN protocol.
  38. 72
    The system of any one of claims 61 to 71, wherein a unique web page is hosted for each of the plurality of providers.
  39. 73
    The system of any one of claims 61 to 72, wherein the wireless network broadcast device is configured to track subscriber usage and record subscriber usage statistics in a memory.
  40. 76
    A method for providing a plurality of secured wireless network connections over a shared Internet access point, the method comprising:connecting a plurality of wireless network broadcast devices to a plurality of Internet access points, respectively;broadcasting a plurality of secured WLANs from each device of the plurality of wireless network broadcast devices;broadcasting an open unsecured WLAN from each device of the plurality of wireless network broadcast devices, the open unsecured WLAN directed to a web page hosted on a remote server;providing information on the web page, the information relating to a connection speed of the plurality of secured WLANs and providing prompt on the web page to allow purchase and configuration of one of the plurality of secured WLANs;providing network security rules to isolate network communications data of each of the plurality of secured WLANs from all other network communications data passing through the wireless adapter;connecting a plurality of subscribers to the plurality of secured WLANs, respectively, each of the plurality of subscribers having purchased access to one of the plurality of the securedWLANs and having a computing device configured for password protected wireless connection to one of the plurality of secured WLANs.
  41. 80
    The method of any one of claims 76 to 79, wherein the wireless adapter is configured to an 802.11 communication standard.
  42. 81
    The method of any one of claims 76 to 80, wherein the network security rules isolate network communication data of each of the plurality of secured WLANs from all other network communications data passing through each of the plurality of Internet access points.
  43. 82
    The method of any one of claims 76 to 81, wherein the network security rules provide a firewall.
  44. 83
    The method of any one of claims 76 to 81, wherein the network security rules provide a sandbox.
  45. 84
    The method of any one of claims 76 to 81, wherein the network security rules provide a jail.
  46. 85
    The method of any one of claims 76 to 81, wherein the network security rules provide a VPN protocol.
  47. 87
    The method of any one of claims 76 to 86, wherein each open unsecured WLAN is directed to a unique web page.
  48. 88
    The method of any one of claims 76 to 87, further comprising tracking subscriber usage and recording subscriber usage statistics in a memory of each wireless network broadcast device.
  49. 91
    A computer readable medium embodying a computer program for providing a plurality of secured wireless network connections over a shared Internet access point, the computer readable medium comprising:computer readable code for connecting a plurality of wireless network broadcast devices to a plurality of Internet access points, respectively;computer readable code for broadcasting a plurality of secured WLANs from each device of the plurality of wireless network broadcast devices;computer readable code for broadcasting an open unsecured WLAN from each device of the plurality of wireless network broadcast devices, the open unsecured WLAN directed to a web page hosted on a remote server;computer readable code for providing information on the web page, the information relating to a connection speed of the plurality of secured WLANs and providing prompts on the web page to allow purchase and configuration of one of the plurality of secured WLANs;computer readable code for providing network security rules to isolate network communications data of each of the plurality of secured WLANs from all other network communications data passing through the wireless adapter;computer readable code for connecting a plurality of subscribers to the plurality of secured WLANs, respectively, each of the plurality of subscribers having purchased access to one of the plurality of the secured WLANs and having a computing device configured for password protected wireless connection to one of the plurality of secured WLANs.
  50. 95
    The computer readable medium of any one of claims 91 to 94, wherein the wireless adapter is configured to an 802.11 communication standard.
  51. 96
    The computer readable medium of any one of claims 91 to 95, wherein the network security rules isolate network communication data of each of the plurality of secured WLANs from all other network communications data passing through each of the plurality of Internet access points.
  52. 97
    The computer readable medium of any one of claims 91 to 96, wherein the network security rules provide a firewall.
  53. 98
    The computer readable medium of any one of claims 91 to 96, wherein the network security rules provide a sandbox.
  54. 99
    The computer readable medium of any one of claims 91 to 96, wherein the network security rules provide a jail.
  55. 100
    The computer readable medium of any one of claims 91 to 96, wherein the network security rules provide a VPN protocol.
  56. 102
    The computer readable medium of any one of claims 91 to 101, wherein each open unsecured WLAN is directed to a unique web page.
  57. 103
    The computer readable medium of any one of claims 91 to 102, further comprising computer readable code for tracking subscriber usage and recording subscriber usage statistics in a memory of each wireless network broadcast device.
  58. 106
    A system for adding a secured wireless network connection to a wireless network broadcasting device, the system comprising:a wireless network broadcast device configured to broadcast a first open unsecured wireless network connection and to broadcast a first secured wireless network connection uniquely accessible by a first subscriber, the open unsecured wireless network connection directed to a unique first web page providing information relating to purchase of a second secured wireless network connection of the wireless network broadcast device;a remote server communicative with the wireless network broadcast device through anInternet access point, the remote server configured to receive a communication relating to purchase of the second secured wireless network connection by a second subscriber, and sending a communication to the wireless network broadcasting device to add the second secured wireless network connection uniquely accessible by the second subscriber.
  59. 110
    The system of any one of claims 106 to 109, wherein the wireless network broadcast device is configured to an 802.11 communication standard.
  60. 111
    The system of any one of claims 106 to 110, wherein the wireless network broadcast device is configured with network security rules to isolate network communication data of each of the first and second secured wireless network connections from all other network communications data passing through the Internet access point.
  61. 117
    The system of any one of claims 106 to 116, further comprising a second wireless network broadcasting device broadcasting a second open unsecured wireless network connection directed to a unique second web page, the second wireless network broadcasting device communicative with the remote server.
  62. 118
    The system of any one of claims 106 to 116, wherein the wireless network broadcast device is configured to track subscriber usage and record subscriber usage statistics in a memory.
  63. 121
    A method for adding a secured wireless network connection to a wireless network broadcasting device, the method comprising:broadcasting, from a wireless network broadcast device, a first open unsecured wireless network connection and a first secured wireless network connection uniquely accessible by a first subscriber, the open unsecured wireless network connection directed to a unique first web page providing information relating to purchase of a second secured wireless network connection of the wireless network broadcast device;receiving at a remote server communicative with the wireless network broadcast device through an Internet access point, a communication relating to purchase of the second secured wireless network connection by a second subscriber;and sending a communication from the remote server to the wireless network broadcasting device to add the second secured wireless network connection uniquely accessible by the second subscriber.
  64. 125
    The method of any one of claims 121 to 124, wherein the wireless network broadcast device is configured to an 802.11 communication standard.
  65. 126
    The method of any one of claims 121 to 125, further comprising providing network security rules to isolate network communication data of each of the first and second secured wireless network connections from all other network communications data passing through the Internet access point.
  66. 132
    The method of any one of claims 121 to 131, further comprising connecting a second wireless network broadcast device to the remote server through a second Internet access point, broadcasting a second open unsecured wireless network connection from the second wireless network broadcast device, and directing the second open unsecured to a unique second web page hosted on the remote server.
  67. 133
    The method of any one of claims 121 to 131, further comprising tracking subscriber usage and recording subscriber usage statistics in a memory of the wireless network broadcast device.
  68. 136
    A computer readable medium embodying a computer program for adding a secured wireless network connection to a wireless network broadcasting device, the computer readable medium comprising:computer readable code for broadcasting, from a wireless network broadcast device, a first open unsecured wireless network connection and a first secured wireless network connection uniquely accessible by a first subscriber, the open unsecured wireless network connection directed to a unique first web page providing information relating to purchase of a second secured wireless network connection of the wireless network broadcast device;computer readable code for receiving at a remote server communicative with the wireless network broadcast device through an Internet access point, a communication relating to purchase of the second secured wireless network connection by a second subscriber;and computer readable code for sending a communication from the remote server to the wireless network broadcasting device to add the second secured wireless network connection uniquely accessible by the second subscriber.
  69. 140
    The computer readable medium of any one of claims 136 to 139, wherein the wireless network broadcast device is configured to an 802.11 communication standard.
  70. 141
    The computer readable medium of any one of claims 136 to 140, further comprising computer readable code for providing network security rules to isolate network communication data of each of the first and second secured wireless network connections from all other network communications data passing through the Internet access point.
  71. 147
    The computer readable medium of any one of claims 136 to 146, further comprising computer readable code for connecting a second wireless network broadcast device to the remote server through a second Internet access point, broadcasting a second open unsecured wireless network connection from the second wireless network broadcast device, and directing the second open unsecured to a unique second web page hosted on the remote server.
  72. 148
    The computer readable medium of any one of claims 136 to 146, further comprising computer readable code for tracking subscriber usage and recording subscriber usage statistics in a memory of the wireless network broadcast device.
  73. 151
    A wireless network broadcast device comprising:a first wireless adapter to establish password protected secured wireless communications with an Internet access point;a second wireless adapter to establish a plurality of secured WLANs and an open unsecured WLAN directed to a web page hosted on a remote server and providing information relating to purchase of one of the plurality of secured WLANs;and a processor communicative with both the first wireless adapter and the second wireless adapter, the processor programmed to execute network security rules to isolate network communications data of each of the plurality of secured WLANs from all other network communications data passing through the first wireless adapter.
  74. 155
    The device of any one of claims 151 to 154, wherein both the first and second wireless adapters are configured to an 802.11 communication standard.
  75. 156
    The device of any one of claims 151 to 155, wherein the networks security rules isolate network communication data of each of the plurality of secured WLANs from all other network communications data passing through the Internet access point.
  76. 157
    The device of any one of claims 151 to 156, wherein the network security rules provide a firewall.
  77. 158
    The device of any one of claims 151 to 156, wherein the network security rules provide a sandbox.
  78. 159
    The device of any one of claims 151 to 156, wherein the network security rules provide a jail.
  79. 160
    The device of any one of claims 151 to 156, wherein the network security rules provide a VPN protocol.
  80. 162
    The device of any one of claims 151 to 161, wherein the unique web page is a captive portal.
  81. 163
    The device of any one of claims 151 to 162, wherein the processor is configured to track usage of each of the plurality of secured WLANs and record usage statistics in a memory.
Independent claims81