Identifying Mobile Devices via Access Point Correlation
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
In public access points, it is challenging to associate network behavior with specific users due to the transient nature of stored MAC addresses and the difficulty in identifying users based on these addresses, especially when unauthorized actions occur.
Innovation Solution
A system that detects unauthorized data requests, identifies the access point, and requests mobile communication devices within a threshold distance from the service provider to correlate and identify the subscriber associated with the device that initiated the request.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Measurement precision
If MAC addresses are stored at the access point for each connected device, then device identification capability is provided, but the ability to reliably identify the user who initiated unauthorized actions is lost due to transient storage and difficulty in correlating MAC addresses to users
Solution Approach 1:
The patent introduces a server as an intermediary component that receives MAC address information from the access point and correlates it with user identification data. This server acts as a mediator between the access point's device listing capability and the user identification requirement, enabling reliable user identification without requiring the access point to store or process user identification information directly.
Solution Approach 2:
The patent transitions from a two-dimensional problem (MAC address to device) to a three-dimensional solution by introducing a temporal dimension. The system captures MAC address information at the time of unauthorized action and correlates it with user identification data stored in a database, enabling reliable identification by adding the time dimension to the correlation process.
2Productivity
If the access point stores MAC addresses temporarily for connected devices, then device connection tracking is enabled, but the information becomes overwritten and unavailable for identifying users of unauthorized actions
Solution Approach 1:
The patent implements preliminary action by capturing and storing MAC address information at the moment of unauthorized action occurrence. The system proactively records the MAC address along with temporal information before the connection may be terminated or the MAC address overwritten, ensuring the information is preserved for later correlation with user identification data.
Solution Approach 2:
The patent ensures continuity of useful action by maintaining a persistent database that continuously stores correlations between MAC addresses, timestamps, and user identification information. This continuous storage mechanism prevents information loss even when temporary access point storage is overwritten, allowing uninterrupted tracking and identification capabilities.
3Adaptability or versatility
If multiple users simultaneously access the network through the same access point, then network accessibility is maintained, but associating network behavior with specific users becomes difficult
Solution Approach 1:
The patent segments the identification process into distinct components: the access point handles device connection tracking, the server handles user identification, and the database stores correlated information. This segmentation allows multiple users to simultaneously access the network while maintaining precise user behavior association through centralized processing and data correlation.
Solution Approach 2:
The patent implements feedback mechanisms where the server continuously monitors network activity, correlates MAC addresses with user identification data in the database, and provides feedback information about user behavior associations. This feedback loop enables precise user identification even when multiple users are simultaneously connected to the same access point.
Data Source
AI summary
A method includes detecting, at a device coupled to a network, a communication transmitted over the network. The method includes determining whether the communication is associated with an unauthorized data request, and, in response to determining that the communication is associated with the unauthorized data request, determining an access point associated with a source of the communication. The method further includes transmitting a message to a service provider. The message may request identification of mobile communication devices that are located within a threshold distance of the access point.


