Wireless Access Point Device Classification for Differentiated Network Policies

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing wireless network access control methods cannot distinguish between different wireless devices and applications, leading to uniform treatment of all users on a public network, which hinders the ability to implement tailored access policies based on device or application type.

Innovation Solution

A wireless access point is configured to detect and classify wireless devices and applications, allowing for the implementation of distinct access policies by reading MAC addresses and data protocols, enabling differentiated access based on device type and application usage.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If uniform access control is implemented for all wireless devices, then network security is maintained through simple policies, but the ability to provide differentiated access services is lost

Engineering Contradiction:
Improveaccess policy differentiationVSAvoidaccess control system complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent applies local quality by implementing different access policies for different types of wireless devices and applications. The system classifies devices based on their characteristics (e.g., MAC address, application type) and applies customized access control rules to each class, allowing differentiated service quality while maintaining overall system manageability

Inventive Principle:
Principle #3Local quality

Solution Approach 2:

The access control system is segmented into multiple classification levels (device type, application type, user category) with corresponding policy sets. This segmentation allows the system to handle complexity in a structured way by dividing the uniform access control problem into manageable classified categories

Inventive Principle:
Principle #1Segmentation

2Productivity

If all wireless devices are treated equally on public networks, then ease of access is maintained, but network resource management efficiency deteriorates

Engineering Contradiction:
Improvenetwork resource management efficiencyVSAvoidaccess control operation simplicity
Core Design Contradiction:
ProductivityVSEase of operation

Solution Approach 1:

The system performs preliminary classification of wireless devices and applications before access control decisions are made. By pre-categorizing devices based on their characteristics and assigning appropriate policy templates in advance, the system improves resource management efficiency without adding operational complexity during actual access control execution

Inventive Principle:
Principle #10Preliminary action

3Adaptability or versatility

If classification-based access control is implemented, then customized access policies can be applied, but the complexity of detecting and measuring device characteristics increases

Engineering Contradiction:
Improvecustomized access policy implementationVSAvoiddevice and application classification difficulty
Core Design Contradiction:
Adaptability or versatilityVSDifficulty of detecting and measuring

Solution Approach 1:

The system uses MAC address patterns and protocol signatures as simplified representations (copies) of device and application characteristics. Instead of analyzing complex device behaviors, the system classifies based on these observable patterns, reducing detection difficulty while maintaining classification effectiveness

Inventive Principle:
Principle #26Copying

Data Source

PatentUS7535880B1Method and apparatus for controlling wireless access to a network
Publication Date: 2009.05.19 COMMSCOPE TECHNOLOGIES LLC
  • US7535880B1 patent drawing
  • US7535880B1 patent drawing
  • US7535880B1 patent drawing

AI summary

A wireless access point includes at least a first service set identifier associated with a public LAN. The wireless access point provides wireless access to the public LAN and to a wide area network (WAN). The wireless access point implements an access policy that provides unrestricted access to the WAN to a first type of wireless application or wireless device detected by the wireless access point, and restricted access to the WAN to a second type of wireless application or wireless device detected by the wireless access point.