Legal claims defining the scope of protection, as filed with the USPTO.
1. A method for providing a wireless local network comprising: a subnetwork receiving a registering MAC address from a registering communication entity attempting to register with the subnetwork; a first node of the subnetwork comparing the registering MAC address with MAC addresses that are reachable via the subnetwork such that: when the registering MAC address is disjoint of the reachable MAC addresses, the first node connecting the registering communication entity in a manner of a station of the subnetwork; and when the registering MAC address is not disjoint of the reachable MAC addresses such that the registering MAC address already is reachable via the subnetwork, the first node implementing an approval procedure with the registering communication entity to prevent two different subscribers within the subnetwork from having identical MAC addresses; wherein the approval procedure comprises: awaiting, by the first node of the subnetwork, for a first item of check information by way of a first route in the subnetwork established to a first communication entity of the subnetwork and for a second item of check information by way of a second route in the subnetwork established in the context of the registration attempt from the registering communication entity, rejecting the registering communication entity when the first item of check information fails to arrive within a predetermined amount of time, rejecting the registering communication entity when the second item of check information fails to arrive within a predetermined amount of time, checking a correlation of the first item of check information with the second item of check information after the first and second items of check information arrive, connecting the registering communication entity in the manner of a station of the subnetwork when at least a specific degree of correlation is achieved between the first item of check information and the second item of check information, and rejecting the registering communication entity when the specific degree of correlation is not achieved.
2. The method of claim 1 , wherein the approval procedure includes a conversion of the registering MAC address such that a MAC address that is disjoint in respect of the reachable MAC addresses is allocated to the registering communication entity within the subnetwork.
3. The method of claim 2 wherein the converted disjoint MAC address is generated on the part of the subnetwork.
4. The method of claim 2 wherein the converted disjoint MAC address is generated based on a pseudo-random sequence.
5. The method of claim 2 , wherein the converted disjoint MAC address is selected so that it is disjoint in respect of MAC addresses allocated universally as according to the OUI.
6. The method of claim 1 , wherein bit 41 of the disjoint registering MAC address is allocated a value of 1.
7. The method of claim 1 , wherein a transmission of the first item of check information is initiated on the part of the subnetwork.
8. The method of claim 1 , wherein a transmission of the second item of check information is initiated on the part of the registering communication entity.
9. The method as claimed in claim 1 , wherein the approval procedure is initiated when the registering communication entity attempts to register with the subnetwork as a subscriber in a manner of a mesh network node.
10. A method for providing a wireless local network comprising: a subnetwork receiving a registering MAC address from a registering communication entity attempting to register with the subnetwork; a first node of the subnetwork comparing the registering MAC address with MAC addresses that are reachable via the subnetwork such that: when the registering MAC address is disjoint of the reachable MAC addresses, the first node connecting the registering communication entity in a manner of a station of the subnetwork; and when the registering MAC address is not disjoint of the reachable MAC addresses such that the registering MAC address already is reachable via the subnetwork, the first node implementing an approval procedure with the registering communication entity to prevent two different subscribers within the subnetwork from having identical MAC addresses; wherein the approval procedure comprises: the registering communication entity determining a first item of check information based on a first cryptographic key authenticating the registering communication entity, the first cryptographic key being a first session key resulting from a network registration according to extensible authentication protocol (EAP) and available to the registering communication entity, the first item of check information being transmitted to the first node of the subnetwork by way of a first route in the subnetwork established in context of the registration attempt made by the registering communication entity, the first node of the subnetwork attempting decryption of the first item of check information based on a second cryptographic key authenticating a first communication entity, the second cryptographic key being a second session key resulting from a network registration according to EAP of the first communication entity, and in the event of successful decryption of the first item of check information, the registering communication entity is connected in the manner of a station of the subnetwork, otherwise the registering communication entity is rejected.
11. The method of claim 10 , wherein at least one of: the first and/or second session key is generated as a master session key formed according to EAP, and the first and/or second session key is generated as an extended master session key formed according to EAP.
12. A method for providing a wireless local network comprising: a subnetwork receiving a registering MAC address from a registering communication entity attempting to register with the subnetwork; a first node of the subnetwork comparing the registering MAC address with MAC addresses that are reachable via the subnetwork such that: when the registering MAC address is disjoint of the reachable MAC addresses, the first node connecting the registering communication entity in a manner of a station of the subnetwork; and when the registering MAC address is not disjoint of the reachable MAC addresses such that the registering MAC address already is reachable via the subnetwork, the first node implementing an approval procedure with the registering communication entity to prevent two different subscribers within the subnetwork from having identical MAC addresses; wherein the approval procedure comprises: receiving, by the first node, a first item of check information via an established route of the subnetwork, the first item of check information calculated based on a first cryptographic key authenticating a first communication entity having a reachable MAC address of the subnetwork that corresponds with the registering MAC address, the first cryptographic key being a first session key resulting from a network registration according to extensible authentication protocol (EAP) and available to the registering communication entity, the first node of the subnetwork attempting decryption of the first item of check information based on a second cryptographic key authenticating the registering communication entity, the second cryptographic key being a second session key resulting from a network registration according to EAP and being available to the first node of the subnetwork, and in the event of successful decryption, the registering communication entity is connected in the manner of a station of the subnetwork; otherwise the registering communication entity is rejected.
13. The method of claim 12 , wherein a cryptograph hash function and/or a keyed hash function is used to calculate the first item of check information.
14. A communication apparatus comprising: a subnetwork comprising: a first node, and a second node configured as a first communication entity, wherein the first node is configured to respond to a registration message received from a registering communication entity by assessing a registering MAC address of the registering communication entity such that: when the registering MAC address is disjoint of MAC addresses reachable via the subnetwork, the first node connecting the registering communication entity in a manner of a station of the subnetwork; and when the registering MAC address is not disjoint of the reachable MAC addresses such that the registering MAC address already is reachable via the subnetwork, the first node implementing an approval procedure with the registering communication entity to prevent two different subscribers within the subnetwork from having identical MAC addresses; wherein the approval procedure comprises: awaiting, by the first node, for a first item of check information by way of a first route in the subnetwork established to the first communication entity of the subnetwork and for a second item of check information by way of a second route in the subnetwork established in the context of the registration attempt from the registering communication entity, the first node rejecting the registering communication entity when the first item of check information fails to arrive within a predetermined amount of time, the first node rejecting the registering communication entity when the second item of check information fails to arrive within a predetermined amount of time, the first node checking a correlation of the first item of check information with the second item of check information after the first and second items of check information arrive, the first node connecting the registering communication entity in the manner of a station of the subnetwork when at least a specific degree of correlation is achieved between the first item of check information and the second item of check information, and the first node rejecting the registering communication entity when the specific degree of correlation is not achieved.
15. The communication apparatus of claim 14 , wherein the first node is configured to initiate the approval procedure when the registering communication entity attempts to register with the subnetwork as a subscriber in a manner of a mesh network node.
16. The communication apparatus of claim 14 , wherein the subnetwork is a mesh network comprised of a plurality of mobile communication terminals.
17. The communication apparatus of claim 14 , wherein a transmission of the first item of check information is configured to be initiated by the subnetwork.
18. The communication apparatus of claim 14 , wherein a transmission of the second item of check information is configured to be initiated by the registering communication entity.
19. The communication apparatus of claim 14 , comprising: the first communication entity, the first communication entity being connectable to the first node; and the registering communication entity, the registering communication entity configured to be connectable to the subnetwork.
20. The communication apparatus of claim 14 , wherein the first node is a mesh network node.
21. A communication apparatus comprising: a subnetwork comprising: a first node, and a second node configured as a first communication entity, wherein the first node is configured to respond to a registration message received from a registering communication entity by assessing a registering MAC address of the registering communication entity such that: when the registering MAC address is disjoint of MAC addresses reachable via the subnetwork, the first node connecting the registering communication entity in a manner of a station of the subnetwork; and when the registering MAC address is not disjoint of the reachable MAC addresses such that the registering MAC address already is reachable via the subnetwork, the first node implementing an approval procedure with the registering communication entity to prevent two different subscribers within the subnetwork from having identical MAC addresses; wherein the approval procedure comprises: the registering communication entity determining a first item of check information based on a first cryptographic key authenticating the registering communication entity, the first cryptographic key being a first session key resulting from a network registration according to extensible authentication protocol (EAP) and available to the registering communication entity, the first item of check information being transmitted to the first node of the subnetwork by way of a first route in the subnetwork established in context of the registration attempt made by the registering communication entity, the first node attempting decryption of the first item of check information based on a second cryptographic key authenticating the first communication entity, the second cryptographic key being a second session key resulting from a network registration according to EAP of the first communication entity, and in the event of successful decryption of the first item of check information, the registering communication entity is connected in the manner of a station of the subnetwork, otherwise the registering communication entity is rejected.
22. The communication apparatus of claim 21 , wherein the subnetwork is a mesh network comprised of a plurality of mobile communication terminals.
23. A communication apparatus comprising: a subnetwork comprising: a first node, and a second node configured as a first communication entity, wherein the first node is configured to respond to a registration message received from a registering communication entity by assessing a registering MAC address of the registering communication entity such that: when the registering MAC address is disjoint of MAC addresses reachable via the subnetwork, the first node connecting the registering communication entity in a manner of a station of the subnetwork; and when the registering MAC address is not disjoint of the reachable MAC addresses such that the registering MAC address already is reachable via the subnetwork, the first node implementing an approval procedure with the registering communication entity to prevent two different subscribers within the subnetwork from having identical MAC addresses; wherein the approval procedure comprises: the first node receiving a first item of check information via an established route of the subnetwork, the first item of check information calculated based on a first cryptographic key authenticating the first communication entity having a reachable MAC address of the subnetwork that corresponds with the registering MAC address, the first cryptographic key being a first session key resulting from a network registration according to extensible authentication protocol (EAP) and available to the registering communication entity, the first node attempting decryption of the first item of check information based on a second cryptographic key authenticating the registering communication entity, the second cryptographic key being a second session key resulting from a network registration according to EAP and being available to the first node of the subnetwork, and in the event of successful decryption, the registering communication entity is connected in the manner of a station of the subnetwork; otherwise the registering communication entity is rejected.
24. The communication apparatus of claim 23 , wherein the subnetwork is a mesh network comprised of a plurality of mobile communication terminals.
Unknown
February 23, 2016
Browse 5M+ US patents with plain-English claim translations and AI-generated analysis.