Claims
- 1. A method for authenticating a user of a mobile device, the method comprising:
receiving a request from a client device to access a resource on a network; identifying a network address of the client device; retrieving a mapping of the network address to user identification information and device identification information; determining if the mapping is valid; and preventing the request from reaching the resource if the mapping is not valid.
- 2. The method of claim 1, wherein retrieving the mapping comprises retrieving the mapping from a remote server.
- 3. The method of claim 2, wherein retrieving the mapping comprises using the RADIUS protocol to request the mapping from the remote server.
- 4. The method of claim 1, wherein determining if the mapping is valid comprises issuing an authentication challenge to the client device.
- 5. The method of claim 4, wherein the authentication challenge comprises a request to provide device identification information and user identification information used to obtain the network address.
- 6. The method of claim 4, wherein determining if the mapping is valid further comprises receiving a response to the authentication challenge; and checking if information in the response corresponds to information in the mapping.
- 7. The method of claim 1, wherein the network address is a mobile IP address.
- 8. A system for controlling access to a network, the system comprising a processor; and a memory coupled to the processor, the memory storing instructions which when executed by the processor cause the system to perform a method comprising:
receiving a request from a client device to access a resource on a network; identifying a network address of the client device; retrieving a mapping of the network address to user identification information and device identification information; determining if the mapping is valid; and preventing the request from reaching the resource if the mapping is not valid.
- 9. The system of claim 8, wherein retrieving the mapping comprises receiving the mapping from a remote server.
- 10. The system of claim 9, wherein retrieving the mapping comprises using the RADIUS protocol to request the mapping from the remote server.
- 11. The system of claim 8, wherein determining if the mapping is valid comprises issuing an authentication challenge to the client device.
- 12. The system of claim 11, wherein the authentication challenge comprises a request to provide device identification information and user identification information used to obtain the network address.
- 13. The system of claim 11, wherein determining if the mapping is valid further comprises receiving a response to the authentication challenge; and checking if the information in the response corresponds to information in the mapping.
- 14. The system of claim 8, wherein the network address is a mobile IP address.
- 15. A computer-readable medium having stored thereon a sequence of instructions which when executed by a processor cause the processor to perform a method comprising:
receiving a request from a client device to access a resource on a network; identifying a network address of the client device; retrieving a mapping of the network address to user identification information and device identification information; determining if the mapping is valid; and preventing the request from reaching the resource if the mapping is not valid.
- 16. The computer-readable medium of claim 15, wherein retrieving the mapping comprises retrieving the mapping from a remote server.
- 17. The computer-readable medium of claim 16, wherein retrieving the mapping comprises using the RADIUS protocol to retrieve the mapping from the remote server.
- 18. The computer-readable medium of claim 15, wherein determining if the mapping is valid comprises issuing an authentication challenge to the client device.
- 19. The computer-readable medium of claim 18, wherein the authentication challenge comprises a request to provide device identification information and user identification information used to obtain the network address.
- 20. The computer-readable medium of claim 19, wherein determining if the mapping is valid further comprises receiving a response to the authentication challenge; and checking if information in the response corresponds to information in the mapping.
- 21. The computer-readable medium of claim 15, wherein the network address is a mobile IP address.
- 22. A system for controlling access to a network, the system comprising:
means for receiving a request from a client device to access a resource on a network; means for identifying a network address of the client device; means for retrieving a mapping of the network address to user identification information and device identification information; means for determining if the mapping is valid; and means for preventing the request from reaching the resource if the mapping is not valid.
- 23. A method for authenticating a user of an enabled device, the method comprising:
receiving a request from a client device to access an origin server; identifying a network address of the client device; sending an authentication challenge to the client device, wherein user identification information and device identification information is requested; receiving a response to the authentication challenge; retrieving user identification and device identification information associated with the network address of the client device from a server; comparing the user identification information and the device identification information received in the response with the user identification information and the device identification information retrieved from the server; and preventing the request from reaching the origin server if the user identification information and device identification information received in the response does not match the user identification information and the device identification information retrieved from the server.
- 24. The method of claim 23, wherein the server is a RADIUS accounting server.
- 25. The method of claim 23, wherein the network address is a mobile IP address.
CLAIM OF PRIORITY
[0001] The present application hereby claims the benefit of the filing date of a related Provisional Application filed on Mar. 14, 2002, and assigned application Ser. No. 60/364,949.
Provisional Applications (1)
|
Number |
Date |
Country |
|
60364949 |
Mar 2002 |
US |