Patents by Inventor Steven D. Upp
Steven D. Upp has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).
-
Publication number: 20180220471Abstract: Methods and systems for connecting a wireless communications device to a deployable wireless communications network. The method includes receiving, from the wireless communications device via a mobile management entity (MME) configured to operate as an extensible authentication protocol (EAP) authenticator, an extensible authentication protocol packet. The method further includes authenticating the wireless communications device based on the extensible authentication protocol packet. The method further includes establishing a first wireless connection between the wireless communications device and a deployable subscription bootstrapping service of the deployable wireless communications network. The method further includes generating a subscription profile for the wireless communications device, and communicating the subscription profile to the wireless communications device via the first wireless connection.Type: ApplicationFiled: February 1, 2017Publication date: August 2, 2018Inventors: Steven D. Upp, Anthony R. Metke, Karen M. Upp
-
Patent number: 10039151Abstract: Methods and systems for connecting a wireless communications device to a deployable wireless communications network. The method includes receiving, from the wireless communications device via a mobile management entity (MME) configured to operate as an extensible authentication protocol (EAP) authenticator, an extensible authentication protocol packet. The method further includes authenticating the wireless communications device based on the extensible authentication protocol packet. The method further includes establishing a first wireless connection between the wireless communications device and a deployable subscription bootstrapping service of the deployable wireless communications network. The method further includes generating a subscription profile for the wireless communications device, and communicating the subscription profile to the wireless communications device via the first wireless connection.Type: GrantFiled: February 1, 2017Date of Patent: July 31, 2018Assignee: MOTOROLA SOLUTIONS, INC.Inventors: Steven D. Upp, Anthony R. Metke, Karen M. Upp
-
Patent number: 9980194Abstract: A method and apparatus for bootstrapping secure connections between wireless devices and deployable wireless communications networks. Using the method, a wireless device establishes a connection to an auxiliary network, and then establishes a connection with a deployable subscription bootstrapping service. The deployable subscription bootstrapping service generates a temporary subscription profile, including a temporary shared symmetric key, for the wireless device, writes the temporary profile to a deployable home subscriber server, and communicates the temporary profile to the wireless device, which stores the temporary profile. The wireless device then terminates the connection to the auxiliary network, and initiates a connection with the deployable wireless communications network using the temporary subscription profile.Type: GrantFiled: June 13, 2016Date of Patent: May 22, 2018Assignee: MOTOROLA SOLUTIONS, INC.Inventors: Steven D. Upp, Anthony R. Metke
-
Publication number: 20180070230Abstract: A method and apparatus is provided for connecting a communication device to a deployable system. The deployable system obtains at least one deployable key derived on a fixed system for the deployable system based on an existing key stored on a database of the fixed system, wherein the existing key is used to authenticate a communication device. The deployable system stores the derived key. Subsequent to the storing, the deployable system is activated to provide communication resources to communication devices disconnected from the fixed system. The activated deployable system is not connected to the fixed system. The activated deployable system receives an authentication request from the communication device requesting connection to the deployable system; generates authentication vectors using the at least one derived deployable key; and authenticates an authentication response received from the communication device using the authentication vectors.Type: ApplicationFiled: November 8, 2017Publication date: March 8, 2018Inventors: STEVEN D. UPP, ISAM R. MAKHLOUF, FRANCESCA SCHULER, GINO A. SCRIBANO
-
Patent number: 9843928Abstract: A method and apparatus is provided for connecting a communication device to a deployable system. The deployable system obtains at least one deployable key derived on a fixed system for the deployable system based on an existing key stored on a database of the fixed system, wherein the existing key is used to authenticate a communication device. The deployable system stores the derived key. Subsequent to the storing, the deployable system is activated to provide communication resources to communication devices disconnected from the fixed system. The activated deployable system is not connected to the fixed system. The activated deployable system receives an authentication request from the communication device requesting connection to the deployable system; generates authentication vectors using the at least one derived deployable key; and authenticates an authentication response received from the communication device using the authentication vectors.Type: GrantFiled: October 30, 2014Date of Patent: December 12, 2017Assignee: MOTOROLA SOLUTIONS, INC.Inventors: Steven D Upp, Isam R Makhlouf, Francesca Schuler, Gino A Scribano
-
Patent number: 9516620Abstract: Methods and apparatuses bind a user's IMS public identity to, and unbind it from, a mobile device (MD) shared among multiple users. In binding the user's IMS public identity, a message is received from the MD, which message comprises a shared service authorization access token that is associated with a shared service and that comprises an identifier of a user of the MD. The message further comprises a default public identity of the MD. Based on the user identifier and the default public identity, the user is determined to be authorized to use the MD for the shared service. In response to the determination, a public identity of the user is obtained and mapped to the MD to bind a private identity and a public identity of the MD and the public identity of the user, and a user subscription database is instructed to update the user's service subscription information.Type: GrantFiled: December 28, 2015Date of Patent: December 6, 2016Assignee: MOTOROLA SOLUTIONS, INC.Inventors: Steven D. Upp, Karen M. Upp
-
Publication number: 20160316409Abstract: A method and apparatus for bootstrapping secure connections between wireless devices and deployable wireless communications networks. Using the method, a wireless device establishes a connection to an auxiliary network, and then establishes a connection with a deployable subscription bootstrapping service. The deployable subscription bootstrapping service generates a temporary subscription profile, including a temporary shared symmetric key, for the wireless device, writes the temporary profile to a deployable home subscriber server, and communicates the temporary profile to the wireless device, which stores the temporary profile. The wireless device then terminates the connection to the auxiliary network, and initiates a connection with the deployable wireless communications network using the temporary subscription profile.Type: ApplicationFiled: June 13, 2016Publication date: October 27, 2016Inventors: Steven D. Upp, Anthony R. Metke
-
Publication number: 20160285843Abstract: A system and method for enabling a primary and a secondary communication device to share a user identity assertion is presented. The user identity assertion enables the devices to access an application system. The primary and secondary devices are paired to place them in collaboration with each other. The primary device requests an identity provider system to issue a user identity assertion scoped to the primary and secondary communication device. The identity provider system authenticates the primary device and generates the user identity assertion scoped to the primary device and the secondary device identified in the request. The primary communication device receives the user identity assertion and communicates the user identity assertion to the secondary device. The primary device may request the user identity assertion by communicating a user identity assertion scoped to the primary device and a single sign on session cookie or a request for an extension assertion.Type: ApplicationFiled: March 27, 2015Publication date: September 29, 2016Inventors: GEORGE POPOVICH, ADAM C. LEWIS, ANTHONY R. METKE, STEVEN D. UPP
-
Patent number: 9398452Abstract: A method and apparatus for bootstrapping secure connections between wireless devices and deployable wireless communications networks. Using the method, a wireless device establishes a connection to an auxiliary network, and then establishes a connection with a deployable subscription bootstrapping service. The deployable subscription bootstrapping service generates a temporary subscription profile, including a temporary shared symmetric key, for the wireless device, writes the temporary profile to a deployable home subscriber server, and communicates the temporary profile to the wireless device, which stores the temporary profile. The wireless device then terminates the connection to the auxiliary network, and initiates a connection with the deployable wireless communications network using the temporary subscription profile.Type: GrantFiled: April 24, 2015Date of Patent: July 19, 2016Assignee: Motorola Solutions, Inc.Inventors: Steven D. Upp, Anthony R. Metke
-
Publication number: 20160127340Abstract: A method and apparatus is provided for connecting a communication device to a deployable system. The deployable system obtains at least one deployable key derived on a fixed system for the deployable system based on an existing key stored on a database of the fixed system, wherein the existing key is used to authenticate a communication device. The deployable system stores the derived key. Subsequent to the storing, the deployable system is activated to provide communication resources to communication devices disconnected from the fixed system. The activated deployable system is not connected to the fixed system. The activated deployable system receives an authentication request from the communication device requesting connection to the deployable system; generates authentication vectors using the at least one derived deployable key; and authenticates an authentication response received from the communication device using the authentication vectors.Type: ApplicationFiled: October 30, 2014Publication date: May 5, 2016Inventors: STEVEN D. UPP, ISAM R. MAKHLOUF, FRANCESCA SCHULER, GINO A. SCRIBANO
-
Patent number: 8955081Abstract: An apparatus for, and method of, single sign-on collaboration among a plurality of mobile devices, includes a server for issuing a first identity token to subsequently authenticate a user of a first of the mobile devices to a service provider, and for generating and sending a collaboration key to the first device based on the first identity token or user authentication. The first device generates and sends a collaboration credential based on the collaboration key to a second device paired with the first device. The server also issues a second identity token to subsequently authenticate to the service provider the user of the second device based on the collaboration credential received from the first device, to support single sign-on collaboration for the user across the plurality of mobile devices.Type: GrantFiled: December 27, 2012Date of Patent: February 10, 2015Assignee: Motorola Solutions, Inc.Inventors: Anthony R. Metke, Katrin Reitsma, Adam C. Lewis, George Popovich, Steven D. Upp
-
Patent number: 8806205Abstract: Multi-factor authentication is enabled across a plurality of communication devices. A user performs authentication by using a first authentication factor on a first of the communication devices, and by using a second authentication factor on a second of the communication devices. A collaboration credential is shared among the devices to enable the devices to collaborate with each other. Both of the authentication factors are bound together. A multi-factor identification token is issued to each device, to support multi-factor authentication for the user across the devices.Type: GrantFiled: December 27, 2012Date of Patent: August 12, 2014Assignee: Motorola Solutions, Inc.Inventors: Anthony R. Metke, Katrin Reitsma, Steven D. Upp
-
Patent number: 8782766Abstract: A system for, and method of, single sign-on collaboration among a plurality of mobile devices, includes a server for issuing a first identity token to subsequently authenticate a user of a first of the mobile devices to a service provider, and for generating and sending a collaboration credential to the first device based on the first identity token or user authentication. The first device sends the collaboration credential generated by the server to a second device paired with the first device. The server also issues a second identity token to subsequently authenticate to the service provider the user of the second device based on the collaboration credential received from the first device, to support single sign-on collaboration for the user across the plurality of mobile devices.Type: GrantFiled: December 27, 2012Date of Patent: July 15, 2014Assignee: Motorola Solutions, Inc.Inventors: Anthony R. Metke, Katrin Reitsma, Adam C. Lewis, George Popovich, Steven D. Upp
-
Publication number: 20140189827Abstract: A system and method for enabling a primary and a secondary communication device to share a user identity assertion is presented. The user identity assertion enables the devices to access an application system. The primary and secondary devices are paired to place them in collaboration with each other. The primary device requests an identity provider system to issue a user identity assertion scoped to the primary and secondary communication device. The identity provider system authenticates the primary device and generates the user identity assertion scoped to the primary device and the secondary device identified in the request. The primary communication device receives the user identity assertion and communicates the user identity assertion to the secondary device. The primary device may request the user identity assertion by communicating a user identity assertion scoped to the primary device and a single sign on session cookie or a request for an extension assertion.Type: ApplicationFiled: December 27, 2012Publication date: July 3, 2014Applicant: MOTOROLA SOLUTIONS, INC.Inventors: George Popovich, Adam C. Lewis, Anthony R. Metke, Steven D. Upp
-
Publication number: 20140189841Abstract: Multi-factor authentication is enabled across a plurality of communication devices. A user performs authentication by using a first authentication factor on a first of the communication devices, and by using a second authentication factor on a second of the communication devices. A collaboration credential is shared among the devices to enable the devices to collaborate with each other. Both of the authentication factors are bound together. A multi-factor identification token is issued to each device, to support multi-factor authentication for the user across the devices.Type: ApplicationFiled: December 27, 2012Publication date: July 3, 2014Applicant: MOTOROLA SOLUTIONS, INC.Inventors: Anthony R. METKE, Katrin REITSMA, Steven D. UPP
-
Publication number: 20140189840Abstract: A system for, and method of, single sign-on collaboration among a plurality of mobile devices, includes a server for issuing a first identity token to subsequently authenticate a user of a first of the mobile devices to a service provider, and for generating and sending a collaboration credential to the first device based on the first identity token or user authentication. The first device sends the collaboration credential generated by the server to a second device paired with the first device. The server also issues a second identity token to subsequently authenticate to the service provider the user of the second device based on the collaboration credential received from the first device, to support single sign-on collaboration for the user across the plurality of mobile devices.Type: ApplicationFiled: December 27, 2012Publication date: July 3, 2014Applicant: MOTOROLA SOLUTIONS, INC.Inventors: ANTHONY R. METKE, Katrin Reitsma, Adam C. Lewis, George Popovich, Steven D. Upp
-
Publication number: 20140189834Abstract: An apparatus for, and method of, single sign-on collaboration among a plurality of mobile devices, includes a server for issuing a first identity token to subsequently authenticate a user of a first of the mobile devices to a service provider, and for generating and sending a collaboration key to the first device based on the first identity token or user authentication. The first device generates and sends a collaboration credential based on the collaboration key to a second device paired with the first device. The server also issues a second identity token to subsequently authenticate to the service provider the user of the second device based on the collaboration credential received from the first device, to support single sign-on collaboration for the user across the plurality of mobile devices.Type: ApplicationFiled: December 27, 2012Publication date: July 3, 2014Applicant: MOTOROLA SOLUTIONS, INC.Inventors: Anthony R. Metke, Katrin Reitsma, Adam C. Lewis, George Popovich, Steven D. Upp
-
Publication number: 20140189789Abstract: A network device is configured to authenticate a collaborative session between at least two communication devices. The network component receives an indication that at least two devices located within a predefined physical range are attempting to collaborate. The network component determines, based on the indication, that the two devices are authentic and that the two devices are attempting to collaborate. Responsive to determining that the two devices are authentic and attempting to collaborate, the network component determines that the two devices are authorized to collaborate and a level on which the two devices are authorized to collaborate. The network component sends an authorization response to at least one of the at least two devices, wherein if the two devices are authorized to collaborate the authorization response includes the level on which the two devices are authorized to collaborate.Type: ApplicationFiled: December 27, 2012Publication date: July 3, 2014Applicant: MOTOROLA SOLUTIONS, INC.Inventors: Adam C. Lewis, Alejandro G. Blanco, Steven D. Upp
-
Patent number: 8584214Abstract: A method, a network element, and a client device for creating a trusted connection with a network are disclosed. A client device 104 may attempt to access a sub-network 106. The client device 104 may determine that a certificate of the sub-network 106 is issued by a certification authority absent from a device certificate trust list. The client device 104 may receive via the sub-network 106 a certificate trust list update 400 from a certificate trust list provider 108.Type: GrantFiled: September 18, 2008Date of Patent: November 12, 2013Assignee: Motorola Mobility LLCInventors: Steven D. Upp, Alexander Medvinsky, Madjid F. Nakhjiri
-
Patent number: 8561135Abstract: A method, information processing system, and wireless device provide authentication information to a network. The method includes determining that at least one authentication context (120) resides in memory (412). The at least one authentication context (120) is analyzed to determine if at least one realm identifier associated with a home service provider is included in the at least one authentication context (120). A user is prompted to update the at least one authentication context (120) with at least one realm identifier associated with a home service provider in response to determining that at least one realm identifier fails to be included in the at least one authentication context (120). At least one realm identifier is received (612) from a user that is associated with a home service provider. The at least one authentication context (120) is updated with the at least one realm identifier received from the user.Type: GrantFiled: December 28, 2007Date of Patent: October 15, 2013Assignee: Motorola Mobility LLCInventor: Steven D. Upp