US 11,758,396 B2
Bluetooth device authentication over Bluetooth advertisements
Matthew Barr, Indianapolis, IN (US); Andrew Setter, Carmel, IN (US); Paul Avgerinos, Carmel, IN (US); and Joseph W. Baumgarte, Carmel, IN (US)
Assigned to Schlage Lock Company LLC, Carmel, IN (US)
Filed by Schlage Lock Company LLC, Carmel, IN (US)
Filed on Apr. 7, 2020, as Appl. No. 16/841,724.
Prior Publication US 2021/0314770 A1, Oct. 7, 2021
Int. Cl. H04W 12/06 (2021.01); H04W 4/80 (2018.01); H04W 76/11 (2018.01); H04L 9/32 (2006.01); H04W 12/037 (2021.01); H04W 12/0431 (2021.01)
CPC H04W 12/06 (2013.01) [H04L 9/3271 (2013.01); H04W 4/80 (2018.02); H04W 12/037 (2021.01); H04W 12/0431 (2021.01); H04W 76/11 (2018.02)] 19 Claims
OG exemplary drawing
 
1. A method of authenticating a mobile device over Bluetooth advertisements, the method comprising:
establishing a Bluetooth protocol connection between the mobile device and the access control device, wherein establishing the Bluetooth protocol connection between the mobile device and the access control device comprises establishing a secure Bluetooth pairing between the mobile device and the access control device;
exchanging data for secure authentication between the mobile device and the access control device over the Bluetooth protocol connection;
disconnecting the Bluetooth protocol connection between the mobile device and the access control device in response to exchanging the data for secure authentication between the mobile device and the access control device;
broadcasting, by an access control device while not paired with the mobile device and subsequent to exchanging the data for secure authentication, a first Bluetooth advertisement including a challenge message generated by the access control device;
receiving, by the mobile device while not paired with the access control device, the first Bluetooth advertisement including the challenge message;
broadcasting, by the mobile device while not paired with the access control device and subsequent to exchanging the data for secure authentication, a second Bluetooth advertisement including a challenge response message generated by the mobile device based on the challenge message;
receiving, by the access control device while not paired with the mobile device, the second Bluetooth advertisement including the challenge response message; and
determining, by the access control device while not paired with the mobile device, whether the mobile device is authorized to perform an action with respect to the access control device by verifying the challenge response message.