Wireless Access Point Secure Key Exchange
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Public Wi-Fi networks often lack secure communication methods, making data transmissions vulnerable to eavesdropping as they may not employ strong encryption or authentication, compromising user privacy and data security.
Innovation Solution
A method where a network provider receives an encrypted data packet containing an encryption key via an unsecured wireless communication, decrypts it, and provides it to wireless access points to establish secure communication between mobile devices and access points using session encryption keys, ensuring secure wireless connections through pairwise transient keys.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Productivity
If mobile devices connect to public Wi-Fi hotspots to access data networks, then network capacity and data traffic are improved, but communication security deteriorates due to lack of encryption and authentication
Solution Approach 1:
The patent applies preliminary action by establishing secure communication channels before data transmission begins. The mobile device and wireless access point perform authentication and key exchange procedures in advance, establishing encrypted sessions before actual data communication occurs. This prevents eavesdropping and man-in-the-middle attacks while allowing high data traffic capacity.
2Ease of operation
If wireless access points provide open network access to increase connectivity, then ease of connection is improved, but data encryption and authentication are compromised
Solution Approach 1:
The patent uses an intermediary approach by introducing wireless authentication modules and key exchange mechanisms as intermediaries between the mobile device and the wireless access point. These intermediaries facilitate secure data encryption without requiring complex user configurations, maintaining ease of connection while protecting data privacy through automated authentication and encryption processes.
Data Source
AI summary
A method includes receiving, at an access server, a communication from a network management device. The communication is sent from a mobile device via an unsecured wireless connection of a first network to an access point, from the access point to the network management device, and from the network management device via a second network to the access server. The communication includes first encrypted data and is associated with a request by the mobile device to access the second network. The method further includes transmitting, from the access server, an encryption key to the access point based on the first encrypted data to enable the access point to establish a secure wireless connection between the access point and the mobile device. The method further includes transmitting signals to the network management device, the signals indicating that the mobile device is authorized to access the second network.


