Wireless Access Point Secure Key Exchange

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Public Wi-Fi networks often lack secure communication methods, making data transmissions vulnerable to eavesdropping as they may not employ strong encryption or authentication, compromising user privacy and data security.

Innovation Solution

A method where a network provider receives an encrypted data packet containing an encryption key via an unsecured wireless communication, decrypts it, and provides it to wireless access points to establish secure communication between mobile devices and access points using session encryption keys, ensuring secure wireless connections through pairwise transient keys.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If mobile devices connect to public Wi-Fi hotspots to access data networks, then network capacity and data traffic are improved, but communication security deteriorates due to lack of encryption and authentication

Engineering Contradiction:
Improvedata traffic capacityVSAvoidcommunication security
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The patent applies preliminary action by establishing secure communication channels before data transmission begins. The mobile device and wireless access point perform authentication and key exchange procedures in advance, establishing encrypted sessions before actual data communication occurs. This prevents eavesdropping and man-in-the-middle attacks while allowing high data traffic capacity.

Inventive Principle:
Principle #10Preliminary action

2Ease of operation

If wireless access points provide open network access to increase connectivity, then ease of connection is improved, but data encryption and authentication are compromised

Engineering Contradiction:
Improvenetwork connection accessibilityVSAvoiddata privacy protection
Core Design Contradiction:
Ease of operationVSLoss of information

Solution Approach 1:

The patent uses an intermediary approach by introducing wireless authentication modules and key exchange mechanisms as intermediaries between the mobile device and the wireless access point. These intermediaries facilitate secure data encryption without requiring complex user configurations, maintaining ease of connection while protecting data privacy through automated authentication and encryption processes.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS10142842B2Securing communications of a wireless access point and a mobile device
Publication Date: 2018.11.27 AT&T INTELLECTUAL PROPERTY I L P
  • US10142842B2 patent drawing
  • US10142842B2 patent drawing
  • US10142842B2 patent drawing

AI summary

A method includes receiving, at an access server, a communication from a network management device. The communication is sent from a mobile device via an unsecured wireless connection of a first network to an access point, from the access point to the network management device, and from the network management device via a second network to the access server. The communication includes first encrypted data and is associated with a request by the mobile device to access the second network. The method further includes transmitting, from the access server, an encryption key to the access point based on the first encrypted data to enable the access point to establish a secure wireless connection between the access point and the mobile device. The method further includes transmitting signals to the network management device, the signals indicating that the mobile device is authorized to access the second network.