Wireless Access Point Policy-Based Data Routing

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional wireless networks lack secure communication protocols, making them vulnerable to hacking and eavesdropping, especially in open networks, where illegitimate users can intercept network addresses and control communication links or steal data.

Innovation Solution

Implementing message-processing hardware in wireless access points to authenticate mobile communication devices through a remote server, using protocols like EAP, and assigning routing policies to ensure secure and controlled data traffic routing over multiple networks.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If open WiFi networks are used to provide widespread access, then ease of operation and accessibility are improved, but network security and vulnerability to hacking worsen

Engineering Contradiction:
Improveease of operationVSAvoidnetwork security
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent introduces an authentication server as an intermediary between mobile devices and the wireless network. This server mediates the authentication process by receiving credentials from devices, verifying them against stored information, and granting or denying network access accordingly. This resolves the contradiction by maintaining open network accessibility while adding a security layer that prevents unauthorized access without requiring users to manually secure each connection.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Productivity

If multiple wireless access points are deployed to provide network access to multiple devices, then connectivity coverage and capacity are improved, but device complexity and infrastructure requirements worsen

Engineering Contradiction:
Improveconnectivity capacityVSAvoidinfrastructure complexity
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The patent makes the authentication server a universal component that serves multiple wireless access points and numerous mobile devices simultaneously. Rather than implementing separate authentication mechanisms at each access point, the single authentication server provides centralized security services to the entire network infrastructure. This resolves the contradiction by enabling scalable network capacity while avoiding the complexity of duplicating security functionality across multiple devices.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS10097587B2Communication management and policy-based data routing
Publication Date: 2018.10.09 TIME WARNER CABLE ENTERPRISES LLC
  • US10097587B2 patent drawing
  • US10097587B2 patent drawing
  • US10097587B2 patent drawing

AI summary

A network environment includes a wireless access point providing access to a corresponding network. One or more mobile communication devices communicate with the wireless access point to access the network. In response to receiving a request from a mobile communication device to establish the wireless communication link, the wireless access point conveys communications between the mobile communication device and a remote server to authenticate the mobile communication device. During authentication, the wireless access point receives a policy assigned to the mobile communication device. The policy specifies how to route subsequent received data traffic from the mobile communication device. Subsequent to authentication, the wireless access point routes the subsequent data traffic received from the mobile communication device in accordance with the received policy.