Coordinated Beamforming Security via Segmented Access Point Keys
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
In wireless network systems with multiple access points, coordinating beamforming while ensuring security of protected frames exchanged between access points and non-AP stations is challenging, particularly when different security keys are involved.
Innovation Solution
The solution involves a first access point transmitting a protected frame to a non-AP station associated with a second access point, using either a unified security key distributed across the MAP system or a shared security key derived from the second access point. The protected frame includes security parameters such as an indicator of the security key and a packet number, which are used for encryption and decryption.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If a protected frame is encrypted with a non-shared security key of the first AP, then security and confidentiality are improved, but the ability to perform coordinated beamforming sounding with clients of another BSS deteriorates
Solution Approach 1:
The patent segments the security key usage by introducing two distinct key types: a non-shared security key for encrypting data frames to maintain confidentiality, and a shared sounding key specifically for coordinated beamforming sounding operations. This segmentation allows each key to serve its specific purpose without interfering with the other, resolving the contradiction between security and coordinated beamforming capability
Solution Approach 2:
The patent introduces a shared sounding key as an intermediary mechanism that enables coordinated beamforming operations between APs of different BSSs without compromising the security provided by non-shared data encryption keys. This intermediary key facilitates the sounding process while maintaining the integrity of the primary security architecture
2Ease of operation
If a unified security key is distributed over the MAP system for encryption, then coordinated beamforming operation is simplified, but security key management complexity increases
Solution Approach 1:
The patent applies local quality by distributing different types of keys to different APs based on their specific needs: APs involved in coordinated beamforming receive the shared sounding key for simplified operations, while all APs maintain their non-shared security keys for data protection. This localized key distribution approach simplifies coordinated operations where needed without universally increasing key management complexity
3Adaptability or versatility
If frame exchange with clients of another BSS is performed in MAP system, then coordinated beamforming functionality is improved, but interference and security risks increase
Solution Approach 1:
The patent extracts the security risk element from the coordinated beamforming operation by using a separate shared sounding key specifically for sounding frame exchanges. This extraction isolates the potential security risks of cross-BSS communication from the main data transmission security, allowing coordinated beamforming functionality to proceed with reduced overall security risk while maintaining data protection through non-shared keys
Data Source
AI summary
A first access point (AP) in a multiple access points (MAP) system of a wireless network is provided. The MAP system further includes a second AP. The first AP includes a transceiver and a control circuit. The transceiver transmits and receives frames over the wireless network. The control circuit transmits a protected frame to a non-AP station associated to the second AP, and receives a response frame in response to the protected frame from the non-AP station.


