Apparatus Authentication via Closed Network Mediator

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The existing apparatus management systems face challenges in securely authenticating multiple apparatuses connected to a server, making the authentication process burdensome and costly due to the need for individual device certificates.

Innovation Solution

An apparatus management system that uses a management device connected through a closed network to perform authentication determination and issue device certificates, incorporating a secure communication method with first and second authentication information to verify and encrypt data transmission, thereby simplifying and securing the authentication process.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If individual device certificates are acquired for each apparatus, then secure authentication is achieved, but the authentication process becomes burdensome and costly

Engineering Contradiction:
Improveauthentication securityVSAvoidauthentication process complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent introduces a management server as an intermediary that issues device certificates to information communication devices. This mediator handles the authentication process centrally, eliminating the need for complex individual certificate acquisition for each apparatus while maintaining security through the standardized certificate issuance process.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The management server provides a universal authentication mechanism that serves multiple apparatuses simultaneously. By implementing a single authentication system that can authenticate multiple devices through a common process, the patent reduces overall system complexity while maintaining individual device security through unique certificates issued by the same server.

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Adaptability or versatility

If multiple apparatuses are connected to the server, then system versatility is improved, but the cost of authentication process increases

Engineering Contradiction:
Improvesystem connectivityVSAvoidauthentication cost
Core Design Contradiction:
Adaptability or versatilityVSQuantity of substance

Solution Approach 1:

The patent merges the authentication processes for multiple apparatuses into a single centralized system managed by the management server. Instead of implementing separate authentication mechanisms for each device, the system combines all authentication operations through one server that issues certificates to multiple information communication devices, thereby reducing total authentication cost while maintaining versatility.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The information communication devices automatically obtain device certificates from the management server without requiring manual intervention or additional authentication steps from users. This self-service mechanism allows multiple apparatuses to be authenticated efficiently through automated certificate issuance, reducing both cost and complexity as the system scales.

Inventive Principle:
Principle #25Self-service

Data Source

PatentEP3985913B1Apparatus management system and authentication method
Publication Date: 2023.12.20 DAIKIN INDUSTRIES LTD
  • EP3985913B1 patent drawingFigure 1~2
  • EP3985913B1 patent drawingFigure 3~4
  • EP3985913B1 patent drawingFigure 5

AI summary

An apparatus management system includes a management device (3) and an information communication device (4). The management device (3) and the information communication device (4) are configured to communicate with each other through a closed network (NC), which is secure and isolated in terms of access from an open network (NB) in a communication network (NA). When the management device (3) is connected to the information communication device (4) through the closed network (NC), the management device (3) performs authentication determination on the information communication device (4). The management device (3) transmits a device certificate (13) to the information communication device (4) after completing authentication of the information communication device (4). The device certificate (13) includes information indicating that the information communication device (4) has been authenticated and encryption information for encrypting information that is transmitted from the information communication device (4) to the management device (3).