Secure Wireless Appliance Connection via Mobile Mediator
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Traditional methods for connecting smart appliances to wireless networks are cumbersome and insecure, particularly for devices with limited user interfaces, as they require manual input of network credentials and lack necessary security features to prevent unauthorized access.
Innovation Solution
A system and method that sends secure wireless network credentials to a purpose-built appliance via an unsecured wireless network after confirming user intent through a token-generation process, allowing the appliance to connect to the secure network without manual input, while ensuring security through a secure channel.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If traditional manual input methods are used for connecting smart appliances to wireless networks, then security can be maintained through user control, but ease of operation deteriorates due to the tedious typing process on devices with limited user interfaces
Solution Approach 1:
The patent introduces a mobile device as an intermediary that mediates the connection process between the smart appliance and the wireless network. The mobile device receives credentials from the user, generates tokens, and transmits them to the appliance, eliminating the need for manual typing on the appliance's limited interface while maintaining security through controlled credential distribution.
Solution Approach 2:
The system performs preliminary actions by pre-generating authentication tokens and credentials on the mobile device before the actual connection occurs. The appliance enters a discovery mode in advance, and the mobile device prepares the connection information beforehand, so that the final connection can be established quickly without real-time manual input.
2Ease of operation
If network credentials are broadcast to smart devices to avoid manual input, then ease of operation improves, but security deteriorates due to lack of authentication and vulnerability to rogue devices
Solution Approach 1:
The patent implements feedback mechanisms where the mobile device receives confirmation from the appliance that it has successfully entered the discovery mode and is ready for connection. This feedback loop ensures that credentials are only transmitted to authorized devices that have properly initiated the connection process, preventing rogue devices from acquiring credentials.
Solution Approach 2:
The mobile device acts as a secure intermediary that controls the distribution of network credentials. It generates unique tokens for each authorized appliance, verifies the appliance's identity through the discovery mode confirmation, and only transmits credentials to authenticated devices, thereby maintaining security while enabling automatic connection.
3Productivity
If automatic connection methods are implemented without authentication tokens, then productivity improves through faster connection, but security deteriorates due to lack of user intent confirmation
Solution Approach 1:
The system performs preliminary authentication actions by requiring the appliance to enter discovery mode and the mobile device to generate tokens before automatic connection occurs. This preliminary authentication ensures user intent is confirmed while maintaining fast connection speed, as the actual credential transmission happens automatically once authentication is complete.
Solution Approach 2:
The mobile device serves as an intermediary that enforces security protocols by requiring user confirmation before transmitting credentials. It manages the authentication token generation and verification process, allowing automatic connection to proceed quickly once the security checks are satisfied, thus balancing productivity and security.
Data Source
AI summary
The disclosed computer-implemented method for connecting purpose-built appliances to secure wireless networks may include (1) receiving, via an unsecured wireless network, an identifier from a network device that is not connected to a secure wireless network associated with the computing device, (2) sending, via the unsecured wireless network, a token to the network device, (3) receiving confirmation from a user of the network device that the network device correctly displayed the token and that the user would like to connect the network device to the secure wireless network, and (4) in response to the confirming that the user would like to connect the network device to the secure wireless network, sending, via the unsecured wireless network, network credentials for the secure wireless network to the network device to enable the network device to connect to the secure wireless network. Various other methods, systems, and computer-readable media are also disclosed.


