Automatic Device Onboarding via Provisioning Server

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The initial configuration process for portable communication devices, such as smartphones and tablets, is often tedious, complex, and prone to errors, leading to a poor user experience due to the need for manual setup on various wireless networks and services.

Innovation Solution

A no-touch, automatic initial configuration system that includes a provisioning server, a device management server, and a factory computer, which uses unique device identifiers and certificate signing requests to register devices with service networks, enabling seamless onboarding without user intervention.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If manual configuration process is used for portable communication devices, then user can set up device personally, but the process becomes tedious, complex, and time-consuming

Engineering Contradiction:
Improveease of device configurationVSAvoidtime for initial setup
Core Design Contradiction:
Ease of operationVSLoss of time

Solution Approach 1:

The system performs configuration actions in advance by automatically provisioning device identifiers, certificates, and network credentials during manufacturing or before device activation. This preliminary automated setup eliminates the need for users to manually configure network settings, thereby reducing setup time and complexity while maintaining operational ease.

Inventive Principle:
Principle #10Preliminary action

2Reliability

If manual configuration process is used, then user has control over setup, but errors increase and user experience deteriorates

Engineering Contradiction:
Improveconfiguration accuracyVSAvoiduser experience during setup
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system enables self-service configuration where the portable communication device automatically obtains network credentials, registers with service networks, and configures itself without user intervention. The device uses stored identifiers and certificates to autonomously complete setup processes, eliminating user errors and providing a seamless experience while maintaining high configuration accuracy.

Inventive Principle:
Principle #25Self-service

3Productivity

If automatic configuration system is implemented, then setup time is reduced and errors are minimized, but system complexity increases

Engineering Contradiction:
Improvedevice onboarding speedVSAvoidconfiguration system structure
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The system introduces intermediary components including a provisioning server, device management server, and certificate authority that mediate between the device and service networks. These intermediaries handle complex authentication, credential distribution, and registration processes automatically, thereby increasing onboarding speed and accuracy while managing system complexity through modular, standardized interfaces.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS10349268B1Automatic communication device onboarding
Publication Date: 2019.07.09 MOTOROLA SOLUTIONS INC
  • US10349268B1 patent drawing
  • US10349268B1 patent drawing
  • US10349268B1 patent drawing

AI summary

A method and system for preparing a portable communication device for onboarding to a service network. The system includes a provisioning server, a device management server, and a factory computer. The factory computer is configured to call the provisioning server with a message that includes at least one unique identifier of the portable communication device and a certificate signing request. The provisioning server is configured to store the at least one unique identifier, register, using the at least one unique identifier, the portable communication device with the device management server, and transmit, in response to the message from the factory computer, a signed certificate and an endpoint address to the factory computer.