Building Control Unit Updates Using Proximity-Based Service Authorization
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing methods for updating building control units (BCUs) in building management systems (BMS) are complex and time-consuming, particularly due to security standards that restrict direct data transmission from a central server to BCUs.
Innovation Solution
A method that establishes a data link between BCUs and a server, allowing updates to be sent from the server to the BCU only when an authorized service person (ASP) is detected in proximity, ensuring security standards are met while enabling efficient updates.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Productivity
If updates are sent directly from central server to BCU, then update speed and efficiency are improved, but security standards are violated
Solution Approach 1:
The patent introduces an authorized service person (ASP) as an intermediary between the central server and the BCU. The ASP must be physically present at the BCU location (within proximity) to authorize and facilitate the update process. This intermediary mechanism allows direct server-to-BCU communication for efficiency while maintaining security through human verification and control.
2Reliability
If near field communication is used for updates, then security standards are maintained, but update process becomes complex and time-consuming
Solution Approach 1:
The ASP acts as a mediator that simplifies the update process by providing a single point of authorization. Instead of complex NFC handshakes or multiple verification steps, the system uses the ASP's physical presence detection combined with their authorized status to streamline the update authorization process, reducing complexity while maintaining security.
Solution Approach 2:
The system performs preliminary verification of the ASP's authorized status and physical presence before initiating the update process. This preliminary action ensures security requirements are met upfront, allowing the actual update transmission to proceed through the efficient direct data link without security-related delays or complex verification steps during the update itself.
3Reliability
If near field communication is used for updates, then security standards are maintained, but update time increases
Solution Approach 1:
The ASP intermediary enables security-compliant updates without the time loss associated with repeated NFC connections. The ASP's authorized status is verified once, and their physical presence continuously authorizes the direct data link communication, eliminating the need for time-consuming NFC handshakes during each update transmission phase.
Solution Approach 2:
Security verification and authorization are performed in advance through the ASP's presence detection and credential validation. This preliminary security check establishes a trusted session that allows rapid update transmission over the direct data link, preventing security compliance from becoming a time bottleneck during the actual update process.
Data Source
Figure 1
Figure 2
AI summary
The invention concerns a method 100 for providing an update to a building control unit, hereinafter referred to as BCU 3, of a building management system, hereinafter referred to as BMS 1, comprising: providing 101 a data link 4 between the BCU 3 and a server 2, detecting 102 presence of an authorized service person, hereinafter referred to as ASP 50, in the proximity of the BCU 3 by determine the position of a mobile ASP-device 6 to be carried by the ASP 50, permitting 103 an update of the BCU 3 when presence of the ASP 50 is detected in the proximity of the BCU 3, wherein update-data 5 is sent from the server 2 to the BCU 3 via the data link 4.