Cloud Server WLAN Authentication Offloading

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In enterprise wireless local area networks (WLANs), the existing authentication processes are inefficient due to the weak performance of wireless access point devices, leading to prolonged authentication times and potential network degradation.

Innovation Solution

A method and apparatus for wireless local area network authentication, where a cloud server performs verification on verification information received from a wireless access point device, and returns a verification key to the access point device for associating with the terminal identifier, thereby completing the authentication process.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If authentication is performed by wireless access point devices, then authentication can be completed, but authentication time is prolonged and network performance degrades

Engineering Contradiction:
Improveauthentication completionVSAvoidauthentication time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent introduces a cloud server as an intermediary between the wireless terminal and the access point device. The cloud server receives authentication information from the access point, performs verification using stored verification keys, and returns results to the access point. This mediator approach transfers the computationally intensive authentication verification from the access point to the cloud server, resolving the contradiction by maintaining authentication reliability while reducing access point processing time and network degradation.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If authentication verification is performed by wireless access point devices, then authentication can be completed, but performance pressure on access point devices increases

Engineering Contradiction:
Improveauthentication completionVSAvoidperformance pressure
Core Design Contradiction:
ReliabilityVSPower

Solution Approach 1:

The cloud server serves as an intermediary that handles the performance-intensive authentication verification task. The access point device only performs lightweight information collection and transmission, while the cloud server performs the computationally intensive verification using stored verification keys. This division of labor significantly reduces the performance pressure on access point devices while maintaining authentication reliability.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent implements a verification key distribution mechanism where verification keys are stored in the cloud server and copied to the access point device when needed. This allows the access point to perform authentication without maintaining large key databases locally, reducing its storage and processing requirements while ensuring authentication can still be completed reliably.

Inventive Principle:
Principle #26Copying

3Reliability

If existing authentication processes are used in enterprise wireless networks, then authentication can be performed, but authentication efficiency is low

Engineering Contradiction:
Improveauthentication functionalityVSAvoidauthentication efficiency
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The cloud server acts as an intermediary that significantly improves authentication efficiency by handling verification operations remotely. The access point device simply collects authentication information and transmits it to the cloud server, which performs rapid verification using pre-stored verification keys and returns results quickly. This mediator architecture eliminates the bottleneck of local verification at the access point, thereby improving overall authentication efficiency while maintaining full authentication functionality.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent implements preliminary action by pre-storing verification keys in the cloud server before authentication is needed. When authentication occurs, the cloud server can immediately retrieve and use the appropriate verification key without performing complex key generation or search operations in real-time. This preliminary preparation significantly speeds up the authentication process and improves productivity while ensuring reliable authentication functionality.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS12317072B2Wireless local area network authentication method and apparatus, electronic device, and storage medium
Publication Date: 2025.05.27 TENCENT TECHNOLOGY (SHENZHEN) CO LTD
  • US12317072B2 patent drawing
  • US12317072B2 patent drawing
  • US12317072B2 patent drawing

AI summary

A cloud server receives information to be authenticated sent by a wireless access point device. The information to be authenticated contains verification information generated by a terminal to be authenticated. The terminal is a wireless terminal provided by the wireless access point device for accessing a wireless local area network. The cloud server determines that it locally stores a verification key that matches the terminal. The cloud server obtains the locally stored verification key and performs verification on the verification information according to the verification key. When the verification on the verification information succeeds, the cloud server the verification key to the wireless access point device so that the wireless access point device associatively stores the verification key with a terminal identifier of the terminal and completes authentication on the terminal according to the verification key.