Converged Network Security Parameter Generation Across Heterogeneous Links

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Home networks often employ multiple heterogeneous link layer technologies due to location, device capabilities, and quality-of-service needs, but existing solutions lack efficient security parameter management and distribution across these diverse technologies.

Innovation Solution

A system with network devices equipped with multiple interfaces supporting various link layer technologies, utilizing network security parameter management logic to generate and distribute converged network passwords, and an abstraction layer for seamless data routing, along with key management and distribution logic for secure pairing and key exchange.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If multiple heterogeneous link layer technologies are employed to provide seamless connectivity across different media, then adaptability and coverage are improved, but device complexity and security management difficulty increase

Engineering Contradiction:
Improveconnectivity across heterogeneous technologiesVSAvoidsecurity parameter management
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent implements a universal security parameter management system that handles multiple heterogeneous link layer technologies (Ethernet, Wi-Fi, PLC, MoCA, HomePNA) through a single integrated framework. The system generates and manages security parameters that are applicable across all these different technologies, allowing one system to perform multiple security functions rather than requiring separate security mechanisms for each technology.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The patent introduces an intermediary security parameter management system that sits between the network devices and the heterogeneous link layer technologies. This intermediary generates security parameters (such as passwords and cryptographic keys) and distributes them to various network interfaces, mediating the security requirements across different technologies without requiring each technology to implement its own separate security management.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If multiple network interfaces with different link layer technologies are used, then network coverage and accessibility are improved, but the difficulty of secure pairing and key distribution increases

Engineering Contradiction:
Improvenetwork interface compatibilityVSAvoidsecure pairing process
Core Design Contradiction:
Adaptability or versatilityVSEase of operation

Solution Approach 1:

The patent applies preliminary action by pre-generating security parameters (passwords and cryptographic keys) before network devices need to pair or establish connections. The security parameter management system creates these security credentials in advance and stores them in a centralized location, so when pairing is needed, the parameters are already ready and can be quickly distributed without complex real-time generation or manual configuration.

Inventive Principle:
Principle #10Preliminary action

3Adaptability or versatility

If heterogeneous link layer technologies are integrated into a converged network, then network versatility is improved, but maintaining network security and separation becomes more difficult

Engineering Contradiction:
Improveconverged network capabilityVSAvoidnetwork security
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent segments the security management function from the network interface functions. Rather than mixing security logic with each specific link layer technology implementation, the system divides security parameter generation, storage, and distribution into a separate modular component. This segmentation allows each network interface to focus on its specific technology while the segmented security module handles all security requirements uniformly across technologies.

Inventive Principle:
Principle #1Segmentation

Data Source

PatentEP2530900B1Network security parameter generation and distribution
Publication Date: 2017.04.05 BROADCOM INC
  • EP2530900B1 patent drawing
  • EP2530900B1 patent drawing
  • EP2530900B1 patent drawing

AI summary

Disclosed are various embodiments for facilitating network security parameter distribution and generation in a converged network incorporating multiple heterogeneous link layer networking technologies. Embodiments are provided for connecting network devices through multiple heterogeneous link layer networking technologies using a converged network password. Embodiments are provided for connecting network devices through multiple heterogeneous link layer networking technologies using a pairing event protocol, such as, for example, a push button protocol.