CPE MAC Address Translation for Privacy and Identification
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The obfuscation of MAC addresses due to privacy-enhancing techniques like MAC randomization in devices such as iOS, Android, and Windows hinders service delivery in customer-premises equipment (CPE) by disrupting the reliance on MAC addresses as a single source of truth for device identification and service delivery.
Innovation Solution
The solution involves replacing the active MAC address with the earlier MAC address in data packets transferred within the CPE, allowing services to recognize connected devices based on their original or initial MAC address, which can be vendor-embedded or randomized, thereby maintaining consistent service delivery and policy application.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Object-affected harmful factors
If MAC randomization is implemented for privacy enhancement, then device privacy is improved, but device identification reliability deteriorates
Solution Approach 1:
The patent introduces a mapping table as an intermediary mechanism that stores the relationship between randomized MAC addresses and original MAC addresses. The CPE uses this mapping table to translate randomized MAC addresses back to original MAC addresses for service identification purposes, thus maintaining both privacy (through randomization) and identification reliability (through mapping).
Solution Approach 2:
The patent creates a copy of the original MAC address information stored in the mapping table. Instead of using the original MAC address directly for identification, the system uses copied mapping information that links randomized MAC addresses to their original counterparts, enabling reliable device identification while preserving privacy through the randomized address format.
2Object-generated harmful factors
If MAC address obfuscation is used, then service security is improved, but service delivery accuracy deteriorates
Solution Approach 1:
The mapping table acts as an intermediary that preserves the link between randomized MAC addresses and original device identities. This allows the CPE to maintain accurate service delivery by translating randomized addresses back to original addresses for policy application and service management, while still benefiting from the security and privacy advantages of MAC address obfuscation.
3Object-affected harmful factors
If randomized MAC address is used for initial registration, then device privacy is improved, but consistent service recognition deteriorates
Solution Approach 1:
The system implements feedback through the mapping table that continuously maintains the correspondence between randomized MAC addresses and original MAC addresses. When a device registers with a randomized MAC address, the mapping table stores this information, enabling the CPE to consistently recognize the device across different sessions and applications by translating the randomized address back to the original identifier.
Solution Approach 2:
The patent performs preliminary action by pre-establishing the mapping relationship between randomized and original MAC addresses during the initial registration phase. This preliminary mapping allows subsequent service deliveries to consistently recognize the device using the randomized address while maintaining the ability to apply policies based on the original address, thus ensuring stable service recognition throughout the device's usage cycle.
Data Source
Figure 1A
Figure 1B
Figure 1C
AI summary
After a data packet containing an active medium access control (MAC) address of a connected device enters (110) a customer-premises equipment (CPE), the active MAC address of the connected device is replaced (114) with an earlier MAC address of the connected device. Before the data packet with the earlier MAC address exits (148) the CPE, the earlier MAC address of the connected device is replaced (136) with the active MAC address of the connected device.