CPNS Gateway User Key Assignment via Intermediary Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional techniques lack the necessary technical features to implement a converged personal network service (CPNS) framework, specifically in assigning a user key for CPNS devices, which is essential for managing and controlling communication between CPNS devices and gateways.

Innovation Solution

A method for operating a CPNS gateway apparatus that involves transmitting user information, generating authentication data, and requesting a user key assignment through a CPNS server, allowing user key assignment even for devices without a user interface, ensuring secure and authenticated communication between CPNS devices and the server.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If a CPNS gateway apparatus is used to manage communication between CPNS devices and servers, then secure service provision is improved, but device complexity increases due to the need for key assignment management

Engineering Contradiction:
Improvesecure service provisionVSAvoidkey assignment management
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The CPNS gateway apparatus serves as an intermediary between CPNS devices and the CPNS server, handling key assignment and authentication processes. The gateway receives key assignment requests from devices, communicates with the server to obtain user keys, and manages the distribution of these keys to appropriate devices, thereby centralizing security management functionality.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If user key assignment is implemented for all CPNS devices, then communication security is improved, but the operational complexity increases for devices without user interfaces

Engineering Contradiction:
Improvecommunication securityVSAvoidkey assignment process
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system enables self-service key assignment where devices automatically perform authentication and key reception without requiring direct user interaction. The gateway apparatus sends trigger messages to devices, which then autonomously generate authentication data, send key assignment requests to the server, and receive their user keys without manual intervention, making the process suitable for devices lacking user interfaces.

Inventive Principle:
Principle #25Self-service

3Reliability

If authentication data generation is required for key assignment, then security is improved, but the time required for service setup increases

Engineering Contradiction:
Improveauthentication securityVSAvoidservice setup time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

User information is pre-registered in the CPNS server before actual key assignment occurs. When a device needs a user key, the gateway apparatus can quickly generate authentication data based on pre-stored user information, and the server can rapidly process the key assignment request without requiring time-consuming user registration or verification at the moment of key assignment, thereby reducing setup time while maintaining security.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS8887253B2Method of assigning a user key in a convergence network
Publication Date: 2014.11.11 LG ELECTRONICS INC
  • US8887253B2 patent drawing
  • US8887253B2 patent drawing
  • US8887253B2 patent drawing

AI summary

Discussed is a method of operating a CPNS (converged personal network service) gateway apparatus. The method includes transmitting a registration request message including user information to a server; transmitting an installation request message including the user information to a terminal; generating first authentication data on the basis of authentication information received by a user input; transmitting a trigger message including the first authentication data to the terminal; receiving a key assignment request message including second authentication data from the terminal in response to the trigger message; transmitting the received key assignment request message to the server; receiving a key assignment response message including a user key for the terminal in response to the key assignment request message; and transmitting the received key assignment response message to the terminal.