Credential Storage on Customer Premises Network Device

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current password management systems are insecure due to the reuse of passwords, vulnerability to hacking, and the risk associated with storing credentials in centralized cloud storage, which can lead to unauthorized access and data breaches.

Innovation Solution

Storing credential information, such as passwords and user IDs, on a network device like a wireless access router at the customer premises in encrypted form, with access limited to a local network, ensuring that only the user with the master security information can decrypt and use the credentials, thereby reducing the risk of unauthorized access.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If credentials are stored in centralized cloud storage, then ease of access to multiple accounts is improved, but security and risk of data breaches worsen

Engineering Contradiction:
Improveease of access to credentialsVSAvoidsecurity of credentials
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent segments credential storage by implementing separate storage locations for different credential types: a first storage location for service provider credentials and a second storage location for device credentials. This segmentation isolates different credential sets, limiting the impact of potential breaches to specific locations rather than exposing all credentials simultaneously.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces a credential manager as an intermediary component that handles credential retrieval and management. The credential manager mediates between the user's device and the various storage locations, providing a secure interface for accessing credentials without directly exposing them in centralized cloud storage.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If credentials are transmitted over the internet to cloud storage, then accessibility is improved, but vulnerability to interception and hacking increases

Engineering Contradiction:
Improveaccessibility of credentialsVSAvoidrisk of interception and hacking
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The patent extracts credential storage from centralized cloud infrastructure and places it in distributed locations including local device storage and network-attached storage. This extraction removes credentials from the vulnerable internet-transmitted environment and secures them in more controlled, localized storage positions.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent implements prior cushioning by establishing multiple secure storage locations and access control mechanisms before any credential transmission or access occurs. The system pre-configures encrypted storage, authentication requirements, and isolation barriers to prevent interception and hacking attempts before they can succeed.

Inventive Principle:
Principle #11Beforehand cushioning (Prior cushioning)

3Ease of operation

If multiple credentials are stored in a single location, then ease of management is improved, but impact of potential breach increases

Engineering Contradiction:
Improveease of credential managementVSAvoidimpact of credential breach
Core Design Contradiction:
Ease of operationVSObject-generated harmful factors

Solution Approach 1:

The patent segments credential storage into distinct first and second storage locations, separating service provider credentials from device credentials. This segmentation ensures that a breach in one location does not compromise all credentials, thereby reducing the overall impact while maintaining manageable organization through clear categorization.

Inventive Principle:
Principle #1Segmentation

Data Source

PatentUS11812263B2Methods and apparatus for securely storing, using and/or updating credentials using a network device at a customer premises
Publication Date: 2023.11.07 CHARTER COMM OPERATING LLC
  • US11812263B2 patent drawing
  • US11812263B2 patent drawing
  • US11812263B2 patent drawing

AI summary

Methods and apparatus for securely storing, using and/or updating credential information, e.g., passwords and user IDs for a user who subscribes to one or more services, e.g., video stream services or other services available through a communications network such as the Internet, are described.