Distributed Antenna System Authentication via PLM

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional distributed antenna systems (DAS) lack a mechanism to ensure only authorized remote antenna units (RAUs) are used, leading to potential security and compatibility issues due to the use of proprietary protocols and the need for authentication to enable full operation of RAUs within the system.

Innovation Solution

Implementing an authentication process for remote antenna units using physical layer management (PLM) information, where PLM components store and transmit authentication data, enabling full operation only if the authentication is successful, and using PLM interfaces and aggregation points to manage connectivity and authenticate units.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of manufacture

If proprietary protocols are used for communication within the DAS, then device compatibility and ease of manufacture are improved, but system security and reliability deteriorate due to lack of authentication mechanisms

Engineering Contradiction:
Improvedevice compatibilityVSAvoidsystem security
Core Design Contradiction:
Ease of manufactureVSReliability

Solution Approach 1:

An authentication entity is introduced as an intermediary component between the host unit and remote antenna units. This entity verifies authentication information (such as serial numbers or cryptographic keys) before allowing RAUs to operate in the DAS, thereby securing the system without disrupting the proprietary communication protocols

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

Authentication verification is performed in advance before the RAUs are fully integrated into the DAS network. The authentication entity checks authentication information prior to operation, preventing unauthorized devices from joining the system while maintaining compatibility with existing proprietary protocols

Inventive Principle:
Principle #10Preliminary action

2Reliability

If authentication mechanisms are added to the DAS, then system security and reliability are improved, but device complexity and operational difficulty increase

Engineering Contradiction:
Improvesystem securityVSAvoidauthentication infrastructure
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The authentication process is designed to be self-service oriented, where the authentication entity automatically verifies authentication information without requiring manual intervention. The system autonomously manages the authentication workflow, reducing operational complexity despite adding security functionality

Inventive Principle:
Principle #25Self-service

3Reliability

If authentication processes are implemented, then unauthorized device access is prevented, but installation time and operational setup increase

Engineering Contradiction:
Improveauthorized operationVSAvoidinstallation time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

Authentication information such as serial numbers or cryptographic keys is pre-configured in the RAUs during manufacturing. This preliminary setup allows for rapid authentication verification during installation, minimizing the time required for system deployment while ensuring only authorized devices are accepted

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentEP3528405B1Distributed antenna system with managed connectivity
Publication Date: 2023.09.06 ADC TELECOMMUNICATIONS INC
  • EP3528405B1 patent drawingFigure 1
  • EP3528405B1 patent drawingFigure 2
  • EP3528405B1 patent drawingFigure 3

AI summary

One embodiment is directed to a digital antenna system (DAS). The DAS comprises a host unit and at least one remote antenna unit located remotely from the host unit, wherein the remote antenna unit is communicatively coupled to the host unit. The host unit is configured to communicate a downstream transport signal from the host unit to the remote antenna unit. The remote antenna unit is configured to use the downstream transport signal to generate a downstream radio frequency signal for radiation from an antenna associated with the remote antenna unit. The DAS is configured to enable full operation of the remote antenna unit in the DAS if an authentication process has been successfully performed for the remote antenna unit, wherein full operation of the remote antenna unit in the DAS is not enabled if the authentication process has not been successfully performed for the remote antenna unit. Other embodiments are directed to a host-to-host network.