Dedicated Wireless Network for Security Automation Isolation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Security and automation systems face vulnerabilities due to shared Wi-Fi networks, where access by multiple individuals can compromise the network, leading to potential hacking and network congestion, affecting the quality of service for users.

Innovation Solution

Establishing a dedicated wireless network for security and automation systems, separate from user networks, with stricter security protocols and a contention management entity to mediate traffic scheduling, ensuring the automation network is isolated and secure, while maintaining quality of service for user networks.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If a shared Wi-Fi network is used for both user devices and security/automation systems, then network accessibility and ease of operation are improved, but network security and reliability deteriorate due to potential hacking and unauthorized access

Engineering Contradiction:
Improvenetwork accessibilityVSAvoidnetwork security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent divides the network into two separate wireless networks: a dedicated network for security and automation systems with strict security protocols, and a user network for general device connectivity. This segmentation allows each network to have optimized security measures without compromising the other, resolving the contradiction between ease of access and network security.

Inventive Principle:
Principle #1Segmentation

2Reliability

If a dedicated wireless network with strict security protocols is established for security and automation systems, then network security and reliability are improved, but device complexity and network infrastructure requirements worsen

Engineering Contradiction:
Improvenetwork securityVSAvoidnetwork infrastructure
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The access point is designed to perform multiple functions: it can operate in a first mode to establish communication links with security/automation devices using strict security protocols, and in a second mode to communicate data between the access point and devices with established links. This multi-functionality reduces the need for separate dedicated hardware, thereby reducing overall device complexity while maintaining high security standards.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Adaptability or versatility

If network traffic is allowed to flow freely between user network and automation network, then network versatility and ease of operation are improved, but quality of service for automation systems deteriorates due to network congestion

Engineering Contradiction:
Improvenetwork connectivityVSAvoidquality of service
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent implements separate wireless networks for user devices and automation systems, physically segmenting traffic flows. This prevents congestion from user network activities from affecting the reliability and quality of service for time-sensitive automation communications, while still allowing both networks to operate independently with full connectivity within their respective domains.

Inventive Principle:
Principle #1Segmentation

Data Source

PatentUS11343860B1Dedicated wireless network for security and automation system
Publication Date: 2022.05.24 VIVINT INC
  • US11343860B1 patent drawing
  • US11343860B1 patent drawing
  • US11343860B1 patent drawing

AI summary

Techniques are described herein for establishing two wireless networks at a premises, a dedicated network configured to be used by devices of an automation and security system of the premises and a user network configured to be used by devices associated with users. The dedicated network may be more rigorously secured than the user network. The dedicated network may be secured in such a way that computing devices associated with users are not permitted to access the dedicated network. In this manner, the dedicated network may be prevented from becoming compromised. In some examples, a contention management entity may mediate network traffic scheduling between the dedicated network and the user network. The dedicated network may be configured to give deference to traffic being communicated across the user network to maintain a quality of service for end users of the user network.