Device Grouping with Virtual Identities and Trusted Third Parties

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing device grouping methods in networks restrict a device to a single identity and do not facilitate secure communication or resource sharing between devices without a trusted relationship, limiting flexible interactions and secure authentication.

Innovation Solution

A method for device grouping that allows a device to join multiple groups with different identities and enables secure authentication through a common trusted third party, allowing communication and resource sharing between devices, even if they do not belong to the same group, by using peer-to-peer or master-slave group structures and advertisement messages for group membership.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Device complexity

If a device is classified into a single group with fixed identity, then device management is simplified, but the device cannot join multiple groups with different identities, reducing flexibility

Engineering Contradiction:
Improvedevice management complexityVSAvoiddevice group membership flexibility
Core Design Contradiction:
Device complexityVSAdaptability or versatility

Solution Approach 1:

The device divides its identity into multiple virtual identities, each corresponding to a different group. When joining groups, the device creates separate virtual identity instances for each group membership, allowing it to maintain distinct identities in different groups while managing complexity through structured segmentation of identity management

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The device implements multi-functionality by enabling a single physical device to serve multiple group memberships simultaneously. The device can join different types of groups (peer-to-peer and master-slave) with different virtual identities, making it universally adaptable to various network configurations and group structures

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Adaptability or versatility

If devices in different groups communicate without trusted relationship, then interaction flexibility is improved, but secure authentication and resource sharing cannot be guaranteed

Engineering Contradiction:
Improvedevice interaction flexibilityVSAvoidsecure communication guarantee
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The device introduces a trusted third party as an intermediary for authentication between devices in different groups. When direct trusted relationship doesn't exist, the device can authenticate through a common trusted third party that both devices trust, enabling secure cross-group communication while maintaining interaction flexibility

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The device adds an additional authentication dimension by introducing trusted third parties into the authentication process. Instead of relying solely on direct device-to-device trust relationships, the system creates a multi-dimensional authentication path through trusted intermediaries, expanding the possibilities for secure communication

Inventive Principle:
Principle #17Another dimension (Dimensionality change)

3Reliability

If a common trusted third party is introduced for authentication, then secure communication between devices in different groups is achieved, but the authentication process becomes more complex

Engineering Contradiction:
Improvesecure authenticationVSAvoidauthentication process complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The device performs preliminary actions by pre-establishing trusted relationships with third parties before needing authentication. The device maintains a cache of trusted third party information and pre-configures authentication paths, so when cross-group communication is needed, the authentication process can proceed efficiently using pre-established trust relationships

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS7987360B2Method for implementing grouping devices and interacting among grouped devices
Publication Date: 2011.07.26 LENOVO (BEIJING) LTD
  • US7987360B2 patent drawing
  • US7987360B2 patent drawing
  • US7987360B2 patent drawing

AI summary

In a method for implementing device grouping and interactions between grouped devices a device creating a device group sends an advertisement message carrying identification information of a device group to which it belongs, to the network. After receiving the advertisement message, a network device joins the device group by the corresponding advertisement message. When two grouped network devices interact with each other, the method further comprises: sending an access request to an accessed device; judging by the accessed device whether the device sending the request is a trusted device and if so, interacting by both parties with each other; otherwise, denying the access request, or determining by the initiating device and the accessed device, a common trusted third party; acquiring by the initiating device, key information of the accessed device from the common trusted third party, and interacting with the accessed device by using the acquired key information.