Device Grouping with Virtual Identities and Trusted Third Parties
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing device grouping methods in networks restrict a device to a single identity and do not facilitate secure communication or resource sharing between devices without a trusted relationship, limiting flexible interactions and secure authentication.
Innovation Solution
A method for device grouping that allows a device to join multiple groups with different identities and enables secure authentication through a common trusted third party, allowing communication and resource sharing between devices, even if they do not belong to the same group, by using peer-to-peer or master-slave group structures and advertisement messages for group membership.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Device complexity
If a device is classified into a single group with fixed identity, then device management is simplified, but the device cannot join multiple groups with different identities, reducing flexibility
Solution Approach 1:
The device divides its identity into multiple virtual identities, each corresponding to a different group. When joining groups, the device creates separate virtual identity instances for each group membership, allowing it to maintain distinct identities in different groups while managing complexity through structured segmentation of identity management
Solution Approach 2:
The device implements multi-functionality by enabling a single physical device to serve multiple group memberships simultaneously. The device can join different types of groups (peer-to-peer and master-slave) with different virtual identities, making it universally adaptable to various network configurations and group structures
2Adaptability or versatility
If devices in different groups communicate without trusted relationship, then interaction flexibility is improved, but secure authentication and resource sharing cannot be guaranteed
Solution Approach 1:
The device introduces a trusted third party as an intermediary for authentication between devices in different groups. When direct trusted relationship doesn't exist, the device can authenticate through a common trusted third party that both devices trust, enabling secure cross-group communication while maintaining interaction flexibility
Solution Approach 2:
The device adds an additional authentication dimension by introducing trusted third parties into the authentication process. Instead of relying solely on direct device-to-device trust relationships, the system creates a multi-dimensional authentication path through trusted intermediaries, expanding the possibilities for secure communication
3Reliability
If a common trusted third party is introduced for authentication, then secure communication between devices in different groups is achieved, but the authentication process becomes more complex
Solution Approach 1:
The device performs preliminary actions by pre-establishing trusted relationships with third parties before needing authentication. The device maintains a cache of trusted third party information and pre-configures authentication paths, so when cross-group communication is needed, the authentication process can proceed efficiently using pre-established trust relationships
Data Source
AI summary
In a method for implementing device grouping and interactions between grouped devices a device creating a device group sends an advertisement message carrying identification information of a device group to which it belongs, to the network. After receiving the advertisement message, a network device joins the device group by the corresponding advertisement message. When two grouped network devices interact with each other, the method further comprises: sending an access request to an accessed device; judging by the accessed device whether the device sending the request is a trusted device and if so, interacting by both parties with each other; otherwise, denying the access request, or determining by the initiating device and the accessed device, a common trusted third party; acquiring by the initiating device, key information of the accessed device from the common trusted third party, and interacting with the accessed device by using the acquired key information.


