DHCPv6 Relay Device Authorization Information Transfer

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In DHCPv6 networking, authorization information cannot be effectively transferred from an AAA server to a DHCPv6 server, limiting the DHCPv6 server's ability to provide correct configurations to DHCPv6 clients, especially in scenarios requiring specific address or prefix allocations.

Innovation Solution

A method and system where a relay device receives authorization information from an AAA server and encapsulates it within a DHCPv6 Relay-Forward message, sending it to a DHCPv6 server, allowing the server to allocate correct configuration information to DHCPv6 clients.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Loss of information

If authorization information is not transferred from AAA server to DHCPv6 server, then the DHCPv6 server maintains independence and simple operation, but the DHCPv6 server cannot provide correct configuration information to DHCPv6 clients

Engineering Contradiction:
Improveauthorization informationVSAvoidDHCPv6 server configuration capability
Core Design Contradiction:
Loss of informationVSDevice complexity

Solution Approach 1:

The relay device serves as an intermediary between the AAA server and DHCPv6 server, receiving authorization information from the AAA server and forwarding it to the DHCPv6 server via DHCPv6 Relay-Forward messages. This mediator approach enables information transfer without requiring direct integration between the AAA server and DHCPv6 server, maintaining the independence of both systems while enabling correct configuration delivery to clients.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If the DHCPv6 server and DHCPv6 client are within the same link, then direct communication is simple, but deployment requires a DHCPv6 server within each link scope which increases cost and complexity

Engineering Contradiction:
ImproveDHCPv6 server deploymentVSAvoidnetwork architecture
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

The relay device performs multiple functions: it acts as both a DHCPv6 relay for forwarding messages between clients and servers across different links, and as an authorization information transfer agent by receiving authorization data from the AAA server and injecting it into DHCPv6 Relay-Forward messages. This multi-functionality eliminates the need for separate authorization transfer mechanisms and enables centralized DHCPv6 server deployment.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Adaptability or versatility

If authorization information is transferred through standard DHCPv6 processes, then the process remains simple and standardized, but the relay device cannot deliver AAA server authorization information to the DHCPv6 server

Engineering Contradiction:
Improveauthorization information transfer capabilityVSAvoidmessage processing complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The authorization information from the AAA server is nested within the DHCPv6 Relay-Forward message structure. The relay device encapsulates the authorization information in a format that fits within the existing DHCPv6 message framework, allowing the authorization data to be transported through the standard DHCPv6 relay process without requiring separate communication channels or complex integration protocols.

Inventive Principle:
Principle #7Nested doll (Nesting)

Data Source

PatentUS10320788B2Method for transferring authorization information, relay device, and server
Publication Date: 2019.06.11 HUAWEI TECH CO LTD
  • US10320788B2 patent drawing
  • US10320788B2 patent drawing
  • US10320788B2 patent drawing

AI summary

A method for transferring authorization information, a relay device, and a server are provided. The method includes: receiving, by a DHCPv6 relay device, authorization information delivered by an AAA server; and inserting an option into a DHCPv6 Relay-Forward message, encapsulating the authorization information in the option, and sending the option to a DHCPv6 server. By using the technical solutions of the present application, a DHCPv6 relay device sends authorization information delivered by an AAA server to a DHCPv6 server, so that the DHCPv6 server can provide a correct configuration for a DHCPv6 client according to the authorization information delivered by the AAA server.