Distributed Wireless Network Service with Centralized Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing Wi-Fi networks face security issues due to unencrypted connections allowing malicious access and lack of user identification, while encrypted connections restrict access for non-trusted users and do not differentiate between devices, leading to potential legal liabilities and reduced utility for mobile users.

Innovation Solution

A distributed wireless network system where a server stores user data and access point information, allowing mobile units to connect to encrypted access points using stored access data, with identification and authentication ensuring secure and shared broadband connections, and a VPN tunnel for secure internet access.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If unencrypted Wi-Fi connections are used, then ease of access and connectivity are improved, but network security deteriorates due to malicious access

Engineering Contradiction:
Improveease of accessVSAvoidnetwork security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent introduces a server as an intermediary that stores access data for multiple Wi-Fi networks. Mobile units can access encrypted networks by retrieving pre-stored credentials from the server, eliminating the need to manually store sensitive data on the device while maintaining secure access. This mediator approach resolves the contradiction by enabling easy access without compromising security.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If encrypted Wi-Fi connections are used, then network security is improved, but ease of operation deteriorates due to restricted access for non-trusted users

Engineering Contradiction:
Improvenetwork securityVSAvoidease of access
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system performs preliminary actions by pre-storing access credentials on a centralized server before they are needed. When a mobile unit needs to access an encrypted network, it retrieves the credentials from the server in advance rather than requiring manual configuration or real-time authentication. This preliminary preparation maintains security while significantly improving ease of access.

Inventive Principle:
Principle #10Preliminary action

3Ease of operation

If access data is stored on mobile devices, then ease of operation is improved, but network security deteriorates due to exposure of sensitive information

Engineering Contradiction:
Improveease of accessVSAvoidexposure of sensitive information
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent extracts sensitive access data from mobile devices and stores it on a centralized server instead. Mobile units only store minimal identifiers and retrieve actual credentials when needed, dramatically reducing the exposure of sensitive information on end devices while maintaining operational ease. This extraction approach resolves the security risk of storing credentials locally.

Inventive Principle:
Principle #2Taking out (Extraction)

4Adaptability or versatility

If multiple Wi-Fi networks are accessed, then adaptability and versatility are improved, but device complexity increases due to storing multiple credentials

Engineering Contradiction:
ImproveconnectivityVSAvoiddata storage
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The server is designed as a universal platform that stores credentials for multiple Wi-Fi networks and serves multiple mobile units. Instead of each device needing to store credentials for multiple networks, the universal server provides access to all networks for all users. This multi-functionality approach enables high adaptability while minimizing device complexity.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentEP2687033B1Method and system for providing a distributed wireless network service
Publication Date: 2019.12.25 FON WIRELESS
  • EP2687033B1 patent drawingFigure 1
  • EP2687033B1 patent drawingFigure 2
  • EP2687033B1 patent drawingFigure 3

AI summary

A distributed wireless network system includes a mobile unit capable of communicating over a Wi-Fi connection, a server that is coupled to and accessible over a global communication network, a first and a second Wi-Fi access point. The mobile unit and the first Wi-Fi access point are operated by a first user and the second Wi-Fi access point is operated by a second user. The server is configured to store user data of at least the first and the second user. The user data includes at least personal authenticity data of the user being allocated to a user login and a database of shared Wi-Fi access points. Upon transmission of identification data, the user login of the first user is transmitted to the server. It is then checked whether for this user login corresponding user data is stored at the server and whether the second Wi-Fi access point is in the list of shared Wi-Fi access points. If the checks are successful, access data from the server is transmitted to the mobile unit.