Dual Access Point Wireless LAN Router Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Recent advancements in security technologies have led to more sophisticated methods for obtaining unauthorized access in radio communication systems, necessitating enhanced security measures to protect communication information.

Innovation Solution

A radio communication apparatus comprising a first access point with a higher security level and a second access point with a lower security level, capable of transmitting dummy information, which guides unauthorized access attempts to the second point, thereby preventing access to the more secure first point.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If a high security level is implemented in the radio communication apparatus, then security against unauthorized access is improved, but the complexity of the system increases

Engineering Contradiction:
Improvesecurity against unauthorized accessVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The radio communication apparatus is segmented into multiple access points with different security levels. The first access point provides high-security communication while the second access point offers low-security communication. This segmentation allows the system to distribute security functions across multiple components rather than requiring all components to have maximum security, thus improving overall security while managing system complexity.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The second access point acts as an intermediary that handles unauthorized access attempts. When an unauthorized access attempt is detected at the second access point, the system transmits dummy information to the intruder, preventing them from accessing the high-security first access point. This intermediary approach protects the main system without requiring the entire system to operate at maximum security complexity.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If multiple access points with different security levels are provided, then protection against unauthorized access is improved, but the device complexity increases

Engineering Contradiction:
Improveprotection against unauthorized accessVSAvoiddevice complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The access point system is divided into distinct security zones with the first access point handling secure communications and the second access point handling public or low-security communications. This segmentation allows each access point to be optimized for its specific security requirements, improving overall protection while keeping individual device complexities manageable.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The system uses the second access point as a decoy or copy that mimics the appearance of a valid access point to unauthorized users. When intruders attempt to connect, they are directed to the second access point which provides dummy information instead of actual system access. This copying strategy enhances security by creating a false target without requiring complex security mechanisms at every access point.

Inventive Principle:
Principle #26Copying

3Reliability

If dummy information is transmitted to unauthorized users, then security protection is improved, but information accuracy deteriorates

Engineering Contradiction:
Improvesecurity protectionVSAvoidinformation accuracy
Core Design Contradiction:
ReliabilityVSLoss of information

Solution Approach 1:

The system converts the harmful act of unauthorized access into a beneficial security measure by transmitting dummy information to intruders. Instead of allowing unauthorized users to potentially compromise system security, the system provides them with false information that appears legitimate but contains no sensitive data. This approach transforms the security threat into an opportunity to actively deceive and redirect attackers, improving security protection while the loss of information accuracy is acceptable since the information is intentionally false.

Inventive Principle:
Principle #22Blessing in disguise (Convert harm into benefit)

Solution Approach 2:

The system takes preliminary anti-action by proactively transmitting dummy information to unauthorized users before they can access any real system data. This preemptive measure ensures that even if intruders successfully connect to the second access point, they cannot obtain meaningful information about the actual system. The preliminary transmission of false information neutralizes the security threat before it can cause harm.

Inventive Principle:
Principle #9Preliminary anti-action

Data Source

PatentUS11496901B2Radio communication apparatus, wireless LAN router, unauthorized access prevention method, and radio communication system
Publication Date: 2022.11.08 NEC PLATFROMS LTD
  • US11496901B2 patent drawing
  • US11496901B2 patent drawing
  • US11496901B2 patent drawing

AI summary

An object of the present invention is to provide a radio communication apparatus, a wireless LAN router, an unauthorized access prevention method, and a radio communication system that have security for protection against unauthorized access. A radio communication apparatus (1) according to the present invention includes: first radio communication means (10) for functioning as an access point for radio communication; second radio communication means (20) for functioning as an access point for radio communication; and storage means (21) for storing dummy information. The first radio communication means (10) has a security level higher than that of the second radio communication means (20), and the second radio communication means (20) is capable of transmitting the dummy information stored in the storage means (21).