EAP Authentication Handling in Wireless LAN Communication Apparatus

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Communication apparatuses using the IEEE802.1X/EAP authentication method for wireless LAN connections face challenges in convenience during the connection processing, particularly in transmitting information for authentication and handling failures effectively.

Innovation Solution

A communication apparatus is designed with a first transmission unit to display and accept EAP authentication settings, a reception unit to input and receive these settings, and a second transmission unit to inform the information processing apparatus of authentication failures, thereby improving the convenience and handling of connection processes.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If the communication apparatus uses IEEE802.1X/EAP authentication method for wireless LAN connection, then network security is improved, but the complexity of connection processing and user operation increases

Engineering Contradiction:
Improvenetwork securityVSAvoidconnection processing convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent introduces an information processing apparatus as an intermediary between the user and the authentication system. This apparatus automatically manages IEEE802.1X/EAP authentication by handling certificate installation, authentication information registration, and connection processing. The intermediary translates complex authentication procedures into simple user actions (selecting connection targets), thereby maintaining high security while improving ease of operation.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent performs preliminary actions by automatically installing certificates and registering authentication information before the actual connection is needed. The information processing apparatus pre-configures all necessary authentication credentials and security parameters, so that when connection is required, the user only needs to select the target without dealing with complex authentication setup. This preliminary automation resolves the contradiction between security requirements and operational simplicity.

Inventive Principle:
Principle #10Preliminary action

2Ease of operation

If the communication apparatus automatically manages authentication information, then ease of operation is improved, but the device complexity increases

Engineering Contradiction:
Improveconnection processing convenienceVSAvoidauthentication management complexity
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

The patent shifts the complexity burden from the communication apparatus to an external information processing apparatus that acts as an intermediary. The information processing apparatus handles all complex authentication management tasks including certificate installation, authentication information registration, and connection control. This allows the communication apparatus to maintain simplicity while still achieving automatic authentication management through the intermediary's capabilities.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The information processing apparatus provides self-service functionality by automatically managing authentication information without requiring manual user configuration. The system autonomously handles certificate installation, authentication parameter registration, and connection processing, eliminating the need for users to manually configure complex authentication settings while keeping the communication apparatus relatively simple.

Inventive Principle:
Principle #25Self-service

3Reliability

If the communication apparatus provides detailed authentication failure information, then reliability of authentication is improved, but the loss of information to users increases

Engineering Contradiction:
Improveauthentication accuracyVSAvoiduser understanding of failure reasons
Core Design Contradiction:
ReliabilityVSLoss of information

Solution Approach 1:

The patent implements a feedback mechanism where the information processing apparatus receives authentication failure information from the communication apparatus and translates it into user-friendly notifications. The system provides structured feedback that includes both the technical authentication result and human-readable explanations of failure reasons. This feedback loop maintains authentication reliability while improving user understanding by presenting information in an accessible format rather than raw technical data.

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS20230336989A1Communication apparatus, control method for information processing apparatus, and control method for system
Publication Date: 2023.10.19 CANON KK
  • US20230336989A1 patent drawing
  • US20230336989A1 patent drawing
  • US20230336989A1 patent drawing

AI summary

The invention provides a communication apparatus communicable with an information processing apparatus, wherein the apparatus comprises a first transmission unit configured to transmit, to the information processing apparatus, information for displaying a setting screen for accepting an input of setting information concerning Extensible Authentication Protocol (EAP) authentication as authentication based on IEEE802.1X/EAP; a reception unit configured to receive, from the information processing apparatus, the setting information input to the setting screen; an attempt unit configured to attempt EAP authentication with a predetermined authentication server based on the setting information input to the setting screen; and a second transmission unit configured to transmit, based on a failure of the EAP authentication, information for displaying a screen based on the failure of the EAP authentication to the information processing apparatus.