One-Time Token for Emergency IMD WiFi Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

IoT implanted medical devices (IMDs) face challenges in connecting to a monitoring center during emergencies due to password-protected private WiFi networks, which prevents them from reporting emergencies effectively while maintaining network security.

Innovation Solution

The IMD uses a one-time use token to request temporary, restricted access to a WiFi network, allowing it to send an emergency message to a monitoring center through a router with special firmware that verifies the token's authenticity, ensuring secure and limited access for emergency communication.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If the IMD connects to a password-protected private WiFi network, then network security is maintained, but the IMD cannot report emergencies to the monitoring center

Engineering Contradiction:
Improveemergency reporting capabilityVSAvoidnetwork access
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

A router acts as an intermediary between the password-protected WiFi network and the IMD. The router is configured with a captive portal that presents a custom webpage containing a form for entering a token. This intermediary system allows the IMD to authenticate without requiring direct password entry, bridging the gap between network security requirements and emergency device access needs.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

Before the emergency situation occurs, a unique token is pre-configured in the IMD's memory during manufacturing or programming. This preliminary action ensures that when an emergency arises, the device already possesses the necessary authentication credential, eliminating the need for real-time password generation or manual intervention during the critical emergency response window.

Inventive Principle:
Principle #10Preliminary action

2Reliability

If the IMD connects to an open WiFi hotspot without a password, then emergency reporting is enabled, but network security is compromised

Engineering Contradiction:
Improveemergency reporting capabilityVSAvoidnetwork security risk
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The router's captive portal serves as a secure intermediary that mediates between the open WiFi network and the IMD. Instead of requiring the IMD to connect to a secure network (which would block access) or an open network (which compromises security), the portal intercepts the connection attempt and provides a controlled authentication mechanism through the token form, maintaining security while enabling access.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system changes the authentication parameter from traditional password-based authentication to token-based authentication. The token is a pre-configured credential stored in the IMD that can be easily transmitted through the web form interface. This parameter change allows for secure authentication without requiring the IMD to have complex security capabilities or real-time password management.

Inventive Principle:
Principle #35Parameter changes

3Reliability

If the router requires password authentication, then network integrity is preserved, but the IMD cannot establish connection during emergency

Engineering Contradiction:
Improveconnection reliabilityVSAvoidauthentication mechanism
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The authentication credential (token) is pre-configured in the IMD during manufacturing or programming, before the device is deployed. This preliminary action ensures that when an emergency occurs, the device immediately has the necessary authentication information stored in its memory, eliminating the need for complex real-time authentication processes during the emergency response.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The router's captive portal acts as an intermediary that simplifies the authentication process. Instead of requiring the IMD to implement complex authentication protocols or have direct access to password databases, the portal provides a simple web form interface where the pre-configured token can be entered. This intermediary layer abstracts the authentication complexity away from the IMD.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS11382159B2Temporary emergency access to arbitrary network for medical implanted device
Publication Date: 2022.07.05 INTERNATIONAL BUSINESS MACHINE CORPORATION
  • US11382159B2 patent drawing
  • US11382159B2 patent drawing
  • US11382159B2 patent drawing

AI summary

An emergency token for one-time, highly restricted, access to an arbitrary WiFi network, while maintaining full network security and integrity, is disclosed. When an IoT medical device (IMD) detects failure in the IMD, or detects the patient having a medical emergency, IMD detects local active WiFi networks, and attempts connecting to a monitoring center through one of the networks. If the network is password protected, the connection may fail. The IMD retries the connection request using factory-installed one-time use token that is only for emergency calls only. If successful, the IMD sends an emergency message to the monitoring center, which dispatches emergency responder to the location of the IMD. Monitoring center invalidates the token with the central on-line token registrar when both the IMD and the monitoring center acknowledges that the notification is successful. A person having the proper security authorization can install a new one-time use token.