Encryption Key Distribution via Secure Cellular Link for WLAN Data Offloading

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Wireless communication systems face security issues due to unencrypted data transmission over WLAN air interface protocols, which can compromise data privacy, especially when offloading data from secure cellular networks with limited bandwidth.

Innovation Solution

A secure communication link under an LTE air interface protocol is used to transmit an encryption key to user equipment (UE), which then encrypts and decrypts data transmitted over an unsecure Wi-Fi link, ensuring secure data offloading without significantly increasing the secure communication link's utilization.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If data is transmitted over WLAN air interface protocols to offload from cellular networks, then bandwidth utilization is improved, but security is worsened due to unencrypted transmission

Engineering Contradiction:
Improvebandwidth utilizationVSAvoidsecurity
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The patent applies preliminary action by establishing a secure communication link through cellular network before data transmission, and pre-sharing encryption keys between the access point and user equipment. This preliminary security setup occurs before the actual data offloading, allowing unencrypted WLAN transmission while maintaining security through pre-established encryption mechanisms.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent introduces an intermediary approach by using encryption keys as a mediator between the secure cellular link and the unsecure WLAN transmission. The cellular network serves as an intermediary channel for key distribution, while the encryption algorithm acts as a mediator to protect data during WLAN transmission, thus decoupling the security requirements from the transmission medium.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If encryption keys are transmitted over secure cellular links to secure WLAN data transmission, then security is improved, but cellular link utilization increases

Engineering Contradiction:
ImprovesecurityVSAvoidcellular link utilization
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The patent extracts the security function from the data transmission channel by separating encryption key transmission from bulk data transmission. Only essential security parameters (encryption keys) are transmitted over the secure cellular link, while the majority of data traffic is offloaded to WLAN. This extraction minimizes cellular link utilization while maintaining security.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent applies partial action by transmitting only the necessary minimum amount of data (encryption keys) over the secure cellular link, rather than transmitting all data. This partial transmission approach provides sufficient security protection while keeping cellular link utilization low, avoiding the excessive use of secure resources.

Inventive Principle:
Principle #16Partial or excessive action

Data Source

PatentUS9106421B1Securing communications over a first communication link with encryption managed by a second communication link
Publication Date: 2015.08.11 SPRINT SPECTRUM LLC
  • US9106421B1 patent drawing
  • US9106421B1 patent drawing
  • US9106421B1 patent drawing

AI summary

Disclosed are a method, apparatus, and system for securing a communication link between a user equipment device (UE) and a communication network. A first wireless communication link is established between the UE and the communication network. The first wireless communication link is an unsecured communication link and is established under a first air interface protocol. A second wireless communication link is established between the UE and the communication network. The second wireless communication link is a secured communication link and is established under a second air interface protocol. An encryption key is transmitted to the UE over the second wireless communication link, the UE encrypts data using the encryption key, and the encrypted data is communicated over the first wireless communication link from the UE to the communication network.