eSIM Onboarding Server Automates Enterprise Network Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional network onboarding processes for both headed and headless devices in enterprise networks are complex and inefficient, particularly for users with little experience, and often require manual intervention, including multiple steps and frequent password updates.

Innovation Solution

The implementation of an embedded Subscriber Identification Module (eSIM) with onboarding logic in an Online Sign-Up (OSU) server simplifies the onboarding process by obtaining a unique identifier, validating the device, and providing a unique credential for access to the enterprise network, allowing automated access and reducing the need for manual configuration.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If conventional network onboarding processes are used for headed and headless devices, then network access can be obtained, but the process becomes complex and inefficient requiring manual intervention and multiple steps

Engineering Contradiction:
Improveonboarding process simplicityVSAvoidonboarding process complexity
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

The system enables automated self-service onboarding where devices automatically obtain network credentials through eSIM provisioning. The server autonomously validates devices using eSIM identifiers and provisions credentials without requiring manual user configuration or administrative intervention, thereby simplifying the onboarding process while maintaining security.

Inventive Principle:
Principle #25Self-service

2Reliability

If manual intervention is used in the onboarding process, then device validation and credential provisioning can be performed securely, but administrative burden increases and efficiency decreases

Engineering Contradiction:
Improvedevice validation securityVSAvoidonboarding efficiency
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The patent replaces manual administrative operations with an automated server-based system that uses eSIM technology. The server automatically validates devices through eSIM identifier verification and provisions network credentials through automated workflows, eliminating the need for manual administrative intervention while maintaining secure validation processes.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

3Reliability

If frequent password updates are required in conventional onboarding, then network security is maintained, but user complexity increases and operational burden grows

Engineering Contradiction:
Improvenetwork securityVSAvoiduser operational complexity
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system uses eSIM technology to create a secure digital copy of network credentials that is embedded in the device. Instead of requiring users to manage and frequently update passwords, the eSIM stores network access information securely and automatically, eliminating password management complexity while maintaining network security through the embedded credential system.

Inventive Principle:
Principle #26Copying

Data Source

PatentUS11006266B2Onboarding device using embedded subscriber identification module
Publication Date: 2021.05.11 CISCO TECHNOLOGY INC
  • US11006266B2 patent drawing
  • US11006266B2 patent drawing
  • US11006266B2 patent drawing

AI summary

In one example, a server obtains, from a device having an embedded Subscriber Identification Module (eSIM), a unique identifier of the eSIM. The server validates the device based on the unique identifier of the eSIM. The server provides, to the device, a unique credential for a profile of the eSIM. The profile of the eSIM corresponds to a network of an enterprise. The server provides, to a credential database, the unique credential for the profile of the eSIM. The credential database including the unique credential for the profile of the eSIM indicates that the device is permitted to access the network of the enterprise.