eSIM Security Auditing for Power Collection Network Connections

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing power collection systems lack secure network connections between master control terminals and business master stations, as they rely on unconditional remote communication modules, which do not guarantee data security, risking data leakage.

Innovation Solution

An embedded universal integrated circuit card (eSIM) module performs security auditing on network connection requests based on pre-stored rules, allowing or prohibiting connections, and records and uploads information on illegal requests to a security server.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Speed

If unconditional connection is implemented, then connection speed is improved, but data security deteriorates

Engineering Contradiction:
Improveconnection speedVSAvoiddata security
Core Design Contradiction:
SpeedVSReliability

Solution Approach 1:

The system performs preliminary security auditing on network connection requests before allowing connections. The eSIM module checks authentication information, device identifiers, and connection parameters in advance to determine whether to permit the connection, preventing unauthorized access before it occurs.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The eSIM module acts as an intermediary between the master control terminal and the business master station. It receives connection requests, performs security verification, and decides whether to allow connections, serving as a security gatekeeper that maintains both security and connection functionality.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If security auditing is implemented, then data security is improved, but device complexity increases

Engineering Contradiction:
Improvedata securityVSAvoiddevice complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The eSIM module performs multiple functions including authentication verification, device identification checking, connection parameter validation, and security decision-making. By consolidating these security functions into a single multi-functional module, the system improves security without proportionally increasing overall device complexity.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The eSIM module autonomously performs security auditing operations using pre-stored auditing rules and criteria. It independently evaluates connection requests, makes security decisions, and manages its own authentication processes without requiring external intervention for each connection event.

Inventive Principle:
Principle #25Self-service

3Ease of manufacture

If existing hardware is maintained, then manufacturing cost is reduced, but security capability is limited

Engineering Contradiction:
Improvemanufacturing costVSAvoidsecurity capability
Core Design Contradiction:
Ease of manufactureVSReliability

Solution Approach 1:

The system enhances security by changing operational parameters rather than hardware architecture. The eSIM module implements new authentication parameters, verification criteria, and decision-making logic that transform the security capabilities of existing hardware components without requiring complete hardware replacement.

Inventive Principle:
Principle #35Parameter changes

Solution Approach 2:

The patent replaces physical hardware modifications with software-based security auditing mechanisms. Instead of adding complex hardware security modules, the system uses firmware or software running on the eSIM module to perform security functions, reducing manufacturing costs while maintaining security capabilities.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Data Source

PatentUS11184773B2Security auditing system and method
Publication Date: 2021.11.23 BEIJING SMARTCHIP MICROELECTRONICS TECHNOLOGY CO LTD
  • US11184773B2 patent drawing
  • US11184773B2 patent drawing
  • US11184773B2 patent drawing

AI summary

Disclosed in the embodiments of the present invention are a security auditing system and a method for same. The security auditing system comprises an eSIM module. The eSIM module is configured to: on the basis of pre-stored auditing rules, perform a security check on each received network connection request; if the security check is passed, determine said network connection request to be a legitimate request and allow the main control terminal that sent the network connection request to perform mobile network connection; and if the security check is not passed, determine the network connection request to be an illegitimate request and prohibit the main control terminal that sent the network connection request from performing mobile network connection.