Ethernet CPE Management via Wake Signal and Secure Session

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Communications service providers face challenges in managing customer premise equipment (CPE) due to security issues inherent in Ethernet communications, where open sessions increase the risk of security breaches and make it difficult to diagnose and repair problems.

Innovation Solution

A system and method that establishes a secure management session with CPE devices using a wake signal, daemon logic, and extended Ethernet protocols to manage CPE devices selectively, reducing security risks and resource usage by limiting management IP addresses and signaling to only what is necessary.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If open communications sessions are used to manage Ethernet devices at customer locations, then ease of operation is improved, but security is worsened due to increased risk of security breaches

Engineering Contradiction:
Improveease of managementVSAvoidsecurity risk
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent implements dynamic session management where management sessions are established temporarily when needed and then terminated, rather than maintaining persistent open sessions. This dynamic approach allows easy operation during active management tasks while minimizing security exposure when management activities are not occurring.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The system uses periodic wake signals to activate CPE devices for management communications only when necessary, followed by session termination. This periodic activation pattern enables operational ease during scheduled management windows while reducing security risks during idle periods between management activities.

Inventive Principle:
Principle #19Periodic action

2Ease of operation

If management sessions are established with CPE devices, then ease of operation is improved, but resource consumption is worsened due to continuous IP address allocation and signaling

Engineering Contradiction:
Improvemanagement capabilityVSAvoidresource consumption
Core Design Contradiction:
Ease of operationVSLoss of energy

Solution Approach 1:

The patent implements periodic wake signals that activate CPE devices only when management communications are needed. This approach maintains full management capability during active sessions while dramatically reducing resource consumption during idle periods when devices remain dormant and IP addresses are not allocated.

Inventive Principle:
Principle #19Periodic action

Solution Approach 2:

The system dynamically allocates IP addresses and establishes management sessions only when wake signals are received and management tasks are required. This dynamic resource allocation ensures operational ease is maintained when needed while minimizing resource consumption during periods when management activities are not occurring.

Inventive Principle:
Principle #15Dynamics

3Object-affected harmful factors

If wake signals and action parameters are used to establish management sessions, then security is improved, but device complexity is worsened due to additional signaling protocols

Engineering Contradiction:
Improvesecurity vulnerabilityVSAvoidsignaling complexity
Core Design Contradiction:
Object-affected harmful factorsVSDevice complexity

Solution Approach 1:

The patent segments the communication protocol into distinct functional components: wake signals for activation, action parameters for configuration, and management sessions for operations. This segmentation organizes the signaling complexity into manageable, well-defined stages that improve security through structured authentication and communication phases.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The system performs preliminary actions by sending wake signals and action parameters before establishing full management sessions. This preliminary authentication and configuration phase ensures security is established before operational communications begin, organizing the complexity into a secure bootstrap sequence.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS10091306B2System and method for management of ethernet premise devices
Publication Date: 2018.10.02 CENTURYLINK INTELLECTUAL PROPERTY LLC
  • US10091306B2 patent drawing
  • US10091306B2 patent drawing
  • US10091306B2 patent drawing

AI summary

A system and method for managing customer premise equipment (CPE) devices. A wake signal is issued to the CPE device. Action parameters are communicated to the CPE device in response to receiving acknowledgement of the wake signal from the CPE device. A management session is established with the CPE device utilizing an address for secure communications in response to the CPE device acknowledging the action parameters. Communications are performed through the management session to perform operation, administration, and maintenance of the CPE device. The management session with the CPE device is terminated.