Gateway Device Authentication Key Generation for Secure Network Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing solutions for connecting devices to wireless local area networks, such as Wi-Fi, are either cumbersome or insecure, particularly in private networks where access management is challenging.

Innovation Solution

A method and system that uses a gateway device to establish a connection between a device and a server, transmitting authentication key requests to a master device, generating authentication keys, and initiating an authentication procedure to grant access to a private local network, utilizing protocols like EAP for secure connection setup.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If WPS push-button configuration or near field communication is used to connect a device to a wireless LAN, then the connection process is simplified, but the security of the connection is compromised

Engineering Contradiction:
Improveconnection processVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent introduces a server as an intermediary between the device and the gateway device. The server generates authentication keys and coordinates the authentication process, mediating the connection establishment to enhance security while maintaining ease of operation. This intermediary role allows complex security operations to be performed transparently without requiring direct user intervention.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent performs preliminary authentication key generation and distribution before the actual connection is established. The server generates authentication keys in advance and provides them to the gateway device, so that when the connection is needed, the authentication process can proceed smoothly without compromising security.

Inventive Principle:
Principle #10Preliminary action

2Reliability

If traditional authentication methods are used in private LANs, then network security is maintained, but the access process becomes cumbersome and time-consuming

Engineering Contradiction:
Improvenetwork securityVSAvoidaccess process
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent implements a self-service authentication mechanism where the server automatically generates authentication keys and the gateway device automatically performs authentication without requiring manual user configuration. The device can access the network by simply establishing a connection request, and the authentication happens automatically in the background, combining security with ease of operation.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

Authentication keys are generated and distributed in advance by the server before the actual connection request. This preliminary preparation of authentication credentials allows the access process to be simplified while maintaining security, as the authentication data is already ready when needed.

Inventive Principle:
Principle #10Preliminary action

3Adaptability or versatility

If a device without sophisticated user interface attempts to connect to a wireless LAN, then device compatibility is improved, but the connection setup becomes complex and difficult

Engineering Contradiction:
Improvedevice compatibilityVSAvoidconnection setup
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The server acts as an intermediary that handles the complex authentication setup on behalf of devices with limited user interfaces. The server generates and manages authentication keys, and coordinates with the gateway device, so that the device itself does not need to implement complex connection setup logic, thereby improving compatibility while reducing setup complexity.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The authentication process is made self-service through automatic key generation and exchange coordinated by the server. Devices with simple interfaces can initiate connection requests without sophisticated configuration capabilities, and the system automatically handles the authentication setup, making the process simple despite the device's limited capabilities.

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS10601824B2Provision of access to a network
Publication Date: 2020.03.24 TELIASONERA AB
  • US10601824B2 patent drawing
  • US10601824B2 patent drawing
  • US10601824B2 patent drawing

AI summary

Disclosed is a method for granting access for a device to a private local network with a gateway device. The method includes: establishing a connection over the gateway device, wherein a request for accessing the private local network is transmitted; transmitting information on the device; receiving a request for preparing a setup of an authentication procedure; generating a pair of authentication keys; providing one of the generated authentication keys to the device requesting the access to the private local network; initiating the authentication procedure; granting access to the private local network for the device in response to a successful authentication procedure. The invention also relates to a gateway device, a computer program product and a system.