Gateway Apparatus for HEMS Device Code Translation
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Home energy management systems (HEMS) face increased security risks when devices compliant and non-compliant with a new security protocol coexist, as non-compliant devices can be exploited for attacks.
Innovation Solution
A gateway apparatus mediates communication between compliant and non-compliant devices by determining new identification codes, mapping original to new codes, and using authentication and encryption to facilitate secure data transfer, allowing non-compliant devices to connect to a security-compliant network while maintaining security.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If non-compliant devices are allowed to connect to the HEMS network, then device compatibility and system adaptability are improved, but security risks increase due to potential attacks using non-compliant devices as springboards
Solution Approach 1:
The gateway apparatus serves as an intermediary between compliant and non-compliant devices. It translates identification codes and mediates communication, allowing non-compliant devices to access the HEMS network through the gateway without direct exposure to the secure network environment, thus maintaining security while enabling compatibility
Solution Approach 2:
The system segments devices into compliant and non-compliant groups, with the gateway acting as a separate intermediary layer. This segmentation allows different security protocols to be applied to different device groups while maintaining overall system security through the gateway's translation and mediation functions
2Object-affected harmful factors
If a new security protocol is introduced to improve security, then security risks are reduced, but device compatibility decreases as non-compliant devices cannot directly participate
Solution Approach 1:
The gateway apparatus serves as an intermediary between compliant and non-compliant devices. It translates identification codes and mediates communication, allowing non-compliant devices to access the HEMS network through the gateway without direct exposure to the secure network environment, thus maintaining security while enabling compatibility
Solution Approach 2:
The gateway changes the identification code parameter from the original format used by non-compliant devices to a new format compliant with the security protocol. This parameter transformation allows non-compliant devices to communicate securely without requiring hardware modifications or protocol upgrades
3Object-affected harmful factors
If identification codes are translated and mapped by the gateway, then secure communication is enabled for non-compliant devices, but system complexity increases due to additional translation and mapping mechanisms
Solution Approach 1:
The gateway apparatus serves as an intermediary between compliant and non-compliant devices. It translates identification codes and mediates communication, allowing non-compliant devices to access the HEMS network through the gateway without direct exposure to the secure network environment, thus maintaining security while enabling compatibility
Solution Approach 2:
The gateway creates a mapping copy between original identification codes and new identification codes. This copying mechanism allows the system to maintain both the original device identities and the security-compliant identifiers without modifying the actual devices, reducing complexity by using virtual mappings rather than physical modifications
Data Source
AI summary
An identification code (referred to as “original identification code”) in a predetermined application is preset in each of one or more devices not compliant to a predetermined security protocol. A GW determines a new identification code of each of the one or more devices and notifies an HEMS controller of the new identification code. The GW receives a message including the new identification code of a particular device (referred to as “destination device”) and encrypted according to the security protocol. The GW decodes a received message according to the security protocol, converts the new identification code of the destination device included in a decoded message into the original identification code of the destination device, and transfers a converted message to the destination device.


