Home Network Device Authentication Using Hash-Based Key Generation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional network security systems require additional expenses for unique authentication and server authentication certificates for home network devices, making them impractical and costly for manufacturers and users.

Innovation Solution

An authentication method for home networks that generates an authentication key from unique device information, allowing the home server to authenticate devices with minimal operations and efficient management, using a hash function to verify device authenticity without the need for additional certificates.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If conventional cryptographic algorithms (symmetric key, public key) are used for device authentication, then security requirements (confidentiality, integrity, authentication, non-repudiation) are satisfied, but additional expenses for unique authentication certificates are required

Engineering Contradiction:
Improvesecurity guaranteeVSAvoidcost of authentication certificates
Core Design Contradiction:
ReliabilityVSEase of manufacture

Solution Approach 1:

The patent extracts the essential authentication function from complex certificate-based cryptographic systems. Instead of implementing full public key infrastructure with certificates, the invention uses a simplified hash-based authentication mechanism that derives authentication values directly from device information, eliminating the need for expensive authentication certificates while maintaining security

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent replaces expensive, long-term authentication certificates with a lightweight, computationally-derived authentication value based on hash functions. This authentication value is generated on-demand from device information rather than relying on pre-issued certificates, significantly reducing manufacturing costs and complexity

Inventive Principle:
Principle #27Cheap short-living objects (Disposable)

2Reliability

If multiple home network devices are authenticated using conventional certificate-based methods, then each device can be securely authenticated, but the operational complexity and management burden increase significantly

Engineering Contradiction:
Improvedevice authentication securityVSAvoidauthentication management complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent creates a universal authentication mechanism that works across all home network devices using the same hash-based approach. The home server can authenticate any device using the same authentication value generation process, providing multi-functionality without requiring device-specific certificate management, thereby reducing operational complexity while maintaining security

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The patent changes the authentication parameter from certificate-based verification to hash-based value verification. By transforming the authentication mechanism from checking cryptographic certificates to comparing hash-derived authentication values, the system simplifies management operations while maintaining security guarantees for multiple devices

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentUS7844818B2Authentication apparatus and method for home network devices
Publication Date: 2010.11.30 SAMSUNG ELECTRONICS CO LTD
  • US7844818B2 patent drawing
  • US7844818B2 patent drawing
  • US7844818B2 patent drawing

AI summary

An authentication method in a home network having at least one communicatable device and a home server which controls the devices, in which the home server authenticates the devices forming the home network. The home server generates the authentication key using the stored unique information of the home network device, and sends the generated authentication key together with the unique information to the device. The home server compares the operation value with respect to the generated authentication key and the unique information with the value received from the device, and completes the authentication when the two values are the same.