IoT Certificate Issuance via Terminal Relay for Edge Device Security
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Issuing certificates for edge devices in IoT systems is time-consuming and inefficient, particularly for user-side devices requiring public key encryption for secure communication.
Innovation Solution
A communication system involving a user terminal, certificate authority, and edge device that automates the issuance and registration of public key certificates, including a request generation, verification, and billing process to facilitate secure communication between edge devices and server devices.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If certificates are issued manually on the user side for edge devices, then security is guaranteed through public key encryption, but it takes time and effort
Solution Approach 1:
A certificate authority server is introduced as an intermediary between edge devices and terminal devices. The certificate authority automatically issues certificates in response to requests from terminal devices, eliminating the need for manual certificate issuance by users while maintaining security through automated verification and issuance processes
2Ease of operation
If certificates are issued manually by users, then control over the process is maintained, but the process becomes complex and time-consuming
Solution Approach 1:
The system enables automated self-service certificate issuance where terminal devices automatically send certificate signing requests to the certificate authority, which then automatically verifies and issues certificates without requiring user intervention. This simplifies the operation for users while maintaining proper verification controls through the automated system
Data Source
AI summary
A communication system includes a communication device, a terminal device, and a certificate authority. The communication device transmits a certificate signing request to the terminal device, the certificate signing request requesting issuance of a certificate used by the communication device to execute communication with the first server device. The terminal device transmits the certificate signing request transmitted from the communication device to the certificate authority. The certificate authority issues a certificate in response to the certificate signing request transmitted from the terminal device.


