IoT Certificate Issuance via Terminal Relay for Edge Device Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Issuing certificates for edge devices in IoT systems is time-consuming and inefficient, particularly for user-side devices requiring public key encryption for secure communication.

Innovation Solution

A communication system involving a user terminal, certificate authority, and edge device that automates the issuance and registration of public key certificates, including a request generation, verification, and billing process to facilitate secure communication between edge devices and server devices.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If certificates are issued manually on the user side for edge devices, then security is guaranteed through public key encryption, but it takes time and effort

Engineering Contradiction:
ImprovesecurityVSAvoidtime and effort
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

A certificate authority server is introduced as an intermediary between edge devices and terminal devices. The certificate authority automatically issues certificates in response to requests from terminal devices, eliminating the need for manual certificate issuance by users while maintaining security through automated verification and issuance processes

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If certificates are issued manually by users, then control over the process is maintained, but the process becomes complex and time-consuming

Engineering Contradiction:
Improveease of certificate issuanceVSAvoidprocess complexity
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

The system enables automated self-service certificate issuance where terminal devices automatically send certificate signing requests to the certificate authority, which then automatically verifies and issues certificates without requiring user intervention. This simplifies the operation for users while maintaining proper verification controls through the automated system

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS20260019280A1Communication system, certificate authority, and method
Publication Date: 2026.01.15 KK TOSHIBA
  • US20260019280A1 patent drawing
  • US20260019280A1 patent drawing
  • US20260019280A1 patent drawing

AI summary

A communication system includes a communication device, a terminal device, and a certificate authority. The communication device transmits a certificate signing request to the terminal device, the certificate signing request requesting issuance of a certificate used by the communication device to execute communication with the first server device. The terminal device transmits the certificate signing request transmitted from the communication device to the certificate authority. The certificate authority issues a certificate in response to the certificate signing request transmitted from the terminal device.