IoT Device Management via DNS Subdomain Segmentation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Legacy DNS and SSL certificate management systems face challenges in securely and cost-effectively scaling Internet-connected devices due to limitations in wildcard handling, leading to difficulties in efficiently mapping and managing a large number of devices connected to the Internet, and in providing secure device identification and authentication.

Innovation Solution

The implementation of a method and system for deploying and maintaining Internet-connected networked devices, including advanced DNS processing techniques, secure device identification, and authentication protocols, such as multi-server fractional subdomain DNS protocols and direct map proxy systems, to enhance scalability and security.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If wildcard DNS and SSL certificate management systems are used, then device management is simplified, but scalability and security are compromised when managing large numbers of Internet-connected devices

Engineering Contradiction:
Improvedevice managementVSAvoidsecurity and authentication
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent segments wildcard certificate management into individual device-specific certificates, allowing each device to have its own secure authentication credentials while maintaining centralized management through the DNS infrastructure. This resolves the contradiction by sacrificing the simplicity of wildcard management to achieve both scalability and security.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces an intermediary authentication mechanism between the DNS system and individual devices, using structured subdomain naming conventions that enable automated authentication and identification. This intermediary layer maintains security while allowing scalable device management.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of manufacture

If traditional DNS systems are used, then implementation is straightforward, but efficiency and scalability are limited when mapping large numbers of devices

Engineering Contradiction:
Improvesystem implementationVSAvoiddevice mapping efficiency
Core Design Contradiction:
Ease of manufactureVSProductivity

Solution Approach 1:

The patent implements dynamic DNS record structures that automatically adapt to device connections and disconnections, enabling efficient mapping of large numbers of devices without manual intervention. The system dynamically creates, updates, and removes device-specific DNS records based on real-time device status.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The patent adds structural dimensions to DNS subdomain naming conventions, organizing devices hierarchically by type, location, and identifier. This multi-dimensional structuring enables efficient routing and management of large device populations while maintaining straightforward implementation through standard DNS protocols.

Inventive Principle:
Principle #17Another dimension (Dimensionality change)

Data Source

PatentUS10637724B2Managing network connected devices
Publication Date: 2020.04.28 REMOT3 IT INC
  • US10637724B2 patent drawing
  • US10637724B2 patent drawing
  • US10637724B2 patent drawing

AI summary

Methods, systems, and computer program products for managing Internet of Things (IoT) network-connected devices.