IoT Filtering Server Access Control via Whitelist and Blacklist

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The Internet of Things (IoT) devices are susceptible to hacking, which can compromise their operation by acquiring malware and connecting to unauthorized locations, leading to security breaches and operational disruptions.

Innovation Solution

Implementing a filtering system and process within a wireless network that uses a filtering server to receive identification of IoT devices from administrators, apply filtering instructions, and manage access to internet resources through whitelists, blacklists, and content filtering categories, thereby controlling and securing IoT device communications.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If IoT objects are connected to the network without filtering, then network accessibility and ease of operation are improved, but security vulnerabilities and hacking susceptibility increase

Engineering Contradiction:
Improvenetwork accessibilityVSAvoidhacking susceptibility
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent introduces a network filtering system that acts as an intermediary between IoT objects and the network. The filtering server receives network requests from IoT objects, compares them against filtering instructions (whitelist, blacklist, categories), and selectively permits or blocks access. This intermediary layer maintains network accessibility for authorized devices while blocking harmful connections, thus resolving the contradiction between ease of operation and security protection.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Object-affected harmful factors

If filtering instructions are implemented to block unauthorized access, then security is improved, but network connectivity and operational efficiency may be reduced

Engineering Contradiction:
Improvesecurity protectionVSAvoidnetwork connectivity efficiency
Core Design Contradiction:
Object-affected harmful factorsVSProductivity

Solution Approach 1:

The filtering instructions are configured in advance before network operations begin. Administrators pre-define whitelist entries, blacklist entries, and category-based filtering rules that automatically apply to all IoT objects. This preliminary configuration allows the filtering server to make rapid automated decisions without real-time human intervention, maintaining security protection while minimizing delays to network connectivity and operational efficiency.

Inventive Principle:
Principle #10Preliminary action

3Object-affected harmful factors

If comprehensive filtering instructions are applied to all IoT objects, then hacking protection is enhanced, but system complexity and administrative overhead increase

Engineering Contradiction:
Improvehacking protectionVSAvoidsystem complexity
Core Design Contradiction:
Object-affected harmful factorsVSDevice complexity

Solution Approach 1:

The filtering server implements a universal filtering mechanism that handles multiple types of filtering instructions (whitelist, blacklist, category-based filtering) through a single system. This multi-functional approach consolidates what would otherwise require separate security systems into one unified platform, enhancing hacking protection across all IoT objects while managing system complexity through centralized control and standardized processing procedures.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS20220029960A1Internet of Things System and Process Implementing a Filter
Publication Date: 2022.01.27 TRACFONE WIRELESS
  • US20220029960A1 patent drawing
  • US20220029960A1 patent drawing
  • US20220029960A1 patent drawing

AI summary

A process of filtering a wireless service provided to at least one wireless device from a wireless network includes receiving identification of the at least one wireless device in a filtering server from an administrator and receiving filtering instructions from the administrator in the filtering server. The process further including receiving a request for an internet resource from at least one wireless device, comparing the request for the internet resource to the filtering instructions to determine whether the requested internet resource is allowable in view of the filtering instructions or not allowed based on the filtering instructions. The disclosure also provides a system as well