IoT Terminal Admission Control Using Industrial Internet Identifiers
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The increasing number of IoT terminals accessing networks poses significant security risks, necessitating a method to control network access to enhance security.
Innovation Solution
A method involving obtaining an industrial internet identifier of an IoT terminal, determining a network admission policy based on its attributes, and controlling access using this policy to reduce security risks.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If IoT terminals are allowed to access the network freely, then network coverage and usability are improved, but network security risks increase
Solution Approach 1:
The patent implements preliminary action by establishing network admission policies before IoT terminals access the network. The access control device evaluates terminal information (device attributes, security capabilities, service requirements) in advance and determines whether to allow access, what services are permitted, and under what conditions. This pre-evaluation mechanism prevents unauthorized or risky terminals from accessing the network, thereby maintaining security while enabling legitimate access.
2Reliability
If network admission control is implemented for IoT terminals, then network security is improved, but access efficiency and user experience may deteriorate
Solution Approach 1:
The patent applies segmentation by dividing the network admission control process into distinct functional modules: terminal information acquisition, information evaluation, policy determination, and access control execution. The access control device separates different evaluation dimensions (device attributes, security capabilities, service requirements) and processes them independently. This modular approach streamlines the control flow, reduces processing complexity, and improves access efficiency while maintaining comprehensive security checks.
3Measurement precision
If comprehensive terminal information is collected for policy determination, then policy accuracy is improved, but system complexity and processing overhead increase
Solution Approach 1:
The patent extracts only the essential and relevant terminal information needed for accurate policy determination, rather than collecting all possible terminal data. The access control device focuses on extracting key attributes (device type, security capabilities, service requirements) that directly impact admission decisions. This selective extraction reduces information processing overhead and system complexity while maintaining sufficient accuracy for effective policy determination.
Data Source
Figure 1~2
Figure 3~4
Figure 5
AI summary
Embodiments of this application disclose a method for controlling a terminal to access a network, a device, a system, an apparatus, and a storage medium, and pertain to the field of internet of things. In embodiments of this application, because information about an IoT terminal indicated by an industrial internet identifier of the IoT terminal is accurate, a network admission policy of the IoT terminal that is determined based on the information about the IoT terminal indicated by the industrial internet identifier of the IoT terminal is also accurate. Based on this, access of the terminal is controlled based on the network admission policy, so that a network security risk caused when the IoT terminal accesses a network can be reduced, and security of accessing the network by the IoT terminal can be improved.