Automated Key Distribution via Identity Service

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Wireless networks face security and privacy issues due to vulnerabilities in key distribution, as existing symmetric key encryption techniques like WEP require manual configuration and key changes, leading to increased risk of key compromise over time.

Innovation Solution

An identity service manages and provisions secure key distribution across network participants, dynamically generating, revoking, and distributing keys to maintain key entropy and ensure secure communication, eliminating the need for manual configuration and reducing the risk of key compromise.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If symmetric key encryption techniques like WEP are used with manual key configuration, then ease of operation is improved, but reliability deteriorates due to increased risk of key compromise over time

Engineering Contradiction:
Improvemanual key configurationVSAvoidkey security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The system enables automated key management where the network infrastructure automatically generates, distributes, and rotates encryption keys without manual intervention. Each wireless client receives unique keys automatically provisioned by the network, eliminating the need for users to manually configure keys while maintaining security through automated key lifecycle management

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent implements dynamic key rotation where encryption keys are automatically changed at predetermined intervals or after a certain amount of data transmission. This dynamic approach ensures that even if a key is compromised, the window of vulnerability is limited, and keys are automatically updated without requiring manual reconfiguration

Inventive Principle:
Principle #15Dynamics

2Device complexity

If keys are manually configured in each device, then device complexity is reduced, but loss of time increases when key changes are required

Engineering Contradiction:
Improvekey managementVSAvoidkey update time
Core Design Contradiction:
Device complexityVSLoss of time

Solution Approach 1:

The patent introduces a key management server as an intermediary that centralizes key generation, storage, and distribution. This server automatically manages key lifecycles and provisions keys to wireless clients as needed, eliminating the need for manual key configuration in each device while enabling rapid key updates through automated distribution channels

Inventive Principle:
Principle #24Intermediary (Mediator)

3Productivity

If encryption keys are used for extended periods to maintain network operation, then productivity is improved, but reliability deteriorates as the risk of key breaking increases

Engineering Contradiction:
Improvenetwork continuityVSAvoidkey entropy
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The system implements periodic key rotation where encryption keys are automatically renewed at predetermined time intervals or after a specified amount of data is transmitted. This periodic action maintains network continuity by ensuring seamless key transitions while preserving security by limiting the exposure window of each key through automatic, scheduled updates

Inventive Principle:
Principle #19Periodic action

Data Source

PatentUS7734051B2Key distribution
Publication Date: 2010.06.08 EMC IP HLDG CO LLC
  • US7734051B2 patent drawing
  • US7734051B2 patent drawing
  • US7734051B2 patent drawing

AI summary

Methods and systems are provided for trusted key distribution. A key distribution or an identity service acts as an intermediary between participants to a secure network. The service provisions and manages the distribution of keys. The keys are used for encrypting communications occurring within the secure network.