Cryptographic Key Segmentation for Home Network Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In home automation networks, devices with limited processing power and memory struggle to implement processor-intensive cryptographic protocols, necessitating an alternative method for secure key exchange that can function over both secure and non-secure channels.

Innovation Solution

A cryptographic key is divided into portions, with the first portion sent over a secure channel and subsequent portions displayed on a limited output device for user input at a more capable device, allowing secure communication by visually rendering the key information and entering it into a user device.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If symmetric cryptographic protocols are used, then security is improved, but device complexity increases due to key management requirements

Engineering Contradiction:
ImprovesecurityVSAvoidkey management
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The cryptographic key is divided into multiple portions (first portion and second portion). The first portion is transmitted through a secure channel, while the second portion is displayed on a limited output device. This segmentation reduces the security requirements for each individual transmission channel while maintaining overall security.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

A limited output device serves as an intermediary to display the second portion of the cryptographic key. This intermediary component enables key distribution without requiring the transmitting device to have high processing capabilities or secure display mechanisms, thus reducing device complexity.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If public key cryptography is implemented, then security is improved, but processing power requirements increase beyond device capabilities

Engineering Contradiction:
ImprovesecurityVSAvoidprocessing power
Core Design Contradiction:
ReliabilityVSPower

Solution Approach 1:

The cryptographic key distribution process is segmented into multiple steps: transmitting part of the key through a secure channel and displaying the remaining portion on a limited output device. This avoids the need for computationally intensive public key cryptography while maintaining security.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent uses simple, low-cost transmission methods for key portions that do not require sophisticated cryptographic processing. The first portion is transmitted through a secure channel using basic encryption, and the second portion is displayed temporarily, avoiding the need for resource-intensive public key infrastructure.

Inventive Principle:
Principle #27Cheap short-living objects (Disposable)

3Ease of operation

If cryptographic keys are transmitted over non-secure channels, then ease of operation is improved, but vulnerability to eavesdropping increases

Engineering Contradiction:
Improvekey transmissionVSAvoideavesdropping vulnerability
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The cryptographic key is divided into portions that are transmitted through different channels. The first portion uses a secure channel while the second portion is displayed on a limited output device for manual entry or alternative transmission, reducing the risk associated with any single channel.

Inventive Principle:
Principle #1Segmentation

Data Source

PatentUS9306742B1Communicating a secret
Publication Date: 2016.04.05 GOOGLE LLC
  • US9306742B1 patent drawing
  • US9306742B1 patent drawing
  • US9306742B1 patent drawing

AI summary

A first portion of a cryptographic key can be conveyed through a secure channel to a device that can interact with a home network. After the first portion is received, a prompt can be sent by the recipient of the portion through a non-secure channel to the sender of the portion to send a second portion of the key. The cryptographic key can be constituted from the received portions and used by the device to secure communications with home network.