Local OTA Firmware Update via Remote Control Proxy

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Embedded systems in devices often face challenges with software updates, particularly when they cannot establish a secure connection with the image provider, leading to issues with OTA updates and firmware maintenance, especially due to expired connection credentials or unforeseen problems caused by software updates.

Innovation Solution

A remote control application enables local OTA updates by establishing a direct LAN session with the embedded system, operating as an access point if needed, and using a WAN accessible service to deliver encrypted firmware updates over an unsecured connection, ensuring secure connectivity is restored without physical access to the device.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If secure communication link is used for OTA updates, then security is improved, but update delivery fails when connection credentials expire or secure connection problems occur

Engineering Contradiction:
ImprovesecurityVSAvoidupdate delivery capability
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent introduces a remote control application as an intermediary device that mediates between the image provider and the embedded system. The remote control application receives encrypted firmware images from the image provider and delivers them to the embedded system through a local area network connection, bypassing the need for the embedded system to establish secure connections with the image provider directly. This resolves the contradiction by maintaining security through encryption while enabling update delivery through the intermediary's network connection.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If direct WAN connection is required for OTA updates, then security is maintained, but updates cannot be delivered when device is isolated or cannot connect to WAN

Engineering Contradiction:
ImprovesecurityVSAvoidupdate accessibility
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The remote control application serves as a mediator that connects to the embedded system via local area network (such as Wi-Fi direct or hotspot) instead of requiring WAN connection. The intermediary device handles the communication with the image provider over WAN and delivers updates locally, enabling updates to be received even when the embedded system is isolated from the WAN or cannot establish secure connections directly.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Reliability

If physical access to device is required for firmware updates, then security is ensured, but maintenance complexity and time increase

Engineering Contradiction:
ImprovesecurityVSAvoidfirmware maintenance
Core Design Contradiction:
ReliabilityVSEase of repair

Solution Approach 1:

The patent replaces the mechanical/physical access requirement with an electronic/digital solution. Instead of requiring physical connection through USB or other interfaces, the system uses wireless communication protocols (local area network connections) to transfer firmware updates. The encrypted images are delivered over the air through the remote control application, eliminating the need for physical access while maintaining security through encryption and authentication mechanisms.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

4Reliability

If secure connection credentials are embedded in software, then authentication is enabled, but connection fails after credential expiration

Engineering Contradiction:
ImproveauthenticationVSAvoidconnection validity period
Core Design Contradiction:
ReliabilityVSDuration of action of stationary object

Solution Approach 1:

The remote control application as an intermediary handles the authentication and connection management. The intermediary device maintains its own valid credentials with the image provider and uses these to establish connections for receiving updates. This separates the embedded system from direct authentication requirements, allowing updates to be received even when the embedded system's embedded credentials have expired, as the intermediary handles the authentication process.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS10990376B2Local over the air update of an embedded system
Publication Date: 2021.04.27 AYLA NETWORKS INC
  • US10990376B2 patent drawing
  • US10990376B2 patent drawing
  • US10990376B2 patent drawing

AI summary

A processing device executing a wide area network (WAN) accessible service receive an encrypted digital image comprising a firmware update for an embedded system of a device having a specific device serial number (DSN). The processing device additionally receives device related information from a computing device, wherein the device related information comprises the DSN of the device comprising the embedded system and a version number of a current firmware component installed on the embedded system. The processing device determines, using the device related information, that the encrypted digital image for the device is available. The processing device then provides the encrypted digital image to the computing device for use by the computing device to update a firmware version of the embedded system.