Networked Device Self-Configuration via Common Firmware Key Encryption

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional methods for configuring networked devices to prevent unauthorized access require sensitive information to be handled by personnel, which can lead to security compromises, especially when less trained individuals are involved.

Innovation Solution

Networked devices are configured to use a common firmware key for encrypting and decrypting configuration data, allowing them to self-configure without exposing sensitive information to humans, thus enabling secure setup even by less trained personnel.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If conventional security methods (WPA PSK, WPA2 Enterprise) are used requiring manual handling of sensitive data, then network security can be maintained, but the risk of security compromise increases when less trained personnel are involved

Engineering Contradiction:
Improvenetwork securityVSAvoiddevice configuration
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The networked device performs self-configuration by automatically encrypting configuration data with its own firmware key and decrypting received encrypted data using its firmware key, eliminating the need for manual handling of sensitive configuration information by personnel

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

Encrypted configuration data serves as an intermediary that transfers necessary configuration information between devices without exposing the actual sensitive data (passwords, keys), allowing configuration without direct human handling of sensitive information

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If sensitive configuration data is distributed in plain text for device setup, then ease of configuration is improved, but security is compromised due to potential exposure to unauthorized personnel

Engineering Contradiction:
Improveconfiguration processVSAvoidinformation exposure
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

Encrypted configuration data acts as an intermediary that conveys necessary setup information without exposing the actual sensitive data, allowing the configuration process to proceed while maintaining security

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

Each networked device uses its own unique firmware key for encryption and decryption operations, creating localized security contexts where only the intended device can access its specific configuration data

Inventive Principle:
Principle #3Local quality

Data Source

PatentUS11818252B2Configuring networked devices sharing a common firmware key
Publication Date: 2023.11.14 TOSHIBA GLOBAL COMMERCE SOLUTIONS HLDG
  • US11818252B2 patent drawing
  • US11818252B2 patent drawing
  • US11818252B2 patent drawing

AI summary

Networked devices in a communications network share a common firmware key. Using the common firmware key, one networked device can encrypt configuration data it uses to operate in the network for distribution to other networked devices of the same or similar type. The networked devices that receive the encrypted configuration data then use the common firmware key to decrypt the encrypted configuration data, and using the decrypted configuration data, self-configure to operate on the network. This allows for the secure distribution of configuration data, as well as the self-configuration of networked devices without exposing the sensitive data needed for such configuration to a human.