Network Device Selective Synchronization for Wireless Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing network authentication methods for wireless devices are complex and prone to security risks, especially when using public pre-shared keys, which can lead to unauthorized access and increased administrative burdens during onboarding of multiple devices.

Innovation Solution

The use of unique pre-shared keys assigned to each wireless device for authentication, along with a network device selective synchronization system that selectively synchronizes key data to reduce storage and computational loads, allowing for efficient and secure network access.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If public pre-shared keys are used for network authentication, then network access is simplified, but security is compromised and administrative burden increases

Engineering Contradiction:
Improvenetwork access simplicityVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent segments the authentication system by introducing a dedicated authentication server that handles key management and verification, separating this function from network devices. This allows public pre-shared keys to be used for simple client authentication while the server manages security complexities, resolving the contradiction between ease of operation and security.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The authentication server acts as an intermediary between clients and network devices. Clients use simple public pre-shared keys to authenticate with the server, which then handles secure key distribution and verification with network devices, eliminating the need for clients to manage complex cryptographic operations while maintaining security.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If all network devices are synchronized with key data for every wireless device, then authentication capability is comprehensive, but storage and computational loads increase

Engineering Contradiction:
Improveauthentication capabilityVSAvoidstorage load
Core Design Contradiction:
Adaptability or versatilityVSQuantity of substance

Solution Approach 1:

The patent extracts the comprehensive key data storage function from individual network devices and centralizes it in the authentication server. Network devices only store minimal authentication information needed for their specific context, while the server maintains the complete key database, reducing storage requirements across the network while preserving full authentication capability.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent merges the key management functions of multiple network devices into a centralized authentication server. This consolidation eliminates redundant key data storage across devices and centralizes computational operations for key verification, reducing overall storage and processing loads while maintaining comprehensive authentication capability.

Inventive Principle:
Principle #5Merging (Combining)

3Reliability

If traditional authentication methods are used, then network devices can authenticate wireless devices, but the process is complex and prone to security risks

Engineering Contradiction:
Improveauthentication securityVSAvoidauthentication process complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The authentication server serves as an intermediary that simplifies the authentication process for network devices. Instead of implementing complex authentication logic in each device, the server handles key management, verification, and distribution, reducing device complexity while improving security through centralized control and consistent authentication policies.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS10321306B2Network device selective synchronization
Publication Date: 2019.06.11 EXTREME NETWORKS INC
  • US10321306B2 patent drawing
  • US10321306B2 patent drawing
  • US10321306B2 patent drawing

AI summary

Techniques for selectively synchronizing network devices to authenticate wireless device to access a network using a key. A system utilizing such techniques can include a unique pre-shared key assignment system and a network device selective synchronization system. A method utilizing such techniques can include unique pre-shared key assignment and selective synchronization management.