Information Notification Apparatus for Network Access Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current network access authentication systems lack efficient mechanisms for notifying communication nodes of information related to their topology and encryption keys, especially when they operate as authentication relays or root nodes, which can lead to security and connectivity issues.

Innovation Solution

An information notification apparatus and method that includes a table to store node information and a notifier to generate and distribute encryption keys and other information based on the node's role as a root node or authentication relay, using a network access authentication server to manage key and relay tables, ensuring secure and timely information dissemination.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If the network access authentication server notifies all communication nodes of encryption keys and topology information, then network security and connectivity are improved, but the complexity of managing different node types (root nodes vs. authentication relays) increases

Engineering Contradiction:
Improvenetwork securityVSAvoidinformation notification management
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent segments communication nodes into two distinct types: root nodes and authentication relay nodes. This segmentation allows the system to apply different notification strategies to different node types, simplifying the overall management complexity while maintaining security. Root nodes receive both topology information and encryption keys, while authentication relay nodes receive only encryption keys, creating a clear division of information distribution responsibilities.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent applies local quality by providing different information sets to different locations (node types) in the network. Root nodes, which have specific topological awareness needs, receive topology information locally, while authentication relay nodes, which only need cryptographic functionality, receive only encryption keys. This localized information provision optimizes the system by giving each node type exactly what it needs without unnecessary overhead.

Inventive Principle:
Principle #3Local quality

2Productivity

If the system distinguishes between root nodes and authentication relays for information notification, then information delivery efficiency is improved, but the complexity of node identification and classification increases

Engineering Contradiction:
Improveinformation delivery efficiencyVSAvoidnode classification
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The patent implements preliminary action by pre-classifying communication nodes into root nodes and authentication relay nodes during the authentication process. The network access authentication server identifies the node type beforehand and prepares appropriate information sets in advance. This preliminary classification and preparation enable efficient information delivery without requiring complex real-time decision-making during the notification phase.

Inventive Principle:
Principle #10Preliminary action

3Adaptability or versatility

If encryption keys are distributed to all communication nodes, then network connectivity is improved, but the risk of key management issues and security vulnerabilities increases

Engineering Contradiction:
Improvenetwork connectivityVSAvoidsecurity vulnerabilities
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The patent applies local quality by providing different information sets to different locations (node types) in the network. Root nodes, which have specific topological awareness needs, receive topology information locally, while authentication relay nodes, which only need cryptographic functionality, receive only encryption keys. This localized information provision optimizes the system by giving each node type exactly what it needs without unnecessary overhead.

Inventive Principle:
Principle #3Local quality

Solution Approach 2:

The patent extracts topology information from the general notification process and provides it selectively only to root nodes, separating it from the encryption key distribution that goes to all nodes. This extraction reduces the information burden on authentication relay nodes, minimizing their exposure to potential security risks while maintaining their connectivity functionality.

Inventive Principle:
Principle #2Taking out (Extraction)

Data Source

PatentUS9065692B2Information notification apparatus, method, and program product
Publication Date: 2015.06.23 KK TOSHIBA
  • US9065692B2 patent drawing
  • US9065692B2 patent drawing
  • US9065692B2 patent drawing

AI summary

According to one embodiment, an information notification apparatus includes a table and a notifier. The table is configured to store information about root nodes and information related to the nodes. The notifier is configured to generate, when a communication node is a root node, new information for that root node. The notifier is further configured to read out, when the communication node is not a root node, the information from the table. The notifier is further configured to notify the communication node of the new information or the information read out from the table.