Printing Apparatus Wireless AP Mode Service Segmentation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional printing apparatuses using inherent SSID and password for wireless LAN connections face security risks as they allow unauthorized connections and unintended function usage due to shared authentication information across similar models, potentially leading to unauthorized access and misuse of network services.

Innovation Solution

The printing apparatus operates as a first access point using inherent authentication information to enable secure wireless LAN connections by switching between normal and specific AP modes, limiting network services in the specific AP mode to only those required for direct printing, thereby preventing unauthorized access and ensuring intended function usage.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If the printing apparatus uses inherent SSID and password for wireless LAN connection, then wireless direct printing is enabled, but security risks increase due to unauthorized connections and unintended function usage

Engineering Contradiction:
Improvewireless direct printing capabilityVSAvoidconnection security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent segments network services into two distinct groups: direct printing services (PictBridge, MFP over IP) and other network services (SMB, Remote UI, scan, copy, fax). By separating these services and applying different authentication modes to each group, the system enables wireless direct printing while preventing unauthorized access to other functions through the infrastructure mode connection requirement

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent applies different authentication characteristics to different service groups: AP mode with inherent credentials for direct printing services, and infrastructure mode with WPA2-PSK for other services. This local differentiation of security properties allows each service group to operate with appropriate security measures, resolving the contradiction between ease of wireless printing and overall system security

Inventive Principle:
Principle #3Local quality

2Adaptability or versatility

If all network services are enabled in AP mode, then service versatility is improved, but security risks increase due to unauthorized access to unintended services

Engineering Contradiction:
Improvenetwork service availabilityVSAvoidunauthorized service access
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The patent divides network services into two segments: direct printing services enabled in AP mode (PictBridge, MFP over IP) and other services restricted to infrastructure mode (SMB, Remote UI, scan, copy, fax). This segmentation ensures that only authorized direct printing operations can access the printing apparatus when in AP mode, eliminating the harmful effect of unauthorized service access while preserving necessary service versatility

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent extracts direct printing services from the overall network service set and allows them to operate independently in AP mode with inherent authentication. Other services are taken out and restricted to infrastructure mode only, ensuring they cannot be accessed unauthorizedly while AP mode is active. This extraction strategy resolves the contradiction by isolating the versatile direct printing function from potentially harmful broader service access

Inventive Principle:
Principle #2Taking out (Extraction)

Data Source

PatentUS10205848B2Printing apparatus serving as an access point based on authentication information for a wireless connection, printing system including the printing apparatus, and control method of the printing apparatus
Publication Date: 2019.02.12 CANON KK
  • US10205848B2 patent drawing
  • US10205848B2 patent drawing
  • US10205848B2 patent drawing

AI summary

A printing apparatus of the present invention makes wireless LAN connection in at least either one of a first connection mode for making wireless LAN connection to an image processing apparatus in which inherent authentication information is stored and a second connection mode for making wireless LAN connection to the image processing apparatus via a second access point provided by an apparatus other than the printing device and the image processing apparatus. The printing apparatus controls, in a case of connection in the first connection mode, a first function provided by the printing apparatus to be enabled and a second function which is enabled in the second connection mode to be disabled.