Printing Apparatus Wireless AP Mode Service Segmentation
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Conventional printing apparatuses using inherent SSID and password for wireless LAN connections face security risks as they allow unauthorized connections and unintended function usage due to shared authentication information across similar models, potentially leading to unauthorized access and misuse of network services.
Innovation Solution
The printing apparatus operates as a first access point using inherent authentication information to enable secure wireless LAN connections by switching between normal and specific AP modes, limiting network services in the specific AP mode to only those required for direct printing, thereby preventing unauthorized access and ensuring intended function usage.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If the printing apparatus uses inherent SSID and password for wireless LAN connection, then wireless direct printing is enabled, but security risks increase due to unauthorized connections and unintended function usage
Solution Approach 1:
The patent segments network services into two distinct groups: direct printing services (PictBridge, MFP over IP) and other network services (SMB, Remote UI, scan, copy, fax). By separating these services and applying different authentication modes to each group, the system enables wireless direct printing while preventing unauthorized access to other functions through the infrastructure mode connection requirement
Solution Approach 2:
The patent applies different authentication characteristics to different service groups: AP mode with inherent credentials for direct printing services, and infrastructure mode with WPA2-PSK for other services. This local differentiation of security properties allows each service group to operate with appropriate security measures, resolving the contradiction between ease of wireless printing and overall system security
2Adaptability or versatility
If all network services are enabled in AP mode, then service versatility is improved, but security risks increase due to unauthorized access to unintended services
Solution Approach 1:
The patent divides network services into two segments: direct printing services enabled in AP mode (PictBridge, MFP over IP) and other services restricted to infrastructure mode (SMB, Remote UI, scan, copy, fax). This segmentation ensures that only authorized direct printing operations can access the printing apparatus when in AP mode, eliminating the harmful effect of unauthorized service access while preserving necessary service versatility
Solution Approach 2:
The patent extracts direct printing services from the overall network service set and allows them to operate independently in AP mode with inherent authentication. Other services are taken out and restricted to infrastructure mode only, ensuring they cannot be accessed unauthorizedly while AP mode is active. This extraction strategy resolves the contradiction by isolating the versatile direct printing function from potentially harmful broader service access
Data Source
AI summary
A printing apparatus of the present invention makes wireless LAN connection in at least either one of a first connection mode for making wireless LAN connection to an image processing apparatus in which inherent authentication information is stored and a second connection mode for making wireless LAN connection to the image processing apparatus via a second access point provided by an apparatus other than the printing device and the image processing apparatus. The printing apparatus controls, in a case of connection in the first connection mode, a first function provided by the printing apparatus to be enabled and a second function which is enabled in the second connection mode to be disabled.


