Push-Button Configuration Rollback for Overlapping Sessions
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current push-button configuration methods in heterogeneous home networks, such as those using IEEE P1905.1, fail to prevent overlapping sessions, allowing unauthorized devices to register undetected, especially when multiple devices from different technologies connect via multiple hops, leading to security vulnerabilities.
Innovation Solution
A mechanism is introduced where a virtual or physical push-button event initiates a push-button configuration protocol, involving multiple network node devices for secure bootstrapping, ensuring only one new device is registered per button press by checking for overlapping sessions and initiating a rollback procedure if multiple devices attempt to join, using decentralized or centralized methods to detect and handle overlapping protocol runs.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If push-button configuration is enabled in heterogeneous networks, then ease of operation is improved, but security is worsened due to undetected overlapping sessions allowing unauthorized device registration
Solution Approach 1:
The patent implements a feedback mechanism where network node devices monitor and report overlapping push-button configuration sessions to a central controller or to each other. When a device detects an overlapping session, it sends a notification message containing session identification information, enabling the system to respond to the overlapping condition and prevent unauthorized registrations.
Solution Approach 2:
The patent introduces a central controller or uses existing network infrastructure as an intermediary to coordinate push-button configuration sessions. The intermediary receives session information from network node devices, detects overlaps, and manages the configuration process to prevent security vulnerabilities while maintaining ease of operation.
2Reliability
If overlapping session detection is implemented, then security is improved, but device complexity is worsened due to additional monitoring and coordination mechanisms
Solution Approach 1:
The patent leverages existing network infrastructure and protocols to implement overlapping session detection, making the monitoring mechanism multi-functional. The same communication channels and device components used for normal network operation are also utilized for session monitoring and coordination, avoiding the need for entirely separate dedicated monitoring hardware or protocols.
Solution Approach 2:
Network node devices perform self-monitoring for overlapping sessions by checking their own configuration state against received notifications from other devices. Each device independently determines whether it is involved in an overlapping session and takes appropriate action, reducing the need for complex centralized control while maintaining security.
Data Source
AI summary
A method and a network node device run Push-Button Configuration sessions within a heterogeneous network, IEEE 1905.1, using a push button configuration mechanism that ensures that only one single new network node device is registered for a single push button key press event and thus overlapping Push-Button Configuration sessions within a heterogeneous network are prevented. After finishing the push button configuration mode, the number of new nodes is checked. If more than one node has been added, a configuration roll-back is performed. Preferably, the push button configuration roll-back is performed as soon as the authentication of more than one distinct node has been detected. The roll-back includes the deletion or deactivation of credentials established by the push-button configuration.


