Relay Node Wireless Authorization and Credential Management

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional methods for configuring and authorizing relay nodes in wireless communications systems require on-site operator personnel, are expensive, error-prone, and insecure, or rely on costly communication links.

Innovation Solution

Implementing a wireless configuration and authorization process using initial security credentials to authenticate relay nodes, allowing them to connect securely to a management system, receive new security credentials, and re-authenticate for full operation as a relay device.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of manufacture

If operator personnel are required to be onsite for initial configuration, then the relay node can be properly configured, but the cost and complexity increase significantly

Engineering Contradiction:
Improveconfiguration easeVSAvoiddeployment complexity
Core Design Contradiction:
Ease of manufactureVSDevice complexity

Solution Approach 1:

The relay node performs self-configuration by automatically authenticating with the access node, retrieving configuration data from the OAM&P system, and obtaining new security credentials without requiring on-site operator personnel intervention

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The system pre-provisions initial security credentials in the relay node before deployment and establishes a wireless communication path in advance, allowing the relay node to be configured remotely before full operation begins

Inventive Principle:
Principle #10Preliminary action

2Ease of operation

If conventional wireless communication methods are used for configuration, then connectivity is achieved, but security is compromised

Engineering Contradiction:
ImproveconnectivityVSAvoidsecurity vulnerability
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

Initial security credentials are pre-provisioned in the relay node before deployment, enabling secure authentication with the access node and OAM&P system from the outset

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system implements a re-authentication mechanism where the relay node provides feedback by demonstrating possession of new security credentials received from the OAM&P system, verifying its identity and authorization status before full operation begins

Inventive Principle:
Principle #23Feedback

3Reliability

If leased IP links or wireless microwave links are used for communication, then the relay node can connect to the management system, but the cost increases

Engineering Contradiction:
Improvecommunication reliabilityVSAvoidcommunication cost
Core Design Contradiction:
ReliabilityVSQuantity of substance

Solution Approach 1:

The wireless communication interface serves multiple functions: it enables the relay node to connect to the access node for backhaul communication, access the OAM&P system for configuration, and transmit new security credentials, eliminating the need for separate dedicated communication links

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentEP2583481B1Method and apparatus for relay node management and authorization
Publication Date: 2016.01.13 QUALCOMM INC
  • EP2583481B1 patent drawingFigure 1
  • EP2583481B1 patent drawingFigure 2
  • EP2583481B1 patent drawingFigure 3A

AI summary

Methods and apparatuses are provided for deploying relay nodes in a communication network. A relay node can initially be wirelessly authenticated to a network entity using initial security credentials. In response to a successful authentication, the relay node is authorized to wirelessly communicate with the communication network for a limited purpose of configuring the relay node for relay device operations. The relay node can receive new security credentials from the communication network, and is subsequently re-authenticated to the network entity using the new security credentials. In response to a successful re-authentication, the relay node is authorized by the network to operate as a relay device for conveying traffic between one or more access terminals and the communication network.