Rogue AP Detection via Server Verification

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing electronic devices connecting to wireless networks are vulnerable to rogue Access Points (APs) that can compromise user information, as they lack effective methods to distinguish between legitimate and illegitimate APs, leading to potential hacking and data exposure.

Innovation Solution

A method and electronic device configuration that involves transmitting AP information for wireless LAN connections to an Internet server to inquire about rogue APs, maintaining connections to legitimate APs, and providing other AP information to the server, enabling the server to identify and warn against or disconnect from rogue APs.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If the electronic device connects to the AP with the highest receive signal level, then the connection quality is improved, but the device may connect to a rogue AP causing security vulnerabilities

Engineering Contradiction:
Improveconnection qualityVSAvoidsecurity vulnerability
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The system performs preliminary verification by sending a request message to an internet server before establishing a connection. The server checks whether the AP is legitimate or rogue based on pre-stored information, and only then does the device proceed to connect, preventing connection to harmful APs while ensuring connection quality

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

An internet server acts as an intermediary between the electronic device and the AP. The server receives AP information from the device, verifies its legitimacy, and provides authentication results. This intermediary layer enables secure connection establishment without compromising connection quality

Inventive Principle:
Principle #24Intermediary (Mediator)

2Object-affected harmful factors

If the device verifies AP legitimacy through an internet server, then security is improved, but the connection establishment time increases

Engineering Contradiction:
ImprovesecurityVSAvoidconnection establishment time
Core Design Contradiction:
Object-affected harmful factorsVSLoss of time

Solution Approach 1:

The system performs only the essential verification step by sending a request message to the server and receiving a response. This partial verification approach provides sufficient security protection while minimizing the time overhead, avoiding excessive verification procedures that would significantly delay connection establishment

Inventive Principle:
Principle #16Partial or excessive action

Data Source

PatentUS10009838B2Access point connection method and electronic device thereof
Publication Date: 2018.06.26 SAMSUNG ELECTRONICS CO LTD
  • US10009838B2 patent drawing
  • US10009838B2 patent drawing
  • US10009838B2 patent drawing

AI summary

An Access Point (AP) connection method in an electronic device and the electronic device thereof are provided. The method includes transmitting a request message relating to AP information connected for wireless Local Area Network (LAN) connection and inquiring about a rogue AP, to an Internet server, when the AP is not the rogue AP according to a response message received from the Internet server, maintaining connection to the AP, and providing other AP information to the Internet server.