Router Access Control via Dual Password Segmentation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current routers have relatively low security as they use a single preset access password for network protection, which can be easily compromised, leading to potential unauthorized access.

Innovation Solution

Implementing a dual-access password system where a simple password is set for frequently used devices and a complex password for less frequently used devices, with the option to periodically modify the complex password for enhanced security, while allowing frequent devices to access the network with ease.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If a single complex preset access password is used for all terminal devices, then router security is improved, but user convenience deteriorates as all devices require complex passwords

Engineering Contradiction:
Improverouter securityVSAvoidpassword input convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent segments the single access password into multiple preset access passwords (first preset access password and second preset access password). Each password has different complexity levels and is associated with different device identifier lists, allowing frequent devices to use simple passwords while maintaining security for less frequent devices.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

Different access passwords are assigned to different terminal devices based on their usage frequency. Frequently used devices are associated with simpler passwords in a first device identifier list, while less frequently used devices are associated with more complex passwords in a second device identifier list, providing localized quality optimization.

Inventive Principle:
Principle #3Local quality

2Ease of operation

If a single simple preset access password is used for all terminal devices, then user convenience is improved, but router security deteriorates as the password can be easily compromised

Engineering Contradiction:
Improvepassword input convenienceVSAvoidrouter security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent divides the access control system into multiple segments with different security levels. The first preset access password (simpler) is segmented for frequent devices, while the second preset access password (more complex) is segmented for less frequent devices, balancing convenience and security.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent changes the parameter of password complexity based on device identifier associations. By modifying the access password parameter according to which device identifier list the terminal belongs to, the system achieves both simplicity for frequent users and security for overall network protection.

Inventive Principle:
Principle #35Parameter changes

3Ease of operation

If multiple preset access passwords are implemented with device identifier binding, then router security is improved and user experience is enhanced, but device complexity increases

Engineering Contradiction:
Improveaccess convenienceVSAvoidaccess control system complexity
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

The patent performs preliminary binding between access passwords and device identifier lists during system setup. The router pre-establishes associations between terminal devices and appropriate access passwords, so that during actual access, devices automatically use the correct password without users needing to understand the complex binding logic.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system enables terminal devices to automatically identify and use the appropriate access password based on their device identifiers. The router autonomously determines which password list to use based on device matching, reducing the operational burden on users despite the underlying system complexity.

Inventive Principle:
Principle #25Self-service

Data Source

PatentEP3113419B1Network accessing method and router
Publication Date: 2020.12.23 HUAWEI DEVICE CO LTD
  • EP3113419B1 patent drawingFigure 1
  • EP3113419B1 patent drawingFigure 2~3

AI summary

Embodiments of the present invention provide a method and router for accessing a network, where the apparatus includes: an obtaining module, configured to obtain an access password sent by a terminal device; a matching module, configured to perform matching between the access password and each preset access password in an access password list in which at least two preset access passwords are stored; a determining module, configured to: when the access password matches a preset access password in the access password list, determine whether the preset access password is bound to a device identifier list, and when the preset access password is bound to the device identifier list, determine whether a device identifier of the terminal device exists in the bound device identifier list; and a processing module, configured to: when it is determined that the device identifier exists in the device identifier list, allow the terminal device to access the network. In this way, the router can manage access of different terminal devices by using different preset access passwords, thereby improving router security performance.