Routing Device Authentication Server Determination

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The increasing data traffic and network nodes in communication networks lead to large routing tables that exceed the storage capacity of routing devices, impairing their ability to perform their duties effectively.

Innovation Solution

A method and routing device that receive a message with a user identifier to determine the appropriate authentication server, generate an authentication request, and add the user to a routing table upon successful authentication, optimizing routing table management by distinguishing between public and private authentication servers and establishing secure connections as needed.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If the number of network nodes and routing entries is increased to handle increased data traffic, then the network capacity and data handling ability are improved, but the storage space requirements of routing devices exceed their limited capacity

Engineering Contradiction:
Improvedata handling capacityVSAvoidrouting table size
Core Design Contradiction:
ProductivityVSQuantity of substance

Solution Approach 1:

The patent extracts authentication-related routing entries from the main routing table by implementing a separate authentication mechanism. User identifiers and authentication server information are handled independently through authentication requests, separating the authentication function from traditional routing operations. This reduces the burden on routing table storage capacity while maintaining the ability to handle increased data traffic.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent introduces an authentication server as an intermediary component between user equipment and the network service. Instead of storing all user authentication information in the routing device's routing table, the routing device acts as a mediator that forwards authentication requests to the authentication server. This intermediary approach allows the routing device to manage fewer routing entries while still supporting authentication for multiple users.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If routing devices store more routing information to support more users and services, then the network coverage and service availability are improved, but the routing device's storage capacity is exceeded

Engineering Contradiction:
Improveuser access capabilityVSAvoidrouting table storage
Core Design Contradiction:
Adaptability or versatilityVSVolume of stationary object

Solution Approach 1:

The patent extracts authentication-specific data (user identifiers, authentication server indications) from traditional routing information. By implementing a separate authentication request mechanism, the routing device only needs to store essential routing entries while user authentication information is managed separately through authentication servers, reducing overall storage requirements.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent makes the authentication server indication in the data structure serve multiple functions: it identifies the authentication server for user authentication, provides routing information for forwarding authentication requests, and enables the routing device to support both authenticated and unauthenticated traffic flows using the same infrastructure.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Reliability

If authentication mechanisms are implemented for user security, then the network security is improved, but the complexity of network access procedures increases

Engineering Contradiction:
Improveuser authentication securityVSAvoidaccess control procedure
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent implements self-service authentication where user equipment automatically generates authentication requests containing user identifiers and authentication server indications. The routing device automatically processes these requests by determining authentication server locations and forwarding requests without requiring manual configuration or complex user intervention, simplifying the authentication procedure while maintaining security.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The routing device acts as an intermediary that simplifies the authentication process by automatically determining authentication server locations based on data structure indications and forwarding authentication requests appropriately. This intermediary function abstracts the complexity of authentication server selection and management from the user equipment, making the authentication process more straightforward while maintaining security.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS11503025B2Solution for receiving network service
Publication Date: 2022.11.15 TELIASONERA AB
  • US11503025B2 patent drawing
  • US11503025B2 patent drawing
  • US11503025B2 patent drawing

AI summary

Disclosed is a method including: receiving, by a routing device, a message; determining an indication of an authentication server for authenticating the user to access the network service; and generating an authentication request including at least the user identifier derived from the data structure to the determined authentication server. Also disclosed is a routing device and a computer program product.