Routing Device Authentication Server Determination
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The increasing data traffic and network nodes in communication networks lead to large routing tables that exceed the storage capacity of routing devices, impairing their ability to perform their duties effectively.
Innovation Solution
A method and routing device that receive a message with a user identifier to determine the appropriate authentication server, generate an authentication request, and add the user to a routing table upon successful authentication, optimizing routing table management by distinguishing between public and private authentication servers and establishing secure connections as needed.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Productivity
If the number of network nodes and routing entries is increased to handle increased data traffic, then the network capacity and data handling ability are improved, but the storage space requirements of routing devices exceed their limited capacity
Solution Approach 1:
The patent extracts authentication-related routing entries from the main routing table by implementing a separate authentication mechanism. User identifiers and authentication server information are handled independently through authentication requests, separating the authentication function from traditional routing operations. This reduces the burden on routing table storage capacity while maintaining the ability to handle increased data traffic.
Solution Approach 2:
The patent introduces an authentication server as an intermediary component between user equipment and the network service. Instead of storing all user authentication information in the routing device's routing table, the routing device acts as a mediator that forwards authentication requests to the authentication server. This intermediary approach allows the routing device to manage fewer routing entries while still supporting authentication for multiple users.
2Adaptability or versatility
If routing devices store more routing information to support more users and services, then the network coverage and service availability are improved, but the routing device's storage capacity is exceeded
Solution Approach 1:
The patent extracts authentication-specific data (user identifiers, authentication server indications) from traditional routing information. By implementing a separate authentication request mechanism, the routing device only needs to store essential routing entries while user authentication information is managed separately through authentication servers, reducing overall storage requirements.
Solution Approach 2:
The patent makes the authentication server indication in the data structure serve multiple functions: it identifies the authentication server for user authentication, provides routing information for forwarding authentication requests, and enables the routing device to support both authenticated and unauthenticated traffic flows using the same infrastructure.
3Reliability
If authentication mechanisms are implemented for user security, then the network security is improved, but the complexity of network access procedures increases
Solution Approach 1:
The patent implements self-service authentication where user equipment automatically generates authentication requests containing user identifiers and authentication server indications. The routing device automatically processes these requests by determining authentication server locations and forwarding requests without requiring manual configuration or complex user intervention, simplifying the authentication procedure while maintaining security.
Solution Approach 2:
The routing device acts as an intermediary that simplifies the authentication process by automatically determining authentication server locations based on data structure indications and forwarding authentication requests appropriately. This intermediary function abstracts the complexity of authentication server selection and management from the user equipment, making the authentication process more straightforward while maintaining security.
Data Source
AI summary
Disclosed is a method including: receiving, by a routing device, a message; determining an indication of an authentication server for authenticating the user to access the network service; and generating an authentication request including at least the user identifier derived from the data structure to the determined authentication server. Also disclosed is a routing device and a computer program product.


