Secure Hotspot Setup for Public Wi-Fi Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Users, especially those outside corporate networks, often access the internet through unsecured public Wi-Fi hotspots, exposing their devices and data to potential malicious attacks due to the lack of secure connectivity on personal devices not configured with strong security protocols like WPA-Enterprise.

Innovation Solution

A method and apparatus for automatically setting up a secure hotspot on a user's device when a secure device is in proximity, using authentication servers and attack detection capabilities to ensure secure internet access, thereby protecting data and communications from public access points.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If users connect to public Wi-Fi hotspots for internet access, then connectivity availability is improved, but security and data protection deteriorate

Engineering Contradiction:
Improveconnectivity availabilityVSAvoidsecurity risk
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The patent introduces a secure hotspot as an intermediary network layer between the unsecured public Wi-Fi and the user's device. This intermediary hotspot, established on the user's personal device, provides encrypted communication channels that mediate the connection to corporate resources, thereby maintaining connectivity availability while blocking direct exposure to security threats from public networks.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent extracts the security function from the public Wi-Fi network infrastructure and relocates it to the user's personal device. By creating a dedicated secure hotspot on the user's device, the system separates the untrusted public network from the sensitive corporate data transmission, extracting security responsibilities from the public infrastructure and placing them on the user's controlled device.

Inventive Principle:
Principle #2Taking out (Extraction)

2Object-affected harmful factors

If users configure secure connectivity protocols like WPA-Enterprise on personal devices, then data protection is improved, but setup complexity and user difficulty worsen

Engineering Contradiction:
Improvedata protectionVSAvoidsetup complexity
Core Design Contradiction:
Object-affected harmful factorsVSEase of operation

Solution Approach 1:

The patent implements self-service by automatically detecting when a user connects to a public Wi-Fi network and autonomously establishing a secure hotspot on their personal device without requiring manual configuration. The system monitors network conditions, triggers secure hotspot creation, and manages the security protocols automatically, eliminating the need for users to manually configure complex security settings while maintaining strong data protection.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent performs preliminary action by pre-configuring security protocols and authentication mechanisms on the user's personal device before they need to access corporate resources. The secure hotspot is established in advance with pre-configured security parameters, so when the user needs connectivity, the secure channel is already ready, eliminating the need for real-time configuration complexity.

Inventive Principle:
Principle #10Preliminary action

3Adaptability or versatility

If users access corporate resources over unsecured networks, then network accessibility is improved, but vulnerability to malicious attacks worsens

Engineering Contradiction:
Improvenetwork accessibilityVSAvoidattack resistance
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent segments the network communication path into distinct segments: the unsecured public Wi-Fi network, the secure hotspot on the user's device, and the corporate network. This segmentation isolates the vulnerable unsecured public network from the sensitive corporate resources, allowing network accessibility while protecting against attacks by creating security boundaries between network segments.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The secure hotspot acts as an intermediary between the unsecured public network and corporate resources. It receives traffic from the unsecured network, encrypts it, and forwards it through secure channels to corporate servers, thereby maintaining network accessibility while introducing security measures that prevent malicious attacks from reaching corporate systems.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentEP3622387B1Secure hotspot setup
Publication Date: 2024.08.21 CORONET CYBER SECURITY LTD
  • EP3622387B1 patent drawingFigure 1
  • EP3622387B1 patent drawingFigure 2
  • EP3622387B1 patent drawingFigure 3

AI summary

A computer implemented method of secure hotspot set-up, the method comprising steps a computer processor of a first client device is programmed to perform, the steps comprising: on the first client device, receiving a request to setup a secure hotspot, and based on the received request, automatically setting up the hotspot.