Secure Wireless Access Point Connection via Proximity Verification

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing methods for connecting client devices to wireless access points are insecure as SSIDs and passcodes are easily accessible, allowing unauthorized access.

Innovation Solution

A computer-implemented method and system that uses a backend server to verify physical proximity of the user to the access point, enabling secure retrieval and transmission of SSIDs and passcodes, preventing unauthorized access by using separate communication channels and verification processes.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If SSIDs and passcodes are printed on labels affixed to wireless access points, then users can conveniently connect by reading the labels, but security is compromised as anyone with temporary access can obtain the credentials

Engineering Contradiction:
Improveease of connectionVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent introduces a smartphone as an intermediary device that mediates between the user and the wireless access point. The smartphone captures the passcode from the label through its camera, processes it through an application, and transmits it securely to the access point via Bluetooth or other wireless protocols. This intermediary approach eliminates the need for users to manually read and type passcodes while preventing unauthorized access, as the passcode is never exposed in plain text and the smartphone acts as a controlled bridge for authentication.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of manufacture

If passcodes are made easily accessible on labels, then connection setup is simplified, but unauthorized access becomes possible

Engineering Contradiction:
Improveease of setupVSAvoidunauthorized access
Core Design Contradiction:
Ease of manufactureVSObject-affected harmful factors

Solution Approach 1:

The patent implements preliminary action by pre-configuring the access point with a unique identifier and passcode that are displayed on a label, but designing the system so that the passcode can only be utilized through the smartphone application. The smartphone app is pre-programmed with the access point's identifier, and the passcode capture process is initiated only after the user points the camera at the label. This preliminary setup ensures that even though the passcode is visible on the label, it cannot be misused without the corresponding smartphone application, thus preventing unauthorized access while maintaining ease of setup.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS10567962B1Systems and methods for connecting internet-connected devices to wireless access points
Publication Date: 2020.02.18 GEN DIGITAL INC
  • US10567962B1 patent drawing
  • US10567962B1 patent drawing
  • US10567962B1 patent drawing

AI summary

The disclosed computer-implemented method for connecting Internet-connected devices to wireless access points may include (1) receiving, over the Internet from a client device at a server, a request to connect the client device to an access point that is secured by a passcode, (2) transmitting a verification-request message from the server to the access point and/or the client device that instructs the access point and/or the client device to perform an action that enables the physical proximity of a user of the client device to the access point to be verified, (3) receiving a verification-response message that indicates that the user of the client device has physical access to the access point, and (4) enabling the client device to connect to the access point by transmitting, from the server to the client device, the passcode. Various other methods, systems, and computer-readable media are also disclosed.