Secure Wireless Connection via Temporary Credential Exchange

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing wireless communication methods face security challenges due to the ease of intercepting and guessing simple passcodes, which compromises the security of wireless connections between electronic devices.

Innovation Solution

A method involving a server-generated temporary code is used to establish a secure wireless connection by creating temporary and secure credentials, allowing for a lower-security code that is easy to remember while enhancing security through a multi-step authentication process involving wake-up codes and secure communication protocols.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If complex passcodes are used to protect wireless communication channels, then security is improved, but ease of operation deteriorates

Engineering Contradiction:
ImprovesecurityVSAvoidease of operation
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The authentication process is divided into two distinct phases: first, a simple passcode is used for initial connection establishment, then a separate secure credential exchange occurs through the temporary connection. This segmentation allows each phase to use appropriately complex credentials without burdening the user with remembering both.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

A temporary connection acts as an intermediary channel between the first and second electronic devices. This temporary connection facilitates the secure exchange of credentials without requiring the user to manually handle complex security protocols, thereby maintaining both security and ease of operation.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If simple passcodes are used to improve ease of operation, then ease of operation is improved, but security deteriorates

Engineering Contradiction:
Improveease of operationVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

A temporary connection is established beforehand using the simple passcode. This preliminary action creates a secure channel through which complex credentials can be exchanged automatically, eliminating the need for users to handle complex security information while maintaining strong security.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The electronic devices automatically perform the secure credential exchange and authentication processes through the temporary connection without requiring user intervention. The system handles the complex security protocols autonomously, allowing users to simply enter the simple passcode.

Inventive Principle:
Principle #25Self-service

3Reliability

If continuous wireless communication is maintained for security, then security is improved, but power consumption increases

Engineering Contradiction:
ImprovesecurityVSAvoidpower consumption
Core Design Contradiction:
ReliabilityVSUse of energy by moving object

Solution Approach 1:

The temporary connection is activated only during the credential exchange period and then disconnected. This periodic activation ensures that wireless communication occurs only when necessary for security credential transmission, minimizing power consumption while maintaining security during critical operations.

Inventive Principle:
Principle #19Periodic action

Data Source

PatentEP3840441B1Method for establishing a secure wireless connection
Publication Date: 2023.10.18 AXIS
  • EP3840441B1 patent drawingFigure 1A~1D
  • EP3840441B1 patent drawingFigure 2A~2C
  • EP3840441B1 patent drawingFigure 3

AI summary

The present invention relates to a method (30) for establishing a secure wireless connection (1400) comprising: generating (S302), on a server (1110), a temporary code (1150); registering (S304), on a first device (1120), the temporary code; sending (S306), from the server to a second device (1132), the temporary code; determining (S308), on the first device, a first temporary credential (1124) based on the temporary code; determining (S310), on the second device, the second temporary credential (1134) based on the temporary code; establishing (S312), using the first and the second temporary credentials, a temporary connection (1200) between the first and the second devices; determining (S314), on the second device, a secure credential (1234); sending (S316), from the second device to the first device, the secure credential via the temporary connection; and establishing (S318), using the secure credential, the secure connection between the first and the second electronic devices.