Security Apparatus Authentication Network Path Control

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing network security technologies lack an effective method to securely manage device connections and communication ranges, which can lead to unauthorized access and malware propagation.

Innovation Solution

A security apparatus with integrated authentication and path control functions, capable of acquiring and authenticating connection commands with authentication information, and setting communication ranges for devices via a switching unit, thereby securing communication paths and preventing unauthorized access.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If devices are allowed to connect freely to the network, then communication efficiency is improved, but security risk increases due to unauthorized access and malware propagation

Engineering Contradiction:
Improvecommunication efficiencyVSAvoidsecurity risk
Core Design Contradiction:
ProductivityVSObject-affected harmful factors

Solution Approach 1:

The patent introduces a security apparatus as an intermediary device between the network and connected devices. This security apparatus authenticates connection commands and controls communication ranges, allowing legitimate devices to communicate efficiently while blocking unauthorized access and malware propagation attempts.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent implements dynamic communication range control where the security apparatus adjusts which devices can communicate based on authentication results. The communication range is not fixed but changes dynamically according to the connection command and authentication outcome, enabling efficient communication for authorized devices while maintaining security.

Inventive Principle:
Principle #15Dynamics

2Productivity

If authentication and path control are integrated in one apparatus, then security management efficiency is improved, but device complexity increases

Engineering Contradiction:
Improvesecurity management efficiencyVSAvoidapparatus complexity
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The patent combines authentication functionality and communication path control functionality into a single security apparatus. This integration improves security management efficiency by handling both functions in one device, and the patent addresses the complexity issue through unified design where the authentication unit and switching unit work together as an integrated system.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The security apparatus performs multiple functions including authentication of connection commands, control of communication ranges, and prevention of unauthorized access. By making the apparatus universal and multi-functional, the patent reduces the need for multiple separate devices while managing complexity through integrated design.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Reliability

If communication range is restricted based on authentication, then security is improved, but communication flexibility deteriorates

Engineering Contradiction:
ImprovesecurityVSAvoidcommunication flexibility
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent implements dynamic communication range control where the security apparatus adjusts which devices can communicate based on authentication results. The communication range is not fixed but changes dynamically according to the connection command and authentication outcome, enabling efficient communication for authorized devices while maintaining security.

Inventive Principle:
Principle #15Dynamics

Data Source

PatentUS20250055837A1Security apparatus, management apparatus, communication system, and security management method
Publication Date: 2025.02.13 SUMITOMO ELECTRIC INDUSTRIES LTD
  • US20250055837A1 patent drawing
  • US20250055837A1 patent drawing
  • US20250055837A1 patent drawing

AI summary

This security device comprises: a plurality of communication ports that can be connected to apparatuses; a switch unit that is able to communicate with a plurality of the apparatuses through the plurality of communication ports; and an authentication unit that acquires a connection command for at least any one of the apparatuses among the plurality of apparatuses, the connection command including authentication information, and that authenticates the connection command on the basis of the authentication information. When the authentication is successful, the authentication unit sets a communicable range, which is formed by the switch unit, of the at least any one of the apparatuses through the switch unit, in accordance with the connection command.