Smart Device Network Credential Distribution via Intermediary

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Smart home devices often fail to connect to networks due to missing information, and manually updating these devices is inconvenient, especially when security concerns require avoiding central service storage of sensitive information.

Innovation Solution

Devices send data from a service to join networks, with assisting devices on the network providing credentials like keys and network names, ensuring secure updates without exposing sensitive information to the service.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Extent of automation

If a service stores all security information for networks and fabrics, then device updates can be performed centrally, but security information is centralized in a single location creating security risks

Engineering Contradiction:
Improvecentralized device update capabilityVSAvoidsecurity risk from centralized information storage
Core Design Contradiction:
Extent of automationVSObject-affected harmful factors

Solution Approach 1:

The patent segments security information management by having each device store its own credentials locally rather than centralizing all credentials in a service. The Joiner device obtains credentials from the Assistant device directly, dividing the credential storage across multiple devices (Joiner, Assistant, and Service) rather than consolidating it in one location.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The Assistant device acts as an intermediary that enables credential transfer from the network fabric to the Joiner device without requiring the Service to store or transmit sensitive credentials. The Assistant mediates the authentication process by providing credentials directly to the Joiner through a secure exchange mechanism.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Object-affected harmful factors

If devices are updated manually by users, then security information can be controlled, but user convenience is reduced

Engineering Contradiction:
Improvesecurity controlVSAvoiduser convenience
Core Design Contradiction:
Object-affected harmful factorsVSEase of operation

Solution Approach 1:

The system enables self-service by allowing the Joiner device to automatically obtain credentials from the Assistant device without requiring manual user intervention. The credential exchange process is automated through the interaction between Joiner and Assistant devices, eliminating the need for users to manually configure security information while maintaining security control.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The Assistant device is pre-configured with network credentials before the Joiner device needs to connect. This preliminary provisioning of credentials in the Assistant device enables the automated credential transfer process to work seamlessly without requiring users to manually input or manage security information during the device onboarding process.

Inventive Principle:
Principle #10Preliminary action

3Adaptability or versatility

If devices lack network connection information, then devices can be deployed in the field, but devices cannot join networks or fabrics

Engineering Contradiction:
Improvefield deployment capabilityVSAvoidnetwork connection capability
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The Joiner device is pre-configured with the capability to request credentials and the Assistant device is pre-provisioned with network credentials before field deployment. This preliminary preparation enables devices to be deployed in the field without immediate network connection information, while ensuring they can reliably join networks when needed through the automated credential exchange process.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The Assistant device serves as an intermediary that bridges the gap between field-deployed devices lacking credentials and the network fabric. The Assistant mediates the credential transfer, enabling devices deployed in the field to reliably join networks by obtaining necessary credentials through the Assistant without requiring pre-configuration of network information in the deployed devices.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS9760501B2In-field smart device updates
Publication Date: 2017.09.12 GOOGLE LLC
  • US9760501B2 patent drawing
  • US9760501B2 patent drawing
  • US9760501B2 patent drawing

AI summary

Methods and systems for causing a device to join a network or fabric. A joining device sends an indication that the electronic device is not connected to a network type and receives a device ID for an assisting device to assist the electronic device in joining a network of the network type. Moreover, the assisting device resides on the network. The joining device then authenticates to the assisting device from the assisting device and receives network credentials for the network. Furthermore, the joining device joins the network using the network credentials.