SSL Tunneling Access Point for Secure Wireless Communication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing wireless communication protocols, such as IEEE 802.11, offer either insecure connections or complex security configurations, making it difficult for users to establish secure wireless communications without significant complexity or expense, especially in mobile devices.

Innovation Solution

Deploying an access point with embedded Secure Socket Layer (SSL) tunneling capabilities and a machine learning & reasoning component to automatically select secure transmission methods based on context, enabling secure connections through standard web browsers without additional complexity or cost.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If conventional security protocols (WEP, WPA) are configured, then security protection is provided, but device complexity and configuration complexity increase significantly

Engineering Contradiction:
Improvesecurity protectionVSAvoidconfiguration complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent introduces an intermediary component - the SSL tunnel - that mediates between the wireless communication and the network. This tunnel handles the security complexity internally, allowing users to benefit from encrypted communication without directly configuring complex security protocols. The SSL tunnel acts as a middle layer that transparently encrypts data between the mobile device and the access point.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system enables self-service security by allowing the mobile device to automatically establish SSL tunnels without requiring users to manually configure security settings. The access point and device work together to automatically negotiate and establish secure connections, eliminating the need for users to understand or configure complex security parameters.

Inventive Principle:
Principle #25Self-service

2Reliability

If complex security protocols are enabled, then data transmission is protected, but processing cost and monetary expense increase

Engineering Contradiction:
Improvedata protectionVSAvoidprocessing cost
Core Design Contradiction:
ReliabilityVSUse of energy by moving object

Solution Approach 1:

The patent leverages existing SSL infrastructure and protocols that are already implemented in standard web browsers. Instead of creating new security protocols from scratch, the system copies and adapts the widely-used SSL/TLS framework, benefiting from its optimized implementations and widespread hardware acceleration support. This approach reduces processing overhead by utilizing proven, efficiently-implemented security protocols.

Inventive Principle:
Principle #26Copying

3Ease of operation

If no security protocol is used, then device complexity is reduced, but security protection is completely lost

Engineering Contradiction:
ImprovesimplicityVSAvoidsecurity protection
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent segments the security function into a separate, modular SSL tunnel layer that operates independently from the core wireless communication functionality. This segmentation allows the security feature to be added as an optional layer without complicating the base system. Users can choose to enable or disable the SSL tunnel based on their needs, maintaining simplicity when security is not required while providing protection when needed.

Inventive Principle:
Principle #1Segmentation

4Reliability

If SSL tunneling is implemented, then secure connections are provided, but additional configuration complexity is added

Engineering Contradiction:
Improvesecure connectionVSAvoidsetup complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent merges the SSL tunneling functionality with the existing wireless access point and mobile device browser components. By integrating SSL capabilities into the access point and leveraging the browser's built-in SSL support, the system combines multiple functions into a unified setup. This merging eliminates the need for separate security configuration tools or procedures, reducing overall setup complexity while maintaining secure connection capabilities.

Inventive Principle:
Principle #5Merging (Combining)

Data Source

PatentUS8312531B2Communicating via a wireless gateway device and SSL
Publication Date: 2012.11.13 AT&T INTELLECTUAL PROPERTY I L P
  • US8312531B2 patent drawing
  • US8312531B2 patent drawing
  • US8312531B2 patent drawing

AI summary

Systems (and corresponding methodologies) of deploying an enhanced access point (or an integrated router/access point) with embedded secure socket layer (SSL) tunneling capabilities are provided. The innovation enables users to initiate or prompt secure SSL tunnels between a wireless computer or device (and browser session) and the wireless gateway device (WGD). In particular, off-the-shelf web browser applications can be used to effect secure communication between a wireless mobile device and a SWAT-(Secure Wireless Application Tunnel-) equipped access point.