Terminal Device Intermediary for Secure Wireless Connection Key Exchange
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing communication systems for wireless connections between devices lack secure and efficient methods for encrypting and decrypting connection information, particularly in scenarios where different key information is used by different devices, leading to potential security risks and inefficiencies.
Innovation Solution
A communication system comprising a terminal device and two communication devices that store key information for encrypting and decrypting connection information, where the terminal device receives and decrypts encrypted connection information using one key and then encrypts it with another key for transmission to the second device, allowing secure and efficient establishment of wireless connections without sharing common key information.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If common key information is shared between communication devices for encryption and decryption, then simplification of key management is achieved, but security is compromised due to potential unauthorized access
Solution Approach 1:
The patent divides the key management system into separate key information stored in each communication device (first key information in the first device, second key information in the second device). This segmentation eliminates the need for shared secret keys while maintaining security, as each device independently encrypts and decrypts using its own key information.
Solution Approach 2:
The terminal device acts as an intermediary that receives encrypted connection information from the first communication device, decrypts it using the first key information, then re-encrypts it using the second key information before forwarding to the second communication device. This mediator approach enables secure key transformation without direct key sharing between the communication devices.
2Reliability
If different key information is used by different communication devices, then security is enhanced by preventing unauthorized decryption, but complexity of key management increases
Solution Approach 1:
The terminal device serves as a key management intermediary that handles the complexity of coordinating between different key information. It receives the first key information from the first device, uses it to decrypt, then applies the second key information from the second device for re-encryption. This centralizes the management complexity in the terminal device rather than requiring complex distributed key management protocols.
3Reliability
If encryption is implemented for connection information, then security is improved, but communication efficiency decreases due to additional processing steps
Solution Approach 1:
The terminal device performs decryption and re-encryption operations in advance before the connection information is transmitted to the second communication device. By pre-processing the encryption/decryption steps through the terminal intermediary, the actual communication devices can focus on their primary functions, and the overall process is streamlined compared to requiring end-to-end encryption negotiation between all devices.
Data Source
AI summary
A terminal device may receive information indicating a first key from a first communication device, receive information indicating a second key from a second communication device. receive first encrypted connection information from a first communication device as a response to a request, decrypt the first encrypted connection information by using the first key indicated by the information received from the first communication device so as to obtain connection information, generate second encrypted connection information by encrypting the obtained connection information by using the second key indicated by the information received from the second communication device; and send the second encrypted connection information to the second communication device, wherein the second communication device decrypts the second encrypted connection information received from the terminal device and establishes a wireless connection with a specific device by using the connection information.


