Unique Pre-Shared Key Onboarding for Wireless Networks

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing wireless device onboarding processes are complex and vulnerable to security risks, particularly when using shared keys, as they require administrative intervention and can lead to unauthorized access as the number of devices increases.

Innovation Solution

Implementing a unique pre-shared key seamless onboarding system that assigns a unique key to each wireless device, allowing them to access a network without administrative intervention, while ensuring secure authentication and managing network service access rights.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If a shared key is used for network authentication, then device onboarding is simplified, but security is compromised as the number of devices increases

Engineering Contradiction:
Improvedevice onboardingVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent segments the single shared key into multiple unique keys, assigning one unique key to each device. This segmentation maintains the simplicity of key-based authentication while eliminating the security vulnerabilities of sharing a single key across multiple devices, as each device now has its own dedicated authentication credential.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent implements local quality by providing each device with a unique key tailored to its specific identity rather than using a uniform shared key for all devices. This allows each device to have customized authentication credentials that are specific to its local context and security requirements.

Inventive Principle:
Principle #3Local quality

2Reliability

If administrative intervention is required for key distribution, then security control is improved, but onboarding complexity and time increase

Engineering Contradiction:
Improvesecurity controlVSAvoidonboarding time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent applies preliminary action by pre-generating unique keys for devices before they need to connect to the network. The key management system can automatically provision these keys in advance, so when a device needs to onboard, the authentication credential is already ready and waiting, eliminating the need for real-time administrative intervention during the actual connection process.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent enables self-service by allowing devices to automatically obtain and use their unique keys for authentication without requiring manual administrative intervention. The key management system automatically handles key distribution and device authentication, freeing administrators from manual key distribution tasks while maintaining security control.

Inventive Principle:
Principle #25Self-service

3Reliability

If unique keys are assigned to each device, then security is enhanced, but key management complexity increases

Engineering Contradiction:
ImprovesecurityVSAvoidkey management
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent applies universality by creating a multi-functional key management system that handles key generation, distribution, storage, rotation, and revocation through a single automated platform. This universal system manages all unique keys across the network consistently, preventing security vulnerabilities while avoiding the complexity of multiple separate key management processes.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The patent implements feedback mechanisms where the key management system continuously monitors key usage, device status, and security events. This feedback enables automatic key rotation when security thresholds are reached, detects unauthorized usage patterns, and provides real-time visibility into key distribution status, reducing management complexity through automated responsive actions.

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS11005836B2Seamless wireless device onboarding
Publication Date: 2021.05.11 EXTREME NETWORKS INC
  • US11005836B2 patent drawing
  • US11005836B2 patent drawing
  • US11005836B2 patent drawing

AI summary

Techniques for seamlessly onboarding a wireless device. A system utilizing such techniques can include a key-based authentication system and a unique pre-shared key seamless onboarding system. A method utilizing such techniques can include key-based authentication management and unique pre-shared key seamless onboarding management.