User-Based Packet Forwarding Control in Wireless Networks

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The existing solutions for configuring packet forwarding in wireless local area networks (WLANs) based on user type are complex and difficult to maintain, requiring multiple SSIDs and forwarding configurations.

Innovation Solution

A method and apparatus that allow a control node (CN) to receive a connection establishment request from a client device, acquire user attributes, and determine the appropriate packet forwarding manner based on stored forwarding policies, sending instructions to the associated wireless access point (AP) to create a forwarding entry, which simplifies user-based control and management.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If multiple SSIDs are configured to control packet forwarding manner based on user type, then user-based forwarding control is achieved, but configuration and maintenance complexity increases

Engineering Contradiction:
Improveuser-based forwarding controlVSAvoidconfiguration and maintenance complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent applies universality by enabling a single SSID to serve multiple forwarding purposes through user attribute-based differentiation. Instead of requiring separate SSIDs for different user types, the system allows one SSID to dynamically determine forwarding manner (tunnel or local) based on acquired user attributes, making the SSID configuration universal across different user types while maintaining differentiated forwarding control.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The patent changes the parameter used for forwarding decision from SSID identity to user attributes. By acquiring user attributes (such as user type, authentication level) and using these attributes to determine the forwarding manner, the system dynamically adjusts the forwarding parameter based on user characteristics rather than static SSID configuration, thereby simplifying SSID management while maintaining adaptability.

Inventive Principle:
Principle #35Parameter changes

2Reliability

If separate forwarding configurations are created for different user types, then precise forwarding control is achieved, but maintenance difficulty increases

Engineering Contradiction:
Improveforwarding control precisionVSAvoidmaintenance difficulty
Core Design Contradiction:
ReliabilityVSEase of repair

Solution Approach 1:

The system implements self-service by automatically acquiring user attributes and determining the appropriate forwarding manner without requiring manual configuration for each user type. The CN automatically performs attribute acquisition, forwarding manner determination, and configuration push to APs, eliminating the need for manual maintenance of separate forwarding configurations while maintaining precise control based on user attributes.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The system uses feedback mechanisms where the CN acquires user attributes during authentication, determines the appropriate forwarding manner based on these attributes and stored forwarding policies, and then pushes the determined configuration to APs. This closed-loop feedback process ensures precise forwarding control while centralizing management to simplify maintenance.

Inventive Principle:
Principle #23Feedback

3Adaptability or versatility

If user attributes are acquired during connection establishment, then user-based forwarding determination is enabled, but authentication process complexity increases

Engineering Contradiction:
Improveuser-based forwarding determinationVSAvoidauthentication process complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent merges the user attribute acquisition process with the existing authentication flow. By integrating attribute acquisition into the connection establishment phase and utilizing the authentication controller's existing functionality, the system enables user-based forwarding determination without adding separate complex authentication procedures, thereby combining multiple functions into a unified process.

Inventive Principle:
Principle #5Merging (Combining)

Data Source

PatentUS9787536B2Method and apparatus for configuring packet forwarding manner
Publication Date: 2017.10.10 HUAWEI TECH CO LTD
  • US9787536B2 patent drawing
  • US9787536B2 patent drawing

AI summary

A method and an apparatus for configuring a packet forwarding manner. The method includes receiving, by a control node (CN), a connection establishment request packet from a client device, and acquiring a user attribute according to the request packet; according to the user attribute and a forwarding policy, acquiring, by the first CN, a packet forwarding manner corresponding to the client device, where the forwarding policy includes a packet forwarding manner corresponding to the user attribute; and after authentication succeeds, sending, by the first CN, a message carrying the acquired packet forwarding manner to a wireless access point (AP) associated with the client device, so as to instruct the wireless AP to create a forwarding entry of the client device, where the forwarding entry includes the packet forwarding manner. The present invention implements user-based control of a packet forwarding manner, simplifying configuration and maintenance.