Wi-Fi Direct Authentication for Printing Apparatus Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional printing apparatuses with Wi-Fi Direct functionality lack effective user authentication mechanisms, allowing unauthorized users to establish connections and potentially threaten the device's resources.

Innovation Solution

Implementing a user authentication process that only allows Wi-Fi Direct connections from authenticated users by shifting the printing apparatus to a state where it can accept connection requests and determining the user's login status before proceeding with the connection.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If the confirmation screen for Wi-Fi Direct connection is displayed as a pop-up on the login screen, then the connection can be authorized regardless of user authentication status, but unauthorized users can connect and threaten the resources of the printing apparatus

Engineering Contradiction:
ImproveConnection authorization convenienceVSAvoidResource security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The system performs preliminary authentication by checking whether the user is logged in before displaying the Wi-Fi Direct connection confirmation screen. This preliminary action prevents unauthorized users from even seeing the connection authorization interface, thereby securing resources while still allowing convenient connection for authenticated users.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The login status acts as an intermediary condition between the Wi-Fi Direct connection request and the confirmation screen display. The system mediates the connection process by requiring authentication status as a prerequisite, preventing direct access to the connection authorization mechanism by unauthorized users.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Productivity

If the confirmation screen is displayed independently of login status, then connection authorization is flexible and quick, but the printing apparatus resources are vulnerable to unauthorized access

Engineering Contradiction:
ImproveConnection establishment speedVSAvoidUnauthorized access risk
Core Design Contradiction:
ProductivityVSObject-affected harmful factors

Solution Approach 1:

The system implements a preliminary check of login status before proceeding to the connection confirmation step. This ensures that only authenticated users can reach the quick authorization stage, maintaining both fast connection establishment for valid users and protection against unauthorized access attempts.

Inventive Principle:
Principle #10Preliminary action

3Adaptability or versatility

If Wi-Fi Direct connection is allowed without checking login status, then the apparatus is highly accessible and easy to use, but third parties without authority can connect and consume resources

Engineering Contradiction:
ImproveConnection accessibilityVSAvoidAuthorized usage guarantee
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The system performs a preliminary verification of user authentication status before enabling the Wi-Fi Direct connection confirmation interface. This maintains high accessibility for authorized users who are already logged in, while preventing unauthorized users from accessing the connection functionality entirely.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS10547765B2Information processing apparatus, method of controlling the same, and storage medium
Publication Date: 2020.01.28 CANON KK
  • US10547765B2 patent drawing
  • US10547765B2 patent drawing
  • US10547765B2 patent drawing

AI summary

An information processing apparatus capable of a wireless LAN connection with a mobile terminal, wherein, when the information processing apparatus, in a state being caused to shift to a state being capable of accepting a Wi-Fi Direct connection request from the mobile terminal, receives the Wi-Fi Direct connection request from the mobile terminal, whether or not an authenticated user has logged in to the information processing apparatus is determined, and, in a case that it is determined that an authenticated user has logged in to the information processing apparatus, Wi-Fi Direct connection processing with the mobile terminal is started.