Wi-Fi Security Mode Negotiation for Seamless BSS Selection

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Interoperability issues arise in Wi-Fi networks when devices supporting different security modes, such as WPA2 and WPA3, attempt to connect, leading to connection refusals and user experience degradation due to the need for manual selection of appropriate security modes.

Innovation Solution

Implementing a method where a station informs another of its supported security modes, allowing the first station to select a basic service set with the highest security mode compatible with the second station, ensuring seamless and secure connections without user intervention.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If an access point activates WPA3-TM security mode to support both WPA2 and WPA3 terminals, then interoperability between different security mode terminals is improved, but connection reliability deteriorates due to interoperability problems with certain terminals

Engineering Contradiction:
ImproveinteroperabilityVSAvoidconnection reliability
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent divides the single BSS into multiple BSSs, each configured with a specific security mode (WPA2-BSS and WPA3-BSS). This segmentation allows terminals to connect to the appropriate BSS based on their security mode capabilities, avoiding the interoperability issues that arise when a single BSS tries to support multiple security modes simultaneously.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces a BSS selection mechanism as an intermediary between the terminal and the access point. The terminal first selects an appropriate BSS based on its security mode capabilities before establishing a connection, ensuring compatibility and reliability without requiring manual intervention.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If manual selection of security mode is required for connection, then connection reliability is improved by avoiding incompatible modes, but ease of operation deteriorates due to user intervention requirements

Engineering Contradiction:
Improveconnection reliabilityVSAvoidease of connection
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent enables terminals to automatically select the appropriate BSS based on their own security mode capabilities and the available BSS configurations. This self-service mechanism eliminates the need for manual user intervention while ensuring reliable connections, as the terminal autonomously chooses the compatible BSS without user input.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent performs BSS selection as a preliminary action before the actual connection process. The terminal evaluates available BSSs and selects the appropriate one based on security mode compatibility before establishing the connection, ensuring reliability is maintained while the process remains transparent to the user.

Inventive Principle:
Principle #10Preliminary action

3Device complexity

If a single BSS is used for both WPA2 and WPA3 terminals, then device complexity is reduced, but adaptability deteriorates due to security mode compatibility issues

Engineering Contradiction:
Improvenetwork configuration complexityVSAvoidsecurity mode compatibility
Core Design Contradiction:
Device complexityVSAdaptability or versatility

Solution Approach 1:

The patent segments the network into multiple BSSs, each dedicated to a specific security mode. This segmentation resolves the compatibility issues that arise when a single BSS tries to support multiple security modes, while the complexity is managed through automated BSS selection and configuration mechanisms.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent creates a universal solution where the access point can serve both WPA2 and WPA3 terminals through multiple BSSs. Each BSS is optimized for its specific security mode, yet the overall system provides universal compatibility by allowing terminals to select the appropriate BSS based on their capabilities.

Inventive Principle:
Principle #6Universality (Multi-functionality)

4Reliability

If terminals connect to the highest security mode available, then security level is improved, but adaptability deteriorates when terminals support only lower security modes

Engineering Contradiction:
Improvesecurity levelVSAvoidterminal compatibility
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent applies local quality by configuring each BSS with a specific security mode appropriate for the terminals that will connect to it. The WPA2-BSS is configured with WPA2 security for terminals that support only WPA2, while the WPA3-BSS is configured with WPA3 security for terminals that support WPA3. This ensures that each terminal connects to a BSS with the highest security level it can support, maintaining both security and compatibility.

Inventive Principle:
Principle #3Local quality

Solution Approach 2:

The patent introduces dynamics by allowing the BSS configuration and selection to adapt based on terminal capabilities. The system dynamically determines which BSS a terminal should connect to based on the terminal's security mode support, ensuring that terminals always connect to the most secure compatible BSS without manual intervention.

Inventive Principle:
Principle #15Dynamics

Data Source

PatentUS20240365124A1Method for connecting a first station to a second station in a wireless communication network, and corresponding first and second stations and corresponding computer program
Publication Date: 2024.10.31 ORANGE SA
  • US20240365124A1 patent drawing
  • US20240365124A1 patent drawing
  • US20240365124A1 patent drawing

AI summary

A method for connecting a first station to a second station in a wireless communication network. The method includes the second station implementing: transmitting, to the first station, at least one item of information representative of a security mode supported by the second station; and connecting to a basic service set to which the first station belongs, selected by the first station based on the at least one item of information representative of a security mode supported by the second station.