Wireless Network Access Apparatus Dual-SSID Credential Automation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current wireless network access methods using Wi-Fi Protected Access (WPA/WPA2) face challenges in balancing network security and user convenience, particularly due to the difficulty in entering complex pre-shared keys and the risk of network attacks from simple passwords.

Innovation Solution

A wireless network access apparatus and method that sets up two wireless networks with different access permissions, where a first network with lower access permission is used as a platform to access a second network with higher permission, automatically providing the necessary service set identifier and access password to the terminal only when it is determined as the first access point, allowing for high-security, complex passwords without manual entry.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If a long character string password is used for WPA/WPA2 encryption, then network security is improved, but user operation convenience deteriorates due to difficulty in manual entry and high error rate

Engineering Contradiction:
Improvenetwork securityVSAvoiduser operation convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system enables the terminal to automatically obtain and input the access password without manual user entry. The terminal acquires the password through automated interaction with the access point, eliminating the need for users to manually type complex passwords while maintaining strong security requirements.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The access point acts as an intermediary that automatically transmits the access password to the terminal. This intermediary mechanism facilitates the transfer of security credentials without requiring direct user intervention in the password entry process, resolving the contradiction between security and usability.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If a simple character string password is used, then user operation convenience is improved, but network security deteriorates due to increased exposure to network attack tools

Engineering Contradiction:
Improveuser operation convenienceVSAvoidnetwork security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The terminal automatically acquires and inputs the access password without user intervention, enabling the use of complex passwords that would be impractical for manual entry while maintaining security. The system serves itself by automating the credential management process.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The manual mechanical process of typing passwords is replaced with an automated electronic system where the terminal programmatically obtains and inputs credentials. This substitution eliminates the limitations of manual entry while preserving security requirements.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

3Reliability

If a binary password is used, then network security is improved, but ease of operation deteriorates because binary passwords cannot be manually entered

Engineering Contradiction:
Improvenetwork securityVSAvoidmanual entry capability
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system replaces the mechanical constraint of manual keyboard entry with an automated electronic credential transmission mechanism. The terminal can now handle binary and other non-textual password formats through programmatic interfaces, expanding the security space beyond what manual entry permits.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Solution Approach 2:

The terminal autonomously manages the entire password acquisition and input process, enabling the use of binary passwords that are entirely unsuitable for manual entry. The system serves itself by handling credential management without human intervention.

Inventive Principle:
Principle #25Self-service

4Reliability

If WPA/WPA2 encryption is enabled, then network security is improved, but device complexity increases due to configuration requirements and authentication processes

Engineering Contradiction:
Improvenetwork securityVSAvoidconfiguration complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The access point serves as an intermediary that manages the complexity of WPA/WPA2 configuration and authentication. It automatically handles password generation, transmission, and verification, shielding users from the underlying complexity while maintaining strong security enforcement.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system automates the configuration and authentication processes, enabling itself to manage security settings without user intervention. The terminal and access point work together to automatically establish secure connections, eliminating the need for users to navigate complex configuration interfaces.

Inventive Principle:
Principle #25Self-service

Data Source

PatentEP3122144B8Device and method for accessing wireless network
Publication Date: 2019.03.13 HUAWEI DEVICE CO LTD

AI summary

This application discloses an apparatus and a wireless network access method. The apparatus includes a receiving module, a control module, and a sending module. The receiving module is configured to receive access request information sent by a terminal, request information of acquiring a service set identifier and an access password, and the service set identifier and the access password of a second wireless network. The control module is configured to allocate a first IP address to the terminal according to the access request information; when the terminal is determined as a target terminal according to the access request information or the request information of acquiring the service set identifier and the access password, allocate, to the terminal, the service set identifier and the access password for accessing the second wireless network; and when it is determined that the service set identifier and the access password of the second wireless network match the received service set identifier and access password, allocate a second IP address to the terminal. The sending module is configured to send the first IP address, the service set identifier and the access password for accessing the second wireless network, and the second IP address to the terminal.