Wireless AP Guest Access via Emergency Attach

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional private wireless networks do not provide guest access to unregistered User Equipment (UE), leading to unauthorized access issues, as they require full employee-level privileges for network access, which is undesirable for non-employee users.

Innovation Solution

A wireless Access Point (AP) initiates an emergency attach procedure to bypass security requirements, obtaining authorization for guest access and configuring an eSIM profile for limited network access, allowing segmentation of guest traffic from employee traffic.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If conventional private wireless networks require full employee-level privileges for network access, then network security is maintained, but guest access capability is lost

Engineering Contradiction:
Improveguest access capabilityVSAvoidunauthorized access risk
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The patent segments network access privileges into multiple levels: full employee privileges and limited guest privileges. The guest attach procedure creates a separate, restricted access pathway that divides the network access control into distinct authorization tiers, allowing guests to obtain limited network access without full employee privileges while maintaining security through differentiated access rights.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces an intermediary guest attach procedure as a mediator between complete network access denial and full employee-level access. This intermediate procedure acts as a controlled gateway that grants guests limited network connectivity through a separate authorization mechanism, bypassing the need for full employee credentials while maintaining security boundaries.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If emergency attach procedure is initiated for unregistered UE, then guest access is enabled, but security requirements are bypassed

Engineering Contradiction:
Improveguest access provisioningVSAvoidsecurity requirement compliance
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent implements dynamic security requirements where the authentication process adapts based on UE registration status. Registered UEs follow the standard strict authentication procedure, while unregistered UEs triggering the emergency attach procedure receive dynamic, relaxed security requirements that enable guest access. This dynamic adjustment allows the system to maintain security for regular users while providing ease of operation for guests.

Inventive Principle:
Principle #15Dynamics

Data Source

PatentUS11051172B2Private wireless network guest access
Publication Date: 2021.06.29 CISCO TECHNOLOGY INC
  • US11051172B2 patent drawing
  • US11051172B2 patent drawing
  • US11051172B2 patent drawing

AI summary

In one example, a wireless Access Point (AP) is configured to provide network connectivity between a User Equipment (UE) and a private wireless network. The wireless AP obtains, from the private wireless network, an indication that the UE is unregistered with the private wireless network. In response to the indication that the UE is unregistered with the private wireless network, the wireless AP provides, to the private wireless network, an indication to initiate an emergency attach procedure with respect to the UE. In response to the indication to initiate the emergency attach procedure, the wireless AP obtains, from the private wireless network, an indication that the UE is authorized to access the private wireless network. In response to the indication that the UE is authorized to access the private wireless network, the wireless AP provides guest access to the private wireless network on behalf of the UE.