Wireless Terminal Authentication Discovery via GAS Requests
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing wireless network technologies lack provisions for efficiently providing authentication information to wireless terminals, leading to frustrating user experiences and vulnerabilities due to manual configuration and reliance on insecure communication protocols.
Innovation Solution
Implementing methods and apparatus that enable wireless terminals to discover authentication information and parameters at the MAC sub-layer, reducing the need for user intervention and minimizing vulnerabilities by using pre-defined query protocols like GAS to retrieve necessary authentication details from wireless access points.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If manual configuration of authentication information is used, then device complexity is reduced, but ease of operation deteriorates and loss of time increases
Solution Approach 1:
The wireless terminal automatically discovers and configures authentication information without user intervention. The terminal initiates capability queries to the access point, receives authentication parameters, and configures itself autonomously, eliminating manual configuration steps while maintaining reasonable system complexity through standardized protocols
Solution Approach 2:
The authentication information is made available in advance through the access point's capability information. The terminal queries and retrieves authentication parameters before actual authentication is needed, allowing pre-configuration of credentials and avoiding last-minute manual intervention
2Reliability
If high-level communications protocols are used, then ease of operation is improved, but reliability deteriorates due to security vulnerabilities
Solution Approach 1:
The patent introduces an intermediary authentication information element that operates at the MAC sub-layer, between the physical layer and network layer. This intermediary layer provides secure authentication exchange using standardized capability queries and responses, protecting against vulnerabilities in higher-level protocols while maintaining automated operation
Solution Approach 2:
The patent replaces manual mechanical configuration processes with automated electronic discovery mechanisms. The terminal uses structured capability queries to automatically obtain authentication information, substituting manual key entry and configuration with programmatic, secure automated retrieval at the MAC layer
3Loss of time
If authentication information is not pre-configured, then device complexity is reduced, but loss of time increases due to manual configuration requirements
Solution Approach 1:
The access point prepares authentication information in advance and makes it available through capability information. The terminal queries this information before authentication is needed, allowing pre-retrieval of credentials and eliminating time-consuming manual configuration during connection establishment
Solution Approach 2:
The terminal autonomously retrieves and configures authentication information without user intervention. The automated capability query and configuration process eliminates manual setup time while using standardized protocols to maintain reasonable device complexity
Data Source
Figure 1
Figure 2~3
Figure 4~5
AI summary
A method to discover authentication information in a wireless network, comprising: transmitting, from a wireless terminal, during network discovery and prior to authentication, a Generic Advertisement Service, GAS, request to a network access point, the GAS request requesting authentication information; and receiving, by the wireless terminal, a response to the GAS request from the network access point, wherein the response includes the authentication information, the authentication information being indicative of an extensible authentication protocol, EAP, method and indicative of a credential required from the wireless terminal to use for authentication of the wireless terminal, the credential being indicative of a username and password credential.