Wireless Industrial Control Interface with Configurable Access Mask
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Industrial control systems face security and identification accuracy issues due to the vulnerability of wireless networking, where users may inadvertently access incorrect entities or functionalities within the system, especially when using portable interfaces that provide equal access to all functionalities.
Innovation Solution
A wireless user interface module and interface system that includes a configuration mask for access rights, allowing selective disabling of software applications based on user authorization, ensuring that users can only access functionalities relevant to their training and authority, while maintaining security through proprietary message protocols and dual-layer password schemes.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If a portable user interface is used to access industrial control system entities, then ease of operation is improved, but security and identification accuracy deteriorate due to wireless networking vulnerabilities
Solution Approach 1:
The patent applies local quality by providing different access rights and software application availability to different users based on their specific needs and authorization levels. Each user receives a customized interface configuration where only relevant functionalities are enabled, rather than providing uniform access to all users. This resolves the contradiction by maintaining portable interface convenience while enhancing security through user-specific access control.
Solution Approach 2:
The patent segments the software applications into different categories and controls their availability based on user authorization. By dividing the system functionality into discrete controllable units and assigning different access levels to different users, the system maintains ease of portable operation while improving security through granular access control.
2Ease of operation
If all users are provided equal access to all functionalities through a common portable user interface, then ease of operation is improved, but security deteriorates as users may access functionalities for which they lack training or authority
Solution Approach 1:
The patent implements local quality by customizing the user interface for each user based on their authorization level and training. Instead of providing a uniform interface with all functionalities to all users, the system selectively enables only those software applications and features that are appropriate for each user's role. This resolves the contradiction by maintaining interface consistency and ease of use while preventing unauthorized access through user-specific configuration.
Solution Approach 2:
The patent introduces an intermediary configuration mask that mediates between the user's request for access and the system's security requirements. This configuration mask acts as a filter that selectively enables or disables software applications based on user authorization, allowing the system to provide a common portable interface while preventing harmful unauthorized access.
3Ease of operation
If wireless networking is used to connect user interfaces to industrial control system entities, then ease of operation is improved, but reliability deteriorates due to potential compromise by outside entities
Solution Approach 1:
The patent applies local quality by implementing user-specific access control and software application authorization. Even though wireless networking provides convenient access, the system customizes each user's interface to only include authorized functionalities, thereby maintaining operational ease while mitigating security risks through granular access control.
Solution Approach 2:
The patent applies preliminary anti-action by pre-configuring authorization levels and software application availability for each user before they attempt to access the system. The configuration mask is established in advance to prevent unauthorized access attempts, rather than relying solely on reactive security measures after a compromise attempt.
Data Source
AI summary
A user interface operable to connect to a device within an industrial control system includes a memory and a processing unit. The memory is operable to store a plurality of software applications for interfacing with the device and a configuration mask including access rights for at least a subset of the software applications. The processing unit is operable to establish a first connection with the device and disable selected software applications based on the configuration mask.


