Wireless Device Zero-Touch Setup via Role Reversal

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing Wi-Fi network connection methods require user interaction, compromising security and increasing logistical complexity, as they necessitate pre-programming of access point credentials on devices before shipment, which can lead to insecure exposure of network information during manufacturing, storage, or delivery.

Innovation Solution

A wireless network device with a remote management function that receives authentication information from a service provider to automatically configure and connect with a target device, allowing seamless operation without user intervention, ensuring secure and automated setup by recognizing the new device upon arrival.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If access point credentials are pre-programmed on devices during manufacturing, then connection setup is simplified, but security is compromised and logistical complexity increases

Engineering Contradiction:
Improveconnection setupVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The access point is pre-configured with a unique identification code and listening mode capability during manufacturing, rather than pre-programming credentials. This preliminary action enables automatic connection later without exposing sensitive network credentials during the preconfiguration phase, resolving the contradiction between ease of setup and security.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

A remote management server acts as an intermediary between the access point and the service provider. The server receives the identification code from the access point, retrieves corresponding credentials securely, and provides them for automatic connection. This intermediary mechanism enables simplified setup while maintaining security by preventing direct exposure of credentials during manufacturing and distribution.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If access point credentials are pre-programmed on devices, then connection setup is simplified, but device complexity and customization requirements increase

Engineering Contradiction:
Improveconnection setupVSAvoidcustomization
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

Instead of pre-programming complete credentials which requires customization for each customer, the system pre-configures a universal listening mode and identification code capability on all access points. This single preliminary action enables automatic connection to any network without requiring device customization, reducing both complexity and logistics.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The access point is designed with universal functionality to operate in listening mode and accept automatic connection requests from any client device. This multi-functionality eliminates the need for customer-specific customization while maintaining simplified connection setup, as the same device configuration works across all deployments.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Reliability

If manual configuration methods are used, then security is maintained, but user interaction and setup time are required

Engineering Contradiction:
ImprovesecurityVSAvoidsetup process
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The access point autonomously performs the connection setup process by broadcasting its identification code and automatically connecting to the network using credentials retrieved by the remote management server. This self-service capability eliminates the need for manual user configuration while maintaining security, as no user interaction is required to expose or handle sensitive credentials.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The system implements automatic feedback loops where the access point broadcasts its identification code, the remote management server receives and processes it, retrieves credentials, and provides them back for automatic connection. This feedback mechanism enables seamless automatic setup while maintaining security through controlled credential exposure only at the moment of legitimate connection.

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS10938798B2Configuration of wireless-equipped devices
Publication Date: 2021.03.02 BRITISH TELECOM PLC
  • US10938798B2 patent drawing
  • US10938798B2 patent drawing
  • US10938798B2 patent drawing

AI summary

In order to allow automatic installation of a newly-supplied wireless device (2) such that it can communicate with the internet (9) through an access point (7), the new device (2) is configured so that on initial installation it operates in access point mode. A remote service provider (4) is provided with authentication information (406) and generates to instructions to the access point (7) to monitor for a broadcast beacon from the target wireless device (2). When it detects the beacon, the access point (7) switches to client mode to establish a secured wireless network connection (8) between the access point (7) and the new wireless network device (2), with the access point (7) operating in a client mode. By reversing the roles in this way, the provider of the new device (2) can arrange for automatic connection to the access point (7) without having to programmed the device (2) with any password or other data relating to the customer's access network. The customer's network is instead provided with security data burnt in to the new device on manufacture. The new device (2) can then exchange data with the access point (7) relating to a local area network controlled by the access point (7), such that it can be added to that LAN as a client, with the access point (7), with its connection to the Internet (9) then reverting to normal access point mode. Alternatively the new device (2) may be configured to remain in access point mode to operate as a repeater or, if it is connected to the internet (9) itself, to replace the original access point (7).