Wireless Frame Protection Using Split PN Key Spaces
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing wireless communication systems face challenges in efficiently and securely conveying communications signaling information, particularly in high-throughput applications like video teleconferencing and HD video surveillance, due to the need for robust frame protection against unauthorized access and attacks.
Innovation Solution
The method involves dividing the packet number (PN) space of keys, such as peer transient key (PTK) and group temporal key (GTK), into independent subspaces for unicast and multicast/broadcast control frame protection and data/management frame protection, ensuring integrity and encryption/decryption of frames.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If a single key is used for all frame protection, then device complexity is reduced, but security and integrity protection becomes insufficient against unauthorized access and attacks
Solution Approach 1:
The patent segments the single key into multiple independent keys: a first key for control frame protection and a second key for data and management frame protection. This segmentation allows each key to be optimized for its specific frame type, enhancing security and integrity protection without requiring complex key management systems, as the segmentation is implemented through straightforward key generation and application logic
2Reliability
If frame protection is strengthened through multiple keys, then security against unauthorized access improves, but processing overhead and system complexity increases
Solution Approach 1:
The patent divides the key into two distinct keys with specific roles: the first key handles control frames while the second key handles data and management frames. This segmentation enables targeted integrity checking and encryption for each frame type, improving reliability without requiring complex key processing mechanisms
Solution Approach 2:
The patent applies different keys to different frame types based on their specific security requirements. Control frames use the first key while data and management frames use the second key, allowing each frame type to receive appropriately tailored protection without unnecessary processing overhead from using multiple keys for all frames
Data Source
AI summary
Embodiments of a method and apparatus for wireless communications are disclosed. In an embodiment, a wireless device includes a controller configured to generate a protected frame using a key for integrity checking or encryption or decryption protection, where a packet number (PN) space of the key is divided to independent PN subspaces for control frame protection and data and management frame protection, and a transceiver configured to transmit the protected frame to a second wireless device.


