Wireless Gateway Proxy for Simultaneous Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional communication systems require serial authentication for wireless and PacketCable services, leading to time-consuming processes, additional hardware overhead, and resource occupation on wireless devices.

Innovation Solution

The use of a wireless gateway as a transparent authentication proxy, eliminating the need for a separate wireless authentication server and allowing simultaneous authentication for both wireless and PacketCable services, thereby reducing infrastructure requirements and computational burden on wireless devices.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If serial authentication is performed for wireless service and PacketCable service, then authentication security is maintained, but authentication time increases significantly

Engineering Contradiction:
Improveauthentication securityVSAvoidauthentication time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent combines wireless service authentication and PacketCable service authentication into a single integrated authentication process. The authentication server performs both authentication functions simultaneously, merging what were previously separate serial authentication steps into one unified operation, thereby reducing total authentication time while maintaining security requirements for both services

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The authentication server is designed to perform multiple authentication functions - both wireless service authentication and PacketCable service authentication - within a single system. This multi-functional approach eliminates the need for separate authentication processes and reduces the overall authentication time while maintaining the security integrity of both services

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Adaptability or versatility

If a wireless authentication server is added for wireless service authentication, then authentication capability is improved, but hardware overhead increases

Engineering Contradiction:
Improveauthentication capabilityVSAvoidhardware overhead
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The authentication server is designed as a universal system that handles both wireless service authentication and PacketCable service authentication. By making the authentication server multi-functional, the patent eliminates the need for separate dedicated authentication servers for each service, thereby reducing hardware overhead while maintaining comprehensive authentication capability

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The patent merges the functions of wireless service authentication and PacketCable service authentication into a single authentication server. This consolidation combines what would have been separate hardware resources into one unified system, reducing overall hardware overhead while preserving the ability to authenticate both service types

Inventive Principle:
Principle #5Merging (Combining)

3Extent of automation

If both wireless service authentication and PacketCable service authentication are performed by the wireless device, then authentication autonomy is maintained, but computational resources on the wireless device are occupied

Engineering Contradiction:
Improveauthentication autonomyVSAvoidcomputational resources on wireless device
Core Design Contradiction:
Extent of automationVSUse of energy by moving object

Solution Approach 1:

The patent extracts the authentication computation tasks from the wireless device and relocates them to the authentication server. The wireless device's role is reduced to providing authentication credentials, while the computationally intensive verification processes for both wireless service and PacketCable service are performed on the server, thereby reducing energy consumption and computational resource usage on the wireless device while maintaining authentication autonomy through credential-based verification

Inventive Principle:
Principle #2Taking out (Extraction)

Data Source

PatentUS9668230B2Security integration between a wireless and a wired network using a wireless gateway proxy
Publication Date: 2017.05.30 AVAGO TECHNOLOGIES INTERNATIONAL SALES PTE LTD
  • US9668230B2 patent drawing
  • US9668230B2 patent drawing
  • US9668230B2 patent drawing

AI summary

A method, system and computer program product in a wireless gateway to provide secured communications over a wireless network and a wired network is provided herein. The method includes the steps of receiving a first authentication credential from a wireless device and mapping the first authentication credential to a second authentication credential. The method further includes transmitting the second authentication credential to an authentication server and receiving a first authentication response from the authentication server. The method also includes generating a first shared secret and a second shared secret if the first authentication response indicates that authentication is successful and transmitting a second authentication response to the wireless device. The first shared secret is used to setup a first secured channel for communications with a service provider over a wired network and the second shared secret is used to setup a second secured channel for communications with the wireless device.