Wireless Network Interface as Remote Probe for Unauthorized Access Detection

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current wireless security systems rely on proprietary hardware and limited coverage, failing to detect unauthorized or unsecured access points in all areas of a corporate environment, leaving potential 'holes' in coverage.

Innovation Solution

Utilizing existing wireless network interfaces on computer nodes to act as remote probes, creating a virtual antenna for comprehensive detection of all active access points within the enterprise, eliminating the need for expensive proprietary hardware and enabling broader geographic coverage.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Measurement precision

If proprietary hardware is used for wireless security detection, then detection capability is improved, but device complexity and cost increase

Engineering Contradiction:
Improvedetection capabilityVSAvoidhardware requirements
Core Design Contradiction:
Measurement precisionVSDevice complexity

Solution Approach 1:

The patent makes existing wireless network interfaces serve dual purposes: their original network communication function and the additional function of wireless security detection. By configuring these interfaces to scan and detect access points, the system achieves comprehensive detection capability without adding specialized hardware, thus resolving the contradiction between detection capability and device complexity

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The system uses the enterprise's own existing wireless-enabled computers and network interfaces to perform security detection, rather than relying on external proprietary hardware. The existing infrastructure serves itself for security monitoring, eliminating the need for additional specialized detection devices while maintaining effective detection coverage

Inventive Principle:
Principle #25Self-service

2Area of stationary object

If proprietary hardware is deployed for comprehensive coverage, then detection coverage is improved, but implementation cost increases

Engineering Contradiction:
Improvedetection coverageVSAvoidimplementation cost
Core Design Contradiction:
Area of stationary objectVSEase of manufacture

Solution Approach 1:

Existing wireless network interfaces are repurposed to perform both network communication and security detection functions. This multi-functional approach allows comprehensive detection coverage across the enterprise using already-deployed hardware, eliminating the need for expensive proprietary detection devices while maintaining broad geographic coverage

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

Instead of deploying expensive proprietary hardware, the system creates a virtual copy of detection functionality using standard wireless network interfaces that are already present on enterprise computers. This software-based approach replicates the detection capability without the high cost of specialized hardware

Inventive Principle:
Principle #26Copying

3Ease of manufacture

If existing wireless interfaces are used for detection, then implementation cost is reduced, but detection precision may be compromised

Engineering Contradiction:
Improveimplementation costVSAvoiddetection accuracy
Core Design Contradiction:
Ease of manufactureVSMeasurement precision

Solution Approach 1:

The system implements a centralized management approach where detection results from multiple wireless interfaces are collected, aggregated, and analyzed by a central server. This feedback mechanism ensures that even though individual interfaces are standard components, the collective detection accuracy is maintained through systematic data processing and correlation, resolving the concern about detection precision

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS8782740B1Systems and methods for detection of unauthorized or unsecured access points
Publication Date: 2014.07.15 IVANTI INC
  • US8782740B1 patent drawing
  • US8782740B1 patent drawing
  • US8782740B1 patent drawing

AI summary

A method for detecting unauthorized or unsecured access points is disclosed. At least one node of a computer network having a wireless network interface is identified. At least one of the identified nodes is requested to scan for detectable wireless access points. A listing of identified wireless access points is utilizing information gathered through at least one of the scans. An inventory of authorized wireless access points is formulated. The listing is compared to the inventory to identify unauthorized wireless access points. Also, security information may be gathered and analyzed for identified wireless access points.