Wireless Mesh Configuration Network for Secure Data Center Management

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current network infrastructure faces challenges in secure configuration and management, particularly in data centers, where wired networks are vulnerable to security breaches and maintenance complexities due to the need for physical connections and shared communication media.

Innovation Solution

Implementing a short-range wireless mesh network, such as Bluetooth, to create a secure administrative network that allows devices to connect and configure securely before accessing the production network, using mesh nodes to relay communications and enable peer-to-peer connections, thereby reducing the reliance on physical wired connections and enhancing security and maintenance efficiency.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If wired networks are used for network infrastructure connections, then reliable communication and stable connectivity are achieved, but security vulnerabilities increase and maintenance complexity increases due to physical connection requirements

Engineering Contradiction:
Improvecommunication stabilityVSAvoidsecurity breaches
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent introduces a wired-to-wireless bridge device as an intermediary component that physically connects to the wired network infrastructure but provides wireless communication interfaces for administrative devices. This bridge acts as a mediator that isolates administrative wireless traffic from the production wired network, allowing secure configuration and management without direct wired connections to production devices.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If wired connections are used for device configuration and management, then direct access to production network is achieved, but security risk increases and physical access requirements complicate maintenance

Engineering Contradiction:
Improvedirect accessVSAvoidsecurity breaches
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent segments the network into distinct functional zones: a production wired network for data traffic and an administrative wireless network for management traffic. Administrative devices connect wirelessly to configuration targets through the bridge, creating separate communication paths that prevent unauthorized access to production systems while maintaining ease of configuration and management operations.

Inventive Principle:
Principle #1Segmentation

3Object-affected harmful factors

If wireless mesh network is implemented for administrative access, then security is enhanced and physical connection requirements are reduced, but network complexity increases

Engineering Contradiction:
Improvesecurity breachesVSAvoidnetwork configuration
Core Design Contradiction:
Object-affected harmful factorsVSDevice complexity

Solution Approach 1:

The wireless mesh network is configured to operate autonomously for administrative purposes, with devices automatically discovering and connecting to the network through standard wireless protocols. The bridge device manages the connection between wired infrastructure and wireless administrative nodes without requiring manual configuration of each administrative device, reducing overall network complexity while maintaining security enhancements.

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS11109427B2Mesh configuration network
Publication Date: 2021.08.31 HEWLETT PACKARD ENTERPRISE DEV LP
  • US11109427B2 patent drawing
  • US11109427B2 patent drawing
  • US11109427B2 patent drawing

AI summary

Systems and methods are provided to allow configuration of network devices via a Bluetooth® (or other short range wireless) configuration network using a mesh network implementation. This configuration mesh network may represent a mesh network independent of any active wired or production network within an enterprise computer system. For security of a network infrastructure for the enterprise computer system, wired ports on network infrastructure devices may be disabled prior to configuration via the configuration mesh network. New devices may be physically but not communicatively connected to the production network (e.g., cables may be connected to disabled ports) and then configuration may be performed via the configuration mesh network to allow the new devices to become active (e.g., join with production devices) within the network infrastructure. Run-time configurations for production devices may also be maintained using a separate configuration mesh network.