Wireless Network Identity Registration via Key-User Pairing
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Managed wireless networks require users to individually register and configure each device with device-identifying information like MAC addresses, posing challenges for nontechnical users and increasing IT support burdens.
Innovation Solution
A network system that registers a unique pre-shared key and user profile, forming a key-user pair associated with a network policy, allowing devices to connect using a single key without requiring device-specific information, and encrypting/decrypting data using this key.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Measurement precision
If device-level individual handling is implemented for network policy application, then network management precision is improved, but user operation complexity increases
Solution Approach 1:
The patent segments the identification system into two layers: device identification (MAC address) for precise network policy application, and user identification (pre-shared key) for simplified operation. The authentication server correlates device MAC addresses with user pre-shared keys, allowing individual device handling while enabling users to connect with a single key across multiple devices.
Solution Approach 2:
The authentication server acts as an intermediary that correlates device-level identification (MAC address) with user-level identification (pre-shared key). This intermediary component enables the system to maintain precise device-level network policy application while allowing users to operate with simplified user-level credentials.
2Measurement precision
If device-identifying information registration is required for each device, then network policy application accuracy is improved, but IT support burden increases
Solution Approach 1:
The patent separates identification registration into device-level automatic detection (MAC address captured by authentication server) and user-level manual registration (pre-shared key). This segmentation eliminates the need for IT staff to manually register each device while maintaining accurate device-level network policy application through automatic MAC address correlation.
Solution Approach 2:
The system implements self-service device registration where the authentication server automatically captures and stores device MAC addresses during the authentication process. Users simply provide their pre-shared key, and the system automatically associates the device with the user account, eliminating manual IT intervention for device registration.
3Reliability
If multiple devices require individual configuration, then network security control is improved, but connection time increases
Solution Approach 1:
The patent implements preliminary user registration where users register once with their pre-shared key before connecting devices. The authentication server stores this pre-configured authentication credential, enabling users to connect multiple devices without repeated registration. Device-level security control is maintained through automatic MAC address capture and correlation with the pre-registered user account.
Data Source
AI summary
A network system includes a processor and computer-readable memory. The computer-readable memory is encoded with instructions that, when executed by the processor, cause the network system to register a unique pre-shared key, a user profile, and a network policy. The instructions further associate the unique pre-shared key with the user profile to form a key-user pair, associate the key-user pair with the network policy to form a mapped key-user pair, and provide the unique pre-shared key to a user to connect one or more devices to a wireless network. The unique pre-shared key is used to encrypt and decrypt data transmitted between a connected wireless device and the wireless network.


