WLAN Credential Storage in Network Settings for Seamless Authentication
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Conventional methods for authenticating electronic devices on open WLAN networks require frequent re-login due to temporary authentication sessions and lack of secure credential storage, with browser-managed credentials being vulnerable to third-party access and not associated with specific networks.
Innovation Solution
Storing website credentials in a network settings space, such as a WLAN profile, and using a website credential API to manage authentication, allowing automatic re-login and secure storage of credentials within a secure network layer, separate from browser applications.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If credentials are stored in browser data storage space, then authentication process is simple, but credentials are vulnerable to being spoofed by third party applications
Solution Approach 1:
The patent extracts credential storage from the browser application layer and places it in the device's secure network settings space. The browser no longer manages credentials directly, but instead communicates them to the network settings which stores them securely. This separation removes credentials from the vulnerable browser storage environment while maintaining the authentication workflow.
2Ease of operation
If browser manages credentials independently, then browser operation is simple, but credentials are not associated with specific WLAN networks
Solution Approach 1:
The patent merges credential storage with WLAN network profiles in the device's network settings. Instead of storing credentials generically in the browser, the system associates credentials with specific network identifiers (SSID, BSSID) in the network settings space. This allows the device to automatically select and use appropriate credentials when connecting to specific WLAN networks, while the browser continues to operate independently.
3Reliability
If authentication session is temporary, then security is improved, but frequent re-login is required
Solution Approach 1:
The patent implements preliminary action by automatically retrieving and submitting stored credentials when the device reconnects to a WLAN network, before the user needs to manually re-authenticate. The system monitors network connection status and automatically performs re-authentication using credentials pre-stored in the network settings, eliminating the need for user intervention while maintaining secure temporary sessions.
4Reliability
If credentials are stored in network settings space, then credential security is improved, but device complexity increases
Solution Approach 1:
The patent introduces an intermediary communication interface between the browser application and the network settings space. This intermediary mechanism allows the browser to submit credentials to network settings without requiring complex integration. The network settings acts as a secure vault that receives, stores, and retrieves credentials through standardized interfaces, simplifying the overall architecture while enhancing security.
Data Source
AI summary
One method for allowing and controlling access to an open WLAN network is through the use of a secure website such as a Hotspot or Captive Portal landing page that the device must “log in” to in order to have access to the network. Credentials for a Captive Portal or Hotspot landing page (or other websites) are conventionally managed by a browser application and stored in a browser data storage space. According to some aspects of the disclosure, an electronic device obtains credentials for a website, such as a Captive Portal or Hotspot landing page. The credentials are stored in a network settings space on the electronic device. The credentials may be stored in a WLAN profile. The device may automatically log in to a webpage using the credentials, which may facilitate seamless connectivity.


