WPS Management Frame Power Control for Proximity-Limited Setup Security
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The existing Wi-Fi Protected Setup (WPS) procedure is vulnerable to attacks, allowing attackers to gain network credentials and decrypt network traffic due to exposure of wireless devices during the setup process.
Innovation Solution
Implementing Tx power reduction and ranging mechanisms during the WPS procedure to ensure only proximal devices can receive management frames and configure credentials, thereby enhancing security.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If WPS management frames are transmitted at normal power levels, then devices can reliably connect to the wireless network, but attackers within range can intercept and exploit the WPS procedure to gain network credentials
Solution Approach 1:
The patent applies local quality by transmitting WPS management frames at reduced power levels specifically during the WPS setup procedure, creating a localized low-power transmission zone. This ensures that only devices in immediate proximity to the access point can receive and participate in the WPS exchange, while maintaining connection reliability for authorized devices within that local zone.
Solution Approach 2:
The patent changes the transmission power parameter dynamically based on the operational state. During WPS procedure activation, the transmission power is reduced to a lower level, and when WPS is inactive, normal transmission power levels are restored. This parameter change resolves the contradiction by adapting the transmission characteristics to the specific security requirements of the WPS procedure.
2Object-affected harmful factors
If reduced Tx power is used for WPS frames, then security against remote attackers is improved, but the transmission range and reliability for legitimate devices may be reduced
Solution Approach 1:
The patent implements preliminary action by requiring devices to be in close physical proximity before initiating the WPS procedure. The reduced power transmission is applied from the outset of the WPS exchange, ensuring that only devices already positioned within the limited transmission range can participate. This preliminary positioning requirement ensures that reliability is not compromised for legitimate users who are physically present.
Solution Approach 2:
The patent applies dynamics by making the transmission power level conditional and time-dependent. The reduced power level is activated only during the WPS procedure duration and deactivates when WPS is no longer active. This dynamic adjustment ensures that reliability is maintained for normal operations while security is enhanced during the vulnerable WPS setup phase.
3Ease of operation
If WPS procedure is activated without proximity verification, then setup process is simple and fast, but attackers can perform credential harvesting from a distance
Solution Approach 1:
The patent implements self-service by having the physical proximity requirement naturally enforce security without adding complex verification steps to the user interface. The reduced transmission power creates a self-enforcing security boundary where only devices physically present can receive frames, making the security mechanism transparent to users while maintaining setup simplicity.
Solution Approach 2:
The patent changes the transmission power parameter as a conditional requirement for WPS activation. Rather than adding procedural complexity, the system automatically adjusts the power parameter based on whether WPS is active, creating an invisible security barrier that maintains ease of operation for legitimate users while preventing remote attacks.
Data Source
Figure 1
Figure 2
Figure 3
AI summary
Solutions pertaining to improvement in the security of a Wi-Fi Protected Setup, WPS, procedure are proposed. An access point, AP, determines that a WPS procedure is activated (310). In response, the AP varies a transmission, Tx, power in transmitting one or more WPS management frames during the WPS procedure (320). Moreover, the AP configures one or more credentials to a station, STA, in response to receiving one or more management frames from the STA (330).