Zero-Knowledge Protocol for Secure IoT Network Device Addition

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing computing networks face challenges in securely adding IoT devices due to the need for manual selection and the exposure of data to unauthorized access during the trust establishment process.

Innovation Solution

Implementing a zero-knowledge protocol that enables digital trust relationships between host computing devices and IoT devices attempting to join the network, allowing for secure addition without pre-existing digital certificates and minimizing data exposure.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If data is openly broadcast during trust establishment, then network devices can discover and communicate with each other, but data becomes exposed to sniffing, alteration, and manipulation by unauthorized third parties

Engineering Contradiction:
Improvedevice discovery and communicationVSAvoiddata exposure to unauthorized access
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent introduces a zero-knowledge proof protocol as an intermediary mechanism that enables trust establishment without exposing sensitive data. The protocol allows a joining device to prove its identity and credentials to the network without revealing the actual credential values, thus mediating between the need for open communication and data protection

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent extracts only the necessary verification information from the joining device's credentials through zero-knowledge proofs, allowing the network to verify authenticity without taking out or exposing the actual sensitive data. This separates the verification function from the credential data itself

Inventive Principle:
Principle #2Taking out (Extraction)

2Reliability

If manual device selection is required for content sharing, then security can be maintained, but user convenience deteriorates especially when desired devices lack easy identification methods

Engineering Contradiction:
ImprovesecurityVSAvoiddevice selection convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent enables devices to automatically perform trust establishment and identification through the zero-knowledge protocol without requiring manual user intervention. Devices self-verify their credentials and automatically present provable credentials for identification, eliminating the need for manual selection while maintaining security

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent replaces manual mechanical device selection with an automated cryptographic verification system. Instead of users manually selecting devices, the system uses zero-knowledge proofs to automatically verify device identities and establish trust relationships programmatically

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

3Adaptability or versatility

If traditional authentication methods are used, then devices can join the network, but the establishment of trust relationships becomes complex and vulnerable to unauthorized manipulation

Engineering Contradiction:
Improvedevice joining capabilityVSAvoidtrust relationship establishment
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent changes the fundamental parameter of authentication from exchanging and verifying raw credentials to exchanging and verifying zero-knowledge proofs. This parameter change simplifies the trust establishment process by transforming complex credential verification into a standardized mathematical proof verification that is both secure and easier to implement

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentUS12309137B2Adding devices to a network via a zero-knowledge protocol
Publication Date: 2025.05.20 LENOVO UNITED STATES INC
  • US12309137B2 patent drawing
  • US12309137B2 patent drawing
  • US12309137B2 patent drawing

AI summary

Methods, apparatus, and computer program products for adding devices to a network via a zero-knowledge protocol are disclosed. One method includes implementing, by a processor, a zero-knowledge protocol configured to establish digital trust relationships between the processor and computing devices attempting to join a network and adding each computing device to the network that successfully establishes a respective digital trust relationship with the processor via the zero-knowledge protocol. Apparatus and computer program products that include hardware and/or software that can perform the methods for adding devices to a network via a zero-knowledge protocol are also disclosed herein.