Systems, methods, and apparatuses for network management
Methods, systems, and apparatuses for network management are described. A network device may provide a network that is accessible using a network credential. An internet of things (IoT) device may be required to be configured or provisioned before joining the network. The IoT device may be associated with a scannable identifier. A user device may determine the scannable identifier and, based on the scannable identifier, provide provisioning credentials to the IoT device.
1 . A method comprising:
receiving, by a computing device, from a device, via a first communications network, a first notification comprising a device identifier associated with the device;
receiving, via a second communications network, a second notification comprising the device identifier associated with the device; and
based on the first notification and the second notification both comprising the device identifier, sending, via the first communications network, a network credential to the device, wherein the network credential is associated with the second communications network and causes the device to communicate with a certificate authority via the second communications network.
2 . The method of claim 1 , wherein the computing device comprises a service provider server and wherein the device comprises at least one of: a camera, a thermostat, a sensor, an air purifier, a doorbell, a voice enabled device, or a remote control.
3 . The method of claim 1 , wherein the first notification comprises a request for the network credential associated with the second communications network, and wherein the second notification comprises a token.
4 . The method of claim 1 , wherein receiving the second notification further comprises receiving, from an associated device, based on a scanned identifier, the second notification, wherein the scanned identifier is associated with the device, and wherein the scanned identifier comprises a physical indicator affixed to the device.
5 . The method of claim 1 , wherein receiving the second notification further comprises:
scanning, by an associated device, a physical indicator affixed to the device; and
converting the scan of the physical indicator to the device identifier in the second notification.
6 . The method of claim 1 , further comprising determining, based on the device identifier in the first notification matching the device identifier in the second notification, account information associated with an associated device, wherein the account information comprises the network credential.
7 . The method of claim 1 , further comprising:
generating, by the device, a key pair, wherein the key pair comprises a private key and a public key;
generating, based on the private key, a certificate signing request (CSR);
sending, to the certificate authority, via the second communications network, the CSR, the public key, and a security token; and
receiving, from the certificate authority, via the second communications network, a signed identity certificate.
8 . A method comprising:
based on a device identifier being sent in a first notification to a computing device, receiving, by a device, from the computing device, via a first communications network, a network credential of a second communications network, wherein the first notification is associated with an account, and wherein the second communications network is associated with the account;
establishing, based on the network credential, via the second communications network, a communication session with a certificate authority; and
receiving, by the device, from the certificate authority, via the communication session, an identity certificate.
9 . The method of claim 8 , wherein the computing device comprises a service provider server and wherein the device comprises at least one of: a camera, a thermostat, a sensor, an air purifier, a doorbell, a voice enabled device, or a remote control.
10 . The method of claim 8 , the first notification comprises a request for the network credential associated with the second communications network.
11 . The method of claim 8 , further comprising determining that the device identifier associated with the first notification matches an identifier associated with the account, wherein the account comprises a purchaser account.
12 . The method of claim 8 , further comprising:
generating, by the device, a key pair, wherein the key pair comprises a private key and a public key;
generating, based on the private key, a request for the identity certificate; and
sending, via the communication session, the request for the identity certificate.
13 . The method of claim 12 , wherein sending, via the communication session, the request for the identity certificate comprises sending, to the certificate authority, the request for the identity certificate, the public key, and a security token.
14 . The method of claim 8 , further comprising:
receiving, from an application server, a public key associated with the application server;
encrypting, based on the public key associated with the application server, data into encrypted data; and
sending, via the second communications network, the encrypted data to the application server.
15 . A method comprising:
establishing, by a device, based on a device identifier associated with the device, a first communication session with an associated device, wherein the device receives the device identifier associated with the device based on the device identifier associated with the device matching a device identifier stored in the associated device; and
receiving, from a certificate authority, via a second communication session, an identity certificate, wherein the certificate authority is associated with the associated device.
16 . The method of claim 15 , wherein the device comprises at least one of: a camera, a thermostat, a sensor, an air purifier, a doorbell, a voice enabled device, or a remote control, and wherein the associated device comprises at least one of: a smartphone, a computer, a laptop, or a tablet.
17 . The method of claim 15 , further comprising:
generating, by the device, a key pair, wherein the key pair comprises a private key and a public key;
generating, based on the private key, a request for the identity certificate; and
sending, via the second communication session, the request for the identity certificate.
18 . The method of claim 17 , wherein sending, via the second communication session, the request for the identity certificate comprises sending, to the certificate authority, the request for the identity certificate, the public key, and a security token.
19 . The method of claim 15 , further comprising:
receiving, from an application server, a public key associated with the application server;
encrypting, based on the public key associated with the application server, data into encrypted data; and
sending the encrypted data to the application server.
20 . The method of claim 19 , further comprising:
receiving, from the application server, the encrypted data; and
decrypting, based on a private key, the encrypted data.