IP Library Granted Patent US 7,478,152
Granted Patent B2
US 7,478,152 · App. 10/881,211 · Granted Jan 13, 2009

System and method for consolidating, securing and automating out-of-band access to nodes in a data network

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 7,478,152
App. No.
10/881,211
Granted
Jan 13, 2009
Kind
B2
Abstract

A system and method for out-of-band network management is provided wherein one or more different management interfaces are converted into a common format management data. The system may encrypt the common format management data. The system may also authenticate each user that attempts to access the management interfaces.

Claims (26)

1. An out-of-band management system for devices on a computer network employing data transmission interfaces for the devices to communicate substantive data on the network, the devices also having management systems to communicate management data associated with the device, the management data being different from the substantive data, the system comprising:

a plurality of network nodes manageable through a dedicated management interface other than through the data transmission interfaces wherein the plurality of network nodes use at least a plurality of different types of management interfaces that communicate a plurality of different types of the management data over the dedicated management interface and not over the data transmission interfaces;

a management module, executing on a computer, that receives the plurality of different types of the management data, converts the different types of management data into a common management data format, and communicates the common management data format to a network management system;

wherein the management module further comprises:

plural modules with a, corresponding plural computer instructions executed by the computer to communicate with corresponding ones of the devices on corresponding ones of the plurality of network nodes using the plurality of different types of management data, wherein the management module monitors and accesses said devices remotely to restore network connectivity when a network node fails; and

the network management system further comprising a web server application, executing on a computer, that generates a graphical user interface based on the common management data format and a web-browser that permits a user to access each of the devices through the same management module.

2. The system of claim 1 , wherein the management module further comprises a module with a plurality of computer instructions executed by the computer that converts one or more low-level protocols utilized by the management interfaces into one or more higher-level protocols suited for transmission over a TCP/IP network to the network management system.

3. The apparatus of claim 2 wherein the low-level protocols are one or more of an RS-232 protocol, a keyboard video mouse protocol, an intelligent platform management interface protocol, an integrated lights out interface protocol, an advanced lights out management interface protocol and a Blade center management protocol.

4. The apparatus of claim 3 , wherein the network nodes are one or more of a serial console server, a keyboard video mouse switch, an intelligent platform management interface device, an integrated lights out interface device, an advanced lights out management interface device and a Blade center management module.

5. The system of claim 1 , wherein the management module further comprises a module with a plurality of computer instructions executed by the computer that encrypts the common management data in order to prevent the common management data from being intercepted when in transit to the network management system.

6. The system of claim 1 , wherein the management module further comprises a module with a plurality of computer instructions executed by the computer that communicates with enterprise directory systems to authenticate a user before giving them access to the management interfaces.

7. The apparatus of claim 6 wherein the enterprise directory systems employ protocols comprising one of RADIUS, TACACS, SecureID, X509 certificates, Kerberos, NIS, Active Directory and LDAP.

8. The system of claim 1 , wherein the management module further comprises a module with a plurality of computer instructions executed by the computer that detects a network management event and executes an action in response to the detection of the network management event.

9. The system of claim 8 , wherein the management module further communicates with multiple devices to restore power to a network node.

10. The system of claim 1 , wherein the management module further comprises a module that allows communication to multiple devices types to achieve alarm monitoring, power cycling, and data logging.

11. An out-of-band network management method for devices on a computer network employing data transmission interfaces for the devices to communicate substantive data on the network, the devices also having corresponding and different management interfaces to communicate over plural network nodes a plurality of different types of management data associated with the devices, the management data being different from the substantive data, the method comprising:

receiving at a management module the plurality of different types of management data from the corresponding and different management interfaces;

converting at the management module the plurality of different types of management data into a common management data format;

communicating from the management module the common management data format to a network management system;

generating in a network management system a graphical user interface based on the common management data format on a web server application; and

permitting access to each of the management interfaces using a web-browser, wherein each of the management interfaces is permitted said access using the same graphical user interface through the same management module, wherein the management module monitors and accesses said devices remotely to restore network connectivity when a network node fails, wherein the plurality of network nodes are managed through a dedicated management interface other than through the data transmission interfaces, and wherein the plurality of network nodes use at least a plurality of different types of management interfaces that communicate the plurality of different types of the management data over the dedicated management interface and not over the data transmission interfaces.

12. The method of claim 11 , wherein converting the different management data further comprises converting one or more low-level protocols utilized by the management interfaces into one or more higher-level protocols suitable for transmission over the TCP/IP network.

13. The method of claim 12 , wherein the low-level protocols are one or more of an RS-232 protocol, a keyboard video mouse protocol, an intelligent platform management interface protocol, an integrated lights out interface protocol, an advanced lights out management interface protocol and a Blade center management protocol.

14. The method of claim 11 further comprising encrypting the common management data to generate encrypted management data that is communicated to the network management system to prevent the common management data from being intercepted when in transit.

15. The method of claim 11 further comprising authenticating a user before giving them access to the management application and the management interfaces.

16. The method of claim 11 further comprising detecting a pre-programmed event and executing an pre-programmed action upon the detection of the pre-programmed event.

Assignments (13)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 16, 2024
From: VERTIV IT SYSTEMS, INC.
To: VERTIV CORPORATION
Reel/Frame 069695/0620 →
SECURITY INTEREST Recorded Oct 26, 2021
From: VERTIV CORPORATION; VERTIV IT SYSTEMS, INC.; ELECTRICAL RELIABILITY SERVICES, INC.; ENERGY LABS, INC.
To: UMB BANK, N.A., AS COLLATERAL AGENT
Reel/Frame 057923/0782 →
SECURITY AGREEMENT Recorded Mar 3, 2020
From: ELECTRICAL RELIABILITY SERVICES, INC.; ENERGY LABS, INC.; VERTIV CORPORATION; VERTIV IT SYSTEMS, INC.
To: CITIBANK, N.A.
Reel/Frame 052076/0874 →
RELEASE OF SECURITY INTEREST Recorded Mar 2, 2020
From: JPMORGAN CHASE BANK, N.A.
To: VERTIV CORPORATION (F/K/A ALBER CORP.); VERTIV IT SYSTEMS, INC. (F/K/A AVOCENT CORPORATION); VERTIV IT SYSTEMS, INC. (F/K/A AVOCENT FREMONT, LLC); VERTIV IT SYSTEMS, INC. (F/K/A AVOCENT HUNTSVILLE, LLC); VERTIV IT SYSTEMS, INC. (F/K/A AVOCENT REDMOND CORP.); ELECTRICAL RELIABILITY SERVICES, INC.; VERTIV CORPORATION (F/K/A EMERSON NETWORK POWER, ENERGY SYSTEMS, NORTH AMERICA, INC.); VERTIV CORPORATION (F/K/A LIEBERT CORPORATION)
Reel/Frame 052065/0666 →
RELEASE OF SECURITY INTEREST Recorded Mar 2, 2020
From: THE BANK OF NEW YORK MELLON TRUST COMPANY N.A.
To: VERTIV CORPORATION; VERTIV IT SYSTEMS, INC.; ELECTRICAL RELIABILITY SERVICES, INC.
Reel/Frame 052071/0913 →
SECOND LIEN SECURITY AGREEMENT Recorded Jun 10, 2019
From: VERTIV IT SYSTEMS, INC.; VERTIV CORPORATION; VERTIV NORTH AMERICA, INC.; ELECTRICAL RELIABILITY SERVICES, INC.; VERTIV ENERGY SYSTEMS, INC.
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 049415/0262 →
MERGER Recorded Dec 11, 2018
From: AVOCENT FREMONT, LLC
To: VERTIV IT SYSTEMS, INC.
Reel/Frame 047742/0157 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 24, 2017
From: AVOCENT FREEMONT, LLC
To: AVOCENT HUNTSVILLE, LLC
Reel/Frame 043077/0784 →
SECURITY AGREEMENT Recorded Dec 2, 2016
From: ALBER CORP.; ASCO POWER TECHNOLOGIES, L.P.; AVOCENT CORPORATION; AVOCENT FREMONT, LLC; AVOCENT HUNTSVILLE, LLC; AVOCENT REDMOND CORP.; ELECTRICAL RELIABILITY SERVICES, INC.; EMERSON NETWORK POWER, ENERGY SYSTEMS, NORTH AMERICA, INC.; LIEBERT CORPORATION; LIEBERT NORTH AMERICA, INC.; NORTHERN TECHNOLOGIES, INC.
To: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
Reel/Frame 040797/0615 →
SECURITY AGREEMENT Recorded Dec 1, 2016
From: ALBER CORP.; ASCO POWER TECHNOLOGIES, L.P.; AVOCENT CORPORATION; AVOCENT FREMONT, LLC; AVOCENT HUNTSVILLE, LLC; AVOCENT REDMOND CORP.; ELECTRICAL RELIABILITY SERVICES, INC.; EMERSON NETWORK POWER, ENERGY SYSTEMS, NORTH AMERICA, INC.; LIEBERT CORPORATION; LIEBERT NORTH AMERICA, INC.; NORTHERN TECHNOLOGIES, INC.
To: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
Reel/Frame 040783/0148 →
CHANGE OF NAME Recorded Oct 12, 2016
From: AVOCENT FREMONT CORP.
To: AVOCENT FREMONT, LLC
Reel/Frame 040319/0476 →
CHANGE OF NAME Recorded Aug 9, 2006
From: CYCLADES CORPORATION
To: AVOCENT FREMONT CORP.
Reel/Frame 018172/0635 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 30, 2004
From: HOLT, GRAHAM; SAITO, MARCIO
To: CYCLADES CORPORATION
Reel/Frame 015837/0459 →