IP Library Granted Patent US 8,577,041
Granted Patent B2
US 8,577,041 · App. 11/348,887 · Granted Nov 5, 2013

Method for securely distributing configuration information to a device

Inventor: Ali Negahdar (Suwanee, GA)
Assignee: ARRIS Enterprises, Inc.
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,577,041
App. No.
11/348,887
Granted
Nov 5, 2013
Kind
B2
Abstract

An MTA certificate containing a public key is provided to a provisioning server, typically via an MIB. The provisioning server retrieves configuration information associated with the MTA. A symmetric session key is randomly generated and used to encrypt the configuration information. The public key is used to encrypt the symmetric key. The encrypted session key is combined with the encrypted configuration information into a composite file, and the composite file is distributed to the device that contains the MTA. The MTA device decrypts the session key using its private key that corresponds to the public key and the decrypted session key is used to decrypt the configuration information. The decrypted configuration information is used to complete initialization of the MTA device.

Claims (43)

1. A method for protecting the distribution of configuration information to an MTA device for use in a SIP-based network, comprising:

providing a certificate associated with the MTA device to a provisioning server;

generating a session key independent of the certificate associated with the MTA device;

using the session key to encrypt configuration information, the configuration information being used to register the MTA device with a communications network;

using information contained in the certificate to encrypt the session key; and

transmitting the encrypted configuration information and the encrypted session key to the MTA device during a registration process to register the MTA device with the communications network using the configuration information.

2. The method of claim 1 wherein the certificate is provided to the provisioning server on an optical disk.

3. The method of claim 1 wherein the certificate is provided to the provisioning server via a download from a server.

4. The method of claim 1 wherein the certificate is provided to the provisioning server before the MTA device is placed into service.

5. The method of claim 1 wherein the information contained in the certificate used for encrypting the session key includes a public key.

6. The method of claim 1 wherein the session key is a symmetric key.

7. The method of claim 1 further comprising combining the encrypted session key and the encrypted configuration information into a composite configuration file.

8. A method for protecting the distribution of configuration information to an MTA device for use in a SIP-based network, comprising:

providing a certificate associated with the MTA device to a provisioning server;

generating a random session key;

encrypting configuration information using the session key;

encrypting the session key using a public key contained in the certificate;

combining the encrypted session key and the encrypted configuration information into a composite configuration file;

transmitting the composite configuration file to the MTA device;

decrypting the encrypted session key using a private key corresponding to the public key contained in the certificate; and

decrypting the configuration information using the session key.

9. The method of claim 8 wherein the certificate is provided to the provisioning server on an optical disk.

10. The method of claim 8 wherein the certificate is provided to the provisioning server via an FTP server.

11. The method of claim 8 wherein the certificate is provided to the provisioning server by a multiple services operator before the MTA device is provided to an end user.

12. The method of claim 8 wherein the session key is a symmetric key.

13. The method of claim 8 wherein a version number corresponding to the arrangement of data in the composite file is part of the composite file.

14. A method for protecting the distribution of configuration information to an MTA device for use in a SIP-based network, comprising:

generating a random session key;

encrypting configuration information using the session key;

encrypting the session key using information contained in a certificate that is associated with the MTA device;

combining the encrypted session key and the encrypted configuration information into a composite configuration file; and

transmitting the composite configuration file to the MTA device.

15. The method of claim 14 wherein the certificate is provided to the provisioning server on an optical disk.

16. The method of claim 14 wherein the certificate is provided to the provisioning server via an FTP server.

17. The method of claim 14 wherein the certificate is provided to the provisioning server by a multiple services operator before the MTA device is provided to an end user.

18. The method of claim 14 wherein the information contained in the certificate used for encrypting the session key includes a public key.

19. The method of claim 14 wherein the session key is a symmetric key.

20. A method for protecting the distribution of configuration information to an MTA device for use in a SIP-based network, comprising:

receiving a composite file at the MTA device, the composite file including an encrypted session key and encrypted configuration information;

decrypting the encrypted session key using a private key securely contained in the MTA device; and

decrypting the configuration information using the session key;

using the configuration information to register with a communications network.

21. The method of claim 20 further comprising using a version number that is part of the composite file to determine which portion of the composite file is the encrypted session key.

Assignments (13)
RELEASE OF SECURITY INTEREST AT REEL/FRAME 049905/0504 Recorded Dec 19, 2024
From: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
To: ARRIS ENTERPRISES LLC (F/K/A ARRIS ENTERPRISES, INC.); ARRIS TECHNOLOGY, INC.; ARRIS SOLUTIONS, INC.; COMMSCOPE, INC. OF NORTH CAROLINA; COMMSCOPE TECHNOLOGIES LLC; RUCKUS WIRELESS, LLC (F/K/A RUCKUS WIRELESS, INC.)
Reel/Frame 071477/0255 →
SECURITY INTEREST Recorded Dec 17, 2024
From: ARRIS ENTERPRISES LLC; COMMSCOPE TECHNOLOGIES LLC; COMMSCOPE INC., OF NORTH CAROLINA; OUTDOOR WIRELESS NETWORKS LLC; RUCKUS IP HOLDINGS LLC
To: APOLLO ADMINISTRATIVE AGENCY LLC
Reel/Frame 069889/0114 →
SECURITY INTEREST Recorded Nov 19, 2021
From: ARRIS SOLUTIONS, INC.; ARRIS ENTERPRISES LLC; COMMSCOPE TECHNOLOGIES LLC; COMMSCOPE, INC. OF NORTH CAROLINA; RUCKUS WIRELESS, INC.
To: WILMINGTON TRUST
Reel/Frame 060752/0001 →
ABL SECURITY AGREEMENT Recorded Jul 3, 2019
From: COMMSCOPE, INC. OF NORTH CAROLINA; COMMSCOPE TECHNOLOGIES LLC; ARRIS ENTERPRISES LLC; ARRIS TECHNOLOGY, INC.; RUCKUS WIRELESS, INC.; ARRIS SOLUTIONS, INC.
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 049892/0396 →
TERM LOAN SECURITY AGREEMENT Recorded Jul 3, 2019
From: COMMSCOPE, INC. OF NORTH CAROLINA; COMMSCOPE TECHNOLOGIES LLC; ARRIS ENTERPRISES LLC; ARRIS TECHNOLOGY, INC.; RUCKUS WIRELESS, INC.; ARRIS SOLUTIONS, INC.
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 049905/0504 →
PATENT SECURITY AGREEMENT Recorded Jul 3, 2019
From: ARRIS ENTERPRISES LLC
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS COLLATERAL AGENT
Reel/Frame 049820/0495 →
CHANGE OF NAME Recorded Jun 25, 2019
From: ARRIS ENTERPRISES, INC.
To: ARRIS ENTERPRISES LLC
Reel/Frame 049586/0470 →
TERMINATION AND RELEASE OF SECURITY INTEREST IN PATENTS Recorded Apr 8, 2019
From: BANK OF AMERICA, N.A., AS ADMINISTRATIVE AGENT
To: ARRIS GROUP, INC.; ARRIS ENTERPRISES, INC.; ARRIS SOLUTIONS, INC.; ARRIS KOREA, INC.; ARRIS HOLDINGS CORP. OF ILLINOIS, INC.; BIG BAND NETWORKS, INC.; TEXSCAN CORPORATION; POWER GUARD, INC.; 4HOME, INC.; ACADIA AIC, INC.; AEROCAST, INC.; BROADBUS TECHNOLOGIES, INC.; GENERAL INSTRUMENT CORPORATION; GENERAL INSTRUMENT AUTHORIZATION SERVICES, INC.; GENERAL INSTRUMENT INTERNATIONAL HOLDINGS, INC.; IMEDIA CORPORATION; JERROLD DC RADIO, INC.; LEAPSTONE SYSTEMS, INC.; MODULUS VIDEO, INC.; MOTOROLA WIRELINE NETWORKS, INC.; NETOPIA, INC.; NEXTLEVEL SYSTEMS (PUERTO RICO), INC.; QUANTUM BRIDGE COMMUNICATIONS, INC.; SETJAM, INC.; SUNUP DESIGN SYSTEMS, INC.; UCENTRIC SYSTEMS, INC.; GIC INTERNATIONAL HOLDCO LLC; GIC INTERNATIONAL CAPITAL LLC; CCE SOFTWARE LLC; THE GI REALTY TRUST 1996
Reel/Frame 048825/0294 →
CHANGE OF NAME Recorded Mar 14, 2017
From: ARRIS ENTERPRISES INC
To: ARRIS ENTERPRISES LLC
Reel/Frame 041995/0031 →
SECURITY AGREEMENT Recorded May 28, 2013
From: ARRIS GROUP, INC.; ARRIS ENTERPRISES, INC.; ARRIS SOLUTIONS, INC.; ARRIS KOREA, INC.; ARRIS HOLDINGS CORP. OF ILLINOIS; BIGBAND NETWORKS, INC.; TEXSCAN CORPORATION; POWER GUARD, INC.; 4HOME, INC.; ACADIA AIC, INC.; AEROCAST, INC.; BROADBUS TECHNOLOGIES, INC.; GENERAL INSTRUMENT CORPORATION; GENERAL INSTRUMENT AUTHORIZATION SERVICES, INC.; GENERAL INSTRUMENT INTERNATIONAL HOLDINGS, INC.; IMEDIA CORPORATION; JERROLD DC RADIO, INC.; LEAPSTONE SYSTEMS, INC.; MODULUS VIDEO, INC.; MOTOROLA WIRELINE NETWORKS, INC.; NETOPIA, INC.; NEXTLEVEL SYSTEMS (PUERTO RICO), INC.; QUANTUM BRIDGE COMMUNICATIONS, INC.; SETJAM, INC.; SUNUP DESIGN SYSTEMS, INC.; UCENTRIC SYSTEMS, INC.; GIC INTERNATIONAL HOLDCO LLC; GIC INTERNATIONAL CAPITAL LLC; CCE SOFTWARE LLC; THE GI REALTY TRUST 1996
To: BANK OF AMERICA, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 030498/0023 →
MERGER Recorded Apr 16, 2013
From: ARRIS GROUP, INC.
To: ARRIS ENTERPRISES, INC.
Reel/Frame 030228/0388 →
MERGER Recorded Nov 12, 2012
From: ARRIS INTERNATIONAL, INC.
To: ARRIS GROUP, INC.
Reel/Frame 029278/0493 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 7, 2006
From: NEGAHDAR, ALI
To: ARRIS INTERNATIONAL, INC.
Reel/Frame 017556/0758 →
Continuity (2)
Provisional Application 60651039 · Feb 7, 2005
Related Publication 20060182282A1 · Aug 17, 2006