IP Library Granted Patent US 8,275,895
Granted Patent B1
US 8,275,895 · App. 11/614,873 · Granted Sep 25, 2012

Systems and methods for establishing a trusted dynamic host configuration protocol connection

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,275,895
App. No.
11/614,873
Granted
Sep 25, 2012
Kind
B1
Abstract

A method for establishing trusted communication between a client and a server is described. The method is implemented by a computer system. A response is received from a first server. An internet protocol address of the first server is compared with at least one internet protocol address within a list. The response is validated if the internet protocol address of the first server is included within the list. Trusted communication is established between the client and the first server. The trusted communication includes assigning an internet protocol address provided by the response to the client.

Claims (46)

1. A method for establishing trusted communication between a client and a server, the method being implemented by a computer system, the method comprising:

receiving a response from a first server;

comparing an internet protocol address of the first server with at least one internet protocol address within a list;

caching the response from the first server if the internet protocol address of the first server is not included within the list;

validating the response if the internet protocol address of the first server is included within the list;

establishing trusted communication between the client and the first server when the internet protocol address of the first server is included within the list, wherein establishing the trusted communication includes a request to assign the client an internet protocol address provided by the response to the client; and

waiting a period of time for a response from an additional server that has an internet protocol address included within the list if the internet protocol address of the first server is not included within the list, wherein, after waiting the period of time, if no response is received from the additional server, prompting a user to accept or refuse connection to the first server,

wherein if the user accepts connection, validating the cached response from the first server and establishing communication between the client and the first server, wherein the establishing communication includes a request to assign the client the internet protocol address provided by the response to the client.

2. The method of claim 1 , further comprising rejecting the response if the internet protocol address of the first server is not included within the list.

3. The method of claim 2 , further comprising receiving a second response from the additional server and comparing an internet protocol address of the additional server with the one or more than one internet protocol addresses within the list.

4. The method of claim 3 , further comprising validating the second response if the internet protocol address of the additional server is included within the list.

5. A computer system that is configured to establish trusted communication between a client and a server, the computer system comprising:

a processor;

memory in electronic communication with the processor;

instructions stored in the memory, the instructions being executable to:

receive a response from a first server;

compare an internet protocol address of the first server with one or more than one internet protocol addresses within a list;

cache the response from the first server if the internet protocol address of the first server is not included in the list;

validate the response if the internet protocol address of the first server is included within the list;

establish trusted communication between the client and the first server when the internet protocol address of the first server is included within the list, wherein establishing the trusted communication includes a request to assign the client an internet protocol address provided by the response to the client; and

wait a period of time for a response from an additional server that has an internet protocol address included within the list if the internet protocol address of the first server is not included within the list, wherein, after waiting the period of time, if no response is received from the additional server, prompting a user to accept or refuse connection to the first server,

wherein if the user accepts connection, validating the cached response from the first server and establishing communication between the client and the first server, wherein the establishing communication includes a request to assign the client the internet protocol address provided by the response to the client.

6. The computer system of claim 5 , wherein the instructions stored in the memory are further executable to reject the response if the internet protocol address of the first server is not included within the list.

7. The computer system of claim 5 , wherein the instructions stored in the memory are further executable to receive a second response from the additional server and compare an internet protocol address of the additional server with the one or more than one internet protocol addresses within the list.

8. The computer system of claim 7 , wherein the instructions stored in the memory are further executable to validate the second response if the internet protocol address of the additional server is included within the list.

9. A client configured to communicate with a server over a network, the client comprising:

a network driver configured to communicate with a server on the network;

a dynamic host configuration protocol secure connection component configured to receive communications from the network driver;

a predetermined list of parameters configured to identify the server communicating with the client; and

a memory to cache a communication from the server if an internet protocol address associated with the server is not included in the predetermined list of parameters, wherein if the internet protocol address of the server is not included within the list, the client waits a period of time for a response from an additional server that has an internet protocol address included within the list, wherein, after waiting the period of time, if no response is received from the additional server, the client prompts a user to accept or refuse connection to the server,

wherein if the user accepts connection, the client validates the cached communication from the server and establishes communication between the client and the server, wherein the establishing of communication includes a request to assign the client the internet protocol address provided by the communication to the client.

10. The client of claim 9 , wherein the predetermined list is configured to include the internet protocol address of the server or a plurality of servers on the network.

11. The client of claim 9 , wherein the dynamic host configuration protocol secure connection component is configured to compare the internet protocol address of the server with the internet protocol addresses included in the predetermined list.

12. The client of claim 9 , further configured to communicate with a server implementing dynamic host configuration protocol communications.

13. The client of claim 9 , further configured to communicate with a server implementing preboot execution communications.

14. A non-transitory processor-readable storage medium comprising executable instructions for validating a response at a client, the instructions being executable to:

receive a response from a first server;

compare an internet protocol address of the first server with one or more than one internet protocol addresses within a list;

cache the response from the first server if the internet protocol address of the first server is not included in the list;

validate the response if the internet protocol address of the first server is included within the list;

establish trusted communication between the client and the first server when the internet protocol address of the first server is included within the list, wherein establishing the trusted communication includes a request to assign the client an internet protocol address provided by the response to the client;

wait for a second response from a second server that has an internet protocol address included within the list if the response from the first server is not validated;

receive the second response from the second server and compare an internet protocol address of the second server with the one or more than one internet protocol addresses within the list; and

validate the second response if the internet protocol address of the second server is included within the list, wherein, after waiting a period of time, if no response is received from the second server, prompt a user to accept or refuse connection to the first server,

wherein if the user accepts connection, validate the cached response from the first server and establish communication between the client and the first server, wherein the establishing communication includes a request to assign the client the internet protocol address provided by the response to the client.

15. The client of claim 9 , wherein the predetermined list is configured to include the internet protocol address of the server or a plurality of servers on the network, wherein the dynamic host configuration protocol secure connection component is configured to compare the internet protocol address of the server with the internet protocol addresses included in the predetermined list, and wherein the client is further configured to communicate with a server implementing preboot execution communications.

Assignments (19)
NOTICE OF SUCCESSION OF AGENCY FOR SECURITY INTEREST AT REEL/FRAME 054665/0873 Recorded Apr 29, 2025
From: BANK OF AMERICA, N.A., AS RESIGNING AGENT
To: ALTER DOMUS (US) LLC, AS SUCCESSOR AGENT
Reel/Frame 071123/0386 →
SECURITY INTEREST Recorded Dec 9, 2020
From: CELLSEC, INC.; PULSE SECURE, LLC; IVANTI, INC.; MOBILEIRON, INC.; IVANTI US LLC
To: MORGAN STANLEY SENIOR FUNDING, INC., AS COLLATERAL AGENT
Reel/Frame 054665/0062 →
SECURITY INTEREST Recorded Dec 9, 2020
From: CELLSEC, INC.; PULSE SECURE, LLC; INVANTI, INC.; MOBILEIRON, INC.; INVANTI US LLC
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 054665/0873 →
RELEASE OF SECURITY INTEREST : RECORDED AT REEL/FRAME - 41052/0762 Recorded Dec 1, 2020
From: MORGAN STANLEY SENIOR FUNDING, INC.
To: CRIMSON CORPORATION
Reel/Frame 054560/0857 →
RELEASE OF SECURITY INTEREST : RECORDED AT REEL/FRAME - 41459/0387 Recorded Dec 1, 2020
From: MORGAN STANLEY SENIOR FUNDING, INC.
To: CRIMSON CORPORATION
Reel/Frame 054637/0161 →
MERGER Recorded Apr 19, 2018
From: CRIMSON CORPORATION
To: IVANTI, INC.
Reel/Frame 045983/0075 →
RELEASE OF FIRST LIEN SECURITY INTEREST IN PATENT COLLATERAL AT REEL/FRAME NO. 40182/0345 Recorded Jan 23, 2017
From: JEFFERIES FINANCE LLC
To: CRIMSON CORPORATION
Reel/Frame 041463/0581 →
RELEASE OF SECOND LIEN SECURITY INTEREST IN PATENT COLLATERAL AT REEL/FRAME NO. 40183/0506 Recorded Jan 23, 2017
From: JEFFERIES FINANCE LLC
To: CRIMSON CORPORATION
Reel/Frame 041463/0457 →
SECOND LIEN PATENT SECURITY AGREEMENT Recorded Jan 20, 2017
From: CRIMSON CORPORATION
To: MORGAN STANLEY SENIOR FUNDING, INC., AS COLLATERAL AGENT
Reel/Frame 041052/0762 →
FIRST LIEN PATENT SECURITY AGREEMENT Recorded Jan 20, 2017
From: CRIMSON CORPORATION
To: MORGAN STANLEY SENIOR FUNDING, INC., AS COLLATERAL AGENT
Reel/Frame 041459/0387 →
SECOND LIEN PATENT SECURITY AGREEMENT Recorded Sep 29, 2016
From: CRIMSON CORPORATION
To: JEFFERIES FINANCE LLC, AS COLLATERAL AGENT
Reel/Frame 040183/0506 →
FIRST LIEN PATENT SECURITY AGREEMENT Recorded Sep 29, 2016
From: CRIMSON CORPORATION
To: JEFFERIES FINANCE LLC, AS COLLATERAL AGENT
Reel/Frame 040182/0345 →
RELEASE OF SECURITY INTEREST IN PATENTS RECORDED AT R/F 031029/0849 Recorded Sep 28, 2016
From: JEFFERIES FINANCE LLC
To: CRIMSON CORPORATION
Reel/Frame 040171/0307 →
RELEASE OF SECURITY INTEREST IN PATENTS RECORDED AT R/F 032333/0637 Recorded Sep 28, 2016
From: JEFFERIES FINANCE LLC
To: CRIMSON CORPORATION
Reel/Frame 040171/0037 →
SECURITY AGREEMENT Recorded Feb 25, 2014
From: LANDESK SOFTWARE, INC.; CRIMSON CORPORATION
To: JEFFERIES FINANCE LLC
Reel/Frame 032333/0637 →
SECURITY AGREEMENT Recorded Aug 16, 2013
From: LANDESK GROUP, INC.; LANDSLIDE HOLDINGS, INC.; CRIMSON ACQUISITION CORP.; LANDESKSOFTWARE, INC.; CRIMSON CORPORATION
To: JEFFERIES FINANCE LLC, AS COLLATERAL AGENT
Reel/Frame 031029/0849 →
RELEASE OF SECURITY INTEREST Recorded Aug 12, 2013
From: WELLS FARGO BANK, NATIONAL ASSOCIATION, AS ADMINISTRATIVE AGENT
To: CRIMSON CORPORATION
Reel/Frame 030993/0644 →
PATENT SECURITY AGREEMENT Recorded Jul 26, 2012
From: CRIMSON CORPORATION
To: WELLS FARGO BANK, NATIONAL ASSOCIATION, AS ADMINISTRATIVE AGENT
Reel/Frame 028643/0847 →
RELEASE OF SECURITY INTEREST Recorded Jun 20, 2012
From: WELLS FARGO CAPITAL FINANCE, LLC
To: LANDESK GROUP, INC.; LANDSLIDE HOLDINGS, INC.; LANDESK SOFTWARE, INC.; CRIMSON ACQUISITION CORP.; CRIMSON CORPORATION
Reel/Frame 028413/0913 →