IP Library Granted Patent US 8,301,887
Granted Patent B2
US 8,301,887 · App. 12/023,441 · Granted Oct 30, 2012

Method and system for automated authentication of a device to a management node of a computer network

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,301,887
App. No.
12/023,441
Granted
Oct 30, 2012
Kind
B2
Abstract

A first computer-based device is authenticated at a second computer-based device communicatively coupled thereto through use of a unique identifier and an encrypted token, each received from the first device. Following the authentication, configuration information for the first device is sent from the second device to the first device and the first device is authorized to join a network that includes the second device. Further, permissions related to the network may be granted to the first device.

Claims (17)

1. A computer-implemented method, comprising:

a first device seeking to join a computer network and a management node for the computer network mutually authenticating each other through an exchange of identification information, the identification information comprising digital certificates for each of the first device and the management node; and

upon successful mutual authentication between the management node and the first device, providing, from the management node to the first device, configuration information for the first device to prohibit access to the first device by entities other than the management node, the first device having a local panel and the configuration information including at least a combination of a username and a password required to access the first device from the local panel of the first device, thereby preventing unauthorized access to the first device from its local front panel.

2. The method of claim 1 , further comprising, prior to the first device and the management node mutually authentically each other, providing the first device with sufficient information to contact the management node.

3. The method of claim 2 , wherein the sufficient information comprises a network address and a unique identifier for the management node.

4. The method of claim 3 , wherein the unique identifier for the management node comprises a serial number.

5. The method of claim 3 , wherein the network address and the unique identifier for the management node are provided via a communication path other than the computer network.

6. The method of claim 5 , wherein the communication path comprises a wireless network.

7. The method of claim 5 , wherein the communication path comprises a local configuration interface for the first device.

8. The method of claim 5 , wherein the communication path comprises a memory device coupled to the first device.

9. The method of claim 1 , further comprising exchanging, between the management node and the first device, respective SSH public keys for the management node and the first device following the successful mutual authentication.

10. The method of claim 1 , further comprising updating, at the management node, a device record for the first device based on information received from the first device following the successful mutual authentication.

11. The method of claim 10 , wherein the device record for the first device is identified based on a unique identifier received from the first device.

12. The method of claim 1 , wherein the configuration information for the first device is identified based on a unique identifier presented by the first device during the mutual authentication process.

13. A computer-implemented method, comprising:

exchanging, as part of an automated authentication process, respective SSH public keys for a first and second computer-based device, and providing configuration information from the second device to the first device sufficient to subjugate the first device to administration by the second device and to prohibit unauthorized access to the subjugated first device, the subjugated first device having a local panel and the configuration information including at least a combination of a username and a password required to access the subjugated first device from the local panel of the subjugated first device, thereby preventing unauthorized access to the first device from its local front panel.

14. The method of claim 13 , wherein the automated authentication process includes an exchange of digital certificates between the first and second devices.

Assignments (11)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 21, 2019
From: SYMANTEC CORPORATION
To: CA, INC.
Reel/Frame 051144/0918 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 27, 2016
From: BLUE COAT SYSTEMS, INC.
To: SYMANTEC CORPORATION
Reel/Frame 039851/0044 →
RELEASE OF SECURITY INTEREST Recorded Aug 1, 2016
From: JEFFERIES FINANCE LLC
To: BLUE COAT SYSTEMS, INC.
Reel/Frame 039516/0929 →
RELEASE OF SECURITY INTEREST IN PATENT COLLATERAL AT REEL/FRAME NO. 30740/0181 Recorded May 29, 2015
From: JEFFERIES FINANCE LLC
To: BLUE COAT SYSTEMS, INC.
Reel/Frame 035797/0280 →
RELEASE OF SECURITY INTEREST IN PATENT COLLATERAL AT REEL/FRAME NO. 27727/0144 Recorded May 29, 2015
From: JEFFERIES FINANCE LLC
To: BLUE COAT SYSTEMS, INC.
Reel/Frame 035798/0006 →
SECURITY INTEREST Recorded May 22, 2015
From: BLUE COAT SYSTEMS, INC.
To: JEFFERIES FINANCE LLC, AS THE COLLATERAL AGENT
Reel/Frame 035751/0348 →
SECOND LIEN PATENT SECURITY AGREEMENT Recorded Jul 3, 2013
From: BLUE COAT SYSTEMS, INC.
To: JEFFERIES FINANCE LLC, AS COLLATERAL AGENT
Reel/Frame 030740/0181 →
RELEASE OF SECURITY INTEREST IN PATENT COLLATERAL RECORDED AT R/F 027727/0178 Recorded Oct 16, 2012
From: JEFFERIES FINANCE LLC, AS COLLATERAL AGENT
To: BLUE COAT SYSTEMS, INC.
Reel/Frame 029140/0170 →
FIRST LIEN PATENT SECURITY AGREEMENT Recorded Feb 16, 2012
From: BLUE COAT SYSTEMS, INC.
To: JEFFERIES FINANCE LLC
Reel/Frame 027727/0144 →
SECOND LIEN PATENT SECURITY AGREEMENT Recorded Feb 16, 2012
From: BLUE COAT SYSTEMS, INC.
To: JEFFERIES FINANCE LLC
Reel/Frame 027727/0178 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 6, 2008
From: KELLY, THOMAS J.; MCLANE, SAMUEL H.; FREDERICK, RONALD; MOHEN, DHARMENDRA; LONG, DARRELL
To: BLUE COAT SYSTEMS, INC.
Reel/Frame 020472/0827 →