IP Library Granted Patent US 9,002,010
Granted Patent B2
US 9,002,010 · App. 12/556,685 · Granted Apr 7, 2015

Secure communication of information over a wireless link

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,002,010
App. No.
12/556,685
Granted
Apr 7, 2015
Kind
B2
Abstract

Secure communication of information over a wireless link with apparatus including a blade management module and a plurality of blade servers, the blade servers connected for data communications with the blade management module through at least one wired link, the blade servers also connected for data communications with the blade management module through at least one wireless link, including sharing an encryption key between the blade management module and one or more of the blade servers only through the at least one wired link connecting the blade management module to the one or more blade servers; encrypting information by the blade management module with the encryption key; transmitting the encrypted information by the blade management module to the one or more blade servers through the at least one wireless link; and decrypting the encrypted information by the blade server with the encryption key.

Claims (43)

1. A method of secure communication of information over a wireless link,

the method carried out in apparatus that includes a blade management module and a plurality of blade servers, the blade servers connected for data communications with the blade management module through at least one wired link, the blade servers also connected for data communications with the blade management module through at least one wireless link,

the method comprising:

generating a separate encryption key by each of the plurality of blade servers;

generating a new encryption key by the blade management module periodically;

sharing the separate encryption key between the blade management module and the plurality of blade servers only through the at least one wired link connecting the blade management module to the blade servers, including transmitting, by each blade server that generated the separate encryption key, the separate encryption key generated by the blade server to the blade management module only through the at least one wired link connecting the blade management module to the blade server; and

periodically transmitting the new encryption key from the blade management module to the plurality of blade servers only through the at least one wired link connecting the blade management module to the plurality of blade servers;

encrypting information by the blade management module with the separate encryption key, including encrypting the information separately with each separate encryption key;

transmitting the encrypted information by the blade management module to the one or more blade servers through the at least one wireless link, including transmitting to each blade server encrypted information encrypted with the separate encryption key generated by the blade server to which the encrypted information is transmitted; and

transmitting the encrypted information to the plurality of blade servers only after each of the blade servers acknowledges receipt of the new encryption key; and

authorizing by the blade management module through the wireline connections between the blade management module and the blade servers only a subset of the blade servers in possession of the new encryption key to use the new encryption key to decrypt the encrypted information; and

decrypting the encrypted information with the new encryption key by each blade server in the subset of the blade servers.

2. The method of claim 1 wherein:

periodically transmitting the new encryption key further comprises sharing the new encryption key with all the blade servers in the apparatus only through the at least one wired link connecting the blade management module to the blade servers; and

transmitting the encrypted information further comprises broadcasting the same encrypted information to all the blade servers in the apparatus.

3. An apparatus for secure communication of information over a wireless link, the apparatus comprising:

a blade management module and a plurality of blade servers, the blade servers connected for data communications with the blade management module through at least one wired link, the blade servers also connected for data communications with the blade management module through at least one wireless link; and

a computer processor and a computer memory operatively coupled to the computer processor, the computer memory having disposed within it computer program instructions which when executed upon the computer processor cause the apparatus to function by:

generating a separate encryption key by each of the plurality of blade servers;

generating a new encryption key by the blade management module periodically;

sharing the separate encryption key between the blade management module and the plurality of blade servers only through the at least one wired link connecting the blade management module to the blade servers, including transmitting, by each blade server that generated the separate encryption key, the separate encryption key generated by the blade server to the blade management module only through the at least one wired link connecting the blade management module to the blade server; and

periodically transmitting the new encryption key from the blade management module to the plurality of blade servers only through the at least one wired link connecting the blade management module to the plurality of blade servers;

encrypting information by the blade management module with the separate encryption key, including encrypting the information separately with each separate encryption key;

transmitting the encrypted information by the blade management module to the one or more blade servers through the at least one wireless link, including transmitting to each blade server encrypted information encrypted with the separate encryption key generated by the blade server to which the encrypted information is transmitted; and

transmitting the encrypted information to the plurality of blade servers only after each of the blade servers acknowledges receipt of the new encryption key; and

authorizing by the blade management module through the wireline connections between the blade management module and the blade servers only a subset of the blade servers in possession of the new encryption key to use the new encryption key to decrypt the encrypted information; and

decrypting the encrypted information with the new encryption key by each blade server in the subset of the blade servers.

4. The apparatus of claim 3 wherein:

periodically transmitting the new encryption key further comprises sharing the new encryption key with all the blade servers in the apparatus only through the at least one wired link connecting the blade management module to the blade servers; and

transmitting the encrypted information further comprises broadcasting the same encrypted information to all the blade servers in the apparatus.

5. A computer program product for secure communication of information over a wireless link, the computer program product comprising computer program instructions for operation of apparatus including a computer processor, a blade management module and a plurality of blade servers, the blade servers connected for data communications with the blade management module through at least one wired link, the blade servers also connected for data communications with the blade management module through at least one wireless link, the computer program product disposed upon a non-signal machine-readable storage medium, the computer program product comprising computer program instructions which when executed upon the computer processor cause the apparatus to function by:

generating a separate encryption key by each of the plurality of blade servers;

generating a new encryption key by the blade management module periodically;

sharing the separate encryption key between the blade management module and the plurality of blade servers only through the at least one wired link connecting the blade management module to the blade servers, including transmitting, by each blade server that generated the separate encryption key, the separate encryption key generated by the blade server to the blade management module only through the at least one wired link connecting the blade management module to the blade server; and

periodically transmitting the new encryption key from the blade management module to the plurality of blade servers only through the at least one wired link connecting the blade management module to the plurality of blade servers;

encrypting information by the blade management module with the separate encryption key, including encrypting the information separately with each separate encryption key;

transmitting the encrypted information by the blade management module to the one or more blade servers through the at least one wireless link, including transmitting to each blade server encrypted information encrypted with the separate encryption key generated by the blade server to which the encrypted information is transmitted; and

transmitting the encrypted information to the plurality of blade servers only after each of the blade servers acknowledges receipt of the new encryption key; and

authorizing by the blade management module through the wireline connections between the blade management module and the blade servers only a subset of the blade servers in possession of the new encryption key to use the new encryption key to decrypt the encrypted information; and

decrypting the encrypted information with the new encryption key by each blade server in the subset of the blade servers.

6. The computer program product of claim 5 wherein:

periodically transmitting the new encryption key further comprises sharing the new encryption key with all the blade servers in the apparatus only through the at least one wired link connecting the blade management module to the blade servers; and

transmitting the encrypted information further comprises broadcasting the same encrypted information to all the blade servers in the apparatus.

Assignments (5)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 6, 2019
From: LENOVO ENTERPRISE SOLUTIONS (SINGAPORE) PTE LTD.
To: LENOVO INTERNATIONAL LIMITED
Reel/Frame 050304/0277 →
CORRECTIVE ASSIGNMENT TO CORRECT THE ASSIGNMENT DOCUMENT CONTAINING TYPO ERRORS PREVIOUSLY RECORDED AT REEL: 037101 FRAME: 0969. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Dec 28, 2015
From: LENOVO ENTERPRISE SOLUTIONS (SINGAPORE) PTE. LTD.
To: LENOVO INTERNATIONAL LIMITED
Reel/Frame 037689/0190 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 12, 2015
From: LENOVO ENTERPRISE SOLUTIONS (SINGAPORE) PTE. LTD.
To: LENOVO INTERNATIONAL LIMITED
Reel/Frame 037101/0969 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 10, 2014
From: INTERNATIONAL BUSINESS MACHINES CORPORATION
To: LENOVO ENTERPRISE SOLUTIONS (SINGAPORE) PTE. LTD.
Reel/Frame 034194/0111 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 10, 2009
From: CAMPBELL, KEITH M.; KANTESAIA, RAJIV N.; PAGAN, WILLIAM G.; STRACUZZA, MARC V.; WOMACK, WILLIAM N.
To: INTERNATIONAL BUSINESS MACHINES CORPORATION
Reel/Frame 023211/0807 →