IP Library Granted Patent US 9,838,378
Granted Patent B2
US 9,838,378 · App. 14/809,814 · Granted Dec 5, 2017

Securing a server before connecting the server to a data communications network

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,838,378
App. No.
14/809,814
Granted
Dec 5, 2017
Kind
B2
Abstract

Securing a server before connecting the server to a data communications network in a data center may include: establishing a proximity-based communications connection with a service processor of a server, where the server is not coupled to a data communications network; and transmitting, via the proximity-based data communications connection, a digital certificate to the service processor of the server, where the digital certificate is configured to enable access to the server only by a system management server.

Claims (42)

1. A method comprising:

by first program instructions on a mobile computing device:

establishing a proximity-based communications connection with a service processor of a server via a near field communication (NFC) tag of the server, said server not coupled to a data communications network other than the proximity-based communications connection;

transmitting, via the proximity-based data communications connection, a digital certificate to the NFC tag of the server, said digital certificate configured to restrict access to the server to a particular system management server;

retrieving from the service processor an identifier of the server, including retrieving vital product data (VPD);

storing the retrieved identifier in a record of a table of secured servers; and

providing the table of secured servers to the particular system management server.

2. The method of claim 1 further comprising:

receiving the digital certificate from the particular system management server, wherein the digital certificate is digitally signed by the particular system management server.

3. The method of claim 1 further comprising:

receiving the digital certificate from the particular system management server, wherein the certificate is digitally signed by a certificate authority.

4. The method of claim 1 further comprising:

transmitting, via the proximity-based data communications connection, an additional digital certificate, said additional digital certificate providing access to the server by an additional application.

5. An apparatus comprising:

a computer processor;

a proximity-based communications adapter; and

computer memory operatively coupled to the computer processor, the computer memory having disposed within it computer program instructions that, when executed by the computer processor, cause the apparatus to carry out the steps of:

establishing, via the proximity-based communications adapter, a proximity-based communications connection with a service processor of a server via a near field communication (NFC) tag of the server, said server not coupled to a data communications network other than the proximity-based communications connection;

transmitting, via the proximity-based data communications connection, a digital certificate to the NFC tag of the server, said digital certificate configured to restrict access to the server to a particular system management server;

retrieving from the service processor an identifier of the server, including retrieving vital product data (VPD);

storing the retrieved identifier in a record of a table of secured servers; and

providing the table of secured servers to the particular system management server.

6. The apparatus of claim 5 further comprising computer program instructions that, when executed by the computer processor, cause the apparatus to carry out the steps of:

receiving the digital certificate from the particular system management server, wherein the digital certificate is digitally signed by the particular system management server.

7. The apparatus of claim 5 further comprising computer program instructions that, when executed by the computer processor, cause the apparatus to carry out the steps of:

receiving the digital certificate from the particular system management server, wherein the certificate is digitally signed by a certificate authority.

8. The apparatus of claim 5 further comprising computer program instructions that, when executed by the computer processor, cause the apparatus to carry out the steps of:

transmitting, via the proximity-based data communications connection, an additional digital certificate, said additional digital certificate providing access to the server by an additional application.

9. The apparatus of claim 5 wherein the apparatus further comprises a mobile computing device.

10. A computer program product disposed upon a computer readable medium, the computer program product comprising computer program instructions that, when executed, cause a computer to carry out the steps of:

establishing a proximity-based communications connection with a service processor of a server via a near field communication (NFC) tag of the server, said server not coupled to a data communications network other than the proximity-based communications connection;

transmitting, via the proximity-based data communications connection, a digital certificate to the NFC tag of the server, said digital certificate configured to restrict access to the server to a particular system management server;

retrieving from the service processor an identifier of the server, including retrieving vital product data (VPD);

storing the retrieved identifier in a record of a table of secured servers; and

providing the table of secured servers to the particular system management server.

11. The computer program product of claim 10 further comprising computer program instructions that, when executed, cause the computer to carry out the steps of:

receiving the digital certificate from the particular system management server, wherein the digital certificate is digitally signed by the particular system management server.

12. The computer program product of claim 10 further comprising computer program instructions that, when executed, cause the computer to carry out the steps of:

receiving the digital certificate from the particular system management server, wherein the certificate is digitally signed by a certificate authority.

13. The computer program product of claim 10 further comprising computer program instructions that, when executed, cause the computer to carry out the steps of:

transmitting, via the proximity-based data communications connection, an additional digital certificate, said additional digital certificate providing access to the server by an additional application.

14. The computer program product of claim 10 wherein the computer further comprises a mobile computing device.

Assignments (3)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 10, 2025
From: LENOVO GLOBAL TECHNOLOGIES INTERNATIONAL LIMITED
To: LENOVO GLOBAL TECHNOLOGIES SWITZERLAND INTERNATIONAL GMBH
Reel/Frame 069869/0614 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 9, 2019
From: LENOVO ENTERPRISE SOLUTIONS (SINGAPORE) PTE LTD.
To: LENOVO GLOBAL TECHNOLOGIES INTERNATIONAL LTD
Reel/Frame 050308/0781 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 27, 2015
From: ABBONDANZIO, ANTONIO; PRUETT, GREGORY B.
To: LENOVO ENTERPRISE SOLUTIONS (SINGAPORE) PTE. LTD.
Reel/Frame 036190/0383 →