IP Library Granted Patent US 10,229,291
Granted Patent B2
US 10,229,291 · App. 15/620,081 · Granted Mar 12, 2019

Method and system for cryptographically enabling and disabling lockouts for critical operations in a smart grid network

Inventors: Aditi Hilbert (Redwood City, CA); Michael St. Johns (Germantown, MD)
Assignee: ITRON NETWORKED SOLUTIONS, INC.
G06F21/70G05F1/66G06F21/44G06F21/6209Y04S40/24
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,229,291
App. No.
15/620,081
Granted
Mar 12, 2019
Kind
B2
Abstract

A method for locking out a remote terminal unit includes: receiving a lockout request, wherein the lockout request includes at least a public key associated with a user, a user identifier, and a terminal identifier; identifying a user profile associated with the user based on the user identifier included in the received lockout request; verifying the public key included in the received lockout request and permission for the user to lockout a remote terminal unit associated with the terminal identifier included in the received lockout request based on data included in the identified user profile; generating a lockout permit, wherein the lockout permit includes at least the public key included in the received lockout request; and transmitting at least a lockout request and the generated lockout permit, wherein the lockout request includes an instruction to place a lockout on the remote terminal unit.

Claims (17)

1. A method for locking out a remote terminal unit, comprising:

receiving, by a receiving device, at least a lockout request and a lockout permit, wherein the lockout permit includes at least a public key associated with a user;

placing, by a processing device, a lockout on the remote terminal unit, wherein placing the lockout on the remote terminal unit includes changing an operation mode of the remote terminal unit;

generating, by the processing device, a lockout identifier associated with the remote terminal unit, and a lockout removal nonce;

encrypting, by the processing device, the generated lockout removal nonce using the public key associated with the user;

generating, by the processing device, a receipt including at least the generated lockout identifier and encrypted lockout removal nonce; and

transmitting, by a transmitting device, the generated receipt in response to the received lockout request, wherein

the remote terminal unit continues to operate in the changed operation mode until the lockout is removed from the remote terminal unit, and

the remote terminal unit is operable in the changed operation mode.

2. The method of claim 1 , further comprising:

receiving, by the receiving device, the public key associated with the user from a smart card inserted into a computing device in communication with the remote terminal unit.

3. The method of claim 1 , wherein placing a lockout on the remote terminal unit includes de-energizing one or more energized circuits associated with the remote terminal unit.

4. The method of claim 1 , further comprising:

if the lockout associated with the generated lockout identifier is a first lockout placed on the remote terminal unit, de-energizing one or more energized circuits associated with the remote terminal unit; and

if the lockout associated with the generated lockout identifier is a second or subsequent lockout placed on the remote terminal unit, verifying that the one or more circuits associated with remote terminal unit are de-energized.

5. The method of claim 1 , wherein the processing device includes a hardware security module or smart card configured to perform at least the placing step.

6. The method of claim 5 , wherein the hardware security module or smart card is configured to produce a physical signal after completion of the placing step, the physical signal being used to change the operation mode of the remote terminal unit.

Assignments (4)
SECURITY INTEREST Recorded Nov 30, 2023
From: ITRON, INC.; ITRON NETWORKED SOLUTIONS, INC.
To: WELLS FARGO BANK, NATIONAL ASSOCIATION, AS ADMINISTRATIVE AGENT
Reel/Frame 065727/0302 →
CHANGE OF NAME Recorded Feb 1, 2018
From: SILVER SPRING NETWORKS, INC.
To: ITRON NETWORKED SOLUTIONS, INC.
Reel/Frame 045221/0804 →
SECURITY INTEREST Recorded Jan 8, 2018
From: ITRON, INC.; ITRON NETWORKED SOLUTIONS, INC.
To: WELLS FARGO BANK, NATIONAL ASSOCIATION
Reel/Frame 045017/0893 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 12, 2017
From: HILBERT, ADITI; ST. JOHNS, MICHAEL
To: SILVER SPRING NETWORKS, INC.
Reel/Frame 042677/0652 →
Continuity (3)
Continuation 14321223 · Jul 1, 2014
Provisional Application 61841631 · Jul 1, 2013
Related Publication 20170277912A1 · Sep 28, 2017