IP Library Patent Application 16333948
Patent Application
App. No. 16/333,948

SYSTEMS AND METHODS FOR SECURING REDUCED PRESSURE THERAPY DEVICES

Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US None
App. No.
16/333,948
Abstract

Embodiments of negative pressure wound therapy devices, systems and methods are disclosed. In some embodiments, a negative pressure wound therapy apparatus includes network connection capabilities allowing the TNP apparatus to transmit data via a communications network. The negative pressure wound therapy apparatus can include security measures to prevent exposure to security risks associated with the network connection.

Claims (45)

1 . An apparatus for applying negative pressure to a wound, the apparatus comprising:

a negative pressure source configured to provide negative pressure via a fluid flow path to a wound covered by a wound dressing; and

a controller coupled to a memory, the controller configured to:

operate the negative pressure source to provide negative pressure to the wound;

communicate with a remote computing device via a computer network according to a security protocol, wherein the security protocol comprises periodically assigning a new IP address to the apparatus; and

process data received from the remote computing device according to a security rule.

2 . The apparatus of claim 1 , wherein:

the security protocol further comprises assigning a new IP address to the apparatus for each communication request to the remote computing device and encrypting communications with the remote computing device through mutual authentication; and

the security rule comprises not responding to any redirect requests to a network address different from a network address of the remote computing device.

3 . The apparatus of claim 2 , wherein the mutual authentication is performed via security certificates stored in the memory of the apparatus and on the remote computing device, and wherein the security certificate stored in the memory uniquely identifies the apparatus.

4 . The apparatus of claim 1 , wherein:

the memory stores instructions that, when executed by the controller, cause the controller to operate the negative pressure source, communicate with the remote computing device, and process data received from the remote computing device; and

the security rule comprises, in response to receiving from the computing device an update of at least some instructions stored m the memory, verifying an identity of an author of the update prior to updating the at least some instructions.

5 . The apparatus of claim 1 , further comprising one or more anti-tampering mechanisms configured to indicate unauthorized use of the apparatus.

6 . The apparatus of claim 1 , wherein the controller is configured to process the data according to the security rule so that access to the data provided by the controller via the computer network is limited to one or more authenticated devices.

7 . The apparatus of claim 1 , wherein the controller is configured to receive the data according to the security rule so that the data is enabled to adjust a first function performable by the controller and prevented from adjusting a second function performable by the controller.

8 . The apparatus of claim 1 , wherein the security rule comprises one or more of enforcing code signing, enforcing transport encryption, or utilizing mutual authentication.

9 . (canceled)

10 . The apparatus of claim 8 , wherein transport encryption utilizes transport layer security.

11 . (canceled)

12 . (canceled)

13 . The apparatus of claim 1 , wherein the data comprises one or more of data indicative of operations of the negative pressure source identification information for a user of the negative pressure source, or patient data for a user of the apparatus.

14 . (canceled)

15 . A method of operating a negative pressure wound therapy apparatus, the method comprising:

activating a negative pressure source configured to provide negative pressure via a fluid flow path to a wound covered by a wound dressing;

communicating with a remote computing device via a computer network according to a security protocol, wherein the security protocol comprises periodically assigning a new IP address to the apparatus; and

processing data received from the remote computing device according to a security rule,

wherein the method is performed by a controller of the apparatus.

16 . The method of claim 15 , wherein:

the security protocol further comprises assigning a new IP address to the apparatus for each communication request to the remote computing device and encrypting communications with the remote computing device through mutual authentication; and

the security rule comprises not responding to any redirect requests to a network address different from a network address of the remote computing device.

17 . The method of claim 16 , wherein the mutual authentication is performed via security certificates stored in a memory of the apparatus and on the remote computing device, and wherein the security certificate stored in the memory uniquely identifies the apparatus.

18 . The method of claim 17 , wherein:

the memory stores instructions that, when executed by the controller, cause the controller to operate the negative pressure source, communicate with the remote computing device, and process data received from the remote computing device; and

the security rule comprises, in response to receiving from the computing device an update of at least some instructions stored in the memory, verifying an identity of an author of the update prior to updating the at least some instructions.

19 . The method of claim 15 , wherein the apparatus further comprises one or more anti-tampering mechanisms configured to indicate unauthorized use of the apparatus.

20 . The method of claim 15 , wherein the controller is configured to process the data according to the security rule so that access to the data provided by the controller via the computer network is limited to one or more authenticated devices.

21 . The method of claim 15 , wherein the controller is configured to receive the data according to the security rule so that the data is enabled to adjust a first function performable by the controller and prevented from adjusting a second function performable by the controller.

22 . The method of claim 15 , wherein the security rule comprises one or more of enforcing code signing, enforcing transport encryption, or utilizing mutual authentication.

23 . (canceled)

24 . The method of claim 22 , wherein transport encryption utilizes transport layer security.

25 . (canceled)

26 . (canceled)

27 . The method of claim 15 , wherein the data comprises one or more of data indicative of operations of the negative pressure source, identification information for a user of the negative pressure source, or patient data for a user of the apparatus.

28 . (canceled)