IP Library Granted Patent US 10,805,802
Granted Patent B1
US 10,805,802 · App. 16/405,971 · Granted Oct 13, 2020

NFC-enhanced firmware security

Inventors: Kai Yau (Duluth, GA); Santhosh K. Betha (Duluth, GA); Sai Kiran Talamudupula (Norcross, GA)
Assignee: American Megatrends International, LLC
H04W12/08G06F8/65G06F21/35G06F21/62H04W4/02H04W4/80
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,805,802
App. No.
16/405,971
Granted
Oct 13, 2020
Kind
B1
Abstract

Technologies are disclosed herein for near field communication (“NFC”) enhanced firmware security. Using an implementation of the technologies disclosed herein, an NFC card or an NFC-equipped mobile device can be utilized to access an NFC-equipped server computer. The server computer reads a login key from an NFC card or an NFC-equipped mobile device. Based upon the login key, a firmware executing on the server computer can determine whether a user is to have administrator access rights, non-administrator user access rights, or no access rights at all to a firmware setup menu provided by the server computer. Based upon the login key, the firmware executing in the NFC-equipped server computer can also identify an operating system to be booted by the server computer. In some configurations, an NFC-equipped mobile device contacts an authorization server to obtain the login key based upon a user's access credentials.

Claims (31)

1. A computer-implemented method, comprising:

reading a login key at a near-field communication (NFC)-equipped server computer from an NFC-equipped mobile device via NFC, wherein the login key defines access rights and is generated by an authorization server in response to an authorization request to access the NFC-equipped server computer, the authorization request provided by the NFC-equipped mobile device;

determining that the login key indicates that a user is to be provided first rights to a setup menu provided by a firmware executing in the NFC-equipped server computer; and

providing access to the setup menu according to the first rights.

2. The method of claim 1 , wherein the authorization server generates data indicative of the access rights using user credentials corresponding to the user, and wherein the login key includes the data.

3. The method of claim 1 , wherein the first rights comprise one of administrator rights or non-administrator user rights.

4. The method of claim 1 , further comprising:

identifying, using the login key, an operating system that is to be booted by the NFC-equipped server computer; and

causing the NFC-equipped server computer to boot the operating system.

5. The method of claim 1 , further comprising reading a second login key at the NFC-equipped server computer from the NFC-equipped mobile device via NFC, wherein the second login key is generated at the authorization server in response to a second authorization request to access the NFC-equipped server computer.

6. The method of claim 5 , further comprising:

determining that the second login key indicates that a second user is not permitted to access the firmware-provided setup menu; and

restricting access to the setup menu using the second login key.

7. An apparatus, comprising:

at least one processor; and

a computer-readable storage medium having instructions stored thereupon that are executable by the at least one processor and which, when executed by the at least one processor, cause the apparatus to

transmit, to an authorization server, an authorization request to access a near-field communication (NFC)-equipped server computer;

receive, from the authorization server, a login key in response to the authorization request, wherein the login key defines access rights to the NFC-equipped server computer and is generated by the authorization server; and

provide the login key to the NFC-equipped server computer via NFC, whereby the NFC-equipped server computer is configured to determine the access rights using the login key.

8. The apparatus of claim 7 , wherein the login key defines an operating system that is to be booted by the NFC-equipped server computer.

9. The apparatus of claim 7 , wherein the access rights dictate, at least in part, access to a setup menu provided by a firmware of the NFC-equipped server computer.

10. The apparatus of claim 7 , wherein the authorization request defines user credentials of a user of the apparatus transmitting the authorization request.

11. The apparatus of claim 10 , wherein the authorization server generates data indicative of the access rights using the user credentials.

12. A non-transitory computer-readable storage medium having instructions stored thereupon that, when executed by a processor, cause the processor to:

transmit, to an authorization server, an authorization request to access a near field communication (NFC)-equipped server computer;

receive, from the authorization server, a login key in response to the authorization request, wherein the login key defines access rights to the NFC-equipped server computer and is generated by the authorization server; and

provide the login key to the NFC-equipped server computer via NFC, whereby the NFC-equipped server computer is configured to determine the access rights using the login key.

13. The non-transitory computer-readable storage medium of claim 12 , wherein the login key defines an operating system that is to be booted by the NFC-equipped server computer.

14. The non-transitory computer-readable storage medium of claim 12 , wherein the access rights dictate, at least in part, access to a setup menu provided by a firmware of the NFC-equipped server computer.

15. The non-transitory computer-readable storage medium of claim 12 , wherein the authorization request defines user credentials of a user of the apparatus transmitting the authorization request.

16. The non-transitory computer-readable storage medium of claim 15 , wherein the authorization server generates data indicative of the access rights using the user credentials.

Assignments (5)
PATENT SECURITY AGREEMENT Recorded Oct 23, 2024
From: AMERICAN MEGATRENDS INTERNATIONAL, LLC
To: BAIN CAPITAL CREDIT, LP, AS ADMINISTRATIVE AGENT AND COLLATERAL AGENT
Reel/Frame 069229/0834 →
RELEASE OF SECURITY INTEREST Recorded Oct 17, 2024
From: MIDCAP FINANCIAL TRUST
To: AMERICAN MEGATRENDS INTERNATIONAL, LLC
Reel/Frame 069205/0948 →
SECURITY INTEREST Recorded Apr 30, 2024
From: AMERICAN MEGATRENDS INTERNATIONAL, LLC
To: MIDCAP FINANCIAL TRUST, AS COLLATERAL AGENT
Reel/Frame 067274/0834 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 25, 2020
From: YAU, KAI; BETHA, SANTHOSH K.; TALAMUDUPULA, SAI KIRAN
To: AMERICAN MEGATRENDS, INC.
Reel/Frame 051922/0900 →
ENTITY CONVERSION Recorded Feb 25, 2020
From: AMERICAN MEGATRENDS, INC.
To: AMERICAN MEGATRENDS INTERNATIONAL, LLC
Reel/Frame 052018/0930 →
Continuity (1)
Continuation 14730973 · Jun 4, 2015
Cited By (1)
US 12,719,681