IP Library › Granted Patent US 12,143,911
Granted Patent B2
US 12,143,911 · App. 17/595,121 · Granted Nov 12, 2024

Machine to machine communications

Inventors: Hannes Tschofenig (Tirol, AT); Mikko Johannes Saarnivala (Oulu, FI); Szymon Sasin (Oulu, FI); Hanno Becker (Cambridge, GB); Manuel Pegourie-Gonnard (Marseilles, FR)
Assignees: ARM LIMITED; ARM IP LIMITED
H04W4/70H04W12/0431H04W12/06H04W12/60
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,143,911
App. No.
17/595,121
Granted
Nov 12, 2024
Kind
B2
Abstract

Broadly speaking, the present techniques relate to a computer implemented method for establishing a secure communication session between a client device and a server resource.

Claims (45)

1. A computer implemented method for establishing a secure communication session between a client device and a first server resource, the method comprising:

receiving, at the first server resource from a router resource, a message originating from the client device;

determining, at the first server resource based on the content of the message, whether one or more security parameters required to serve the client device are available thereto;

when the security parameters are not available:

obtaining, at the first server resource, the one or more security parameters including receiving the one or more security parameters from a further resource;

establishing a secure communication session between the first server resource and the client device using the obtained security parameters.

2. The method of claim 1 , further comprising:

determining, at the first server resource, the identity of a second server resource currently serving the client device.

3. The method of claim 2 , wherein determining, at the first server resource, the identity of the second server resource currently serving the client device comprises:

transmitting, from the first server resource to a further resource, a query communication comprising a connection identifier; and

receiving, from the further resource, a response confirming the identity of the second server resource based on or in response to the connection identifier.

4. The method of claim 2 further comprising:

transmitting, from the first server resource to the second server resource, a query to confirm that the message is valid.

5. The method of claim 2 , wherein obtaining the one or more security parameters comprises:

receiving the one or more security parameters directly from the second server resource.

6. The method of claim 1 , further comprising:

storing the one or more security parameters at a security parameter database accessible to the first server resource.

7. The method of claim 1 , further comprising:

transmitting, from the first server resource to the client device, a message comprising a challenge.

8. The method of claim 7 , wherein the message comprising the challenge comprises a cookie.

9. The method of claim 8 , further comprising:

obtaining, at the first server resource, the cookie from the second server resource or from the further resource.

10. The method of claim 8 , further comprising:

generating, at the first server resource, the cookie.

11. The method of claim 8 , wherein the cookie comprises a cookie specific counter value.

12. The method of claim 7 , further comprising:

receiving, at the first server resource from the client device, a response to the challenge.

13. The method of claim 12 , further comprising:

validating, at the first server resource, the response to the challenge.

14. The method of claim 13 , further comprising:

obtaining, at the first server resource, the one or more security parameters when the response to the challenge is validated.

15. The method of claim 12 , further comprising:

transmitting, from the first server resource to the second server resource or the further resource, the response to the challenge for validation.

16. A computer implemented method for establishing a secure communication session between a client device and a first server resource, the method comprising:

receiving, at the first server resource from a router resource, a message originating from the client device;

determining, at the first server resource, based on the content of the message, whether security parameters required to serve the client device are available thereto;

when the security parameters are not available:

determining, at the first server resource, the identity of the server resource currently serving the client device;

transmitting update data to the router resource identifying the server resource currently serving the client device.

17. A computer implemented method for establishing a secure communication session between a client device and a first server resource, the method comprising:

receiving, at the first server resource from a router resource, a message originating at the client device;

determining, at the first server resource, based on the content of the message, whether security parameters required to serve the client device are available thereto;

when the security parameters are not available:

determining, at the first server resource, the identity of the server resource currently serving the client device;

transmitting, from the first server resource to the server resource currently serving the client device at least a portion of the content of the message to allow the server currently serving the device to respond to the message.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 9, 2024
From: TSCHOFENIG, HANNES; SAARNIVALA, MIKKO JOHANNES; SASIN, SZYMON; BECKER, HANNO; PEGOURIE-GONNARD, MANUEL
To: ARM LIMITED; ARM IP LIMITED
Reel/Frame 067938/0365 →
Priority Claims (1)
GB 2002697 · Feb 26, 2020 · national
Continuity (2)
Provisional Application 62846060 · May 10, 2019
Related Publication 20220217515A1 · Jul 7, 2022
Cited By (1)
US 12,483,548