IP Library Granted Patent US 12,047,495
Granted Patent B2
US 12,047,495 · App. 17/632,856 · Granted Jul 23, 2024

Method for the initial setup and of a machine data communication network, method for replacing a hardware component

Inventor: Christian Seiler (Fellbach-Schmiden, DE)
Assignee: MERCEDES-BENZ GROUP AG
H04L9/0825H04L9/085H04L9/0877H04L9/3247
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,047,495
App. No.
17/632,856
Granted
Jul 23, 2024
Kind
B2
Abstract

A method for the initial setup of a machine data communication network including a network unit provided with a first hardware component having a digital identity. For the digital identity, a signature of the network unit is generated based on a first private key for a communication partner in the machine data communication network. The first private key is stored in a first hardware security module of the first hardware component, and a first public key corresponding to the first private key and the signature is disclosed to the communication partner in order to verify the identity of the network unit. A separate identification device is arranged in the network unit, and the first public key is transferred from the first hardware security module to the identification device. The first public key of the identification device is saved in the identification device by an intelligent contract and is transmitted by distributed ledger technology to the communication partner.

Claims (46)

1. A method for initial setup of a machine data communication network, the method comprising:

providing a network unit of the machine data communication network with a first hardware component having a digital identity, wherein for the digital identity, a signature of the network unit is generated based on a first private key for a communication partner of the network unit in the machine data communication network;

storing the first private key in a first hardware security module of the first hardware component;

disclosing, in order to verify the identity of the network unit, a first public key corresponding to the first private key and the signature to the communication partner;

transferring the first public key from the first hardware security module to an identification device, which is arranged in the network unit and is separate from the first hardware security module;

saving the first public key of the identification device in the identification device using an intelligent contract for communication of the network unit with the communication partner;

saving the intelligent contract in the identification device; and

transmitting the intelligent contract using distributed ledger technology to the communication partner for the initial setup of the machine data communication network.

2. The method of claim 1 , wherein changes relating to a configuration between the network unit and the communication partner are changed and saved during a lifecycle of the network unit in the intelligent contract and transferred to the communication partner using the distributed ledger technology.

3. The method of claim 1 , further comprising:

saving one or more of the following in the intelligent contract

permission information of the network unit,

software versions of the network unit,

property information of the network unit,

insurance information of the network unit,

system configurations of the network unit,

freely switched functions within the network unit, and

further hardware components of the network unit.

4. The method of claim 1 , further comprising:

generating the intelligent contract using Corda.

5. The method of claim 1 , wherein a further communication partner is provided within the machine data communication network, wherein communication with the further communication partner is performed using the intelligent contract of the distributed ledger technology.

6. The method of claim 5 , further comprising:

performing a cross-verification between the identification device, the communication partner, and the further communication partner.

7. The method of claim 1 , wherein the identification device includes an application layer, a privacy layer, and a trust layer.

8. The method of claim 7 , wherein the intelligent contract is saved on the trust layer.

9. The method of claim 1 , wherein the network unit is a motor vehicle.

10. A method for replacing a first hardware component of a network unit of a machine data communication network, the method comprising:

providing the network unit of the machine data communication network with a first hardware component having a digital identity, wherein for the digital identity, a signature of the network unit is generated based on a first private key for a communication partner of the network unit in the machine data communication network,

storing the first private key in a first hardware security module of the first hardware component,

disclosing, in order to verify the identity of the network unit, a first public key corresponding to the first private key and the signature the communication partner;

transferring the first public key from the first hardware security module to an identification device, which is arranged in the network unit and is separate from the first hardware security module;

saving the first public key of the identification device in the identification device using an intelligent contract for the communication of the network unit with the communication partner;

saving the intelligent contract in the identification device;

transmitting the intelligent contract using distributed ledger technology to the communication partner; and

performing a key replacement process when replacing the first hardware component with a second hardware component, wherein the key replacement process replaces the first public key with a second public key for the second hardware component using the intelligent contract and the distributed ledger technology.

11. The method of claim 10 , wherein the key replacement process is started by the communication partner for replacing the first hardware component with the second hardware component.

12. The method of claim 10 , wherein a state of the intelligent contract is changed when replacing the first hardware component with the second hardware component during the key replacement process.

13. A machine data communication network, comprising:

a network unit, which has a hardware component having a hardware security module and an identification device, wherein the identification device includes a processor executing a computer program loaded from a non-transitory memory of the identification device; and

a communication partner,

wherein the hardware component has a digital identity, wherein for the digital identity, a signature of the network unit is generated based on a first private key for the communication partner,

wherein the hardware security module stores the first private key,

wherein in order to verify the identity of the network unit, a first public key corresponding to the first private key and the signature is transferred to the communication partner,

wherein the hardware security module is configured to transfer the first public key to the identification device, which is separate from the hardware security module;

wherein the processor of the identification device, executing the computer program, is configured to save the first public key in the identification device using an intelligent contract for communication of the network unit with the communication partner, and

wherein the intelligent contract is transmitted, using distributed ledger technology, to the communication partner for the initial setup of the machine data communication network.

Assignments (2)
CHANGE OF NAME Recorded Jul 29, 2025
From: DAIMLER AG
To: MERCEDES BENZ GROUP AG
Reel/Frame 072886/0467 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 25, 2022
From: SEILER, CHRISTIAN
To: MERCEDES-BENZ GROUP AG
Reel/Frame 059805/0194 →
Priority Claims (1)
DE 10 2019 005 546.2 · Aug 7, 2019 · national
Continuity (1)
Related Publication 20220271925A1 · Aug 25, 2022