IP Library › Granted Patent US 11,128,438
Granted Patent B1
US 11,128,438 · App. 16/113,739 · Granted Sep 21, 2021

Systems, methods, and media for sharing IoT device profile data

Inventors: Tirumaleswar Reddy Konda (Bengaluru, IN); Harsha R. Joshi (Bengaluru, IN); Eric D. Wuehler (Beaverton, OR); Piyush P. Joshi (Aurangabad, IN)
Assignee: McAfee, LLC
H04L9/0637H04L63/0263H04L63/102H04L63/20
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,128,438
App. No.
16/113,739
Filed
Aug 27, 2018
Granted
Sep 21, 2021
Kind
B1
Art Unit
2439
USPC
726/1
Abstract

Sharing IoT device (IoTd) profile data is provided, comprising: generating at least one access control rule to protect an IoTd; publishing first IoTd profile data in a first new block (FNB) of a blockchain of a blockchain network (BN), wherein the first IoTd profile data comprises the at least one access control rule; and committing the FNB to the blockchain based on a consensus algorithm by: a manufacturer of the IoTd committing the FNB to the blockchain; a security vendor (SV) participating in the BN committing the FNB to the blockchain when the SV is a sole SV participating in the BN; or the SV committing the FNB to the blockchain based on consensus among at least the SV and a plurality of security vendors when the SV and the plurality of security vendors are participating in the BN.

Claims (64)

1. A system for sharing Internet of Things (IoT) device profile data, the system comprising:

a memory; and

a hardware processor coupled to the memory that is configured to:

generate at least one access control rule to protect an IoT device;

publish first IoT device profile data in a first new block of a blockchain of a blockchain network, wherein the first IoT device profile data comprises the at least one access control rule; and

commit the first new block to the blockchain based on a consensus algorithm by:

the security vendor committing the first new block to the blockchain based on consensus among at least the security vendor and one or more internet service providers (ISP) managing the IoT device when the security vendor and the one or more ISPs are participating in the blockchain network;

an ISP participating in the blockchain network committing the first new block to the blockchain based on consensus among at least the ISP and the one or more ISPs managing the IoT device when the ISP and the one or more ISPs are participating in the blockchain network.

2. The system of claim 1 , wherein the at least one access control rule comprises an L3/L4 firewall rule, a Transport Layer Security firewall rule, or a privacy rule.

3. The system of claim 1 , wherein the hardware processor is further configured to:

sign the first IoT device profile data using a private key while having revocable authorization to act as a validating node.

4. The system of claim 1 , wherein the consensus algorithm comprises using a Practical Byzantine Fault Tolerance protocol among at least four validating nodes of the blockchain network to reach consensus.

5. The system of claim 1 , wherein the hardware processor is further configured to:

transmit the first IoT device profile data to a device that enforces the at least one access control rule.

6. The system of claim 1 , wherein the hardware processor is further configured to:

generate at least one other access control rule; and

publish second IoT device profile data in a second new block of the blockchain,

wherein the second IoT device profile data comprises the at least one other access control rule, and

wherein the second new block is linked to the first new block.

7. The system of claim 6 , wherein the hardware processor is further configured to:

validate a request to update the at least one access control rule based on consensus with at least one participant of the blockchain network,

wherein the at least one other control access rule comprises at least one updated access control rule.

8. A method for sharing IoT device profile data, the method comprising:

generating at least one access control rule to protect an IoT device;

publishing first IoT device profile data in a first new block of a blockchain of a blockchain network, wherein the first IoT device profile data comprises the at least one access control rule; and

committing the first new block to the blockchain based on a consensus algorithm by:

the security vendor committing the first new block to the blockchain based on consensus among at least the security vendor and one or more internet service providers (ISP) managing the IoT device when the security vendor and the one or more ISPs are participating in the blockchain network;

or

an ISP participating in the blockchain network committing the first new block to the blockchain based on consensus among at least the ISP and the one or more ISPs managing the IoT device when the ISP and the one or more ISPs are participating in the blockchain network.

9. The method of claim 8 , wherein the at least one access control rule comprises an L3/L4 firewall rule, a Transport Layer Security firewall rule, or a privacy rule.

10. The method of claim 8 , further comprising:

signing the first IoT device profile data using a private key while having revocable authorization to act as a validating node.

11. The method of claim 8 , wherein the consensus algorithm comprises using a Practical Byzantine Fault Tolerance protocol among at least four validating nodes of the blockchain network to reach consensus.

12. The method of claim 8 , further comprising:

transmitting the first IoT device profile data to a device that enforces the at least one access control rule.

13. The method of claim 8 , further comprising:

generating at least one other access control rule; and

publishing second IoT device profile data in a second new block of the blockchain,

wherein the second IoT device profile data comprises the at least one other access control rule, and

wherein the second new block is linked to the first new block.

14. The method of claim 13 , further comprising:

validating a request to update the at least one access control rule based on consensus with at least one participant of the blockchain network,

wherein the at least one other control access rule comprises at least one updated access control rule.

15. A non-transitory computer-readable medium containing computer-executable instructions that, when executed by a processor, cause the processor to perform a method for sharing IoT device profile data, the method comprising:

generating at least one access control rule to protect an IoT device;

publishing first IoT device profile data in a first new block of a blockchain of a blockchain network, wherein the first IoT device profile data comprises the at least one access control rule; and

committing the first new block to the blockchain based on a consensus algorithm by:

the security vendor committing the first new block to the blockchain based on consensus among at least the security vendor and one or more internet service providers (ISP) managing the IoT device when the security vendor and the one or more ISPs are participating in the blockchain network;

or

an ISP participating in the blockchain network committing the first new block to the blockchain based on consensus among at least the ISP and the one or more ISPs managing the IoT device when the ISP and the one or more ISPs are participating in the blockchain network.

16. The non-transitory computer-readable medium of claim 15 , wherein the at least one access control rule comprises an L3/L4 firewall rule, a Transport Layer Security firewall rule, or a privacy rule.

17. The non-transitory computer-readable medium of claim 15 , the method further comprising:

signing the first IoT device profile data using a private key while having revocable authorization to act as a validating node.

18. The non-transitory computer-readable medium of claim 15 , wherein the consensus algorithm comprises using a Practical Byzantine Fault Tolerance protocol among at least four validating nodes of the blockchain network to reach consensus.

19. The non-transitory computer-readable medium of claim 15 , the method further comprising:

transmitting the first IoT device profile data to a device that enforces the at least one access control rule.

20. The non-transitory computer-readable medium of claim 15 , the method further comprising:

generating at least one other access control rule; and

publishing second IoT device profile data in a second new block of the blockchain,

wherein the second IoT device profile data comprises the at least one other access control rule, and

wherein the second new block is linked to the first new block.

21. The non-transitory computer-readable medium of claim 20 , the method further comprising:

validating a request to update the at least one access control rule based on consensus with at least one participant of the blockchain network,

wherein the at least one other control access rule comprises at least one updated access control rule.

Assignments (3)
CORRECTIVE ASSIGNMENT TO CORRECT THE THE PATENT TITLES AND REMOVE DUPLICATES IN THE SCHEDULE PREVIOUSLY RECORDED AT REEL: 059354 FRAME: 0335. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Jun 23, 2022
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 060792/0307 →
SECURITY INTEREST Recorded Mar 3, 2022
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A., AS ADMINISTRATIVE AGENT AND COLLATERAL AGENT
Reel/Frame 059354/0335 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 10, 2018
From: KONDA, TIRUMALESWAR REDDY; JOSHI, HARSHA R.; WUEHLER, ERIC D.; JOSHI, PIYUSH P.
To: MCAFEE, LLC
Reel/Frame 047120/0445 →
Cited By (4)
US 12,224,988 US 12,267,334 US 12,294,642 US 12,519,723