IP Library Granted Patent US 8,955,034
Granted Patent B2
US 8,955,034 · App. 12/591,005 · Granted Feb 10, 2015

Module and associated method for TR-069 object management

Inventors: Christele Bouchat (Antwerp, BE); Pascal Justen (Brussels, BE); Tom Van Leeuwen (Ghent, BE)
Assignee: Alcatel Lucent
H04L41/22H04L12/2876H04L41/0213H04L41/145H04L63/102H04L67/125
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,955,034
App. No.
12/591,005
Granted
Feb 10, 2015
Kind
B2
Abstract

The present invention relates to a security module for use in management of a TR-069 Object Model of a device. The Object Model comprises a plurality of parameters for selection by a view selector module based on credentials and for defining thereby an object model view associated to the device. The security module comprises means for associating the object model view to a security policy and means for configuring the security attributes of the security policy on an intermediate network entity.

Claims (15)

1. A security module for use in management of a TR-069 Object Model of a device, the security module comprising:

a means for associating an object model view of the device to a security policy; and

a means for configuring security attributes of the security policy on an intermediate network entity of an end user such that at least partial management of the device switches from a TR-069 management agent to the intermediate network entity, the security attributes including an encrypt and decrypt key unique to the device, the TR-069 management agent of the device including a first view selector module configured to select a plurality of parameters based on credentials, the device including a second view selector module configured to select the object model view using the plurality of parameters, the plurality of parameters defining the object model view associated with the device.

2. The security module for use in management of a TR-069 Object Model of a device according to claim 1 , wherein said means for associating is installed on a Remote Management Server.

3. The security module for use in management of TR-069 Object Model of a device according to claim 1 , wherein said security module uses a Transport Layer Security/Secure Sockets Layer protocol for configuring said security attributes on said intermediate network entity.

4. The security module for use in management of a TR-069 Object Model of a device according to claim 1 , wherein said security module further comprises an instruction means for communicating with said device and with said intermediate network entity using an encryption protocol which is based upon said configured security attributes and allows said intermediate network entity to control said associated object model view of said device.

5. The security module for use in management of a TR-069 Object Model of a device of claim 4 , wherein said encryption protocol is implemented by a Simple Object Access Protocol with a body part comprising encrypted TR-069 Object Model messages and a header part comprising an unencrypted reference to said security policy.

6. The security module for use in management of TR-069 Object Model of a device according to claim 1 , wherein said intermediate network entity is implemented by a Residential Gateway.

7. The security module for use in management of a TR-069 Object Model of a device according to claim 1 , wherein said device is a customer premises equipment.

8. The security module for use in management of TR-069 Object Model of a device according to claim 1 , wherein said module is integrated into a TR069 Management Protocol.

9. A security method for use in management of a TR-069 Object Model of a device, the method comprising:

associating an object model view of the device to a security policy;

configuring security attributes of said security policy on an intermediate network entity of an end user such that at least partial management of the device switches from a TR-069 management agent to the intermediate network entity, the security attributes including an encrypt and decrypt key unique to the device;

selecting, by a first view selector module, a plurality of parameters based on credentials, the plurality of parameters defining the object model view associated to the device; and

selecting, by a second view selector module, the object model view using the plurality of parameters.

Assignments (5)
SECURITY INTEREST Recorded Jun 1, 2021
From: WSOU INVESTMENTS, LLC
To: OT WSOU TERRIER HOLDINGS, LLC
Reel/Frame 056990/0081 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 18, 2018
From: ALCATEL LUCENT
To: WSOU INVESTMENTS, LLC
Reel/Frame 045085/0001 →
RELEASE OF SECURITY INTEREST Recorded Sep 30, 2014
From: CREDIT SUISSE AG
To: ALCATEL LUCENT
Reel/Frame 033868/0555 →
SECURITY AGREEMENT Recorded Jan 30, 2013
From: ALCATEL LUCENT
To: CREDIT SUISSE AG
Reel/Frame 029821/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 4, 2009
From: BOUCHAT, CHRISTELE; JUSTEN, PASCAL; VAN LEEUWEN, TOM
To: ALCATEL LUCENT
Reel/Frame 023511/0976 →
Priority Claims (1)
EP 08291134 · Dec 2, 2008 · regional
Continuity (1)
Related Publication 20100138895A1 · Jun 3, 2010