Patent classifications
G06F21/44
Network device authentication
A method of authenticating a network device may include receiving an authentication message from a third party server, the authentication message identifying a network device. The method may also include receiving a zero touch provisioning request comprising a certificate from the network device. The method may additionally include, determining the network device is associated with a third party that manages the third party server based on the certificate. The method may include transmitting a redirect message comprising a root certificate chain indicating that the network device is to send the zero touch provisioning request to the third party server.
Network device authentication
A method of authenticating a network device may include receiving an authentication message from a third party server, the authentication message identifying a network device. The method may also include receiving a zero touch provisioning request comprising a certificate from the network device. The method may additionally include, determining the network device is associated with a third party that manages the third party server based on the certificate. The method may include transmitting a redirect message comprising a root certificate chain indicating that the network device is to send the zero touch provisioning request to the third party server.
Facilitating device fingerprinting through assignment of fuzzy device identifiers
Various device attributes associated with a current event may be obtained. Similarity metrics may be determined that indicate a degree of similarity between the device attributes that are associated with the current event and stored device attributes that are associated with previous events and previously created fuzzy device identifiers. A fuzzy device identifier may be assigned to the current event based at least in part on a comparison of the similarity metrics with a threshold. If none of the similarity metrics compare favorably with the threshold, then a new fuzzy device identifier may be created for the current event. However, if at least one of the similarity metrics compares favorably with the threshold, then the previously created fuzzy device identifier whose stored device attributes are most similar to the device attributes that are associated with the current event may be assigned to the current event.
Location-based asset usage control
A lighting device includes a light source configured to emit a light and a sensor configured to receive identification information from an asset tag of a physical asset. The lighting device further includes a processor configured to send the identification information received from the asset tag and location information of the lighting device to a control device. The processor is further configured to receive a usage control message from the control device and transmit the usage control message, where the usage control message controls whether the physical asset is used at a location indicated by the location information.
Location-based asset usage control
A lighting device includes a light source configured to emit a light and a sensor configured to receive identification information from an asset tag of a physical asset. The lighting device further includes a processor configured to send the identification information received from the asset tag and location information of the lighting device to a control device. The processor is further configured to receive a usage control message from the control device and transmit the usage control message, where the usage control message controls whether the physical asset is used at a location indicated by the location information.
SOC-assisted resilient boot
Systems, apparatuses and methods may provide for technology that assumes, by a root of trust located in a trusted region of a system on chip (SOC), control over a reset of the SOC and conducting, by the root of trust, an authentication of an update package in response to an update condition. The root of trust technology may also apply the update package to firmware located in non-volatile memory (NVM) associated with a microcontroller of the SOC if the authentication is successful.
SOC-assisted resilient boot
Systems, apparatuses and methods may provide for technology that assumes, by a root of trust located in a trusted region of a system on chip (SOC), control over a reset of the SOC and conducting, by the root of trust, an authentication of an update package in response to an update condition. The root of trust technology may also apply the update package to firmware located in non-volatile memory (NVM) associated with a microcontroller of the SOC if the authentication is successful.
Systems and methods providing a torch that presents as a genuine manufacturer torch to a power source
Embodiments of welding and cutting systems are disclosed. A welding or cutting system includes a power source to provide electrical power for a welding or cutting process. The system includes a torch having a cryptographic device, and is to be used with the power source during the process and communicate with the power source. The cryptographic device is configured to receive an encryption key seeded by the power source during first time power-on initialization of the welding power source or after the torch is replaced. The cryptographic device is configured to store an unlock code associated with the power source, generate an encrypted message, which includes the unlock code, based on the encryption key, and communicate the encrypted message to the power source. The power source is configured to cease further operation unless the power source determines the torch to be a genuine manufacturer torch based on the unlock code.
SYSTEM FOR ELECTRONIC STORAGE OF ELECTRONIC DIGITAL CERTIFICATES ASSOCIATED WITH UNIQUE RESOURCES
Systems, computer program products, and methods are described herein for storing electronic digital certificates associated with unique resources on a digital platform. The present invention is configured to electronically receive, from a computing device of a user, unique resource data, wherein the unique resource is either digital or physical, retrieve one or more electronic digital certificates associated with the unique resource, receive a request for rights to the electronic digital certificate associated with the unique resource from a second user, initiate a resource transfer, and update the electronic digital certificate on a distributed ledger to record the rights of the second user to the unique resource.
COMMAND AUTHORITY EXTENSION SYSTEM AND METHOD FOR SECURITY PROTOCOL AND DATA MODEL (SPDM) SECURE COMMUNICATION CHANNELS
An Information Handling System (IHS) includes at least one hardware device in communication with a Baseboard Management Controller (BMC). The hardware device includes executable instructions for establishing a secure communication channel with the BMC, and subsequently receiving a list of allowed commands from the BMC. When a command is received by the hardware device, it determines whether the command is included in the list such that when the command is in the list and the command is received within the secure communication channel, the hardware device performs the command. However, when the command is in the list and the command is received outside of the secure communication channel, the hardware device ignores the command.