-
公开(公告)号:US20220094559A1
公开(公告)日:2022-03-24
申请号:US17542142
申请日:2021-12-03
Applicant: Cisco Technology, Inc.
Inventor: Shwetha Subray Bhandari , Eric Voit , Jesse Daniel Backman , Robert Stephen Rodgers , Joseph Eryx Malcolm
Abstract: A methodology for requesting at least one signed security measurement from at least one module is provided. The methodology includes receiving the at least one signed security measurement from the at least one module; validating the at least one signed security measurement; generating a signed dossier including all validated signed security measurements in a secure enclave, the signed dossier being used by an external network device for remote attestation of the device.
-
公开(公告)号:US20210194912A1
公开(公告)日:2021-06-24
申请号:US16721513
申请日:2019-12-19
Applicant: Cisco Technology, Inc.
Inventor: David Delano Ward , Nancy Cam-Winget , Eric Voit , Jesse Daniel Backman
IPC: H04L29/06
Abstract: Systems, methods, and computer-readable media for assessing reliability and trustworthiness of devices across domains. Attestation information for an attester node in a first domain is received at a verifier gateway in the first domain. The attestation information is translated at the verifier gateway into translated attestation information for a second domain. Specifically, the attestation information is translated into translated attested information for a second domain that is a different administrative domain from the first domain. The translated attestation information can be provided to a verifier in the second domain. The verifier can be configured to verify the trustworthiness of the attester node for a relying node in the second domain by identifying a level of trust of the attester node based on the translated attestation information.
-
公开(公告)号:US20200322176A1
公开(公告)日:2020-10-08
申请号:US16782235
申请日:2020-02-05
Applicant: Cisco Technology, Inc.
Inventor: Shwetha Subray Bhandari , Eric Voit , Jesse Daniel Backman , Robert Stephen Rodgers , Joseph Eryx Malcolm
Abstract: The present technology discloses systems, methods, and computer-readable media for requesting at least one signed security measurement from at least one module with a corresponding cryptoprocessor, the at least one module existing within a device; receiving the at least one signed security measurement from the at least one module with the corresponding cryptoprocessor; validating the at least one signed security measurement; generating a signed dossier including all validated signed security measurements in a secure enclave, the signed dossier being used by an external network device for remote attestation of the device.
-
公开(公告)号:US20250106138A1
公开(公告)日:2025-03-27
申请号:US18372791
申请日:2023-09-26
Applicant: Cisco Technology, Inc.
Inventor: Jesse Daniel Backman , Kervin Pillay , Murtaza Doctor , Indermeet Singh Gandhi , Hans Ashlock , Mark Ammar Rayes , Raghu Rajendra Arur , Ian M. Campbell
Abstract: In one implementation, a “probe controller orchestrator” provides access to cross-domain probing via the probe controller orchestrator for a plurality of probe controllers across a plurality of different network domains with a respective different probing protocol and associated probing capability. The probe controller orchestrator, in particular, obtains domain-specific probe test results from each of the plurality of probe controllers, and correlates the domain-specific probe test results into cross-domain data formatted in a common data format understandable by each of the plurality of probe controllers. As such, the probe controller orchestrator may then respond to requests received from the plurality of probe controllers with the cross-domain data in order to cause respective domain-specific processing.
-
公开(公告)号:US11601292B2
公开(公告)日:2023-03-07
申请号:US17542142
申请日:2021-12-03
Applicant: Cisco Technology, Inc.
Inventor: Shwetha Subray Bhandari , Eric Voit , Jesse Daniel Backman , Robert Stephen Rodgers , Joseph Eryx Malcolm
Abstract: A methodology for requesting at least one signed security measurement from at least one module is provided. The methodology includes receiving the at least one signed security measurement from the at least one module; validating the at least one signed security measurement; generating a signed dossier including all validated signed security measurements in a secure enclave, the signed dossier being used by an external network device for remote attestation of the device.
-
公开(公告)号:US11470105B2
公开(公告)日:2022-10-11
申请号:US16721513
申请日:2019-12-19
Applicant: Cisco Technology, Inc.
Inventor: David Delano Ward , Nancy Cam-Winget , Eric Voit , Jesse Daniel Backman
Abstract: Systems, methods, and computer-readable media for assessing reliability and trustworthiness of devices across domains. Attestation information for an attester node in a first domain is received at a verifier gateway in the first domain. The attestation information is translated at the verifier gateway into translated attestation information for a second domain. Specifically, the attestation information is translated into translated attested information for a second domain that is a different administrative domain from the first domain. The translated attestation information can be provided to a verifier in the second domain. The verifier can be configured to verify the trustworthiness of the attester node for a relying node in the second domain by identifying a level of trust of the attester node based on the translated attestation information.
-
公开(公告)号:US11212119B2
公开(公告)日:2021-12-28
申请号:US16782235
申请日:2020-02-05
Applicant: Cisco Technology, Inc.
Inventor: Shwetha Subray Bhandari , Eric Voit , Jesse Daniel Backman , Robert Stephen Rodgers , Joseph Eryx Malcolm
Abstract: A methodology for requesting at least one signed security measurement from at least one module with a corresponding cryptoprocessor is provided. The methodology includes receiving the at least one signed security measurement from the at least one module with the corresponding cryptoprocessor; validating the at least one signed security measurement; generating a signed dossier including all validated signed security measurements in a secure enclave, the signed dossier being used by an external network device for remote attestation of the device.
-
-
-
-
-
-