DEVICE CERTIFICATE MANAGEMENT FOR ZERO TOUCH DEPLOYMENT IN AN ENTERPRISE NETWORK

    公开(公告)号:US20230299979A1

    公开(公告)日:2023-09-21

    申请号:US17824117

    申请日:2022-05-25

    CPC classification number: H04L9/3268 H04L9/0866 H04L9/3247

    Abstract: Disclosed are techniques for dynamically creating policy-based intermediate certificates to sign device certificates of devices deployed in an enterprise network using ZTD. In one aspect, a method includes receiving network policy information to be used for creating policy-based intermediate certificates, each one of the policy-based intermediate certificates being used by a network controller for signing devices certificates of a different cluster of connected IoT devices; receiving, from an IoT device, a request for registration with the network controller; based on identifying information of the IoT device included in the request, determining one of the policy-based intermediate certificates to sign a device certificate of the loT device; and transmitting, to the IoT device, the device certificate signed using the one of the policy-based intermediate certificates.

    ZERO-TOUCH DEPLOYMENT (ZTD) OF CELLULAR IoT DEVICES AND ASSOCIATED TRUST MODEL

    公开(公告)号:US20210352472A1

    公开(公告)日:2021-11-11

    申请号:US16868097

    申请日:2020-05-06

    Abstract: In one embodiment, a service receives a device registration request sent by an endpoint device, wherein the endpoint device executes an onboarding agent that causes the endpoint device to send the device registration request via a cellular connection to a private access point name (APN) associated with the service. The service verifies that a network address of the endpoint device from which the device registration request was sent is associated with an integrated circuit card identifier (ICCID) or international mobile equipment identity (IMEI) indicated by the device registration request. The service identifies a tenant identifier associated with the ICCID or IMEI. The service sends, based on the tenant identifier, a device registration response to the endpoint device via the private APN.

Patent Agency Ranking