Wireless mesh network with secure automatic key loads to wireless devices

US10153898B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-10153898-B2
Application numberUS-201213479869-A
CountryUS
Kind codeB2
Filing dateMay 24, 2012
Priority dateNov 13, 2007
Publication dateDec 11, 2018
Grant dateDec 11, 2018

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

A wireless mesh network provides secure communication by encrypting data using one or more encryption keys. A configuration device in communication with a security manager of the network provides a temporary secure communication path between the security manager and a new field device to be added to the mesh network. Cryptographic material and other configuration data can then be transferred between the security manager of the network and the new field device securely via the configuration device.

First claim

Opening claim text (preview).

The invention claimed is: 1. A method of integrating a specific wireless field device into a wireless mesh network by loading a join key into the specific wireless field device, wherein the join key is usable by any wireless field device capable of joining the wireless mesh network, the method comprising: establishing a wired network connection between a configuration device and a wired network, wherein the wired network includes a security manager and a network gateway and wherein the configuration device is separate and remote from the network gateway; establishing a wired connection comprising a two wire communication bus between the specific wireless field device and the configuration device; creating a secure wired communication path between the specific wireless field device and the security manager through the wired connection, the configuration device, and the wired network; initiating loading the join key from the security manager to the specific wireless field device through the secure wired communication path; disconnecting the specific wireless field device from the wired connection between the specific wireless field device and the configuration device after loading of the join key from the security manager to the specific wireless field device is completed; and joining the specific wireless field device to the wireless mesh network by wirelessly communicating a wireless message encrypted with the join key from the specific wireless field device to a neighboring wireless device that is a member of the wireless mesh network and wirelessly communicating the wireless message from the neighboring wireless device to a network manager within the wireless mesh network that manages joining of members of the wireless mesh network. 2. The method of claim 1 , wherein the configuration device communicates with the specific wireless field device over the wired network connection using a control system communication protocol. 3. The method of claim 2 , wherein the configuration device converts messages received from the security manager over the wired network to the control system communication protocol. 4. The method of claim 1 and further comprising: loading configuration data in addition to the join key through the secure wired communication path. 5. The method of claim 1 and further comprising: viewing a graphical user interface; and initiating loading of the join key through the graphical user interface. 6. The method of claim 1 , wherein the wired network comprises a wired digital communication network to which the configuration device is connected. 7. The method of claim 1 , wherein the join key includes a key generated using a one time pad technique. 8. A method of loading cryptographic material into a specific wireless field device to allow the specific wireless field device to operate as part of a wireless mesh network, wherein the cryptographic material is usable by any wireless field device capable of joining the wireless mesh network, the method comprising: establishing a wired network connection between a configuration device and a security manager of the wireless mesh network, that includes a network gateway and wherein the configuration device is separate and remote from the security manager and the network gateway; establishing a wired connection between the specific wireless field device and the configuration device, wherein the wired connection ensures messages generated by the configuration device are receivable only by the specific wireless field device; establishing a secure communication path between the security manager and the specific wireless field device via the wired connection, the configuration device and the wired network; initiating loading of the cryptographic material from the security manager to the specific wireless field device through the secure communication path so that the cryptographic material is receivable only by the specific wireless field device; disconnecting the specific wireless field device from the secure communication path after the loading of the cryptographic material from the security manager to the specific wireless field device is completed; and joining the specific wireless field device to the wireless mesh network by transferring a wireless message including the cryptographic material from the specific field device to any member of the wireless mesh network and wirelessly communicating the wireless message from the any member of the wireless mesh network to a network manager within the wireless mesh network that receives the wireless message and manages joining of members of the wireless mesh network. 9. The method of claim 8 , wherein the cryptographic material includes a join key generated using a one time pad technique.

Assignees

Inventors

Classifications

  • H04L9/083Primary

    involving central third party, e.g. key distribution center [KDC] or trusted third party [TTP] · CPC title

  • using an additional device, e.g. smartcard, SIM or a different communication terminal (cryptographic mechanisms or cryptographic arrangements for entity authentication involving additional secure or trusted devices H04L9/3234) · CPC title

  • Key management, e.g. using generic bootstrapping architecture [GBA] · CPC title

  • Self-organising networks, e.g. ad-hoc networks or sensor networks · CPC title

  • Wireless · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US10153898B2 cover?
A wireless mesh network provides secure communication by encrypting data using one or more encryption keys. A configuration device in communication with a security manager of the network provides a temporary secure communication path between the security manager and a new field device to be added to the mesh network. Cryptographic material and other configuration data can then be transferred be…
Who is the assignee on this patent?
Karschnia Robert J, Peluso Marcos, Carlson Daniel, and 2 more
What technology area does this patent fall under?
Primary CPC classification H04L9/083. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Dec 11 2018 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).