Automatic network provisioning of a medical device

US11552995B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-11552995-B2
Application numberUS-202016805559-A
CountryUS
Kind codeB2
Filing dateFeb 28, 2020
Priority dateMar 6, 2019
Publication dateJan 10, 2023
Grant dateJan 10, 2023

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

One or more medical devices are configured to connect to a predetermined temporary provisioning network of a healthcare organization, the temporary provisioning network being different than a healthcare network of the healthcare organization. After the devices are received by the healthcare organization, and powered up for the first time, device identifiers corresponding to the medical devices are received at a server remote from the healthcare organization, from the temporary provisioning network, together with an indication that the medical devices are requesting access to a management server within a healthcare network of the healthcare organization. On determining that the medical devices are predetermined to receive access to the management server, a provisioning service configures, through the temporary provisioning network, the medical devices to access and communicate with the management server, and informs the management server that the medical devices have been configured to access and communicate with the management server.

First claim

Opening claim text (preview).

What is claimed is: 1. A method, comprising: configuring one or more medical devices to connect to a predetermined temporary provisioning network of a healthcare organization responsive to the one or more medical devices being powered on for a first time by the healthcare organization, the temporary provisioning network being different than a healthcare network of the healthcare organization, wherein the healthcare network includes one or more services not accessible by the temporary provisioning network, and wherein the temporary provisioning network is publicly accessible, while the healthcare network is protected from unauthorized access; receiving, at a first server remote from the healthcare organization, from the temporary provisioning network, one or more device identifiers corresponding to the one or more medical devices and an indication that the one or more medical devices requests access to the healthcare network; receiving one or more security certificates for assignment to the one or more device identifiers; determining, based on receiving the one or more certificates and the one or more device identifiers, that the received one or more device identifiers correspond to respective medical devices predetermined to receive access to a management server within the healthcare network; and in accordance with a determination that the one or more medical devices are predetermined to receive access to the management server: transmitting, through the temporary provisioning network to the one or more medical devices, a security certificate for configuring the one or more medical devices to access and communicate with the management server; configuring, through the temporary provisioning network, the one or more medical devices with information to access the healthcare network and to communicate with the management server on the healthcare network using a new network connection based on the configuration information; terminating communication between the one or more medical devices and the temporary provisioning network; and transmitting, from the first server remote from the healthcare organization, an electronic signal informing the management server that the one or more medical devices have been configured to access and communicate with the management server. 2. The method of claim 1 , wherein configuring the one or more medical devices to connect to a predetermined temporary provisioning network is performed by a production server distinct from the management server and coupled with the healthcare organization via a network external to the healthcare organization. 3. The method of claim 1 , wherein the temporary provisioning network is configured to broadcast a service set identifier (SSID) preconfigured to be known by the medical devices and the medical devices are configured to seek the SSID prior to being powered on for a first time. 4. The method of claim 1 , wherein the management server is configured to receive, via a user interface provided by the management server, an assignment of the one or more device identifiers to the one or more security certificates, the management server being further configured to provide to a provisioning server outside the healthcare organization the one or more security certificates to the one or more medical devices on a power up of the medical devices, and to communicate with the one or more medical devices after being informed that the one or more medical devices have been configured to access and communicate with the management server. 5. The method of claim 4 , wherein the management server is configured to receive, via the user interface provided by the management server, an assignment of the one or more device identifiers and the one or more security certificates to a respective facility of a plurality of facilities within the healthcare organization, and wherein configuring the one or more medical devices to access and communicate with the management server comprises configuring the one or more medical devices to communicate via a local network within the respective facility, wherein the one or more security certificates are specific to the respective facility. 6. The method of claim 1 , wherein the one or more device identifiers are network addresses of the respective medical devices. 7. The method of claim 1 , wherein the indication that the one or more medical devices requests access to the healthcare network is received by the management server upon medical device power up. 8. The method of claim 1 , wherein the one or more medical devices includes an infusion device, a ventilator device, a medicant dispensing device, a medication preparation device, or an automated dispensing device or a device coupled with an infusion device, a ventilator device, a medicant dispensing device, a medication preparation device, or an automated dispensing device. 9. The method of claim 1 , wherein the configuring the medical devices to access and communication with the management server further comprises: verifying that the one or more security certificates have been installed successfully on the one or more medical devices; and transmitting, to the first server remote from the healthcare organization, a message indicating that security standards of the healthcare network have been met. 10. The method of claim 1 , wherein configuring the medical devices further comprises: receiving an indication that the one or more medical devices have been successfully configured to access and communicate with the management server; and terminating a network access of the one or more medical devices to the predetermined temporary provisioning network. 11. A non-transitory machine-readable storage medium embodying instructions that, when executed by a machine, allow the machine to perform a method for automatic network provisioning, the method comprising: configuring one or more medical devices to connect to a predetermined temporary provisioning network of a healthcare organization responsive to the one or more medical devices being powered on for a first time, the temporary provisioning network being different than the healthcare network of the healthcare organization, wherein the healthcare network includes one or more services not accessible by the temporary provisioning network, and wherein the temporary provisioning network is publicly accessible, while the healthcare network is protected from unauthorized access; receiving, from the temporary provisioning network, one or more device identifiers corresponding to the one or more medical devices and an indication that the one or more medical devices requests access to the healthcare network; receiving one or more security certificates for assignment to the one or more device identifiers; determining, based on receiving the one or more certificates and the one or more device identifiers, that the received one or more device identifiers correspond to respective medical devices predetermined to receive access to a management server within the healthcare network; in accordance with a determination that the one or more medical devices are predetermined to receive access to the healthcare network and the management server; transmitting, through the temporary provisioning network to the one or more medical devices, a security certificate for configuring the one or more medical devices to access and communicate with the management server; configuring, through the temporary provisioning network, the medical devices with information to access the healthcare network and to communicate with the management server on the healthcare network using a new network connection based on the configuration information; terminating commun

Assignees

Inventors

Classifications

  • G16H40/40Primary

    for the management of medical equipment or devices, e.g. scheduling maintenance or upgrades · CPC title

  • using certificates (cryptographic mechanisms or cryptographic arrangements for entity authentication involving certificates H04L9/3263) · CPC title

  • G16H40/67Primary

    for remote operation · CPC title

  • H04L63/18Primary

    using different networks or channels, e.g. using out of band channels (cryptographic mechanisms or cryptographic arrangements for key distribution involving distinctive intermediate devices or communication paths H04L9/0827; cryptographic mechanisms or cryptographic arrangements for authentication using a plurality of channels H04L9/3215) · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US11552995B2 cover?
One or more medical devices are configured to connect to a predetermined temporary provisioning network of a healthcare organization, the temporary provisioning network being different than a healthcare network of the healthcare organization. After the devices are received by the healthcare organization, and powered up for the first time, device identifiers corresponding to the medical devices …
Who is the assignee on this patent?
Carefusion 303 Inc
What technology area does this patent fall under?
Primary CPC classification G16H40/40. Mapped technology areas include Physics.
When was this patent published?
Publication date Tue Jan 10 2023 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 10 related publications on this page (citations in our corpus or others sharing the same primary CPC).