Network security systems and methods

US12052292B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-12052292-B2
Application numberUS-202318317584-A
CountryUS
Kind codeB2
Filing dateMay 15, 2023
Priority dateFeb 14, 2014
Publication dateJul 30, 2024
Grant dateJul 30, 2024

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

This disclosure relates to systems and methods for managing connected devices and associated network connections. In certain embodiments, trust, privacy, safety, and/or security of information communicated between connected devices may be established in part through use of security associations and/or shared group tokens. In some embodiments, these security associations may be used to form an explicit private network associated with the user. A user may add and/or manage devices included in the explicit private network through management of various security associations associated with the network's constituent devices.

First claim

Opening claim text (preview).

What is claimed is: 1. A method of managing operation of connected devices, the method comprising: exposing, by a gateway device, an indication of a composite service offered by the gateway device based on information included in explicit private network state information associated with a plurality of first connected devices in communication with the gateway device, the explicit private network state information being managed, at least in part, by the gateway device, the composite service comprising one or more actions performed by the plurality of first connected devices; receiving, by the gateway device from a second connected device, a request to perform the composite service; determining, by the gateway device based, at least in part, on the explicit private network state information, that the gateway device may initiate performance of the composite service by the plurality of first connected devices in accordance with the request; generating, by the gateway device based on the determination, one or more command messages configured to control the operation of the plurality of first connected devices to perform the composite service; and transmitting, by the gateway device, the one or more command messages to the plurality of first connected devices. 2. The method of claim 1 , wherein exposing the indication of the composite service offered by the gateway device comprises exposing the indication of the composite service offered by the gateway device to the second connected device. 3. The method of claim 1 , wherein the explicit private network state information comprises identification information associated with the plurality of first connected devices. 4. The method of claim 3 , wherein the identification information comprises information uniquely associated with at least one connected device of the plurality of first connected devices. 5. The method of claim 4 , wherein the information uniquely associated with the at least one connected device of the plurality of first connected devices comprises at least one of a device universally unique identifier and Internet protocol identification information. 6. The method of claim 3 , wherein the identification information comprises a name assigned to at least one connected device of the plurality of first connected devices by an associated entity. 7. The method of claim 1 , wherein the explicit private network state information comprises information relating to one or more acceptable commands associated with at least one connected device of the plurality of first connected devices. 8. The method of claim 1 , wherein the explicit private network state information comprises security association information associated with the plurality of first connected devices. 9. The method of claim 8 , wherein determining that the gateway device may initiate performance of the composite service by the plurality of first connected devices in accordance with the request is based, at least in part, on the security association information. 10. The method of claim 8 , wherein the security association information comprises a group token. 11. The method of claim 10 , wherein the group token comprises a group key. 12. The method of claim 10 , wherein determining that the gateway device may initiate performance of the composite service by the plurality of first connected devices in accordance with the request comprises determining, based on the request to perform the composite service, that the second device is associated with the group token. 13. The method of claim 12 , wherein the request to perform the composite service received from the second connected device comprises the group token. 14. The method of claim 1 , wherein determining that the gateway device may initiate performance of the composite service by the plurality of first connected devices in accordance with the request comprises determining that the second connected device is associated with the plurality of first connected devices based on the explicit private network state information. 15. The method of claim 1 , wherein the explicit private network state information associated with the plurality of first connected devices comprises information relating to acceptable data that may be communicated to at least one connected device of the plurality of first connected devices. 16. The method of claim 1 , wherein the gateway device comprises at least one of a smartphone, a tablet computer system, a desktop computer system, a laptop computer system, a wearable computing device, a connected vehicle, a telematics system, a security system, a home automation system, a connected thermostat, a connected heating system, a connected cooling system, a utility meter, a medical device, a gaming system, a network infrastructure system, a television, a speaker, and a digital camera. 17. The method of claim 1 , wherein at least one connected device of the plurality of first connected devices comprises at least one of a smartphone, a tablet computer system, a desktop computer system, a laptop computer system, a wearable computing device, a connected vehicle, a telematics system, a security system, a home automation system, a connected thermostat, a connected heating system, a connected cooling system, a utility meter, a medical device, a gaming system, a network infrastructure system, a television, a speaker, and a digital camera. 18. The method of claim 1 , wherein the second connected device comprises at least one of a smartphone, a tablet computer system, a desktop computer system, a laptop computer system, a wearable computing device, a connected vehicle, a telematics system, a security system, a home automation system, a connected thermostat, a connected heating system, a connected cooling system, a utility meter, a medical device, a gaming system, a network infrastructure system, a television, a speaker, and a digital camera.

Assignees

Inventors

Classifications

  • Key management, e.g. using generic bootstrapping architecture [GBA] · CPC title

  • Discovery or management thereof, e.g. service location protocol [SLP] or web services · CPC title

  • Secure pairing of devices · CPC title

  • Services for machine-to-machine communication [M2M] or machine type communication [MTC] · CPC title

  • Access security · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US12052292B2 cover?
This disclosure relates to systems and methods for managing connected devices and associated network connections. In certain embodiments, trust, privacy, safety, and/or security of information communicated between connected devices may be established in part through use of security associations and/or shared group tokens. In some embodiments, these security associations may be used to form an e…
Who is the assignee on this patent?
Intertrust Tech Corp
What technology area does this patent fall under?
Primary CPC classification G06F21/6218. Mapped technology areas include Physics.
When was this patent published?
Publication date Tue Jul 30 2024 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 1 related publication on this page (citations in our corpus or others sharing the same primary CPC).