Systems and methods for managing configuration data at disconnected remote devices

US9280365B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-9280365-B2
Application numberUS-97077810-A
CountryUS
Kind codeB2
Filing dateDec 16, 2010
Priority dateDec 17, 2009
Publication dateMar 8, 2016
Grant dateMar 8, 2016

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Described herein are systems and methods for managing configuration data. These are particularly directed towards the management of configuration data in disconnected remote devices of a host system. For example, this may be an access control environment having one or more connected access control devices (i.e. devices in communication with a central server), and one or more disconnected access control devices (i.e. devices operating without communication with the central server), the latter being regarded as disconnected remote devices. In overview, the present systems and methods make use of a versioning protocol to allow the reliable distribution of configuration data at the disconnected remote devices, this protocol operating to best ensure the propagation of the most current configuration data.

First claim

Opening claim text (preview).

The invention claimed is: 1. A method performed by an access control device of a host access control system, for managing configuration data, the method comprising the steps of: the access control device determining whether it has a network connection to a server device of the host access control system; the access control device, in response to determining that it does not have a network connection to a server device of the host access control system, adopting a disconnected mode of operation; the access control device reading an access control smartcard, wherein the access control smartcard carries data comprising: (i) user credential data configured to enable an authorization/authentication process to determine whether or not access should be granted in response to reading of the access control smartcard; and (ii) configuration data including threat level data; the access control device, in response to reading the access control smartcard, performing an automated process comprising: (a) reading the configuration data including threat level data from the access control smartcard, wherein the threat level data is a form of configuration data, wherein the configuration data including threat level data, when successfully applied by the access control device, is used by the access control device to determine at least part of the functionality of the remote device when operated in the disconnected mode, including threat-level specific functionality of a given authorization/authentication process to determine whether or not access should be granted; (b) determining version information for the configuration data including threat level data carried by the access control smartcard; (c) comparing the version information of the configuration data including threat level data carried by the access control smartcard with version information of configuration data including threat level data applied by the access control device; (d) in the case that the version information for the configuration data including threat level data carried by the access control smartcard supersedes version information of configuration data including threat level data applied by the access control device, selectively applying the configuration data including threat level data carried by the access control smartcard to the access control device; and (e) in the case that the version information for the configuration data including threat level data carried by the access control device supersedes version information of configuration data applied by the access control smartcard, writing the configuration data including threat level data carried by the access control device to the access control smartcard, and configuring the access control smartcard to cause a further disconnected access control device of the host access control system to, following presentation of the access control smartcard to the further disconnected access control device, selectively apply the written configuration data including threat level data; and the access control device subsequently performing the authorization/authentication process to determine whether or not access should be granted based on the presentation of the access control smartcard, using configuration data including threat level data current applied by the access control device. 2. A method according to claim 1 wherein writing the configuration data including threat level data carried by the access control device to the access control smartcard includes: (i) determining whether the configuration data to be applied is complete; and (ii) only applying the configuration data in the event that it is complete. 3. A method according to claim 2 wherein determining whether the configuration data to be applied is complete includes taking a hash of the configuration data to be applied. 4. A method according to claim 1 wherein the configuration data includes access permissions for one or more users. 5. A method according to claim 1 wherein the automated process further comprises: in the case that the configuration data including threat level data carried by the access control smartcard is successfully applied to the access control device, writing data indicative of the successful application to the access control smartcard, and configuring the access control smartcard to cause a further device of the host system, being a device in communications with a server device of the host system, to communicate the indicative of the successful application to the server following presentation of the access control smartcard to the further connected device. 6. A method according to claim 1 wherein the version information is defined by a timestamp. 7. An access control device configured for operation as part of a host access control system without a communication channel to the host access control system, the access control device comprising: a communications port configured to read access control smartcards, including an access control smartcard that carries data comprising: (i) user credential data configured to enable an authorization/authentication process to determine whether or not access should be granted in response to presentation of the access control smartcard; and (ii) configuration data including threat level data; a memory module for maintaining software instructions; and a processor for executing the software instructions; wherein the access control device is configured to: operate in a disconnected mode, wherein the access control device does not have a network connection to any other devices of the host access control system, and whilst in the disconnected mode, in response to reading an access control smartcard with configuration data including threat level data, perform an automated process comprising: determining version information for the configuration data including threat level data carried by the access control smartcard; comparing the version information of the configuration data including threat level data carried by the access control smartcard with version information of configuration data including threat level data applied by the access control device; in the case that the version information for the configuration data including threat level data carried by the access control smartcard supersedes version information of configuration data including threat level data applied by the access control device, selectively applying the configuration data including threat level data carried by the access control smartcard to the access control device, wherein the access control device uses the configuration data including threat level data to determine at least part of the functionality of the access control device including threat-level specific functionality of a given authorization/authentication process to determine whether or not access should be granted; and in the case that the version information for the configuration data including threat level data carried by the access control device supersedes version information of configuration data including threat level data applied by the access control smartcard, write the configuration data including threat level data carried by the access control device to the access control smartcard, and configuring the access control smartcard to cause a further access control device of the host access control system to, following presentation of the access control smartcard to the further access control device, selectively apply the written configuration data including threat level data; and subsequently performing the authorization/authentication process to determine whether or not access should be granted based on the presentation of the access control smartcard, using configuration data including threat level data current a

Assignees

Inventors

Classifications

  • Retrieval of network configuration; Tracking network configuration history · CPC title

  • the condition being updates or upgrades of network functionality · CPC title

  • Manual configuration through operator · CPC title

  • Configuring for program initiating, e.g. using registry, configuration files · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US9280365B2 cover?
Described herein are systems and methods for managing configuration data. These are particularly directed towards the management of configuration data in disconnected remote devices of a host system. For example, this may be an access control environment having one or more connected access control devices (i.e. devices in communication with a central server), and one or more disconnected access…
Who is the assignee on this patent?
Jones Bryan, Palme Matt, Quaill Stephen, and 2 more
What technology area does this patent fall under?
Primary CPC classification G06F9/44505. Mapped technology areas include Physics.
When was this patent published?
Publication date Tue Mar 08 2016 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).