发明名称 SYSTEM AND METHOD FOR ENABLING UNCONFIGURED DEVICES TO JOIN AN AUTONOMIC NETWORK IN A SECURE MANNER
摘要 A method in an example embodiment includes creating an initial information package for a device attempting to join a network domain of a network environment; communicating the initial information package to a signing authority; sending an authorization token generated by the signing authority to the device, wherein the device validates the authorization token based on a credential in the device; and receiving an audit history report of the device, wherein the audit history report comprises information regarding previous attempts by the device to join the network environment. The method may also include applying a policy to the device based on the audit history report; generating a completed information package, wherein the completed information package includes an authorization token; applying a second signature to the completed information package; and sending the authorization token and the completed information package to the device, the device validating the second signature on the completed information package.
申请公布号 US2015280916(A1) 申请公布日期 2015.10.01
申请号 US201514722444 申请日期 2015.05.27
申请人 CISCO TECHNOLOGY, INC. 发明人 Bjarnason Steinthor;Behringer Michael H.;Hertoghs Yves Francis Eugene;Pritikin Max
分类号 H04L9/32;H04L29/06 主分类号 H04L9/32
代理机构 代理人
主权项 1. A method, comprising: creating an initial information package for a device attempting to join a network domain of a network environment; communicating the initial information package to a signing authority; sending an authorization token generated by the signing authority to the device, wherein the device validates the authorization token based on a credential in the device; receiving an audit history report of the device, wherein the audit history report comprises information regarding previous attempts by the device to join the network environment; applying a policy to the device based on the audit history report; generating a completed information package, wherein the completed information package includes an authorization token; applying a second signature to the completed information package; sending the authorization token and the completed information package to the device, the device validating the second signature on the completed information package.
地址 San Jose CA US