Invention Grant
- Patent Title: Secure deployment confirmation of IOT devices via bearer tokens with caveats
-
Application No.: US17125052Application Date: 2020-12-17
-
Publication No.: US11595389B1Publication Date: 2023-02-28
- Inventor: Neil Edward Madden
- Applicant: ForgeRock, Inc.
- Applicant Address: US CA San Francisco
- Assignee: ForgeRock, Inc.
- Current Assignee: ForgeRock, Inc.
- Current Assignee Address: US CA San Francisco
- Agency: Haynes Beffel & Wolfeld, LLP
- Agent Ernest J. Beffel, Jr.
- Main IPC: H04L9/40
- IPC: H04L9/40 ; H04L9/32 ; H04L9/00

Abstract:
The disclosed technology teaches confirming proper deployment of sensors, with an authorization server (AS) issuing to a first client a Macaroon access token (MAT), optionally with caveats, including a root signature, and providing the MAT to a client. The client modifies the MAT to produce multiple instances by appending caveats that add a deployment location to each of the instances, and applies a message authentication code (MAC) chaining algorithm to generate updated signatures to include in the instances of a MAT with caveats (MATwC). The first client forwards the multiple instances of the MATwC to respective sensor instances, and a second client receives, from the sensor instances, sensed data and location indicative data, accompanied by respective MATwC instances. The second client verifies that the location indicative data is consistent with the deployment location caveat in the respective MATwC and utilizes instances of the sensed data that are verified as consistent.
Information query