Ciphered Configuration File Updates Without Industrial Device Downtime
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current methods lack automated processes for securely updating ciphered configuration files on industrial automation devices without causing device interruption, especially with the rise of quantum computing threats, and there is a need for robust cryptographic protocols to ensure uninterrupted operation.
Innovation Solution
A computer-implemented method and system provide ciphered configuration files to devices through a device configuration manager component, which communicates with a system configuration manager via secure channels, enabling seamless updates and storage without requiring device shutdown.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If manual configuration processes are used for applications on computing devices, then security measures can be configured, but the process becomes complex and time-consuming with multiple setup steps
Solution Approach 1:
The patent applies preliminary action by pre-configuring cipher configuration files with necessary security parameters before application installation. The system automatically prepares and stores these configuration files in advance, so that when an application is installed, the security configuration is already in place and ready to be applied, eliminating the need for complex manual setup steps during installation.
2Reliability
If cipher configuration files are updated on industrial automation devices, then cryptographic protocols remain current against quantum threats, but device interruption occurs causing costly downtime
Solution Approach 1:
The system performs preliminary actions by downloading and storing updated cipher configuration files in advance during periods when the device is operational. The updated configuration files are prepared and validated before any potential update is needed, allowing for seamless replacement without interrupting device operation.
Solution Approach 2:
The patent ensures continuity of useful action by implementing a configuration update mechanism that operates independently of device operational state. The device can maintain continuous operation while the configuration files are updated in the background, ensuring cryptographic protocols remain current without causing device interruption or downtime.
3Productivity
If automated processes are implemented for cipher configuration file updates, then update speed increases, but system complexity increases
Solution Approach 1:
The system implements self-service by enabling devices to automatically download, validate, and update their own cipher configuration files without requiring manual intervention. The device autonomously manages the entire update process, including fetching updates from remote servers, validating cryptographic parameters, and applying configurations, which increases update speed while keeping the automation logic contained within the device itself.
Solution Approach 2:
The patent applies universality by designing a configuration management system that handles multiple functions through a unified automated process. The same system component manages both initial configuration retrieval and subsequent updates, validates different types of cryptographic parameters, and serves various application types, thereby achieving high productivity without proportionally increasing overall system complexity.
Data Source
Figure 1
Figure 2
Figure 3
AI summary
A computer-implemented method and system for providing a ciphered configuration file to a computer device having at least one application requiring a configuration file for enabling operation of the computer device. Received in the computer device, from a coupled system configuration manager component, is a ciphered configuration file required for operation of the computer device. Upon reception of the ciphered configuration file in the computer device, the received ciphered configuration is pushed to the at least one application in the computer device for execution by the application of the computer device for enabling operation of the computer device.