Ciphered Configuration File Updates Without Industrial Device Downtime

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current methods lack automated processes for securely updating ciphered configuration files on industrial automation devices without causing device interruption, especially with the rise of quantum computing threats, and there is a need for robust cryptographic protocols to ensure uninterrupted operation.

Innovation Solution

A computer-implemented method and system provide ciphered configuration files to devices through a device configuration manager component, which communicates with a system configuration manager via secure channels, enabling seamless updates and storage without requiring device shutdown.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If manual configuration processes are used for applications on computing devices, then security measures can be configured, but the process becomes complex and time-consuming with multiple setup steps

Engineering Contradiction:
Improvesecurity configurationVSAvoidconfiguration process
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent applies preliminary action by pre-configuring cipher configuration files with necessary security parameters before application installation. The system automatically prepares and stores these configuration files in advance, so that when an application is installed, the security configuration is already in place and ready to be applied, eliminating the need for complex manual setup steps during installation.

Inventive Principle:
Principle #10Preliminary action

2Reliability

If cipher configuration files are updated on industrial automation devices, then cryptographic protocols remain current against quantum threats, but device interruption occurs causing costly downtime

Engineering Contradiction:
Improvecryptographic protocol currencyVSAvoiddevice downtime
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The system performs preliminary actions by downloading and storing updated cipher configuration files in advance during periods when the device is operational. The updated configuration files are prepared and validated before any potential update is needed, allowing for seamless replacement without interrupting device operation.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent ensures continuity of useful action by implementing a configuration update mechanism that operates independently of device operational state. The device can maintain continuous operation while the configuration files are updated in the background, ensuring cryptographic protocols remain current without causing device interruption or downtime.

Inventive Principle:
Principle #20Continuity of useful action

3Productivity

If automated processes are implemented for cipher configuration file updates, then update speed increases, but system complexity increases

Engineering Contradiction:
Improveupdate speedVSAvoidautomated update system
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The system implements self-service by enabling devices to automatically download, validate, and update their own cipher configuration files without requiring manual intervention. The device autonomously manages the entire update process, including fetching updates from remote servers, validating cryptographic parameters, and applying configurations, which increases update speed while keeping the automation logic contained within the device itself.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent applies universality by designing a configuration management system that handles multiple functions through a unified automated process. The same system component manages both initial configuration retrieval and subsequent updates, validates different types of cryptographic parameters, and serves various application types, thereby achieving high productivity without proportionally increasing overall system complexity.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentEP4647952A1Computer system and method for providing cryptographic configuration files to computer applications
Publication Date: 2025.11.12 SCHNEIDER ELECTRIC USA INC
  • EP4647952A1 patent drawingFigure 1
  • EP4647952A1 patent drawingFigure 2
  • EP4647952A1 patent drawingFigure 3

AI summary

A computer-implemented method and system for providing a ciphered configuration file to a computer device having at least one application requiring a configuration file for enabling operation of the computer device. Received in the computer device, from a coupled system configuration manager component, is a ciphered configuration file required for operation of the computer device. Upon reception of the ciphered configuration file in the computer device, the received ciphered configuration is pushed to the at least one application in the computer device for execution by the application of the computer device for enabling operation of the computer device.