Cryptomining Device Whitelist Control for Pool Configuration Security
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Managing cryptomining device configurations across large numbers of assets is challenging, and unauthorized changes to settings like pool URLs and user IDs pose a security risk, leading to potential financial losses.
Innovation Solution
Implementing a whitelist system managed by a root administrator that checks and approves or rejects changes to URLs and user IDs, with notifications sent to multiple administrators for transparency, thereby enhancing security and preventing unauthorized modifications.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If a whitelist system is implemented to check and approve changes to URLs and user IDs, then security is improved, but device complexity increases
Solution Approach 1:
The patent introduces an asset management server as an intermediary between cryptomining devices and pool servers. This server maintains a whitelist of authorized URLs and user IDs, and all configuration changes must be approved by the asset management server by checking against the whitelist. This mediator approach centralizes security control and simplifies the complexity by providing a single point of management rather than distributing security checks across multiple devices.
2Ease of operation
If manual configuration management is used across large numbers of assets, then ease of operation is maintained, but security deteriorates due to unauthorized changes
Solution Approach 1:
The system implements automated security checks where the asset management server automatically validates configuration changes against the whitelist without requiring manual security reviews. The system self-monitors and self-protects by automatically detecting unauthorized changes and rejecting them, reducing the need for continuous manual security management while maintaining ease of operation for authorized changes.
Solution Approach 2:
The patent implements a feedback mechanism where the asset management server continuously monitors configuration changes and provides immediate feedback by approving or rejecting changes based on whitelist validation. Notifications are sent to administrators about approved or rejected changes, creating a closed-loop system that maintains security while allowing efficient operation. This automated feedback loop replaces manual security checks and maintains operational ease.
3Adaptability or versatility
If configuration changes are allowed without verification, then adaptability is improved, but loss of information increases due to unauthorized modifications
Solution Approach 1:
The system performs preliminary validation by maintaining a whitelist of pre-approved URLs and user IDs before any configuration changes are applied. The asset management server checks proposed changes against this pre-established whitelist, allowing only changes that match authorized entries. This preliminary action approach enables configuration flexibility for authorized changes while preventing unauthorized modifications, thus protecting against information loss without restricting legitimate adaptability.
Data Source
AI summary
A method includes detecting, by an electronic device managing a plurality of integrated circuit (IC) chips, an attempt to modify a whitelist that includes multiple entries of URLs and user IDs and determining whether the attempt is associated with modifying an existing entry, removing the existing entry, or adding a new entry of a URL or a user ID to the whitelist. When the attempt is associated with removing an existing entry corresponding to a particular URL or user ID, the method includes further determining whether the particular URL or user ID is being actively used by IC chip(s). When the attempt to modify or remove the existing entry or add a new entry of a URL or user ID to the whitelist is approved, a notification is transmitted to an electronic communication channel associated with a root administrator and pool managing administrators that manage one or more pool servers.


