Cryptomining Device Whitelist Control for Pool Configuration Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Managing cryptomining device configurations across large numbers of assets is challenging, and unauthorized changes to settings like pool URLs and user IDs pose a security risk, leading to potential financial losses.

Innovation Solution

Implementing a whitelist system managed by a root administrator that checks and approves or rejects changes to URLs and user IDs, with notifications sent to multiple administrators for transparency, thereby enhancing security and preventing unauthorized modifications.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If a whitelist system is implemented to check and approve changes to URLs and user IDs, then security is improved, but device complexity increases

Engineering Contradiction:
ImprovesecurityVSAvoidconfiguration management complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent introduces an asset management server as an intermediary between cryptomining devices and pool servers. This server maintains a whitelist of authorized URLs and user IDs, and all configuration changes must be approved by the asset management server by checking against the whitelist. This mediator approach centralizes security control and simplifies the complexity by providing a single point of management rather than distributing security checks across multiple devices.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If manual configuration management is used across large numbers of assets, then ease of operation is maintained, but security deteriorates due to unauthorized changes

Engineering Contradiction:
Improveconfiguration management easeVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The system implements automated security checks where the asset management server automatically validates configuration changes against the whitelist without requiring manual security reviews. The system self-monitors and self-protects by automatically detecting unauthorized changes and rejecting them, reducing the need for continuous manual security management while maintaining ease of operation for authorized changes.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent implements a feedback mechanism where the asset management server continuously monitors configuration changes and provides immediate feedback by approving or rejecting changes based on whitelist validation. Notifications are sent to administrators about approved or rejected changes, creating a closed-loop system that maintains security while allowing efficient operation. This automated feedback loop replaces manual security checks and maintains operational ease.

Inventive Principle:
Principle #23Feedback

3Adaptability or versatility

If configuration changes are allowed without verification, then adaptability is improved, but loss of information increases due to unauthorized modifications

Engineering Contradiction:
Improveconfiguration flexibilityVSAvoidunauthorized configuration modifications
Core Design Contradiction:
Adaptability or versatilityVSLoss of information

Solution Approach 1:

The system performs preliminary validation by maintaining a whitelist of pre-approved URLs and user IDs before any configuration changes are applied. The asset management server checks proposed changes against this pre-established whitelist, allowing only changes that match authorized entries. This preliminary action approach enables configuration flexibility for authorized changes while preventing unauthorized modifications, thus protecting against information loss without restricting legitimate adaptability.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS12418535B1Managing security of cryptomining devices
Publication Date: 2025.09.16 AURADINE INC
  • US12418535B1 patent drawing
  • US12418535B1 patent drawing
  • US12418535B1 patent drawing

AI summary

A method includes detecting, by an electronic device managing a plurality of integrated circuit (IC) chips, an attempt to modify a whitelist that includes multiple entries of URLs and user IDs and determining whether the attempt is associated with modifying an existing entry, removing the existing entry, or adding a new entry of a URL or a user ID to the whitelist. When the attempt is associated with removing an existing entry corresponding to a particular URL or user ID, the method includes further determining whether the particular URL or user ID is being actively used by IC chip(s). When the attempt to modify or remove the existing entry or add a new entry of a URL or user ID to the whitelist is approved, a notification is transmitted to an electronic communication channel associated with a root administrator and pool managing administrators that manage one or more pool servers.