Device Provisioning Service Secure Ownership Transfer

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The configuration of IoT devices for secure ownership and connectivity is burdensome, especially for layperson users, and poses challenges during device transfer or resale, particularly when devices contain sensitive information and have limited or non-existent user interfaces.

Innovation Solution

A device provisioning service (DPS) that uses a processor with a provisioning interface, cryptographic hardware root of trust, and enhanced privacy identification (EPID) for secure configuration and ownership transfer, allowing devices to connect with their managers through a trusted connection, even when offline, and maintaining privacy throughout the ownership chain.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If conventional configuration processes are used for IoT devices, then users can establish ownership and connectivity, but the process becomes burdensome and complex for layperson users

Engineering Contradiction:
Improvedevice configuration processVSAvoidconfiguration process complexity
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

The patent introduces a provisioning server as an intermediary that mediates between the IoT device and the user. The server handles complex cryptographic operations, credential verification, and ownership registration automatically, allowing users to simply authenticate through a user interface without dealing with technical configuration details. This resolves the contradiction by hiding complexity behind an easy-to-use interface while maintaining secure device provisioning.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The device itself performs self-configuration through automated protocols. The IoT device autonomously generates cryptographic credentials, establishes secure connections with the provisioning server, and registers ownership without requiring manual configuration. This self-service capability eliminates the burden of complex setup procedures while ensuring proper security configuration.

Inventive Principle:
Principle #25Self-service

2Adaptability or versatility

If devices are transferred to new owners, then ownership changes hands, but sensitive information from prior owners may be exposed and security compromised

Engineering Contradiction:
Improveownership transfer capabilityVSAvoidsensitive information exposure
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The patent implements a credential revocation and renewal mechanism. When ownership transfers, the provisioning server revokes (discards) the previous owner's credentials and generates new credentials for the new owner. The device is re-provisioned with updated cryptographic material, ensuring that sensitive information from prior owners is invalidated and cannot be accessed by subsequent owners or attackers.

Inventive Principle:
Principle #34Discarding and recovering

Solution Approach 2:

The system performs preliminary security measures before ownership transfer completes. The provisioning server verifies the legitimacy of the transfer, revokes old credentials in advance, and establishes new security parameters before the new owner gains full access. This preliminary action prevents sensitive information exposure by ensuring security boundaries are established before the transfer is finalized.

Inventive Principle:
Principle #10Preliminary action

3Reliability

If per-unit setup procedures are required for each device, then each device can be properly configured, but the scale of deployment presents practical challenges for businesses with hundreds or thousands of devices

Engineering Contradiction:
Improvedevice configuration reliabilityVSAvoiddeployment speed
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The provisioning server provides universal configuration capabilities that work across all IoT devices regardless of type or manufacturer. A single server instance can handle provisioning for multiple devices simultaneously through standardized protocols, allowing businesses to deploy hundreds or thousands of devices through a centralized system rather than requiring individual configuration procedures for each unit. This maintains reliable configuration while dramatically improving deployment productivity.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The patent merges multiple configuration tasks into a single automated provisioning process. Instead of requiring separate setup procedures for network connectivity, security credentials, and ownership registration, the system combines these functions into one unified protocol executed through the provisioning server. This consolidation maintains configuration reliability while enabling bulk deployment of devices efficiently.

Inventive Principle:
Principle #5Merging (Combining)

4Adaptability or versatility

If devices have limited or non-existent user interfaces, then device form factor is optimized for IoT applications, but the setup process becomes more difficult for users

Engineering Contradiction:
Improvedevice form factor flexibilityVSAvoidsetup process ease
Core Design Contradiction:
Adaptability or versatilityVSEase of operation

Solution Approach 1:

The provisioning server acts as an intermediary that handles all complex setup operations on behalf of devices with limited or no user interfaces. The server communicates directly with the device through backend protocols while presenting a simplified user interface to the end user for basic authentication. This allows IoT devices to maintain their optimized form factors without compromising setup ease, as the intermediary absorbs the complexity of device communication and configuration.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS10833863B2Device provisioning service
Publication Date: 2020.11.10 INTEL CORP
  • US10833863B2 patent drawing
  • US10833863B2 patent drawing
  • US10833863B2 patent drawing

AI summary

A computing device is provisioned to be remotely managed by a current owner. The device has an initial cryptographic basis of trust, and an owner identifier that facilitates establishment of communication with the current owner of the device. The ownership may change one or more times while the device may remain inoperative. Later, the device receives a transfer-of-ownership indication, which it verifies against the initial basis of trust to establish a new current owner. The device may then communicate with a device management service of the new current owner based on the transfer-of-ownership indication.