US 11,683,172 B2
Distributed secure communication system
Jimmy D. Pike, Georgetown, TX (US); Gaurav Chawla, Austin, TX (US); William Price Dawkins, Lakeway, TX (US); Mark Steven Sanders, Roanoke, VA (US); Elie Jreij, Pflugerville, TX (US); Robert W. Hormuth, Cedar Park, TX (US); Mukund P. Khatri, Austin, TX (US); and Walter A. O'Brien, III, Westborough, MA (US)
Assigned to Dell Products L.P., Round Rock, TX (US)
Filed by Dell Products L.P., Round Rock, TX (US)
Filed on Oct. 26, 2020, as Appl. No. 17/79,737.
Prior Publication US 2022/0131695 A1, Apr. 28, 2022
Int. Cl. H04L 29/06 (2006.01); H04L 9/32 (2006.01); H04L 9/14 (2006.01); H04L 9/30 (2006.01)
CPC H04L 9/32 (2013.01) [H04L 9/14 (2013.01); H04L 9/30 (2013.01)] 20 Claims
OG exemplary drawing
 
1. A distributed secure communication system, comprising:
a third System Control Processor (SCP) subsystem;
a second SCP subsystem that is coupled to the third SCP subsystem via a network; and
a first SCP subsystem that is coupled to the second SCP subsystem and the third SCP subsystem via the network, wherein the first SCP subsystem is configured to:
identify the second SCP subsystem and, in response, perform a signed communication secure communication channel establishment procedure with the second SCP subsystem that includes:
signing a first SCP authentication communication with a first private key to provide a first signed SCP authentication communication;
transmitting the first signed SCP authentication communication to the second SCP subsystem;
receiving a second signed SCP authentication communication from the second SCP subsystem and, in response, authenticating the second signed SCP authentication communication using a second public key associated with the second SCP subsystem; and
establishing, in response to authenticating the second signed SCP authentication communication, a first secure communication channel with the second SCP subsystem; and
receive, from the second SCP subsystem via the first secure communication channel, an attestation of an authentication of the third SCP subsystem that established a second secure communication channel between the SCP subsystem and the third SCP subsystem and, in response, establish a third secure communication channel with the third SCP subsystem without performing the signed communication secure communication channel establishment procedure with the third SCP subsystem.