US 12,009,979 B2
Secure and adaptive mechanism to provision zero- touch network devices
Mohd Shahnawaz Siraj, Santa Clara, CA (US); Rahul Bahal, Santa Clara, CA (US); Kannan Konath, Santa Clara, CA (US); and Hao Lu, Santa Clara, CA (US)
Assigned to Hewlett Packard Enterprise Development LP, Spring, TX (US)
Filed by HEWLETT PACKARD ENTERPRISE DEVELOPMENT LP, Houston, TX (US)
Filed on Apr. 26, 2022, as Appl. No. 17/729,487.
Prior Publication US 2023/0344715 A1, Oct. 26, 2023
Int. Cl. H04L 41/08 (2022.01); H04L 9/40 (2022.01); H04L 41/0806 (2022.01); H04W 84/12 (2009.01)
CPC H04L 41/0886 (2013.01) [H04L 41/0806 (2013.01); H04L 63/0876 (2013.01); H04W 84/12 (2013.01)] 18 Claims
OG exemplary drawing
 
1. A network device operable on a network, comprising:
a processor; and
a memory operatively connected to the processor and including instructions that when executed, cause the processor to:
determine whether the network device can connect to the network via device-resident Ethernet communications and whether the network device can connect via Wi-Fi;
responsive to a determination that the network device cannot connect to the network via device-resident Ethernet communications and can connect via Wi-Fi, automatically and without user intervention invoke zero touch provisioning to
onboard the network device to operate on the network by communicating with an intermediate network device operative on the network using authentication information associated with the network device, wherein the intermediate device, prior to determining whether the network device can connect to the network via device-resident Ethernet communications, receives bootstrapping information of the network device, wherein the authentication information is based on the bootstrapping information, and wherein the authentication information authenticates the network device to the backend insight system;
connect to a backend network insight system via the intermediate network device and the network; and
configure the network device based on operating parameters received from the backend network insight system; and
operate on the network in accordance with the operating parameters.