US 11,057,211 B2
Secured protection of advertisement parameters in a zero trust low power and lossy network
Pascal Thubert, La Colle sur Loup (FR); Huimin She, Shanghai (CN); Patrick Wetterwald, Mouans Sartoux (FR); Akram Ismail Sheriff, San Jose, CA (US); and Eric Michel Levy-Abegnoli, Valbonne (FR)
Assigned to CISCO TECHNOLOGY, INC., San Jose, CA (US)
Filed by Cisco Technology, Inc., San Jose, CA (US)
Filed on Dec. 10, 2018, as Appl. No. 16/214,318.
Prior Publication US 2020/0186349 A1, Jun. 11, 2020
Int. Cl. H04L 9/32 (2006.01); H04L 29/12 (2006.01); H04L 9/30 (2006.01); G06F 16/901 (2019.01)
CPC H04L 9/3213 (2013.01) [G06F 16/9024 (2019.01); H04L 9/30 (2013.01); H04L 9/3247 (2013.01); H04L 9/3271 (2013.01); H04L 61/2007 (2013.01)] 20 Claims
OG exemplary drawing
1. A method comprising: receiving, by a parent network device providing at least a portion of a directed acyclic graph (DAG) according to a prescribed routing protocol in a low power and lossy network, a destination advertisement object (DAO) message, the DAO message specifying a target Internet Protocol (IP) address claimed by an advertising network device in the DAG and the DAO message further specifying a secure token associated with the target IP address; and
selectively issuing a cryptographic challenge in response to the DAO message to validate whether the advertising network device generated the secure token.