US 12,081,565 B2
Facilitating direct device-to-cloud communications within a secure deployment management system
David C. Mazur, Mequon, WI (US); Todd A. Wiese, Hubertus, WI (US); Jonathan Alan Mills, Mayfield Heights, OH (US); Nathaniel S. Sandler, Chagrin Falls, OH (US); and Rob A. Entzminger, Shawnee, KS (US)
Assigned to Rockwell Automation Technologies, Inc., Mayfield Heights, OH (US)
Filed by Rockwell Automation Technologies, Inc., Mayfield Heights, OH (US)
Filed on Feb. 7, 2023, as Appl. No. 18/107,002.
Claims priority of provisional application 63/425,117, filed on Nov. 14, 2022.
Prior Publication US 2024/0163295 A1, May 16, 2024
Int. Cl. G06F 7/04 (2006.01); H04L 9/40 (2022.01)
CPC H04L 63/1416 (2013.01) [H04L 63/0823 (2013.01); H04L 63/20 (2013.01)] 13 Claims
OG exemplary drawing
 
1. A method, comprising:
receiving, via a secure deployment management (SDM) system, configuration data associated with an industrial device from a data source;
verifying, via the SDM system, that the configuration data is associated with the industrial device based on the data source;
identifying, via the SDM system, a presence of a secure deployment management (SDM) node associated with the industrial device, wherein the SDM node is preregistered with the SDM system and comprises circuitry integrated within the industrial device, and wherein the SDM node corresponds to one of a plurality of SDM nodes authorized to communicate with the SDM system via a preprogrammed handshake protocol;
establishing, via the SDM system, a secure communication channel between the SDM system and the SDM node using one or more security protocols; and
sending, via the SDM system, the configuration data to the industrial device via the secure communication channel after establishing the secure communication channel between the SDM system and the SDM node and verifying that the configuration data is associated with the industrial device, wherein the industrial device is configured to receive the configuration data without performing one or more security operations on the configuration data.