US 12,425,237 B2
Guarding device onboarding ownership vouchers against unauthorized ownership changes
Ching-Yun Chao, Austin, TX (US)
Assigned to Dell Products L.P., Round Rock, TX (US)
Filed by Dell Products L.P., Round Rock, TX (US)
Filed on Oct. 14, 2022, as Appl. No. 18/046,687.
Prior Publication US 2024/0129136 A1, Apr. 18, 2024
Int. Cl. H04L 9/32 (2006.01); H04L 9/00 (2022.01)
CPC H04L 9/3268 (2013.01) [H04L 9/3234 (2013.01); H04L 9/50 (2022.05)] 20 Claims
OG exemplary drawing
 
8. A method, comprising:
receiving, by a system comprising at least one processor, a first ownership voucher applicable to ownership of a device, wherein the first ownership voucher identifies a first entity as an owner of the device and a prior owner, wherein the first ownership voucher identifies that the owner has permission to set a new owner of the device, wherein the first ownership voucher identifies that the prior owner has permission to revoke the first entity from being the owner of the device, wherein the system is configured to enforce a first policy that only the owner of the device is authorized to transfer ownership of the device, and wherein the system is configured to enforce a second policy that only an immediately-prior owner of the device is authorized to revoke an ownership transfer of the device;
receiving, by the system, a second ownership voucher indicative of the first entity changing the owner of the device to a second entity;
determining, by the system, that the first entity is the owner of the device based on the first ownership voucher;
updating, by the system, the owner of the device to the second entity via storing the second ownership voucher;
based on verifying the second entity as the owner of the device using the second ownership voucher, storing, by the system, an identifier of a device onboarding service that is received based on user input from the second entity, wherein the device onboarding service is separate from the system; and
based on a message received from the device, directing, by the system, the device to access the device onboarding service for a provisioning of the device via the identifier of the device onboarding service.