WO2016053908A1 - Hostless mdns-sd responder with authenticated host wake service - Google Patents

Hostless mdns-sd responder with authenticated host wake service Download PDF

Info

Publication number
WO2016053908A1
WO2016053908A1 PCT/US2015/052740 US2015052740W WO2016053908A1 WO 2016053908 A1 WO2016053908 A1 WO 2016053908A1 US 2015052740 W US2015052740 W US 2015052740W WO 2016053908 A1 WO2016053908 A1 WO 2016053908A1
Authority
WO
WIPO (PCT)
Prior art keywords
host processor
host
mdns
trusted client
client device
Prior art date
Application number
PCT/US2015/052740
Other languages
French (fr)
Inventor
Joseph Anthony ENKE
David Boone
Jeffrey S. YOUEL
Bich Nguyen
Mark Peterson
Kevin Fry
Original Assignee
Gopro, Inc.
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Gopro, Inc. filed Critical Gopro, Inc.
Priority to EP15846322.4A priority Critical patent/EP3202190A4/en
Publication of WO2016053908A1 publication Critical patent/WO2016053908A1/en

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0876Network architectures or network communication protocols for network security for authentication of entities based on the identity of the terminal or configuration, e.g. MAC address, hardware or software configuration or device fingerprint
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/06Authentication
    • H04W12/069Authentication using certificates or pre-shared keys
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W52/00Power management, e.g. TPC [Transmission Power Control], power saving or power classes
    • H04W52/02Power saving arrangements
    • H04W52/0209Power saving arrangements in terminal devices
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L61/00Network arrangements, protocols or services for addressing or naming
    • H04L61/45Network directories; Name-to-address mapping
    • H04L61/4505Network directories; Name-to-address mapping using standardised directories; using standardised directory access protocols
    • H04L61/4511Network directories; Name-to-address mapping using standardised directories; using standardised directory access protocols using domain name system [DNS]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/04Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks
    • H04L63/0428Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload
    • H04L63/0492Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload by using a location-limited connection, e.g. near-field communication or limited proximity of entities
    • YGENERAL TAGGING OF NEW TECHNOLOGICAL DEVELOPMENTS; GENERAL TAGGING OF CROSS-SECTIONAL TECHNOLOGIES SPANNING OVER SEVERAL SECTIONS OF THE IPC; TECHNICAL SUBJECTS COVERED BY FORMER USPC CROSS-REFERENCE ART COLLECTIONS [XRACs] AND DIGESTS
    • Y02TECHNOLOGIES OR APPLICATIONS FOR MITIGATION OR ADAPTATION AGAINST CLIMATE CHANGE
    • Y02BCLIMATE CHANGE MITIGATION TECHNOLOGIES RELATED TO BUILDINGS, e.g. HOUSING, HOUSE APPLIANCES OR RELATED END-USER APPLICATIONS
    • Y02B70/00Technologies for an efficient end-user side electric power management and consumption
    • Y02B70/30Systems integrating technologies related to power network operation and communication or information technologies for improving the carbon footprint of the management of residential or tertiary loads, i.e. smart grids as climate change mitigation technology in the buildings sector, including also the last stages of power distribution and the control, monitoring or operating management systems at local level
    • YGENERAL TAGGING OF NEW TECHNOLOGICAL DEVELOPMENTS; GENERAL TAGGING OF CROSS-SECTIONAL TECHNOLOGIES SPANNING OVER SEVERAL SECTIONS OF THE IPC; TECHNICAL SUBJECTS COVERED BY FORMER USPC CROSS-REFERENCE ART COLLECTIONS [XRACs] AND DIGESTS
    • Y02TECHNOLOGIES OR APPLICATIONS FOR MITIGATION OR ADAPTATION AGAINST CLIMATE CHANGE
    • Y02DCLIMATE CHANGE MITIGATION TECHNOLOGIES IN INFORMATION AND COMMUNICATION TECHNOLOGIES [ICT], I.E. INFORMATION AND COMMUNICATION TECHNOLOGIES AIMING AT THE REDUCTION OF THEIR OWN ENERGY USE
    • Y02D30/00Reducing energy consumption in communication networks
    • Y02D30/70Reducing energy consumption in communication networks in wireless communication networks

Definitions

  • the disclosure generally relates to the field of hostless authenticated wake service for electronic devices.
  • a host processor is the main component of a host device and is responsible for executing complex procedures. For example, in a camera system, the host processor implements image capture, rendering, and storage. The host processor is idle when the host device is waiting to be queried by multicast domain name service-service discovery (mDNS- SD) enabled devices over a wireless interface (WiFi) network. If the host processor is turned off then a large amount of host device power can be saved. Currently, turning the host processor off while waiting to be queried removes the ability of the host device to respond to queries and provide services. Therefore, there is a lacking mechanism to provide for an mDNS responder with an authenticated wake service that does not require operation of the host processor.
  • mDNS- SD multicast domain name service-service discovery
  • WiFi wireless interface
  • FIG. 1 is a diagram illustrating functionality of a host device that contains an mDNS-SD responder enabled WiFi controller and a hostless authenticated wake service.
  • FIG. 2 illustrates a sequence in which a WiFi controller is configured with an mDNS-SD responder and an authenticated host wake service by a host processor.
  • FIG. 3 illustrates a sequence in which a trusted client device is authenticated with a hostless wake service.
  • FIG. 4 illustrates one embodiment of components of an example machine able to read instructions from a machine-readable medium and execute them in a processor (or controller).
  • FIG. 1 is a diagram illustrating functionality of a host device that contains an mDNS-SD responder enabled WiFi controller and a hostless authenticated wake service.
  • Both the host device 105 and the trusted client device 150 include conventional computing system components such as one or more processors, a memory, a storage device, and network interfaces.
  • the memory and storage device can store instructions corresponding to processes and modules as further described below that are executable by a processor.
  • the host device 110 includes a WiFi controller 110, a host processor 120, a power manager 130, and a host interface controller 140.
  • the host device 105 may be any suitable hand-held computerized device, such as a camera, tablet, smart phone, and other systems including components for performing the described actions. Accordingly, the host device 105 may include various additional features, modules, and elements according to various embodiments. In one embodiment, the host device 105 communicates wirelessly through a network to a WiFi controller 110 on the trusted client device 150. In another embodiment, the trusted client device 150 may communicate wirelessly through the internet to a trusted client device 150 that does not have a wireless interface controller. The trusted client device 150 may also include various additional features, modules and elements according to various embodiments.
  • a WiFi controller 110 in one embodiment, is an integrated circuit that allows wireless communication between devices operating with the IEEE 802.11 protocol.
  • the WiFi controller 110 encapsulates the protocols needed to interface between the host processor 130 and a trusted client device 150.
  • the WiFi controller 110 contains a fixed and limited amount of available memory that may be used by the host processor 120 to configure and store an mDNS-SD responder module 111, a host wake service module 112, and a power request module upon the host device 105 boot up. Once configured the WiFi controller 110 may send a configuration complete signal 250 to the host processor 110 indicating the modules are configured.
  • the configuration complete signal 250 prompts the host processor 110 to request a power off 260 in order to reduce power consumption.
  • the configuration of the modules allow host processor 110 to enter a sleep state 265 while the WiFi controller 110 responds 305 to mDNS-SD queries, and authenticates 335 trusted client devices 150.
  • the mDNS-SD responder module 112 is configured 230 and stored on the memory of the WiFi controller 110 upon boot up of the host device 105.
  • the mDNS-SD responder module 112 allows the host processor 120 to power off 260 to the sleep state 265. While the host processor 120 is in the sleep state 265, the mDNS-SD responder module 112 may receive mDNS-SD queries 300. These queries allow a trusted client device 150 to discover available services 310 provided by the host device 105.
  • the mDNS-SD responder 112 may then respond to queries by sending mDNS-SD responses with packets that contain available service, protocol, and locating information.
  • the mDNS-SD responder module 112 may allow service discovery of any available services, including the authenticated host wake service.
  • the host wake service module 114 authenticates 335 trusted client devices 150 and awakens the host processor 120 after an authentication 335 occurs.
  • the host wake service module 114 is configured and stored on the memory of the WiFi controller 110 upon host processor 120 boot up. To awake the host processor 120 from the sleep state 265, shown in Fig. 2, the host wake service module 114 must receive a request from a trusted client device 150. The host wake service module 114 may then transmit a calculated random number 325 to the trusted client device 150. The host wake service module 114 then receives 330 a trusted client device payload value, generated with the random number. The random number and a host processor 120 payload are stored in the memory of the WiFi controller during configuration of the host wake service module 114.
  • the host wake service module 114 compares the payload values. If the payload values of the host processor 120 and the trusted client device 114 match, then an authentication 335 occurs and the host processor 120 is placed in the awake state 205. If the authentication 335 fails, the connection is rejected and the host processor 120 remains in the sleep state 265, as shown in Fig 2. Any client device that is not trusted will not be authenticated 335, as shown in Fig. 3, by the host wake service module 114.
  • the power request module 116 is an interface between the WiFi controller 110 and the power manager 140.
  • the power request module 116 receives, from the host wake service module 122, a request to power on 340 the host processor.
  • the power request module 116 thereafter relays the request to power on 340 the host processor to the power manager 130.
  • the host processor 120 is the main processing unit for the host device 105 and contains a WiFi configuration module 122, security module 124, and sleep state module 126. Additionally, the host processor 120 may store data in memory, communicate to peripherals over communication interfaces and/or busses, perform signal and/or image processing, process data wirelessly over a network, and/or perform other complex instruction processing. In various embodiments the host processor 120 is an application processor or a
  • An mDNS-SD responder module 112 with a host wake service module 114 allow the host processor 120 to remain in the sleep state 265 while the system is controlled by a trusted client device 150 over WiFi, shown in Fig. 2, waiting start an operation.
  • a WiFi interface module 122 is located on the host processor 120, it configures and stores 230 the mDNS-SD responder module 112 on the available memory of the WiFi controller 110. The module also configures and stores 245 the host wake service module 114 on the WiFi controller 110. Both modules are configured and stored at the boot up time of the host processor 120. Additionally, the WiFi interface module 122 also synchronizes the power state of the host processor 120 and the WiFi controller 110. The WiFi interface module 122 may initiate a sleep state 265 for the host processor 120 by sending a request to power off 255 to the sleep state module 126. The WiFi interface module 122 then sends a status signal to the WiFi controller 110 indicating it is entering a sleep state 265.
  • the security module 126 executed by the host processor 120, is responsible for exchanging 210 and storing keys with remote client devices, generating random numbers 220, and calculating payload values 225 as shown in Fig. 2.
  • the key exchange 210 is part of a WiFi pairing process that occurs after a remote client becomes a trusted client device 150.
  • the key is stored and used in conjunction with a random number to authenticate 335, as shown in Fig. 3, a trusted client device 150.
  • the random number is a one-time use value that is generated 220, as shown in Fig. 2, by the security module 126. Both the random number and secret key are used to calculate a value that authenticates 335, as shown in Fig. 3, a trusted client device 150.
  • the resulting value is called a payload, it is sufficiently large and will reset each time the host processor enters the sleep state 265 so that it cannot be guessed.
  • the random number and payload value are transmitted and stored on the WiFi controller 110 for later transmission to a trusted client device 150.
  • the sleep state module 126 is an interface between the host processor 120 and the power manager 140.
  • the sleep state module 126 receives, from the WiFi configuration module 122, a request to power off 255 the host processor 120, as shown in Fig. 2.
  • the request to power off 255 the host processor is initiated after the WiFi configuration module 122 receives a configuration complete 250 signal from the WiFi controller 110.
  • the configuration complete 250 signal indicates the host processor 120 may enter the sleep state 265 now the mDNS-SD responder 112 and host wake service module 114 are configured.
  • the sleep state module 126 thereafter relays the request to power off 255 the host processor 120 to the power manager 130.
  • the power manager 140 in one embodiment, is an integrated circuit that governs the power state of the host processor 120.
  • the power manager 140 receives request to power off 255 from the host processor 120 and power on request 340 from the WiFi controller 110. Once a request is received to change the power state of the host processor 130, the power manager 140 sends a power on 200 signal or power off 255 signal to the host processor 130. The power manager 140 does not initiate power sequencing on its own accord.
  • the host controller interface 140 is a communication interface between the host processor 130 and the WiFi controller 120.
  • the host processor 120 and WiFi controller 110 operate at different levels of protocol abstraction; the host controller interface 140 bridges this gap and standardizes message packets.
  • the host controller interface 140 may be implemented in communication busses such as universal asynchronous receiver/transmitter (UART), serial peripheral interface (SPI), universal serial bus (USB), secure digital input output (SDIO).
  • UART universal asynchronous receiver/transmitter
  • SPI serial peripheral interface
  • USB universal serial bus
  • SDIO secure digital input output
  • the host controller interface 140 may also be implemented as firmware logic on the same processor as the host processor 120 or the WiFi controller 110.
  • FIG. 2 it illustrates a sequence in which a WiFi controller 110 is configured with an mDNS-SD responder module 112 and a host wake service module 114.
  • the host processor 120 receives a power on 200 signal from the power manager 130.
  • the power on 200 signal places the host processor 130 in the awake state 205.
  • a secret key is exchanged 210 between the host processor 120 and the trusted client device 150.
  • the host processor 120 turns off its currently running mDNS-SD responder.
  • a random number is generated 220 by the host processor 120 and used in a cryptographic hash function to calculate the host processor payload value 225.
  • the host processor 120 configures 230 and stores the mDNS-SD responder module 112 on the WiFi controller's 110 available memory. The random is number written 235, by the host processor 120, to memory of the WiFi controller 110. The host processor's payload value 120 is written 240 to the memory of the WiFi controller 110 for later authentication 335. The host processor 120 then configures 245 and stores the host wake service module 114 on available memory of the WiFi controller 110. Once configuration 245 of the host wake service module is complete, a configuration complete 250 signal is sent to the host processor 120. The host processor 120 transmits a request to power off 255 itself to the power manager 130. Upon receiving the power off request the power manager 130 sends a power off 260 signal to the host processor 120. The host processor 120 then enters the sleep state 265.
  • FIG. 3 it illustrates a sequence in which a trusted client device 150 is authenticated with a hostless wake service.
  • the host processor 120 is initially in the sleep state 265 with the WiFi controller 110 handling mDNS-SD queries from trusted client devices 150.
  • the trusted client device 150 queries 300 the WiFi controller 110 for any services available.
  • the WiFi controller 110 responds 305 to the query 300 with a list of services.
  • the trusted client 150 receives the list of available services and discovers 310 wake service is available.
  • the trusted client device 150 then sends a request to awake 315 the host processor 120.
  • the WiFi controller 110 transmits 320 a random number to the trusted client device 150.
  • the trusted client device 150 calculates 325 the payload value with the random number and the previously exchanged key.
  • the result is sent 330 to the WiFi controller where the payload values of the trusted client device 150 and the host device 105 are compared. If the values do not match, an authentication 335 is denied and the connection is dropped. If the values match, an authentication 335 occurs and request to power on 340 the host processor 120 is sent by the WiFi controller 110 to the power manager 140. The power manager 140 sends a power on 200 signal to the host processor 120. The host processor 120 enters the awake state 205 and become available to communicate with the trusted client device 150.
  • FIG. 4 is a block diagram illustrating components of an example machine able to read instructions from a machine -readable medium and execute them in a processor (or controller).
  • FIG. 4 shows a diagrammatic representation of a machine in the example form of a computer system 400 within which instructions 424 (e.g., software or program code) for causing the machine to perform (execute) any one or more of the corresponding methodologies created on the client device 150.
  • the computer system 400 may be used for one or more of the entities (e.g trusted client device 150) illustrated in the functional environment of FIG. 1.
  • the example computer system 400 includes a hardware processor 402 (e.g., a central processing unit (CPU), a graphics processing unit (GPU), a digital signal processor (DSP), one or more application specific integrated circuits (ASICs), one or more radio- frequency integrated circuits (RFICs), or any combination of these), a main memory 404, and a static memory 406, which are configured to communicate with each other via a bus 408.
  • the computer system 400 may further include graphics display unit 410 (e.g., a plasma display panel (PDP), a liquid crystal display (LCD), a projector, or a cathode ray tube (CRT)).
  • graphics display unit 410 e.g., a plasma display panel (PDP), a liquid crystal display (LCD), a projector, or a cathode ray tube (CRT)
  • the computer system 400 may also include alphanumeric input device 412 (e.g., a keyboard), a cursor control device 414 (e.g., a mouse, a trackball, a joystick, a motion sensor, or other pointing instrument), a storage unit 416, a signal generation device 418 (e.g., a speaker), and a network interface device 420, which also are configured to communicate via the bus 408.
  • alphanumeric input device 412 e.g., a keyboard
  • a cursor control device 414 e.g., a mouse, a trackball, a joystick, a motion sensor, or other pointing instrument
  • storage unit 416 e.g., a disk drive, or other pointing instrument
  • signal generation device 418 e.g., a speaker
  • network interface device 420 which also are configured to communicate via the bus 408.
  • the storage unit 416 includes a machine-readable medium 422 on which is stored instructions 424 (e.g., software) embodying any one or more of the methodologies or functions described herein.
  • the instructions 424 (e.g., software) may also reside, completely or at least partially, within the main memory 404 or within the processor 402 (e.g., within a processor's cache memory) during execution thereof by the computer system 400, the main memory 404 and the processor 402 also constituting machine -readable media.
  • the instructions 424 (e.g., software) may be transmitted or received over a network 426 via the network interface device 420.
  • machine-readable medium 422 is shown in an example embodiment to be a single medium, the term “machine-readable medium” should be taken to include a single medium or multiple media (e.g., a centralized or distributed database, or associated caches and servers) able to store instructions (e.g., instructions 424).
  • the term “machine-readable medium” shall also be taken to include any medium that is capable of storing instructions (e.g., instructions 424) for execution by the machine and that cause the machine to perform any one or more of the methodologies disclosed herein.
  • the term “machine -readable medium” includes, but not be limited to, data repositories in the form of solid-state memories, optical media, and magnetic media.
  • a computer system 400 can have different and/or other components than those shown in FIG. 4.
  • the computer system 400 can lack certain illustrated components.
  • a computer system 400 acting as the host device 105 may include a hardware processor 402, a storage unit 416, a network interface device 420, and a WiFi controller 110 (as described above with reference to FIG. 1), among other components, but may lack an alphanumeric input device 412 and a cursor control device 414.
  • a hostless mDNS-SD responder with authenticated wake service is configured on a WiFi controller to allow a host processor 120 to enter a sleep state 265. This allows the WiFi controller 110 to act as mDNS-SD responder and perform an authenticated host wake service typically reserved for the host processor 120. This approach reduces power consumption by allowing the host processor to remain in the sleep state 265 while
  • Modules may constitute either software modules (e.g., code embodied on a machine-readable medium or in a transmission signal) or hardware modules.
  • a hardware module is tangible unit capable of performing certain operations and may be configured or arranged in a certain manner.
  • one or more computer systems e.g., a standalone, client or server computer system
  • one or more hardware modules of a computer system e.g., a processor or a group of processors
  • software e.g., an application or application portion
  • a hardware module may be implemented mechanically or electronically.
  • a hardware module may comprise dedicated circuitry or logic that is permanently configured (e.g., as a special-purpose processor, or an application-specific integrated circuit (ASIC)) to perform certain operations.
  • a hardware module may also comprise programmable logic or circuitry (e.g., such as a field programmable gate array (FPGA) or encompassed within a general-purpose processor or other programmable processor) that is temporarily configured by software to perform certain operations.
  • FPGA field programmable gate array
  • the decision to implement a hardware module mechanically, in dedicated and permanently configured circuitry, or in temporarily configured circuitry (e.g., configured by software) may be driven by cost and time considerations.
  • processors e.g., host processor 120
  • processors may be temporarily configured (e.g., by software) or permanently configured to perform the relevant operations.
  • processors may constitute processor- implemented modules that operate to perform one or more operations or functions.
  • the modules referred to herein may, in some example embodiments, comprise processor- implemented modules.
  • the one or more processors may also operate to support performance of the relevant operations in a "cloud computing" environment or as a “software as a service” (SaaS). For example, at least some of the operations may be performed by a group of computers (as examples of machines including processors), these operations being accessible via a network (e.g., the Internet) and via one or more appropriate interfaces (e.g., application program interfaces (APIs).)
  • SaaS software as a service
  • the performance of certain of the operations may be distributed among the one or more processors, not only residing within a single machine, but deployed across a number of machines.
  • the one or more processors or processor- implemented modules may be located in a single geographic location (e.g., within a home environment, an office environment, or a server farm). In other example embodiments, the one or more processors or processor-implemented modules may be distributed across a number of geographic locations.
  • processing may refer to actions or processes of a machine (e.g., a computer) that manipulates or transforms data represented as physical (e.g., electronic, magnetic, or optical) quantities within one or more memories (e.g., volatile memory, non- volatile memory, or a combination thereof), registers, or other machine components that receive, store, transmit, or display information.
  • a machine e.g., a computer
  • memories e.g., volatile memory, non- volatile memory, or a combination thereof
  • registers e.g., temporary registers, or other machine components that receive, store, transmit, or display information.
  • any reference to "one embodiment” or “an embodiment” means that a particular element, feature, structure, or characteristic described in connection with the embodiment is included in at least one embodiment.
  • the appearances of the phrase “in one embodiment” in various places in the specification are not necessarily all referring to the same embodiment.
  • Coupled along with their derivatives.
  • some embodiments may be described using the term “coupled” to indicate that two or more elements are in direct physical or electrical contact.
  • the term “coupled,” however, may also mean that two or more elements are not in direct contact with each other, but yet still co-operate or interact with each other.
  • the embodiments are not limited in this context.
  • the terms “comprises,” “comprising,” “includes,” “including,” “has,” “having” or any other variation thereof, are intended to cover a non-exclusive inclusion.
  • a process, method, article, or apparatus that comprises a list of elements is not necessarily limited to only those elements but may include other elements not expressly listed or inherent to such process, method, article, or apparatus.
  • "or” refers to an inclusive or and not to an exclusive or. For example, a condition A or B is satisfied by any one of the following: A is true (or present) and B is false (or not present), A is false (or not present) and B is true (or present), and both A and B are true (or present).

Abstract

Conventional wireless interface (WiFi) controllers cannot resolve authentication for trusted client devices without calculation from a host processor. Leaving the host processor on or awaking it from a sleep state each time a non-authenticated trusted client device attempts to connect wastes power. A hostless authenticated wake service allows a host controller to enter a sleep state while the WiFi controller responds to multicast domain name service -service discovery (mDNS-SD) queries from trusted client devices. Once a client device is authenticated, the WiFi controller may respond to a trusted client request to awake the host processor for further command processing and service provision. Not only does this approach reduce power consumption by allowing the host processor to remain in the sleep state, it allows trusted client devices to discover its presence while ensuring security.

Description

HOSTLESS MDNS-SD RESPONDER WITH AUTHENTICATED
HOST WAKE SERVICE
CROSS REFERENCE TO RELATED APPLICATIONS
[0001] This application claims the benefit of U.S. Provisional Application No.
62/059,825, filed October 3, 2014, and U.S. Application No. 14/864,787, filed on September 24, 2015, the contents of which are incorporated by reference in their entirety.
BACKGROUND
FIELD OF ART
[0002] The disclosure generally relates to the field of hostless authenticated wake service for electronic devices.
DESCRIPTION OF THE RELATED ART
[0003] A host processor is the main component of a host device and is responsible for executing complex procedures. For example, in a camera system, the host processor implements image capture, rendering, and storage. The host processor is idle when the host device is waiting to be queried by multicast domain name service-service discovery (mDNS- SD) enabled devices over a wireless interface (WiFi) network. If the host processor is turned off then a large amount of host device power can be saved. Currently, turning the host processor off while waiting to be queried removes the ability of the host device to respond to queries and provide services. Therefore, there is a lacking mechanism to provide for an mDNS responder with an authenticated wake service that does not require operation of the host processor.
BRIEF DESCRIPTION OF DRAWINGS
[0004] The disclosed embodiments have other advantages and features which will be more readily apparent from the detailed description, the appended claims, and the accompanying figures (or drawings). A brief introduction of the figures is below. [0005] Figure (FIG). 1 is a diagram illustrating functionality of a host device that contains an mDNS-SD responder enabled WiFi controller and a hostless authenticated wake service.
[0006] FIG. 2 illustrates a sequence in which a WiFi controller is configured with an mDNS-SD responder and an authenticated host wake service by a host processor.
[0007] FIG. 3 illustrates a sequence in which a trusted client device is authenticated with a hostless wake service.
[0008] FIG. 4 illustrates one embodiment of components of an example machine able to read instructions from a machine-readable medium and execute them in a processor (or controller).
DETAILED DESCRIPTION
[0009] The Figures (FIGS.) and the following description relate to preferred
embodiments by way of illustration only. It should be noted that from the following discussion, alternative embodiments of the structures and methods disclosed herein will be readily recognized as viable alternatives that may be employed without departing from the principles of what is claimed.
[0010] Reference will now be made in detail to several embodiments, examples of which are illustrated in the accompanying figures. It is noted that wherever practicable similar or like reference numbers may be used in the figures and may indicate similar or like functionality. The figures depict embodiments of the disclosed system (or method) for purposes of illustration only. One skilled in the art will readily recognize from the following description that alternative embodiments of the structures and methods illustrated herein may be employed without departing from the principles described herein.
CONFIGURATION OVERVIEW
[0011] FIG. 1 is a diagram illustrating functionality of a host device that contains an mDNS-SD responder enabled WiFi controller and a hostless authenticated wake service. Both the host device 105 and the trusted client device 150 include conventional computing system components such as one or more processors, a memory, a storage device, and network interfaces. The memory and storage device can store instructions corresponding to processes and modules as further described below that are executable by a processor.
[0012] The host device 110 includes a WiFi controller 110, a host processor 120, a power manager 130, and a host interface controller 140. The host device 105 may be any suitable hand-held computerized device, such as a camera, tablet, smart phone, and other systems including components for performing the described actions. Accordingly, the host device 105 may include various additional features, modules, and elements according to various embodiments. In one embodiment, the host device 105 communicates wirelessly through a network to a WiFi controller 110 on the trusted client device 150. In another embodiment, the trusted client device 150 may communicate wirelessly through the internet to a trusted client device 150 that does not have a wireless interface controller. The trusted client device 150 may also include various additional features, modules and elements according to various embodiments.
[0013] A WiFi controller 110, in one embodiment, is an integrated circuit that allows wireless communication between devices operating with the IEEE 802.11 protocol. The WiFi controller 110 encapsulates the protocols needed to interface between the host processor 130 and a trusted client device 150. The WiFi controller 110 contains a fixed and limited amount of available memory that may be used by the host processor 120 to configure and store an mDNS-SD responder module 111, a host wake service module 112, and a power request module upon the host device 105 boot up. Once configured the WiFi controller 110 may send a configuration complete signal 250 to the host processor 110 indicating the modules are configured. The configuration complete signal 250 prompts the host processor 110 to request a power off 260 in order to reduce power consumption. The configuration of the modules allow host processor 110 to enter a sleep state 265 while the WiFi controller 110 responds 305 to mDNS-SD queries, and authenticates 335 trusted client devices 150.
[0014] The mDNS-SD responder module 112 is configured 230 and stored on the memory of the WiFi controller 110 upon boot up of the host device 105. The mDNS-SD responder module 112 allows the host processor 120 to power off 260 to the sleep state 265. While the host processor 120 is in the sleep state 265, the mDNS-SD responder module 112 may receive mDNS-SD queries 300. These queries allow a trusted client device 150 to discover available services 310 provided by the host device 105. The mDNS-SD responder 112 may then respond to queries by sending mDNS-SD responses with packets that contain available service, protocol, and locating information. The mDNS-SD responder module 112 may allow service discovery of any available services, including the authenticated host wake service.
[0015] The host wake service module 114 authenticates 335 trusted client devices 150 and awakens the host processor 120 after an authentication 335 occurs. The host wake service module 114 is configured and stored on the memory of the WiFi controller 110 upon host processor 120 boot up. To awake the host processor 120 from the sleep state 265, shown in Fig. 2, the host wake service module 114 must receive a request from a trusted client device 150. The host wake service module 114 may then transmit a calculated random number 325 to the trusted client device 150. The host wake service module 114 then receives 330 a trusted client device payload value, generated with the random number. The random number and a host processor 120 payload are stored in the memory of the WiFi controller during configuration of the host wake service module 114. The host wake service module 114 compares the payload values. If the payload values of the host processor 120 and the trusted client device 114 match, then an authentication 335 occurs and the host processor 120 is placed in the awake state 205. If the authentication 335 fails, the connection is rejected and the host processor 120 remains in the sleep state 265, as shown in Fig 2. Any client device that is not trusted will not be authenticated 335, as shown in Fig. 3, by the host wake service module 114.
[0016] The power request module 116 is an interface between the WiFi controller 110 and the power manager 140. The power request module 116 receives, from the host wake service module 122, a request to power on 340 the host processor. The power request module 116 thereafter relays the request to power on 340 the host processor to the power manager 130.
[0017] The host processor 120 is the main processing unit for the host device 105 and contains a WiFi configuration module 122, security module 124, and sleep state module 126. Additionally, the host processor 120 may store data in memory, communicate to peripherals over communication interfaces and/or busses, perform signal and/or image processing, process data wirelessly over a network, and/or perform other complex instruction processing. In various embodiments the host processor 120 is an application processor or a
microcontroller. An mDNS-SD responder module 112 with a host wake service module 114 allow the host processor 120 to remain in the sleep state 265 while the system is controlled by a trusted client device 150 over WiFi, shown in Fig. 2, waiting start an operation.
[0018] A WiFi interface module 122 is located on the host processor 120, it configures and stores 230 the mDNS-SD responder module 112 on the available memory of the WiFi controller 110. The module also configures and stores 245 the host wake service module 114 on the WiFi controller 110. Both modules are configured and stored at the boot up time of the host processor 120. Additionally, the WiFi interface module 122 also synchronizes the power state of the host processor 120 and the WiFi controller 110. The WiFi interface module 122 may initiate a sleep state 265 for the host processor 120 by sending a request to power off 255 to the sleep state module 126. The WiFi interface module 122 then sends a status signal to the WiFi controller 110 indicating it is entering a sleep state 265. [0019] The security module 126, executed by the host processor 120, is responsible for exchanging 210 and storing keys with remote client devices, generating random numbers 220, and calculating payload values 225 as shown in Fig. 2. The key exchange 210, is part of a WiFi pairing process that occurs after a remote client becomes a trusted client device 150. The key is stored and used in conjunction with a random number to authenticate 335, as shown in Fig. 3, a trusted client device 150. The random number is a one-time use value that is generated 220, as shown in Fig. 2, by the security module 126. Both the random number and secret key are used to calculate a value that authenticates 335, as shown in Fig. 3, a trusted client device 150. The resulting value is called a payload, it is sufficiently large and will reset each time the host processor enters the sleep state 265 so that it cannot be guessed. The random number and payload value are transmitted and stored on the WiFi controller 110 for later transmission to a trusted client device 150.
[0020] The sleep state module 126 is an interface between the host processor 120 and the power manager 140. The sleep state module 126 receives, from the WiFi configuration module 122, a request to power off 255 the host processor 120, as shown in Fig. 2. The request to power off 255 the host processor is initiated after the WiFi configuration module 122 receives a configuration complete 250 signal from the WiFi controller 110. The configuration complete 250 signal indicates the host processor 120 may enter the sleep state 265 now the mDNS-SD responder 112 and host wake service module 114 are configured. The sleep state module 126 thereafter relays the request to power off 255 the host processor 120 to the power manager 130.
[0021] The power manager 140, in one embodiment, is an integrated circuit that governs the power state of the host processor 120. The power manager 140 receives request to power off 255 from the host processor 120 and power on request 340 from the WiFi controller 110. Once a request is received to change the power state of the host processor 130, the power manager 140 sends a power on 200 signal or power off 255 signal to the host processor 130. The power manager 140 does not initiate power sequencing on its own accord.
[0022] The host controller interface 140 is a communication interface between the host processor 130 and the WiFi controller 120. In various embodiments, the host processor 120 and WiFi controller 110 operate at different levels of protocol abstraction; the host controller interface 140 bridges this gap and standardizes message packets. The host controller interface 140 may be implemented in communication busses such as universal asynchronous receiver/transmitter (UART), serial peripheral interface (SPI), universal serial bus (USB), secure digital input output (SDIO). The host controller interface 140 may also be implemented as firmware logic on the same processor as the host processor 120 or the WiFi controller 110.
[0023] Referring now to FIG. 2, it illustrates a sequence in which a WiFi controller 110 is configured with an mDNS-SD responder module 112 and a host wake service module 114. The host processor 120 receives a power on 200 signal from the power manager 130. The power on 200 signal places the host processor 130 in the awake state 205. As part of a WiFi pairing process, a secret key is exchanged 210 between the host processor 120 and the trusted client device 150. In order to configure and store the modules required for hostless mDNS- SD responses, the host processor 120 turns off its currently running mDNS-SD responder. A random number is generated 220 by the host processor 120 and used in a cryptographic hash function to calculate the host processor payload value 225. The host processor 120 configures 230 and stores the mDNS-SD responder module 112 on the WiFi controller's 110 available memory. The random is number written 235, by the host processor 120, to memory of the WiFi controller 110. The host processor's payload value 120 is written 240 to the memory of the WiFi controller 110 for later authentication 335. The host processor 120 then configures 245 and stores the host wake service module 114 on available memory of the WiFi controller 110. Once configuration 245 of the host wake service module is complete, a configuration complete 250 signal is sent to the host processor 120. The host processor 120 transmits a request to power off 255 itself to the power manager 130. Upon receiving the power off request the power manager 130 sends a power off 260 signal to the host processor 120. The host processor 120 then enters the sleep state 265.
[0024] Turning to FIG. 3, it illustrates a sequence in which a trusted client device 150 is authenticated with a hostless wake service. The host processor 120 is initially in the sleep state 265 with the WiFi controller 110 handling mDNS-SD queries from trusted client devices 150. The trusted client device 150 queries 300 the WiFi controller 110 for any services available. The WiFi controller 110 responds 305 to the query 300 with a list of services. The trusted client 150 receives the list of available services and discovers 310 wake service is available. The trusted client device 150 then sends a request to awake 315 the host processor 120. The WiFi controller 110 transmits 320 a random number to the trusted client device 150. The trusted client device 150 calculates 325 the payload value with the random number and the previously exchanged key. The result is sent 330 to the WiFi controller where the payload values of the trusted client device 150 and the host device 105 are compared. If the values do not match, an authentication 335 is denied and the connection is dropped. If the values match, an authentication 335 occurs and request to power on 340 the host processor 120 is sent by the WiFi controller 110 to the power manager 140. The power manager 140 sends a power on 200 signal to the host processor 120. The host processor 120 enters the awake state 205 and become available to communicate with the trusted client device 150.
COMPUTING MACHINE ARCHITECTURE
[0025] Turning now to FIG. 4, the figure is a block diagram illustrating components of an example machine able to read instructions from a machine -readable medium and execute them in a processor (or controller). Specifically, FIG. 4 shows a diagrammatic representation of a machine in the example form of a computer system 400 within which instructions 424 (e.g., software or program code) for causing the machine to perform (execute) any one or more of the corresponding methodologies created on the client device 150. The computer system 400 may be used for one or more of the entities (e.g trusted client device 150) illustrated in the functional environment of FIG. 1.
[0026] The example computer system 400 includes a hardware processor 402 (e.g., a central processing unit (CPU), a graphics processing unit (GPU), a digital signal processor (DSP), one or more application specific integrated circuits (ASICs), one or more radio- frequency integrated circuits (RFICs), or any combination of these), a main memory 404, and a static memory 406, which are configured to communicate with each other via a bus 408. The computer system 400 may further include graphics display unit 410 (e.g., a plasma display panel (PDP), a liquid crystal display (LCD), a projector, or a cathode ray tube (CRT)). The computer system 400 may also include alphanumeric input device 412 (e.g., a keyboard), a cursor control device 414 (e.g., a mouse, a trackball, a joystick, a motion sensor, or other pointing instrument), a storage unit 416, a signal generation device 418 (e.g., a speaker), and a network interface device 420, which also are configured to communicate via the bus 408.
[0027] The storage unit 416 includes a machine-readable medium 422 on which is stored instructions 424 (e.g., software) embodying any one or more of the methodologies or functions described herein. The instructions 424 (e.g., software) may also reside, completely or at least partially, within the main memory 404 or within the processor 402 (e.g., within a processor's cache memory) during execution thereof by the computer system 400, the main memory 404 and the processor 402 also constituting machine -readable media. The instructions 424 (e.g., software) may be transmitted or received over a network 426 via the network interface device 420. [0028] While machine-readable medium 422 is shown in an example embodiment to be a single medium, the term "machine-readable medium" should be taken to include a single medium or multiple media (e.g., a centralized or distributed database, or associated caches and servers) able to store instructions (e.g., instructions 424). The term "machine-readable medium" shall also be taken to include any medium that is capable of storing instructions (e.g., instructions 424) for execution by the machine and that cause the machine to perform any one or more of the methodologies disclosed herein. The term "machine -readable medium" includes, but not be limited to, data repositories in the form of solid-state memories, optical media, and magnetic media.
[0029] As is known in the art, a computer system 400 can have different and/or other components than those shown in FIG. 4. In addition, the computer system 400 can lack certain illustrated components. For example, a computer system 400 acting as the host device 105 may include a hardware processor 402, a storage unit 416, a network interface device 420, and a WiFi controller 110 (as described above with reference to FIG. 1), among other components, but may lack an alphanumeric input device 412 and a cursor control device 414.
ADDITIONAL CONFIGURATION CONSIDERATIONS
[0030] A hostless mDNS-SD responder with authenticated wake service is configured on a WiFi controller to allow a host processor 120 to enter a sleep state 265. This allows the WiFi controller 110 to act as mDNS-SD responder and perform an authenticated host wake service typically reserved for the host processor 120. This approach reduces power consumption by allowing the host processor to remain in the sleep state 265 while
simultaneously adding security by verifying payload values of the trusted client device.
[0030] Throughout this specification, plural instances may implement components, operations, or structures described as a single instance. Although individual operations of one or more methods are illustrated and described as separate operations, one or more of the individual operations may be performed concurrently, and nothing requires that the operations be performed in the order illustrated. Structures and functionality presented as separate components in example configurations may be implemented as a combined structure or component. Similarly, structures and functionality presented as a single component may be implemented as separate components. These and other variations, modifications, additions, and improvements fall within the scope of the subject matter herein.
[0031] Certain embodiments are described herein as including logic or a number of components, modules, or mechanisms, for example, as illustrated in FIGS. 1, 2, 3, and 4. Modules may constitute either software modules (e.g., code embodied on a machine-readable medium or in a transmission signal) or hardware modules. A hardware module is tangible unit capable of performing certain operations and may be configured or arranged in a certain manner. In example embodiments, one or more computer systems (e.g., a standalone, client or server computer system) or one or more hardware modules of a computer system (e.g., a processor or a group of processors) may be configured by software (e.g., an application or application portion) as a hardware module that operates to perform certain operations as described herein.
[0032] In various embodiments, a hardware module may be implemented mechanically or electronically. For example, a hardware module may comprise dedicated circuitry or logic that is permanently configured (e.g., as a special-purpose processor, or an application-specific integrated circuit (ASIC)) to perform certain operations. A hardware module may also comprise programmable logic or circuitry (e.g., such as a field programmable gate array (FPGA) or encompassed within a general-purpose processor or other programmable processor) that is temporarily configured by software to perform certain operations. It will be appreciated that the decision to implement a hardware module mechanically, in dedicated and permanently configured circuitry, or in temporarily configured circuitry (e.g., configured by software) may be driven by cost and time considerations.
[0033] The various operations of example methods described herein may be performed, at least partially, by one or more processors, e.g., host processor 120, that are temporarily configured (e.g., by software) or permanently configured to perform the relevant operations. Whether temporarily or permanently configured, such processors may constitute processor- implemented modules that operate to perform one or more operations or functions. The modules referred to herein may, in some example embodiments, comprise processor- implemented modules.
[0034] The one or more processors may also operate to support performance of the relevant operations in a "cloud computing" environment or as a "software as a service" (SaaS). For example, at least some of the operations may be performed by a group of computers (as examples of machines including processors), these operations being accessible via a network (e.g., the Internet) and via one or more appropriate interfaces (e.g., application program interfaces (APIs).)
[0035] The performance of certain of the operations may be distributed among the one or more processors, not only residing within a single machine, but deployed across a number of machines. In some example embodiments, the one or more processors or processor- implemented modules may be located in a single geographic location (e.g., within a home environment, an office environment, or a server farm). In other example embodiments, the one or more processors or processor-implemented modules may be distributed across a number of geographic locations.
[0036] Some portions of this specification are presented in terms of algorithms or symbolic representations of operations on data stored as bits or binary digital signals within a machine memory (e.g., a computer memory). These algorithms or symbolic representations are examples of techniques used by those of ordinary skill in the data processing arts to convey the substance of their work to others skilled in the art. As used herein, an "algorithm" is a self-consistent sequence of operations or similar processing leading to a desired result. In this context, algorithms and operations involve physical manipulation of physical quantities. Typically, but not necessarily, such quantities may take the form of electrical, magnetic, or optical signals capable of being stored, accessed, transferred, combined, compared, or otherwise manipulated by a machine. It is convenient at times, principally for reasons of common usage, to refer to such signals using words such as "data," "content," "bits," "values," "elements," "symbols," "characters," "terms," "numbers," "numerals," or the like. These words, however, are merely convenient labels and are to be associated with appropriate physical quantities.
[0037] Unless specifically stated otherwise, discussions herein using words such as
"processing," "computing," "calculating," "determining," "presenting," "displaying," or the like may refer to actions or processes of a machine (e.g., a computer) that manipulates or transforms data represented as physical (e.g., electronic, magnetic, or optical) quantities within one or more memories (e.g., volatile memory, non- volatile memory, or a combination thereof), registers, or other machine components that receive, store, transmit, or display information.
[0038] As used herein any reference to "one embodiment" or "an embodiment" means that a particular element, feature, structure, or characteristic described in connection with the embodiment is included in at least one embodiment. The appearances of the phrase "in one embodiment" in various places in the specification are not necessarily all referring to the same embodiment.
[0039] Some embodiments may be described using the expression "coupled" and
"connected" along with their derivatives. For example, some embodiments may be described using the term "coupled" to indicate that two or more elements are in direct physical or electrical contact. The term "coupled," however, may also mean that two or more elements are not in direct contact with each other, but yet still co-operate or interact with each other. The embodiments are not limited in this context.
[0040] As used herein, the terms "comprises," "comprising," "includes," "including," "has," "having" or any other variation thereof, are intended to cover a non-exclusive inclusion. For example, a process, method, article, or apparatus that comprises a list of elements is not necessarily limited to only those elements but may include other elements not expressly listed or inherent to such process, method, article, or apparatus. Further, unless expressly stated to the contrary, "or" refers to an inclusive or and not to an exclusive or. For example, a condition A or B is satisfied by any one of the following: A is true (or present) and B is false (or not present), A is false (or not present) and B is true (or present), and both A and B are true (or present).
[0041] In addition, use of the "a" or "an" are employed to describe elements and components of the embodiments herein. This is done merely for convenience and to give a general sense of the invention. This description should be read to include one or at least one and the singular also includes the plural unless it is obvious that it is meant otherwise.
[0042] Upon reading this disclosure, those of skill in the art will appreciate still additional alternative structural and functional designs for a system and a process for a hostless mDNS- SD responder with an authenticated wake service through the disclosed principles herein. Thus, while particular embodiments and applications have been illustrated and described, it is to be understood that the disclosed embodiments are not limited to the precise construction and components disclosed herein. Various modifications, changes and variations, which will be apparent to those skilled in the art, may be made in the arrangement, operation and details of the method and apparatus disclosed herein without departing from the spirit and scope defined in the appended claims.

Claims

CLAIMS WHAT IS CLAIMED IS:
1. A method to initiate a wake service using a multicast domain name system - service discovery (mDNS-SD) responder, the wake service to authenticate a trusted client device when a host processor is in a sleep state, the method comprising:
receiving, by the mDNS-SD responder, a service discover query from a trusted client device while the host processor is in the sleep state;
transmitting, through an mDNS-SD responder, a response to the service discovery request;
receiving, by the mDNS-SD responder in response to a wake service request, a
payload value from the trusted client device to authenticate the trusted client device; and
waking, in response to the trusted client device being authenticated, the host processor to connect with the trusted client device.
2. The method of claim 1, wherein the host processor, prior to entering an initial sleep state, configures the mDNS-SD responder and wake host service for storage in a memory associated with the wireless interface (WiFi) controller.
3. The method of claim 2, wherein configuring the mDNS-SD responder further
comprises:
transmitting, by the mDNS-SD responder upon completion of configuration, a signal to the host processor controller indicating the mDNS-SD responder configuration is complete; and
entering the sleep state, by the host processor, responsive to receiving the signal
indicating the mDNS-SD responder configuration is complete.
4. The method of claim 1, wherein the mDNS-SD responder is configured on a WiFi controller to respond to mDNS-SD queries independent of the host processor.
5. The method of claim 1, wherein the wake host service configured on a WiFi
controller further comprises:
receiving a wake request for the host processor from a trusted client device;
transmitting a randomly generated number to the trusted client device;
receiving a generated payload value from the trusted client device; authenticating the generated payload value from the trusted client device; and sending an wake request to a power management module.
The method of claim 5, wherein authenticating the generated payload value further comprises:
generating a payload value for the host device;
receiving a generated payload value from the trusted client device;
granting authentication if the payload value of the trusted client device matches the payload value of the host device; and
denying authentication and remaining in the sleep state if the payload value results do not match.
The method of claim 5, wherein in a generating the payload value further comprises: calculating a payload as a result of a cryptographic hash function, the inputs being a secret key and a randomly generated number; and
storing the payload value in the memory of the WiFi interface controller.
The method of claim 7, wherein the payload value is reset each time the host processor enters the sleep state.
The method of claim 5, wherein receiving the wake request further comprises:
transmitting, by the power management module, a power on signal to the host
processor;
receiving, by the host processor, a power on signal; and
powering on by the host processor.
A host device configured to communicate with one or more trusted client devices according to a host/client relationship in which a wake service discovery query sent from a trusted client device to the host device occurs waking the host device from a sleep state, the host device comprising:
a host processor configured to communicate to with a WiFi controller, power manager module, and one or more trusted client devices;
a WiFi controller configured to communicate to with the host processor, a power manager module, and one or more trusted client devices; and
a power manager module configured to control the sleep state of the host processor.
11. The host device of claim 10, where communication with the WiFi controller by the host processor further comprises:
transmitting instructions for configuring an mDNS-SD responder for storage in a memory associated with the wireless interface (WiFi) controller;
transmitting instructions for configuring a wake host service for storage in a memory associated with the wireless interface (WiFi) controller; and
receiving a request to enter a sleep state.
12. The host device of claim 10, where communication with one or more trusted client devices by the host processor further comprises:
exchanging of a secret key while in a pair mode.
13. The host device of claim 10, where communication with the power manager module by the host processor further comprises sending a request to enter a sleep state;
14. The host device of claim 10, where communication with the host processor by the WiFi controller further comprises:
receiving instructions for configuring an mDNS-SD responder for storage in a
memory associated with the wireless interface (WiFi) controller;
receiving instructions for configuring the wake host service for storage in a memory associated with the wireless interface (WiFi) controller; and
transmitting a request to enter the sleep state.
15. The host device of claim 10, where communication with one or more trusted client devices by the WiFi controller further comprises:
responding to mDNS-SD queries;
generating and authentication with the trusted client device; and
conforming to the IEEE 802.11 protocol.
16. The host device of claim 15, where responding to mDNS-SD queries further
comprises sending packets to trusted client devices containing available services, protocol, and locating data.
17. The host device of claim 10, where communication with the power manager module by the WiFi controller further comprises sending a request to enter an awake state.
18. A non-transitory computer readable storage medium storing instructions to enable a wake service using a multicast domain name system - service discovery (mDNS-SD) responder, the wake service to authenticate a trusted client device when a host processor is in a sleep state, the method comprising:
receive, by the mDNS-SD responder, a service discover query from a trusted client device while the host processor is in the sleep state;
transmit, through an mDNS-SD responder, a response to the service discovery
request;
receive, by the mDNS-SD responder, in response to a wake service request, a payload value from the trusted client device to authenticate the trusted client device; and
wake, in response to the trusted client device being authenticated, the host processor to connect with the trusted client device.
19. The computer readable storage medium of claim 18, further comprising instructions that when executed cause the host processor, prior to entering an initial sleep state, to configure the mDNS-SD responder and wake host service for storage in a memory associated with the wireless interface (WiFi) controller.
20. The computer readable storage medium of claim 19, further comprising instructions for that when executed cause the mDNS-SD responder to send, upon completion of configuration, a signal to the host processor indicating the mDNS-SD responder configuration is complete.
21. The computer readable storage medium of claim 19, further comprising instructions for that when executed cause the host processor to enter the sleep state responsive to receiving the signal indicating the mDNS-SD responder configuration is complete.
22. The computer readable storage medium of claim 18, further comprising instructions that when executed cause the mDNS-SD responder configured on a WiFi controller to respond to mDNS-SD queries independent of the host processor.
23. The computer readable storage medium of claim 18, further comprising instructions that when executed cause the wake host service configured on a WiFi controller to: receive a wake request for host processor from a trusted client device;
send a randomly generated number to the trusted client device; receive a generated a payload value from the trusted client device;
authenticate the calculated payload; and
send an wake request to a power management module.
24. The computer readable storage medium of claim 23, further comprising instructions that when executed cause the WiFi interface controller to:
generate a payload value for the host device;
receive a generated payload value from the trusted client device; and
perform one of:
grant authentication if the payload value of the trusted client device matches the payload value of the host device, or
deny authentication and remaining in the sleep state if the payload value
results do not match.
25. The computer readable storage medium of claim 24, further comprising instructions that when executed cause an authentication module to:
calculate a payload as a result of a cryptographic hash function, the inputs being a secret key and a randomly generated number; and
store the payload value in the memory of the WiFi interface controller.
26. The method of claim 25, wherein the payload value is reset each time the host
processor enters the sleep state.
27. The computer readable storage medium of claim 23, wherein the wake request further comprises instructions that cause, in response to receiving an wake request, the power management module to transmit a power on signal to the host processor.
PCT/US2015/052740 2014-10-03 2015-09-28 Hostless mdns-sd responder with authenticated host wake service WO2016053908A1 (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
EP15846322.4A EP3202190A4 (en) 2014-10-03 2015-09-28 Hostless mdns-sd responder with authenticated host wake service

Applications Claiming Priority (4)

Application Number Priority Date Filing Date Title
US201462059825P 2014-10-03 2014-10-03
US62/059,825 2014-10-03
US14/864,787 US9871792B2 (en) 2014-10-03 2015-09-24 Hostless mDNS-SD responder with authenticated host wake service
US14/864,787 2015-09-24

Publications (1)

Publication Number Publication Date
WO2016053908A1 true WO2016053908A1 (en) 2016-04-07

Family

ID=55631320

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/US2015/052740 WO2016053908A1 (en) 2014-10-03 2015-09-28 Hostless mdns-sd responder with authenticated host wake service

Country Status (3)

Country Link
US (2) US9871792B2 (en)
EP (1) EP3202190A4 (en)
WO (1) WO2016053908A1 (en)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2019010307A1 (en) * 2017-07-06 2019-01-10 Huang Po Kai Methods and apparatus to wake a receiver

Families Citing this family (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106912045B (en) * 2017-01-03 2020-04-17 青岛海信电器股份有限公司 Smart television wireless fidelity Wi-Fi back connection method and device
JP7318064B2 (en) 2019-04-01 2023-07-31 グーグル エルエルシー Adaptive management of casting requests and/or user input in rechargeable devices
CN113424256A (en) 2019-04-01 2021-09-21 谷歌有限责任公司 Adaptive management of broadcast requests and/or user inputs on rechargeable devices
CN114173339B (en) * 2020-09-10 2023-05-05 合肥君正科技有限公司 Method and device for quickly connecting WiFi network, storage medium and electronic equipment

Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20050114716A1 (en) * 2003-11-21 2005-05-26 Chih-Ping O Monitor and method for controlling power-on and power-off of host computer
US20050223248A1 (en) * 2004-03-31 2005-10-06 Samsung Electronics Co., Ltd. Method and apparatus for waking remote terminal
US20080170569A1 (en) * 2007-01-16 2008-07-17 Microsoft Corporation Remote device waking using a multicast packet
US20110202983A1 (en) * 2009-08-19 2011-08-18 Solarflare Communications Incorporated Remote functionality selection
US20120213134A1 (en) * 2011-02-23 2012-08-23 Lg Electronics Inc. Remote wakeup of application processor of mobile device
US20130142136A1 (en) * 2011-10-21 2013-06-06 Samsung Electronics Co., Ltd. Methods and apparatus for adaptive wireless backhaul and networks
WO2014144753A1 (en) * 2013-03-15 2014-09-18 Ruckus Wireless, Inc. Localizing a multicast service

Family Cites Families (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CA2469198C (en) * 2001-12-07 2013-02-12 Ntru Cryptosystems, Inc. Digital signature and authentication method and apparatus
US8458483B1 (en) 2009-06-30 2013-06-04 Emc Corporation Techniques for message-passing using shared memory of an RF tag
US9674048B2 (en) * 2013-06-03 2017-06-06 Qualcomm Incorporated Efficient infrastructure service discovery with security
US20160066184A1 (en) * 2014-08-29 2016-03-03 Intel Corporation Pairing Computing Devices According To A Multi-Level Security Protocol

Patent Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20050114716A1 (en) * 2003-11-21 2005-05-26 Chih-Ping O Monitor and method for controlling power-on and power-off of host computer
US20050223248A1 (en) * 2004-03-31 2005-10-06 Samsung Electronics Co., Ltd. Method and apparatus for waking remote terminal
US20080170569A1 (en) * 2007-01-16 2008-07-17 Microsoft Corporation Remote device waking using a multicast packet
US20110202983A1 (en) * 2009-08-19 2011-08-18 Solarflare Communications Incorporated Remote functionality selection
US20120213134A1 (en) * 2011-02-23 2012-08-23 Lg Electronics Inc. Remote wakeup of application processor of mobile device
US20130142136A1 (en) * 2011-10-21 2013-06-06 Samsung Electronics Co., Ltd. Methods and apparatus for adaptive wireless backhaul and networks
WO2014144753A1 (en) * 2013-03-15 2014-09-18 Ruckus Wireless, Inc. Localizing a multicast service

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
See also references of EP3202190A4 *

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2019010307A1 (en) * 2017-07-06 2019-01-10 Huang Po Kai Methods and apparatus to wake a receiver

Also Published As

Publication number Publication date
EP3202190A4 (en) 2017-09-13
EP3202190A1 (en) 2017-08-09
US20160099940A1 (en) 2016-04-07
US20180205730A1 (en) 2018-07-19
US10193886B2 (en) 2019-01-29
US9871792B2 (en) 2018-01-16

Similar Documents

Publication Publication Date Title
US10193886B2 (en) Hostless mDNS-SD responder with authenticated host wake service
US11025624B2 (en) Inter-application delegated authentication
US9853969B2 (en) Bluetooth low energy hostless private address resolution
EP3281141B1 (en) Cloud-based cross-device digital pen pairing
EP3057053B1 (en) Electronic device and method for processing secure information
EP3039605B1 (en) Systems and methods for authenticating access to an operating system by a user before the operating system is booted using a wireless communication token
US9578445B2 (en) Systems and methods to synchronize data to a mobile device based on a device usage context
US9521125B2 (en) Pseudonymous remote attestation utilizing a chain-of-trust
CN110741370A (en) Biometric authentication using user input
CN107154935B (en) Service request method and device
US9411966B1 (en) Confidential data access and storage
CA2940633A1 (en) Universal authenticator across web and mobile
EP2895982A1 (en) Hardware-enforced access protection
CN109479063A (en) Use the authorization control of the embedded system of End-to-End Security element communication
US11194374B2 (en) Systems and methods for waking an information handling system from a wireless peripheral device
CN114697007A (en) Method, corresponding device and system for managing secret key
US20170099401A1 (en) Information processing apparatus, information processing system, method of controlling the information processing apparatus, and storage medium
US20230385387A1 (en) Dynamic multifactor authentication using low-power and high-power monitoring
US9041516B2 (en) Context aware detection and mobile platform wake
JP6463984B2 (en) Power management apparatus, power management method, power management system, meter device, and authentication method
CN112104588A (en) Login authentication method and system, terminal and server

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 15846322

Country of ref document: EP

Kind code of ref document: A1

REEP Request for entry into the european phase

Ref document number: 2015846322

Country of ref document: EP

WWE Wipo information: entry into national phase

Ref document number: 2015846322

Country of ref document: EP

NENP Non-entry into the national phase

Ref country code: DE