Secure access systems and methods to network elements operating in a network
First Claim
1. A network element, configured to operate in a network to provide various network functions therein, the network element comprising:
- a main processor communicatively coupled to a main memory, wherein the main processor is configured to perform Operations, Administration, Maintenance, and Provisioning (OAM&
P) associated with the network element, wherein the main processor is accessible through a plurality of access techniques comprising an access port communicatively coupled to a Data Communication Network (DCN) and signaling through overhead of data signals received by the network element; and
a supervisory plane comprising a secure processor and a secure memory communicatively coupled thereto, wherein the supervisory plane is separate from and communicatively coupled to the main processor and the main memory, the supervisory plane is configured to allow secure, direct access to the main processor and the main memory, and wherein the secure processor is accessible via a secure DCN.
1 Assignment
0 Petitions
Accused Products
Abstract
A network element, configured to operate in a network to provide various network functions therein, includes a main processor communicatively coupled to a main memory, wherein the main processor is configured to perform Operations, Administration, Maintenance, and Provisioning (OAM&P) associated with the network element, wherein the main processor is accessible through one or more access techniques; and a supervisory plane comprising a secure processor and a secure memory communicatively coupled thereto, wherein the supervisory plane is separate from and communicatively coupled to the main processor and the main memory, the supervisory plane is configured to allow secure, direct access to the main processor and the main memory.
-
Citations
20 Claims
-
1. A network element, configured to operate in a network to provide various network functions therein, the network element comprising:
-
a main processor communicatively coupled to a main memory, wherein the main processor is configured to perform Operations, Administration, Maintenance, and Provisioning (OAM&
P) associated with the network element, wherein the main processor is accessible through a plurality of access techniques comprising an access port communicatively coupled to a Data Communication Network (DCN) and signaling through overhead of data signals received by the network element; anda supervisory plane comprising a secure processor and a secure memory communicatively coupled thereto, wherein the supervisory plane is separate from and communicatively coupled to the main processor and the main memory, the supervisory plane is configured to allow secure, direct access to the main processor and the main memory, and wherein the secure processor is accessible via a secure DCN. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10, 11, 12, 13, 14, 15)
-
-
16. A supervisory plane, in a network element, to provide secure access and control of the network element, the network element configured to operate in a network to provide various network functions therein, the supervisory plane comprising:
-
a secure processor communicatively coupled to a secure memory, wherein the supervisory plane is separate from and communicatively coupled to a main processor and main memory, the supervisory plane is configured to allow secure, direct access to the main processor and the main memory, and wherein the secure processor is accessible via a secure Data Communication Network (DCN); wherein the main processor is configured to perform Operations, Administration, Maintenance, and Provisioning (OAM&
P) associated with the network element, wherein the main processor is accessible through a plurality of access techniques comprising an access port communicatively coupled to a DCN and signaling through overhead of data signals received by the network element; andwherein the main processor and the main memory are controllable through the supervisory plane, but the supervisory plane is not controllable through the main processor and the main memory. - View Dependent Claims (17)
-
-
18. A method, in a network element operating in a network and providing various network functions therein, the network element configured with a supervisory plane to provide secure access and control of the network element, the method comprising:
-
operating the network element in the network with a main processor and main memory configured to perform Operations, Administration, Maintenance, and Provisioning (OAM&
P) associated with the network element, wherein the main processor is accessible through a plurality of access techniques comprising an access port communicatively coupled to a Data Communication Network (DCN) and signaling through overhead of data signals received by the network element;responsive to an event, allowing access to the network element through a supervisory plane with a secure processor communicatively coupled to a secure memory, wherein the supervisory plane is separate from and communicatively coupled to the main processor and the main memory, the supervisory plane is configured to allow secure, direct access to the main processor and the main memory, and wherein the secure processor is accessible via a secure DCN; and performing a secure function with the supervisory plane on the main processor and/or the main memory. - View Dependent Claims (19, 20)
-
Specification