Inventor(s)

Abstract

A system is proposed herein for decentralized Internet Protocol (IP) address assignment and network identity management without a dedicated Dynamic Host Configuration Protocol (DHCP) server. A purpose-built permissioned blockchain stores device identities and IP assignment state. At manufacture time, a vendor generates a device key pair, seals the private key in a Trusted Platform Module (TPM), and registers the device public key, media access control (MAC) address, and vendor-signed identity information. Validator nodes authenticate joining devices and independently perform threshold-based cryptographic self-selection to determine an assigning validator without inter-validator coordination. The selected validator encrypts network configuration information using the joining device's public key, and the device returns a signed acknowledgment that supports recording the assignment. A node with a valid lease may self-configure after reboot from a verified local blockchain replica. The architecture also supports configurable node roles, multiple subnet pools, Merkle-tree batch vendor registration, and validator-signed state checkpoints for bounded active-chain growth.

Creative Commons License

Creative Commons License
This work is licensed under a Creative Commons Attribution 4.0 License.

Share

COinS