IP Library Granted Patent US 8,095,624
Granted Patent B2
US 8,095,624 · App. 09/750,500 · Granted Jan 10, 2012

Architecture for serving and managing independent access devices

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,095,624
App. No.
09/750,500
Granted
Jan 10, 2012
Kind
B2
Abstract

A method of providing services from a service provider to a plurality of independent entities, includes defining a predetermined one way trust relationship, separating first services wherein the relationship runs from the service provider to the serviced entity from second services wherein the relationship runs from the serviced entity to the service provider, thus preventing transitive trust. Preferably, the second services do not trust the first services.

Claims (45)

1. A method for a service provider to provide services to a plurality of client computers, the method comprising:

providing a first set of services on a first set of one or more servers of the service provider to the plurality of client computers by providing secure access to the first set of one or more servers by the plurality of client computers, but prohibiting secure access to the plurality of client computers by the first set of one or more servers; and

providing a second set of services on a second set of one or more servers of the service provider to the plurality of client computers by providing secure access to the plurality of client computers by the second set of one or more servers, but prohibiting secure access to the second set of one or more servers by the plurality of client computers.

2. The method of claim 1 wherein said first set of services comprise data services.

3. The method of claim 2 wherein said second set of services comprise management and configuration services.

4. The method of claim 2 wherein said first set of services comprises at least one service selected from the group consisting of: virus protection services, remote access, backup, software sharing, and telephony services.

5. The method of claim 3 wherein said second set of services comprises at least one service selected from the group consisting of: security, password management, software updates, software distribution, and access control.

6. The method of claim 1 further comprising:

preventing any said client computer from securely accessing resources in any other said client computer.

7. The method of claim 3 further comprising:

providing secure access to the first set of one or more servers by the second set of one or more servers.

8. The method of claim 3 further comprising:

preventing said first set of one or more servers from securely accessing resources in said second set of one or more servers.

9. The method of claim 3 wherein said first set of one or more servers providing said data services and said second set of one or more servers providing said management and configuration services are separate.

10. The method of claim 1 further comprising:

connecting said first set of one or more servers to at least one of the group consisting of: the Internet, a public switched telephone network, and a data network.

11. A system for providing services to a plurality of client computers, the system comprising:

a first set of one or more servers for providing a first set of services to the plurality of client computers by providing secure access to the first set of one or more servers by the plurality of client computers, but prohibiting secure access to the plurality of client computers by the first set of one or more servers; and

a second set of one or more servers for providing a second set of services to the plurality of client computers by providing secure access to the plurality of client computers by the second set of one or more servers, but prohibiting secure access to the second set of one or more servers by the plurality of client computers.

12. The system of claim 11 wherein said first set of services comprise data services.

13. The system of claim 12 wherein said second set of services comprise management and configuration services.

14. The system of claim 12 wherein said first set of services comprises at least one service selected from the group consisting of: virus protection services, remote access, backup, software sharing, and telephony services.

15. The system of claim 13 wherein said second set of services comprises at least one service selected from the group consisting of: security, password management, software updates, software distribution, and access control.

16. The system of claim 11 wherein said system is operable to:

prevent any said client computer from securely accessing resources in any other said client computer.

17. The system of claim 13 wherein the system is operable to provide secure access to the first set of one or more servers by the second set of one or more servers.

18. The system of claim 13 wherein said system is operable to:

prevent said first set of one or more servers from securely accessing resources in said second set of one or more servers.

19. The system of claim 13 wherein said first set of one or more servers providing said data services and said second set of one or more servers providing said management and configuration services are separate.

20. The system of claim 11 wherein said first set of one or more servers is connected to at least one of the group consisting of: the Internet, a public switched telephone network, and a data network.

21. A method for a service provider to provide services to a plurality of client computers, the method comprising:

separating the services provided by the service provider into a first group of services provided by a first group of one or more servers of the service provider, and a second group of services provided by a second group of one or more servers of the service provider;

providing the first set of services from the first set of servers through a one-way trust connection from the first set of servers to the client computers; and

providing the second set of services from the second set of servers to the client computers through a one-way trust connection from the client computers to the second set of servers.

22. The method of claim 21 further comprising:

preventing any said client computer from gaining secure access to any other said client computer.

23. The method of claim 21 wherein said first set of services comprises at least one service selected from the group consisting of: virus protection services, remote access, backup, software sharing, and telephony services.

24. The method of claim 21 wherein said second set of services comprises at least one service selected from the group consisting of: security, password management, software updates, software distribution, and access control.

25. A method for providing services from a service provider to a plurality of client computers, the method comprising:

enabling a first set of services on a first set of servers of the service provider through a one-way trust connection from the first set of servers to the plurality of client computers;

enabling a second set of services on a second set of servers of the service provider to the plurality of client computers through a one-way trust connection from the client computers to the second set of servers; and

providing the first and second sets of services.

26. A system for providing services to a plurality of client computers, the system comprising:

a first set of servers for providing a first set of services to the plurality of client computers through a one-way trust relationship from the first set of servers to the plurality of client computers; and

a second set of servers for providing a second set of services to the plurality of client computers through a one-way trust relationship from the plurality of client computers to the second set of servers.

Assignments (18)
SECURITY INTEREST Recorded Sep 20, 2021
From: WINDSTREAM INTELLECTUAL PROPERTY SERVICES, LLC
To: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
Reel/Frame 057526/0925 →
CHANGE OF NAME Recorded Nov 16, 2020
From: EARTHLINK BUSINESS, LLC
To: WINDSTREAM NEW EDGE, LLC
Reel/Frame 054429/0466 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 16, 2020
From: WINDSTREAM NEW EDGE, LLC
To: WINDSTREAM INTELLECTUAL PROPERTY SERVICES, LLC
Reel/Frame 054375/0519 →
RELEASE OF SECURITY INTEREST REEL/FRAME 044270/0132 Recorded Oct 6, 2020
From: DELAWARE TRUST COMPANY (THE SUCCESSOR TO U.S. BANK NATIONAL ASSOCIATION), AS COLLATERAL AGENT
To: WINDSTREAM ENTERPRISE HOLDINGS, LLC (F/K/A OPEN SUPPORT SYSTEMS, LLC); REVCHAIN SOLUTIONS, LLC; WINDSTREAM BUSINESS HOLDINGS, LLC (F/K/A EARTHLINK, LLC); WINDSTREAM NEW EDGE, LLC (F/K/A EARTHLINK BUSINESS, LLC); XETA TECHNOLOGIES, INC.
Reel/Frame 053983/0987 →
RELEASE OF SECURITY INTEREST REEL/FRAME 046564/0725 Recorded Oct 6, 2020
From: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS COLLATERAL AGENT [2024 NOTES]
To: OPEN SUPPORT SYSTEMS LLC; REVCHAIN SOLUTIONS, LLC; EARTHLINK, LLC; EARTHLINK BUSINESS HOLDINGS, LLC; XETA TECHNOLOGIES, INC.
Reel/Frame 053984/0013 →
RELEASE OF SECURITY INTEREST REEL/FRAME 046564/0718 Recorded Oct 6, 2020
From: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS COLLATERAL AGENT [2025 NOTES]
To: OPEN SUPPORT SYSTEMS LLC; REVCHAIN SOLUTIONS, LLC; EARTHLINK, LLC; EARTHLINK BUSINESS HOLDINGS, LLC; XETA TECHNOLOGIES, INC.
Reel/Frame 053984/0056 →
SECURITY INTEREST Recorded Aug 6, 2018
From: EARTHLINK, LLC; EARTHLINK BUSINESS HOLDINGS, LLC; OPEN SUPPORT SYSTEMS LLC; REVCHAIN SOLUTIONS, LLC; XETA TECHNOLOGIES, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION
Reel/Frame 046564/0725 →
SECURITY INTEREST Recorded Aug 6, 2018
From: EARTHLINK, LLC; EARTHLINK BUSINESS HOLDINGS, LLC; OPEN SUPPORT SYSTEMS LLC; REVCHAIN SOLUTIONS, LLC; XETA TECHNOLOGIES, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION
Reel/Frame 046564/0718 →
SECURITY INTEREST Recorded Dec 1, 2017
From: WINDSTREAM SERVICES, LLC; EARTHLINK, LLC; EARTHLINK BUSINESS, LLC; OPEN SUPPORT SYSTEMS, LLC; REVCHAIN SOLUTIONS, LLC; XETA TECHNOLOGIES, INC.
To: U.S. BANK NATIONAL ASSOCIATION
Reel/Frame 044270/0132 →
RELEASE OF SECURITY INTEREST Recorded Mar 16, 2017
From: REGIONS BANK
To: EARTHLINK, LLC
Reel/Frame 041602/0515 →
RELEASE OF SECURITY INTEREST Recorded Feb 28, 2017
From: REGIONS BANK
To: EARTHLINK BUSINESS, LLC (F/K/A EARTHLINK MANAGED SERVICES, LLC)
Reel/Frame 041399/0045 →
NOTICE OF GRANT OF SECURITY INTEREST IN PATENTS Recorded Jun 30, 2016
From: EARTHLINK BUSINESS, LLC
To: REGIONS BANK, AS COLLATERAL AGENT
Reel/Frame 039219/0779 →
SECURITY INTEREST Recorded Sep 4, 2015
From: EARTHLINK MANAGED SERVICES, LLC
To: REGIONS BANK, AS COLLATERAL AGENT
Reel/Frame 036554/0366 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 23, 2015
From: EARTHLINK MANAGED SERVICES, LLC
To: EARTHLINK BUSINESS, LLC
Reel/Frame 036163/0958 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 15, 2013
From: CENTERBEAM, INC.
To: EARTHLINK MANAGED SERVICES, LLC
Reel/Frame 030800/0661 →
RELEASE OF SECURITY INTEREST Recorded Aug 22, 2011
From: SILICON VALLEY BANK
To: CENTERBEAM, INC.
Reel/Frame 026785/0356 →
SECURITY AGREEMENT Recorded Jul 6, 2010
From: CENTERBEAM, INC.
To: SILICON VALLEY BANK
Reel/Frame 024640/0603 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 26, 2001
From: EPSTEIN, MARC; COLLINS, MARK; BARCLAY, PETER; KARNEY, BRIAN; RICART, GLENN
To: CENTERBEAM, INC.
Reel/Frame 011634/0684 →