IP Library Granted Patent US 7,860,486
Granted Patent B2
US 7,860,486 · App. 11/243,830 · Granted Dec 28, 2010

Key revocation in a mobile device

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 7,860,486
App. No.
11/243,830
Granted
Dec 28, 2010
Kind
B2
Abstract

A system for revoking access to a mobile device comprises a mobile device providing a plurality of applications and an agent providing a plurality of revocation procedures for revoking access by the mobile device to the plurality of applications running on the mobile device. Access to a first application is revoked by the agent using a first revocation procedure, and access to a second application is revoked by the agent using a second revocation procedure.

Claims (27)

1. A network services revocation system comprising:

a device configured to access a plurality of network-based services, the device further configured to store one or more authentication credentials for authenticating the device, and data associated with an access to a network-based service in the plurality of network-based services;

an agent provided by a network server, the agent configured to provide a plurality of revocation procedures for revoking access to the plurality of network-based services;

wherein the agent is configured to store for each network-based service, an identification of a revocation procedure in the plurality of revocation procedures associated with the network-based service,

wherein the agent is further configured to access the identification of the revocation procedure associated with a requested network-based service and to revoke access to the requested network-based service based on the revocation procedure,

wherein the agent is further configured to prevent re-authentication of the requested network-based service by revoking an authentication credential used for authenticating the device to the requested network-based service, and configured to cause deletion of data associated with previous access to the requested network-based service.

2. The system of claim 1 , wherein the agent is configured to revoke access to the requested service to prevent the transmission of data associated with the requested service.

3. The system of claim 1 , wherein the plurality of network-based services comprises retrieval and display of e-mail messages as a first service, and modification, forwarding and drafting of e-mail messages as a second service, and downloading and opening attachments to e-mail messages as a third service.

4. The system of claim 1 , wherein the agent revokes access to the requested network-based service based on at least one of a failure of a user to enter a first pass code, a failure of the user to enter a second pass code, a failure of the user to biometrically authenticate, a failure to authenticate a geographic location, and/or a failure to meet a certain time requirement.

5. A system for revoking access to a plurality of network-based services, comprising:

a device configured to access the plurality of network-based services, the device further configured to store one or more authentication credentials for authenticating the device, and data associated with an access to a network-based service in the plurality of network-based services;

an agent provided by a network server, the agent configured to provide a plurality of revocation procedures for revoking access to the plurality of network-based services;

wherein the agent is configured to revoke access to a first one of the plurality of services using a first set of the plurality of revocation procedures;

wherein the agent is further configured to revoke access to a second one of the plurality of services using a second set of the plurality of revocation procedures;

wherein a revocation procedure in the first set of the plurality of revocation procedures is based on authentication procedures; and

wherein the agent is further configured to prevent re-authentication of a revoked network-based service in the plurality of network-based services by deleting an authentication credential stored at the device used for authenticating the device to the revoked network-based service and configured to cause deletion of data associated with previous access to the revoked network-based service.

6. The system of claim 5 ,

wherein a set of the plurality of network-based services provide data from the network.

7. The system of claim 6 , wherein access to a particular one of the plurality of network-based services allows data to be sent between the network and a mobile device.

8. The system of claim 5 , wherein the plurality of network-based services comprises e-mail services.

9. The system of claim 8 , wherein the plurality of network-based services comprises retrieval and display of e-mail messages as one service, and wherein the plurality of network-based services further comprises modification, forwarding and drafting of e-mail messages as another service.

10. The system of claim 8 , wherein the plurality of network-based services comprises downloading and opening attachments to e-mail messages as one service.

11. The system of claim 5 , wherein the plurality of revocation procedures comprises a failure of a user to enter a first pass code as one revocation procedure, and a failure of the user to enter a second pass code as another revocation procedure.

12. The system of claim 5 , wherein the plurality of revocation procedures comprises a failure of a user to biometrically authenticate.

13. The system of claim 5 , wherein the plurality of revocation procedures comprises a failure to authenticate a geographic location of the mobile device.

14. The system of claim 5 , wherein the plurality of revocation procedures comprises time based revocation procedures.

15. The system of claim 1 , wherein a revocation procedure in the plurality of revocation procedures is based on authentication procedures.

Assignments (7)
CORRECTIVE ASSIGNMENT TO CORRECT THE PROPERTY NUMBERS PREVIOUSLY RECORDED AT REEL: 47630 FRAME: 344. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Mar 21, 2019
From: AVAGO TECHNOLOGIES GENERAL IP (SINGAPORE) PTE. LTD.
To: AVAGO TECHNOLOGIES INTERNATIONAL SALES PTE. LIMITED
Reel/Frame 048883/0267 →
CORRECTIVE ASSIGNMENT TO CORRECT THE EFFECTIVE DATE OF MERGER TO 9/5/2018 PREVIOUSLY RECORDED AT REEL: 047196 FRAME: 0687. ASSIGNOR(S) HEREBY CONFIRMS THE MERGER. Recorded Oct 29, 2018
From: AVAGO TECHNOLOGIES GENERAL IP (SINGAPORE) PTE. LTD.
To: AVAGO TECHNOLOGIES INTERNATIONAL SALES PTE. LIMITED
Reel/Frame 047630/0344 →
MERGER Recorded Oct 4, 2018
From: AVAGO TECHNOLOGIES GENERAL IP (SINGAPORE) PTE. LTD.
To: AVAGO TECHNOLOGIES INTERNATIONAL SALES PTE. LIMITED
Reel/Frame 047196/0687 →
TERMINATION AND RELEASE OF SECURITY INTEREST IN PATENTS Recorded Feb 3, 2017
From: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
To: BROADCOM CORPORATION
Reel/Frame 041712/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 1, 2017
From: BROADCOM CORPORATION
To: AVAGO TECHNOLOGIES GENERAL IP (SINGAPORE) PTE. LTD.
Reel/Frame 041706/0001 →
PATENT SECURITY AGREEMENT Recorded Feb 11, 2016
From: BROADCOM CORPORATION
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 037806/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 4, 2005
From: FRANK, EDWARD H.; BUER, MARK
To: BROADCOM CORPORATION
Reel/Frame 017070/0737 →