IP Library Granted Patent US 7,478,420
Granted Patent B2
US 7,478,420 · App. 11/926,436 · Granted Jan 13, 2009

Administration of protection of data accessible by a mobile device

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 7,478,420
App. No.
11/926,436
Granted
Jan 13, 2009
Kind
B2
Abstract

The protection of data on a client mobile computing device by a server computer system such as within an enterprise network or on a separate mobile computing device is described. Security tools are described that provide different security policies to be enforced based on a location associated with a network environment in which a mobile device is operating. Methods for detecting the location of the mobile device are described. Additionally, the security tools may also provide for enforcing different policies based on security features. Examples of security features include the type of connection, wired or wireless, over which data is being transferred, the operation of anti-virus software, or the type of network adapter card. The different security policies provide enforcement mechanisms that may be tailored based upon the detected location and/or active security features associated with the mobile device. Examples of enforcement mechanisms are adaptive port blocking, file hiding and file encryption.

Claims (9)

1. A method for detecting a network location of a mobile computing device for use in protecting data accessible to the mobile device, the method comprising:

setting a plurality of predefined network parameters corresponding to possible locations of a networked environment in which the mobile computing device may be operating;

by the mobile computing device, obtaining a set N of actual network parameters corresponding to the networked environment in which the mobile computing device is actually presently operating, the set N of actual network parameters corresponding to the predefined network parameters;

setting per each of the possible locations of the networked environment in which the mobile computing device may be operating a minimum subset M of the set N of actual network parameters that may be used to correctly identify the location of the mobile computing device, wherein M≦N, N>3 and M≧2;

comparing the obtained said set N of actual network parameters to the plurality of predefined network parameters; and

only by the mobile computing device, determining a present location of the mobile computing device based on the comparing such that if the minimum subset M of the set N of actual parameters match a corresponding number of any of the network parameters of the predefined network parameters, concluding the present location of the mobile computing device has been successfully determined, and changing a security policy based on the determined present location; and

if the minimum subset M of the set N of actual parameters do not match the corresponding number of the any of the network parameters of the predefined network parameters, concluding the present location of the mobile computing device has not been successfully determined and setting the present location to a default location and a default security policy.

2. The method of claim 1 , further including compiling historical network parameters for each location the mobile computing device has been concluded to have been operating in, and locally using the historical network parameters to override determinations of the present location of the mobile computing device, the historical network parameters being logged and maintained only locally within the mobile computing device.

3. The method of claim 1 , further including compiling historical network parameters for each location the mobile computing device has been concluded to have been operating in, and locally using the historical network parameters to verify determinations of the present location of the mobile computing device, the historical network parameters being logged and maintained only locally within the mobile computing device.

Assignments (6)
RELEASE OF SECURITY INTEREST RECORDED AT REEL/FRAME 028252/0316 Recorded Nov 24, 2014
From: CREDIT SUISSE AG
To: NOVELL, INC.
Reel/Frame 034469/0057 →
RELEASE OF SECURITY INTEREST RECORDED AT REEL/FRAME 028252/0216 Recorded Nov 24, 2014
From: CREDIT SUISSE AG
To: NOVELL, INC.
Reel/Frame 034470/0680 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 27, 2012
From: CPTN HOLDINGS LLC
To: APPLE INC.
Reel/Frame 028856/0230 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 24, 2012
From: NOVELL, INC.
To: CPTN HOLDINGS LLC
Reel/Frame 028841/0047 →
GRANT OF PATENT SECURITY INTEREST FIRST LIEN Recorded May 23, 2012
From: NOVELL, INC.
To: CREDIT SUISSE AG, AS COLLATERAL AGENT
Reel/Frame 028252/0216 →
GRANT OF PATENT SECURITY INTEREST SECOND LIEN Recorded May 23, 2012
From: NOVELL, INC.
To: CREDIT SUISSE AG, AS COLLATERAL AGENT
Reel/Frame 028252/0316 →