IP Library Granted Patent US 8,429,721
Granted Patent B1
US 8,429,721 · App. 12/604,902 · Granted Apr 23, 2013

Method and system for performing a security check

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,429,721
App. No.
12/604,902
Granted
Apr 23, 2013
Kind
B1
Abstract

An access request is transmitted from a first device to a second device causing one or more security functions to be executed on the first device. Whether to grant the access request is based on a result of the executed one or more security functions.

Claims (54)

1. A method performed by a server, the method comprising:

receiving, based on receiving an indication of a uniform resource locator (URL) entered by a user of a remote device, an indication that the user is attempting to establish a session with the server;

using, by the server, the URL to retrieve a first authorization policy associated with the session from a first data structure;

causing, by the server, a first security checker, associated with the first authorization policy, to be executed on the remote device;

receiving, at the server, a user ID associated with the user;

identifying, by the server, a second authorization policy associated with the user ID;

determining, by the server device, that the second authorization policy is not the same as the first authorization policy;

causing, by the server, a second security checker, associated with the second authorization policy, to be executed on the remote device when the second authorization policy is not the same as the first authorization policy; and

determining, by the server, a level of access for the user based on a result of the execution of the first security checker or the second security checker.

2. The method of claim 1 , where identifying the second authorization policy associated with the user ID comprises:

using the user ID to look up the second authorization policy in a second data structure.

3. The method of claim 1 , further comprising:

receiving a first report associated with execution of the first security checker;

receiving a second report associated with execution of the second security checker; and

determining the level of access based on the first report or second report.

4. The method of claim 1 , further comprising:

determining a level of access for the user based on a result of the execution of the first security checker when the second authorization policy is the same as the first authorization policy.

5. The method of claim 1 , further comprising:

determining a level of access for the user based on a result of the execution of the second security checker when the second authorization policy is not the same as the first authorization policy.

6. A system comprising:

a server to:

receive, based on receiving an indication of a uniform resource locator (URL) entered by a user of a remote device, an indication that the user is attempting to establish a session;

retrieve, using the URL, a first authorization policy, associated with the session, from a first data structure;

cause a first security checker, associated with the first authorization policy, to be executed on the remote device;

receive a user ID associated with the user;

identify a second authorization policy associated with the user ID;

determine that the second authorization policy is not the same as the first authorization policy;

cause a second security checker, associated with the second authorization policy, to be executed on the remote device when the second authorization policy is not the same as the first authorization policy; and

determine a level of access for the user based on a result of the execution of the first security checker or the second security checker.

7. The system of claim 6 , where when identifying the second authorization policy associated with the user ID, the server is to:

use the user ID to look up the second authorization policy in a second data structure.

8. The system of claim 6 , where the server is further to:

receive a first report associated with execution of the first security checker;

receive a second report associated with execution of the second security checker; and

determine the level of access based on the first report or second report.

9. The system of claim 6 , where the server is further to:

determine a level of access for the user based on a result of the execution of the first security checker when the second authorization policy is the same as the first authorization policy.

10. The system of claim 6 , where the server is further to:

determine a level of access for the user based on a result of the execution of the second security checker when the second authorization policy is not the same as the first authorization policy.

11. A method comprising:

configuring, by a security system and based on an identity of a user attempting to access a remote device, a group of security modules to add one or more independently produced security modules,

the security modules, of the group of security modules, each implementing one or more security functions that are to be executed on the remote device,

the one or more independently produced security modules being produced by entities different than an entity that produced the security system,

the group of security modules including:

a package manifest section that includes a name of a provider of the security module,

a security module section that includes an identification of one or more policies supported by the security module, and

a security framework section that includes a program interface for the security module;

transmitting, by the security system, the group of security modules to the remote device for execution of the one or more security functions implemented by the security modules at the remote device; and

determining, by the security system, whether to grant, to the user access to the remote device based on a result of the executed one or more security functions.

12. The method of claim 11 , further comprising:

receiving a result of the one or more executed security functions.

13. The method of claim 11 , where the group of security modules further includes:

a security module section that includes an identification of one or more policies supported by the security module.

14. The method of claim 11 , where the security functions in the group of security modules relate to one or more of spyware detection, virus detection, or detection of missing software patches.

Assignments (15)
CORRECTIVE ASSIGNMENT TO CORRECT THE PROPERTY 14633493 WHICH WAS ENTERED INCORRECTLY AS 14633793 PREVIOUSLY RECORDED ON REEL 71176 FRAME 315. ASSIGNOR(S) HEREBY CONFIRMS THE FIRST LIEN NEWCO SECURITY AGREEMENT. Recorded Nov 10, 2025
From: PULSE SECURE, LLC; IVANTI, INC.; IVANTI US LLC; IVANTI SECURITY HOLDINGS LLC
To: MORGAN STANLEY SENIOR FUNDING, INC., AS COLLATERAL AGENT
Reel/Frame 073818/0515 →
FIRST LIEN NEWCO SECURITY AGREEMENT Recorded May 5, 2025
From: PULSE SECURE, LLC; IVANTI, INC.; IVANTI US LLC; IVANTI SECURITY HOLDINGS LLC
To: MORGAN STANLEY SENIOR FUNDING, INC., AS COLLATERAL AGENT
Reel/Frame 071176/0315 →
SECURITY INTEREST Recorded May 3, 2025
From: PULSE SECURE LLC
To: ALTER DOMUS (US) LLC
Reel/Frame 071165/0027 →
NOTICE OF SUCCESSION OF AGENCY FOR SECURITY INTEREST AT REEL/FRAME 054665/0873 Recorded Apr 29, 2025
From: BANK OF AMERICA, N.A., AS RESIGNING AGENT
To: ALTER DOMUS (US) LLC, AS SUCCESSOR AGENT
Reel/Frame 071123/0386 →
SECURITY INTEREST Recorded Dec 9, 2020
From: CELLSEC, INC.; PULSE SECURE, LLC; IVANTI, INC.; MOBILEIRON, INC.; IVANTI US LLC
To: MORGAN STANLEY SENIOR FUNDING, INC., AS COLLATERAL AGENT
Reel/Frame 054665/0062 →
SECURITY INTEREST Recorded Dec 9, 2020
From: CELLSEC, INC.; PULSE SECURE, LLC; INVANTI, INC.; MOBILEIRON, INC.; INVANTI US LLC
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 054665/0873 →
RELEASE OF SECURITY INTEREST : RECORDED AT REEL/FRAME - 053638-0220 Recorded Dec 1, 2020
From: KKR LOAN ADMINISTRATION SERVICES LLC
To: PULSE SECURE, LLC
Reel/Frame 054559/0368 →
SECURITY INTEREST Recorded Aug 29, 2020
From: PULSE SECURE, LLC
To: KKR LOAN ADMINISTRATION SERVICES LLC, AS COLLATERAL AGENT
Reel/Frame 053638/0220 →
RELEASE OF SECURITY INTEREST RECORDED AT REEL/FRAME 042380/0859 Recorded Aug 29, 2020
From: CERBERUS BUSINESS FINANCE, LLC, AS AGENT
To: PULSE SECURE, LLC
Reel/Frame 053638/0259 →
RELEASE OF SECURITY INTEREST Recorded Jul 21, 2020
From: JUNIPER NETWORKS, INC.
To: PULSE SECURE, LLC; SMOBILE SYSTEMS, INC.
Reel/Frame 053271/0307 →
RELEASE OF SECURITY INTEREST RECORDED AT REEL 037338, FRAME 0408 Recorded May 1, 2017
From: US BANK NATIONAL ASSOCIATION
To: PULSE SECURE, LLC
Reel/Frame 042381/0568 →
GRANT OF SECURITY INTEREST PATENTS Recorded May 1, 2017
From: PULSE SECURE, LLC
To: CERBERUS BUSINESS FINANCE, LLC, AS COLLATERAL AGENT
Reel/Frame 042380/0859 →
SECURITY INTEREST Recorded Dec 21, 2015
From: PULSE SECURE, LLC
To: U.S BANK NATIONAL ASSOCIATION, AS COLLATERAL AGENT
Reel/Frame 037338/0408 →
SECURITY INTEREST Recorded Dec 30, 2014
From: PULSE SECURE, LLC; SMOBILE SYSTEMS, INC.
To: JUNIPER NETWORKS, INC.
Reel/Frame 034713/0950 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 24, 2014
From: JUNIPER NETWORKS, INC.
To: PULSE SECURE, LLC
Reel/Frame 034045/0717 →