IP Library Granted Patent US 8,565,726
Granted Patent B2
US 8,565,726 · App. 12/614,326 · Granted Oct 22, 2013

System, method and device for mediating connections between policy source servers, corporate repositories, and mobile devices

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,565,726
App. No.
12/614,326
Granted
Oct 22, 2013
Kind
B2
Abstract

The invention relates to providing policy from an integrated policy server to a mobile device, comprising identifying a policy in an integrated policy server applicable to the mobile device and supplying policy elements to policy transports for transmission to the mobile device. The invention also relates to providing policy from an integrated policy server to a mobile device, including identifying a policy in the integrated policy server applicable to the mobile device, determining whether the mobile device is in compliance with the policy, and supplying policy elements to policy transports for transmission to the mobile device when the mobile device is not in compliance with the policy. The invention further relates to controlling access to a data server by a mobile device, including identifying a policy in an integrated policy server applicable to the mobile device, and determining whether the mobile device is in compliance with the policy.

Claims (48)

1. A method for providing policy from an integrated policy server to a mobile device, the mobile device having policy compliance capabilities, the method comprising:

identifying the mobile device;

identifying a policy in the integrated policy server applicable to the mobile device based on the identity of the mobile device, the policy including one or more policy elements;

identifying one or more of the policy elements based on the policy compliance capabilities of the mobile device;

determining whether the mobile device is in compliance with the policy based on the identified policy elements; and

when the mobile device is not in compliance with the policy:

decomposing the policy into the one or more policy elements;

mapping the one or more policy elements to one or more device-specific policy elements compatible with the mobile device;

transforming the one or more policy elements to the one or more device-specific policy elements compatible with the mobile device;

grouping the device-specific policy elements according to one or more policy transports to form grouped device-specific policy elements, wherein the grouped device-specific policy elements are grouped to minimize the number of policy transports; and

supplying the grouped device-specific policy elements to the corresponding one or more policy transports for transmission to the mobile device.

2. The method of claim 1 , further comprising receiving an indicia that the policy was installed on the mobile device.

3. The method of claim 2 , further comprising reporting the installation of the identified policy elements on the mobile device to the integrated policy server.

4. The method of claim 2 , further comprising determining whether the mobile device is in compliance with the policy after receiving the indicia that the policy was installed on the mobile device.

5. The method of claim 4 , further comprising reporting the compliance of the mobile device to the policy to the integrated policy server when the mobile device is determined to be in compliance with the policy.

6. A system for providing policy from an integrated policy server to a mobile device, the mobile device having policy compliance capabilities, the system comprising:

a data server;

an integrated policy server; and

a policy proxy configured to:

identify the mobile device;

identify a policy in the integrated policy server applicable to the mobile device based on the identity of the mobile device, the policy including one or more policy elements;

identify one or more of the policy elements based on the policy compliance capabilities of the mobile device;

determine whether the mobile device is in compliance with the policy based on the identified policy elements; and

when the mobile device is not in compliance with the policy:

decompose the policy into the one or more policy elements;

map the one or more policy elements to one or more device-specific policy elements compatible with the mobile device;

transform the one or more policy elements to the one or more device-specific policy elements compatible with the mobile device;

group the device-specific policy elements according to one or more policy transports to form grouped device-specific policy elements, wherein the grouped device-specific policy elements are grouped to minimize the number of policy transports; and

supply the grouped device-specific policy elements to the corresponding one or more policy transports for transmission to the mobile device.

7. The system of claim 6 , wherein the policy proxy is further configured to receive an indicia that the policy was installed on the mobile device.

8. The system of claim 7 , wherein the policy proxy is further configured to report the installation of the identified policy elements on the mobile device to the integrated policy server.

9. The system of claim 7 , wherein the policy proxy is further configured to determine whether the mobile device is in compliance with the policy after receiving the indicia that the policy was installed on the mobile device.

10. The system of claim 9 , wherein the policy proxy is further configured to report the compliance of the mobile device to the policy to the integrated policy server when the mobile device is determined to be in compliance with the policy.

11. A device for providing policy from an integrated policy server to a mobile device, the mobile device having policy compliance capabilities, the device comprising a policy proxy configured to:

identify the mobile device;

identify a policy in the integrated policy server applicable to the mobile device based on the identity of the mobile device, the policy including one or more policy elements;

identify one or more of the policy elements based on the policy compliance capabilities of the mobile device;

determine whether the mobile device is in compliance with the policy based on the identified policy elements; and

when the mobile device is not in compliance with the policy:

decompose the policy into the one or more policy elements;

map the one or more policy elements to one or more device-specific policy elements compatible with the mobile device;

transform the one or more policy elements to the one or more device-specific policy elements compatible with the mobile device;

group the device-specific policy elements according to one or more policy transports to form grouped device-specific policy elements, wherein the grouped device-specific policy elements are grouped to minimize the number of policy transports; and

supply the grouped device-specific policy elements to the corresponding one or more policy transports for transmission to the mobile device.

12. The device of claim 11 , wherein the policy proxy is further configured to receive an indicia that the policy was installed on the mobile device.

13. The device of claim 12 , wherein the policy proxy is further configured to report the installation of the identified policy elements on the mobile device to the integrated policy server.

14. The device of claim 12 , wherein the policy proxy is further configured to determine whether the mobile device is in compliance with the policy after receiving the indicia that the policy was installed on the mobile device.

15. The device of claim 14 , wherein the policy proxy is further configured to report the compliance of the mobile device to the policy to the integrated policy server when the mobile device is determined to be in compliance with the policy.

Assignments (22)
ASSIGNMENT OF INTERCOMPANY FIRST LIEN PATENT SECURITY AGREEMENT Recorded Apr 14, 2025
From: UBS AG, STAMFORD BRANCH
To: ACQUIOM AGENCY SERVICES LLC
Reel/Frame 070840/0598 →
INTERCOMPANY FIRST LIEN PATENT SECURITY AGREEMENT Recorded Jan 24, 2025
From: SKYHIGH SECURITY LLC
To: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
Reel/Frame 070618/0001 →
RELEASE OF SECURITY INTEREST Recorded Oct 28, 2024
From: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
To: SKYHIGH SECURITY LLC
Reel/Frame 069272/0570 →
RELEASE OF SECURITY INTEREST Recorded Aug 16, 2024
From: STG PARTNERS, LLC
To: MUSARUBRA US LLC; SKYHIGH SECURITY LLC
Reel/Frame 068671/0435 →
FIRST LIEN PATENT SECURITY AGREEMENT Recorded Aug 15, 2024
From: MAGENTA SECURITY HOLDINGS LLC; SKYHIGH SECURITY LLC
To: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
Reel/Frame 068657/0666 →
SECURITY INTEREST Recorded Aug 1, 2024
From: MUSARUBRA US LLC; SKYHIGH SECURITY LLC
To: STG PARTNERS, LLC
Reel/Frame 068324/0731 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 30, 2022
From: MUSARUBRA US LLC
To: SKYHIGH SECURITY LLC
Reel/Frame 061032/0678 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 29, 2022
From: MCAFEE, LLC
To: MUSARUBRA US LLC
Reel/Frame 061007/0124 →
CORRECTIVE ASSIGNMENT TO CORRECT THE PROPERTY NUMBERS PREVIOUSLY RECORDED AT REEL: 057315 FRAME: 0001. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Apr 11, 2022
From: MCAFEE, LLC
To: MUSARUBRA US LLC
Reel/Frame 060878/0126 →
FIRST LIEN PATENT SECURITY AGREEMENT Recorded Jul 27, 2021
From: MUSARUBRA US LLC; SKYHIGH NETWORKS, LLC
To: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
Reel/Frame 057453/0053 →
SECOND LIEN PATENT SECURITY AGREEMENT Recorded Jul 27, 2021
From: MUSARUBRA US LLC; SKYHIGH NETWORKS, LLC
To: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
Reel/Frame 056990/0960 →
RELEASE OF SECURITY INTEREST Recorded Jul 26, 2021
From: MORGAN STANLEY SENIOR FUNDING, INC.
To: MCAFEE, LLC; SKYHIGH NETWORKS, LLC
Reel/Frame 057620/0102 →
RELEASE OF INTELLECTUAL PROPERTY COLLATERAL - REEL/FRAME 045055/0786 Recorded Oct 26, 2020
From: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
To: MCAFEE, LLC
Reel/Frame 054238/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE PATENT 6336186 PREVIOUSLY RECORDED ON REEL 045055 FRAME 786. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY INTEREST. Recorded Oct 22, 2020
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 055854/0047 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE PATENT 6336186 PREVIOUSLY RECORDED ON REEL 045056 FRAME 0676. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY INTEREST. Recorded Oct 22, 2020
From: MCAFEE, LLC
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 054206/0593 →
SECURITY INTEREST Recorded Jan 12, 2018
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 045055/0786 →
SECURITY INTEREST Recorded Jan 12, 2018
From: MCAFEE, LLC
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 045056/0676 →
CHANGE OF NAME AND ENTITY CONVERSION Recorded Aug 24, 2017
From: MCAFEE, INC.
To: MCAFEE, LLC
Reel/Frame 043665/0918 →
MERGER Recorded Jun 24, 2010
From: TD SECURITY, INC.
To: MCAFEE, INC.
Reel/Frame 024588/0138 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 26, 2010
From: WALKER, DAVID; SAPP, KEVIN; GOLDSCHLAG, DAVID
To: TD SECURITY, INC. D/B/A TRUST DIGITAL, INC.
Reel/Frame 024443/0008 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 30, 2010
From: WALKER, DAVID; SAPP, KEVIN; GOLDSCHLAG, DAVID
To: TD SECURITY, INC. D/B/A TRUST DIGITAL, INC.
Reel/Frame 024319/0026 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 7, 2010
From: WALKER, DAVID; SAPP, KEVIN; GOLDSCHLAG, DAVID
To: TRUST DIGITAL
Reel/Frame 023746/0552 →