IP Library Granted Patent US 8,010,687
Granted Patent B2
US 8,010,687 · App. 12/783,400 · Granted Aug 30, 2011

Workstation virus lockdown in a distributed environment

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,010,687
App. No.
12/783,400
Granted
Aug 30, 2011
Kind
B2
Abstract

Systems and methods for insuring that a client computer has up-to-date virus protection are provided, and include initiating a boot sequence pursuant to a boot image on a client computer for accessing a network, accessing a remote management server according to a preliminary instruction from the boot image, determining whether the client includes a latest virus file and forwarding the latest virus file if the client does not include the latest virus file.

Claims (42)

1. A method for workstation virus lockdown in a distributed environment, comprising:

receiving, at a server, a request to access a network from a client computer prior to a process for booting a disk image on the client computer, wherein the request received from the client computer identifies a current virus file locally stored on the client computer;

forwarding, from the server, a latest virus file resident on the server to the client computer in response determining that the current virus file locally stored on the does not correspond to the latest virus file resident on the server;

determining, at the server, whether the client computer has performed a local virus scan with the latest virus file, wherein the server determines whether the client computer has performed the local virus scan with the latest virus file during the process for booting the disk image on the client computer; and

providing the client computer access to the network in response to determining that the client computer has performed the local virus scan with the latest virus file.

2. The method of claim 1 , wherein providing the client computer access to the network further includes:

notifying a Dynamic Host Configuration Protocol server that the client computer has performed the local virus scan with the latest virus file; and

forwarding an address on the network from the Dynamic Host Configuration Protocol server to the client computer, wherein the client computer accesses the network from the forwarded address.

3. The method of claim 1 , further comprising denying the client computer access to the network in response to determining that the client computer has not performed the local virus scan with the latest virus file.

4. The method of claim 1 , further comprising forwarding an alternate boot image from the server to the client computer in response to determining that the client computer has not performed the local virus scan with the latest virus file.

5. The method of claim 4 , wherein the alternate boot image comprises a partial boot image having one or more boot instructions that load browser software enabling the client computer to download the latest virus file resident on the server.

6. The method of claim 5 , wherein the client computer repeats the process for booting the disk image on the client computer in response downloading the latest virus file resident on the server with the browser software loaded by the one or more boot instructions in the partial boot image.

7. The method of claim 1 , further comprising:

notifying a Dynamic Host Configuration Protocol server to grant the client computer a restricted sub-net address on the network in response to determining that the client computer has not performed the local virus scan with the latest virus file; and

forwarding the restricted sub-net address from the Dynamic Host Configuration Protocol server to the client computer, wherein the restricted sub-net address grants the client computer limited access to the network.

8. The method of claim 7 , wherein the limited access to the network enables the client computer to download the latest virus file.

9. A system for workstation virus lockdown in a distributed environment, comprising:

a computer-readable storage medium containing a latest virus file; and

a server communicatively coupled to the computer-readable storage medium, wherein the server is configured to:

receive a request to access a network from a client computer prior to a process for booting a disk image on the client computer, wherein the request received from the client computer identifies a current virus file locally stored on the client computer;

forward the latest virus file stored in the computer-readable storage medium to the client computer in response determining that the current virus file locally stored on the does not correspond to the latest virus file;

determine whether the client computer has performed a local virus scan with the latest virus file, wherein the server determines whether the client computer has performed the local virus scan with the latest virus file during the process for booting the disk image on the client computer; and

provide the client computer access to the network in response to determining that the client computer has performed the local virus scan with the latest virus file.

10. The system of claim 9 , wherein to provide the client computer access to the network, the server is further configured to:

notify a Dynamic Host Configuration Protocol server that the client computer has performed the local virus scan with the latest virus file; and

forward an address on the network from the Dynamic Host Configuration Protocol server to the client computer, wherein the client computer accesses the network from the forwarded address.

11. The system of claim 9 , wherein the server is further configured to deny the client computer access to the network in response to determining that the client computer has not performed the local virus scan with the latest virus file.

12. The system of claim 9 , wherein the server is further configured to forward an alternate boot image to the client computer in response to determining that the client computer has not performed the local virus scan with the latest virus file.

13. The system of claim 12 , wherein the alternate boot image comprises a partial boot image having one or more boot instructions that load browser software enabling the client computer to download the latest virus file.

14. The system of claim 13 , wherein the client computer repeats the process for booting the disk image on the client computer in response downloading the latest virus file with the browser software loaded by the one or more boot instructions in the partial boot image.

15. The system of claim 9 , wherein the server is further configured to:

notify a Dynamic Host Configuration Protocol server to grant the client computer a restricted sub-net address on the network in response to determining that the client computer has not performed the local virus scan with the latest virus file; and

forward the restricted sub-net address from the Dynamic Host Configuration Protocol server to the client computer, wherein the restricted sub-net address grants the client computer limited access to the network.

16. The system of claim 15 , wherein the limited access to the network enables the client computer to download the latest virus file.

17. A method for workstation virus lockdown in a distributed environment, comprising:

communicating, from a client computer, a request to access a network to a server prior to a process for booting a disk image on the client computer, wherein the request communicated from the client computer identifies a current virus file locally stored on the client computer;

receiving, from the server, a latest virus file resident on the server at the client computer, wherein the server forwards the latest virus file to the client computer in response determining that the current virus file locally stored on the does not correspond to the latest virus file resident on the server;

performing, at the client computer, a local virus scan with the latest virus file received from the server; and

executing the process for booting the disk image on the client computer, wherein the server grants the client computer access to the network during the process for booting the disk image on the client computer in response to determining that the client computer has performed the local virus scan with the latest virus file.

18. The method of claim 17 , wherein the server denies the client computer access to the network in response to determining that the client computer has not performed the local virus scan with the latest virus file.

19. The method of claim 17 , wherein the server forwards an alternate boot image to the client computer in response to determining that the client computer has not performed the local virus scan with the latest virus file.

20. The method of claim 17 , wherein the server forwards a restricted sub-net address on the network to the client computer in response to determining that the client computer has not performed the local virus scan with the latest virus file, and wherein the restricted sub-net address grants the client computer limited access to the network.

Assignments (16)
RELEASE OF SECURITY INTEREST REEL/FRAME 035656/0251 Recorded Feb 2, 2023
From: JPMORGAN CHASE BANK, N.A.
To: BORLAND SOFTWARE CORPORATION; ATTACHMATE CORPORATION; NETIQ CORPORATION; MICRO FOCUS (US), INC.; MICRO FOCUS SOFTWARE INC. (F/K/A NOVELL, INC.)
Reel/Frame 062623/0009 →
RELEASE OF SECURITY INTEREST REEL/FRAME 044183/0718 Recorded Feb 2, 2023
From: JPMORGAN CHASE BANK, N.A.
To: MICRO FOCUS LLC (F/K/A ENTIT SOFTWARE LLC); BORLAND SOFTWARE CORPORATION; MICRO FOCUS (US), INC.; SERENA SOFTWARE, INC; ATTACHMATE CORPORATION; MICRO FOCUS SOFTWARE INC. (F/K/A NOVELL, INC.); NETIQ CORPORATION
Reel/Frame 062746/0399 →
CORRECTIVE ASSIGNMENT TO CORRECT THE TO CORRECT TYPO IN APPLICATION NUMBER 10708121 WHICH SHOULD BE 10708021 PREVIOUSLY RECORDED ON REEL 042388 FRAME 0386. ASSIGNOR(S) HEREBY CONFIRMS THE NOTICE OF SUCCESSION OF AGENCY. Recorded Jul 26, 2018
From: BANK OF AMERICA, N.A., AS PRIOR AGENT
To: JPMORGAN CHASE BANK, N.A., AS SUCCESSOR AGENT
Reel/Frame 048793/0832 →
SECURITY INTEREST Recorded Oct 11, 2017
From: ATTACHMATE CORPORATION; BORLAND SOFTWARE CORPORATION; NETIQ CORPORATION; MICRO FOCUS (US), INC.; MICRO FOCUS SOFTWARE, INC.; ENTIT SOFTWARE LLC; ARCSIGHT, LLC; SERENA SOFTWARE, INC.
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 044183/0718 →
NOTICE OF SUCCESSION OF AGENCY Recorded May 2, 2017
From: BANK OF AMERICA, N.A., AS PRIOR AGENT
To: JPMORGAN CHASE BANK, N.A., AS SUCCESSOR AGENT
Reel/Frame 042388/0386 →
CHANGE OF NAME Recorded Sep 13, 2016
From: NOVELL, INC.
To: MICRO FOCUS SOFTWARE INC.
Reel/Frame 040020/0703 →
SECURITY INTEREST Recorded May 13, 2015
From: MICRO FOCUS (US), INC.; BORLAND SOFTWARE CORPORATION; ATTACHMATE CORPORATION; NETIQ CORPORATION; NOVELL, INC.
To: BANK OF AMERICA, N.A.
Reel/Frame 035656/0251 →
RELEASE OF SECURITY INTEREST RECORDED AT REEL/FRAME 028252/0216 Recorded Nov 24, 2014
From: CREDIT SUISSE AG
To: NOVELL, INC.
Reel/Frame 034470/0680 →
RELEASE OF SECURITY INTEREST RECORDED AT REEL/FRAME 028252/0316 Recorded Nov 24, 2014
From: CREDIT SUISSE AG
To: NOVELL, INC.
Reel/Frame 034469/0057 →
GRANT OF PATENT SECURITY INTEREST FIRST LIEN Recorded May 23, 2012
From: NOVELL, INC.
To: CREDIT SUISSE AG, AS COLLATERAL AGENT
Reel/Frame 028252/0216 →
GRANT OF PATENT SECURITY INTEREST SECOND LIEN Recorded May 23, 2012
From: NOVELL, INC.
To: CREDIT SUISSE AG, AS COLLATERAL AGENT
Reel/Frame 028252/0316 →
RELEASE OF SECURITY INTEREST IN PATENTS FIRST LIEN (RELEASES RF 026270/0001 AND 027289/0727) Recorded May 22, 2012
From: CREDIT SUISSE AG, AS COLLATERAL AGENT
To: NOVELL, INC.
Reel/Frame 028252/0077 →
RELEASE OF SECURITY IN PATENTS SECOND LIEN (RELEASES RF 026275/0018 AND 027290/0983) Recorded May 22, 2012
From: CREDIT SUISSE AG, AS COLLATERAL AGENT
To: NOVELL, INC.
Reel/Frame 028252/0154 →
GRANT OF PATENT SECURITY INTEREST (SECOND LIEN) Recorded May 13, 2011
From: NOVELL, INC.
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
Reel/Frame 026275/0018 →
GRANT OF PATENT SECURITY INTEREST Recorded May 12, 2011
From: NOVELL, INC.
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
Reel/Frame 026270/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 19, 2010
From: COX, RICHARD H.; BEUS, DAVID; ANDERSON, BRAD R.; HAEGER, EDWARD S.; BUCKLEY, MARTIN
To: NOVELL, INC.
Reel/Frame 024410/0917 →