IP Library Granted Patent US 8,544,059
Granted Patent B2
US 8,544,059 · App. 12/826,519 · Granted Sep 24, 2013

System and method for determining effective policy profiles in a client-server architecture

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,544,059
App. No.
12/826,519
Granted
Sep 24, 2013
Kind
B2
Abstract

A system and method for determining effective policy profiles, is presented herein. The system includes one or more client devices configured to initiate a request for at least one effective policy profile, a server mechanism communicatively coupled to the one or more client devices and configured to receive the request for the at least one effective policy profile and determine the at least effective policy profiles for each of the requesting one or more client devices, and a policy data storage component communicatively coupled to the server mechanism and configured to store a plurality of policy profiles. The plurality of plurality of policy profiles includes an association between each of the one or more client devices and one or more of the plurality of policy profiles.

Claims (37)

1. A server for determining effective policy profiles in a client-server architecture, comprising:

a local cache configured to store policy profiles having timeout values less than or equal to a predetermined value;

an integrated policy data store configured to store a policy profile hierarchy; and

one or more processors configured to:

receive a policy profile request from a client device;

determine whether the policy profiles stored in the local cache include an effective policy profile associated with the client device;

identify multiple policy profiles in the policy data store that are effective for the client device in response to determining that the policy profiles stored in the local cache do not include the effective policy profile associated with the client device;

select, based on distances within the policy profile hierarchy from the multiple identified policy profiles to a root associated with the policy data store, an identified policy profile from the multiple identified policy profiles in response to determining that the policy profiles stored in the local cache do not include an effective policy profile associated with the client device; and

return, to the client device, the selected policy profile in response to determining that the policy profiles stored in the local cache do not include the effective policy profile associated with the client device.

2. The server claim 1 , wherein the one or more processors are further configured to:

retrieve the effective policy profile associated with the client device from the local cache in response to determining that the policy profiles stored in the local cache do include the effective policy profile associated with the client device;

return the effective policy profile retrieved from the local cache to the client device in response to determining that the timeout value associated therewith does not exceed the predetermined value; and

search the policy data store to identify the multiple policy profiles that are effective for the client device in response to determining that the timeout value associated with the effective policy profile retrieved from the local cache exceeds the predetermined value.

3. The server claim 1 , wherein the one or more processors are configured to receive the policy profile request at a pre-scheduled time or in response to corruption associated with a local data store at the client device.

4. The server claim 1 , wherein the one or more processors are further configured to:

hierarchically order the multiple effective policy profiles identified in the policy data store according to the distances within the policy profile hierarchy from the multiple effective policy profiles to the root associated with the policy data store; and

remove one or more of the multiple effective policy profiles from the hierarchically ordered effective policy profiles in response to determining that the client device fails to meet one or more system requirements associated therewith or fails to validate that the one or more system requirements associated therewith can be met.

5. The server claim 4 , wherein the selected policy profile includes one of the hierarchically ordered effective policy profiles directly associated with the client device.

6. The server claim 4 , wherein the selected policy profile includes one of the hierarchically ordered effective policy profiles associated with a group to which the client device belongs when none of the hierarchically ordered effective policy profiles are directly associated with the client device.

7. The server of claim 4 , wherein selected policy profile includes one of the hierarchically ordered effective policy profiles associated with a container that contains the client device or a group to which the client device belongs when none of the hierarchically ordered effective policy profiles are directly associated with the client device or the group to which the client device belongs.

8. A computer-implemented method of determining effective policy profiles in a client-server architecture, the method being implemented in a computer system that includes one or more physical processors, the method comprising:

receiving a policy profile request from a client device;

determining whether policy profiles that are stored in a local cache of a server include an effective policy profile associated with the client device, wherein the stored policy profiles have timeout values less than or equal to a predetermined value;

identifying multiple policy profiles in a policy data store that are effective for the client device in response to determining that the policy profiles stored in the local cache do not include the effective policy profile associated with the client device, wherein the policy data store is configured to store a policy profile hierarchy;

selecting, based on distances within the policy profile hierarchy from the multiple identified policy profiles to a root associated with the policy data store, an identified policy profile from the multiple identified policy profiles that has a closest hierarchical distance to the client device in response to determining that the policy profiles stored in the local cache do not include an effective policy profile associated with the client device; and

returning, to the client device, the selected policy profile in response to determining that the policy profiles stored in the local cache do not include an effective policy profile associated with the client device.

9. The computer-implemented method of claim 8 , further comprising:

retrieving the effective policy profile associated with the client device from the local cache in response to determining that the policy profiles stored in the local cache do include the effective policy profile associated with the client device;

returning the effective policy profile retrieved from the local cache to the client device in response to determining that the timeout value associated therewith does not exceed the predetermined value; and

searching the policy data store to identify the multiple policy profiles that are effective for the client device in response to determining that the timeout value associated with the effective policy profile retrieved from the local cache exceeds the predetermined value.

10. The computer-implemented method of claim 8 , further comprising receiving the policy profile request at a pre-scheduled time or in response to corruption associated with a local data store at the client device.

11. The computer-implemented method of claim 8 , further comprising:

hierarchically ordering the multiple effective policy profiles identified in the policy data store according to the distances within the policy profile hierarchy from the multiple effective policy profiles to the root associated with the policy data store; and

removing one or more of the multiple effective policy profiles from the hierarchically ordered effective policy profiles in response to determining that the client device fails to meet one or more system requirements associated therewith or fails to validate that the one or more system requirements associated therewith can be met.

12. The computer-implemented method of claim 11 , wherein the selected policy profile includes one of the hierarchically ordered effective policy profiles directly associated with the client device.

13. The computer-implemented method of claim 11 , wherein the selected policy profile includes one of the hierarchically ordered effective policy profiles associated with a group to which the client device belongs when none of the hierarchically ordered effective policy profiles are directly associated with the client device.

14. The computer-implemented method of claim 11 , wherein selected policy profile includes one of the hierarchically ordered effective policy profiles associated with a container that contains the client device or a group to which the client device belongs when none of the hierarchically ordered effective policy profiles are directly associated with the client device or the group to which the client device belongs.

Assignments (16)
RELEASE OF SECURITY INTEREST REEL/FRAME 035656/0251 Recorded Feb 2, 2023
From: JPMORGAN CHASE BANK, N.A.
To: BORLAND SOFTWARE CORPORATION; ATTACHMATE CORPORATION; NETIQ CORPORATION; MICRO FOCUS (US), INC.; MICRO FOCUS SOFTWARE INC. (F/K/A NOVELL, INC.)
Reel/Frame 062623/0009 →
RELEASE OF SECURITY INTEREST REEL/FRAME 044183/0718 Recorded Feb 2, 2023
From: JPMORGAN CHASE BANK, N.A.
To: MICRO FOCUS LLC (F/K/A ENTIT SOFTWARE LLC); BORLAND SOFTWARE CORPORATION; MICRO FOCUS (US), INC.; SERENA SOFTWARE, INC; ATTACHMATE CORPORATION; MICRO FOCUS SOFTWARE INC. (F/K/A NOVELL, INC.); NETIQ CORPORATION
Reel/Frame 062746/0399 →
CORRECTIVE ASSIGNMENT TO CORRECT THE TO CORRECT TYPO IN APPLICATION NUMBER 10708121 WHICH SHOULD BE 10708021 PREVIOUSLY RECORDED ON REEL 042388 FRAME 0386. ASSIGNOR(S) HEREBY CONFIRMS THE NOTICE OF SUCCESSION OF AGENCY. Recorded Jul 26, 2018
From: BANK OF AMERICA, N.A., AS PRIOR AGENT
To: JPMORGAN CHASE BANK, N.A., AS SUCCESSOR AGENT
Reel/Frame 048793/0832 →
SECURITY INTEREST Recorded Oct 11, 2017
From: ATTACHMATE CORPORATION; BORLAND SOFTWARE CORPORATION; NETIQ CORPORATION; MICRO FOCUS (US), INC.; MICRO FOCUS SOFTWARE, INC.; ENTIT SOFTWARE LLC; ARCSIGHT, LLC; SERENA SOFTWARE, INC.
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 044183/0718 →
NOTICE OF SUCCESSION OF AGENCY Recorded May 2, 2017
From: BANK OF AMERICA, N.A., AS PRIOR AGENT
To: JPMORGAN CHASE BANK, N.A., AS SUCCESSOR AGENT
Reel/Frame 042388/0386 →
CHANGE OF NAME Recorded Sep 13, 2016
From: NOVELL, INC.
To: MICRO FOCUS SOFTWARE INC.
Reel/Frame 040020/0703 →
SECURITY INTEREST Recorded May 13, 2015
From: MICRO FOCUS (US), INC.; BORLAND SOFTWARE CORPORATION; ATTACHMATE CORPORATION; NETIQ CORPORATION; NOVELL, INC.
To: BANK OF AMERICA, N.A.
Reel/Frame 035656/0251 →
RELEASE OF SECURITY INTEREST RECORDED AT REEL/FRAME 028252/0216 Recorded Nov 24, 2014
From: CREDIT SUISSE AG
To: NOVELL, INC.
Reel/Frame 034470/0680 →
RELEASE OF SECURITY INTEREST RECORDED AT REEL/FRAME 028252/0316 Recorded Nov 24, 2014
From: CREDIT SUISSE AG
To: NOVELL, INC.
Reel/Frame 034469/0057 →
GRANT OF PATENT SECURITY INTEREST SECOND LIEN Recorded May 23, 2012
From: NOVELL, INC.
To: CREDIT SUISSE AG, AS COLLATERAL AGENT
Reel/Frame 028252/0316 →
GRANT OF PATENT SECURITY INTEREST FIRST LIEN Recorded May 23, 2012
From: NOVELL, INC.
To: CREDIT SUISSE AG, AS COLLATERAL AGENT
Reel/Frame 028252/0216 →
RELEASE OF SECURITY INTEREST IN PATENTS FIRST LIEN (RELEASES RF 026270/0001 AND 027289/0727) Recorded May 22, 2012
From: CREDIT SUISSE AG, AS COLLATERAL AGENT
To: NOVELL, INC.
Reel/Frame 028252/0077 →
RELEASE OF SECURITY IN PATENTS SECOND LIEN (RELEASES RF 026275/0018 AND 027290/0983) Recorded May 22, 2012
From: CREDIT SUISSE AG, AS COLLATERAL AGENT
To: NOVELL, INC.
Reel/Frame 028252/0154 →
GRANT OF PATENT SECURITY INTEREST (SECOND LIEN) Recorded May 13, 2011
From: NOVELL, INC.
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
Reel/Frame 026275/0018 →
GRANT OF PATENT SECURITY INTEREST Recorded May 12, 2011
From: NOVELL, INC.
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
Reel/Frame 026270/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 29, 2010
From: ROMANEK, DAVID A.; ELLIS, TY; LEWIS, MATTHEW EDWARD; MONTROY, DANIEL E.; LAKIS, DAVID MICHAEL; ESFARJANI, FARZAD; MUIR, KEN W.
To: NOVELL, INC.
Reel/Frame 024613/0212 →