IP Library Granted Patent US 8,341,707
Granted Patent B2
US 8,341,707 · App. 13/079,282 · Granted Dec 25, 2012

Near real-time multi-party task authorization access control

Assignee: Infinite Bay Telecom Limited Liability Company
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,341,707
App. No.
13/079,282
Granted
Dec 25, 2012
Kind
B2
Abstract

A method and apparatus are used in determining authorization to perform tasks in a computer environment, and specifically requiring multiple parties to authorize a task before access is granted. The present system provides for substantially real time communication to a second party authorizer when a task owner is attempting to perform a task.

Claims (37)

1. A method, comprising:

a server receiving, from an administration system, a list of resources and respective authorizers eligible to grant requests for access to the resources;

the server receiving, from a computing device, a request for access to a resource of the computing device;

the server requesting authorization for the request from at least two authorizers, wherein the list identifies the at least two authorizers as being eligible to grant the request for access to the resource; and

in response to receipt of the authorization for the request, the server sending, to the computing device, indication that the request has been authorized by the at least two authorizers.

2. The method of claim 1 , wherein the server requests authorization for the request by contacting an authorizer via an electronic message.

3. The method of claim 1 , wherein the server requests authorization for the request by contacting an authorizer via a phone notification.

4. The method of claim 1 , wherein the request includes a request to access a specified file on the computing device.

5. The method of claim 1 , wherein a plurality of servers including the server receive lists from the administration system, wherein the plurality of servers are configured to request authorization for requests from authorizers; and

wherein the method further comprises the server identifying, to the computing device, resources of the computing device for which requests are to be authorized.

6. The method of claim 1 , wherein the list specifies, for a given authorizer, a preferred order of contact methods for that authorizer.

7. The method of claim 1 , wherein the list specifies, for a given authorizer, when that authorizer is available to grant authorization for requests.

8. The method of claim 1 , wherein the request is a request to modify a particular field of a database maintained by the computing device.

9. A server system, comprising:

a processor; and

memory having stored therein program instructions executable by the processor to:

receive, from an administration system, a list of tasks and respective authorizers eligible to grant requests for performance of the tasks;

receive a request for performance of a task by a computing device;

request authorization for performance of the task from at least two of a set of authorizers, wherein the at least two authorizers are specified by the list as being eligible to grant the request for performance of the task; and

in response to receiving the authorization, send, to the computing device, indication that performance of the task has been authorized.

10. The server system of claim 9 , wherein performance of the task includes executing a particular command on the computing device.

11. The server system of claim 9 , wherein the program instructions are executable to:

receive a list provided from the administration system to a plurality of servers, wherein the plurality of servers are configured to request authorization for performances of tasks by computing devices.

12. The server system of claim 9 , wherein the request is to access a particular file on the computing device, and wherein the list specifies at least two authorizers able to grant authorization for accessing the particular file.

13. The server system of claim 9 , wherein the list specifies when a given authorizer is available to grant authorization for performance of a task and a preferred method of contact for the given authorizer.

14. The server system of claim 9 , wherein the program instructions are further executable to:

identify, to the computing device, a set of tasks that require authorization before being performed by the computing device.

15. A method, comprising:

a computing device receiving a request for a resource of the computing device;

the computing device notifying a server of the request for the resource of the computing device, wherein the server stores a list received from an administration system, wherein the list specifies resources and respective authorizers eligible to grant requests for access to the resources;

the computing device receiving indication of authorization for the request from the server, wherein the server identifies at least two authorizers based on the list and the requested resource, and wherein the computing device receives indication of the authorization for the request in response to the at least two authorizers granting authorization for the request; and

in response to receipt of indication of the authorization for the request, the computing device granting access to the resource.

16. The method of claim 15 , wherein the resource is a database maintained by the computing device, and wherein the request is a request to modify a particular field of the database.

17. The method of claim 15 , wherein the resource is a file in a file system of the computing device, and wherein the request is a request to read from or write to the file.

18. The method of claim 15 , further comprising:

the computing device receiving, from the server, a list of resources identified as requiring authorization from a plurality of authorizers; and

in response to receiving the request, the computing device examining the list received from the server to determine whether to notify the server of the received request.

Assignments (4)
MERGER Recorded Jan 20, 2016
From: INFINITE BAY TELECOM LIMITED LIABILITY COMPANY
To: GULA CONSULTING LIMITED LIABILITY COMPANY
Reel/Frame 037539/0507 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 12, 2011
From: CARLEY, JEFFREY ALAN
To: ENGEDI TECHNOLOGIES, INC.
Reel/Frame 027052/0853 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 2, 2011
From: ENGEDI TECHNOLOGIES, INC.
To: INFINITE BAY TELECOM LIMITED LIABILITY COMPANY
Reel/Frame 026849/0251 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 4, 2011
From: CARLEY, JEFFREY A.
To: ENGEDI TECHNOLOGIES, INC.
Reel/Frame 026070/0046 →
Continuity (4)
Division 12394342 · Feb 27, 2009
Continuation 10957547 · Oct 1, 2004
Provisional Application 60508444 · Oct 2, 2003
Related Publication 20110179470A1 · Jul 21, 2011