IP Library Granted Patent US 8,656,016
Granted Patent B1
US 8,656,016 · App. 13/659,527 · Granted Feb 18, 2014

Managing application execution and data access on a device

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,656,016
App. No.
13/659,527
Granted
Feb 18, 2014
Kind
B1
Abstract

Some aspects of what is described here relate to managing application execution and data access on a mobile device. A request to access data is received from an application associated with a first perimeter on a device. The data is associated with a second, different perimeter on the device and has a data type. It is determined, based on the data type, that a management policy associated with the first perimeter permits the application to access the data independent of a second, different management policy assigned to the second perimeter. Based on the determining, the application is provided access to the data.

Claims (34)

1. A method comprising:

configuring a first management policy associated with a first perimeter on a device to permit an application associated with the first perimeter to access a type of data associated with a second, different perimeter on the device, the first management policy being configured to permit access to the type of data independent of a second, different management policy associated with the second perimeter, the second management policy being configured to deny access to the data by applications not associated with the second perimeter.

2. The method of claim 1 , comprising configuring the first management policy associated with the first perimeter to override the second management policy associated with the second perimeter.

3. The method of claim 1 , further comprising associating the application with the first perimeter upon installing the application on the device.

4. The method of claim 1 , further comprising associating the data with the second perimeter upon storing the data on the device.

5. The method of claim 1 , further comprising configuring the first management policy associated with the first perimeter to permit applications associated with the first perimeter to access personal data on the device, and wherein the data includes work-related contact information.

6. The method of claim 5 , wherein the application is a telephony application, and wherein the method further comprises:

receiving a request to access the work-related contact information from the telephony application; and

providing the requested work-related contact information.

7. The method of claim 1 , wherein the first perimeter includes computing resources executable to control access to data within or outside the first perimeter by applications associated with the first perimeter, and wherein the second perimeter includes computing resources executable to control access to data associated with the second perimeter.

8. The method of claim 1 , wherein the first management policy is configured to permit the application to access the type of data associated with the second perimeter while the second perimeter is locked.

9. The method of claim 1 , wherein the first perimeter comprises a personal perimeter and the second perimeter comprises an enterprise perimeter.

10. A device comprising:

data processing apparatus operable to run an application associated with a first perimeter on the device; and

a computer-readable medium storing a first management policy associated with the first perimeter, the first management policy configured to permit the application to access a type of data associated with a second, different perimeter on the device, the first management policy configured to permit the application to access the type of data independent of a second, different management policy associated with the second perimeter, the second management policy being configured to deny access to the data by applications not associated with the second perimeter.

11. The device of claim 10 , wherein the first management policy associated with the first perimeter is configured to override the second management policy and to permit the application to access the data.

12. The device of claim 10 , the application being associated with the first perimeter upon installing the application on the device.

13. The device of claim 10 , the data being associated with the second perimeter upon storing the data on the device.

14. The device of claim 10 , the first management policy being configured to permit applications associated with the first perimeter to access personal data on the device, wherein the data includes work-related contact information.

15. The device of claim 14 , wherein the application is a telephony application, and wherein the device is configured to:

receive a request to access the work-related contact information from the telephony application; and

provide the requested work-related contact information.

16. The device of claim 10 , wherein the first perimeter includes computing resources executable to control access to data within or outside the first perimeter by applications associated with the first perimeter, and wherein the second perimeter includes computing resources executable to control access to data associated with the second perimeter.

17. The device of claim 10 , wherein permitting the application to access the type of data includes providing the application access to the type of data associated with the second perimeter while the second perimeter is locked.

18. A non-transitory computer-readable medium storing instructions executable by data processing apparatus to perform operations comprising:

configuring a first management policy associated with a first perimeter on a device to permit an application associated with the first perimeter to access a type of data associated with a second, different perimeter on the device, the first management policy being configured to permit access to the data independent of a second, different management policy associated with the second perimeter, the second management policy being configured to deny access to the data by applications not associated with the second perimeter.

19. The medium of claim 18 , the operations comprising configuring the first management policy associated with the first perimeter to override the second management policy.

20. The medium of claim 18 , the operations further comprising associating the application with the first perimeter upon installing the application on the device.

21. The medium of claim 18 , the operations further comprising associating the data with the second perimeter upon storing the data on the device.

22. The medium of claim 18 , the operations further comprising configuring the first management policy associated with the first perimeter to permit applications associated with the first perimeter to access personal data on the device, and wherein the data includes work-related contact information.

23. The medium of claim 22 , wherein the application is a telephony application, and wherein the operations further comprise:

receiving a request to access the work-related contact information from the telephony application; and

providing the requested work-related contact information.

24. The medium of claim 18 , the operations comprising providing the application access to the type of data associated with the second perimeter while the second perimeter is locked.

Assignments (10)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 22, 2020
From: 2236008 ONTARIO INC.
To: BLACKBERRY LIMITED
Reel/Frame 053313/0315 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 4, 2014
From: 8758271 CANADA INC.
To: 2236008 ONTARIO INC.
Reel/Frame 032607/0674 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 4, 2014
From: QNX SOFTWARE SYSTEMS LIMITED
To: 8758271 CANADA INC.
Reel/Frame 032607/0943 →
CHANGE OF NAME Recorded Jan 1, 2014
From: RESEARCH IN MOTION LIMITED
To: BLACKBERRY LIMITED
Reel/Frame 031896/0305 →
CORRECTIVE ASSIGNMENT TO CORRECT THE APPLICATION NUMBER PREVIOUSLY RECORDED ON REEL 029641 FRAME 0584. ASSIGNOR(S) HEREBY CONFIRMS THE CORRECT APPLICATION NUMBER IS 13/659,527. Recorded Apr 25, 2013
From: NAGARAJAN, SIVAKUMAR
To: QNX SOFTWARE SYSTEMS LIMITED
Reel/Frame 030294/0741 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 21, 2013
From: RESEARCH IN MOTION CORPORATION
To: RESEARCH IN MOTION LIMITED
Reel/Frame 030056/0707 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 21, 2013
From: RESEARCH IN MOTION UK LIMITED
To: RESEARCH IN MOTION LIMITED
Reel/Frame 030057/0054 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 16, 2013
From: BENDER, CHRISTOPHER LYLE
To: RESEARCH IN MOTION LIMITED
Reel/Frame 029641/0460 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 16, 2013
From: FOY, JASON PAUL
To: RESEARCH IN MOTION UK LIMITED
Reel/Frame 029641/0727 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 16, 2013
From: CHO, JUNG HYUN
To: RESEARCH IN MOTION CORPORATION
Reel/Frame 029641/0413 →