IP Library Granted Patent US 8,645,535
Granted Patent B1
US 8,645,535 · App. 13/959,609 · Granted Feb 4, 2014

Detecting profile changes based on device behavior

Inventor: Paul Michael Martini (San Diego, CA)
Assignee: Phantom Technologies, Inc.
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,645,535
App. No.
13/959,609
Granted
Feb 4, 2014
Kind
B1
Abstract

Methods and systems for detecting profile changes based on device behavior. One example method includes assigning a network configuration to a device associated with a network, applying a mobile device management (MDM) profile to the device, the MDM profile including settings configuring the device according to the network configuration, monitoring network activity of the device to detect one or more actions by the device that are prohibited by the network configuration, determining that the MDM profile has been altered based at least in part on the detection of one or more actions prohibited by the network configuration, and performing a remediation action associated with the device based on the determination that the MDM profile has been altered.

Claims (32)

1. A computer-implemented method executed by one or more processors, the method comprising:

assigning a network configuration to a device associated with a network;

applying a mobile device management (MDM) profile to the device, the MDM profile including settings configuring the device according to the network configuration;

monitoring network activity of the device to detect one or more actions by the device that are prohibited by the network configuration;

determining that the MDM profile has been altered based at least in part on the detection of one or more actions prohibited by the network configuration; and

performing a remediation action associated with the device based on the determination that the MDM profile has been altered.

2. The method of claim 1 , wherein determining that the MDM profile has been altered includes determining that the MDM profile has been deleted.

3. The method of claim 1 , wherein the network configuration includes at least one proxy server, and the one or more actions by the device that are prohibited by the network configuration include the device accessing servers other than the at least one proxy server.

4. The method of claim 3 , wherein monitoring network activity of the device to detect the one or more actions by the device that are prohibited by the network configuration includes detecting access by the device to a server other than the at least one proxy server.

5. The method of claim 3 , wherein the network configuration includes a set of allowed servers that the device is allowed to access in addition to the at least one proxy server.

6. The method of claim 1 , wherein performing the remediation action associated with the device based on the determination that the MDM profile has been altered includes reapplying the MDM profile to the device.

7. The method of claim 1 , wherein performing the remediation action associated with the device based on the determination that the MDM profile has been altered includes blocking access to the network by the device.

8. The method of claim 1 , wherein performing the remediation action associated with the device based on the determination that the MDM profile has been altered includes notifying an administrator that the MDM profile has been altered.

9. The method of claim 1 , wherein performing the remediation action associated with the device based on the determination that the MDM profile has been altered includes notifying a user of the device that the MDM profile must be restored in order for the device to use the network.

10. The method of claim 1 , wherein applying a mobile device management (MDM) profile to the device includes installing a proxy auto-configuration (PAC) script on the device.

11. A system comprising:

a processor configured to execute computer program instructions; and

a computer storage medium encoded with computer program instructions that, when executed by the processor, cause the system to perform operations comprising:

assigning a network configuration to a device associated with a network;

applying a mobile device management (MDM) profile to the device, the MDM profile including settings configuring the device according to the network configuration;

monitoring network activity of the device to detect one or more actions by the device that are prohibited by the network configuration;

determining that the MDM profile has been altered based at least in part on the detection of one or more actions prohibited by the network configuration; and

performing a remediation action associated with the device based on the determination that the MDM profile has been altered.

12. The system of claim 11 , wherein determining that the MDM profile has been altered includes determining that the MDM profile has been deleted.

13. The system of claim 11 , wherein the network configuration includes at least one proxy server, and the one or more actions by the device that are prohibited by the network configuration include the device accessing servers other than the at least one proxy server.

14. The system of claim 13 , wherein monitoring network activity of the device to detect the one or more actions by the device that are prohibited by the network configuration includes detecting access by the device to a server other than the at least one proxy server.

15. The system of claim 13 , wherein the network configuration includes a set of allowed servers that the device is allowed to access in addition to the at least one proxy server.

16. The system of claim 11 , wherein performing the remediation action associated with the device based on the determination that the MDM profile has been altered includes reapplying the MDM profile to the device.

17. The system of claim 11 , wherein performing the remediation action associated with the device based on the determination that the MDM profile has been altered includes blocking access to the network by the device.

18. The system of claim 11 , wherein performing the remediation action associated with the device based on the determination that the MDM profile has been altered includes notifying an administrator that the MDM profile has been altered.

19. The system of claim 11 , wherein performing the remediation action associated with the device based on the determination that the MDM profile has been altered includes notifying a user of the device that the MDM profile must be restored in order for the device to use the network.

20. The system of claim 11 , wherein applying a mobile device management (MDM) profile to the device includes installing a proxy auto-configuration (PAC) script on the device.

Assignments (7)
INTELLECTUAL PROPERTY SECURITY AGREEMENT Recorded Dec 28, 2023
From: IBOSS, INC.
To: WILMINGTON SAVINGS FUND SOCIETY, FSB
Reel/Frame 066158/0219 →
SUPPLEMENTAL INTELLECTUAL PROPERTY SECURITY AGREEMENT Recorded Dec 28, 2023
From: IBOSS, INC.
To: WILMINGTON SAVINGS FUND SOCIETY, FSB
Reel/Frame 066158/0266 →
RELEASE OF SECURITY INTEREST IN INTELLECTUAL PROPERTY Recorded Dec 12, 2023
From: SILICON VALLEY BANK, A DIVISION OF FIRST-CITIZENS BANK TRUST COMPANY
To: IBOSS, INC.
Reel/Frame 066140/0480 →
SECURITY INTEREST Recorded Sep 19, 2022
From: IBOSS, INC.
To: SILICON VALLEY BANK
Reel/Frame 061463/0331 →
SECURITY INTEREST Recorded Dec 16, 2020
From: IBOSS, INC.
To: SILICON VALLEY BANK
Reel/Frame 054789/0680 →
CHANGE OF NAME Recorded Apr 23, 2014
From: PHANTOM TECHNOLOGIES, INC.
To: IBOSS, INC.
Reel/Frame 032745/0646 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 8, 2013
From: MARTINI, PAUL MICHAEL
To: PHANTOM TECHNOLOGIES, INC.
Reel/Frame 031367/0990 →