IP Library Granted Patent US 9,282,099
Granted Patent B2
US 9,282,099 · App. 13/960,214 · Granted Mar 8, 2016

System and method for privilege management and revocation

Inventors: Neil Patrick Adams (Waterloo, CA); Herbert Anthony Little (Waterloo, CA)
Assignee: BlackBerry Limited
H04L63/10H04L63/105H04L63/1408H04L63/20
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,282,099
App. No.
13/960,214
Granted
Mar 8, 2016
Kind
B2
Abstract

The present disclosure relates generally to the management of privileges associated with certain applications that are accessible by users of electronic equipment, such as, for example, networked computers, mobile wireless communications devices, and the like. In a broad aspect, a method for managing privileges associated with applications comprises: monitoring a plurality of electronic devices within a system; detecting a change in privileges associated with one or more applications resident on the plurality of electronic devices, wherein one or more privileges that are to be revoked are identified; and in response to a detection of the change in privileges, revoking the one or more privileges, such that each of the one or more applications resident on the plurality of electronic devices no longer has access to the one or more privileges.

Claims (38)

1. A computer-implemented method for managing privileges associated with applications, the method comprising:

monitoring a plurality of electronic devices within a system;

detecting a change in privileges associated with one or more applications resident on the plurality of electronic devices, wherein one or more privileges that are to be revoked are identified; and

in response to a detection of the change in privileges, revoking the one or more privileges, such that each of the one or more applications resident on the plurality of electronic devices no longer has access to the one or more privileges,

wherein the one or more privileges comprises enabling the injection of browser filters.

2. A system for managing privileges associated with applications, the system comprising at least one processor configured to:

monitor a plurality of electronic devices within a system;

detect a change in privileges associated with one or more applications resident on the plurality of electronic devices, wherein one or more privileges that are to be revoked are identified; and

in response to a detection of the change in privileges, revoke the one or more privileges, such that each of the one or more applications resident on the plurality of electronic devices no longer has access to the one or more privileges,

wherein the one or more privileges comprises enabling the injection of browser filters.

3. The computer-implemented method as recited in claim 1 , further comprising restarting each of the one or more applications.

4. The computer-implemented method as recited in claim 1 , further comprising resetting the plurality of electronic devices.

5. The computer-implemented method as recited in claim 4 , wherein resetting the plurality of electronic devices brings the system to a known state.

6. The computer-implemented method as recited in claim 4 , further comprising restarting the one or more applications resident on the plurality of electronic devices after the plurality of electronic devices has been reset.

7. The computer-implemented method as recited in claim 1 , wherein the change in privileges is responsive to a change in system information technology (IT) policy.

8. The computer-implemented method as recited in claim 1 , the method further comprising:

maintaining, at each of the plurality of electronic devices, a log of privileges accessed by applications resident on that electronic device; and

in response to receiving a new set of privileges at that electronic device, comparing the log of privileges with the new set of privileges to identify the one or more privileges that are to be revoked.

9. The system as recited in claim 2 , wherein the at least one processor is configured to restart each of the one or more applications.

10. The system as recited in claim 2 , wherein the at least one processor is configured to reset the plurality of electronic devices.

11. The system as recited in claim 10 , wherein the at least one processor is configured to bring each of the plurality of electronic devices to a known state.

12. The system as recited in claim 10 , wherein the at least one processor is configured to restart the one or more applications resident on the plurality of electronic devices after the plurality of electronic devices has been reset.

13. The system as recited in claim 2 , wherein the change in privileges is responsive to a change in system information technology (IT) policy.

14. The system as recited in claim 2 , wherein the at least one processor is configured to:

maintain, at each of the plurality of electronic devices, a log of privileges accessed by applications resident on that electronic device; and

in response to receiving a new set of privileges at that electronic device, compare the log of privileges with the new set of privileges to identify the one or more privileges that are to be revoked.

15. A non-transitory computer-readable medium storing instructions which, when executed by a processor of a computer system, result in:

monitoring a plurality of electronic devices within a system;

detecting a change in privileges associated with one or more applications resident on the plurality of electronic devices, wherein one or more privileges that are to be revoked are identified; and

in response to a detection of the change in privileges, revoking the one or more privileges, such that each of the one or more applications resident on the plurality of electronic devices no longer has access to the one or more privileges,

wherein the one or more privileges comprises enabling the injection of browser filters.

16. The non-transitory computer-readable medium as recited in claim 15 , wherein the instructions, when executed by the processor, further result in restarting each of the one or more applications.

17. The non-transitory computer-readable medium as recited in claim 15 , wherein the instructions, when executed by the processor, further result in resetting the plurality of electronic devices.

18. The non-transitory computer-readable medium as recited in claim 17 , wherein resetting the plurality of electronic devices brings the system to a known state.

19. The non-transitory computer-readable medium as recited in claim 17 , wherein the instructions, when executed by the processor, further result in restarting the one or more applications resident on the plurality of electronic devices after the plurality of electronic devices has been reset.

20. The non-transitory computer-readable medium as recited in claim 15 , wherein the instructions, when executed by the processor, further result in:

maintaining, at each of the plurality of electronic devices, a log of privileges accessed by applications resident on that electronic device; and

in response to receiving a new set of privileges at that electronic device, comparing the log of privileges with the new set of privileges to identify the one or more privileges that are to be revoked.

Assignments (2)
CHANGE OF NAME Recorded Jul 25, 2014
From: RESEARCH IN MOTION LIMITED
To: BLACKBERRY LIMITED
Reel/Frame 033418/0901 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 7, 2013
From: ADAMS, NEIL P.; LITTLE, HERBERT A.
To: RESEARCH IN MOTION LIMITED
Reel/Frame 031354/0476 →
Continuity (3)
Continuation 12561370 · Sep 17, 2009
Continuation 11169302 · Jun 29, 2005
Related Publication 20130340049A1 · Dec 19, 2013