IP Library Granted Patent US 9,253,176
Granted Patent B2
US 9,253,176 · App. 13/960,324 · Granted Feb 2, 2016

Computerized method and system for managing secure content sharing in a networked secure collaborative exchange environment

Inventors: Christopher Ford (Winchester, MA); Wade Callison (Acton, MA); Fahim Siddiqui (Boston, MA); Mushegh Hakhinian (Westwood, MA)
Assignee: Intralinks, Inc.
H04L63/08H04L63/10H04L65/403
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,253,176
App. No.
13/960,324
Granted
Feb 2, 2016
Kind
B2
Abstract

In embodiments of the present invention improved capabilities are described for securely sharing computer data content that allows for the secure un-sharing of the content. The facility to un-share content may be implemented through a secure exchange server, where the content is being shared along with a secure protection feature that when altered results in the un-sharing of the content. This secure un-sharing facility may be used to securely share content beyond the secure protective facilities of an enterprise, out to users in other companies, into the public space, to users not intended to get the content, and the like, where the sender maintains control to access of the content no matter where or to who the content has been distributed. In this way, the secure sharing of content is made to be easy across corporate boundaries at the user level and at the individual document level.

Claims (56)

1. A method for managing a networked secure collaborative computer data exchange environment, the method comprising:

establishing, by a secure exchange server managed by an intermediate business entity, a user login data authentication procedure that allows a user through at least one client computing device to access the secure exchange server, wherein the user is one of a plurality of users of a plurality of other business entities and communications between the secure exchange server and the plurality of users is through a communications network;

storing, by the secure exchange server, at least one user login authentication data for at least one of the plurality of users;

receiving a computer data content from a first user of the plurality of users, wherein the first user permits a sharing access to the computer data content to a subset of the plurality of users, and wherein management for access to the computer data content is through an exchange content access facility managed by the intermediate business entity;

granting, by the secure exchange server, sharing access to the computer data content to at least a second user of the plurality of users when the secure exchange server receives from the second user its client login authentication data provided that the second user is one of the subset of the plurality of users to which sharing access is permitted;

receiving a copy access request from the second user to access a copy of the computer data content;

granting, by the secure exchange server in response to the copy access request, copy access by the second user, wherein a copy of the computer data content is made and stored on a client computing device second user;

receiving from the first user a request to revoke sharing and copy access to the computer data content to the second user;

revoking, by the secure exchange server in response to the received request from the first user to revoke sharing and copy access, sharing access to the computer data content and copy access to the copy of the computer data content by the second user, wherein revoking copy access to the copy of the computer data content is a change in the digital rights management of the computer data content, and wherein access to the computer data content is revocable at any time at the request of the first user.

2. The method of claim 1 , further comprising additional sharing of the computer data content with others of the plurality of users, wherein the revoking of sharing access and copy access revokes access to all instances of the shared computer data content and all copies of the computer data content made by any of the others of the plurality of users.

3. The method of claim 1 , wherein the copy of the computer data content is deleted from the client computing device.

4. The method of claim 1 , wherein revoking sharing access to the computer data content makes the computer data content inaccessible to the second user.

5. The method of claim 1 , wherein the computer data content is at least one of a word processor document, a spreadsheet document, and a presentation document.

6. The method of claim 1 , wherein the computer data content is at least one of an email, a text, and a blog entry.

7. The method of claim 1 , wherein the computer data content is a multimedia file.

8. The method of claim 1 , wherein the computer data content is a secure encrypted computer data content.

9. The method of claim 1 , wherein the computer data content is viewed by the second user through a secure viewing facility.

10. The method of claim 1 , wherein the second user is connected to a public network that is outside of a firewall for the business entity that manages the first user or the second user.

11. The method of claim 1 , wherein the second user accesses the computer data content through a personal computing device that is not owned by the business entity that manages the second user.

12. The method of claim 1 , wherein the second user accesses the computer data content through a mobile computing device.

13. The method of claim 1 , wherein the exchange content access facility is interfaced through a dashboard facility accessible though at least the first user.

14. The method of claim 13 , wherein the dashboard facility provides reports showing activity related to the sharing of computer data content.

15. The method of claim 13 , wherein the dashboard facility is accessible through third-party environments.

16. The method of claim 13 , wherein the dashboard facility tracks the location and version of the shared computer data content on computing devices accessible by the second user.

17. The method of claim 1 , wherein the communications network is the Internet.

18. A method for managing a networked secure collaborative computer data exchange environment, the method comprising:

establishing, by a secure exchange server managed by an intermediate business entity, a user login data authentication procedure that allows a user through at least one client computing device to access the secure exchange server, wherein the user is one of a plurality of users of a plurality of other business entities and communications between the secure exchange server and the plurality of users is through a communications network;

storing, by the secure exchange server, at least one user login authentication data for each of the plurality of users;

receiving a computer data content from a first user of the plurality of users, wherein the first user permits a sharing access to the computer data content to a subset of the plurality of users, and wherein management for access to the computer data content is through an exchange content access facility managed by the intermediate business entity;

granting, by the secure exchange server, sharing access to the computer data content to individuals within the subset of the plurality of users when the secure exchange server receives from the individuals their client login authentication data;

receiving a copy access request from at least a second user of the plurality of users to access a copy of the computer data content;

granting, by the secure exchange server in response to the copy access request, copy access to the second user, wherein a copy of the computer data content is made and stored on the client computing device of the second user;

receiving from the first user a request to revoke sharing access to the computer data content to the subset of the plurality of users; and

revoking, by the secure exchange server, sharing access to all instances of the computer data content to the subset of the plurality of users and deleting, by the secure exchange server, the copy of the computer data content from the client computing device.

19. The method of claim 18 , wherein the revoking of sharing access to all instances of the computer data content is revoking sharing and copy access to all instances of the computer data content on all computer devices on which the subset of the plurality of users have stored the computer data content or copies of the computer data content.

20. The method of claim 19 , wherein the stored computer data content includes copies of the computer data content.

21. The method of claim 19 , wherein the stored computer data content includes an annotated version of the computer data content.

22. The method of claim 1 , further comprising allowing use of customer managed encryption keys.

23. The method of claim 1 , further comprising using customer managed encryption keys.

24. The method of claim 2 , further comprising allowing use of customer managed encryption keys.

25. The method of claim 2 , further comprising using customer managed encryption keys.

26. The method of claim 4 , further comprising allowing use of customer managed encryption keys.

27. The method of claim 4 , further comprising using customer managed encryption keys.

28. The method of claim 18 , further comprising allowing use of customer managed encryption keys.

29. The method of claim 18 , further comprising using customer managed encryption keys.

30. The method of claim 19 , further comprising allowing use of customer managed encryption keys.

31. The method of claim 19 , further comprising using customer managed encryption keys.

32. A method for managing a networked secure collaborative computer data exchange environment, the method comprising:

establishing, by a secure exchange server managed by an intermediate business entity, a user login data authentication procedure that allows a user through at least one client computing device to access the secure exchange server, wherein the user is one of a plurality of users of a plurality of other business entities and communications between the secure exchange server and the plurality of users is through a communications network;

storing, by the secure exchange server, at least one user login authentication data for at least one of the plurality of users;

receiving a computer data content from a first user of the plurality of users, wherein the first user permits a sharing access to the computer data content to a subset of the plurality of users, and wherein management for access to the computer data content is through an exchange content access facility managed by the intermediate business entity;

granting, by the secure exchange server, sharing access to the computer data content to a second user of the plurality of users when the secure exchange server receives from the second user its client login authentication data provided that the second of the plurality of users is one of the subset of the plurality of users to which sharing access is permitted;

receiving a copy access request from the second user to access a copy of the computer data content;

granting, by the secure exchange server in response to the copy access request, copy access to the second user, wherein a copy of the computer data content is made and stored on a client computing device of the second user;

providing an application executing on the client computing device that detects login failures that occur after an application lease expiration date and time; and

deleting the copy of the computer data content made by the second user after a predetermined number of login attempt failures.

Assignments (13)
SECURITY INTEREST Recorded Nov 16, 2018
From: INTRALINKS, INC.
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 047526/0542 →
CORRECTIVE ASSIGNMENT TO CORRECT THE PATENT NUMBER 9396455 PREVIOUSLY RECORDED ON REEL 044277 FRAME 842. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded May 3, 2018
From: SYNCHRONOSS TECHNOLOGIES, INC.
To: INTRALINKS, INC.
Reel/Frame 046060/0738 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 1, 2017
From: SYNCHRONOSS TECHNOLOGIES, INC.
To: INTRALINKS, INC
Reel/Frame 044277/0842 →
CORRECTIVE ASSIGNMENT TO CORRECT THE CONVEYING PARTY NAME PREVIOUSLY RECORDED ON REEL 044123 FRAME 0110. ASSIGNOR(S) HEREBY CONFIRMS THE RELEASE OF SECURITY INTEREST. Recorded Nov 30, 2017
From: GOLDMAN SACHS BANK USA
To: INTRALINKS, INC.
Reel/Frame 044566/0919 →
RELEASE OF SECURITY INTEREST Recorded Nov 14, 2017
From: GOIDMAN SACHS BANK USA
To: INTRALINKS, INC.
Reel/Frame 044123/0110 →
MERGER Recorded Apr 7, 2017
From: INTRALINKS, INC
To: SYNCHRONOSS TECHNOLOGIES, INC.
Reel/Frame 042195/0733 →
TERMINATION AND RELEASE OF SECURITY INTEREST IN PATENT RIGHTS Recorded Feb 6, 2017
From: JPMORGAN CHASE BANK, N.A.
To: INTRALINKS, INC.
Reel/Frame 041636/0614 →
TERMINATION AND RELEASE OF SECURITY INTEREST IN PATENT RIGHTS Recorded Feb 6, 2017
From: JPMORGAN CHASE BANK, N.A.
To: INTRALINKS, INC.
Reel/Frame 041636/0712 →
SECURITY INTEREST Recorded Jan 23, 2017
From: INTRALINKS, INC., AS GRANTOR
To: GOLDMAN SACHS BANK USA, AS COLLATERAL AGENT
Reel/Frame 041046/0919 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 8, 2015
From: HAKHINIAN, MUSHEGH
To: INTRALINKS, INC.
Reel/Frame 035804/0520 →
SECURITY INTEREST Recorded Mar 25, 2014
From: INTRALINKS, INC.
To: JPMORGAN CHASE BANK, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 032523/0492 →
GRANT OF SECURITY INTEREST IN PATENT RIGHTS Recorded Mar 7, 2014
From: INTRALINKS, INC.
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 032410/0328 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 19, 2013
From: FORD, CHRISTOPHER; CALLISON, WADE; SIDDIQUI, FAHIM
To: INTRALINKS, INC.
Reel/Frame 031633/0857 →
Continuity (13)
Continuation In Part 13871593 · Apr 26, 2013
Provisional Application 61680115 · Aug 6, 2012
Provisional Application 61702587 · Sep 18, 2012
Provisional Application 61715989 · Oct 19, 2012
Provisional Application 61734890 · Dec 7, 2012
Provisional Application 61783868 · Mar 14, 2013
Provisional Application 61639576 · Apr 27, 2012
Provisional Application 61680115 · Aug 6, 2012
Provisional Application 61702587 · Sep 18, 2012
Provisional Application 61715989 · Oct 19, 2012
Provisional Application 61734890 · Dec 7, 2012
Provisional Application 61783868 · Mar 14, 2013
Related Publication 20130318589A1 · Nov 28, 2013