IP Library Granted Patent US 8,996,709
Granted Patent B2
US 8,996,709 · App. 14/043,301 · Granted Mar 31, 2015

Providing a managed browser

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,996,709
App. No.
14/043,301
Granted
Mar 31, 2015
Kind
B2
Abstract

Methods, systems, computer-readable media, and apparatuses for providing a managed browser are presented. In various embodiments, a computing device may load a managed browser. The managed browser may, for instance, be configured to provide a managed mode in which one or more policies are applied to the managed browser, and an unmanaged mode in which such policies might not be applied and/or in which the browser might not be managed by at least one device manager agent running on the computing device. Based on device state information and/or one or more policies, the managed browser may switch between the managed mode and the unmanaged mode, and the managed browser may provide various functionalities, which may include selectively providing access to enterprise resources, based on such state information and/or the one or more policies.

Claims (48)

1. A method, comprising:

loading, by a computing device, a managed browser, the managed browser being configured to provide at least one managed mode in which one or more policies are applied to the managed browser and an unmanaged mode in which the one or more policies are not applied to the managed browser, the one or more policies being configured to limit at least one function of the managed browser;

receiving, by the computing device, a request to access one or more enterprise resources via the managed browser;

obtaining, by the computing device, enterprise data from the one or more enterprise resources based on the request; and

controlling, by the computing device, the obtained enterprise data based on one or more policies,

wherein controlling the obtained enterprise data includes controlling the managed browser with a mobile resource management (MRM) agent that is configured to apply at least one policy to at least one other application on the computing device,

wherein controlling the obtained enterprise data includes selectively blocking access to the obtained enterprise data when the managed browser is operating in the unmanaged mode, and

wherein the managed browser is a secure application having a dual-mode option that may present an option to operate the managed browser in an unsecured mode in which data is stored in an unsecured data container.

2. The method of claim 1 , wherein the managed browser is configured to provide secure browsing and caching of data obtained from at least one enterprise resource.

3. The method of claim 1 , wherein the managed browser is configured to receive one or more policy updates for the MRM agent from a policy management server.

4. The method of claim 1 ,

wherein at least one policy of the one or more policies is configured to selectively disable one or more functions of the managed browser based on device state information, and

wherein the device state information includes at least one of: information identifying one or more applications that are present on the computing device; information identifying one or more network connections that are used by the computing device; and information identifying a current location of the computing device.

5. The method of claim 1 , wherein controlling the obtained enterprise data includes controlling access to the obtained enterprise data.

6. The method of claim 5 , wherein controlling access to the obtained enterprise data includes controlling use of the obtained enterprise data.

7. A computing device, comprising:

at least one processor; and

memory storing computer-readable instructions that, when executed by the at least one processor, cause the computing device to:

load a managed browser, the managed browser being configured to provide at least one managed mode in which one or more policies are applied to the managed browser and an unmanaged mode in which the one or more policies are not applied to the managed browser, the one or more policies being configured to limit at least one function of the managed browser;

receive a request to access one or more enterprise resources via the managed browser;

obtain enterprise data from the one or more enterprise resources based on the request; and

control the obtained enterprise data based on one or more policies,

wherein controlling the obtained enterprise data includes controlling the managed browser with a mobile resource management (MRM) agent that is configured to apply at least one policy to at least one other application on the computing device,

wherein controlling the obtained enterprise data includes selectively blocking access to the obtained enterprise data when the managed browser is operating in the unmanaged mode, and

wherein the managed browser is a secure application having a dual-mode option that may present an option to operate the managed browser in an unsecured mode in which data is stored in an unsecured data container.

8. The computing device of claim 7 , wherein the managed browser is configured to provide secure browsing and caching of data obtained from at least one enterprise resource.

9. The computing device of claim 7 , wherein the managed browser is configured to receive one or more policy updates for the MRM agent from a policy management server.

10. The computing device of claim 7 ,

wherein at least one policy of the one or more policies is configured to selectively disable one or more functions of the managed browser based on device state information, and

wherein the device state information includes at least one of: information identifying one or more applications that are present on the computing device; information identifying one or more network connections that are used by the computing device; and information identifying a current location of the computing device.

11. The computing device of claim 7 , wherein controlling the obtained enterprise data includes restricting an ability to copy the obtained enterprise data when the managed browser is operating in the managed mode based on at least one policy of the one or more policies.

12. The computing device of claim 7 , wherein controlling access to the obtained enterprise data includes limiting an ability to save the obtained enterprise data when the managed browser is operating in the managed mode based on at least one policy of the one or more policies.

13. One or more non-transitory computer-readable media having instructions stored thereon that, when executed, cause a computing device to:

load a managed browser, the managed browser being configured to provide at least one managed mode in which one or more policies are applied to the managed browser and an unmanaged mode in which the one or more policies are not applied to the managed browser, the one or more policies being configured to limit at least one function of the managed browser;

receive a request to access one or more enterprise resources via the managed browser;

obtain enterprise data from the one or more enterprise resources based on the request; and

control the obtained enterprise data based on one or more policies,

wherein controlling the obtained enterprise data includes controlling the managed browser with a mobile resource management (MRM) agent that is configured to apply at least one policy to at least one other application on the computing device,

wherein controlling the obtained enterprise data includes selectively blocking access to the obtained enterprise data when the managed browser is operating in the unmanaged mode, and

wherein the managed browser is a secure application having a dual-mode option that may present an option to operate the managed browser in an unsecured mode in which data is stored in an unsecured data container.

14. The one or more non-transitory computer-readable media of claim 13 , wherein the managed browser is configured to provide secure browsing and caching of data obtained from at least one enterprise resource.

15. The one or more non-transitory computer-readable media of claim 13 , wherein the managed browser is configured to receive one or more policy updates for the MRM agent from a policy management server.

16. The method of claim 1 ,

wherein the managed browser is configured to apply one or more content filters, one or more download restrictions, and one or more plug-ins blocks when operating in the managed mode, and

wherein the managed browser is configured not to apply the one or more content filters, the one or more download restrictions, and the one or more plug-in blocks when operating in the unmanaged mode.

17. The method of claim 1 , wherein the managed browser is prevented from accessing locally-cached data obtained from enterprise resources, when the managed browser is operating in the unmanaged mode.

18. The method of claim 1 , wherein the one or more policies that are applied to the managed browser in the at least one managed mode are grouped for a specific industry.

19. The method of claim 1 , wherein at least one policy of the one or more policies is configured to cause logging and monitoring functions to be selectively applied to the managed browser based on one or more factors.

Assignments (9)
PATENT SECURITY AGREEMENT Recorded Aug 15, 2025
From: CLOUD SOFTWARE GROUP, INC.; CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 072488/0172 →
SECURITY INTEREST Recorded May 24, 2024
From: CLOUD SOFTWARE GROUP, INC. (F/K/A TIBCO SOFTWARE INC.); CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 067662/0568 →
RELEASE AND REASSIGNMENT OF SECURITY INTEREST IN PATENT (REEL/FRAME 062113/0001) Recorded Apr 14, 2023
From: GOLDMAN SACHS BANK USA, AS COLLATERAL AGENT
To: CITRIX SYSTEMS, INC.; CLOUD SOFTWARE GROUP, INC. (F/K/A TIBCO SOFTWARE INC.)
Reel/Frame 063339/0525 →
PATENT SECURITY AGREEMENT Recorded Apr 14, 2023
From: CLOUD SOFTWARE GROUP, INC. (F/K/A TIBCO SOFTWARE INC.); CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 063340/0164 →
PATENT SECURITY AGREEMENT Recorded Oct 7, 2022
From: TIBCO SOFTWARE INC.; CITRIX SYSTEMS, INC.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 062112/0262 →
SECOND LIEN PATENT SECURITY AGREEMENT Recorded Oct 7, 2022
From: TIBCO SOFTWARE INC.; CITRIX SYSTEMS, INC.
To: GOLDMAN SACHS BANK USA, AS COLLATERAL AGENT
Reel/Frame 062113/0001 →
PATENT SECURITY AGREEMENT Recorded Oct 7, 2022
From: TIBCO SOFTWARE INC.; CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 062113/0470 →
SECURITY INTEREST Recorded Sep 30, 2022
From: CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION
Reel/Frame 062079/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 22, 2013
From: QURESHI, WAHEED
To: CITRIX SYSTEMS, INC.
Reel/Frame 031451/0153 →