IP Library Granted Patent US 9,251,360
Granted Patent B2
US 9,251,360 · App. 14/057,541 · Granted Feb 2, 2016

Computerized method and system for managing secure mobile device content viewing in a networked secure collaborative exchange environment

Inventors: Jerry Lee Meyer (Pepperell, MA); Sudhakar Durairaj (Sharon, MA); Mushegh Hakhinian (Westwood, MA)
Assignee: Intralinks, Inc.
G06F21/62H04L63/08H04L63/10
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,251,360
App. No.
14/057,541
Granted
Feb 2, 2016
Kind
B2
Abstract

In embodiments of the present invention improved capabilities are described for securely viewing computer data content, such as documents, presentations, spreadsheets, emails, blog entries, texts, and the like, through a secure viewing facility, where the secure viewing facility utilizes a camera or other biometric sensor to monitor an authorized user's actions in the determination of whether the secure viewing facility will permit the computer data content to be viewed on the computer's display, and/or in the control of the viewing process itself.

Claims (48)

1. A method for managing a networked secure collaborative computer data exchange environment, the method comprising:

establishing, by a secure exchange server hosted by an intermediate business entity, a user login data authentication procedure that allows one or more users through at least one client computing device to access the secure exchange server, wherein at least one of the one or more users is of a second business entity, wherein communications between the secure exchange server and each of the one or more users is through a communications network;

storing, by the secure exchange server, data relating to at least one user login authentication for the at least one user of the second business entity;

receiving computer data content from at least one user of a third business entity;

receiving from at least one user of the third business entity an indication of permission for the at least one user of the second business entity to access the computer data content through a designated mobile computing device, wherein the indication of permission includes a content retention policy;

by the secure exchange server, permitting access to the computer data content to the at least one user of the second business entity on the designated mobile computing device through an exchange content access facility, wherein the exchange content access facility is hosted by the intermediate business entity; and

by the secure exchange server, granting access to the computer data content to the at least one user of the second business entity on the designated mobile computing device through a secure viewing facility when the secure exchange server receives the login authentication data, wherein the secure viewing facility restricts viewing of the computer data content as presented by the designated mobile computing device to only the authenticated at least one user of the second business entity on the designated mobile computing device, wherein the granted access is in accordance with the content retention policy.

2. The method of claim 1 , wherein the designated mobile computing device is at least one of a smart phone, a tablet computing device, and a laptop computer.

3. The method of claim 1 , wherein the at least one user of the second business entity on the designated mobile computing device downloads the computer data content to the designated mobile computing device once granted access.

4. The method of claim 3 , wherein the at least one user of the second business entity on the designated mobile computing device is permitted to view the computer data content when there is no connection between the designated mobile computing device and the exchange server.

5. The method of claim 3 , wherein the downloaded computer data content is restricted from being printed.

6. The method of claim 3 , wherein the downloaded computer data content is restricted from being copied.

7. The method of claim 3 , wherein the downloaded computer data content can only be accessed by the secure viewing facility.

8. The method of claim 3 , wherein the downloaded computer data content is modified and transmitted to the secure exchange server.

9. The method of claim 8 , wherein the modified computer data content is indicated as having been modified in metadata stored in or associated with the computer data content.

10. The method of claim 1 , wherein the permitting of access is limited to access of only the current version of the computer data content.

11. The method of claim 1 , wherein the secure viewing facility tracks viewing of the computer data content.

12. The method of claim 11 , wherein the tracked viewing is reported to the exchange server.

13. The method of claim 1 , wherein the secure viewing facility authenticates permission to view the content via face recognition using a sensor.

14. The method of claim 1 , wherein the secure viewing facility authenticates permission to view the content via face recognition using a camera.

15. The method of claim 14 , wherein the camera is an integrated camera in the designated mobile computing device and the secure viewing facility reacts to eye gaze direction by blocking the computer data content from view if the user looks away from the designated mobile computing device.

16. The method of claim 13 , wherein the sensor is an integrated sensor and is a biometric sensor.

17. The method of claim 1 , wherein the secure viewing facility restricts viewing by distorting those portions of the computer data content not selected for viewing.

18. A method for managing a networked secure collaborative computer data exchange environment, the method comprising:

establishing, by a secure exchange server controlled by an intermediate business entity, a client login data authentication procedure that allows at least one client computing device of a plurality of client computing devices operated by users of a plurality of business entities including a first and a second business entity to access the secure exchange server, wherein communications between the secure exchange server and the plurality of client computing devices is through a communications network;

storing, by the secure exchange server, at least one client login authentication data for each of the plurality of client computing devices;

receiving content from a first of the plurality of client computing devices associated with a user of the first business entity;

by the secure exchange server, permitting access to the content for a subset of the plurality of computing devices through an exchange content access facility, wherein the exchange content access facility is managed by the intermediate business entity;

granting, by the exchange server, access to the content to a second of the plurality of client computing devices associated with a user of the second business entity when the secure exchange server receives from the second of the plurality of client computing devices its client login authentication data provided that the second of the plurality of client computing devices is one of the subset of the plurality of computing devices;

providing a content viewer monitoring facility for monitoring the user viewing the content on their client computing device, wherein the monitoring is provided through an camera operating in conjunction with a face recognition facility on the client computing device; and

providing a collaboration management facility that enables placement of a retention tag on the content and deletes the content in accordance with a retention policy.

19. A method for managing a networked secure collaborative computer data exchange environment, the method comprising:

establishing, by a secure exchange server controlled by an intermediate business entity, a client login data authentication procedure that allows at least one client computing device of a plurality of client computing devices operated by users of a plurality of business entities including a first and a second business entity to access the secure exchange server, wherein communications between the secure exchange server and the plurality of client computing devices is through a communications network;

storing, by the secure exchange server, at least one client login authentication data for each of the plurality of client computing devices;

receiving content from a first of the plurality of client computing devices associated with a user of the first business entity;

by the secure exchange server, permitting access to the content for a subset of the plurality of computing devices through an exchange content access facility, wherein the exchange content access facility is managed by the intermediate business entity;

granting, by the exchange server, access to the content to a second of the plurality of client computing devices associated with a user of the second business entity when the secure exchange server receives from the second of the plurality of client computing devices its client login authentication data provided that the second of the plurality of client computing devices is one of the subset of the plurality of computing devices;

providing a content viewer control facility for user-controlled viewing of the content on their client computing device, wherein the control is at least in part enabled through an camera operating in conjunction with a motion recognition facility on the client computing device; and

providing a collaboration management facility that enables placement of a retention tag on the content and deletes the content in accordance with a retention policy.

20. The method of claim 19 , wherein the control is actualized through monitoring user hand gestures.

21. The method of claim 19 , wherein the control is actualized through monitoring user eye movements.

22. The method of claim 19 , wherein the control is enabling the viewing of the content.

23. The method of claim 1 , wherein the content retention policy is an offer conditional retention restriction, where access to the computer data content is removed when an offer condition presented by the user of the third business entity to the user of the second business entity is not met.

24. The method of claim 1 , wherein the content retention policy sets a duration of time that the user of the second business entity has access to the computer data content.

25. The method of claim 1 , wherein the content retention policy restricts the user of the second business entity from at least one of printing, copying, and sharing the computer data content.

26. The method of claim 1 , wherein the content retention policy restricts the user of the second business entity from storing the computer data content on at least one specified computer device.

27. The method of claim 18 , wherein the retention tag relates to a duration-based permissioning.

28. The method of claim 18 , wherein the retention tag relates to a device-dependent permissioning.

Assignments (16)
RELEASE OF 1ST LIEN SECURITY INTEREST Recorded Nov 16, 2018
From: ROYAL BANK OF CANADA
To: INTRALINKS, INC.
Reel/Frame 047587/0828 →
RELEASE OF 2ND LIEN SECURITY INTEREST Recorded Nov 16, 2018
From: ROYAL BANK OF CANADA
To: INTRALINKS, INC.
Reel/Frame 047587/0836 →
SECURITY INTEREST Recorded Nov 16, 2018
From: INTRALINKS, INC.
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 047526/0542 →
CORRECTIVE ASSIGNMENT TO CORRECT THE PATENT NUMBER 9396455 PREVIOUSLY RECORDED ON REEL 044277 FRAME 842. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded May 3, 2018
From: SYNCHRONOSS TECHNOLOGIES, INC.
To: INTRALINKS, INC.
Reel/Frame 046060/0738 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 1, 2017
From: SYNCHRONOSS TECHNOLOGIES, INC.
To: INTRALINKS, INC
Reel/Frame 044277/0842 →
CORRECTIVE ASSIGNMENT TO CORRECT THE CONVEYING PARTY NAME PREVIOUSLY RECORDED ON REEL 044123 FRAME 0110. ASSIGNOR(S) HEREBY CONFIRMS THE RELEASE OF SECURITY INTEREST. Recorded Nov 30, 2017
From: GOLDMAN SACHS BANK USA
To: INTRALINKS, INC.
Reel/Frame 044566/0919 →
SECOND LIEN SECURITY AGREEMENT Recorded Nov 16, 2017
From: INTRALINKS, INC.
To: ROYAL BANK OF CANADA, AS COLLATERAL AGENT
Reel/Frame 044477/0445 →
FIRST LIEN SECURITY AGREEMENT Recorded Nov 15, 2017
From: INTRALINKS, INC.
To: ROYAL BANK OF CANADA, AS COLLATERAL AGENT
Reel/Frame 044455/0479 →
RELEASE OF SECURITY INTEREST Recorded Nov 14, 2017
From: GOIDMAN SACHS BANK USA
To: INTRALINKS, INC.
Reel/Frame 044123/0110 →
MERGER Recorded Apr 7, 2017
From: INTRALINKS, INC
To: SYNCHRONOSS TECHNOLOGIES, INC.
Reel/Frame 042195/0733 →
TERMINATION AND RELEASE OF SECURITY INTEREST IN PATENT RIGHTS Recorded Feb 6, 2017
From: JPMORGAN CHASE BANK, N.A.
To: INTRALINKS, INC.
Reel/Frame 041636/0614 →
TERMINATION AND RELEASE OF SECURITY INTEREST IN PATENT RIGHTS Recorded Feb 6, 2017
From: JPMORGAN CHASE BANK, N.A.
To: INTRALINKS, INC.
Reel/Frame 041636/0712 →
SECURITY INTEREST Recorded Jan 23, 2017
From: INTRALINKS, INC., AS GRANTOR
To: GOLDMAN SACHS BANK USA, AS COLLATERAL AGENT
Reel/Frame 041046/0919 →
SECURITY INTEREST Recorded Mar 25, 2014
From: INTRALINKS, INC.
To: JPMORGAN CHASE BANK, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 032523/0492 →
GRANT OF SECURITY INTEREST IN PATENT RIGHTS Recorded Mar 7, 2014
From: INTRALINKS, INC.
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 032410/0328 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 18, 2013
From: MEYER, JERRY LEE; DURAIRAJ, SUDHAKAR; HAKHINIAN, MUSHEGH
To: INTRALINKS, INC.
Reel/Frame 031812/0394 →
Continuity (9)
Continuation In Part 13960324 · Aug 6, 2013
Continuation In Part 13871593 · Apr 26, 2013
Provisional Application 61715989 · Oct 19, 2012
Provisional Application 61734890 · Dec 7, 2012
Provisional Application 61783868 · Mar 14, 2013
Provisional Application 61680115 · Aug 6, 2012
Provisional Application 61702587 · Sep 18, 2012
Provisional Application 61639576 · Apr 27, 2012
Related Publication 20140047560A1 · Feb 13, 2014