IP Library Granted Patent US 9,411,978
Granted Patent B2
US 9,411,978 · App. 14/329,698 · Granted Aug 9, 2016

System and method for access control using network verification

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,411,978
App. No.
14/329,698
Granted
Aug 9, 2016
Kind
B2
Abstract

A system for controlling access includes a computing device, configured to: determine a first identifier associated with a first access point being used by the computing device to access a network; determine first access control data associated with the first identifier and a first application executing on the computing device; and control access to data over the network by the first application based on the first access control data.

Claims (36)

1. A system for controlling access, comprising:

a computing device, configured to:

determine a first identifier associated with a first access point at a first geographic location being used by the computing device to access a network;

determine first access control data associated with the first identifier and a first application executing on the computing device, wherein the first access control data includes environmental data including geographical data associated with at least one of the computing device or the first access point;

control access to data over the network by the first application based on the first access control data;

determine a second identifier associated with a second access point at a second geographic location being used by the computing device to access the network;

determine second access control data associated with the second identifier and the first application; and

control access to data over the network by the first application based on the second access control data.

2. The system of claim 1 , wherein determining the first access control data comprises sending a request to an access control update server and receiving the first access control data from the access control update server, the request comprising the first identifier.

3. The system of claim 1 , wherein the computing device is further configured to update the first access control data by sending a request to an access control update server and receiving updated first access control data from the access control update server.

4. The system of claim 1 , wherein the first application comprises an access control module configured to perform the determining of the first identifier, the determining of the access control data and the controlling of access to data.

5. The system of claim 1 , wherein the first access control data includes a default level of access.

6. The system of claim 1 , wherein the computing device is further configured to:

determine third access control data, the third access control data associated with the first identifier and a second application executing on the computing device; and

control access to data over the network by the second application based on the third access control data.

7. The system of claim 6 , wherein the first access control data specifies a different level of access than the third access control data.

8. The system of claim 6 , wherein the first application and second application are isolated applications.

9. The system of claim 8 , wherein each of the first application and the second application comprises an access control module.

10. The system of claim 6 , wherein the computing device is configured to execute an access control module that controls access to data by the first application and the second application.

11. The system of claim 1 , wherein the computing device is configured to determine if access by the first application to a target server using a path to the target server should be blocked based on the path and blocking the access by the first application to the target server if it is determined that access using the path should be blocked.

12. A method for controlling access to a target platform by a computing device, comprising:

determining a first identifier associated with a first access point at a first geographic location being used by the computing device to access a network;

determining first access control data associated with the first identifier and a first application executing on the computing device, wherein the first access control data includes environmental data including geographical data associated with at least one of the computing device or the first access point;

controlling access to data associated with the target platform by the first application based on the first access control data;

determining a second identifier associated with a second access point being used by the computing device to access the network;

determining second access control data associated with the second identifier and the first application; and

controlling access to data over the network by the first application based on the second access control data.

13. The method of claim 12 , wherein determining the first access control data comprises sending a request to an access control update server and receiving the first access control data from the access control update server; wherein the request comprises the first identifier.

14. The method of claim 12 , further comprising updating the first access control data by sending a request to an access control update server and receiving updated first access control data from the access control update server.

15. The method of claim 12 , wherein the application comprises an access control module configured to perform the determining of the first identifier, the determining of the access control data and the controlling of access to data.

16. The method of claim 12 , wherein the first access control data includes a default level of access.

17. The method of claim 12 , further comprising:

determining third access control data, the third access control data associated with the first identifier and a second application executing on the computing device; and

controlling access to data over the network by the second application based on the third access control data.

18. The method of claim 17 , wherein the first access control data specifies a different level of access than the third access control data.

19. The method of claim 17 , wherein the first application and second application are isolated applications.

Assignments (4)
IP BUSINESS SALE AGREEMENT Recorded Aug 30, 2016
From: OPEN TEXT S.A.
To: OT IP SUB, LLC
Reel/Frame 039872/0605 →
CERTIFICATE OF AMALGAMATION Recorded Aug 30, 2016
From: IP OT SUB ULC
To: OPEN TEXT SA ULC
Reel/Frame 039872/0662 →
CERTIFICATE OF CONTINUANCE Recorded Aug 30, 2016
From: OT IP SUB, LLC
To: IP OT SUB ULC
Reel/Frame 039986/0689 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 30, 2014
From: COPSEY, SIMON DOMINIC
To: OPEN TEXT S.A.
Reel/Frame 034069/0153 →