IP Library Granted Patent US 9,882,850
Granted Patent B2
US 9,882,850 · App. 14/687,394 · Granted Jan 30, 2018

Systems and methods for controlling email access

Inventor: Erich Stuntebeck (Marietta, GA)
Assignee: AIRWATCH LLC
H04L51/12G06Q10/107H04L63/0428H04L63/08H04L63/10H04L63/101
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,882,850
App. No.
14/687,394
Granted
Jan 30, 2018
Kind
B2
Abstract

Embodiments of the disclosure relate to proxying at least one email resource from at least one email service to at least one client device, determining whether the email resources are accessible to the client devices via at least one unauthorized application on the client devices, and modifying the email resources to be inaccessible via the unauthorized applications on the client devices in response to a determination that the email resources are accessible via the unauthorized applications on the client devices.

Claims (43)

1. A method for managing access to content by an access control server that determines whether a client can access e-mail provided by an email server, comprising:

obtaining content for transmission to a client, the content comprising an e-mail message and an attachment to the e-mail message;

determining that access to the content should be restricted to an authorized email client installed on the client;

encrypting the attachment to the e-mail message;

transmitting the attachment to the client; and

transmitting at least one instruction to the authorized email client installed on the client, the at least one instruction including a key for decrypting the attachment, wherein the key for decrypting the attachment is inaccessible to a native email client installed on the client.

2. The method of claim 1 , further comprising:

removing a portion of a body of the e-mail message;

encrypting the portion of the body of the e-mail message; and

attaching the encrypted portion of the body to the e-mail message.

3. The method of claim 1 , further comprising:

receiving the content and the key at a client application;

receiving a request to access the content; and

restricting, by the client application, access to the content to one or more authorized applications.

4. The method of claim 1 , further comprising generating the key at a client application, wherein transmitting the at least one instruction including the key comprises transmitting the key from the client application to one or more authorized applications.

5. The method of claim 1 , further comprising generating the key at a server application, wherein transmitting the at least one instruction including the key comprises transmitting the key from the server application to the authorized e-mail client.

6. A non-transitory computer-readable medium comprising instructions which, when executed by a processor:

obtain content for transmission to a client, the content comprising an e-mail message and an attachment to the e-mail message;

determine that access to the content should be restricted to an authorized email client installed on the client;

encrypt the attachment to the e-mail message;

transmit the attachment to the client; and

transmit at least one instruction to the authorized email client installed on the client, the at least one instruction including a key for decrypting the attachment, wherein the key for decrypting the attachment is inaccessible to a native email client installed on the client.

7. The non-transitory computer-readable medium of claim 6 , wherein the content comprises an e-mail, and the non-transitory computer-readable medium further comprises instructions which, when executed by the processor:

remove a portion of a body of the e-mail;

encrypt the portion of the body of the e-mail; and

attach the encrypted portion of the body to the e-mail.

8. The non-transitory computer-readable medium of claim 6 , further comprising instructions which, when executed by the processor:

receive the content and the key at a client application;

receive a request to access the content; and

restrict, by the client application, access to the content to one or more authorized applications.

9. The non-transitory computer-readable medium of claim 6 , further comprising instructions which, when executed by the processor, generate the key at a client application and transmit the key from the client application to the authorized e-mail client.

10. The non-transitory computer-readable medium of claim 6 , further comprising instructions which, when executed by the processor, generate the key at a server application and transmit the key from the server application to the authorized e-mail client.

11. An access control server that manages access to content, the access control server executing an application that is configured to at least:

obtain content for transmission to a client, the content comprising an e-mail message and an attachment to the e-mail message;

determine that access to the content should be restricted to an authorized email client installed on the client;

encrypt the attachment to the e-mail message;

transmit the attachment to the client; and

transmit at least one instruction to the authorized email client installed on the client, the at least one instruction including a key for decrypting the attachment, wherein the key for decrypting the attachment is inaccessible to a native email client installed on the client.

12. The access control server of claim 11 , wherein the content comprises an e-mail, and the access control server is further configured to:

remove a portion of a body of the e-mail;

encrypt the portion of the body of the e-mail; and

attach the encrypted portion of the body to the e-mail.

13. The access control server of claim 11 , wherein the server is further configured to transmit the key from a server application to the authorized e-mail client.

Assignments (3)
PATENT ASSIGNMENT Recorded Aug 5, 2024
From: AIRWATCH LLC
To: OMNISSA, LLC
Reel/Frame 068327/0670 →
SECURITY INTEREST Recorded Jul 3, 2024
From: OMNISSA, LLC
To: UBS AG, STAMFORD BRANCH
Reel/Frame 068118/0004 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 15, 2015
From: STUNTEBECK, ERICH
To: AIRWATCH LLC
Reel/Frame 035417/0881 →
Continuity (3)
Continuation 13750887 · Jan 25, 2013
Continuation In Part 13706499 · Dec 6, 2012
Related Publication 20150222582A1 · Aug 6, 2015