IP Library Granted Patent US 10,313,874
Granted Patent B2
US 10,313,874 · App. 14/882,223 · Granted Jun 4, 2019

Device management based on wireless beacons

Inventors: Nicholas Amundsen (Altoona, WI); Rebekah Sippert (Eau Claire, WI); Cyrus Ingraham, IV (Chippewa Falls, WI); Bradley Becker (Eau Claire, WI); Eric Levenhagen (Altoona, WI)
Assignee: JAMF Software, LLC
H04W8/22G06F3/1454H04M1/72577H04W4/50H04W48/02H04W76/10H04M1/72522H04M1/72561H04M1/72572
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,313,874
App. No.
14/882,223
Granted
Jun 4, 2019
Kind
B2
Abstract

A particular method includes detecting, at a managed computing device, a signal from a wireless beacon device via a first wireless connection. The signal is detected while particular functionality is inaccessibly at the managed computing device. The method further includes, in response to detecting the signal, transmitting a first message from the managed computing device to a device management server via a second wireless connection, where the first message identifies the wireless beacon device. The method further includes receiving, at the managed computing device in response to the identification of the wireless beacon device in the first message, a second message that grants the managed computing device access to the particular functionality while the managed computing device is within a transmission range of the wireless beacon device.

Claims (38)

1. A method comprising:

detecting, at a managed device, a signal from a wireless beacon via a first wireless connection between the managed device and the wireless beacon, wherein the signal is detected while the managed device does not have authorization to access a particular functionality;

in response to detecting the signal, generating a first message that includes a beacon identifier associated with the wireless beacon;

transmitting the first message from the managed device to a device management server via a second wireless connection;

receiving, at the managed device via the second wireless connection in response to the beacon identifier in the first message, a second message granting, to the managed device, the authorization to access the particular functionality while the managed device is within a transmission range of the wireless beacon; and

in response to an exit of the managed device from the transmission range of the wireless beacon, receiving at the managed device via the second wireless connection a third message from the device management server, the third message revoking from the managed device the authorization to access the particular functionality.

2. The method of claim 1 , further comprising:

detecting, at the managed device, the exit of the managed device from the transmission range of the wireless beacon;

in response to detecting the exit, transmitting a fourth message from the managed device to the device management server, wherein the fourth message indicates the exit; and

receiving the third message at the managed device from the device management server in response to the fourth message.

3. The method of claim 1 , wherein the exit from the transmission range is detected based on:

a detected absence of the signal;

a signal strength of the signal being less than a threshold;

a second signal strength of a second signal associated with a second wireless beacon being greater than the signal strength of the signal; or

any combination thereof.

4. The method of claim 1 , wherein the first wireless connection comprises a personal area network connection.

5. The method of claim 1 , wherein the second wireless connection comprises an IEEE 802.11 connection, a fourth generation (4G) connection, or a third generation (3G) connection.

6. The method of claim 1 , wherein granting the authorization to access the particular functionality comprises configuring the managed device to access a particular printer.

7. The method of claim 1 , wherein granting the authorization to access the particular functionality includes triggering installation of an application by an operating system of the managed device, the application operable to perform the particular functionality.

8. The method of claim 1 , wherein the second message further includes at least one command to be executed by an operating system of the managed device.

9. The method of claim 1 , wherein the signal carries the beacon identifier associated with the wireless beacon and the first message includes the beacon identifier and a user identifier.

10. The method of claim 1 , wherein the particular functionality comprises an application functionality that is unrelated to a functionality of the wireless beacon, and wherein the particular functionality is accessible while the managed computing device detects a signal from the wireless beacon.

11. The method of claim 1 , wherein the signal includes a region identifier associated with a set of geographic regions and a sub-region identifier associated with a particular geographic region of the set of geographic regions.

12. A method comprising:

receiving, at a device management server, a first message from a managed device via an access point, wherein the first message includes a first identifier associated with a first wireless beacon, wherein the first wireless beacon is associated with a first wireless network connection, and wherein the first message indicates that the managed device is within a range of the first wireless beacon;

in response to the first message, initiating transmission, via a second wireless connection, of a second message to the managed device granting the managed device authorization to access a particular functionality; and

in response an exit of the managed device from the range of the first wireless beacon, initiating transmission, via the second wireless connection, of a third message to the managed device to revoke from the managed device the authorization to access the particular functionality.

13. The method of claim 12 , wherein initiating transmission of the second message includes requesting a push notification service to send an instruction to the managed device to cause the managed device to check-in with the device management server.

14. The method of claim 12 , wherein the first identifier is associated with a wireless beacon region associated with a transmission range of each of a plurality of wireless beacons.

15. The method of claim 14 , wherein the device management server stores an association between the wireless beacon region and a Wile indicating that the authorization to access the particular functionality is to be granted to managed devices in the wireless beacon region.

16. The method of claim 14 , wherein the first identifier includes one or more sub-identifiers that identify one or more sub-regions of the wireless beacon region, each of the sub-identifiers corresponding to a particular beacon of the plurality of wireless beacons.

17. The method of claim 16 , wherein the device management server stores an association between a particular sub-region and a rule indicating that the authorization to access the particular functionality is to be granted to managed devices in the particular sub-region.

18. The method of claim 12 , wherein granting the authorization to access the particular functionality includes granting the managed device authorization to access a virtual private network (VPN).

19. A computer-readable storage device storing instructions that, when executed by a processor, cause the processor to perform operations including:

receiving, at a device management server, input indicating that authorization to access a particular functionality is to be granted to each computing device associated with a particular user identifier (ID) while the computing device is within a transmission range of a wireless beacon, the wireless beacon associated with a first wireless connection;

receiving a first message from a managed computing device, the first message having a beacon identifier associated with the wireless beacon and having the user ID, the first message indicating that the managed computing device is within the transmission range of the wireless beacon;

in response to the first message, initiating transmission, via a second wireless connection, of a second message to the managed computing device, the second message granting the managed computing device the authorization to access the particular functionality during a time period that the managed computing device is within the transmission range of the wireless beacon; and

in response to an exit of the managed computing device from the transmission range of the wireless beacon, initiating transmission, via the second wireless connection, of a third message to the managed computing device to revoke from the managed computing device the authorization to access the particular functionality.

Assignments (9)
PATENT SECURITY AGREEMENT Recorded Mar 3, 2026
From: JAMF SOFTWARE, LLC
To: BLUE OWL CAPITAL CORPORATION, AS COLLATERAL AGENT
Reel/Frame 075025/0447 →
RELEASE OF SECURITY INTEREST Recorded Jan 30, 2026
From: JPMORGAN CHASE BANK, N.A., AS AGENT
To: JAMF SOFTWARE, LLC; WANDERA, INC.
Reel/Frame 073647/0447 →
RELEASE OF SECURITY INTEREST IN PATENTS RECORDED AT R/F 053320/0496 Recorded May 3, 2024
From: JPMORGAN CHASE BANK, N.A.
To: JAMF SOFTWARE, LLC
Reel/Frame 067309/0366 →
SECURITY INTEREST Recorded May 3, 2024
From: JAMF SOFTWARE, LLC
To: JPMORGAN CHASE BANK, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 067304/0042 →
SECURITY INTEREST Recorded Jul 27, 2020
From: JAMF SOFTWARE, LLC
To: JPMORGAN CHASE BANK, N.A., AS AGENT
Reel/Frame 053320/0496 →
RELEASE OF SECURITY INTEREST Recorded Jul 27, 2020
From: GOLUB CAPITAL MARKETS LLC
To: JAMF SOFTWARE, LLC
Reel/Frame 053319/0689 →
PATENT SECURITY AGREEMENT Recorded Nov 14, 2017
From: JAMF SOFTWARE, LLC
To: GOLUB CAPITAL MARKETS LLC, AS COLLATERAL AGENT
Reel/Frame 044751/0193 →
CHANGE OF ADDRESS OF ASSIGNEE Recorded Mar 24, 2017
From: JAMF SOFTWARE, LLC
To: JAMF SOFTWARE, LLC
Reel/Frame 042084/0891 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 13, 2015
From: AMUNDSEN, NICHOLAS; SIPPERT, REBEKAH; INGRAHAM, CYRUS, IV; BECKER, BRADLEY; LEVENHAGEN, ERIC
To: JAMF SOFTWARE, LLC
Reel/Frame 036785/0509 →
Continuity (4)
Continuation 14680401 · Apr 7, 2015
Provisional Application 62051791 · Sep 17, 2014
Provisional Application 61980269 · Apr 16, 2014
Related Publication 20160037333A1 · Feb 4, 2016
Cited By (1)
US 12,225,111