IP Library Granted Patent US 10,986,095
Granted Patent B2
US 10,986,095 · App. 14/961,022 · Granted Apr 20, 2021

Systems and methods for controlling network access

Inventors: Erich Stuntebeck (Marietta, GA); Michelle Burnett (Atlanta, GA)
Assignee: AirWatch LLC
H04L63/10H04L63/20H04W12/003H04W12/08H04L63/102H04W12/00503H04W12/02
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,986,095
App. No.
14/961,022
Granted
Apr 20, 2021
Kind
B2
Abstract

A computing device obtains a request from a user device to access a network beacon. The computing device obtains a device profile for the user device. The computing device determines whether the user device satisfies an authorization rule based on the state of the user device as indicated by the device profile. The computing device authorizes the user device to access the network beacon responsive to determining that the user device satisfies the authorization rule.

Claims (56)

1. A system, comprising:

a computing device; and

a storage device storing a plurality of computer instructions executable by the computing device, wherein the plurality of computer instructions cause the computing device to at least:

obtain a request from a user device to access a wireless network beacon;

obtain a device profile for the user device based at least in part on the request, wherein the device profile indicates a state of the user device;

determine that the user device satisfies an authorization rule based on the state of the user device as indicated by the device profile;

cause the user device to access at least one resource, the at least one resource corresponding to at least one resource rule specifying that the at least one resource is encrypted and that the user device contains at least one mechanism to decrypt the at least one resource;

authorize the user device to access the wireless network beacon responsive to determining that the user device satisfies the authorization rule and the at least one resource rule;

configure at least one setting on the user device based at least in part on a management policy and the wireless network beacon responsive to authorizing the user device to access the wireless network beacon, wherein the at least one setting alters at least one functionality provided by the user device;

determine a stringency of the authorization rule based on the state of the user device as indicated by the device profile subsequent to authorizing the user device to access the wireless network beacon; and

determine that the user device fails to satisfy the authorization rule based at least in part on the stringency subsequent to authorizing the user device to access the wireless network beacon.

2. The system of claim 1 , wherein the plurality of computer instructions further cause the computing device to at least terminate access to the wireless network beacon for the user device responsive to determining that the user device fails to satisfy the authorization rule.

3. The system of claim 1 , wherein the plurality of computer instructions further cause the computing device to at least transmit a key to the user device in response to determining that the user device satisfies the authorization rule, wherein the key facilitates access to a network associated with the wireless network beacon.

4. The system of claim 3 , wherein the plurality of computer instructions further cause the computing device to at least cause the key to be removed from the user device responsive to determining that the user device fails to satisfy the authorization rule.

5. The system of claim 1 , wherein when accessing at least one resource, the plurality of computer instructions further cause the computing device to at least:

transmit an associated content file into a memory location of a memory on the user device;

remove a conflicting content file from the memory; and

execute at least one application on the user device, the at least one application configured to render a content item corresponding to the at least one resource.

6. The system of claim 1 , wherein the plurality of computer instructions further cause the computing device to at least alter the stringency of the authorization rule based at least in part on the user device being located within a transmission range of at least one wireless network beacon.

7. The system of claim 1 , wherein the plurality of computer instructions further cause the computing device to at least determine that a location of the user device corresponds to a public area, the at least one setting comprising a screen brightness level.

8. A method, comprising:

obtaining a request from a user device to access a wireless network beacon;

obtaining a device profile for the user device based at least in part on the request, wherein the device profile indicates a state of the user device;

determining that the user device satisfies an authorization rule based on the state of the user device as indicated by the device profile;

causing the user device to access at least one resource, the at least one resource corresponding to at least one resource rule specifying that the at least one resource is encrypted and that the user device contains at least one mechanism to decrypt the at least one resource; and

authorizing the user device to access the wireless network beacon responsive to determining that the user device satisfies the authorization rule and the at least one resource rule;

configuring at least one setting on the user device based at least on part on a management policy and the wireless network beacon responsive to authorizing the user device to access the wireless network beacon, wherein the at least one setting alters at least one functionality provided by the user device;

determining a stringency of the authorization rule based on the state of the user device as indicated by the device profile subsequent to authorizing the user device to access the wireless network beacon; and

determining that the user device fails to satisfy the authorization rule based at least in part on the stringency subsequent to authorizing the user device to access the wireless network beacon.

9. The method of claim 8 , further comprising terminating access to the wireless network beacon for the user device responsive to determining that the user device fails to satisfy the authorization rule.

10. The method of claim 8 , further comprising transmitting a key to the user device in response to determining that the user device satisfies the authorization rule, wherein the key facilitates access to a network associated with the wireless network beacon.

11. The method of claim 10 , further comprising causing the key to be removed from the user device responsive to determining that the user device fails to satisfy the authorization rule.

12. The method of claim 8 , wherein the device profile specifies a location of the user device.

13. The method of claim 8 , wherein accessing at least one resource comprises:

transmitting an associated content file into a memory location of a memory on the user device;

removing a conflicting content file from the memory; and

executing at least one application on the user device, the at least one application configured to render a content item corresponding to the at least one resource.

14. The method of claim 8 , further comprising altering the stringency of the authorization rule based at least in part on the user device being located within a transmission range of at least one wireless network beacon.

15. A non-transitory computer readable medium storing a plurality of computer instructions executable by a computing device, wherein the plurality of computer instructions, when executed, cause the computing device to at least:

obtain a request from a user device to access a wireless network beacon;

obtain a device profile for the user device based at least in part on the request, wherein the device profile indicates a state of the user device;

determine that the user device satisfies an authorization rule based on the state of the user device as indicated by the device profile;

cause the user device to access at least one resource, the at least one resource corresponding to at least one resource rule specifying that the at least one resource is encrypted and that the user device contains at least one mechanism to decrypt the at least one resource;

authorize the user device to access the wireless network beacon responsive to determining that the user device satisfies the authorization rule;

configure at least one setting on the user device based at least on part on a management policy and the wireless network beacon responsive to authorizing the user device to access the wireless network beacon, wherein the at least one setting alters at least one functionality provided by the user device;

determine a stringency of the authorization rule based on the state of the user device as indicated by the device profile subsequent to authorizing the user device to access the wireless network beacon; and

determine that the user device fails to satisfy the authorization rule based at least in part on the stringency subsequent to authorizing the user device to access the wireless network beacon.

16. The non-transitory computer readable medium of claim 15 , wherein the plurality of computer instructions further cause the computing device to at least:

terminate access to the wireless network beacon for the user device responsive to determining that the user device fails to satisfy the authorization rule.

17. The non-transitory computer readable medium of claim 15 , wherein the plurality of computer instructions further cause the computing device to at least transmit a key to the user device in response to determining that the user device satisfies the authorization rule, wherein the key facilitates access to a network associated with the wireless network beacon.

18. The non-transitory computer readable medium of claim 17 , wherein the plurality of computer instructions further cause the computing device to at least cause the key to be removed from the user device responsive to determining that the user device fails to satisfy the authorization rule.

19. The non-transitory computer readable medium of claim 15 , wherein when accessing at least one resource, the plurality of computer instructions further cause the computing device to at least:

transmit an associated content file into a memory location of a memory on the user device;

remove a conflicting content file from the memory; and

execute at least one application on the user device, the at least one application configured to render a content item corresponding to the at least one resource.

20. The non-transitory computer readable medium of claim 15 , wherein the plurality of computer instructions further cause the computing device to at least alter the stringency of the authorization rule based at least in part on the user device being located within a transmission range of at least one wireless network beacon.

Assignments (3)
PATENT ASSIGNMENT Recorded Aug 5, 2024
From: AIRWATCH LLC
To: OMNISSA, LLC
Reel/Frame 068327/0670 →
SECURITY INTEREST Recorded Jul 3, 2024
From: OMNISSA, LLC
To: UBS AG, STAMFORD BRANCH
Reel/Frame 068118/0004 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 13, 2016
From: STUNTEBECK, ERICH; BURNETT, MICHELLE
To: AIRWATCH LLC
Reel/Frame 037479/0802 →