IP Library Granted Patent US 10,635,466
Granted Patent B2
US 10,635,466 · App. 15/373,736 · Granted Apr 28, 2020

Enhanced security using remote applications

Inventors: Sisimon Soman (Sunnyvale, CA); Matthew Conover (Mountain View, CA)
Assignee: VMWARE, INC.
G06F9/45508G06F9/45558G06F21/6218G06F2009/45587
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,635,466
App. No.
15/373,736
Granted
Apr 28, 2020
Kind
B2
Abstract

Described herein are systems, methods, and software to provide enhanced security when opening applications. In one implementation, an application service receives, over a network, an application request from an end user device to support a file open request on the end user device, wherein the application request occurs based on a security status of a file associated with the file open request. The application service further allocates a virtual node with an application to the end user device to support the application request, provides a remote connection for the application to the end user device, and opens the file in the application of the virtual node to support the file open request.

Claims (33)

1. A method of providing remote applications based on file open requests, the method comprising:

in an application service, receiving, over a network, an application request from an end user device to support a file open request on the end user device, wherein the application request occurs based on a security status of a file associated with the file open request, wherein the security status is based at least on a storage location of the file relative to the end user device and a file type of the file, and wherein the application request comprises a file type identifier indicating the file type associated with the file open request;

identifying an application required to support the application request based on the file type identifier;

allocating a virtual node with the application to the end user device to support the application request;

providing a remote connection for the application to the end user device; and

opening the file associated with the file open request in the application of the virtual node.

2. The method of claim 1 wherein the virtual node comprises one of a container or a virtual machine.

3. The method of claim 1 wherein allocating the virtual node with the application to the end user device to support the request comprises initiating a new virtual node with the application to support the application request.

4. The method of claim 1 wherein allocating the virtual node with the application to the end user device to support the request comprising allocating an idle virtual node with the application to the end user device to support the application request.

5. A computer apparatus comprising:

one or more computer readable storage media;

a processing system operatively coupled with the one or more computer readable storage media; and

program instructions stored on the one or more computer readable storage media to provide remote applications to end user devices that, when read and executed by the processing system, direct the processing system to:

receive an application request from an end user device to support a file open request on the end user device, wherein the application request occurs based on a security status of a file associated with the file open request, wherein the security status is based at least on a storage location of the file relative to the end user device and a file type of the file, and wherein the application request comprises a file type identifier indicating the file type associated with the file open request;

identify an application required to support the application request based on the file type identifier;

allocate a virtual node with the application to the end user device to support the application request;

provide a remote connection for the application to the end user device; and

open the file associated with the file open request in the application of the virtual node.

6. The computer apparatus of claim 5 wherein the virtual node comprises one of a container or a virtual machine.

7. The computer apparatus of claim 5 wherein the program instructions to allocate the virtual node with the application to the end user device to support the request direct the processing system to initiate a new virtual node with the application to support the application request.

8. The computer apparatus of claim 5 wherein the program instructions to allocate the virtual node with the application to the end user device to support the request direct the processing system to allocate an idle virtual node with the application to the end user device to support the request.

9. A computer apparatus comprising:

one or more computer readable storage media;

a processing system operatively coupled with the one or more computer readable storage media; and

program instructions stored on the one or more computer readable storage media to handle file open requests on an end user device that, when read and executed by the processing system, direct the processing system to:

identify a file open request for a file on the end user device;

identify a source of the file, wherein the source of the file comprises a storage location of the file relative to the end user device;

determine whether the file open request requires a remote application from an application service based on the source of the file and a file type for the file;

if the file open request requires a remote application, transfer an application request to the application service and receive a remote connection for an application executing in a virtual node of the application service to support the file open request, wherein the application request comprises a file type identifier indicating the file type associated with the file open request.

10. The computing apparatus of claim 9 wherein the application request comprises an application identifier indicating the application required to support the file open request.

11. The computing apparatus of claim 9 wherein the virtual node comprises a container or a virtual machine.

12. The computing apparatus of claim 9 wherein the program instructions to determine whether the file open request requires a remote application from the application service based on the source of the file direct the processing system determine whether the file open request requires a remote application from the application service based on whether the source of the file comprises an internet source or an untrusted source.

13. The computing apparatus of claim 9 wherein the program instructions direct the processing system to, if the file open request does not require a remote application, execute an application installed locally on the end user device to support the file open request.

Assignments (4)
PATENT ASSIGNMENT Recorded Aug 5, 2024
From: VMWARE LLC
To: OMNISSA, LLC
Reel/Frame 068327/0365 →
SECURITY INTEREST Recorded Jul 3, 2024
From: OMNISSA, LLC
To: UBS AG, STAMFORD BRANCH
Reel/Frame 068118/0004 →
CHANGE OF NAME Recorded Apr 15, 2024
From: VMWARE, INC.
To: VMWARE LLC
Reel/Frame 067102/0395 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 29, 2017
From: SOMAN, SISIMON; CONOVER, MATTHEW
To: VMWARE, INC.
Reel/Frame 042862/0453 →
Continuity (1)
Related Publication 20180165447A1 · Jun 14, 2018