IP Library Granted Patent US 11,824,644
Granted Patent B2
US 11,824,644 · App. 15/430,184 · Granted Nov 21, 2023

Controlling electronically communicated resources

Inventors: Erich Stuntebeck (Marietta, GA); John Dirico (Atlanta, GA)
Assignee: AirWatch, LLC
H04L63/104G06F21/10H04L63/0435H04L63/102H04L63/107H04L63/20G06F2221/0713G06F2221/2143H04L63/061
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,824,644
App. No.
15/430,184
Granted
Nov 21, 2023
Kind
B2
Abstract

Methods, systems, and devices provide control over resources electronically communicated among computing devices. In some embodiments, a management application identifies multiple entities for communicating electronic content. The management application determines that at least a subset of the entities required for communicating the electronic content is available for electronic communication. The management application authorizes communication of at least some of the electronic content among the entities in response to determining that the required subset of entities is available for electronic communication.

Claims (42)

1. A method, comprising:

transmitting, by a client application executed by a computing device, a request to access at least one resource, the request being transmitted to a management application executed by a server system, the request being transmitted to the management application through a network connection with the computing device and including a device profile describing a security attribute of the computing device, credentials associated with a user of the computing device, and an identifier associated with the computing device, wherein the client application is configured to prevent access to the at least one resource by at least one additional application executed by the computing device;

receiving, by the client application, the at least one resource;

receiving, by the client application, at least one rule defining at least one requirement that must be satisfied for the client application to provide access to the at least one resource, the at least one rule requiring that a mobile device management module be installed on the computing device, that the computing device be in communication with the management application through the network connection, and that at least one additional computing device associated with a required entity be accessing the at least one resource;

determining, by the client application, that at least a portion of the at least one rule is not satisfied by detecting that the at least one additional computing device is unavailable on the network connection; and,

causing, by the client application, the at least one resource to be inaccessible by the computing device.

2. The method of claim 1 , wherein causing the at least one resource to be inaccessible by the computing device comprises causing the at least one resource to be erased from the computing device.

3. The method of claim 1 , wherein causing the at least one resource to be inaccessible by the computing device comprises causing the client application to be erased from the computing device.

4. The method of claim 1 , wherein causing the at least one resource to be inaccessible by the computing device comprises causing a device wipe to be performed.

5. The method of claim 1 , wherein causing the at least one resource to be inaccessible by the computing device comprises causing the computing device to be locked.

6. The method of claim 1 , further comprising:

causing, by the client application, a notification to be transmitted to an administrative entity associated with the at least one resource.

7. The method of claim 1 , further comprising:

causing, by the client application, a software update to be installed on the computing device.

8. A non-transitory computer readable medium comprising executable instructions, which when executed by a processor, cause the processor to perform a method comprising:

transmitting, by a client application executed by a computing device, a request to access at least one resource, the request being transmitted to a management application executed by a server system, the request being transmitted to the management application through a network connection with the computing device and including a device profile describing a security attribute of the computing device, credentials associated with a user of the computing device, and an identifier associated with the computing device, wherein the client application is configured to prevent access to the at least one resource by at least one additional application executed by the computing device;

receiving, by the client application, the at least one resource;

receiving, by the client application, at least one rule defining at least one requirement that must be satisfied for the client application to provide access to the at least one resource, the at least one rule requiring that a mobile device management module be installed on the computing device, that the computing device be in communication with the management application through the network connection, and that at least one additional computing device associated with a required entity be accessing the at least one resource;

determining, by the client application, that at least a portion of the at least one rule is not satisfied by detecting that the at least one additional computing device is unavailable on the network connection; and,

causing, by the client application, the at least one resource to be inaccessible by the computing device.

9. The non-transitory computer readable medium of claim 8 , wherein causing the at least one resource to be inaccessible by the computing device comprises causing the at least one resource to be erased from the computing device.

10. The non-transitory computer readable medium of claim 8 , wherein causing the at least one resource to be inaccessible by the computing device comprises causing the client application to be erased from the computing device.

11. The non-transitory computer readable medium of claim 8 , wherein causing the at least one resource to be inaccessible by the computing device comprises causing a device wipe to be performed.

12. The non-transitory computer readable medium of claim 8 , wherein causing the at least one resource to be inaccessible by the computing device comprises causing the computing device to be locked.

13. The non-transitory computer readable medium of claim 8 , further comprising:

causing, by the client application, a notification to be transmitted to an administrative entity associated with the at least one resource.

14. The non-transitory computer readable medium of claim 8 , further comprising:

causing, by the client application, a software update to be installed on the computing device.

15. A system comprising:

at least one processor; and

a non-transitory computer-readable medium in communication with the at least one processor, wherein the at least one processor is configured to execute instructions embodied in the computer-readable medium to perform operations comprising:

transmitting, by a client application executed by a computing device, a request to access at least one resource, the request being transmitted to a management application executed by a server system, the request being transmitted to the management application through a network connection with the computing device, and including a device profile describing a security attribute of the computing device, credentials associated with a user of the computing device, and an identifier associated with the computing device, wherein the client application is configured to prevent access to the at least one resource by at least one additional application executed by the computing device;

receiving, by the client application, the at least one resource;

receiving, by the client application, at least one rule defining at least one requirement that must be satisfied for the client application to provide access to the at least one resource, the at least one rule requiring that a mobile device management module be installed on the computing device, that the computing device be in communication with the management application through the network connection, and that at least one additional computing device associated with a required entity be accessing the at least one resource;

determining, by the client application, that at least a portion of the at least one rule is not satisfied by detecting that the at least one additional computing device is unavailable on the network connection; and,

causing, by the client application, the at least one resource to be inaccessible by the computing device.

16. The system of claim 15 , wherein causing the at least one resource to be inaccessible by the computing device comprises causing the at least one resource to be erased from the computing device.

17. The system of claim 15 , wherein causing the at least one resource to be inaccessible by the computing device comprises causing the client application to be erased from the computing device.

18. The system of claim 15 , wherein causing the at least one resource to be inaccessible by the computing device comprises causing a device wipe to be performed.

19. The system of claim 15 , wherein causing the at least one resource to be inaccessible by the computing device comprises causing the computing device to be locked.

20. The system of claim 15 , further comprising:

receiving, by the client application, a portion of an encryption key that has been divided between the computing device and the at least one additional computing device.

Assignments (2)
PATENT ASSIGNMENT Recorded Aug 5, 2024
From: AIRWATCH LLC
To: OMNISSA, LLC
Reel/Frame 068327/0670 →
SECURITY INTEREST Recorded Jul 3, 2024
From: OMNISSA, LLC
To: UBS AG, STAMFORD BRANCH
Reel/Frame 068118/0004 →
Continuity (2)
Continuation 13828922 · Mar 14, 2013
Related Publication 20170155660A1 · Jun 1, 2017