IP Library Granted Patent US 10,887,733
Granted Patent B2
US 10,887,733 · App. 15/953,781 · Granted Jan 5, 2021

Providing access to applications with varying enrollment levels

Inventors: Adam Stephen Rykowski (Atlanta, GA); Ashish Jain (Los Altos, CA); Dale Robert Olds (Redwood City, CA); Emily Hong Xu (Palo Alto, CA); Kabir Barday (Atlanta, GA); Kyle Austin (Saratoga, CA); Sridhara Babu Kommireddy (Alpharetta, GA); Pratik Jagad (Marietta, GA); Krishna Kumar Bhavesh (Atlanta, GA)
H04W4/14H04L63/105H04L67/34H04W4/50H04L2463/082
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,887,733
App. No.
15/953,781
Granted
Jan 5, 2021
Kind
B2
Abstract

Various examples of detecting whether a device meets an enrollment level are disclosed. A request to authenticate a user based upon user credentials is obtained. Applications for which the user is authorized are identified. An enrollment level associated with each of the plurality of applications is also identified. A user interface including the plurality of applications and the enrollment level associated with each of the plurality of applications is generated.

Claims (49)

1. A method for providing access to an application on a client device, comprising:

receiving, from the client device, a request to access the application;

determining an enrollment level associated with the application, the enrollment level indicating a level of administrative control over the client device for access to the application;

determining that the client device requires installation of a management component for access to the application based on the enrollment level associated with the application;

transmitting the management component to the client device;

installing the management component on the client device for enrollment of the client device as a managed device with a management service; and

providing access to the application on the client device after installation of the management component.

2. The method of claim 1 , wherein the enrollment level requires at least one of a plurality of levels of administrative control over the client device by a management service executed remotely from the client device.

3. The method of claim 1 , further comprising generating a user interface including a notice specifying that authorization to access the application is based on enrolling the client device as a managed device with a management service.

4. The method of claim 3 , further comprising transmitting a request to the client device for an acceptance of an enrollment notice, wherein the enrollment notice is displayed on the client device, and the acceptance of the enrollment notice causes the client device to be enrolled with the management service.

5. The method of claim 1 , further comprising:

receiving a user credential upon installation of the management component;

authenticating the user credential; and

completing enrollment of the client device with a management service.

6. The method of claim 1 , wherein installing the application further comprises transmitting a request to enroll the client device with a volume licensing program associated with an application repository.

7. The method of claim 1 , wherein providing access to the application further requires installation of a virtual private network (VPN) profile, and the method further comprises installing the VPN profile on the client device, the VPN profile causing the application to access a network through a VPN tunnel associated with the VPN profile.

8. A system for providing access to an application on a client device, comprising:

at least one computing device; and

a memory device comprising a management service stored thereon, the management service, when executed by the at least one computing device, causing the at least one computing device to at least:

receive, from the client device, a request to access the application;

determine an enrollment level associated with the application, the enrollment level indicating a level of administrative control over the client device for access to the application;

determine that the client device requires installation of a management component for access to the application based on the enrollment level associated with the application;

transmit the management component to the client device;

install the management component on the client device for enrollment of the client device as a managed device with a management service; and

provide access to the application on the client device after installation of the management component.

9. The system of claim 8 , wherein the enrollment level requires at least one of a plurality of levels of administrative control over the client device by the management service, wherein the management service is executed remotely from the client device.

10. The system of claim 8 , wherein the management service generates a user interface including a notice specifying that authorization to access the application is based on enrolling the client device as a managed device with a management service.

11. The system of claim 10 , wherein the management service transmits a request to the client device for an acceptance of an enrollment notice, wherein the enrollment notice is displayed on the client device, and the acceptance of the enrollment notice causes the client device to be enrolled with the management service.

12. The system of claim 8 , wherein the management service causes the at least one computing device to at least:

receive a user credential upon installation of the management component;

authenticate the user credential; and

complete enrollment of the client device with a management service.

13. The system of claim 8 , wherein installation of the application further comprises transmitting a request to enroll the client device with a volume licensing program associated with an application repository.

14. The system of claim 8 , wherein access to the application further requires installation of a virtual private network (VPN) profile, and the management service further causes the at least one computing device to install the VPN profile on the client device, the VPN profile causing the application to access a network through a VPN tunnel associated with the VPN profile.

15. A non-transitory computer-readable medium embodying a program for providing access to an application on a client device, the program executable by at least one computing device, and the program, when executed, causing the at least one computing device to at least:

receive, from a client device, a request to access the application;

determine an enrollment level associated with the application, the enrollment level indicating a level of administrative control over the client device for access to the application;

determine that the client device requires installation of a management component for access to the application based on the enrollment level associated with the application;

transmit the management component to the client device;

install the management component on the client device for enrollment of the client device as a managed device with a management service; and

provide access to the application after installation of the management component.

16. The non-transitory computer-readable medium of claim 15 , wherein the application further requires at least one of a plurality of levels of administrative control over the client device by a management service, wherein the management service is executed remotely from the client device.

17. The non-transitory computer-readable medium of claim 15 , wherein the program generates a user interface including a notice specifying that authorization to access the application is based on enrolling the client device as a managed device with a management service.

18. The non-transitory computer-readable medium of claim 15 , wherein the program further causes the at least one computing device to at least:

receive a user credential upon installation of the management component;

authenticate the user credential; and

complete enrollment of the client device with a management service.

19. The non-transitory computer-readable medium of claim 15 , wherein installation of the application further comprises transmitting a request to enroll the client device with a volume licensing program associated with an application repository.

20. The non-transitory computer-readable medium of claim 15 , wherein access to the application further requires installation of a virtual private network (VPN) profile, and the program further causes the at least one computing device to install the VPN profile on the client device, the VPN profile causing the application to access a network through a VPN tunnel associated with the VPN profile.

Assignments (2)
PATENT ASSIGNMENT Recorded Aug 5, 2024
From: AIRWATCH LLC
To: OMNISSA, LLC
Reel/Frame 068327/0670 →
SECURITY INTEREST Recorded Jul 3, 2024
From: OMNISSA, LLC
To: UBS AG, STAMFORD BRANCH
Reel/Frame 068118/0004 →
Continuity (2)
Continuation 14839287 · Aug 28, 2015
Related Publication 20180234816A1 · Aug 16, 2018
Cited By (1)
US 12,542,777