IP Library Granted Patent US 11,075,900
Granted Patent B2
US 11,075,900 · App. 16/454,923 · Granted Jul 27, 2021

Associating user accounts with enterprise workspaces

Inventors: Scott Harlow Kelley (Atlanta, GA); Adarsh Subhash Chandra Jain (Atlanta, GA); Stephen Turner (Atlanta, GA)
Assignee: AIRWATCH LLC
H04L63/083H04L63/1433H04L67/306H04L67/02
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,075,900
App. No.
16/454,923
Granted
Jul 27, 2021
Kind
B2
Abstract

Various examples relate to the configuration of enterprise workspaces that can be provided in computing devices. In some examples, a computing device is enrolled with a management service that controls operation of at least a portion of the computing device. A management component creates a user account with a distributor of the operating system based on an email address. The management component requests an authentication service to authenticate a user. The user account is associated with an enterprise workspace of the computing device.

Claims (31)

1. A system, comprising:

a computing device enrolled in a management service that controls operation of at least a portion of the computing device;

at least one application executable on the computing device, wherein, when executed, the at least one application causes the computing device to at least:

request creation of a first user account with the distributor of an operating system of the computing device based on an email address associated with a user of the computing device, the email address being associated with the management service and unassociated with any account with the distributer of the operating system;

request an authentication service associated with the management service to authenticate the user based on a second user account of the user that is associated with an enterprise workspace of the operating system, the authentication service authenticating the user according to at least one of: a previous authentication of the user based on the email address or authentication information including the email address provided by the user; and

associate the first user account with the enterprise workspace of the computing device.

2. The system of claim 1 , wherein the authentication information includes the email address and a password for the management service.

3. The system of claim 1 , wherein requesting creation of the first user account comprises transmitting an application programing interface (API) call using an API provided by the distributor of the operating system.

4. The system of claim 1 , wherein the authentication service comprises a security assertion markup language (SAML) authentication service.

5. The system of claim 1 , wherein, when executed, the at least one application further causes the computing device to at least obtain an authentication confirmation from the authentication service prior to associating the first user account with the enterprise workspace of the computing device.

6. The system of claim 1 , wherein the first user account is required for access by the enterprise workspace to a service provided by the distributor of the operating system.

7. The system of claim 1 , wherein the management service is executed remotely from the computing device and accessible by the computing device over a network.

8. A non-transitory computer-readable medium storing a plurality of computer instructions executable by a computing device enrolled in a management service that controls at least a portion of the computing device, wherein the plurality of computer instructions cause the computing device to at least:

request creation of a first user account with the distributor of an operating system of the computing device based on an email address associated with a user of the computing device, the email address being associated with the management service and unassociated with any account with the distributer of the operating system;

request an authentication service associated with the management service to authenticate the user based on a second user account of the user that is associated with an enterprise workspace of the operating system, the authentication service authenticating the user according to at least one of: a previous authentication of the user based on the email address or authentication information including the email address provided by the user; and

associate the first user account with the enterprise workspace of the computing device.

9. The non-transitory computer-readable medium of claim 8 , wherein the authentication information includes the email address and a password for the management service.

10. The non-transitory computer-readable medium of claim 8 , wherein requesting creation of the first user account comprises transmitting an application programing interface (API) call using an API provided by the distributor of the operating system.

11. The non-transitory computer-readable medium of claim 8 , wherein the authentication service comprises a security assertion markup language (SAML) authentication service.

12. The non-transitory computer-readable medium of claim 8 , wherein, when executed, the plurality of computer instructions further cause the computing device to at least obtain an authentication confirmation from the authentication service prior to associating the first user account with the enterprise workspace of the computing device.

13. The non-transitory computer-readable medium of claim 8 , wherein the first user account is required for access by the enterprise workspace to a service provided by the distributor of the operating system.

14. The non-transitory computer-readable medium of claim 8 , wherein the management service is executed remotely from the computing device and accessible by the computing device over a network.

15. A method, comprising:

requesting, by a computing device enrolled in a management service that controls operation of at least a portion of the computing device, creation of a first user account with the distributor of an operating system of the computing device based on an email address associated with a user of the computing device, the email address being associated with the management service and unassociated with any account with the distributer of the operating system;

requesting, by the computing device, an authentication service associated with the management service to authenticate the user based on a second user account of the user that is associated with an enterprise workspace of the operating system, the authentication service authenticating the user according to at least one of: a previous authentication of the user based on the email address or authentication information including the email address provided by the user; and

associating, by the computing device, the first user account with the enterprise workspace of the computing device.

16. The method of claim 15 , wherein the authentication information includes the email address and a password for the management service.

17. The method of claim 15 , wherein requesting creation of the first user account comprises transmitting an application programing interface (API) call using an API provided by the distributor of the operating system.

18. The method of claim 15 , wherein the authentication service comprises a security assertion markup language (SAML) authentication service.

19. The method of claim 15 , further comprising obtaining an authentication confirmation from the authentication service prior to associating the first user account with the enterprise workspace of the computing device.

20. The method of claim 15 , wherein the first user account is required for access by the enterprise workspace to a service provided by the distributor of the operating system.

Assignments (4)
PATENT ASSIGNMENT Recorded Aug 5, 2024
From: AIRWATCH LLC
To: OMNISSA, LLC
Reel/Frame 068327/0670 →
SECURITY INTEREST Recorded Jul 3, 2024
From: OMNISSA, LLC
To: UBS AG, STAMFORD BRANCH
Reel/Frame 068118/0004 →
CORRECTIVE ASSIGNMENT TO CORRECT THE NAME OF RECEIVING PARTY/ASSIGNEE PREVIOUSLY RECORDED ON REEL 055441 FRAME 0790. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT OF ASSIGNORS INTEREST. Recorded Oct 26, 2021
From: KELLEY, SCOTT HARLOW; JAIN, ADARSH SUBHASH CHANDRA; TURNER, STEPHEN
To: AIRWATCH LLC
Reel/Frame 058556/0510 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 1, 2021
From: KELLEY, SCOTT HARLOW; JAIN, ADARSH SUBHASH CHANDRA; TURNER, STEPHEN
To: AIRWARCH LLC
Reel/Frame 055441/0790 →