IP Library Granted Patent US 11,334,531
Granted Patent B2
US 11,334,531 · App. 16/738,812 · Granted May 17, 2022

Virtual private cloud that provides enterprise grade functionality and compliance

Inventors: Ondrej Hrebicek (San Carlos, CA); Leonard Chung (San Francisco, CA)
Assignee: EMC IP Holding Company LLC
G06F16/178G06F16/122G06F16/125G06F16/162G06F16/1734G06F16/21G06F21/6218H04L63/10
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,334,531
App. No.
16/738,812
Granted
May 17, 2022
Kind
B2
Abstract

Techniques to enforce policies with respect to managed files and/or endpoints are disclosed. A policy to be applied with respect to one or more files included in a synchronization set and/or an endpoint associated with the synchronization set is received. Compliance with the policy is ensured across a plurality of heterogeneous endpoints associated with the synchronization set.

Claims (35)

1. A method, comprising:

obtaining, by one or more processors associated with a synchronization point that is connected to a plurality of endpoints via a network, one or more objects that are subject to synchronization across the plurality of endpoints;

determining, by one or more processors associated with the synchronization point, a destination endpoint with which to synchronize the one or more objects, the destination endpoint being determined from among the plurality of endpoints, wherein the destination endpoint lacks a local file system;

formatting, by one or more processors associated with the synchronization point, the one or more objects into a preferred format preferred by the destination endpoint; and

providing, by one or more processors associated with the synchronization point, the one or more objects in the preferred format to the destination endpoint.

2. The method of claim 1 , wherein the one or more objects is provided to the destination endpoint in accordance with one or more policies.

3. The method of claim 2 , wherein at least one of the one or more policies restricts access to a file from one or more of the plurality of endpoints.

4. The method of claim 1 , further comprising:

obtaining, by one or more processors associated with the synchronization point, a policy to be applied with respect to a synchronization set, the one or more objects being included in the synchronization set; and

providing, by one or more processors associated with the synchronization point, the policy to at least a first one of the plurality of endpoints, wherein the first one of the plurality of endpoints enforces the policy in response to determining that a policy triggering event associated with one or more files in the synchronization set occurred, and the at least the first one of the plurality of endpoints is associated with a computing systems including one or more non-transitory computer-readable storage mediums.

5. The method of claim 4 , further comprising:

obtaining, by the one or more processors associated with the file management system, an indication of the policy triggering event,

wherein the providing the one or more objects in the preferred format to the destination endpoint comprises synchronizing the one or more files in the synchronization set across at least the destination endpoint, the one or more files in the synchronization set is synchronized based at least in part on the policy triggering event, and one or more files in the synchronization set is synchronized in a manner based at least in part on a type of the native file store of the at least the second one of the plurality of endpoints.

6. The method of claim 5 , wherein the synchronization set is synchronized in a manner based at least in part on a type of the native file store of the at least the second one of the plurality of endpoints.

7. The method of claim 4 , wherein the policy triggering event includes a request to access, create, change, or delete a file to which the policy applies.

8. The method of claim 4 , wherein enforcing the policy includes preventing access to the file by the one or more endpoints at which access is restricted.

9. The method of claim 1 , wherein each of the plurality of endpoints is configured to enforce at the endpoint policies received from a file management system with which the synchronization point is associated, including by responding in a manner prescribed by at least one of the policies to occurrence of a policy-triggering event defined in the at least one of the policies.

10. The method of claim 1 , wherein the one or more objects is provided to the destination endpoint in accordance with one or more policies, and at least one of the one or more policies comprises one or more of a retention policy, a security policy, and an access restriction policy.

11. The method of claim 1 , wherein:

the one or more objects is provided to the destination endpoint in accordance with one or more policies;

the one or more policies comprises a retention policy; and

in response to obtaining an indication of a policy-triggering event, a retention policy operation prescribed by the retention policy is performed.

12. The method of claim 1 , wherein at least partially in response to the policy trigger event, the file is marked as deleted at one or more endpoints at which the file has been stored, and a copy of the file is retained until expiration of a retention period specified in the policy.

13. The method of claim 12 , wherein the copy of the file is stored centrally.

14. The method of claim 12 , wherein the copy is stored, but not made visible to users, at one or more of the endpoints.

15. The method of claim 1 , further comprising:

providing an administrative user interface to enable the policy to be defined.

16. The method of claim 1 , wherein the preferred format corresponds to a native format of the destination endpoint.

17. A file management system that is connected to a plurality of endpoints via a network, the file management system comprising:

one or more processors configured to:

obtain a policy to be applied with respect to a synchronization set, wherein the policy includes an indication of one or more policy triggering events, the policy triggering events including one or more permitted or restricted events relating to a file in the synchronization set, wherein the plurality of endpoints are associated with the synchronization set and a plurality of computing systems respectively including one or more non-transitory computer-readable storage mediums, and wherein at least two of the plurality of endpoints have different types of native file stores, wherein at least one of the plurality of endpoints is a destination endpoint that lacks a local file system; and

providing, by one or more processors associated with the file management system, the policy to at least a first one of the plurality of endpoints, wherein the first one of the plurality of endpoints enforces the policy in response to determining that a policy triggering event associated with one or more files in the synchronization set occurred.

18. A computer program product to manage files, the computer program product being embodied in a tangible, non-transitory computer readable storage medium and comprising computer instructions for:

obtaining, by a file management system that is connected to a plurality of endpoints via a network, a policy to be applied with respect to a synchronization set, wherein the policy includes an indication of one or more policy triggering events, the policy triggering events including one or more permitted or restricted events relating to a file in the synchronization set, wherein the plurality of endpoints are associated with the synchronization set and a plurality of computing systems respectively including one or more non-transitory computer-readable storage mediums, and wherein at least two of the plurality of endpoints have different types of native file stores, wherein at least one of the plurality of endpoints is a destination endpoint that lacks a local file system; and

providing, by one or more processors associated with the file management system, the policy to at least a first one of the plurality of endpoints, wherein the first one of the plurality of endpoints enforces the policy in response to determining that a policy triggering event associated with one or more files in the synchronization set occurred.

Assignments (10)
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (053311/0169) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC
Reel/Frame 060438/0742 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (053546/0001) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL MARKETING L.P. (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO CREDANT TECHNOLOGIES, INC.); DELL INTERNATIONAL L.L.C.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO FORCE10 NETWORKS, INC. AND WYSE TECHNOLOGY L.L.C.); EMC IP HOLDING COMPANY LLC
Reel/Frame 071642/0001 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (052216/0758) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
Reel/Frame 060438/0680 →
RELEASE OF SECURITY INTEREST AF REEL 052243 FRAME 0773 Recorded Nov 2, 2021
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
Reel/Frame 058001/0152 →
SECURITY INTEREST Recorded Jun 5, 2020
From: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
Reel/Frame 053311/0169 →
SECURITY AGREEMENT Recorded Apr 22, 2020
From: CREDANT TECHNOLOGIES INC.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 053546/0001 →
SECURITY AGREEMENT Recorded Mar 26, 2020
From: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
Reel/Frame 052243/0773 →
PATENT SECURITY AGREEMENT (NOTES) Recorded Mar 24, 2020
From: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
Reel/Frame 052216/0758 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 10, 2020
From: HREBICEK, ONDREJ; CHUNG, LEONARD
To: EMC CORPORATION
Reel/Frame 051476/0690 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 10, 2020
From: EMC CORPORATION
To: EMC IP HOLDING COMPANY LLC
Reel/Frame 051557/0547 →