IP Library Granted Patent US 11,657,172
Granted Patent B2
US 11,657,172 · App. 16/865,140 · Granted May 23, 2023

Policy-based mobile access to shared network resources

Inventors: Anand Taralika (Sunnyvale, CA); Divakara Challa (Sunnyvale, CA); Srin Kumar (Sunnyvale, CA); Alok Ojha (San Jose, CA); Leonard Chung (San Francisco, CA)
Assignee: EMC IP Holding Company LLC
G06F21/6218G06F21/10H04W12/06H04W12/08H04W12/088
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,657,172
App. No.
16/865,140
Granted
May 23, 2023
Kind
B2
Abstract

Techniques to provide mobile access to content are disclosed. A request from a mobile application running on a mobile device to access content is received at a connector node. A user credential associated with the request is used to identify at the connector node a policy associated with the request. A policy metadata associated with the policy is provided from the connector node to the mobile application running on the mobile device. The mobile application may include application code that is responsive to the policy metadata to perform, with respect to the request to access content, an action indicated by the policy.

Claims (41)

1. A method to provide mobile access to content, comprising:

receiving, by a connector node, a request for content from a mobile device; and

in response receiving the request for content,

determining, by the connector node, a policy associated with the request for content, wherein the policy is determined based at least in part on a user credential associated with the request for content, and the policy indicates a subset of resources for which the mobile device is permitted to access if a corresponding access request is communicated by a mobile application for which a secure connection is established between the mobile device and corresponding one or more content repositories or one or more content management systems, and wherein the policy comprises a bookmark policy that identifies an initial set of bookmarks configured based at least in part on a user associated with the user credential;

obtaining, by the connector node, a policy metadata to be provided to the mobile device in connection with providing to the mobile device the content associated with the request for content, wherein the policy metadata is determined based at least in part on the user credential and the policy, and the policy metadata identifies one or more permitted actions with respect to the content;

providing, by the connector node, the content associated with the request for content, the content being provided to the mobile device; and

causing the policy metadata to be used in connection with the providing of the content.

2. The method of claim 1 , wherein the request for content is communicated from a mobile application running on the mobile device, and the mobile application comprises application code that is responsive to the policy metadata to perform, with respect to the request for content, an action indicated by the policy.

3. The method of claim 1 , further comprising:

obtaining, by the connector node, the content associated with the request for content, the obtaining the content comprising determining the content based at least in part on an interest of a user associated with the mobile device or a group of users to which the user belongs, or historical information pertaining to user preferences for the user or the group of users.

4. The method of claim 1 , wherein the connector node is configured to facilitate access by a mobile application running on the mobile device to one or more servers comprising an enterprise or other non-public network.

5. The method of claim 1 , further comprising:

authenticating a user associated with a mobile device based at least in part on one or more credentials.

6. The method of claim 1 , wherein the request for content includes a user credential.

7. The method of claim 6 , wherein the user credential comprises a user name and a password.

8. The method of claim 1 , wherein the policy is identified at least in part by using a user credential to retrieve user attribute information from a directory, and the user credential is obtained by the connector node in connection with the request for content.

9. The method of claim 8 , wherein the policy is identified based at least in part on an association between one or more user attributes comprising the user attribute information and the policy.

10. The method of claim 1 , wherein a mobile application running on the mobile device is responsive to the policy metadata to obtain and display to a user of the mobile device a bookmarked content navigation interface that includes one or more bookmarks, each of which may be selected by the user to access a corresponding bookmarked content that reside on a server to which the connector is configured to provide access.

11. The method of claim 10 , wherein the bookmarked content navigation interface provides an ability for a user to customize the interface to an extent permitted by the policy.

12. The method of claim 1 , wherein the policy comprises a restriction on access to a restricted content based on one or more of time of day, day of the week, location, and other mobile device context data, and the mobile application is responsive to the policy metadata to enforce the restriction on access with respect to the restricted content.

13. The method of claim 1 , wherein the connector node is configured to perform at the connector node an enforcement action associated with the policy.

14. The method of claim 1 , wherein the initial set of bookmarks indicates content that is expected to be useful to the user.

15. The method of claim 1 , wherein the initial set of bookmarks is a default set of bookmarks that is determined based at least in part on a group affiliation of the user.

16. The method of claim 1 , wherein the policy is enforced at least at the connector node that operatively connects the mobile device to the corresponding one or more content repositories or one or more content management systems.

17. A system to provide mobile access to content, comprising:

a physical communication interface; and

a hardware processor coupled to the communication interface and configured to:

receive, via the communication interface, request for content from a mobile device; and

in response receiving the request for content; and

in response to the connector node receiving the request for content,

determine, by the connector node a policy associated with the request for content, wherein the policy is determined based at least in part on a user credential associated with the request for content, and the policy indicates a subset of resources for which the mobile device is permitted to access if a corresponding access request is communicated by a mobile application for which a secure connection is established between the mobile device and corresponding one or more content repositories or one or more content management systems, and wherein the policy comprises a bookmark policy that identifies an initial set of bookmarks configured based at least in part on a user associated with the user credential;

obtain, by the connector node, a policy metadata to be provided to the mobile device in connection with providing to the mobile device the content associated with the request for content, wherein the policy metadata is determined based at least in part on the user credential and the policy, and the policy metadata identifies one or more permitted actions with respect to the content;

provide, by the connector node, the content associated with the request for content, the content being provided to the mobile device; and

cause the policy metadata to be used in connection with the providing of the content.

18. A computer program product, the computer program product being embodied in a non-transitory computer-readable storage medium and comprising computer instructions for:

receiving, by a connector node, a request for content from a mobile device; and

in response receiving the access request,

determining, by the connector node, a policy associated with the request for content, wherein the policy is determined based at least in part on a user credential associated with the request for content, and the policy indicates a subset of resources for which the mobile device is permitted to access if a corresponding access request is communicated by a mobile application for which a secure connection is established between the mobile device and corresponding one or more content repositories or one or more content management systems, and wherein the policy comprises a bookmark policy that identifies an initial set of bookmarks configured based at least in part on a user associated with the user credential;

obtaining, by the connector node, a policy metadata to be provided to the mobile device in connection with providing to the mobile device the content associated with the request for content, wherein the policy metadata is determined based at least in part on the user credential and the policy, and the policy metadata identifies one or more permitted actions with respect to the content;

providing, by the connector node, the content associated with the request for content, the content being provided to the mobile device; and

causing the policy metadata to be used in connection with the providing of the content.

Assignments (10)
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (052851/0081) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
Reel/Frame 060436/0441 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (052851/0917) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
Reel/Frame 060436/0509 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (052852/0022) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
Reel/Frame 060436/0582 →
RELEASE OF SECURITY INTEREST AT REEL 052771 FRAME 0906 Recorded Nov 2, 2021
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
Reel/Frame 058001/0298 →
SECURITY INTEREST Recorded Jun 5, 2020
From: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
Reel/Frame 052852/0022 →
SECURITY INTEREST Recorded Jun 5, 2020
From: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC; THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
Reel/Frame 052851/0081 →
SECURITY INTEREST Recorded Jun 5, 2020
From: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
Reel/Frame 052851/0917 →
SECURITY AGREEMENT Recorded May 28, 2020
From: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
Reel/Frame 052771/0906 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 1, 2020
From: TARALIKA, ANAND; CHALLA, DIVAKARA; KUMAR, SRIN; OJHA, ALOK; CHUNG, LEONARD
To: EMC CORPORATION
Reel/Frame 052553/0899 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 1, 2020
From: EMC CORPORATION
To: EMC IP HOLDING COMPANY LLC
Reel/Frame 052555/0001 →