IP Library Granted Patent US 11,411,813
Granted Patent B2
US 11,411,813 · App. 16/919,498 · Granted Aug 9, 2022

Single user device staging

Inventor: Adam Hardy (Alpharetta, GA)
Assignee: AIRWATCH, LLC.
H04L41/0806H04L47/20H04L47/808H04L63/20H04L67/22H04L67/34H04L41/0893H04L67/306
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,411,813
App. No.
16/919,498
Granted
Aug 9, 2022
Kind
B2
Abstract

Disclosed are various examples for staging client devices. In one example, a computing device identifies a user profile logged in a client device based on receiving a profile identifier from a management component executed on the client device. The computing device determines that user profile is to be unmanaged by a management service based on a list of associated user profiles for the client device. A message is transmitted to the client device. The message causes the management component to refrain from enforcing a plurality of policies of the management service on the client device.

Claims (46)

1. A method, comprising:

detecting, by a computing device, a first login of a user profile on a client device, the user profile having a staging profile type, wherein the staging profile type comprises an administrative permission to install a management component on the client device;

permitting, by the computing device, an installation of the management component on the client device based on the user profile having the staging profile type, the management component being in communication with a management service for managing the client device;

detecting, by the computing device, a second log in of the user profile the client device based on receiving a profile identifier from the management component executed on the client device;

determining, by the computing device, that the user profile is to be unmanaged by the management service based on a list of associated user profiles for the client device, wherein the list of associated user profiles comprises at least one user profile managed by the management service; and

transmitting, by the computing device, a message permitting the management component to refrain from enforcing a plurality of policies of the management service on the client device in an instance in which the user profile is determined to be unmanaged by the management service.

2. The method of claim 1 , wherein determining that the user profile is to be unmanaged by the management service further comprises:

determining, by the computing device, that the user profile is included on the list of associated user profiles for the client device; and

determining, by the computing device, that the user profile is to be unmanaged based on a profile type associated with the client device in an instance in which the user profile is included on the list of associated user profiles.

3. The method of claim 1 , wherein determining that the user profile is to be unmanaged by the management service is further based on a profile type associated with the user profile logged into the client device.

4. The method of claim 1 , wherein the staging profile type is determined from a device record associated with the client device.

5. The method of claim 1 , further comprising:

bind the client device to a directory service, wherein the directory service maps an authentication credential entered on the client device to the user profile.

6. The method of claim 1 , wherein the plurality of policies represent at least one of a hardware restriction or a software restriction enforced on an operation of the client device, wherein the plurality of policies are transmitted by the management service to the management component of the client device.

7. A non-transitory computer-readable medium embodying a program executable in a computing device, wherein the program is configured to cause the computing device to at least:

detect a first login of a user profile on a client device, the user profile having a staging profile type, wherein the staging profile type comprises an administrative permission to install a management component on the client device;

permit an installation of the management component on the client device based on the user profile having the staging profile type, the management component being in communication with a management service for managing the client device;

detect a second login of the user profile on the client device based on receiving a profile identifier from the management component executed on the client device;

determine that the user profile is to be unmanaged by the management service based on a list of associated user profiles for the client device, wherein the list of associated user profiles comprises at least one user profile managed by the management service; and

transmit a message permitting the management component to refrain from enforcing a plurality of policies of the management service on the client device in an instance in which the user profile is determined to be unmanaged by the management service.

8. The non-transitory computer-readable medium of claim 7 , wherein determining that the user profile is to be unmanaged by the management service further causes the computing device to at least:

determine that the user profile is included on the list of associated user profiles for the client device; and

determine that the user profile is to be unmanaged based on a profile type associated with the client device in an instance in which the user profile is included on the list of associated user profiles.

9. The non-transitory computer-readable medium of claim 7 , wherein determining that the user profile is to be unmanaged by the management service is further based on a profile type associated with the user profile logged into the client device.

10. The non-transitory computer-readable medium of claim 7 , wherein the profile type associated with the client device is a staging user profile.

11. The non-transitory computer-readable medium of claim 7 , wherein the program is configured to cause the computing device to at least:

bind the client device to a directory service, wherein the directory service maps an authentication credential entered on the client device to the user profile.

12. The non-transitory computer-readable medium of claim 7 , wherein the plurality of policies represents at least one of a hardware restriction or a software restriction enforced on an operation of the client device, wherein the plurality of policies are transmitted by the management service to the management component of the client device.

13. The non-transitory computer-readable medium of claim 7 , wherein the at least one user profile managed by the management service represents an indication that the at least one user profile logged into the client device in a previous instance, wherein the plurality of policies were applied to the client device in the previous instance.

14. A system, comprising:

a computing device; and

an application executable in the computing device, wherein the application is configured to cause the computing device to at least:

detect a first login of a user profile on a client device, the user profile having a staging profile type, wherein the staging profile type comprises an administrative permission to install a management component on the client device;

permit an installation of the management component on the client device based on the user profile having the staging profile type, the management component being in communication with a management service for managing the client device;

detect a second login of the user profile on the client device based on receiving a profile identifier from the management component executed on the client device;

determine that the user profile is to be unmanaged by the management service based on a list of associated user profiles for the client device, wherein the list of associated user profiles comprises at least one user profile managed by the management service; and

transmit a message permitting the management component to refrain from enforcing a plurality of policies of the management service on the client device in an instance in which the user profile is determined to be unmanaged by the management service.

15. The system of claim 14 , wherein determining that the user profile is to be unmanaged by the management service further comprises:

determine that the user profile is included on the list of associated user profiles for the client device; and

determine that the user profile is to be unmanaged based on a profile type associated with the client device in an instance in which the user profile is included on the list of associated user profiles.

16. The system of claim 14 , wherein determining that the user profile is to be unmanaged by the management service is further based on a profile type associated with the user profile logged into the client device.

17. The system of claim 14 , wherein determining that the user profile is to be unmanaged by the management service is further based on a profile type associated with the user profile logged into the client device.

18. The system of claim 14 , wherein the staging profile type is determined from a device record associated with the client device.

19. The system of claim 14 , wherein the application is configured to cause the computing device to at least:

bind the client device to a directory service, wherein the directory service maps an authentication credential entered on the client device to the user profile.

20. The system of claim 14 , wherein the plurality of policies represent at least one of a hardware restriction or a software restriction enforced on an operation of the client device, wherein the plurality of policies are transmitted by the management service to the management component of the client device.

Assignments (2)
PATENT ASSIGNMENT Recorded Aug 5, 2024
From: AIRWATCH LLC
To: OMNISSA, LLC
Reel/Frame 068327/0670 →
SECURITY INTEREST Recorded Jul 3, 2024
From: OMNISSA, LLC
To: UBS AG, STAMFORD BRANCH
Reel/Frame 068118/0004 →