IP Library › Granted Patent US 11,768,925
Granted Patent B2
US 11,768,925 · App. 16/996,332 · Granted Sep 26, 2023

Smart device management resource picker

Inventors: Vipul Modani (Mountain View, CA); Matthew Marshall (Mountain View, CA); Di Zhu (Mountain View, CA); Prem Kumar (Mountain View, CA)
Assignee: Google LLC
G06F21/31G06F9/5011G06F21/44G06F21/78G06F2221/2141
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,768,925
App. No.
16/996,332
Filed
Aug 18, 2020
Granted
Sep 26, 2023
Kind
B2
Art Unit
2495
USPC
726/19
Abstract

A method for a smart device management resource picker includes receiving an authorization request from a third party. The authorization request requests access to a user resource managed by the device manager. The device manager manages access controls associated with a plurality of user devises, the access controls are configured by a user. The method also includes determining whether the third party is authorized to access the user resource managed by the device manager. When the third party is authorized to access the user resource managed by the device manager, the method includes determining whether the user has configured access controls at the device manager that governs the user resource subject to the authorization request. When the user has configured a respective access control that governs the user resource subject to the authorization request, the method includes communicating a response to the authorization request based on the respective access control.

Claims (36)

1. A method comprising:

receiving, at data processing hardware of a device manager, an authorization request from a third party, the authorization request requesting access to a user resource managed by the device manager, the device manager managing access controls associated with a plurality of user devices, the access controls configured by a user;

determining, by the data processing hardware, that the third party is authorized to access the user resource managed by the device manager based on an identity of the third party and a current environment of a respective user device of the plurality of user devices;

based on determining that the third party is authorized to access the user resource managed by the device manager, determining, by the data processing hardware, that the user has configured access controls at the device manager governing the user resource subject to the authorization request;

based on determining that the user has configured a respective access control governing the user resource subject to the authorization request, communicating, by the data processing hardware, a response to the authorization request based on the respective access control;

determining, by the data processing hardware, that the user has not configured access controls for a second third party at the device manager governing the user resource subject to the authorization request; and

based on determining that the user has not configured the access controls for the second third party, generating, by the data processing hardware, a consent request for the user to input one or more access controls in the device manager.

2. The method of claim 1 , wherein determining that the third party is authorized to access the user resource managed by the device manager based on the identity of the third party comprises determining that a whitelist authorizes the third party to access a type of resource comprising the user resource.

3. The method of claim 1 , further comprising:

determining, by the data processing hardware, that a third third party is not authorized to access the user resource managed by the device manager; and

denying, by the data processing hardware, access to the user resource by the third third party.

4. The method of claim 1 , wherein the device manager comprises a user interface, the user interface comprising one or more access control selections for the user to configure a respective access control governing a respective user resource.

5. The method of claim 4 , wherein the one or more access control selections represent the respective user resource in a hierarchy, the hierarchy comprising at least two of a third party, a physical structure housing the respective user resource, a user device associated with the respective user resource, or a function associated with the user resource.

6. The method of claim 4 , further comprising receiving, at the data processing hardware, an access control selection for the user.

7. The method of claim 6 , further comprising storing, by the data processing hardware, the access control selection as a data structure in an access control list.

8. The method of claim 7 , wherein the data structure comprises a tuple represented as an object, a relation, and a user.

9. The method of claim 1 , wherein the user resource comprises user data generated by the respective user device of the plurality of user devices managed by the device manager.

10. A system comprising:

data processing hardware; and

memory hardware in communication with the data processing hardware, the memory hardware storing instructions that when executed on the data processing hardware cause the data processing hardware to perform operations comprising:

receiving an authorization request from a third party, the authorization request requesting access to a user resource managed by a device manager, the device manager managing access controls associated with a plurality of user devices, the access controls configured by a user;

determining that the third party is authorized to access the user resource managed by the device manager based on an identity of the third party and a current environment of a respective user device of the plurality of user devices;

based on determining that the third party is authorized to access the user resource managed by the device manager, determining that the user has configured access controls at the device manager governing the user resource subject to the authorization request;

based on determining that the user has configured a respective access control governing the user resource subject to the authorization request, communicating a response to the authorization request based on the respective access control;

determining that the user has not configured access controls for a second third party at the device manager governing the user resource subject to the authorization request; and

based on determining that the user has not configured the access controls for the second third party, generating a consent request for the user to input one or more access controls in the device manager.

11. The system of claim 10 , wherein determining that the third party is authorized to access the user resource managed by the device manager based on the identity of the third party comprises determining that a whitelist authorizes the third party to access a type of resource comprising the user resource.

12. The system of claim 10 , further comprising:

determining that a third third party is not authorized to access the user resource managed by the device manager; and

denying access to the user resource subject to the third third party.

13. The system of claim 10 , wherein the device manager comprises a user interface, the user interface comprising one or more access control selections for a user to input a respective access control governing a respective user resource.

14. The system of claim 13 , further comprising receiving an access control selection for the user.

15. The system of claim 14 , the operations further comprising storing the access control selection as a data structure in an access control list.

16. The system of claim 15 , wherein the one or more access control selections represent the respective user resource in a hierarchy, the hierarchy comprising at least two of a third party, a physical structure housing the respective user resource, a user device associated with the respective user resource, or a function associated with the user resource.

17. The system of claim 16 , wherein the data structure comprises a tuple represented as an object, a relation, and user.

18. The system of claim 10 , wherein the user resource comprises user data generated by the respective user device of the plurality of user devices managed by the device manager.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 20, 2020
From: MODANI, VIPUL; MARSHALL, MATTHEW; ZHU, DI; KUMAR, PREM
To: GOOGLE LLC
Reel/Frame 053548/0828 →
Continuity (2)
Provisional Application 62888962 · Aug 19, 2019
Related Publication 20210056184A1 · Feb 25, 2021