IP Library Granted Patent US 11,416,348
Granted Patent B2
US 11,416,348 · App. 17/220,908 · Granted Aug 16, 2022

Incident-responsive, computing system snapshot generation

Inventor: Liam Hughes (Sychdyn, GB)
Assignee: Ivanti, Inc.
G06F11/1464G06F11/3495G06F2201/84
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,416,348
App. No.
17/220,908
Granted
Aug 16, 2022
Kind
B2
Abstract

A method of remote device diagnosis and mitigation includes receiving a signal indicative of an intermittent technical state of a first device. Immediately responsive thereto, the method includes interrogating the first device for parameters. The method includes interrogating the first device for the parameters at a third time outside receipt of the signal. The parameters include a transient parameter present at a first time of the intermittent technical state and not present a second time following the first time. The method includes recording the parameters from the first time in a first data file and the parameters for the third time in an additional data file. The first data file is compared with the additional data file to identify a difference in a parameter indicative of a cause of the intermittent technical state. The method includes remotely implementing a change on the first device to mitigate the cause.

Claims (70)

1. A method of remote computing device diagnosis and mitigation, the method comprising:

receiving a signal indicative of an intermittent technical state of a first computing device;

immediately responsive to the signal, interrogating the first computing device for a plurality of computing parameters related to the intermittent technical state, the plurality of computing parameters including at least one transient parameter that is present at a first time at which the intermittent technical state exists on the first computing device and not present a second time following the first time;

recording the plurality of computing parameters in a first data file;

further interrogating the first computing device for the plurality of computing parameters at a third time outside receipt of the signal;

further recording the plurality of computing parameters for the third time in an additional data file;

comparing the first data file with the additional data file;

based on the comparison, identifying a difference in at least one parameter of the plurality of computing parameters between the first data file and the additional data file, the difference being indicative of a cause of the intermittent technical state; and

remotely implementing at least one change on the first computing device to mitigate the cause of the intermittent technical state.

2. The method of claim 1 , further comprising:

receiving with the signal, a message describing the intermittent technical state in a network service system;

linking the first data file to the message; and

communicating the message to a second device along with the first data file.

3. The method of claim 1 , wherein:

the interrogating the first computing device and the recording are implemented through execution of one or more real time sensors, the one or more real time sensors including a set of non-transitory computing instructions stored locally at the first computing device; or

the interrogating the first computing device includes communicating a message queuing telemetry transport (MQTT) message to the first computing device.

4. The method of claim 1 , wherein the interrogating the at least one computing device is performed according to a particular schedule.

5. The method of claim 1 , further comprising:

further interrogating a third computing device for the plurality of computing parameters, wherein the third computing device is similarly configured to the first computing device;

recording the plurality of computing parameters of the third computing device in a second additional data file;

comparing the first data file with the second additional data file of the third computing device; and

identifying a second difference in at least one parameter of the plurality of computing parameters based on the comparison between the first data file and the second additional data file, the second difference being related to the cause of the intermittent technical state.

6. The method of claim 1 , further comprising:

communicating the first data file and the additional data file to a cloud network and storing the first data file and the additional data file remotely from a third computing device; or

locally storing the first data file and the additional data file on an agent loaded on the first computing device.

7. The method of claim 1 , wherein:

the signal indicative of the intermittent technical state is triggered responsive to a selection of an icon by a user on the first computing device by a user; or

the signal indicative of the intermittent technical state is triggered responsive to a specific event on the first computing device.

8. The method of claim 1 , wherein:

the first data file is formatted according to a human-readable data-serialization language and a flat file format; and

the human-readable data-serialization language is YAML or JSON.

9. The method of claim 1 , wherein the plurality of parameters includes one or more or a combination of a current central processing unit (CPU) use, a process currently running on the first computing device, a service loaded on the first computing device, current memory use, and current network traffic.

10. The method of claim 1 , wherein:

the first data file and the additional data file are stored using a distributed version control system; and

the distributed version control system includes GIT.

11. One or more non-transitory computer-readable media storing one or more programs that are configured, in response to execution by one or more processors, to cause a system to execute or control execution of operations of remote computing device diagnosis and mitigation, the operations comprising:

receiving a signal indicative of an intermittent technical state of a first computing device;

immediately responsive to the signal, interrogating the first computing device for a plurality of computing parameters related to the intermit tent technical state, the plurality of the computing parameters including at least one transient parameter that is present at a first time at which the intermittent technical state exists on the first computing device and not present a second time following the first time;

recording the plurality of computing parameters in a first data file;

further interrogating the first computing device for the plurality of computing parameters at a third time outside receipt of the signal;

further recording the plurality of computing parameters for the third time in an additional data file;

comparing the first data file with the additional data file;

based on the comparison, identifying a difference in at least one parameter of the plurality of computing parameters between the first data file and the additional data file, the difference being indicative of the cause of the intermittent technical state; and

remotely implementing at least one change on the first computing device to mitigate the cause of the intermittent technical state.

12. The one or more non-transitory computer-readable media of claim 11 , wherein the operations further comprise:

receiving with the signal, a message describing the intermittent technical state in a network service system;

linking the first data file to the message; and

communicating the message to a second device along with the first data file.

13. The one or more non-transitory computer-readable media of claim 11 , wherein:

the interrogating the first computing device and the recording are implemented through execution of one or more real time sensors, the one or more real time sensors including a set of non-transitory computing instructions stored locally at the first computing device; or

the interrogating the first computing device includes communicating a message queuing telemetry transport (MQTT) message to the first computing device.

14. The one or more non-transitory computer-readable media of claim 11 , wherein the interrogating the at least one computing device is performed according to a particular schedule.

15. The one or more non-transitory computer-readable media of claim 11 , wherein the operations further comprise:

further interrogating a third computing device for the plurality of computing parameters, wherein the third computing device is similarly configured to the first computing device;

recording the plurality of computing parameters of the third computing device in a second additional data file;

comparing the first data file with the second additional data file of the third computing device; and

identifying a second difference in at least one parameter of the plurality of computing parameters based on the comparison between the first data file and the second additional data file, the second difference being related to the cause of the intermittent technical state.

16. The one or more non-transitory computer-readable media of claim 11 , wherein the operations further comprise:

communicating the first data file and the additional data file to a cloud network and storing the first data file and the additional data file remotely from a third computing device; or

locally storing the first data file and the additional data file on an agent loaded on the first computing device.

17. The one or more non-transitory computer-readable media of claim 11 , wherein:

the signal indicative of the intermittent technical state is triggered responsive to a selection of an icon by a user on the first computing device by a user; or

the signal indicative of the intermittent technical state is triggered responsive to a specific event on the first computing device.

18. The one or more non-transitory computer-readable media of claim 11 , wherein:

the first data file is formatted according to a human-readable data-serialization language and a flat file format; and

the human-readable data-serialization language is YAML or JSON.

19. The one or more non-transitory computer-readable media of claim 11 , wherein the plurality of parameters includes one or more or a combination of a current central processing unit (CPU) use, a process currently running on the first computing device, a service loaded on the first computing device, current memory use, and current network traffic.

20. The one or more non-transitory computer-readable media of claim 11 , wherein:

the first data file and the additional data file are stored using a distributed version control system; and

the distributed version control system includes GIT.

Assignments (9)
CORRECTIVE ASSIGNMENT TO CORRECT THE PROPERTY 14633493 WHICH WAS ENTERED INCORRECTLY AS 14633793 PREVIOUSLY RECORDED ON REEL 71176 FRAME 315. ASSIGNOR(S) HEREBY CONFIRMS THE FIRST LIEN NEWCO SECURITY AGREEMENT. Recorded Nov 10, 2025
From: PULSE SECURE, LLC; IVANTI, INC.; IVANTI US LLC; IVANTI SECURITY HOLDINGS LLC
To: MORGAN STANLEY SENIOR FUNDING, INC., AS COLLATERAL AGENT
Reel/Frame 073818/0515 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 16, 2025
From: IVANTI SECURITY HOLDINGS LLC
To: IVANTI, INC.
Reel/Frame 071958/0203 →
2025-1 SECOND LIEN SECURITY AGREEMENT Recorded May 5, 2025
From: IVANTI SECURITY INTERMEDIATE HOLDINGS LLC; IVANTI SECURITY HOLDINGS LLC
To: MORGAN STANLEY SENIOR FUNDING, INC., AS COLLATERAL AGENT
Reel/Frame 071176/0498 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 5, 2025
From: IVANTI, INC.
To: IVANTI SECURITY HOLDINGS LLC
Reel/Frame 071180/0690 →
PARTIAL RELEASE OF SECURITY INTERESTS Recorded May 5, 2025
From: MORGAN STANLEY SENIOR FUNDING, INC., AS COLLATERAL AGENT
To: PULSE SECURE, LLC; IVANTI, INC.; IVANTI US LLC; CHERWELL SOFTWARE, LLC
Reel/Frame 071176/0289 →
FIRST LIEN NEWCO SECURITY AGREEMENT Recorded May 5, 2025
From: PULSE SECURE, LLC; IVANTI, INC.; IVANTI US LLC; IVANTI SECURITY HOLDINGS LLC
To: MORGAN STANLEY SENIOR FUNDING, INC., AS COLLATERAL AGENT
Reel/Frame 071176/0315 →
SECURITY INTEREST Recorded May 3, 2025
From: IVANTI SECURITY HOLDINGS LLC
To: ALTER DOMUS (US) LLC
Reel/Frame 071165/0164 →
RELEASE OF SECURITY INTEREST Recorded May 2, 2025
From: ALTER DOMUS (US) LLC
To: IVANTI SECURITY HOLDINGS LLC
Reel/Frame 071162/0130 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 3, 2021
From: HUGHES, LIAM
To: IVANTI, INC
Reel/Frame 055814/0165 →
Continuity (2)
Provisional Application 63004755 · Apr 3, 2020
Related Publication 20210311838A1 · Oct 7, 2021