IP Library Granted Patent US 11,782,693
Granted Patent B2
US 11,782,693 · App. 17/468,943 · Granted Oct 10, 2023

Enterprise firmware management

Inventors: Kashyap Kumar Sharma (Bangalore, IN); Lokeswar Akuthota (Bangalore, IN); Eric Matthew Stillman (Atlanta, GA); Daniel Benjamin Quintas (Atlanta, GA)
Assignee: VMware, Inc.
G06F8/65G06F8/71G06F21/572H04L67/303H04L67/34
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,782,693
App. No.
17/468,943
Granted
Oct 10, 2023
Kind
B2
Abstract

Examples described herein include systems and methods managing firmware versions of user devices that are enrolled in an enterprise mobility management system. The system can include a management server that sends profiles to enrolled devices, causing those devices to restrict further firmware updates and register with a firmware server. The management server can retrieve available firmware versions and display those in a console. An administrator can select target firmware versions in the console. The management server can the cause the enrolled devices to update to the target firmware versions. This can include sending a call from the management server to the firmware server, causing an automatic update. It can also include sending a command from the management server to an enrolled device, causing the enrolled device to prompt a user prior to requesting a firmware update. This can allow an administrator to prevent user devices from installing firmware updates that could expose the enterprise to security risks or negatively impact operation of enterprise applications.

Claims (31)

1. A method for managing firmware versions for a user device, comprising:

sending, from a management server to the user device, a profile having a restriction payload comprising a flag for disabling a firmware update function for the user device absent authorization from the management server;

receiving, from the user device, an indication of a current firmware version of firmware installed on the user device;

receiving, at the management server, an indication of a target firmware version for the user device; and

in an instance where the indicated current firmware version and indicated target firmware version are different, making an Application Programming Interface (API) call from the management server to a firmware server, the API call including an identification of the target firmware version, the user device, and a credential of the management server approved by the firmware server, wherein the API call causes the firmware server to update the user device from the current firmware version to the target firmware version.

2. The method of claim 1 , wherein the user device includes a plurality of user devices and the API call includes identifications of the plurality of user devices and causes the firmware server to update each of the plurality of user devices to the target firmware version.

3. The method of claim 1 , wherein the profile instructs the user device to register with the firmware server.

4. The method of claim 1 , wherein the flag causes the user device to make an API call to the firmware server that disables firmware updates for the user device.

5. The method of claim 1 , wherein the indication of the target firmware version is received at a graphical user interface (GUI) and transmitted to the management server.

6. The method of claim 1 , wherein the firmware server updates the user device without requiring intervention from a user of the user device.

7. A non-transitory, computer-readable medium comprising instructions that, when executed by a processor, cause the processor to perform stages for managing firmware versions for a user device, the stages comprising:

sending, from a management server to the user device, a profile having a restriction payload comprising a flag for disabling a firmware update function for the user device absent authorization from the management server;

receiving, from the user device, an indication of a current firmware version of firmware installed on the user device;

receiving, at the management server, an indication of a target firmware version for the user device; and

in an instance where the indicated current firmware version and indicated target firmware version are different, making an Application Programming Interface (API) call from the management server to a firmware server, the API call including an identification of the target firmware version, the user device, and a credential of the management server approved by the firmware server, wherein the API call causes the firmware server to update the user device from the current firmware version to the target firmware version.

8. The non-transitory, computer-readable medium of claim 7 , wherein the user device includes a plurality of user devices and the API call includes identifications of the plurality of user devices and causes the firmware server to update each of the plurality of user devices to the target firmware version.

9. The non-transitory, computer-readable medium of claim 7 , wherein the profile instructs the user device to register with the firmware server.

10. The non-transitory, computer-readable medium of claim 7 , wherein the flag causes the user device to make an API call to the firmware server that disables firmware updates for the user device.

11. The non-transitory, computer-readable medium of claim 7 , wherein the indication of the target firmware version is received at a graphical user interface (GUI) and transmitted to the management server.

12. The non-transitory, computer-readable medium of claim 7 , wherein the firmware server updates the user device without requiring intervention from a user of the user device.

13. A system for managing firmware versions for a user device, comprising:

a memory stage including a non-transitory, computer-readable medium comprising instructions; and

a processor that executes the instructions to carry out stages comprising:

sending, from a management server to the user device, a profile having a restriction payload comprising a flag for disabling a firmware update function for the user device absent authorization from the management server;

receiving, from the user device, an indication of a current firmware version of firmware installed on the user device;

receiving, at the management server, an indication of a target firmware version for the user device; and

in an instance where the indicated current firmware version and indicated target firmware version are different, making an Application Programming Interface (API) call from the management server to a firmware server, the API call including an identification of the target firmware version, the user device, and a credential of the management server approved by the firmware server, wherein the API call causes the firmware server to update the user device from the current firmware version to the target firmware version.

14. The system of claim 13 , wherein the user device includes a plurality of user devices and the API call includes identifications of the plurality of user devices and causes the firmware server to update each of the plurality of user devices to the target firmware version.

15. The system of claim 13 , wherein the profile instructs the user device to register with the firmware server.

16. The system of claim 13 , wherein the flag causes the user device to make an API call to the firmware server that disables firmware updates for the user device.

17. The system of claim 13 , wherein the indication of the target firmware version is received at a graphical user interface (GUI) and transmitted to the management server.

Assignments (3)
PATENT ASSIGNMENT Recorded Aug 5, 2024
From: VMWARE LLC
To: OMNISSA, LLC
Reel/Frame 068327/0365 →
SECURITY INTEREST Recorded Jul 3, 2024
From: OMNISSA, LLC
To: UBS AG, STAMFORD BRANCH
Reel/Frame 068118/0004 →
CHANGE OF NAME Recorded Apr 15, 2024
From: VMWARE, INC.
To: VMWARE LLC
Reel/Frame 067102/0395 →