IP Library › Granted Patent US 10,938,807
Granted Patent B2
US 10,938,807 · App. 16/032,419 · Granted Mar 2, 2021

Remote desktop monitoring using a webcam

Inventor: Hao Wu (Nanjing, CN)
Assignee: CITRIX SYSTEMS, INC.
H04L63/0861G06F9/452G06K9/00288
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,938,807
App. No.
16/032,419
Filed
Jul 11, 2018
Granted
Mar 2, 2021
Kind
B2
Art Unit
2437
USPC
726/6
Abstract

A computing system includes a virtualization server to provide a virtual session, and a client device communicating with the virtualization server and displaying the virtual session. The client device includes a camera for generating user images of a user of the client device. A user validator includes a policy database for security enforcement, and analyzes the user images and selects at least one policy from the policy database based on the analyzed images. The at least one policy provides at least one action to be taken by the computing system to protect the virtual session.

Claims (35)

1. A computing system comprising:

a virtualization server configured to provide a virtual session;

a client device configured to communicate with said virtualization server and display the virtual session, and comprising a camera for generating user images of a user of the client device; and

a computing device comprising a processor configured to perform the following:

periodically analyze the user images from the camera to determine that security of the virtual session has been compromised by the user depicted in the user images, and

select at least one policy from a policy database based on the analyzed images, with the at least one policy providing at least one action to be taken by the computing system to protect the security of the virtual session.

2. The computing system according to claim 1 wherein said camera is configured to provide images of the user's face to said computing device when the user logs into the virtual session.

3. The computing system according to claim 2 wherein said client device provides the images of the user's face to a face authentication service for authentication, and wherein said computing device is further configured to identify the user's face and determine if the user's face matches a login account based on the authentication.

4. The computing system according to claim 3 wherein if the user's face is not identified or if the user's face does not match the login account, then the at least one action to be taken comprises denying the user's login attempt.

5. The computing system according to claim 1 wherein the user compromising the security of the virtual session includes the user taking a picture of the virtual session being displayed.

6. The computing system according to claim 1 wherein if the user is compromising the security of the virtual session, then the at least one action to be taken comprises closing the virtual session.

7. The computing system according to claim 1 wherein said computing device is further configured to record and report when the user is compromising the security of the virtual session.

8. The computing system according to claim 1 wherein said computing device is further configured to analyze the periodic images of the user so as to determine productivity of the user operating the virtual session within a determined time interval.

9. The computing system according to claim 1 wherein said computing device is further configured to analyze the periodic images so as to determine if the user is no longer operating the virtual session, and to close the virtual session if the user is no longer operating the virtual session.

10. The computing system according to claim 9 wherein said client device queries the virtual server to determine user input activity, with this information being provided to said computing device so as to determine if the user is no longer operating the virtual session.

11. The computing system according to claim 1 wherein said computing device is integrated with the client device or with the virtualization server.

12. A method for operating a computing system comprising:

operating a virtualization server to provide a virtual session;

operating a client device to communicate with the virtualization server and display the virtual session, with the client device comprising a camera for generating user images of a user of the client device; and

operating a computing device to perform the following:

analyzing periodically the user images from the camera to determine that security of the virtual session has been compromised by the user depicted in the user images, and

selecting at least one policy from the policy database based on the analyzed images, with the at least one policy providing at least one action to be taken by the computing system to protect the security of the virtual session.

13. The method according to claim 12 further comprising:

operating the camera to provide images of the user's face to the computing device when the user logs into the virtual session;

operating the client device to provide the images of the user's face to a face authentication service for authentication; and

identifying the user's face and determining if the user's face matches a login account based on the authentication.

14. The method according to claim 13 wherein if the user's face is not identified or if the user's face does not match the login account, then the at least one action to be taken comprises denying the user's login attempt.

15. The method according to claim 12 wherein in response to the user compromising the security of the virtual session, then the at least one action to be taken comprises closing the virtual session.

16. The method according to claim 15 wherein operating the computing device further comprises recording and reporting when the user is compromising the security of the virtual session.

17. The method according to claim 12 wherein operating the computing device further comprises analyzing the periodic images of the user so as to determine productivity of the user operating the virtual session within a determined time interval.

18. The method according to claim 12 wherein operating the computing device further comprises analyzing the periodic images so as to determine if the user is no longer operating the virtual session, and to close the virtual session if the user is no longer operating the virtual session.

19. A non-transitory computer readable medium for operating a computing device that is part of a computing system comprising a virtualization server providing a virtual session and a client device communicating with the virtualization server to display the virtual session, with the client device comprising a camera for generating user images of a user of the client device, and with the non-transitory computer readable medium having a plurality of computer executable instructions for causing the computing device to perform steps comprising:

storing a policy database for security enforcement;

analyzing periodically the user images from the camera to determine that security of the virtual session has been compromised by the user depicted in the user images; and

selecting at least one policy from the policy database based on the analyzed images, with the at least one policy providing at least one action to be taken by the computing system to protect the security of the virtual session.

Assignments (8)
SECURITY INTEREST Recorded May 24, 2024
From: CLOUD SOFTWARE GROUP, INC. (F/K/A TIBCO SOFTWARE INC.); CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 067662/0568 →
RELEASE AND REASSIGNMENT OF SECURITY INTEREST IN PATENT (REEL/FRAME 062113/0001) Recorded Apr 14, 2023
From: GOLDMAN SACHS BANK USA, AS COLLATERAL AGENT
To: CITRIX SYSTEMS, INC.; CLOUD SOFTWARE GROUP, INC. (F/K/A TIBCO SOFTWARE INC.)
Reel/Frame 063339/0525 →
PATENT SECURITY AGREEMENT Recorded Apr 14, 2023
From: CLOUD SOFTWARE GROUP, INC. (F/K/A TIBCO SOFTWARE INC.); CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 063340/0164 →
PATENT SECURITY AGREEMENT Recorded Oct 7, 2022
From: TIBCO SOFTWARE INC.; CITRIX SYSTEMS, INC.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 062112/0262 →
PATENT SECURITY AGREEMENT Recorded Oct 7, 2022
From: TIBCO SOFTWARE INC.; CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 062113/0470 →
SECOND LIEN PATENT SECURITY AGREEMENT Recorded Oct 7, 2022
From: TIBCO SOFTWARE INC.; CITRIX SYSTEMS, INC.
To: GOLDMAN SACHS BANK USA, AS COLLATERAL AGENT
Reel/Frame 062113/0001 →
SECURITY INTEREST Recorded Sep 30, 2022
From: CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION
Reel/Frame 062079/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 11, 2018
From: WU, HAO
To: CITRIX SYSTEMS, INC.
Reel/Frame 046320/0997 →
Continuity (1)
Related Publication 20200021581A1 · Jan 16, 2020