IP Library › Granted Patent US 11,546,334
Granted Patent B2
US 11,546,334 · App. 16/524,493 · Granted Jan 3, 2023

Client device configuration for remote digital workspace access

Inventors: Divyansh Deora (Bengaluru, IN); Anirudh Katoch (Bengaluru, IN)
Assignee: Citrix Systems, Inc.
H04L63/101H04L63/0861H04W12/06H04W12/08G06F9/452
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,546,334
App. No.
16/524,493
Granted
Jan 3, 2023
Kind
B2
Abstract

Client devices in public workspaces are typically reconfigured to default settings for each new user. Thus, a user may manually pre-configure a publicly accessible client device each time the user accesses a virtual workspace via the device. Systems and methods according to this disclosure provide client device configuration based on user identification. Upon launching a remote access application on a “fresh” client device that has not been configured for remote access, the user may be prompted to provide user identifying information, such as, biometric information. A user identification may be determined based on the user identifying information. Various configuration settings may be determined based on the user identification. The client device may be configured based on the determined configuration settings. After the client device is configured, the user may be prompted for authentication credentials. If the user is successfully authenticated, the user is authorized to access the user's virtual workspace.

Claims (42)

1. A method comprising:

receiving, by a computing device, first input comprising a first type of biometric data, wherein the first type of biometric data is configured to identify a single user with a first degree of accuracy, and wherein the first degree of accuracy is insufficient to authenticate the single user;

determining, based on the received first type of biometric data that identifies a first user, client device configuration associated with the first user;

configuring a client device based on the determined client device configuration;

after configuring the client device, receiving second input comprising user authentication information;

authenticating a second user based on the second input; and

authorizing, based on successful authentication of the second user, access to a mobile workspace associated with the authenticated second user and executing on the configured client device.

2. The method of claim 1 , wherein the authorizing the access to the mobile workspace associated with the authenticated second user is further based on a determination that the identified first user is the same as the authenticated second user.

3. The method of claim 1 , wherein the configuring the client device comprises identifying an authentication portal, and wherein receiving the second input comprises receiving the second input via the identified authentication portal.

4. The method of claim 3 , wherein a first authentication portal is identified based on the first user, and a second authentication portal is identified based on the second user.

5. The method of claim 3 , wherein the configuring the client device comprises prepopulating a user identification at the identified authentication portal, and not prepopulating any authentication data at the identified authentication portal.

6. The method of claim 1 , wherein the user authentication information in the second input comprises a second type of biometric data, and wherein the second type of biometric data is configured to identify a user with a second degree of accuracy, and wherein the second degree of accuracy is sufficient to authenticate a user.

7. The method of claim 1 , wherein the determining client device configuration comprises matching the first type of biometric data with stored biometric data corresponding to the first user.

8. The method of claim 7 , wherein the stored biometric data corresponding to the first user was previously provided by the first user.

9. The method of claim 1 , wherein the determining client device configuration comprises identifying an entity that is associated with the first user, and wherein the configuring of the client device is based on the identified entity.

10. A system comprising:

one or more processors; and

memory storing computer-readable instructions that, when executed by the one or more processors, configure the system to:

receive first input comprising a first type of biometric data, wherein the first type of biometric data is configured to identify a single user with a first degree of accuracy, and wherein the first degree of accuracy is insufficient to authenticate the single user;

determine, based on the received first type of biometric data that identifies a first user, client device configuration associated with the first user;

configure a client device based on the determined client device configuration;

after configuring the client device, receive second input comprising user authentication information;

authenticate a second user based on the second input; and

authorize, based on successful authentication of the second user, access to a mobile workspace associated with the authenticated second user and executing on the configured client device.

11. The system of claim 10 , wherein the instructions, when executed by the one or more processors, further configure the system to authorize the access to the mobile workspace associated with the second user based on a determination that the identified first user is the same as the authenticated second user.

12. The system of claim 10 , wherein the instructions, when executed by the one or more processors, further configure the system to:

configure the client device by identifying an authentication portal, and

receive the second input by receiving the second input via the identified authentication portal.

13. The system of claim 12 , wherein a first authentication portal is identified based on the first user, and a second authentication portal is identified based on the second user.

14. The system of claim 12 , wherein the instructions, when executed by the one or more processors, further configure the system to configure the client device by prepopulating a user identification at the identified authentication portal, and not by prepopulating any authentication data at the identified authentication portal.

15. The system of claim 10 , wherein the user authentication information in the second input comprises a second type of biometric data, and wherein the second type of biometric data is configured to identify a user with a second degree of accuracy, and wherein the second degree of accuracy is sufficient to authenticate a user.

16. The system of claim 10 , wherein the instructions, when executed by the one or more processors, further configure the system to determine client device configuration by matching the first type of biometric data with stored biometric data corresponding to the first user.

17. The system of claim 10 , wherein the instructions, when executed by the one or more processors, further configure the system to:

identify the first user by identifying an entity that is associated with the first user, and

configure the client device based on the identified entity.

18. A non-transitory storage medium comprising computer-readable instructions, when executed, cause:

receiving, by a computing device, first input comprising a first type of biometric data, wherein the first type of biometric data is configured to identify a single user with a first degree of accuracy, and wherein the first degree of accuracy is insufficient to authenticate the single user;

determining, based on the received first type of biometric data that identifies a first user, client device configuration associated with the first user;

configuring a client device based on the determined client device configuration;

after configuring the client device, receiving second input comprising user authentication information;

authenticating a second user based on the second input; and

authorizing, based on successful authentication of the second user, access to a mobile workspace associated with the authenticated second user and executing on the configured client device.

Assignments (9)
PATENT SECURITY AGREEMENT Recorded Aug 15, 2025
From: CLOUD SOFTWARE GROUP, INC.; CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 072488/0172 →
SECURITY INTEREST Recorded May 24, 2024
From: CLOUD SOFTWARE GROUP, INC. (F/K/A TIBCO SOFTWARE INC.); CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 067662/0568 →
PATENT SECURITY AGREEMENT Recorded Apr 14, 2023
From: CLOUD SOFTWARE GROUP, INC. (F/K/A TIBCO SOFTWARE INC.); CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 063340/0164 →
RELEASE AND REASSIGNMENT OF SECURITY INTEREST IN PATENT (REEL/FRAME 062113/0001) Recorded Apr 14, 2023
From: GOLDMAN SACHS BANK USA, AS COLLATERAL AGENT
To: CITRIX SYSTEMS, INC.; CLOUD SOFTWARE GROUP, INC. (F/K/A TIBCO SOFTWARE INC.)
Reel/Frame 063339/0525 →
PATENT SECURITY AGREEMENT Recorded Oct 7, 2022
From: TIBCO SOFTWARE INC.; CITRIX SYSTEMS, INC.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 062112/0262 →
PATENT SECURITY AGREEMENT Recorded Oct 7, 2022
From: TIBCO SOFTWARE INC.; CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 062113/0470 →
SECOND LIEN PATENT SECURITY AGREEMENT Recorded Oct 7, 2022
From: TIBCO SOFTWARE INC.; CITRIX SYSTEMS, INC.
To: GOLDMAN SACHS BANK USA, AS COLLATERAL AGENT
Reel/Frame 062113/0001 →
SECURITY INTEREST Recorded Sep 30, 2022
From: CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION
Reel/Frame 062079/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 29, 2019
From: DEORA, DIVYANSH; KATOCH, ANIRUDH
To: CITRIX SYSTEMS, INC.
Reel/Frame 049886/0686 →
Continuity (1)
Related Publication 20210037015A1 · Feb 4, 2021