IP Library › Granted Patent US 12,732,542
Granted Patent B2
US 12,732,542 · App. 18/611,563 · Granted Sep 8, 2026

Unified device management engine in a device management system

Inventors: Christiaan Brinkhoff (Woodinville, WA); Peter John Richards (Snoqualmie, WA); Jinhua Fei (Bellevue, WA); Andrew Ho Yin Miyasato (Kirkland, WA); Zachary Cole Willson (Redmond, WA); Amar Dinesh Zavery (Redmond, WA)
Assignee: Microsoft Technology Licensing, LLC
H04L63/20
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,732,542
App. No.
18/611,563
Granted
Sep 8, 2026
Kind
B2
Abstract

Methods, systems, and computer storage media for providing unified device management using a unified device management engine of a device management system are described. Device management refers to administering, controlling, and maintaining various types of computing devices. The unified device management engine provides a unified policy object that supports unified management of a remote client and a local client using a unified policy. A unified policy object for a remote client and a local client is configured. The unified policy object is a combined management configuration that enables enforcement of a unified policy on both the remote client and the local client. The unified policy is communicated to the remote client. Unified device management data associated with the unified policy, the remote client, and the local client is generated. The unified device management data is communicated to cause display of the unified device management data on a device management interface.

Claims (51)

1 . A computerized system comprising:

one or more computer processors; and

computer memory storing computer-useable instructions that, when used by the one or more computer processors, cause the one or more computer processors to perform operations, the operations comprising:

configuring a unified policy object for a remote client and a local client, wherein the unified policy object is a combined management configuration that enables enforcement of a unified policy of the unified policy object on both the remote client and the local client;

communicating the unified policy to the remote client, wherein the unified policy is temporarily enforced on the local client via the remote client during a remote session between the remote client and the local client;

generating unified device management data associated with the unified policy, the remote client, and the local client, wherein the unified device management data comprises information associated with a unified device management state for the remote client and the local client,

wherein the unified device management state comprises a tracked state representing a collective status of the remote client and the local client; and

communicating the unified device management data to cause display of the unified device management data on a device management interface.

2 . The system of claim 1 , wherein configuring the unified policy object is based on a request from a device management client to configure the unified policy, wherein configuring the unified policy object comprises generating the unified policy, and wherein the unified policy enables consolidation of policy configuration, management, and enforcement for remote clients and local clients.

3 . The system of claim 1 , wherein the unified policy object is associated with unified device management resources comprising an integrated development framework of virtual desktop infrastructure resources and device management system resources.

4 . The system of claim 1 , wherein the unified policy includes a first policy attribute that is enabled for local clients and the first policy attribute that is disabled for remote clients.

5 . The system of claim 1 , wherein the unified policy is temporarily enforced on the local client during a remote session between the remote client and the local client.

6 . The system of claim 1 , the operations further comprising:

receiving, from a device management client, a request for the unified device management data associated with the unified policy, the remote client, and the local client, wherein the device management client enables configuration and management of the unified policy object and the unified policy; and

based on receiving the request, communicating the unified device management data to the device management client to cause display of the unified device management data on the device management interface, wherein the device management interface includes a plurality of unified device management interfaces configured to display unified device management data associated with remote clients and local clients.

7 . The system of claim 1 , the operations further comprising:

receiving, at the remote client, the unified policy;

applying the unified policy at the remote client, wherein applying the unified policy comprises selectively applying remote client policy attributes of the unified policy;

initializing a remote connection with the local client; and

communicating the unified policy to the local client to cause the local client to apply the unified policy, wherein applying the unified policy comprises selectively applying local client policy attributes of the unified policy.

8 . One or more computer-storage media having computer-executable instructions embodied thereon that, when executed by a computing system having a processor and memory, cause the processor to perform operations, the operations comprising:

communicating a request for unified device management data associated with a unified policy, a remote client, and a local client, wherein the unified policy is associated with a unified policy object that is a combined management configuration that enables enforcement of the unified policy of the unified policy object on the remote client and the local client,

wherein the unified policy is temporarily enforced on the local client via the remote client during a remote session between the remote client and the local client;

based on communicating the request for the unified device management data, receiving the unified device management data,

wherein the unified management data comprises information associated with a unified device management state for the remote client and the local client,

wherein the unified device management state comprises a tracked state representing a collective status of the remote client and the local client; and

causing display of the unified device management data on a device management interface.

9 . The media of claim 8 , the operations further comprising:

configuring the unified policy object for the remote client and the local client;

communicating the unified policy to the remote client;

generating the unified device management data associated with the unified policy, the remote client, and the local client; and

communicating the unified device management data to cause display of the unified device management data on a device management interface.

10 . The media of claim 9 , wherein configuring the unified policy object is based on a request from a device management client to configure the unified policy, wherein configuring the unified policy object comprises generating the unified policy.

11 . The media of claim 8 , wherein the unified policy enables consolidation of policy configuration, management, and enforcement for remote clients and local clients.

12 . The media of claim 8 , wherein the unified policy object is associated with unified device management resources comprising an integrated development framework of virtual desktop infrastructure resources and device management system resources.

13 . The media of claim 8 , wherein the unified policy is temporarily enforced on the local client during a remote session between the remote client and the local client.

14 . The media of claim 8 , wherein the device management interface includes a plurality of unified device management interfaces configured to display unified device management data associated with remote clients and local clients.

15 . A computer-implemented method, the method comprising:

receiving, at a remote client, a unified policy, wherein the unified policy is associated with a unified policy object that is a combined management configuration that enables enforcement of the unified policy on the remote client and a local client,

wherein the unified policy is temporarily enforced on the local client via the remote client during a remote session between the remote client and the local client;

initializing a remote connection with the local client; and

communicating the unified policy to the local client to cause enforcement of the unified policy on the local client, wherein the unified policy is associated with unified device management data,

wherein the unified device management data comprises information associated with a unified device management state for the remote client and the local client,

wherein the unified device management state comprises a tracked state representing a collective status of the remote client and the local client.

16 . The method of claim 15 , the method further comprising:

applying the unified policy at the remote client, wherein applying the unified policy comprises selectively applying remote client policy attributes of the unified policy.

17 . The method of claim 15 , the method further comprising:

storing the unified policy in a unified policy store of the remote client.

18 . The method of claim 15 , wherein enforcement of the unified policy on the local client comprises selectively applying local client policy attributes of the unified policy.

19 . The method of claim 15 , wherein the unified policy is temporarily enforced on the local client during a remote session between the remote client and the local client.

20 . The method of claim 19 , wherein the remote connection is associated with a dynamic virtual channel that enables communicating the unified policy from the remote client to the local client.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 17, 2024
From: ZAVERY, AMAR DINESH; MIYASATO, ANDREW HO YIN; BRINKHOFF, CHRISTIAAN; FEI, JINHUA; RICHARDS, PETER JOHN; WILLSON, ZACHARY COLE
To: MICROSOFT TECHNOLOGY LICENSING, LLC
Reel/Frame 067138/0275 →
Continuity (1)
Related Publication 20250301020A1 · Sep 25, 2025
References Cited (14)
US 8200818B2 · Freund · 2012 [cited by applicant]
US 9898606B1 · Xue · 2018 [cited by applicant]
US 10757091B2 · Kannan · 2020 [cited by applicant]
US 11388199B2 · Maynard · 2022 [cited by applicant]
US 11888902B2 · Ravi · 2024 [cited by applicant]
US 20160087993A1 · Jindal · 2016 [cited by applicant]
US 20230188423A1 · Ryman · 2023 [cited by applicant]
CA 1143660A2 · 2021 [cited by examiner]
CN 106647560A · 2017 [cited by applicant]
EP 1143660A2 · 2001 [cited by applicant]
WO 2023191928A1 · 2023 [cited by applicant]
International Search Report and Written Opinion received for PCT Application No. PCT/US2025/011294, Apr. 2, 2025, 14 pages. [cited by applicant]
“Using PowerShell”, Retrieved From: https://subscription.packtpub.com/book/cloud-and-networking/9781804618592/2/ch02lvl1sec17/using-powershell, 2024, 5 Pages. [cited by applicant]
Reitan et al., “How to configure the Intune Company Portal apps, Company Portal website, and Intune app”, Retrieved From: https://learn.microsoft.com/en-us/mem/intune/apps/company-portal-app, Jun. 6, 2023, 23 Pages. [cited by applicant]