Multi-persona devices and management

US10129242B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-10129242-B2
Application numberUS-201314074110-A
CountryUS
Kind codeB2
Filing dateNov 7, 2013
Priority dateSep 16, 2013
Publication dateNov 13, 2018
Grant dateNov 13, 2018

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

A method of installing an application on a device configured with a plurality of personas is disclosed. The method includes receiving an indication to engage a first persona of the plurality of personas. The method further includes causing an indication of the first persona to be displayed. The method further includes receiving, via an interface associated with the first persona, an indication to install a first application. The method further includes causing the first application to be installed. The method further includes causing the installed first application to be associated with the first persona.

First claim

Opening claim text (preview).

What is claimed is: 1. A method comprising: configuring a first end-user environment in a device, wherein the first end-user environment comprises a first set of compliance policies; configuring a second end-user environment in the device, wherein the second end-user environment comprises a second set of compliance policies; causing at least a portion of the first set of compliance policies to be applied to a first data element; causing at least a portion of the second set of compliance policies to be applied to a second data element; receiving a request to install an application in the device in the first end-user environment; in response to receiving the request to install the application, determining that the first set of compliance policies permits the application to be used in the first end-user environment; in response to determining that the first set of compliance policies permits the application to be used in the first end-user environment: causing the application to be installed in the device; and causing the application to be accessible to the first end-user environment; causing the device to switch from an active use of the first end-user environment to the second end-user environment in response to detecting a trigger event associated with the device; in response to receiving a request to access a network content repository, facilitating an authentication of the device with the network content repository over a network based at least in part on a credential associated with the second end-user environment in the device; and determining that communication between the device and the network content repository is permissible based at least in part on the active use of the second end-user environment and the authentication of the credential for the second end-user environment. 2. The method of claim 1 , wherein configuring the first end-user environment occurs in response to a user-initiated request. 3. The method of claim 1 , further comprising configuring the second end-user environment in response to a remote instruction. 4. The method of claim 1 , wherein at least one compliance policy of the first set of compliance policies defines a permitted level of communication between the first end-user environment and the second end-user environment. 5. The method of claim 4 , further comprising causing a second compliance policy of the first set of compliance policies to be applied to a third data element. 6. The method of claim 5 , further comprising causing a third compliance policy of the second set of compliance policies to be applied to the third data element. 7. The method of claim 1 , further comprising: determining whether at least one compliance policy of the second set of compliance policies permits the second end-user environment to access the application; and in response to determining that the at least one compliance policy of the second set of compliance policies permits the second end-user environment to access the application, causing the application to be accessible to the second end-user environment. 8. The method of claim 1 , wherein detecting the trigger event comprises determining the device has deviated from a pattern of locations for the device based at least in part on location system data. 9. The method of claim 1 , further comprising initiating a location-finding service on the device to response to switching to the second end-user environment. 10. An apparatus comprising: a processor; and computer instructions configured to cause the processor to: configure a first end-user environment in the apparatus, wherein the first end-user environment comprises a first set of compliance policies; configure a second end-user environment in the apparatus, wherein the second end-user environment comprises a second set of compliance policies; cause at least one first resource associated with the apparatus to be authorized for access by the first end-user environment; cause at least one second resource associated with the apparatus to be denied access by the first end-user environment; receive a request to install an application in the apparatus in the first end-user environment; in response to receiving the request to install the application, determine that the first set of compliance policies permits the application to be used in the first end-user environment; and in response to determining that the first set of compliance policies permits the application to be used in the first end-user environment: cause the application to be installed in the apparatus; and cause the application to be accessible to the first end-user environment; and cause the processor to switch from an active use of the first end-user environment to the second end-user environment in response to detecting a trigger event associated with the apparatus; in response to receiving a request to access a network content repository, facilitate an authentication with the network content repository over a network based at least in part on a credential associated with the second end-user environment and determine that communication with the network content repository is permissible based at least in part on the active use of the second end-user environment and the authentication of the credential for the second end-user environment. 11. The apparatus of claim 10 , wherein the computer instructions are further configured to cause the processor to: cause a third end-user environment to become an active end-user environment of the apparatus; and in response to causing the third end-user environment to become the active end-user environment, cause the application to be inaccessible to the third end-user environment. 12. The apparatus of claim 11 , wherein the computer instructions are further configured to cause the processor to switch the active end-user environment from being the third end-user environment to being the second end-user environment in response to authenticating credentials of a user. 13. The apparatus of claim 10 , wherein the computer instructions are further configured to cause the processor to render a unique identification indicating whether the first end-user environment or the second end-user environment is an active end-user environment. 14. The apparatus of claim 10 , wherein the at least one first resource comprises at least one of a data element, a functionality of the apparatus, a hardware element of the apparatus, or a respective application. 15. A non-transitory computer-readable medium comprising a program executable in a computing device, that when executed, causes the computing device to perform a method comprising: configuring a first end-user environment in a device, wherein the first end-user environment comprises a first set of compliance policies; configuring a second end-user environment in the device, wherein the second end-user environment comprises a second set of compliance policies; causing the first end-user environment to become an active end-user environment, wherein causing the first end-user environment to become the active end-user environment comprises: enabling the first set of compliance policies; and disabling the second set of compliance policies; receiving a request to install an application in the device in the first end-user environment; in response to receiving the request to install the application, determining that the first set of compliance policies permits the application to be used in the first end-user environment; and in response to determining that the first set of compliance policies permits the application to be used in the

Assignees

Inventors

Classifications

  • including at least an additional display (G06F1/1692 takes precedence) · CPC title

  • operating in dual or compartmented mode, i.e. at least one secure mode · CPC title

  • for managing network security; network security policies in general (filtering policies H04L63/0227) · CPC title

  • H04L63/083Primary

    using passwords (cryptographic mechanisms or cryptographic arrangements for entity authentication using a predetermined code H04L9/3226) · CPC title

  • Protecting access to data via a platform, e.g. using keys or access control rules · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US10129242B2 cover?
A method of installing an application on a device configured with a plurality of personas is disclosed. The method includes receiving an indication to engage a first persona of the plurality of personas. The method further includes causing an indication of the first persona to be displayed. The method further includes receiving, via an interface associated with the first persona, an indication …
Who is the assignee on this patent?
Airwatch Llc
What technology area does this patent fall under?
Primary CPC classification H04L63/083. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Nov 13 2018 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 6 related publications on this page (citations in our corpus or others sharing the same primary CPC).