Incremental compliance remediation

US11283803B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-11283803-B2
Application numberUS-202016869366-A
CountryUS
Kind codeB2
Filing dateMay 7, 2020
Priority dateMar 15, 2013
Publication dateMar 22, 2022
Grant dateMar 22, 2022

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Disclosed are various embodiments for enforcing device compliance parameters by inhibiting access to devices, networks or resources. In one embodiment, among others, a computing device identifies a request to access a first resource and determines that a second resource is associated with accessing the first resource based on a resource group identifier. The computing device determines that a compliance rule is associated with the first resource and the second resource based on the resource group identifier. The client device can determine that the compliance rule has been violated. Then, the computing device determines that the compliance rule is associated with an alternative setting and changes the current setting to the alternative setting.

First claim

Opening claim text (preview).

Therefore, the following is claimed: 1. A method, comprising: identifying, using a client device, a request to access a first resource; determining, using the client device, that a second resource is associated with accessing the first resource based on a resource group identifier that is associated with the first resource; determining, using the client device, a compliance rule that is associated with the first resource and the second resource based on the resource group identifier; determining, using the client device, that the compliance rule is violated; determining, using the client device, that the compliance rule is associated with an alternative setting that is more stringent than a current setting; changing, using the client device, the current setting to the alternative setting by increasing a password complexity requirement; and enforcing, using the client device, a remedial action instruction received from a remote computing device, wherein the remedial action instruction is received in an occurrence in which an alert has been transmitted to the remote computing device. 2. The method of claim 1 , wherein changing the current setting to the alternative setting comprises adjusting an operating system setting of the client device. 3. The method of claim 1 , further comprising: transmitting, using the client device, an alert to a remote computing device, wherein the alert comprises an indication of the alternative setting to be implemented in the client device. 4. The method of claim 1 , wherein determining that the compliance rule is violated is based on an event log maintained by the client device. 5. The method of claim 1 , wherein the first resource comprises an application, and identifying the request to access the first resource further comprises: initiating, using the client device, a limited opening of the application, wherein the limited opening causes the application to identify the compliance rule. 6. The method of claim 1 , further comprising: determining, using the client device, the resource group identifier is associated with the first resource based on a user credential and a device identifier. 7. A system, comprising, a computing device that comprises a hardware processor; a memory in communication to the computing device, wherein the memory comprises a plurality of machine instructions that, when executed, cause the computing device to at least: identify a request to access a first resource; determine that a second resource is associated with accessing the first resource based on a resource group identifier that is associated with the first resource; determine a compliance rule that is associated with the first resource and the second resource based on the resource group identifier; determine that the compliance rule is violated; determine that the compliance rule is associated with an alternative setting that is more stringent than a current setting; change the current setting to the alternative setting by increasing a password complexity requirement; and enforce a remedial action instruction received from a remote computing device, wherein the remedial action instruction is received in an occurrence in which an alert has been transmitted to the remote computing device. 8. The system of claim 7 , wherein changing the current setting to the alternative setting comprises adjusting an operating system setting of a client device. 9. The system of claim 7 , wherein the plurality of machine instructions, when executed, further cause the computing device to at least: transmit an alert to a remote computing device, wherein the alert comprises an indication of the alternative setting to be implemented in a client device. 10. The system of claim 7 , wherein determining that the compliance rule is violated is based on an event log maintained by a client device. 11. The system of claim 7 , wherein the first resource comprises an application, and identifying the request to access the first resource further causes the computing device to at least: initiate a limited opening of the application, wherein the limited opening causes the application to identify the compliance rule. 12. The system of claim 7 , wherein the plurality of machine instructions, when executed, further cause the computing device to at least: determine the resource group identifier is associated with the first resource based on a user credential and a device identifier. 13. A non-transitory computer-readable medium embodying program instructions executable in a client computing device that, when executed by the client computing device, cause the client computing device to at least: identify a request to access a first resource; determine that a second resource is associated with accessing the first resource based on a resource group identifier that is associated with the first resource; determine a compliance rule that is associated with the first resource and the second resource based on the resource group identifier; determine that the compliance rule is violated; determine that the compliance rule is associated with an alternative setting that is more stringent than a current setting; change the current setting to the alternative setting by increasing a password complexity requirement; and enforce a remedial action instruction received from a remote computing device, wherein the remedial action instruction is received in an occurrence in which an alert has been transmitted to the remote computing device. 14. The non-transitory computer-readable medium of claim 13 , wherein changing the current setting to the alternative setting comprises adjusting an operating system setting of a client device. 15. The non-transitory computer-readable medium of claim 13 , wherein the program instructions, when executed by the client computing device, further cause the client computing device to at least: transmit an alert to a remote computing device, wherein the alert comprises an indication of the alternative setting to be implemented in a client device. 16. The non-transitory computer-readable medium of claim 13 , wherein determining that the compliance rule is violated is based on an event log maintained by a client device. 17. The non-transitory computer-readable medium of claim 13 , wherein the first resource comprises an application, and identifying the request to access the first resource further causes the client computing device to at least: initiate a limited opening of the application, wherein the limited opening causes the application to identify the compliance rule.

Assignees

Inventors

Classifications

  • G06F21/62Primary

    Protecting access to data via a platform, e.g. using keys or access control rules · CPC title

  • H04L63/10Primary

    for controlling access to devices or network resources · CPC title

  • Resource planning, allocation, distributing or scheduling for enterprises or organisations · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US11283803B2 cover?
Disclosed are various embodiments for enforcing device compliance parameters by inhibiting access to devices, networks or resources. In one embodiment, among others, a computing device identifies a request to access a first resource and determines that a second resource is associated with accessing the first resource based on a resource group identifier. The computing device determines that a c…
Who is the assignee on this patent?
Airwatch Llc
What technology area does this patent fall under?
Primary CPC classification G06F21/62. Mapped technology areas include Physics.
When was this patent published?
Publication date Tue Mar 22 2022 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).