Systems and methods for controlling email access

US11489801B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-11489801-B2
Application numberUS-201715846675-A
CountryUS
Kind codeB2
Filing dateDec 19, 2017
Priority dateDec 6, 2012
Publication dateNov 1, 2022
Grant dateNov 1, 2022

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Various examples for remotely controlling access to email resources are provided. In one example, one or more computing devices can be configured to provide, through an access control service, at least one user interface that enables creation of resource rules configured for use by the access control service in enforcement of one or more client devices in association with email resources. In response to input received through the at least one user interface of the access control service, the one or more computing devices can generate a resource rule that directs a client application on a client device to open an attachment of one of the email resources in an authorized secure container application.

First claim

Opening claim text (preview).

Therefore, the following is claimed: 1. A system for remotely controlling access to an email resource, comprising: at least one computing device comprising at least one hardware processor; and program instructions stored in memory that, when executed by the at least one hardware processor, direct the at least one computing device to: provide, through an access control service, at least one user interface that enables creation of at least one resource rule for enforcement on at least one client device in association with a plurality of email resources comprising a plurality of email messages; in response to input received through the at least one user interface, generate the at least one resource rule on the at least computing device; embed the at least one resource rule within one of the plurality of email messages; and direct, based at least in part on the at least one resource rule being embedded within the one of the plurality of email messages, a client application executable on the at least one client device to open an attachment of the one of the plurality of email messages in an authorized secure container application executable on the at least one client device. 2. The system of claim 1 , further comprising program instructions that, when executed, direct the at least one computing device to, in response to the at least one resource rule being generated, modify the one of the plurality of email resources-such that the one of the plurality of email resources can only be opened in the authorized secure container application. 3. The system of claim 2 , wherein the one of the plurality of email resources is modified by encrypting at least a portion of the email resource using a cryptographic key, wherein the cryptographic key is provided to the authorized secure container application from the access control service. 4. The system of claim 2 , wherein the one of the plurality of email resources is modified by removing at least a portion of the one of the plurality of email resources prior to encryption. 5. The system of claim 1 , wherein the authorized secure container application is configured to disable at least one of: a cut function, a copy function, a paste function, a screen capture function, a share function, and a print function on the at least one client device. 6. The system of claim 1 , wherein the client application is directed based at least in part on the at least one resource rule to open the attachment of the one of the plurality of email resources in the authorized secure container application in response to receiving the at least one resource rule on the at least one client device from the access control service. 7. The system of claim 1 , wherein the authorized secure container application is configured to prevent at least one unauthorized application executable by the client device from accessing data within a data store associated with the secure container application. 8. A non-transitory computer-readable medium for remotely controlling access to an email resource embodying program code executable by at least one computing device that, when executed by the at least one computing device, causes the at least one computing device to: provide, through an access control service, at least one user interface that enables creation of at least one resource rule for enforcement on at least one client device in association with a plurality of email resources comprising a plurality of email messages; in response to input received through the at least one user interface, generate the at least one resource rule on the at least computing device; embed the at least one resource rule within one of the plurality of email messages; and direct, based at least in part on the at least one resource rule being embedded within the one of the plurality of email messages, a client application executable on the at least one client device to open an attachment of the one of the plurality of email messages in an authorized secure container application executable on the at least one client device. 9. The non-transitory computer-readable medium of claim 8 , further comprising program code that, when executed, causes the at least one computing device to, in response to the at least one resource rule being generated, modify the one of the plurality of email resources such that the one of the plurality of email resources can only be opened in the authorized secure container application. 10. The non-transitory computer-readable medium of claim 9 , wherein the one of the plurality of email resources is modified by encrypting at least a portion of the email resource using a cryptographic key, wherein the cryptographic key is provided to the authorized secure container application from the access control service. 11. The non-transitory computer-readable medium of claim 9 , wherein the one of the plurality of email resources is modified by removing at least a portion of the one of the plurality of email resources prior to encryption. 12. The non-transitory computer-readable medium of claim 8 , wherein the authorized secure container application is configured to disable at least one of: a cut function, a copy function, a paste function, a screen capture function, a share function, and a print function on the at least one client device. 13. The non-transitory computer-readable medium of claim 8 , wherein the client application is directed based at least in part on the at least one resource rule to open the attachment of the one of the plurality of email resources in the authorized secure container application in response to receiving the at least one resource rule on the at least one client device from the access control service. 14. The non-transitory computer-readable medium of claim 8 , wherein the authorized secure container application is configured to prevent at least one unauthorized application executable by the client device from accessing data within a data store associated with the secure container application. 15. A method for remotely controlling access to an email resource comprising: providing, through an access control service, at least one user interface that enables creation of at least one resource rule for enforcement on at least one client device in association with a plurality of email resources comprising a plurality of email messages; generating, in response to input received through the at least one user interface, the at least one resource rule on the at least computing device; embedding the at least one resource rule within one of the plurality of email messages; and directing, based at least in part on the at least one resource rule being embedded within the one of the plurality of email messages, a client application executable on the at least one client device to open an attachment of the one of the plurality of email messages in an authorized secure container application executable on the at least one client device. 16. The method of claim 15 , further comprising, in response to the at least one resource rule being generated, modifying the one of the plurality of email resources such that the one of the plurality of email resources can only be opened in the authorized secure container application. 17. The method of claim 16 , wherein the one of the plurality of email resources is modified by: removing a first portion of the one of the plurality of email resources prior to encryption; and encrypting a second portion of the email resource using a cryptographic key, wherein the cryptographic key is provided to the authorized secure container application from the

Assignees

Inventors

Classifications

  • Location-based management or tracking services · CPC title

  • File encryption · CPC title

  • to a system of files or objects, e.g. local or distributed file system or database · CPC title

  • H04L51/212Primary

    using filtering or selective blocking · CPC title

  • using mutual or relative location information between multiple location based services [LBS] targets or of distance thresholds · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US11489801B2 cover?
Various examples for remotely controlling access to email resources are provided. In one example, one or more computing devices can be configured to provide, through an access control service, at least one user interface that enables creation of resource rules configured for use by the access control service in enforcement of one or more client devices in association with email resources. In re…
Who is the assignee on this patent?
Airwatch Llc
What technology area does this patent fall under?
Primary CPC classification H04L51/212. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Nov 01 2022 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).