Assessing a security state of a mobile communications device to determine access to specific tasks

US9407640B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-9407640-B2
Application numberUS-201514634115-A
CountryUS
Kind codeB2
Filing dateFeb 27, 2015
Priority dateOct 21, 2008
Publication dateAug 2, 2016
Grant dateAug 2, 2016

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Methods for assessing the current security state of a mobile communications device to determine access to specific tasks is presented. A security component on a server is configured to receive a request to access services from a mobile communications device for a specific task. The security component on the server is further configured to determine whether a security state for the mobile communications device is acceptable for access to the services. Based on the security state for the mobile device being determined to be acceptable for access to the services, access to the services is granted and a determination is whether the security state is acceptable for access to the specific task requested. Based on the security state being determined to be acceptable for access to the specific task requested, access to the specific task requested is granted by the server security component.

First claim

Opening claim text (preview).

What is claimed is: 1. A non-transitory computer-readable medium encoded with a plurality of instructions which, when executed by a processor, causes the processor to perform a method comprising: receiving, at a server security component, a request to access services from a mobile communications device for a specific task; determining, at the server security component, whether a security state for the mobile communications device is acceptable for access to the services, the determining the security state for the mobile communications device comprising: determining whether a security state information associated with the received request to access services is up to date, based on the security state information being determined to not be up to date, obtaining, at the server security component, an updated security state information from the mobile communications device, and determining the security state for the mobile communication device based on the updated security state information obtained from the mobile communications device; based on the security state for the mobile communications device being determined to be acceptable for access to the services, granting access, by the server security component, to the services, and determining, at the server security component, whether the security state for the mobile communications device is acceptable for access to the specified task requested; and based on the security state for the mobile communications device being determined to be acceptable for access to the specified task requested, granting access, by the server security component, to the specific task requested. 2. The computer-readable medium of claim 1 , wherein determining whether the security state for the mobile communications device is acceptable for access to the specific task requested comprises: sending, from the server security component, a security state information associated with the received request to access services to a service provider; and receiving, at the server security component, a response from the service provider corresponding to the request to access, wherein the response provides an indication of whether the security state for the mobile communications device is acceptable for the specific task requested. 3. A non-transitory computer-readable medium encoded with a plurality of instructions which, when executed by a processor, causes the processor to perform a method comprising: receiving, at a service provider, a request to access services by a mobile communications device; determining, at the service provider, whether a security state for the mobile communications device is acceptable for access to the services, the determining the security state for the mobile communications device comprising: determining whether a security state information associated with the received request to access services is up to date, based on the security state information being determined to not being up to date, obtaining, at the server security component, an updated security state information from the mobile communications device, and determining the security state for the mobile communications device based on the updated security state information obtained from the mobile communications device; based on the security state for the mobile communications device being determined to be acceptable for access to the services, granting access, by the server security component, to the services, and determining, at the service provider, whether the security state for the mobile communications device is acceptable for access to the specified task requested; and based on the security state for the mobile communications device being determined to be unacceptable for access to the specific task requested, denying access, by the service provider, to the specified task requested. 4. The computer-readable medium of claim 3 , wherein a server security component serves as a proxy between a mobile communications device and the service provider, and wherein receiving the request to access services by a mobile communications device comprises receiving the request from the server security component. 5. The computer-readable medium of claim 3 , wherein the updated security state information is obtained directly from the mobile communications device. 6. The computer-readable medium of claim 3 , wherein the updated security state information is obtained from a server security component serving as a proxy between the mobile communications device and the service provider. 7. A method comprising: receiving, at a server security component, a request to access services from a mobile communications device for a specified task; determining, at the server security component, whether a security state for the mobile communications device is acceptable for access to the services, the determining the security state for the mobile communications device comprising: determining whether a security state information associated with the received request to access services is up to date, based on the security state information being determined to not be up to date, obtaining, at the server security component, an updated security state information from the mobile communication device, and determining the security state for the mobile communications device based on the updated security state information obtained from the mobile communications device; based on the security state for the mobile communications device being determined to be acceptable for access to the services, granting access, by the server security component, to the services, and determining, at the server security component, whether the security state for the mobile communications device is acceptable for access to the specified task requested; and based on the security state for the mobile communications device being determined to be acceptable for access to the specified task requested, granting access, by the server security component, to the specified task requested. 8. The method of claim 7 , wherein determining whether the security state for the mobile communications device is acceptable for access to the specific task requested comprises: sending, from the server security component, a security state information associated with the received request to access services to a service provider; and receiving, at the server security component, a response from the service provider corresponding to the request to access, wherein the response provides an indication of whether the security state for the mobile communications device is acceptable for the specific task requested. 9. A method comprising: receiving, at a service provider, a request to access services by a mobile communications device; determining, at the service provider, whether a security state for the mobile communications device is acceptable for access to the services, the determining the security state for the mobile communications device comprising: determining whether a security state information associated with the received request to access services is up to date, based on the security state information being determined to not being up to date, obtaining, at the server security component, an updated security state information from the mobile communications device, and determining the security state for the mobile communications device based on the updated security state information obtained from the mobile communications device; based on the security state for the mobile communications device being determined to be acceptable for access to the services, granting access, by the server security component, to the services, and determining, at the service provider, whether the security stat

Assignees

Inventors

Classifications

  • User authentication · CPC title

  • Entity profiles · CPC title

  • Access security · CPC title

  • Assessing vulnerabilities and evaluating computer system security · CPC title

  • Authenticate client device independently of the user · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US9407640B2 cover?
Methods for assessing the current security state of a mobile communications device to determine access to specific tasks is presented. A security component on a server is configured to receive a request to access services from a mobile communications device for a specific task. The security component on the server is further configured to determine whether a security state for the mobile commun…
Who is the assignee on this patent?
Lookout Inc
What technology area does this patent fall under?
Primary CPC classification G06F21/30. Mapped technology areas include Physics.
When was this patent published?
Publication date Tue Aug 02 2016 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).