Systems and Methods to Facilitate Multi-Factor Authentication Policy Enforcement Using One or More Policy Handlers
US-2015281279-A1 · Oct 1, 2015 · US
US9762557B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-9762557-B2 |
| Application number | US-201414525308-A |
| Country | US |
| Kind code | B2 |
| Filing date | Oct 28, 2014 |
| Priority date | Oct 28, 2014 |
| Publication date | Sep 12, 2017 |
| Grant date | Sep 12, 2017 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
Techniques and systems are disclosed for enabling device configuration using signals that encode device policy settings. A method of configuring policy settings on a host device can include receiving a signal that encodes at least one policy setting; interpreting the signal to determine the at least one policy setting; and applying the at least one policy setting to the host device at its own authority.
Opening claim text (preview).
What is claimed is: 1. A method of configuring policy settings on a host device comprising: receiving, via an input capability of the host device, a signal that encodes at least one policy setting of the host device, wherein the signal comprises a visual pattern, an audio pattern, a tactile pattern, a kinetic pattern, or combination thereof; interpreting the signal, at the host device, to determine the at least one policy setting, wherein interpreting the signal comprises: decoding the signal, decrypting the at least one policy setting before determining a key and value pair corresponding to each of the at least one policy setting encoded by the signal, and determining the key and value pair corresponding to each of the at least one policy setting encoded by the signal; and applying the at least one policy setting to the host device by the host device at its own authority for altering the at least one policy setting without a communication with a server. 2. The method of claim 1 , wherein applying the at least one policy setting to the host device by the host device at its own authority comprises: initiating a modification to a policy setting store of the host device in accordance with one or more of the at least one policy setting. 3. The method of claim 1 , wherein the at least one policy setting comprises one or more of a device security setting and a resource access setting. 4. The method of claim 1 , further comprising saving, at the host device, one or more prior policy settings. 5. The method of claim 4 , wherein the signal further encodes an expiration time for the at least one policy setting, and the method further comprises: applying the one or more prior policy settings to the host device after the expiration time has elapsed. 6. A system comprising: one or more computer readable storage media that do not consist of a propagated signal or carrier wave; program instructions for a component stored on at least one of the one or more computer readable storage media that do not consist of the propagated signal or carrier wave that, when executed by a processing system of a host device, direct the processing system to: interpret a signal that encodes at least one policy setting for the host device to determine the at least one policy setting, the signal comprising a visual pattern, an audio pattern, a tactile pattern, a kinetic pattern, or combination thereof, wherein interpreting the signal comprises: decoding the signal, decrypting the at least one policy setting before determining a key and value pair corresponding to each of the at least one policy setting encoded by the signal, and determining the key and value pair corresponding to each of the at least one policy setting encoded by the signal: and communicate with or as part of an operating system of the host device to apply the at least one policy setting to the host device so the host device alters the at least one policy setting on its own authority for altering the at least one policy setting without a communication with a server. 7. The system of claim 6 , wherein the at least one policy setting comprises at least one of a setting to enforce a PIN on a lock screen, access to a company Wi-Fi access point, and a VPN connection setting. 8. The system of claim 6 , wherein the at least one policy setting comprises at least one of a setting that limits internet access to particular hours, a setting affecting store purchases, and a setting that blocks a specified application. 9. The system of claim 6 , wherein the at least one policy setting is described in XML. 10. The system of claim 6 , wherein the program instructions, when executed by the processing system, further direct the processing system to generate an output signal that encodes one or more prior policy settings. 11. A device comprising: a processing system; a camera; one or more computer readable storage media that do not consist of a propagated signal or carrier wave; a policy settings store stored on the one or more computer readable media that do not consist of the propagated signal or carrier wave; program instructions for a component stored on at least one of the one or more computer readable storage media that do not consist of the propagated signal or carrier wave that, when executed by the processing system, direct the processing system to: receive, via the camera, a signal that encodes at least one policy setting for the device, wherein the signal comprises a barcode; interpret the signal to determine the at least one policy setting, wherein the at least one policy setting is encrypted and wherein the program instructions that direct the processing system to interpret the signal comprise instructions that direct the processing system to decrypt the at least one policy setting: and initiate a modification to the policy settings store in accordance with the at least one policy setting. 12. The device of claim 11 , wherein the at least one policy setting comprises one or more of a device security setting and a resource access setting. 13. The device of claim 11 , wherein the at least one policy setting is described in XML. 14. The device of claim 11 , wherein the program instructions, when executed by the processing system, further direct the processing system to save one or more prior policy settings. 15. The device of claim 14 , wherein the signal further encodes an expiration time for the at least one policy setting, and the program instructions, when executed by the processing system, further direct the processing system to initiate, after the expiration time has elapsed, a reverting modification to the policy settings store in accordance with the one or more prior policy settings.
for managing network security; network security policies in general (filtering policies H04L63/0227) · CPC title
Assignment of logical groups to network elements · CPC title
Access security · CPC title
by graphic or iconic representation · CPC title
using meta-data, objects or commands for formatting management information, e.g. using eXtensible markup language [XML] · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.