-
公开(公告)号:US11350280B2
公开(公告)日:2022-05-31
申请号:US16680062
申请日:2019-11-11
申请人: VERIPATH, INC.
发明人: Nicholas Hall , Steve Eakin
IPC分类号: H04W12/084 , H04L9/40 , H04W12/02 , G06F21/62 , H04W4/23
摘要: A method for controlling access to a user's personal information includes obtaining, from an application executing on a device of a user of the application, personal information about the user of an application; determining a required permission from the user for at least one proposed use of the personal information; presenting, to the user, a first offer to provide access to at least one enhanced function of the application in exchange for the required permission; and responsive to the user providing the required permission, providing the user with access to the at least one enhanced function of the application.
-
公开(公告)号:US11350279B2
公开(公告)日:2022-05-31
申请号:US16866166
申请日:2020-05-04
IPC分类号: H04W12/08 , H04W12/06 , H04W12/084 , H04L9/40
摘要: In one embodiment, a method for providing access to wireless networks may include receiving, by a wireless network access provider from a user device, a request to access a wireless network. The method may include obtaining data representing a policy applicable to the access request, sending the access request, augmented with the policy, to an identity provider associated with the user and having no pre-existing relationship with the access provider, and receiving, from the identity provider, an access request response indicating whether or not the policy is met. The method may include communicating, to the wireless device, an indication that the access request has been accepted, if the policy is met, or an indication that the access request has been rejected, if the policy is not met. The access provider and identity provider may be members of an identity and access federation that communicate over a dynamically established secure connection.
-
公开(公告)号:US20220142552A1
公开(公告)日:2022-05-12
申请号:US17583547
申请日:2022-01-25
发明人: John Rondoni , Dave Dieken
摘要: A communication platform at least partially implements secure communications between a medical device and a trusted authority (TA) service provider. The secure communications prevent access to the secure communications by the communication platform while permitting access to the secure communications at the medical device and/or at the trusted authority service provider.
-
公开(公告)号:US11328543B2
公开(公告)日:2022-05-10
申请号:US16329662
申请日:2017-08-30
申请人: ASSA ABLOY AB
发明人: Frans Lundberg , Peter Stenlund
IPC分类号: G07C9/00 , H04L29/06 , H04L9/32 , H04W12/084
摘要: It is provided a method for controlling access to an access object. The method is performed in an electronic key device and comprises the steps of: communicating with an access control device to obtain an identity of the access control device; sending an access request to a server, the access request comprising an identity of the electronic key device and the identity of the access control device; receiving a response from the server, the response comprising a key delegation to the electronic key device; and sending a grant access request to the access control device, the grant access request comprising the key delegation, to allow the access control device to evaluate whether to grant access to the access object based on a plurality of delegations comprising a sequence of delegations.
-
公开(公告)号:US20220132510A1
公开(公告)日:2022-04-28
申请号:US17476628
申请日:2021-09-16
发明人: Michael KAHN , John D. OGDEN , Linh NGUYEN , Dave Scott SWINGLE , Alpha KAMARA , Michael AGNEW , Ramesh Manikandan KUMARASAMY
IPC分类号: H04W72/04 , H04W48/20 , H04W12/084
摘要: An apparatus, method, and computer-readable recording medium perform client access delegation for a network device in a wireless network. A network controller of a gateway device receives a super-user client device authorization from the network admin client device, connects the super-user client device to the gateway device, receives a second-party client device access authorization from the super-user client device, and connects the second-party client device to the gateway device. The network controller of the gateway device also allocates a portion of available network bandwidth to a second group of client devices, monitors bandwidth consumption by the second group of users, and limits the bandwidth consumption of the second group of users to the allocated portion of the available bandwidth.
-
公开(公告)号:US11316937B2
公开(公告)日:2022-04-26
申请号:US17373776
申请日:2021-07-13
申请人: PerdiemCo LLC
发明人: Darrell Diem
IPC分类号: H04W12/08 , H04L67/52 , H04M1/72457 , H04W12/084 , H04W4/30 , H04W4/80 , H04L29/06 , H04L67/50 , H04L67/54 , H04W4/02 , H04W4/20 , H04W84/12 , H04W4/029 , G06F16/9535 , H04M1/72412 , G06K7/10 , G06Q10/00 , G08B5/22
摘要: An improved system and method for defining an event based upon an object location and a user-defined zone and managing the conveyance of object location event information among computing devices where object location events are defined in terms of a condition based upon a relationship between user-defined zone information and object location information. One or more location information sources are associated with an object to provide the object location information. One or more user-defined zones are defined on a map and one or more object location events are defined. The occurrence of an object location event produces object location event information that is conveyed to users based on user identification codes. Accessibility to object location information, zone information, and object location event information is based upon an object location information access code, a zone information access code, and an object location event information access code, respectively.
-
公开(公告)号:US11303636B2
公开(公告)日:2022-04-12
申请号:US15755605
申请日:2015-08-28
发明人: Heidi-Maria Back , Jari Arkko , Tero Kauppinen , Jimmy Kjällman , Miika Komu , Tomas Mecklin , Patrik Salmela , Mohit Sethi , Le Wang
IPC分类号: H04L29/06 , H04W12/084 , H04W12/086 , H04L45/00 , H04L47/20 , H04W28/02 , H04L45/64 , H04W84/12
摘要: Using an authentication server to program network elements, such as a network node, in accordance with software-defined networking techniques in order to establish a traffic flow rule for a communication device or user of the communication device. After successfully authenticating a communication device or user, the authentication server and/or network node may use an identifier received at the authentication server in connection with the authentication procedure in order to obtain a traffic flow rule for the communication device. The traffic flow rule may be established at the network node or forwarded to a second network node configured to receive network packets from the communication device. The first identifier may be any one of a user identifier identifying a user, an application identifier identifying an application, and a device identifier unique to the communication device.
-
公开(公告)号:US11290425B2
公开(公告)日:2022-03-29
申请号:US15012185
申请日:2016-02-01
申请人: AirWatch LLC
发明人: Craig Farley Newell , Sulay Shah , Leung Tao Kwok , Adam Rykowski
IPC分类号: H04L29/06 , H04W4/50 , H04W12/082 , H04W12/084 , H04W12/088
摘要: Disclosed are various examples for configuring network security based on device management characteristics. In one example, a specification of a set of network resources on an internal network is received from an administrator client. The set of network resources are those network resources that a particular application executed in client devices on an external network should be authorized to access. A gateway from the external network to the internal network is then configured to permit the particular application to have access to the set of network resources.
-
公开(公告)号:US11184360B2
公开(公告)日:2021-11-23
申请号:US16591242
申请日:2019-10-02
申请人: VMware, Inc.
IPC分类号: H04L9/08 , H04L9/30 , G06Q20/38 , H04L9/32 , G06F16/182 , H04L9/06 , H04L29/08 , H04L29/06 , H04W12/37 , H04W12/084 , H04L12/58 , H04L12/66
摘要: Examples described herein include systems and methods for controlling access to a server, such as an email server or a gateway, in situations where the identity of the requesting device is unknown or where the user device accesses the server using an unknown or unmanaged application. In one example, the system can utilize a user authentication credential included in the request to identify other devices belonging to the user that happen to be enrolled with the system. An out-of-band message can be sent to those enrolled devices, requesting confirmation from the user and, in conjunction with an authentication token, allowing the system to trust the previously unknown device. In the example of an unmanaged application attempting to access an email server, the system can confirm compliance of the requesting device and issue an authentication token that, along with an appropriate command sent to the email server, provides access.
-
公开(公告)号:US11122434B2
公开(公告)日:2021-09-14
申请号:US16626055
申请日:2018-05-14
发明人: Uwe Kaufer , Benedikt Rehder , Fabian Lanze , Michael De Paly
IPC分类号: H04L29/06 , H04W12/084 , H04W4/40 , G06F21/62 , H04L9/08 , H04W12/0431 , H04W4/80 , B60R25/20 , B60R25/24
摘要: A method for delegating access rights to a secured object includes generating a first-order data packet in a trusted central management device. The data packet contains a first identifier, a first data set having access rights to a secured device and a first data secret key for encryption and signature. A second-order data packet is signed via the first data secret key and is created in the first mobile communication device and contains a unique identifier, reference data, a second data set having access rights, a second data secret key for encryption and a first data container. The first data container is encrypted via the first data secret key and contains the first identifier and the second data secret key. The signed second-order data packet is transmitted to a second mobile communication device of a second user.
-
-
-
-
-
-
-
-
-