Mobile device using shared digital certificate for different managed enterprise applications and related methods

    公开(公告)号:US10356084B2

    公开(公告)日:2019-07-16

    申请号:US16016042

    申请日:2018-06-22

    Inventor: Shaunak Mistry

    Abstract: A mobile device may include at least one memory and a processor-cooperating with the at least one memory to enroll with an enterprise mobility management (EMM) server and store a plurality of different managed enterprise applications in the at least one memory, and receive and store a digital certificate associated with a given one of the managed enterprise applications in a secure shared location within the at least one memory. The processor may further run the plurality of managed enterprise applications to share access to the digital certificate from the secure shared location and generate and send encrypted data to another mobile device via the EMM server with all of the managed enterprise applications using the same digital certificate associated with the given managed enterprise application for encryption so that the EMM server is unable to decrypt the encrypted data.

    Using Derived Credentials for Enrollment with Enterprise Mobile Device Management Services

    公开(公告)号:US20170094509A1

    公开(公告)日:2017-03-30

    申请号:US14865376

    申请日:2015-09-25

    Abstract: Methods, systems, and computer-readable media for using derived credentials to enroll a mobile computing device with an enterprise mobile device management system are described herein. In various embodiments, a mobile computing device, responsive to a command to enroll with an enterprise mobile device management server, may launch an enrollment application; send an enrollment request message to the enterprise mobile device management server; switch to a certificate management system application on the mobile computing device; request one or more derived credentials from a certificate management system server; store the one or more derived credentials in a shared vault on the mobile computing device; switch to the enrollment application; retrieve a derived credential of the one or more derived credentials stored in the shared vault; and, provide the derived credential to the enterprise mobile device management server to enroll the mobile computing device with at least one mobile device management service.

    Using derived credentials for enrollment with enterprise mobile device management services

    公开(公告)号:US10609560B2

    公开(公告)日:2020-03-31

    申请号:US16378147

    申请日:2019-04-08

    Abstract: Methods, systems, and computer-readable media for using derived credentials to enroll a mobile computing device with an enterprise mobile device management system are described herein. In various embodiments, a mobile computing device, responsive to a command to enroll with an enterprise mobile device management server, may launch an enrollment application; send an enrollment request message to the enterprise mobile device management server; switch to a certificate management system application on the mobile computing device; request one or more derived credentials from a certificate management system server; store the one or more derived credentials in a shared vault on the mobile computing device; switch to the enrollment application; retrieve a derived credential of the one or more derived credentials stored in the shared vault; and, provide the derived credential to the enterprise mobile device management server to enroll the mobile computing device with at least one mobile device management service.

    Certificate pinning in highly secure network environments using public key certificates obtained from a DHCP (dynamic host configuration protocol) server

    公开(公告)号:US10587605B2

    公开(公告)日:2020-03-10

    申请号:US15628107

    申请日:2017-06-20

    Inventor: Shaunak Mistry

    Abstract: Technology for providing secure communications between a user device and a secure server, in which a user device performs a certificate pinning operation by requesting and receiving a set of public key certificates for the secure server from a dynamic host configuration protocol (DHCP) server. The user device requests and receives a current public key certificate of the secure server from the secure server. The current public key certificate of the secure server is compared with the set of public key certificates for the secure server received from the DHCP server. In response to the current public key certificate of the secure server matching one of the public key certificates in the set of public key certificates for the secure server received from the DHCP server, the authenticity of the secure server is confirmed and communications are permitted between the user device and the secure server.

    Optimized Caching of Data in a Network of Nodes

    公开(公告)号:US20180368123A1

    公开(公告)日:2018-12-20

    申请号:US15627950

    申请日:2017-06-20

    Inventor: Shaunak Mistry

    Abstract: Methods and systems for optimized caching of data in a network of nodes are described herein. A server node of a plurality of server nodes may receive, from a device (e.g., a client device), a request for data. The request may be transmitted to the server node via a load balancing device. The server node may retrieve the data requested by the device. The server node may cache, at a cache location internal to the server node, the data requested by the device. The method may comprise transmitting, by the server node, a request to update a data mapping table to indicate a mapping of the server node and the data requested by the device.

    Securely Entering Credentials via Head-Mounted Display Device

    公开(公告)号:US20180365405A1

    公开(公告)日:2018-12-20

    申请号:US15627958

    申请日:2017-06-20

    Inventor: Shaunak Mistry

    Abstract: Methods and systems for securely entering credentials via a head-mounted display device are described herein. A display of a head-mounted device may display, in a first arrangement, a plurality of graphical user interface (GUI) elements. Each of the plurality of GUI elements may indicate a different character of a plurality of characters. The head-mounted device may receive a first user selection of a GUI element from the plurality of GUI elements displayed in the first arrangement. The method may comprise storing the first user selection of the GUI element. After receiving the first user selection of the GUI element, the plurality of GUI elements may be displayed on the display of the head-mounted device and in a second arrangement different from the first arrangement. The head-mounted device may receive a second user selection of a GUI element from the plurality of GUI elements displayed in the second arrangement. The method may comprise determining, based at least in part on the first user selection and the second user selection, whether to grant the user access to a resource

    DETERMINING AND NAVIGATING TO A TARGET LOCATION
    8.
    发明申请
    DETERMINING AND NAVIGATING TO A TARGET LOCATION 有权
    确定和导航到目标位置

    公开(公告)号:US20160309304A1

    公开(公告)日:2016-10-20

    申请号:US14690594

    申请日:2015-04-20

    CPC classification number: H04W4/04 G01C21/206 G01S5/02 H04W4/80

    Abstract: Methods and systems for detecting the location of a target, such as an event or another device, and navigating a device to the target are described herein. The device may be located inside of a building, and the target may be located inside the same building (or a nearby building). The location of the device and/or the location of the target may be determined using, for example, short-range wireless sensors, such as Bluetooth (e.g., Bluetooth Low Energy) sensors, Near Field Communication sensors, or other indoor location sensors. The device may navigate a user of the device to the target location.

    Abstract translation: 这里描述了用于检测诸如事件或另一设备的目标的位置以及将设备导航到目标的方法和系统。 设备可以位于建筑物内部,并且目标可以位于同一建筑物内(或附近的建筑物)内。 可以使用例如短距离无线传感器(例如蓝牙(例如,蓝牙低能量))传感器,近场通信传感器或其他室内位置传感器来确定设备的位置和/或目标的位置。 设备可以将设备的用户导航到目标位置。

    Configurable offline messaging management using user presence information

    公开(公告)号:US11496430B2

    公开(公告)日:2022-11-08

    申请号:US14684778

    申请日:2015-04-13

    Inventor: Shaunak Mistry

    Abstract: Methods, systems, computer-readable media, and apparatuses may provide management of messaging for one or more devices of a user according to the user's configurable presence schedule. A messaging management server may receive notifications of messages and the messages themselves from a messaging service provider. The messages may have originated from a first user and be intended for receipt by a second user. After a preset time period has elapsed, a notification of the message may be sent from the messaging management server to each of the second user's devices in accordance with the second user's presence schedule. Subsequent messages from the first user and intended for the second user may be routed from the messaging management server to the device on which the second user responded to the notification of the initial message and might not be routed to the second user's other devices.

    CERTIFICATE PINNING IN HIGHLY SECURE NETWORK ENVIRONMENTS USING PUBLIC KEY CERTIFICATES OBTAINED FROM A DHCP (DYNAMIC HOST CONFIGURATION PROTOCOL) SERVER

    公开(公告)号:US20180367530A1

    公开(公告)日:2018-12-20

    申请号:US15628107

    申请日:2017-06-20

    Inventor: Shaunak Mistry

    Abstract: Technology for providing secure communications between a user device and a secure server, in which a user device performs a certificate pinning operation by requesting and receiving a set of public key certificates for the secure server from a dynamic host configuration protocol (DHCP) server. The user device requests and receives a current public key certificate of the secure server from the secure server. The current public key certificate of the secure server is compared with the set of public key certificates for the secure server received from the DHCP server. In response to the current public key certificate of the secure server matching one of the public key certificates in the set of public key certificates for the secure server received from the DHCP server, the authenticity of the secure server is confirmed and communications are permitted between the user device and the secure server.

Patent Agency Ranking