-
公开(公告)号:US09805189B2
公开(公告)日:2017-10-31
申请号:US15005257
申请日:2016-01-25
Applicant: Microsoft Technology Licensing, LLC
Inventor: Hassen Karaa , Michael Healy , Brett D. A. Flegg , Gaurav Dhawan , Jeffrey Sutherland
CPC classification number: G06F21/51 , G06F8/61 , G06F21/60 , G06F21/62 , G06F2221/2149
Abstract: Registering a computer system for use in an enterprise. A method includes receiving, from a device management infrastructure of the enterprise, an executable system management component (SMC), and installing the SMC at a storage device. The method also includes executing the SMC, causing the computer system to register with the device management infrastructure, including applying a device settings policy to a configuration of the computer system. Executing the SMC also causes the computer system to configure itself to periodically execute a maintenance task received from the device management infrastructure. The method also includes periodically executing the maintenance task, causing the computer system to receive updated device settings policies from the device management infrastructure and apply the updated device settings policies to the configuration of the computer system, and to receive an updated application from the device management infrastructure and install the updated application at the computer system.
-
公开(公告)号:US11750384B2
公开(公告)日:2023-09-05
申请号:US17332796
申请日:2021-05-27
Applicant: Microsoft Technology Licensing, LLC
Inventor: Prabagar Ramadasse , Yordan Rouskov , Mick Healy , Gaurav Dhawan , Venkata Raghuram Pampana , Aleksandr Tokarev , Marc Shepard , Ramachandra Ravitej Vennapusa
CPC classification number: H04L9/3073 , H04L9/0866 , H04L9/3234 , H04L9/3265 , H04L9/3268 , H04L9/0877 , H04L9/50
Abstract: Generally discussed herein are devices, systems, and methods for binding with cryptographic key attestation. A method can include generating, by hardware of a device, a device public key and a device private key, based on the device private key, signing a first attestation resulting in a signed first attestation, the first attestation claiming the device private key originated from the hardware, based on the device public key and the signed first attestation, registering the device with a trusted authority, generating, by the hardware, a first application private key and a first application public key, and based on the device private key, signing a second attestation resulting in a signed second attestation, the second attestation claiming the first application private key originated from the hardware, and based on the first application public key and the signed second attestation, registering a first application of the device to a first server.
-
公开(公告)号:US12113898B2
公开(公告)日:2024-10-08
申请号:US18224518
申请日:2023-07-20
Applicant: Microsoft Technology Licensing, LLC
Inventor: Prabagar Ramadasse , Yordan Rouskov , Mick Healy , Gaurav Dhawan , Venkata Raghuram Pampana , Aleksandr Tokarev , Marc Shepard , Ramachandra Ravitej Vennapusa
CPC classification number: H04L9/3073 , H04L9/0866 , H04L9/3234 , H04L9/3265 , H04L9/3268 , H04L9/0877 , H04L9/50
Abstract: Generally discussed herein are devices, systems, and methods for binding with cryptographic key attestation. A method can include generating, by hardware of a device, a device public key and a device private key, based on the device private key, signing a first attestation resulting in a signed first attestation, the first attestation claiming the device private key originated from the hardware, based on the device public key and the signed first attestation, registering the device with a trusted authority, generating, by the hardware, a first application private key and a first application public key, and based on the device private key, signing a second attestation resulting in a signed second attestation, the second attestation claiming the first application private key originated from the hardware, and based on the first application public key and the signed second attestation, registering a first application of the device to a first server.
-
公开(公告)号:US20160300055A1
公开(公告)日:2016-10-13
申请号:US15005257
申请日:2016-01-25
Applicant: Microsoft Technology Licensing, LLC
Inventor: Hassen Karaa , Michael Healy , Brett D.A. Flegg , Gaurav Dhawan , Jeffrey Sutherland
CPC classification number: G06F21/51 , G06F8/61 , G06F21/60 , G06F21/62 , G06F2221/2149
Abstract: Registering a computer system for use in an enterprise. A method includes receiving, from a device management infrastructure of the enterprise, an executable system management component (SMC), and installing the SMC at a storage device. The method also includes executing the SMC, causing the computer system to register with the device management infrastructure, including applying a device settings policy to a configuration of the computer system. Executing the SMC also causes the computer system to configure itself to periodically execute a maintenance task received from the device management infrastructure. The method also includes periodically executing the maintenance task, causing the computer system to receive updated device settings policies from the device management infrastructure and apply the updated device settings policies to the configuration of the computer system, and to receive an updated application from the device management infrastructure and install the updated application at the computer system.
Abstract translation: 注册在企业中使用的计算机系统。 一种方法包括从企业的设备管理基础设施接收可执行系统管理组件(SMC),以及在存储设备上安装SMC。 该方法还包括执行SMC,使得计算机系统向设备管理基础设施注册,包括将设备设置策略应用于计算机系统的配置。 执行SMC还使计算机系统自行配置,定期执行从设备管理基础设施接收的维护任务。 该方法还包括定期执行维护任务,使得计算机系统从设备管理基础设施接收更新的设备设置策略,并将更新的设备设置策略应用于计算机系统的配置,并从设备管理接收更新的应用 基础设施,并在计算机系统上安装更新的应用程序。
-
公开(公告)号:US09361083B2
公开(公告)日:2016-06-07
申请号:US13787390
申请日:2013-03-06
Applicant: Microsoft Technology Licensing, LLC
Inventor: Hassen Karaa , Michael Healy , Brett D. A. Flegg , Gaurav Dhawan , Jeffrey Sutherland
IPC: G06F9/445
Abstract: Installing apps on a device. The device is generally configured to be used in a closed market environment that only allows generally available apps of the closed market to be installed. The method includes determining that the device has been authorized to install apps outside of a set of apps generally available from the closed market and from a set of apps available only to users of a particular enterprise. The method further includes determining that an app, that is not generally available from the closed market, has been verified by a central authority. The method further includes installing the app on the device in spite of the fact that the device is generally configured to be used in a closed market environment.
Abstract translation: 在设备上安装应用程序 该设备通常配置为在封闭的市场环境中使用,只允许安装封闭市场的通用可用应用程序。 该方法包括确定该设备已经被授权在通常从封闭市场提供的一组应用程序以及仅可用于特定企业的用户的一组应用程序之外安装应用程序。 该方法还包括确定通过中断机构已经验证了从封闭市场通常不可获得的应用程序。 该方法还包括将该应用安装在设备上,尽管该设备通常被配置为在封闭的市场环境中使用。
-
公开(公告)号:US09195450B2
公开(公告)日:2015-11-24
申请号:US13948065
申请日:2013-07-22
Applicant: Microsoft Technology Licensing, LLC
Inventor: Kyle Smith , Adrian Maziak , Djana Milton , Dattatraya Rajpure , Gaurav Dhawan , Shafqat Khan , Roxana Drake , Khuzaima Iqbal
CPC classification number: G06F8/65 , G06F8/60 , G06F9/445 , G06F9/4843
Abstract: Techniques for guaranteeing that a software program is executed on a machine only during designated periods of time are provided. Service windows define time periods during which software programs targeted to execute on a machine are allowed to execute on the machine. On the machine, the service windows work in conjunction with a client process that is executing on the machine to guarantee execution of the software programs by the client process only during available service windows.
Abstract translation: 提供了仅在指定时间段内保证在机器上执行软件程序的技术。 服务窗口定义了允许在机器上执行的软件程序在机器上执行的时间段。 在机器上,服务窗口与在机器上执行的客户端进程协同工作,以保证客户端进程只在可用的服务窗口中执行软件程序。
-
-
-
-
-