-
公开(公告)号:US20230016069A1
公开(公告)日:2023-01-19
申请号:US17371198
申请日:2021-07-09
Applicant: VMware, Inc.
Inventor: Neeraj Saluja , Muhammad Anadil Furqan , Kevin B. Sheehan
Abstract: Examples of scheduled and on-demand volume encryption suspension are described. A management service can identify multi-volume encryption rules for local volumes of a client device including the operating system volume as well as non-operating-system volumes. The encryption rules can be transmitted to the client device. Volume encryption samples for the client device can be received, and a console user interface can be generated to indicate compliance status information for the multi-volume encryption rules for local volumes of a client device.
-
公开(公告)号:US20230078733A1
公开(公告)日:2023-03-16
申请号:US18057114
申请日:2022-11-18
Applicant: VMware, Inc.
Inventor: Evgeniy Sayapin , Stephanie Bauman , Neeraj Saluja
Abstract: Disclosed are various examples for managing firmware passwords, such as BIOS passwords. A password reset command can be generated and transmitted to a client device. A management agent can execute the command and provide confirmation to a management service that the password has been updated.
-
公开(公告)号:US11507667B2
公开(公告)日:2022-11-22
申请号:US16910539
申请日:2020-06-24
Applicant: VMware, Inc.
Inventor: Evgeniy Sayapin , Stephanie Bauman , Neeraj Saluja
Abstract: Disclosed are various examples for managing firmware passwords, such as BIOS passwords. A password reset command can be generated and transmitted to a client device. A management agent can execute the command and provide confirmation to a management service that the password has been updated.
-
公开(公告)号:US11941127B2
公开(公告)日:2024-03-26
申请号:US18057114
申请日:2022-11-18
Applicant: VMware, Inc.
Inventor: Evgeniy Sayapin , Stephanie Bauman , Neeraj Saluja
CPC classification number: G06F21/572 , G06F8/71 , G06F21/31 , G06F21/46 , G06F2221/2131
Abstract: Firmware passwords, such as BIOS passwords can be managed by a remotely executed management service. A password reset command can be generated and transmitted to a client device. A management agent can execute the command and provide confirmation to a management service that the password has been updated.
-
公开(公告)号:US11805108B2
公开(公告)日:2023-10-31
申请号:US17316346
申请日:2021-05-10
Applicant: VMware, Inc.
Inventor: Neeraj Saluja , Akhil Parasa , Kevin Sheehan , Shravan Shantharam
IPC: H04L9/40 , G06F8/65 , H04L41/22 , H04L67/1097
CPC classification number: H04L63/0471 , G06F8/65 , H04L41/22 , H04L63/0876 , H04L63/20 , H04L67/1097
Abstract: Examples of scheduled and on-demand volume encryption suspension are described. In some examples, volume encryption is to be suspended for a client device. A suspension limit is identified for a volume encryption suspension for the client device. A suspend encryption command is generated to include instructions for the client device to apply the volume encryption suspension according to the suspension limit. The suspend encryption command is transmitted to the client device for execution.
-
公开(公告)号:US11411816B1
公开(公告)日:2022-08-09
申请号:US17326934
申请日:2021-05-21
Applicant: VMware, Inc.
Inventor: Neeraj Saluja , Haroon Barlas , Eugene Sayapin , Shravan Shantharam
IPC: G06F15/177 , H04L41/082 , H04L41/0806 , H04L101/622 , H04L67/303 , H04L67/01 , H04L41/0823
Abstract: Systems and methods are described for managing a user device in multiple management modes. In an example, an agent executing on the user device can enroll the user device with a Unified Endpoint Management (“UEM”) system in a limited management mode. The agent can receive and install a first configuration profile from a server that configures the agent to operate on an unmanaged channel of the user device. In one example, the user device can have a third-party management client that manages the user device on a managed channel. The third-party management client can be removed. The agent can enroll the user device with the UEM in a full management mode. The agent can receive and install a second configuration profile that configures the agent to operate on the managed channel of the user device.
-
公开(公告)号:US12135797B2
公开(公告)日:2024-11-05
申请号:US17371198
申请日:2021-07-09
Applicant: VMware, Inc.
Inventor: Neeraj Saluja , Muhammad Anadil Furqan , Kevin B. Sheehan
Abstract: Examples of scheduled and on-demand volume encryption suspension are described. A management service can identify multi-volume encryption rules for local volumes of a client device including the operating system volume as well as non-operating-system volumes. The encryption rules can be transmitted to the client device. Volume encryption samples for the client device can be received, and a console user interface can be generated to indicate compliance status information for the multi-volume encryption rules for local volumes of a client device.
-
公开(公告)号:US20210406376A1
公开(公告)日:2021-12-30
申请号:US16910539
申请日:2020-06-24
Applicant: VMware, Inc.
Inventor: Evgeniy Sayapin , Stephanie Bauman , Neeraj Saluja
Abstract: Disclosed are various examples for managing firmware passwords, such as BIOS passwords. A password reset command can be generated and transmitted to a client device. A management agent can execute the command and provide confirmation to a management service that the password has been updated.
-
公开(公告)号:US20210334380A1
公开(公告)日:2021-10-28
申请号:US16857971
申请日:2020-04-24
Applicant: VMware, Inc.
Inventor: Neeraj Saluja , Muhammad Anadil Furqan
Abstract: Disclosed are various examples for verification and management of firmware for client devices enrolled with a management service of an enterprise. The firmware verification includes a verification process using multiple checkpoints for determining whether status responses associated with firmware installed on and received from a managed client device can be trusted. The multiple checkpoints can include verifying certificate data, signature data, and an exit code included in status responses received from managed devices. In the event that one of the verification steps fails, the device can be considered compromised and subject to various compliance actions. The compliance actions can include limiting access to enterprise data, limiting access to one or more applications, wiping a device clean to reset the devices to the original factory settings, sending a notification to an enterprise administrator providing an indication of the detected compromise, and other types of compliance actions.
-
公开(公告)号:US12086257B2
公开(公告)日:2024-09-10
申请号:US16857971
申请日:2020-04-24
Applicant: VMware, Inc.
Inventor: Neeraj Saluja , Muhammad Anadil Furqan
CPC classification number: G06F21/572 , G06F21/44 , H04L9/3247 , H04L9/3265 , H04L9/3268 , G06F2221/033 , H04L9/50
Abstract: Disclosed are various examples for verification and management of firmware for client devices enrolled with a management service of an enterprise. The firmware verification includes a verification process using multiple checkpoints for determining whether status responses associated with firmware installed on and received from a managed client device can be trusted. The multiple checkpoints can include verifying certificate data, signature data, and an exit code included in status responses received from managed devices. In the event that one of the verification steps fails, the device can be considered compromised and subject to various compliance actions. The compliance actions can include limiting access to enterprise data, limiting access to one or more applications, wiping a device clean to reset the devices to the original factory settings, sending a notification to an enterprise administrator providing an indication of the detected compromise, and other types of compliance actions.
-
-
-
-
-
-
-
-
-