System and method for managing access to active devices operably connected to a data network
First Claim
1. A system for managing access between active devices through a data network, comprising:
- a. a plurality of active devices operative to communicate with a data network, a first portion of the active devices being disposed logically upstream from a second portion of the active devices;
b. a router, logically disposed intermediate the first portion of the active devices and the second portion of the active devices, the router capable of selectively allowing access by a requesting active device of the first portion of the active devices to an active device of the second portion of active devices;
c. a service station operative to communicate with the at least one active device and the router;
d. connection management software executing at least partially in the service station and operable to direct the router to selectively allow access by a requesting active device to a responding active device in the second portion of active devices based on a predetermined characteristic of the requesting active device; and
e. client software executing in a requesting active device and in communication with the connection management software, the client software operable to determine the predetermined characteristic of the requesting active device according to a dynamically definable rule;
wherein the predetermined characteristic is selected from the group consisting of the state of the requesting active device, the existence of a file on the requesting active device, the existence of one or more properties of a given file on the requesting active device, an INI value in an INI file on the requesting active device, whether a particular process is running on the requesting active device, and whether a key value exists in a registry of an operating system executing in the requesting active device.
1 Assignment
0 Petitions
Accused Products
Abstract
A system and method for managing access of one or more active devices through a data network is disclosed. The system comprises a service station operative to communicate with a requesting active device and a router, the active device and router operative to communicate with a data network. Connection management software executes at least partially in the service station to direct the router to control access to a responding active device by the requesting active device based on a detectable state of a predetermined characteristic of the requesting active device, the state being disclosed to the service station upon a request by the service station. It is submitted with the understanding that it will not be used to interpret or limit the scope of meaning of the claims.
23 Citations
27 Claims
-
1. A system for managing access between active devices through a data network, comprising:
-
a. a plurality of active devices operative to communicate with a data network, a first portion of the active devices being disposed logically upstream from a second portion of the active devices; b. a router, logically disposed intermediate the first portion of the active devices and the second portion of the active devices, the router capable of selectively allowing access by a requesting active device of the first portion of the active devices to an active device of the second portion of active devices; c. a service station operative to communicate with the at least one active device and the router; d. connection management software executing at least partially in the service station and operable to direct the router to selectively allow access by a requesting active device to a responding active device in the second portion of active devices based on a predetermined characteristic of the requesting active device; and e. client software executing in a requesting active device and in communication with the connection management software, the client software operable to determine the predetermined characteristic of the requesting active device according to a dynamically definable rule; wherein the predetermined characteristic is selected from the group consisting of the state of the requesting active device, the existence of a file on the requesting active device, the existence of one or more properties of a given file on the requesting active device, an INI value in an INI file on the requesting active device, whether a particular process is running on the requesting active device, and whether a key value exists in a registry of an operating system executing in the requesting active device. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10, 11, 12, 13, 14, 15, 16, 17, 18, 19)
-
-
20. A method for managing access, comprising:
-
a. receiving a request at a router, operative to communicate with a first data network, from a first active device operative to communicate with the data network, the request comprising a request to access at least one of (i) a second data network, (ii) a second active device operative to communicate with the first data network, or (iii) a second active device operative to communicate with the second data network; b. blocking further access by the router of the first active device; c. forwarding the request for access by the router to a service station; d. sending a request for information by the service station to the first active device, the request for information relating to a predetermined characteristic of the first active device and comprising a dynamically definable rule; and e. allowing access through the muter to the second active device only if the first active device returns an acceptable response to the request for information; wherein the predetermined characteristic is selected from the group consisting of the state of the first active device, the existence of a file on the first active device, the existence of one or more properties of a given file on the first active device, an INI value in an INI file on the first active device, whether a particular process is running on the first active device, and whether a key value exists in a registry of an operating system executing in the first active device. - View Dependent Claims (21, 22, 23, 24, 25, 26, 27)
-
Specification