×

Managing access to resources

  • US 10,848,520 B2
  • Filed: 04/04/2017
  • Issued: 11/24/2020
  • Est. Priority Date: 11/10/2011
  • Status: Active Grant
First Claim
Patent Images

1. A method of managing access to resources in a device, comprising:

  • receiving, by a hardware data processing apparatus on the device, from a first resource that is included in a first plurality of resources defined on the device, a request to access a second resource that is included in a second plurality of resources, wherein the device includes the first plurality of resources, the first resource, the second plurality of resources, and the second resource, and wherein the first plurality of resources and the second plurality of resources are logically separated and access between the first plurality of resources and the second plurality of resources is determined based on one or more management policies, the first plurality of resources including a first network access resource and a first encryption certificate, and the second plurality of resources including a second network access resource and a second encryption certificate that is different from the first encryption certificate, and wherein the first network access resource comprises a first network configuration used to connect to a first network, the second network access resource comprises a second network configuration used to connect to a second network that is different from the first network, the first network configuration is different than the second network configuration, and the request to access the second resource comprises a request to make a network connection by the first resource using the second network access resource;

    determining, by a hardware data processing apparatus on the device, whether the request to make the network connection is prohibited based on a first management policy for the first plurality of resources, the first management policy defining one or more rules that allow one or more resources in the first plurality of resources to access resources associated with the second plurality of resources including the second resource, and wherein the determining whether the request to make the network connection is prohibited comprises;

    determining that the request to make the network connection is prohibited based on the first resource being different than the one or more resources in the first plurality of resources that are allowed by the first management policy to use any network access resources included in the second plurality of resources to make the network connection; and

    processing the request to make the network connection based on the determining whether the request to make the network connection is prohibited.

View all claims
  • 9 Assignments
Timeline View
Assignment View
    ×
    ×