US2014164437A1PendingUtilityA1

Selective management of mobile device data in an enterprise environment

Assignee: MOBILE IRON INCPriority: May 20, 2009Filed: Feb 12, 2014Published: Jun 12, 2014
Est. expiryMay 20, 2029(~2.8 yrs left)· nominal 20-yr term from priority
G06F 16/24573G06F 21/6245
53
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

In various embodiments, a method is described that includes registering a mobile device with an enterprise by storing registration data for the mobile device in a device management database; designating one or more group designations for the mobile device; storing the one or more group designations in the device management database; determining one or more policies for the mobile device based at least in part on the one or more group designations; and selectively taking action on selected data from the mobile device in the device management database based on the one or more policies.

Claims

exact text as granted — not AI-modified
1 - 22 . (canceled) 
     
     
         23 . A method, comprising:
 storing, in a device management database, group designation information for an enterprise-registered mobile device, the group designation information at least designating the mobile device as employee owned;   selectively logging data from the mobile device in the device management database based at least in part on one or more data logging policies, the data logging policies determined based at least in part on the group designation information; and   providing access to a portion of the logged data determined based at least in part on a group associated with an administrative user.   
     
     
         24 . The method of  claim 23 , wherein the group associated with an administrative user comprises a role associated with the administrative user. 
     
     
         25 . The method of  claim 23 , wherein providing access further comprises providing access to the portion of the logged data based at least in part on a role associated with an administrative user, such that a first group of administrative users is provided less restricted access to the logged data than a second group of administrative users. 
     
     
         26 . The method of  claim 23 , wherein providing access further comprises providing access to the logged data based at least in part on a group associated with an administrative user, such that the group does not have access to at least a portion of the logged data. 
     
     
         27 . The method of  claim 23 , wherein selectively logging data comprises selectively logging data from the mobile device such that personal data is not logged. 
     
     
         28 . The method of  claim 23 , wherein selectively logging data further comprises:
 determining that at least a portion of the data from the mobile device is personal data; and   selectively logging data from the mobile device based at least in part on the data logging policies such that personal data is not logged.   
     
     
         29 . The method of  claim 23 , further comprising registering the mobile device with an enterprise by storing registration data for the mobile device in the device management database. 
     
     
         30 . The method of  claim 29 , wherein:
 registering the mobile device comprises creating and storing a device object for the mobile device in the device management database, the device object comprising a device object identifier that uniquely identifies the mobile device; and   storing the group designation information comprises associating the group designation information with the device object.   
     
     
         31 . The method of  claim 30 , wherein the device management database comprises a plurality of first resources, each first resource comprising a file or other data structure and metadata associated with the file or other data structure, and wherein the mobile device comprises a plurality of second resources stored in the mobile device, each second resource comprising a file or other data structure and metadata associated with the file or other data structure, and wherein selectively logging data comprises:
 logging particular second resources stored in the mobile device based on the data logging policies.   
     
     
         32 . The method of  claim 31 , wherein selectively logging comprises:
 creating and storing a new first resource in the device management database, the new first resource corresponding to a particular second resource stored in the mobile device; and   generating and storing a resource link in the device management database, the resource link associating the device object with the new first resource.   
     
     
         33 . The method of  claim 31 , wherein selectively logging comprises:
 generating and storing one or more resource links in the device management database, each resource link associating the device object with one or more first resources stored in the device management database, the one or more first resources corresponding to one or more second resources stored in the mobile device.   
     
     
         34 . The method of  claim 31 , wherein logging particular second resources comprises one or more of:
 logging second resources corresponding to at least one of a particular file type, file folder, and file directory based on the data logging policies;   logging second resources stored or modified at the mobile device within a particular period of time based on the data logging policies; and   logging second resources that have been tagged.   
     
     
         35 . The method of  claim 23 , wherein selectively logging data comprises:
 storing application usage data in the device management database.   
     
     
         36 . The method of  claim 35 , wherein the application usage data comprises activity data, the activity data comprising one or more of call usage data, email usage data, text messaging usage data, and internet usage data, and wherein only selected activity data is logged based on the one or more data logging policies. 
     
     
         37 . The method of  claim 36 , wherein the application usage data comprises context data that correlates the activity data based on location data corresponding to the activity data or time data corresponding to the activity data, and wherein only selected context data is logged with corresponding activity data based on the one or more data logging policies. 
     
     
         38 . The method of  claim 36 , wherein the application usage data comprises enterprise-related content usage data, and wherein only selected content usage data is logged based on the one or more data logging policies. 
     
     
         39 . The method of  claim 23 , wherein the group designation information includes information at least designating the mobile device as corresponding to an employee owner of a particular enterprise department or a particular enterprise employee class. 
     
     
         40 . The method of  claim 23 , wherein the one or more data logging policies comprise one or more data retention policies. 
     
     
         41 . A system, comprising:
 a processor; and   a memory coupled with the processor, wherein the memory is configured to provide the processor with instructions which when executed cause the processor to:
 store, in a device management database, group designation information for an enterprise-registered mobile device, the group designation information at least designating the mobile device as employee owned; 
 selectively log data from the mobile device in the device management database based at least in part on one or more data logging policies, the data logging policies determined based at least in part on the group designation information; and 
 provide access to a portion of the logged data determined based at least in part on a group associated with an administrative user. 
   
     
     
         42 . The system of  claim 41 , wherein to provide access the processor is to provide access to the portion of the logged data based at least in part on a role associated with an administrative user, such that a first group of administrative users is provided less restricted access to the logged data than a second group of administrative users. 
     
     
         43 . The system of  claim 41 , wherein the group associated with an administrative user comprises a role associated with the administrative user. 
     
     
         44 . The system of  claim 41 , to selectively log data the processor is to selectively log data from the mobile device such that personal data is not logged. 
     
     
         45 . The system of  claim 41 , wherein to provide access the processor is to provide access to the logged data based at least in part on a group associated with an administrative user, such that the group does not have access to at least a portion of the logged data. 
     
     
         46 . The system of  claim 41 , wherein the group designation information includes information at least designating the mobile device as corresponding to an employee owner of a particular enterprise department or a particular enterprise employee class. 
     
     
         47 . A computer program product, the computer program product being embodied in a tangible non-transitory computer readable storage medium and comprising computer instructions for:
 storing, in a device management database, group designation information for an enterprise-registered mobile device, the group designation information at least designating the mobile device as employee owned;   selectively logging data from the mobile device in the device management database based at least in part on one or more data logging policies, the data logging policies determined based at least in part on the group designation information; and   providing access to a portion of the logged data determined based at least in part on a group associated with an administrative user.   
     
     
         48 . The computer program product recited in  claim 47 , wherein providing access further comprises providing access to the portion of the logged data based at least in part on a role associated with an administrative user, such that a first group of administrative users is provided less restricted access to the logged data than a second group of administrative users. 
     
     
         49 . The computer program product recited in  claim 47 , wherein the group associated with an administrative user comprises a role associated with the administrative user. 
     
     
         50 . The computer program product recited in  claim 47 , wherein selectively logging data comprises selectively logging data from the mobile device such that personal data is not logged. 
     
     
         51 . The computer program product recited in  claim 47 , further comprising computer instructions for registering the mobile device with the enterprise by storing registration data for the mobile device in the device management database. 
     
     
         52 . The computer program product recited in  claim 47 , wherein selectively logging data comprises storing application usage data in the device management database.

Join the waitlist — get patent alerts

Track US2014164437A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.