Controlling physical access to secure areas via client devices in a networked environment
Abstract
A method is disclosed for providing physical access credentials to a client device. The method may include receiving a request for a physical access credential, where the first request includes at least one user access credential and at least one physical access point identifier. The method may also include determining whether the request should be granted based at least in part on the at least one user access credential. The method may further include, in response to determining that the request should be granted, sending the physical access credential associated with the physical access point.
Claims
exact text as granted — not AI-modified1 - 20 . (canceled)
21 . A method, comprising:
receiving, by a physical access point, a request to cause a physical lock actuator associated with the physical access point to be in an unlocked state, the request being associated with a client device; determining, by the physical access point, that the request is authorized, the determination that the request is authorized being based at least in part on at least one authentication credential associated with the client device; and, causing, by the physical access point, the physical lock actuator associated with the physical access point to be in the unlocked state.
22 . The method of claim 21 , wherein determining that the request is authorized is further based at least in part on a determination that the client device complies with at least one compliance rule.
23 . The method of claim 22 , wherein the at least one compliance rule comprises at least one hardware restriction.
24 . The method of claim 22 , wherein the at least one compliance rule comprises at least one software restriction.
25 . The method of claim 22 , wherein the at least one compliance rule comprises at least one mobile device management restriction.
26 . The method of claim 22 , wherein the determination that the client device complies with the at least one compliance rule is provided by the client device.
27 . The method of claim 22 , wherein the determination that the client device complies with the at least one compliance rule is provided by the physical access point.
28 . The method of claim 22 , wherein the determination that the client device complies with the at least one compliance rule is provided by a compliance service.
29 . The method of claim 28 , further comprising:
identifying, by the physical access point, the at least one compliance rule; identifying, by the physical access point, a device profile associated with the client device; and, determining, by the physical access point, that the at least one compliance rule is satisfied based at least in part on the device profile associated with the client device.
30 . A computing device, comprising:
one or more processors; and, a memory coupled to the one or more processors, the memory storing instructions that, when executed by the one or more processors, cause the computing system to:
receive, by a physical access point, a request to cause a physical lock actuator associated with the physical access point to be in an unlocked state, the request being associated with a client device;
determine, by the physical access point, that the request is authorized, the determination that the request is authorized being based at least in part on at least one authentication credential associated with the client device; and,
cause, by the physical access point, the physical lock actuator associated with the physical access point to be in the unlocked state.
31 . The computing device of claim 30 , wherein the request comprises at least one physical access credential, and wherein determining that the request is authorized is further based at least in part on at least one of the at least one physical access credential being verified.
32 . The computing device of claim 31 , the at least one of the at least one physical access credential being verified in an instance in which the at least one of the at least one physical access credential corresponds to a value stored in a data store accessible to the physical access point.
33 . The computing device of claim 31 , the at least one of the at least one physical access credential being verified in an instance in which the at least one of the at least one physical access credential has not been revoked.
34 . The computing device of claim 31 , the at least one of the at least one physical access credential being verified in an instance in which the at least one of the at least one physical access credential has not expired.
35 . The computing device of claim 31 , further comprising instructions that, when executed by the one or more processors, cause the computing system to determine that the at least one of the at least one physical access credential is verified by:
transmitting to an authorization service, by the physical access point, a request to verify the at least one physical access credential.
36 . A non-transitory computer-readable medium storing instructions that, when executed by one or more processors, cause a computing device to:
receive, by a physical access point, a request to cause a physical lock actuator associated with the physical access point to be in an unlocked state, the request being associated with a client device; determine, by the physical access point, that the request is authorized, the determination that the request is authorized being based at least in part on at least one authentication credential associated with the client device; and, cause, by the physical access point, the physical lock actuator associated with the physical access point to be in the unlocked state.
37 . The non-transitory computer-readable medium of claim 36 , further storing instructions that, when executed by the one or more processors, further cause the computing device to:
transmit, by the physical access point, a request for at least one physical access credential.
38 . The non-transitory computer-readable medium of claim 36 , wherein the request for the at least one physical access credential is transmitted to the client device.
39 . The non-transitory computer-readable medium of claim 36 , wherein the request for the at least one physical access credential is transmitted to an authorization service.
40 . The non-transitory computer-readable medium of claim 36 , further storing instructions that, when executed by the one or more processors, further cause the computing device to:
cause, by the physical access point, at least one physical access credential to be revoked.Join the waitlist — get patent alerts
Track US2017061720A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.