Providing Mobile Device Management Functionalities
Abstract
Methods, systems, computer-readable media, and apparatuses for providing mobile device management functionalities are presented. In various embodiments, a mobile device management agent may monitor state information associated with a mobile computing device. The monitored state information may be analyzed on the mobile computing device and/or by one or more policy management servers. In some instances, the one or more policy management servers may provide management information to the mobile computing device, and the management information may include one or more commands (which may, e.g., cause the mobile computing device to enforce one or more policies) and/or one or more policy updates. Subsequently, one or more policies may be enforced on the mobile computing device based on the monitored state information and/or based on the management information.
Claims
exact text as granted — not AI-modified1 .- 20 . (canceled)
21 . A method, comprising:
communicating, by a mobile device management agent on a mobile computing device, to at least one policy management server, state information associated with the mobile computing device, wherein communicating the state information associated with the mobile computing device to the at least one policy management server causes the at least one policy management server to generate one or more commands for the mobile device management agent on the mobile computing device based on the state information associated with the mobile computing device; receiving, by the mobile device management agent on the mobile computing device, from the at least one policy management server, management information comprising the one or more commands generated based on the state information associated with the mobile computing device; and in response to receiving the management information from the at least one policy management server, executing, by the mobile device management agent on the mobile computing device, the one or more commands generated based on the state information associated with the mobile computing device, wherein executing the one or more commands generated based on the state information associated with the mobile computing device comprises disabling a managed mode of an application on the mobile computing device based on a first enterprise policy, and wherein disabling the managed mode of the application on the mobile computing device switches the application on the mobile computing device from the managed mode to an unmanaged mode in which access to enterprise data is limited.
22 . The method of claim 21 , wherein communicating the state information associated with the mobile computing device to the at least one policy management server comprises communicating information identifying one or more applications that are present on the mobile computing device.
23 . The method of claim 21 , wherein communicating the state information associated with the mobile computing device to the at least one policy management server comprises communicating information identifying one or more network connections being used by the mobile computing device.
24 . The method of claim 21 , wherein communicating the state information associated with the mobile computing device to the at least one policy management server comprises communicating information identifying a current location of the mobile computing device.
25 . The method of claim 21 , wherein executing the one or more commands generated based on the state information associated with the mobile computing device comprises disabling one or more functions of the application in the unmanaged mode based on a second enterprise policy.
26 . The method of claim 21 , wherein executing the one or more commands generated based on the state information associated with the mobile computing device comprises changing a configuration setting of the application in the unmanaged mode based on a third enterprise policy.
27 . The method of claim 21 , wherein the application on the mobile computing device is managed by an application wrapper comprising one or more integrated policies that are executed on the mobile computing device when the application is executed on the mobile computing device.
28 . The method of claim 27 , wherein the application wrapper is configured to obtain and use one or more client certificates to authenticate with one or more protected network resources when the application is executed on the mobile computing device.
29 . The method of claim 27 , wherein the enterprise data that is accessible in the managed mode is stored in a secure data container on the mobile computing device, and wherein non-enterprise data that is accessible in the unmanaged mode is stored in an unsecured data container on the mobile computing device.
30 . The method of claim 27 , wherein executing the one or more commands generated based on the state information associated with the mobile computing device comprises selectively wiping the enterprise data that is accessible in the managed mode when switching the application on the mobile computing device from the managed mode to the unmanaged mode.
31 . A mobile computing device, comprising:
at least one processor; and memory storing instructions that, when executed by the at least one processor, cause the mobile computing device to:
communicate, using a mobile device management agent on the mobile computing device, to at least one policy management server, state information associated with the mobile computing device, wherein communicating the state information associated with the mobile computing device to the at least one policy management server causes the at least one policy management server to generate one or more commands for the mobile device management agent on the mobile computing device based on the state information associated with the mobile computing device;
receive, using the mobile device management agent on the mobile computing device, from the at least one policy management server, management information comprising the one or more commands generated based on the state information associated with the mobile computing device; and
in response to receiving the management information from the at least one policy management server, execute, using the mobile device management agent on the mobile computing device, the one or more commands generated based on the state information associated with the mobile computing device, wherein executing the one or more commands generated based on the state information associated with the mobile computing device comprises disabling a managed mode of an application on the mobile computing device based on a first enterprise policy, and wherein disabling the managed mode of the application on the mobile computing device switches the application on the mobile computing device from the managed mode to an unmanaged mode in which access to enterprise data is limited.
32 . The mobile computing device of claim 31 , wherein communicating the state information associated with the mobile computing device to the at least one policy management server comprises communicating information identifying one or more applications that are present on the mobile computing device.
33 . The mobile computing device of claim 31 , wherein communicating the state information associated with the mobile computing device to the at least one policy management server comprises communicating information identifying one or more network connections being used by the mobile computing device.
34 . The mobile computing device of claim 31 , wherein communicating the state information associated with the mobile computing device to the at least one policy management server comprises communicating information identifying a current location of the mobile computing device.
35 . The mobile computing device of claim 31 , wherein executing the one or more commands generated based on the state information associated with the mobile computing device comprises disabling one or more functions of the application in the unmanaged mode based on a second enterprise policy.
36 . The mobile computing device of claim 31 , wherein executing the one or more commands generated based on the state information associated with the mobile computing device comprises changing a configuration setting of the application in the unmanaged mode based on a third enterprise policy.
37 . The mobile computing device of claim 31 , wherein the application on the mobile computing device is managed by an application wrapper comprising one or more integrated policies that are executed on the mobile computing device when the application is executed on the mobile computing device.
38 . The mobile computing device of claim 37 , wherein the application wrapper is configured to obtain and use one or more client certificates to authenticate with one or more protected network resources when the application is executed on the mobile computing device.
39 . The mobile computing device of claim 37 , wherein the enterprise data that is accessible in the managed mode is stored in a secure data container on the mobile computing device, and wherein non-enterprise data that is accessible in the unmanaged mode is stored in an unsecured data container on the mobile computing device.
40 . One or more non-transitory computer-readable media storing instructions that, when executed by a mobile computing device comprising at least one processor and memory, cause the mobile computing device to:
communicate, using a mobile device management agent on the mobile computing device, to at least one policy management server, state information associated with the mobile computing device, wherein communicating the state information associated with the mobile computing device to the at least one policy management server causes the at least one policy management server to generate one or more commands for the mobile device management agent on the mobile computing device based on the state information associated with the mobile computing device; receive, using the mobile device management agent on the mobile computing device, from the at least one policy management server, management information comprising the one or more commands generated based on the state information associated with the mobile computing device; and in response to receiving the management information from the at least one policy management server, execute, using the mobile device management agent on the mobile computing device, the one or more commands generated based on the state information associated with the mobile computing device, wherein executing the one or more commands generated based on the state information associated with the mobile computing device comprises disabling a managed mode of an application on the mobile computing device based on a first enterprise policy, and wherein disabling the managed mode of the application on the mobile computing device switches the application on the mobile computing device from the managed mode to an unmanaged mode in which access to enterprise data is limited.Join the waitlist — get patent alerts
Track US2018241645A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.