US2020311277A1PendingUtilityA1

Method, system and device for security configurations

Assignee: ALIBABA GROUP HOLDING LTDPriority: Aug 20, 2015Filed: Jun 9, 2020Published: Oct 1, 2020
Est. expiryAug 20, 2035(~9.1 yrs left)· nominal 20-yr term from priority
H04L 67/34H04L 63/104H04W 12/06G06F 21/57G06F 21/629H04L 63/08H04L 63/20H04L 41/0803G06F 21/44
50
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

Configuring security settings, including: receiving a request to join a security group from a first terminal device; obtaining security setting information for the security group; and sending a response to the first terminal device, the response instructing the first terminal device to join the security group and to configure security settings according to the security setting information.

Claims

exact text as granted — not AI-modified
What is claimed is: 
     
         1 . A system for configuring security settings, comprising:
 one or more processors configured to:
 receive a request to join a security group from a first terminal device; 
 obtain security setting information associated with the security group; 
 query a second terminal device associated with a member of the security group to determine whether to permit the first terminal device to join the security group; and 
 in response to a query response from the second terminal device that permits the first terminal device to join the security group, permit the first terminal device to join the security group and send a request response to the first terminal device, the request response instructing the first terminal device to join the security group and to configure security settings associated with the first terminal device according to the security setting information associated with the security group; and 
   one or more memories coupled to the one or more processors and configured to provide the one or more processors with instructions.   
     
     
         2 . The system of  claim 1 , wherein the one or more processors are further configured to:
 obtain contextual information relating to the first terminal device; and   determine the security group based on the obtained contextual information.   
     
     
         3 . The system of  claim 1 , wherein the one or more processors are further configured to:
 send an invitation to the first terminal device, the invitation configured to invite the first terminal device to join the security group; and   wherein the request response is sent to the first terminal device in response to receiving a reply confirming joining the security group from the first terminal device.   
     
     
         4 . The system of  claim 1 , wherein:
 the request response comprises the security setting information or differences of security settings, wherein the differences of security settings are obtained by comparing the security setting information associated with the security group with security setting information currently configured at the first terminal device.   
     
     
         5 . The system of  claim 1 , wherein the security setting information comprises a blacklist, and wherein the one or more processors are further configured to obtain the security setting information including to:
 receive an authentication request from a third terminal device, the authentication request comprising a web address obtained by the third terminal device through a network the third terminal device is currently accessing, and the third terminal device being another member of the security group;   determine whether the web address is secure;   in response to the determination that the web address is insecure, designate the network as an insecure network; and   add the network to the blacklist.   
     
     
         6 . The system of  claim 1 , wherein the security setting information comprises a blacklist, and wherein the one or more processors are further configured to obtain the security setting information including to:
 intercept data packets received by a third terminal device via a network that the third terminal device is currently accessing, the third terminal device being another member of the security group;   determine whether the data packets are secure;   in response to the determination that the data packets are insecure, designate the network as an insecure network; and   add the network to the blacklist.   
     
     
         7 . The system of  claim 1 , wherein the security setting information comprises allowed modes for pushed information, and wherein the one or more processors are further configured to obtain the security setting information including to:
 receive contextual information and corresponding allowed modes from a third terminal device, the third terminal device being another member of the security group, and the contextual information comprising voice information, image information, location information, or any combinations thereof;   determine a context which the second terminal device is at according to the contextual information; and   set a mapping between the allowed modes and the context.   
     
     
         8 . The system of  claim 1 , wherein the security setting information comprises access rights associated with applications, and wherein the one or more processors are further configured to obtain the security setting information including to:
 receive a request from a third terminal device for configuring a designated application, the third terminal device being another member of the security group; and   configure access rights for at least one other application when the designated application is executing, the at least one other application being an application other than the designated application.   
     
     
         9 . The system of  claim 1 , wherein mappings between the security setting information and contextual information are stored, and wherein the one or more processors are further configured to:
 in response to a transitioning request that includes contextual information from another member of the security group, transition current security setting information of the other member to new security setting information corresponding to the contextual information based on the mapping.   
     
     
         10 . The system of  claim 1 , wherein the one or more processors are further configured to:
 in response to a third terminal device associated with another member of the security group updating the security setting information associated with the security group, query the second terminal device to determine whether to update security setting information for the second terminal device; and   in response to a reply sent by the second terminal device to indicate an approval of updating, update the security setting information for the second terminal device.   
     
     
         11 . A method for configuring security settings, comprising:
 receiving a request to join a security group from a first terminal device;   obtaining security setting information associated with the security group;   querying a second terminal device associated with a member of the security group to determine whether to permit the first terminal device to join the security group; and   in response to a query response from the second terminal device that permits the first terminal device to join the security group, permitting the first terminal device to join the security group and sending a request response to the first terminal device, the request response instructing the first terminal device to join the security group and to configure security settings associated with the first terminal device according to the security setting information associated with the security group.   
     
     
         12 . The method of  claim 11 , further comprising:
 obtaining contextual information relating to the first terminal device; and   determining the security group based on the obtained contextual information.   
     
     
         13 . The method of  claim 11 , further comprising:
 sending an invitation to the first terminal device, the invitation configured to invite the first terminal device to join the security group; and   wherein the request response is sent to the first terminal device in response to receiving a reply confirming joining the security group from the first terminal device.   
     
     
         14 . The method of  claim 11 , wherein:
 the request response comprises the security setting information or differences of security settings, wherein the differences of security settings are obtained by comparing the security setting information associated with the security group with security setting information currently configured at the first terminal device.   
     
     
         15 . The method of  claim 11 , wherein the security setting information comprises a blacklist, and further comprising obtaining the security setting information including by:
 receiving an authentication request from a third terminal device, the authentication request comprising a web address obtained by the third terminal device through a network the third terminal device is currently accessing, and the third terminal device being another member of the security group;   determining whether the web address is secure;   in response to the determination that the web address is insecure, designating the network as an insecure network; and   adding the network to the blacklist.   
     
     
         16 . The method of  claim 11 , wherein the security setting information comprises a blacklist, and further comprising obtaining the security setting information including by:
 intercepting data packets received by a third terminal device via a network that the third terminal device is currently accessing, the third terminal device being another member of the security group;   determining whether the data packets are secure;   in response to the determination that the data packets are insecure, designating the network as an insecure network; and   adding the network to the blacklist.   
     
     
         17 . The method of  claim 11 , wherein the security setting information comprises allowed modes for pushed information, and further comprising obtaining the security setting information including by:
 receiving contextual information and corresponding allowed modes from a third terminal device, the third terminal device being another member of the security group, and the contextual information comprising voice information, image information, location information, or any combinations thereof;   determining a context which the second terminal device is at according to the contextual information; and   setting a mapping between the allowed modes and the context.   
     
     
         18 . The method of  claim 11 , wherein the security setting information comprises access rights associated with applications, and further comprising obtaining the security setting information including by:
 receiving a request from a third terminal device for configuring a designated application, the third terminal device being another member of the security group; and   configuring access rights for at least one other application when the designated application is executing, the at least one other application being an application other than the designated application.   
     
     
         19 . The method of  claim 11 , wherein mappings between the security setting information and contextual information are stored, and further comprising obtaining the security setting information including by:
 in response to a transitioning request that includes contextual information from another member of the security group, transitioning current security setting information of the other member to new security setting information corresponding to the contextual information based on the mapping.   
     
     
         20 . A computer program product for configuring security settings, the computer program product being embodied in a non-transitory computer readable storage medium and comprising computer instructions for:
 receiving a request to join a security group from a first terminal device;   obtaining security setting information associated with the security group;   querying a second terminal device associated with a member of the security group to determine whether to permit the first terminal device to join the security group; and   in response to a query response from the second terminal device that permits the first terminal device to join the security group, permitting the first terminal device to join the security group and sending a request response to the first terminal device, the request response instructing the first terminal device to join the security group and to configure security settings associated with the first terminal device according to the security setting information associated with the security group.

Join the waitlist — get patent alerts

Track US2020311277A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.