Location-Aware Mobile Policy Enforcement System

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Traditional network policy management techniques, such as fixed-policy enforcement and Network Location Awareness (NLA), are inadequate for effectively managing portable computing devices within complex network environments, particularly in physical locations where devices may connect to a single network from multiple locations, leading to challenges in controlling mobile-computing device usage.

Innovation Solution

A computer-implemented method and system that verifies the authorization of a source to provide mobile-computing device policies for a physical location, allowing administrators to define and enforce policies through a central control server, using an internet interface, and identifies geographical areas for policy implementation with high accuracy.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Stability of the object's composition

If fixed-policy enforcement is used to manage network devices, then policy implementation is simple and consistent, but the system cannot adapt to portable devices moving between different physical locations

Engineering Contradiction:
Improvepolicy consistencyVSAvoidlocation-based adaptability
Core Design Contradiction:
Stability of the object's compositionVSAdaptability or versatility

Solution Approach 1:

The system transitions from static fixed policies to dynamic location-aware policies. Portable devices receive policy definitions based on their current physical location detected through network location awareness technology, allowing policies to adapt dynamically as devices move between different physical locations while maintaining consistent enforcement mechanisms.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

A policy definition server acts as an intermediary between the fixed policy repository and portable devices. This server receives policy definitions, associates them with specific physical locations, and distributes appropriate policies to devices based on their detected location, bridging the gap between static policy storage and dynamic device needs.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If NLA technology is used to change policy definitions when devices change networks, then location-based flexibility is improved, but the system cannot effectively control devices connected to a single network across multiple physical locations

Engineering Contradiction:
Improvenetwork-based flexibilityVSAvoidlocation control accuracy
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The system adds a physical location dimension to policy management beyond network connectivity. Instead of relying solely on network changes to trigger policy updates, the system uses geographic location data (coordinates, boundaries) to determine which policies should be applied, enabling precise control even when devices remain on the same network across multiple physical locations.

Inventive Principle:
Principle #17Another dimension (Dimensionality change)

Solution Approach 2:

The system implements location-specific policy definitions tailored to each physical location's unique requirements. Different physical locations can have customized policy sets based on their specific needs, allowing granular control over device behavior in different geographic areas while maintaining overall system coherence.

Inventive Principle:
Principle #3Local quality

3Manufacturing precision

If administrators manually manage policies for each device and location, then policy precision is high, but administrative time and effort increase significantly

Engineering Contradiction:
Improvepolicy definition precisionVSAvoidadministrative time
Core Design Contradiction:
Manufacturing precisionVSLoss of time

Solution Approach 1:

The system enables automated policy distribution where portable devices automatically receive appropriate policy definitions based on their detected physical location without requiring manual administrator intervention for each device-location pairing. The automated enforcement mechanism handles policy distribution and application, significantly reducing administrative time while maintaining precise location-based control.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

Policy definitions are pre-configured and associated with specific physical locations in advance. When a device enters a monitored physical location, the corresponding pre-prepared policy definition is automatically applied, eliminating the need for real-time policy creation or manual configuration during device deployment.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS8112785B1Systems and methods for administering policies for physical locations
Publication Date: 2012.02.07 GEN DIGITAL INC
  • US8112785B1 patent drawing
  • US8112785B1 patent drawing
  • US8112785B1 patent drawing

AI summary

A method for receiving verification that a source is authorized to provide mobile-computing-device policies for a first physical location. The method may include receiving a first mobile-computing-device policy and identifying the first physical location. The method may also include associating the first mobile-computing-device policy with the first physical location and implementing, based on the verification, the first mobile-computing-device policy at the first physical location. Systems and computer-readable media for verifying that a source is authorized to provide mobile-computing-device policies for a first physical location are also disclosed.