Location-Aware Mobile Policy Enforcement System
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Traditional network policy management techniques, such as fixed-policy enforcement and Network Location Awareness (NLA), are inadequate for effectively managing portable computing devices within complex network environments, particularly in physical locations where devices may connect to a single network from multiple locations, leading to challenges in controlling mobile-computing device usage.
Innovation Solution
A computer-implemented method and system that verifies the authorization of a source to provide mobile-computing device policies for a physical location, allowing administrators to define and enforce policies through a central control server, using an internet interface, and identifies geographical areas for policy implementation with high accuracy.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Stability of the object's composition
If fixed-policy enforcement is used to manage network devices, then policy implementation is simple and consistent, but the system cannot adapt to portable devices moving between different physical locations
Solution Approach 1:
The system transitions from static fixed policies to dynamic location-aware policies. Portable devices receive policy definitions based on their current physical location detected through network location awareness technology, allowing policies to adapt dynamically as devices move between different physical locations while maintaining consistent enforcement mechanisms.
Solution Approach 2:
A policy definition server acts as an intermediary between the fixed policy repository and portable devices. This server receives policy definitions, associates them with specific physical locations, and distributes appropriate policies to devices based on their detected location, bridging the gap between static policy storage and dynamic device needs.
2Adaptability or versatility
If NLA technology is used to change policy definitions when devices change networks, then location-based flexibility is improved, but the system cannot effectively control devices connected to a single network across multiple physical locations
Solution Approach 1:
The system adds a physical location dimension to policy management beyond network connectivity. Instead of relying solely on network changes to trigger policy updates, the system uses geographic location data (coordinates, boundaries) to determine which policies should be applied, enabling precise control even when devices remain on the same network across multiple physical locations.
Solution Approach 2:
The system implements location-specific policy definitions tailored to each physical location's unique requirements. Different physical locations can have customized policy sets based on their specific needs, allowing granular control over device behavior in different geographic areas while maintaining overall system coherence.
3Manufacturing precision
If administrators manually manage policies for each device and location, then policy precision is high, but administrative time and effort increase significantly
Solution Approach 1:
The system enables automated policy distribution where portable devices automatically receive appropriate policy definitions based on their detected physical location without requiring manual administrator intervention for each device-location pairing. The automated enforcement mechanism handles policy distribution and application, significantly reducing administrative time while maintaining precise location-based control.
Solution Approach 2:
Policy definitions are pre-configured and associated with specific physical locations in advance. When a device enters a monitored physical location, the corresponding pre-prepared policy definition is automatically applied, eliminating the need for real-time policy creation or manual configuration during device deployment.
Data Source
AI summary
A method for receiving verification that a source is authorized to provide mobile-computing-device policies for a first physical location. The method may include receiving a first mobile-computing-device policy and identifying the first physical location. The method may also include associating the first mobile-computing-device policy with the first physical location and implementing, based on the verification, the first mobile-computing-device policy at the first physical location. Systems and computer-readable media for verifying that a source is authorized to provide mobile-computing-device policies for a first physical location are also disclosed.


