AU2005292566B2

Method and apparatus for providing authorized remote access to application sessions

Abstract

A method and apparatus for providing authorized remote access to one or more application sessions includes a client node, a collection agent, a policy engine, and a session server. The client node requests access to a resource. The collection agent gathers information about the client node. The policy engine receives the gathered information, and makes an access control decision based on the received information. The session server establishes a connection between a client computer operated by the user and the one or more application sessions associated with the user of the client node identified in response to the received information.

Term

Term ended

Expired 10 August 2025, 1.1 years ago.

  1. Priority
  2. Filed
  3. Granted
  4. Expired
  5. Today

43 claims: 5 independent, 38 dependent

  1. 1
    What is Claimed is:1. A method for providing a user with authorized remote access to one of one or more application sessions disconnected from one or more client nodes previously operated by the user, the method comprising: (a) requesting, by a client node operated by a user, access to a resource provided by an application session, the client node comprising a computing environment;(b) gathering, by a collection agent from the client node, characteristics of the computing environment in response to the request to access the resource;(c) receiving, by a policy engine, the gathered characteristics ;(d) making, by a policy engine, an access control decision granting the computing environment access to the resource based on application of a policy to the received characteristics of the computing environment;(e) identifying, based on the access control decision, an application session to which the client node is permitted to connect, the application session from one or more application sessions already associated with the user and disconnected from one or more client nodes previously operated by the user;and (f) establishing, by a session server, a connection between the client node and the identified application session in response to the identification.
  2. 10
    The method of ciaim 1 wherein the connection between the client node and the one or more application sessions is triggered by the selection of a single user interface element.
  3. 26
    A system for providing a user with authorized remote access to one of one or more application sessions disconnected from one or more client nodes previously operated by the user, the system comprising:a collection agent gathering characteristics of a computing environment from a client node operated by a user, the client node comprising the computing environment and requesting access to a resource provided by an application session;a policy engine receiving the gathered characteristics , making an access control decision granting the computing environment access to the resource based -342005292566 06 Dec 2010 on the application of a policy to the received characteristics of the computing environment, and initiating, based on the access control decision, an identification of an application session to which the client node is permitted to connect, the application session from one or more application sessions already associated with the user and disconnected from one or more client nodes previously operated by the user;and a session server establishing a connection between the client node and the identified application session in response to the identification .
  4. 42
    A method for providing a user with authorized remote access to one of one or more application sessions substantially as herein described.
  5. 43
    A system for providing a user with authorized remote access to one of one or more application sessions substantially as herein described. -36“ WO 2006/038985 PCT/US2005/028605 1/11 Fig. 1A WO 2006/038985 PCT/US2005/028605 2/11 Fig. IB WO 2006/038985 PCT/US2005/028605 3/11 -102 Main Processor I/O I/O Memory Port Port Port -140 Bridge 130a Cache —104 '120 130b Fig. 1C WO 2006/038985 PCT/US2005/028605 4/11 100 Fig. ID WO 2006/038985 PCT/US2005/028605 5/11 Fzg. 2 Fig- 3 WO 2006/038985 PCT/US2005/028605 6/11 Fig. 4 WO 2006/038985 PCT/US2005/028605 7/11 Fig. 4B WO 2006/038985 PCT/US2005/028605 8/11 ω ο 03 Ol Ίη «οΙ α C ο Ο| •4—' ω Ε δΙ k_ ω Μ— CQ C 13 ro ι— co WO 2006/038985 PCT/US2005/028605 9/11 Fig. 6 WO 2006/038985 PCT/US2005/028605 10/11 WO 2006/038985 PCT/US2005/028605 11/11 Fig. 7B