AU2010265908B2

Providing security in virtualized mobile devices

Abstract

One embodiment is a method of providing security in a virtualized mobile device including virtualization software that supports one or more virtual machines, the method including: (a) receiving a security policy at the virtualized mobile device, which security policy includes one or more location or location-time scenarios for the virtualized mobile device, which scenarios identify applications to be curtailed, and how they are to be curtailed and applications that are to be enabled, and how they are to be enabled; (b) collecting one or more of mobile device location information or information related to time spent at the location; identifying a scenario that pertaining to the one or more of the location and time information; and (c) curtailing or enabling applications in accordance with the identified scenario.

AU2010265908B2, drawing sheet 1
Sheet 1 of 2

Term

3.8 yearsleft in the term

Expires 28 June 2030.

  1. Priority
  2. Filed
  3. Granted
  4. Today
  5. Expires

18 claims: 2 independent, 16 dependent

  1. 1
    THE CLAIMS DEFINING THE INVENTION ARE AS FOLLOWS:1. A method of providing security in a mobile device comprised of a virtualization software layer that supports one or more virtual machines, the method 5 comprising: receiving a security policy at the mobile device via the virtualization software layer to have the security policy installed on a virtual machine, wherein the security policy includes location-based information to determine whether to curtail or enable a functionality on the mobile device;0 collecting location-based information through the virtualization software layer based on a location of the mobile device;comparing, by the virtual machine, the collected location-based information and the location-based information in the security policy;identifying, by the virtual machine, a security action to perform when the 5 comparing of the collected location-based information and the location-based information in the security policy indicates the security action should be taken;and curtailing or enabling, via the virtualization software layer upon a command from the virtual machine, the functionality identified in the security policy on the mobile device. D
  2. 10
    11. A non-transitory computer-readable storage medium containing instructions for providing security in a mobile device comprised of a virtualization software layer that supports one or more virtual machines, the instructions for controlling a computer system to be operable to:receive a security policy at the mobile device via the virtualization software 0 layer to have the security policy installed on a virtual machine, wherein the security policy includes location-based information to determine whether to curtail or enable a functionality on the mobile device;collect location-based information through the virtualization software layer based on a location of the mobile device: 5 compare, by the virtual machine, the collected location-based information and the location-based information in the security policy;identify, by the virtual machine, a security action to perform when the comparing of the collected location-based information and the location-based information in the security policy indicates the security action should be taken;and ) curtail or enable, via the virtualization software layer upon a command from the virtual machine, the functionality identified in the security policy on the mobile device.