WO2024025532A1 - Secure token for screen sharing - Google Patents

Secure token for screen sharing Download PDF

Info

Publication number
WO2024025532A1
WO2024025532A1 PCT/US2022/038636 US2022038636W WO2024025532A1 WO 2024025532 A1 WO2024025532 A1 WO 2024025532A1 US 2022038636 W US2022038636 W US 2022038636W WO 2024025532 A1 WO2024025532 A1 WO 2024025532A1
Authority
WO
WIPO (PCT)
Prior art keywords
token
user device
server device
user
server
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Ceased
Application number
PCT/US2022/038636
Other languages
French (fr)
Inventor
Dharmendra Kumar JAIN
Vishal PARASHAR
Priyank KASERA
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Rakuten Symphony Singapore Pte Ltd
Rakuten Mobile USA LLC
Original Assignee
Rakuten Symphony Singapore Pte Ltd
Rakuten Mobile USA LLC
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Rakuten Symphony Singapore Pte Ltd, Rakuten Mobile USA LLC filed Critical Rakuten Symphony Singapore Pte Ltd
Priority to US17/996,123 priority Critical patent/US12423392B2/en
Priority to PCT/US2022/038636 priority patent/WO2024025532A1/en
Publication of WO2024025532A1 publication Critical patent/WO2024025532A1/en
Anticipated expiration legal-status Critical
Ceased legal-status Critical Current

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L65/00Network arrangements, protocols or services for supporting real-time applications in data packet communication
    • H04L65/40Support for services or applications
    • H04L65/403Arrangements for multi-party communication, e.g. for conferences
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/31User authentication
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F3/00Input arrangements for transferring data to be processed into a form capable of being handled by the computer; Output arrangements for transferring data from processing unit to output unit, e.g. interface arrangements
    • G06F3/14Digital output to display device ; Cooperation and interconnection of the display device with other functional units
    • G06F3/1454Digital output to display device ; Cooperation and interconnection of the display device with other functional units involving copying of the display data of a local workstation or window to a remote workstation or window so that an actual copy of the data is displayed simultaneously on two or more displays, e.g. teledisplay
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/083Network architectures or network communication protocols for network security for authentication of entities using passwords
    • H04L63/0838Network architectures or network communication protocols for network security for authentication of entities using passwords using one-time-passwords
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources
    • H04L63/108Network architectures or network communication protocols for network security for controlling access to devices or network resources when the policy decisions are valid for a limited amount of time
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/01Protocols
    • H04L67/02Protocols based on web technology, e.g. hypertext transfer protocol [HTTP]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/01Protocols
    • H04L67/10Protocols in which an application is distributed across nodes in the network
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/50Network services
    • H04L67/55Push-based network services
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q10/00Administration; Management
    • G06Q10/10Office automation; Time management
    • G06Q10/101Collaborative creation, e.g. joint development of products or services
    • GPHYSICS
    • G09EDUCATION; CRYPTOGRAPHY; DISPLAY; ADVERTISING; SEALS
    • G09GARRANGEMENTS OR CIRCUITS FOR CONTROL OF INDICATING DEVICES USING STATIC MEANS TO PRESENT VARIABLE INFORMATION
    • G09G2358/00Arrangements for display data security
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L65/00Network arrangements, protocols or services for supporting real-time applications in data packet communication
    • H04L65/40Support for services or applications
    • H04L65/401Support for services or applications wherein the services involve a main real-time session and one or more additional parallel real-time or time sensitive sessions, e.g. white board sharing or spawning of a subconference
    • H04L65/4015Support for services or applications wherein the services involve a main real-time session and one or more additional parallel real-time or time sensitive sessions, e.g. white board sharing or spawning of a subconference where at least one of the additional parallel sessions is real time or time sensitive, e.g. white board sharing, collaboration or spawning of a subconference

Definitions

  • Apparatuses and methods consistent with example embodiments of the present disclosure relate to screen sharing applications using secure tokens.
  • a user device shares a screen with an external device (e.g., a server device)
  • information is typically exchanged in order to facilitate the connection and generate a screen sharing session between the user device and the external device.
  • the information exchanged may include a device identifier (ID) or other information/keys that are unique to the user device. If the device ID or unique information/keys are exposed during the screen sharing session, they may be subsequently used to track the user device.
  • ID device identifier
  • systems and methods are provided for secure screen sharing between devices.
  • a method of screen sharing may include receiving, by a first server device and from a user device, device information corresponding to the user device, generating, by the first server device, a device identifier (ID) based on the device information, receiving, by the first server device and from the user device, a request for a token, generating, by the first server device, a token based on the device ID, and sending, by the first server device, the token to the user device.
  • ID device identifier
  • a system for screen sharing may include a user device, and a first server device configured to receive, from the user device, device information corresponding to the user device, generate a device ID based on the device information, receive, from the user device, a request for a token, generate a token based on the device ID, and send the token to the user device.
  • a non-transitory computer-readable storage medium may store instructions that, when executed by at least one processor, cause the at least one processor to receive, by a first server device and from a user device, device information corresponding to the user device, generate, by the first server device, a device ID based on the device information, receive, by the first server device and from the user device, a request for a token, generate, by the first server device, a token based on the device ID, and send, by the first server device, the token to the user device.
  • FIG. 1 is a diagram of an example environment in which systems and/or methods, described herein, may be implemented;
  • FIG. 2 is a diagram of example components of a device according to an embodiment
  • FIGS. 3 A and 3B are diagrams of an operation flow for a screen sharing application, according to an embodiment
  • FIG. 4 is a flowchart of a method of generating a token, according to an embodiment
  • FIGS. 5A, 5B, 5C, and 5D are diagrams of a user interface (UI) on a server device on which a screen sharing application operates, according to an embodiment
  • FIG. 6 is a flowchart of a method for session sharing, according to an embodiment.
  • FIG. 1 is a diagram of an example environment 100 in which systems and/or methods, described herein, may be implemented.
  • environment 100 may include a user device 110, a platform 120, and a network 130.
  • Devices of environment 100 may interconnect via wired connections, wireless connections, or a combination of wired and wireless connections.
  • User device 110 includes one or more devices capable of receiving, generating, storing, processing, and/or providing information associated with platform 120.
  • user device 110 may include a computing device (e.g., a desktop computer, a laptop computer, a tablet computer, a handheld computer, a smart speaker, a server, etc.), a mobile phone (e.g., a smart phone, a radiotelephone, etc.), a wearable device (e.g., a pair of smart glasses or a smart watch), or a similar device.
  • user device 110 may receive information from and/or transmit information to platform 120.
  • Platform 120 includes one or more devices capable of receiving, generating, storing, processing, and/or providing information.
  • platform 120 may include a cloud server or a group of cloud servers.
  • platform 120 may be designed to be modular such that certain software components may be swapped in or out depending on a particular need. As such, platform 120 may be easily and/or quickly reconfigured for different uses.
  • platform 120 may be hosted in cloud computing environment 122.
  • platform 120 may not be cloud-based (i.e., may be implemented outside of a cloud computing environment) or may be partially cloud-based.
  • Cloud computing environment 122 includes an environment that hosts platform 120.
  • Cloud computing environment 122 may provide computation, software, data access, storage, etc. services that do not require end-user (e.g., user device 110) knowledge of a physical location and configuration of system(s) and/or device(s) that hosts platform 120.
  • cloud computing environment 122 may include a group of computing resources 124 (referred to collectively as “computing resources 124” and individually as “computing resource 124”).
  • Computing resource 124 includes one or more personal computers, a cluster of computing devices, workstation computers, server devices, or other types of computation and/or communication devices.
  • computing resource 124 may host platform 120.
  • the cloud resources may include compute instances executing in computing resource 124, storage devices provided in computing resource 124, data transfer devices provided by computing resource 124, etc.
  • computing resource 124 may communicate with other computing resources 124 via wired connections, wireless connections, or a combination of wired and wireless connections.
  • computing resource 124 includes a group of cloud resources, such as one or more applications (“APPs”) 124-1, one or more virtual machines (“VMs”) 124-2, virtualized storage (“VSs”) 124-3, one or more hypervisors (“HYPs”) 124-4, or the like.
  • Application 124-1 includes one or more software applications that may be provided to or accessed by user device 110. Application 124-1 may eliminate a need to install and execute the software applications on user device 110.
  • application 124-1 may include software associated with platform 120 and/or any other software capable of being provided via cloud computing environment 122.
  • one application 124-1 may send/receive information to/from one or more other applications 124-1, via virtual machine 124- 2.
  • Virtual machine 124-2 includes a software implementation of a machine (e.g., a computer) that executes programs like a physical machine.
  • Virtual machine 124-2 may be either a system virtual machine or a process virtual machine, depending upon use and degree of correspondence to any real machine by virtual machine 124-2.
  • a system virtual machine may provide a complete system platform that supports execution of a complete operating system (“OS”).
  • a process virtual machine may execute a single program, and may support a single process.
  • virtual machine 124-2 may execute on behalf of a user (e.g., user device 110), and may manage infrastructure of cloud computing environment 122, such as data management, synchronization, or long-duration data transfers.
  • Virtualized storage 124-3 includes one or more storage systems and/or one or more devices that use virtualization techniques within the storage systems or devices of computing resource 124.
  • types of virtualizations may include block virtualization and file virtualization.
  • Block virtualization may refer to abstraction (or separation) of logical storage from physical storage so that the storage system may be accessed without regard to physical storage or heterogeneous structure. The separation may permit administrators of the storage system flexibility in how the administrators manage storage for end users.
  • File virtualization may eliminate dependencies between data accessed at a file level and a location where files are physically stored. This may enable optimization of storage use, server consolidation, and/or performance of non-disruptive file migrations.
  • Hypervisor 124-4 may provide hardware virtualization techniques that allow multiple operating systems (e.g., “guest operating systems”) to execute concurrently on a host computer, such as computing resource 124.
  • Hypervisor 124-4 may present a virtual operating platform to the guest operating systems, and may manage the execution of the guest operating systems. Multiple instances of a variety of operating systems may share virtualized hardware resources.
  • Network 130 includes one or more wired and/or wireless networks.
  • network 130 may include a cellular network (e.g., a fifth generation (5G) network, a long-term evolution (LTE) network, a third generation (3G) network, a code division multiple access (CDMA) network, etc.), a public land mobile network (PLMN), a local area network (LAN), a wide area network (WAN), a metropolitan area network (MAN), a telephone network (e.g., the Public Switched Telephone Network (PSTN)), a private network, an ad hoc network, an intranet, the Internet, a fiber optic-based network, or the like, and/or a combination of these or other types of networks.
  • 5G fifth generation
  • LTE long-term evolution
  • 3G third generation
  • CDMA code division multiple access
  • PLMN public land mobile network
  • LAN local area network
  • WAN wide area network
  • MAN metropolitan area network
  • PSTN Public Switched Telephone Network
  • FIG. 1 The number and arrangement of devices and networks shown in FIG. 1 are provided as an example. In practice, there may be additional devices and/or networks, fewer devices and/or networks, different devices and/or networks, or differently arranged devices and/or networks than those shown in FIG. 1. Furthermore, two or more devices shown in FIG. 1 may be implemented within a single device, or a single device shown in FIG. 1 may be implemented as multiple, distributed devices. Additionally, or alternatively, a set of devices (e.g., one or more devices) of environment 100 may perform one or more functions described as being performed by another set of devices of environment 100.
  • a set of devices e.g., one or more devices
  • FIG. 2 is a diagram of example components of a device 200.
  • Device 200 may correspond to user device 110 and/or platform 120.
  • device 200 may include a bus 210, a processor 220, a memory 230, a storage component 240, an input component 250, an output component 260, and a communication interface 270.
  • Bus 210 includes a component that permits communication among the components of device 200.
  • Processor 220 may be implemented in hardware, firmware, or a combination of hardware and software.
  • Processor 220 may be a central processing unit (CPU), a graphics processing unit (GPU), an accelerated processing unit (APU), a microprocessor, a microcontroller, a digital signal processor (DSP), a field-programmable gate array (FPGA), an application-specific integrated circuit (ASIC), or another type of processing component.
  • processor 220 includes one or more processors capable of being programmed to perform a function.
  • Memory 230 includes a random access memory (RAM), a read only memory (ROM), and/or another type of dynamic or static storage device (e.g., a flash memory, a magnetic memory, and/or an optical memory) that stores information and/or instructions for use by processor 220.
  • RAM random access memory
  • ROM read only memory
  • static storage device e.g., a flash memory, a magnetic memory, and/or an optical memory
  • Storage component 240 stores information and/or software related to the operation and use of device 200.
  • storage component 240 may include a hard disk (e.g., a magnetic disk, an optical disk, a magneto-optic disk, and/or a solid state disk), a compact disc (CD), a digital versatile disc (DVD), a floppy disk, a cartridge, a magnetic tape, and/or another type of non-transitory computer-readable medium, along with a corresponding drive.
  • Input component 250 includes a component that permits device 200 to receive information, such as via user input (e.g., a touch screen display, a keyboard, a keypad, a mouse, a button, a switch, and/or a microphone).
  • input component 250 may include a sensor for sensing information (e.g., a global positioning system (GPS) component, an accelerometer, a gyroscope, and/or an actuator).
  • Output component 260 includes a component that provides output information from device 200 (e.g., a display, a speaker, and/or one or more light-emitting diodes (LEDs)).
  • a sensor for sensing information e.g., a global positioning system (GPS) component, an accelerometer, a gyroscope, and/or an actuator).
  • output component 260 includes a component that provides output information from device 200 (e.g., a display, a speaker, and/or one or more light-emitting diodes (LEDs)).
  • LEDs light-emitting diodes
  • Communication interface 270 includes a transceiver-like component (e.g., a transceiver and/or a separate receiver and transmitter) that enables device 200 to communicate with other devices, such as via a wired connection, a wireless connection, or a combination of wired and wireless connections.
  • Communication interface 270 may permit device 200 to receive information from another device and/or provide information to another device.
  • communication interface 270 may include an Ethernet interface, an optical interface, a coaxial interface, an infrared interface, a radio frequency (RF) interface, a universal serial bus (USB) interface, a Wi-Fi interface, a cellular network interface, or the like.
  • RF radio frequency
  • USB universal serial bus
  • Device 200 may perform one or more processes described herein. Device 200 may perform these processes in response to processor 220 executing software instructions stored by a non-transitory computer-readable medium, such as memory 230 and/or storage component 240.
  • a computer-readable medium is defined herein as a non-transitory memory device.
  • a memory device includes memory space within a single physical storage device or memory space spread across multiple physical storage devices.
  • Software instructions may be read into memory 230 and/or storage component 240 from another computer-readable medium or from another device via communication interface 270. When executed, software instructions stored in memory 230 and/or storage component 240 may cause processor 220 to perform one or more processes described herein.
  • hardwired circuitry may be used in place of or in combination with software instructions to perform one or more processes described herein.
  • implementations described herein are not limited to any specific combination of hardware circuitry and software.
  • device 200 may include additional components, fewer components, different components, or differently arranged components than those shown in FIG. 2. Additionally, or alternatively, a set of components (e.g., one or more components) of device 200 may perform one or more functions described as being performed by another set of components of device 200.
  • a set of components e.g., one or more components
  • a device identifier or a unique key such as an Android ID, international mobile equipment identity (IMEI), international mobile subscriber identity (IMSI), etc.
  • IMEI international mobile equipment identity
  • IMSI international mobile subscriber identity
  • a token to identify a user of a user device.
  • the token may be of a predetermined number of digits (e.g., 6) and may be generated based on the device ID, unique ID information of the device, etc.
  • the token may have a set validity time period (e.g., 10 minutes) during which the token may be used to start a screen sharing session.
  • the system may include a user device that includes the screen which is to be shared, a first server device configured to generate tokens, and a second server device with which the user device communicates to utilize the screen sharing application (i.e., the user device shares the screen with the second server device).
  • the first server device e.g., a communication platform
  • the first server device may receive device and application information from the user device, and then generate a device ID based on the received information (e.g., the IMEI, IMSI, Android ID, other information unique to the user device, etc.).
  • the first server device may receive a request to generate a token for a screen sharing session from the user device, and then may generate the token based on the device ID and send the token to the user device.
  • the user device may send the token to the second server device. Since the unique information of the user device is only sent to the first server device and not the second server device (i.e., the unique information is not obtained during a screen sharing session with the second server device), the risk of the user device being tracked based on the unique information outside of the screen sharing session is reduced.
  • the first server device may store the generated device ID in an encrypted storage device to further increase security, and the device ID may also be encrypted.
  • the first server device may generate the token based on a random number generation process. Furthermore, the first server device may generate the token based on the device ID, unique device information, etc.
  • the first server device may, after generating the token, determine whether the token is unique. That is, the first server device may determine whether the generated token is currently in use with other screen sharing sessions, or has been generated, not in current use, but still valid within the set validity time period. When the first server device determines that the generated token is not unique, the first server device may generate a subsequent token. The first server device may set a validity time period for the generated token.
  • the validity time period may correspond to a time period in which the token is valid to be submitted for starting a screen sharing session.
  • the validity time period may be determined based on a predetermined time period (e.g., 10 minutes).
  • the validity time period may vary based on a number of tokens that are currently generated (e.g., the greater number of currently generated tokens, the shorter the validity time period or vice versa).
  • a session ID for a screen sharing session between the user device and the second server device may be generated based on the generated token.
  • FIGS. 3 A and 3B are diagrams of an operation flow for a screen sharing application, according to an embodiment.
  • the system in FIGS. 3A and 3B includes a user device 302, a communication platform 304 (e.g., a first server device), and a server device 306 (e.g., a second server device).
  • an agent of the server device 306 may determine the availability of a screen sharing application in the user device 302.
  • the user device 302 may send a notification to the server device that the application is not installed (i.e., when the user device 302 does not have the application installed).
  • the server device 306 may send an application download link to the user device 302 such that the user device 302 may install the screen sharing application.
  • the user device 302 may install the screen sharing application.
  • the user device 302 may send device information (e.g., IMEI,
  • the communication platform 304 may generate a device ID based on the device information/application information.
  • the communication platform 304 may send the device ID to the user device 302.
  • the user device 302 may send a request to the communication platform 304 to generate a token for the screen sharing application.
  • the communication platform 304 may generate the token.
  • the communication platform 304 may send the token to the user device 302.
  • the user device 302 may send the token to the server device 306 for stating a screen sharing session in the screen sharing application.
  • the server device 306 may send a notification to the communication platform 304 that the token has been confirmed.
  • the communication platform 304 may send the notification that the token has been confirmed to the user device 302.
  • the server device 306 may send the notification that the token has been confirmed directly to the user device 302.
  • the user device 302 may accept or reject a screen sharing request.
  • the user device 302 may send to the server device 306 an acknowledgement of the accept/reject status.
  • Operations 340-350 are performed when the screen sharing request is accepted.
  • the system may build a socket based-connection between the user device 302 and the server device 306 for bi-directional communication.
  • the system may begin the screen sharing/capture. That is, the server device 306 begins to capture the screen of the user device 302.
  • the server device 306 may parse data and show data on a user interface (UI) of the server device 306.
  • the server device 306 may perform various commands for various operations on the user device 302.
  • the server device 306 may perform annotations through an interface of the server device 302 to be duplicated on the screen of the user device 302, may draw pointer and indications to be duplicated on the screen of the user device 302, may change video/image quality of the shared screen on a UI of the server device 306, etc.
  • the server device 306 may capture screenshots of the shared screen and/or record video of the shared screen.
  • the system may close the session when either the server device 306 or the user device 302 opts to terminate the screen sharing session.
  • FIG. 4 is a flowchart of a method of generating a token, according to an embodiment.
  • a user device may request a token from a communication platform (e.g., a first server device).
  • the communication platform may generate a token based on, for example, a device ID, device information, etc.
  • the communication platform may determine whether the token is unique. That is, the communication platform may determine whether the token is unique compared to currently in-use tokens for other screen sharing sessions, compared to generated token that are still within their respective validity time periods, etc. If the token is not unique, then the system repeats operation 404. If the token is unique, in operation 408, the communication platform may map the device ID with the generated token. In operation 410, the communication platform may set a token validity time period. In operation 412, the communication platform may provide the token to the user device.
  • FIGS. 5A-5D are diagrams of a UI on a server device (i.e., a second device) on which a screen sharing application operates, according to an embodiment.
  • a user of the server device may select the remote access button 502 to start a screen sharing session with a user device, and a remote access confirmation window 504 may be displayed with a field 506 for entering the token.
  • the user of the server device may receive the token (shown as “808117” as an example) from the user device, and the token may be automatically populated in the field 506 or may be manually entered in the field 506 by the user of the server device. Once the token is entered, the user of the server device may start the screen sharing session.
  • the UI may include current device statistics 512, including remaining storage, remaining memory, remaining battery, battery temperature, etc.
  • the UI may include device hardware information, such as the make, model, operating system (OS) version, operator, chipset, global positioning system (GPS), Wi-Fi hotspot and Wi-Fi activation status, random access memory (RAM) usage, storage usage, etc.
  • the UI may include a control slide 516 that allows the user of the server device to fully control the screen 510 of the user device.
  • the UI may include a session termination button 518, and the user device may also include a session termination icon 520.
  • the user of the server device may change the video quality of the screen sharing via icon 530, may provide pointers to the screen of the user device via icon 532, may draw shapes or provide annotations to the screen of the user device via icon 534, may record video of the screen sharing session via icon 536, and may take a screenshot of the screen sharing session via icon 538.
  • the system may receive, by a first server device and from a user device, device information corresponding to the user device.
  • the system may generate, by the first server device, a device ID based on the device information.
  • the system may receive, by the first server device and from the user device, a request for a token.
  • the system may generate, by the first server device, a token based on the device ID.
  • the system may send, by the first server device, the token to the user device.
  • any one of the operations or processes of FIGS. 3A-6 may be implemented by or using any one of the elements illustrated in FIGS. 1 and 2.
  • Some embodiments may relate to a system, a method, and/or a computer readable medium at any possible technical detail level of integration. Further, one or more of the above components described above may be implemented as instructions stored on a computer readable medium and executable by at least one processor (and/or may include at least one processor).
  • the computer readable medium may include a computer-readable non-transitory storage medium (or media) having computer readable program instructions thereon for causing a processor to carry out operations.
  • the computer readable storage medium can be a tangible device that can retain and store instructions for use by an instruction execution device.
  • the computer readable storage medium may be, for example, but is not limited to, an electronic storage device, a magnetic storage device, an optical storage device, an electromagnetic storage device, a semiconductor storage device, or any suitable combination of the foregoing.
  • a non-exhaustive list of more specific examples of the computer readable storage medium includes the following: a portable computer diskette, a hard disk, a random access memory (RAM), a read-only memory (ROM), an erasable programmable read-only memory (EPROM or Flash memory), a static random access memory (SRAM), a portable compact disc read-only memory (CD-ROM), a digital versatile disk (DVD), a memory stick, a floppy disk, a mechanically encoded device such as punch-cards or raised structures in a groove having instructions recorded thereon, and any suitable combination of the foregoing.
  • RAM random access memory
  • ROM read-only memory
  • EPROM or Flash memory erasable programmable read-only memory
  • SRAM static random access memory
  • CD-ROM compact disc read-only memory
  • DVD digital versatile disk
  • memory stick a floppy disk
  • a mechanically encoded device such as punch-cards or raised structures in a groove having instructions recorded thereon
  • a computer readable storage medium is not to be construed as being transitory signals per se, such as radio waves or other freely propagating electromagnetic waves, electromagnetic waves propagating through a waveguide or other transmission media (e.g., light pulses passing through a fiber-optic cable), or electrical signals transmitted through a wire.
  • Computer readable program instructions described herein can be downloaded to respective computing/processing devices from a computer readable storage medium or to an external computer or external storage device via a network, for example, the Internet, a local area network, a wide area network and/or a wireless network.
  • the network may comprise copper transmission cables, optical transmission fibers, wireless transmission, routers, firewalls, switches, gateway computers and/or edge servers.
  • a network adapter card or network interface in each computing/processing device receives computer readable program instructions from the network and forwards the computer readable program instructions for storage in a computer readable storage medium within the respective computing/processing device.
  • Computer readable program code/instructions for carrying out operations may be assembler instructions, instruction-set-architecture (ISA) instructions, machine instructions, machine dependent instructions, microcode, firmware instructions, state-setting data, configuration data for integrated circuitry, or either source code or object code written in any combination of one or more programming languages, including an object oriented programming language such as Smalltalk, C++, or the like, and procedural programming languages, such as the "C" programming language or similar programming languages.
  • the computer readable program instructions may execute entirely on the user's computer, partly on the user's computer, as a standalone software package, partly on the user's computer and partly on a remote computer or entirely on the remote computer or server.
  • the remote computer may be connected to the user's computer through any type of network, including a local area network (LAN) or a wide area network (WAN), or the connection may be made to an external computer (for example, through the Internet using an Internet Service Provider).
  • electronic circuitry including, for example, programmable logic circuitry, field-programmable gate arrays (FPGA), or programmable logic arrays (PLA) may execute the computer readable program instructions by utilizing state information of the computer readable program instructions to personalize the electronic circuitry, in order to perform aspects or operations.
  • These computer readable program instructions may be provided to a processor of a general purpose computer, special purpose computer, or other programmable data processing apparatus to produce a machine, such that the instructions, which execute via the processor of the computer or other programmable data processing apparatus, create means for implementing the functions/acts specified in the flowchart and/or block diagram block or blocks.
  • These computer readable program instructions may also be stored in a computer readable storage medium that can direct a computer, a programmable data processing apparatus, and/or other devices to function in a particular manner, such that the computer readable storage medium having instructions stored therein comprises an article of manufacture including instructions which implement aspects of the function/act specified in the flowchart and/or block diagram block or blocks.
  • the computer readable program instructions may also be loaded onto a computer, other programmable data processing apparatus, or other device to cause a series of operational steps to be performed on the computer, other programmable apparatus or other device to produce a computer implemented process, such that the instructions which execute on the computer, other programmable apparatus, or other device implement the functions/acts specified in the flowchart and/or block diagram block or blocks.
  • each block in the flowchart or block diagrams may represent a module, segment, or portion of instructions, which comprises one or more executable instructions for implementing the specified logical function(s).
  • the method, computer system, and computer readable medium may include additional blocks, fewer blocks, different blocks, or differently arranged blocks than those depicted in the Figures.
  • the functions noted in the blocks may occur out of the order noted in the Figures.

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Security & Cryptography (AREA)
  • Theoretical Computer Science (AREA)
  • General Engineering & Computer Science (AREA)
  • Computer Hardware Design (AREA)
  • Physics & Mathematics (AREA)
  • General Physics & Mathematics (AREA)
  • Computing Systems (AREA)
  • Software Systems (AREA)
  • Human Computer Interaction (AREA)
  • Multimedia (AREA)
  • Information Transfer Between Computers (AREA)

Abstract

A method of screen sharing include receiving, by a first server device and from a user device, device information corresponding to the user device, generating, by the first server device, a device identifier (ID) based on the device information, receiving, by the first server device and from the user device, a request for a token, generating, by the first server device, a token based on the device ID, and sending, by the first server device, the token to the user device.

Description

SECURE TOKEN FOR SCREEN SHARING
BACKGROUND
1. Field
[0001] Apparatuses and methods consistent with example embodiments of the present disclosure relate to screen sharing applications using secure tokens.
2. Description of Related Art
[0002] In a screen sharing application where a user device shares a screen with an external device (e.g., a server device), information is typically exchanged in order to facilitate the connection and generate a screen sharing session between the user device and the external device. The information exchanged may include a device identifier (ID) or other information/keys that are unique to the user device. If the device ID or unique information/keys are exposed during the screen sharing session, they may be subsequently used to track the user device.
SUMMARY
[0003] According to embodiments, systems and methods are provided for secure screen sharing between devices.
[0004] According to an aspect of the disclosure, a method of screen sharing may include receiving, by a first server device and from a user device, device information corresponding to the user device, generating, by the first server device, a device identifier (ID) based on the device information, receiving, by the first server device and from the user device, a request for a token, generating, by the first server device, a token based on the device ID, and sending, by the first server device, the token to the user device.
[0005] According to an aspect of the disclosure, a system for screen sharing may include a user device, and a first server device configured to receive, from the user device, device information corresponding to the user device, generate a device ID based on the device information, receive, from the user device, a request for a token, generate a token based on the device ID, and send the token to the user device.
[0006] According to an aspect of the disclosure, a non-transitory computer-readable storage medium may store instructions that, when executed by at least one processor, cause the at least one processor to receive, by a first server device and from a user device, device information corresponding to the user device, generate, by the first server device, a device ID based on the device information, receive, by the first server device and from the user device, a request for a token, generate, by the first server device, a token based on the device ID, and send, by the first server device, the token to the user device.
[0007] Additional aspects will be set forth in part in the description that follows and, in part, will be apparent from the description, or may be realized by practice of the presented embodiments of the disclosure.
BRIEF DESCRIPTION OF THE DRAWINGS
[0008] Features, advantages, and significance of exemplary embodiments of the disclosure will be described below with reference to the accompanying drawings, in which like signs denote like elements, and wherein: [0009] FIG. 1 is a diagram of an example environment in which systems and/or methods, described herein, may be implemented;
[0010] FIG. 2 is a diagram of example components of a device according to an embodiment;
[0011] FIGS. 3 A and 3B are diagrams of an operation flow for a screen sharing application, according to an embodiment;
[0012] FIG. 4 is a flowchart of a method of generating a token, according to an embodiment;
[0013] FIGS. 5A, 5B, 5C, and 5D are diagrams of a user interface (UI) on a server device on which a screen sharing application operates, according to an embodiment; and
[0014] FIG. 6 is a flowchart of a method for session sharing, according to an embodiment.
DETAILED DESCRIPTION
[0015] The following detailed description of example embodiments refers to the accompanying drawings. The same reference numbers in different drawings may identify the same or similar elements.
[0016] The foregoing disclosure provides illustration and description, but is not intended to be exhaustive or to limit the implementations to the precise form disclosed. Modifications and variations are possible in light of the above disclosure or may be acquired from practice of the implementations. Further, one or more features or components of one embodiment may be incorporated into or combined with another embodiment (or one or more features of another embodiment). Additionally, in the flowcharts and descriptions of operations provided below, it is understood that one or more operations may be omitted, one or more operations may be added, one or more operations may be performed simultaneously (at least in part), and the order of one or more operations may be switched.
[0017] It will be apparent that systems and/or methods, described herein, may be implemented in different forms of hardware, firmware, or a combination of hardware and software. The actual specialized control hardware or software code used to implement these systems and/or methods is not limiting of the implementations. Thus, the operation and behavior of the systems and/or methods were described herein without reference to specific software code. It is understood that software and hardware may be designed to implement the systems and/or methods based on the description herein.
[0018] Even though particular combinations of features are recited in the claims and/or disclosed in the specification, these combinations are not intended to limit the disclosure of possible implementations. In fact, many of these features may be combined in ways not specifically recited in the claims and/or disclosed in the specification. Although each dependent claim listed below may directly depend on only one claim, the disclosure of possible implementations includes each dependent claim in combination with every other claim in the claim set.
[0019] No element, act, or instruction used herein should be construed as critical or essential unless explicitly described as such. Also, as used herein, the articles “a” and “an” are intended to include one or more items, and may be used interchangeably with “one or more.” Where only one item is intended, the term “one” or similar language is used. Also, as used herein, the terms “has,” “have,” “having,” “include,” “including,” or the like are intended to be open- ended terms. Further, the phrase “based on” is intended to mean “based, at least in part, on” unless explicitly stated otherwise. Furthermore, expressions such as “at least one of [A] and [B]” or “at least one of [A] or [B]” are to be understood as including only A, only B, or both A and B.
[0020] FIG. 1 is a diagram of an example environment 100 in which systems and/or methods, described herein, may be implemented. As shown in FIG. 1, environment 100 may include a user device 110, a platform 120, and a network 130. Devices of environment 100 may interconnect via wired connections, wireless connections, or a combination of wired and wireless connections. In embodiments, any of the functions and operations described with reference to FIG.
1 above may be performed by any combination of elements illustrated in FIG. 1.
[0021] User device 110 includes one or more devices capable of receiving, generating, storing, processing, and/or providing information associated with platform 120. For example, user device 110 may include a computing device (e.g., a desktop computer, a laptop computer, a tablet computer, a handheld computer, a smart speaker, a server, etc.), a mobile phone (e.g., a smart phone, a radiotelephone, etc.), a wearable device (e.g., a pair of smart glasses or a smart watch), or a similar device. In some implementations, user device 110 may receive information from and/or transmit information to platform 120.
[0022] Platform 120 includes one or more devices capable of receiving, generating, storing, processing, and/or providing information. In some implementations, platform 120 may include a cloud server or a group of cloud servers. In some implementations, platform 120 may be designed to be modular such that certain software components may be swapped in or out depending on a particular need. As such, platform 120 may be easily and/or quickly reconfigured for different uses. [0023] In some implementations, as shown, platform 120 may be hosted in cloud computing environment 122. Notably, while implementations described herein describe platform 120 as being hosted in cloud computing environment 122, in some implementations, platform 120 may not be cloud-based (i.e., may be implemented outside of a cloud computing environment) or may be partially cloud-based.
[0024] Cloud computing environment 122 includes an environment that hosts platform 120. Cloud computing environment 122 may provide computation, software, data access, storage, etc. services that do not require end-user (e.g., user device 110) knowledge of a physical location and configuration of system(s) and/or device(s) that hosts platform 120. As shown, cloud computing environment 122 may include a group of computing resources 124 (referred to collectively as “computing resources 124” and individually as “computing resource 124”).
[0025] Computing resource 124 includes one or more personal computers, a cluster of computing devices, workstation computers, server devices, or other types of computation and/or communication devices. In some implementations, computing resource 124 may host platform 120. The cloud resources may include compute instances executing in computing resource 124, storage devices provided in computing resource 124, data transfer devices provided by computing resource 124, etc. In some implementations, computing resource 124 may communicate with other computing resources 124 via wired connections, wireless connections, or a combination of wired and wireless connections.
[0026] As further shown in FIG. 1, computing resource 124 includes a group of cloud resources, such as one or more applications (“APPs”) 124-1, one or more virtual machines (“VMs”) 124-2, virtualized storage (“VSs”) 124-3, one or more hypervisors (“HYPs”) 124-4, or the like. [0027] Application 124-1 includes one or more software applications that may be provided to or accessed by user device 110. Application 124-1 may eliminate a need to install and execute the software applications on user device 110. For example, application 124-1 may include software associated with platform 120 and/or any other software capable of being provided via cloud computing environment 122. In some implementations, one application 124-1 may send/receive information to/from one or more other applications 124-1, via virtual machine 124- 2.
[0028] Virtual machine 124-2 includes a software implementation of a machine (e.g., a computer) that executes programs like a physical machine. Virtual machine 124-2 may be either a system virtual machine or a process virtual machine, depending upon use and degree of correspondence to any real machine by virtual machine 124-2. A system virtual machine may provide a complete system platform that supports execution of a complete operating system (“OS”). A process virtual machine may execute a single program, and may support a single process. In some implementations, virtual machine 124-2 may execute on behalf of a user (e.g., user device 110), and may manage infrastructure of cloud computing environment 122, such as data management, synchronization, or long-duration data transfers.
[0029] Virtualized storage 124-3 includes one or more storage systems and/or one or more devices that use virtualization techniques within the storage systems or devices of computing resource 124. In some implementations, within the context of a storage system, types of virtualizations may include block virtualization and file virtualization. Block virtualization may refer to abstraction (or separation) of logical storage from physical storage so that the storage system may be accessed without regard to physical storage or heterogeneous structure. The separation may permit administrators of the storage system flexibility in how the administrators manage storage for end users. File virtualization may eliminate dependencies between data accessed at a file level and a location where files are physically stored. This may enable optimization of storage use, server consolidation, and/or performance of non-disruptive file migrations.
[0030] Hypervisor 124-4 may provide hardware virtualization techniques that allow multiple operating systems (e.g., “guest operating systems”) to execute concurrently on a host computer, such as computing resource 124. Hypervisor 124-4 may present a virtual operating platform to the guest operating systems, and may manage the execution of the guest operating systems. Multiple instances of a variety of operating systems may share virtualized hardware resources.
[0031] Network 130 includes one or more wired and/or wireless networks. For example, network 130 may include a cellular network (e.g., a fifth generation (5G) network, a long-term evolution (LTE) network, a third generation (3G) network, a code division multiple access (CDMA) network, etc.), a public land mobile network (PLMN), a local area network (LAN), a wide area network (WAN), a metropolitan area network (MAN), a telephone network (e.g., the Public Switched Telephone Network (PSTN)), a private network, an ad hoc network, an intranet, the Internet, a fiber optic-based network, or the like, and/or a combination of these or other types of networks.
[0032] The number and arrangement of devices and networks shown in FIG. 1 are provided as an example. In practice, there may be additional devices and/or networks, fewer devices and/or networks, different devices and/or networks, or differently arranged devices and/or networks than those shown in FIG. 1. Furthermore, two or more devices shown in FIG. 1 may be implemented within a single device, or a single device shown in FIG. 1 may be implemented as multiple, distributed devices. Additionally, or alternatively, a set of devices (e.g., one or more devices) of environment 100 may perform one or more functions described as being performed by another set of devices of environment 100.
[0033] FIG. 2 is a diagram of example components of a device 200. Device 200 may correspond to user device 110 and/or platform 120. As shown in FIG. 2, device 200 may include a bus 210, a processor 220, a memory 230, a storage component 240, an input component 250, an output component 260, and a communication interface 270.
[0034] Bus 210 includes a component that permits communication among the components of device 200. Processor 220 may be implemented in hardware, firmware, or a combination of hardware and software. Processor 220 may be a central processing unit (CPU), a graphics processing unit (GPU), an accelerated processing unit (APU), a microprocessor, a microcontroller, a digital signal processor (DSP), a field-programmable gate array (FPGA), an application-specific integrated circuit (ASIC), or another type of processing component. In some implementations, processor 220 includes one or more processors capable of being programmed to perform a function. Memory 230 includes a random access memory (RAM), a read only memory (ROM), and/or another type of dynamic or static storage device (e.g., a flash memory, a magnetic memory, and/or an optical memory) that stores information and/or instructions for use by processor 220.
[0035] Storage component 240 stores information and/or software related to the operation and use of device 200. For example, storage component 240 may include a hard disk (e.g., a magnetic disk, an optical disk, a magneto-optic disk, and/or a solid state disk), a compact disc (CD), a digital versatile disc (DVD), a floppy disk, a cartridge, a magnetic tape, and/or another type of non-transitory computer-readable medium, along with a corresponding drive. Input component 250 includes a component that permits device 200 to receive information, such as via user input (e.g., a touch screen display, a keyboard, a keypad, a mouse, a button, a switch, and/or a microphone). Additionally, or alternatively, input component 250 may include a sensor for sensing information (e.g., a global positioning system (GPS) component, an accelerometer, a gyroscope, and/or an actuator). Output component 260 includes a component that provides output information from device 200 (e.g., a display, a speaker, and/or one or more light-emitting diodes (LEDs)).
[0036] Communication interface 270 includes a transceiver-like component (e.g., a transceiver and/or a separate receiver and transmitter) that enables device 200 to communicate with other devices, such as via a wired connection, a wireless connection, or a combination of wired and wireless connections. Communication interface 270 may permit device 200 to receive information from another device and/or provide information to another device. For example, communication interface 270 may include an Ethernet interface, an optical interface, a coaxial interface, an infrared interface, a radio frequency (RF) interface, a universal serial bus (USB) interface, a Wi-Fi interface, a cellular network interface, or the like.
[0037] Device 200 may perform one or more processes described herein. Device 200 may perform these processes in response to processor 220 executing software instructions stored by a non-transitory computer-readable medium, such as memory 230 and/or storage component 240. A computer-readable medium is defined herein as a non-transitory memory device. A memory device includes memory space within a single physical storage device or memory space spread across multiple physical storage devices.
[0038] Software instructions may be read into memory 230 and/or storage component 240 from another computer-readable medium or from another device via communication interface 270. When executed, software instructions stored in memory 230 and/or storage component 240 may cause processor 220 to perform one or more processes described herein.
[0039] Additionally, or alternatively, hardwired circuitry may be used in place of or in combination with software instructions to perform one or more processes described herein. Thus, implementations described herein are not limited to any specific combination of hardware circuitry and software.
[0040] The number and arrangement of components shown in FIG. 2 are provided as an example. In practice, device 200 may include additional components, fewer components, different components, or differently arranged components than those shown in FIG. 2. Additionally, or alternatively, a set of components (e.g., one or more components) of device 200 may perform one or more functions described as being performed by another set of components of device 200.
[0041] In screen sharing applications, a device identifier (ID) or a unique key such as an Android ID, international mobile equipment identity (IMEI), international mobile subscriber identity (IMSI), etc., may be used for establishing a connection. However, as this information is unique, the information may be used to track the device outside of the screen sharing session. Thus, provided are a system and method for screen sharing (i.e., implementation of a screen sharing application) using a token to identify a user of a user device. The token may be of a predetermined number of digits (e.g., 6) and may be generated based on the device ID, unique ID information of the device, etc. The token may have a set validity time period (e.g., 10 minutes) during which the token may be used to start a screen sharing session.
[0042] The system may include a user device that includes the screen which is to be shared, a first server device configured to generate tokens, and a second server device with which the user device communicates to utilize the screen sharing application (i.e., the user device shares the screen with the second server device). The first server device (e.g., a communication platform), may receive device and application information from the user device, and then generate a device ID based on the received information (e.g., the IMEI, IMSI, Android ID, other information unique to the user device, etc.). The first server device may receive a request to generate a token for a screen sharing session from the user device, and then may generate the token based on the device ID and send the token to the user device. To start the screen sharing session, the user device may send the token to the second server device. Since the unique information of the user device is only sent to the first server device and not the second server device (i.e., the unique information is not obtained during a screen sharing session with the second server device), the risk of the user device being tracked based on the unique information outside of the screen sharing session is reduced.
[0043] The first server device may store the generated device ID in an encrypted storage device to further increase security, and the device ID may also be encrypted. The first server device may generate the token based on a random number generation process. Furthermore, the first server device may generate the token based on the device ID, unique device information, etc. The first server device may, after generating the token, determine whether the token is unique. That is, the first server device may determine whether the generated token is currently in use with other screen sharing sessions, or has been generated, not in current use, but still valid within the set validity time period. When the first server device determines that the generated token is not unique, the first server device may generate a subsequent token. The first server device may set a validity time period for the generated token. The validity time period may correspond to a time period in which the token is valid to be submitted for starting a screen sharing session. The validity time period may be determined based on a predetermined time period (e.g., 10 minutes). The validity time period may vary based on a number of tokens that are currently generated (e.g., the greater number of currently generated tokens, the shorter the validity time period or vice versa). Furthermore, a session ID for a screen sharing session between the user device and the second server device may be generated based on the generated token.
[0044] FIGS. 3 A and 3B are diagrams of an operation flow for a screen sharing application, according to an embodiment. The system in FIGS. 3A and 3B includes a user device 302, a communication platform 304 (e.g., a first server device), and a server device 306 (e.g., a second server device). In operation 310, an agent of the server device 306 may determine the availability of a screen sharing application in the user device 302. In operation 312, the user device 302 may send a notification to the server device that the application is not installed (i.e., when the user device 302 does not have the application installed). In operation 314, the server device 306 may send an application download link to the user device 302 such that the user device 302 may install the screen sharing application. In operation 316, the user device 302 may install the screen sharing application.
[0045] In operation 318, the user device 302 may send device information (e.g., IMEI,
IMSI, Android ID, etc.) and/or application information to the communication platform 304. In operation 320, the communication platform 304 may generate a device ID based on the device information/application information. In operation 322, the communication platform 304 may send the device ID to the user device 302. In operation 324, the user device 302 may send a request to the communication platform 304 to generate a token for the screen sharing application. In operation 326, the communication platform 304 may generate the token. In operation 328, the communication platform 304 may send the token to the user device 302. In operation 330, the user device 302 may send the token to the server device 306 for stating a screen sharing session in the screen sharing application.
[0046] In operation 332, the server device 306 may send a notification to the communication platform 304 that the token has been confirmed. In operation 334, the communication platform 304 may send the notification that the token has been confirmed to the user device 302. Alternatively, the server device 306 may send the notification that the token has been confirmed directly to the user device 302. In operation 336, the user device 302 may accept or reject a screen sharing request. In operation 338, the user device 302 may send to the server device 306 an acknowledgement of the accept/reject status.
[0047] Operations 340-350 are performed when the screen sharing request is accepted. In operation 340, the system may build a socket based-connection between the user device 302 and the server device 306 for bi-directional communication. In operation 342, the system may begin the screen sharing/capture. That is, the server device 306 begins to capture the screen of the user device 302. In operation 344, the server device 306 may parse data and show data on a user interface (UI) of the server device 306. In operation 346, the server device 306 may perform various commands for various operations on the user device 302. For example, the server device 306 may perform annotations through an interface of the server device 302 to be duplicated on the screen of the user device 302, may draw pointer and indications to be duplicated on the screen of the user device 302, may change video/image quality of the shared screen on a UI of the server device 306, etc. In operation 348, the server device 306 may capture screenshots of the shared screen and/or record video of the shared screen. In operation 350, the system may close the session when either the server device 306 or the user device 302 opts to terminate the screen sharing session.
[0048] FIG. 4 is a flowchart of a method of generating a token, according to an embodiment. In operation 402, a user device may request a token from a communication platform (e.g., a first server device). In operation 404, the communication platform may generate a token based on, for example, a device ID, device information, etc. In operation 406, the communication platform may determine whether the token is unique. That is, the communication platform may determine whether the token is unique compared to currently in-use tokens for other screen sharing sessions, compared to generated token that are still within their respective validity time periods, etc. If the token is not unique, then the system repeats operation 404. If the token is unique, in operation 408, the communication platform may map the device ID with the generated token. In operation 410, the communication platform may set a token validity time period. In operation 412, the communication platform may provide the token to the user device.
[0049] FIGS. 5A-5D are diagrams of a UI on a server device (i.e., a second device) on which a screen sharing application operates, according to an embodiment. Referring to FIG. 5A, a user of the server device may select the remote access button 502 to start a screen sharing session with a user device, and a remote access confirmation window 504 may be displayed with a field 506 for entering the token. Referring to FIG. 5B, the user of the server device may receive the token (shown as “808117” as an example) from the user device, and the token may be automatically populated in the field 506 or may be manually entered in the field 506 by the user of the server device. Once the token is entered, the user of the server device may start the screen sharing session.
[0050] Referring to FIG. 5C, the screen 510 of the user device is shown, where the token has been previously entered by a user of the user device. Referring to FIG. 5D, the UI may include current device statistics 512, including remaining storage, remaining memory, remaining battery, battery temperature, etc. The UI may include device hardware information, such as the make, model, operating system (OS) version, operator, chipset, global positioning system (GPS), Wi-Fi hotspot and Wi-Fi activation status, random access memory (RAM) usage, storage usage, etc. The UI may include a control slide 516 that allows the user of the server device to fully control the screen 510 of the user device. That is, when full control is off, the user of the server device cannot interact with applications and other functions of the user device, but rather can only provide annotations and drawing directions to the user of the user device. When full control is on, the user of the server device may interact with applications and functions of the user device. The UI may include a session termination button 518, and the user device may also include a session termination icon 520. The user of the server device may change the video quality of the screen sharing via icon 530, may provide pointers to the screen of the user device via icon 532, may draw shapes or provide annotations to the screen of the user device via icon 534, may record video of the screen sharing session via icon 536, and may take a screenshot of the screen sharing session via icon 538. [0051] FIG. 6 is a flowchart of a method for session sharing, according to an embodiment. In operation 602, the system may receive, by a first server device and from a user device, device information corresponding to the user device. In operation 604, the system may generate, by the first server device, a device ID based on the device information. In operation 606, the system may receive, by the first server device and from the user device, a request for a token. In operation 608, the system may generate, by the first server device, a token based on the device ID. In operation 610, the system may send, by the first server device, the token to the user device.
[0052] In embodiments, any one of the operations or processes of FIGS. 3A-6 may be implemented by or using any one of the elements illustrated in FIGS. 1 and 2.
[0053] The foregoing disclosure provides illustration and description, but is not intended to be exhaustive or to limit the implementations to the precise form disclosed. Modifications and variations are possible in light of the above disclosure or may be acquired from practice of the implementations.
[0054] Some embodiments may relate to a system, a method, and/or a computer readable medium at any possible technical detail level of integration. Further, one or more of the above components described above may be implemented as instructions stored on a computer readable medium and executable by at least one processor (and/or may include at least one processor). The computer readable medium may include a computer-readable non-transitory storage medium (or media) having computer readable program instructions thereon for causing a processor to carry out operations.
[0055] The computer readable storage medium can be a tangible device that can retain and store instructions for use by an instruction execution device. The computer readable storage medium may be, for example, but is not limited to, an electronic storage device, a magnetic storage device, an optical storage device, an electromagnetic storage device, a semiconductor storage device, or any suitable combination of the foregoing. A non-exhaustive list of more specific examples of the computer readable storage medium includes the following: a portable computer diskette, a hard disk, a random access memory (RAM), a read-only memory (ROM), an erasable programmable read-only memory (EPROM or Flash memory), a static random access memory (SRAM), a portable compact disc read-only memory (CD-ROM), a digital versatile disk (DVD), a memory stick, a floppy disk, a mechanically encoded device such as punch-cards or raised structures in a groove having instructions recorded thereon, and any suitable combination of the foregoing. A computer readable storage medium, as used herein, is not to be construed as being transitory signals per se, such as radio waves or other freely propagating electromagnetic waves, electromagnetic waves propagating through a waveguide or other transmission media (e.g., light pulses passing through a fiber-optic cable), or electrical signals transmitted through a wire.
[0056] Computer readable program instructions described herein can be downloaded to respective computing/processing devices from a computer readable storage medium or to an external computer or external storage device via a network, for example, the Internet, a local area network, a wide area network and/or a wireless network. The network may comprise copper transmission cables, optical transmission fibers, wireless transmission, routers, firewalls, switches, gateway computers and/or edge servers. A network adapter card or network interface in each computing/processing device receives computer readable program instructions from the network and forwards the computer readable program instructions for storage in a computer readable storage medium within the respective computing/processing device. [0057] Computer readable program code/instructions for carrying out operations may be assembler instructions, instruction-set-architecture (ISA) instructions, machine instructions, machine dependent instructions, microcode, firmware instructions, state-setting data, configuration data for integrated circuitry, or either source code or object code written in any combination of one or more programming languages, including an object oriented programming language such as Smalltalk, C++, or the like, and procedural programming languages, such as the "C" programming language or similar programming languages. The computer readable program instructions may execute entirely on the user's computer, partly on the user's computer, as a standalone software package, partly on the user's computer and partly on a remote computer or entirely on the remote computer or server. In the latter scenario, the remote computer may be connected to the user's computer through any type of network, including a local area network (LAN) or a wide area network (WAN), or the connection may be made to an external computer (for example, through the Internet using an Internet Service Provider). In some embodiments, electronic circuitry including, for example, programmable logic circuitry, field-programmable gate arrays (FPGA), or programmable logic arrays (PLA) may execute the computer readable program instructions by utilizing state information of the computer readable program instructions to personalize the electronic circuitry, in order to perform aspects or operations.
[0058] These computer readable program instructions may be provided to a processor of a general purpose computer, special purpose computer, or other programmable data processing apparatus to produce a machine, such that the instructions, which execute via the processor of the computer or other programmable data processing apparatus, create means for implementing the functions/acts specified in the flowchart and/or block diagram block or blocks. These computer readable program instructions may also be stored in a computer readable storage medium that can direct a computer, a programmable data processing apparatus, and/or other devices to function in a particular manner, such that the computer readable storage medium having instructions stored therein comprises an article of manufacture including instructions which implement aspects of the function/act specified in the flowchart and/or block diagram block or blocks.
[0059] The computer readable program instructions may also be loaded onto a computer, other programmable data processing apparatus, or other device to cause a series of operational steps to be performed on the computer, other programmable apparatus or other device to produce a computer implemented process, such that the instructions which execute on the computer, other programmable apparatus, or other device implement the functions/acts specified in the flowchart and/or block diagram block or blocks.
[0060] The flowchart and block diagrams in the Figures illustrate the architecture, functionality, and operation of possible implementations of systems, methods, and computer readable media according to various embodiments. In this regard, each block in the flowchart or block diagrams may represent a module, segment, or portion of instructions, which comprises one or more executable instructions for implementing the specified logical function(s). The method, computer system, and computer readable medium may include additional blocks, fewer blocks, different blocks, or differently arranged blocks than those depicted in the Figures. In some alternative implementations, the functions noted in the blocks may occur out of the order noted in the Figures. For example, two blocks shown in succession may, in fact, be executed concurrently or substantially concurrently, or the blocks may sometimes be executed in the reverse order, depending upon the functionality involved. It will also be noted that each block of the block diagrams and/or flowchart illustration, and combinations of blocks in the block diagrams and/or flowchart illustration, can be implemented by special purpose hardware-based systems that perform the specified functions or acts or carry out combinations of special purpose hardware and computer instructions.
[0061] It will be apparent that systems and/or methods, described herein, may be implemented in different forms of hardware, firmware, or a combination of hardware and software. The actual specialized control hardware or software code used to implement these systems and/or methods is not limiting of the implementations. Thus, the operation and behavior of the systems and/or methods were described herein without reference to specific software code — it being understood that software and hardware may be designed to implement the systems and/or methods based on the description herein.

Claims

What is Claimed is:
1. A method of screen sharing, comprising: receiving, by a first server device and from a user device, device information corresponding to the user device; generating, by the first server device, a device identifier (ID) based on the device information; receiving, by the first server device and from the user device, a request for a token; generating, by the first server device, a token based on the device ID; and sending, by the first server device, the token to the user device.
2. The method of claim 1, further comprising sending, by the user device, the generated token to a second server device.
3. The method of claim 2, further comprising: in response to receiving the generated token from the user device, sending, by the second server device and to the user device, a notification that the generated token has been confirmed; and in response to receiving the notification that the generated token has been confirmed, accepting, by the user device, a screen sharing request for sharing a screen of the user device with the second server device.
4. The method of claim 1, further comprising: determining, by the first server device, whether the generated token is unique from in-use tokens; and generating, by the first server device, a subsequent token when the previously generated token is determined to not be unique from in-use tokens.
5. The method of claim 1, further comprising setting, by the first server device, a validity time period for the token.
6. The method of claim 5, wherein the validity time period is set based on a predetermined time period.
7. The method of claim 1, further comprising mapping, by the first server device, the token to the device ID.
8. A system for screen sharing, comprising: a user device; and a first server device configured to: receive, from the user device, device information corresponding to the user device; generate a device identifier (ID) based on the device information; receive, from the user device, a request for a token; generate a token based on the device ID; and send the token to the user device.
9. The system of claim 8, further comprising a second server device, wherein the user device is configured to send the generated token to a second server device.
10. The system of claim 9, wherein the second server device is configured to, in response to receiving the generated token from the user device, send, to the user device, a notification that the generated token has been confirmed; and wherein the user device is further configured to, in response to receiving the notification that the generated token has been confirmed, accept, by the user device, a screen sharing request for sharing a screen of the user device with the second server device.
11. The system of claim 8, wherein the first server device is further configured to: determine whether the generated token is unique from in-use tokens; and generate a subsequent token when the previously generated token is determined to not be unique from in-use tokens.
12. The system of claim 8, wherein the first server device is further configured to set a validity time period for the token.
13. The system of claim 12, wherein the validity time period is set based on a predetermined time period.
14. The system of claim 8, wherein the first server device is further configured to map the token to the device ID.
15. A non-transitory computer-readable storage medium storing instructions that, when executed by at least one processor, cause the at least one processor to: receive, by a first server device and from a user device, device information corresponding to the user device; generate, by the first server device, a device identifier (ID) based on the device information; receive, by the first server device and from the user device, a request for a token; generate, by the first server device, a token based on the device ID; and send, by the first server device, the token to the user device.
16. The storage medium of claim 15, wherein the instructions, when executed, further cause the at least one processor to send, by the user device, the generated token to a second server device.
17. The storage medium of claim 16, wherein the instructions, when executed, further cause the at least one processor to: in response to receiving the generated token from the user device, send, by the second server device and to the user device, a notification that the generated token has been confirmed; and in response to receiving the notification that the generated token has been confirmed, accept, by the user device, a screen sharing request for sharing a screen of the user device with the second server device.
18. The storage medium of claim 15, wherein the instructions, when executed, further cause the at least one processor to: determine, by the first server device, whether the generated token is unique from in-use tokens; and generate, by the first server device, a subsequent token when the previously generated token is determined to not be unique from in-use tokens.
19. The storage medium of claim 15, wherein the instructions, when executed, further cause the at least one processor to set, by the first server device, a validity time period for the token.
20. The storage medium of claim 19, wherein the validity time period is set based on a predetermined time period.
PCT/US2022/038636 2022-07-28 2022-07-28 Secure token for screen sharing Ceased WO2024025532A1 (en)

Priority Applications (2)

Application Number Priority Date Filing Date Title
US17/996,123 US12423392B2 (en) 2022-07-28 2022-07-28 Secure token for screen sharing
PCT/US2022/038636 WO2024025532A1 (en) 2022-07-28 2022-07-28 Secure token for screen sharing

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
PCT/US2022/038636 WO2024025532A1 (en) 2022-07-28 2022-07-28 Secure token for screen sharing

Publications (1)

Publication Number Publication Date
WO2024025532A1 true WO2024025532A1 (en) 2024-02-01

Family

ID=89707134

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/US2022/038636 Ceased WO2024025532A1 (en) 2022-07-28 2022-07-28 Secure token for screen sharing

Country Status (2)

Country Link
US (1) US12423392B2 (en)
WO (1) WO2024025532A1 (en)

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20170070499A1 (en) * 2011-08-09 2017-03-09 CloudPassage, Inc. Systems and methods for implementing security
US20210272373A1 (en) * 2018-06-19 2021-09-02 Interdigital Ce Patent Holdings Sharing virtual content in a mixed reality scene
US20220020032A1 (en) * 2020-07-16 2022-01-20 Inswave Systems Co., Ltd. Work support system and method with screen sharing and development system for multi-platform application
US20220200999A1 (en) * 2020-12-23 2022-06-23 Citrix Systems, Inc. Authentication Using Device and User Identity
US20220207516A1 (en) * 2019-12-30 2022-06-30 Line Corporation Program, information processing method, and terminal

Family Cites Families (94)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6493760B1 (en) * 1999-06-28 2002-12-10 Xerox Corporation Standalone device for identifying available document services in a token-enabled operating environment
US20060031779A1 (en) * 2004-04-15 2006-02-09 Citrix Systems, Inc. Selectively sharing screen data
US7707249B2 (en) * 2004-09-03 2010-04-27 Open Text Corporation Systems and methods for collaboration
JP4625346B2 (en) * 2005-02-25 2011-02-02 株式会社リコー Information processing system
US20080115073A1 (en) * 2005-05-26 2008-05-15 ERICKSON Shawn Method and Apparatus for Remote Display of Drawn Content
US8607317B2 (en) * 2009-10-28 2013-12-10 Blackberry Limited Automatic user authentication and identification for mobile instant messaging application
US9733886B2 (en) * 2009-11-24 2017-08-15 Clearslide, Inc. Method and system for browser-based screen sharing
US10860279B2 (en) * 2009-11-24 2020-12-08 Clearslide, Inc. Method and system for browser-based screen sharing
US20140044123A1 (en) * 2011-05-23 2014-02-13 Twilio, Inc. System and method for real time communicating with a client application
US9648006B2 (en) * 2011-05-23 2017-05-09 Twilio, Inc. System and method for communicating with a client application
JP5858796B2 (en) * 2012-01-16 2016-02-10 キヤノン株式会社 Authority delegation system, server system in the authority delegation system, and control method for controlling authority delegation system
US8763154B2 (en) * 2012-01-23 2014-06-24 Verizon Patent And Licensing Inc. Federated authentication
US20130332727A1 (en) * 2012-06-06 2013-12-12 Aventura Hq, Inc. Access token event virtualization
US8819427B2 (en) * 2012-06-15 2014-08-26 Iolo Technologies, Llc Device specific secure licensing
US20140053182A1 (en) * 2012-08-20 2014-02-20 Veiko Jääger Method and system for evaluating and sharing media
KR101422808B1 (en) * 2012-09-21 2014-08-14 주식회사 팬택 Equipment and method for providing a service for sharing a drawing screen between mobile devices and mobile device for the same
US9131067B2 (en) * 2012-11-05 2015-09-08 Genesys Telecommunications Laboratories, Inc. System and method for out-of-band communication with contact centers
US20140229289A1 (en) * 2013-02-13 2014-08-14 Yahoo! Inc. Enhanced shared screen experiences for concurrent users
US9191354B2 (en) * 2013-08-30 2015-11-17 Verizon Patent And Licensing Inc. Maintaining and updating notification registration information
US9378345B2 (en) * 2014-04-29 2016-06-28 Bank Of America Corporation Authentication using device ID
US20160099984A1 (en) * 2014-10-03 2016-04-07 Across Lab, Inc. Method and apparatus for remote, multi-media collaboration, including archive and search capability
US20180276618A1 (en) * 2015-02-11 2018-09-27 Amarlal Gopilal Nichani Mobile app connecting employee and employer through gps
US9866545B2 (en) * 2015-06-02 2018-01-09 ALTR Solutions, Inc. Credential-free user login to remotely executed applications
US10038695B2 (en) * 2015-06-02 2018-07-31 ALTR Solutions, Inc. Remotely deauthenticating a user from a web-based application using a centralized login server
CN104917766B (en) * 2015-06-10 2018-01-05 飞天诚信科技股份有限公司 A kind of two-dimension code safe authentication method
CN106487774B (en) * 2015-09-01 2019-06-25 阿里巴巴集团控股有限公司 A cloud host service authority control method, device and system
US10255819B2 (en) * 2015-11-17 2019-04-09 Airwatch Llc Systems for classroom media sharing
US10079883B2 (en) * 2015-12-03 2018-09-18 International Business Machines Corporation Primary device selection at operating system initialization
US10652365B2 (en) * 2016-01-06 2020-05-12 Adobe Inc. Robust computing device identification framework
US9985785B2 (en) * 2016-02-25 2018-05-29 International Business Machines Corporation Align session security for connected systems
JP6819063B2 (en) * 2016-03-30 2021-01-27 ブラザー工業株式会社 Mediation server
US9729746B1 (en) * 2016-06-14 2017-08-08 Ricoh Company, Ltd. Approach for registering printing devices with a cloud print service
JP6662215B2 (en) * 2016-06-23 2020-03-11 株式会社リコー Management system, communication system, management method, and program
US10846389B2 (en) * 2016-07-22 2020-11-24 Aetna Inc. Incorporating risk-based decision in standard authentication and authorization systems
US10841660B2 (en) * 2016-12-29 2020-11-17 Dressbot Inc. System and method for multi-user digital interactive experience
US10348784B2 (en) * 2017-02-15 2019-07-09 Microsoft Technology Licensing, Llc Conferencing server directly accessible from public internet
EP3975576A1 (en) * 2017-05-16 2022-03-30 Apple Inc. Credential delegation
US20190089760A1 (en) * 2017-09-20 2019-03-21 Junshan Zhang Systems and methods for real-time content creation and sharing in a decentralized network
US20190089693A1 (en) * 2017-09-21 2019-03-21 Jing Ding Systems and methods for authenticating internet-of-things devices
US12231892B2 (en) * 2017-09-27 2025-02-18 Ubiquiti Inc. Systems for automatic secured remote access to a local network
US10841156B2 (en) * 2017-12-11 2020-11-17 Ati Technologies Ulc Mobile application for monitoring and configuring second device
US11336644B2 (en) * 2017-12-22 2022-05-17 Vmware, Inc. Generating sensor-based identifier
US11063762B1 (en) * 2018-02-22 2021-07-13 Allscripts Software, Llc Computing system for inter-application communication
US11134071B2 (en) * 2018-04-23 2021-09-28 Oracle International Corporation Data exchange during multi factor authentication
US10757258B1 (en) * 2018-05-12 2020-08-25 Glance Networks, Inc. Visual engagement using automatically dynamically selected visualization mediums
CN110839005B (en) * 2018-08-17 2023-08-01 恩智浦美国有限公司 Secure registration of devices with cloud platform
JP7099244B2 (en) * 2018-10-18 2022-07-12 富士通株式会社 Display control device, display control method, display control program
US10474416B1 (en) * 2019-01-03 2019-11-12 Capital One Services, Llc System to facilitate interaction during a collaborative screen sharing session
US10721311B1 (en) * 2019-01-11 2020-07-21 Accenture Global Solutions Limited System and method for coupling two separate applications to an application session within a serverless infrastructure
US11102259B2 (en) * 2019-01-22 2021-08-24 Apple Inc. Network system for content playback on multiple devices
US11372955B2 (en) * 2019-05-23 2022-06-28 Microsoft Technology Licensing, Llc System and method for authorizing temporary data access to a virtual assistant
WO2021011880A1 (en) * 2019-07-17 2021-01-21 Ahold Delhaize Licensing Sàrl Integrated autonomous checkout system
US11902789B2 (en) * 2019-08-05 2024-02-13 Hewlett Packard Enterprise Development Lp Cloud controlled secure Bluetooth pairing for network device management
US20210127261A1 (en) * 2019-10-25 2021-04-29 Haier Us Appliance Solutions, Inc. Household appliance commissioning
US11016717B1 (en) * 2019-11-08 2021-05-25 Microsoft Technology Licensing, Llc Selective electronic content casting
CA3144107C (en) * 2020-03-13 2022-11-22 Citrix Systems, Inc. Meeting room reservation system and related techniques
US11190369B2 (en) * 2020-03-27 2021-11-30 Sharp Nec Display Solutions, Ltd. Method and system for joining an online meeting
US11258788B2 (en) * 2020-05-08 2022-02-22 Cyberark Software Ltd. Protections against security vulnerabilities associated with temporary access tokens
US11470085B2 (en) * 2020-06-16 2022-10-11 At&T Intellectual Property I, L.P. Service and security enhancement of communication services
US11477188B2 (en) * 2020-07-01 2022-10-18 Citrix Systems, Inc. Injection of tokens or client certificates for managed application communication
US11539710B2 (en) * 2020-07-13 2022-12-27 Disney Enterprises, Inc. System resiliency with temporary access
US11682072B2 (en) * 2020-07-16 2023-06-20 Inswave Systems Co., Ltd. Work support system and method with screen sharing and development system for multi-platform application
JP7543029B2 (en) * 2020-08-24 2024-09-02 キヤノン株式会社 Server system and method for controlling server system
US20220114249A1 (en) * 2020-10-09 2022-04-14 Huawei Technologies Co., Ltd. Systems and methods for secure and fast machine learning inference in a trusted execution environment
US20230281595A1 (en) * 2020-10-15 2023-09-07 Diebold Nixdorf, Incorporated Financial transaction system and method
KR102885359B1 (en) * 2020-10-27 2025-11-13 삼성에스디에스 주식회사 System and method for force running of remote support, and client for executing the same
US20220138283A1 (en) * 2020-10-30 2022-05-05 Comcast Cable Communications, Llc Secure Content Access
US11290687B1 (en) * 2020-11-04 2022-03-29 Zweb Holding Limited Systems and methods of multiple user video live streaming session control
US11893613B2 (en) * 2020-12-23 2024-02-06 Shopify Inc. Systems, manufacture, and methods for controlling access to resources
US11575525B2 (en) * 2020-12-30 2023-02-07 Zoom Video Communications, Inc. Methods and apparatus for providing meeting controls for network conferences
US11595451B2 (en) * 2020-12-30 2023-02-28 Zoom Video Communications, Inc. Methods and apparatus for receiving meeting controls for network conferences
US11736774B2 (en) * 2021-02-24 2023-08-22 T-Mobile Usa, Inc. Seamless content transition between proximate user devices
JP7552438B2 (en) * 2021-02-26 2024-09-18 ブラザー工業株式会社 Server and computer program for the server
US11601276B2 (en) * 2021-04-30 2023-03-07 Mobeus Industries, Inc. Integrating and detecting visual data security token in displayed data via graphics processing circuitry using a frame buffer
US12261837B2 (en) * 2021-06-09 2025-03-25 Capital One Services, Llc Tokenizing authentication information
JP7711443B2 (en) * 2021-06-14 2025-07-23 ブラザー工業株式会社 Function executing device, server, and communication system
US12361401B2 (en) * 2021-06-18 2025-07-15 Glory Ltd. System and method for authenticating a user of a banking device
US11223957B1 (en) * 2021-06-23 2022-01-11 Syniverse Technologies, Llc Method of privatizing mobile communications using dynamic IMSI and MSISDN
US12183099B2 (en) * 2021-10-25 2024-12-31 Paypal, Inc. Detection of duplicated data for non-fungible tokens
US11943370B2 (en) * 2021-11-10 2024-03-26 International Business Machines Corporation Using device-bound credentials for enhanced security of authentication in native applications
US11553011B1 (en) * 2021-11-15 2023-01-10 Lemon Inc. Methods and systems for facilitating a collaborative work environment
US12166804B2 (en) * 2021-11-15 2024-12-10 Lemon Inc. Methods and systems for facilitating a collaborative work environment
US12519790B2 (en) * 2021-11-29 2026-01-06 Verizon Patent And Licensing Inc. Computerized system and method for enhanced authorization of network data
US12185391B2 (en) * 2021-11-30 2024-12-31 Cisco Technology, Inc. Shared lock screen across paired devices
US12556396B2 (en) * 2021-12-16 2026-02-17 Nai, Inc. Opt-out systems and methods for tailored advertising
US11722536B2 (en) * 2021-12-27 2023-08-08 Atlassian Pty Ltd. Apparatuses, computer-implemented methods, and computer program products for managing a shared dynamic collaborative presentation progression interface in association with an audio-video conferencing interface service
US12021805B2 (en) * 2021-12-31 2024-06-25 Salesforce, Inc. Collaboration software development kit
US12003660B2 (en) * 2021-12-31 2024-06-04 Avila Technology, LLC Method and system to implement secure real time communications (SRTC) between WebRTC and the internet of things (IoT)
US11522934B1 (en) * 2022-01-25 2022-12-06 Hopin Ltd Media provider shim for virtual events
US11889000B2 (en) * 2022-02-07 2024-01-30 Citrix Systems, Inc. Shared device secure access
US12437089B2 (en) * 2022-04-22 2025-10-07 The Toronto-Dominion Bank On-demand real-time tokenization systems and methods
US12314410B2 (en) * 2022-06-03 2025-05-27 International Business Machines Corporation Data cluster management
US20230403266A1 (en) * 2022-06-14 2023-12-14 Citrix Systems, Inc. Virtual desktop screen sharing with multiple sharers in a collaboration session
US20240007463A1 (en) * 2022-06-30 2024-01-04 Vmware, Inc. Authenticating commands issued through a cloud platform to execute changes to inventory of virtual objects deployed in a software-defined data center

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20170070499A1 (en) * 2011-08-09 2017-03-09 CloudPassage, Inc. Systems and methods for implementing security
US20210272373A1 (en) * 2018-06-19 2021-09-02 Interdigital Ce Patent Holdings Sharing virtual content in a mixed reality scene
US20220207516A1 (en) * 2019-12-30 2022-06-30 Line Corporation Program, information processing method, and terminal
US20220020032A1 (en) * 2020-07-16 2022-01-20 Inswave Systems Co., Ltd. Work support system and method with screen sharing and development system for multi-platform application
US20220200999A1 (en) * 2020-12-23 2022-06-23 Citrix Systems, Inc. Authentication Using Device and User Identity

Also Published As

Publication number Publication date
US20250094547A1 (en) 2025-03-20
US12423392B2 (en) 2025-09-23

Similar Documents

Publication Publication Date Title
US12354087B2 (en) Dynamic payment authorization system and method
US10936330B2 (en) Instantaneous boot of virtual machine instances via remote direct memory access
US12326927B2 (en) System and method for automatic onboarding of network functions to a credential vault
US12423392B2 (en) Secure token for screen sharing
US20240365168A1 (en) Method and system for reading configuration data for rapp
US20220138220A1 (en) Dedicated replication channels for replicating records between regions
US11943115B2 (en) Locally debugging remote deployment of microservices
EP4689889A1 (en) Platform-agnostic compute instance launches
US10270662B2 (en) Local consumption of remote services
US12475211B2 (en) Basic authentication using identity and access manager with API key
US12579293B2 (en) Systems and methods for API gateway synchronization with cloud storage
US12250208B2 (en) Method of terminating network device session
US20240265122A1 (en) System and method for authorizing an access token using a distributed cache
US12531905B2 (en) Cloud-native function authentication at layer 2
US20250088420A1 (en) Method and system for retrieving configuration schema for rapp
US20240241991A1 (en) System and method for module management
US12500665B2 (en) System and method for traffic distribution with optical switch
US12538135B2 (en) System and method for managing quality information of multiple networks
US20250007916A1 (en) System and method for advertising supplicants in a network
US20240211325A1 (en) System and method for automatic transfer of global variables between application screens
WO2024155430A1 (en) Reading retrieving configuration data api for oam functions

Legal Events

Date Code Title Description
WWE Wipo information: entry into national phase

Ref document number: 17996123

Country of ref document: US

121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 22953316

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

WWP Wipo information: published in national office

Ref document number: 17996123

Country of ref document: US

122 Ep: pct application non-entry in european phase

Ref document number: 22953316

Country of ref document: EP

Kind code of ref document: A1

WWG Wipo information: grant in national office

Ref document number: 17996123

Country of ref document: US