| CPC H04L 63/02 (2013.01) [H04L 63/10 (2013.01)] | 20 Claims |

|
1. A method comprising:
receiving, by a gateway service, a request for a connection between a remote support service agent and an on-premises device experiencing a disruption caused by software or hardware;
receiving, by the gateway service, consent from an authorized user associated with the on-premises device;
granting, by the gateway service and based on the consent, the remote support service agent access to the on-premises device during a device session that lasts a predetermined time period, wherein the access is limited to a set of commands for executing a diagnostic or repair operation associated with the disruption caused by the software or the hardware;
creating, by the gateway service, the device session with the on-premises device;
provisioning, by the gateway service, a device-specific hybrid connection endpoint for the device session; and
forming, by the gateway service, a secure session by binding the device-specific hybrid connection endpoint with a user session, wherein the binding establishes a one-to-one mapping between the device session and the user session ensuring that the user session is based on the set of commands for executing the diagnostic or repair operation associated with the disruption caused by the software or the hardware.
|