| CPC G06F 21/62 (2013.01) [G06F 21/31 (2013.01); G06F 21/604 (2013.01); G06F 21/606 (2013.01); G06F 21/6209 (2013.01); G06F 21/6218 (2013.01); G06F 21/85 (2013.01); H04L 63/0807 (2013.01)] | 20 Claims |

|
1. A method for controlling access to protected content or data, the method comprising:
receiving, at a computer device from a remote user device, a request to access the protected content or data stored in a trusted operating system at the computer device, wherein the request comprises an indication of a first version of an electronic ticket granted to a user, and wherein the first version of the electronic ticket includes access control rules;
retrieving, at the computer device, a second version of the electronic ticket, wherein the second version of electronic ticket includes state information that is not in the first version of the electronic ticket, and wherein the second version is stored in a portion of memory that is not accessible by the user;
determining, at the computer device, and based at least in part on the access control rules and the state information, whether the request to access the protected content or data should be granted,
wherein—
when it is determined that the request should be granted, enabling access to the protected content or data, and
when it is determined that the request should not be granted, denying access to the protected content or data.
|