Internet application management method and personal cloud system
By creating personal digital space for users on cloud infrastructure, the shortcomings of Internet application systems in the management and security of user personal data are solved, and the autonomous control and security management of user data are realized.
Patent Information
- Application Number
- PCT/CN2024/128528
- Authority / Receiving Office
- WO · WO
- Patent Type
- Applications
- Current Assignee / Owner
- Priority Date
- 2023-11-28
- Filing Date
- 2024-10-30
- Publication Date
- 2025-06-05
AI Technical Summary
Existing Internet application systems have flaws in the management and security of user personal data, resulting in the risk of loss and leakage of user data when the application shuts down operations or service interruption.
By creating personal digital space for users on cloud infrastructure, installing Internet application operating environment and personal databases, and storing user personal data here, ensuring that the data is independent of the operating status of third-party applications under user control.
It enables users to manage Internet applications and user personal data more effectively while enjoying the convenience of Internet applications, avoiding the risks of data loss and leakage, and enhancing data privacy protection.
Smart Images

Figure CN2024128528_05062025_PF_FP_ABST
Abstract
Description
Internet application management method and personal cloud system
[0001] CROSS-REFERENCE TO RELATED APPLICATIONS
[0002] This application claims priority to Chinese patent application No. 202311623444.6 filed on November 28, 2023, the entire contents of which are incorporated herein by reference. Technical Field
[0003] The present disclosure relates to the field of Internet application technology, and in particular to an Internet application management method and a personal cloud system. Background Art
[0004] The management and use of internet applications are becoming increasingly important in today's society. In related technologies, each internet application system has its own server cluster. Users only need to download the corresponding app or access the corresponding internet application services through a browser or other client. Since individual internet developers typically develop and centrally deploy their own application systems without user involvement, each internet application system is almost completely independent. While this facilitates the development and deployment of internet applications, it also leads to security and privacy issues. With the widespread use of internet applications, more and more user personal data is scattered across various application systems. Once an internet application shuts down, undergoes a version update, or experiences a service interruption, the security of the user's application and personal data will be seriously threatened, potentially making the application inaccessible and the user's personal data unrecoverable. For example, a user may publish many original articles on an application website. Under existing internet application logic, these articles are submitted to the application website and may be distributed to many people by the application website, but the user cannot effectively control and manage this process. If the application website shuts down for some reason, these articles may become unrecoverable, and other users will be unable to view the articles they posted.
[0005] Therefore, how to enjoy the convenience brought by Internet applications while more effectively managing Internet applications and user personal data has become a technical problem that needs to be solved by those skilled in the art.
[0006] Summary of the Invention
[0007] The present disclosure provides an Internet application management method and a personal cloud system, in which users deploy and manage Internet applications on the Internet, but only serve themselves. This enables users to more effectively manage Internet applications and their personal data while enjoying the convenience brought by Internet applications. Even if the remote server of the Internet application is disconnected or shut down, data loss will not occur, thereby reducing the risk of data leakage.
[0008] According to a first aspect of the present disclosure, a method for managing an Internet application is provided, which is applied to an Internet application management system. The method includes: creating a personal digital space for a user on a cloud infrastructure, and creating an Internet application running environment and a personal database in the personal digital space; and in response to a request for installing an Internet application initiated by the user through a client of the Internet application management system, installing the server side of the Internet application in the personal digital space corresponding to the user, so that during the process of the user accessing the Internet application, the business logic and data processing logic of the server side of the Internet application are run in the personal digital space, and the generated user personal data is stored in the personal database in the personal digital space.
[0009] According to a second aspect of the present disclosure, a method for managing an Internet application is provided, which is applied to an Internet application management system, and the method includes: creating a personal digital space for a user on a cloud infrastructure, and creating an Internet application operating environment and a personal database in the personal digital space; in response to a request for installing an Internet application initiated by a user through a client of the Internet application management system, completing the installation of the server side of the Internet application in the personal digital space, starting a running instance on the Internet application running environment, and providing an access portal corresponding to the running instance; and in the process of the user accessing the application through the access portal, providing the user's personal data to the server side of the application so that the server side of the Internet application performs data processing, and stores the generated user personal data in the personal database on the personal digital space.
[0010] According to a third aspect of the present disclosure, a data management method is provided, which is applied to an Internet application management system, and the method includes: creating a personal digital space for a user on a cloud infrastructure, and creating a personal database in the personal digital space; in response to a user request, the Internet application management system generates a personal database external access interface for the personal digital space, and the personal database external access interface is used for the Internet application to write the user's personal data after obtaining user authorization; during the process of the user registering or using the Internet application, the personal database external access interface is obtained and user authorization is obtained, so that the Internet application initiates a data write request to the user's personal digital space through the personal database external access interface; in response to a data write request initiated by a target Internet application by calling the personal database external access interface, the user's personal data generated in the target Internet application carried in the data write request is stored in the personal database on the personal digital space. The personal database is a non-relational database system, so that when multiple different target Internet applications store the user's personal data in the personal digital space, they create files and / or data table formats according to their respective needs and define the meanings of the fields in the data tables; and in response to a user-initiated request to access the user's personal data related to the target Internet application stored in the personal digital space, the files and data tables associated with the target Internet application in the personal database are parsed and the parsing results are displayed.
[0011] According to the four aspects of the present disclosure, an Internet application management system is provided, comprising a personal digital space management module, an application runtime environment management module, and a database management module. The personal digital space management module is used to create and manage a personal digital space for a user on a cloud infrastructure, and to support the user in managing his or her own personal digital space. The application runtime environment management module is used to create and manage an Internet application runtime environment in the user's personal digital space, and to install the server side of the Internet application specified by the user in the user's corresponding personal digital space, so that the running instance of the server side of the Internet application runs in the Internet application runtime environment of the personal digital space and only responds to the user's application access request. The database management module is used to create and manage a personal database in the user's personal digital space, and when an Internet application is installed or first run in the personal digital space, a corresponding application data storage space is created in the personal database for the corresponding Internet application, so that data generated during the operation of the Internet application, including application data and user personal data, is stored in the corresponding application data storage space.
[0012] According to a fifth aspect of the present disclosure, an electronic device is provided, comprising a processor and a memory, wherein the memory stores computer program instructions that can be executed by the processor, and when the processor executes the computer program instructions, the steps of the method described in any one of the first to third aspects above are implemented.
[0013] According to a sixth aspect of the present disclosure, a personal cloud system is provided, comprising the electronic device, the personal digital space, and the smart device corresponding to the Internet application as described in the fifth aspect.
[0014] According to the seventh aspect of the present disclosure, a computer-readable storage medium is provided, in which computer program instructions are stored. When the computer program instructions are executed by a processor, the processor is prompted to implement the steps of the method described in any one of the first to third aspects above.
[0015] According to an eighth aspect of the present disclosure, a computer program product is provided, comprising a computer program. When the computer program product is executed by a processor, the processor is prompted to implement the steps of the method described in any one of the first to third aspects above. BRIEF DESCRIPTION OF THE DRAWINGS
[0016] In order to more clearly illustrate the technical solutions in the embodiments of the present disclosure or related technologies, the following briefly introduces the drawings required for use in the embodiments. Obviously, the drawings described below are only some embodiments of the present disclosure. For ordinary technicians in this field, other drawings can be obtained based on these drawings without any creative work.
[0017] FIG1 is a schematic diagram of a first system architecture of an Internet application management system according to some embodiments of the present disclosure;
[0018] FIG2 is a schematic diagram of an Internet application architecture according to some embodiments of the present disclosure;
[0019] 3 is a schematic diagram of a second system architecture of an Internet application management system according to some embodiments of the present disclosure;
[0020] FIG4 is a schematic diagram of a third system architecture of an Internet application management system according to some embodiments of the present disclosure;
[0021] FIG5 is a flow chart of an Internet application management method according to some embodiments of the present disclosure;
[0022] FIG6 is a schematic diagram of a client interface of an Internet application management system according to some embodiments of the present disclosure;
[0023] FIG7 is a schematic diagram of a process flow of interaction between multiple terminals of the cloud APP in FIG6 ;
[0024] FIG8 is a flowchart of an Internet application management method according to other embodiments of the present disclosure;
[0025] FIG9 is a flowchart of an Internet application management method according to yet other embodiments of the present disclosure;
[0026] FIG10 is a detailed schematic diagram of the personal digital space management module and the application runtime environment management module in FIG2 .
[0027] FIG11 is a schematic diagram of the system architecture of a personal cloud system according to some embodiments of the present disclosure.
[0028] FIG12 is a schematic diagram of the system architecture of a personal cloud system supporting a personal virtual private network according to some embodiments of the present disclosure. DETAILED DESCRIPTION
[0029] The following will be combined with the accompanying drawings in the embodiments of the present disclosure to clearly and completely describe the technical solutions in the embodiments of the present disclosure. Obviously, the embodiments described are only part of the embodiments of the present disclosure, rather than all the embodiments. Based on the embodiments of the present disclosure, all other embodiments obtained by ordinary technicians in this field are within the scope of protection of the present disclosure.
[0030] To better understand the implementation schemes according to some embodiments of the present disclosure, the following briefly introduces the architecture of internet applications in related art. Here, internet applications refer to applications that run over the internet, including mobile internet applications, web applications, cloud applications, and so on. Generally speaking, an internet application consists of two parts: a client and a server. The client is primarily installed and runs on a user's mobile phone or other terminal device, while the server runs on a server deployed or rented by the application developer. The client is primarily responsible for interacting with the user, including displaying the front-end page, receiving user input, and displaying the results of user operations. The server performs the back-end data processing logic involved in this process. In related art, desktop applications are typically installed and used by users on their personal computers, while internet applications are deployed and centrally managed by the application developer on the internet. Users can only use the application by downloading and installing the mobile app or client. In this architecture, the personal data generated by users while using the application, such as information they post in the application and data they download, is stored on the server deployed or rented by the application developer. This means that if the server deployed or rented by the application developer is interrupted or its operation is terminated, the user's personal data will be at risk of being lost.
[0031] In some embodiments, to better manage various internet applications and, in turn, user personal data, an internet application management system is provided. This internet application management system allows users to create a personal digital space on a cloud infrastructure. In some embodiments, this personal digital space can be understood as a miniature virtual server dedicated to each user, also known as a personal cloud server. This personal digital space serves as the foundational platform for the personal cloud system, independently handling the user's data storage, data processing, and remote connection functions. Users have complete control over the data in the personal cloud server, and no one else can access or interfere with this data. Internet applications can be installed in this personal digital space, and the personal data generated by users while using these applications can all be stored in this personal digital space. This ensures that even if an internet application suspends operations or a server outage occurs, user personal data will not be lost, and the privacy of user personal data can be better protected.
[0032] In order to achieve the above objectives, the embodiments of the present disclosure may provide a variety of different implementation methods, which are summarized below.
[0033] Method 1: Standalone working mode. Personal data generated by users while using internet applications is stored uniformly in their personal digital space. The internet application's business logic and data processing logic can also run in this personal digital space. In this case, this personal digital space can be deployed on edge computing nodes within the cloud infrastructure, rapidly responding to user access requests through edge computing. This allows user personal data to be stored solely in the personal digital space. Application developers no longer need to store and manage personal data; they only need to provide business logic and data processing logic and manage the public business data within the internet application. Internet applications no longer need to maintain personal user data, thus reducing database management costs and allowing them to focus on developing and maintaining business capabilities.
[0034] In order to achieve the purpose of the above-mentioned method 1, as shown in Figure 1, the Internet application management system in the embodiment of the present disclosure can exist in the form of a "super application (App)", and other Internet applications (relative to the Internet applications corresponding to the Internet application management system in the embodiment of the present disclosure, they can be called third-party applications) can exist in the form of "cloud apps" installed based on the "super app". In other words, the developer of the third-party application can develop a cloud app based on the architecture of the Internet application management system according to some embodiments of the present disclosure and the provided interface. This cloud app can also include its own client and server to obtain the services provided by the "super app" according to some embodiments of the present disclosure. The server side of the cloud app installed by each user only serves the user himself.
[0035] In some embodiments, as shown in Figure 2, the aforementioned "super app" may include a client and a server. The client, as an application or user interface running on the user's device, can include a browser, an app on a mobile terminal, or a dedicated program. It is responsible for connecting to the server to perform operations such as user login and management of the user's personal digital space, including cloud app installation, startup, version upgrades, shutdown, status monitoring, and querying installed cloud apps. The "super app" client may also include a browser engine module, which serves as the cloud app's front-end runtime environment. The browser engine module encapsulates client capabilities and resources, including user information, secure connections to the server, and terminal hardware operating capabilities, for access by the cloud app front-end. Due to user privacy and data security requirements, sensitive resources and functions such as the camera, location information, address book, microphone, network connection, and sensors typically require user authorization before access. Since the cloud app's client and server are fully controlled by the super app and serve only the individual user, user authorization for the super app's use of sensitive terminal resources and functions can be extended to the cloud app. This eliminates the need for the cloud app to request user authorization again when accessing sensitive terminal device resources and functions.
[0036] The server side of the aforementioned "super app" may provide a personal digital space management module, an application runtime environment management module, a database management module, and a registration and authentication module. The application runtime environment management module provides an application runtime environment for cloud apps. For cloud apps running in the cloud app runtime environment, it can respond to access requests from cloud app clients and perform corresponding business functions. In some embodiments, when a user needs to install a cloud app, the server side can install the cloud app server side in the user's personal digital space through the personal digital space management module and launch a running instance of the cloud app server side in the application runtime environment through the application runtime environment management module. In some embodiments, the application runtime environment can encapsulate the server's resources and capabilities for cloud apps, including the cloud app front-end and / or back-end, to access. For example, this includes secure connections with clients, local server storage, computing power, and network capabilities. In some embodiments, through the database access interface provided by the application runtime environment, running instances of cloud apps can perform database operations, accessing data including application data and personal user data generated by the cloud app.
[0037] After registering and installing the "super app" in the disclosed embodiment, users can log in to the system and access the "App Store" function within the "super app" client interface to view a list of available cloud apps. They can then select and install the cloud apps they desire. Unlike "mini-programs" in related technologies, as shown in Figure 1, in the disclosed embodiment, after a user initiates an installation request for a cloud app through the super app, the cloud app's server-side program is installed into the user's personal digital space. In other words, from the user's perspective, the cloud app's server-side program can be installed into their own personal digital space. Thus, during the operation of the cloud app, its server-side program runs within the application runtime environment provided by the personal digital space, executing data processing logic within that space and serving only the user. Accordingly, the generated user personal data is directly stored in a database created within the user's personal digital space.
[0038] It should be noted that in the disclosed embodiments, since the personal digital space needs to accommodate the user personal data storage needs of many different internet applications, including a variety of file types and data tables, the personal database in the personal digital space is suitably implemented as a non-relational (NoSQL) database. This allows different internet applications to create files and data tables according to their own needs when storing user personal data in the personal database within the personal digital space, and to define the meaning of the data table fields independently, without having to strictly define the type and meaning of a specific data table. This approach also enables the database in the disclosed embodiments to parse user personal data, including various files and data tables, stored in the personal digital space by multiple different internet applications. Users can log in to the personal digital space and perform other management operations, such as viewing user personal data in multiple different internet applications. Using this non-relational database to store user personal data also enables user personal data to be shared across different applications. In some embodiments, only one copy of user attribute data can be stored, and multiple third-party applications can share this copy. User personal data generated in a particular internet application can also be made available to other internet applications as public data, such as invoice data.
[0039] In other words, under the above method, a personal digital space containing a personal database and a server-side running instance of an internet application can be created for the user on the cloud infrastructure. The personal digital space can respond to user requests and install one or more internet applications on the personal digital space. These internet applications only serve the user. The personal digital space can respond to user requests and start the server-side running instance of the installed internet application, that is, start the internet application service. The user can use the client to access the server-side running instance of the internet application in the personal digital space through the network (that is, access the internet application service). The server-side running instance of the internet application responds to the user's access request to provide the corresponding internet application service. The user's personal data generated by the user accessing the server-side running instance of the internet application (cloud APP) is stored in the personal database of the personal digital space. The user's personal data used by the server-side running instance of the internet application (cloud APP) can also be derived in whole or in part from the personal database of the personal digital space.
[0040] A personal digital space refers to a set of cloud storage, cloud computing, and other resources on a cloud infrastructure that serves a specific user. These resources support the operation of that user's personal database, server-side instances of cloud apps, and so on. Each personal digital space can consist of one or more virtual or physical servers. The resources within each user's personal digital space are isolated from one another.
[0041] The client refers to the application or user interface running on the user's device, such as a browser, an app on a mobile terminal, a dedicated program, etc., which is responsible for user data input, receiving information from the application, and local data storage.
[0042] Internet applications are software programs installed in a personal digital space that support web applications and / or mobile applications.
[0043] The server-side programs of Internet applications include but are not limited to front-end programs, back-end programs, and databases.
[0044] Method 2: In this method, the internet application management system according to some embodiments of the present disclosure can still provide APIs for development to third-party application developers, and third-party application developers can use these APIs to develop cloud apps. However, there is no need to run the data processing logic of the third-party application server on the personal digital space. Instead, after saving the user's personal data to the personal digital space, the internet application management system according to the embodiments of the present disclosure provides this personal data to the third-party application server, so that the third-party application server can still obtain the user's personal data and execute business logic and data processing logic on its own deployed server.
[0045] In one of the two methods (collaborative mode), third-party application developers develop cloud apps using the APIs provided by the Internet application management system to collaborate with the servers of other third-party applications. While accepting user service access requests and processing user personal data, the cloud app server also provides the servers of other third-party applications with an API for accessing personal data. This allows the servers of other third-party applications to access the user's personal data related to the cloud app from the personal digital space through this API, for example, to collect statistical data on the user's use of the cloud app.
[0046] In another approach to Method 2 (proxy mode), as shown in Figure 3, third-party application developers can also use the API provided by the Internet application management system to develop a cloud app server. This server can also be installed in the personal digital space and is primarily used to obtain and send user personal data, but does not require data processing. Therefore, the application server can be divided into two parts: one is the cloud app server running in the user's personal digital space, which can be called the data acquisition server, and the other is running on a server deployed by the application developer (which can be a standalone server or a rented cloud server, etc.), which can be called the data processing server. When a user installs a cloud app through the Internet application management system provided in the embodiments of the present disclosure, the client of the Internet application management system can provide access to the cloud app, including an icon, etc. In some embodiments, the cloud app server, also known as the data acquisition server, can be installed in the user's personal digital space. When a user initiates access to the cloud app through the client of the Internet application management system and generates relevant user personal data (e.g., including user-posted information), it can be first stored in the user's personal digital space. The data acquisition server corresponding to the cloud app running on the personal digital space can send this user's personal data to the corresponding data processing server, so that the user's personal data can be processed on the server deployed by the third-party application itself.
[0047] Method 3 (Enhanced Mode, enhancing the functionality of the current application): Methods 1 and 2 above may involve relatively large-scale modifications to the existing application architecture. To facilitate compatibility with the existing application architecture and achieve unified management of user personal data, a solution can also be adopted in which third-party applications send the generated user personal data to the personal digital space for storage. In other words, after the user applies for a personal digital space, the Internet application management system can generate a personal database external access API for the personal digital space, which third-party applications can use to write the user's personal data through after obtaining user authorization. During the process of user registration or use of the application, the third-party application collects the user's personal database external access API and obtains user authorization. In this way, as shown in Figure 4, if the third-party application generates user personal data during operation, it can use the personal digital space access API to call the data write interface and write the user's personal data to the personal digital space.
[0048] As can be seen, in this third approach, third-party applications can continue to provide services to users according to the traditional architecture. The difference is that, if the user configures the address attribute of the personal digital space, the user's personal data generated by the third-party application will be transferred to the personal digital space. In this way, the third-party application can also continue to collect and store the user's personal data. In some embodiments, the user can view the user's personal data generated by multiple different third-party applications through their personal digital space. Even if the third-party application shuts down, this user's personal data will not be affected.
[0049] Under this third approach, the personal database within the personal digital space can still be implemented as a non-relational database. When storing user personal data within the personal database within the personal digital space, different third-party applications can create files and / or data tables based on their needs and define the meaning of the fields themselves. In some embodiments, with user authorization, a third-party application can also access user personal data stored in multiple different third-party applications through the personal database external access API.
[0050] It should be noted here that there are concepts or related technologies similar to "cloud backup" or "cloud storage" in the relevant technology. The difference between these technologies and the solutions provided by the embodiments of the present disclosure is that in the "cloud backup" or "cloud storage" solutions, the user's personal data is mainly backed up in the form of files by a third-party application to a cloud storage space, and the data is stored according to the data format standard defined internally by the third-party application. This data can only be parsed by the third-party application itself, and the user can only view this user's personal data by using the third-party application. It is impossible to view this user's personal data directly in the cloud storage space (because the cloud storage space product cannot parse this data, the user can only see some binary data files). Therefore, this "cloud backup" or "cloud storage" solution is usually used in scenarios such as replacing hardware devices. In some embodiments, if the user needs to change to a new mobile phone, the personal data in the third-party application in the original mobile phone can be backed up in the cloud. After installing the third-party application on the new mobile phone, the cloud-backed data can be pulled over, so that the functions on the original mobile phone can be restored on the new mobile phone.
[0051] In the above-mentioned method three of the embodiment of the present disclosure, multiple different third-party applications can store the user personal data generated therein into the user's personal digital space, and the personal database in the personal digital space can be a non-relational database, so that each third-party application can define the data type, field meaning, etc. of the data table according to the characteristics of the non-relational database. In addition, the personal digital space can parse the data stored in the personal digital space by different third-party applications. Therefore, the user can directly view the user personal data in multiple different third-party applications through the personal digital space.
[0052] The following is an introduction to the technical solutions claimed in the embodiments of the present disclosure.
[0053] Example 1
[0054] This first embodiment corresponds to the aforementioned first embodiment and provides an Internet application management method, which is applied to the Internet application management system according to some embodiments of the present disclosure. Referring to FIG. 5 , the method includes steps S501 and S502 .
[0055] In step S501: a personal digital space is created for the user on the cloud infrastructure, and an Internet application operating environment and a personal database are created in the personal digital space.
[0056] When using the Internet application management system according to some embodiments of the present disclosure, users can register and open an account in the Internet application management system. After that, the Internet application management system can create a user account and its personal digital space for the user, including the personal database external access API of the personal digital space, etc. The user can access his or her personal digital space by logging into the account.
[0057] In some embodiments, the internet application management system can also create an internet application runtime environment and a personal database within the personal digital space. The personal database is used to store the personal data generated by the user when using third-party applications. In other words, the personal database in the personal digital space only stores the personal data generated by the user when using third-party applications and does not involve the data of other users. In some embodiments, by creating the internet application runtime environment within the personal digital space, the server-side business logic and data processing logic of the third-party application can be run in the personal digital space.
[0058] In step S502: in response to a request for installing an Internet application initiated by a user through a client of the Internet application management system, the server side of the Internet application is installed in the personal digital space corresponding to the user, so that during the process of the user accessing the Internet application, the business logic and data processing logic of the server side of the Internet application are run in the personal digital space, and the generated user personal data is stored in the personal database on the personal digital space.
[0059] As previously described, in Method 1, third-party application developers can develop cloud apps using the APIs provided by the internet application management system in the disclosed embodiments. Accordingly, users can view a list of available cloud apps through the internet application management system client and select the cloud apps they want to install. The "internet application" mentioned in step S502 above may refer to the cloud apps described herein, also known as third-party applications.
[0060] That is, in the embodiments of the present disclosure, third-party application developers can develop cloud apps based on the aforementioned internet application management system. A cloud app can include a client and a server, with the server including business logic and data processing logic. In some embodiments, for instant messaging applications, the data processing logic in the cloud app's server may include rules for determining which keywords in which groups correspond to which access permissions, reading permissions, comment permissions, and so on.
[0061] When a user chooses to install a cloud app through the client of the Internet application management system, the server of the Internet application management system can install the server of the cloud app in the user's personal digital space. Other cloud apps can also be processed similarly.
[0062] After completing the installation of the cloud app, the user can interact with the cloud app and use the functions or services provided by the cloud app. In some embodiments, for the cloud app installed through the Internet application management system in the embodiment of the present disclosure, an access entry for the cloud app can also be generated in the client interface of the Internet application management system. In some embodiments, the user can view the icon of the installed cloud app in the client interface of the application management system. This icon contains a link to the server side of the cloud app, which can serve as the access entry for the cloud app. In some embodiments, as shown in Figure 6, the client interface of the Internet application management system may include a login area and an area for displaying a list of installed cloud apps. In some embodiments, it may also include an operation area. In the installed cloud app display area, icons of each installed cloud app can be displayed, and users can click on these icons to initiate access to one of the cloud apps. In some embodiments, there may be other implementation methods for the access entry of the cloud app. The above-mentioned method of providing icons through the client interface of the Internet application management system is only one example and should not be regarded as limiting the scope of protection of the present disclosure.
[0063] When the server side of the cloud app is installed in the user's personal digital space, the server side of the Internet application management system can also record information such as the installation address of the running instance of the cloud app server side in the personal digital space. In this way, when the user accesses the cloud app, the cloud app access request from the client can be routed to the running instance of the cloud app server side according to the access address of the cloud app server side in the personal digital space, so that the cloud app server side can process the access request.
[0064] In some embodiments, the server side of the Internet application management system may also provide a user authentication service for verifying the user's identity, so that management and / or access operations for Internet applications can be performed after the user logs in. In addition, services for managing installed Internet applications may also be provided, including version upgrades, deactivation, status monitoring, querying, and uninstallation.
[0065] In some embodiments, the server side of the internet application management system may further provide an operation interface for operating the user's personal data stored in the personal database, so that the internet application can operate the user's personal data through the operation interface. The user's personal data stored in the personal database of the personal digital space includes data generated by and unique to the internet application. In this case, the operation interface may include a first operation interface for writing the data generated by and unique to the internet application into the personal database, so that the internet application can write the data generated by and unique to the internet application into the personal database of the personal digital space for storage through the first operation interface.
[0066] In some embodiments, the user's personal data stored in the personal database of the personal digital space may also include public data related to the user generated in other Internet applications and shared among multiple applications; in this case, the operation interface may include a second operation interface for reading public data, so that the Internet application can obtain the public data related to the user generated in other Internet applications through the second operation interface.
[0067] In some embodiments, the user's personal data stored in the personal database of the personal digital space may also include: data related to the user's personal attributes, for example, the user's gender, age, occupation, etc. In the embodiment of the present disclosure, such data related to the user's personal attributes can be data that is shared and used by multiple Internet applications installed in the personal digital space without the need for user authorization. In this case, the operation interface may include a third operation interface for reading data related to the user's personal attributes, so that the Internet application can read the data related to the user's personal attributes through the third operation interface. That is to say, since in the embodiment of the present disclosure, the cloud app runs based on the Internet application management system, and the user has authorized the Internet application management system, the cloud app does not need to obtain additional authorization when using these data related to the user's personal attributes.
[0068] In some embodiments, the personal database in the personal digital space can be a non-relational database system. This allows multiple different applications installed through the client of the Internet application management system to create files and data table formats according to their respective needs when storing files and user personal data in the personal digital space, and to define the meaning of the fields in the data tables. This allows users to access files and personal data directly through the personal digital space. In some embodiments, in response to a user-initiated request to access user personal data related to a target application stored in the personal digital space, the files and data tables associated with the target application in the personal database can be parsed, and the parsing results displayed.
[0069] That is, in the embodiments of the present disclosure, the server side of the Internet application management system can parse the user's personal data generated by a variety of different Internet applications, allowing users to access their personal data directly through their personal digital space, rather than having to access it through a third-party application. In some embodiments, a user purchases and downloads a song while using a music application. In traditional methods, the user can only open and play the song using the music application. However, in the embodiments of the present disclosure, the user can save the song purchased and downloaded through the music application to the personal digital space and play the song directly through the music player software in the client of the Internet application management system. Even if the aforementioned music application is subsequently shut down, the song that the user has purchased and downloaded can continue to be saved in the personal digital space and can still be played through the music player software provided by the Internet application management system.
[0070] In order to better understand the technical solution provided by the first embodiment of the present disclosure, the solutions according to some embodiments of the present disclosure are introduced below by taking a third-party application that mainly provides a photo-taking function as an example.
[0071] First, the developer of the third-party application can develop a photo cloud app, which includes two modules: a front-end (for example, files such as HTML (Hyper Text Markup Language) and JS (JavaScript)) and a back-end (for example, Python code). After the user initiates the installation of the cloud app through the client of the Internet application management system in the embodiment of the present disclosure, the front-end code is deployed in the web server of the application runtime environment, and the back-end code runs in the Python runtime environment. At the same time, an icon for the photo cloud app will appear in the client interface of the Internet application management system. The photo cloud app icon includes a link to the cloud app front-end (web server). The client of the Internet application management system may include a browser engine. When the user clicks on the cloud app icon, the browser engine is triggered to automatically load the cloud app front-end from the web server according to the link, and the user interaction process of the cloud app begins, so that the user can obtain the photo cloud app service.
[0072] After that, see the flowchart shown in Figure 7. The business process of the user using the Photo Cloud App is described as follows:
[0073] After the user opens the client of the Internet application management system and logs in, the user interface example may be as shown in FIG6 , in which the newly installed Photo Cloud App may be displayed, and the user selects the icon linking to open the Photo Cloud App;
[0074] The browser engine of the client of the Internet application management system initiates an HTTP (Hypertext Transfer Protocol) request to the photo cloud app link, obtains the front end of the photo cloud app from the web server of the Internet application management system server (such as Nginx server) and opens it, becoming the cloud app client;
[0075] When a user activates the photo function on the Photo Cloud app, the app then uses the "camera capture" function on the device to take a photo. Note: Mobile phones and other devices typically require apps to obtain user authorization before activating the "camera capture" function. In this case, the Photo Cloud app doesn't require user authorization because the Internet Application Management System, a super app that manages the user's personal data, typically already has user authorization and overrides the Photo Cloud app.
[0076] When a user activates the "Greeting Photo Creation" function on the Photo Cloud App, the Photo Cloud App initiates a request to the Cloud App backend for a photo creation template. The Photo Cloud App server then connects to the photo service provider's database to retrieve multiple photo creation templates and returns them to the Photo Cloud App client for the user to select.
[0077] The user selects and confirms the "Blessing Photo Production" template on the Photo Cloud App client and submits it to the Photo Cloud App server for photo synthesis;
[0078] The Photo Cloud App server completes the photo synthesis process in the user's personal digital space, displays the synthesized photos on the Photo Cloud App client, and connects to the personal database in the personal digital space to store the synthesized photos;
[0079] The user can open the Internet application management system client again at any time and enter the Photo Cloud App client to start the photo browsing function. The Photo Cloud App client sends a photo retrieval request to the Photo Cloud App server. The Photo Cloud App server retrieves the composite photo from the personal database in the user's personal digital space and returns it to the Photo Cloud App client;
[0080] Users can browse composite photos using the Photo Cloud App client, and can complete the browsing even if the remote server of the photo service provider is interrupted.
[0081] In summary, this first embodiment provides an internet application management system that creates a personal digital space for users on a cloud infrastructure, along with an internet application runtime environment and a personal database within the personal digital space. Third-party applications can be "resident" in the internet application management system in the form of cloud apps, and the third-party application's server can be installed in the user's personal digital space as a cloud app server. Thus, when a user accesses a third-party application, the third-party application's cloud app server can run within the personal digital space to execute business logic and data processing logic, and the generated user personal data can be stored in the personal database within the personal digital space. This allows users to store personal data generated by multiple third-party applications in their own personal digital space, rather than having it scattered across the servers deployed by each third-party application. This makes data management more convenient for users. Even if a third-party application's server is disconnected or shut down, the personal data can continue to be stored in the personal digital space, preventing data loss. In this way, since the server-side data processing logic of the third-party application also runs in the form of a cloud APP server in the user's personal digital space, and the third-party application no longer needs to manage the user's personal data, the computing cost and data storage cost are saved for the developer and maintainer of the third-party application, and for the user, the risk of data leakage is also reduced.
[0082] In this first embodiment, the database in the personal digital space can be a non-relational database, enabling the Internet application management system to parse user personal data generated by various third-party applications, including files and data tables. This allows users to access their personal data directly through the personal digital space without relying on third-party applications. This implementation also facilitates the sharing of user personal data between different third-party applications.
[0083] Example 2: Agent and collaborative working mode
[0084] This second embodiment corresponds to the aforementioned second embodiment and provides an Internet application management method, which is applied to an Internet application management system. Referring to FIG8 , the method includes:
[0085] Step S801: creating a personal digital space for the user on the cloud infrastructure, and creating an Internet application operating environment and a personal database in the personal digital space;
[0086] Step S802: In response to a request from a user to install an Internet application through a client of the Internet application management system, the server-side of the Internet application is installed in the personal digital space, a running instance is started in the Internet application running environment, and an access portal corresponding to the running instance is provided; and
[0087] Step S803: When the user accesses the Internet application through the access portal, the user's personal data is provided to the server side of the Internet application so that the server side of the Internet application processes the data and stores the generated user personal data in the personal database on the personal digital space.
[0088] The “Internet application” mentioned in the above steps S802 and S803 refers to the cloud app in this article, also known as a third-party application.
[0089] In some embodiments, while the cloud APP server accepts the user's business access request and processes the user's personal data, it also provides the server of other third-party applications with an API for accessing the user's personal data, so that the server of other third-party applications can query and obtain the user's personal data stored in the personal digital space through the API.
[0090] In some embodiments, the server side of the Internet application includes a data acquisition server side and a data processing server side, wherein the data acquisition server side is developed based on the application programming interface API provided by the Internet application management system, and the data processing server side runs on the remote server corresponding to the Internet application; when installing the cloud APP of the application, the data acquisition server side associated with the Internet application can be installed on the personal digital space corresponding to the user, so that the data acquisition server side of the Internet application can send the user's personal data stored in the personal digital space to the data processing server side of the Internet application for processing.
[0091] Through this second embodiment, the personal data generated by the user when using the third-party application can still be saved in the personal digital space. The third-party application's own server can also obtain this user's personal data, allowing the third-party application to use this user's personal data to provide users with more personalized services.
[0092] Example 3: Enhanced mode, enhancing the functions of existing applications
[0093] This third embodiment corresponds to the third embodiment described above and provides an Internet application management method. The method can be applied to an Internet application management system. Referring to FIG9 , the method may include:
[0094] Step S901: creating a personal digital space for the user on the cloud infrastructure, and creating a personal database in the personal digital space;
[0095] Step S902: In response to the user's request, the Internet application management system generates a personal database external access interface for the personal digital space. The personal database external access interface is used for Internet applications to write user personal data after obtaining user authorization.
[0096] Step S903: During user registration or use of an Internet application, the user's personal database external access interface is obtained and user authorization is obtained, so that the Internet application initiates a data write request to the user's personal digital space through the personal database external access interface;
[0097] Step S904: In response to a data write request initiated by the target Internet application by calling the personal database external access interface, the user personal data generated in the target Internet application and carried in the data write request is stored in the personal database in the personal digital space; wherein the personal database is a non-relational database system, so that multiple different target Internet applications can create files and / or data table formats according to their respective needs when storing the user personal data in the personal digital space, and define the meanings of the fields in the data table; and
[0098] Step S905: In response to a user's request to access the user's personal data related to the target Internet application stored in the personal digital space, the files and data tables associated with the target Internet application in the personal database are parsed, and the parsing results are displayed.
[0099] The “Internet application” described in the above steps S902 to S905 may refer to the cloud app in this article, also known as a third-party application.
[0100] Through this third embodiment, while realizing unified management of user personal data through the personal digital space, it is no longer necessary for third-party application developers to develop cloud apps. Instead, when generating user personal data, the third-party application only needs to send a copy to the personal digital space for storage. Therefore, it can be more conveniently compatible with the existing application architecture system.
[0101] Example 4
[0102] This fourth embodiment also provides an Internet application management system from a system perspective. Referring to FIG10 , the system may include a personal digital space management module, an application runtime environment management module, and a database management module.
[0103] Personal digital space management module: used to create and manage personal digital space for users on cloud infrastructure, and support users to manage their own personal digital space; application operating environment management module: used to create an Internet application operating environment in the user's personal digital space, and install the server side of the Internet application specified by the user in the user's corresponding personal digital space, so that the running instance of the server side of the Internet application can run in the Internet application operating environment of the personal digital space and only respond to the user's application access request; database management module: used to create and manage a personal database in the user's personal digital space, and when installing or running an Internet application for the first time in the personal digital space, create a corresponding application data storage space for the corresponding Internet application in the personal database, so that the data generated during the operation of the Internet application, including application data and user personal data, can be stored in the corresponding application data storage space.
[0104] In some embodiments, the personal digital space management module can also be used to: respond to user requests, manage the server-side running instances of Internet applications in the user's personal digital space through the application running environment management module, including installing, starting, upgrading, and stopping the server-side running instances of Internet applications; and respond to user requests, manage the personal database in the user's personal digital space through the database management module, which management includes: importing, exporting, and backing up the user's personal database, as well as adding, deleting, modifying, and querying personal data.
[0105] In some embodiments, the application runtime environment management module may include: a hosting sub-module, which is used to allocate corresponding server resources according to the application startup command of the personal digital space management module, and start the server-side running instance of the Internet application on the server resources; a routing sub-module: which is used to route the application access request from the client to the corresponding server-side running instance of the Internet application as a unified external access interface, so that the corresponding server-side running instance of the Internet application responds to the user's business request and completes the corresponding business logic processing; a personal database operation interface sub-module: which is used to enable the server-side of the Internet application to access the personal database on the personal digital space through the Internet application runtime environment, so as to operate the data in the personal database and store the newly generated user personal data in the personal database.
[0106] In some embodiments, the application running environment management module may further include: a monitoring submodule: configured to monitor the running status of the running instance of the server side of the Internet application to trigger a fault alarm or a response measure for fault recovery.
[0107] In some embodiments, the database management module can be used to: route data access requests from users for adding, deleting, modifying and querying user personal data to the corresponding personal database and its corresponding application data storage space to complete the corresponding database operations; and accept instructions from the personal digital space management module (such as preset instructions) to perform data management operations such as importing, exporting, backing up, adding, deleting, modifying and querying data on the user's personal database.
[0108] In some embodiments, the authorization that the Internet application management system requests from the user to access sensitive resources and functions on the terminal device covers all Internet applications installed on the Internet application management system. In other words, when the Internet application client accesses sensitive resources and functions on the terminal device, it does not need to request user authorization again.
[0109] For details not described in the aforementioned embodiments one to four, please refer to the records in other parts of this disclosure, which will not be repeated here.
[0110] Based on the same inventive concept, the present disclosure also provides an electronic device, including a processor and a memory, wherein the memory stores computer program instructions that can be executed by the processor, and when the processor executes the computer program instructions, the steps of the method described above are implemented.
[0111] Figure 11 is a schematic diagram of the system architecture of a personal cloud system according to some embodiments of the present disclosure. As shown in Figure 11, the present disclosure further provides a personal cloud system, including the electronic device 1101, the personal digital space 1102, and the smart device 1103 corresponding to the Internet application as described above.
[0112] It is understood that electronic devices can be terminal devices such as mobile phones and tablets that can install internet applications. Personal digital spaces are personal cloud servers. Smart devices corresponding to internet applications can be any independent smart devices managed and controlled by individuals, such as smart watches, smart door locks, and smart cameras. Traditional smart hardware devices such as mobile phones and tablets are not included. Electronic devices, personal digital spaces, and smart devices corresponding to internet applications can communicate with each other based on a personal virtual private network (VPN). The personal cloud system utilizes a distributed architecture, allowing each user to have an independent personal digital space, connecting smart devices and electronic devices via encrypted communication lines. This architecture ensures that all data processing and device management are carried out in a highly secure and private environment, giving users complete control over their data. This secure environment constitutes a user-exclusive "personal VPN," ensuring that each user has their own independent VPN.
[0113] The internet application for smart devices is a cloud app, also known as "device controller software," that runs in a personal digital space and provides users with cloud services for smart devices, such as storage, remote control, data forwarding, and remote management of data collected by smart devices. Terminal devices remotely control or manage smart devices through this personal device controller software.
[0114] Figure 12 is a schematic diagram of the system architecture of a personal cloud system supporting a personal virtual private network according to some embodiments of the present disclosure. As shown in Figure 12, the personal digital space (i.e., the personal cloud server) includes not only a personal database, an application runtime environment (including device controller software), and a personal digital space management module, but also a routing distribution module.
[0115] The main responsibility of the routing distribution module is to use its routing distribution function to build a personal virtual private network, ensure secure data interaction between personal devices (i.e., the aforementioned electronic devices), smart devices, and the personal digital space, and guarantee stable connections and accessibility between devices and between devices and the personal digital space. The functions of this module are as follows: 1. Connection management: Responsible for the secure connection lines between the personal digital space and the individual's various electronic devices and smart devices, ensuring the security of data transmission; 2. Routing distribution: Responsible for forwarding and distributing data between various electronic devices, smart devices, and modules within the personal digital space, ensuring that data can be smoothly transmitted from one device to another or multiple devices; 3. Storage and logging: Receives data and operation information from smart devices and personal devices, and stores it in a personal database for archiving and subsequent retrieval; 4. Operation execution: Receives operation instructions from the device controller software and executes corresponding connection establishment, data routing, storage, and logging functions.
[0116] Each user builds his or her own personal virtual private network (PVPN) through his or her own personal digital space, which is isolated from the personal virtual private networks of other users.
[0117] The implementation of the personal cloud system is as follows:
[0118] 1) Electronic devices create a personal digital space for users on the cloud infrastructure (i.e., personal cloud server).
[0119] 2) Smart device manufacturers provide supporting device controller software for their products (i.e. smart devices).
[0120] 3) Users run the device controller software in their personal digital space to manage the purchased smart devices.
[0121] 4) Electronic devices establish their own personal virtual private network for each user through personal digital space, connecting various electronic devices and smart devices to ensure the security of users' personal data and communications.
[0122] For example, consider a smart door lock, a smart device that supports an internet application. Instead of relying on a centralized cloud service, the internet application is hosted in the user's personal digital space. Users install the server side of the internet application in their personal digital space, enabling secure communication and operation through their personal virtual private network. This ensures that no data is stored or processed on a third-party cloud, eliminating the risk of backdoor access.
[0123] Taking a smart camera as an example, if a user uses both a smartphone and a tablet, and they are connected to the smart camera controller in their personal digital space, the video surveillance content captured by the smart camera is transmitted simultaneously to the user's smartphone and tablet through the routing distribution function of the routing distribution module, allowing both devices to display the surveillance footage in real time. Simultaneously, the surveillance content is stored in a personal database for future playback and retrieval.
[0124] The embodiment of the present application ensures the communication security during the operation and use of the user's personal data through the design of the above-mentioned personal cloud system, and solves the security issues of smart devices such as smart watches, smart cameras, and smart door locks.
[0125] Based on the same inventive concept, the present disclosure further provides a computer-readable storage medium, wherein the computer-readable storage medium stores computer program instructions. When the computer program instructions are executed by a processor, the processor is prompted to implement the steps of the aforementioned method.
[0126] Based on the same inventive concept, an embodiment of the present application provides a computer program product, including a computer program. When the computer program product is executed by a processor, it prompts the processor to implement the steps of the method described above.
[0127] One embodiment of the present disclosure provides an internet application management system that can create a personal digital space for a user on a cloud infrastructure, and within this personal digital space, an internet application runtime environment and a personal database can be created. Third-party applications can be "resident" in this internet application management system in the form of "cloud apps," and the server-side of the third-party application can be installed in the user's personal digital space, making the server-side of the third-party application an application instance that can run within the internet application runtime environment of the personal digital space and serve only the user. Thus, when a user accesses such a third-party application, the server-side of the third-party application can be run in the personal digital space to execute business logic and data processing logic, and the generated user personal data can be stored in the personal database within the personal digital space. In this way, the personal data generated by a user while using multiple different third-party applications can be stored in their own personal digital space, rather than being scattered across the servers deployed by different third-party applications. This makes data management more convenient for users. Even if the third-party application server is disconnected or shut down, the personal data can continue to be stored in the personal digital space, preventing data loss. In this way, since the data processing logic of the server side of the third-party application also runs in the user's personal digital space, and the third-party application no longer needs to manage the user's personal data, the computing and data storage costs are saved for the developers and maintainers of the third-party application, and for users, the risks of data leakage are also reduced.
[0128] In this first embodiment, the database in the personal digital space can be a non-relational database, enabling the Internet application management system to parse user personal data generated by various third-party applications. This allows users to view and manage their personal data directly through the personal digital space without relying on third-party applications. This approach also facilitates the sharing of user personal data between different applications.
[0129] It is not necessary for any product implementing the present disclosure to achieve all of the advantages described above at the same time.
[0130] It should be noted that the embodiments of the present disclosure may involve the use of user data. In actual applications, user-specific personal data can be used in the scheme described herein within the scope permitted by applicable laws and regulations of the country where the user is located (with the user's explicit consent, effective notification to the user, etc.).
[0131] The Internet application management method and personal cloud system provided by the present disclosure have been described in detail above. Some examples are used herein to illustrate the principles and implementation methods of the present disclosure. The description of the above embodiments is only intended to help understand the method and core concept of the present disclosure. At the same time, for those skilled in the art, based on the concept of the present disclosure, there may be changes in the specific implementation methods and application scope. In summary, the contents of this specification should not be understood as limiting the present disclosure.
Claims
1. A method for managing Internet applications, the method being applied to an Internet application management system, the method comprising: Creating a personal digital space for the user on the cloud infrastructure, and creating an Internet application operating environment and a personal database in the personal digital space; as well as In response to a request for installing an Internet application initiated by the user through the client of the Internet application management system, the server side of the Internet application is installed in the personal digital space corresponding to the user, so that when the user accesses the Internet application, the business logic and data processing logic of the server side of the Internet application are run in the personal digital space, and the generated user personal data is stored in the personal database in the personal digital space.
2. The method according to claim 1, further comprising: During the process of the user accessing the Internet application, the access request is routed to the server of the Internet application according to the access address of the server of the Internet application in the personal digital space, so that the server of the Internet application can process the access request.
3. The method according to claim 1, further comprising: A user authentication service is provided for verifying the identity of a user so as to perform management and / or access operations on the Internet application after the user logs in.
4. The method according to claim 1, further comprising: Provides services for managing installed Internet applications, including version upgrades, deactivation, status monitoring, querying, and uninstalling.
5. The method according to claim 1, further comprising: An operation interface for operating the user's personal data stored in the personal database is provided so that the Internet application can operate the user's personal data through the operation interface.
6. The method according to claim 5, wherein: The user personal data stored in the personal database includes data generated by the Internet application and unique to the Internet application; and The operation interface includes a first operation interface for writing data generated by the Internet application and unique to the Internet application into the personal database, so that the Internet application writes the data generated by the Internet application and unique to the Internet application into the personal database of the personal digital space for storage through the first operation interface.
7. The method according to claim 5, wherein: The user personal data stored in the personal database includes public data related to the user generated in other Internet applications and can be shared among multiple Internet applications; as well as The operation interface includes a second operation interface for reading the public data, so that the Internet application can obtain the public data related to the user generated in other Internet applications through the second operation interface.
8. The method according to claim 5, wherein: The user personal data stored in the personal database also includes data related to the user's personal attributes, and the data related to the user's personal attributes are data that are shared and used by multiple Internet applications installed in the personal digital space without user authorization; and The operation interface includes a third operation interface for reading the data related to the user's personal attributes, so that the Internet application reads the data related to the user's personal attributes through the third operation interface.
9. The method according to any one of claims 1 to 8, wherein: The personal database on the personal digital space is a non-relational database system, so that when multiple different Internet applications installed through the client of the Internet application management system store the user's personal data in the personal digital space, they create files and data table formats according to their respective needs and define the meanings of the fields in the data table; The method further comprises: In response to a user's request to access the user's personal data related to the target application stored in the personal digital space, the files and data tables associated with the target application in the personal database are parsed, and the parsing results are displayed.
10. The method according to any one of claims 1 to 8, further comprising: A routing distribution module for constructing a personal virtual private network is created in the personal digital space, and the personal virtual private network is used for data interaction with smart devices and the personal digital space.
11. A method for managing Internet applications, the method being applied to an Internet application management system, the method comprising: Creating a personal digital space for the user on the cloud infrastructure, and creating an Internet application operating environment and a personal database in the personal digital space; In response to a request for installing an Internet application initiated by a user through a client of the Internet application management system, the server of the Internet application is installed in the personal digital space, a running instance is started on the Internet application running environment, and an access portal corresponding to the running instance is provided; as well as When a user accesses the Internet application through the access portal, the user's personal data is provided to the server of the Internet application so that the server of the Internet application processes the data and stores the user's personal data in a personal database on the personal digital space.
12. The method according to claim 11, wherein: Providing the user personal data to the server side of the Internet application includes: An application programming interface API for accessing user personal data is provided to the server side of the Internet application, so that the server side of the Internet application can obtain the user personal data stored in the personal digital space through the application programming interface API for accessing user personal data.
13. The method according to claim 11, wherein: The server side of the Internet application includes a data acquisition server side and a data processing server side, wherein the data acquisition server side is developed according to the API provided by the Internet application management system, and the data processing server side runs on a server deployed or rented by the developer of the Internet application; Providing the user personal data to the server side of the Internet application includes: When installing the Internet application, the data acquisition server of the Internet application is installed in the personal digital space corresponding to the user, so that the data acquisition server of the Internet application sends the user's personal data stored in the personal digital space to the data processing server of the Internet application for processing.
14. The method according to any one of 11 to 13, further comprising: A routing distribution module for constructing a personal virtual private network is created in the personal digital space, and the personal virtual private network is used for data interaction with smart devices and the personal digital space.
15. A data management method, the method being applied to an Internet application management system, the method comprising: Creating a personal digital space for the user on a cloud infrastructure, and creating a personal database in the personal digital space; In response to a user request, the Internet application management system generates a personal database external access interface of the personal digital space, wherein the personal database external access interface is used for Internet applications to write user personal data after obtaining user authorization; During the process of the user registering or using the Internet application, the personal database external access interface is obtained and the user's authorization is obtained, so that the Internet application can access the user's personal database external access interface through the personal database external access interface. The human digital space initiates a data writing request; In response to a data write request initiated by a target Internet application by calling the personal database external access interface, the user personal data generated in the target Internet application carried in the data write request is stored in the personal database on the personal digital space; wherein the personal database is a non-relational database system, so that when multiple different target Internet applications store the user personal data in the personal digital space, they create files and / or create data table formats according to their respective needs, and define the meanings of the fields in the data table; as well as In response to a user's request to access the user's personal data related to the target Internet application stored in the personal digital space, the files and data tables associated with the target Internet application in the personal database are parsed, and the parsing results are displayed.
16. The method according to 15, further comprising: A routing distribution module for constructing a personal virtual private network is created in the personal digital space, and the personal virtual private network is used for data interaction with smart devices and the personal digital space.
17. An Internet application management system, comprising a personal digital space management module, an application operating environment management module, and a database management module; wherein: The personal digital space management module is used to create and manage a personal digital space for a user on a cloud infrastructure, and to support the user in managing his or her own personal digital space; The application running environment management module is used to create and manage the Internet application running environment in the personal digital space of the user, and install the server of the Internet application specified by the user in the personal digital space corresponding to the user, so that the running instance of the server of the Internet application runs in the Internet application running environment of the personal digital space and only responds to the application access request of the user; and The database management module is used to create and manage a personal database in the personal digital space of the user. When an Internet application is installed or first run in the personal digital space, a corresponding application data storage space is created in the personal database for the corresponding Internet application, so that data generated during the operation of the Internet application, including application data and user personal data, can be stored in the corresponding application data storage space.
18. The system of claim 17, wherein: The personal digital space management module is also used to: respond to user requests, manage the server-side running instances of Internet applications in the user's personal digital space through the application running environment management module; and respond to user requests, manage the personal database in the user's personal digital space through the database management module.
19. The system of claim 17, wherein: The application operating environment management module includes: A hosting submodule, for allocating corresponding server resources according to the application startup command of the personal digital space management module, and starting the server-side running instance of the Internet application on the server resources; Routing submodule: used to route the application access request from the client to the running instance of the corresponding Internet application server, so that the running instance of the corresponding Internet application server responds to the user's business request and completes the corresponding business logic processing; The personal database operation interface submodule is used to enable the server side of the Internet application to access the personal database on the personal digital space through the Internet application running environment to operate the data in the personal database and store the newly generated user personal data in the personal database.
20. The system of claim 19, wherein: The application running environment management module also includes: Monitoring submodule: used to monitor the running status of the running instance of the server side of the Internet application to trigger fault alarm or response measures during fault recovery.
21. The system of claim 17, wherein: The database management module is also used for: Routing a data access request from the user for adding, deleting, modifying and checking the user's personal data to the personal database and its corresponding application data storage space to complete the adding, deleting, modifying and checking operations on the user's personal data in the personal database; And upon receiving the preset instructions of the personal digital space management module, the personal database is subjected to data management operations such as data import, export, backup, or addition, deletion, modification and query.
22. The system of claim 17, wherein: The authorization for accessing sensitive resources and functions on the terminal device that the Internet application management system requests from the user covers all Internet applications installed on the Internet application management system.
23. An electronic device comprising a processor and a memory, wherein: The memory stores computer program instructions that can be executed by the processor, and when the processor executes the computer program instructions, the steps of the method according to any one of claims 1 to 16 are implemented.
24. A personal cloud system, comprising the electronic device according to claim 23, a personal digital space and a smart device corresponding to the Internet application.
25. The personal cloud system according to claim 24, wherein: The smart devices include smart door locks, smart cameras, smart watches, or other smart devices other than mobile phones and tablet computers that are managed and controlled by individuals.
26. The personal cloud system according to claim 24, wherein: The electronic device, the personal digital space and the smart device perform data exchange based on the personal virtual private network established by the electronic device.
27. A computer-readable storage medium, wherein computer program instructions are stored in the computer-readable storage medium, and when the computer program instructions are executed by a processor, the processor is prompted to implement the steps of the method according to any one of claims 1 to 16.
28. A computer program product comprising a computer program, wherein: When the computer program product is executed by a processor, the processor is prompted to implement the steps of the method according to any one of claims 1 to 16.
Citation Information
Patent Citations
Cloud storage data center and cloud storage data providing method
CN103685341A
Personal cloud data storage center and cloud data storage method
CN103685342A
Method and system for accessing multiple subsystems and public subsystem with distributed storage personalized data through single APP program
CN103929473A
Internet application management method and system
CN117614943A
System and method for implementing dynamic access control rules to personal cloud information
US20120136936A1