Application Synchronization via Remote Cache and Segmented Storage
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The management and upgrade of securely installed applications on mobile computing devices are challenging due to security risks and complexities arising from the large number of available applications, making it difficult to maintain devices in a proper working order without hampering usability and security.
Innovation Solution
The solution involves a system that maintains a list of authorized applications on both the device and a remote cache, allowing for synchronization and upgrade across multiple platforms, using partitioned storage and dynamic containers to isolate different versions of applications, and employing random identifiers to ensure secure installation and execution, along with digital signatures for authorization.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If code signing and explicit user approval are used for access control, then security is improved, but device complexity and management difficulty increase
Solution Approach 1:
The system enables automated background synchronization of application updates without requiring explicit user approval for each update. The device autonomously manages code signing verification and application updates, reducing management complexity while maintaining security through automated trust verification.
Solution Approach 2:
The system continuously monitors installed applications and automatically synchronizes updates from remote caches. This feedback mechanism ensures applications remain updated and secure without manual intervention, reducing the complexity of maintaining security across multiple applications.
2Adaptability or versatility
If multiple applications are installed to extend functionality, then adaptability is improved, but security risks increase
Solution Approach 1:
The system partitions application storage into separate partitions for different applications. This segmentation isolates potential malware in specific partitions from the rest of the device, allowing multiple applications to be installed for extended functionality while containing security risks to specific compartments.
Solution Approach 2:
The system introduces a trusted remote cache as an intermediary between application sources and the device. All applications must pass through this verified intermediary, which provides code signing verification and maintains a list of authorized applications, thereby reducing security risks while allowing diverse functionality.
3Reliability
If application upgrades are manually managed, then security control is improved, but productivity and ease of operation deteriorate
Solution Approach 1:
The system pre-loads updated applications into a trusted remote cache before they are needed. This preliminary action allows the device to automatically apply updates in the background without requiring user intervention, maintaining security control while significantly improving upgrade efficiency and productivity.
Solution Approach 2:
The system automatically synchronizes application updates from the remote cache without requiring manual user action. This self-service mechanism maintains security through automated verification while eliminating the time-consuming manual upgrade process, thereby improving productivity.
4Quantity of substance
If application versions are stored together, then storage efficiency is improved, but reliability and security deteriorate
Solution Approach 1:
The system divides storage into separate partitions for different application versions and types. This segmentation maintains storage efficiency by organizing versions logically while enhancing security by isolating different application versions from each other, preventing potential conflicts and malware propagation.
Data Source
AI summary
Embodiments of the present disclosure provide for upgrades and synchronization of applications installed on a device, such as a mobile device. In one embodiment, a device may include applications purchased and downloaded via a content management system. The device maintains a list or database of applications that are authorized for each device. This list is also replicated in a remote cache that is maintained by an archive host. The device may then synchronize and upgrade these applications across multiple platforms, such as one or more computers that can be coupled to the device or the archive host. The archive host allows for files of the application be provided back to the device. Upon installation, the device can then confirm the authorization and identity of the newly installed application.


