Application Synchronization via Remote Cache and Segmented Storage

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The management and upgrade of securely installed applications on mobile computing devices are challenging due to security risks and complexities arising from the large number of available applications, making it difficult to maintain devices in a proper working order without hampering usability and security.

Innovation Solution

The solution involves a system that maintains a list of authorized applications on both the device and a remote cache, allowing for synchronization and upgrade across multiple platforms, using partitioned storage and dynamic containers to isolate different versions of applications, and employing random identifiers to ensure secure installation and execution, along with digital signatures for authorization.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If code signing and explicit user approval are used for access control, then security is improved, but device complexity and management difficulty increase

Engineering Contradiction:
ImprovesecurityVSAvoidmanagement complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system enables automated background synchronization of application updates without requiring explicit user approval for each update. The device autonomously manages code signing verification and application updates, reducing management complexity while maintaining security through automated trust verification.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The system continuously monitors installed applications and automatically synchronizes updates from remote caches. This feedback mechanism ensures applications remain updated and secure without manual intervention, reducing the complexity of maintaining security across multiple applications.

Inventive Principle:
Principle #23Feedback

2Adaptability or versatility

If multiple applications are installed to extend functionality, then adaptability is improved, but security risks increase

Engineering Contradiction:
ImprovefunctionalityVSAvoidsecurity risks
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The system partitions application storage into separate partitions for different applications. This segmentation isolates potential malware in specific partitions from the rest of the device, allowing multiple applications to be installed for extended functionality while containing security risks to specific compartments.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The system introduces a trusted remote cache as an intermediary between application sources and the device. All applications must pass through this verified intermediary, which provides code signing verification and maintains a list of authorized applications, thereby reducing security risks while allowing diverse functionality.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Reliability

If application upgrades are manually managed, then security control is improved, but productivity and ease of operation deteriorate

Engineering Contradiction:
Improvesecurity controlVSAvoidupgrade efficiency
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The system pre-loads updated applications into a trusted remote cache before they are needed. This preliminary action allows the device to automatically apply updates in the background without requiring user intervention, maintaining security control while significantly improving upgrade efficiency and productivity.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system automatically synchronizes application updates from the remote cache without requiring manual user action. This self-service mechanism maintains security through automated verification while eliminating the time-consuming manual upgrade process, thereby improving productivity.

Inventive Principle:
Principle #25Self-service

4Quantity of substance

If application versions are stored together, then storage efficiency is improved, but reliability and security deteriorate

Engineering Contradiction:
Improvestorage efficiencyVSAvoidsecurity
Core Design Contradiction:
Quantity of substanceVSReliability

Solution Approach 1:

The system divides storage into separate partitions for different application versions and types. This segmentation maintains storage efficiency by organizing versions logically while enhancing security by isolating different application versions from each other, preventing potential conflicts and malware propagation.

Inventive Principle:
Principle #1Segmentation

Data Source

PatentUS10521214B2Methods and systems for upgrade and synchronization of securely installed applications on a computing device
Publication Date: 2019.12.31 APPLE INC
  • US10521214B2 patent drawing
  • US10521214B2 patent drawing
  • US10521214B2 patent drawing

AI summary

Embodiments of the present disclosure provide for upgrades and synchronization of applications installed on a device, such as a mobile device. In one embodiment, a device may include applications purchased and downloaded via a content management system. The device maintains a list or database of applications that are authorized for each device. This list is also replicated in a remote cache that is maintained by an archive host. The device may then synchronize and upgrade these applications across multiple platforms, such as one or more computers that can be coupled to the device or the archive host. The archive host allows for files of the application be provided back to the device. Upon installation, the device can then confirm the authorization and identity of the newly installed application.