Application Security via Device Fingerprint Binding
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Container technology poses challenges in protecting applications from unauthorized copying and theft, as they can be easily replicated within containers, compromising software security and developer rights.
Innovation Solution
A method involving a terminal device that acquires an authorization code and device fingerprint, compares these with license information to verify authenticity, allowing or prohibiting application execution based on a successful match, utilizing an offline authorization server and credit platform to manage and distribute authorization codes.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If container technology is used to run applications, then application deployment flexibility and ease of operation are improved, but application security and protection from unauthorized copying deteriorate
Solution Approach 1:
The patent applies preliminary action by binding the application to a specific terminal device's fingerprint information before the application is copied or stolen. The authorization code is generated in advance with the terminal device fingerprint embedded, so that when the application is launched, the system can automatically verify whether the current running device matches the bound fingerprint. This preventive binding mechanism ensures security is established before any potential unauthorized copying can occur, resolving the contradiction between deployment flexibility and security protection.
2Reliability
If traditional licensing methods are used, then application security is improved, but ease of operation and deployment flexibility deteriorate
Solution Approach 1:
The patent applies copying by using the terminal device fingerprint as an unchangeable copy that is bound to the application. Instead of traditional licensing that requires complex verification systems, the system creates a cryptographic binding between the application and the device fingerprint. This fingerprint copy is embedded in the authorization code, allowing the application to be securely deployed across different environments while maintaining security through the immutable nature of the fingerprint binding, thus resolving the contradiction between security and deployment flexibility.
3Reliability
If authorization verification is performed, then application security is improved, but processing time and system complexity increase
Solution Approach 1:
The patent applies preliminary action by pre-generating the authorization code with the terminal device fingerprint bound to it during the application installation or activation phase. This eliminates the need for real-time complex verification when the application is launched. The fingerprint binding is established in advance, and the authorization code serves as a pre-validated credential, significantly reducing verification processing time while maintaining strong security, thus resolving the contradiction between security and processing time.
Data Source
AI summary
A method and a system of running an application, an electronic device and a storage medium are provided. The method includes: acquiring an authorization code, where the authorization code is used to authorize the terminal device to run the application; acquiring a license information; extracting a device fingerprint and an authorization code associated with the device fingerprint from the license information; generating a verification result by comparing the authorization code extracted from the license information with the acquired authorization code and comparing the device fingerprint extracted from the license information with a device fingerprint of the terminal device; and allowing the terminal device to run the application or prohibiting the terminal device from running the application, according to the verification result.


