Custom Software Deployment for Diverse Devices

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing solutions fail to efficiently and automatically deploy security software across diverse user devices with varying configurations and access rights within an enterprise private network, especially considering personal devices without administration tools.

Innovation Solution

A system that uses a task manager and configurator module to customize software installation packages based on user and device attributes, creating tailored installation parameters and data transfer channels for each device, ensuring secure and efficient deployment of security applications across multiple devices.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If remote administration tools are used to manage work stations, then administrators can set up security tools after installation, but these tools cannot be installed on personal devices without administration agents

Engineering Contradiction:
Improvedevice compatibilityVSAvoidinstallation ease
Core Design Contradiction:
Adaptability or versatilityVSEase of operation

Solution Approach 1:

The system enables self-service installation by allowing users to automatically install security software on their own personal devices without requiring administrator tools or manual configuration. The web-based interface lets users autonomously complete the installation process on devices like smartphones and tablets that lack traditional administration agents.

Inventive Principle:
Principle #25Self-service

2Adaptability or versatility

If security software is deployed manually on each device, then configuration can be customized, but administrative effort and time consumption increase significantly

Engineering Contradiction:
Improveconfiguration flexibilityVSAvoiddeployment efficiency
Core Design Contradiction:
Adaptability or versatilityVSProductivity

Solution Approach 1:

The system performs preliminary configuration actions by pre-configuring security software settings before deployment to individual devices. The web interface automatically retrieves device attributes and user information to pre-configure appropriate security policies, eliminating the need for manual post-installation configuration and significantly reducing administrative effort.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system dynamically changes configuration parameters based on device attributes and user profiles. By automatically adjusting security software parameters according to the specific device type, user role, and organizational policies, the system achieves both configuration flexibility and deployment efficiency without requiring manual intervention for each device.

Inventive Principle:
Principle #35Parameter changes

3Productivity

If a single software installation package is used for all devices, then deployment is simplified, but it cannot account for diverse device configurations and user access rights

Engineering Contradiction:
Improvedeployment speedVSAvoidconfiguration adaptability
Core Design Contradiction:
ProductivityVSAdaptability or versatility

Solution Approach 1:

The system applies local quality by configuring security software differently for each device based on its specific attributes and the user's access rights. Instead of using a uniform configuration, the system tailors the software setup to match the local characteristics of each device type, user profile, and security policy requirements, achieving both deployment efficiency and configuration adaptability.

Inventive Principle:
Principle #3Local quality

Solution Approach 2:

The system introduces dynamics by making the installation package configurable in real-time based on device attributes and user information. The configuration parameters are dynamically adjusted during the deployment process according to the specific context of each device, allowing the system to maintain deployment speed while adapting to diverse requirements.

Inventive Principle:
Principle #15Dynamics

4Adaptability or versatility

If users are required to configure security applications manually, then customization is possible, but typical users lack expertise and company policies require higher security levels

Engineering Contradiction:
Improveconfiguration capabilityVSAvoidsecurity level
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The system introduces an intermediary layer between the user and the security software configuration. The web-based interface acts as a mediator that automatically handles the complex configuration process, translating user-friendly selections into appropriate security settings according to company policies. This eliminates the need for users to have technical expertise while ensuring that security requirements are met through policy-driven automatic configuration.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS9244671B2System and method for deploying preconfigured software
Publication Date: 2016.01.26 AO KASPERSKY LAB
  • US9244671B2 patent drawing
  • US9244671B2 patent drawing
  • US9244671B2 patent drawing

AI summary

Automated deployment of a software application to be installed via a software installation package onto different user devices for different users. An initial software installation package, is obtained, along with information representing (a) associations between the users and the user devices, (b) user attributes from which access privilege level information for individual users is determinable, and (c) device attributes for each of the plurality of user devices, including network connectivity information. The initial software installation package is custom-configured for individual user devices based on the information representing (a) and (b) to produce a different specially-configured software installation packages. Each one includes installation parameters that establish functionality for the software application based on the access privilege level of the corresponding user. Data transfer channels are custom-configured for individual user devices based on the information representing (a) and (c).