Electronic Device Application Sandbox Allocation
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current mobile terminals lack the ability to automatically allocate applications to sandboxes during installation, preventing application developers from ensuring an independent execution environment, which is crucial for security and functionality.
Innovation Solution
An electronic device with a processor and memory that provides distinct environments for application execution, determining whether an application should be executed in a sandbox based on metadata and security levels, and allocating it accordingly without user intervention.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Quantity of substance
If applications are executed in a shared sandbox environment, then resource utilization is improved, but security and data isolation are worsened
Solution Approach 1:
The patent segments the execution environment by creating separate sandboxes for different applications. Each sandbox is configured with specific permissions and data isolation mechanisms, allowing applications to execute independently without sharing data or resources unnecessarily. This segmentation resolves the contradiction by providing both resource efficiency through controlled sharing and security through enforced isolation.
2Measurement precision
If manual sandbox configuration is required, then control precision is improved, but ease of operation is worsened
Solution Approach 1:
The patent implements self-service by enabling applications to automatically determine their own sandbox allocation based on their metadata and security requirements. The system automatically configures sandboxes and assigns applications without requiring manual user intervention, thus maintaining precise control while significantly improving ease of operation during installation.
3Ease of operation
If sandbox allocation is automatic, then ease of operation is improved, but control precision is worsened
Solution Approach 1:
The patent employs feedback mechanisms where the system continuously monitors application metadata, security levels, and execution requirements to dynamically adjust sandbox allocations. This feedback loop ensures that automatic allocation maintains high precision by adapting to changing conditions, thereby resolving the contradiction between ease of operation and control precision.
4Productivity
If applications share data and code, then productivity is improved, but reliability is worsened
Solution Approach 1:
The patent applies local quality by allowing different levels of data sharing and isolation within the sandbox environment based on application-specific requirements. Each sandbox can be configured with tailored permission sets that enable necessary collaborations while maintaining security boundaries, thus achieving both productivity through controlled sharing and reliability through enforced isolation.
Data Source
AI summary
A electronic device and a control method of the electronic device are provided. A control method includes providing a first environment in which at least one application can operate and a second environment having an operation environment at least partially different from the first environment; determining whether a first application among the at least one application is to be executed in the second environment, when an execution command of the first application is acquired; and executing the first application in the second environment, when it is determined that the first application is to be executed in the second environment.


