Division Permission System for Application Security and Development Flexibility

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing electronic devices face constraints in granting permissions to applications due to security requirements, where the same signature may need to be used for various applications, limiting flexibility and efficiency in application development and collaboration.

Innovation Solution

The implementation of division permissions allows a second application to acquire a signature permission without requiring the same signing key as the first application, by using division permission information stored in a database and setting conditions based on verifiable application information.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If the same signature key is used for granting permissions of various applications due to security reasons, then security is improved, but flexibility and efficiency in application development and collaboration deteriorate

Engineering Contradiction:
ImprovesecurityVSAvoidflexibility in application development
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent segments the monolithic signature permission into division permissions that can be independently granted to different applications. Instead of requiring all applications to share the same signature key, the system divides the permission into separate units that can be selectively assigned, thereby maintaining security through controlled access while improving flexibility in application development and collaboration.

Inventive Principle:
Principle #1Segmentation

2Adaptability or versatility

If a second application uses a different signing key than the first application, then flexibility in application development is improved, but the ability to acquire signature permission deteriorates

Engineering Contradiction:
Improveflexibility in application developmentVSAvoidsignature permission acquisition
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent introduces division permission information as an intermediary mechanism that enables applications with different signing keys to acquire necessary permissions. Instead of requiring direct signature verification between applications with different keys, the system uses division permission information stored in a database as a mediator, allowing the second application to validly acquire permissions without needing the same signing key as the first application.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Reliability

If direct signatures from third-party companies are required for acquiring permissions, then security control is improved, but development time and collaboration efficiency deteriorate

Engineering Contradiction:
Improvesecurity controlVSAvoiddevelopment time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent implements preliminary action by pre-storing division permission information in a database before applications need to acquire permissions. Instead of requiring real-time signature verification and direct interaction with third-party companies during application installation or updates, the system has already prepared and stored the necessary permission information in advance, significantly reducing development time and improving collaboration efficiency while maintaining security control through the pre-established permission framework.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS12301707B2Electronic device using division permission and operation method thereof
Publication Date: 2025.05.13 SAMSUNG ELECTRONICS CO LTD
  • US12301707B2 patent drawing
  • US12301707B2 patent drawing
  • US12301707B2 patent drawing

AI summary

An electronic device using a division permission and an operating method thereof are disclosed herein. The electronic device includes a processor or a memory storing at least one instruction executable by the processor, and when the at least one instruction is executed by the processor, the processor receives a request for installing a first application on an electronic device, acquires a division permission information corresponding to a signature permission declared by the first application, applies the division permission information to a database, installs the first application. The division permission information may be used for the signature permission on a second application different from the first application.