Secure Software Update Path via EMM Intermediary

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Electronic devices face security risks when downloading software updates over unsecure network connections, as malicious nodes can intercept and alter updates, compromising device security.

Innovation Solution

An electronic device determines the security of a network connection by verifying certificates and meeting specific security requirements before downloading software updates, ensuring a secure path for updates through an Enterprise Mobility Management (EMM) server and software update server communication system.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If the electronic device connects to a public or untrusted network to download software updates, then the download speed and accessibility are improved, but the security risk increases due to potential man-in-the-middle attacks and malicious content

Engineering Contradiction:
Improvedownload speedVSAvoidsecurity
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The patent introduces an EMM server as an intermediary between the electronic device and the update server. This mediator verifies the security of network connections by checking certificates and security policies, allowing the device to download updates from public networks only when security requirements are met, thus resolving the contradiction between download accessibility and security

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system performs preliminary security verification of network connections before allowing software update downloads. The EMM server checks certificates and security policies in advance, and only permits downloads through verified secure connections, preventing malicious content from being downloaded while maintaining productivity

Inventive Principle:
Principle #10Preliminary action

2Reliability

If the electronic device verifies network connection security through certificate verification and security policy checks, then the security is improved, but the complexity of the download process increases

Engineering Contradiction:
ImprovesecurityVSAvoidprocess complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The electronic device automatically performs security verification of network connections without requiring user intervention. The system autonomously checks certificates, validates security policies, and determines whether to proceed with downloads, reducing perceived complexity while maintaining high security standards

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The EMM server acts as a centralized intermediary that handles complex security verification tasks. By offloading certificate validation and security policy enforcement to the EMM server, the local device complexity is reduced while maintaining comprehensive security checks

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS10728237B2Providing a secure communication path for receiving a software update
Publication Date: 2020.07.28 MALIKIE INNOVATIONS LTD
  • US10728237B2 patent drawing
  • US10728237B2 patent drawing
  • US10728237B2 patent drawing

AI summary

Systems, methods, devices, and software can be used to send or receive a software update. In some aspects, a software update notification is received at an electronic device. The software update notification indicates a security requirement. A network connection determined to be secure for receiving a software update based on the security requirement. The software update is downloaded using the network connection.