Enterprise App Management via Side-Loading Key

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current solutions for managing devices in enterprise environments are either too heavy-handed, compromising user privacy, or too light on security, failing to balance IT control with user autonomy and device performance.

Innovation Solution

A method for managing devices that integrates a light management component within the operating system to deliver enterprise applications and settings while maintaining user control, using a side-loading key to install verified enterprise apps outside the closed market, ensuring security and privacy through a central authority validation process.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If enterprise management takes complete control over users' devices, then security and IT control are improved, but user privacy and device autonomy deteriorate

Engineering Contradiction:
ImprovesecurityVSAvoiduser privacy
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent segments device management into distinct zones: enterprise-managed apps/data versus user-controlled personal apps/data. The enterprise management system can enforce security policies on enterprise apps while leaving personal apps untouched, thus segmenting control to preserve user privacy and autonomy.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

Different parts of the device have different management qualities. Enterprise apps receive full management control for security, while personal apps maintain user control. This local differentiation allows selective management that balances security needs with user privacy rights.

Inventive Principle:
Principle #3Local quality

2Ease of operation

If enterprise management allows near unfettered access by users, then user autonomy and personal freedom are improved, but security and IT control deteriorate

Engineering Contradiction:
Improveuser autonomyVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The system segments app management so that enterprise apps are subject to security policies while personal apps remain user-controlled. This segmentation enables users to maintain autonomy over personal devices while ensuring security for enterprise applications.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces an intermediary layer between the enterprise management system and user devices - a managed app environment that acts as a boundary. This intermediary allows security control over enterprise apps without compromising user access to personal apps, mediating between security requirements and user autonomy.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Reliability

If the device is configured for closed market environment, then device security and stability are improved, but app versatility and adaptability deteriorate

Engineering Contradiction:
Improvedevice stabilityVSAvoidapp installation flexibility
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent makes the app installation system dynamic by allowing the closed market environment to be temporarily modified for enterprise app installation. The system can switch between strict closed market mode and enterprise app mode, providing adaptability while maintaining stability through controlled transitions.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The system performs preliminary verification of enterprise apps by a central authority before installation. This preliminary action ensures that only verified, secure apps are installed, maintaining device stability while enabling extended app versatility through pre-vetted enterprise applications.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS9361083B2Enterprise management for devices
Publication Date: 2016.06.07 MICROSOFT TECHNOLOGY LICENSING LLC
  • US9361083B2 patent drawing
  • US9361083B2 patent drawing
  • US9361083B2 patent drawing

AI summary

Installing apps on a device. The device is generally configured to be used in a closed market environment that only allows generally available apps of the closed market to be installed. The method includes determining that the device has been authorized to install apps outside of a set of apps generally available from the closed market and from a set of apps available only to users of a particular enterprise. The method further includes determining that an app, that is not generally available from the closed market, has been verified by a central authority. The method further includes installing the app on the device in spite of the fact that the device is generally configured to be used in a closed market environment.