Enterprise Zone Mobile App Authentication
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Enterprises face challenges in securely sharing authentication and authorization across multiple enterprise apps on mobile devices without complicating the user experience by requiring separate authentication for each app.
Innovation Solution
The implementation of an 'Enterprise Zone' on mobile devices, which provides a secure authentication and authorization mechanism, allowing users to authenticate once and share access with other users while preventing unauthorized access to enterprise apps and data.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If separate authentication is required for each enterprise app, then security is improved, but ease of operation deteriorates
Solution Approach 1:
The patent combines multiple authentication mechanisms into a single unified authentication system. When a user logs in to one enterprise app, the authentication credentials are shared across other enterprise apps through the device's operating system authentication framework, eliminating the need for separate authentication in each app while maintaining security.
Solution Approach 2:
The patent implements a universal authentication mechanism that works across multiple enterprise applications. The authentication system is designed to be app-agnostic, allowing a single set of credentials to provide access to multiple enterprise apps through the operating system's authentication framework, thereby improving ease of operation without compromising security.
2Ease of operation
If mobile devices are shared with multiple users, then ease of operation is improved, but security deteriorates
Solution Approach 1:
The patent applies local quality by differentiating authentication requirements based on the specific app being accessed. Enterprise apps are marked with a flag indicating they require authenticated access, while non-enterprise apps do not. This allows the system to enforce security selectively at the app level rather than globally, enabling device sharing while protecting enterprise data.
Solution Approach 2:
The patent introduces an intermediary authentication check between the user and enterprise apps. The operating system's authentication framework acts as a mediator, intercepting authentication requests and verifying user credentials before allowing access to enterprise apps. This intermediary layer enables device sharing while maintaining security through centralized authentication management.
Data Source
AI summary
An enterprise zone is disclosed. An attempt to use an application in a zone of applications may be received. The application may find that the zone of applications is locked. A passcode may be requested to unlock the zone of applications. A received passcode may be validated. An application bus may be updated. Use of the application may be allowed.


