False Desktop System for Secure External Access
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
There is a need for a system that allows secure access to a computing device while protecting private information, especially when users are required to grant access to external individuals, such as during travel, without exposing sensitive data.
Innovation Solution
A false desktop system within the computing device that can be activated through secure login measures, providing a secure and controlled environment by mimicking the user operating system, disabling access to sensitive areas, and optionally deleting or hiding private information, while allowing restricted access to external users.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If the user grants full access to the computing device to an external individual, then the external individual can verify the device's functionality and examine contents, but private information stored on the device is exposed
Solution Approach 1:
The patent divides the computing device into multiple virtual desktops or workspaces, where a first desktop contains private information and a second desktop contains public information. The system segments access control by allowing the external individual to access only the second desktop while the first desktop remains protected, thus resolving the contradiction between providing access and protecting private information.
Solution Approach 2:
The patent introduces a desktop management system as an intermediary that controls and mediates access between the external individual and the computing device. This intermediary system enforces access policies, directing the external individual to the public desktop while preventing access to the private desktop, thereby enabling safe access without exposing sensitive data.
2Object-affected harmful factors
If the user erases the contents of the computing device to avoid exposing private information, then security is maintained, but the device loses its functionality and contents
Solution Approach 1:
Instead of erasing all contents, the patent segments the device into multiple desktops with different access levels. The private desktop retains its contents and functionality while being inaccessible to external individuals, and the public desktop provides verified functionality demonstration. This segmentation allows the device to maintain full functionality while protecting private information.
Solution Approach 2:
The patent creates a separate public desktop that copies or mirrors the essential functionality and appearance of the private desktop without containing the actual private data. This allows external individuals to verify device functionality through the public desktop while the private desktop remains intact and protected, eliminating the need to erase contents.
3Object-affected harmful factors
If the user implements strict access control measures to protect private information, then security is improved, but the ease of operation and user convenience deteriorates
Solution Approach 1:
The patent implements dynamic access control where the desktop management system can switch between different access modes based on the user's needs. When an external individual needs access, the system dynamically presents the public desktop; when the user needs full access, the system returns to the private desktop. This dynamic behavior maintains security while preserving user convenience.
Solution Approach 2:
The desktop management system provides multiple functions within a single interface, enabling both secure private access and controlled public access without requiring separate systems or complex procedures. The system universally handles different access scenarios, making security measures transparent and convenient for users.
Data Source
AI summary
A computing system for securely managing access to resources of a computing device receives an input at a secure login of a user interface. The computing system compares the input to a plurality of stored security measures and activates one of an operating system or a configuration of a false desktop system. A user interface of the false desktop system shares characteristics with a user interface of an operating system and restricts access to specified files, data stores, applications, networking functions, and/or ports associated with the computing system. When configured, the false desktop system or the operating system is enabled based on the location of the computing system. When configured, the false desktop system deletes files, data stores, and applications of the operating system.


