Host OS Proxy Configuration for Containerized Enterprise Apps

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing mobile device management systems face inefficiencies in managing network traffic and resource utilization when configuring containerized applications, leading to increased network load and reduced system efficiency.

Innovation Solution

A host operating system acts as a proxy to manage containerized applications, retrieving and applying configuration settings on behalf of a mobile device manager, reducing the need for direct communication between the mobile device manager and each application, thereby minimizing network traffic and resource usage.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If multiple separate systems are used to manage configuration settings for host OS and containerized applications, then each system can be optimized independently, but the overall device complexity increases and management becomes less efficient

Engineering Contradiction:
Improveconfiguration management reliabilityVSAvoidsystem architecture complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent merges the configuration management functions for host OS and containerized applications into a single unified system. The mobile device manager consolidates previously separate management mechanisms, allowing centralized configuration distribution and consistent policy enforcement across both host and container environments, thereby reducing overall system complexity while improving management reliability

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The unified configuration management system performs multiple functions: it manages both host OS configurations and containerized application configurations, handles policy enforcement, and provides centralized control. This multi-functional approach eliminates the need for separate specialized systems, reducing complexity while maintaining comprehensive configuration management capability

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Adaptability or versatility

If configuration settings are manually distributed to each application, then customization flexibility is maintained, but the time and effort required for distribution increases

Engineering Contradiction:
Improveconfiguration customization flexibilityVSAvoidconfiguration distribution time
Core Design Contradiction:
Adaptability or versatilityVSLoss of time

Solution Approach 1:

The system performs preliminary action by pre-configuring container images with placeholder configuration files during the container build process. These placeholder files are prepared in advance with the correct structure and paths, so that when configuration settings are distributed later, they can be automatically applied without manual intervention, significantly reducing distribution time while maintaining customization flexibility

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The containerized applications perform self-service by automatically retrieving and applying configuration settings from the unified configuration store. The host operating system facilitates this by enabling applications to access their own configuration files automatically, eliminating the need for manual configuration distribution and reducing the time required while preserving adaptability

Inventive Principle:
Principle #25Self-service

3Speed

If configuration settings are stored locally on each device, then access speed is improved, but security risks increase and centralized control is reduced

Engineering Contradiction:
Improveconfiguration access speedVSAvoidsecurity risks
Core Design Contradiction:
SpeedVSObject-affected harmful factors

Solution Approach 1:

The patent introduces a secure configuration store as an intermediary between the mobile device manager and the applications. This intermediary component securely stores configuration settings and provides controlled access to applications through authenticated requests. It enables fast access speed by caching configurations locally while maintaining security through encrypted storage and access control mechanisms, and preserves centralized control by requiring the mobile device manager's authorization for any configuration changes

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentEP4521697B1Configuration techniques for managed host operating systems and containerized applications instantiated thereby
Publication Date: 2026.04.29 MICROSOFT TECHNOLOGY LICENSING LLC
  • EP4521697B1 patent drawingFigure 1
  • EP4521697B1 patent drawingFigure 2
  • EP4521697B1 patent drawingFigure 3

AI summary

Embodiments described herein are directed to configuring managed computing devices utilizing containerized applications. For instance, a mobile device manager may provide configuration settings to a computing device via, for example, an enterprise network. A host operating system (OS) executing on the computing device determines and applies the settings that are applicable to the host OS. The configuration settings are stored for configuring containerized applications executing on the computing device. For instance, as new containerized applications are launched by the host OS, the containerized applications retrieve the configuration settings and determine and apply the settings that are applicable to the containerized applications. Results of applying the configuration settings to the host OS and the containerized applications are merged and sent to the mobile device manager. The host OS and the containerized application may, for example, implement the settings in order to be compliant with an enterprise's policy.