Mobile Terminal Resource Access Control via Dynamic User Permission
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Conventional mobile communication terminals restrict application access to confidential resources, limiting user convenience and compatibility, while unconditional access poses risks of information leakage and alteration.
Innovation Solution
A cooperative operation method between the basic processing part and applications, where user permission is sought before accessing resources, with selection screens for activation, installation, and setting accessible levels to manage access rights and protect sensitive information.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If applications are prohibited from accessing confidential resources managed by the basic processing part, then personal information protection is improved, but user convenience and application functionality deteriorate
Solution Approach 1:
The patent implements dynamic access control where the basic processing part selectively grants access rights to applications based on user permissions and resource types. Instead of a static prohibition, the system dynamically adjusts access levels, allowing applications to access confidential resources when authorized while maintaining protection when unauthorized. This resolves the contradiction by making the access control mechanism flexible rather than rigid.
Solution Approach 2:
The basic processing part acts as an intermediary between applications and confidential resources. It receives access requests from applications, evaluates them against security policies and user permissions, and selectively grants or denies access. This mediator role enables controlled access that protects personal information while allowing necessary application functionality, thus resolving the contradiction between security and convenience.
2Adaptability or versatility
If applications are unconditionally allowed to access confidential resources, then application functionality and versatility are improved, but security risks of information leakage and alteration increase
Solution Approach 1:
The patent implements local quality control by granting different access rights to different applications based on their specific needs and trust levels. Instead of uniform access control, each application receives tailored permissions appropriate to its function. This allows high-functionality applications to access necessary resources while limiting access for less trusted applications, thus enabling versatility while mitigating security risks.
Solution Approach 2:
The basic processing part serves as a security intermediary that filters and controls application access to confidential resources. It implements security checks, validates access requests, and prevents unauthorized operations. This intermediary layer enables applications to function with appropriate access rights while blocking security threats, thus achieving both versatility and security.
3Reliability
If the basic processing part manages all mail processing resources exclusively, then information security is improved, but mail processing flexibility and compatibility across device models deteriorate
Solution Approach 1:
The patent implements dynamic resource management where the basic processing part adaptively controls access to mail processing resources based on application requirements and security contexts. Instead of rigid exclusive management, the system dynamically allocates resource access rights, enabling flexible mail processing while maintaining security. This resolves the contradiction by making resource management adaptive rather than static.
Data Source
AI summary
When an application activation instruction is input, it is decided whether the application is expected to access a high-level protection resource or low-level protection resource (step S31). If the decision is affirmative, display is done to prompt the user to select whether to permit activation of the application (step S32). When the user inputs an activation permission instruction, the application is activated (steps S33 to S36). As a result, only when the user permits an application, which is expected to access a high-level protection resource or low-level protection resource, to access a predetermined resource immediately before its execution, the application is executed. Hence, the basic processing part and application can operate in cooperation with each other while limiting access to various kinds of resources by the application in a reasonable range.


