OS Upgrade Security Labeling for User Data Preservation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing electronic devices face challenges in upgrading their Operating Systems (OS) to secure OS versions without deleting user data, as existing OS versions lack the necessary security attributes and labeling information, leading to issues with access permissions and data integrity.

Innovation Solution

An electronic device and method for upgrading an OS that detects OS upgrade initiation, generates labeling information for user data, and relabels it based on a security policy, allowing the secure OS to be installed without factory reset, thereby maintaining user data access and enhancing security.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If a secure OS with enhanced security policy is installed on an existing OS, then security protection is improved, but user data access permission is lost due to lack of labeling information

Engineering Contradiction:
Improvesecurity protectionVSAvoiduser data access permission
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system performs preliminary labeling of user data with security attributes before the OS upgrade. The labeling information is stored in advance, so when the secure OS is installed, the data already has the necessary security context, avoiding access permission issues.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

A labeling mechanism acts as an intermediary between the existing OS and the secure OS. The labeling information serves as a bridge that translates data from the unsecured environment to the secured environment, allowing the secure OS to recognize and access user data without factory reset.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If factory reset is performed to initialize user data for secure OS installation, then security policy compliance is improved, but user data is deleted

Engineering Contradiction:
Improvesecurity policy complianceVSAvoiduser data
Core Design Contradiction:
ReliabilityVSLoss of substance

Solution Approach 1:

User data is labeled with security attributes before the OS upgrade process. This preliminary action ensures that when the secure OS is installed, the data already conforms to security policy requirements, eliminating the need for factory reset and preventing data loss.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent converts the potential harm of unsecured data into a benefit by systematically labeling all user data with appropriate security attributes. This transformation allows the data to meet secure OS requirements without deletion, turning a security risk into a security asset.

Inventive Principle:
Principle #22Blessing in disguise (Convert harm into benefit)

3Reliability

If all user data is relabeled with security attributes during OS upgrade, then security enhancement is achieved, but processing time increases

Engineering Contradiction:
Improvesecurity enhancementVSAvoidprocessing time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The labeling process is performed in advance during the OS upgrade preparation phase, not during system operation. This allows bulk processing of data labels without interrupting user activities, reducing the perceived processing time while achieving comprehensive security enhancement.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system automatically performs the labeling of user data without requiring manual intervention. The labeling process is self-executing, using predefined security policies to automatically assign appropriate attributes to data, reducing both processing time and operational complexity.

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS10007503B2Method and apparatus for upgrading operating system of electronic device
Publication Date: 2018.06.26 SAMSUNG ELECTRONICS CO LTD
  • US10007503B2 patent drawing
  • US10007503B2 patent drawing
  • US10007503B2 patent drawing

AI summary

An embodiment discloses an electronic device capable of performing an upgrade to an Operating System (OS) having enhanced security without deleting any user data in an electronic device having an OS and a method of operating the same. An embodiment discloses a method of upgrading an OS of an electronic device. The method includes detecting operating system upgrade initiation. The method also includes generating labeling information on each piece of user data; and relabeling the user data based on the labeling information.