OS Upgrade Security Labeling for User Data Preservation
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing electronic devices face challenges in upgrading their Operating Systems (OS) to secure OS versions without deleting user data, as existing OS versions lack the necessary security attributes and labeling information, leading to issues with access permissions and data integrity.
Innovation Solution
An electronic device and method for upgrading an OS that detects OS upgrade initiation, generates labeling information for user data, and relabels it based on a security policy, allowing the secure OS to be installed without factory reset, thereby maintaining user data access and enhancing security.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If a secure OS with enhanced security policy is installed on an existing OS, then security protection is improved, but user data access permission is lost due to lack of labeling information
Solution Approach 1:
The system performs preliminary labeling of user data with security attributes before the OS upgrade. The labeling information is stored in advance, so when the secure OS is installed, the data already has the necessary security context, avoiding access permission issues.
Solution Approach 2:
A labeling mechanism acts as an intermediary between the existing OS and the secure OS. The labeling information serves as a bridge that translates data from the unsecured environment to the secured environment, allowing the secure OS to recognize and access user data without factory reset.
2Reliability
If factory reset is performed to initialize user data for secure OS installation, then security policy compliance is improved, but user data is deleted
Solution Approach 1:
User data is labeled with security attributes before the OS upgrade process. This preliminary action ensures that when the secure OS is installed, the data already conforms to security policy requirements, eliminating the need for factory reset and preventing data loss.
Solution Approach 2:
The patent converts the potential harm of unsecured data into a benefit by systematically labeling all user data with appropriate security attributes. This transformation allows the data to meet secure OS requirements without deletion, turning a security risk into a security asset.
3Reliability
If all user data is relabeled with security attributes during OS upgrade, then security enhancement is achieved, but processing time increases
Solution Approach 1:
The labeling process is performed in advance during the OS upgrade preparation phase, not during system operation. This allows bulk processing of data labels without interrupting user activities, reducing the perceived processing time while achieving comprehensive security enhancement.
Solution Approach 2:
The system automatically performs the labeling of user data without requiring manual intervention. The labeling process is self-executing, using predefined security policies to automatically assign appropriate attributes to data, reducing both processing time and operational complexity.
Data Source
AI summary
An embodiment discloses an electronic device capable of performing an upgrade to an Operating System (OS) having enhanced security without deleting any user data in an electronic device having an OS and a method of operating the same. An embodiment discloses a method of upgrading an OS of an electronic device. The method includes detecting operating system upgrade initiation. The method also includes generating labeling information on each piece of user data; and relabeling the user data based on the labeling information.


