Application Permission Management via Granular Function Segmentation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Users lack control over which system functions applications can access on their electronic devices, leading to potential security risks as they cannot selectively allow or deny access to specific functions, resulting in unintended access to information.

Innovation Solution

A permission management method that utilizes a management table and a permission management program to record and manage the access rights of applications, allowing users to label operational functions as accessible or inaccessible, and changing these permissions based on user input or events.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If users install an application and accept all requested authorities, then the application can provide full functionality, but users lose control over which specific functions the application can access

Engineering Contradiction:
Improveapplication functionalityVSAvoiduser control over access rights
Core Design Contradiction:
Adaptability or versatilityVSEase of operation

Solution Approach 1:

The patent segments the authority access list into individual operational function items, allowing users to review and selectively approve or reject each function's access request separately, rather than accepting or rejecting all authorities as a single package

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent implements dynamic permission management where users can modify access rights for individual operational functions after application installation, allowing permissions to be adjusted based on actual usage needs and security concerns

Inventive Principle:
Principle #15Dynamics

2Reliability

If users reject all requested authorities to maintain security, then information security is protected, but the application cannot provide needed functions

Engineering Contradiction:
Improveinformation securityVSAvoidapplication functionality
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

By dividing the authority access list into discrete operational function items, users can selectively grant permission for only those functions that are necessary and safe, while rejecting access to potentially harmful functions

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent applies different permission states (accessible or inaccessible) to different operational function items based on user decisions, allowing fine-grained control where each function receives appropriate access rights rather than uniform treatment

Inventive Principle:
Principle #3Local quality

3Ease of operation

If the system provides detailed permission options for each operational function, then user control and security are improved, but the system complexity increases

Engineering Contradiction:
Improveuser control over access rightsVSAvoidpermission management system
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

The patent uses a universal management table structure that can accommodate any number of operational function items and applications, providing a scalable framework that handles permission management consistently across different scenarios without requiring separate mechanisms for each case

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS9189608B2Permission management method for applications, electronic device thereof, and computer readable medium
Publication Date: 2015.11.17 WISTRON CORP
  • US9189608B2 patent drawing
  • US9189608B2 patent drawing
  • US9189608B2 patent drawing

AI summary

A permission management method for an electronic device capable of installing at least one application is illustrated. The electronic device comprises a plurality of accessible operational functions. The method prepares a management table for recording corresponding operational functions that the application needs to access while performing the application, and a permission management program for controlling the management table. The permission management program may be performed to change the permission state of each operational function corresponding to the installed application. When the application installed in the device is performed and one of the operational functions is requested, the records in the management table are referred to determine whether the application is allowed to access the requested operational function.