Persistent Public Machine Setting for Shared Device Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Service providers face challenges in providing customized experiences to multiple users accessing resources through shared client devices, as traditional techniques require individual user authentication and do not allow for tailored experiences until credentials are entered, and may pose security risks in public settings.

Innovation Solution

Implementing a multiuser web service sign-in technique that presents customized information for multiple users on a client device before sign-in, along with a persistent public computer setting that disables memory of user data and credentials, ensuring security in shared device environments.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If traditional authentication techniques are used, then user security is maintained, but customized user experience cannot be provided before authentication and requires manual credential entry

Engineering Contradiction:
Improveease of accessVSAvoidtime for authentication
Core Design Contradiction:
Ease of operationVSLoss of time

Solution Approach 1:

The system performs preliminary action by pre-storing user credentials and customized information in the client device before the user needs access. When a user approaches the device, the system automatically retrieves and presents the pre-stored credentials and customized interface, eliminating the need for manual authentication at the time of access. This resolves the contradiction by providing both customized experience (through pre-loaded user profiles) and ease of access (through automatic credential presentation) without time loss.

Inventive Principle:
Principle #10Preliminary action

2Adaptability or versatility

If user credentials are stored on client device, then customized experience is enabled, but security risks increase in public shared settings

Engineering Contradiction:
Improvecustomized experienceVSAvoidsecurity risk
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The system applies dynamics by making the credential storage state changeable. A public mode switch allows the system to dynamically transition between two states: private mode where credentials are stored and customized experience is provided, and public mode where stored credentials are automatically cleared and security is prioritized. This dynamic state change resolves the contradiction by allowing customized experience when needed while enabling security protection when in public settings.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The system implements feedback through the public mode switch that detects the current usage context (private vs. public) and automatically adjusts the credential storage behavior accordingly. When public mode is detected, the system receives feedback and automatically clears stored credentials, providing security without requiring manual intervention. This feedback mechanism resolves the contradiction by automatically adapting between customized experience and security based on the detected environment.

Inventive Principle:
Principle #23Feedback

3Ease of operation

If default setting remembers users, then ease of access is improved, but information protection is reduced in public settings

Engineering Contradiction:
Improveease of accessVSAvoidinformation protection
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The system applies dynamics by making the remember-users setting changeable through the public mode switch. In private mode, the default setting remembers users for ease of access. When public mode is activated, the setting dynamically changes to stop remembering users, thereby protecting information. This dynamic adjustment resolves the contradiction by allowing ease of access when appropriate while ensuring information protection in public settings.

Inventive Principle:
Principle #15Dynamics

Data Source

PatentUS9503440B2Persistent public machine setting
Publication Date: 2016.11.22 MICROSOFT TECHNOLOGY LICENSING LLC
  • US9503440B2 patent drawing
  • US9503440B2 patent drawing
  • US9503440B2 patent drawing

AI summary

Disclosed herein are methods for protecting user information on a client device that may have a plurality of users. A user interface with a public machine designation portion is presented to a user prior to the start of the authentication process. The public machine designation removes web service account descriptions and any user specific information stored on the client device. Also, the client device is prevented from storing any new user specific information that is provided to the client device. The public machine designation is a persistent feature that may only be disabled by an affirmative action from the user.