Persistent Public Machine Setting for Shared Device Security
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Service providers face challenges in providing customized experiences to multiple users accessing resources through shared client devices, as traditional techniques require individual user authentication and do not allow for tailored experiences until credentials are entered, and may pose security risks in public settings.
Innovation Solution
Implementing a multiuser web service sign-in technique that presents customized information for multiple users on a client device before sign-in, along with a persistent public computer setting that disables memory of user data and credentials, ensuring security in shared device environments.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If traditional authentication techniques are used, then user security is maintained, but customized user experience cannot be provided before authentication and requires manual credential entry
Solution Approach 1:
The system performs preliminary action by pre-storing user credentials and customized information in the client device before the user needs access. When a user approaches the device, the system automatically retrieves and presents the pre-stored credentials and customized interface, eliminating the need for manual authentication at the time of access. This resolves the contradiction by providing both customized experience (through pre-loaded user profiles) and ease of access (through automatic credential presentation) without time loss.
2Adaptability or versatility
If user credentials are stored on client device, then customized experience is enabled, but security risks increase in public shared settings
Solution Approach 1:
The system applies dynamics by making the credential storage state changeable. A public mode switch allows the system to dynamically transition between two states: private mode where credentials are stored and customized experience is provided, and public mode where stored credentials are automatically cleared and security is prioritized. This dynamic state change resolves the contradiction by allowing customized experience when needed while enabling security protection when in public settings.
Solution Approach 2:
The system implements feedback through the public mode switch that detects the current usage context (private vs. public) and automatically adjusts the credential storage behavior accordingly. When public mode is detected, the system receives feedback and automatically clears stored credentials, providing security without requiring manual intervention. This feedback mechanism resolves the contradiction by automatically adapting between customized experience and security based on the detected environment.
3Ease of operation
If default setting remembers users, then ease of access is improved, but information protection is reduced in public settings
Solution Approach 1:
The system applies dynamics by making the remember-users setting changeable through the public mode switch. In private mode, the default setting remembers users for ease of access. When public mode is activated, the setting dynamically changes to stop remembering users, thereby protecting information. This dynamic adjustment resolves the contradiction by allowing ease of access when appropriate while ensuring information protection in public settings.
Data Source
AI summary
Disclosed herein are methods for protecting user information on a client device that may have a plurality of users. A user interface with a public machine designation portion is presented to a user prior to the start of the authentication process. The public machine designation removes web service account descriptions and any user specific information stored on the client device. Also, the client device is prevented from storing any new user specific information that is provided to the client device. The public machine designation is a persistent feature that may only be disabled by an affirmative action from the user.


