Persona-Based Data Isolation in Electronic Devices
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The challenge is to maintain data security when a user employs a single electronic device for multiple roles or personas, such as work and personal contexts, ensuring separation of data to prevent unauthorized access and enhance security.
Innovation Solution
Implementing multiple virtual or logical environments within an electronic device, with distinct communication stacks and transport flows for each persona, utilizing logical network connection points and modules like entity management and transport flow modules to isolate and manage data transmission, thereby maintaining separation between different personas' data.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If multiple personas share a single electronic device, then device utilization and convenience are improved, but data security and isolation are worsened
Solution Approach 1:
The patent segments the electronic device into multiple isolated environments (work environment and personal environment), each with separate data storage and communication channels. This allows single device usage for multiple personas while maintaining data security through environmental isolation.
Solution Approach 2:
The patent introduces an intermediary mechanism (environment isolation layer) between different personas' data and the physical device. This intermediary ensures that work data and personal data remain separated even though they share the same physical device, resolving the security concern.
2Reliability
If data for different personas is kept separate, then security is improved, but device complexity increases
Solution Approach 1:
The patent implements a universal environment isolation framework that can accommodate multiple personas and data types through a standardized architecture. This multi-functional approach maintains security while avoiding the complexity of custom isolation mechanisms for each persona.
Solution Approach 2:
The patent adds a logical dimension (environment layer) above the physical device layer, creating separation in the logical space rather than requiring physical separation. This resolves the security requirement without significantly increasing physical device complexity.
3Reliability
If multiple transport flows are established for different personas, then data isolation is improved, but network complexity increases
Solution Approach 1:
The patent segments network communications into separate transport flows for different environments (work and personal). Each transport flow is isolated at the network layer, ensuring data isolation while using standard networking components to manage the complexity.
Data Source
AI summary
An electronic device has a plurality of environments including respective communication stacks. The environments correspond to respective different user personas. Data associated with the different user personas are communicated in corresponding separate transport flows over the network.


