Portable Storage Shared Filesystem Access via Tethering Interface

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current coupling devices between portable storage devices and hosts, such as USB connections, lack efficient mechanisms for secure file sharing and network access management, particularly in scenarios where multiple applications on the portable storage device have private filesystems with restricted access policies.

Innovation Solution

The implementation of a method and apparatus that configures a tethering and portable storage service interface on a portable storage device to share files with a host, allowing secure access to a shared filesystem while adhering to security policies that restrict access between applications, using dual Ethernet channels for network access and file sharing over USB links.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If a shared filesystem is implemented to enable file sharing between host and portable storage device, then ease of operation is improved, but security control becomes more complex

Engineering Contradiction:
Improvefile sharing capabilityVSAvoidsecurity policy management
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

The patent segments the filesystem into private and shared portions, with each application having its own private filesystem that can be selectively shared. This segmentation allows simple file sharing operations while maintaining security through structured access control policies that evaluate application identities and file locations.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces a filesystem server as an intermediary component that mediates all file access requests. The filesystem server evaluates security policies, determines access permissions, and manages the shared filesystem, thereby simplifying the security management burden on individual applications while maintaining robust security control.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Productivity

If private filesystems are shared to the shared filesystem to enable access, then productivity is improved, but reliability of security restrictions deteriorates

Engineering Contradiction:
Improvefile access efficiencyVSAvoidsecurity policy enforcement
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The patent implements preliminary action by pre-configuring security policies that define which applications can access which files under specific conditions. These policies are established before file access operations occur, ensuring that security restrictions are reliably enforced while allowing authorized applications to access shared files efficiently without runtime security checks.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent incorporates feedback mechanisms where the filesystem server continuously monitors file access requests, evaluates them against security policies, and provides appropriate access decisions. This feedback loop ensures that security restrictions are reliably maintained while allowing legitimate file sharing operations to proceed smoothly.

Inventive Principle:
Principle #23Feedback

3Adaptability or versatility

If dual Ethernet channels are configured for network access and file sharing, then adaptability is improved, but device complexity increases

Engineering Contradiction:
Improvenetwork access capabilityVSAvoidinterface configuration
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent implements universality by configuring the portable storage device with dual Ethernet channels that can serve multiple functions: one channel dedicated to network access and another dedicated to file sharing operations. This multi-functional configuration allows the device to adapt to different operational scenarios while maintaining manageable complexity through clear functional separation.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS10305910B2Accessing specialized fileserver
Publication Date: 2019.05.28 APPLE INC
  • US10305910B2 patent drawing
  • US10305910B2 patent drawing
  • US10305910B2 patent drawing

AI summary

A method and apparatus of a host that accesses files from a portable storage device with a shared filesystem is described. In an exemplary method, the host transmits a request to access the shared filesystem, where the shared filesystem includes a security policy that disallows one application accessing a file in the shared filesystem corresponding to another application. The host further receives an indication of the result of the request.