Portable Storage Shared Filesystem Access via Tethering Interface
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current coupling devices between portable storage devices and hosts, such as USB connections, lack efficient mechanisms for secure file sharing and network access management, particularly in scenarios where multiple applications on the portable storage device have private filesystems with restricted access policies.
Innovation Solution
The implementation of a method and apparatus that configures a tethering and portable storage service interface on a portable storage device to share files with a host, allowing secure access to a shared filesystem while adhering to security policies that restrict access between applications, using dual Ethernet channels for network access and file sharing over USB links.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If a shared filesystem is implemented to enable file sharing between host and portable storage device, then ease of operation is improved, but security control becomes more complex
Solution Approach 1:
The patent segments the filesystem into private and shared portions, with each application having its own private filesystem that can be selectively shared. This segmentation allows simple file sharing operations while maintaining security through structured access control policies that evaluate application identities and file locations.
Solution Approach 2:
The patent introduces a filesystem server as an intermediary component that mediates all file access requests. The filesystem server evaluates security policies, determines access permissions, and manages the shared filesystem, thereby simplifying the security management burden on individual applications while maintaining robust security control.
2Productivity
If private filesystems are shared to the shared filesystem to enable access, then productivity is improved, but reliability of security restrictions deteriorates
Solution Approach 1:
The patent implements preliminary action by pre-configuring security policies that define which applications can access which files under specific conditions. These policies are established before file access operations occur, ensuring that security restrictions are reliably enforced while allowing authorized applications to access shared files efficiently without runtime security checks.
Solution Approach 2:
The patent incorporates feedback mechanisms where the filesystem server continuously monitors file access requests, evaluates them against security policies, and provides appropriate access decisions. This feedback loop ensures that security restrictions are reliably maintained while allowing legitimate file sharing operations to proceed smoothly.
3Adaptability or versatility
If dual Ethernet channels are configured for network access and file sharing, then adaptability is improved, but device complexity increases
Solution Approach 1:
The patent implements universality by configuring the portable storage device with dual Ethernet channels that can serve multiple functions: one channel dedicated to network access and another dedicated to file sharing operations. This multi-functional configuration allows the device to adapt to different operational scenarios while maintaining manageable complexity through clear functional separation.
Data Source
AI summary
A method and apparatus of a host that accesses files from a portable storage device with a shared filesystem is described. In an exemplary method, the host transmits a request to access the shared filesystem, where the shared filesystem includes a security policy that disallows one application accessing a file in the shared filesystem corresponding to another application. The host further receives an indication of the result of the request.


